IOCReport

loading gif

Files

File Path
Type
Category
Malicious
http://eprocurement.corona.com.co/eprocurement2/#/login/
URL
initial url
malicious
C:\Program Files\Google\Chrome\Application\Dictionaries\en-US-9-0.bdic
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\0ec02da6-850b-4a0d-bd02-ead688e4544c.tmp
ASCII text, with very long lines, with no line terminators
modified
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\4527ce78-a868-4316-943d-f69f9cb50aa0.tmp
ASCII text, with very long lines, with no line terminators
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\91051bca-c677-4747-a562-10e688502dcb.tmp
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Crashpad\settings.dat
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\198e2f7a-0e58-49cf-b2d1-d9cef7f143ae.tmp
ASCII text, with very long lines, with no line terminators
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\28cc61c1-38d4-4376-a188-d873d69d705e.tmp
ASCII text, with very long lines, with no line terminators
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\3ce15c65-94df-47be-84bc-f8a2135820c8.tmp
ASCII text, with very long lines, with no line terminators
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\69cefd61-9871-427e-8009-c22ab7579e10.tmp
UTF-8 Unicode text, with very long lines, with no line terminators
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\9d75e571-ad05-4ba1-8f5e-d3a62e7b4e22.tmp
ASCII text, with very long lines, with no line terminators
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\9faaf35a-760c-4d87-a219-8b83caa0e3e9.tmp
UTF-8 Unicode text, with very long lines, with no line terminators
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\AutofillStrikeDatabase\LOG
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\AutofillStrikeDatabase\LOG.oldl (copy)
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\BudgetDatabase\LOG
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\BudgetDatabase\LOG.old (copy)
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\020fa3a58dd7fd12_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\07e369fc32ee1b10_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\09ba7bf61aa7cda7_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\0a59411ccc4b0ed8_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\2231ff1cdada9a2f_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\26f02519806f8a53_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\2e383a7b77a2d0e8_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\349424b612e655ad_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\357bfb670947fc90_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\3732fd04034f266a_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\41b187d3d01a4e16_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\43abd6a363bb0730_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\45c0301a22c48101_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\4bcaef12224d89ad_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\50d8c327cc9b16c2_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\5bc449652d715a20_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\62ebf8d82348c6f3_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\62f529e6af85dda6_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\6a3d4ada7613f246_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\6faa21ce20b02be0_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\76498fcd216e4695_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\794ee617f6d43a80_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\797a9caff384add5_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\928772b7a97899b7_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\a1a37a7ddd282fac_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\a2114d7688ef643a_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\aa32a02aa62c44a3_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\aac23e88c61bf610_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\afd52415c46f7d65_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\b30fbbce0e39f2a4_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\b4a8bcbb93a4e4e5_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\b52452182c4a02ca_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\bb8d2b09d1409be0_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\bcaa69e9fbaa0624_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\bdf4a0be2e2e2ef8_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\c3660637b286bd55_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\cc000dca877bd219_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\d41ce6fee838f23e_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\db76fdbd76ef7ab6_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\e057b92807791b95_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\e6315c838510da6f_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\ea531e760732cc34_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\eb9c3dced5b8e090_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\f225801f932db86c_0
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\index-dir\temp-index
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\index-dir\the-real-index (copy)
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Cookies
SQLite 3.x database, last written using SQLite version 3032001
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Cookies-journal
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Current Session
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Current Tabs
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\000003.log
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\LOG
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\LOG.old (copy)
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extension State\000003.log
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG.old (copy)
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.6_0\_metadata\computed_hashes.json
ASCII text, with very long lines, with no line terminators
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\8520.615.0.5_1\_metadata\computed_hashes.json
ASCII text, with very long lines, with no line terminators
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\000003.log
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\LOG
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\LOG.old. (copy)
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\EventDB\LOG
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\EventDB\LOG.old (copy)
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\File System\Origins\000001.dbtmp
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\File System\Origins\000003.log
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\File System\Origins\CURRENT_" (copy)
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\File System\Origins\LOG
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\File System\Origins\MANIFEST-000001
PGP\011Secret Key -
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\GCM Store\Encryption\LOG
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\GCM Store\Encryption\LOG.oldal (copy)
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\History
SQLite 3.x database, last written using SQLite version 3032001
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\History-journal
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Last Session$ (copy)
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Last Tabs (copy)
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\000003.log
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\LOG
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\LOG.old (copy)
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Network Persistent State.. (copy)
ASCII text, with very long lines, with no line terminators
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Network Persistent State.| (copy)
ASCII text, with very long lines, with no line terminators
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Platform Notifications\LOG
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Platform Notifications\LOG.old (copy)
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Preferences. (copy)
ASCII text, with very long lines, with no line terminators
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Preferencesc (copy)
ASCII text, with very long lines, with no line terminators
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Preferencesv (copy)
ASCII text, with very long lines, with no line terminators
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\QuotaManager
SQLite 3.x database, last written using SQLite version 3032001
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\QuotaManager-journal
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Reporting and NEL
SQLite 3.x database, last written using SQLite version 3032001
modified
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Reporting and NEL-journal
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Secure PreferencesTM (copy)
UTF-8 Unicode text, with very long lines, with no line terminators
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Session Storage\000003.log
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOG
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOG.old (copy)
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\LOG
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\LOG.old (copy)
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\98088e5a-5553-43a3-b220-ad5b8627bfbd.tmp
ASCII text, with very long lines, with no line terminators
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\GPUCache\data_1
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Local Storage\leveldb\LOG
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Local Storage\leveldb\LOG.old (copy)
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Network Persistent State (copy)
ASCII text, with very long lines, with no line terminators
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Platform Notifications\LOG
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Platform Notifications\LOG.old/, (copy)
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Session Storage\000003.log
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Session Storage\LOG
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Session Storage\LOG.old. (copy)
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\aca03f44-9320-42a9-9598-381e07d3be91.tmp
ASCII text, with very long lines, with no line terminators
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\7a3371b3-dd91-4c08-a634-005ad4c74745.tmp
ASCII text, with very long lines, with no line terminators
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\GPUCache\data_1
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Local Storage\leveldb\LOG
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Local Storage\leveldb\LOG.old (copy)
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Network Persistent StateTM (copy)
ASCII text, with very long lines, with no line terminators
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Platform Notifications\LOG
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Platform Notifications\LOG.oldg (copy)
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Session Storage\000003.log
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Session Storage\LOG
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Session Storage\LOG.old (copy)
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000003.log
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG.old (copy)
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG.old (copy)
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\TransportSecurity. (copy)
ASCII text, with very long lines, with no line terminators
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Visited Links
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\a02e7421-9bb0-4a4e-abca-3810081b5cc2.tmp
ASCII text, with very long lines, with no line terminators
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\a1924a14-14b2-454b-930d-298134a73627.tmp
very short file (no magic)
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\000004.dbtmp
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\CURRENT.. (copy)
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\LOG
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\LOG.old51 (copy)
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000004
MPEG-4 LOAS
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\e1634262-c167-49f4-9d80-09bea6aac44a.tmp
ASCII text, with very long lines, with no line terminators
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\metadata\LOG
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\metadata\LOG.oldud (copy)
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Last Browser
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Last Version
ASCII text, with no line terminators
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Local State (copy)
ASCII text, with very long lines, with no line terminators
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Local StateTM (copy)
ASCII text, with very long lines, with no line terminators
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\Module Info Cache (copy)
data
dropped
clean
C:\Users\user\AppData\Local\Google\Chrome\User Data\f59cf7d7-8676-417c-a091-3ca6b8c7bd91.tmp
ASCII text, with very long lines, with no line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\1c8c1c61-cedd-449e-92b7-b193d9adb103.tmp
very short file (no magic)
dropped
clean
C:\Users\user\AppData\Local\Temp\37f1e3d7-5a48-42c8-955f-fd4549dac8b9.tmp
Google Chrome extension, version 3
dropped
clean
C:\Users\user\AppData\Local\Temp\773c9983-feaa-44af-8d06-c3671a548a63.tmp
very short file (no magic)
dropped
clean
C:\Users\user\AppData\Local\Temp\browser-sslkeys.log
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Temp\f9a10666-e415-49da-b7ba-a2fbe888486f.tmp
Google Chrome extension, version 3
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\37f1e3d7-5a48-42c8-955f-fd4549dac8b9.tmp
Google Chrome extension, version 3
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\am\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\ar\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\bg\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\bn\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\ca\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\cs\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\da\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\de\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\el\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\en\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\es\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\et\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\fa\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\fi\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\fil\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\fr\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\gu\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\hi\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\hr\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\hu\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\id\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\it\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\ja\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\kn\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\ko\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\lt\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\lv\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\ml\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\mr\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\ms\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\nb\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\nl\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\pl\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\pt\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\ro\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\ru\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\sk\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\sl\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\sr\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\sv\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\sw\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\ta\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\te\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\th\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\tr\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\uk\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\vi\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\zh\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\_locales\zh_TW\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_1970687369\CRX_INSTALL\manifest.json
ASCII text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\bg\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\ca\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\cs\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\da\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\de\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\el\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\en\messages.json
ASCII text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\en_GB\messages.json
ASCII text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\es\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\es_419\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\et\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\fi\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\fil\messages.json
ASCII text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\fr\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\hi\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\hr\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\hu\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\id\messages.json
ASCII text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\it\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\ja\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\ko\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\lt\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\lv\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\nb\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\nl\messages.json
ASCII text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\pl\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\pt_BR\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\pt_PT\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\ro\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\ru\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\sk\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\sl\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\sr\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\sv\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\th\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\tr\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\uk\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\vi\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\zh_CN\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\_locales\zh_TW\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\images\icon_128.png
PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\images\icon_16.png
PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\CRX_INSTALL\manifest.json
ASCII text, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Temp\scoped_dir4372_288261382\f9a10666-e415-49da-b7ba-a2fbe888486f.tmp
Google Chrome extension, version 3
dropped
clean
There are 245 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
'C:\Program Files\Google\Chrome\Application\chrome.exe' --start-maximized --enable-automation 'http://eprocurement.corona.com.co/eprocurement2/#/login/'
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
'C:\Program Files\Google\Chrome\Application\chrome.exe' --type=utility --utility-sub-type=network.mojom.NetworkService --field-trial-handle=1568,7010085048450573434,11052940507831535884,131072 --lang=en-US --service-sandbox-type=network --enable-audio-service-sandbox --mojo-platform-channel-handle=1692 /prefetch:8
clean

URLs

Name
IP
Malicious
http://eprocurement.corona.com.co/eprocurement2/fonts/walkway/walkwaysemibold_regular_macroman/stylesheet.css
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/directives/sociedadesFilterDir.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/controllers/pagosCtrl.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/directives/documentosTiposDir.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/directives/comentariosDir.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/controllers/portafolioCtrl.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/bower_components/angular-route/angular-route.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/controllers/menuTopCtrl.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/controllers/menuLatCtrl.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/controllers/facturasCtrl.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/directives/upload.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/bower_components/angular-resource/angular-resource.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/controllers/prehomeCtrl.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/services/comParams.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/services/portafolioSrv.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/controllers/lenguajeCtrl.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/directives/sociedadesTodasFilterDir.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/fonts/walkway/walkwayultrabold_regular_macroman/Walkway_UltraBold-webfont.ttf
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/controllers/loginCtrl.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/controllers/forgotpasswCtrl.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/services/docsHomeSrv.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/controllers/homeCtrl.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/#/login
malicious
http://eprocurement.corona.com.co/eprocurement2/bower_components/angular/angular.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/controllers/proyeccionesCtrl.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/directives/centroFilterDir.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/controllers/configuracionCtrl.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/Servicios/Parametros.svc/ObtenerURLS
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/controllers/documentosCtrl.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/bower_components/angular-recaptcha/angular-recaptcha.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/directives/documentosClasesDir.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/controllers/ordenesCompradorCtrl.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/controllers/ordenesProveedorCtrl.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/Servicios/Parametros.svc/ObtenerOpcionesLenguaje
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/bower_components/jquery/dist/jquery.min.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/views/login.html
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/fonts/walkway/walkwaysemibold_regular_macroman/Walkway_SemiBold-webfont.ttf
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/bower_components/angular-sanitize/angular-sanitize.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/fonts/walkway/walkwayultrabold_regular_macroman/stylesheet.css
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/bower_components/ng-grid/ng-grid-2.0.11.min.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/bower_components/angular-bootstrap/ui-bootstrap-tpls.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/images/main-bg.jpg
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/directives/estadosFilterDir.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/bower_components/angular-bootstrap/ui-bootstrap.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/directives/ng-table.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/bower_components/bootstrap/dist/css/bootstrap.css
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/directives/proveedoresFilterDir.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/directives/table2excel.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/bower_components/angular-animate/angular-animate.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/app.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/scripts/services/lenguajeServ.js
200.32.81.196
malicious
http://eprocurement.corona.com.co/eprocurement2/#/login//(
unknown
clean
http://eprocurement.corona.com.co/eprocurement2/bower_components/angular-sanitize/angular-sanitize.j
unknown
clean
https://www.google.com/recaptcha/api2/bframe?hl=en&v=Eyd0Dt8h04h7r-D86uAD1JP-&k=6LfV28YUAAAAAEkBQPmRvpzmlv9FyzeW-77R00r1&cb=610xzjr4baok
clean
http://corona.com.co/F
unknown
clean
http://corona.com.co/y?o
unknown
clean
https://www.google.com
unknown
clean
http://corona.com.co/#
unknown
clean
https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LfV28YUAAAAAEkBQPmRvpzmlv9FyzeW-77R00r1&co=aHR0
unknown
clean
https://support.google.com/recaptcha/#6175971
unknown
clean
http://corona.com.co/5
unknown
clean
http://corona.com.co/2
unknown
clean
https://support.google.com/recaptcha
unknown
clean
https://dns.google
unknown
clean
http://eprocurement.corona.com.co/eprocurement2/#/login/W
unknown
clean
https://support.google.com/chromecast/troubleshooter/2995236
unknown
clean
https://payments.google.com/payments/v4/js/integrator.js
unknown
clean
https://www.google.com;
unknown
clean
https://developers.google.com/recaptcha/docs/faq#my-computer-or-network-may-be-sending-automated-que
unknown
clean
http://eprocurement.corona.com.co/eprocurement2/#/logineprocurement.corona.com.co/eprocurement2/#/lo
unknown
clean
https://play.google.com/log?format=json&hasfast=true
unknown
clean
http://corona.com.co/?0
unknown
clean
http://eprocurement.corona.com.co/eprocurement2/#/login/2
unknown
clean
https://www.google.com)
unknown
clean
http://eprocurement.corona.com.co/eprocurement2/#/login/L
unknown
clean
http://eprocurement.corona.com.coh
unknown
clean
http://corona.com.co/
unknown
clean
http://eprocurement.corona.com.co/eprocurement2/bower_components/angular-bootstrap/ui-bootstrap-tpls
unknown
clean
https://www.google.com/
unknown
clean
http://eprocurement.corona.com.co/eprocurement2/bower_components/angular-resource/angular-resource.j
unknown
clean
https://feedback.googleusercontent.com
unknown
clean
http://corona.com.co/DUt
unknown
clean
https://www.google.com/log?format=json&hasfast=true
unknown
clean
https://sandbox.google.com/payments/v4/js/integrator.js
unknown
clean
http://corona.com.co/zB
unknown
clean
http://eprocurement.corona.com.co/eprocurement2/#/login
unknown
clean
http://eprocurement.corona.com.co/eprocurement2/bower_components/angular-recaptcha/angular-recaptcha
unknown
clean
https://accounts.google.com
unknown
clean
http://eprocurement.corona.com.co/eprocurement2/#/login/
unknown
clean
https://www.google.comh
unknown
clean
http://eprocurement.corona.com.co)
unknown
clean
https://apis.google.com
unknown
clean
https://www.google.com/recaptcha/api2/
unknown
clean
http://eprocurement.corona.com.co
unknown
clean
https://clients2.google.com
unknown
clean
http://eprocurement.corona.com.co/eprocurement2/#/login/2:
unknown
clean
https://ogs.google.com
unknown
clean
http://corona.com.co/w
unknown
clean
http://eprocurement.corona.com.co/eprocurement2/#/login20eprocurement.corona.com.co/eprocurement2/#/
unknown
clean
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
eprocurement.corona.com.co
200.32.81.196
malicious
gstaticadssl.l.google.com
142.250.186.131
clean
www.corona.com.co
13.90.152.140
clean
accounts.google.com
172.217.18.109
clean
www.google.com
142.250.185.164
clean
clients.l.google.com
216.58.212.174
clean
googlehosted.l.googleusercontent.com
216.58.212.161
clean
clients2.googleusercontent.com
unknown
clean
clients2.google.com
unknown
clean

IPs

IP
Domain
Country
Malicious
200.32.81.196
eprocurement.corona.com.co
Argentina
malicious
192.168.2.1
unknown
unknown
clean
239.255.255.250
unknown
Reserved
clean
142.250.185.164
www.google.com
United States
clean
172.217.18.109
accounts.google.com
United States
clean
142.250.186.131
gstaticadssl.l.google.com
United States
clean
216.58.212.161
googlehosted.l.googleusercontent.com
United States
clean
216.58.212.174
clients.l.google.com
United States
clean
127.0.0.1
unknown
unknown
clean

Registry

Path
Value
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
ahfgeienlihckogmohjhadlkjgocpleb
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
gdaefkejpgkiemlaofpalmlakkmbjdnl
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
gfdkimpbcpahaombhbimeihdjnejgicl
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
kmendfapggjehodndflmmgagdbamhnfd
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
mfehgcgbbipciphmccgaenjidiccnmng
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
mhjfbmdgcfjbbpaeojofohoefgiehjai
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
neajdppkdcdipfabeoofebfddakdcjhd
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
nkeimhogjdpnpccoofpliimaahmaaome
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
prefs.preference_reset_time
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
S-1-5-21-3853321935-2125563209-4053062332-1002
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
gfdkimpbcpahaombhbimeihdjnejgicl
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
nmmhkkegccagdldgiimedpiccmgmieda
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
pkedcjkdefgpdelpbcmbmeomcjbeemfm
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
state
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
StatusCodes
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
StatusCodes
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
state
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
software_reporter.reporting
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
module_blacklist_cache_md5_digest
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
media.storage_id_salt
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
google.services.last_account_id
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
google.services.account_id
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
software_reporter.prompt_seed
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
settings_reset_prompt.last_triggered_for_homepage
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
default_search_provider_data.template_url_data
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
safebrowsing.incidents_sent
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
pinned_tabs
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
search_provider_overrides
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
settings_reset_prompt.last_triggered_for_default_search
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
prefs.preference_reset_time
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
google.services.last_username
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
session.startup_urls
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
session.restore_on_startup
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
software_reporter.prompt_version
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
settings_reset_prompt.last_triggered_for_startup_urls
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
settings_reset_prompt.prompt_wave
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
homepage
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
homepage_is_newtabpage
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
browser.show_home_button
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
user_experience_metrics.stability.exited_cleanly
clean
C:\Program Files\Google\Chrome\Application\chrome.exe
lastrun
clean
There are 31 hidden registries, click here to show them.

Memdumps

Base Address
Regiontype
Protect
Malicious
7FF591518000
unkown
page readonly
clean
CAC927F000
unkown
page read and write
clean
7FF5A608E000
unkown
page readonly
clean
22CBC84B000
unkown
page read and write
clean
7FF5A5F8C000
unkown
page readonly
clean
22CBC87D000
unkown
page read and write
clean
1C4CECD0000
unkown
page readonly
clean
7FF5915D8000
unkown
page readonly
clean
7FF591727000
unkown
page readonly
clean
62E467E000
unkown
page read and write
clean
7FF5CE9CE000
unkown
page readonly
clean
26A5A6C0000
unkown
page readonly
clean
22CBCDA0000
unkown
page read and write
clean
164F47B000
unkown
page read and write
clean
26A5EE5D000
unkown
page read and write
clean
1D1CA513000
unkown
page read and write
clean
1745BB70000
unkown
page readonly
clean
26A5ED30000
unkown
page read and write
clean
7FF5895CF000
unkown
page readonly
clean
7FF589588000
unkown
page readonly
clean
129BA602000
unkown
page read and write
clean
1D1CA468000
unkown
page read and write
clean
4BDCA7F000
unkown
page read and write
clean
1C4CE990000
unkown
page readonly
clean
7FF5C124F000
unkown
page readonly
clean
59F85FE000
unkown
page read and write
clean
7FF57BE7F000
unkown
page readonly
clean
7FF5913A0000
unkown
page readonly
clean
1845DE00000
unkown
page readonly
clean
7FF5094AD000
unkown
page readonly
clean
9258F3B000
unkown
page read and write
clean
62E497E000
unkown
page read and write
clean
D173B7D000
unkown
page read and write
clean
1745B429000
unkown
page read and write
clean
7FF5A5FD5000
unkown
page readonly
clean
26A5ED70000
unkown
page readonly
clean
1B44C702000
unkown
page read and write
clean
7FF5C0EF8000
unkown
page readonly
clean
C396A7B000
unkown
page read and write
clean
7FF5C1157000
unkown
page readonly
clean
7FF5A609F000
unkown
page readonly
clean
7FF5915D3000
unkown
page readonly
clean
7FF5E8695000
unkown
page readonly
clean
1B44C668000
unkown
page read and write
clean
1C4CEA13000
unkown
page read and write
clean
7FF53B7F3000
unkown
page readonly
clean
1B44C685000
unkown
page read and write
clean
7FF5CE9DF000
unkown
page readonly
clean
26A5ED1C000
unkown
page readonly
clean
7FF57C00D000
unkown
page readonly
clean
26A5ED70000
unkown
page read and write
clean
7FF5096F4000
unkown
page readonly
clean
22CBC908000
unkown
page read and write
clean
26A5EDF0000
unkown
page readonly
clean
C396F7E000
unkown
page read and write
clean
C396E77000
unkown
page read and write
clean
7FF5E876E000
unkown
page readonly
clean
129B9F02000
unkown
page read and write
clean
1B44C664000
unkown
page read and write
clean
7FF5916D0000
unkown
page readonly
clean
26A59F13000
unkown
page read and write
clean
1745B477000
unkown
page read and write
clean
62E477E000
unkown
page read and write
clean
7FF5CE8EC000
unkown
page readonly
clean
7FF5E8478000
unkown
page readonly
clean
1B44C659000
unkown
page read and write
clean
6ACC6FD000
unkown
page read and write
clean
26A5A710000
unkown
page readonly
clean
129B9F08000
unkown
page read and write
clean
7FF5E868C000
unkown
page readonly
clean
4BDCC7F000
unkown
page read and write
clean
22CBC829000
unkown
page read and write
clean
CAC91FF000
unkown
page read and write
clean
7FF59181B000
unkown
page readonly
clean
26A59674000
unkown
page read and write
clean
1845DC88000
unkown
page read and write
clean
7FF5CE9DB000
unkown
page readonly
clean
6ACC27E000
unkown
page read and write
clean
7FF57BF23000
unkown
page readonly
clean
7FF5915EC000
unkown
page readonly
clean
7FF57C02F000
unkown
page readonly
clean
D173C7B000
unkown
page read and write
clean
7FF57BF37000
unkown
page readonly
clean
7FF591527000
unkown
page readonly
clean
7FF57BAF9000
unkown
page readonly
clean
7FF5E878E000
unkown
page readonly
clean
1C4CE9D0000
unkown
page read and write
clean
1D1CA330000
unkown
page readonly
clean
1C4CF060000
unkown
page readonly
clean
26A59600000
unkown
page read and write
clean
7FF53B7F7000
unkown
page readonly
clean
7FF5091E8000
unkown
page readonly
clean
7FF53B5B3000
unkown
page readonly
clean
1B44C670000
unkown
page read and write
clean
1F12D200000
unkown
page read and write
clean
7FF5A5F50000
unkown
page readonly
clean
22CBC856000
unkown
page read and write
clean
26A5EC30000
unkown
page read and write
clean
7FF5A608B000
unkown
page readonly
clean
1845DC40000
unkown
page read and write
clean
7FF57BDCD000
unkown
page readonly
clean
4BDD47E000
unkown
page read and write
clean
7FF53B8E4000
unkown
page readonly
clean
7FF5913A7000
unkown
page readonly
clean
26A5A720000
unkown
page readonly
clean
D173E7F000
unkown
page read and write
clean
22CBC640000
heap default
page read and write
clean
7FF5914DF000
unkown
page readonly
clean
7FF5915B4000
unkown
page readonly
clean
7FF5CDE07000
unkown
page readonly
clean
1D1CA990000
unkown
page readonly
clean
6ACC97E000
unkown
page read and write
clean
7FF5A5FEA000
unkown
page readonly
clean
1745BB50000
unkown
page read and write
clean
22CBC900000
unkown
page read and write
clean
CAC897E000
unkown
page read and write
clean
7FF5E8758000
unkown
page readonly
clean
1B44C800000
unkown
page readonly
clean
1845DCE5000
unkown
page read and write
clean
7FF53B818000
unkown
page readonly
clean
1B44C67C000
unkown
page read and write
clean
22CBD000000
unkown
page readonly
clean
1B44CE02000
unkown
page read and write
clean
925957E000
unkown
page read and write
clean
26A5EB00000
unkown
page read and write
clean
7FF5CE9A6000
unkown
page readonly
clean
7FF53B807000
unkown
page readonly
clean
7FF5C120F000
unkown
page readonly
clean
26A5ED50000
unkown
page read and write
clean
7FF57BFEF000
unkown
page readonly
clean
22CBC720000
unkown
page readonly
clean
26A5AA70000
unkown
page read and write
clean
4BDC51C000
unkown
page read and write
clean
7FF5A5F3D000
unkown
page readonly
clean
7FF5917EE000
unkown
page readonly
clean
1745B8D0000
unkown
page readonly
clean
7FF53AD1B000
unkown
page readonly
clean
7FF5A609D000
unkown
page readonly
clean
1F12D870000
unkown
page read and write
clean
26A5969A000
unkown
page read and write
clean
7FF591694000
unkown
page readonly
clean
1D1CA46D000
unkown
page read and write
clean
7FF5E877D000
unkown
page readonly
clean
1B44C510000
heap default
page read and write
clean
7FF5C1120000
unkown
page readonly
clean
7FF5096C8000
unkown
page readonly
clean
26A5ED40000
unkown
page read and write
clean
164F77E000
unkown
page read and write
clean
7FF59172C000
unkown
page readonly
clean
7FF5CE8D7000
unkown
page readonly
clean
7FF5C121B000
unkown
page readonly
clean
7FF5E853D000
unkown
page readonly
clean
CAC94FF000
unkown
page read and write
clean
26A5ECF4000
unkown
page readonly
clean
7FF57BDF3000
unkown
page readonly
clean
7FF5A5F82000
unkown
page readonly
clean
7FF53B8BF000
unkown
page readonly
clean
7FF53B8FF000
unkown
page readonly
clean
CAC92FF000
unkown
page read and write
clean
7FF5C123B000
unkown
page readonly
clean
22CBCE02000
unkown
page read and write
clean
1C4CF202000
unkown
page read and write
clean
D173D77000
unkown
page read and write
clean
7FF59180E000
unkown
page readonly
clean
7FF5916E0000
unkown
page readonly
clean
7FF589535000
unkown
page readonly
clean
164EFCE000
unkown
page read and write
clean
26A59E15000
unkown
page read and write
clean
7FF5912CF000
unkown
page readonly
clean
7FF5A5FAC000
unkown
page readonly
clean
1D1CA43C000
unkown
page read and write
clean
1D1CA250000
heap default
page read and write
clean
22CBC851000
unkown
page read and write
clean
1F12D28F000
unkown
page read and write
clean
26A5A6F0000
unkown
page readonly
clean
1B44C644000
unkown
page read and write
clean
7FF5C124F000
unkown
page readonly
clean
7FF59180B000
unkown
page readonly
clean
26A5EC10000
unkown
page read and write
clean
26A595C0000
unkown
page readonly
clean
7FF509645000
unkown
page readonly
clean
7FF5895BB000
unkown
page readonly
clean
CAC887B000
unkown
page read and write
clean
7FF5894DC000
unkown
page readonly
clean
26A5EC18000
unkown
page read and write
clean
129B9D40000
unkown
page readonly
clean
7FF53B74F000
unkown
page readonly
clean
7FF5917E6000
unkown
page readonly
clean
7FF590C3B000
unkown
page readonly
clean
1B44C642000
unkown
page read and write
clean
7FF57BF65000
unkown
page readonly
clean
4BDC87D000
unkown
page read and write
clean
7FF591717000
unkown
page readonly
clean
1D1CA413000
unkown
page read and write
clean
925967E000
unkown
page read and write
clean
1F12D120000
unkown
page readonly
clean
7FF5CE9B0000
unkown
page readonly
clean
7FF59181F000
unkown
page readonly
clean
7FF5E8614000
unkown
page readonly
clean
7FF509607000
unkown
page readonly
clean
1D1CA464000
unkown
page read and write
clean
7FF5A5D2A000
unkown
page readonly
clean
7FF5096DB000
unkown
page readonly
clean
22CBC888000
unkown
page read and write
clean
4BDD37E000
unkown
page read and write
clean
26A5ED18000
unkown
page write copy
clean
1745BE00000
unkown
page readonly
clean
129B9E13000
unkown
page read and write
clean
1845DC00000
unkown
page read and write
clean
1845E260000
unkown
page readonly
clean
7FF591541000
unkown
page readonly
clean
7FF5CE693000
unkown
page readonly
clean
7FF57BDFE000
unkown
page readonly
clean
22CBC86A000
unkown
page read and write
clean
1B44C631000
unkown
page read and write
clean
1745BB40000
unkown
page readonly
clean
6ACCA7D000
unkown
page read and write
clean
1F12DA02000
unkown
page read and write
clean
7FF5E82FA000
unkown
page readonly
clean
7FF53B8EE000
unkown
page readonly
clean
7FF5895CB000
unkown
page readonly
clean
26A5ED60000
unkown
page read and write
clean
62E44FE000
unkown
page read and write
clean
7FF59150A000
unkown
page readonly
clean
26A5EC40000
unkown
page read and write
clean
7FF5096FB000
unkown
page readonly
clean
7FF5C123E000
unkown
page readonly
clean
62E41AC000
unkown
page read and write
clean
6ACBE8C000
unkown
page read and write
clean
7FF5915BD000
unkown
page readonly
clean
7FF5916F0000
unkown
page readonly
clean
7FF5E86CD000
unkown
page readonly
clean
7FF5CE90D000
unkown
page readonly
clean
7FF53B80C000
unkown
page readonly
clean
1B44C600000
unkown
page read and write
clean
7FF5913C4000
unkown
page readonly
clean
7FF53B865000
unkown
page readonly
clean
129B9D30000
unkown
page readonly
clean
1845DCBA000
unkown
page read and write
clean
7FF53B3C3000
unkown
page readonly
clean
26A5968E000
unkown
page read and write
clean
7FF53B8FB000
unkown
page readonly
clean
7FF591763000
unkown
page readonly
clean
26A5EC40000
unkown
page read and write
clean
7FF59150C000
unkown
page readonly
clean
7FF5A605F000
unkown
page readonly
clean
26A5F000000
unkown
page readonly
clean
129BA000000
unkown
page readonly
clean
26A5969E000
unkown
page read and write
clean
7FF5895AD000
unkown
page readonly
clean
7FF5096CF000
unkown
page readonly
clean
1845E402000
unkown
page read and write
clean
1B44C64E000
unkown
page read and write
clean
26A5EE2B000
unkown
page read and write
clean
7FF53B8FF000
unkown
page readonly
clean
7FF5CDDD6000
unkown
page readonly
clean
1845E330000
unkown
page readonly
clean
1F12D282000
unkown
page read and write
clean
7FF5894B2000
unkown
page readonly
clean
7FF591713000
unkown
page readonly
clean
26A5F070000
unkown
page readonly
clean
7FF5C117D000
unkown
page readonly
clean
7FF50961C000
unkown
page readonly
clean
7FF53B8DD000
unkown
page readonly
clean
1C4CEA00000
unkown
page read and write
clean
C396D7B000
unkown
page read and write
clean
26A5A700000
unkown
page readonly
clean
925977F000
unkown
page read and write
clean
7FF5E8674000
unkown
page readonly
clean
1B44C676000
unkown
page read and write
clean
7FF53AD27000
unkown
page readonly
clean
1745B400000
unkown
page read and write
clean
7FF57BF3C000
unkown
page readonly
clean
7FF589505000
unkown
page readonly
clean
129B9C50000
heap default
page read and write
clean
7FF53B3C9000
unkown
page readonly
clean
7FF59174D000
unkown
page readonly
clean
1B44C661000
unkown
page read and write
clean
7FF5E86B8000
unkown
page readonly
clean
7FF5A575F000
unkown
page readonly
clean
7FF5916F4000
unkown
page readonly
clean
7FF59181F000
unkown
page readonly
clean
1745B6D0000
unkown
page readonly
clean
7FF509653000
unkown
page readonly
clean
7FF5894A4000
unkown
page readonly
clean
7FF5C1220000
unkown
page readonly
clean
1B44C658000
unkown
page read and write
clean
7FF57BF73000
unkown
page readonly
clean
7FF509649000
unkown
page readonly
clean
62E447E000
unkown
page read and write
clean
7FF5CE923000
unkown
page readonly
clean
26A59656000
unkown
page read and write
clean
7FF5E8532000
unkown
page readonly
clean
7FF5895CF000
unkown
page readonly
clean
7FF509565000
unkown
page readonly
clean
7FF5E879F000
unkown
page readonly
clean
7FF5CE77D000
unkown
page readonly
clean
7FF5915BA000
unkown
page readonly
clean
7FF53B8EB000
unkown
page readonly
clean
4BDD17F000
unkown
page read and write
clean
1845E532000
unkown
page read and write
clean
7FF59151D000
unkown
page readonly
clean
7FF5E876B000
unkown
page readonly
clean
1B44C646000
unkown
page read and write
clean
1F12D25F000
unkown
page read and write
clean
7FF5C1133000
unkown
page readonly
clean
26A596F8000
unkown
page read and write
clean
7FF591657000
unkown
page readonly
clean
7FF5096D6000
unkown
page readonly
clean
1F12D110000
heap default
page read and write
clean
1B44C663000
unkown
page read and write
clean
1B44C648000
unkown
page read and write
clean
1D1CA1F0000
heap private
page read and write
clean
7FF5C0FED000
unkown
page readonly
clean
1845DC29000
unkown
page read and write
clean
7FF509675000
unkown
page readonly
clean
1B44C645000
unkown
page read and write
clean
22CBC871000
unkown
page read and write
clean
1F12D213000
unkown
page read and write
clean
4BDD07F000
unkown
page read and write
clean
7FF57BF48000
unkown
page readonly
clean
7FF5E8784000
unkown
page readonly
clean
1745B45C000
unkown
page read and write
clean
1B44C4B0000
heap private
page read and write
clean
7FF5CE8F8000
unkown
page readonly
clean
1845E500000
unkown
page read and write
clean
26A595D0000
unkown
page readonly
clean
26A59F18000
unkown
page read and write
clean
7FF589509000
unkown
page readonly
clean
1845DCCB000
unkown
page read and write
clean
7FF53B843000
unkown
page readonly
clean
7FF5E85B6000
unkown
page readonly
clean
6ACC77B000
unkown
page read and write
clean
7FF5CE945000
unkown
page readonly
clean
7FF5917DF000
unkown
page readonly
clean
6ACBF0E000
unkown
page read and write
clean
1745B600000
unkown
page readonly
clean
1F12D23C000
unkown
page read and write
clean
7FF5CE9CB000
unkown
page readonly
clean
7FF5892D7000
unkown
page readonly
clean
1845E370000
unkown
page readonly
clean
7FF5C1185000
unkown
page readonly
clean
7FF5895B4000
unkown
page readonly
clean
7FF57C000000
unkown
page readonly
clean
26A5EE0E000
unkown
page read and write
clean
7FF53B8CB000
unkown
page readonly
clean
59F7B8B000
unkown
page read and write
clean
CAC95FC000
unkown
page read and write
clean
7FF5A5F4D000
unkown
page readonly
clean
7FF509628000
unkown
page readonly
clean
1C4CE970000
heap default
page read and write
clean
7FF57BE43000
unkown
page readonly
clean
1B44C66C000
unkown
page read and write
clean
26A5EC10000
unkown
page read and write
clean
1745B413000
unkown
page read and write
clean
7FF5E8693000
unkown
page readonly
clean
7FF5917D8000
unkown
page readonly
clean
1845DD13000
unkown
page read and write
clean
26A5EA70000
unkown
page read and write
clean
26A5963D000
unkown
page read and write
clean
7FF5A6066000
unkown
page readonly
clean
26A5966C000
unkown
page read and write
clean
7FF53B774000
unkown
page readonly
clean
22CBC650000
unkown
page readonly
clean
1F12D0B0000
heap private
page read and write
clean
26A5ECE0000
unkown
page write copy
clean
7FF5094DE000
unkown
page readonly
clean
7FF57B420000
unkown
page readonly
clean
7FF5889E5000
unkown
page readonly
clean
1845DC70000
unkown
page read and write
clean
7FF53B82D000
unkown
page readonly
clean
7FF57C02F000
unkown
page readonly
clean
26A59DE1000
unkown
page read and write
clean
7FF53B8D0000
unkown
page readonly
clean
7FF509584000
unkown
page readonly
clean
7FF5CE99F000
unkown
page readonly
clean
1745BC02000
unkown
page read and write
clean
7FF5E86D9000
unkown
page readonly
clean
CAC8DFF000
unkown
page read and write
clean
1B44C665000
unkown
page read and write
clean
6ACCB7F000
unkown
page read and write
clean
1745B513000
unkown
page read and write
clean
7FF5C1234000
unkown
page readonly
clean
26A5EAF0000
unkown
page read and write
clean
1D1CAE00000
unkown
page readonly
clean
7FF50970F000
unkown
page readonly
clean
6ACC2FC000
unkown
page read and write
clean
7FF5A58E4000
unkown
page readonly
clean
7FF5E86D5000
unkown
page readonly
clean
7FF5A5FCD000
unkown
page readonly
clean
7FF57C02B000
unkown
page readonly
clean
1C4CEA58000
unkown
page read and write
clean
7FF590EDE000
unkown
page readonly
clean
6ACC87C000
unkown
page read and write
clean
26A5EC54000
unkown
page read and write
clean
7FF5CE9AB000
unkown
page readonly
clean
7FF509617000
unkown
page readonly
clean
CAC8A77000
unkown
page read and write
clean
26A5EE00000
unkown
page read and write
clean
7FF59166F000
unkown
page readonly
clean
7FF5096FE000
unkown
page readonly
clean
4BDC97B000
unkown
page read and write
clean
62E487E000
unkown
page read and write
clean
7FF5CE919000
unkown
page readonly
clean
26A5EEB3000
unkown
page read and write
clean
7FF5E879B000
unkown
page readonly
clean
7FF5093C3000
unkown
page readonly
clean
26A59613000
unkown
page read and write
clean
4BDCB7C000
unkown
page read and write
clean
7FF5C11B5000
unkown
page readonly
clean
7FF5A5BD1000
unkown
page readonly
clean
7FF50963D000
unkown
page readonly
clean
26A595E0000
unkown
page read and write
clean
26A5EE4C000
unkown
page read and write
clean
26A59713000
unkown
page read and write
clean
26A5EEAD000
unkown
page read and write
clean
7FF59181D000
unkown
page readonly
clean
7FF57C014000
unkown
page readonly
clean
7FF591394000
unkown
page readonly
clean
129B9E4F000
unkown
page read and write
clean
26A5ED70000
unkown
page read and write
clean
1845DBF0000
unkown
page readonly
clean
1C4CE9D0000
unkown
page read and write
clean
26A5ECE4000
unkown
page readonly
clean
7FF57BF5D000
unkown
page readonly
clean
7FF5E82FE000
unkown
page readonly
clean
1845DCE1000
unkown
page read and write
clean
7FF57BF69000
unkown
page readonly
clean
7FF5913AF000
unkown
page readonly
clean
129B9E88000
unkown
page read and write
clean
7FF591785000
unkown
page readonly
clean
7FF53B3D8000
unkown
page readonly
clean
925947B000
unkown
page read and write
clean
129B9BF0000
heap private
page read and write
clean
26A5EAC0000
unkown
page readonly
clean
7FF5E879F000
unkown
page readonly
clean
26A59629000
unkown
page read and write
clean
7FF5CE92A000
unkown
page readonly
clean
1F12D790000
unkown
page readonly
clean
22CBCA00000
unkown
page readonly
clean
26A59800000
unkown
page readonly
clean
7FF5E7E5F000
unkown
page readonly
clean
7FF57BF7A000
unkown
page readonly
clean
7FF5894FD000
unkown
page readonly
clean
1C4CE980000
unkown
page readonly
clean
7FF58925A000
unkown
page readonly
clean
59F857E000
unkown
page read and write
clean
129B9E00000
unkown
page read and write
clean
7FF58959B000
unkown
page readonly
clean
22CBC913000
unkown
page read and write
clean
1845DC83000
unkown
page read and write
clean
D17373B000
unkown
page read and write
clean
22CBC88F000
unkown
page read and write
clean
1C4CEA02000
unkown
page read and write
clean
7FF5E879D000
unkown
page readonly
clean
9258FBE000
unkown
page read and write
clean
129B9E70000
unkown
page read and write
clean
1B44C675000
unkown
page read and write
clean
1D1CA260000
unkown
page readonly
clean
1B44C613000
unkown
page read and write
clean
1D1CA340000
unkown
page readonly
clean
1845DBE0000
heap default
page read and write
clean
7FF5A5DB6000
unkown
page readonly
clean
7FF5CDDD3000
unkown
page readonly
clean
26A59688000
unkown
page read and write
clean
129B9D50000
unkown
page read and write
clean
6ACBF8D000
unkown
page read and write
clean
7FF57C01E000
unkown
page readonly
clean
129B9E4D000
unkown
page read and write
clean
7FF53B6C3000
unkown
page readonly
clean
7FF5CE998000
unkown
page readonly
clean
7FF5094FE000
unkown
page readonly
clean
7FF5C0638000
unkown
page readonly
clean
7FF5C0F06000
unkown
page readonly
clean
6ACC4FC000
unkown
page read and write
clean
164F577000
unkown
page read and write
clean
CAC8BFA000
unkown
page read and write
clean
164F67F000
unkown
page read and write
clean
7FF5916CD000
unkown
page readonly
clean
7FF591759000
unkown
page readonly
clean
7FF590C45000
unkown
page readonly
clean
26A5ECF0000
unkown
page readonly
clean
7FF589513000
unkown
page readonly
clean
7FF5894C3000
unkown
page readonly
clean
7FF591503000
unkown
page readonly
clean
22CBC800000
unkown
page read and write
clean
26A59676000
unkown
page read and write
clean
7FF5C124D000
unkown
page readonly
clean
26A5A5E0000
unkown
page read and write
clean
1B44C520000
unkown
page readonly
clean
1745B425000
unkown
page read and write
clean
CAC88FD000
unkown
page read and write
clean
1845DED0000
unkown
page readonly
clean
7FF53B713000
unkown
page readonly
clean
7FF589396000
unkown
page readonly
clean
6ACC5FF000
unkown
page read and write
clean
7FF53B8C6000
unkown
page readonly
clean
26A5EE62000
unkown
page read and write
clean
D1737BE000
unkown
page read and write
clean
26A5A500000
unkown
page read and write
clean
7FF58951A000
unkown
page readonly
clean
7FF5C1110000
unkown
page readonly
clean
59F837F000
unkown
page read and write
clean
1B44C66A000
unkown
page read and write
clean
7FF5096ED000
unkown
page readonly
clean
26A5EDC0000
unkown
page readonly
clean
7FF5CE915000
unkown
page readonly
clean
7FF509603000
unkown
page readonly
clean
7FF5E8705000
unkown
page readonly
clean
1B44C641000
unkown
page read and write
clean
1B44C67E000
unkown
page read and write
clean
26A59F59000
unkown
page read and write
clean
1C4CF400000
unkown
page read and write
clean
7FF5C1147000
unkown
page readonly
clean
7FF591570000
unkown
page readonly
clean
7FF59139A000
unkown
page readonly
clean
26A5A6E0000
unkown
page readonly
clean
22CBC902000
unkown
page read and write
clean
7FF509523000
unkown
page readonly
clean
1C4CE9A0000
unkown
page read and write
clean
7FF5A5FD9000
unkown
page readonly
clean
26A5ED20000
unkown
page read and write
clean
7FF53B69D000
unkown
page readonly
clean
1B44C662000
unkown
page read and write
clean
1D1CA502000
unkown
page read and write
clean
7FF57BFF6000
unkown
page readonly
clean
925927E000
unkown
page read and write
clean
1D1CA350000
unkown
page read and write
clean
7FF5A5FA7000
unkown
page readonly
clean
26A595F0000
unkown
page read and write
clean
7FF5A609F000
unkown
page readonly
clean
26A59702000
unkown
page read and write
clean
7FF508AFA000
unkown
page readonly
clean
26A595B0000
heap default
page read and write
clean
1745B390000
heap private
page read and write
clean
7FF5C115D000
unkown
page readonly
clean
7FF5E7BDC000
unkown
page readonly
clean
7FF5895BE000
unkown
page readonly
clean
7FF5895A0000
unkown
page readonly
clean
7FF508B07000
unkown
page readonly
clean
7FF53B8B8000
unkown
page readonly
clean
26A5EE84000
unkown
page read and write
clean
7FF5917FD000
unkown
page readonly
clean
26A5ED70000
unkown
page read and write
clean
1F12D271000
unkown
page read and write
clean
26A5AA60000
unkown
page read and write
clean
7FF591543000
unkown
page readonly
clean
7FF57BF27000
unkown
page readonly
clean
1D1CA402000
unkown
page read and write
clean
7FF591513000
unkown
page readonly
clean
26A5EE3F000
unkown
page read and write
clean
7FF5E824F000
unkown
page readonly
clean
4BDC59E000
unkown
page read and write
clean
129B9E29000
unkown
page read and write
clean
7FF5E85AD000
unkown
page readonly
clean
7FF57B419000
unkown
page readonly
clean
7FF5A5F57000
unkown
page readonly
clean
7FF5E86E3000
unkown
page readonly
clean
1C4CEA40000
unkown
page read and write
clean
7FF57BE1E000
unkown
page readonly
clean
7FF58938C000
unkown
page readonly
clean
7FF5A5E17000
unkown
page readonly
clean
164EECB000
unkown
page read and write
clean
26A5EEAF000
unkown
page read and write
clean
7FF5894C7000
unkown
page readonly
clean
129B9E02000
unkown
page read and write
clean
7FF58944E000
unkown
page readonly
clean
1C4CEA29000
unkown
page read and write
clean
1B44C629000
unkown
page read and write
clean
7FF5A606B000
unkown
page readonly
clean
22CBCD90000
unkown
page readonly
clean
26A59F18000
unkown
page read and write
clean
1D1CA600000
unkown
page readonly
clean
1B44C657000
unkown
page read and write
clean
7FF5894D8000
unkown
page readonly
clean
CAC907F000
unkown
page read and write
clean
1D1CAC02000
unkown
page read and write
clean
1D1CA400000
unkown
page read and write
clean
CAC8AFE000
unkown
page read and write
clean
26A5AA63000
unkown
page read and write
clean
7FF590FB4000
unkown
page readonly
clean
1B44C67F000
unkown
page read and write
clean
26A5EDB0000
unkown
page readonly
clean
129B9F13000
unkown
page read and write
clean
7FF589596000
unkown
page readonly
clean
7FF53B755000
unkown
page readonly
clean
26A5EE86000
unkown
page read and write
clean
26A5EC50000
unkown
page read and write
clean
7FF591511000
unkown
page readonly
clean
CAC8FFE000
unkown
page read and write
clean
D173A7E000
unkown
page read and write
clean
7FF5914AA000
unkown
page readonly
clean
7FF5E86AC000
unkown
page readonly
clean
1D1CA500000
unkown
page read and write
clean
59F807F000
unkown
page read and write
clean
164EF4E000
unkown
page read and write
clean
1B44C660000
unkown
page read and write
clean
7FF57BB08000
unkown
page readonly
clean
7FF5CE9C4000
unkown
page readonly
clean
26A59F00000
unkown
page read and write
clean
7FF5CE9DF000
unkown
page readonly
clean
1F12D1F0000
unkown
page readonly
clean
4BDD27F000
unkown
page read and write
clean
1D1CA479000
unkown
page read and write
clean
7FF57BCE3000
unkown
page readonly
clean
7FF5091D9000
unkown
page readonly
clean
7FF50965A000
unkown
page readonly
clean
26A5ECE0000
unkown
page read and write
clean
7FF57C01B000
unkown
page readonly
clean
26A5EEAA000
unkown
page read and write
clean
7FF5894E8000
unkown
page readonly
clean
1B44C5F0000
unkown
page readonly
clean
1845DB80000
heap private
page read and write
clean
1F12DC00000
unkown
page readonly
clean
7FF50970F000
unkown
page readonly
clean
7FF5916D7000
unkown
page readonly
clean
4BDCF7F000
unkown
page read and write
clean
4BDCE7D000
unkown
page read and write
clean
7FF53B6CE000
unkown
page readonly
clean
22CBC813000
unkown
page read and write
clean
7FF5096E0000
unkown
page readonly
clean
7FF5C1193000
unkown
page readonly
clean
7FF5E861E000
unkown
page readonly
clean
1B44C640000
unkown
page read and write
clean
164F2FB000
unkown
page read and write
clean
26A59672000
unkown
page read and write
clean
22CBC83C000
unkown
page read and write
clean
26A5EC31000
unkown
page read and write
clean
1B44C647000
unkown
page read and write
clean
7FF508B00000
unkown
page readonly
clean
26A59F02000
unkown
page read and write
clean
7FF5E7FE4000
unkown
page readonly
clean
1B44C64D000
unkown
page read and write
clean
7FF50955F000
unkown
page readonly
clean
1C4CEB02000
unkown
page read and write
clean
1B44C667000
unkown
page read and write
clean
1F12D302000
unkown
page read and write
clean
7FF57BAF3000
unkown
page readonly
clean
26A5EB10000
unkown
page read and write
clean
1F12D400000
unkown
page readonly
clean
CAC8CFA000
unkown
page read and write
clean
7FF58936D000
unkown
page readonly
clean
1B44C65F000
unkown
page read and write
clean
129B9E49000
unkown
page read and write
clean
59F847D000
unkown
page read and write
clean
7FF5A6005000
unkown
page readonly
clean
7FF5E86A7000
unkown
page readonly
clean
1C4CEC00000
unkown
page readonly
clean
129BA800000
unkown
page readonly
clean
7FF57BFFB000
unkown
page readonly
clean
7FF5C122D000
unkown
page readonly
clean
7FF5A607D000
unkown
page readonly
clean
7FF53B84A000
unkown
page readonly
clean
1B44CC70000
unkown
page read and write
clean
C396B7F000
unkown
page read and write
clean
26A5EC34000
unkown
page read and write
clean
1845DD02000
unkown
page read and write
clean
1745B502000
unkown
page read and write
clean
7FF59176A000
unkown
page readonly
clean
1D1CA428000
unkown
page read and write
clean
26A5968A000
unkown
page read and write
clean
1B44C63A000
unkown
page read and write
clean
1F12D229000
unkown
page read and write
clean
7FF5E86EA000
unkown
page readonly
clean
7FF5892CD000
unkown
page readonly
clean
22CBC86A000
unkown
page read and write
clean
7FF5E8466000
unkown
page readonly
clean
7FF5C119A000
unkown
page readonly
clean
26A5EA80000
unkown
page read and write
clean
7FF5094D3000
unkown
page readonly
clean
22CBC802000
unkown
page read and write
clean
C396AFF000
unkown
page read and write
clean
7FF58958F000
unkown
page readonly
clean
26A59C60000
unkown
page readonly
clean
26A59E00000
unkown
page read and write
clean
7FF591351000
unkown
page readonly
clean
129B9E7D000
unkown
page read and write
clean
26A59E02000
unkown
page read and write
clean
7FF5C0F48000
unkown
page readonly
clean
7FF5E8697000
unkown
page readonly
clean
1845E380000
unkown
page write copy
clean
4BDCD7D000
unkown
page read and write
clean
1F12D313000
unkown
page read and write
clean
129B9E3C000
unkown
page read and write
clean
1B44C66E000
unkown
page read and write
clean
26A5EEBE000
unkown
page read and write
clean
22CBC5E0000
heap private
page read and write
clean
7FF5E875F000
unkown
page readonly
clean
7FF5E8682000
unkown
page readonly
clean
7FF57BFE8000
unkown
page readonly
clean
129B9C60000
unkown
page readonly
clean
7FF5C1189000
unkown
page readonly
clean
7FF591738000
unkown
page readonly
clean
129B9E55000
unkown
page read and write
clean
7FF5E85C2000
unkown
page readonly
clean
1B44C65A000
unkown
page read and write
clean
7FF5A5F97000
unkown
page readonly
clean
1845DC13000
unkown
page read and write
clean
7FF59170C000
unkown
page readonly
clean
7FF5A5FE3000
unkown
page readonly
clean
7FF591326000
unkown
page readonly
clean
7FF5917EB000
unkown
page readonly
clean
7FF5E878B000
unkown
page readonly
clean
7FF53B839000
unkown
page readonly
clean
7FF5C1208000
unkown
page readonly
clean
7FF5E8766000
unkown
page readonly
clean
7FF5A606E000
unkown
page readonly
clean
1745BA70000
unkown
page readonly
clean
7FF53B6EE000
unkown
page readonly
clean
7FF5A5E6E000
unkown
page readonly
clean
1B44CC60000
unkown
page readonly
clean
7FF57BEA4000
unkown
page readonly
clean
26A5F090000
unkown
page readonly
clean
59F81FE000
unkown
page read and write
clean
7FF591702000
unkown
page readonly
clean
7FF5A6084000
unkown
page readonly
clean
26A5EC1E000
unkown
page read and write
clean
7FF5C1216000
unkown
page readonly
clean
59F82FD000
unkown
page read and write
clean
164F37F000
unkown
page read and write
clean
1745B468000
unkown
page read and write
clean
1745B3F0000
heap default
page read and write
clean
26A5ED70000
unkown
page read and write
clean
129B9F00000
unkown
page read and write
clean
26A5EEA5000
unkown
page read and write
clean
59F7EFE000
unkown
page read and write
clean
1B44C63D000
unkown
page read and write
clean
1845E940000
unkown
page readonly
clean
59F80FE000
unkown
page read and write
clean
7FF5A5BA6000
unkown
page readonly
clean
7FF5916F8000
unkown
page readonly
clean
1F12D860000
unkown
page readonly
clean
7FF5A6058000
unkown
page readonly
clean
1845E600000
unkown
page readonly
clean
D173F7C000
unkown
page read and write
clean
7FF5091D3000
unkown
page readonly
clean
CAC917A000
unkown
page read and write
clean
1B44C65C000
unkown
page read and write
clean
7FF57BF95000
unkown
page readonly
clean
1845E340000
unkown
page read and write
clean
26A5EEAB000
unkown
page read and write
clean
1745B43D000
unkown
page read and write
clean
CAC8F7F000
unkown
page read and write
clean
26A59550000
heap private
page read and write
clean
C39707F000
unkown
page read and write
clean
26A59F58000
unkown
page read and write
clean
7FF589362000
unkown
page readonly
clean
59F7E7E000
unkown
page read and write
clean
26A5EE1E000
unkown
page read and write
clean
26A598D0000
unkown
page readonly
clean
7FF591804000
unkown
page readonly
clean
1845DCC3000
unkown
page read and write
clean
1C4CE9D0000
unkown
page read and write
clean
7FF50970B000
unkown
page readonly
clean
7FF591755000
unkown
page readonly
clean
1745B402000
unkown
page read and write
clean
1D1CA455000
unkown
page read and write
clean
7FF57BE85000
unkown
page readonly
clean
7FF58939F000
unkown
page readonly
clean
26A5A6D0000
unkown
page readonly
clean
7FF5895CD000
unkown
page readonly
clean
7FF53B835000
unkown
page readonly
clean
1C4CE910000
heap private
page read and write
clean
7FF5894BC000
unkown
page readonly
clean
7FF590C4D000
unkown
page readonly
clean
CAC8EFB000
unkown
page read and write
clean
There are 756 hidden memdumps, click here to show them.

DOM / HTML

URL
Malicious
http://eprocurement.corona.com.co/eprocurement2/#/login
clean
https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LfV28YUAAAAAEkBQPmRvpzmlv9FyzeW-77R00r1&co=aHR0cDovL2Vwcm9jdXJlbWVudC5jb3JvbmEuY29tLmNvOjgw&hl=en&v=Eyd0Dt8h04h7r-D86uAD1JP-&size=normal&cb=qgk7owpuiqey
clean
https://www.google.com/recaptcha/api2/bframe?hl=en&v=Eyd0Dt8h04h7r-D86uAD1JP-&k=6LfV28YUAAAAAEkBQPmRvpzmlv9FyzeW-77R00r1&cb=610xzjr4baok
clean
http://eprocurement.corona.com.co/eprocurement2/#/login
clean