Source: WINWORD.EXE | String found in binary or memory: file:// |
Source: WINWORD.EXE | String found in binary or memory: file:///c: |
Source: WINWORD.EXE | String found in binary or memory: file:///c:/users/admin/appdata/local/temp/perdoma.exe |
Source: WINWORD.EXE | String found in binary or memory: file://page |
Source: WINWORD.EXE | String found in binary or memory: file://unicows.dll???.???ly27ry27 |
Source: WINWORD.EXE | String found in binary or memory: http:// |
Source: WINWORD.EXE | String found in binary or memory: http://%s/r/rlidstmapurl?clid=%d&#http://%s/r/rlidstdriveurl?clid=%d& |
Source: WINWORD.EXE | String found in binary or memory: http://)file |
Source: WINWORD.EXE | String found in binary or memory: http://)web |
Source: perdoma.exe | String found in binary or memory: http://crl.comodo.net/utn-userfirst-hardware.crl0q |
Source: perdoma.exe | String found in binary or memory: http://crl.comodoca.com/utn-userfirst-hardware.crl06 |
Source: perdoma.exe | String found in binary or memory: http://crl.entrust.net/2048ca.crl0 |
Source: perdoma.exe | String found in binary or memory: http://crl.entrust.net/server1.crl0 |
Source: WINWORD.EXE | String found in binary or memory: http://crl.microsoft.com/pki/crl/products/codesignpca.crl0 |
Source: perdoma.exe | String found in binary or memory: http://crl.microsoft.com/pki/crl/products/miccerlisca2011_2011-03-29.crl0 |
Source: perdoma.exe | String found in binary or memory: http://crl.microsoft.com/pki/crl/products/miccertrulispca_2009-04-02.crl0 |
Source: perdoma.exe | String found in binary or memory: http://crl.microsoft.com/pki/crl/products/microoceraut_2010-06-23.crl0z |
Source: perdoma.exe | String found in binary or memory: http://crl.microsoft.com/pki/crl/products/microsoftrootcert.crl0t |
Source: perdoma.exe | String found in binary or memory: http://crl.pkioverheid.nl/domorganisatielatestcrl-g2.crl0 |
Source: perdoma.exe | String found in binary or memory: http://crl.pkioverheid.nl/domovlatestcrl.crl0 |
Source: perdoma.exe | String found in binary or memory: http://crl.usertrust.com/utn-userfirst-object.crl0) |
Source: perdoma.exe | String found in binary or memory: http://crl.verisign.com/pca3.crl0 |
Source: WINWORD.EXE | String found in binary or memory: http://crl.verisign.com/thawtetimestampingca.crl0 |
Source: WINWORD.EXE | String found in binary or memory: http://crl.verisign.com/tss-ca.crl0 |
Source: perdoma.exe | String found in binary or memory: http://crt.comodoca.com/utnaddtrustserverca.crt0$ |
Source: perdoma.exe | String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en |
Source: perdoma.exe | String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab |
Source: perdoma.exe | String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab1j |
Source: perdoma.exe | String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab?65fb043de95cc |
Source: perdoma.exe | String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/disallowedcertstl.cab |
Source: perdoma.exe | String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/disallowedcertstl.cab?ff63e5b |
Source: perdoma.exe | String found in binary or memory: http://cybertrust.omniroot.com/repository.cfm0 |
Source: WINWORD.EXE | String found in binary or memory: http://ftp://mailto:gopher:// |
Source: WINWORD.EXE | String found in binary or memory: http://gangren.republika.pl/u56gf2d/k76j5hg.exe |
Source: WINWORD.EXE | String found in binary or memory: http://gangren.republika.pl/u56gf2d/k76j5hg.exe7 |
Source: WINWORD.EXE | String found in binary or memory: http://gangren.republika.pl/u56gf2d/k76j5hg.exefo$g |
Source: WINWORD.EXE | String found in binary or memory: http://go.microsoft.com/fwlink/?linkid=125824-http://go.microsoft.com/fwlink/?linkid=125723-http://g |
Source: perdoma.exe | String found in binary or memory: http://go.microsoft.com/fwlink/?linkid=92362. |
Source: perdoma.exe | String found in binary or memory: http://logo.verisign.com/vslogo.gif0 |
Source: perdoma.exe | String found in binary or memory: http://microsoft.com0 |
Source: WINWORD.EXE | String found in binary or memory: http://moneycentral.msn.com/investor/external/excel/quotes.asp?symbol=5cannot |
Source: WINWORD.EXE | String found in binary or memory: http://msdn.microsoft.com/developer/default.htm |
Source: WINWORD.EXE | String found in binary or memory: http://myserver/myfolder)the |
Source: WINWORD.EXE | String found in binary or memory: http://myserver/myfolder/newsitename)select |
Source: WINWORD.EXE | String found in binary or memory: http://myserver/public/. |
Source: WINWORD.EXE | String found in binary or memory: http://myserver/public/.cannot |
Source: perdoma.exe | String found in binary or memory: http://ocsp.comodoca.com0 |
Source: perdoma.exe | String found in binary or memory: http://ocsp.comodoca.com0% |
Source: perdoma.exe | String found in binary or memory: http://ocsp.comodoca.com0- |
Source: perdoma.exe | String found in binary or memory: http://ocsp.comodoca.com0/ |
Source: perdoma.exe | String found in binary or memory: http://ocsp.comodoca.com05 |
Source: perdoma.exe | String found in binary or memory: http://ocsp.entrust.net03 |
Source: perdoma.exe | String found in binary or memory: http://ocsp.entrust.net0d |
Source: WINWORD.EXE | String found in binary or memory: http://ocsp.verisign.com0 |
Source: WINWORD.EXE | String found in binary or memory: http://office.microsoft.com |
Source: WINWORD.EXE | String found in binary or memory: http://office.microsoft.comspeech |
Source: WINWORD.EXE | String found in binary or memory: http://officeupdate.microsoft.com |
Source: WINWORD.EXE | String found in binary or memory: http://subscription/url/ms.comproductactivation.one.microsoft.com |
Source: WINWORD.EXE | String found in binary or memory: http://support.microsoft.com/support/misc/kblookup.asp?id=q302596 |
Source: WINWORD.EXE | String found in binary or memory: http://support.microsoft.com/support/misc/kblookup.asp?id=q302596pad |
Source: perdoma.exe | String found in binary or memory: http://ww |
Source: perdoma.exe | String found in binary or memory: http://wwertr |
Source: perdoma.exe | String found in binary or memory: http://www.digicert.com.my/cps.htm02 |
Source: perdoma.exe | String found in binary or memory: http://www.diginotar.nl/cps/pkioverheid0 |
Source: WINWORD.EXE | String found in binary or memory: http://www.microsoft.com |
Source: WINWORD.EXE | String found in binary or memory: http://www.microsoft.com.windows |
Source: WINWORD.EXE | String found in binary or memory: http://www.microsoft.com/isapi/redir.dll?prd=&sbp=&plcid=&pver=&os=&over=&olcid=&clcid=&ar=&sba=&o1= |
Source: WINWORD.EXE | String found in binary or memory: http://www.microsoft.com/netmeeting/. |
Source: perdoma.exe | String found in binary or memory: http://www.microsoft.com/pki/certs/miccerlisca2011_2011-03-29.crt0 |
Source: perdoma.exe | String found in binary or memory: http://www.microsoft.com/pki/certs/miccertrulispca_2009-04-02.crt0 |
Source: perdoma.exe | String found in binary or memory: http://www.microsoft.com/pki/certs/microoceraut_2010-06-23.crt07 |
Source: perdoma.exe | String found in binary or memory: http://www.microsoft.com/pki/certs/microsoftrootcert.crt0 |
Source: perdoma.exe | String found in binary or memory: http://www.microsoft.com/pki/crl/products/miccertrulispca_2009-04-02.crl |
Source: WINWORD.EXE | String found in binary or memory: http://www.officenet.net/ |
Source: perdoma.exe | String found in binary or memory: http://www.public-trust.com/cgi-bin/crl/2018/cdp.crl0 |
Source: perdoma.exe | String found in binary or memory: http://www.public-trust.com/cps/omniroot.html0 |
Source: perdoma.exe | String found in binary or memory: http://www.usertrust.com1 |
Source: WINWORD.EXE | String found in binary or memory: http://www.w3.org/tr/wd-xsl |
Source: perdoma.exe | String found in binary or memory: https://185.24.92.236:1743/ |
Source: perdoma.exe | String found in binary or memory: https://185.24.92.236:1743/$ |
Source: perdoma.exe | String found in binary or memory: https://secure.comodo.com/cps0 |
Source: perdoma.exe | String found in binary or memory: https://www.verisign.com/cps04 |
Source: perdoma.exe | String found in binary or memory: https://www.verisign.com/repository/cps |
Source: perdoma.exe | String found in binary or memory: https://www.verisign.com/repository/verisignlogo.gif0d |
Source: perdoma.exe | String found in binary or memory: https://www.verisign.com/rpa0 |
Source: perdoma.exe | String found in binary or memory: https://www.verisign.com; |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |
Source: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE | Process information set: NOOPENFILEERRORBOX |