Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0F87369F-A4E5-4CFC-BD3E-73E6154572DD} |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0f87369f-a4e5-4cfc-bd3e-73e6154572dd}\TreatAs |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0f87369f-a4e5-4cfc-bd3e-73e6154572dd}\InprocServer32 |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0f87369f-a4e5-4cfc-bd3e-73e6154572dd}\InprocHandler32 |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0f87369f-a4e5-4cfc-bd3e-73e6154572dd}\InprocHandler |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0F87369F-A4E5-4CFC-BD3E-73E6154572DD} |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0f87369f-a4e5-4cfc-bd3e-73e6154572dd}\TreatAs |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0f87369f-a4e5-4cfc-bd3e-73e6154572dd}\InprocServer32 |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0f87369f-a4e5-4cfc-bd3e-73e6154572dd}\InprocHandler32 |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0f87369f-a4e5-4cfc-bd3e-73e6154572dd}\InprocHandler |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0f87369f-a4e5-4cfc-bd3e-73e6154572dd}\LocalServer32 |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0f87369f-a4e5-4cfc-bd3e-73e6154572dd}\LocalServer |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0F87369F-A4E5-4CFC-BD3E-73E6154572DD} |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0f87369f-a4e5-4cfc-bd3e-73e6154572dd}\Elevation |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0F87369F-A4E5-4CFC-BD3E-73E6154572DD} |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0f87369f-a4e5-4cfc-bd3e-73e6154572dd}\TreatAs |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0F87369F-A4E5-4CFC-BD3E-73E6154572DD} |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0f87369f-a4e5-4cfc-bd3e-73e6154572dd}\TreatAs |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0f87369f-a4e5-4cfc-bd3e-73e6154572dd}\InprocServer32 |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0f87369f-a4e5-4cfc-bd3e-73e6154572dd}\InprocHandler32 |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0f87369f-a4e5-4cfc-bd3e-73e6154572dd}\InprocHandler |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0F87369F-A4E5-4CFC-BD3E-73E6154572DD} |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0f87369f-a4e5-4cfc-bd3e-73e6154572dd}\TreatAs |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0f87369f-a4e5-4cfc-bd3e-73e6154572dd}\InprocServer32 |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0f87369f-a4e5-4cfc-bd3e-73e6154572dd}\InprocHandler32 |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0f87369f-a4e5-4cfc-bd3e-73e6154572dd}\InprocHandler |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0f87369f-a4e5-4cfc-bd3e-73e6154572dd}\LocalServer32 |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0f87369f-a4e5-4cfc-bd3e-73e6154572dd}\LocalServer |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0F87369F-A4E5-4CFC-BD3E-73E6154572DD} |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0f87369f-a4e5-4cfc-bd3e-73e6154572dd}\Elevation |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0F87369F-A4E5-4CFC-BD3E-73E6154572DD} |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{0f87369f-a4e5-4cfc-bd3e-73e6154572dd}\TreatAs |
Jump to behavior |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.255.0.191 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_00DDC51E SendMessageW,UpdateWindow,GetKeyState,GetKeyState,GetKeyState,GetParent,PostMessageW, |
0_2_00DDC51E |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_00DE688A IsWindow,SendMessageW,GetCapture,GetKeyState,GetKeyState,GetKeyState,ImmGetContext,ImmGetOpenStatus,ImmReleaseContext,GetFocus,IsWindow,IsWindow,IsWindow,ClientToScreen,IsWindow,ClientToScreen, |
0_2_00DE688A |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_00E50863 GetWindowRect,GetKeyState,GetKeyState,GetKeyState,KillTimer,GetFocus,SetTimer, |
0_2_00E50863 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_00E209E6 GetKeyState,GetKeyState,GetKeyState,GetKeyState, |
0_2_00E209E6 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_00DE49CC IsWindow,SendMessageW,GetCapture,GetKeyState,GetKeyState,GetKeyState,ImmGetContext,ImmGetOpenStatus,ImmReleaseContext,GetFocus,IsWindow,IsWindow,IsWindow,ClientToScreen,IsWindow,ClientToScreen, |
0_2_00DE49CC |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_00DB297D GetKeyState,GetKeyState,GetKeyState,GetKeyState,SendMessageW, |
0_2_00DB297D |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Code function: 1_2_0061C51E SendMessageW,UpdateWindow,GetKeyState,GetKeyState,GetKeyState,GetParent,PostMessageW, |
1_2_0061C51E |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Code function: 1_2_00690863 GetWindowRect,GetKeyState,GetKeyState,GetKeyState,KillTimer,GetFocus,SetTimer, |
1_2_00690863 |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Code function: 1_2_0062688A IsWindow,SendMessageW,GetCapture,GetKeyState,GetKeyState,GetKeyState,ImmGetContext,ImmGetOpenStatus,ImmReleaseContext,GetFocus,IsWindow,IsWindow,IsWindow,ClientToScreen,IsWindow,ClientToScreen, |
1_2_0062688A |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Code function: 1_2_005F297D GetKeyState,GetKeyState,GetKeyState,GetKeyState,SendMessageW, |
1_2_005F297D |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Code function: 1_2_006609E6 GetKeyState,GetKeyState,GetKeyState,GetKeyState, |
1_2_006609E6 |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Code function: 1_2_006249CC IsWindow,SendMessageW,GetCapture,GetKeyState,GetKeyState,GetKeyState,ImmGetContext,ImmGetOpenStatus,ImmReleaseContext,GetFocus,IsWindow,IsWindow,IsWindow,ClientToScreen,IsWindow,ClientToScreen, |
1_2_006249CC |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 3_2_00DDC51E SendMessageW,UpdateWindow,GetKeyState,GetKeyState,GetKeyState,GetParent,PostMessageW, |
3_2_00DDC51E |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 3_2_00DE688A IsWindow,SendMessageW,GetCapture,GetKeyState,GetKeyState,GetKeyState,ImmGetContext,ImmGetOpenStatus,ImmReleaseContext,GetFocus,IsWindow,IsWindow,IsWindow,ClientToScreen,IsWindow,ClientToScreen, |
3_2_00DE688A |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 3_2_00E50863 GetWindowRect,GetKeyState,GetKeyState,GetKeyState,KillTimer,GetFocus,SetTimer, |
3_2_00E50863 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 3_2_00E209E6 GetKeyState,GetKeyState,GetKeyState,GetKeyState, |
3_2_00E209E6 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 3_2_00DE49CC IsWindow,SendMessageW,GetCapture,GetKeyState,GetKeyState,GetKeyState,ImmGetContext,ImmGetOpenStatus,ImmReleaseContext,GetFocus,IsWindow,IsWindow,IsWindow,ClientToScreen,IsWindow,ClientToScreen, |
3_2_00DE49CC |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 3_2_00DB297D GetKeyState,GetKeyState,GetKeyState,GetKeyState,SendMessageW, |
3_2_00DB297D |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_00E3E67D |
0_2_00E3E67D |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_00DEC708 |
0_2_00DEC708 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_00EA6F6B |
0_2_00EA6F6B |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_00DC91C5 |
0_2_00DC91C5 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_00EA98A3 |
0_2_00EA98A3 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_034A0360 |
0_2_034A0360 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_034B21F5 |
0_2_034B21F5 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_034B643A |
0_2_034B643A |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_034B6B16 |
0_2_034B6B16 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_034B0932 |
0_2_034B0932 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_034B0DC7 |
0_2_034B0DC7 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_034B1165 |
0_2_034B1165 |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Code function: 1_2_0067E67D |
1_2_0067E67D |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Code function: 1_2_0062C708 |
1_2_0062C708 |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Code function: 1_2_006E6F6B |
1_2_006E6F6B |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Code function: 1_2_006091C5 |
1_2_006091C5 |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Code function: 1_2_006E98A3 |
1_2_006E98A3 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 3_2_00E3E67D |
3_2_00E3E67D |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 3_2_00DEC708 |
3_2_00DEC708 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 3_2_00EA6F6B |
3_2_00EA6F6B |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 3_2_00DC91C5 |
3_2_00DC91C5 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 3_2_00EA98A3 |
3_2_00EA98A3 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_0349A244 GetCurrentProcess,OpenProcessToken,GetTokenInformation,GetTokenInformation,GetTokenInformation,ImpersonateLoggedOnUser,CloseHandle,CloseHandle,CloseHandle,CloseHandle,OpenProcess,OpenProcessToken,LookupPrivilegeValueW,AdjustTokenPrivileges,AdjustTokenPrivileges,GetLengthSid,SetTokenInformation,TerminateProcess,AdjustTokenPrivileges,CloseHandle,CloseHandle,CloseHandle, |
0_2_0349A244 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_0349A701 AdjustTokenPrivileges, |
0_2_0349A701 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_0349B72C OpenProcessToken,LookupPrivilegeValueW,AdjustTokenPrivileges,GetLastError, |
0_2_0349B72C |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_0349B671 LookupPrivilegeValueW,GetLastError,_wprintf,AdjustTokenPrivileges,GetLastError,_wprintf,GetLastError,_wprintf, |
0_2_0349B671 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_0348A3FD GetCurrentProcess,OpenProcessToken,LookupPrivilegeValueW,AdjustTokenPrivileges,CloseHandle,GetModuleHandleA,GetProcAddress,GetCurrentProcessId,OpenProcess, |
0_2_0348A3FD |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_0349A1C8 LookupPrivilegeValueW,AdjustTokenPrivileges, |
0_2_0349A1C8 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_0348A520 GetCurrentProcess,OpenProcessToken,LookupPrivilegeValueW,AdjustTokenPrivileges, |
0_2_0348A520 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_0348AA41 GetCurrentProcess,OpenProcessToken,LookupPrivilegeValueW,AdjustTokenPrivileges,GetLastError,CloseHandle,CloseHandle, |
0_2_0348AA41 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: apphelp.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: msimg32.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: oledlg.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: winmm.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: oleacc.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: uxtheme.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: dwmapi.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: mswsock.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: napinsp.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: pnrpnsp.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: wshbth.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: nlaapi.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: iphlpapi.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: dnsapi.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: winrnr.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: fwpuclnt.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: rasadhlp.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: dxgi.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: dinput8.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: wininet.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: rstrtmgr.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: ncrypt.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: ntasn1.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: inputhost.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: coremessaging.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: propsys.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: coreuicomponents.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: ntmarta.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: kernel.appcore.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: kernel.appcore.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: taskschd.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: sspicli.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: taskschd.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: xmllite.dll |
Jump to behavior |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Section loaded: apphelp.dll |
Jump to behavior |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Section loaded: msimg32.dll |
Jump to behavior |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Section loaded: oledlg.dll |
Jump to behavior |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Section loaded: winmm.dll |
Jump to behavior |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Section loaded: oleacc.dll |
Jump to behavior |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Section loaded: uxtheme.dll |
Jump to behavior |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Section loaded: dwmapi.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: msimg32.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: oledlg.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: winmm.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: oleacc.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: uxtheme.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Section loaded: dwmapi.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_00DE2018 IsIconic, |
0_2_00DE2018 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_00E222CB IsWindow,IsWindowVisible,GetWindowRect,PtInRect,GetAsyncKeyState,ScreenToClient,IsWindow,IsWindow,IsWindow,GetWindowRect,PtInRect,SendMessageW,PtInRect,SendMessageW,ScreenToClient,PtInRect,GetParent,SendMessageW,GetFocus,WindowFromPoint,SendMessageW,GetSystemMenu,IsMenu,EnableMenuItem,EnableMenuItem,EnableMenuItem,IsZoomed,IsIconic,EnableMenuItem,TrackPopupMenu,SendMessageW, |
0_2_00E222CB |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_00DCCC9C SetRectEmpty,RedrawWindow,ReleaseCapture,SetCapture,ReleaseCapture,SetCapture,SendMessageW,UpdateWindow,SendMessageW,IsWindow,IsIconic,IsZoomed,IsWindow,UpdateWindow, |
0_2_00DCCC9C |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_00DDCD1F IsWindowVisible,IsIconic, |
0_2_00DDCD1F |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_00E22E90 IsIconic,PostMessageW, |
0_2_00E22E90 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_00E20FB1 IsWindow,GetFocus,IsChild,SendMessageW,IsChild,SendMessageW,IsIconic,GetAsyncKeyState,GetAsyncKeyState,GetAsyncKeyState,GetAsyncKeyState,IsWindowVisible, |
0_2_00E20FB1 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_00DA5516 IsIconic,SendMessageW,GetSystemMetrics,GetSystemMetrics,GetSystemMetrics,GetClientRect,DrawIcon,GetWindowRect,ScreenToClient,ScreenToClient,ScreenToClient,GetDC,SelectObject, |
0_2_00DA5516 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_00E21A40 GetSystemMetrics,GetSystemMetrics,GetSystemMetrics,IsIconic,GetWindowRect,IsIconic,GetSystemMetrics,OffsetRect,GetSystemMetrics,IsIconic,GetSystemMetrics,GetSystemMetrics, |
0_2_00E21A40 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_00E21A40 GetSystemMetrics,GetSystemMetrics,GetSystemMetrics,IsIconic,GetWindowRect,IsIconic,GetSystemMetrics,OffsetRect,GetSystemMetrics,IsIconic,GetSystemMetrics,GetSystemMetrics, |
0_2_00E21A40 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_00E21A40 GetSystemMetrics,GetSystemMetrics,GetSystemMetrics,IsIconic,GetWindowRect,IsIconic,GetSystemMetrics,OffsetRect,GetSystemMetrics,IsIconic,GetSystemMetrics,GetSystemMetrics, |
0_2_00E21A40 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_00DF7DE2 GetClientRect,IsRectEmpty,IsIconic,BeginDeferWindowPos,GetClientRect,IsRectEmpty,IsRectEmpty,EqualRect,GetWindowRect,GetParent,EndDeferWindowPos, |
0_2_00DF7DE2 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_00E21D40 IsWindowVisible,ScreenToClient,GetSystemMetrics,GetSystemMetrics,GetSystemMetrics,IsIconic,GetSystemMetrics,PtInRect,GetSystemMetrics,PtInRect,GetSystemMetrics,PtInRect, |
0_2_00E21D40 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_00DE1F74 SetForegroundWindow,IsIconic, |
0_2_00DE1F74 |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Code function: 1_2_00622018 IsIconic, |
1_2_00622018 |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Code function: 1_2_006622CB IsWindow,IsWindowVisible,GetWindowRect,PtInRect,GetAsyncKeyState,ScreenToClient,IsWindow,IsWindow,IsWindow,GetWindowRect,PtInRect,SendMessageW,PtInRect,SendMessageW,ScreenToClient,PtInRect,GetParent,SendMessageW,GetFocus,WindowFromPoint,SendMessageW,GetSystemMenu,IsMenu,EnableMenuItem,EnableMenuItem,EnableMenuItem,IsZoomed,IsIconic,EnableMenuItem,TrackPopupMenu,SendMessageW, |
1_2_006622CB |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Code function: 1_2_0060CC9C SetRectEmpty,RedrawWindow,ReleaseCapture,SetCapture,ReleaseCapture,SetCapture,SendMessageW,UpdateWindow,SendMessageW,IsWindow,IsIconic,IsZoomed,IsWindow,UpdateWindow, |
1_2_0060CC9C |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Code function: 1_2_0061CD1F IsWindowVisible,IsIconic, |
1_2_0061CD1F |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Code function: 1_2_00662E90 IsIconic,PostMessageW, |
1_2_00662E90 |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Code function: 1_2_00660FB1 IsWindow,GetFocus,IsChild,SendMessageW,IsChild,SendMessageW,IsIconic,GetAsyncKeyState,GetAsyncKeyState,GetAsyncKeyState,GetAsyncKeyState,IsWindowVisible, |
1_2_00660FB1 |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Code function: 1_2_005E5516 IsIconic,SendMessageW,GetSystemMetrics,GetSystemMetrics,GetSystemMetrics,GetClientRect,DrawIcon,GetWindowRect,ScreenToClient,ScreenToClient,ScreenToClient,GetDC,SelectObject, |
1_2_005E5516 |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Code function: 1_2_00661A40 GetSystemMetrics,GetSystemMetrics,GetSystemMetrics,IsIconic,GetWindowRect,IsIconic,GetSystemMetrics,OffsetRect,GetSystemMetrics,IsIconic,GetSystemMetrics,GetSystemMetrics, |
1_2_00661A40 |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Code function: 1_2_00661A40 GetSystemMetrics,GetSystemMetrics,GetSystemMetrics,IsIconic,GetWindowRect,IsIconic,GetSystemMetrics,OffsetRect,GetSystemMetrics,IsIconic,GetSystemMetrics,GetSystemMetrics, |
1_2_00661A40 |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Code function: 1_2_00661A40 GetSystemMetrics,GetSystemMetrics,GetSystemMetrics,IsIconic,GetWindowRect,IsIconic,GetSystemMetrics,OffsetRect,GetSystemMetrics,IsIconic,GetSystemMetrics,GetSystemMetrics, |
1_2_00661A40 |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Code function: 1_2_00661D40 IsWindowVisible,ScreenToClient,GetSystemMetrics,GetSystemMetrics,GetSystemMetrics,IsIconic,GetSystemMetrics,PtInRect,GetSystemMetrics,PtInRect,GetSystemMetrics,PtInRect, |
1_2_00661D40 |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Code function: 1_2_00637DE2 GetClientRect,IsRectEmpty,IsIconic,BeginDeferWindowPos,GetClientRect,IsRectEmpty,IsRectEmpty,EqualRect,GetWindowRect,GetParent,EndDeferWindowPos, |
1_2_00637DE2 |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Code function: 1_2_00621F74 SetForegroundWindow,IsIconic, |
1_2_00621F74 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 3_2_00DE2018 IsIconic, |
3_2_00DE2018 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 3_2_00E222CB IsWindow,IsWindowVisible,GetWindowRect,PtInRect,GetAsyncKeyState,ScreenToClient,IsWindow,IsWindow,IsWindow,GetWindowRect,PtInRect,SendMessageW,PtInRect,SendMessageW,ScreenToClient,PtInRect,GetParent,SendMessageW,GetFocus,WindowFromPoint,SendMessageW,GetSystemMenu,IsMenu,EnableMenuItem,EnableMenuItem,EnableMenuItem,IsZoomed,IsIconic,EnableMenuItem,TrackPopupMenu,SendMessageW, |
3_2_00E222CB |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 3_2_00DCCC9C SetRectEmpty,RedrawWindow,ReleaseCapture,SetCapture,ReleaseCapture,SetCapture,SendMessageW,UpdateWindow,SendMessageW,IsWindow,IsIconic,IsZoomed,IsWindow,UpdateWindow, |
3_2_00DCCC9C |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 3_2_00DDCD1F IsWindowVisible,IsIconic, |
3_2_00DDCD1F |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 3_2_00E22E90 IsIconic,PostMessageW, |
3_2_00E22E90 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 3_2_00E20FB1 IsWindow,GetFocus,IsChild,SendMessageW,IsChild,SendMessageW,IsIconic,GetAsyncKeyState,GetAsyncKeyState,GetAsyncKeyState,GetAsyncKeyState,IsWindowVisible, |
3_2_00E20FB1 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 3_2_00DA5516 IsIconic,SendMessageW,GetSystemMetrics,GetSystemMetrics,GetSystemMetrics,GetClientRect,DrawIcon,GetWindowRect,ScreenToClient,ScreenToClient,ScreenToClient,GetDC,SelectObject, |
3_2_00DA5516 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 3_2_00E21A40 GetSystemMetrics,GetSystemMetrics,GetSystemMetrics,IsIconic,GetWindowRect,IsIconic,GetSystemMetrics,OffsetRect,GetSystemMetrics,IsIconic,GetSystemMetrics,GetSystemMetrics, |
3_2_00E21A40 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 3_2_00E21A40 GetSystemMetrics,GetSystemMetrics,GetSystemMetrics,IsIconic,GetWindowRect,IsIconic,GetSystemMetrics,OffsetRect,GetSystemMetrics,IsIconic,GetSystemMetrics,GetSystemMetrics, |
3_2_00E21A40 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 3_2_00E21A40 GetSystemMetrics,GetSystemMetrics,GetSystemMetrics,IsIconic,GetWindowRect,IsIconic,GetSystemMetrics,OffsetRect,GetSystemMetrics,IsIconic,GetSystemMetrics,GetSystemMetrics, |
3_2_00E21A40 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 3_2_00DF7DE2 GetClientRect,IsRectEmpty,IsIconic,BeginDeferWindowPos,GetClientRect,IsRectEmpty,IsRectEmpty,EqualRect,GetWindowRect,GetParent,EndDeferWindowPos, |
3_2_00DF7DE2 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 3_2_00E21D40 IsWindowVisible,ScreenToClient,GetSystemMetrics,GetSystemMetrics,GetSystemMetrics,IsIconic,GetSystemMetrics,PtInRect,GetSystemMetrics,PtInRect,GetSystemMetrics,PtInRect, |
3_2_00E21D40 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 3_2_00DE1F74 SetForegroundWindow,IsIconic, |
3_2_00DE1F74 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_00EA47AC IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter,GetCurrentProcess,TerminateProcess, |
0_2_00EA47AC |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_00EABBA1 _memset,IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter, |
0_2_00EABBA1 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_0349B9E1 GetCurrentProcess,OpenProcessToken,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,GetCurrentProcess,SetConsoleCtrlHandler,CreateThread,Sleep,CloseHandle,SetUnhandledExceptionFilter,CloseHandle,Sleep,Sleep,Sleep,RegOpenKeyExW,RegQueryValueExW,Sleep,WaitForSingleObject,CloseHandle,Sleep,WaitForSingleObject,CloseHandle,Sleep, |
0_2_0349B9E1 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_034A66AE _memset,IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter, |
0_2_034A66AE |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 0_2_0349F3F0 IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter,GetCurrentProcess,TerminateProcess, |
0_2_0349F3F0 |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Code function: 1_2_006E47AC IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter,GetCurrentProcess,TerminateProcess, |
1_2_006E47AC |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Code function: 1_2_006EBBA1 _memset,IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter, |
1_2_006EBBA1 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 3_2_00EA47AC IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter,GetCurrentProcess,TerminateProcess, |
3_2_00EA47AC |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: 3_2_00EABBA1 _memset,IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter, |
3_2_00EABBA1 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: GetLocaleInfoW,__snwprintf_s,LoadLibraryW, |
0_2_00DA7502 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: __EH_prolog3_GS,GetNumberFormatW,GetLocaleInfoW,lstrlenW, |
0_2_00DFDD6C |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: __getptd,_LcidFromHexString,GetLocaleInfoA, |
0_2_034B030B |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: GetLocaleInfoW,_GetPrimaryLen,_strlen, |
0_2_034B03B2 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: GetLocaleInfoW,GetLocaleInfoW,GetACP, |
0_2_034B0216 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: _memset,_memset,MultiByteToWideChar,MultiByteToWideChar,MultiByteToWideChar,MultiByteToWideChar,GetSystemInfo,wsprintfW,lstrlenW,lstrlenW,wsprintfW,GetCurrentProcessId,GetTickCount,wsprintfW,GetLocaleInfoW,GetSystemDirectoryW,GetCurrentHwProfileW, |
0_2_03488189 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: __getptd,_TranslateName,_GetLcidFromLangCountry,_GetLcidFromLanguage,_TranslateName,_GetLcidFromLangCountry,_GetLcidFromLanguage,_strlen,EnumSystemLocalesA,GetUserDefaultLCID,IsValidCodePage,IsValidLocale,GetLocaleInfoA,_strcpy_s,__invoke_watson,GetLocaleInfoA,GetLocaleInfoA,__itow_s, |
0_2_034B0741 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: _strlen,_GetPrimaryLen,EnumSystemLocalesA, |
0_2_034B0705 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: _strlen,_strlen,_GetPrimaryLen,EnumSystemLocalesA, |
0_2_034B069E |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: __getptd,_LcidFromHexString,GetLocaleInfoA,_TestDefaultLanguage, |
0_2_034B05DE |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: __getptd,_LcidFromHexString,GetLocaleInfoA,GetLocaleInfoA,GetLocaleInfoA,_strlen,GetLocaleInfoA,_strlen,_TestDefaultLanguage, |
0_2_034B040D |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: GetLocaleInfoA,_LocaleUpdate::_LocaleUpdate,___ascii_strnicmp,__tolower_l,__tolower_l, |
0_2_034B524D |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: GetLocaleInfoA, |
0_2_034A5648 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: _LocaleUpdate::_LocaleUpdate,__crtGetLocaleInfoA_stat, |
0_2_034B3515 |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Code function: GetLocaleInfoW,__snwprintf_s,LoadLibraryW, |
1_2_005E7502 |
Source: C:\ProgramData\StartMenuExperienceHos.exe |
Code function: __EH_prolog3_GS,GetNumberFormatW,GetLocaleInfoW,lstrlenW, |
1_2_0063DD6C |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: GetLocaleInfoW,__snwprintf_s,LoadLibraryW, |
3_2_00DA7502 |
Source: C:\Users\user\Desktop\Wt3pGldAnr.exe |
Code function: __EH_prolog3_GS,GetNumberFormatW,GetLocaleInfoW,lstrlenW, |
3_2_00DFDD6C |