Yara Pattern Name | Description |
---|---|
IsPE32 | No Description Available |
HasOverlay | Overlay Check |
HasDigitalSignature | DigitalSignature Check |
HasDebugData | DebugData Check |
HasRichSignature | Rich Signature Check |
Str_Win32_Winsock2_Library | Match Winsock 2 API library declaration |
Str_Win32_Http_API | Match Windows Http API call |
CRC32b_poly_Constant | Look for CRC32b [poly] |
anti_dbg | Checks if being debugged |
escalate_priv | Escalade priviledges |
screenshot | Take screenshot |
keylogger | Run a keylogger |
win_mutex | Create or check mutex |
win_registry | Affect system registries |
win_token | Affect system token |
win_files_operation | Affect private profile |
win_hook | Affect hook table |
Name | Virtual Address | Virtual Size | Size of Raw Data | Entropy |
---|---|---|---|---|
.text | 0x00001000 | 0x0005e437 | 0x0005f000 | 6.62157147269 |
.rdata | 0x00060000 | 0x00019e2e | 0x0001a000 | 4.70897265037 |
.data | 0x0007a000 | 0x000083dc | 0x00005000 | 4.117598465 |
.rsrc | 0x00083000 | 0x0001c42e | 0x0001d000 | 5.63620348082 |
.reloc | 0x000a0000 | 0x0000d2a8 | 0x0000e000 | 4.14467707094 |
Name | Offset | Size | Language | Sub-language | File type |
---|---|---|---|---|---|
AFX_DIALOG_LAYOUT | 0x000843cc | 0x00000002 | LANG_NEUTRAL | SUBLANG_NEUTRAL | None |
RT_CURSOR | 0x00084504 | 0x000000b4 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_CURSOR | 0x00084504 | 0x000000b4 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_BITMAP | 0x00084670 | 0x00000144 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_BITMAP | 0x00084670 | 0x00000144 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_ICON | 0x0008546c | 0x00000568 | LANG_NEUTRAL | SUBLANG_NEUTRAL | None |
RT_ICON | 0x0008546c | 0x00000568 | LANG_NEUTRAL | SUBLANG_NEUTRAL | None |
RT_ICON | 0x0008546c | 0x00000568 | LANG_NEUTRAL | SUBLANG_NEUTRAL | None |
RT_ICON | 0x0008546c | 0x00000568 | LANG_NEUTRAL | SUBLANG_NEUTRAL | None |
RT_DIALOG | 0x00086840 | 0x00000034 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_DIALOG | 0x00086840 | 0x00000034 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_DIALOG | 0x00086840 | 0x00000034 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_DIALOG | 0x00086840 | 0x00000034 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_DIALOG | 0x00086840 | 0x00000034 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_DIALOG | 0x00086840 | 0x00000034 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_DIALOG | 0x00086840 | 0x00000034 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_DIALOG | 0x00086840 | 0x00000034 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_DIALOG | 0x00086840 | 0x00000034 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_DIALOG | 0x00086840 | 0x00000034 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_DIALOG | 0x00086840 | 0x00000034 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_STRING | 0x00093b6c | 0x00000042 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_MESSAGETABLE | 0x00093bb0 | 0x000006b8 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_GROUP_CURSOR | 0x00094268 | 0x00000022 | LANG_ENGLISH | SUBLANG_ENGLISH_US | None |
RT_GROUP_ICON | 0x0009428c | 0x0000003e | LANG_NEUTRAL | SUBLANG_NEUTRAL | None |
RT_VERSION | 0x000942cc | 0x00000384 | LANG_NEUTRAL | SUBLANG_NEUTRAL | None |
RT_MANIFEST | 0x00094650 | 0x000004bb | LANG_NEUTRAL | SUBLANG_NEUTRAL | None |
None | 0x00094c2c | 0x0000005d | LANG_NEUTRAL | SUBLANG_NEUTRAL | None |
None | 0x00094c2c | 0x0000005d | LANG_NEUTRAL | SUBLANG_NEUTRAL | None |
None | 0x00094c2c | 0x0000005d | LANG_NEUTRAL | SUBLANG_NEUTRAL | None |
None | 0x00094c2c | 0x0000005d | LANG_NEUTRAL | SUBLANG_NEUTRAL | None |
None | 0x00094ca4 | 0x00000004 | LANG_NEUTRAL | SUBLANG_NEUTRAL | None |
None | 0x00094ca4 | 0x00000004 | LANG_NEUTRAL | SUBLANG_NEUTRAL | None |
None | 0x00094ca4 | 0x00000004 | LANG_NEUTRAL | SUBLANG_NEUTRAL | None |
None | 0x00094ca4 | 0x00000004 | LANG_NEUTRAL | SUBLANG_NEUTRAL | None |
None | 0x00094ca4 | 0x00000004 | LANG_NEUTRAL | SUBLANG_NEUTRAL | None |
None | 0x00094ca4 | 0x00000004 | LANG_NEUTRAL | SUBLANG_NEUTRAL | None |
None | 0x00096584 | 0x00000c76 | LANG_JAPANESE | SUBLANG_DEFAULT | None |
None | 0x00096584 | 0x00000c76 | LANG_JAPANESE | SUBLANG_DEFAULT | None |
None | 0x00096584 | 0x00000c76 | LANG_JAPANESE | SUBLANG_DEFAULT | None |
None | 0x00096584 | 0x00000c76 | LANG_JAPANESE | SUBLANG_DEFAULT | None |
None | 0x00096584 | 0x00000c76 | LANG_JAPANESE | SUBLANG_DEFAULT | None |
None | 0x000971fc | 0x000006b5 | LANG_NEUTRAL | SUBLANG_DEFAULT | None |
None | 0x0009c3e4 | 0x00002df4 | LANG_NEUTRAL | SUBLANG_NEUTRAL | None |
None | 0x0009c3e4 | 0x00002df4 | LANG_NEUTRAL | SUBLANG_NEUTRAL | None |
None | 0x0009c3e4 | 0x00002df4 | LANG_NEUTRAL | SUBLANG_NEUTRAL | None |
None | 0x0009c3e4 | 0x00002df4 | LANG_NEUTRAL | SUBLANG_NEUTRAL | None |
None | 0x0009f1d8 | 0x00000256 | LANG_NEUTRAL | SUBLANG_NEUTRAL | None |
Domain | IP Address | Destination Location |
---|---|---|
slimware.com | 3.209.42.54 | US |
status.geotrust.com | 72.21.91.29 | US |
trk.slimwareutilities.com | 52.7.3.6 | US |
ocsp.digicert.com | 72.21.91.29 | US |
www.bing.com | 13.107.21.200 | US |
stc.slimwareutilities.com | 52.4.3.53 | US |
cdn.slimcleaner.com | 52.85.107.47 | US |
apps-api.slimwareutilities.com | 3.224.86.192 | US |
ocsp.verisign.com | 23.34.203.27 | US |
crl.microsoft.com | 67.69.197.141 | CA |
www.download.windowsupdate.com | 23.15.4.16 | US |
download.driverupdate.net | 13.225.189.98 | US |
sf.symcd.com | 23.34.203.27 | US |
www.slimcleaner.com | 52.71.76.87 | US |
sf.symcb.com | 72.21.91.29 | US |
fonts.googleapis.com | 172.217.12.234 | US |
trk.slimwareutilities.com | 34.236.116.104 | US |
crl.verisign.com | 72.21.91.29 | US |
crl.microsoft.com | 67.69.197.125 | CA |
download.driverupdate.net | 13.225.189.143 | US |
www.slimcleaner.com | 34.205.102.72 | US |
apps-api.slimwareutilities.com | 52.200.110.50 | US |
stc.slimwareutilities.com | 52.22.163.96 | US |
bam.nr-data.net | 162.247.242.18 | US |
ocsp.pki.goog | 172.217.9.195 | US |
download.driverupdate.net | 13.225.189.180 | US |
js-agent.newrelic.com | 151.101.210.110 | US |
ocsp.globalsign.com | 151.101.138.133 | CA |
www.bing.com | 204.79.197.200 | US |
www.microsoft.com | 23.74.10.28 | US |
fonts.gstatic.com | 172.217.164.163 | US |
cdn.slimcleaner.com | 52.85.107.144 | US |
www.download.windowsupdate.com | 23.15.4.24 | US |
crl.microsoft.com | 184.150.154.24 | CA |
apps-api.slimwareutilities.com | 52.7.34.103 | US |
cdn.slimcleaner.com | 13.225.189.93 | US |
GET /install/scp/6.1/x64/SlimCleanerPlus-setup.msi.bz2?machineId=C161D446-5BF1-488F-BA27-D60E81A59A79 HTTP/1.1 Connection: Keep-Alive User-Agent: SlimCleaner Plus Installer/2.24.4.31 (os:windows; ver:6.1; arc:AMD64) Host: apps-api.slimwareutilities.com
GET /msdownload/update/v3/static/trustedr/en/authrootstl.cab HTTP/1.1 Cache-Control: max-age = 86400 Connection: Keep-Alive Accept: */* If-Modified-Since: Tue, 28 Feb 2017 17:51:01 GMT If-None-Match: "80b03039eb91d21:0" User-Agent: Microsoft-CryptoAPI/6.1 Host: www.download.windowsupdate.com
GET /gettrack?product=SW2&p2=%5ESW1%5E%5E%5E&secondOfferOrigin=%5ESW2%5Exdm111&ul_stubid=5bee4484-3442-4732-b293-baa70ed74396 HTTP/1.1 Connection: Keep-Alive User-Agent: SilentDownloader/2.4.1 Host: stc.slimwareutilities.com
GET /ulc.php?ev=InstallerAccepted&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiNWJlZTQ0ODQtMzQ0Mi00NzMyLWIyOTMtYmFhNzBlZDc0Mzk2IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMSI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMSI7czoxMToiYnJvd3NlclR5cGUiO3M6MjoiSUUiO3M6MTQ6ImJyb3dzZXJWZXJzaW9uIjtzOjM6IjguMCI7czoxNToiYnJvd3Nlckxhbmd1YWdlIjtzOjA6IiI7czoxMDoicGxhdGZvcm1PUyI7czo3OiJXaW5kb3dzIjtzOjE3OiJwbGF0Zm9ybU9TVmVyc2lvbiI7czozOiI1LjEiO30%3D&machineId=C161D446-5BF1-488F-BA27-D60E81A59A79&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.4.31&product=SW1&installId=D9BBEA3C-8679-467C-8BFC-42FF7C7749EC HTTP/1.1 Connection: Keep-Alive User-Agent: SlimCleaner Plus Installer/2.24.4.31 (os:windows; ver:6.1; arc:AMD64) Host: trk.slimwareutilities.com
GET /ulc.php?ev=InstallerInvoked&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiNWJlZTQ0ODQtMzQ0Mi00NzMyLWIyOTMtYmFhNzBlZDc0Mzk2IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMSI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMSI7czoxMToiYnJvd3NlclR5cGUiO3M6MjoiSUUiO3M6MTQ6ImJyb3dzZXJWZXJzaW9uIjtzOjM6IjguMCI7czoxNToiYnJvd3Nlckxhbmd1YWdlIjtzOjA6IiI7czoxMDoicGxhdGZvcm1PUyI7czo3OiJXaW5kb3dzIjtzOjE3OiJwbGF0Zm9ybU9TVmVyc2lvbiI7czozOiI1LjEiO30%3D&machineId=C161D446-5BF1-488F-BA27-D60E81A59A79&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.4.31&product=SW1&installId=D9BBEA3C-8679-467C-8BFC-42FF7C7749EC&msBclVersion=4.6.1 HTTP/1.1 Connection: Keep-Alive User-Agent: SlimCleaner Plus Installer/2.24.4.31 (os:windows; ver:6.1; arc:AMD64) Host: trk.slimwareutilities.com
GET /pki/crl/products/CodeSignPCA2.crl HTTP/1.1 Cache-Control: max-age = 900 Connection: Keep-Alive Accept: */* If-Modified-Since: Mon, 16 Apr 2012 23:49:48 GMT If-None-Match: "0f6669b2b1ccd1:0" User-Agent: Microsoft-CryptoAPI/6.1 Host: crl.microsoft.com
GET /favicon.ico HTTP/1.1 Accept: */* Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Host: www.bing.com Connection: Keep-Alive
GET /install/du/6.1/x64/DriverUpdate-setup.exe?machineId=C161D446-5BF1-488F-BA27-D60E81A59A79 HTTP/1.1 Connection: Keep-Alive User-Agent: SilentDownloader/2.4.1 Host: apps-api.slimwareutilities.com
GET /en/DriverUpdate.Downloader.exe.bz2 HTTP/1.1 Connection: Keep-Alive User-Agent: SlimCleaner Plus Installer/2.24.4.31 (os:windows; ver:6.1; arc:AMD64) Host: download.driverupdate.net
GET /ulc.php?ev=InstallerInvoked&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiNWJlZTQ0ODQtMzQ0Mi00NzMyLWIyOTMtYmFhNzBlZDc0Mzk2IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMSI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMSI7czoxMToiYnJvd3NlclR5cGUiO3M6MjoiSUUiO3M6MTQ6ImJyb3dzZXJWZXJzaW9uIjtzOjM6IjguMCI7czoxNToiYnJvd3Nlckxhbmd1YWdlIjtzOjA6IiI7czoxMDoicGxhdGZvcm1PUyI7czo3OiJXaW5kb3dzIjtzOjE3OiJwbGF0Zm9ybU9TVmVyc2lvbiI7czozOiI1LjEiO30%3D&machineId=C161D446-5BF1-488F-BA27-D60E81A59A79&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.4.31&product=SW1&msBclVersion=4.6.1 HTTP/1.1 Connection: Keep-Alive User-Agent: SlimCleaner Plus Installer/2.24.4.31 (os:windows; ver:6.1; arc:AMD64) Host: trk.slimwareutilities.com
GET /sf.crl HTTP/1.1 Connection: Keep-Alive Accept: */* User-Agent: Microsoft-CryptoAPI/6.1 Host: sf.symcb.com
GET /MFEwTzBNMEswSTAJBgUrDgMCGgUABBSAUQYBMq2awn1Rh6Doh%2FsBYgFV7gQUA95QNVbRTLtm8KPiGxvDl7I90VUCEAVG%2Fhgj9%2BGUHaOfzhTEYXM%3D HTTP/1.1 Connection: Keep-Alive Accept: */* User-Agent: Microsoft-CryptoAPI/6.1 Host: ocsp.digicert.com
GET /MFEwTzBNMEswSTAJBgUrDgMCGgUABBR3enuod9bxDxzpICGW%2B2sabjf17QQUkFj%2FsJx1qFFUd7Ht8qNDFjiebMUCEAP%2BiRWpymoICvC7z9HBF%2FU%3D HTTP/1.1 Connection: Keep-Alive Accept: */* User-Agent: Microsoft-CryptoAPI/6.1 Host: status.geotrust.com
GET /downloads/4.2.2.66/x64/SlimCleanerPlus-setup.msi.bz2 HTTP/1.1 Connection: Keep-Alive User-Agent: SlimCleaner Plus Installer/2.24.4.31 (os:windows; ver:6.1; arc:AMD64) Host: cdn.slimcleaner.com
GET /ulc.php?ev=InstallerFinished&platformOSVersion=6.1&secondOfferOrigin=%5ESW2%5Exdm111&installId=24467B68-87EF-4978-8794-8D58B2B7BA66&ul_stubid=5bee4484-3442-4732-b293-baa70ed74396&p2=%5ESW1%5E%5E%5E&installer=SD0&product=SW2&installerVersion=2.4.1&machineId=C161D446-5BF1-488F-BA27-D60E81A59A79&platformOS=Windows&ul_track=DU0203 HTTP/1.1 Connection: Keep-Alive User-Agent: SilentDownloader/2.4.1 Host: trk.slimwareutilities.com
GET /MFEwTzBNMEswSTAJBgUrDgMCGgUABBTSqZMG5M8TA9rdzkbCnNwuMAd5VgQUz5mp6nsm9EvJjo%2FX8AUm7%2BPSp50CEDl34dtR3ME0FBeZUlhRFXY%3D HTTP/1.1 Connection: Keep-Alive Accept: */* User-Agent: Microsoft-CryptoAPI/6.1 Host: sf.symcd.com
GET /MFEwTzBNMEswSTAJBgUrDgMCGgUABBS56bKHAoUD%2BOyl%2B0LhPg9JxyQm4gQUf9Nlp8Ld7LvwMAnzQzn6Aq8zMTMCEFIA5aolVvwahu2WydRLM8c%3D HTTP/1.1 Cache-Control: max-age = 459713 Connection: Keep-Alive Accept: */* If-Modified-Since: Mon, 10 Apr 2017 04:11:22 GMT User-Agent: Microsoft-CryptoAPI/6.1 Host: ocsp.verisign.com
GET /ulc.php?ev=InstallerInvoked&platformOSVersion=6.1&secondOfferOrigin=%5ESW2%5Exdm111&ul_stubid=5bee4484-3442-4732-b293-baa70ed74396&p2=%5ESW1%5E%5E%5E&installer=SD0&product=SW2&installerVersion=2.4.1&machineId=C161D446-5BF1-488F-BA27-D60E81A59A79&platformOS=Windows&ul_track=DU0203 HTTP/1.1 Connection: Keep-Alive User-Agent: SilentDownloader/2.4.1 Host: trk.slimwareutilities.com
GET /ulc.php?ev=InstallerAccepted&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiNWJlZTQ0ODQtMzQ0Mi00NzMyLWIyOTMtYmFhNzBlZDc0Mzk2IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMSI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMSI7czoxMToiYnJvd3NlclR5cGUiO3M6MjoiSUUiO3M6MTQ6ImJyb3dzZXJWZXJzaW9uIjtzOjM6IjguMCI7czoxNToiYnJvd3Nlckxhbmd1YWdlIjtzOjA6IiI7czoxMDoicGxhdGZvcm1PUyI7czo3OiJXaW5kb3dzIjtzOjE3OiJwbGF0Zm9ybU9TVmVyc2lvbiI7czozOiI1LjEiO30%3D&machineId=C161D446-5BF1-488F-BA27-D60E81A59A79&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.4.31&product=SW1 HTTP/1.1 Connection: Keep-Alive User-Agent: SlimCleaner Plus Installer/2.24.4.31 (os:windows; ver:6.1; arc:AMD64) Host: trk.slimwareutilities.com
GET /5.8.10/x64/DriverUpdate-setup.exe HTTP/1.1 Connection: Keep-Alive User-Agent: SilentDownloader/2.4.1 Host: download.driverupdate.net
GET /ulc.php?ev=InstallerFinished&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiNWJlZTQ0ODQtMzQ0Mi00NzMyLWIyOTMtYmFhNzBlZDc0Mzk2IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMSI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMSI7czoxMToiYnJvd3NlclR5cGUiO3M6MjoiSUUiO3M6MTQ6ImJyb3dzZXJWZXJzaW9uIjtzOjM6IjguMCI7czoxNToiYnJvd3Nlckxhbmd1YWdlIjtzOjA6IiI7czoxMDoicGxhdGZvcm1PUyI7czo3OiJXaW5kb3dzIjtzOjE3OiJwbGF0Zm9ybU9TVmVyc2lvbiI7czozOiI1LjEiO30%3D&machineId=C161D446-5BF1-488F-BA27-D60E81A59A79&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.4.31&product=SW1&installId=D9BBEA3C-8679-467C-8BFC-42FF7C7749EC&productVersion=4.2.2.66 HTTP/1.1 Connection: Keep-Alive User-Agent: SlimCleaner Plus Installer/2.24.4.31 (os:windows; ver:6.1; arc:AMD64) Host: trk.slimwareutilities.com
GET /register.php?upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiNWJlZTQ0ODQtMzQ0Mi00NzMyLWIyOTMtYmFhNzBlZDc0Mzk2IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMSI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMSI7czoxMToiYnJvd3NlclR5cGUiO3M6MjoiSUUiO3M6MTQ6ImJyb3dzZXJWZXJzaW9uIjtzOjM6IjguMCI7czoxNToiYnJvd3Nlckxhbmd1YWdlIjtzOjA6IiI7czoxMDoicGxhdGZvcm1PUyI7czo3OiJXaW5kb3dzIjtzOjE3OiJwbGF0Zm9ybU9TVmVyc2lvbiI7czozOiI1LjEiO30%3D&machineId=C161D446-5BF1-488F-BA27-D60E81A59A79&installId=D9BBEA3C-8679-467C-8BFC-42FF7C7749EC HTTP/1.1 Accept: */* Accept-Language: en-us User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: www.slimcleaner.com Connection: Keep-Alive
GET /pca3-g5.crl HTTP/1.1 Connection: Keep-Alive Accept: */* User-Agent: Microsoft-CryptoAPI/6.1 Host: crl.verisign.com
GET /ulc.php?ev=InstallerAccepted&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiNWJlZTQ0ODQtMzQ0Mi00NzMyLWIyOTMtYmFhNzBlZDc0Mzk2IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMSI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMSI7czoxMToiYnJvd3NlclR5cGUiO3M6MjoiSUUiO3M6MTQ6ImJyb3dzZXJWZXJzaW9uIjtzOjM6IjguMCI7czoxNToiYnJvd3Nlckxhbmd1YWdlIjtzOjA6IiI7czoxMDoicGxhdGZvcm1PUyI7czo3OiJXaW5kb3dzIjtzOjE3OiJwbGF0Zm9ybU9TVmVyc2lvbiI7czozOiI1LjEiO30%3D&machineId=02BB9227-7C96-4E48-8F0B-D48BEB48AEE2&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.4.31&product=SW1&installId=1D6DDA00-3112-4D71-862A-B16FF38E8CD8 HTTP/1.1 Connection: Keep-Alive User-Agent: SlimCleaner Plus Installer/2.24.4.31 (os:windows; ver:6.1; arc:AMD64) Host: trk.slimwareutilities.com
GET /ulc.php?ev=InstallerAccepted&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiNWJlZTQ0ODQtMzQ0Mi00NzMyLWIyOTMtYmFhNzBlZDc0Mzk2IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMSI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMSI7czoxMToiYnJvd3NlclR5cGUiO3M6MjoiSUUiO3M6MTQ6ImJyb3dzZXJWZXJzaW9uIjtzOjM6IjguMCI7czoxNToiYnJvd3Nlckxhbmd1YWdlIjtzOjA6IiI7czoxMDoicGxhdGZvcm1PUyI7czo3OiJXaW5kb3dzIjtzOjE3OiJwbGF0Zm9ybU9TVmVyc2lvbiI7czozOiI1LjEiO30%3D&machineId=02BB9227-7C96-4E48-8F0B-D48BEB48AEE2&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.4.31&product=SW1 HTTP/1.1 Connection: Keep-Alive User-Agent: SlimCleaner Plus Installer/2.24.4.31 (os:windows; ver:6.1; arc:AMD64) Host: trk.slimwareutilities.com
GET /install/scp/6.1/x64/SlimCleanerPlus-setup.msi.bz2?machineId=02BB9227-7C96-4E48-8F0B-D48BEB48AEE2 HTTP/1.1 Connection: Keep-Alive User-Agent: SlimCleaner Plus Installer/2.24.4.31 (os:windows; ver:6.1; arc:AMD64) Host: apps-api.slimwareutilities.com
GET /ulc.php?ev=InstallerInvoked&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiNWJlZTQ0ODQtMzQ0Mi00NzMyLWIyOTMtYmFhNzBlZDc0Mzk2IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMSI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMSI7czoxMToiYnJvd3NlclR5cGUiO3M6MjoiSUUiO3M6MTQ6ImJyb3dzZXJWZXJzaW9uIjtzOjM6IjguMCI7czoxNToiYnJvd3Nlckxhbmd1YWdlIjtzOjA6IiI7czoxMDoicGxhdGZvcm1PUyI7czo3OiJXaW5kb3dzIjtzOjE3OiJwbGF0Zm9ybU9TVmVyc2lvbiI7czozOiI1LjEiO30%3D&machineId=02BB9227-7C96-4E48-8F0B-D48BEB48AEE2&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.4.31&product=SW1&msBclVersion=4.6.1 HTTP/1.1 Connection: Keep-Alive User-Agent: SlimCleaner Plus Installer/2.24.4.31 (os:windows; ver:6.1; arc:AMD64) Host: trk.slimwareutilities.com
GET /en/DriverUpdate.Downloader.exe.bz2 HTTP/1.1 Connection: Keep-Alive User-Agent: SlimCleaner Plus Installer/2.24.4.31 (os:windows; ver:6.1; arc:AMD64) Host: download.driverupdate.net
GET /ulc.php?ev=InstallerFinished&platformOSVersion=6.1&secondOfferOrigin=%5ESW2%5Exdm111&installId=4B152AF8-F684-4FA2-83DB-9BBF8BA8E47D&ul_stubid=5bee4484-3442-4732-b293-baa70ed74396&p2=%5ESW1%5E%5E%5E&installer=SD0&product=SW2&installerVersion=2.4.1&machineId=02BB9227-7C96-4E48-8F0B-D48BEB48AEE2&platformOS=Windows HTTP/1.1 Connection: Keep-Alive User-Agent: SilentDownloader/2.4.1 Host: trk.slimwareutilities.com
GET /register.php?upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiNWJlZTQ0ODQtMzQ0Mi00NzMyLWIyOTMtYmFhNzBlZDc0Mzk2IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMSI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMSI7czoxMToiYnJvd3NlclR5cGUiO3M6MjoiSUUiO3M6MTQ6ImJyb3dzZXJWZXJzaW9uIjtzOjM6IjguMCI7czoxNToiYnJvd3Nlckxhbmd1YWdlIjtzOjA6IiI7czoxMDoicGxhdGZvcm1PUyI7czo3OiJXaW5kb3dzIjtzOjE3OiJwbGF0Zm9ybU9TVmVyc2lvbiI7czozOiI1LjEiO30%3D&machineId=02BB9227-7C96-4E48-8F0B-D48BEB48AEE2&installId=1D6DDA00-3112-4D71-862A-B16FF38E8CD8 HTTP/1.1 Accept: */* Accept-Language: en-us User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: www.slimcleaner.com Connection: Keep-Alive
GET /ulc.php?ev=InstallerInvoked&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiNWJlZTQ0ODQtMzQ0Mi00NzMyLWIyOTMtYmFhNzBlZDc0Mzk2IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMSI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMSI7czoxMToiYnJvd3NlclR5cGUiO3M6MjoiSUUiO3M6MTQ6ImJyb3dzZXJWZXJzaW9uIjtzOjM6IjguMCI7czoxNToiYnJvd3Nlckxhbmd1YWdlIjtzOjA6IiI7czoxMDoicGxhdGZvcm1PUyI7czo3OiJXaW5kb3dzIjtzOjE3OiJwbGF0Zm9ybU9TVmVyc2lvbiI7czozOiI1LjEiO30%3D&machineId=02BB9227-7C96-4E48-8F0B-D48BEB48AEE2&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.4.31&product=SW1&installId=1D6DDA00-3112-4D71-862A-B16FF38E8CD8&msBclVersion=4.6.1 HTTP/1.1 Connection: Keep-Alive User-Agent: SlimCleaner Plus Installer/2.24.4.31 (os:windows; ver:6.1; arc:AMD64) Host: trk.slimwareutilities.com
GET /ulc.php?ev=InstallerFinished&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiNWJlZTQ0ODQtMzQ0Mi00NzMyLWIyOTMtYmFhNzBlZDc0Mzk2IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMSI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMSI7czoxMToiYnJvd3NlclR5cGUiO3M6MjoiSUUiO3M6MTQ6ImJyb3dzZXJWZXJzaW9uIjtzOjM6IjguMCI7czoxNToiYnJvd3Nlckxhbmd1YWdlIjtzOjA6IiI7czoxMDoicGxhdGZvcm1PUyI7czo3OiJXaW5kb3dzIjtzOjE3OiJwbGF0Zm9ybU9TVmVyc2lvbiI7czozOiI1LjEiO30%3D&machineId=02BB9227-7C96-4E48-8F0B-D48BEB48AEE2&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.4.31&product=SW1&installId=1D6DDA00-3112-4D71-862A-B16FF38E8CD8&productVersion=4.2.2.66 HTTP/1.1 Connection: Keep-Alive User-Agent: SlimCleaner Plus Installer/2.24.4.31 (os:windows; ver:6.1; arc:AMD64) Host: trk.slimwareutilities.com
GET /MFEwTzBNMEswSTAJBgUrDgMCGgUABBTSqZMG5M8TA9rdzkbCnNwuMAd5VgQUz5mp6nsm9EvJjo%2FX8AUm7%2BPSp50CEDl34dtR3ME0FBeZUlhRFXY%3D HTTP/1.1 Connection: Keep-Alive Accept: */* User-Agent: Microsoft-CryptoAPI/6.1 Host: sf.symcd.com
GET /ulc.php?ev=InstallerInvoked&platformOSVersion=6.1&secondOfferOrigin=%5ESW2%5Exdm111&ul_stubid=5bee4484-3442-4732-b293-baa70ed74396&p2=%5ESW1%5E%5E%5E&installer=SD0&product=SW2&installerVersion=2.4.1&machineId=02BB9227-7C96-4E48-8F0B-D48BEB48AEE2&platformOS=Windows HTTP/1.1 Connection: Keep-Alive User-Agent: SilentDownloader/2.4.1 Host: trk.slimwareutilities.com
GET /install/du/6.1/x64/DriverUpdate-setup.exe?machineId=02BB9227-7C96-4E48-8F0B-D48BEB48AEE2 HTTP/1.1 Connection: Keep-Alive User-Agent: SilentDownloader/2.4.1 Host: apps-api.slimwareutilities.com
GET /gettrack?product=SW2&p2=%5ESW1%5E%5E%5E&secondOfferOrigin=%5ESW2%5Exdm111&ul_stubid=5bee4484-3442-4732-b293-baa70ed74396 HTTP/1.1 Connection: Keep-Alive User-Agent: SilentDownloader/2.4.1 Host: stc.slimwareutilities.com
GET /install/scp/6.1/x64/SlimCleanerPlus-setup.msi.bz2?machineId=4321BAEA-C337-4064-ADF3-3B5914C014A8 HTTP/1.1 Connection: Keep-Alive User-Agent: SlimCleaner Plus Installer/2.24.4.31 (os:windows; ver:6.1; arc:AMD64) Host: apps-api.slimwareutilities.com
GET /ulc.php?ev=InstallerInvoked&platformOSVersion=6.1&secondOfferOrigin=%5ESW2%5Exdm111&ul_stubid=5bee4484-3442-4732-b293-baa70ed74396&p2=%5ESW1%5E%5E%5E&installer=SD0&product=SW2&installerVersion=2.4.1&machineId=4321BAEA-C337-4064-ADF3-3B5914C014A8&platformOS=Windows HTTP/1.1 Connection: Keep-Alive User-Agent: SilentDownloader/2.4.1 Host: trk.slimwareutilities.com
GET /ulc.php?ev=InstallerInvoked&platformOSVersion=6.1&secondOfferOrigin=%5ESW2%5Exdm111&installId=7E222CEA-37CA-42E1-A6FA-AC9DF88223BC&ul_stubid=5bee4484-3442-4732-b293-baa70ed74396&p2=%5ESW1%5E%5E%5E&installer=SD0&product=SW2&installerVersion=2.4.1&machineId=4321BAEA-C337-4064-ADF3-3B5914C014A8&platformOS=Windows HTTP/1.1 Connection: Keep-Alive User-Agent: SilentDownloader/2.4.1 Host: trk.slimwareutilities.com
GET /ulc.php?ev=InstallerFinished&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiNWJlZTQ0ODQtMzQ0Mi00NzMyLWIyOTMtYmFhNzBlZDc0Mzk2IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMSI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMSI7czoxMToiYnJvd3NlclR5cGUiO3M6MjoiSUUiO3M6MTQ6ImJyb3dzZXJWZXJzaW9uIjtzOjM6IjguMCI7czoxNToiYnJvd3Nlckxhbmd1YWdlIjtzOjA6IiI7czoxMDoicGxhdGZvcm1PUyI7czo3OiJXaW5kb3dzIjtzOjE3OiJwbGF0Zm9ybU9TVmVyc2lvbiI7czozOiI1LjEiO30%3D&machineId=4321BAEA-C337-4064-ADF3-3B5914C014A8&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.4.31&product=SW1&installId=1C908F37-F8B9-460D-B808-5BDFA5E9E7E0&productVersion=4.2.2.66 HTTP/1.1 Connection: Keep-Alive User-Agent: SlimCleaner Plus Installer/2.24.4.31 (os:windows; ver:6.1; arc:AMD64) Host: trk.slimwareutilities.com
GET /gts1o1/MFIwUDBOMEwwSjAJBgUrDgMCGgUABBRCRjDCJxnb3nDwj%2Fxz5aZfZjgXvAQUmNH4bhDrz5vsYJ8YkBug630J%2FSsCEQDu3mVgzTXArwIAAAAAWXG3 HTTP/1.1 Connection: Keep-Alive Accept: */* User-Agent: Microsoft-CryptoAPI/6.1 Host: ocsp.pki.goog
GET /ulc.php?ev=InstallerFinished&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiNWJlZTQ0ODQtMzQ0Mi00NzMyLWIyOTMtYmFhNzBlZDc0Mzk2IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMSI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMSI7czoxMToiYnJvd3NlclR5cGUiO3M6MjoiSUUiO3M6MTQ6ImJyb3dzZXJWZXJzaW9uIjtzOjM6IjguMCI7czoxNToiYnJvd3Nlckxhbmd1YWdlIjtzOjA6IiI7czoxMDoicGxhdGZvcm1PUyI7czo3OiJXaW5kb3dzIjtzOjE3OiJwbGF0Zm9ybU9TVmVyc2lvbiI7czozOiI1LjEiO30%3D&machineId=4321BAEA-C337-4064-ADF3-3B5914C014A8&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.4.31&product=SW1&installId=E1DEA459-A9BC-4AE4-9816-0E23F717FD70&productVersion=4.2.2.66 HTTP/1.1 Connection: Keep-Alive User-Agent: SlimCleaner Plus Installer/2.24.4.31 (os:windows; ver:6.1; arc:AMD64) Host: trk.slimwareutilities.com
GET /ulc.php?ev=InstallerFinished&platformOSVersion=6.1&secondOfferOrigin=%5ESW2%5Exdm111&installId=7E222CEA-37CA-42E1-A6FA-AC9DF88223BC&ul_stubid=5bee4484-3442-4732-b293-baa70ed74396&p2=%5ESW1%5E%5E%5E&installer=SD0&product=SW2&installerVersion=2.4.1&machineId=4321BAEA-C337-4064-ADF3-3B5914C014A8&platformOS=Windows HTTP/1.1 Connection: Keep-Alive User-Agent: SilentDownloader/2.4.1 Host: trk.slimwareutilities.com
GET /msdownload/update/v3/static/trustedr/en/authrootstl.cab HTTP/1.1 Cache-Control: max-age = 3600 Connection: Keep-Alive Accept: */* If-Modified-Since: Wed, 26 Feb 2020 21:39:14 GMT If-None-Match: "06d5b30edecd51:0" User-Agent: Microsoft-CryptoAPI/6.1 Host: www.download.windowsupdate.com
GET /gsr2/ME4wTDBKMEgwRjAJBgUrDgMCGgUABBTgXIsxbvr2lBkPpoIEVRE6gHlCnAQUm%2BIHV2ccHsBqBt5ZtJot39wZhi4CDQHjtJqhjYqpgSVpULg%3D HTTP/1.1 Connection: Keep-Alive Accept: */* User-Agent: Microsoft-CryptoAPI/6.1 Host: ocsp.pki.goog
GET /ulc.php?ev=InstallerAccepted&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiNWJlZTQ0ODQtMzQ0Mi00NzMyLWIyOTMtYmFhNzBlZDc0Mzk2IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMSI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMSI7czoxMToiYnJvd3NlclR5cGUiO3M6MjoiSUUiO3M6MTQ6ImJyb3dzZXJWZXJzaW9uIjtzOjM6IjguMCI7czoxNToiYnJvd3Nlckxhbmd1YWdlIjtzOjA6IiI7czoxMDoicGxhdGZvcm1PUyI7czo3OiJXaW5kb3dzIjtzOjE3OiJwbGF0Zm9ybU9TVmVyc2lvbiI7czozOiI1LjEiO30%3D&machineId=4321BAEA-C337-4064-ADF3-3B5914C014A8&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.4.31&product=SW1 HTTP/1.1 Connection: Keep-Alive User-Agent: SlimCleaner Plus Installer/2.24.4.31 (os:windows; ver:6.1; arc:AMD64) Host: trk.slimwareutilities.com
GET /pki/certs/MicRooCerAut_2010-06-23.crt HTTP/1.1 Connection: Keep-Alive Accept: */* User-Agent: Microsoft-CryptoAPI/6.1 Host: www.microsoft.com
GET /rootr1/ME8wTTBLMEkwRzAJBgUrDgMCGgUABBS3V7W2nAf4FiMTjpDJKg6%2BMgGqMQQUYHtmGkUNl8qJUC99BM00qP%2F8%2FUsCDkbwjNvPLFRm7zMB3V80 HTTP/1.1 Connection: Keep-Alive Accept: */* User-Agent: Microsoft-CryptoAPI/6.1 Host: ocsp.globalsign.com
GET /ulc.php?ev=InstallerInvoked&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiNWJlZTQ0ODQtMzQ0Mi00NzMyLWIyOTMtYmFhNzBlZDc0Mzk2IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMSI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMSI7czoxMToiYnJvd3NlclR5cGUiO3M6MjoiSUUiO3M6MTQ6ImJyb3dzZXJWZXJzaW9uIjtzOjM6IjguMCI7czoxNToiYnJvd3Nlckxhbmd1YWdlIjtzOjA6IiI7czoxMDoicGxhdGZvcm1PUyI7czo3OiJXaW5kb3dzIjtzOjE3OiJwbGF0Zm9ybU9TVmVyc2lvbiI7czozOiI1LjEiO30%3D&machineId=4321BAEA-C337-4064-ADF3-3B5914C014A8&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.4.31&product=SW1&installId=E1DEA459-A9BC-4AE4-9816-0E23F717FD70&msBclVersion=4.6.1 HTTP/1.1 Connection: Keep-Alive User-Agent: SlimCleaner Plus Installer/2.24.4.31 (os:windows; ver:6.1; arc:AMD64) Host: trk.slimwareutilities.com
GET /ulc.php?ev=InstallerAccepted&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiNWJlZTQ0ODQtMzQ0Mi00NzMyLWIyOTMtYmFhNzBlZDc0Mzk2IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMSI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMSI7czoxMToiYnJvd3NlclR5cGUiO3M6MjoiSUUiO3M6MTQ6ImJyb3dzZXJWZXJzaW9uIjtzOjM6IjguMCI7czoxNToiYnJvd3Nlckxhbmd1YWdlIjtzOjA6IiI7czoxMDoicGxhdGZvcm1PUyI7czo3OiJXaW5kb3dzIjtzOjE3OiJwbGF0Zm9ybU9TVmVyc2lvbiI7czozOiI1LjEiO30%3D&machineId=4321BAEA-C337-4064-ADF3-3B5914C014A8&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.4.31&product=SW1&installId=E1DEA459-A9BC-4AE4-9816-0E23F717FD70 HTTP/1.1 Connection: Keep-Alive User-Agent: SlimCleaner Plus Installer/2.24.4.31 (os:windows; ver:6.1; arc:AMD64) Host: trk.slimwareutilities.com
GET /install/du/6.1/x64/DriverUpdate-setup.exe?machineId=4321BAEA-C337-4064-ADF3-3B5914C014A8 HTTP/1.1 Connection: Keep-Alive User-Agent: SilentDownloader/2.4.1 Host: apps-api.slimwareutilities.com
GET /register.php?upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiNWJlZTQ0ODQtMzQ0Mi00NzMyLWIyOTMtYmFhNzBlZDc0Mzk2IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMSI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMSI7czoxMToiYnJvd3NlclR5cGUiO3M6MjoiSUUiO3M6MTQ6ImJyb3dzZXJWZXJzaW9uIjtzOjM6IjguMCI7czoxNToiYnJvd3Nlckxhbmd1YWdlIjtzOjA6IiI7czoxMDoicGxhdGZvcm1PUyI7czo3OiJXaW5kb3dzIjtzOjE3OiJwbGF0Zm9ybU9TVmVyc2lvbiI7czozOiI1LjEiO30%3D&machineId=4321BAEA-C337-4064-ADF3-3B5914C014A8&installId=E1DEA459-A9BC-4AE4-9816-0E23F717FD70 HTTP/1.1 Accept: */* Accept-Language: en-us User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E) Accept-Encoding: gzip, deflate Host: www.slimcleaner.com Connection: Keep-Alive
GET /ulc.php?ev=InstallerInvoked&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiNWJlZTQ0ODQtMzQ0Mi00NzMyLWIyOTMtYmFhNzBlZDc0Mzk2IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMSI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMSI7czoxMToiYnJvd3NlclR5cGUiO3M6MjoiSUUiO3M6MTQ6ImJyb3dzZXJWZXJzaW9uIjtzOjM6IjguMCI7czoxNToiYnJvd3Nlckxhbmd1YWdlIjtzOjA6IiI7czoxMDoicGxhdGZvcm1PUyI7czo3OiJXaW5kb3dzIjtzOjE3OiJwbGF0Zm9ybU9TVmVyc2lvbiI7czozOiI1LjEiO30%3D&machineId=4321BAEA-C337-4064-ADF3-3B5914C014A8&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.4.31&product=SW1&msBclVersion=4.6.1 HTTP/1.1 Connection: Keep-Alive User-Agent: SlimCleaner Plus Installer/2.24.4.31 (os:windows; ver:6.1; arc:AMD64) Host: trk.slimwareutilities.com
GET /gts1o1/MFIwUDBOMEwwSjAJBgUrDgMCGgUABBRCRjDCJxnb3nDwj%2Fxz5aZfZjgXvAQUmNH4bhDrz5vsYJ8YkBug630J%2FSsCEQCSaJP2bCz9oAgAAAAALnFI HTTP/1.1 Connection: Keep-Alive Accept: */* User-Agent: Microsoft-CryptoAPI/6.1 Host: ocsp.pki.goog
GET /install/du/6.1/x64/DriverUpdate-setup.exe?machineId=1D8DC913-D982-4CC3-B05C-034E9C64790E HTTP/1.1 Connection: Keep-Alive User-Agent: SilentDownloader/2.4.1 Host: apps-api.slimwareutilities.com
GET /ulc.php?ev=InstallerFinished&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiNWJlZTQ0ODQtMzQ0Mi00NzMyLWIyOTMtYmFhNzBlZDc0Mzk2IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMSI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMSI7czoxMToiYnJvd3NlclR5cGUiO3M6MjoiSUUiO3M6MTQ6ImJyb3dzZXJWZXJzaW9uIjtzOjM6IjguMCI7czoxNToiYnJvd3Nlckxhbmd1YWdlIjtzOjA6IiI7czoxMDoicGxhdGZvcm1PUyI7czo3OiJXaW5kb3dzIjtzOjE3OiJwbGF0Zm9ybU9TVmVyc2lvbiI7czozOiI1LjEiO30%3D&machineId=1D8DC913-D982-4CC3-B05C-034E9C64790E&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.4.31&product=SW1&installId=0D3241A1-D112-411F-8698-67FD881FF637&productVersion=4.2.2.66 HTTP/1.1 Connection: Keep-Alive User-Agent: SlimCleaner Plus Installer/2.24.4.31 (os:windows; ver:6.1; arc:AMD64) Host: trk.slimwareutilities.com
GET /install/scp/6.1/x64/SlimCleanerPlus-setup.msi.bz2?machineId=1D8DC913-D982-4CC3-B05C-034E9C64790E HTTP/1.1 Connection: Keep-Alive User-Agent: SlimCleaner Plus Installer/2.24.4.31 (os:windows; ver:6.1; arc:AMD64) Host: apps-api.slimwareutilities.com
GET /ulc.php?ev=InstallerInvoked&platformOSVersion=6.1&secondOfferOrigin=%5ESW2%5Exdm111&ul_stubid=5bee4484-3442-4732-b293-baa70ed74396&p2=%5ESW1%5E%5E%5E&installer=SD0&product=SW2&installerVersion=2.4.1&machineId=1D8DC913-D982-4CC3-B05C-034E9C64790E&platformOS=Windows HTTP/1.1 Connection: Keep-Alive User-Agent: SilentDownloader/2.4.1 Host: trk.slimwareutilities.com
GET /ulc.php?ev=InstallerAccepted&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiNWJlZTQ0ODQtMzQ0Mi00NzMyLWIyOTMtYmFhNzBlZDc0Mzk2IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMSI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMSI7czoxMToiYnJvd3NlclR5cGUiO3M6MjoiSUUiO3M6MTQ6ImJyb3dzZXJWZXJzaW9uIjtzOjM6IjguMCI7czoxNToiYnJvd3Nlckxhbmd1YWdlIjtzOjA6IiI7czoxMDoicGxhdGZvcm1PUyI7czo3OiJXaW5kb3dzIjtzOjE3OiJwbGF0Zm9ybU9TVmVyc2lvbiI7czozOiI1LjEiO30%3D&machineId=1D8DC913-D982-4CC3-B05C-034E9C64790E&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.4.31&product=SW1 HTTP/1.1 Connection: Keep-Alive User-Agent: SlimCleaner Plus Installer/2.24.4.31 (os:windows; ver:6.1; arc:AMD64) Host: trk.slimwareutilities.com
GET /ulc.php?ev=InstallerInvoked&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiNWJlZTQ0ODQtMzQ0Mi00NzMyLWIyOTMtYmFhNzBlZDc0Mzk2IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMSI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMSI7czoxMToiYnJvd3NlclR5cGUiO3M6MjoiSUUiO3M6MTQ6ImJyb3dzZXJWZXJzaW9uIjtzOjM6IjguMCI7czoxNToiYnJvd3Nlckxhbmd1YWdlIjtzOjA6IiI7czoxMDoicGxhdGZvcm1PUyI7czo3OiJXaW5kb3dzIjtzOjE3OiJwbGF0Zm9ybU9TVmVyc2lvbiI7czozOiI1LjEiO30%3D&machineId=1D8DC913-D982-4CC3-B05C-034E9C64790E&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.4.31&product=SW1&msBclVersion=4.6.1 HTTP/1.1 Connection: Keep-Alive User-Agent: SlimCleaner Plus Installer/2.24.4.31 (os:windows; ver:6.1; arc:AMD64) Host: trk.slimwareutilities.com
GET /downloads/4.2.2.66/x64/SlimCleanerPlus-setup.msi.bz2 HTTP/1.1 Connection: Keep-Alive User-Agent: SlimCleaner Plus Installer/2.24.4.31 (os:windows; ver:6.1; arc:AMD64) Host: cdn.slimcleaner.com
GET /ulc.php?ev=InstallerFinished&platformOSVersion=6.1&secondOfferOrigin=%5ESW2%5Exdm111&installId=42C17801-4565-453D-808C-15715A044B6D&ul_stubid=5bee4484-3442-4732-b293-baa70ed74396&p2=%5ESW1%5E%5E%5E&installer=SD0&product=SW2&installerVersion=2.4.1&machineId=1D8DC913-D982-4CC3-B05C-034E9C64790E&platformOS=Windows HTTP/1.1 Connection: Keep-Alive User-Agent: SilentDownloader/2.4.1 Host: trk.slimwareutilities.com
IP Address | Country of Origin |
---|---|
52.22.163.96 | US |
93.184.220.29 | GB |
13.224.8.81 | US |
13.224.8.194 | US |
72.21.91.29 | US |
172.217.16.138 | US |
204.79.197.200 | US |
3.209.42.54 | US |
52.5.68.22 | US |
52.71.76.87 | US |
2.20.188.10 | Unknown |
23.59.190.48 | US |
52.7.34.103 | US |
23.61.187.27 | US |
34.205.102.72 | US |
52.4.3.53 | US |
23.37.43.27 | US |
2.22.48.33 | Unknown |
23.50.155.27 | US |
52.5.251.55 | US |
13.35.254.209 | US |
143.204.208.230 | US |
34.236.116.104 | US |
23.62.99.34 | US |
151.101.130.110 | US |
13.32.240.130 | US |
172.217.19.227 | US |
13.107.21.200 | US |
104.80.22.51 | US |
216.58.213.138 | US |
162.247.242.18 | US |
151.101.66.133 | US |
3.224.86.192 | US |
92.123.226.42 | Unknown |
34.228.128.45 | US |
216.58.204.131 | US |
13.227.209.184 | US |
13.225.189.13 | US |
23.34.203.27 | US |
13.225.189.98 | US |
67.69.197.141 | CA |
52.7.3.6 | US |
Process Name | PID | Parent PID |