Extracted/injected images (may contain unpacked executables)
Download #1
Match: Client_SW_User_Data_Stealer
Match: infoStealer_ftpClients_Zero
Match: Network_TCP_Socket
Match: Str_Win32_Http_API
Match: Generic_PWS_Memory_Zero
Match: Network_HTTP
Match: Network_DNS
Match: Code_injection
Match: DebuggerCheck__GlobalFlags
Match: DebuggerCheck__QueryInfo
Match: DebuggerHiding__Thread
Match: DebuggerHiding__Active
Match: ThreadControl__Context
Match: SEH__vectored
Match: anti_dbg
Match: antisb_threatExpert
Match: disable_dep
Match: Str_Win32_Internet_API
Match: Win32_PWS_Loki_m_Zero
http://crl4.digicert.com/sha2-assured-cs-g1.crl0K http://www.microsoft.com/pki/certs/MicrosoftTimeStampPCA.crt0 http://ocsp.digicert.com0 http://cacerts.digicert.com/DigiCertTrustedG4RSA4096SHA256TimeStampingCA.crt0 http://www.digicert.com/CPS0 http://crl3.digicert.com/sha2-assured-cs-g1.crl05 http://cacerts.digicert.com/DigiCertTrustedRootG4.crt0C http://cacerts.digicert.com/DigiCertAssuredIDRootCA.crt0 http://www.microsoft.com/pki/certs/MicTimStaPCA_2010-07-01.crt0 http://www.microsoft.com/pki/certs/MicrosoftRootCert.crt0 https://t.me/pech0nk http://www.microsoft.com/pki/certs/MicRooCerAut2011_2011_03_22.crt0 http://crl3.digicert.com/DigiCertTrustedRootG4.crl0 http://www.microsoft.com/pkiops/docs/primarycps.htm0 http://crl3.digicert.com/DigiCertTrustedG4RSA4096SHA256TimeStampingCA.crl0 http://www.microsoft.com0 http://www.microsoft.com/pki/certs/MicRooCerAut_2010-06-23.crt0 http://ocsp.digicert.com0C http://ocsp.digicert.com0A http://crl3.digicert.com/DigiCertGlobalRootCA.crl0= http://ocsp.digicert.com0N http://www.microsoft.com/pkiops/certs/MicCodSigPCA2011_2011-07-08.crt0 https://mozilla.org0/ http://www.mozilla.com/en-US/blocklist/ http://crl3.digicert.com/DigiCertAssuredIDRootCA.crl0O http://cacerts.digicert.com/DigiCertSHA2AssuredIDCodeSigningCA.crt0 http://ocsp.digicert.com0X https://steamcommunity.com/profiles/76561199751190313 http://crl4.digicert.com/DigiCertGlobalRootCA.crl07 http://crl4.digicert.com/DigiCertAssuredIDRootCA.crl0: http://cacerts.digicert.com/DigiCertAssuredIDRootCA.crt0E http://crl3.digicert.com/DigiCertAssuredIDRootCA.crl0 http://www.microsoft.com/PKI/docs/CPS/default.htm0 https://www.digicert.com/CPS0 http://www.microsoft.com/pkiops/crl/MicCodSigPCA2011_2011-07-08.crl0a