Score: | 10 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 20% |
Source: |
Code function: |
1_2_00B19EB7 | |
Source: |
Code function: |
1_2_00B3F961 | |
Source: |
Code function: |
1_2_00B19C99 | |
Source: |
Code function: |
2_2_00899EB7 | |
Source: |
Code function: |
2_2_008BF961 | |
Source: |
Code function: |
2_2_00899C99 |
Source: |
Static PE information: |
Source: |
Static PE information: |
Source: |
Binary string: |
||
Source: |
Binary string: |
||
Source: |
Binary string: |
||
Source: |
Binary string: |
||
Source: |
Binary string: |
||
Source: |
Binary string: |
||
Source: |
Binary string: |
Source: |
Code function: |
1_2_00B44315 | |
Source: |
Code function: |
1_2_00B1993E | |
Source: |
Code function: |
1_2_00B37A87 | |
Source: |
Code function: |
1_2_00B03BC3 | |
Source: |
Code function: |
2_2_008C4315 | |
Source: |
Code function: |
2_2_0089993E | |
Source: |
Code function: |
2_2_008B7A87 | |
Source: |
Code function: |
2_2_00883BC3 | |
Source: |
Code function: |
2_2_6E83BF6A |
Source: |
String found in binary or memory: |
||
Source: |
String found in binary or memory: |
||
Source: |
String found in binary or memory: |
||
Source: |
String found in binary or memory: |
||
Source: |
String found in binary or memory: |
||
Source: |
String found in binary or memory: |
||
Source: |
String found in binary or memory: |
||
Source: |
String found in binary or memory: |
||
Source: |
String found in binary or memory: |
||
Source: |
String found in binary or memory: |
||
Source: |
String found in binary or memory: |
||
Source: |
String found in binary or memory: |
||
Source: |
String found in binary or memory: |
||
Source: |
String found in binary or memory: |
Source: |
Code function: |
1_2_00B2C0FA | |
Source: |
Code function: |
1_2_00B06184 | |
Source: |
Code function: |
1_2_00B3022D | |
Source: |
Code function: |
1_2_00B3A3B0 | |
Source: |
Code function: |
1_2_00B30662 | |
Source: |
Code function: |
1_2_00B0A7EF | |
Source: |
Code function: |
1_2_00B3A85E | |
Source: |
Code function: |
1_2_00B169CC | |
Source: |
Code function: |
1_2_00B2F919 | |
Source: |
Code function: |
1_2_00B30A97 | |
Source: |
Code function: |
1_2_00B32B21 | |
Source: |
Code function: |
1_2_00B32D50 | |
Source: |
Code function: |
1_2_00B3ED4C | |
Source: |
Code function: |
1_2_00B2FE15 | |
Source: |
Code function: |
2_2_008AC0FA | |
Source: |
Code function: |
2_2_00886184 | |
Source: |
Code function: |
2_2_008B022D | |
Source: |
Code function: |
2_2_008BA3B0 | |
Source: |
Code function: |
2_2_008B0662 | |
Source: |
Code function: |
2_2_0088A7EF | |
Source: |
Code function: |
2_2_008BA85E | |
Source: |
Code function: |
2_2_008969CC | |
Source: |
Code function: |
2_2_008AF919 | |
Source: |
Code function: |
2_2_008B0A97 | |
Source: |
Code function: |
2_2_008B2B21 | |
Source: |
Code function: |
2_2_008BED4C | |
Source: |
Code function: |
2_2_008B2D50 | |
Source: |
Code function: |
2_2_008AFE15 | |
Source: |
Code function: |
2_2_066C9645 | |
Source: |
Code function: |
2_2_06ADE1CE | |
Source: |
Code function: |
2_2_6E83DCFE | |
Source: |
Code function: |
2_2_6E837025 | |
Source: |
Code function: |
2_2_6E83D850 | |
Source: |
Code function: |
2_2_6E836DF6 | |
Source: |
Code function: |
2_2_6E842978 |
Source: |
Binary or memory string: |
||
Source: |
Binary or memory string: |
||
Source: |
Binary or memory string: |
||
Source: |
Binary or memory string: |
||
Source: |
Binary or memory string: |
||
Source: |
Binary or memory string: |
Source: |
Static PE information: |
Source: |
Classification label: |
Source: |
Code function: |
1_2_00B3FD20 |
Source: |
Code function: |
1_2_00B044E9 | |
Source: |
Code function: |
2_2_008844E9 |
Source: |
Code function: |
1_2_00B42F23 |
Source: |
Code function: |
1_2_00B26945 |
Source: |
Mutant created: |
Source: |
File created: |
Jump to behavior |
Source: |
Command line argument: |
1_2_00B01070 | |
Source: |
Command line argument: |
1_2_00B01070 | |
Source: |
Command line argument: |
1_2_00B01070 | |
Source: |
Command line argument: |
1_2_00B01070 | |
Source: |
Command line argument: |
1_2_00B01070 | |
Source: |
Command line argument: |
1_2_00B01070 | |
Source: |
Command line argument: |
1_2_00B01070 | |
Source: |
Command line argument: |
1_2_00B01070 | |
Source: |
Command line argument: |
1_2_00B01070 | |
Source: |
Command line argument: |
2_2_00881070 | |
Source: |
Command line argument: |
2_2_00881070 | |
Source: |
Command line argument: |
2_2_00881070 | |
Source: |
Command line argument: |
2_2_00881070 | |
Source: |
Command line argument: |
2_2_00881070 | |
Source: |
Command line argument: |
2_2_00881070 | |
Source: |
Command line argument: |
2_2_00881070 | |
Source: |
Command line argument: |
2_2_00881070 | |
Source: |
Command line argument: |
2_2_00881070 |
Source: |
Static PE information: |
Source: |
Key opened: |
Jump to behavior |
Source: |
String found in binary or memory: |
||
Source: |
String found in binary or memory: |
||
Source: |
String found in binary or memory: |
Source: |
File read: |
Jump to behavior |
Source: |
Process created: |
|||
Source: |
Process created: |
|||
Source: |
Process created: |
Jump to behavior |
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior | ||
Source: |
Section loaded: |
Jump to behavior |
Source: |
Key value queried: |
Jump to behavior |
Source: |
Window detected: |
Source: |
File opened: |
Jump to behavior |
Source: |
Static PE information: |
||
Source: |
Static PE information: |
||
Source: |
Static PE information: |
||
Source: |
Static PE information: |
||
Source: |
Static PE information: |
||
Source: |
Static PE information: |
Source: |
Static PE information: |
Source: |
Static PE information: |
Source: |
Binary string: |
||
Source: |
Binary string: |
||
Source: |
Binary string: |
||
Source: |
Binary string: |
||
Source: |
Binary string: |
||
Source: |
Binary string: |
||
Source: |
Binary string: |
Source: |
Static PE information: |
||
Source: |
Static PE information: |
||
Source: |
Static PE information: |
||
Source: |
Static PE information: |
||
Source: |
Static PE information: |
Source: |
Static PE information: |
||
Source: |
Static PE information: |
Source: |
Code function: |
1_2_00B2E889 | |
Source: |
Code function: |
2_2_008AE889 | |
Source: |
Code function: |
2_2_06AEADCE | |
Source: |
Code function: |
2_2_06AEB1B0 | |
Source: |
Code function: |
2_2_06AEB1BC | |
Source: |
Code function: |
2_2_06AEB1B6 | |
Source: |
Code function: |
2_2_06AEB1EC | |
Source: |
Code function: |
2_2_06AEB1E6 | |
Source: |
Code function: |
2_2_06AEB1DA | |
Source: |
Code function: |
2_2_06AEB1C8 | |
Source: |
Code function: |
2_2_06AEB1C2 | |
Source: |
Code function: |
2_2_06AEB1E0 | |
Source: |
Code function: |
2_2_06AEB1AA | |
Source: |
Code function: |
2_2_6E8344F9 | |
Source: |
Code function: |
2_2_043E8436 | |
Source: |
Code function: |
2_2_043E7531 | |
Source: |
Code function: |
2_2_043E87F0 | |
Source: |
Code function: |
2_2_043E7089 | |
Source: |
Code function: |
2_2_043E7059 | |
Source: |
Code function: |
2_2_043E3341 | |
Source: |
Code function: |
2_2_043E3341 | |
Source: |
Code function: |
2_2_043E7ED0 |
Source: |
File created: |
Jump to dropped file | ||
Source: |
File created: |
Jump to dropped file | ||
Source: |
File created: |
Jump to dropped file | ||
Source: |
File created: |
Jump to dropped file | ||
Source: |
File created: |
Jump to dropped file | ||
Source: |
File created: |
Jump to dropped file |
Source: |
File created: |
Jump to dropped file | ||
Source: |
File created: |
Jump to dropped file | ||
Source: |
File created: |
Jump to dropped file | ||
Source: |
File created: |
Jump to dropped file | ||
Source: |
File created: |
Jump to dropped file | ||
Source: |
File created: |
Jump to dropped file |
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior | ||
Source: |
Process information set: |
Jump to behavior |
Source: |
Memory allocated: |
Jump to behavior | ||
Source: |
Memory allocated: |
Jump to behavior | ||
Source: |
Memory allocated: |
Jump to behavior |
Source: |
Dropped PE file which has not been started: |
Jump to dropped file | ||
Source: |
Dropped PE file which has not been started: |
Jump to dropped file | ||
Source: |
Dropped PE file which has not been started: |
Jump to dropped file | ||
Source: |
Dropped PE file which has not been started: |
Jump to dropped file | ||
Source: |
Dropped PE file which has not been started: |
Jump to dropped file |
Source: |
Evaded block: |
Source: |
Check user administrative privileges: |
||
Source: |
Check user administrative privileges: |
Source: |
API coverage: |
Source: |
Code function: |
1_2_00B3FDC2 | |
Source: |
Code function: |
1_2_00B3FDC2 | |
Source: |
Code function: |
2_2_008BFDC2 | |
Source: |
Code function: |
2_2_008BFDC2 |
Source: |
Code function: |
1_2_00B44315 | |
Source: |
Code function: |
1_2_00B1993E | |
Source: |
Code function: |
1_2_00B37A87 | |
Source: |
Code function: |
1_2_00B03BC3 | |
Source: |
Code function: |
2_2_008C4315 | |
Source: |
Code function: |
2_2_0089993E | |
Source: |
Code function: |
2_2_008B7A87 | |
Source: |
Code function: |
2_2_00883BC3 | |
Source: |
Code function: |
2_2_6E83BF6A |
Source: |
Code function: |
1_2_00B4962D |
Source: |
API call chain: |
||
Source: |
API call chain: |
Source: |
Code function: |
1_2_00B2E625 |
Source: |
Code function: |
1_2_00B34812 | |
Source: |
Code function: |
2_2_008B4812 | |
Source: |
Code function: |
2_2_6E838EB1 |
Source: |
Code function: |
1_2_00B038D4 |
Source: |
Code function: |
1_2_00B2E188 | |
Source: |
Code function: |
1_2_00B2E625 | |
Source: |
Code function: |
1_2_00B2E773 | |
Source: |
Code function: |
1_2_00B33BB0 | |
Source: |
Code function: |
2_2_008AE188 | |
Source: |
Code function: |
2_2_008AE625 | |
Source: |
Code function: |
2_2_008AE773 | |
Source: |
Code function: |
2_2_008B3BB0 | |
Source: |
Code function: |
2_2_6E837E39 | |
Source: |
Code function: |
2_2_6E834321 | |
Source: |
Code function: |
2_2_6E8344FB |
Source: |
Memory allocated: |
Jump to behavior |
Source: |
Process created: |
Jump to behavior |
Source: |
Code function: |
1_2_00B415CB |
Source: |
Code function: |
1_2_00B4393B |
Source: |
Code function: |
1_2_00B2E9A7 |
Source: |
Queries volume information: |
Jump to behavior | ||
Source: |
Queries volume information: |
Jump to behavior | ||
Source: |
Queries volume information: |
Jump to behavior | ||
Source: |
Queries volume information: |
Jump to behavior | ||
Source: |
Queries volume information: |
Jump to behavior | ||
Source: |
Queries volume information: |
Jump to behavior | ||
Source: |
Queries volume information: |
Jump to behavior | ||
Source: |
Queries volume information: |
Jump to behavior | ||
Source: |
Queries volume information: |
Jump to behavior | ||
Source: |
Queries volume information: |
Jump to behavior | ||
Source: |
Queries volume information: |
Jump to behavior | ||
Source: |
Queries volume information: |
Jump to behavior | ||
Source: |
Queries volume information: |
Jump to behavior | ||
Source: |
Queries volume information: |
Jump to behavior | ||
Source: |
Queries volume information: |
Jump to behavior | ||
Source: |
Queries volume information: |
Jump to behavior |
Source: |
Code function: |
1_2_00B14CE8 |
Source: |
Code function: |
1_2_00B4858F |
Source: |
Code function: |
1_2_00B060BA |
Source: |
Code function: |
1_2_00B48733 |
Source: |
Code function: |
1_2_00B0508D |
Source: |
Key value queried: |
Jump to behavior |