Source: C:\Users\user\Desktop\FVN001-230824.exe | Code function: 2_2_00ADE22C | 2_2_00ADE22C |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Code function: 2_2_00AD4AE0 | 2_2_00AD4AE0 |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Code function: 2_2_048167C0 | 2_2_048167C0 |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Code function: 2_2_04810C68 | 2_2_04810C68 |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Code function: 2_2_04810C78 | 2_2_04810C78 |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Code function: 2_2_04816FF0 | 2_2_04816FF0 |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Code function: 2_2_04812758 | 2_2_04812758 |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Code function: 2_2_048110B0 | 2_2_048110B0 |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Code function: 2_2_04813108 | 2_2_04813108 |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Code function: 5_2_02E74A98 | 5_2_02E74A98 |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Code function: 5_2_02E7C94D | 5_2_02E7C94D |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Code function: 5_2_02E73E80 | 5_2_02E73E80 |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Code function: 5_2_02E7DCE1 | 5_2_02E7DCE1 |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Code function: 5_2_02E741C8 | 5_2_02E741C8 |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Code function: 5_2_02E7DFA0 | 5_2_02E7DFA0 |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Code function: 5_2_06990FF0 | 5_2_06990FF0 |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Code function: 5_2_06995CF8 | 5_2_06995CF8 |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Code function: 5_2_06993528 | 5_2_06993528 |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Code function: 5_2_06994570 | 5_2_06994570 |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Code function: 5_2_0699E0A9 | 5_2_0699E0A9 |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Code function: 5_2_0699919F | 5_2_0699919F |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Code function: 5_2_0699A108 | 5_2_0699A108 |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Code function: 5_2_06995618 | 5_2_06995618 |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Code function: 5_2_06993C67 | 5_2_06993C67 |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Code function: 5_2_0699C338 | 5_2_0699C338 |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Code function: 5_2_06AEA178 | 5_2_06AEA178 |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Code function: 5_2_06AEBC58 | 5_2_06AEBC58 |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: mscoree.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: apphelp.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: kernel.appcore.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: version.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: vcruntime140_clr0400.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: ucrtbase_clr0400.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: ucrtbase_clr0400.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: uxtheme.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: windows.storage.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: wldp.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: profapi.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: cryptsp.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: rsaenh.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: cryptbase.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: dwrite.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: amsi.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: userenv.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: msasn1.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: gpapi.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: windowscodecs.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: mscoree.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: kernel.appcore.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: version.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: vcruntime140_clr0400.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: ucrtbase_clr0400.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: ucrtbase_clr0400.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: uxtheme.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: windows.storage.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: wldp.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: profapi.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: cryptsp.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: rsaenh.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: cryptbase.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: wbemcomn.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: amsi.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: userenv.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: sspicli.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: rasapi32.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: rasman.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: rtutils.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: mswsock.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: winhttp.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: ondemandconnroutehelper.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: iphlpapi.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: dhcpcsvc6.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: dhcpcsvc.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: dnsapi.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: winnsi.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: rasadhlp.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: fwpuclnt.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: secur32.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: schannel.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: mskeyprotect.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: ntasn1.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: ncrypt.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: ncryptsslp.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: msasn1.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: gpapi.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: vaultcli.dll | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Section loaded: wintypes.dll | Jump to behavior |
Source: 2.2.FVN001-230824.exe.3b95940.2.raw.unpack, hOL09Lfr1bK7NSIFg2.cs | High entropy of concatenated method names: 'JHaP5HZPn8', 'BdMPxTLqZy', 'SogP7DyZ49', 'wLEPT4oE3X', 'N8uPIMnGWH', 'yqRPGtx3FS', 'p1YPaAocbh', 'I9TPmPnTBG', 'zuBPEwUhjb', 'A61PCTaFRK' |
Source: 2.2.FVN001-230824.exe.3b95940.2.raw.unpack, DvMpNZAgK2Isvs1CEm.cs | High entropy of concatenated method names: 'Dispose', 'xsTJUSWIb8', 'rt13TWNIMk', 'ar7ggqI0J5', 'aLyJZ9H2Gn', 'V0uJz07WZ4', 'ProcessDialogKey', 'A433N8SkjV', 'KyA3Jepiw0', 'Rxf336dgmy' |
Source: 2.2.FVN001-230824.exe.3b95940.2.raw.unpack, XLyhyySTmK4ffAQfRP.cs | High entropy of concatenated method names: 'I7Qv8rj2Mx', 'e7HvY2jjJA', 'vejvLWDMm3', 'jCvvXaSmN9', 'eowvjfl11w', 'KnXv1uoGuu', 'eSGvnewqjk', 'X7hvOrT3cZ', 'P8XvAMTeAv', 'NU8v4Y55dK' |
Source: 2.2.FVN001-230824.exe.3b95940.2.raw.unpack, EoaQ3YrWSj4xVu9mSx.cs | High entropy of concatenated method names: 'koWkEf9B89', 'F6YkR94iR1', 'd2Kk6WNp3p', 'xNlkFOTIkX', 'Ls7kTDeWjF', 'CltkM76YZr', 'lxjkI87Exq', 'xfwkGv1pGa', 'XsTk0s0Rxe', 'VfFkaudO56' |
Source: 2.2.FVN001-230824.exe.3b95940.2.raw.unpack, Xn4GP52jQsLFHNejSw.cs | High entropy of concatenated method names: 'spFXSn3c2A', 'SWZXWBXGoZ', 'x6jX5og4BU', 'JADXxRw01l', 'Cn2XkW9h3q', 'VH7XHYwCBt', 'CuJXf8XOPh', 'satXQ4lCAl', 'Ui5XlhuvPA', 'EsMXi8REy5' |
Source: 2.2.FVN001-230824.exe.3b95940.2.raw.unpack, SG4F5vTGsYf2KfYXCu.cs | High entropy of concatenated method names: 'GgOsM9I7V', 'xpaSMZGcC', 'eHKWesAMp', 'nBWwpIFqT', 'ChWxuyoGV', 'kQWBuvpS1', 'aKDJbk3NkiiIVY4OYS', 'OCvboUdM6ZsG3Dd68p', 'ExSQjp1YE', 'MgHiE70BR' |
Source: 2.2.FVN001-230824.exe.3b95940.2.raw.unpack, IZn3i3Gk1n4iYx0vy0i.cs | High entropy of concatenated method names: 'CanConvertFrom', 'ConvertFrom', 'ConvertTo', 'bCki6QRNM8', 'NiDiFA9wmq', 'So5iDdXJrE', 'adqiKKurVZ', 'KSDiVd8nap', 'yL1ihCWdWB', 'siAiePhdJ7' |
Source: 2.2.FVN001-230824.exe.3b95940.2.raw.unpack, n6N0ry1UwKZTDF1W7o.cs | High entropy of concatenated method names: 'tOOQ7Y3gIy', 'loIQTS4tvD', 'RkSQMFS4cR', 'k7cQIILyED', 'pUZQ6ZcLjb', 'oybQGagK3q', 'Next', 'Next', 'Next', 'NextBytes' |
Source: 2.2.FVN001-230824.exe.3b95940.2.raw.unpack, CqLFsODm2pZGhrJBy6.cs | High entropy of concatenated method names: 'fO3no9cj4S', 'iLunr3leN0', 'Tq1nsfiTH6', 'LRqnS4Djtw', 'zk1n9dJCLP', 'F5PnWrTycY', 'VREnwuoF1p', 'JcSn5oyXK3', 'vjbnxBV6TS', 'kJjnBMsVK2' |
Source: 2.2.FVN001-230824.exe.3b95940.2.raw.unpack, WUDBeKXW5DwYN7QhDQ.cs | High entropy of concatenated method names: 'Q70fcMLyAW', 'VHpfZ1FYuJ', 'rOvQNMXUHg', 'YjKQJoA3oj', 'NBWfCOCcY0', 'X6ufRLqJjf', 'RmyfqJd9WR', 'k9Pf6fcWWF', 'jetfFBU8cH', 'fIZfDWooJK' |
Source: 2.2.FVN001-230824.exe.3b95940.2.raw.unpack, TYjxgRGBcnj4N3bl4Qk.cs | High entropy of concatenated method names: 'vYFlor7Qkp', 'aWnlrJX5cB', 'tmelshcB3E', 'TILlST9aOW', 'hLal9FsRvd', 'y1RlWjdwKi', 'y7Mlwu6xbD', 'kY8l5hZJXN', 'sJ0lxiWaKH', 'WlJlBDwLHh' |
Source: 2.2.FVN001-230824.exe.3b95940.2.raw.unpack, SekI0imFQCXOq8VsmR.cs | High entropy of concatenated method names: 'EditValue', 'GetEditStyle', 'xxN3Um2Xa3', 'xBW3ZIAsis', 'w6J3zopyt0', 'VAgvNuG0uy', 'ARwvJS9miq', 'HJjv32ofHH', 'WmAvvH4EWN', 'dFYadHRGliwwvYud5mR' |
Source: 2.2.FVN001-230824.exe.3b95940.2.raw.unpack, Vts58fHrCHZT20dRu9.cs | High entropy of concatenated method names: 'r6TQYUdby1', 'sF8QLYrBC0', 'ih3QXl8dCw', 'bNKQj1wmSh', 'H7YQ19Jtdt', 'RaaQnxI7hJ', 'vhqQOG6e32', 'b1DQAgZH0J', 'AS6Q42AdN4', 'CJAQpvKS3e' |
Source: 2.2.FVN001-230824.exe.3b95940.2.raw.unpack, OE11K0zLUfoCqyq2xS.cs | High entropy of concatenated method names: 'CanConvertFrom', 'ConvertFrom', 'ConvertTo', 'dXBlPbRRr4', 'IdXlkbsOYo', 'RlnlHga9NG', 'eDflftRUoy', 'OH5lQ6xRsx', 'AoVllQCMJt', 'PUYliLSKno' |
Source: 2.2.FVN001-230824.exe.3b95940.2.raw.unpack, EMRX9ejm9MK7bCmTS1.cs | High entropy of concatenated method names: 'E1d18WC3Ey', 'y5C1LyVhtj', 'dBB1jVx7gV', 'gMa1nJHtwP', 'ijp1OhA6GW', 'gYDjVUnsh4', 'wlhjhDSGDd', 'f2WjeCN9cD', 'v4FjcZ9DvL', 's5ojUXUC2X' |
Source: 2.2.FVN001-230824.exe.3b95940.2.raw.unpack, N34ZcyVrqOfmOWTrfa.cs | High entropy of concatenated method names: 'yfwL67mZU3', 'WxGLFtMs0s', 'JEnLDv6x7t', 'MyNLKqDpDc', 'XciLV4PMMa', 'zLfLhq6srU', 'tyPLeVdKLO', 'xxVLcPSpo6', 'GdHLUwPjuo', 's1LLZLZ8eV' |
Source: 2.2.FVN001-230824.exe.3b95940.2.raw.unpack, b2Sm9vL4O9uFZXl1qI.cs | High entropy of concatenated method names: 'qubJnJb6PA', 'wdWJOJ3QRy', 'he4J4pFIU7', 'YYKJpB6sHi', 'Ot7JkregbV', 'D5aJHy1OA6', 'SOw3tyYgg4GPke8umT', 'lGfd9E4DJBchLJSA2c', 'pOKJJG05TH', 'RHmJv7kOxw' |
Source: 2.2.FVN001-230824.exe.3b95940.2.raw.unpack, TuuJmTvFVeV5mu7o3Z.cs | High entropy of concatenated method names: 'ejt1yQyC1B', 'Bm41oFVAAL', 'HrV1sDNF1V', 'tkO1S4laP7', 'NI81W3pWAw', 'gYQ1w9O65V', 'KqI1xIHSXO', 'X4J1BfM9J0', 'ldiR4XG7ARMQIAAieoc', 'zcUP3ZGQ7HfLi0NZqXJ' |
Source: 2.2.FVN001-230824.exe.3b95940.2.raw.unpack, iZV0pMM4Dts6tBSOQP.cs | High entropy of concatenated method names: 'ToString', 'GXbHCrcmV3', 'YGkHTUH01B', 'tqcHM8amYg', 'BZyHI9WyrZ', 'fWXHG7m9hR', 'M52H0vAUNe', 'ySIHaJQZEo', 'xc6HmTD2Jd', 'qY6HbCmH1K' |
Source: 2.2.FVN001-230824.exe.3b95940.2.raw.unpack, z74bjNPfWJrQUxpqQT.cs | High entropy of concatenated method names: 'dVplJXgTjR', 'jxKlvECBZk', 'P74lt1W1nQ', 'vtMlYIeokD', 'FRNlLDiFOf', 'zdEljquJyX', 'QV4l1PWPKK', 'w3iQer2Tfm', 'kVTQcdBePH', 'ycnQUvsY7E' |
Source: 2.2.FVN001-230824.exe.3b95940.2.raw.unpack, ip1viPnI8reVhE0pgB.cs | High entropy of concatenated method names: 'WQ8nYh931Y', 'iu9nXwwIAl', 'euhn1joKk5', 'oaD1ZPx44R', 'G7W1zIvsJK', 'n72nNqVEsV', 'TrtnJn2aMO', 'pf3n3GkJUD', 'AnInvN5HLI', 'uK4ntxy0AD' |
Source: 2.2.FVN001-230824.exe.6f20000.7.raw.unpack, hOL09Lfr1bK7NSIFg2.cs | High entropy of concatenated method names: 'JHaP5HZPn8', 'BdMPxTLqZy', 'SogP7DyZ49', 'wLEPT4oE3X', 'N8uPIMnGWH', 'yqRPGtx3FS', 'p1YPaAocbh', 'I9TPmPnTBG', 'zuBPEwUhjb', 'A61PCTaFRK' |
Source: 2.2.FVN001-230824.exe.6f20000.7.raw.unpack, DvMpNZAgK2Isvs1CEm.cs | High entropy of concatenated method names: 'Dispose', 'xsTJUSWIb8', 'rt13TWNIMk', 'ar7ggqI0J5', 'aLyJZ9H2Gn', 'V0uJz07WZ4', 'ProcessDialogKey', 'A433N8SkjV', 'KyA3Jepiw0', 'Rxf336dgmy' |
Source: 2.2.FVN001-230824.exe.6f20000.7.raw.unpack, XLyhyySTmK4ffAQfRP.cs | High entropy of concatenated method names: 'I7Qv8rj2Mx', 'e7HvY2jjJA', 'vejvLWDMm3', 'jCvvXaSmN9', 'eowvjfl11w', 'KnXv1uoGuu', 'eSGvnewqjk', 'X7hvOrT3cZ', 'P8XvAMTeAv', 'NU8v4Y55dK' |
Source: 2.2.FVN001-230824.exe.6f20000.7.raw.unpack, EoaQ3YrWSj4xVu9mSx.cs | High entropy of concatenated method names: 'koWkEf9B89', 'F6YkR94iR1', 'd2Kk6WNp3p', 'xNlkFOTIkX', 'Ls7kTDeWjF', 'CltkM76YZr', 'lxjkI87Exq', 'xfwkGv1pGa', 'XsTk0s0Rxe', 'VfFkaudO56' |
Source: 2.2.FVN001-230824.exe.6f20000.7.raw.unpack, Xn4GP52jQsLFHNejSw.cs | High entropy of concatenated method names: 'spFXSn3c2A', 'SWZXWBXGoZ', 'x6jX5og4BU', 'JADXxRw01l', 'Cn2XkW9h3q', 'VH7XHYwCBt', 'CuJXf8XOPh', 'satXQ4lCAl', 'Ui5XlhuvPA', 'EsMXi8REy5' |
Source: 2.2.FVN001-230824.exe.6f20000.7.raw.unpack, SG4F5vTGsYf2KfYXCu.cs | High entropy of concatenated method names: 'GgOsM9I7V', 'xpaSMZGcC', 'eHKWesAMp', 'nBWwpIFqT', 'ChWxuyoGV', 'kQWBuvpS1', 'aKDJbk3NkiiIVY4OYS', 'OCvboUdM6ZsG3Dd68p', 'ExSQjp1YE', 'MgHiE70BR' |
Source: 2.2.FVN001-230824.exe.6f20000.7.raw.unpack, IZn3i3Gk1n4iYx0vy0i.cs | High entropy of concatenated method names: 'CanConvertFrom', 'ConvertFrom', 'ConvertTo', 'bCki6QRNM8', 'NiDiFA9wmq', 'So5iDdXJrE', 'adqiKKurVZ', 'KSDiVd8nap', 'yL1ihCWdWB', 'siAiePhdJ7' |
Source: 2.2.FVN001-230824.exe.6f20000.7.raw.unpack, n6N0ry1UwKZTDF1W7o.cs | High entropy of concatenated method names: 'tOOQ7Y3gIy', 'loIQTS4tvD', 'RkSQMFS4cR', 'k7cQIILyED', 'pUZQ6ZcLjb', 'oybQGagK3q', 'Next', 'Next', 'Next', 'NextBytes' |
Source: 2.2.FVN001-230824.exe.6f20000.7.raw.unpack, CqLFsODm2pZGhrJBy6.cs | High entropy of concatenated method names: 'fO3no9cj4S', 'iLunr3leN0', 'Tq1nsfiTH6', 'LRqnS4Djtw', 'zk1n9dJCLP', 'F5PnWrTycY', 'VREnwuoF1p', 'JcSn5oyXK3', 'vjbnxBV6TS', 'kJjnBMsVK2' |
Source: 2.2.FVN001-230824.exe.6f20000.7.raw.unpack, WUDBeKXW5DwYN7QhDQ.cs | High entropy of concatenated method names: 'Q70fcMLyAW', 'VHpfZ1FYuJ', 'rOvQNMXUHg', 'YjKQJoA3oj', 'NBWfCOCcY0', 'X6ufRLqJjf', 'RmyfqJd9WR', 'k9Pf6fcWWF', 'jetfFBU8cH', 'fIZfDWooJK' |
Source: 2.2.FVN001-230824.exe.6f20000.7.raw.unpack, TYjxgRGBcnj4N3bl4Qk.cs | High entropy of concatenated method names: 'vYFlor7Qkp', 'aWnlrJX5cB', 'tmelshcB3E', 'TILlST9aOW', 'hLal9FsRvd', 'y1RlWjdwKi', 'y7Mlwu6xbD', 'kY8l5hZJXN', 'sJ0lxiWaKH', 'WlJlBDwLHh' |
Source: 2.2.FVN001-230824.exe.6f20000.7.raw.unpack, SekI0imFQCXOq8VsmR.cs | High entropy of concatenated method names: 'EditValue', 'GetEditStyle', 'xxN3Um2Xa3', 'xBW3ZIAsis', 'w6J3zopyt0', 'VAgvNuG0uy', 'ARwvJS9miq', 'HJjv32ofHH', 'WmAvvH4EWN', 'dFYadHRGliwwvYud5mR' |
Source: 2.2.FVN001-230824.exe.6f20000.7.raw.unpack, Vts58fHrCHZT20dRu9.cs | High entropy of concatenated method names: 'r6TQYUdby1', 'sF8QLYrBC0', 'ih3QXl8dCw', 'bNKQj1wmSh', 'H7YQ19Jtdt', 'RaaQnxI7hJ', 'vhqQOG6e32', 'b1DQAgZH0J', 'AS6Q42AdN4', 'CJAQpvKS3e' |
Source: 2.2.FVN001-230824.exe.6f20000.7.raw.unpack, OE11K0zLUfoCqyq2xS.cs | High entropy of concatenated method names: 'CanConvertFrom', 'ConvertFrom', 'ConvertTo', 'dXBlPbRRr4', 'IdXlkbsOYo', 'RlnlHga9NG', 'eDflftRUoy', 'OH5lQ6xRsx', 'AoVllQCMJt', 'PUYliLSKno' |
Source: 2.2.FVN001-230824.exe.6f20000.7.raw.unpack, EMRX9ejm9MK7bCmTS1.cs | High entropy of concatenated method names: 'E1d18WC3Ey', 'y5C1LyVhtj', 'dBB1jVx7gV', 'gMa1nJHtwP', 'ijp1OhA6GW', 'gYDjVUnsh4', 'wlhjhDSGDd', 'f2WjeCN9cD', 'v4FjcZ9DvL', 's5ojUXUC2X' |
Source: 2.2.FVN001-230824.exe.6f20000.7.raw.unpack, N34ZcyVrqOfmOWTrfa.cs | High entropy of concatenated method names: 'yfwL67mZU3', 'WxGLFtMs0s', 'JEnLDv6x7t', 'MyNLKqDpDc', 'XciLV4PMMa', 'zLfLhq6srU', 'tyPLeVdKLO', 'xxVLcPSpo6', 'GdHLUwPjuo', 's1LLZLZ8eV' |
Source: 2.2.FVN001-230824.exe.6f20000.7.raw.unpack, b2Sm9vL4O9uFZXl1qI.cs | High entropy of concatenated method names: 'qubJnJb6PA', 'wdWJOJ3QRy', 'he4J4pFIU7', 'YYKJpB6sHi', 'Ot7JkregbV', 'D5aJHy1OA6', 'SOw3tyYgg4GPke8umT', 'lGfd9E4DJBchLJSA2c', 'pOKJJG05TH', 'RHmJv7kOxw' |
Source: 2.2.FVN001-230824.exe.6f20000.7.raw.unpack, TuuJmTvFVeV5mu7o3Z.cs | High entropy of concatenated method names: 'ejt1yQyC1B', 'Bm41oFVAAL', 'HrV1sDNF1V', 'tkO1S4laP7', 'NI81W3pWAw', 'gYQ1w9O65V', 'KqI1xIHSXO', 'X4J1BfM9J0', 'ldiR4XG7ARMQIAAieoc', 'zcUP3ZGQ7HfLi0NZqXJ' |
Source: 2.2.FVN001-230824.exe.6f20000.7.raw.unpack, iZV0pMM4Dts6tBSOQP.cs | High entropy of concatenated method names: 'ToString', 'GXbHCrcmV3', 'YGkHTUH01B', 'tqcHM8amYg', 'BZyHI9WyrZ', 'fWXHG7m9hR', 'M52H0vAUNe', 'ySIHaJQZEo', 'xc6HmTD2Jd', 'qY6HbCmH1K' |
Source: 2.2.FVN001-230824.exe.6f20000.7.raw.unpack, z74bjNPfWJrQUxpqQT.cs | High entropy of concatenated method names: 'dVplJXgTjR', 'jxKlvECBZk', 'P74lt1W1nQ', 'vtMlYIeokD', 'FRNlLDiFOf', 'zdEljquJyX', 'QV4l1PWPKK', 'w3iQer2Tfm', 'kVTQcdBePH', 'ycnQUvsY7E' |
Source: 2.2.FVN001-230824.exe.6f20000.7.raw.unpack, ip1viPnI8reVhE0pgB.cs | High entropy of concatenated method names: 'WQ8nYh931Y', 'iu9nXwwIAl', 'euhn1joKk5', 'oaD1ZPx44R', 'G7W1zIvsJK', 'n72nNqVEsV', 'TrtnJn2aMO', 'pf3n3GkJUD', 'AnInvN5HLI', 'uK4ntxy0AD' |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe TID: 1756 | Thread sleep time: -922337203685477s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe TID: 7224 | Thread sleep time: -11068046444225724s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe TID: 7224 | Thread sleep time: -100000s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe TID: 7228 | Thread sleep count: 764 > 30 | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe TID: 7224 | Thread sleep time: -99891s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe TID: 7228 | Thread sleep count: 3414 > 30 | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe TID: 7224 | Thread sleep time: -99781s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe TID: 7224 | Thread sleep time: -99672s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe TID: 7224 | Thread sleep time: -99563s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe TID: 7224 | Thread sleep time: -99453s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe TID: 7224 | Thread sleep time: -99344s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe TID: 7224 | Thread sleep time: -99235s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe TID: 7224 | Thread sleep time: -99110s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe TID: 7224 | Thread sleep time: -98985s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe TID: 7224 | Thread sleep time: -98860s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe TID: 7224 | Thread sleep time: -98735s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe TID: 7224 | Thread sleep time: -98610s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe TID: 7224 | Thread sleep time: -98485s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe TID: 7224 | Thread sleep time: -98360s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe TID: 7224 | Thread sleep time: -98235s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe TID: 7224 | Thread sleep time: -98110s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe TID: 7224 | Thread sleep time: -97985s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe TID: 7224 | Thread sleep time: -97860s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe TID: 7224 | Thread sleep time: -97735s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe TID: 7224 | Thread sleep time: -97610s >= -30000s | Jump to behavior |
Source: C:\Users\user\Desktop\FVN001-230824.exe TID: 7224 | Thread sleep time: -922337203685477s >= -30000s | Jump to behavior |