Source: | Binary string: D:\a\1\s\Utils\obj\Release\Utils.pdb source: LetsPRO.exe, 00000044.00000002.2598690192.0000000004FD2000.00000002.00000001.01000000.0000001A.sdmp |
Source: | Binary string: /_/artifacts/obj/Microsoft.Win32.Registry.AccessControl/net461-windows-Release/Microsoft.Win32.Registry.AccessControl.pdb source: Microsoft.Win32.Registry.AccessControl.dll.19.dr |
Source: | Binary string: E:\A\_work\1795\s\corefx\bin\obj\Windows_NT.AnyCPU.Release\System.Runtime.InteropServices.RuntimeInformation\net462\System.Runtime.InteropServices.RuntimeInformation.pdb source: LetsPRO.exe, 00000034.00000002.4552153335.00000000063C2000.00000002.00000001.01000000.0000001F.sdmp |
Source: | Binary string: D:\a\1\s\LetsVPN\obj\Release\LetsPRO.pdb source: LetsPRO.exe, 00000034.00000000.2428812586.0000000000B82000.00000002.00000001.01000000.00000018.sdmp |
Source: | Binary string: D:\simba9_pc\trunk\simba9\bin\Release\bin\uc_ctrl.pdb22 source: uc_ctrl.exe, 00000010.00000003.2111987373.00000000011AF000.00000004.00000020.00020000.00000000.sdmp, uc_ctrl.exe, 00000010.00000002.4517104426.0000000000B3A000.00000002.00000001.01000000.00000009.sdmp, uc_ctrl.exe, 00000010.00000000.2110079362.0000000000B3A000.00000002.00000001.01000000.00000009.sdmp |
Source: | Binary string: E:\A\_work\582\s\bin\obj\ref\System.ObjectModel\4.0.11.0\System.ObjectModel.pdb source: System.ObjectModel.dll.19.dr |
Source: | Binary string: E:\A\_work\582\s\bin\obj\ref\System.ObjectModel\4.0.11.0\System.ObjectModel.pdbX+r+ d+_CorDllMainmscoree.dll source: System.ObjectModel.dll.19.dr |
Source: | Binary string: c:\git\OSS\notifyicon-wpf\Hardcodet.NotifyIcon.Wpf\Source\NotifyIconWpf\obj\Release\Hardcodet.Wpf.TaskbarNotification.pdb source: LetsPRO.exe, 00000034.00000002.4585596709.0000000037F82000.00000002.00000001.01000000.00000032.sdmp |
Source: | Binary string: C:\Users\eric\dev\cb\bld\bin\e_sqlite3\win\v141\plain\x86\e_sqlite3.pdb source: LetsPRO.exe, 00000034.00000002.4635321304.0000000067CA7000.00000002.00000001.01000000.0000002D.sdmp |
Source: | Binary string: c:\users\samuli\opt\tap-windows6-mattock\tapinstall\7600\objfre_wlh_amd64\amd64\tapinstall.pdb source: tapinstall.exe, 0000001D.00000002.2307967227.00007FF78E4D1000.00000020.00000001.01000000.00000016.sdmp, tapinstall.exe, 0000001D.00000000.2306396424.00007FF78E4D1000.00000020.00000001.01000000.00000016.sdmp, tapinstall.exe, 0000001F.00000000.2308899361.00007FF78E4D1000.00000020.00000001.01000000.00000016.sdmp, tapinstall.exe, 0000001F.00000002.2350347026.00007FF78E4D1000.00000020.00000001.01000000.00000016.sdmp, tapinstall.exe, 00000031.00000000.2367020724.00007FF78E4D1000.00000020.00000001.01000000.00000016.sdmp, tapinstall.exe, 00000031.00000002.2368504113.00007FF78E4D1000.00000020.00000001.01000000.00000016.sdmp |
Source: | Binary string: D:\a\1\s\SDK\AppCenterAnalytics\Microsoft.AppCenter.Analytics.WindowsDesktop\obj\Release\net461\Microsoft.AppCenter.Analytics.pdbSHA256 source: LetsPRO.exe, 00000034.00000002.4560500804.000000002FC52000.00000002.00000001.01000000.00000026.sdmp |
Source: | Binary string: C:\WorkShop\WebSocket4Net\WebSocket4Net\obj\Release\WebSocket4Net.pdb source: LetsPRO.exe, 00000034.00000002.4588396530.0000000038132000.00000002.00000001.01000000.00000039.sdmp |
Source: | Binary string: E:\A\_work\582\s\bin\obj\ref\System.Security.Cryptography.Encoding\4.0.2.0\System.Security.Cryptography.Encoding.pdb source: System.Security.Cryptography.Encoding.dll.19.dr |
Source: | Binary string: /_/CommunityToolkit.Mvvm/obj/Release/netstandard2.0/CommunityToolkit.Mvvm.pdbSHA256 source: LetsPRO.exe, 00000034.00000002.4551634567.0000000006322000.00000002.00000001.01000000.0000001E.sdmp, CommunityToolkit.Mvvm.dll.19.dr |
Source: | Binary string: D:\a\1\s\SDK\AppCenter\Microsoft.AppCenter.WindowsDesktop\obj\Release\net461\Microsoft.AppCenter.pdb source: LetsPRO.exe, 00000034.00000002.4520579062.00000000013B3000.00000004.00000020.00020000.00000000.sdmp, LetsPRO.exe, 00000034.00000002.4560889921.000000002FF02000.00000002.00000001.01000000.00000027.sdmp |
Source: | Binary string: C:\Users\eric\dev\SQLitePCL.raw\src\SQLitePCLRaw.batteries_v2.e_sqlite3.dynamic\obj\Release\netstandard2.0\SQLitePCLRaw.batteries_v2.pdb source: LetsPRO.exe, 00000034.00000002.4567455521.0000000030B22000.00000002.00000001.01000000.00000029.sdmp |
Source: | Binary string: E:\A\_work\1795\s\corefx\bin\obj\Windows_NT.AnyCPU.Release\System.Net.Http\netfx\System.Net.Http.pdb source: LetsPRO.exe, 00000034.00000002.4607168413.0000000039882000.00000002.00000001.01000000.0000003B.sdmp |
Source: | Binary string: /_/CommunityToolkit.Mvvm/obj/Release/netstandard2.0/CommunityToolkit.Mvvm.pdb source: LetsPRO.exe, 00000034.00000002.4551634567.0000000006322000.00000002.00000001.01000000.0000001E.sdmp, CommunityToolkit.Mvvm.dll.19.dr |
Source: | Binary string: /_/artifacts/obj/System.Data.Odbc/net461-windows-Release/System.Data.Odbc.pdb source: System.Data.Odbc.dll.19.dr |
Source: | Binary string: C:\Users\eric\dev\SQLitePCL.raw\src\SQLitePCLRaw.batteries_v2.e_sqlite3.dynamic\obj\Release\netstandard2.0\SQLitePCLRaw.batteries_v2.pdbSHA256 source: LetsPRO.exe, 00000034.00000002.4567455521.0000000030B22000.00000002.00000001.01000000.00000029.sdmp |
Source: | Binary string: E:\A\_work\1795\s\corefx\bin\obj\AnyOS.AnyCPU.Release\System.ValueTuple\netfx\System.ValueTuple.pdbT source: System.ValueTuple.dll.19.dr |
Source: | Binary string: vcruntime140.i386.pdbGCTL source: uc_ctrl.exe, 00000010.00000002.4522204610.000000006E111000.00000020.00000001.01000000.0000000C.sdmp |
Source: | Binary string: D:\a\1\s\SDK\AppCenterCrashes\Microsoft.AppCenter.Crashes.WindowsDesktop\obj\Release\net461\Microsoft.AppCenter.Crashes.pdb source: LetsPRO.exe, 00000034.00000002.4560652507.000000002FC62000.00000002.00000001.01000000.00000028.sdmp |
Source: | Binary string: /_/artifacts/obj/Microsoft.Win32.Registry.AccessControl/net461-windows-Release/Microsoft.Win32.Registry.AccessControl.pdbSHA256a? source: Microsoft.Win32.Registry.AccessControl.dll.19.dr |
Source: | Binary string: D:\Mannelig\Dev\Projects\NET\WpfToastNotifications\Src\ToastNotifications.Messages\obj\Release\ToastNotifications.Messages.pdb source: ToastNotifications.Messages.dll.19.dr |
Source: | Binary string: D:\a\1\s\LetsVPNDomainModel\obj\Release\LetsVPNDomainModel.pdb source: LetsPRO.exe, 00000044.00000002.2599280133.0000000005092000.00000002.00000001.01000000.0000001C.sdmp |
Source: | Binary string: e:\ExpressionRTM\Sparkle\SDK\BlendWPFSDK\Build\Intermediate\Release\Libraries\System.Windows.Interactivity\Win32\Release\System.Windows.Interactivity.pdb source: System.Windows.Interactivity.dll.19.dr |
Source: | Binary string: D:\a\1\s\LetsVPNDomainModel\obj\Release\LetsVPNDomainModel.pdbwD source: LetsPRO.exe, 00000044.00000002.2599280133.0000000005092000.00000002.00000001.01000000.0000001C.sdmp |
Source: | Binary string: Extract: Mono.Cecil.Pdb.dll... 100% ! source: letsvpn-latest.exe, 00000013.00000003.2429017380.0000000000514000.00000004.00000020.00020000.00000000.sdmp, letsvpn-latest.exe, 00000013.00000002.2429975005.0000000000514000.00000004.00000020.00020000.00000000.sdmp |
Source: | Binary string: E:\A\_work\156\s\corefx\bin\obj\AnyOS.AnyCPU.Release\System.Buffers\netfx\System.Buffers.pdb source: LetsPRO.exe, 00000034.00000002.4552261430.00000000063D2000.00000002.00000001.01000000.00000022.sdmp |
Source: | Binary string: msvcp140.i386.pdb source: uc_ctrl.exe, uc_ctrl.exe, 00000010.00000002.4521636017.000000006D191000.00000020.00000001.01000000.0000000A.sdmp |
Source: | Binary string: E:\A\_work\1795\s\corefx\bin/obj/AnyOS.AnyCPU.Release/System.Data.Common/netfx\System.Data.Common.pdb source: System.Data.Common.dll.19.dr |
Source: | Binary string: D:\a\1\s\SDK\AppCenterCrashes\Microsoft.AppCenter.Crashes.WindowsDesktop\obj\Release\net461\Microsoft.AppCenter.Crashes.pdbSHA256, source: LetsPRO.exe, 00000034.00000002.4560652507.000000002FC62000.00000002.00000001.01000000.00000028.sdmp |
Source: | Binary string: E:\A\_work\582\s\bin\obj\ref\System.Security.Cryptography.Encoding\4.0.2.0\System.Security.Cryptography.Encoding.pdbT)n) `)_CorDllMainmscoree.dll source: System.Security.Cryptography.Encoding.dll.19.dr |
Source: | Binary string: /_/artifacts/obj/System.Data.Odbc/net461-windows-Release/System.Data.Odbc.pdbSHA256x source: System.Data.Odbc.dll.19.dr |
Source: | Binary string: WebView2Loader.dll.pdb source: WebView2Loader.dll1.19.dr |
Source: | Binary string: C:\WorkShop\WebSocket4Net\WebSocket4Net\obj\Release\WebSocket4Net.pdb* source: LetsPRO.exe, 00000034.00000002.4588396530.0000000038132000.00000002.00000001.01000000.00000039.sdmp |
Source: | Binary string: C:\Users\winsign\samuli\source\repos\tap-windows6\src\x64\Release\tap0901.pdb source: drvinst.exe, 00000022.00000003.2329204518.00000281E46FC000.00000004.00000020.00020000.00000000.sdmp, drvinst.exe, 00000022.00000003.2324274722.00000281E463C000.00000004.00000020.00020000.00000000.sdmp, drvinst.exe, 00000023.00000003.2347234042.0000020DB2EA4000.00000004.00000020.00020000.00000000.sdmp, drvinst.exe, 00000023.00000003.2347404937.0000020DB2EA4000.00000004.00000020.00020000.00000000.sdmp, drvinst.exe, 00000023.00000002.2347809809.0000020DB2EA4000.00000004.00000020.00020000.00000000.sdmp, drvinst.exe, 00000023.00000003.2345791449.0000020DB2EA2000.00000004.00000020.00020000.00000000.sdmp |
Source: | Binary string: C:\WorkShop\SuperSocket.ClientEngine\obj\Release\SuperSocket.ClientEngine.pdbR source: LetsPRO.exe, 00000034.00000002.4588242071.0000000038122000.00000002.00000001.01000000.00000038.sdmp |
Source: | Binary string: E:\A\_work\582\s\bin\obj\ref\System.Linq.Queryable\4.0.1.0\System.Linq.Queryable.pdb source: System.Linq.Queryable.dll.19.dr |
Source: | Binary string: D:\simba9_pc\trunk\simba9\bin\Release\bin\uc_ctrl.pdb source: uc_ctrl.exe, 00000010.00000003.2111987373.00000000011AF000.00000004.00000020.00020000.00000000.sdmp, uc_ctrl.exe, 00000010.00000002.4517104426.0000000000B3A000.00000002.00000001.01000000.00000009.sdmp, uc_ctrl.exe, 00000010.00000000.2110079362.0000000000B3A000.00000002.00000001.01000000.00000009.sdmp |
Source: | Binary string: C:\Users\IEUser\pusher-websocket-dotnet\PusherClient\obj\release\net46\PusherClient.pdb source: LetsPRO.exe, 00000034.00000002.4576795578.0000000035362000.00000002.00000001.01000000.00000037.sdmp |
Source: | Binary string: D:\a\_work\1\s\corefx\bin\obj\AnyOS.AnyCPU.Release\System.Memory\netfx\System.Memory.pdb source: LetsPRO.exe, 00000034.00000002.4552613363.0000000006402000.00000002.00000001.01000000.00000020.sdmp |
Source: | Binary string: /_/Src/Newtonsoft.Json/obj/Release/net45/Newtonsoft.Json.pdbSHA256 source: LetsPRO.exe, 00000044.00000002.2602011812.0000000005702000.00000002.00000001.01000000.0000001D.sdmp |
Source: | Binary string: C:\Users\ani\code\squirrel\squirrel.windows\build\Release\Win32\StubExecutable.pdb source: LetsPRO.exe, 00000033.00000002.2436972235.0000000000C6D000.00000002.00000001.01000000.00000017.sdmp, LetsPRO.exe, 00000033.00000000.2427297840.0000000000C6D000.00000002.00000001.01000000.00000017.sdmp, LetsPRO.exe.19.dr |
Source: | Binary string: E:\A\_work\582\s\bin\obj\ref\System.Threading.Thread\4.0.2.0\System.Threading.Thread.pdb source: System.Threading.Thread.dll.19.dr |
Source: | Binary string: /_/Src/Newtonsoft.Json/obj/Release/net45/Newtonsoft.Json.pdb source: LetsPRO.exe, 00000044.00000002.2602011812.0000000005702000.00000002.00000001.01000000.0000001D.sdmp |
Source: | Binary string: E:\A\_work\582\s\bin\obj\ref\System.Diagnostics.TraceSource\4.0.2.0\System.Diagnostics.TraceSource.pdb source: System.Diagnostics.TraceSource.dll.19.dr |
Source: | Binary string: E:\A\_work\582\s\bin\obj\ref\System.Diagnostics.FileVersionInfo\4.0.2.0\System.Diagnostics.FileVersionInfo.pdb source: System.Diagnostics.FileVersionInfo.dll.19.dr |
Source: | Binary string: E:\A\_work\582\s\bin\obj\ref\System.Threading.Timer\4.0.1.0\System.Threading.Timer.pdbt( source: System.Threading.Timer.dll.19.dr |
Source: | Binary string: E:\A\_work\582\s\bin\obj\ref\System.Threading.Timer\4.0.1.0\System.Threading.Timer.pdb source: System.Threading.Timer.dll.19.dr |
Source: | Binary string: D:\a\1\s\LetsVPNInfraStructure\obj\Release\LetsVPNInfraStructure.pdb source: LetsPRO.exe, 00000034.00000002.4552367925.00000000063E2000.00000002.00000001.01000000.00000023.sdmp |
Source: | Binary string: D:\a\_work\1\s\artifacts\obj\System.Runtime.CompilerServices.Unsafe\net461-Release\System.Runtime.CompilerServices.Unsafe.pdbBSJB source: LetsPRO.exe, 00000034.00000002.4551976180.0000000006352000.00000002.00000001.01000000.00000021.sdmp, System.Runtime.CompilerServices.Unsafe.dll.19.dr |
Source: | Binary string: C:\Users\eric\dev\SQLitePCL.raw\src\SQLitePCLRaw.core\obj\Release\netstandard2.0\SQLitePCLRaw.core.pdbSHA256xpRb source: LetsPRO.exe, 00000034.00000002.4567637378.0000000030B52000.00000002.00000001.01000000.0000002B.sdmp |
Source: | Binary string: C:\Users\eric\dev\SQLitePCL.raw\src\SQLitePCLRaw.provider.dynamic_cdecl\obj\Release\netstandard2.0\SQLitePCLRaw.provider.dynamic_cdecl.pdb source: LetsPRO.exe, 00000034.00000002.4567805544.0000000030B72000.00000002.00000001.01000000.0000002C.sdmp |
Source: | Binary string: D:\a\_work\1\s\artifacts\obj\System.Runtime.CompilerServices.Unsafe\net461-Release\System.Runtime.CompilerServices.Unsafe.pdb source: LetsPRO.exe, 00000034.00000002.4551976180.0000000006352000.00000002.00000001.01000000.00000021.sdmp, System.Runtime.CompilerServices.Unsafe.dll.19.dr |
Source: | Binary string: C:\Users\eric\dev\SQLitePCL.raw\src\SQLitePCLRaw.provider.dynamic_cdecl\obj\Release\netstandard2.0\SQLitePCLRaw.provider.dynamic_cdecl.pdbSHA256 source: LetsPRO.exe, 00000034.00000002.4567805544.0000000030B72000.00000002.00000001.01000000.0000002C.sdmp |
Source: | Binary string: vcruntime140.i386.pdb source: uc_ctrl.exe, uc_ctrl.exe, 00000010.00000002.4522204610.000000006E111000.00000020.00000001.01000000.0000000C.sdmp |
Source: | Binary string: E:\A\_work\582\s\bin\obj\ref\System.Diagnostics.FileVersionInfo\4.0.2.0\System.Diagnostics.FileVersionInfo.pdbp( source: System.Diagnostics.FileVersionInfo.dll.19.dr |
Source: | Binary string: msvcp140.i386.pdbGCTL source: uc_ctrl.exe, 00000010.00000002.4521636017.000000006D191000.00000020.00000001.01000000.0000000A.sdmp |
Source: | Binary string: D:\a\1\s\SDK\AppCenterAnalytics\Microsoft.AppCenter.Analytics.WindowsDesktop\obj\Release\net461\Microsoft.AppCenter.Analytics.pdb source: LetsPRO.exe, 00000034.00000002.4560500804.000000002FC52000.00000002.00000001.01000000.00000026.sdmp |
Source: | Binary string: E:\A\_work\1795\s\corefx\bin/obj/Windows_NT.AnyCPU.Release/System.Runtime.Serialization.Primitives/netfx\System.Runtime.Serialization.Primitives.pdb source: System.Runtime.Serialization.Primitives.dll.19.dr |
Source: | Binary string: c:\users\samuli\opt\tap-windows6-mattock\tapinstall\7600\objfre_wlh_amd64\amd64\tapinstall.pdbH source: tapinstall.exe, 0000001D.00000002.2307967227.00007FF78E4D1000.00000020.00000001.01000000.00000016.sdmp, tapinstall.exe, 0000001D.00000000.2306396424.00007FF78E4D1000.00000020.00000001.01000000.00000016.sdmp, tapinstall.exe, 0000001F.00000000.2308899361.00007FF78E4D1000.00000020.00000001.01000000.00000016.sdmp, tapinstall.exe, 0000001F.00000002.2350347026.00007FF78E4D1000.00000020.00000001.01000000.00000016.sdmp, tapinstall.exe, 00000031.00000000.2367020724.00007FF78E4D1000.00000020.00000001.01000000.00000016.sdmp, tapinstall.exe, 00000031.00000002.2368504113.00007FF78E4D1000.00000020.00000001.01000000.00000016.sdmp |
Source: | Binary string: E:\A\_work\582\s\bin\obj\ref\System.Runtime.Numerics\4.0.1.0\System.Runtime.Numerics.pdb source: System.Runtime.Numerics.dll.19.dr |
Source: | Binary string: C:\WorkShop\SuperSocket.ClientEngine\obj\Release\SuperSocket.ClientEngine.pdb source: LetsPRO.exe, 00000034.00000002.4588242071.0000000038122000.00000002.00000001.01000000.00000038.sdmp |
Source: | Binary string: C:\Users\eric\dev\SQLitePCL.raw\src\SQLitePCLRaw.nativelibrary\obj\Release\netstandard2.0\SQLitePCLRaw.nativelibrary.pdbSHA256 source: LetsPRO.exe, 00000034.00000002.4567552458.0000000030B42000.00000002.00000001.01000000.0000002A.sdmp |
Source: | Binary string: E:\A\_work\1795\s\corefx\bin\obj\AnyOS.AnyCPU.Release\System.ValueTuple\netfx\System.ValueTuple.pdb source: System.ValueTuple.dll.19.dr |
Source: | Binary string: C:\Users\IEUser\pusher-websocket-dotnet\PusherClient\obj\release\net46\PusherClient.pdbSHA256 source: LetsPRO.exe, 00000034.00000002.4576795578.0000000035362000.00000002.00000001.01000000.00000037.sdmp |
Source: | Binary string: E:\A\_work\1795\s\corefx\bin\obj\Windows_NT.AnyCPU.Release\System.Runtime.InteropServices.RuntimeInformation\net462\System.Runtime.InteropServices.RuntimeInformation.pdbxE source: LetsPRO.exe, 00000034.00000002.4552153335.00000000063C2000.00000002.00000001.01000000.0000001F.sdmp |
Source: | Binary string: E:\A\_work\582\s\bin\obj\ref\System.Runtime.Numerics\4.0.1.0\System.Runtime.Numerics.pdb|( source: System.Runtime.Numerics.dll.19.dr |
Source: | Binary string: C:\Users\eric\dev\SQLitePCL.raw\src\SQLitePCLRaw.core\obj\Release\netstandard2.0\SQLitePCLRaw.core.pdb source: LetsPRO.exe, 00000034.00000002.4567637378.0000000030B52000.00000002.00000001.01000000.0000002B.sdmp |
Source: | Binary string: D:\a\1\s\SDK\AppCenter\Microsoft.AppCenter.WindowsDesktop\obj\Release\net461\Microsoft.AppCenter.pdbSHA256X7 source: LetsPRO.exe, 00000034.00000002.4520579062.00000000013B3000.00000004.00000020.00020000.00000000.sdmp, LetsPRO.exe, 00000034.00000002.4560889921.000000002FF02000.00000002.00000001.01000000.00000027.sdmp |
Source: | Binary string: C:\Users\eric\dev\SQLitePCL.raw\src\SQLitePCLRaw.nativelibrary\obj\Release\netstandard2.0\SQLitePCLRaw.nativelibrary.pdb source: LetsPRO.exe, 00000034.00000002.4567552458.0000000030B42000.00000002.00000001.01000000.0000002A.sdmp |
Source: KLL.exe, 00000000.00000003.2083647219.0000014B5D69D000.00000004.00000020.00020000.00000000.sdmp, KLL.exe, 00000000.00000003.2083572061.0000014B5F2F1000.00000004.00000020.00020000.00000000.sdmp, System.Data.Common.dll.19.dr, ToastNotifications.Messages.dll.19.dr, System.Linq.Queryable.dll.19.dr, System.Runtime.Serialization.Primitives.dll.19.dr, System.Windows.Interactivity.dll.19.dr, System.Diagnostics.FileVersionInfo.dll.19.dr, System.Runtime.Numerics.dll.19.dr, System.Web.Services.Description.resources.dll10.19.dr, System.Data.Odbc.dll.19.dr, Microsoft.Win32.Registry.AccessControl.dll.19.dr, System.Threading.Thread.dll.19.dr, System.Diagnostics.TraceSource.dll.19.dr, WebView2Loader.dll1.19.dr, System.Threading.Timer.dll.19.dr, System.ValueTuple.dll.19.dr, System.Security.Cryptography.Encoding.dll.19.dr, LetsPRO.resources.dll2.19.dr, CommunityToolkit.Mvvm.dll.19.dr, System.Web.Services.Description.resources.dll0.19.dr | String found in binary or memory: http://cacerts.digicert.com/DigiCertAssuredIDRootCA.crt0E |
Source: KLL.exe, 00000000.00000003.2083647219.0000014B5D69D000.00000004.00000020.00020000.00000000.sdmp, KLL.exe, 00000000.00000003.2083572061.0000014B5F2F1000.00000004.00000020.00020000.00000000.sdmp, System.Data.Common.dll.19.dr, ToastNotifications.Messages.dll.19.dr, System.Linq.Queryable.dll.19.dr, System.Runtime.Serialization.Primitives.dll.19.dr, System.Windows.Interactivity.dll.19.dr, System.Diagnostics.FileVersionInfo.dll.19.dr, System.Runtime.Numerics.dll.19.dr, System.Web.Services.Description.resources.dll10.19.dr, System.Data.Odbc.dll.19.dr, Microsoft.Win32.Registry.AccessControl.dll.19.dr, System.Threading.Thread.dll.19.dr, System.Diagnostics.TraceSource.dll.19.dr, WebView2Loader.dll1.19.dr, System.Threading.Timer.dll.19.dr, System.ValueTuple.dll.19.dr, System.Security.Cryptography.Encoding.dll.19.dr, LetsPRO.resources.dll2.19.dr, CommunityToolkit.Mvvm.dll.19.dr, System.Web.Services.Description.resources.dll0.19.dr | String found in binary or memory: http://cacerts.digicert.com/DigiCertTrustedG4RSA4096SHA256TimeStampingCA.crt0 |
Source: KLL.exe, 00000000.00000003.2083647219.0000014B5D69D000.00000004.00000020.00020000.00000000.sdmp, KLL.exe, 00000000.00000003.2083572061.0000014B5F2F1000.00000004.00000020.00020000.00000000.sdmp, System.Data.Common.dll.19.dr, ToastNotifications.Messages.dll.19.dr, System.Linq.Queryable.dll.19.dr, System.Runtime.Serialization.Primitives.dll.19.dr, System.Windows.Interactivity.dll.19.dr, System.Diagnostics.FileVersionInfo.dll.19.dr, System.Runtime.Numerics.dll.19.dr, System.Web.Services.Description.resources.dll10.19.dr, System.Data.Odbc.dll.19.dr, Microsoft.Win32.Registry.AccessControl.dll.19.dr, System.Threading.Thread.dll.19.dr, System.Diagnostics.TraceSource.dll.19.dr, WebView2Loader.dll1.19.dr, System.Threading.Timer.dll.19.dr, System.ValueTuple.dll.19.dr, System.Security.Cryptography.Encoding.dll.19.dr, LetsPRO.resources.dll2.19.dr, CommunityToolkit.Mvvm.dll.19.dr, System.Web.Services.Description.resources.dll0.19.dr | String found in binary or memory: http://cacerts.digicert.com/DigiCertTrustedRootG4.crt0C |
Source: KLL.exe, 00000000.00000002.2144478428.00007FF702033000.00000004.00000001.01000000.00000003.sdmp, KLL.exe, 00000000.00000000.2035226671.00007FF701A0E000.00000008.00000001.01000000.00000003.sdmp | String found in binary or memory: http://crl.certum.pl/cscasha2.crl0q |
Source: KLL.exe, 00000000.00000002.2141572454.00007FF701BE4000.00000008.00000001.01000000.00000003.sdmp, KLL.exe, 00000000.00000002.2144478428.00007FF702033000.00000004.00000001.01000000.00000003.sdmp, KLL.exe, 00000000.00000000.2035226671.00007FF701A0E000.00000008.00000001.01000000.00000003.sdmp | String found in binary or memory: http://crl.certum.pl/ctnca.crl0k |
Source: KLL.exe, 00000000.00000003.2083647219.0000014B5D69D000.00000004.00000020.00020000.00000000.sdmp, LetsPRO.exe, 00000034.00000002.4520319907.0000000001307000.00000004.00000020.00020000.00000000.sdmp, System.Data.Common.dll.19.dr, ToastNotifications.Messages.dll.19.dr, System.Linq.Queryable.dll.19.dr, System.Runtime.Serialization.Primitives.dll.19.dr, System.Windows.Interactivity.dll.19.dr, System.Diagnostics.FileVersionInfo.dll.19.dr, System.Runtime.Numerics.dll.19.dr, System.Web.Services.Description.resources.dll10.19.dr, System.Data.Odbc.dll.19.dr, Microsoft.Win32.Registry.AccessControl.dll.19.dr, System.Threading.Thread.dll.19.dr, System.Diagnostics.TraceSource.dll.19.dr, WebView2Loader.dll1.19.dr, System.Threading.Timer.dll.19.dr, System.ValueTuple.dll.19.dr, System.Security.Cryptography.Encoding.dll.19.dr, LetsPRO.resources.dll2.19.dr, CommunityToolkit.Mvvm.dll.19.dr, System.Web.Services.Description.resources.dll0.19.dr | String found in binary or memory: http://crl.comodoca.com/AAACertificateServices.crl04 |
Source: LetsPRO.exe, 00000034.00000002.4549763803.0000000005D77000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: http://crl.comodoca.com/AAACertificateServices.crl06 |
Source: powershell.exe, 00000019.00000002.2297334132.0000000006F25000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: http://crl.miJ2 |
Source: KLL.exe, 00000000.00000003.2083647219.0000014B5D69D000.00000004.00000020.00020000.00000000.sdmp, KLL.exe, 00000000.00000003.2083572061.0000014B5F2F1000.00000004.00000020.00020000.00000000.sdmp, LetsPRO.exe, 00000034.00000002.4562462254.0000000030715000.00000004.00000020.00020000.00000000.sdmp, LetsPRO.exe, 00000034.00000002.4549763803.0000000005D70000.00000004.00000020.00020000.00000000.sdmp, System.Data.Common.dll.19.dr, ToastNotifications.Messages.dll.19.dr, System.Linq.Queryable.dll.19.dr, System.Runtime.Serialization.Primitives.dll.19.dr, System.Windows.Interactivity.dll.19.dr, System.Diagnostics.FileVersionInfo.dll.19.dr, System.Runtime.Numerics.dll.19.dr, System.Web.Services.Description.resources.dll10.19.dr, System.Data.Odbc.dll.19.dr, Microsoft.Win32.Registry.AccessControl.dll.19.dr, System.Threading.Thread.dll.19.dr, System.Diagnostics.TraceSource.dll.19.dr, WebView2Loader.dll1.19.dr, System.Threading.Timer.dll.19.dr, System.ValueTuple.dll.19.dr, System.Security.Cryptography.Encoding.dll.19.dr, LetsPRO.resources.dll2.19.dr | String found in binary or memory: http://crl.sectigo.com/SectigoPublicCodeSigningCAR36.crl0y |
Source: KLL.exe, 00000000.00000003.2083647219.0000014B5D69D000.00000004.00000020.00020000.00000000.sdmp, KLL.exe, 00000000.00000003.2083572061.0000014B5F2F1000.00000004.00000020.00020000.00000000.sdmp, System.Data.Common.dll.19.dr, ToastNotifications.Messages.dll.19.dr, System.Linq.Queryable.dll.19.dr, System.Runtime.Serialization.Primitives.dll.19.dr, System.Windows.Interactivity.dll.19.dr, System.Diagnostics.FileVersionInfo.dll.19.dr, System.Runtime.Numerics.dll.19.dr, System.Web.Services.Description.resources.dll10.19.dr, System.Data.Odbc.dll.19.dr, Microsoft.Win32.Registry.AccessControl.dll.19.dr, System.Threading.Thread.dll.19.dr, System.Diagnostics.TraceSource.dll.19.dr, WebView2Loader.dll1.19.dr, System.Threading.Timer.dll.19.dr, System.ValueTuple.dll.19.dr, System.Security.Cryptography.Encoding.dll.19.dr, LetsPRO.resources.dll2.19.dr, CommunityToolkit.Mvvm.dll.19.dr, System.Web.Services.Description.resources.dll0.19.dr | String found in binary or memory: http://crl.sectigo.com/SectigoPublicCodeSigningRootR46.crl0 |
Source: svchost.exe, 0000000C.00000002.3697465734.0000020BD3E00000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: http://crl.ver) |
Source: LetsPRO.exe, 00000034.00000002.4549763803.0000000005D77000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: http://crl1.comsign.co.il/crl/comsignglobalrootca.crl0 |
Source: KLL.exe, 00000000.00000003.2083647219.0000014B5D69D000.00000004.00000020.00020000.00000000.sdmp, KLL.exe, 00000000.00000003.2083572061.0000014B5F2F1000.00000004.00000020.00020000.00000000.sdmp, System.Data.Common.dll.19.dr, ToastNotifications.Messages.dll.19.dr, System.Linq.Queryable.dll.19.dr, System.Runtime.Serialization.Primitives.dll.19.dr, System.Windows.Interactivity.dll.19.dr, System.Diagnostics.FileVersionInfo.dll.19.dr, System.Runtime.Numerics.dll.19.dr, System.Web.Services.Description.resources.dll10.19.dr, System.Data.Odbc.dll.19.dr, Microsoft.Win32.Registry.AccessControl.dll.19.dr, System.Threading.Thread.dll.19.dr, System.Diagnostics.TraceSource.dll.19.dr, WebView2Loader.dll1.19.dr, System.Threading.Timer.dll.19.dr, System.ValueTuple.dll.19.dr, System.Security.Cryptography.Encoding.dll.19.dr, LetsPRO.resources.dll2.19.dr, CommunityToolkit.Mvvm.dll.19.dr, System.Web.Services.Description.resources.dll0.19.dr | String found in binary or memory: http://crl3.digicert.com/DigiCertAssuredIDRootCA.crl0 |
Source: KLL.exe, 00000000.00000003.2083647219.0000014B5D69D000.00000004.00000020.00020000.00000000.sdmp, KLL.exe, 00000000.00000003.2083572061.0000014B5F2F1000.00000004.00000020.00020000.00000000.sdmp, System.Data.Common.dll.19.dr, ToastNotifications.Messages.dll.19.dr, System.Linq.Queryable.dll.19.dr, System.Runtime.Serialization.Primitives.dll.19.dr, System.Windows.Interactivity.dll.19.dr, System.Diagnostics.FileVersionInfo.dll.19.dr, System.Runtime.Numerics.dll.19.dr, System.Web.Services.Description.resources.dll10.19.dr, System.Data.Odbc.dll.19.dr, Microsoft.Win32.Registry.AccessControl.dll.19.dr, System.Threading.Thread.dll.19.dr, System.Diagnostics.TraceSource.dll.19.dr, WebView2Loader.dll1.19.dr, System.Threading.Timer.dll.19.dr, System.ValueTuple.dll.19.dr, System.Security.Cryptography.Encoding.dll.19.dr, LetsPRO.resources.dll2.19.dr, CommunityToolkit.Mvvm.dll.19.dr, System.Web.Services.Description.resources.dll0.19.dr | String found in binary or memory: http://crl3.digicert.com/DigiCertTrustedG4RSA4096SHA256TimeStampingCA.crl0 |
Source: KLL.exe, 00000000.00000003.2083647219.0000014B5D69D000.00000004.00000020.00020000.00000000.sdmp, KLL.exe, 00000000.00000003.2083572061.0000014B5F2F1000.00000004.00000020.00020000.00000000.sdmp, System.Data.Common.dll.19.dr, ToastNotifications.Messages.dll.19.dr, System.Linq.Queryable.dll.19.dr, System.Runtime.Serialization.Primitives.dll.19.dr, System.Windows.Interactivity.dll.19.dr, System.Diagnostics.FileVersionInfo.dll.19.dr, System.Runtime.Numerics.dll.19.dr, System.Web.Services.Description.resources.dll10.19.dr, System.Data.Odbc.dll.19.dr, Microsoft.Win32.Registry.AccessControl.dll.19.dr, System.Threading.Thread.dll.19.dr, System.Diagnostics.TraceSource.dll.19.dr, WebView2Loader.dll1.19.dr, System.Threading.Timer.dll.19.dr, System.ValueTuple.dll.19.dr, System.Security.Cryptography.Encoding.dll.19.dr, LetsPRO.resources.dll2.19.dr, CommunityToolkit.Mvvm.dll.19.dr, System.Web.Services.Description.resources.dll0.19.dr | String found in binary or memory: http://crl3.digicert.com/DigiCertTrustedRootG4.crl0 |
Source: KLL.exe, 00000000.00000003.2083647219.0000014B5D69D000.00000004.00000020.00020000.00000000.sdmp, KLL.exe, 00000000.00000003.2083572061.0000014B5F2F1000.00000004.00000020.00020000.00000000.sdmp, LetsPRO.exe, 00000034.00000002.4562462254.0000000030715000.00000004.00000020.00020000.00000000.sdmp, LetsPRO.exe, 00000034.00000002.4549763803.0000000005D70000.00000004.00000020.00020000.00000000.sdmp, System.Data.Common.dll.19.dr, ToastNotifications.Messages.dll.19.dr, System.Linq.Queryable.dll.19.dr, System.Runtime.Serialization.Primitives.dll.19.dr, System.Windows.Interactivity.dll.19.dr, System.Diagnostics.FileVersionInfo.dll.19.dr, System.Runtime.Numerics.dll.19.dr, System.Web.Services.Description.resources.dll10.19.dr, System.Data.Odbc.dll.19.dr, Microsoft.Win32.Registry.AccessControl.dll.19.dr, System.Threading.Thread.dll.19.dr, System.Diagnostics.TraceSource.dll.19.dr, WebView2Loader.dll1.19.dr, System.Threading.Timer.dll.19.dr, System.ValueTuple.dll.19.dr, System.Security.Cryptography.Encoding.dll.19.dr, LetsPRO.resources.dll2.19.dr | String found in binary or memory: http://crt.sectigo.com/SectigoPublicCodeSigningCAR36.crt0# |
Source: KLL.exe, 00000000.00000003.2083647219.0000014B5D69D000.00000004.00000020.00020000.00000000.sdmp, KLL.exe, 00000000.00000003.2083572061.0000014B5F2F1000.00000004.00000020.00020000.00000000.sdmp, System.Data.Common.dll.19.dr, ToastNotifications.Messages.dll.19.dr, System.Linq.Queryable.dll.19.dr, System.Runtime.Serialization.Primitives.dll.19.dr, System.Windows.Interactivity.dll.19.dr, System.Diagnostics.FileVersionInfo.dll.19.dr, System.Runtime.Numerics.dll.19.dr, System.Web.Services.Description.resources.dll10.19.dr, System.Data.Odbc.dll.19.dr, Microsoft.Win32.Registry.AccessControl.dll.19.dr, System.Threading.Thread.dll.19.dr, System.Diagnostics.TraceSource.dll.19.dr, WebView2Loader.dll1.19.dr, System.Threading.Timer.dll.19.dr, System.ValueTuple.dll.19.dr, System.Security.Cryptography.Encoding.dll.19.dr, LetsPRO.resources.dll2.19.dr, CommunityToolkit.Mvvm.dll.19.dr, System.Web.Services.Description.resources.dll0.19.dr | String found in binary or memory: http://crt.sectigo.com/SectigoPublicCodeSigningRootR46.p7c0# |
Source: KLL.exe, 00000000.00000002.2144478428.00007FF702033000.00000004.00000001.01000000.00000003.sdmp, KLL.exe, 00000000.00000000.2035226671.00007FF701A0E000.00000008.00000001.01000000.00000003.sdmp | String found in binary or memory: http://cscasha2.ocsp-certum.com04 |
Source: LetsPRO.exe, 00000034.00000002.4549763803.0000000005D77000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en |
Source: LetsPRO.exe, 00000034.00000002.4520579062.00000000013BD000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab7 |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032FC000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://defaultcontainer/LetsPRO;component/Themes/AppMenuDictionary.xaml |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032FC000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://defaultcontainer/LetsPRO;component/Themes/AppMenuDictionary.xamld |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032D4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://defaultcontainer/LetsPRO;component/Themes/ButtonDictionary.xaml |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032D4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://defaultcontainer/LetsPRO;component/Themes/ButtonDictionary.xamld |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032FC000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://defaultcontainer/LetsPRO;component/Themes/RadioButtonDictionary.xaml |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032FC000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://defaultcontainer/LetsPRO;component/Themes/RadioButtonDictionary.xamld |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032D4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://defaultcontainer/LetsPRO;component/Themes/ScrollViewDictionary.xaml |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032D4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://defaultcontainer/LetsPRO;component/Themes/ScrollViewDictionary.xamld |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032FC000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://defaultcontainer/LetsPRO;component/Themes/TabControllerDictionary.xaml |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032FC000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://defaultcontainer/LetsPRO;component/Themes/TabControllerDictionary.xamld |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032FC000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://defaultcontainer/LetsPRO;component/Themes/TextBoxDictionary.xaml |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032FC000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://defaultcontainer/LetsPRO;component/Themes/TextBoxDictionary.xamld |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032D4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://defaultcontainer/LetsPRO;component/Themes/WindowDictionary.xaml |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032D4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://defaultcontainer/LetsPRO;component/Themes/WindowDictionary.xamld |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BC5000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A2B000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032B5000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BDB000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://defaultcontainer/LetsPRO;component/app.xaml |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BC5000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A2B000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032B5000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BDB000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://defaultcontainer/LetsPRO;component/app.xamld |
Source: svchost.exe, 0000000C.00000003.2068735303.0000020BD3C30000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://f.c2r.ts.cdn.office.net/pr/492350f6-3a01-4f97-b9c0-c7c6ddf67d60/Office/Data/v32_16.0.16827.20 |
Source: LetsPRO.exe, 00000034.00000002.4549763803.0000000005D77000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: http://fedir.comsign.co.il/crl/comsignglobalrootca.crl0; |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032FC000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/Themes/AppMenuDictionary.xaml |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032FC000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/Themes/AppMenuDictionary.xamld |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032D4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/Themes/ButtonDictionary.xaml |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032D4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/Themes/ButtonDictionary.xamld |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032FC000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/Themes/RadioButtonDictionary.xaml |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032FC000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/Themes/RadioButtonDictionary.xamld |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032D4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/Themes/ScrollViewDictionary.xaml |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032D4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/Themes/ScrollViewDictionary.xamld |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032FC000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/Themes/TabControllerDictionary.xaml |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032FC000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/Themes/TabControllerDictionary.xamld |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032FC000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/Themes/TextBoxDictionary.xaml |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032FC000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/Themes/TextBoxDictionary.xamld |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032D4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/Themes/WindowDictionary.xaml |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032D4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/Themes/WindowDictionary.xamld |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BC5000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A2B000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032B5000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BDB000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/app.xaml |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BC5000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A2B000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032B5000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BDB000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/app.xamld |
Source: LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BDB000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/bar/app.baml |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BC5000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A2B000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032CD000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BDB000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/bar/app.bamld |
Source: LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/bar/themes/appmenudictionary.baml |
Source: LetsPRO.exe, 00000048.00000002.2677666838.00000000032FC000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/bar/themes/appmenudictionary.baml0 |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032FC000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/bar/themes/appmenudictionary.bamld |
Source: LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/bar/themes/buttondictionary.baml |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032D4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/bar/themes/buttondictionary.bamld |
Source: LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/bar/themes/radiobuttondictionary.baml |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032FC000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/bar/themes/radiobuttondictionary.bamld |
Source: LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/bar/themes/scrollviewdictionary.baml |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032D4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/bar/themes/scrollviewdictionary.bamld |
Source: LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/bar/themes/tabcontrollerdictionary.baml |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032FC000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/bar/themes/tabcontrollerdictionary.bamld |
Source: LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/bar/themes/textboxdictionary.baml |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032FC000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/bar/themes/textboxdictionary.bamld |
Source: LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/bar/themes/windowdictionary.baml |
Source: LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032D4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://foo/bar/themes/windowdictionary.bamld |
Source: LetsPRO.exe, 00000044.00000002.2602011812.0000000005702000.00000002.00000001.01000000.0000001D.sdmp | String found in binary or memory: http://james.newtonking.com/projects/json |
Source: LetsPRO.exe, 00000044.00000002.2600423293.0000000005442000.00000002.00000001.01000000.0000001B.sdmp | String found in binary or memory: http://logging.apache.org/log4net/release/faq.html#trouble-EventLog |
Source: letsvpn-latest.exe, 00000013.00000000.2129027999.000000000040A000.00000008.00000001.01000000.0000000D.sdmp, letsvpn-latest.exe, 00000013.00000003.2369349902.0000000000565000.00000004.00000020.00020000.00000000.sdmp, letsvpn-latest.exe, 00000013.00000002.2429590855.000000000040A000.00000004.00000001.01000000.0000000D.sdmp | String found in binary or memory: http://nsis.sf.net/NSIS_ErrorError |
Source: powershell.exe, 00000019.00000002.2294187021.0000000005B29000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000034.00000002.4536454539.0000000004366000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://nuget.org/NuGet.exe |
Source: KLL.exe, 00000000.00000003.2083647219.0000014B5D69D000.00000004.00000020.00020000.00000000.sdmp, LetsPRO.exe, 00000034.00000002.4520319907.0000000001307000.00000004.00000020.00020000.00000000.sdmp, System.Data.Common.dll.19.dr, ToastNotifications.Messages.dll.19.dr, System.Linq.Queryable.dll.19.dr, System.Runtime.Serialization.Primitives.dll.19.dr, System.Windows.Interactivity.dll.19.dr, System.Diagnostics.FileVersionInfo.dll.19.dr, System.Runtime.Numerics.dll.19.dr, System.Web.Services.Description.resources.dll10.19.dr, System.Data.Odbc.dll.19.dr, Microsoft.Win32.Registry.AccessControl.dll.19.dr, System.Threading.Thread.dll.19.dr, System.Diagnostics.TraceSource.dll.19.dr, WebView2Loader.dll1.19.dr, System.Threading.Timer.dll.19.dr, System.ValueTuple.dll.19.dr, System.Security.Cryptography.Encoding.dll.19.dr, LetsPRO.resources.dll2.19.dr, CommunityToolkit.Mvvm.dll.19.dr, System.Web.Services.Description.resources.dll0.19.dr | String found in binary or memory: http://ocsp.comodoca.com0 |
Source: KLL.exe, 00000000.00000003.2083647219.0000014B5D69D000.00000004.00000020.00020000.00000000.sdmp, KLL.exe, 00000000.00000003.2083572061.0000014B5F2F1000.00000004.00000020.00020000.00000000.sdmp, System.Data.Common.dll.19.dr, ToastNotifications.Messages.dll.19.dr, System.Linq.Queryable.dll.19.dr, System.Runtime.Serialization.Primitives.dll.19.dr, System.Windows.Interactivity.dll.19.dr, System.Diagnostics.FileVersionInfo.dll.19.dr, System.Runtime.Numerics.dll.19.dr, System.Web.Services.Description.resources.dll10.19.dr, System.Data.Odbc.dll.19.dr, Microsoft.Win32.Registry.AccessControl.dll.19.dr, System.Threading.Thread.dll.19.dr, System.Diagnostics.TraceSource.dll.19.dr, WebView2Loader.dll1.19.dr, System.Threading.Timer.dll.19.dr, System.ValueTuple.dll.19.dr, System.Security.Cryptography.Encoding.dll.19.dr, LetsPRO.resources.dll2.19.dr, CommunityToolkit.Mvvm.dll.19.dr, System.Web.Services.Description.resources.dll0.19.dr | String found in binary or memory: http://ocsp.digicert.com0A |
Source: KLL.exe, 00000000.00000003.2083647219.0000014B5D69D000.00000004.00000020.00020000.00000000.sdmp, KLL.exe, 00000000.00000003.2083572061.0000014B5F2F1000.00000004.00000020.00020000.00000000.sdmp, System.Data.Common.dll.19.dr, ToastNotifications.Messages.dll.19.dr, System.Linq.Queryable.dll.19.dr, System.Runtime.Serialization.Primitives.dll.19.dr, System.Windows.Interactivity.dll.19.dr, System.Diagnostics.FileVersionInfo.dll.19.dr, System.Runtime.Numerics.dll.19.dr, System.Web.Services.Description.resources.dll10.19.dr, System.Data.Odbc.dll.19.dr, Microsoft.Win32.Registry.AccessControl.dll.19.dr, System.Threading.Thread.dll.19.dr, System.Diagnostics.TraceSource.dll.19.dr, WebView2Loader.dll1.19.dr, System.Threading.Timer.dll.19.dr, System.ValueTuple.dll.19.dr, System.Security.Cryptography.Encoding.dll.19.dr, LetsPRO.resources.dll2.19.dr, CommunityToolkit.Mvvm.dll.19.dr, System.Web.Services.Description.resources.dll0.19.dr | String found in binary or memory: http://ocsp.digicert.com0C |
Source: KLL.exe, 00000000.00000003.2083647219.0000014B5D69D000.00000004.00000020.00020000.00000000.sdmp, KLL.exe, 00000000.00000003.2083572061.0000014B5F2F1000.00000004.00000020.00020000.00000000.sdmp, System.Data.Common.dll.19.dr, ToastNotifications.Messages.dll.19.dr, System.Linq.Queryable.dll.19.dr, System.Runtime.Serialization.Primitives.dll.19.dr, System.Windows.Interactivity.dll.19.dr, System.Diagnostics.FileVersionInfo.dll.19.dr, System.Runtime.Numerics.dll.19.dr, System.Web.Services.Description.resources.dll10.19.dr, System.Data.Odbc.dll.19.dr, Microsoft.Win32.Registry.AccessControl.dll.19.dr, System.Threading.Thread.dll.19.dr, System.Diagnostics.TraceSource.dll.19.dr, WebView2Loader.dll1.19.dr, System.Threading.Timer.dll.19.dr, System.ValueTuple.dll.19.dr, System.Security.Cryptography.Encoding.dll.19.dr, LetsPRO.resources.dll2.19.dr, CommunityToolkit.Mvvm.dll.19.dr, System.Web.Services.Description.resources.dll0.19.dr | String found in binary or memory: http://ocsp.digicert.com0X |
Source: System.ObjectModel.dll.19.dr | String found in binary or memory: http://ocsp.sectigo.com0 |
Source: powershell.exe, 00000019.00000002.2289311446.0000000004C16000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000034.00000002.4522692065.00000000031F3000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000034.00000002.4522692065.00000000033E7000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://pesterbdd.com/images/Pester.png |
Source: KLL.exe, 00000000.00000002.2144478428.00007FF702033000.00000004.00000001.01000000.00000003.sdmp, KLL.exe, 00000000.00000000.2035226671.00007FF701A0E000.00000008.00000001.01000000.00000003.sdmp | String found in binary or memory: http://repository.certum.pl/cscasha2.cer0 |
Source: KLL.exe, 00000000.00000002.2141572454.00007FF701BE4000.00000008.00000001.01000000.00000003.sdmp, KLL.exe, 00000000.00000000.2035226671.00007FF701A0E000.00000008.00000001.01000000.00000003.sdmp | String found in binary or memory: http://repository.certum.pl/ctnca.cer0 |
Source: KLL.exe, 00000000.00000002.2144478428.00007FF702033000.00000004.00000001.01000000.00000003.sdmp, KLL.exe, 00000000.00000000.2035226671.00007FF701A0E000.00000008.00000001.01000000.00000003.sdmp | String found in binary or memory: http://repository.certum.pl/ctnca.cer09 |
Source: uc_ctrl.exe, 00000010.00000003.2111987373.00000000011AF000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: http://s1.symcb.com/pca3-g5.crl0 |
Source: uc_ctrl.exe, 00000010.00000003.2111987373.00000000011AF000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: http://s2.symcb.com0 |
Source: LetsPRO.exe, 00000034.00000000.2428812586.0000000000B82000.00000002.00000001.01000000.00000018.sdmp, LetsPRO.exe, 00000034.00000002.4522692065.0000000002F91000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://schemas.fontawesome.io/icons/ |
Source: powershell.exe, 00000019.00000002.2289311446.0000000004C16000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000034.00000002.4522692065.00000000033E7000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://schemas.xmlsoap.org/soap/encoding/ |
Source: powershell.exe, 00000016.00000002.2142060618.0000000005027000.00000004.00000800.00020000.00000000.sdmp, powershell.exe, 00000019.00000002.2289311446.0000000004AC1000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000034.00000002.4522692065.0000000002F91000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.00000000032FC000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://schemas.xmlsoap.org/ws/2005/05/identity/claims/name |
Source: powershell.exe, 00000019.00000002.2289311446.0000000004C16000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000034.00000002.4522692065.00000000033E7000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://schemas.xmlsoap.org/wsdl/ |
Source: KLL.exe, 00000000.00000002.2141572454.00007FF701BE4000.00000008.00000001.01000000.00000003.sdmp, KLL.exe, 00000000.00000002.2144478428.00007FF702033000.00000004.00000001.01000000.00000003.sdmp, KLL.exe, 00000000.00000000.2035226671.00007FF701A0E000.00000008.00000001.01000000.00000003.sdmp | String found in binary or memory: http://subca.ocsp-certum.com01 |
Source: uc_ctrl.exe, 00000010.00000003.2111987373.00000000011AF000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: http://sv.symcb.com/sv.crl0a |
Source: uc_ctrl.exe, 00000010.00000003.2111987373.00000000011AF000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: http://sv.symcb.com/sv.crt0 |
Source: uc_ctrl.exe, 00000010.00000003.2111987373.00000000011AF000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: http://sv.symcd.com0& |
Source: LetsPRO.exe, 00000034.00000000.2428812586.0000000000B82000.00000002.00000001.01000000.00000018.sdmp | String found in binary or memory: http://wpfanimatedgif.codeplex.com |
Source: powershell.exe, 00000019.00000002.2289311446.0000000004C16000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000034.00000002.4522692065.00000000031F3000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000034.00000002.4522692065.00000000033E7000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://www.apache.org/licenses/LICENSE-2.0.html |
Source: KLL.exe, 00000000.00000002.2141572454.00007FF701BE4000.00000008.00000001.01000000.00000003.sdmp, KLL.exe, 00000000.00000002.2144478428.00007FF702033000.00000004.00000001.01000000.00000003.sdmp, KLL.exe, 00000000.00000000.2035226671.00007FF701A0E000.00000008.00000001.01000000.00000003.sdmp | String found in binary or memory: http://www.certum.pl/CPS0 |
Source: LetsPRO.exe, 00000034.00000002.4585596709.0000000037F82000.00000002.00000001.01000000.00000032.sdmp, LetsPRO.exe, 00000044.00000002.2592127030.0000000002BE4000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000047.00000002.2599930286.0000000002A36000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002BE6000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://www.hardcodet.net/taskbar |
Source: LetsPRO.exe, 00000048.00000002.2677666838.00000000032D4000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://www.hardcodet.net/taskbar0 |
Source: uc_ctrl.exe, 00000010.00000003.2111987373.00000000011AF000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: http://www.isimba.cn0 |
Source: uc_ctrl.exe, 00000010.00000003.2111987373.00000000011AF000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: http://www.symauth.com/cps0( |
Source: uc_ctrl.exe, 00000010.00000003.2111987373.00000000011AF000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: http://www.symauth.com/rpa00 |
Source: System.Data.Odbc.dll.19.dr | String found in binary or memory: http://www.xmlspy.com) |
Source: LetsPRO.exe, 00000034.00000002.4555074935.000000000F892000.00000004.00001000.00020000.00000000.sdmp | String found in binary or memory: https://0.0.0.0%2F0debuginfodebug |
Source: LetsPRO.exe, 00000034.00000002.4555074935.000000000F892000.00000004.00001000.00020000.00000000.sdmp | String found in binary or memory: https://0.0.0.0%2F0debuginfodebuginfoinfoinfoinfoinfoHTTP/1.1 |
Source: LetsPRO.exe, 00000034.00000002.4559763761.000000000FBE4000.00000004.00001000.00020000.00000000.sdmp | String found in binary or memory: https://USUS2.B |
Source: LetsPRO.exe, 00000034.00000002.4554290604.000000000F822000.00000004.00001000.00020000.00000000.sdmp | String found in binary or memory: https://USUS2.CERTIFICATE |
Source: LetsPRO.exe, 00000034.00000002.4558392700.000000000F9E6000.00000004.00001000.00020000.00000000.sdmp | String found in binary or memory: https://WSASend0.0.0.0%2F0WSARecvinfoinfo |
Source: powershell.exe, 00000016.00000002.2142060618.000000000500A000.00000004.00000800.00020000.00000000.sdmp, powershell.exe, 00000016.00000002.2142060618.0000000004FF9000.00000004.00000800.00020000.00000000.sdmp, powershell.exe, 00000019.00000002.2289311446.0000000004AC1000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: https://aka.ms/pscore6lBsq |
Source: LetsPRO.exe, 00000034.00000002.4551634567.0000000006322000.00000002.00000001.01000000.0000001E.sdmp, CommunityToolkit.Mvvm.dll.19.dr | String found in binary or memory: https://aka.ms/toolkit/dotnet |
Source: LetsPRO.exe, 00000034.00000002.4536454539.0000000004366000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: https://contoso.com/ |
Source: LetsPRO.exe, 00000034.00000002.4536454539.0000000004366000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: https://contoso.com/Icon |
Source: LetsPRO.exe, 00000034.00000002.4536454539.0000000004366000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: https://contoso.com/License |
Source: uc_ctrl.exe, 00000010.00000003.2111987373.00000000011AF000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://d.symcb.com/cps0% |
Source: uc_ctrl.exe, 00000010.00000003.2111987373.00000000011AF000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://d.symcb.com/rpa0 |
Source: LetsPRO.exe, 00000034.00000002.4648506124.00000000689E9000.00000002.00000001.01000000.00000024.sdmp | String found in binary or memory: https://d1dmgcawtbm6l9.cloudfront.net/rest-apiinvalid |
Source: LetsPRO.resources.dll2.19.dr | String found in binary or memory: https://d3jb1hiazbhf2r.cloudfront.net/letsvpn-world/en/articles/3130411-smartbyte-%E8%BD%AF%E4%BB%B6 |
Source: LetsPRO.exe, 00000034.00000000.2428812586.0000000000B82000.00000002.00000001.01000000.00000018.sdmp | String found in binary or memory: https://d3jb1hiazbhf2r.cloudfront.net/letsvpn-world/en/articles/3401886-special-settings-for-smartby |
Source: LetsPRO.resources.dll2.19.dr | String found in binary or memory: https://d3jb1hiazbhf2r.cloudfront.net/letsvpn-world/en/articles/8259671-expressconnect-%E6%9C%8D%E5% |
Source: LetsPRO.resources.dll2.19.dr | String found in binary or memory: https://d3jb1hiazbhf2r.cloudfront.net/letsvpn-world/en/articles/8260054-killer-%E7%BD%91%E5%8D%A1%E6 |
Source: LetsPRO.resources.dll2.19.dr | String found in binary or memory: https://d3jb1hiazbhf2r.cloudfront.net/letsvpn-world/en/articles/8260083-host-network-service-%E9%9C% |
Source: LetsPRO.exe, 00000034.00000000.2428812586.0000000000B82000.00000002.00000001.01000000.00000018.sdmp | String found in binary or memory: https://d3jb1hiazbhf2r.cloudfront.net/letsvpn-world/en/articles/8262720-special-settings-for-host-ne |
Source: LetsPRO.exe, 00000034.00000000.2428812586.0000000000B82000.00000002.00000001.01000000.00000018.sdmp | String found in binary or memory: https://d3jb1hiazbhf2r.cloudfront.net/letsvpn-world/en/articles/8262786-special-settings-for-express |
Source: LetsPRO.exe, 00000034.00000000.2428812586.0000000000B82000.00000002.00000001.01000000.00000018.sdmp | String found in binary or memory: https://d3jb1hiazbhf2r.cloudfront.net/letsvpn-world/en/articles/8262801-special-settings-for-killer- |
Source: LetsPRO.resources.dll2.19.dr | String found in binary or memory: https://d3jb1hiazbhf2r.cloudfront.net/letsvpn-world/en/articles/8263010-windows-%E5%A6%82%E4%BD%95%E |
Source: LetsPRO.exe, 00000034.00000000.2428812586.0000000000B82000.00000002.00000001.01000000.00000018.sdmp | String found in binary or memory: https://d3jb1hiazbhf2r.cloudfront.net/letsvpn-world/en/articles/8263068-how-to-delete-hosts-in-windo |
Source: svchost.exe, 0000000C.00000003.2068735303.0000020BD3CA3000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: https://g.live.com/odclientsettings/Prod/C: |
Source: svchost.exe, 0000000C.00000003.2068735303.0000020BD3C30000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: https://g.live.com/odclientsettings/ProdV2.C: |
Source: LetsPRO.exe, 00000034.00000002.4551634567.0000000006322000.00000002.00000001.01000000.0000001E.sdmp, CommunityToolkit.Mvvm.dll.19.dr | String found in binary or memory: https://github.com/CommunityToolkit/dotnet |
Source: LetsPRO.exe, 00000044.00000002.2602011812.0000000005702000.00000002.00000001.01000000.0000001D.sdmp | String found in binary or memory: https://github.com/JamesNK/Newtonsoft.Json |
Source: powershell.exe, 00000019.00000002.2289311446.0000000004C16000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000034.00000002.4522692065.00000000031F3000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000034.00000002.4522692065.00000000033E7000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: https://github.com/Pester/Pester |
Source: LetsPRO.exe, 00000034.00000002.4552613363.0000000006402000.00000002.00000001.01000000.00000020.sdmp | String found in binary or memory: https://github.com/dotnet/corefx/tree/32b491939fbd125f304031c35038b1e14b4e3958 |
Source: LetsPRO.exe, 00000034.00000002.4552613363.0000000006402000.00000002.00000001.01000000.00000020.sdmp | String found in binary or memory: https://github.com/dotnet/corefx/tree/32b491939fbd125f304031c35038b1e14b4e39588 |
Source: LetsPRO.exe, 00000034.00000002.4552261430.00000000063D2000.00000002.00000001.01000000.00000022.sdmp | String found in binary or memory: https://github.com/dotnet/corefx/tree/7601f4f6225089ffb291dc7d58293c7bbf5c5d4f |
Source: LetsPRO.exe, 00000034.00000002.4552307737.00000000063D6000.00000002.00000001.01000000.00000022.sdmp | String found in binary or memory: https://github.com/dotnet/corefx/tree/7601f4f6225089ffb291dc7d58293c7bbf5c5d4f8 |
Source: System.Data.Odbc.dll.19.dr, Microsoft.Win32.Registry.AccessControl.dll.19.dr | String found in binary or memory: https://github.com/dotnet/runtime |
Source: Microsoft.Win32.Registry.AccessControl.dll.19.dr | String found in binary or memory: https://github.com/dotnet/runtime& |
Source: LetsPRO.exe, 00000034.00000002.4560889921.000000002FF02000.00000002.00000001.01000000.00000027.sdmp, LetsPRO.exe, 00000034.00000002.4522692065.000000000303A000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: https://in.appcenter.ms |
Source: LetsPRO.exe, 00000034.00000002.4560889921.000000002FF02000.00000002.00000001.01000000.00000027.sdmp | String found in binary or memory: https://in.appcenter.ms./logs?api-version=1.0.0 |
Source: letsvpn-latest.exe, 00000013.00000003.2429212628.00000000004FA000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://intercom.help/letsvpn-world/-N |
Source: LetsPRO.exe, 00000034.00000000.2428812586.0000000000B82000.00000002.00000001.01000000.00000018.sdmp, LetsPRO.resources.dll2.19.dr | String found in binary or memory: https://intercom.help/letsvpn-world/en/articles/2780068-%E5%A6%82%E4%BD%95%E4%B8%8B%E8%BD%BD%E5%BE%9 |
Source: LetsPRO.resources.dll2.19.dr | String found in binary or memory: https://intercom.help/letsvpn-world/en/articles/2825583-killer-%E7%BD%91%E5%8D%A1%E9%9C%80%E8%A6%81% |
Source: LetsPRO.exe, 00000034.00000000.2428812586.0000000000B82000.00000002.00000001.01000000.00000018.sdmp | String found in binary or memory: https://intercom.help/letsvpn-world/en/articles/2830420-special-settings-for-killer-networking-produ |
Source: LetsPRO.resources.dll2.19.dr | String found in binary or memory: https://intercom.help/letsvpn-world/en/articles/2907458-%E6%8F%90%E7%A4%BA%E7%BB%91%E5%AE%9A%E8%AE%B |
Source: LetsPRO.exe, 00000034.00000000.2428812586.0000000000B82000.00000002.00000001.01000000.00000018.sdmp, LetsPRO.resources.dll2.19.dr | String found in binary or memory: https://intercom.help/letsvpn-world/en/articles/2907649-%E9%80%9A%E8%BF%87%E7%94%B3%E8%BF%B0%E6%89%B |
Source: LetsPRO.exe, 00000034.00000000.2428812586.0000000000B82000.00000002.00000001.01000000.00000018.sdmp | String found in binary or memory: https://intercom.help/letsvpn-world/en/articles/2925752-how-to-download-letsvpn |
Source: LetsPRO.exe, 00000034.00000000.2428812586.0000000000B82000.00000002.00000001.01000000.00000018.sdmp | String found in binary or memory: https://intercom.help/letsvpn-world/en/articles/2926044-what-if-i-reached-maximum-connection-limit |
Source: LetsPRO.exe, 00000034.00000000.2428812586.0000000000B82000.00000002.00000001.01000000.00000018.sdmp | String found in binary or memory: https://intercom.help/letsvpn-world/en/articles/2926062-recover-my-letsvpn-account |
Source: LetsPRO.resources.dll2.19.dr | String found in binary or memory: https://intercom.help/letsvpn-world/en/articles/3076586-ipv6-%E7%BD%91%E7%BB%9C%E5%8D%8F%E8%AE%AE%E9 |
Source: LetsPRO.exe, 00000034.00000000.2428812586.0000000000B82000.00000002.00000001.01000000.00000018.sdmp | String found in binary or memory: https://intercom.help/letsvpn-world/en/articles/3081101-adjust-the-settings-for-ipv6 |
Source: LetsPRO.resources.dll2.19.dr | String found in binary or memory: https://intercom.help/letsvpn-world/en/articles/3706909-%E8%B4%A6%E6%88%B7%E7%B3%BB%E7%BB%9F%E6%97%A |
Source: LetsPRO.exe, 00000034.00000000.2428812586.0000000000B82000.00000002.00000001.01000000.00000018.sdmp | String found in binary or memory: https://intercom.help/letsvpn-world/en/articles/3710603-about-logging-in-out-anomalies |
Source: LetsPRO.exe, 00000034.00000000.2428812586.0000000000B82000.00000002.00000001.01000000.00000018.sdmp, LetsPRO.resources.dll2.19.dr | String found in binary or memory: https://intercom.help/letsvpn-world/en/collections/1611781-%E4%B8%AD%E6%96%87%E5%B8%AE%E5%8A%A9 |
Source: LetsPRO.exe, 00000034.00000000.2428812586.0000000000B82000.00000002.00000001.01000000.00000018.sdmp, LetsPRO.exe, 00000034.00000002.4522692065.0000000002F91000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: https://intercom.help/letsvpn-world/en/collections/1628560-help-documents |
Source: LetsPRO.exe, 00000034.00000000.2428812586.0000000000B82000.00000002.00000001.01000000.00000018.sdmp | String found in binary or memory: https://intercom.help/letsvpn-world/en/collections/Killer |
Source: LetsPRO.exe, 00000034.00000000.2428812586.0000000000B82000.00000002.00000001.01000000.00000018.sdmp, LetsPRO.resources.dll2.19.dr | String found in binary or memory: https://letsvpn.world/privacy.html |
Source: LetsPRO.exe, 00000034.00000000.2428812586.0000000000B82000.00000002.00000001.01000000.00000018.sdmp, LetsPRO.resources.dll2.19.dr | String found in binary or memory: https://letsvpn.world/registerterm.html |
Source: LetsPRO.exe, 00000034.00000000.2428812586.0000000000B82000.00000002.00000001.01000000.00000018.sdmp, LetsPRO.resources.dll2.19.dr | String found in binary or memory: https://letsvpn.world/terms.html |
Source: LetsPRO.exe, 00000034.00000002.4555599565.000000000F8B6000.00000004.00001000.00020000.00000000.sdmp | String found in binary or memory: https://nit.crash1ytics.com |
Source: LetsPRO.exe, 00000034.00000002.4558432196.000000000F9F2000.00000004.00001000.00020000.00000000.sdmp, LetsPRO.exe, 00000034.00000002.4554146521.000000000F806000.00000004.00001000.00020000.00000000.sdmp | String found in binary or memory: https://nit.crash1ytics.com/app32/device |
Source: LetsPRO.exe, 00000034.00000002.4554290604.000000000F822000.00000004.00001000.00020000.00000000.sdmp | String found in binary or memory: https://nit.crash1ytics.com/app32/deviceHh |
Source: LetsPRO.exe, 00000034.00000002.4555074935.000000000F886000.00000004.00001000.00020000.00000000.sdmp | String found in binary or memory: https://nit.crash1ytics.com/app32/devicehttps://nit.crash1ytics.com/app32/device |
Source: LetsPRO.exe, 00000034.00000002.4554290604.000000000F822000.00000004.00001000.00020000.00000000.sdmp | String found in binary or memory: https://nit.crash1ytics.com/app32/devicehttps://nit.crash1ytics.com/app32/deviceH |
Source: LetsPRO.exe, 00000034.00000002.4554290604.000000000F822000.00000004.00001000.00020000.00000000.sdmp | String found in binary or memory: https://nit.crash1ytics.com/app32/devicehttps://nit.crash1ytics.com/app32/deviceHt |
Source: LetsPRO.exe, 00000034.00000002.4555074935.000000000F886000.00000004.00001000.00020000.00000000.sdmp | String found in binary or memory: https://nit.crash1ytics.com/app32/devicehttps://nit.crash1ytics.com/app32/deviceH~ |
Source: LetsPRO.exe, 00000034.00000002.4558940725.000000000FA54000.00000004.00001000.00020000.00000000.sdmp | String found in binary or memory: https://nit.crash1ytics.comU |
Source: LetsPRO.exe, 00000034.00000002.4558940725.000000000FA54000.00000004.00001000.00020000.00000000.sdmp, LetsPRO.exe, 00000034.00000002.4555599565.000000000F8B6000.00000004.00001000.00020000.00000000.sdmp | String found in binary or memory: https://nit.crash1ytics.coma90bc2279e3aaca6280acf90463a10dehttps://nit.crash1ytics.com |
Source: LetsPRO.exe, 00000034.00000002.4555599565.000000000F8B6000.00000004.00001000.00020000.00000000.sdmp | String found in binary or memory: https://nit.crash1ytics.coma90bc2279e3aaca6280acf90463a10dehttps://nit.crash1ytics.comSC-Set-NetIPIn |
Source: LetsPRO.exe, 00000034.00000002.4555599565.000000000F8B6000.00000004.00001000.00020000.00000000.sdmp | String found in binary or memory: https://nit.crash1ytics.coma90bc2279e3aaca6280acf90463a10dehttps://nit.crash1ytics.comk |
Source: LetsPRO.exe, 00000034.00000002.4555599565.000000000F8B6000.00000004.00001000.00020000.00000000.sdmp | String found in binary or memory: https://nit.crash1ytics.commg |
Source: powershell.exe, 00000019.00000002.2294187021.0000000005B29000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000034.00000002.4536454539.0000000004366000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: https://nuget.org/nuget.exe |
Source: LetsPRO.exe, 00000034.00000000.2428812586.0000000000B82000.00000002.00000001.01000000.00000018.sdmp | String found in binary or memory: https://pngimg.com/uploads/light/light_PNG14440.png |
Source: LetsPRO.resources.dll2.19.dr | String found in binary or memory: https://rdrt.jkjtdfbs.com/letsvpn-world/en/articles/8260070-intel-connectivity-service-%E9%9C%80%E8% |
Source: LetsPRO.exe, 00000034.00000000.2428812586.0000000000B82000.00000002.00000001.01000000.00000018.sdmp | String found in binary or memory: https://rdrt.jkjtdfbs.com/letsvpn-world/en/articles/8262690-special-settings-for-intel-connectivity- |
Source: KLL.exe, 00000000.00000003.2083647219.0000014B5D69D000.00000004.00000020.00020000.00000000.sdmp, KLL.exe, 00000000.00000003.2083572061.0000014B5F2F1000.00000004.00000020.00020000.00000000.sdmp, LetsPRO.exe, 00000034.00000002.4562462254.0000000030715000.00000004.00000020.00020000.00000000.sdmp, LetsPRO.exe, 00000034.00000002.4549763803.0000000005D70000.00000004.00000020.00020000.00000000.sdmp, System.Data.Common.dll.19.dr, ToastNotifications.Messages.dll.19.dr, System.Linq.Queryable.dll.19.dr, System.Runtime.Serialization.Primitives.dll.19.dr, System.Windows.Interactivity.dll.19.dr, System.Diagnostics.FileVersionInfo.dll.19.dr, System.Runtime.Numerics.dll.19.dr, System.Web.Services.Description.resources.dll10.19.dr, System.Data.Odbc.dll.19.dr, Microsoft.Win32.Registry.AccessControl.dll.19.dr, System.Threading.Thread.dll.19.dr, System.Diagnostics.TraceSource.dll.19.dr, WebView2Loader.dll1.19.dr, System.Threading.Timer.dll.19.dr, System.ValueTuple.dll.19.dr, System.Security.Cryptography.Encoding.dll.19.dr, LetsPRO.resources.dll2.19.dr | String found in binary or memory: https://sectigo.com/CPS0 |
Source: LetsPRO.exe, 00000034.00000000.2428812586.0000000000B82000.00000002.00000001.01000000.00000018.sdmp | String found in binary or memory: https://widget.intercom.io/widget/ |
Source: KLL.exe, 00000000.00000002.2144478428.00007FF702033000.00000004.00000001.01000000.00000003.sdmp, KLL.exe, 00000000.00000000.2035226671.00007FF701A0E000.00000008.00000001.01000000.00000003.sdmp | String found in binary or memory: https://www.certum.pl/CPS0 |
Source: LetsPRO.exe, 00000048.00000002.2677666838.00000000031A9000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 00000048.00000002.2677666838.000000000319A000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002AAD000.00000004.00000800.00020000.00000000.sdmp, LetsPRO.exe, 0000004A.00000002.2678581535.0000000002ABB000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: https://www.cnblogs.com/kliine/p/10950992.html |
Source: LetsPRO.exe, 00000044.00000002.2602011812.0000000005702000.00000002.00000001.01000000.0000001D.sdmp | String found in binary or memory: https://www.newtonsoft.com/jsonschema |
Source: LetsPRO.exe, 00000044.00000002.2602011812.0000000005702000.00000002.00000001.01000000.0000001D.sdmp | String found in binary or memory: https://www.nuget.org/packages/Newtonsoft.Json.Bson |