IOC Report
https://federalreservebanks.na2.adobesign.com/public/esign?tsid=CBFCIBAACBSCTBABDUAAABACAABAAnDqUucZlzf-2SF4njVzpB7Orw9ysm4q3hrmaF1GHqyL57j2mvw7NcElIrREpaAzrcqH8EsakgHDA2LKuP7U1w58odMTWdM9TaTfrKyHr1dsR-3qUtBvG7r_HD_n4t-Pk&

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 148
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 149
Unicode text, UTF-8 text, with very long lines (52838)
dropped
Chrome Cache Entry: 150
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 151
PNG image data, 39 x 105, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 152
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 153
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 154
Unicode text, UTF-8 text, with very long lines (65533), with no line terminators
dropped
Chrome Cache Entry: 155
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 156
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 157
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 158
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 159
PNG image data, 130 x 130, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 160
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 161
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 162
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 163
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 164
Unicode text, UTF-8 text, with very long lines (65297)
dropped
Chrome Cache Entry: 165
ASCII text, with very long lines (4938)
downloaded
Chrome Cache Entry: 166
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 167
Web Open Font Format (Version 2), CFF, length 41556, version 1.0
downloaded
Chrome Cache Entry: 168
Unicode text, UTF-8 text, with very long lines (65533), with no line terminators
downloaded
Chrome Cache Entry: 169
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 170
Unicode text, UTF-8 text, with very long lines (65297)
downloaded
Chrome Cache Entry: 171
PNG image data, 1020 x 1320, 8-bit/color RGB, non-interlaced
downloaded
Chrome Cache Entry: 172
PNG image data, 130 x 130, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 173
Web Open Font Format (Version 2), CFF, length 29752, version 1.0
downloaded
Chrome Cache Entry: 174
Web Open Font Format (Version 2), CFF, length 29980, version 1.0
downloaded
Chrome Cache Entry: 175
ASCII text, with very long lines (60557)
dropped
Chrome Cache Entry: 176
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 177
ASCII text, with very long lines (60557)
downloaded
Chrome Cache Entry: 178
ASCII text, with very long lines (5632)
downloaded
Chrome Cache Entry: 179
PNG image data, 21 x 21, 4-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 180
Web Open Font Format (Version 2), CFF, length 29924, version 1.0
downloaded
Chrome Cache Entry: 181
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 182
Unicode text, UTF-8 text, with very long lines (2258)
dropped
Chrome Cache Entry: 183
PNG image data, 13 x 13, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 184
Unicode text, UTF-8 text, with very long lines (2258)
dropped
Chrome Cache Entry: 185
Web Open Font Format (Version 2), CFF, length 29980, version 1.0
downloaded
Chrome Cache Entry: 186
JSON data
dropped
Chrome Cache Entry: 187
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 188
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1920x1280, components 3
downloaded
Chrome Cache Entry: 189
JSON data
downloaded
Chrome Cache Entry: 190
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 191
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 192
Unicode text, UTF-8 text, with very long lines (52838)
downloaded
Chrome Cache Entry: 193
JSON data
dropped
Chrome Cache Entry: 194
JSON data
downloaded
Chrome Cache Entry: 195
PNG image data, 13 x 13, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 196
PNG image data, 353 x 60, 8-bit/color RGB, non-interlaced
downloaded
Chrome Cache Entry: 197
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 198
PNG image data, 1020 x 1320, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 199
PNG image data, 700 x 300, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 200
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 201
MS Windows icon resource - 2 icons, 16x16, 32 bits/pixel, 32x32, 32 bits/pixel
downloaded
Chrome Cache Entry: 202
JSON data
dropped
Chrome Cache Entry: 203
PNG image data, 9 x 5, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 204
JSON data
dropped
Chrome Cache Entry: 205
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 206
Unicode text, UTF-8 text, with very long lines (65533), with no line terminators
downloaded
Chrome Cache Entry: 207
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 208
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 209
PNG image data, 176 x 168, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 210
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 211
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 212
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 213
Unicode text, UTF-8 text, with very long lines (2258)
downloaded
Chrome Cache Entry: 214
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 215
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 216
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 217
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 218
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 219
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 220
PNG image data, 39 x 105, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 221
PNG image data, 21 x 21, 4-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 222
MS Windows icon resource - 2 icons, 16x16, 32 bits/pixel, 32x32, 32 bits/pixel
dropped
Chrome Cache Entry: 223
PNG image data, 176 x 168, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 224
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1920x1280, components 3
dropped
Chrome Cache Entry: 225
Web Open Font Format (Version 2), CFF, length 29924, version 1.0
downloaded
Chrome Cache Entry: 226
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 227
PNG image data, 353 x 60, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 228
JSON data
downloaded
Chrome Cache Entry: 229
HTML document, Unicode text, UTF-8 text, with very long lines (28511)
downloaded
Chrome Cache Entry: 230
PNG image data, 700 x 300, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 231
JSON data
downloaded
Chrome Cache Entry: 232
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 233
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 234
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 235
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 236
PNG image data, 9 x 5, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 237
Web Open Font Format (Version 2), CFF, length 29752, version 1.0
downloaded
Chrome Cache Entry: 238
Unicode text, UTF-8 text, with very long lines (39221)
dropped
Chrome Cache Entry: 239
Unicode text, UTF-8 text, with very long lines (2258)
downloaded
Chrome Cache Entry: 240
Unicode text, UTF-8 text, with very long lines (39221)
downloaded
Chrome Cache Entry: 241
Unicode text, UTF-8 text, with very long lines (39523)
downloaded
Chrome Cache Entry: 242
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 243
SVG Scalable Vector Graphics image
dropped
There are 87 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2572 --field-trial-handle=2544,i,691296642768393218,9364821130317650381,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://federalreservebanks.na2.adobesign.com/public/esign?tsid=CBFCIBAACBSCTBABDUAAABACAABAAnDqUucZlzf-2SF4njVzpB7Orw9ysm4q3hrmaF1GHqyL57j2mvw7NcElIrREpaAzrcqH8EsakgHDA2LKuP7U1w58odMTWdM9TaTfrKyHr1dsR-3qUtBvG7r_HD_n4t-Pk&"

URLs

Name
IP
Malicious
https://federalreservebanks.na2.adobesign.com/public/esign?tsid=CBFCIBAACBSCTBABDUAAABACAABAAnDqUucZlzf-2SF4njVzpB7Orw9ysm4q3hrmaF1GHqyL57j2mvw7NcElIrREpaAzrcqH8EsakgHDA2LKuP7U1w58odMTWdM9TaTfrKyHr1dsR-3qUtBvG7r_HD_n4t-Pk&
https://secure.na2.echocdn.com/resource/N1891595517.en_US/bundles/app-esign.js
44.234.124.143
https://sso.behance.net/ims
unknown
http://jquery.org/license
unknown
https://secure.na2.echocdn.com/resource/1679050799.en_US/bundles/dcsignpanel.js
44.234.124.143
https://dpm.demdex.net/id?d_visid_ver=5.4.0&d_fieldgroup=MC&d_rtbd=json&d_ver=2&d_verify=1&d_orgid=9E1005A551ED61CA0A490D45%40AdobeOrg&d_nsid=0&ts=1728085286961
34.252.162.78
https://secure.na2.echocdn.com/resource/N9117456/bundles/esignResponsive.css
44.234.124.143
https://federalreservebanks.na2.adobesign.com/ajax/call/plaincall/secureAgreementsAjaxService.blockingAreThumbnailsAvailableForDocument.dwr
44.234.124.143
http://jqueryui.com
unknown
https://federalreservebanks.na2.adobesign.com/cobrand_logo/CBNCJCAABACAABAAIsYNylc1VMpZzuLjGRQZWAXraphs1c3fo5CcW7nGq4ImY7BITyk99pGf-cympqoUKaXFEB9xNtCY1CIrz_iIbcz_SYM8O7SyiTM2QA82-_bodJ1TOm2Ck3mQr055ZyTGWdrS1eDwS7s1qlG5j2bv9C1XkgGE7tVJocN92DNzih5ZFsaFPr6gMFwFXY-xoY4-YqBqQU75FgXwrwxh6ITVGO1EmbPKyCXemwTcSwH77O8N9KBa6pQ3V1NK87SG8VJZpvphaUQyom2ijPu9VsvhXLlMyn1YnqUTJQi2qdTOw9Q5hCGfZ_428ZKym5J2ziAI
44.234.124.143
https://secure.na2.echocdn.com/images/doc-cloud/A12_help.png
44.234.124.143
https://secure.na2.echocdn.com/images/transparent-spacer.gif
44.234.124.143
https://github.com/WebReflection/url-search-params/blob/master/README.md#ios-10--other-platforms-bug
unknown
https://github.com/jquery/jquery-color
unknown
https://federalreservebanks.na2.adobesign.com/public/esign?tsid=CBFCIBAACBSCTBABDUAAABACAABAAnDqUucZlzf-2SF4njVzpB7Orw9ysm4q3hrmaF1GHqyL57j2mvw7NcElIrREpaAzrcqH8EsakgHDA2LKuP7U1w58odMTWdM9TaTfrKyHr1dsR-3qUtBvG7r_HD_n4t-Pk&
https://federalreservebanks.na2.adobesign.com/ajax/call/plaincall/secureAgreementsAjaxService.getAgreementForNewEsign.dwr
44.234.124.143
https://federalreservebanks.na2.adobesign.com/public/docCloudEmbeddedCheck?locale=en_US
44.234.124.143
https://use.typekit.net/af/cb695f/000000000000000000017701/27/
unknown
http://eightmedia.github.com/hammer.js
unknown
https://secure.na2.echocdn.com/images/esignJS/es_icons.13.svg
44.234.124.143
https://raw.githubusercontent.com/stefanpenner/es6-promise/master/LICENSE
unknown
https://secure.na2.echocdn.com/resource/1284397208.en_US/bundles/translations.js
44.234.124.143
https://github.com/twbs/bootstrap/graphs/contributors)
unknown
https://federalreservebanks.na2.adobesign.com/images/esignJS/AdobeSign_Tag.png
44.234.124.143
https://github.com/gabceb/jquery-browser-plugin
unknown
https://secure.na2.echocdn.com/resource/N399895326.en_US/bundles/app-main.js
44.234.124.143
http://typekit.com/eulas/0000000000000000000176ff
unknown
https://github.com/gabceb
unknown
http://typekit.com/eulas/000000000000000000017701
unknown
https://static.adobelogin.com/clients/adobe-sign-2020/f39219ea552b8fc1c7b42c6a2d0290c2.png
unknown
https://federalreservebanks.na2.adobesign.com/public/login
44.234.124.143
http://typekit.com/eulas/000000000000000000017703
unknown
https://secure.na2.echocdn.com/resource/N1154224597/bundles/app-theme.css
44.234.124.143
https://github.com/hgoebl/mobile-detect.js
unknown
http://github.com/wyuenho/backgrid
unknown
https://federalreservebanks.na2.adobesign.com/images/thumbnails/default_image_z125.png
44.234.124.143
http://flesler.blogspot.com/2007/10/jqueryscrollto.html
unknown
https://federalreservebanks.na2.adobesign.com/ajax/call/plaincall/__System.generateId.dwr
44.234.124.143
https://federalreservebanks.na2.adobesign.com/images/favicon.2.ico
44.234.124.143
https://secure.na2.echocdn.com/resource/516055919.en_US/bundles/component-viewfields.js
44.234.124.143
https://federalreservebanks.na2.adobesign.com/
44.234.124.143
https://secure.na2.echocdn.com/images/esignJS/downarrow-small.png
44.234.124.143
https://dpm.demdex.net/id/rd?d_visid_ver=5.4.0&d_fieldgroup=MC&d_rtbd=json&d_ver=2&d_verify=1&d_orgid=9E1005A551ED61CA0A490D45%40AdobeOrg&d_nsid=0&ts=1728085286961
34.252.162.78
https://github.com/imakewebthings/waypoints/blob/master/licenses.txt
unknown
https://secure.na2.echocdn.com/resource/N764981603/bundles/dcSignPanel.css
44.234.124.143
https://github.com/twbs/bootstrap/blob/main/LICENSE)
unknown
https://use.typekit.net/af/eaf09c/000000000000000000017703/27/
unknown
https://static.adobelogin.com/clients/adobe-sign-2020/4x_f39219ea552b8fc1c7b42c6a2d0290c2.png
13.224.189.18
https://static.adobelogin.com/clients/adobe-sign-2020/2x_f39219ea552b8fc1c7b42c6a2d0290c2.png
unknown
http://api.jqueryui.com/position/
unknown
https://federalreservebanks.na2.adobesign.com/public/adobeLogin?currentLoginLocation=na2&canonicalURL=https%3A%2F%2Fsecure.adobesign.com%2Fpublic%2Flogin&isEmailPrefilled=false&isCustomizedLogInAllowed=false&isAdobeSignAuth=false&passwordFieldDisabled=false
44.234.124.143
https://use.typekit.net/af/e301c6/0000000000000000000149e7/27/
unknown
https://secure.na2.echocdn.com/packages/as-ui-bootstrap4-spectrum/dist/images/spectrum_spinner.svg
44.234.124.143
https://getbootstrap.com/)
unknown
http://typekit.com/eulas/0000000000000000000149e7
unknown
https://secure.na2.echocdn.com/resource/1730650309/bundles/toast-message.css
44.234.124.143
https://jquery.org/license
unknown
https://secure.na2.echocdn.com/packages/as-ui-bootstrap4-spectrum/dist/images/core_icons.png
44.234.124.143
https://jquery.com/
unknown
https://p.typekit.net/p.gif
unknown
https://secure.na2.echocdn.com/images/esignJS/required-star.png
44.234.124.143
https://secure.na2.adobesign.com/api/gateway/adobesignauthservice/api/v1/authorize?client_id=EchoSign2&redirect_uri=https%3A%2F%2Fgps.echosign.com%2Fpublic%2FadobeIDLogin%3Fserver%3Dfederalreservebanks.na2.adobesign.com%26isAdobeSignAuth%3Dfalse%26locale%3Den_US%26port%3D443&dc=false&scope=openid%2CAdobeID%2CDCAPI%2Cadditional_info.account_type%2Cskybox%2Cupdate_profile.first_name%2Cupdate_profile.last_name%2Cagreement_send%2Cagreement_sign%2Csign_library_write%2Csign_user_read%2Csign_user_write%2Cagreement_read%2Cagreement_write%2Cwidget_read%2Cwidget_write%2Cworkflow_read%2Cworkflow_write%2Csign_addressbook_read%2Csign_library_read%2Cadditional_info.projectedProductContext%2Csign_webhook_read%2Csign_webhook_write%2Csign_webhook_retention%2Csao.ACOM_ESIGN_TRIAL%2Cee.GROUP_SIGN_WEB%2Cadditional_info.ownerOrg%2Cadditional_info.roles%2Caps.read.app_merchandising%2Csign_application_read%2Csign_application_write&ctx_id=Adobe_Sign&response_type=code&state=81f33adff25a62f0579844d8f1cddd69ef2f2dcb5ccb121d59fb5a96e8b4b5cc&locale=en_US
44.234.124.143
http://flesler.blogspot.com
unknown
https://use.typekit.net/af/40207f/0000000000000000000176ff/27/
unknown
https://static.adobelogin.com/clients/adobe-sign-2020/1x_f39219ea552b8fc1c7b42c6a2d0290c2.png
unknown
https://github.com/faisalman/ua-parser-js
unknown
https://secure.na2.echocdn.com/images/esignJS/es_icons.1.svg
44.234.124.143
https://github.com/websanova/mousestop
unknown
https://sizzlejs.com/
unknown
https://js.foundation/
unknown
https://secure.na2.echocdn.com/resource/819013074/bundles/esignJS.css
44.234.124.143
There are 60 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
secure.na2.adobesign.com
44.234.124.143
dd20fzx9mj46f.cloudfront.net
13.224.189.18
bg.microsoft.map.fastly.net
199.232.210.172
adobe.com.ssl.d1.sc.omtrdc.net
63.140.62.17
secure.na2dc2.echosign.com
44.234.124.143
www.google.com
216.58.212.164
federalreservebanks.na2.adobesign.com
44.234.124.143
dcs-public-edge-irl1-150041215.eu-west-1.elb.amazonaws.com
34.252.162.78
windowsupdatebg.s.llnwi.net
87.248.204.0
use.typekit.net
unknown
p.typekit.net
unknown
ims-na1.adobelogin.com
unknown
dpm.demdex.net
unknown
secure.na2.echocdn.com
unknown
static.adobelogin.com
unknown
There are 5 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
216.58.212.164
www.google.com
United States
13.224.189.18
dd20fzx9mj46f.cloudfront.net
United States
192.168.2.8
unknown
unknown
192.168.2.7
unknown
unknown
13.224.189.15
unknown
United States
63.140.62.27
unknown
United States
99.80.175.1
unknown
United States
63.140.62.17
adobe.com.ssl.d1.sc.omtrdc.net
United States
192.168.2.10
unknown
unknown
239.255.255.250
unknown
Reserved
44.234.124.143
secure.na2.adobesign.com
United States
34.252.162.78
dcs-public-edge-irl1-150041215.eu-west-1.elb.amazonaws.com
United States
There are 2 hidden IPs, click here to show them.

DOM / HTML

URL
Malicious
https://federalreservebanks.na2.adobesign.com/public/esign?tsid=CBFCIBAACBSCTBABDUAAABACAABAAnDqUucZlzf-2SF4njVzpB7Orw9ysm4q3hrmaF1GHqyL57j2mvw7NcElIrREpaAzrcqH8EsakgHDA2LKuP7U1w58odMTWdM9TaTfrKyHr1dsR-3qUtBvG7r_HD_n4t-Pk&
https://federalreservebanks.na2.adobesign.com/public/esign?tsid=CBFCIBAACBSCTBABDUAAABACAABAAnDqUucZlzf-2SF4njVzpB7Orw9ysm4q3hrmaF1GHqyL57j2mvw7NcElIrREpaAzrcqH8EsakgHDA2LKuP7U1w58odMTWdM9TaTfrKyHr1dsR-3qUtBvG7r_HD_n4t-Pk&
https://auth.services.adobe.com/en_US/deeplink.html?deeplink=ssofirst&callback=https%3A%2F%2Fims-na1.adobelogin.com%2Fims%2Fadobeid%2FEchoSign2%2FAdobeID%2Fcode%3Fredirect_uri%3Dhttps%253A%252F%252Fgps.echosign.com%252Fpublic%252FadobeIDLogin%253Fserver%253Dfederalreservebanks.na2.adobesign.com%2526isAdobeSignAuth%253Dfalse%2526locale%253Den_US%2526port%253D443%26state%3D81f33adff25a62f0579844d8f1cddd69ef2f2dcb5ccb121d59fb5a96e8b4b5cc%26code_challenge_method%3Dplain%26use_ms_for_expiry%3Dtrue&client_id=EchoSign2&scope=openid%2CAdobeID%2CDCAPI%2Cadditional_info.account_type%2Cskybox%2Cupdate_profile.first_name%2Cupdate_profile.last_name%2Cagreement_send%2Cagreement_sign%2Csign_library_write%2Csign_user_read%2Csign_user_write%2Cagreement_read%2Cagreement_write%2Cwidget_read%2Cwidget_write%2Cworkflow_read%2Cworkflow_write%2Csign_addressbook_read%2Csign_library_read%2Cadditional_info.projectedProductContext%2Csign_webhook_read%2Csign_webhook_write%2Csign_webhook_retention%2Csao.ACOM_ESIGN_TRIAL%2Cee.GROUP_SIGN_WE