Source: 00000000.00000002.2423108104.000000000253E000.00000004.00001000.00020000.00000000.sdmp |
String decryptor: servicedny.site |
Source: 00000000.00000002.2423108104.000000000253E000.00000004.00001000.00020000.00000000.sdmp |
String decryptor: authorisev.site |
Source: 00000000.00000002.2423108104.000000000253E000.00000004.00001000.00020000.00000000.sdmp |
String decryptor: faulteyotk.site |
Source: 00000000.00000002.2423108104.000000000253E000.00000004.00001000.00020000.00000000.sdmp |
String decryptor: dilemmadu.site |
Source: 00000000.00000002.2423108104.000000000253E000.00000004.00001000.00020000.00000000.sdmp |
String decryptor: contemteny.site |
Source: 00000000.00000002.2423108104.000000000253E000.00000004.00001000.00020000.00000000.sdmp |
String decryptor: goalyfeastz.site |
Source: 00000000.00000002.2423108104.000000000253E000.00000004.00001000.00020000.00000000.sdmp |
String decryptor: opposezmny.site |
Source: 00000000.00000002.2423108104.000000000253E000.00000004.00001000.00020000.00000000.sdmp |
String decryptor: seallysl.site |
Source: 00000000.00000002.2423108104.000000000253E000.00000004.00001000.00020000.00000000.sdmp |
String decryptor: servicedny.site |
Source: 00000000.00000002.2423108104.000000000253E000.00000004.00001000.00020000.00000000.sdmp |
String decryptor: lid=%s&j=%s&ver=4.0 |
Source: 00000000.00000002.2423108104.000000000253E000.00000004.00001000.00020000.00000000.sdmp |
String decryptor: TeslaBrowser/5.5 |
Source: 00000000.00000002.2423108104.000000000253E000.00000004.00001000.00020000.00000000.sdmp |
String decryptor: - Screen Resoluton: |
Source: 00000000.00000002.2423108104.000000000253E000.00000004.00001000.00020000.00000000.sdmp |
String decryptor: - Physical Installed Memory: |
Source: 00000000.00000002.2423108104.000000000253E000.00000004.00001000.00020000.00000000.sdmp |
String decryptor: Workgroup: - |
Source: 00000000.00000002.2423108104.000000000253E000.00000004.00001000.00020000.00000000.sdmp |
String decryptor: MkfS5f-- |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then movzx edx, byte ptr [esp+ecx+5A603547h] |
2_2_00410118 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov byte ptr [ebx], dl |
2_2_00410118 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then movzx ecx, byte ptr [ecx+eax-24F86745h] |
2_2_00410118 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov edx, ecx |
2_2_00410118 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov edx, ecx |
2_2_00410118 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then movzx edx, byte ptr [esp+ecx+5A603547h] |
2_2_00410130 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov byte ptr [ebx], dl |
2_2_00410130 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then movzx ecx, byte ptr [ecx+eax-24F86745h] |
2_2_00410130 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov edx, ecx |
2_2_00410130 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov edx, ecx |
2_2_00410130 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then movzx esi, byte ptr [eax] |
2_2_004441F0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov edx, ecx |
2_2_0044137E |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov edx, ecx |
2_2_004413D5 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then jmp eax |
2_2_0041D5AF |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov edx, eax |
2_2_0043A97E |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then cmp dword ptr [eax+ebx*8], 7CDE1E50h |
2_2_0043A97E |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then cmp dword ptr [edi+esi*8], B62B8D10h |
2_2_0043A97E |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov byte ptr [ebx], cl |
2_2_0042EB60 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov ecx, eax |
2_2_0042EB60 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then lea edx, dword ptr [eax-80h] |
2_2_0042EB60 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then movzx ebx, byte ptr [esi+ecx+0000009Ch] |
2_2_0042EB60 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then movzx ecx, byte ptr [esi+eax+068F7B6Bh] |
2_2_0042EB60 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov dword ptr [esi+04h], eax |
2_2_0042EB60 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov byte ptr [ebx], al |
2_2_0042EB60 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov dword ptr [eax+ebx], 30303030h |
2_2_00401000 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov dword ptr [eax+ebx], 20202020h |
2_2_00401000 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then cmp dword ptr [ebx+edi*8], B62B8D10h |
2_2_0043B170 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then jmp edx |
2_2_004431D0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then xor byte ptr [ecx+ebx], bl |
2_2_004431D0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then movzx edx, byte ptr [esp+eax-7DC9E524h] |
2_2_004241E0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then jmp edx |
2_2_00442EB0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then xor byte ptr [ecx+ebx], bl |
2_2_00442EB0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then jmp edx |
2_2_004432C0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then xor byte ptr [ecx+ebx], bl |
2_2_004432C0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov byte ptr [eax+ebx], 00000030h |
2_2_004012D5 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov ecx, ebx |
2_2_00421333 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then movzx esi, byte ptr [eax] |
2_2_00444380 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then jmp edx |
2_2_004433B0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then xor byte ptr [ecx+ebx], bl |
2_2_004433B0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then cmp byte ptr [esi+ebx], 00000000h |
2_2_0042E400 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then movzx ebx, byte ptr [esi+ecx+0000009Ch] |
2_2_0042F4DD |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then movzx ecx, byte ptr [esi+eax+068F7B6Bh] |
2_2_0042F4DD |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov dword ptr [esi+04h], eax |
2_2_0042F4DD |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov byte ptr [ebx], al |
2_2_0042F4DD |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov ebx, eax |
2_2_0040D500 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov word ptr [ebx], ax |
2_2_0041F510 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov byte ptr [esi], cl |
2_2_0041F510 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then movzx edx, byte ptr [esp+ecx-67BC38F0h] |
2_2_00441648 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then movzx eax, word ptr [esi+ecx] |
2_2_0043C6D0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov word ptr [eax], cx |
2_2_0041C6E0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then movzx ebx, byte ptr [esp+ecx+52B71DE2h] |
2_2_00441720 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then xor byte ptr [ecx+ebx], bl |
2_2_00443720 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then movzx eax, byte ptr [esp+ebx-09A22FB6h] |
2_2_0043F7E0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then add ebp, dword ptr [esp+0Ch] |
2_2_0042E870 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then movzx ecx, byte ptr [edi+ebx] |
2_2_00405820 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov word ptr [eax], cx |
2_2_0041C8CE |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov ecx, eax |
2_2_0040E8D6 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then movzx ebx, byte ptr [edx+esi] |
2_2_0040C960 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov ecx, eax |
2_2_0040E996 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then jmp eax |
2_2_0042AA40 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then movzx ecx, byte ptr [esp+eax+1817620Ch] |
2_2_0042AA60 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov word ptr [eax], cx |
2_2_0042CA72 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov word ptr [eax], cx |
2_2_0042CA72 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then movzx ecx, byte ptr [esp+eax+2BB126CDh] |
2_2_0043FAD0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov edi, edx |
2_2_00421B40 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then cmp al, 2Eh |
2_2_0042AC04 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov edi, esi |
2_2_0041ECDE |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then movzx ebx, byte ptr [edx] |
2_2_00437CA0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov ebx, dword ptr [edi+04h] |
2_2_0042DE70 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov dword ptr [esp+3Ch], 595A5B84h |
2_2_00440E3A |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then mov edi, dword ptr [esp+54h] |
2_2_0042CEDA |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then jmp edx |
2_2_00442EB0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then xor byte ptr [ecx+ebx], bl |
2_2_00442EB0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then cmp word ptr [ebp+edi+02h], 0000h |
2_2_00425F00 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 4x nop then movzx edi, word ptr [edx] |
2_2_00428F00 |
Source: BitLockerToGo.exe, 00000002.00000003.2484453029.00000000052FD000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: http://cacerts.digicert.com/DigiCertGlobalRootCA.crt0 |
Source: BitLockerToGo.exe, 00000002.00000003.2484453029.00000000052FD000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: http://cacerts.digicert.com/DigiCertGlobalRootCA.crt0B |
Source: BitLockerToGo.exe, 00000002.00000003.2557453027.000000000300E000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://crl.micro |
Source: BitLockerToGo.exe, 00000002.00000003.2484453029.00000000052FD000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: http://crl.rootca1.amazontrust.com/rootca1.crl0 |
Source: BitLockerToGo.exe, 00000002.00000003.2484453029.00000000052FD000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: http://crl3.digicert.com/DigiCertGlobalRootCA.crl07 |
Source: BitLockerToGo.exe, 00000002.00000003.2484453029.00000000052FD000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: http://crl3.digicert.com/DigiCertGlobalRootCA.crl0= |
Source: BitLockerToGo.exe, 00000002.00000003.2484453029.00000000052FD000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: http://crl4.digicert.com/DigiCertGlobalRootCA.crl00 |
Source: BitLockerToGo.exe, 00000002.00000003.2484453029.00000000052FD000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: http://crt.rootca1.amazontrust.com/rootca1.cer0? |
Source: file.exe, 00000000.00000002.2423108104.0000000002414000.00000004.00001000.00020000.00000000.sdmp |
String found in binary or memory: http://earth.google.com/kml/2.0 |
Source: file.exe, 00000000.00000002.2423108104.0000000002414000.00000004.00001000.00020000.00000000.sdmp |
String found in binary or memory: http://earth.google.com/kml/2.1 |
Source: file.exe, 00000000.00000002.2423108104.0000000002414000.00000004.00001000.00020000.00000000.sdmp |
String found in binary or memory: http://earth.google.com/kml/2.2 |
Source: file.exe, program.js.0.dr |
String found in binary or memory: http://json-schema.org/draft-07/schema |
Source: program.js.0.dr |
String found in binary or memory: http://json-schema.org/draft-07/schema# |
Source: file.exe, program.js.0.dr |
String found in binary or memory: http://json-schema.org/schema |
Source: BitLockerToGo.exe, 00000002.00000003.2484453029.00000000052FD000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: http://ocsp.digicert.com0 |
Source: BitLockerToGo.exe, 00000002.00000003.2484453029.00000000052FD000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: http://ocsp.rootca1.amazontrust.com0: |
Source: file.exe, 00000000.00000002.2423108104.0000000002416000.00000004.00001000.00020000.00000000.sdmp |
String found in binary or memory: http://www.collada.org/2005/11/COLLADASchema |
Source: file.exe, 00000000.00000002.2423108104.000000000241E000.00000004.00001000.00020000.00000000.sdmp |
String found in binary or memory: http://www.garmin.com/xmlschemas/TrainingCenterDatabase/v2 |
Source: file.exe, 00000000.00000002.2423108104.0000000002414000.00000004.00001000.00020000.00000000.sdmp |
String found in binary or memory: http://www.opengis.net/gml |
Source: file.exe, 00000000.00000002.2423108104.0000000002414000.00000004.00001000.00020000.00000000.sdmp |
String found in binary or memory: http://www.opengis.net/gml/3.2 |
Source: file.exe, 00000000.00000002.2423108104.0000000002414000.00000004.00001000.00020000.00000000.sdmp |
String found in binary or memory: http://www.opengis.net/gml/3.3/exr |
Source: file.exe, 00000000.00000002.2423108104.0000000002414000.00000004.00001000.00020000.00000000.sdmp |
String found in binary or memory: http://www.opengis.net/kml/2.2 |
Source: file.exe, 00000000.00000002.2423108104.0000000002414000.00000004.00001000.00020000.00000000.sdmp |
String found in binary or memory: http://www.topografix.com/GPX/1/1 |
Source: BitLockerToGo.exe, 00000002.00000003.2484453029.00000000052FD000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: http://x1.c.lencr.org/0 |
Source: BitLockerToGo.exe, 00000002.00000003.2484453029.00000000052FD000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: http://x1.i.lencr.org/0 |
Source: BitLockerToGo.exe, 00000002.00000003.2448501963.00000000052FD000.00000004.00000800.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2449299743.00000000052FA000.00000004.00000800.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2449230272.00000000052FA000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: https://ac.ecosia.org/autocomplete?q= |
Source: file.exe, program.js.0.dr |
String found in binary or memory: https://aws.amazon.com |
Source: BitLockerToGo.exe, 00000002.00000003.2485863021.00000000052B9000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: https://bridge.sfo1.admarketplace.net/ctp?version=16.0.0&key=1696484494400800000.2&ci=1696484494189. |
Source: BitLockerToGo.exe, 00000002.00000003.2448501963.00000000052FD000.00000004.00000800.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2449299743.00000000052FA000.00000004.00000800.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2449230272.00000000052FA000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: https://cdn.ecosia.org/assets/images/ico/favicon.icohttps://www.ecosia.org/search?q= |
Source: BitLockerToGo.exe, 00000002.00000003.2448501963.00000000052FD000.00000004.00000800.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2449299743.00000000052FA000.00000004.00000800.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2449230272.00000000052FA000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: https://ch.search.yahoo.com/favicon.icohttps://ch.search.yahoo.com/search |
Source: BitLockerToGo.exe, 00000002.00000003.2448501963.00000000052FD000.00000004.00000800.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2449299743.00000000052FA000.00000004.00000800.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2449230272.00000000052FA000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: https://ch.search.yahoo.com/sugg/chrome?output=fxjson&appid=crmas&command= |
Source: BitLockerToGo.exe, 00000002.00000003.2485863021.00000000052B9000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: https://contile-images.services.mozilla.com/T23eBL4EHswiSaF6kya2gYsRHvdfADK-NYjs1mVRNGE.3351.jpg |
Source: BitLockerToGo.exe, 00000002.00000003.2448501963.00000000052FD000.00000004.00000800.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2449299743.00000000052FA000.00000004.00000800.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2449230272.00000000052FA000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: https://duckduckgo.com/ac/?q= |
Source: BitLockerToGo.exe, 00000002.00000003.2448501963.00000000052FD000.00000004.00000800.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2449299743.00000000052FA000.00000004.00000800.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2449230272.00000000052FA000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: https://duckduckgo.com/chrome_newtab |
Source: BitLockerToGo.exe, 00000002.00000003.2448501963.00000000052FD000.00000004.00000800.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2449299743.00000000052FA000.00000004.00000800.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2449230272.00000000052FA000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: https://duckduckgo.com/favicon.icohttps://duckduckgo.com/?q= |
Source: file.exe, program.js.0.dr |
String found in binary or memory: https://github.com/aws/jsii |
Source: file.exe, program.js.0.dr |
String found in binary or memory: https://github.com/aws/jsii.git |
Source: file.exe, program.js.0.dr |
String found in binary or memory: https://github.com/aws/jsii/issues |
Source: program.js.0.dr |
String found in binary or memory: https://github.com/jprichardson/node-fs-extra/issues/269 |
Source: BitLockerToGo.exe, 00000002.00000003.2485863021.00000000052B9000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: https://imp.mt48.net/static?id=7RHzfOIXjFEYsBdvIpkX4Qqm4pLk4pqk4pbW1pbWfpbW7ReNxR3UIG8zInwYIFIVs9eYi |
Source: program.js.0.dr |
String found in binary or memory: https://raw.githubusercontent.com/ajv-validator/ajv/master/lib/refs/data.json# |
Source: BitLockerToGo.exe, 00000002.00000003.2483985363.000000000301B000.00000004.00000020.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2557511485.0000000003034000.00000004.00000020.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2500758150.00000000052C1000.00000004.00000800.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2484195825.00000000052C1000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: https://seallysl.site/ |
Source: BitLockerToGo.exe, 00000002.00000003.2557453027.0000000003012000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://seallysl.site/8 |
Source: BitLockerToGo.exe, 00000002.00000003.2516470970.00000000052C2000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: https://seallysl.site/DQ |
Source: BitLockerToGo.exe, 00000002.00000003.2485459206.0000000003020000.00000004.00000020.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2484428826.0000000003020000.00000004.00000020.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2500622439.000000000301B000.00000004.00000020.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2484171723.0000000003020000.00000004.00000020.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2483985363.000000000301B000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://seallysl.site/G |
Source: BitLockerToGo.exe, 00000002.00000002.2571729075.0000000003034000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://seallysl.site/U |
Source: BitLockerToGo.exe, 00000002.00000003.2537937625.000000000302A000.00000004.00000020.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000002.2571470730.0000000002F9D000.00000004.00000020.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2502495771.000000000302A000.00000004.00000020.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2502388352.00000000052BF000.00000004.00000800.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2568341431.0000000002FB6000.00000004.00000020.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2500796063.00000000052BE000.00000004.00000800.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2557511485.0000000003034000.00000004.00000020.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000002.2571711174.000000000302D000.00000004.00000020.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2500775280.00000000052BA000.00000004.00000800.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2500758150.00000000052C1000.00000004.00000800.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2484195825.00000000052C1000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: https://seallysl.site/api |
Source: BitLockerToGo.exe, 00000002.00000002.2571729075.0000000003034000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://seallysl.site/apid |
Source: BitLockerToGo.exe, 00000002.00000003.2568341431.0000000002F9D000.00000004.00000020.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000002.2571470730.0000000002F9D000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://seallysl.site/apigsp |
Source: BitLockerToGo.exe, 00000002.00000003.2470478050.00000000052C0000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: https://seallysl.site/apiture |
Source: BitLockerToGo.exe, 00000002.00000003.2485459206.0000000003020000.00000004.00000020.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2484428826.0000000003020000.00000004.00000020.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2484171723.0000000003020000.00000004.00000020.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2483985363.000000000301B000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://seallysl.site/b |
Source: BitLockerToGo.exe, 00000002.00000003.2502388352.00000000052C2000.00000004.00000800.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2484010683.00000000052B9000.00000004.00000800.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2470478050.00000000052C0000.00000004.00000800.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2500758150.00000000052C1000.00000004.00000800.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2484195825.00000000052C1000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: https://seallysl.site/gfj |
Source: BitLockerToGo.exe, 00000002.00000002.2571585252.0000000003017000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://seallysl.site/p |
Source: BitLockerToGo.exe, 00000002.00000003.2502274755.0000000003020000.00000004.00000020.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2502460777.0000000003031000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://seallysl.site:443/api |
Source: BitLockerToGo.exe, 00000002.00000002.2571585252.000000000301E000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://seallysl.site:443/api=usere |
Source: BitLockerToGo.exe, 00000002.00000003.2500622439.000000000301B000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://seallysl.site:443/apiM) |
Source: BitLockerToGo.exe, 00000002.00000003.2485547940.00000000053D0000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: https://support.mozilla.org/kb/customize-firefox-controls-buttons-and-toolbars?utm_source=firefox-br |
Source: BitLockerToGo.exe, 00000002.00000003.2485547940.00000000053D0000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: https://support.mozilla.org/products/firefoxgro.all |
Source: BitLockerToGo.exe, 00000002.00000003.2448501963.00000000052FD000.00000004.00000800.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2449299743.00000000052FA000.00000004.00000800.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2449230272.00000000052FA000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: https://www.ecosia.org/newtab/ |
Source: BitLockerToGo.exe, 00000002.00000003.2448501963.00000000052FD000.00000004.00000800.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2449299743.00000000052FA000.00000004.00000800.00020000.00000000.sdmp, BitLockerToGo.exe, 00000002.00000003.2449230272.00000000052FA000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: https://www.google.com/images/branding/product/ico/googleg_lodp.ico |
Source: BitLockerToGo.exe, 00000002.00000003.2485411107.00000000052F9000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: https://www.mozilla.or |
Source: BitLockerToGo.exe, 00000002.00000003.2485411107.00000000052F9000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: https://www.mozilla.org |
Source: BitLockerToGo.exe, 00000002.00000003.2485547940.00000000053D0000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: https://www.mozilla.org/about/gro.allizom.www.bwSC1pmG_zle |
Source: BitLockerToGo.exe, 00000002.00000003.2485547940.00000000053D0000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: https://www.mozilla.org/contribute/gro.allizom.www.hjKdHaZH-dbQ |
Source: BitLockerToGo.exe, 00000002.00000003.2485547940.00000000053D0000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: https://www.mozilla.org/firefox/?utm_medium=firefox-desktop&utm_source=bookmarks-toolbar&utm_campaig |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_004100C5 |
2_2_004100C5 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0042509D |
2_2_0042509D |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00410118 |
2_2_00410118 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00410130 |
2_2_00410130 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0043A2E0 |
2_2_0043A2E0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0041D5AF |
2_2_0041D5AF |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00444620 |
2_2_00444620 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0042A6D0 |
2_2_0042A6D0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00426800 |
2_2_00426800 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0040F970 |
2_2_0040F970 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0043A97E |
2_2_0043A97E |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0042EB60 |
2_2_0042EB60 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00401000 |
2_2_00401000 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_004431D0 |
2_2_004431D0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_004331DE |
2_2_004331DE |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_004291E0 |
2_2_004291E0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_004241E0 |
2_2_004241E0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00442EB0 |
2_2_00442EB0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0040F250 |
2_2_0040F250 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0040B260 |
2_2_0040B260 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0040A270 |
2_2_0040A270 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0043E230 |
2_2_0043E230 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_004432C0 |
2_2_004432C0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_004012D5 |
2_2_004012D5 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0041E298 |
2_2_0041E298 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00408340 |
2_2_00408340 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00401328 |
2_2_00401328 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0042C3E0 |
2_2_0042C3E0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00442380 |
2_2_00442380 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_004433B0 |
2_2_004433B0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0042F4DD |
2_2_0042F4DD |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00429494 |
2_2_00429494 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_004094BF |
2_2_004094BF |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0041F510 |
2_2_0041F510 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_004255A4 |
2_2_004255A4 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_004335B0 |
2_2_004335B0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0042D642 |
2_2_0042D642 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0042762D |
2_2_0042762D |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_004386FE |
2_2_004386FE |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_004226A0 |
2_2_004226A0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0042762D |
2_2_0042762D |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0040D760 |
2_2_0040D760 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00441720 |
2_2_00441720 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00443720 |
2_2_00443720 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0040A730 |
2_2_0040A730 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00429494 |
2_2_00429494 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0042B7D9 |
2_2_0042B7D9 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0042B7FE |
2_2_0042B7FE |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00442850 |
2_2_00442850 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0041482A |
2_2_0041482A |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_004038E0 |
2_2_004038E0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00439940 |
2_2_00439940 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00407960 |
2_2_00407960 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00444920 |
2_2_00444920 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00431980 |
2_2_00431980 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0042AA40 |
2_2_0042AA40 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0042CA72 |
2_2_0042CA72 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00420A24 |
2_2_00420A24 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00421B40 |
2_2_00421B40 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0040DB20 |
2_2_0040DB20 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00415BD8 |
2_2_00415BD8 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00439BA0 |
2_2_00439BA0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00414BBF |
2_2_00414BBF |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00444C50 |
2_2_00444C50 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00434C60 |
2_2_00434C60 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0042AC04 |
2_2_0042AC04 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0043EC20 |
2_2_0043EC20 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0040ECC0 |
2_2_0040ECC0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00427CD2 |
2_2_00427CD2 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0041ECDE |
2_2_0041ECDE |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0040BD70 |
2_2_0040BD70 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00429D00 |
2_2_00429D00 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0040ADD0 |
2_2_0040ADD0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00432D80 |
2_2_00432D80 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00408DA0 |
2_2_00408DA0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00422E50 |
2_2_00422E50 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00416E10 |
2_2_00416E10 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_0042BE10 |
2_2_0042BE10 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00442EB0 |
2_2_00442EB0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00406F60 |
2_2_00406F60 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00428F00 |
2_2_00428F00 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00408DA0 |
2_2_00408DA0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00426F82 |
2_2_00426F82 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00434F80 |
2_2_00434F80 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00441F80 |
2_2_00441F80 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00409F9C |
2_2_00409F9C |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00404FA0 |
2_2_00404FA0 |
Source: C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe |
Code function: 2_2_00409FA8 |
2_2_00409FA8 |