Windows Analysis Report
https://radiantlogics-my.sharepoint.com/:f:/g/personal/asharma_radiantlogics_onmicrosoft_com/ErrzGhClH-1EtQegMViR0ycByA4n0Sz6jougdCLyR4Fexw?e=sIngPR

Overview

General Information

Sample URL: https://radiantlogics-my.sharepoint.com/:f:/g/personal/asharma_radiantlogics_onmicrosoft_com/ErrzGhClH-1EtQegMViR0ycByA4n0Sz6jougdCLyR4Fexw?e=sIngPR
Analysis ID: 1523280
Infos:

Detection

Score: 52
Range: 0 - 100
Whitelisted: false
Confidence: 100%

Signatures

Antivirus / Scanner detection for submitted sample
Downloads suspicious files via Chrome
Allocates memory with a write watch (potentially for evading sandboxes)
Contains long sleeps (>= 3 min)
Creates a process in suspended mode (likely to inject code)
May sleep (evasive loops) to hinder dynamic analysis

Classification

AV Detection

barindex
Source: https://radiantlogics-my.sharepoint.com/:f:/g/personal/asharma_radiantlogics_onmicrosoft_com/ErrzGhClH-1EtQegMViR0ycByA4n0Sz6jougdCLyR4Fexw?e=sIngPR SlashNext: detection malicious, Label: Credential Stealing type: Phishing & Social Engineering
Source: https://radiantlogics-my.sharepoint.com/personal/asharma_radiantlogics_onmicrosoft_com/_layouts/15/onedrive.aspx?id=%2Fpersonal%2Fasharma%5Fradiantlogics%5Fonmicrosoft%5Fcom%2FDocuments%2FRadiant%20Logic%20Inc&ga=1 HTTP Parser: No favicon
Source: C:\Windows\SysWOW64\unarchiver.exe File opened: C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.9672_none_d08f9da24428a513\MSVCR80.dll Jump to behavior
Source: unknown HTTPS traffic detected: 184.28.90.27:443 -> 192.168.2.7:49719 version: TLS 1.2
Source: unknown HTTPS traffic detected: 184.28.90.27:443 -> 192.168.2.7:49732 version: TLS 1.2
Source: unknown TCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknown TCP traffic detected without corresponding DNS query: 104.98.116.138
Source: unknown TCP traffic detected without corresponding DNS query: 104.98.116.138
Source: unknown TCP traffic detected without corresponding DNS query: 104.98.116.138
Source: unknown TCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknown TCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknown TCP traffic detected without corresponding DNS query: 20.50.201.200
Source: unknown TCP traffic detected without corresponding DNS query: 20.50.201.200
Source: unknown TCP traffic detected without corresponding DNS query: 20.50.201.200
Source: unknown TCP traffic detected without corresponding DNS query: 20.50.201.200
Source: unknown TCP traffic detected without corresponding DNS query: 104.98.116.138
Source: unknown TCP traffic detected without corresponding DNS query: 104.98.116.138
Source: unknown TCP traffic detected without corresponding DNS query: 104.98.116.138
Source: unknown TCP traffic detected without corresponding DNS query: 20.50.201.200
Source: unknown TCP traffic detected without corresponding DNS query: 104.98.116.138
Source: unknown TCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 20.50.201.200
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 104.98.116.138
Source: unknown TCP traffic detected without corresponding DNS query: 104.98.116.138
Source: unknown TCP traffic detected without corresponding DNS query: 104.98.116.138
Source: unknown TCP traffic detected without corresponding DNS query: 104.98.116.138
Source: unknown TCP traffic detected without corresponding DNS query: 20.50.201.200
Source: unknown TCP traffic detected without corresponding DNS query: 104.98.116.138
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 13.95.65.251
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: global traffic HTTP traffic detected: GET /:f:/g/personal/asharma_radiantlogics_onmicrosoft_com/ErrzGhClH-1EtQegMViR0ycByA4n0Sz6jougdCLyR4Fexw?e=sIngPR HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-User: ?1Sec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /personal/asharma_radiantlogics_onmicrosoft_com/_layouts/15/onedrive.aspx?id=%2Fpersonal%2Fasharma%5Fradiantlogics%5Fonmicrosoft%5Fcom%2FDocuments%2FRadiant%20Logic%20Inc&ga=1 HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-aliveUpgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-User: ?1Sec-Fetch-Dest: documentsec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=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
Source: global traffic HTTP traffic detected: GET /_layouts/15/spwebworkerproxy.ashx HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=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
Source: global traffic HTTP traffic detected: GET /_layouts/15/spwebworkerproxy.ashx HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=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
Source: global traffic HTTP traffic detected: GET /fs/windows/config.json HTTP/1.1Connection: Keep-AliveAccept: */*Accept-Encoding: identityIf-Unmodified-Since: Tue, 16 May 2017 22:58:00 GMTRange: bytes=0-2147483646User-Agent: Microsoft BITS/7.8Host: fs.microsoft.com
Source: global traffic HTTP traffic detected: GET /personal/asharma_radiantlogics_onmicrosoft_com/_api/v2.1/graphql HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=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
Source: global traffic HTTP traffic detected: GET /_layouts/15/images/odbfavicon.ico?rev=47 HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://radiantlogics-my.sharepoint.com/personal/asharma_radiantlogics_onmicrosoft_com/_layouts/15/onedrive.aspx?id=%2Fpersonal%2Fasharma%5Fradiantlogics%5Fonmicrosoft%5Fcom%2FDocuments%2FRadiant%20Logic%20Inc&ga=1Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=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; FeatureOverrides_experiments=[]
Source: global traffic HTTP traffic detected: GET /_layouts/15/images/odbfavicon.ico?rev=47 HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=77u/PD94bWwgdmVyc2lvbj0iMS4wIiBlbmNvZGluZz0idXRmLTgiPz48U1A+VjEzLDBoLmZ8bWVtYmVyc2hpcHx1cm4lM2FzcG8lM2Fhbm9uIzUwOWQ2NzE5YTYyNmY1MmNjYzhlYjYwNDJjYTVkNTVhMGY1YjhmNTBiZDdhNmZiYmNkZGUxMjdlYTIwOTBmNGQsMCMuZnxtZW1iZXJzaGlwfHVybiUzYXNwbyUzYWFub24jNTA5ZDY3MTlhNjI2ZjUyY2NjOGViNjA0MmNhNWQ1NWEwZjViOGY1MGJkN2E2ZmJiY2RkZTEyN2VhMjA5MGY0ZCwxMzM3MjI1MTk4ODAwMDAwMDAsMCwxMzM3MjMzODA4ODY1MzA2NDYsMC4wLjAuMCwyNTgsYzZiMzNmYjItM2M5OC00NTQwLThkOGItNjdlZTE3NzY1ODNlLCwsNjM5YzU1YTEtMzBkZC02MDAwLTc2ZjQtZmI4NDg2NTY3MDViLDYzOWM1NWExLTMwZGQtNjAwMC03NmY0LWZiODQ4NjU2NzA1YixIblhTbUx6MTlFNmZIY3dMUVNHa0tRLDAsMCwwLCwsLDI2NTA0Njc3NDM5OTk5OTk5OTksMCwsLCwsLCwwLCwxOTM2OTEsTDVXdU0yLXhQeFRjTVNtbzF3NmpIb05zX1hvLGhCNzlDNW9scmE2cEtRK2FkaGJSMXpFZTUwc3hJVlozcWJqT2pOSHNLWERoZzdMTW9ReEp2QUtqMU9HdXh1TmEzdldVUG5Fb0l1am00OEVSS3kwU2VvVFRYTFJkMEozNlpBVDV1ZWU0QWlEUHVLRTZQcEV1UUNMd2NycGthWGNuZ2N6cTBJRHZoWTlvMGdBSUdvT3dIc1dNblpVT3RaZzZyOXNHOXBlM2JPeTFPMGJBczhvUmFJVGUvODJPSHlZa05UbG1pS3VNOW84b1VTOUlJQS9hY0FtVWprWGU1dWdHQU96Q0w5MTRGaHhHbVhTSDFnVFpsR2hzSkhuNkZZZTJ3LytONXJEQys4WUFjY0MzT3czZkxDeE1NMVI0UGRETllYcmZKRFVmWjZjOW9QQWpkblU5ZFRTV3Bna1lTdis2RnpweDJDYmp1V3NzTW45Ylh2QW1tdz09PC9TUD4=; FeatureOverrides_experiments=[]
Source: global traffic HTTP traffic detected: GET /personal/asharma_radiantlogics_onmicrosoft_com/_api/web/GetListUsingPath(DecodedUrl=@a1)/RenderListDataAsStream?@a1=%27%2Fpersonal%2Fasharma%5Fradiantlogics%5Fonmicrosoft%5Fcom%2FDocuments%27&TryNewExperienceSingle=TRUE HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=77u/PD94bWwgdmVyc2lvbj0iMS4wIiBlbmNvZGluZz0idXRmLTgiPz48U1A+VjEzLDBoLmZ8bWVtYmVyc2hpcHx1cm4lM2FzcG8lM2Fhbm9uIzUwOWQ2NzE5YTYyNmY1MmNjYzhlYjYwNDJjYTVkNTVhMGY1YjhmNTBiZDdhNmZiYmNkZGUxMjdlYTIwOTBmNGQsMCMuZnxtZW1iZXJzaGlwfHVybiUzYXNwbyUzYWFub24jNTA5ZDY3MTlhNjI2ZjUyY2NjOGViNjA0MmNhNWQ1NWEwZjViOGY1MGJkN2E2ZmJiY2RkZTEyN2VhMjA5MGY0ZCwxMzM3MjI1MTk4ODAwMDAwMDAsMCwxMzM3MjMzODA4ODY1MzA2NDYsMC4wLjAuMCwyNTgsYzZiMzNmYjItM2M5OC00NTQwLThkOGItNjdlZTE3NzY1ODNlLCwsNjM5YzU1YTEtMzBkZC02MDAwLTc2ZjQtZmI4NDg2NTY3MDViLDYzOWM1NWExLTMwZGQtNjAwMC03NmY0LWZiODQ4NjU2NzA1YixIblhTbUx6MTlFNmZIY3dMUVNHa0tRLDAsMCwwLCwsLDI2NTA0Njc3NDM5OTk5OTk5OTksMCwsLCwsLCwwLCwxOTM2OTEsTDVXdU0yLXhQeFRjTVNtbzF3NmpIb05zX1hvLGhCNzlDNW9scmE2cEtRK2FkaGJSMXpFZTUwc3hJVlozcWJqT2pOSHNLWERoZzdMTW9ReEp2QUtqMU9HdXh1TmEzdldVUG5Fb0l1am00OEVSS3kwU2VvVFRYTFJkMEozNlpBVDV1ZWU0QWlEUHVLRTZQcEV1UUNMd2NycGthWGNuZ2N6cTBJRHZoWTlvMGdBSUdvT3dIc1dNblpVT3RaZzZyOXNHOXBlM2JPeTFPMGJBczhvUmFJVGUvODJPSHlZa05UbG1pS3VNOW84b1VTOUlJQS9hY0FtVWprWGU1dWdHQU96Q0w5MTRGaHhHbVhTSDFnVFpsR2hzSkhuNkZZZTJ3LytONXJEQys4WUFjY0MzT3czZkxDeE1NMVI0UGRETllYcmZKRFVmWjZjOW9QQWpkblU5ZFRTV3Bna1lTdis2RnpweDJDYmp1V3NzTW45Ylh2QW1tdz09PC9TUD4=; FeatureOverrides_experiments=[]
Source: global traffic HTTP traffic detected: GET /personal/asharma_radiantlogics_onmicrosoft_com/_api/web/GetListUsingPath(DecodedUrl=@a1)/RenderListDataAsStream?@a1=%27%2Fpersonal%2Fasharma%5Fradiantlogics%5Fonmicrosoft%5Fcom%2FDocuments%27&RootFolder=%2Fpersonal%2Fasharma%5Fradiantlogics%5Fonmicrosoft%5Fcom%2FDocuments%2FRadiant%20Logic%20Inc&TryNewExperienceSingle=TRUE HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=77u/PD94bWwgdmVyc2lvbj0iMS4wIiBlbmNvZGluZz0idXRmLTgiPz48U1A+VjEzLDBoLmZ8bWVtYmVyc2hpcHx1cm4lM2FzcG8lM2Fhbm9uIzUwOWQ2NzE5YTYyNmY1MmNjYzhlYjYwNDJjYTVkNTVhMGY1YjhmNTBiZDdhNmZiYmNkZGUxMjdlYTIwOTBmNGQsMCMuZnxtZW1iZXJzaGlwfHVybiUzYXNwbyUzYWFub24jNTA5ZDY3MTlhNjI2ZjUyY2NjOGViNjA0MmNhNWQ1NWEwZjViOGY1MGJkN2E2ZmJiY2RkZTEyN2VhMjA5MGY0ZCwxMzM3MjI1MTk4ODAwMDAwMDAsMCwxMzM3MjMzODA4ODY1MzA2NDYsMC4wLjAuMCwyNTgsYzZiMzNmYjItM2M5OC00NTQwLThkOGItNjdlZTE3NzY1ODNlLCwsNjM5YzU1YTEtMzBkZC02MDAwLTc2ZjQtZmI4NDg2NTY3MDViLDYzOWM1NWExLTMwZGQtNjAwMC03NmY0LWZiODQ4NjU2NzA1YixIblhTbUx6MTlFNmZIY3dMUVNHa0tRLDAsMCwwLCwsLDI2NTA0Njc3NDM5OTk5OTk5OTksMCwsLCwsLCwwLCwxOTM2OTEsTDVXdU0yLXhQeFRjTVNtbzF3NmpIb05zX1hvLGhCNzlDNW9scmE2cEtRK2FkaGJSMXpFZTUwc3hJVlozcWJqT2pOSHNLWERoZzdMTW9ReEp2QUtqMU9HdXh1TmEzdldVUG5Fb0l1am00OEVSS3kwU2VvVFRYTFJkMEozNlpBVDV1ZWU0QWlEUHVLRTZQcEV1UUNMd2NycGthWGNuZ2N6cTBJRHZoWTlvMGdBSUdvT3dIc1dNblpVT3RaZzZyOXNHOXBlM2JPeTFPMGJBczhvUmFJVGUvODJPSHlZa05UbG1pS3VNOW84b1VTOUlJQS9hY0FtVWprWGU1dWdHQU96Q0w5MTRGaHhHbVhTSDFnVFpsR2hzSkhuNkZZZTJ3LytONXJEQys4WUFjY0MzT3czZkxDeE1NMVI0UGRETllYcmZKRFVmWjZjOW9QQWpkblU5ZFRTV3Bna1lTdis2RnpweDJDYmp1V3NzTW45Ylh2QW1tdz09PC9TUD4=; FeatureOverrides_experiments=[]
Source: global traffic HTTP traffic detected: GET /personal/asharma_radiantlogics_onmicrosoft_com/_api/web/GetListUsingPath(DecodedUrl=@a1)/RenderListDataAsStream?@a1=%27%2Fpersonal%2Fasharma%5Fradiantlogics%5Fonmicrosoft%5Fcom%2FDocuments%27&TryNewExperienceSingle=TRUE HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=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; FeatureOverrides_experiments=[]
Source: global traffic HTTP traffic detected: GET /_layouts/15/odspserviceworkerproxy.aspx?swManifestName=spserviceworker&debug=false&bypass=false&navigationPreloadHeaderValue=%7B%22supportsFeatures%22%3A%5B1855%2C61313%5D%7D&dataHost=Nucleus&applications=%5B%7B%22id%22%3A%22STS%22%2C%22swPrefetchManifestName%22%3A%22stsserviceworkerprefetch%22%7D%2C%7B%22id%22%3A%22SPHome%22%7D%2C%7B%22id%22%3A%22SitePages%22%7D%2C%7B%22id%22%3A%22Embed%22%7D%2C%7B%22id%22%3A%22CreateGroup%22%7D%2C%7B%22id%22%3A%22SingleWebPart%22%7D%2C%7B%22id%22%3A%22VivaHome%22%7D%2C%7B%22id%22%3A%22BrokerLogon%22%7D%2C%7B%22id%22%3A%22Clipchamp%22%7D%2C%7B%22id%22%3A%22MeeBridge%22%7D%2C%7B%22id%22%3A%22SPStart%22%7D%2C%7B%22id%22%3A%22Agreements%22%7D%5D&list=v2&prefetchListData=true&defaultBrotli=true&authenticateFast=true&inlineAuth=v2&wwData=true&enableTheming=true&prefetchFilebrowserPageInTeams=true&FUIV9Flights=[-83099905,3]&spStartApplicationWebBundle=true&enableIntegrities=true&streamViewServerLoad=true&streamInlineScript=true HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-aliveCache-Control: max-age=0Accept: */*Service-Worker: scriptSec-Fetch-Site: same-originSec-Fetch-Mode: same-originSec-Fetch-Dest: serviceworkerReferer: https://radiantlogics-my.sharepoint.com/personal/asharma_radiantlogics_onmicrosoft_com/_layouts/15/onedrive.aspx?id=%2Fpersonal%2Fasharma%5Fradiantlogics%5Fonmicrosoft%5Fcom%2FDocuments%2FRadiant%20Logic%20Inc&ga=1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=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; FeatureOverrides_experiments=[]
Source: global traffic HTTP traffic detected: GET /_layouts/15/userphoto.aspx?size=M&accountname=asharma%40radiantlogics.onmicrosoft.com HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://radiantlogics-my.sharepoint.com/personal/asharma_radiantlogics_onmicrosoft_com/_layouts/15/onedrive.aspx?id=%2Fpersonal%2Fasharma%5Fradiantlogics%5Fonmicrosoft%5Fcom%2FDocuments%2FRadiant%20Logic%20Inc&ga=1Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=77u/PD94bWwgdmVyc2lvbj0iMS4wIiBlbmNvZGluZz0idXRmLTgiPz48U1A+VjEzLDBoLmZ8bWVtYmVyc2hpcHx1cm4lM2FzcG8lM2Fhbm9uIzUwOWQ2NzE5YTYyNmY1MmNjYzhlYjYwNDJjYTVkNTVhMGY1YjhmNTBiZDdhNmZiYmNkZGUxMjdlYTIwOTBmNGQsMCMuZnxtZW1iZXJzaGlwfHVybiUzYXNwbyUzYWFub24jNTA5ZDY3MTlhNjI2ZjUyY2NjOGViNjA0MmNhNWQ1NWEwZjViOGY1MGJkN2E2ZmJiY2RkZTEyN2VhMjA5MGY0ZCwxMzM3MjI1MTk4ODAwMDAwMDAsMCwxMzM3MjMzODA4ODY1MzA2NDYsMC4wLjAuMCwyNTgsYzZiMzNmYjItM2M5OC00NTQwLThkOGItNjdlZTE3NzY1ODNlLCwsNjM5YzU1YTEtMzBkZC02MDAwLTc2ZjQtZmI4NDg2NTY3MDViLDYzOWM1NWExLTMwZGQtNjAwMC03NmY0LWZiODQ4NjU2NzA1YixIblhTbUx6MTlFNmZIY3dMUVNHa0tRLDAsMCwwLCwsLDI2NTA0Njc3NDM5OTk5OTk5OTksMCwsLCwsLCwwLCwxOTM2OTEsTDVXdU0yLXhQeFRjTVNtbzF3NmpIb05zX1hvLGhCNzlDNW9scmE2cEtRK2FkaGJSMXpFZTUwc3hJVlozcWJqT2pOSHNLWERoZzdMTW9ReEp2QUtqMU9HdXh1TmEzdldVUG5Fb0l1am00OEVSS3kwU2VvVFRYTFJkMEozNlpBVDV1ZWU0QWlEUHVLRTZQcEV1UUNMd2NycGthWGNuZ2N6cTBJRHZoWTlvMGdBSUdvT3dIc1dNblpVT3RaZzZyOXNHOXBlM2JPeTFPMGJBczhvUmFJVGUvODJPSHlZa05UbG1pS3VNOW84b1VTOUlJQS9hY0FtVWprWGU1dWdHQU96Q0w5MTRGaHhHbVhTSDFnVFpsR2hzSkhuNkZZZTJ3LytONXJEQys4WUFjY0MzT3czZkxDeE1NMVI0UGRETllYcmZKRFVmWjZjOW9QQWpkblU5ZFRTV3Bna1lTdis2RnpweDJDYmp1V3NzTW45Ylh2QW1tdz09PC9TUD4=; FeatureOverrides_experiments=[]
Source: global traffic HTTP traffic detected: GET /_layouts/15/userphoto.aspx?size=M&accountname=asharma%40radiantlogics.onmicrosoft.com HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=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; FeatureOverrides_experiments=[]
Source: global traffic HTTP traffic detected: GET /_vti_bin/afdcache.ashx/_userprofile/userphoto.jpg?_oat_=1727859898_3abfc8e694aef96d8ace38b97ae09cda5ce3a19e6a709bfcf5310d6ba04474d5&P1=1727780479&P2=-149452251&P3=1&P4=IlWGGMzuZ3yjiSnhOKymAFf1foOWkVVhFlImmhal4K5i4HFSMzj76oLSghZEu7DNwlRuJbyZHD7EkI%2bOLasrP00hFnohzqscDBrOnfDZbnG%2b58uX31UQn3jcJZH796JrAYs7uYvWMVgqKjBwotop2KuIP2BV%2b7K8Mok1xBoFNG7Pbm%2boZ8FwmrhtEynH66Ihq77NlFkRHVIM1igSPD0Wp3YE58n%2bAq%2fNy%2b10dCbXnb0pzuixYk5B4XQ9Xy1f1F1IVPYmAE8FaSoQkZWQlFy9cpB5nTJr9SlF1iXZiJWFloJfFpNQFm9mNd%2bVIBYFfnk65fMZcys%2fJAAcCHABXloG7g%3d%3d&size=M&accountName=asharma@radiantlogics.onmicrosoft.com&default=true HTTP/1.1Host: radiantlogics.sharepoint.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /_layouts/15/SPComponentRegistry.ashx?projects=[%22STS%22]&languages=%5B%5D HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-aliveAccept: application/jsonUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Content-Type: application/jsonSec-Fetch-Site: same-originSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://radiantlogics-my.sharepoint.com/_layouts/15/odspserviceworkerproxy.aspx?swManifestName=spserviceworker&debug=false&bypass=false&navigationPreloadHeaderValue=%7B%22supportsFeatures%22%3A%5B1855%2C61313%5D%7D&dataHost=Nucleus&applications=%5B%7B%22id%22%3A%22STS%22%2C%22swPrefetchManifestName%22%3A%22stsserviceworkerprefetch%22%7D%2C%7B%22id%22%3A%22SPHome%22%7D%2C%7B%22id%22%3A%22SitePages%22%7D%2C%7B%22id%22%3A%22Embed%22%7D%2C%7B%22id%22%3A%22CreateGroup%22%7D%2C%7B%22id%22%3A%22SingleWebPart%22%7D%2C%7B%22id%22%3A%22VivaHome%22%7D%2C%7B%22id%22%3A%22BrokerLogon%22%7D%2C%7B%22id%22%3A%22Clipchamp%22%7D%2C%7B%22id%22%3A%22MeeBridge%22%7D%2C%7B%22id%22%3A%22SPStart%22%7D%2C%7B%22id%22%3A%22Agreements%22%7D%5D&list=v2&prefetchListData=true&defaultBrotli=true&authenticateFast=true&inlineAuth=v2&wwData=true&enableTheming=true&prefetchFilebrowserPageInTeams=true&FUIV9Flights=[-83099905,3]&spStartApplicationWebBundle=true&enableIntegrities=true&streamViewServerLoad=true&streamInlineScript=trueAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=77u/PD94bWwgdmVyc2lvbj0iMS4wIiBlbmNvZGluZz0idXRmLTgiPz48U1A+VjEzLDBoLmZ8bWVtYmVyc2hpcHx1cm4lM2FzcG8lM2Fhbm9uIzUwOWQ2NzE5YTYyNmY1MmNjYzhlYjYwNDJjYTVkNTVhMGY1YjhmNTBiZDdhNmZiYmNkZGUxMjdlYTIwOTBmNGQsMCMuZnxtZW1iZXJzaGlwfHVybiUzYXNwbyUzYWFub24jNTA5ZDY3MTlhNjI2ZjUyY2NjOGViNjA0MmNhNWQ1NWEwZjViOGY1MGJkN2E2ZmJiY2RkZTEyN2VhMjA5MGY0ZCwxMzM3MjI1MTk4ODAwMDAwMDAsMCwxMzM3MjMzODA4ODY1MzA2NDYsMC4wLjAuMCwyNTgsYzZiMzNmYjItM2M5OC00NTQwLThkOGItNjdlZTE3NzY1ODNlLCwsNjM5YzU1YTEtMzBkZC02MDAwLTc2ZjQtZmI4NDg2NTY3MDViLDYzOWM1NWExLTMwZGQtNjAwMC03NmY0LWZiODQ4NjU2NzA1YixIblhTbUx6MTlFNmZIY3dMUVNHa0tRLDAsMCwwLCwsLDI2NTA0Njc3NDM5OTk5OTk5OTksMCwsLCwsLCwwLCwxOTM2OTEsTDVXdU0yLXhQeFRjTVNtbzF3NmpIb05zX1hvLGhCNzlDNW9scmE2cEtRK2FkaGJSMXpFZTUwc3hJVlozcWJqT2pOSHNLWERoZzdMTW9ReEp2QUtqMU9HdXh1TmEzdldVUG5Fb0l1am00OEVSS3kwU2VvVFRYTFJkMEozNlpBVDV1ZWU0QWlEUHVLRTZQcEV1UUNMd2NycGthWGNuZ2N6cTBJRHZoWTlvMGdBSUdvT3dIc1dNblpVT3RaZzZyOXNHOXBlM2JPeTFPMGJBczhvUmFJVGUvODJPSHlZa05UbG1pS3VNOW84b1VTOUlJQS9hY0FtVWprWGU1dWdHQU96Q0w5MTRGaHhHbVhTSDFnVFpsR2hzSkhuNkZZZTJ3LytONXJEQys4WUFjY0MzT3czZkxDeE1NMVI0UGRETllYcmZKRFVmWjZjOW9QQWpkblU5ZFRTV3Bna1lTdis2RnpweDJDYmp1V3NzTW45Ylh2QW1tdz09PC9TUD4=; FeatureOverrides_experiments=[]
Source: global traffic HTTP traffic detected: GET /_layouts/15/SPComponentRegistry.ashx?projects=[%22spfx%22]&languages=%5B%5D HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-aliveAccept: application/jsonUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Content-Type: application/jsonSec-Fetch-Site: same-originSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://radiantlogics-my.sharepoint.com/_layouts/15/odspserviceworkerproxy.aspx?swManifestName=spserviceworker&debug=false&bypass=false&navigationPreloadHeaderValue=%7B%22supportsFeatures%22%3A%5B1855%2C61313%5D%7D&dataHost=Nucleus&applications=%5B%7B%22id%22%3A%22STS%22%2C%22swPrefetchManifestName%22%3A%22stsserviceworkerprefetch%22%7D%2C%7B%22id%22%3A%22SPHome%22%7D%2C%7B%22id%22%3A%22SitePages%22%7D%2C%7B%22id%22%3A%22Embed%22%7D%2C%7B%22id%22%3A%22CreateGroup%22%7D%2C%7B%22id%22%3A%22SingleWebPart%22%7D%2C%7B%22id%22%3A%22VivaHome%22%7D%2C%7B%22id%22%3A%22BrokerLogon%22%7D%2C%7B%22id%22%3A%22Clipchamp%22%7D%2C%7B%22id%22%3A%22MeeBridge%22%7D%2C%7B%22id%22%3A%22SPStart%22%7D%2C%7B%22id%22%3A%22Agreements%22%7D%5D&list=v2&prefetchListData=true&defaultBrotli=true&authenticateFast=true&inlineAuth=v2&wwData=true&enableTheming=true&prefetchFilebrowserPageInTeams=true&FUIV9Flights=[-83099905,3]&spStartApplicationWebBundle=true&enableIntegrities=true&streamViewServerLoad=true&streamInlineScript=trueAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=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; FeatureOverrides_experiments=[]
Source: global traffic HTTP traffic detected: GET /personal/asharma_radiantlogics_onmicrosoft_com/_layouts/15/undefined/_layouts/15/onedrive.aspx?view=1 HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=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; FeatureOverrides_experiments=[]
Source: global traffic HTTP traffic detected: GET /_layouts/15/1033/styles/corev15.css?rev=m%2Fe%2BPmKMYmkX%2Fs1lVR9Uww%3D%3DTAG208 HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://radiantlogics-my.sharepoint.com/personal/asharma_radiantlogics_onmicrosoft_com/_layouts/15/undefined/_layouts/15/onedrive.aspx?view=1Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=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; FeatureOverrides_experiments=[]
Source: global traffic HTTP traffic detected: GET /_layouts/15/1033/styles/error.css?rev=tF7fyfzbaQzNoASoSDlV4A%3D%3DTAG208 HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://radiantlogics-my.sharepoint.com/personal/asharma_radiantlogics_onmicrosoft_com/_layouts/15/undefined/_layouts/15/onedrive.aspx?view=1Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=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; FeatureOverrides_experiments=[]
Source: global traffic HTTP traffic detected: GET /ScriptResource.axd?d=yABZQKb7Dn2-w1HpqF45aYszkfIzPg_NIy25UekYbVorHnIQ3S_TzN1_dXIs4PBSf14PilhkJPMpOh1gjX1ue9-gWdP2Y6TIu4da3ZWrXCvxHCfBF9EVufWAWxWEQg2O_3T5IM4w06slA-WO2MdyPgh1fV8dmZFAnf6RBUlKw2D6k7onoPTg2Dt5vi_fHUYu0&t=7a0cc936 HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://radiantlogics-my.sharepoint.com/personal/asharma_radiantlogics_onmicrosoft_com/_layouts/15/undefined/_layouts/15/onedrive.aspx?view=1Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=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; FeatureOverrides_experiments=[]
Source: global traffic HTTP traffic detected: GET /ScriptResource.axd?d=xwHZe-36bOvSfHn45-A4k71srolJeaWLmYNSjIL90PabrrLNvbBmvZ8Hr8QGY0WtkA3v7RwqmMKgKVXNC02WuVOsiioq1W1Dze4KQl16ivSLm8Ammnc3WSPn-4BafeAHEyEVp3eAXwOVCY4kWbQdNAzlk6dCZMQE2aZoCAY89tt5WGqlMJ9DNSIhhbBmiqov0&t=7a0cc936 HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://radiantlogics-my.sharepoint.com/personal/asharma_radiantlogics_onmicrosoft_com/_layouts/15/undefined/_layouts/15/onedrive.aspx?view=1Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=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; FeatureOverrides_experiments=[]
Source: global traffic HTTP traffic detected: GET /WebResource.axd?d=ySpzAHlEyScQ3-P1aJhclLqNtLKxjNoAQiHiCBE_vZnmvNqwLAzEPiOVx-tJhXZ1qp6mmRAVdwrmZ_YGQGRnH1p-xE7x0tXoCUfMMEcNogc1&t=638588829843638381 HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://radiantlogics-my.sharepoint.com/personal/asharma_radiantlogics_onmicrosoft_com/_layouts/15/undefined/_layouts/15/onedrive.aspx?view=1Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=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; FeatureOverrides_experiments=[]
Source: global traffic HTTP traffic detected: GET /ScriptResource.axd?d=xwHZe-36bOvSfHn45-A4k71srolJeaWLmYNSjIL90PabrrLNvbBmvZ8Hr8QGY0WtkA3v7RwqmMKgKVXNC02WuVOsiioq1W1Dze4KQl16ivSLm8Ammnc3WSPn-4BafeAHEyEVp3eAXwOVCY4kWbQdNAzlk6dCZMQE2aZoCAY89tt5WGqlMJ9DNSIhhbBmiqov0&t=7a0cc936 HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=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; FeatureOverrides_experiments=[]
Source: global traffic HTTP traffic detected: GET /ScriptResource.axd?d=yABZQKb7Dn2-w1HpqF45aYszkfIzPg_NIy25UekYbVorHnIQ3S_TzN1_dXIs4PBSf14PilhkJPMpOh1gjX1ue9-gWdP2Y6TIu4da3ZWrXCvxHCfBF9EVufWAWxWEQg2O_3T5IM4w06slA-WO2MdyPgh1fV8dmZFAnf6RBUlKw2D6k7onoPTg2Dt5vi_fHUYu0&t=7a0cc936 HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=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; FeatureOverrides_experiments=[]
Source: global traffic HTTP traffic detected: GET /WebResource.axd?d=ySpzAHlEyScQ3-P1aJhclLqNtLKxjNoAQiHiCBE_vZnmvNqwLAzEPiOVx-tJhXZ1qp6mmRAVdwrmZ_YGQGRnH1p-xE7x0tXoCUfMMEcNogc1&t=638588829843638381 HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=77u/PD94bWwgdmVyc2lvbj0iMS4wIiBlbmNvZGluZz0idXRmLTgiPz48U1A+VjEzLDBoLmZ8bWVtYmVyc2hpcHx1cm4lM2FzcG8lM2Fhbm9uIzUwOWQ2NzE5YTYyNmY1MmNjYzhlYjYwNDJjYTVkNTVhMGY1YjhmNTBiZDdhNmZiYmNkZGUxMjdlYTIwOTBmNGQsMCMuZnxtZW1iZXJzaGlwfHVybiUzYXNwbyUzYWFub24jNTA5ZDY3MTlhNjI2ZjUyY2NjOGViNjA0MmNhNWQ1NWEwZjViOGY1MGJkN2E2ZmJiY2RkZTEyN2VhMjA5MGY0ZCwxMzM3MjI1MTk4ODAwMDAwMDAsMCwxMzM3MjMzODA4ODY1MzA2NDYsMC4wLjAuMCwyNTgsYzZiMzNmYjItM2M5OC00NTQwLThkOGItNjdlZTE3NzY1ODNlLCwsNjM5YzU1YTEtMzBkZC02MDAwLTc2ZjQtZmI4NDg2NTY3MDViLDYzOWM1NWExLTMwZGQtNjAwMC03NmY0LWZiODQ4NjU2NzA1YixIblhTbUx6MTlFNmZIY3dMUVNHa0tRLDAsMCwwLCwsLDI2NTA0Njc3NDM5OTk5OTk5OTksMCwsLCwsLCwwLCwxOTM2OTEsTDVXdU0yLXhQeFRjTVNtbzF3NmpIb05zX1hvLGhCNzlDNW9scmE2cEtRK2FkaGJSMXpFZTUwc3hJVlozcWJqT2pOSHNLWERoZzdMTW9ReEp2QUtqMU9HdXh1TmEzdldVUG5Fb0l1am00OEVSS3kwU2VvVFRYTFJkMEozNlpBVDV1ZWU0QWlEUHVLRTZQcEV1UUNMd2NycGthWGNuZ2N6cTBJRHZoWTlvMGdBSUdvT3dIc1dNblpVT3RaZzZyOXNHOXBlM2JPeTFPMGJBczhvUmFJVGUvODJPSHlZa05UbG1pS3VNOW84b1VTOUlJQS9hY0FtVWprWGU1dWdHQU96Q0w5MTRGaHhHbVhTSDFnVFpsR2hzSkhuNkZZZTJ3LytONXJEQys4WUFjY0MzT3czZkxDeE1NMVI0UGRETllYcmZKRFVmWjZjOW9QQWpkblU5ZFRTV3Bna1lTdis2RnpweDJDYmp1V3NzTW45Ylh2QW1tdz09PC9TUD4=; FeatureOverrides_experiments=[]
Source: global traffic HTTP traffic detected: GET /_layouts/15/images/favicon.ico?rev=47 HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://radiantlogics-my.sharepoint.com/personal/asharma_radiantlogics_onmicrosoft_com/_layouts/15/undefined/_layouts/15/onedrive.aspx?view=1Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=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; FeatureOverrides_experiments=[]
Source: global traffic HTTP traffic detected: GET /_layouts/15/images/favicon.ico?rev=47 HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=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; FeatureOverrides_experiments=[]
Source: global traffic HTTP traffic detected: GET /personal/asharma_radiantlogics_onmicrosoft_com HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=77u/PD94bWwgdmVyc2lvbj0iMS4wIiBlbmNvZGluZz0idXRmLTgiPz48U1A+VjEzLDBoLmZ8bWVtYmVyc2hpcHx1cm4lM2FzcG8lM2Fhbm9uIzUwOWQ2NzE5YTYyNmY1MmNjYzhlYjYwNDJjYTVkNTVhMGY1YjhmNTBiZDdhNmZiYmNkZGUxMjdlYTIwOTBmNGQsMCMuZnxtZW1iZXJzaGlwfHVybiUzYXNwbyUzYWFub24jNTA5ZDY3MTlhNjI2ZjUyY2NjOGViNjA0MmNhNWQ1NWEwZjViOGY1MGJkN2E2ZmJiY2RkZTEyN2VhMjA5MGY0ZCwxMzM3MjI1MTk4ODAwMDAwMDAsMCwxMzM3MjMzODA4ODY1MzA2NDYsMC4wLjAuMCwyNTgsYzZiMzNmYjItM2M5OC00NTQwLThkOGItNjdlZTE3NzY1ODNlLCwsNjM5YzU1YTEtMzBkZC02MDAwLTc2ZjQtZmI4NDg2NTY3MDViLDYzOWM1NWExLTMwZGQtNjAwMC03NmY0LWZiODQ4NjU2NzA1YixIblhTbUx6MTlFNmZIY3dMUVNHa0tRLDAsMCwwLCwsLDI2NTA0Njc3NDM5OTk5OTk5OTksMCwsLCwsLCwwLCwxOTM2OTEsTDVXdU0yLXhQeFRjTVNtbzF3NmpIb05zX1hvLGhCNzlDNW9scmE2cEtRK2FkaGJSMXpFZTUwc3hJVlozcWJqT2pOSHNLWERoZzdMTW9ReEp2QUtqMU9HdXh1TmEzdldVUG5Fb0l1am00OEVSS3kwU2VvVFRYTFJkMEozNlpBVDV1ZWU0QWlEUHVLRTZQcEV1UUNMd2NycGthWGNuZ2N6cTBJRHZoWTlvMGdBSUdvT3dIc1dNblpVT3RaZzZyOXNHOXBlM2JPeTFPMGJBczhvUmFJVGUvODJPSHlZa05UbG1pS3VNOW84b1VTOUlJQS9hY0FtVWprWGU1dWdHQU96Q0w5MTRGaHhHbVhTSDFnVFpsR2hzSkhuNkZZZTJ3LytONXJEQys4WUFjY0MzT3czZkxDeE1NMVI0UGRETllYcmZKRFVmWjZjOW9QQWpkblU5ZFRTV3Bna1lTdis2RnpweDJDYmp1V3NzTW45Ylh2QW1tdz09PC9TUD4=; FeatureOverrides_experiments=[]; WSS_FullScreenMode=false
Source: global traffic HTTP traffic detected: GET /personal/asharma_radiantlogics_onmicrosoft_com/_layouts/15/AccessDenied.aspx?Source=https%3A%2F%2Fradiantlogics%2Dmy%2Esharepoint%2Ecom%2Fpersonal%2Fasharma%5Fradiantlogics%5Fonmicrosoft%5Fcom&correlation=6d9c55a1%2D60b1%2D6000%2D7e5f%2De5f5b8c7de09 HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-aliveUpgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-Dest: documentsec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=77u/PD94bWwgdmVyc2lvbj0iMS4wIiBlbmNvZGluZz0idXRmLTgiPz48U1A+VjEzLDBoLmZ8bWVtYmVyc2hpcHx1cm4lM2FzcG8lM2Fhbm9uIzUwOWQ2NzE5YTYyNmY1MmNjYzhlYjYwNDJjYTVkNTVhMGY1YjhmNTBiZDdhNmZiYmNkZGUxMjdlYTIwOTBmNGQsMCMuZnxtZW1iZXJzaGlwfHVybiUzYXNwbyUzYWFub24jNTA5ZDY3MTlhNjI2ZjUyY2NjOGViNjA0MmNhNWQ1NWEwZjViOGY1MGJkN2E2ZmJiY2RkZTEyN2VhMjA5MGY0ZCwxMzM3MjI1MTk4ODAwMDAwMDAsMCwxMzM3MjMzODA4ODY1MzA2NDYsMC4wLjAuMCwyNTgsYzZiMzNmYjItM2M5OC00NTQwLThkOGItNjdlZTE3NzY1ODNlLCwsNjM5YzU1YTEtMzBkZC02MDAwLTc2ZjQtZmI4NDg2NTY3MDViLDYzOWM1NWExLTMwZGQtNjAwMC03NmY0LWZiODQ4NjU2NzA1YixIblhTbUx6MTlFNmZIY3dMUVNHa0tRLDAsMCwwLCwsLDI2NTA0Njc3NDM5OTk5OTk5OTksMCwsLCwsLCwwLCwxOTM2OTEsTDVXdU0yLXhQeFRjTVNtbzF3NmpIb05zX1hvLGhCNzlDNW9scmE2cEtRK2FkaGJSMXpFZTUwc3hJVlozcWJqT2pOSHNLWERoZzdMTW9ReEp2QUtqMU9HdXh1TmEzdldVUG5Fb0l1am00OEVSS3kwU2VvVFRYTFJkMEozNlpBVDV1ZWU0QWlEUHVLRTZQcEV1UUNMd2NycGthWGNuZ2N6cTBJRHZoWTlvMGdBSUdvT3dIc1dNblpVT3RaZzZyOXNHOXBlM2JPeTFPMGJBczhvUmFJVGUvODJPSHlZa05UbG1pS3VNOW84b1VTOUlJQS9hY0FtVWprWGU1dWdHQU96Q0w5MTRGaHhHbVhTSDFnVFpsR2hzSkhuNkZZZTJ3LytONXJEQys4WUFjY0MzT3czZkxDeE1NMVI0UGRETllYcmZKRFVmWjZjOW9QQWpkblU5ZFRTV3Bna1lTdis2RnpweDJDYmp1V3NzTW45Ylh2QW1tdz09PC9TUD4=; FeatureOverrides_experiments=[]; WSS_FullScreenMode=false
Source: global traffic HTTP traffic detected: GET /_layouts/15/1033/styles/errordisplay.css?rev=0exfFR1nIzLRO1bRiOlTVA%3D%3DTAG208 HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://radiantlogics-my.sharepoint.com/personal/asharma_radiantlogics_onmicrosoft_com/_layouts/15/AccessDenied.aspx?Source=https%3A%2F%2Fradiantlogics%2Dmy%2Esharepoint%2Ecom%2Fpersonal%2Fasharma%5Fradiantlogics%5Fonmicrosoft%5Fcom&correlation=6d9c55a1%2D60b1%2D6000%2D7e5f%2De5f5b8c7de09Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=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; FeatureOverrides_experiments=[]; WSS_FullScreenMode=false
Source: global traffic HTTP traffic detected: GET /_layouts/15/1033/styles/corev15.css?rev=m%2Fe%2BPmKMYmkX%2Fs1lVR9Uww%3D%3DTAG208 HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://radiantlogics-my.sharepoint.com/personal/asharma_radiantlogics_onmicrosoft_com/_layouts/15/AccessDenied.aspx?Source=https%3A%2F%2Fradiantlogics%2Dmy%2Esharepoint%2Ecom%2Fpersonal%2Fasharma%5Fradiantlogics%5Fonmicrosoft%5Fcom&correlation=6d9c55a1%2D60b1%2D6000%2D7e5f%2De5f5b8c7de09Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=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; FeatureOverrides_experiments=[]; WSS_FullScreenMode=falseRange: bytes=293080-293080If-Range: "a5871f6ae812db1:0"
Source: global traffic HTTP traffic detected: GET /_layouts/15/1033/styles/corev15.css?rev=m%2Fe%2BPmKMYmkX%2Fs1lVR9Uww%3D%3DTAG208 HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://radiantlogics-my.sharepoint.com/personal/asharma_radiantlogics_onmicrosoft_com/_layouts/15/AccessDenied.aspx?Source=https%3A%2F%2Fradiantlogics%2Dmy%2Esharepoint%2Ecom%2Fpersonal%2Fasharma%5Fradiantlogics%5Fonmicrosoft%5Fcom&correlation=6d9c55a1%2D60b1%2D6000%2D7e5f%2De5f5b8c7de09Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=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; FeatureOverrides_experiments=[]; WSS_FullScreenMode=falseRange: bytes=293080-341639If-Range: "a5871f6ae812db1:0"
Source: global traffic HTTP traffic detected: GET /_layouts/15/images/BlueArrow.gif HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://radiantlogics-my.sharepoint.com/personal/asharma_radiantlogics_onmicrosoft_com/_layouts/15/AccessDenied.aspx?Source=https%3A%2F%2Fradiantlogics%2Dmy%2Esharepoint%2Ecom%2Fpersonal%2Fasharma%5Fradiantlogics%5Fonmicrosoft%5Fcom&correlation=6d9c55a1%2D60b1%2D6000%2D7e5f%2De5f5b8c7de09Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=77u/PD94bWwgdmVyc2lvbj0iMS4wIiBlbmNvZGluZz0idXRmLTgiPz48U1A+VjEzLDBoLmZ8bWVtYmVyc2hpcHx1cm4lM2FzcG8lM2Fhbm9uIzUwOWQ2NzE5YTYyNmY1MmNjYzhlYjYwNDJjYTVkNTVhMGY1YjhmNTBiZDdhNmZiYmNkZGUxMjdlYTIwOTBmNGQsMCMuZnxtZW1iZXJzaGlwfHVybiUzYXNwbyUzYWFub24jNTA5ZDY3MTlhNjI2ZjUyY2NjOGViNjA0MmNhNWQ1NWEwZjViOGY1MGJkN2E2ZmJiY2RkZTEyN2VhMjA5MGY0ZCwxMzM3MjI1MTk4ODAwMDAwMDAsMCwxMzM3MjMzODA4ODY1MzA2NDYsMC4wLjAuMCwyNTgsYzZiMzNmYjItM2M5OC00NTQwLThkOGItNjdlZTE3NzY1ODNlLCwsNjM5YzU1YTEtMzBkZC02MDAwLTc2ZjQtZmI4NDg2NTY3MDViLDYzOWM1NWExLTMwZGQtNjAwMC03NmY0LWZiODQ4NjU2NzA1YixIblhTbUx6MTlFNmZIY3dMUVNHa0tRLDAsMCwwLCwsLDI2NTA0Njc3NDM5OTk5OTk5OTksMCwsLCwsLCwwLCwxOTM2OTEsTDVXdU0yLXhQeFRjTVNtbzF3NmpIb05zX1hvLGhCNzlDNW9scmE2cEtRK2FkaGJSMXpFZTUwc3hJVlozcWJqT2pOSHNLWERoZzdMTW9ReEp2QUtqMU9HdXh1TmEzdldVUG5Fb0l1am00OEVSS3kwU2VvVFRYTFJkMEozNlpBVDV1ZWU0QWlEUHVLRTZQcEV1UUNMd2NycGthWGNuZ2N6cTBJRHZoWTlvMGdBSUdvT3dIc1dNblpVT3RaZzZyOXNHOXBlM2JPeTFPMGJBczhvUmFJVGUvODJPSHlZa05UbG1pS3VNOW84b1VTOUlJQS9hY0FtVWprWGU1dWdHQU96Q0w5MTRGaHhHbVhTSDFnVFpsR2hzSkhuNkZZZTJ3LytONXJEQys4WUFjY0MzT3czZkxDeE1NMVI0UGRETllYcmZKRFVmWjZjOW9QQWpkblU5ZFRTV3Bna1lTdis2RnpweDJDYmp1V3NzTW45Ylh2QW1tdz09PC9TUD4=; FeatureOverrides_experiments=[]; WSS_FullScreenMode=false
Source: global traffic HTTP traffic detected: GET /_layouts/15/images/BlueArrow.gif HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=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; FeatureOverrides_experiments=[]; WSS_FullScreenMode=false
Source: global traffic HTTP traffic detected: GET /personal/asharma_radiantlogics_onmicrosoft_com/_layouts/15/AccessDenied.aspx?correlation=739c55a1%2De0e8%2D6000%2D7e5f%2Dec6082906526 HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=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; FeatureOverrides_experiments=[]; WSS_FullScreenMode=false
Source: global traffic DNS traffic detected: DNS query: www.google.com
Source: global traffic DNS traffic detected: DNS query: radiantlogics-my.sharepoint.com
Source: global traffic DNS traffic detected: DNS query: m365cdn.nel.measure.office.net
Source: global traffic DNS traffic detected: DNS query: southcentralus0-1.pushnp.svc.ms
Source: global traffic DNS traffic detected: DNS query: radiantlogics.sharepoint.com
Source: global traffic DNS traffic detected: DNS query: r4.res.office365.com
Source: global traffic DNS traffic detected: DNS query: westus31-mediap.svc.ms
Source: global traffic DNS traffic detected: DNS query: config.fp.measure.office.com
Source: global traffic DNS traffic detected: DNS query: ow1.res.office365.com
Source: global traffic DNS traffic detected: DNS query: c9e1fbe74ed94f5250e228dcfd68da33.fp.measure.office.com
Source: global traffic DNS traffic detected: DNS query: graph-next.fp.measure.office.com
Source: global traffic DNS traffic detected: DNS query: upload.fp.measure.office.com
Source: global traffic DNS traffic detected: DNS query: spo.nel.measure.office.net
Source: unknown HTTP traffic detected: POST /personal/asharma_radiantlogics_onmicrosoft_com/_api/v2.1/graphql HTTP/1.1Host: radiantlogics-my.sharepoint.comConnection: keep-aliveContent-Length: 507sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"accept: application/json;odata=verboseContent-Type: application/json;odata=verboseX-ServiceWorker-Strategy: CacheFirstsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Origin: https://radiantlogics-my.sharepoint.comSec-Fetch-Site: same-originSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://radiantlogics-my.sharepoint.com/personal/asharma_radiantlogics_onmicrosoft_com/_layouts/15/onedrive.aspx?id=%2Fpersonal%2Fasharma%5Fradiantlogics%5Fonmicrosoft%5Fcom%2FDocuments%2FRadiant%20Logic%20Inc&ga=1Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: FedAuth=77u/PD94bWwgdmVyc2lvbj0iMS4wIiBlbmNvZGluZz0idXRmLTgiPz48U1A+VjEzLDBoLmZ8bWVtYmVyc2hpcHx1cm4lM2FzcG8lM2Fhbm9uIzUwOWQ2NzE5YTYyNmY1MmNjYzhlYjYwNDJjYTVkNTVhMGY1YjhmNTBiZDdhNmZiYmNkZGUxMjdlYTIwOTBmNGQsMCMuZnxtZW1iZXJzaGlwfHVybiUzYXNwbyUzYWFub24jNTA5ZDY3MTlhNjI2ZjUyY2NjOGViNjA0MmNhNWQ1NWEwZjViOGY1MGJkN2E2ZmJiY2RkZTEyN2VhMjA5MGY0ZCwxMzM3MjI1MTk4ODAwMDAwMDAsMCwxMzM3MjMzODA4ODY1MzA2NDYsMC4wLjAuMCwyNTgsYzZiMzNmYjItM2M5OC00NTQwLThkOGItNjdlZTE3NzY1ODNlLCwsNjM5YzU1YTEtMzBkZC02MDAwLTc2ZjQtZmI4NDg2NTY3MDViLDYzOWM1NWExLTMwZGQtNjAwMC03NmY0LWZiODQ4NjU2NzA1YixIblhTbUx6MTlFNmZIY3dMUVNHa0tRLDAsMCwwLCwsLDI2NTA0Njc3NDM5OTk5OTk5OTksMCwsLCwsLCwwLCwxOTM2OTEsTDVXdU0yLXhQeFRjTVNtbzF3NmpIb05zX1hvLGhCNzlDNW9scmE2cEtRK2FkaGJSMXpFZTUwc3hJVlozcWJqT2pOSHNLWERoZzdMTW9ReEp2QUtqMU9HdXh1TmEzdldVUG5Fb0l1am00OEVSS3kwU2VvVFRYTFJkMEozNlpBVDV1ZWU0QWlEUHVLRTZQcEV1UUNMd2NycGthWGNuZ2N6cTBJRHZoWTlvMGdBSUdvT3dIc1dNblpVT3RaZzZyOXNHOXBlM2JPeTFPMGJBczhvUmFJVGUvODJPSHlZa05UbG1pS3VNOW84b1VTOUlJQS9hY0FtVWprWGU1dWdHQU96Q0w5MTRGaHhHbVhTSDFnVFpsR2hzSkhuNkZZZTJ3LytONXJEQys4WUFjY0MzT3czZkxDeE1NMVI0UGRETllYcmZKRFVmWjZjOW9QQWpkblU5ZFRTV3Bna1lTdis2RnpweDJDYmp1V3NzTW45Ylh2QW1tdz09PC9TUD4=
Source: chromecache_479.3.dr, chromecache_568.3.dr, chromecache_495.3.dr, chromecache_557.3.dr, chromecache_447.3.dr, chromecache_481.3.dr String found in binary or memory: http://fb.me/use-check-prop-types
Source: chromecache_703.3.dr, chromecache_661.3.dr String found in binary or memory: http://www.contoso.com
Source: chromecache_587.3.dr String found in binary or memory: http://www.opensource.org/licenses/mit-license.php
Source: chromecache_580.3.dr, chromecache_706.3.dr String found in binary or memory: https://1drv.com/
Source: chromecache_580.3.dr, chromecache_706.3.dr String found in binary or memory: https://centralus1-mediad.svc.ms
Source: chromecache_580.3.dr, chromecache_706.3.dr String found in binary or memory: https://clients.config.office.net/user/v1.0/web/policies
Source: chromecache_580.3.dr, chromecache_706.3.dr String found in binary or memory: https://dynmsg.modpim.com/
Source: chromecache_580.3.dr, chromecache_706.3.dr String found in binary or memory: https://livefilestore.com/
Source: chromecache_580.3.dr, chromecache_478.3.dr, chromecache_473.3.dr, chromecache_706.3.dr String found in binary or memory: https://media.cloudapp.net
Source: chromecache_580.3.dr, chromecache_706.3.dr String found in binary or memory: https://messaging-int.msonerm.com/
Source: chromecache_580.3.dr, chromecache_478.3.dr, chromecache_473.3.dr, chromecache_706.3.dr String found in binary or memory: https://northcentralus1-medias.svc.ms
Source: chromecache_717.3.dr, chromecache_501.3.dr String found in binary or memory: https://onedrive.cloud.microsoft
Source: chromecache_717.3.dr, chromecache_501.3.dr String found in binary or memory: https://onedrive.dev.cloud.microsoft
Source: chromecache_602.3.dr, chromecache_606.3.dr String found in binary or memory: https://onedrive.live.com/?gologin=1
Source: chromecache_580.3.dr, chromecache_706.3.dr String found in binary or memory: https://portal.office.com/
Source: 7za.exe, 0000000E.00000003.1668757453.0000000001560000.00000004.00000800.00020000.00000000.sdmp, ACCESS DOCUMENT HERE FOR REVIEW.url.14.dr, chromecache_552.3.dr, 30e41acd-e1a8-4ac9-89a0-bd771c52a54c.tmp.0.dr String found in binary or memory: https://radiantlogic.access1drive.com
Source: chromecache_706.3.dr String found in binary or memory: https://reactjs.org/link/react-polyfills
Source: chromecache_580.3.dr, chromecache_706.3.dr String found in binary or memory: https://res-1-sdf.cdn.office.net
Source: chromecache_580.3.dr, chromecache_602.3.dr, chromecache_706.3.dr String found in binary or memory: https://res-1.cdn.office.net
Source: chromecache_537.3.dr, chromecache_600.3.dr String found in binary or memory: https://res-1.cdn.office.net/bld/_layouts/15/16.0.25311.12012/1033/initstrings.js
Source: chromecache_600.3.dr String found in binary or memory: https://res-1.cdn.office.net/bld/_layouts/15/16.0.25311.12012/blank.js
Source: chromecache_537.3.dr, chromecache_600.3.dr String found in binary or memory: https://res-1.cdn.office.net/bld/_layouts/15/16.0.25311.12012/init.js
Source: chromecache_537.3.dr, chromecache_600.3.dr String found in binary or memory: https://res-1.cdn.office.net/bld/_layouts/15/16.0.25311.12012/theming.js
Source: chromecache_616.3.dr String found in binary or memory: https://res-1.cdn.office.net/files/fabric-cdn-prod_20230815.002/assets
Source: chromecache_602.3.dr, chromecache_533.3.dr String found in binary or memory: https://res-1.cdn.office.net/files/odsp-web-prod_2024-09-13.007/
Source: chromecache_533.3.dr String found in binary or memory: https://res-1.cdn.office.net/files/odsp-web-prod_2024-09-13.007/stsserviceworkerprefetch/stsservicew
Source: chromecache_632.3.dr, chromecache_502.3.dr, chromecache_533.3.dr String found in binary or memory: https://res-1.cdn.office.net/files/odsp-web-prod_2024-09-20.006/
Source: chromecache_533.3.dr String found in binary or memory: https://res-1.cdn.office.net/files/odsp-web-prod_2024-09-20.006/spserviceworker.js
Source: chromecache_632.3.dr, chromecache_502.3.dr String found in binary or memory: https://res-1.cdn.office.net/files/odsp-web-prod_2024-09-20.006/spwebworker.js
Source: chromecache_602.3.dr String found in binary or memory: https://res-1.cdn.office.net/files/sp-client/odsp-media-4705cd18
Source: chromecache_602.3.dr String found in binary or memory: https://res-1.cdn.office.net/files/sp-client/odsp.1ds/odsp.1ds.lib-67f10919
Source: chromecache_602.3.dr String found in binary or memory: https://res-1.cdn.office.net/files/sp-client/odsp.aria/odsp.aria.lib-2306eec9
Source: chromecache_602.3.dr String found in binary or memory: https://res-1.cdn.office.net/files/sp-client/odsp.fluentui.core/fui.core-83eff072
Source: chromecache_602.3.dr String found in binary or memory: https://res-1.cdn.office.net/files/sp-client/odsp.fluentui.utilities/fui.util-153996e1
Source: chromecache_602.3.dr String found in binary or memory: https://res-1.cdn.office.net/files/sp-client/odsp.knockout/odsp.knockout.lib-da617bab
Source: chromecache_602.3.dr String found in binary or memory: https://res-1.cdn.office.net/files/sp-client/odsp.react/odsp.react.lib-361c9c69
Source: chromecache_602.3.dr String found in binary or memory: https://res-1.cdn.office.net/files/sp-client/odsp.tslib/tslib-e9cf7774
Source: chromecache_602.3.dr String found in binary or memory: https://res-1.cdn.office.net/files/sp-client/odsp.utilities/odsp.util-2d58ae90
Source: chromecache_602.3.dr String found in binary or memory: https://res-2.cdn.office.net/files/odsp-web-prod_2024-09-13.007/
Source: chromecache_537.3.dr String found in binary or memory: https://res.cdn.office.net/teams-js/2.21.0/js/MicrosoftTeams.min.js
Source: chromecache_602.3.dr String found in binary or memory: https://shell.cdn.office.net
Source: chromecache_602.3.dr, chromecache_533.3.dr String found in binary or memory: https://shell.cdn.office.net/api/ShellBootstrapper/business/OneShell
Source: chromecache_580.3.dr, chromecache_706.3.dr String found in binary or memory: https://shellppe.msocdn.com
Source: chromecache_580.3.dr, chromecache_706.3.dr String found in binary or memory: https://shellprod.msocdn.com
Source: chromecache_602.3.dr String found in binary or memory: https://spoprod-a.akamaihd.net/files/odsp-common-library-prod_2019-02-15_20190219.002/require.js
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/leelawadeeui-thai/leelawadeeui-bold.w
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/leelawadeeui-thai/leelawadeeui-regula
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/leelawadeeui-thai/leelawadeeui-semili
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-arabic/segoeui-bold.woff
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-arabic/segoeui-bold.woff2
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-arabic/segoeui-light.woff
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-arabic/segoeui-light.woff2
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-arabic/segoeui-regular.woff
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-arabic/segoeui-regular.woff2
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-arabic/segoeui-semibold.woff
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-arabic/segoeui-semibold.woff2
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-arabic/segoeui-semilight.woff
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-cyrillic/segoeui-bold.woff
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-cyrillic/segoeui-bold.woff2
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-cyrillic/segoeui-light.woff
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-cyrillic/segoeui-light.woff2
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-cyrillic/segoeui-regular.woff
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-cyrillic/segoeui-semibold.wof
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-cyrillic/segoeui-semilight.wo
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-easteuropean/segoeui-bold.wof
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-easteuropean/segoeui-light.wo
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-easteuropean/segoeui-regular.
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-easteuropean/segoeui-semibold
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-easteuropean/segoeui-semiligh
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-greek/segoeui-bold.woff
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-greek/segoeui-bold.woff2
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-greek/segoeui-light.woff
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-greek/segoeui-light.woff2
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-greek/segoeui-regular.woff
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-greek/segoeui-regular.woff2
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-greek/segoeui-semibold.woff
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-greek/segoeui-semibold.woff2
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-greek/segoeui-semilight.woff
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-greek/segoeui-semilight.woff2
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-hebrew/segoeui-bold.woff
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-hebrew/segoeui-bold.woff2
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-hebrew/segoeui-light.woff
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-hebrew/segoeui-light.woff2
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-hebrew/segoeui-regular.woff
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-hebrew/segoeui-regular.woff2
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-hebrew/segoeui-semibold.woff
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-hebrew/segoeui-semibold.woff2
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-hebrew/segoeui-semilight.woff
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-vietnamese/segoeui-bold.woff
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-vietnamese/segoeui-bold.woff2
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-vietnamese/segoeui-light.woff
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-vietnamese/segoeui-regular.wo
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-vietnamese/segoeui-semibold.w
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-vietnamese/segoeui-semilight.
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-westeuropean/segoeui-bold.wof
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-westeuropean/segoeui-light.wo
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-westeuropean/segoeui-regular.
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-westeuropean/segoeui-semibold
Source: chromecache_583.3.dr String found in binary or memory: https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-westeuropean/segoeui-semiligh
Source: chromecache_580.3.dr, chromecache_706.3.dr String found in binary or memory: https://substrate.office.com
Source: chromecache_499.3.dr, chromecache_567.3.dr String found in binary or memory: https://support.office.com/en-us/article/Manage-lists-and-libraries-with-many-items-b8588dae-9387-48
Source: chromecache_606.3.dr String found in binary or memory: https://www.office.com/login?prompt=select_account&ru=%2Flaunch%2F$
Source: chromecache_602.3.dr String found in binary or memory: https://www.office.com/login?prompt=select_account&ru=%2Flaunch%2Fonedrive
Source: chromecache_606.3.dr String found in binary or memory: https://www.office.com/login?ru=%2Flaunch%2F$
Source: chromecache_602.3.dr String found in binary or memory: https://www.office.com/login?ru=%2Flaunch%2Fonedrive
Source: unknown Network traffic detected: HTTP traffic on port 49708 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49672 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49862
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49861
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49860
Source: unknown Network traffic detected: HTTP traffic on port 49949 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49875 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49961 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49795 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49906 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49856
Source: unknown Network traffic detected: HTTP traffic on port 49889 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49675 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49732
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49974
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49731
Source: unknown Network traffic detected: HTTP traffic on port 49732 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49967 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49893 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49784 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49728 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49752 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49861 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49728
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49967
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49845
Source: unknown Network traffic detected: HTTP traffic on port 49674 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49962
Source: unknown Network traffic detected: HTTP traffic on port 49731 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49961
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49960
Source: unknown Network traffic detected: HTTP traffic on port 49745 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49719
Source: unknown Network traffic detected: HTTP traffic on port 49904 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49715 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49715
Source: unknown Network traffic detected: HTTP traffic on port 50037 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49709 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49710
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49797
Source: unknown Network traffic detected: HTTP traffic on port 49677 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49795
Source: unknown Network traffic detected: HTTP traffic on port 49822 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 50020 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49856 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49895 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49913 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49709
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49708
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49949
Source: unknown Network traffic detected: HTTP traffic on port 49907 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49948
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49702
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49822
Source: unknown Network traffic detected: HTTP traffic on port 49710 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49786
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49785
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49784
Source: unknown Network traffic detected: HTTP traffic on port 49974 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 50032 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49785 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49816
Source: unknown Network traffic detected: HTTP traffic on port 49845 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49902 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49816 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49896
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49895
Source: unknown Network traffic detected: HTTP traffic on port 49862 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49893
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 50020
Source: unknown Network traffic detected: HTTP traffic on port 49671 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49960 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49802 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49882 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49802
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49801
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49889
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49888
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49882
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 50032
Source: unknown Network traffic detected: HTTP traffic on port 49702 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49896 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 50037
Source: unknown Network traffic detected: HTTP traffic on port 49719 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49797 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49801 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49860 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49913
Source: unknown Network traffic detected: HTTP traffic on port 49948 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49875
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49752
Source: unknown Network traffic detected: HTTP traffic on port 49786 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49962 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49907
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49906
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49904
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49902
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49745
Source: unknown Network traffic detected: HTTP traffic on port 49888 -> 443
Source: unknown HTTPS traffic detected: 184.28.90.27:443 -> 192.168.2.7:49719 version: TLS 1.2
Source: unknown HTTPS traffic detected: 184.28.90.27:443 -> 192.168.2.7:49732 version: TLS 1.2

System Summary

barindex
Source: C:\Program Files\Google\Chrome\Application\chrome.exe File dump: C:\Users\user\Downloads\OneDrive_2024-10-01.zip (copy) Jump to dropped file
Source: classification engine Classification label: mal52.win@25/477@50/5
Source: C:\Program Files\Google\Chrome\Application\chrome.exe File created: C:\Users\user\Downloads\30e41acd-e1a8-4ac9-89a0-bd771c52a54c.tmp Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Mutant created: NULL
Source: C:\Windows\System32\conhost.exe Mutant created: \Sessions\1\BaseNamedObjects\Local\SM0:6468:120:WilError_03
Source: C:\Windows\SysWOW64\unarchiver.exe File created: C:\Users\user\AppData\Local\Temp\unarchiver.log Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Key opened: HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers Jump to behavior
Source: unknown Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2584 --field-trial-handle=2552,i,7173983362790519727,5828198224500737876,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: unknown Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" "https://radiantlogics-my.sharepoint.com/:f:/g/personal/asharma_radiantlogics_onmicrosoft_com/ErrzGhClH-1EtQegMViR0ycByA4n0Sz6jougdCLyR4Fexw?e=sIngPR"
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Windows\SysWOW64\unarchiver.exe "C:\Windows\SysWOW64\unarchiver.exe" "C:\Users\user\Downloads\OneDrive_2024-10-01.zip"
Source: C:\Windows\SysWOW64\unarchiver.exe Process created: C:\Windows\SysWOW64\7za.exe "C:\Windows\System32\7za.exe" x -pinfected -y -o"C:\Users\user\AppData\Local\Temp\hbm1tjoy.nmh" "C:\Users\user\Downloads\OneDrive_2024-10-01.zip"
Source: C:\Windows\SysWOW64\7za.exe Process created: C:\Windows\System32\conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2584 --field-trial-handle=2552,i,7173983362790519727,5828198224500737876,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Windows\SysWOW64\unarchiver.exe "C:\Windows\SysWOW64\unarchiver.exe" "C:\Users\user\Downloads\OneDrive_2024-10-01.zip" Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Process created: C:\Windows\SysWOW64\7za.exe "C:\Windows\System32\7za.exe" x -pinfected -y -o"C:\Users\user\AppData\Local\Temp\hbm1tjoy.nmh" "C:\Users\user\Downloads\OneDrive_2024-10-01.zip" Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Section loaded: mscoree.dll Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Section loaded: apphelp.dll Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Section loaded: kernel.appcore.dll Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Section loaded: version.dll Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Section loaded: windows.storage.dll Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Section loaded: wldp.dll Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Section loaded: profapi.dll Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Section loaded: cryptsp.dll Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Section loaded: rsaenh.dll Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Section loaded: cryptbase.dll Jump to behavior
Source: C:\Windows\SysWOW64\7za.exe Section loaded: 7z.dll Jump to behavior
Source: Window Recorder Window detected: More than 3 window changes detected
Source: C:\Windows\SysWOW64\unarchiver.exe File opened: C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.9672_none_d08f9da24428a513\MSVCR80.dll Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Memory allocated: 1940000 memory reserve | memory write watch Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Memory allocated: 3610000 memory reserve | memory write watch Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Memory allocated: 1970000 memory commit | memory reserve | memory write watch Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Thread delayed: delay time: 922337203685477 Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe TID: 5368 Thread sleep time: -922337203685477s >= -30000s Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Code function: 13_2_0173B286 GetSystemInfo, 13_2_0173B286
Source: C:\Windows\SysWOW64\unarchiver.exe Thread delayed: delay time: 922337203685477 Jump to behavior
Source: chromecache_599.3.dr, chromecache_514.3.dr, chromecache_477.3.dr Binary or memory string: ",ConnectVirtualMachine:"
Source: chromecache_599.3.dr, chromecache_514.3.dr, chromecache_477.3.dr Binary or memory string: ",DisconnectVirtualMachine:"
Source: C:\Windows\SysWOW64\unarchiver.exe Memory allocated: page read and write | page guard Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Process created: C:\Windows\SysWOW64\7za.exe "C:\Windows\System32\7za.exe" x -pinfected -y -o"C:\Users\user\AppData\Local\Temp\hbm1tjoy.nmh" "C:\Users\user\Downloads\OneDrive_2024-10-01.zip" Jump to behavior
Source: C:\Windows\SysWOW64\unarchiver.exe Key value queried: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography MachineGuid Jump to behavior
  • No. of IPs < 25%
  • 25% < No. of IPs < 50%
  • 50% < No. of IPs < 75%
  • 75% < No. of IPs