Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: http://cacerts.digicert.com/DigiCertAssuredIDRootCA.crt0 |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, fpb.tmp.3.dr, FlashHelperService.exe.0.dr, FlashPlayerInstaller.exe.0.dr, fpb.tmp0.3.dr |
String found in binary or memory: http://cacerts.digicert.com/DigiCertAssuredIDRootCA.crt0E |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: http://cacerts.digicert.com/DigiCertSHA2AssuredIDCodeSigningCA.crt0 |
Source: FlashPlayerInstaller.exe, 00000003.00000003.1676108515.000000000403C000.00000004.00000020.00020000.00000000.sdmp, SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, fpb.tmp.3.dr, FlashPlayerInstaller.exe.0.dr, fpb.tmp0.3.dr |
String found in binary or memory: http://cacerts.digicert.com/DigiCertTrustedG4CodeSigningRSA4096SHA3842021CA1.crt0 |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, fpb.tmp.3.dr, FlashHelperService.exe.0.dr, FlashPlayerInstaller.exe.0.dr, fpb.tmp0.3.dr |
String found in binary or memory: http://cacerts.digicert.com/DigiCertTrustedG4RSA4096SHA256TimeStampingCA.crt0 |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, fpb.tmp.3.dr, FlashHelperService.exe.0.dr, FlashPlayerInstaller.exe.0.dr, fpb.tmp0.3.dr |
String found in binary or memory: http://cacerts.digicert.com/DigiCertTrustedRootG4.crt0C |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, fpb.tmp.3.dr, FlashHelperService.exe.0.dr, FlashPlayerInstaller.exe.0.dr, fpb.tmp0.3.dr |
String found in binary or memory: http://crl3.digicert.com/DigiCertAssuredIDRootCA.crl0 |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: http://crl3.digicert.com/DigiCertAssuredIDRootCA.crl0O |
Source: FlashPlayerInstaller.exe, 00000003.00000003.1676108515.000000000403C000.00000004.00000020.00020000.00000000.sdmp, SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, fpb.tmp.3.dr, FlashPlayerInstaller.exe.0.dr, fpb.tmp0.3.dr |
String found in binary or memory: http://crl3.digicert.com/DigiCertTrustedG4CodeSigningRSA4096SHA3842021CA1.crl0S |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, fpb.tmp.3.dr, FlashHelperService.exe.0.dr, FlashPlayerInstaller.exe.0.dr, fpb.tmp0.3.dr |
String found in binary or memory: http://crl3.digicert.com/DigiCertTrustedG4RSA4096SHA256TimeStampingCA.crl0 |
Source: fpb.tmp0.3.dr |
String found in binary or memory: http://crl3.digicert.com/DigiCertTrustedRootG4.crl0 |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: http://crl3.digicert.com/sha2-assured-cs-g1.crl05 |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: http://crl4.digicert.com/DigiCertAssuredIDRootCA.crl0: |
Source: FlashPlayerInstaller.exe, 00000003.00000003.1676108515.000000000403C000.00000004.00000020.00020000.00000000.sdmp, SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, fpb.tmp.3.dr, FlashPlayerInstaller.exe.0.dr, fpb.tmp0.3.dr |
String found in binary or memory: http://crl4.digicert.com/DigiCertTrustedG4CodeSigningRSA4096SHA3842021CA1.crl0= |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: http://crl4.digicert.com/sha2-assured-cs-g1.crl0K |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, FlashPlayerInstaller.exe |
String found in binary or memory: http://fpdownload2.macromedia.com/get/flashplayer/update/current/install/version.xml |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe |
String found in binary or memory: http://fpdownload2.macromedia.com/get/flashplayer/update/current/install/version.xml&playerType=full |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: http://mini.ffnews.cn/additional/feedback/index.html?id=%sopen12clickclick1LockFeedbackLockFeedback2 |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: http://mini.ffnews.cn/index.html |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: http://mini.ffnews.cn/index.html0http://mini.ffnews.cn/tips.htmltips_times0mini_countopen_mini_timem |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: http://mini.ffnews.cn/index.html1http://mini.ffnews.cn/tips.htmlnext_open_interval1open_mini_time2E8 |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: http://mini.ffnews.cn/index.htmlonCountopenhttp://mini.ffnews.cn/count.htmlClientInvokeWeb30supportF |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: http://mini.ffnews.cn/tips.html |
Source: FlashPlayerInstaller.exe, 00000003.00000003.1676108515.000000000403C000.00000004.00000020.00020000.00000000.sdmp, SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, fpb.tmp.3.dr, FlashPlayerInstaller.exe.0.dr, fpb.tmp0.3.dr |
String found in binary or memory: http://ocsp.digicert.com0 |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, fpb.tmp.3.dr, FlashHelperService.exe.0.dr, FlashPlayerInstaller.exe.0.dr, fpb.tmp0.3.dr |
String found in binary or memory: http://ocsp.digicert.com0A |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, fpb.tmp.3.dr, FlashHelperService.exe.0.dr, FlashPlayerInstaller.exe.0.dr, fpb.tmp0.3.dr |
String found in binary or memory: http://ocsp.digicert.com0C |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: http://ocsp.digicert.com0N |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, fpb.tmp.3.dr, FlashHelperService.exe.0.dr, FlashPlayerInstaller.exe.0.dr, fpb.tmp0.3.dr |
String found in binary or memory: http://ocsp.digicert.com0X |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, fpb.tmp.3.dr, FlashHelperService.exe.0.dr, FlashPlayerInstaller.exe.0.dr, fpb.tmp0.3.dr |
String found in binary or memory: http://www.digicert.com/CPS0 |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: http://www.openssl.org/support/faq.html |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: http://www.openssl.org/support/faq.html.................... |
Source: FlashHelperService.exe.0.dr |
String found in binary or memory: https://api.flash.cn |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://api.flash.cn%s/config/getBin?helper=%s&%sueip%s |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://api.flash.cn%s/config/getCdnBin?helper=%s&%sinterface |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://api.flash.cn%s/config/mini?helper=%s&guid=%s&count=%d&opentype=%s00http://mini.ffnews.cn/ind |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://api.flash.cn%s/config/scanConfig?helper=%s&guid=%s4fcatuoCDMShowTimedata |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://api.flash.cn%s/fp?time=%sC2&F6E5#8b1D#5AdIW)r(TIgP |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://api.flash.cn%s/getfc?data=%s&token=%s&time=%s&helper=%sUninstallerPathGenerateLogsFlashPlaye |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://api.flash.cn%sppv=%s& |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://api.flash.cn/config/checkSign |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://api.flash.cn/config/checkSignFlashPlayerPlugindev%spluginv=%s&fcdownloadcdm:Software |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://api.flash.cn/config/realtime |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://api.flash.cn/config/realtimeforceTips11010102tips_intervalFileVersionFileDescriptionInternal |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://api.flash.cn/config/realtimeguidforceMinihelper1next_open_interval102open_mini_time102-1-110 |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://api.flash.cn0%s/config/powerBoot?helper=%s&%s |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://api.flash.cn2.0.1.9%s/config/getCdnValue?helper=%s&%sworkflow%d0adwebsite_new |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://api.flash.cnFlashPlayerPluginauthtime%s/go/getAdvertisementImage303authtimeinterface |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://api.flash.cnProductVersion%s/config/fixtoolfpUpdaterServicePortcountdevCDMShowTime |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://api.flash.cnfp_open_tip_time%s/config/getCdnValue?helper=%s&%sopen_mini_timeinterface |
Source: FlashHelperService.exe, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://curl.haxx.se/docs/http-cookies.html |
Source: FlashHelperService.exe |
String found in binary or memory: https://curl.haxx.se/docs/http-cookies.html# |
Source: FlashPlayerInstaller.exe, 00000003.00000003.1685722671.0000000001F04000.00000004.00000020.00020000.00000000.sdmp, FlashPlayerInstaller.exe, 00000003.00000002.2856256506.0000000001EE3000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://fpdownload.macromedia.com/ |
Source: FlashPlayerInstaller.exe, 00000003.00000002.2856256506.0000000001EE3000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://fpdownload.macromedia.com//8 |
Source: FlashPlayerInstaller.exe, 00000003.00000003.1685452057.0000000001F2C000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://fpdownload.macromedia.com/get/flashplayer/update/current/activate/exec.xml |
Source: FlashPlayerInstaller.exe, 00000003.00000002.2856256506.0000000001E68000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://fpdownload.macromedia.com/get/flashplayer/update/current/activate/exec.xml0 |
Source: FlashPlayerInstaller.exe, 00000003.00000002.2856256506.0000000001E68000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://fpdownload.macromedia.com/get/flashplayer/update/current/activate/exec.xml~ |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1671202698.00000000048C9000.00000004.00000020.00020000.00000000.sdmp, FlashPlayerInstaller.exe, 00000003.00000003.1675576327.0000000003EB3000.00000004.00000020.00020000.00000000.sdmp, FlashPlayerInstaller.exe, 00000003.00000002.2854757562.0000000000EEC000.00000002.00000001.01000000.00000008.sdmp, FlashPlayerInstaller.exe, 00000003.00000000.1672334542.0000000000EEC000.00000002.00000001.01000000.00000008.sdmp, fpb.tmp.3.dr, FlashPlayerInstaller.exe.0.dr |
String found in binary or memory: https://fpdownload.macromedia.com/pub/flashplayer/update/current/sau/34/install/install_all_win_http |
Source: FlashPlayerInstaller.exe |
String found in binary or memory: https://kb2.ad |
Source: FlashPlayerInstaller.exe |
String found in binary or memory: https://kb2.adobe. |
Source: FlashPlayerInstaller.exe |
String found in binary or memory: https://labs.a |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://mini.ffnews.cn/additional/feedback/index.html?from=tips&id=%s12tipsdownloadembupdate-2Tipads |
Source: FlashHelperService.exe, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://tongji.flash.cn |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://tongji.flash.cn%s/hm2.gif?msgtype=%s&data=%s&token=%s&time=%sFCHandler |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://tongji.flash.cn%s/hm2.gif?msgtype=fhsparent&data=%s&token=%s&time=%sB2&f6E5?8b1A#4C2%s&%s&cl |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://tongji.flash.cn%s/hm2.gif?msgtype=lnk&data=%s&token=%s&time=%ssystray |
Source: FlashHelperService.exe, 00000002.00000003.1679174122.0000000003E83000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://tongji.flash.cn/hm2.gif?msgtype=helper&data=6F76D319CE5E22BBEDDE5F7486E15839BD5C3C95456EE934 |
Source: FlashHelperService.exe, 00000002.00000003.1678396322.0000000003E6E000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://tongji.flash.cn/hm2.gif?msgtype=install&data=979EA788DE83B755CE191CCC17A2E381823E74F0BBFB663 |
Source: FlashHelperService.exe, 00000002.00000002.2857997254.0000000003EC3000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://tongji.flash.cn/hm2.gif?msgtype=mini&data=CDDF8FC74D3B33B2BC58AC6497635275A578D991405693D301 |
Source: FlashHelperService.exe |
String found in binary or memory: https://tongji.flash.cn/hm4.gif?product=%s&event=%s&uid=%s&um=%s&platform=windows&channel=10000&vers |
Source: FlashHelperService.exe, 00000002.00000003.1654745561.0000000000E9D000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://tongji.flash.cn/hm4.gif?product=hs&event=fhsinstallWin10ActiveX&uid= |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://tongji.flash.cnSOFTWARE |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://www.digicert.com/CPS0 |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://www.flash.cn/cdm/latest/flashplayer_update_cn.exe |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://www.flash.cn/cdm/latest/flashplayer_update_cn.exeflashplayerax_install_cn.execenter |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://www.flash.cn/cdm/latest/flashplayer_update_cn.exehshttps://www.flash.cn/cdm/latest/flashplay |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://www.flash.cn/cdm/latest/flashplayerax_update_cn.exe |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://www.flash.cn/cdm/latest/flashplayerax_update_cn.exe.exeflash_cdm_%s |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://www.flash.cn/cdm/latest/flashplayerax_update_cn.exeflash |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://www.flash.cn/cdm/latest/flashplayerax_update_cn.exeminiurlexplorer.exeonCountminiurlFF |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://www.flash.cn/cdm/latest/flashplayerpp_update_cn.exe |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://www.flash.cn/cdm/latest/flashplayerpp_update_cn.exe1flashplayer_install_cn.exe2=flashplayerp |
Source: SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe, 00000000.00000003.1604514797.000000000431E000.00000004.00000020.00020000.00000000.sdmp, FlashHelperService.exe, 00000001.00000000.1608179840.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000001.00000002.1610208631.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000000.1609077342.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000002.00000002.2855157262.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000002.1685190433.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000004.00000000.1682216910.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000000.1684284249.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe, 00000005.00000002.2855120688.0000000000B10000.00000002.00000001.01000000.00000006.sdmp, FlashHelperService.exe.0.dr |
String found in binary or memory: https://www.flash.cn/ueip/index.html10ueipS1huorongFileVersionFileDescriptionInternalNameCompanyName |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe |
Code function: 0_2_00F95118 |
0_2_00F95118 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe |
Code function: 0_2_00F862C0 |
0_2_00F862C0 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe |
Code function: 0_2_00F91FE3 |
0_2_00F91FE3 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe |
Code function: 0_2_00F8DFA0 |
0_2_00F8DFA0 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Win32.Adware-gen.4351.30579.exe |
Code function: 0_2_00F89790 |
0_2_00F89790 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 1_2_00930020 |
1_2_00930020 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 1_2_0092E040 |
1_2_0092E040 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 1_2_0092F160 |
1_2_0092F160 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 1_2_0092F230 |
1_2_0092F230 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 1_2_009E4350 |
1_2_009E4350 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 1_2_0092F490 |
1_2_0092F490 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 1_2_009E0400 |
1_2_009E0400 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 1_2_00926470 |
1_2_00926470 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 1_2_00916460 |
1_2_00916460 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 1_2_00931580 |
1_2_00931580 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 1_2_0092E6C0 |
1_2_0092E6C0 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 1_2_0092F6E0 |
1_2_0092F6E0 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 1_2_0091D7A0 |
1_2_0091D7A0 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 1_2_0091C700 |
1_2_0091C700 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 1_2_009E3700 |
1_2_009E3700 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 1_2_009DF730 |
1_2_009DF730 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 1_2_0092F8E0 |
1_2_0092F8E0 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 1_2_009E09D7 |
1_2_009E09D7 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 1_2_0092E930 |
1_2_0092E930 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 1_2_00930940 |
1_2_00930940 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 1_2_00939970 |
1_2_00939970 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 1_2_00911B00 |
1_2_00911B00 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 1_2_0091DB70 |
1_2_0091DB70 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 1_2_0092FC80 |
1_2_0092FC80 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 1_2_009E1C40 |
1_2_009E1C40 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 1_2_009E3DC0 |
1_2_009E3DC0 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 1_2_00957D10 |
1_2_00957D10 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 1_2_009E2F1D |
1_2_009E2F1D |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00AD737C |
2_2_00AD737C |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_0091D7A0 |
2_2_0091D7A0 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_0091DB70 |
2_2_0091DB70 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_009E8000 |
2_2_009E8000 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00930020 |
2_2_00930020 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_0092E040 |
2_2_0092E040 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00A18050 |
2_2_00A18050 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_009E806C |
2_2_009E806C |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00A0E190 |
2_2_00A0E190 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00A14120 |
2_2_00A14120 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00A24150 |
2_2_00A24150 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00A1A390 |
2_2_00A1A390 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_009E4350 |
2_2_009E4350 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00A26340 |
2_2_00A26340 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00972490 |
2_2_00972490 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_009E0400 |
2_2_009E0400 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00926470 |
2_2_00926470 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00916460 |
2_2_00916460 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_0099C500 |
2_2_0099C500 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_0092E6C0 |
2_2_0092E6C0 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00A18640 |
2_2_00A18640 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_0091C700 |
2_2_0091C700 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00A0C840 |
2_2_00A0C840 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_009E09D7 |
2_2_009E09D7 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_0092E930 |
2_2_0092E930 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00930940 |
2_2_00930940 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00A1AA40 |
2_2_00A1AA40 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_009E2F1D |
2_2_009E2F1D |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00ADAF2B |
2_2_00ADAF2B |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00A0CF10 |
2_2_00A0CF10 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00AD2F15 |
2_2_00AD2F15 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00AC50A0 |
2_2_00AC50A0 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00A19010 |
2_2_00A19010 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_009E71C0 |
2_2_009E71C0 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_009531E0 |
2_2_009531E0 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_0092F160 |
2_2_0092F160 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_009592A0 |
2_2_009592A0 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_0092F230 |
2_2_0092F230 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00A1B380 |
2_2_00A1B380 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_0092F490 |
2_2_0092F490 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00931580 |
2_2_00931580 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_0097D550 |
2_2_0097D550 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_0092F6E0 |
2_2_0092F6E0 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_0099B620 |
2_2_0099B620 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_009E3700 |
2_2_009E3700 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_009DF730 |
2_2_009DF730 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_0092F8E0 |
2_2_0092F8E0 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_009E78E0 |
2_2_009E78E0 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00A23820 |
2_2_00A23820 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00A17860 |
2_2_00A17860 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00939970 |
2_2_00939970 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00A19950 |
2_2_00A19950 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00911B00 |
2_2_00911B00 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_0092FC80 |
2_2_0092FC80 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00A1BC10 |
2_2_00A1BC10 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_009E1C40 |
2_2_009E1C40 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00AD9DBB |
2_2_00AD9DBB |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_009E3DC0 |
2_2_009E3DC0 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00957D10 |
2_2_00957D10 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_0099BD50 |
2_2_0099BD50 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00A1FE60 |
2_2_00A1FE60 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00949F00 |
2_2_00949F00 |
Source: C:\Windows\SysWOW64\Macromed\Flash\FlashHelperService.exe |
Code function: 2_2_00ACFF6F |
2_2_00ACFF6F |
Source: C:\Windows\SysWOW64\Macromed\Temp\{9639F71F-08DF-4565-BCFC-52EA28C8B997}\FlashPlayerInstaller.exe |
Code function: 3_2_6C9E8C0D |
3_2_6C9E8C0D |
Source: C:\Windows\SysWOW64\Macromed\Temp\{9639F71F-08DF-4565-BCFC-52EA28C8B997}\FlashPlayerInstaller.exe |
Code function: 3_2_6C9FCF00 |
3_2_6C9FCF00 |
Source: C:\Windows\SysWOW64\Macromed\Temp\{9639F71F-08DF-4565-BCFC-52EA28C8B997}\FlashPlayerInstaller.exe |
Code function: 3_2_6C9EBF2D |
3_2_6C9EBF2D |
Source: C:\Windows\SysWOW64\Macromed\Temp\{9639F71F-08DF-4565-BCFC-52EA28C8B997}\FlashPlayerInstaller.exe |
Code function: 3_2_6C9F1947 |
3_2_6C9F1947 |
Source: C:\Windows\SysWOW64\Macromed\Temp\{9639F71F-08DF-4565-BCFC-52EA28C8B997}\FlashPlayerInstaller.exe |
Code function: 3_2_6C9EBAF8 |
3_2_6C9EBAF8 |
Source: C:\Windows\SysWOW64\Macromed\Temp\{9639F71F-08DF-4565-BCFC-52EA28C8B997}\FlashPlayerInstaller.exe |
Code function: 3_2_6C9D2A42 |
3_2_6C9D2A42 |
Source: C:\Windows\SysWOW64\Macromed\Temp\{9639F71F-08DF-4565-BCFC-52EA28C8B997}\FlashPlayerInstaller.exe |
Code function: 3_2_6C9F1B76 |
3_2_6C9F1B76 |
Source: C:\Windows\SysWOW64\Macromed\Temp\{9639F71F-08DF-4565-BCFC-52EA28C8B997}\FlashPlayerInstaller.exe |
Code function: 3_2_6C9E7B73 |
3_2_6C9E7B73 |
Source: C:\Windows\SysWOW64\Macromed\Temp\{9639F71F-08DF-4565-BCFC-52EA28C8B997}\FlashPlayerInstaller.exe |
Code function: 3_2_6C9C1474 |
3_2_6C9C1474 |
Source: C:\Windows\SysWOW64\Macromed\Temp\{9639F71F-08DF-4565-BCFC-52EA28C8B997}\FlashPlayerInstaller.exe |
Code function: 3_2_6C9EB6E0 |
3_2_6C9EB6E0 |
Source: C:\Windows\SysWOW64\Macromed\Temp\{9639F71F-08DF-4565-BCFC-52EA28C8B997}\FlashPlayerInstaller.exe |
Code function: 3_2_6C9F1718 |
3_2_6C9F1718 |
Source: C:\Windows\SysWOW64\Macromed\Temp\{9639F71F-08DF-4565-BCFC-52EA28C8B997}\FlashPlayerInstaller.exe |
Code function: 3_2_6C9EB1E4 |
3_2_6C9EB1E4 |
Source: C:\Windows\SysWOW64\Macromed\Temp\{9639F71F-08DF-4565-BCFC-52EA28C8B997}\FlashPlayerInstaller.exe |
Code function: 3_2_6C9E7220 |
3_2_6C9E7220 |
Source: C:\Windows\SysWOW64\Macromed\Temp\{9639F71F-08DF-4565-BCFC-52EA28C8B997}\FlashPlayerInstaller.exe |
Code function: 3_2_6CA0138B |
3_2_6CA0138B |
Source: C:\Windows\SysWOW64\Macromed\Temp\{9639F71F-08DF-4565-BCFC-52EA28C8B997}\FlashPlayerInstaller.exe |
Code function: 3_2_6C9EC362 |
3_2_6C9EC362 |