Source: global traffic | HTTP traffic detected: GET /nav?emid=0F8BFBFF000806F86000c292b65879ff477a6af604113f58ECF4BB57DC9&appId=1612878710864450&string_interpolation=GET_PRONTO_APP_NAME HTTP/1.1Host: start.searcharchiver.comConnection: Keep-Alive |
Source: global traffic | HTTP traffic detected: GET /nav?emid=0F8BFBFF000806F86000c292b65879ff477a6af604113f58ECF4BB57DC9&appId=1612878710864450&string_interpolation=GET_BRAND_NAME HTTP/1.1Host: start.searcharchiver.com |
Source: global traffic | HTTP traffic detected: GET /nav?emid=0F8BFBFF000806F86000c292b65879ff477a6af604113f58ECF4BB57DC9&appId=1612878710864450&string_interpolation=GET_SIGNATURE HTTP/1.1Host: start.searcharchiver.com |
Source: global traffic | HTTP traffic detected: GET /nav?emid=0F8BFBFF000806F86000c292b65879ff477a6af604113f58ECF4BB57DC9&appId=1612878710864450&string_interpolation=GET_OSOU HTTP/1.1Host: start.searcharchiver.com |
Source: global traffic | HTTP traffic detected: GET /time?session_id=1640c995-2049-4d62-a150-e0b741766344&app_id=1612878710864450&emid=0F8BFBFF000806F86000c292b65879ff477a6af604113f58ECF4BB57DC9&install_version=1111&identity=searcharchiver&sig=GS_MEDIAARENA_ZIPRAR_SIGNATURE&download_browser=edge_chrome&os_version=10.0.19041&r=2049793366 HTTP/1.1Host: start.searcharchiver.com |
Source: global traffic | HTTP traffic detected: GET /time?session_id=1640c995-2049-4d62-a150-e0b741766344&app_id=1612878710864450&emid=0F8BFBFF000806F86000c292b65879ff477a6af604113f58ECF4BB57DC9&install_version=1111&identity=searcharchiver&sig=GS_MEDIAARENA_ZIPRAR_SIGNATURE&download_browser=edge_chrome&os_version=10.0.19041&r=2049793366 HTTP/1.1Host: start.searcharchiver.comConnection: Keep-Alive |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49720 |
Source: unknown | Network traffic detected: HTTP traffic on port 49719 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49720 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49723 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49719 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49718 |
Source: unknown | Network traffic detected: HTTP traffic on port 49715 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49715 |
Source: unknown | Network traffic detected: HTTP traffic on port 49718 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49723 |
Source: ziprar.exe | String found in binary or memory: http://cacerts.digicert.com/DigiCertAssuredIDRootCA.crt0 |
Source: ziprar.exe | String found in binary or memory: http://cacerts.digicert.com/DigiCertSHA2AssuredIDTimestampingCA.crt0 |
Source: ziprar.exe | String found in binary or memory: http://cacerts.digicert.com/NETFoundationProjectsCodeSigningCA.crt0 |
Source: ziprar.exe | String found in binary or memory: http://crl.globalsign.com/ca/gstsacasha384g4.crl0 |
Source: ziprar.exe | String found in binary or memory: http://crl.globalsign.com/gsextendcodesignsha2g3.crl0$ |
Source: ziprar.exe | String found in binary or memory: http://crl.globalsign.com/root-r3.crl0G |
Source: ziprar.exe | String found in binary or memory: http://crl.globalsign.com/root-r3.crl0b |
Source: ziprar.exe | String found in binary or memory: http://crl.globalsign.com/root-r6.crl0G |
Source: ziprar.exe | String found in binary or memory: http://crl3.digicert.com/DigiCertAssuredIDRootCA.crl0P |
Source: ziprar.exe | String found in binary or memory: http://crl3.digicert.com/DigiCertHighAssuranceEVRootCA.crl0= |
Source: ziprar.exe | String found in binary or memory: http://crl3.digicert.com/NETFoundationProjectsCodeSigningCA.crl0E |
Source: ziprar.exe | String found in binary or memory: http://crl3.digicert.com/sha2-assured-ts.crl02 |
Source: ziprar.exe | String found in binary or memory: http://crl4.digicert.com/DigiCertAssuredIDRootCA.crl0: |
Source: ziprar.exe | String found in binary or memory: http://crl4.digicert.com/NETFoundationProjectsCodeSigningCA.crl0L |
Source: ziprar.exe | String found in binary or memory: http://crl4.digicert.com/sha2-assured-ts.crl0 |
Source: ziprar.exe, 00000000.00000002.4416848632.0000000002EF3000.00000004.00000800.00020000.00000000.sdmp, ziprar.exe, 00000000.00000002.4416848632.0000000002EEB000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://dsc.searcharchiver.com?713e8dc9e0537b8b2442cba2d7a23104=H1xAXFNHXl5ZVFQNEQQwBw9cQ1pQRldZU1ZDX |
Source: ziprar.exe | String found in binary or memory: http://james.newtonking.com/projects/json |
Source: ziprar.exe | String found in binary or memory: http://ocsp.digicert.com0C |
Source: ziprar.exe | String found in binary or memory: http://ocsp.digicert.com0K |
Source: ziprar.exe | String found in binary or memory: http://ocsp.digicert.com0N |
Source: ziprar.exe | String found in binary or memory: http://ocsp.digicert.com0O |
Source: ziprar.exe | String found in binary or memory: http://ocsp.globalsign.com/ca/gstsacasha384g40C |
Source: ziprar.exe | String found in binary or memory: http://ocsp2.globalsign.com/gsextendcodesignsha2g30U |
Source: ziprar.exe | String found in binary or memory: http://ocsp2.globalsign.com/rootr306 |
Source: ziprar.exe | String found in binary or memory: http://ocsp2.globalsign.com/rootr606 |
Source: ziprar.exe, 00000000.00000002.4416848632.0000000002E7E000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://schemas.xmlsoap.org/ws/2005/05/identity/claims/name |
Source: ziprar.exe | String found in binary or memory: http://secure.globalsign.com/cacert/gsextendcodesignsha2g3ocsp.crt0 |
Source: ziprar.exe | String found in binary or memory: http://secure.globalsign.com/cacert/gstsacasha384g4.crt0 |
Source: ziprar.exe, 00000000.00000002.4416848632.0000000002EF3000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://start.searcharchiver.com |
Source: ziprar.exe, 00000000.00000002.4416848632.0000000002EF3000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://start.searcharchiver.com/time?session_id=1640c995-2049-4d62-a150-e0b741766344&app_id=16128787 |
Source: ziprar.exe | String found in binary or memory: https:////support.google.com/chrome_webstore/answer/2664769?hl=en |
Source: ziprar.exe | String found in binary or memory: https:////support.mozilla.org/en-US/kb/disable-or-remove-add-ons |
Source: ziprar.exe | String found in binary or memory: https:////www.searcharchiver.com/eula |
Source: ziprar.exe | String found in binary or memory: https://app.ziprararchiver.com/ |
Source: ziprar.exe, 00000000.00000002.4416848632.0000000002E7E000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: https://start.searcharchiver.com |
Source: ziprar.exe, 00000000.00000002.4416825413.0000000002E7D000.00000040.00000800.00020000.00000000.sdmp | String found in binary or memory: https://start.searcharchiver.com/nav?emid=0F8BFBFF000806F86000c292b65879ff477a6af604113f58ECF4BB57DC |
Source: ziprar.exe | String found in binary or memory: https://start.searcharchiver.com/nav?string_interpolation=GET_OSOU&appId=1612878710864450&emid= |
Source: ziprar.exe, 00000000.00000002.4416848632.0000000002EB2000.00000004.00000800.00020000.00000000.sdmp, ziprar.exe, 00000000.00000002.4416848632.0000000002EF3000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: https://start.searcharchiver.com/time?session_id=1640c995-2049-4d62-a150-e0b741766344&app_id=1612878 |
Source: ziprar.exe | String found in binary or memory: https://www.digicert.com/CPS0 |
Source: ziprar.exe | String found in binary or memory: https://www.globalsign.com/repository/0 |
Source: ziprar.exe | String found in binary or memory: https://www.newtonsoft.com/json |
Source: ziprar.exe | String found in binary or memory: https://www.newtonsoft.com/jsonschema |
Source: ziprar.exe | String found in binary or memory: https://www.nuget.org/packages/Newtonsoft.Json.Bson |
Source: ziprar.exe | String found in binary or memory: https://www.searcharchiver.com/eulaMhttps://www.searcharchiver.com/privacy=https://www.searcharchive |
Source: ziprar.exe | String found in binary or memory: https://www.searcharchiver.com/sorry=Brand |
Source: ziprar.exe | String found in binary or memory: https://www.ziprararchiver.com/eulaMhttps://www.ziprararchiver.com/privacy |
Source: ziprar.exe | String found in binary or memory: https://ziprararchiver.com/thankyou?tyid=yTesting |
Source: global traffic | HTTP traffic detected: GET /nav?emid=0F8BFBFF000806F86000c292b65879ff477a6af604113f58ECF4BB57DC9&appId=1612878710864450&string_interpolation=GET_PRONTO_APP_NAME HTTP/1.1Host: start.searcharchiver.comConnection: Keep-Alive |
Source: global traffic | HTTP traffic detected: GET /nav?emid=0F8BFBFF000806F86000c292b65879ff477a6af604113f58ECF4BB57DC9&appId=1612878710864450&string_interpolation=GET_BRAND_NAME HTTP/1.1Host: start.searcharchiver.com |
Source: global traffic | HTTP traffic detected: GET /nav?emid=0F8BFBFF000806F86000c292b65879ff477a6af604113f58ECF4BB57DC9&appId=1612878710864450&string_interpolation=GET_SIGNATURE HTTP/1.1Host: start.searcharchiver.com |
Source: global traffic | HTTP traffic detected: GET /nav?emid=0F8BFBFF000806F86000c292b65879ff477a6af604113f58ECF4BB57DC9&appId=1612878710864450&string_interpolation=GET_OSOU HTTP/1.1Host: start.searcharchiver.com |
Source: global traffic | HTTP traffic detected: GET /time?session_id=1640c995-2049-4d62-a150-e0b741766344&app_id=1612878710864450&emid=0F8BFBFF000806F86000c292b65879ff477a6af604113f58ECF4BB57DC9&install_version=1111&identity=searcharchiver&sig=GS_MEDIAARENA_ZIPRAR_SIGNATURE&download_browser=edge_chrome&os_version=10.0.19041&r=2049793366 HTTP/1.1Host: start.searcharchiver.com |
Source: global traffic | HTTP traffic detected: GET /time?session_id=1640c995-2049-4d62-a150-e0b741766344&app_id=1612878710864450&emid=0F8BFBFF000806F86000c292b65879ff477a6af604113f58ECF4BB57DC9&install_version=1111&identity=searcharchiver&sig=GS_MEDIAARENA_ZIPRAR_SIGNATURE&download_browser=edge_chrome&os_version=10.0.19041&r=2049793366 HTTP/1.1Host: start.searcharchiver.comConnection: Keep-Alive |
Source: C:\Users\user\Desktop\ziprar.exe | Code function: 0_2_02C5B4E8 | 0_2_02C5B4E8 |
Source: C:\Users\user\Desktop\ziprar.exe | Code function: 0_2_02C5BDB8 | 0_2_02C5BDB8 |
Source: C:\Users\user\Desktop\ziprar.exe | Code function: 0_2_02C5B1A0 | 0_2_02C5B1A0 |
Source: C:\Users\user\Desktop\ziprar.exe | Code function: 0_2_02C5D600 | 0_2_02C5D600 |
Source: C:\Users\user\Desktop\ziprar.exe | Code function: 0_2_02C5D5EF | 0_2_02C5D5EF |
Source: C:\Users\user\Desktop\ziprar.exe | Code function: 0_2_065E4DB8 | 0_2_065E4DB8 |
Source: C:\Users\user\Desktop\ziprar.exe | Code function: 0_2_065E4DA7 | 0_2_065E4DA7 |
Source: C:\Users\user\Desktop\ziprar.exe | Code function: 0_2_06888200 | 0_2_06888200 |
Source: C:\Users\user\Desktop\ziprar.exe | Code function: 0_2_0688A5F0 | 0_2_0688A5F0 |
Source: C:\Users\user\Desktop\ziprar.exe | Code function: 0_2_068881F4 | 0_2_068881F4 |
Source: C:\Users\user\Desktop\ziprar.exe | Code function: 0_2_081B4BB8 | 0_2_081B4BB8 |
Source: C:\Users\user\Desktop\ziprar.exe | Code function: 0_2_081BAC78 | 0_2_081BAC78 |
Source: C:\Users\user\Desktop\ziprar.exe | Code function: 0_2_081B3EF8 | 0_2_081B3EF8 |
Source: C:\Users\user\Desktop\ziprar.exe | Code function: 0_2_081BF6F8 | 0_2_081BF6F8 |
Source: C:\Users\user\Desktop\ziprar.exe | Code function: 0_2_081B5110 | 0_2_081B5110 |
Source: ziprar.exe, 00000000.00000002.4415747805.000000000103E000.00000004.00000020.00020000.00000000.sdmp | Binary or memory string: OriginalFilenameclr.dllT vs ziprar.exe |
Source: ziprar.exe, 00000000.00000000.1969833397.0000000000A3B000.00000002.00000001.01000000.00000003.sdmp | Binary or memory string: OriginalFilenameNewtonsoft.Json.dll2 vs ziprar.exe |
Source: ziprar.exe, 00000000.00000002.4420797771.0000000003E31000.00000004.00000800.00020000.00000000.sdmp | Binary or memory string: OriginalFilenameNewtonsoft.Json.dll2 vs ziprar.exe |
Source: ziprar.exe, 00000000.00000002.4422615143.00000000053D0000.00000004.08000000.00040000.00000000.sdmp | Binary or memory string: OriginalFilenameNewtonsoft.Json.dll2 vs ziprar.exe |
Source: ziprar.exe, 00000000.00000000.1969833397.0000000000B5A000.00000002.00000001.01000000.00000003.sdmp | Binary or memory string: OriginalFilenameZipRarArchiver.exe> vs ziprar.exe |
Source: ziprar.exe | Binary or memory string: OriginalFilenameNewtonsoft.Json.dll2 vs ziprar.exe |
Source: ziprar.exe | Binary or memory string: OriginalFilenameZipRarArchiver.exe> vs ziprar.exe |
Source: ziprar.exe | String found in binary or memory: s settings. See applicable information here: <a href="https:////support.google.com/chrome_webstore/answer/2664769?hl=en">Google Chrome</a>; <a href="https:////support.mozilla.org/en-US/kb/disable-or-remove-add-ons">Mozilla Firefox</a>; <a href="https:////support.microsoft.com/en-gb/help/17447/windows-internet-explorer-11-manage-add-ons">Explorer</a>. </p><p> The Company may terminate this EULA and discontinue, or terminate the Services at any time, without notice, and for any or no reason. The Company shall not be liable to you or any third party for any of the foregoing. The Company does not assume any responsibility with respect to, or in connection with, the termination, as set forth above. The license granted to you will automatically terminate if you fail to comply with the terms of this EULA. </p><h5> (J) INDEMNIFICATION </h5><p> You will indemnify, defend and hold the Company harmless, as well as its respective affiliates, officers, directors, shareholders, or representatives from any and all demands, judgments, awards, losses, damages, expenses, claims and liabilities, and all related costs, including reasonable attorney |
Source: ziprar.exe, EmbeddedAssembly.cs | .Net Code: Load System.Reflection.Assembly.Load(byte[]) |
Source: 0.2.ziprar.exe.3e39550.0.raw.unpack, DynamicUtils.cs | .Net Code: CreateSharpArgumentInfoArray |
Source: 0.2.ziprar.exe.3e39550.0.raw.unpack, LateBoundReflectionDelegateFactory.cs | .Net Code: CreateDefaultConstructor |
Source: 0.0.ziprar.exe.a3baa8.1.raw.unpack, DynamicUtils.cs | .Net Code: CreateSharpArgumentInfoArray |
Source: 0.0.ziprar.exe.a3baa8.1.raw.unpack, LateBoundReflectionDelegateFactory.cs | .Net Code: CreateDefaultConstructor |
Source: 0.2.ziprar.exe.53d0000.1.raw.unpack, DynamicUtils.cs | .Net Code: CreateSharpArgumentInfoArray |
Source: 0.2.ziprar.exe.53d0000.1.raw.unpack, LateBoundReflectionDelegateFactory.cs | .Net Code: CreateDefaultConstructor |
Source: C:\Users\user\Desktop\ziprar.exe | Code function: 0_2_065EA19B push eax; ret | 0_2_065EA1A1 |
Source: C:\Users\user\Desktop\ziprar.exe | Code function: 0_2_06884731 push es; ret | 0_2_06884740 |
Source: C:\Users\user\Desktop\ziprar.exe | Code function: 0_2_081BA850 pushad ; ret | 0_2_081BA866 |
Source: C:\Users\user\Desktop\ziprar.exe | Code function: 0_2_0B573DE5 push esp; ret | 0_2_0B573DED |
Source: C:\Users\user\Desktop\ziprar.exe | Code function: 0_2_0B5731B7 push esp; ret | 0_2_0B573219 |
Source: C:\Users\user\Desktop\ziprar.exe | Code function: 0_2_0B571498 push esp; retf | 0_2_0B571499 |
Source: C:\Users\user\Desktop\ziprar.exe | Code function: 0_2_0B571CB8 pushfd ; iretd | 0_2_0B571CB9 |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -922337203685477s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -600000s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -599890s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -599781s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -599672s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -599562s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -599453s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -599344s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -599234s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -599125s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -599016s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -598906s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -598797s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -598687s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -598578s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -598469s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -598344s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -598234s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -598125s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -598016s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -597906s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -597797s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -597688s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -597563s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -597453s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -597344s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -597219s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -597109s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -597000s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -596891s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -596781s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -596672s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -596562s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -596450s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -596344s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -596219s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -596109s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -596000s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -595891s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -595781s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -595672s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -595563s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -595438s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -595313s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -595203s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -595094s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -594969s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -594859s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -594750s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -594641s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe TID: 5368 | Thread sleep time: -594531s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 922337203685477 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 600000 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 599890 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 599781 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 599672 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 599562 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 599453 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 599344 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 599234 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 599125 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 599016 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 598906 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 598797 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 598687 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 598578 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 598469 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 598344 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 598234 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 598125 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 598016 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 597906 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 597797 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 597688 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 597563 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 597453 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 597344 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 597219 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 597109 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 597000 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 596891 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 596781 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 596672 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 596562 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 596450 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 596344 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 596219 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 596109 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 596000 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 595891 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 595781 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 595672 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 595563 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 595438 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 595313 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 595203 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 595094 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 594969 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 594859 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 594750 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 594641 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 594531 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 922337203685477 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 600000 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 599890 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 599781 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 599672 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 599562 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 599453 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 599344 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 599234 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 599125 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 599016 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 598906 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 598797 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 598687 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 598578 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 598469 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 598344 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 598234 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 598125 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 598016 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 597906 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 597797 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 597688 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 597563 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 597453 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 597344 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 597219 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 597109 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 597000 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 596891 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 596781 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 596672 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 596562 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 596450 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 596344 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 596219 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 596109 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 596000 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 595891 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 595781 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 595672 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 595563 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 595438 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 595313 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 595203 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 595094 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 594969 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 594859 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 594750 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 594641 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Thread delayed: delay time: 594531 | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Queries volume information: C:\Users\user\Desktop\ziprar.exe VolumeInformation | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Queries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Forms\v4.0_4.0.0.0__b77a5c561934e089\System.Windows.Forms.dll VolumeInformation | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Queries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Drawing\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll VolumeInformation | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Queries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\Accessibility\v4.0_4.0.0.0__b03f5f7f11d50a3a\Accessibility.dll VolumeInformation | Jump to behavior |
Source: C:\Users\user\Desktop\ziprar.exe | Queries volume information: C:\Windows\Fonts\micross.ttf VolumeInformation | Jump to behavior |