Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00D88050 BCryptGenRandom,GetCurrentProcessId,BCryptGenRandom,CreateNamedPipeW,GetLastError,BCryptGenRandom,CloseHandle,BCryptGenRandom, |
0_2_00D88050 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00000001400665F0 GetSystemTimeAsFileTime,GetCurrentProcessId,GetCurrentThreadId,GlobalMemoryStatusEx,GetDiskFreeSpaceExW,GetSystemTimes,QueryPerformanceCounter,CryptAcquireContextW,CryptGenRandom,CryptReleaseContext, |
0_2_00000001400665F0 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00DA7508 FindFirstFileExW, |
0_2_00DA7508 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00D86720 CloseHandle,FindFirstFileW,FindClose, |
0_2_00D86720 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00000001400643B0 FindFirstFileExW,GetLastError,PathMatchSpecW,FindNextFileW,GetLastError,FindClose, |
0_2_00000001400643B0 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 92.118.112.89 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00D87080 NtReadFile,WaitForSingleObject,RtlNtStatusToDosError, |
0_2_00D87080 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00D871E0 NtWriteFile,WaitForSingleObject,RtlNtStatusToDosError, |
0_2_00D871E0 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00DB1438 NtWriteFile, |
0_2_00DB1438 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_000000014004A2A0 NtSetInformationThread,NtSetInformationThread,NtSetInformationThread,EnterCriticalSection,LeaveCriticalSection, |
0_2_000000014004A2A0 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_000000014006B700 NtQueryKey, |
0_2_000000014006B700 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_000000014006B960 RegCloseKey,SetLastError,RegSetValueExW,RegCloseKey,SetLastError,NtClose, |
0_2_000000014006B960 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140043E70 GetThreadPriority,SetThreadPriority,NtSetInformationThread,NtSetInformationThread, |
0_2_0000000140043E70 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00D9F080 |
0_2_00D9F080 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00D88050 |
0_2_00D88050 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00D91120 |
0_2_00D91120 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00D9C120 |
0_2_00D9C120 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00D7E350 |
0_2_00D7E350 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00D8E340 |
0_2_00D8E340 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00D9B330 |
0_2_00D9B330 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00D76410 |
0_2_00D76410 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00DA7508 |
0_2_00DA7508 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00D937F0 |
0_2_00D937F0 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00D92790 |
0_2_00D92790 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00D9B710 |
0_2_00D9B710 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00D8E840 |
0_2_00D8E840 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00D89A90 |
0_2_00D89A90 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00D9EAA0 |
0_2_00D9EAA0 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00DADDA8 |
0_2_00DADDA8 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00D98D10 |
0_2_00D98D10 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00D94D00 |
0_2_00D94D00 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00D9AEB0 |
0_2_00D9AEB0 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140011240 |
0_2_0000000140011240 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00000001400A7268 |
0_2_00000001400A7268 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140001270 |
0_2_0000000140001270 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00000001400A5290 |
0_2_00000001400A5290 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00000001400643B0 |
0_2_00000001400643B0 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00000001400683F0 |
0_2_00000001400683F0 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140012460 |
0_2_0000000140012460 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140098480 |
0_2_0000000140098480 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00000001400A3478 |
0_2_00000001400A3478 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00000001400A84BC |
0_2_00000001400A84BC |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00000001400A14F0 |
0_2_00000001400A14F0 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140030560 |
0_2_0000000140030560 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_000000014004A5E0 |
0_2_000000014004A5E0 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00000001400085E0 |
0_2_00000001400085E0 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00000001400665F0 |
0_2_00000001400665F0 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00000001400925F8 |
0_2_00000001400925F8 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140053620 |
0_2_0000000140053620 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140088640 |
0_2_0000000140088640 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_000000014004E660 |
0_2_000000014004E660 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00000001400546B0 |
0_2_00000001400546B0 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00000001400446F0 |
0_2_00000001400446F0 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_000000014004E701 |
0_2_000000014004E701 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140049720 |
0_2_0000000140049720 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_000000014009473C |
0_2_000000014009473C |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_000000014009D7A4 |
0_2_000000014009D7A4 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00000001400927E0 |
0_2_00000001400927E0 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140011820 |
0_2_0000000140011820 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140046860 |
0_2_0000000140046860 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00000001400338F0 |
0_2_00000001400338F0 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00000001400048F0 |
0_2_00000001400048F0 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00000001400A2948 |
0_2_00000001400A2948 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00000001400929CC |
0_2_00000001400929CC |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_000000014000E9F0 |
0_2_000000014000E9F0 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140093A34 |
0_2_0000000140093A34 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140063A90 |
0_2_0000000140063A90 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_000000014009EAA8 |
0_2_000000014009EAA8 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140094B08 |
0_2_0000000140094B08 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140092BB4 |
0_2_0000000140092BB4 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140038BE0 |
0_2_0000000140038BE0 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140002C20 |
0_2_0000000140002C20 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00000001400AFC60 |
0_2_00000001400AFC60 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140049D20 |
0_2_0000000140049D20 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140039D20 |
0_2_0000000140039D20 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140003D30 |
0_2_0000000140003D30 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140092DA0 |
0_2_0000000140092DA0 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140093DC4 |
0_2_0000000140093DC4 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140012DE0 |
0_2_0000000140012DE0 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_000000014005CE00 |
0_2_000000014005CE00 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00000001400A2DF8 |
0_2_00000001400A2DF8 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140041E20 |
0_2_0000000140041E20 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_000000014004CF30 |
0_2_000000014004CF30 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140031F30 |
0_2_0000000140031F30 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_000000014006CF60 |
0_2_000000014006CF60 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_000000014003CF90 |
0_2_000000014003CF90 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140092F88 |
0_2_0000000140092F88 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140009F90 |
0_2_0000000140009F90 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140018FC0 |
0_2_0000000140018FC0 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140053620 OpenSCManagerW,OpenServiceW,QueryServiceStatus,RegCloseKey,SetLastError,RegCloseKey,SetLastError,RegCloseKey,SetLastError,RegCloseKey,SetLastError,StartServiceW,GetLastError,Sleep,QueryServiceStatus,CloseServiceHandle,CloseServiceHandle,CloseServiceHandle,CloseServiceHandle,GetLastError,GetLastError,GetLastError,GetLastError,GetLastError, |
0_2_0000000140053620 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00DA7508 FindFirstFileExW, |
0_2_00DA7508 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00D86720 CloseHandle,FindFirstFileW,FindClose, |
0_2_00D86720 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00000001400643B0 FindFirstFileExW,GetLastError,PathMatchSpecW,FindNextFileW,GetLastError,FindClose, |
0_2_00000001400643B0 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00DB13A8 SetUnhandledExceptionFilter, |
0_2_00DB13A8 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00DA1494 IsProcessorFeaturePresent,RtlCaptureContext,RtlLookupFunctionEntry,RtlVirtualUnwind,IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter, |
0_2_00DA1494 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00DA6ACC RtlCaptureContext,RtlLookupFunctionEntry,RtlVirtualUnwind,IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter, |
0_2_00DA6ACC |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_00000001400912F0 RtlCaptureContext,RtlLookupFunctionEntry,RtlVirtualUnwind,IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter, |
0_2_00000001400912F0 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: 0_2_0000000140081F98 SetUnhandledExceptionFilter,UnhandledExceptionFilter,GetCurrentProcess,TerminateProcess, |
0_2_0000000140081F98 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: EnumSystemLocalesW, |
0_2_00000001400A3FF4 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: EnumSystemLocalesW, |
0_2_00000001400AD238 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: EnumSystemLocalesW, |
0_2_00000001400AD308 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: GetLocaleInfoW, |
0_2_00000001400A43A0 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: GetLocaleInfoEx,FormatMessageA, |
0_2_00000001400816D0 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: GetLocaleInfoW,GetLocaleInfoW,GetACP, |
0_2_00000001400AD748 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: EnumSystemLocalesW,GetUserDefaultLCID,ProcessCodePage,IsValidCodePage,IsValidLocale,GetLocaleInfoW,GetLocaleInfoW, |
0_2_00000001400AD924 |
Source: C:\Users\user\Desktop\file.bin.exe |
Code function: TranslateName,TranslateName,GetACP,IsValidCodePage,GetLocaleInfoW, |
0_2_00000001400ACEE8 |