Source: LDeviceDetectionHelper.exe, 00000002.00000003.1751800677.0000000000EA8000.00000004.00000020.00020000.00000000.sdmp, Adobe-Setup.msi, 3d4fbf.msi.1.dr, hid.dll.2.dr, 3d4fbd.msi.1.dr, hid.dll.1.dr |
String found in binary or memory: http://crl.globalsign.com/codesigningrootr45.crl0U |
Source: LDeviceDetectionHelper.exe, 00000002.00000003.1751800677.0000000000EA8000.00000004.00000020.00020000.00000000.sdmp, Adobe-Setup.msi, 3d4fbf.msi.1.dr, hid.dll.2.dr, 3d4fbd.msi.1.dr, hid.dll.1.dr |
String found in binary or memory: http://crl.globalsign.com/gsgccr45evcodesignca2020.crl0 |
Source: LDeviceDetectionHelper.exe, 00000002.00000003.1751800677.0000000000EA8000.00000004.00000020.00020000.00000000.sdmp, Adobe-Setup.msi, 3d4fbf.msi.1.dr, hid.dll.2.dr, 3d4fbd.msi.1.dr, hid.dll.1.dr |
String found in binary or memory: http://crl.sectigo.com/SectigoPublicTimeStampingCAR36.crl0z |
Source: LDeviceDetectionHelper.exe, 00000002.00000003.1751800677.0000000000EA8000.00000004.00000020.00020000.00000000.sdmp, Adobe-Setup.msi, 3d4fbf.msi.1.dr, hid.dll.2.dr, 3d4fbd.msi.1.dr, hid.dll.1.dr |
String found in binary or memory: http://crl.sectigo.com/SectigoPublicTimeStampingRootR46.crl0 |
Source: LDeviceDetectionHelper.exe, 00000002.00000003.1751800677.0000000000ED7000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe.1.dr, LDeviceDetectionHelper.exe.2.dr |
String found in binary or memory: http://crl.thawte.com/ThawteTimestampingCA.crl0 |
Source: LDeviceDetectionHelper.exe, 00000002.00000003.1751800677.0000000000EA8000.00000004.00000020.00020000.00000000.sdmp, Adobe-Setup.msi, 3d4fbf.msi.1.dr, hid.dll.2.dr, 3d4fbd.msi.1.dr, hid.dll.1.dr |
String found in binary or memory: http://crt.sectigo.com/SectigoPublicTimeStampingCAR36.crt0# |
Source: LDeviceDetectionHelper.exe, 00000002.00000003.1751800677.0000000000EA8000.00000004.00000020.00020000.00000000.sdmp, Adobe-Setup.msi, 3d4fbf.msi.1.dr, hid.dll.2.dr, 3d4fbd.msi.1.dr, hid.dll.1.dr |
String found in binary or memory: http://crt.sectigo.com/SectigoPublicTimeStampingRootR46.p7c0# |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3957722486.00000000014AC000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3574543625.00000000014B0000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4059410990.00000000014AB000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4050415638.00000000014AB000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3658521789.00000000014B0000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2757694461.0000000001489000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2986136118.000000000998D000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3581608918.00000000014B0000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3481669146.00000000014B1000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3853215190.00000000014AC000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3959353874.00000000014AC000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3970620025.00000000014AA000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4158200503.00000000014AB000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3369795657.00000000014AF000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3757723729.00000000014AC000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3768895735.00000000014AA000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4148705517.00000000014B0000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3147646947.000000000148A000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3658452703.00000000014B0000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3670670517.00000000014AC000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000002.4169746874.00000000014B0000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/ |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.4059410990.00000000014AB000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4050415638.00000000014AB000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3970620025.00000000014AA000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4148705517.00000000014B0000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4059478971.00000000014AF000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/0 |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.4059410990.00000000014AB000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4050415638.00000000014AB000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3970620025.00000000014AA000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4148705517.00000000014B0000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4059478971.00000000014AF000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/9 |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3369795657.00000000014AF000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3369774109.00000000014AA000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/= |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3670670517.00000000014AC000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3670104886.00000000014AA000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/K |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.2757694461.0000000001489000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3369795657.00000000014AF000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3369774109.00000000014AA000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/P |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3147646947.000000000148A000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/Y |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.4059410990.00000000014AB000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4050415638.00000000014AB000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3970620025.00000000014AA000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4148705517.00000000014B0000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4059478971.00000000014AF000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/c |
Source: LDeviceDetectionHelper.exe, 00000003.00000002.4169171667.0000000001438000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/e |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.2757694461.0000000001489000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3147646947.000000000148A000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/g |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3369795657.00000000014AF000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3369774109.00000000014AA000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/l |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3189630486.0000000009E13000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/msd |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.4158200503.00000000014AB000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000002.4169746874.00000000014B0000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4158280457.00000000014AF000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3387373806.00000000014AA000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3387400315.00000000014AF000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/msdownl |
Source: LDeviceDetectionHelper.exe, 00000003.00000002.4169171667.0000000001438000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3093462675.0000000009E08000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/aut |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.2702672678.000000000998B000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3286733273.000000000998F000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2703218650.000000000998F000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrooigE |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.2794778012.000000000995C000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3574469532.0000000001489000.00000004.00000020.00020000.00000000.sdmp, 77EC63BDA74BD0D0E0426DC8F80085060.3.dr |
String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.1861998702.00000000014C0000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2757694461.0000000001489000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3189678889.00000000014BE000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3147748516.00000000014BE000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3147646947.000000000148A000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.1862828375.00000000014C0000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.1861616322.00000000014BD000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab$b |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3369668887.00000000014BE000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab$bL |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.2889340226.000000000998D000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2976401281.000000000998D000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab1 |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.4158200503.0000000001489000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000002.4169171667.0000000001461000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000002.4169680229.000000000148A000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab?0086b90dcfc22 |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.2757694461.0000000001489000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab?16098aafced73 |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.2757694461.0000000001489000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2606387699.0000000009989000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2606464931.000000000998F000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab?236454ae6409e |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3447878140.000000000148A000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab?77317a1c89729 |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3147646947.000000000148A000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab?85a20ca57e756 |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3826281111.000000000148A000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab?899fac7b36f9a |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3562358540.000000000148A000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab?96c6009ad16b2 |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3826281111.000000000148A000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab?9e65a423b999e |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3147646947.000000000148A000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab?b009a331b2090 |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3574469532.0000000001489000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab?b20e8ce04136e |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.4050415638.000000000148A000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab?ce1171f543746 |
Source: LDeviceDetectionHelper.exe, 00000003.00000002.4169680229.000000000148A000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab?ece842189c134 |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3147646947.000000000148A000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab?f886fafa07530 |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3959420839.0000000001497000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab?fa031dd4017c3 |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3275627022.0000000009A2E000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3369395828.0000000009A2E000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3189426863.00000000099D0000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3189571270.0000000009A2B000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab?fe827779c7521 |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3369634539.0000000009991000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3286733273.000000000998F000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabH |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.4157927729.000000000995D000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4059505757.0000000009931000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4051601161.000000000998B000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4051786281.0000000009931000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4148938117.000000000995D000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3959268993.000000000998A000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3959380791.000000000998C000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4050639002.0000000009931000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4149469891.000000000995D000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000002.4174911278.000000000998A000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3969710295.000000000995D000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabK |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3670296252.000000000998B000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3669187953.0000000009931000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabM |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3863869922.000000000998C000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3863600547.0000000009931000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabW |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3470251787.000000000998D000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3562823680.000000000998D000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3147694135.000000000998F000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3658098176.000000000998D000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3825709171.000000000998D000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3147393226.000000000998D000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3957364072.000000000998D000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3863869922.000000000998C000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3574272224.000000000998D000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3093579934.000000000998D000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3481476700.000000000998B000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3470897894.0000000009990000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3175736218.0000000009991000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3670296252.000000000998B000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3756898630.000000000998D000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3387151467.000000000998D000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3093413909.000000000998D000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3669187953.0000000009931000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3863600547.0000000009931000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3376841898.0000000009991000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3767111135.000000000995E000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabZ |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3147646947.000000000148A000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com/u |
Source: LDeviceDetectionHelper.exe, 00000003.00000002.4169746874.00000000014D7000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4158149583.00000000014D7000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com:80/msdownload/update/v3/static/trustedr/en/authrootstl.cab?0086b90dcf |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.2703090408.00000000014D6000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com:80/msdownload/update/v3/static/trustedr/en/authrootstl.cab?16098aafce |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.2606367351.00000000014D1000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2703090408.00000000014D6000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com:80/msdownload/update/v3/static/trustedr/en/authrootstl.cab?236454ae64 |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3387426657.00000000014D7000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com:80/msdownload/update/v3/static/trustedr/en/authrootstl.cab?77317a1c89 |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.2976574939.00000000014D5000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2976497937.00000000014D3000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2889742100.00000000014D1000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com:80/msdownload/update/v3/static/trustedr/en/authrootstl.cab?85a20ca57e |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3756952025.00000000014DA000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3669955034.00000000014CD000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3756857328.00000000014D0000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3757123606.00000000014D4000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3757701783.00000000014D5000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com:80/msdownload/update/v3/static/trustedr/en/authrootstl.cab?899fac7b36 |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3481992205.00000000014D4000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3481669146.00000000014B1000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3481928245.00000000014D1000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com:80/msdownload/update/v3/static/trustedr/en/authrootstl.cab?96c6009ad1 |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3768536052.00000000014D5000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com:80/msdownload/update/v3/static/trustedr/en/authrootstl.cab?9e65a423b9 |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3147622401.00000000014D7000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3093536683.00000000014D7000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com:80/msdownload/update/v3/static/trustedr/en/authrootstl.cab?b009a331b2 |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3574543625.00000000014B0000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3574617934.00000000014D1000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3574650189.00000000014D4000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com:80/msdownload/update/v3/static/trustedr/en/authrootstl.cab?b20e8ce041 |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3369600537.00000000014D7000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3387426657.00000000014D7000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3369735742.00000000014D7000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3377207535.00000000014D7000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3286685370.00000000014D2000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com:80/msdownload/update/v3/static/trustedr/en/authrootstl.cab?b92c29a6d3 |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.2976574939.00000000014D5000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2986330919.00000000014D1000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2877736466.00000000014DB000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2976497937.00000000014D3000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2795451779.00000000014D8000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2889742100.00000000014D1000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com:80/msdownload/update/v3/static/trustedr/en/authrootstl.cab?c635d253bb |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3970442752.00000000014D7000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com:80/msdownload/update/v3/static/trustedr/en/authrootstl.cab?ce1171f543 |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.4158149583.00000000014D7000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4059354172.00000000014D7000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com:80/msdownload/update/v3/static/trustedr/en/authrootstl.cab?ece842189c |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3084946134.00000000014D7000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2986330919.00000000014D1000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3082176742.00000000014D2000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3082977370.00000000014D6000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3093536683.00000000014D7000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com:80/msdownload/update/v3/static/trustedr/en/authrootstl.cab?f886fafa07 |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3863784215.00000000014CD000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3863940073.00000000014DA000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com:80/msdownload/update/v3/static/trustedr/en/authrootstl.cab?fa031dd401 |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3189552451.00000000014D2000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://ctldl.windowsupdate.com:80/msdownload/update/v3/static/trustedr/en/authrootstl.cab?fe827779c7 |
Source: LDeviceDetectionHelper.exe, 00000002.00000003.1751800677.0000000000EA8000.00000004.00000020.00020000.00000000.sdmp, Adobe-Setup.msi, 3d4fbf.msi.1.dr, hid.dll.2.dr, 3d4fbd.msi.1.dr, hid.dll.1.dr |
String found in binary or memory: http://ocsp.globalsign.com/codesigningrootr450F |
Source: LDeviceDetectionHelper.exe, 00000002.00000003.1751800677.0000000000EA8000.00000004.00000020.00020000.00000000.sdmp, Adobe-Setup.msi, 3d4fbf.msi.1.dr, hid.dll.2.dr, 3d4fbd.msi.1.dr, hid.dll.1.dr |
String found in binary or memory: http://ocsp.globalsign.com/gsgccr45evcodesignca20200U |
Source: LDeviceDetectionHelper.exe, 00000002.00000003.1751800677.0000000000EA8000.00000004.00000020.00020000.00000000.sdmp, Adobe-Setup.msi, 3d4fbf.msi.1.dr, hid.dll.2.dr, 3d4fbd.msi.1.dr, hid.dll.1.dr |
String found in binary or memory: http://ocsp.sectigo.com0 |
Source: LDeviceDetectionHelper.exe, 00000002.00000003.1751800677.0000000000ED7000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe.1.dr, LDeviceDetectionHelper.exe.2.dr |
String found in binary or memory: http://ocsp.thawte.com0 |
Source: LDeviceDetectionHelper.exe, 00000002.00000003.1751800677.0000000000EA8000.00000004.00000020.00020000.00000000.sdmp, Adobe-Setup.msi, 3d4fbf.msi.1.dr, hid.dll.2.dr, 3d4fbd.msi.1.dr, hid.dll.1.dr |
String found in binary or memory: http://secure.globalsign.com/cacert/codesigningrootr45.crt0A |
Source: LDeviceDetectionHelper.exe, 00000002.00000003.1751800677.0000000000EA8000.00000004.00000020.00020000.00000000.sdmp, Adobe-Setup.msi, 3d4fbf.msi.1.dr, hid.dll.2.dr, 3d4fbd.msi.1.dr, hid.dll.1.dr |
String found in binary or memory: http://secure.globalsign.com/cacert/gsgccr45evcodesignca2020.crt0? |
Source: LDeviceDetectionHelper.exe, 00000002.00000003.1751800677.0000000000ED7000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe.1.dr, LDeviceDetectionHelper.exe.2.dr |
String found in binary or memory: http://ts-aia.ws.symantec.com/tss-ca-g2.cer0 |
Source: LDeviceDetectionHelper.exe, 00000002.00000003.1751800677.0000000000ED7000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe.1.dr, LDeviceDetectionHelper.exe.2.dr |
String found in binary or memory: http://ts-crl.ws.symantec.com/tss-ca-g2.crl0( |
Source: LDeviceDetectionHelper.exe, 00000002.00000003.1751800677.0000000000ED7000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe.1.dr, LDeviceDetectionHelper.exe.2.dr |
String found in binary or memory: http://ts-ocsp.ws.symantec.com07 |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3957752061.0000000009990000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000002.4174911278.000000000998A000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3286733273.000000000998F000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3189506832.000000000998D000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3563831199.000000000998D000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2785120188.000000000998C000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3481006442.0000000009931000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3969710295.000000000995D000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2794778012.000000000995C000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3369774109.00000000014AA000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3574469532.0000000001489000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://103.238.227.183/ |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.2594544348.0000000009991000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2510705212.0000000009991000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://103.238.227.183/1 |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3957722486.00000000014AC000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3957559957.00000000014AC000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://103.238.227.183/J |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3189587862.000000000998F000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3175736218.0000000009991000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4059505757.0000000009931000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4051601161.000000000998B000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4051786281.0000000009931000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3447878140.000000000148A000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4148938117.000000000995D000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3369634539.0000000009991000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4050639002.0000000009931000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4149469891.000000000995D000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3286733273.000000000998F000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3189506832.000000000998D000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://103.238.227.183/L |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.2757694461.0000000001489000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3481669146.0000000001489000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3562358540.000000000148A000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3147646947.000000000148A000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3447878140.000000000148A000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://103.238.227.183/M |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.2692901453.0000000009991000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2606387699.0000000009989000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2784703450.000000000998C000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2702672678.000000000998B000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2692277352.0000000009991000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2757825988.0000000009991000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2594544348.0000000009991000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2606464931.000000000998F000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2510705212.0000000009991000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2703218650.000000000998F000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2785120188.000000000998C000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://103.238.227.183/Q |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.2692901453.0000000009991000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2784703450.000000000998C000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2702672678.000000000998B000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2692277352.0000000009991000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2879656930.000000000998D000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2757825988.0000000009991000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2795635041.000000000998B000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2795950854.000000000998F000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2878216156.000000000998D000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2703218650.000000000998F000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2785120188.000000000998C000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2794778012.000000000995C000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://103.238.227.183/Z |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3957722486.00000000014AC000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3957559957.00000000014AC000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://103.238.227.183/a |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3957722486.00000000014AC000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4059410990.00000000014AB000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4050415638.00000000014AB000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3959353874.00000000014AC000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3970620025.00000000014AA000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4148705517.00000000014B0000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3369668887.00000000014BE000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3957559957.00000000014AC000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4059478971.00000000014AF000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://103.238.227.183/nc. |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3957722486.00000000014AC000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3957559957.00000000014AC000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://103.238.227.183/nc.Y |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3369668887.00000000014BE000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://103.238.227.183/nc.q |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3189678889.00000000014BE000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://103.238.227.183/vo0? |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3369668887.00000000014BE000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://103.238.227.183/vop8 |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3574543625.00000000014B0000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2785101047.00000000014DB000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2606367351.00000000014D1000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3481992205.00000000014D4000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3147622401.00000000014D7000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2976574939.00000000014D5000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3826026103.00000000014D5000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3658962762.00000000014D2000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3581322995.00000000014D5000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000002.4169746874.00000000014D7000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3369600537.00000000014D7000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3084946134.00000000014D7000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3481669146.00000000014B1000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2510851709.00000000014DC000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2986330919.00000000014D1000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3082176742.00000000014D2000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3387426657.00000000014D7000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3574617934.00000000014D1000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3082977370.00000000014D6000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3470850626.00000000014D7000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3854655550.00000000014D5000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://103.238.227.183:443/ |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.2606367351.00000000014D1000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2510851709.00000000014DC000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2594895649.00000000014DC000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://103.238.227.183:443/K |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.2785101047.00000000014DB000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2877736466.00000000014DB000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2795451779.00000000014D8000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://103.238.227.183:443/L |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.2510851709.00000000014DC000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://103.238.227.183:443/P |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.2606367351.00000000014D1000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2510851709.00000000014DC000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.2594895649.00000000014DC000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://103.238.227.183:443/X |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3854655550.00000000014D5000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3853148549.00000000014D5000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4050132424.00000000014D7000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3970442752.00000000014D7000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3863784215.00000000014CD000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3863940073.00000000014DA000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.4059354172.00000000014D7000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://103.238.227.183:443/c |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.2510851709.00000000014DC000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://103.238.227.183:443/h |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3574543625.00000000014B0000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3481992205.00000000014D4000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3369600537.00000000014D7000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3481669146.00000000014B1000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3387426657.00000000014D7000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3574617934.00000000014D1000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3470850626.00000000014D7000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3369735742.00000000014D7000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3377207535.00000000014D7000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3562456061.00000000014D5000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3447800830.00000000014D7000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3574650189.00000000014D4000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3481928245.00000000014D1000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://103.238.227.183:443/k |
Source: LDeviceDetectionHelper.exe, 00000003.00000003.3275593678.00000000014D7000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3286685370.00000000014D2000.00000004.00000020.00020000.00000000.sdmp, LDeviceDetectionHelper.exe, 00000003.00000003.3189552451.00000000014D2000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://103.238.227.183:443/m:80/msdownload/update/v3/static/trustedr/en/authrootstl.cab?b009a331b20 |
Source: LDeviceDetectionHelper.exe, 00000002.00000003.1751800677.0000000000EA8000.00000004.00000020.00020000.00000000.sdmp, Adobe-Setup.msi, 3d4fbf.msi.1.dr, hid.dll.2.dr, 3d4fbd.msi.1.dr, hid.dll.1.dr |
String found in binary or memory: https://sectigo.com/CPS0 |
Source: LDeviceDetectionHelper.exe, 00000002.00000003.1751800677.0000000000EA8000.00000004.00000020.00020000.00000000.sdmp, Adobe-Setup.msi, 3d4fbf.msi.1.dr, hid.dll.2.dr, 3d4fbd.msi.1.dr, hid.dll.1.dr |
String found in binary or memory: https://www.globalsign.com/repository/0 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_0095E720 |
2_2_0095E720 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_0097B032 |
2_2_0097B032 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_00978092 |
2_2_00978092 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_00986122 |
2_2_00986122 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_00972168 |
2_2_00972168 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_009022A0 |
2_2_009022A0 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_00974390 |
2_2_00974390 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_009383E0 |
2_2_009383E0 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_0099C50D |
2_2_0099C50D |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_0097265C |
2_2_0097265C |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_00972A74 |
2_2_00972A74 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_0099CA7D |
2_2_0099CA7D |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_0095ECA0 |
2_2_0095ECA0 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_00972EA9 |
2_2_00972EA9 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_0099EEC1 |
2_2_0099EEC1 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_0099CFED |
2_2_0099CFED |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_009732DE |
2_2_009732DE |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_0096D2C0 |
2_2_0096D2C0 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_0096B226 |
2_2_0096B226 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_00983361 |
2_2_00983361 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_0095B4B0 |
2_2_0095B4B0 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_0090D6B0 |
2_2_0090D6B0 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_0099D769 |
2_2_0099D769 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_00987802 |
2_2_00987802 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02CE4264 |
2_2_02CE4264 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02CB6040 |
2_2_02CB6040 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02C98004 |
2_2_02C98004 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02CC4190 |
2_2_02CC4190 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02CD810A |
2_2_02CD810A |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02CA66FC |
2_2_02CA66FC |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02C9A438 |
2_2_02C9A438 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02CD4582 |
2_2_02CD4582 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02C9AA30 |
2_2_02C9AA30 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02CA2BD8 |
2_2_02CA2BD8 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02CCC8C2 |
2_2_02CCC8C2 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02CD080A |
2_2_02CD080A |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02C90800 |
2_2_02C90800 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02CA492A |
2_2_02CA492A |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02C96F82 |
2_2_02C96F82 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02C94FBE |
2_2_02C94FBE |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02CE0CB2 |
2_2_02CE0CB2 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02CC4C26 |
2_2_02CC4C26 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02CAADFC |
2_2_02CAADFC |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02CA92C8 |
2_2_02CA92C8 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02CD92CE |
2_2_02CD92CE |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02C9F2DA |
2_2_02C9F2DA |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02CA51A0 |
2_2_02CA51A0 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02CED69A |
2_2_02CED69A |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02C95628 |
2_2_02C95628 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02CC7451 |
2_2_02CC7451 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02CD3468 |
2_2_02CD3468 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02CC75C4 |
2_2_02CC75C4 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02CD554A |
2_2_02CD554A |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02C9B502 |
2_2_02C9B502 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02CCDACE |
2_2_02CCDACE |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02C9FA5C |
2_2_02C9FA5C |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02CA5A2E |
2_2_02CA5A2E |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02C97B5E |
2_2_02C97B5E |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02C99B0A |
2_2_02C99B0A |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02CD190A |
2_2_02CD190A |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02CD7902 |
2_2_02CD7902 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02CB7E9C |
2_2_02CB7E9C |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02C9FEB6 |
2_2_02C9FEB6 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02D15FC4 |
2_2_02D15FC4 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02CC5C0A |
2_2_02CC5C0A |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02C9BD7A |
2_2_02C9BD7A |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_02D21D21 |
2_2_02D21D21 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_04DD1400 |
2_2_04DD1400 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_04E2E29A |
2_2_04E2E29A |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_04DE2C1C |
2_2_04DE2C1C |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_04DD8C04 |
2_2_04DD8C04 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_04E04D90 |
2_2_04E04D90 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_04DE5DA0 |
2_2_04DE5DA0 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_04E18502 |
2_2_04E18502 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_04DE552A |
2_2_04DE552A |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_04DDFEDA |
2_2_04DDFEDA |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_04DE9EC8 |
2_2_04DE9EC8 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: 2_2_04E0E6CE |
2_2_04E0E6CE |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_00D0E720 |
3_2_00D0E720 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_00D2B032 |
3_2_00D2B032 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_00D28092 |
3_2_00D28092 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_00D22168 |
3_2_00D22168 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_00D36122 |
3_2_00D36122 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_00CB22A0 |
3_2_00CB22A0 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_00CE83E0 |
3_2_00CE83E0 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_00D24390 |
3_2_00D24390 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_00D4C50D |
3_2_00D4C50D |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_00D2265C |
3_2_00D2265C |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_00D22A74 |
3_2_00D22A74 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_00D4CA7D |
3_2_00D4CA7D |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_00D0ECA0 |
3_2_00D0ECA0 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_00D4EEC1 |
3_2_00D4EEC1 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_00D22EA9 |
3_2_00D22EA9 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_00D4CFED |
3_2_00D4CFED |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_00D232DE |
3_2_00D232DE |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_00D1D2C0 |
3_2_00D1D2C0 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_00D1B226 |
3_2_00D1B226 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_00D33361 |
3_2_00D33361 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_00D0B4B0 |
3_2_00D0B4B0 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_00CBD6B0 |
3_2_00CBD6B0 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_00D4D769 |
3_2_00D4D769 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_00D37802 |
3_2_00D37802 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_053D1400 |
3_2_053D1400 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_05374582 |
3_2_05374582 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_0533A438 |
3_2_0533A438 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_053466FC |
3_2_053466FC |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_0537810A |
3_2_0537810A |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_05364190 |
3_2_05364190 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_05338004 |
3_2_05338004 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_05356040 |
3_2_05356040 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_05384264 |
3_2_05384264 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_0534ADFC |
3_2_0534ADFC |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_05364C26 |
3_2_05364C26 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_05380CB2 |
3_2_05380CB2 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_05334FBE |
3_2_05334FBE |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_05336F82 |
3_2_05336F82 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_0534492A |
3_2_0534492A |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_05330800 |
3_2_05330800 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_0537080A |
3_2_0537080A |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_0536C8C2 |
3_2_0536C8C2 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_05342BD8 |
3_2_05342BD8 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_0533AA30 |
3_2_0533AA30 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_0533B502 |
3_2_0533B502 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_0537554A |
3_2_0537554A |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_053675C4 |
3_2_053675C4 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_05373468 |
3_2_05373468 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_05367451 |
3_2_05367451 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_05335628 |
3_2_05335628 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_0538D69A |
3_2_0538D69A |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_053451A0 |
3_2_053451A0 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_0533F2DA |
3_2_0533F2DA |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_053792CE |
3_2_053792CE |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_053492C8 |
3_2_053492C8 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_053C1D21 |
3_2_053C1D21 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_0533BD7A |
3_2_0533BD7A |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_05365C0A |
3_2_05365C0A |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_053B5FC4 |
3_2_053B5FC4 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_0533FEB6 |
3_2_0533FEB6 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_05357E9C |
3_2_05357E9C |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_05377902 |
3_2_05377902 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_0537190A |
3_2_0537190A |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_05339B0A |
3_2_05339B0A |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_05337B5E |
3_2_05337B5E |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_053D5BBE |
3_2_053D5BBE |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_05345A2E |
3_2_05345A2E |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_0533FA5C |
3_2_0533FA5C |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: 3_2_0536DACE |
3_2_0536DACE |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: apphelp.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: aclayers.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: sfc.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: sfc_os.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: msi.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: srpapi.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: kernel.appcore.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: kernel.appcore.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: tsappcmp.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: uxtheme.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: textinputframework.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: coreuicomponents.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: coremessaging.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: ntmarta.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: windows.storage.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: wldp.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: propsys.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: textshaping.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: netapi32.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: wkscli.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: netutils.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: msasn1.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: cryptsp.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: rsaenh.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: cryptbase.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: msisip.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: gpapi.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: version.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: mscoree.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: profapi.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: sspicli.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: msihnd.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: pcacli.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: mpr.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: apphelp.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: aclayers.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: sfc.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: sfc_os.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: kernel.appcore.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: msi.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: tsappcmp.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: userenv.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: profapi.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: sspicli.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: netapi32.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: wkscli.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: netutils.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: srclient.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: spp.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: powrprof.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: vssapi.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: vsstrace.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: umpdc.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: wldp.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: msasn1.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: cryptsp.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: rsaenh.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: cryptbase.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: msisip.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: gpapi.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: mscoree.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: version.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: vcruntime140_clr0400.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: ucrtbase_clr0400.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: ucrtbase_clr0400.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: rstrtmgr.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: ncrypt.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: ntasn1.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: windows.storage.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: pcacli.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: mpr.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: cabinet.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Section loaded: apphelp.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Section loaded: uxtheme.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Section loaded: textshaping.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Section loaded: hid.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Section loaded: kernel.appcore.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Section loaded: textinputframework.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Section loaded: coreuicomponents.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Section loaded: coremessaging.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Section loaded: ntmarta.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Section loaded: version.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Section loaded: winhttp.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: apphelp.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: uxtheme.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: textshaping.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: hid.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: kernel.appcore.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: textinputframework.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: coreuicomponents.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: coremessaging.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: ntmarta.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: version.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: winhttp.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: ondemandconnroutehelper.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: webio.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: mswsock.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: iphlpapi.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: winnsi.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: sspicli.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: schannel.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: mskeyprotect.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: ntasn1.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: ncrypt.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: ncryptsslp.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: msasn1.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: cryptsp.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: rsaenh.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: cryptbase.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: gpapi.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: cryptnet.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: dhcpcsvc6.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: dhcpcsvc.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: profapi.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: dnsapi.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: rasadhlp.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: fwpuclnt.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: cabinet.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: dpapi.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: napinsp.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: pnrpnsp.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: wshbth.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: nlaapi.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: winrnr.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: uxtheme.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: textshaping.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: hid.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: kernel.appcore.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: textinputframework.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: coreuicomponents.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: coremessaging.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: ntmarta.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: coremessaging.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: version.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: winhttp.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: uxtheme.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: textshaping.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: hid.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: kernel.appcore.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: textinputframework.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: coreuicomponents.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: coremessaging.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: ntmarta.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: version.dll |
Jump to behavior |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Section loaded: winhttp.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: ___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo, |
2_2_0098C00C |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: _TranslateName,_GetLocaleNameFromLangCountry,_GetLocaleNameFromLanguage,_TranslateName,_GetLocaleNameFromLangCountry,_GetLocaleNameFromLanguage,_GetLocaleNameFromDefault,IsValidCodePage,_wcschr,_wcschr,__itow_s,__invoke_watson,GetLocaleInfoW, |
2_2_00994583 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: EnumSystemLocalesW, |
2_2_009947F3 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: _GetPrimaryLen,EnumSystemLocalesW, |
2_2_009948B0 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: _GetPrimaryLen,EnumSystemLocalesW, |
2_2_00994833 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: ___crtGetLocaleInfoA,GetLastError,___crtGetLocaleInfoA,__calloc_crt,___crtGetLocaleInfoA,__calloc_crt,_free,_free,__calloc_crt,_free,__invoke_watson, |
2_2_00974876 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: GetLocaleInfoW,GetLocaleInfoW,GetLocaleInfoW, |
2_2_00994933 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: GetLocaleInfoW, |
2_2_00994B26 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: GetLocaleInfoW,_GetPrimaryLen, |
2_2_00994CFB |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: _wcscmp,_wcscmp,GetLocaleInfoW,GetLocaleInfoW,GetACP, |
2_2_00994C4E |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: _memset,_TranslateName,_TranslateName,_GetLcidFromCountry,GetUserDefaultLCID,IsValidCodePage,IsValidLocale,GetLocaleInfoW,GetLocaleInfoW,GetLocaleInfoW,__itow_s, |
2_2_00994D63 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: _LocaleUpdate::_LocaleUpdate,__crtGetLocaleInfoA_stat, |
2_2_0098B4C2 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: __calloc_crt,__malloc_crt,_free,__malloc_crt,_free,_free,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___free_lconv_mon,_free,_free,_free,InterlockedDecrement,InterlockedDecrement,_free,_free, |
2_2_0098B5FF |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: EnumSystemLocalesW, |
2_2_00973A1D |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: __calloc_crt,__malloc_crt,_free,__malloc_crt,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___free_lconv_num,_free,_free,InterlockedDecrement,InterlockedDecrement,_free,_free, |
2_2_0098BA08 |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: GetLocaleInfoW, |
2_2_00973A5A |
Source: C:\Users\user\AppData\Local\gVCgHiMSMMBE\LDeviceDetectionHelper.exe |
Code function: ___getlocaleinfo,__malloc_crt,__calloc_crt,__calloc_crt,__calloc_crt,__calloc_crt,GetCPInfo,___crtLCMapStringA,___crtLCMapStringA,___crtGetStringTypeW,_memmove,_memmove,_memmove,InterlockedDecrement,_free,_free,_free,_free,_free,_free,_free,_free,_free,InterlockedDecrement, |
2_2_0096FCB8 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: ___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo, |
3_2_00D3C00C |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: _TranslateName,_GetLocaleNameFromLangCountry,_GetLocaleNameFromLanguage,_TranslateName,_GetLocaleNameFromLangCountry,_GetLocaleNameFromLanguage,_GetLocaleNameFromDefault,IsValidCodePage,_wcschr,_wcschr,__itow_s,__invoke_watson,GetLocaleInfoW, |
3_2_00D44583 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: EnumSystemLocalesW, |
3_2_00D447F3 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: _GetPrimaryLen,EnumSystemLocalesW, |
3_2_00D448B0 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: ___crtGetLocaleInfoA,GetLastError,___crtGetLocaleInfoA,__calloc_crt,___crtGetLocaleInfoA,__calloc_crt,_free,_free,__calloc_crt,_free,__invoke_watson, |
3_2_00D24876 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: _GetPrimaryLen,EnumSystemLocalesW, |
3_2_00D44833 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: GetLocaleInfoW,GetLocaleInfoW,GetLocaleInfoW, |
3_2_00D44933 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: GetLocaleInfoW, |
3_2_00D44B26 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: GetLocaleInfoW,_GetPrimaryLen, |
3_2_00D44CFB |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: _wcscmp,_wcscmp,GetLocaleInfoW,GetLocaleInfoW,GetACP, |
3_2_00D44C4E |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: _memset,_TranslateName,_TranslateName,_GetLcidFromCountry,GetUserDefaultLCID,IsValidCodePage,IsValidLocale,GetLocaleInfoW,GetLocaleInfoW,GetLocaleInfoW,__itow_s, |
3_2_00D44D63 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: _LocaleUpdate::_LocaleUpdate,__crtGetLocaleInfoA_stat, |
3_2_00D3B4C2 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: __calloc_crt,__malloc_crt,_free,__malloc_crt,_free,_free,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___free_lconv_mon,_free,_free,_free,InterlockedDecrement,InterlockedDecrement,_free,_free, |
3_2_00D3B5FF |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: GetLocaleInfoW, |
3_2_00D23A5A |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: EnumSystemLocalesW, |
3_2_00D23A1D |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: __calloc_crt,__malloc_crt,_free,__malloc_crt,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___free_lconv_num,_free,_free,InterlockedDecrement,InterlockedDecrement,_free,_free, |
3_2_00D3BA08 |
Source: C:\ProgramData\SecurityScan\LDeviceDetectionHelper.exe |
Code function: ___getlocaleinfo,__malloc_crt,__calloc_crt,__calloc_crt,__calloc_crt,__calloc_crt,GetCPInfo,___crtLCMapStringA,___crtLCMapStringA,___crtGetStringTypeW,_memmove,_memmove,_memmove,InterlockedDecrement,_free,_free,_free,_free,_free,_free,_free,_free,_free,InterlockedDecrement, |
3_2_00D1FCB8 |