Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_00419489 __EH_prolog3_GS,FindFirstFileW,RemoveDirectoryW,SetFileAttributesW,DeleteFileW,PathFileExistsW,DeleteFileW,FindNextFileW,FindClose,RemoveDirectoryW, |
7_2_00419489 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_00435580 FindResourceW,_memcpy_s,FindFirstFileW,FindFirstFileW,FindClose,FindNextFileW, |
7_2_00435580 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_004896E0 DeleteFileW,_memset,FindFirstFileW,FindClose, |
7_2_004896E0 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_00435810 FindFirstFileW, |
7_2_00435810 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_0048A850 FindFirstFileW,FindFirstFileW,FindClose,FindNextFileW, |
7_2_0048A850 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_0042B5DA _memset,FindFirstFileW, |
7_2_0042B5DA |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_0042BC41 __EH_prolog3_catch,_memset,FindFirstFileW,FindNextFileW, |
7_2_0042BC41 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_00427E12 FindFirstFileW,UuidFromStringW,FindNextFileW,FindClose, |
7_2_00427E12 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_00419489 __EH_prolog3_GS,FindFirstFileW,RemoveDirectoryW,SetFileAttributesW,DeleteFileW,PathFileExistsW,DeleteFileW,FindNextFileW,FindClose,RemoveDirectoryW, |
8_2_00419489 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_00435580 FindResourceW,_memcpy_s,FindFirstFileW,FindFirstFileW,FindClose,FindNextFileW, |
8_2_00435580 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_004896E0 DeleteFileW,_memset,FindFirstFileW,FindClose, |
8_2_004896E0 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_00435810 FindFirstFileW, |
8_2_00435810 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_0048A850 FindFirstFileW,FindFirstFileW,FindClose,FindNextFileW, |
8_2_0048A850 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_0042B5DA _memset,FindFirstFileW, |
8_2_0042B5DA |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_0042BC41 __EH_prolog3_catch,_memset,FindFirstFileW,FindNextFileW, |
8_2_0042BC41 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_00427E12 FindFirstFileW,UuidFromStringW,FindNextFileW,FindClose, |
8_2_00427E12 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_00549489 __EH_prolog3_GS,FindFirstFileW,RemoveDirectoryW,SetFileAttributesW,DeleteFileW,PathFileExistsW,DeleteFileW,FindNextFileW,FindClose,RemoveDirectoryW, |
14_2_00549489 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_00565580 FindResourceW,_memcpy_s,FindFirstFileW,FindFirstFileW,FindClose,FindNextFileW, |
14_2_00565580 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005B96E0 DeleteFileW,_memset,FindFirstFileW,FindClose, |
14_2_005B96E0 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_00565810 FindFirstFileW, |
14_2_00565810 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005BA850 FindFirstFileW,FindFirstFileW,FindClose,FindNextFileW, |
14_2_005BA850 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_0055B5DA _memset,FindFirstFileW, |
14_2_0055B5DA |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_0055BC41 __EH_prolog3_catch,_memset,FindFirstFileW,FindNextFileW, |
14_2_0055BC41 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_00557E12 FindFirstFileW,UuidFromStringW,FindNextFileW,FindClose, |
14_2_00557E12 |
Source: SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe, uninstasr.exe.0.dr |
String found in binary or memory: http://advancedsystemrepair.com/EULA.phphttp://advancedsystemrepair.com/Privacy-Policy.phpTXThttp:// |
Source: AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: http://advancedsystemrepair.com/Malware.phpWhat |
Source: AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: http://advancedsystemrepair.com/Privacy-Policy.phphttp://advancedsystemrepair.com/EULA.phphttp://adv |
Source: AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: http://advancedsystemrepair.com/Review-Apps.phphttp://advancedsystemrepair.com/reviews.php1OnTimerAn |
Source: AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: http://advancedsystemrepair.com/Support.phphttps://advancedsystemrepair.com/License-Key-Lookup.php:/ |
Source: AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: http://advancedsystemrepair.com/inapp3_de.phphttp://advancedsystemrepair.com/inapp2_de.phphttp://adv |
Source: SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe, uninstasr.exe.0.dr |
String found in binary or memory: http://advancedsystemrepair.com/privacypolicy.php |
Source: AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: http://asrupdates.com/app_upgrade/asr.php?a=%s&i=%i&r=%i&v=%s&l=%iInstallTime40asrinf%i.iniupdateNot |
Source: tscmon.exe |
String found in binary or memory: http://asrupdates.com/db3/0.db |
Source: tscmon.exe, 00000007.00000000.2413517525.00000000004B7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe, 00000007.00000002.2414253738.00000000004B7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe, 00000008.00000002.2450689049.00000000004B7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe, 00000008.00000000.2426324245.00000000004B7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe, 0000000E.00000002.2509283601.00000000005E7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe, 0000000E.00000000.2508242224.00000000005E7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe.0.dr |
String found in binary or memory: http://asrupdates.com/db3/0.dbhttp://asrupdates.com/db3/1.dbhttp://asrupdates.com/db3/2.db.tmpasrupd |
Source: tscmon.exe |
String found in binary or memory: http://asrupdates.com/db3/1.db |
Source: tscmon.exe |
String found in binary or memory: http://asrupdates.com/db3/2.db |
Source: AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: http://asrupdates.com/wr/view_d3.php?id=%iVideoLocal |
Source: Microsoft.Deployment.WindowsInstaller.dll.0.dr |
String found in binary or memory: http://cacerts.digicert.com/DigiCertAssuredIDRootCA.crt0 |
Source: tscmon.exe, 0000000E.00000002.2509832271.0000000001395000.00000004.00000020.00020000.00000000.sdmp, SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe, asrdmon.sys.14.dr, tscmon.exe.0.dr, InfExtractor.dll.0.dr, AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: http://cacerts.digicert.com/DigiCertHighAssuranceCodeSigningCA-1.crt0 |
Source: tscmon.exe, 0000000E.00000002.2509832271.0000000001395000.00000004.00000020.00020000.00000000.sdmp, SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe, asrdmon.sys.14.dr, tscmon.exe.0.dr, InfExtractor.dll.0.dr, AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: http://cacerts.digicert.com/DigiCertHighAssuranceEVRootCA.crt0 |
Source: Microsoft.Deployment.WindowsInstaller.dll.0.dr |
String found in binary or memory: http://cacerts.digicert.com/DigiCertSHA2AssuredIDCodeSigningCA.crt0 |
Source: tscmon.exe, 0000000E.00000002.2509832271.0000000001395000.00000004.00000020.00020000.00000000.sdmp, SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe, asrdmon.sys.14.dr, tscmon.exe.0.dr, InfExtractor.dll.0.dr, AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: http://crl.thawte.com/ThawteTimestampingCA.crl0 |
Source: Microsoft.Deployment.WindowsInstaller.dll.0.dr |
String found in binary or memory: http://crl3.digicert.com/DigiCertAssuredIDRootCA.crl0O |
Source: tscmon.exe, 0000000E.00000002.2509832271.0000000001395000.00000004.00000020.00020000.00000000.sdmp, SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe, asrdmon.sys.14.dr, tscmon.exe.0.dr, InfExtractor.dll.0.dr, AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: http://crl3.digicert.com/DigiCertHighAssuranceEVRootCA.crl0 |
Source: tscmon.exe, 0000000E.00000002.2509832271.0000000001395000.00000004.00000020.00020000.00000000.sdmp, SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe, asrdmon.sys.14.dr, tscmon.exe.0.dr, InfExtractor.dll.0.dr, AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: http://crl3.digicert.com/ha-cs-2011a.crl0. |
Source: Microsoft.Deployment.WindowsInstaller.dll.0.dr |
String found in binary or memory: http://crl3.digicert.com/sha2-assured-cs-g1.crl05 |
Source: Microsoft.Deployment.WindowsInstaller.dll.0.dr |
String found in binary or memory: http://crl4.digicert.com/DigiCertAssuredIDRootCA.crl0: |
Source: tscmon.exe, 0000000E.00000002.2509832271.0000000001395000.00000004.00000020.00020000.00000000.sdmp, SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe, asrdmon.sys.14.dr, tscmon.exe.0.dr, InfExtractor.dll.0.dr, AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: http://crl4.digicert.com/DigiCertHighAssuranceEVRootCA.crl0 |
Source: tscmon.exe, 0000000E.00000002.2509832271.0000000001395000.00000004.00000020.00020000.00000000.sdmp, SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe, asrdmon.sys.14.dr, tscmon.exe.0.dr, InfExtractor.dll.0.dr, AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: http://crl4.digicert.com/ha-cs-2011a.crl0L |
Source: Microsoft.Deployment.WindowsInstaller.dll.0.dr |
String found in binary or memory: http://crl4.digicert.com/sha2-assured-cs-g1.crl0L |
Source: Microsoft.Deployment.WindowsInstaller.dll.0.dr |
String found in binary or memory: http://ocsp.digicert.com0C |
Source: tscmon.exe, 0000000E.00000002.2509832271.0000000001395000.00000004.00000020.00020000.00000000.sdmp, SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe, asrdmon.sys.14.dr, tscmon.exe.0.dr, InfExtractor.dll.0.dr, AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: http://ocsp.digicert.com0I |
Source: Microsoft.Deployment.WindowsInstaller.dll.0.dr |
String found in binary or memory: http://ocsp.digicert.com0N |
Source: tscmon.exe, 0000000E.00000002.2509832271.0000000001395000.00000004.00000020.00020000.00000000.sdmp, SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe, asrdmon.sys.14.dr, tscmon.exe.0.dr, InfExtractor.dll.0.dr, AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: http://ocsp.digicert.com0P |
Source: tscmon.exe, 0000000E.00000002.2509832271.0000000001395000.00000004.00000020.00020000.00000000.sdmp, SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe, asrdmon.sys.14.dr, tscmon.exe.0.dr, InfExtractor.dll.0.dr, AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: http://ocsp.thawte.com0 |
Source: AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: http://qt.digia.com/ |
Source: AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: http://qt.digia.com/product/licensing |
Source: Microsoft.Deployment.WindowsInstaller.dll.0.dr |
String found in binary or memory: http://s.symcb.com/universal-root.crl0 |
Source: Microsoft.Deployment.WindowsInstaller.dll.0.dr |
String found in binary or memory: http://s.symcd.com06 |
Source: Microsoft.Deployment.WindowsInstaller.dll.0.dr |
String found in binary or memory: http://ts-aia.ws.symantec.com/sha256-tss-ca.cer0( |
Source: tscmon.exe, 0000000E.00000002.2509832271.0000000001395000.00000004.00000020.00020000.00000000.sdmp, SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe, asrdmon.sys.14.dr, tscmon.exe.0.dr, InfExtractor.dll.0.dr, AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: http://ts-aia.ws.symantec.com/tss-ca-g2.cer0 |
Source: Microsoft.Deployment.WindowsInstaller.dll.0.dr |
String found in binary or memory: http://ts-crl.ws.symantec.com/sha256-tss-ca.crl0 |
Source: tscmon.exe, 0000000E.00000002.2509832271.0000000001395000.00000004.00000020.00020000.00000000.sdmp, SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe, asrdmon.sys.14.dr, tscmon.exe.0.dr, InfExtractor.dll.0.dr, AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: http://ts-crl.ws.symantec.com/tss-ca-g2.crl0( |
Source: tscmon.exe, 0000000E.00000002.2509832271.0000000001395000.00000004.00000020.00020000.00000000.sdmp, SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe, asrdmon.sys.14.dr, tscmon.exe.0.dr, InfExtractor.dll.0.dr, AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: http://ts-ocsp.ws.symantec.com07 |
Source: Microsoft.Deployment.WindowsInstaller.dll.0.dr |
String found in binary or memory: http://ts-ocsp.ws.symantec.com0; |
Source: Microsoft.Deployment.WindowsInstaller.dll.0.dr |
String found in binary or memory: http://wixtoolset.org/Whttp://wixtoolset.org/telemetry/v |
Source: Microsoft.Deployment.WindowsInstaller.dll.0.dr |
String found in binary or memory: http://wixtoolset.org/news/ |
Source: uninstasr.exe.0.dr |
String found in binary or memory: http://www.advancedsystemrepair.com. |
Source: tscmon.exe, 0000000E.00000002.2509832271.0000000001395000.00000004.00000020.00020000.00000000.sdmp, SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe, asrdmon.sys.14.dr, tscmon.exe.0.dr, InfExtractor.dll.0.dr, AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: http://www.digicert.com/ssl-cps-repository.htm0 |
Source: AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: http://www.westcoastlabs.com/about-us/https://advancedsystemrepair.com/ASR-Antimalware-Checkmark-Cer |
Source: SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe, uninstasr.exe.0.dr |
String found in binary or memory: http://www.winimage.com/zLibDll |
Source: SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe, uninstasr.exe.0.dr |
String found in binary or memory: http://www.winimage.com/zLibDll1.2.3rbr |
Source: AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: https://advancedsystemrepair.com/Purchase/ASR-german-Upgrade-m7.php |
Source: AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: https://advancedsystemrepair.com/certifications/Proof.phphttps://advancedsystemrepair.com/ASR_DLL_Ex |
Source: AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: https://advancedsystemrepair.com/reg-premium-de.phphttps://advancedsystemrepair.com/reg-premium7-de. |
Source: AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: https://advancedsystemrepair.com/reg-premium-pro-de.phphttps://advancedsystemrepair.com/reg-premium- |
Source: AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: https://advancedsystemrepair.com/thank-you-page-german-t.php?id=%sSelect |
Source: Microsoft.Deployment.WindowsInstaller.dll.0.dr |
String found in binary or memory: https://d.symcb.com/cps0% |
Source: Microsoft.Deployment.WindowsInstaller.dll.0.dr |
String found in binary or memory: https://d.symcb.com/rpa0 |
Source: Microsoft.Deployment.WindowsInstaller.dll.0.dr |
String found in binary or memory: https://d.symcb.com/rpa0. |
Source: tscmon.exe, 0000000E.00000002.2509832271.0000000001395000.00000004.00000020.00020000.00000000.sdmp, SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe, asrdmon.sys.14.dr, tscmon.exe.0.dr, InfExtractor.dll.0.dr, Microsoft.Deployment.WindowsInstaller.dll.0.dr, AdvancedSystemRepairPro.exe.0.dr |
String found in binary or memory: https://www.digicert.com/CPS0 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_00425E22 GetFileAttributesW,GetLastError,ImpersonateLoggedOnUser,RevertToSelf,CreateFileW,GetLastError,ImpersonateLoggedOnUser,RevertToSelf,GetProcAddress,NtQueryInformationFile,CloseHandle,DeleteFileW,SetFileAttributesW,DeleteFileW,ImpersonateLoggedOnUser,RevertToSelf, |
7_2_00425E22 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_00426470 RtlInitUnicodeString,NtCreateFile,NtQueryInformationFile,RtlNtStatusToDosError,SetLastError,CloseHandle,RtlNtStatusToDosError,SetLastError, |
7_2_00426470 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_0042651D RtlInitUnicodeString,NtCreateFile,NtQueryInformationFile,NtSetInformationFile,RtlNtStatusToDosError,SetLastError,CloseHandle, |
7_2_0042651D |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_004265D2 RtlInitUnicodeString,NtCreateFile,NtSetInformationFile,CloseHandle,RtlNtStatusToDosError,SetLastError,RtlNtStatusToDosError,SetLastError, |
7_2_004265D2 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_00426682 RtlInitUnicodeString,NtCreateFile,RtlNtStatusToDosError,SetLastError, |
7_2_00426682 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_00425E22 GetFileAttributesW,GetLastError,ImpersonateLoggedOnUser,RevertToSelf,CreateFileW,GetLastError,ImpersonateLoggedOnUser,RevertToSelf,GetProcAddress,NtQueryInformationFile,CloseHandle,DeleteFileW,SetFileAttributesW,DeleteFileW,ImpersonateLoggedOnUser,RevertToSelf, |
8_2_00425E22 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_00426470 RtlInitUnicodeString,NtCreateFile,NtQueryInformationFile,RtlNtStatusToDosError,SetLastError,CloseHandle,RtlNtStatusToDosError,SetLastError, |
8_2_00426470 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_0042651D RtlInitUnicodeString,NtCreateFile,NtQueryInformationFile,NtSetInformationFile,RtlNtStatusToDosError,SetLastError,CloseHandle, |
8_2_0042651D |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_004265D2 RtlInitUnicodeString,NtCreateFile,NtSetInformationFile,CloseHandle,RtlNtStatusToDosError,SetLastError,RtlNtStatusToDosError,SetLastError, |
8_2_004265D2 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_00426682 RtlInitUnicodeString,NtCreateFile,RtlNtStatusToDosError,SetLastError, |
8_2_00426682 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005B6D40 RegCreateKeyExW,_malloc,_memset,GetProcAddress,NtLoadDriver, |
14_2_005B6D40 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_00555E22 GetFileAttributesW,GetLastError,ImpersonateLoggedOnUser,RevertToSelf,CreateFileW,GetLastError,ImpersonateLoggedOnUser,RevertToSelf,GetProcAddress,NtQueryInformationFile,CloseHandle,DeleteFileW,SetFileAttributesW,DeleteFileW,ImpersonateLoggedOnUser,RevertToSelf, |
14_2_00555E22 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_00556470 RtlInitUnicodeString,NtCreateFile,NtQueryInformationFile,RtlNtStatusToDosError,SetLastError,CloseHandle,RtlNtStatusToDosError,SetLastError, |
14_2_00556470 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_0055651D RtlInitUnicodeString,NtCreateFile,NtQueryInformationFile,NtSetInformationFile,RtlNtStatusToDosError,SetLastError,CloseHandle, |
14_2_0055651D |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005565D2 RtlInitUnicodeString,NtCreateFile,NtSetInformationFile,CloseHandle,RtlNtStatusToDosError,SetLastError,RtlNtStatusToDosError,SetLastError, |
14_2_005565D2 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_00556682 RtlInitUnicodeString,NtCreateFile,RtlNtStatusToDosError,SetLastError, |
14_2_00556682 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005B6DD9 GetProcAddress,NtLoadDriver, |
14_2_005B6DD9 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_004A8048 |
7_2_004A8048 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_00454034 |
7_2_00454034 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_004A80E1 |
7_2_004A80E1 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_004A4159 |
7_2_004A4159 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_0047C2D8 |
7_2_0047C2D8 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_0045C680 |
7_2_0045C680 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_004406A4 |
7_2_004406A4 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_00478847 |
7_2_00478847 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_0049CBEF |
7_2_0049CBEF |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_00460DFF |
7_2_00460DFF |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_0049D0C4 |
7_2_0049D0C4 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_0049D498 |
7_2_0049D498 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_004AD697 |
7_2_004AD697 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_0049D8A4 |
7_2_0049D8A4 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_00469BA2 |
7_2_00469BA2 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_0049DCC4 |
7_2_0049DCC4 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_004A9CF6 |
7_2_004A9CF6 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_0048DD10 |
7_2_0048DD10 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_004AA0D4 |
7_2_004AA0D4 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_004A208A |
7_2_004A208A |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_00466452 |
7_2_00466452 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_004A25CE |
7_2_004A25CE |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_004A6614 |
7_2_004A6614 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_004A2B12 |
7_2_004A2B12 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_004A6E56 |
7_2_004A6E56 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_00432FE0 |
7_2_00432FE0 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_0043B0C0 |
7_2_0043B0C0 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_0047B1C5 |
7_2_0047B1C5 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_0044F1B0 |
7_2_0044F1B0 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_004A320A |
7_2_004A320A |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_004A7647 |
7_2_004A7647 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_004939D1 |
7_2_004939D1 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_0046FCBB |
7_2_0046FCBB |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_004A8048 |
8_2_004A8048 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_00454034 |
8_2_00454034 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_004A80E1 |
8_2_004A80E1 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_004A4159 |
8_2_004A4159 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_0047C2D8 |
8_2_0047C2D8 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_0045C680 |
8_2_0045C680 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_004406A4 |
8_2_004406A4 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_00478847 |
8_2_00478847 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_0049CBEF |
8_2_0049CBEF |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_00460DFF |
8_2_00460DFF |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_0049D0C4 |
8_2_0049D0C4 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_0049D498 |
8_2_0049D498 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_004AD697 |
8_2_004AD697 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_0049D8A4 |
8_2_0049D8A4 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_00469BA2 |
8_2_00469BA2 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_0049DCC4 |
8_2_0049DCC4 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_004A9CF6 |
8_2_004A9CF6 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_0048DD10 |
8_2_0048DD10 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_004AA0D4 |
8_2_004AA0D4 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_004A208A |
8_2_004A208A |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_00466452 |
8_2_00466452 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_004A25CE |
8_2_004A25CE |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_004A6614 |
8_2_004A6614 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_004A2B12 |
8_2_004A2B12 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_004A6E56 |
8_2_004A6E56 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_00432FE0 |
8_2_00432FE0 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_0043B0C0 |
8_2_0043B0C0 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_0047B1C5 |
8_2_0047B1C5 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_0044F1B0 |
8_2_0044F1B0 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_004A320A |
8_2_004A320A |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_004A7647 |
8_2_004A7647 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_004939D1 |
8_2_004939D1 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_0046FCBB |
8_2_0046FCBB |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_00584034 |
14_2_00584034 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005D80E1 |
14_2_005D80E1 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005D4159 |
14_2_005D4159 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005AC2D8 |
14_2_005AC2D8 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_0058C680 |
14_2_0058C680 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005706A4 |
14_2_005706A4 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005A8847 |
14_2_005A8847 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005CCBEF |
14_2_005CCBEF |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_00590DFF |
14_2_00590DFF |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005CD0C4 |
14_2_005CD0C4 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005CD498 |
14_2_005CD498 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005DD697 |
14_2_005DD697 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005CD8A4 |
14_2_005CD8A4 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_00599BA2 |
14_2_00599BA2 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005CDCC4 |
14_2_005CDCC4 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005D9CF6 |
14_2_005D9CF6 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005BDD10 |
14_2_005BDD10 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005DA0D4 |
14_2_005DA0D4 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005D208A |
14_2_005D208A |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_00596452 |
14_2_00596452 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005D25CE |
14_2_005D25CE |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005D6614 |
14_2_005D6614 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005D2B12 |
14_2_005D2B12 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005D6E56 |
14_2_005D6E56 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_00562FE0 |
14_2_00562FE0 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_0056B0C0 |
14_2_0056B0C0 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005AB1C5 |
14_2_005AB1C5 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_0057F1B0 |
14_2_0057F1B0 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005D320A |
14_2_005D320A |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005D7647 |
14_2_005D7647 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005C39D1 |
14_2_005C39D1 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_0059FCBB |
14_2_0059FCBB |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: String function: 0048D315 appears 42 times |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: String function: 005BB983 appears 62 times |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: String function: 0045D4E7 appears 214 times |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: String function: 005426B8 appears 34 times |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: String function: 005BFA8B appears 320 times |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: String function: 00412651 appears 42 times |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: String function: 0041240A appears 36 times |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: String function: 0045E178 appears 38 times |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: String function: 0048FABE appears 146 times |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: String function: 0048F924 appears 120 times |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: String function: 00412496 appears 48 times |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: String function: 0058D4E7 appears 107 times |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: String function: 004126B8 appears 68 times |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: String function: 00431C62 appears 58 times |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: String function: 0055A9C5 appears 37 times |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: String function: 004238C6 appears 32 times |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: String function: 0048B983 appears 124 times |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: String function: 00493396 appears 60 times |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: String function: 0048FA8B appears 640 times |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: String function: 0042A9C5 appears 74 times |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: String function: 00578526 appears 31 times |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: String function: 0056FDC7 appears 40 times |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: String function: 0045EAFA appears 42 times |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: String function: 00448526 appears 62 times |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: String function: 0043FDC7 appears 80 times |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: String function: 00461730 appears 34 times |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: String function: 005BF924 appears 60 times |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: String function: 005BFABE appears 73 times |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_00434FC0 CloseHandle,GetCurrentProcess,OpenProcessToken,_realloc,_memset,GetTokenInformation,AdjustTokenPrivileges,_realloc,FindCloseChangeNotification, |
7_2_00434FC0 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_00418C1C RegOpenKeyExW,GetCurrentProcessId,OpenProcess,OpenProcessToken,CloseHandle,LookupPrivilegeValueW,AdjustTokenPrivileges,CloseHandle,CloseHandle, |
7_2_00418C1C |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_0042CF14 __ehhandler$?ConvertBSTRToString@_com_util@@YGPADPAG@Z,__EH_prolog3,GetCurrentProcessId,OpenProcess,CloseHandle,CloseHandle,OpenProcessToken,CloseHandle,LookupPrivilegeValueW,AdjustTokenPrivileges, |
7_2_0042CF14 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_00417ED5 _memset,GetCurrentProcess,OpenProcessToken,GetTokenInformation,AdjustTokenPrivileges,CloseHandle, |
7_2_00417ED5 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_00434FC0 CloseHandle,GetCurrentProcess,OpenProcessToken,_realloc,_memset,GetTokenInformation,AdjustTokenPrivileges,_realloc,FindCloseChangeNotification, |
8_2_00434FC0 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_00418C1C RegOpenKeyExW,GetCurrentProcessId,OpenProcess,OpenProcessToken,CloseHandle,LookupPrivilegeValueW,AdjustTokenPrivileges,CloseHandle,CloseHandle, |
8_2_00418C1C |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_0042CF14 __ehhandler$?ConvertBSTRToString@_com_util@@YGPADPAG@Z,__EH_prolog3,GetCurrentProcessId,OpenProcess,CloseHandle,CloseHandle,OpenProcessToken,CloseHandle,LookupPrivilegeValueW,AdjustTokenPrivileges, |
8_2_0042CF14 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_00417ED5 _memset,GetCurrentProcess,OpenProcessToken,GetTokenInformation,AdjustTokenPrivileges,CloseHandle, |
8_2_00417ED5 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_00564FC0 CloseHandle,GetCurrentProcess,OpenProcessToken,_realloc,_memset,GetTokenInformation,AdjustTokenPrivileges,_realloc,FindCloseChangeNotification, |
14_2_00564FC0 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_00548C1C RegOpenKeyExW,GetCurrentProcessId,OpenProcess,OpenProcessToken,CloseHandle,LookupPrivilegeValueW,AdjustTokenPrivileges,CloseHandle,CloseHandle, |
14_2_00548C1C |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_0055CF14 __ehhandler$?ConvertBSTRToString@_com_util@@YGPADPAG@Z,__EH_prolog3,GetCurrentProcessId,OpenProcess,CloseHandle,CloseHandle,OpenProcessToken,CloseHandle,LookupPrivilegeValueW,AdjustTokenPrivileges, |
14_2_0055CF14 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_00547ED5 _memset,GetCurrentProcess,OpenProcessToken,GetTokenInformation,AdjustTokenPrivileges,CloseHandle, |
14_2_00547ED5 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Command line argument: -install |
7_2_00416215 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Command line argument: -remove |
7_2_00416215 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Command line argument: -debug |
7_2_00416215 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Command line argument: tscmon |
7_2_00416215 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Command line argument: asrdmon |
7_2_00416215 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Command line argument: asrdmon |
7_2_00416215 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Command line argument: \asrscan.sys |
7_2_00416215 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Command line argument: 389992 |
7_2_00416215 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Command line argument: asrdmon |
7_2_00416215 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Command line argument: -install |
8_2_00416215 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Command line argument: -remove |
8_2_00416215 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Command line argument: -debug |
8_2_00416215 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Command line argument: tscmon |
8_2_00416215 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Command line argument: asrdmon |
8_2_00416215 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Command line argument: asrdmon |
8_2_00416215 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Command line argument: \asrscan.sys |
8_2_00416215 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Command line argument: 389992 |
8_2_00416215 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Command line argument: asrdmon |
8_2_00416215 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Command line argument: -install |
14_2_00546215 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Command line argument: -remove |
14_2_00546215 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Command line argument: -debug |
14_2_00546215 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Command line argument: tscmon |
14_2_00546215 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Command line argument: asrdmon |
14_2_00546215 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Command line argument: asrdmon |
14_2_00546215 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Command line argument: \asrscan.sys |
14_2_00546215 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Command line argument: 389992 |
14_2_00546215 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Command line argument: asrdmon |
14_2_00546215 |
Source: AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: CREATE TABLE IF NOT EXISTS weekly2(c_on INTEGER, c_type INTEGER, c_count INTEGER, c_bytes INTEGER); |
Source: AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: CREATE TABLE IF NOT EXISTS saved_results3(c_id INTEGER PRIMARY KEY, c_file TEXT, c_name TEXT, c_source INTEGER, c_mid INTEGER, c_severity INTEGER, c_size INTEGER, c_title TEXT, c_b64 INTEGER, c_iscookie INTEGER, c_tracetype INTEGER, c_mcategory TEXT, mdata1 TEXT, mdata2 INTEGER, c_section INTEGER); |
Source: AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: select * from saved_results3 WHERE c_section = 100; |
Source: tscmon.exe, tscmon.exe, 0000000E.00000002.2509283601.00000000005E7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe, 0000000E.00000000.2508242224.00000000005E7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe.0.dr |
Binary or memory string: insert into exclusions(c_name, c_path, c_time) values (?, ?, ?); |
Source: AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: insert into weekly2(c_on, c_type, c_count, c_bytes) values (?, ?, ?, ?); |
Source: AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: CREATE TABLE IF NOT EXISTS system_fixes(time_on INTEGER, fix_type INTEGER, fix_data1 TEXT, fix_data2 TEXT, fix_data3 TEXT); |
Source: AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: SELECT malware_data FROM autoclean; |
Source: AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: select host_key from cookies; |
Source: AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: SELECT url FROM urls; |
Source: AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: SELECT COUNT(*) FROM moz_historyvisits; |
Source: tscmon.exe, 00000007.00000000.2413517525.00000000004B7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe, 00000007.00000002.2414253738.00000000004B7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe, 00000008.00000002.2450689049.00000000004B7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe, 00000008.00000000.2426324245.00000000004B7000.00000002.00000001.01000000.00000009.sdmp, AdvancedSystemRepairPro.exe, 00000009.00000002.2508574530.00000000011FA000.00000002.00000001.01000000.0000000A.sdmp, tscmon.exe, 0000000E.00000002.2509283601.00000000005E7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe, 0000000E.00000000.2508242224.00000000005E7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe.0.dr, AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: UPDATE %Q.%s SET sql = CASE WHEN type = 'trigger' THEN sqlite_rename_trigger(sql, %Q)ELSE sqlite_rename_table(sql, %Q) END, tbl_name = %Q, name = CASE WHEN type='table' THEN %Q WHEN name LIKE 'sqlite_autoindex%%' AND type='index' THEN 'sqlite_autoindex_' || %Q || substr(name,%d+18) ELSE name END WHERE tbl_name=%Q COLLATE nocase AND (type='table' OR type='index' OR type='trigger'); |
Source: AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: SELECT url FROM moz_places; |
Source: AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: SELECT COUNT(*) FROM urls; |
Source: AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: SELECT COUNT(*) FROM moz_places; |
Source: tscmon.exe, tscmon.exe, 0000000E.00000002.2509283601.00000000005E7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe, 0000000E.00000000.2508242224.00000000005E7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe.0.dr |
Binary or memory string: CREATE TABLE IF NOT EXISTS exclusions(c_name TEXT, c_path TEXT, c_time INTEGER); |
Source: AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: CREATE TABLE IF NOT EXISTS realtime(c_id INTEGER PRIMARY KEY, c_file TEXT UNIQUE, c_name TEXT, c_source INTEGER, c_mid INTEGER, c_severity INTEGER, c_size INTEGER, c_title TEXT, c_b64 INTEGER, c_iscookie INTEGER, c_tracetype INTEGER, c_mcategory TEXT, mdata1 TEXT, mdata2 INTEGER); |
Source: tscmon.exe, tscmon.exe, 0000000E.00000002.2509283601.00000000005E7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe, 0000000E.00000000.2508242224.00000000005E7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe.0.dr, AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: SELECT 'DELETE FROM vacuum_db.' || quote(name) || ';' FROM vacuum_db.sqlite_master WHERE name='sqlite_sequence' |
Source: AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: INSERT OR REPLACE INTO autoclean(malware_data, mdata1) values (?, ?); |
Source: AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: insert into saved_results3(c_file, c_name, c_source, c_mid, c_severity, c_size, c_title, c_b64, c_iscookie, c_tracetype, c_mcategory, mdata1, mdata2, c_section) values (?, ?, ?, ?, ?, ?, ?, ?, ?, ?, ?, ?, ?, ?); |
Source: tscmon.exe, tscmon.exe, 0000000E.00000002.2509283601.00000000005E7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe, 0000000E.00000000.2508242224.00000000005E7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe.0.dr, AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: SELECT 'INSERT INTO vacuum_db.' || quote(name) || ' SELECT * FROM main.' || quote(name) || ';' FROM vacuum_db.sqlite_master WHERE name=='sqlite_sequence'; |
Source: tscmon.exe, tscmon.exe, 0000000E.00000002.2509283601.00000000005E7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe, 0000000E.00000000.2508242224.00000000005E7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe.0.dr, AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: INSERT INTO %Q.%s VALUES('index',%Q,%Q,#%d,%Q); |
Source: tscmon.exe, tscmon.exe, 0000000E.00000002.2509283601.00000000005E7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe, 0000000E.00000000.2508242224.00000000005E7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe.0.dr, AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: SELECT 'INSERT INTO vacuum_db.' || quote(name) || ' SELECT * FROM main.' || quote(name) || ';'FROM main.sqlite_master WHERE type = 'table' AND name!='sqlite_sequence' AND coalesce(rootpage,1)>0 |
Source: tscmon.exe, tscmon.exe, 0000000E.00000002.2509283601.00000000005E7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe, 0000000E.00000000.2508242224.00000000005E7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe.0.dr |
Binary or memory string: select * from exclusions; |
Source: AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: CREATE TABLE IF NOT EXISTS autoclean(malware_data TEXT PRIMARY KEY, mdata1 INTEGER); |
Source: AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: INSERT INTO system_fixes(time_on, fix_type, fix_data1, fix_data2, fix_data3) values (?, ?, ?, ?, ?); |
Source: AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: CREATE TABLE IF NOT EXISTS system_boots(time_on INTEGER PRIMARY KEY, duration INTEGER); |
Source: AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: INSERT INTO system_boots(time_on, duration) values (?, ?); |
Source: AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: select host from moz_cookies; |
Source: AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: SELECT c_type, c_count, c_bytes FROM weekly2; |
Source: tscmon.exe, tscmon.exe, 0000000E.00000002.2509283601.00000000005E7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe, 0000000E.00000000.2508242224.00000000005E7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe.0.dr, AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: UPDATE "%w".%s SET sql = sqlite_rename_parent(sql, %Q, %Q) WHERE %s; |
Source: AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: select * from saved_results3 WHERE c_section != 100; |
Source: tscmon.exe, tscmon.exe, 0000000E.00000002.2509283601.00000000005E7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe, 0000000E.00000000.2508242224.00000000005E7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe.0.dr, AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: UPDATE sqlite_temp_master SET sql = sqlite_rename_trigger(sql, %Q), tbl_name = %Q WHERE %s; |
Source: tscmon.exe, tscmon.exe, 0000000E.00000002.2509283601.00000000005E7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe, 0000000E.00000000.2508242224.00000000005E7000.00000002.00000001.01000000.00000009.sdmp, tscmon.exe.0.dr |
Binary or memory string: UPDATE exclusions SET c_time = ? WHERE c_name = ? AND c_path = ?; |
Source: AdvancedSystemRepairPro.exe.0.dr |
Binary or memory string: SELECT date_created, origin_url, username_value, password_value, times_used FROM logins; |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: apphelp.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: msimg32.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: oledlg.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: winmm.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: uxtheme.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: dwmapi.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: kernel.appcore.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: windows.storage.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: wldp.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: profapi.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: ntmarta.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: cryptsp.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: rsaenh.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: cryptbase.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: windowscodecs.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: textinputframework.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: coreuicomponents.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: coremessaging.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: textshaping.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: taskschd.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: sspicli.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: xmllite.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: propsys.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: linkinfo.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: ntshrui.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: srvcli.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Section loaded: cscapi.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: version.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: kernel.appcore.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: uxtheme.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: sxs.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: vbscript.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: amsi.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: userenv.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: profapi.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: wldp.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: msasn1.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: cryptsp.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: rsaenh.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: cryptbase.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: msisip.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: wshext.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: scrobj.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: scrrun.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: windows.storage.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: propsys.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: version.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: kernel.appcore.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: uxtheme.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: sxs.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: vbscript.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: amsi.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: userenv.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: profapi.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: wldp.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: msasn1.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: cryptsp.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: rsaenh.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: cryptbase.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: msisip.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: wshext.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: scrobj.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: scrrun.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: windows.storage.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: propsys.dll |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: apphelp.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: wininet.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: netapi32.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: version.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: urlmon.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: secur32.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: userenv.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: fltlib.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: iertutil.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: srvcli.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: netutils.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: samcli.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: sspicli.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: windows.storage.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: wldp.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: profapi.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: ntmarta.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: kernel.appcore.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: uxtheme.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: wininet.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: netapi32.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: version.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: urlmon.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: secur32.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: userenv.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: fltlib.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: iertutil.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: srvcli.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: netutils.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: samcli.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: sspicli.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: windows.storage.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: wldp.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: profapi.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: version.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: kernel.appcore.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: uxtheme.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: sxs.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: vbscript.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: amsi.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: userenv.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: profapi.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: wldp.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: msasn1.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: cryptsp.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: rsaenh.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: cryptbase.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: msisip.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: wshext.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: scrobj.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: scrrun.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: windows.storage.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: propsys.dll |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: version.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: kernel.appcore.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: uxtheme.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: sxs.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: vbscript.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: amsi.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: userenv.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: profapi.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: wldp.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: msasn1.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: cryptsp.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: rsaenh.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: cryptbase.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: msisip.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: wshext.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: scrobj.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: scrrun.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: windows.storage.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Section loaded: propsys.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: wininet.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: netapi32.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: version.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: urlmon.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: secur32.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: userenv.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: fltlib.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: iertutil.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: srvcli.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: netutils.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: samcli.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: sspicli.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: windows.storage.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: wldp.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: profapi.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: kernel.appcore.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Section loaded: uxtheme.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
File created: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\BouncyCastle.Crypto.dll |
Jump to dropped file |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
File created: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\ZetaLongPaths.dll |
Jump to dropped file |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
File created: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\System.Security.Cryptography.Primitives.dll |
Jump to dropped file |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
File created: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\System.Security.Cryptography.X509Certificates.dll |
Jump to dropped file |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
File created: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\System.Security.Cryptography.Algorithms.dll |
Jump to dropped file |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
File created: C:\Windows\System32\drivers\asrdmon.sys |
Jump to dropped file |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
File created: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\System.Security.Cryptography.Encoding.dll |
Jump to dropped file |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
File created: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\7z\7z.dll |
Jump to dropped file |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
File created: C:\ProgramData\TSR7Settings\uninstasr.exe |
Jump to dropped file |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
File created: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\InfExtractor.dll |
Jump to dropped file |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
File created: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\7z\x64\7z.dll |
Jump to dropped file |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
File created: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\Microsoft.Deployment.WindowsInstaller.dll |
Jump to dropped file |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
File created: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\dsutil.exe |
Jump to dropped file |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
File created: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\7z\7-zip.dll |
Jump to dropped file |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
File created: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\AdvancedSystemRepairPro.exe |
Jump to dropped file |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
File created: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\7z\x64\7-zip.dll |
Jump to dropped file |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
File created: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\asrscan.sys |
Jump to dropped file |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
File created: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\7z\7z.exe |
Jump to dropped file |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
File created: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\Newtonsoft.Json.dll |
Jump to dropped file |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
File created: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\SevenZipSharp.dll |
Jump to dropped file |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
File created: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\7z\x64\7z.exe |
Jump to dropped file |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
File created: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\Microsoft.Experimental.IO.dll |
Jump to dropped file |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
File created: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Jump to dropped file |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Program.Unwanted.4272.4089.31387.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\wscript.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\wscript.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_00419489 __EH_prolog3_GS,FindFirstFileW,RemoveDirectoryW,SetFileAttributesW,DeleteFileW,PathFileExistsW,DeleteFileW,FindNextFileW,FindClose,RemoveDirectoryW, |
7_2_00419489 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_00435580 FindResourceW,_memcpy_s,FindFirstFileW,FindFirstFileW,FindClose,FindNextFileW, |
7_2_00435580 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_004896E0 DeleteFileW,_memset,FindFirstFileW,FindClose, |
7_2_004896E0 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_00435810 FindFirstFileW, |
7_2_00435810 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_0048A850 FindFirstFileW,FindFirstFileW,FindClose,FindNextFileW, |
7_2_0048A850 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_0042B5DA _memset,FindFirstFileW, |
7_2_0042B5DA |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_0042BC41 __EH_prolog3_catch,_memset,FindFirstFileW,FindNextFileW, |
7_2_0042BC41 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_00427E12 FindFirstFileW,UuidFromStringW,FindNextFileW,FindClose, |
7_2_00427E12 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_00419489 __EH_prolog3_GS,FindFirstFileW,RemoveDirectoryW,SetFileAttributesW,DeleteFileW,PathFileExistsW,DeleteFileW,FindNextFileW,FindClose,RemoveDirectoryW, |
8_2_00419489 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_00435580 FindResourceW,_memcpy_s,FindFirstFileW,FindFirstFileW,FindClose,FindNextFileW, |
8_2_00435580 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_004896E0 DeleteFileW,_memset,FindFirstFileW,FindClose, |
8_2_004896E0 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_00435810 FindFirstFileW, |
8_2_00435810 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_0048A850 FindFirstFileW,FindFirstFileW,FindClose,FindNextFileW, |
8_2_0048A850 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_0042B5DA _memset,FindFirstFileW, |
8_2_0042B5DA |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_0042BC41 __EH_prolog3_catch,_memset,FindFirstFileW,FindNextFileW, |
8_2_0042BC41 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_00427E12 FindFirstFileW,UuidFromStringW,FindNextFileW,FindClose, |
8_2_00427E12 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_00549489 __EH_prolog3_GS,FindFirstFileW,RemoveDirectoryW,SetFileAttributesW,DeleteFileW,PathFileExistsW,DeleteFileW,FindNextFileW,FindClose,RemoveDirectoryW, |
14_2_00549489 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_00565580 FindResourceW,_memcpy_s,FindFirstFileW,FindFirstFileW,FindClose,FindNextFileW, |
14_2_00565580 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005B96E0 DeleteFileW,_memset,FindFirstFileW,FindClose, |
14_2_005B96E0 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_00565810 FindFirstFileW, |
14_2_00565810 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005BA850 FindFirstFileW,FindFirstFileW,FindClose,FindNextFileW, |
14_2_005BA850 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_0055B5DA _memset,FindFirstFileW, |
14_2_0055B5DA |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_0055BC41 __EH_prolog3_catch,_memset,FindFirstFileW,FindNextFileW, |
14_2_0055BC41 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_00557E12 FindFirstFileW,UuidFromStringW,FindNextFileW,FindClose, |
14_2_00557E12 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_00490053 __NMSG_WRITE,_raise,_memset,SetUnhandledExceptionFilter,UnhandledExceptionFilter, |
7_2_00490053 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_0048C06D _memset,IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter,GetCurrentProcess,TerminateProcess, |
7_2_0048C06D |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_0048B8F8 _abort,__NMSG_WRITE,_raise,_memset,SetUnhandledExceptionFilter,UnhandledExceptionFilter, |
7_2_0048B8F8 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_0048B98E IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter,GetCurrentProcess,TerminateProcess, |
7_2_0048B98E |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 7_2_00497A08 SetUnhandledExceptionFilter, |
7_2_00497A08 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_00490053 __NMSG_WRITE,_raise,_memset,SetUnhandledExceptionFilter,UnhandledExceptionFilter, |
8_2_00490053 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_0048C06D _memset,IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter,GetCurrentProcess,TerminateProcess, |
8_2_0048C06D |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_0048B8F8 _abort,__NMSG_WRITE,_raise,_memset,SetUnhandledExceptionFilter,UnhandledExceptionFilter, |
8_2_0048B8F8 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_0048B98E IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter,GetCurrentProcess,TerminateProcess, |
8_2_0048B98E |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 8_2_00497A08 SetUnhandledExceptionFilter, |
8_2_00497A08 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005C0053 __NMSG_WRITE,_raise,_memset,SetUnhandledExceptionFilter,UnhandledExceptionFilter, |
14_2_005C0053 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005BC06D _memset,IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter,GetCurrentProcess,TerminateProcess, |
14_2_005BC06D |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005BB8F8 _abort,__NMSG_WRITE,_raise,_memset,SetUnhandledExceptionFilter,UnhandledExceptionFilter, |
14_2_005BB8F8 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005BB98E IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter,GetCurrentProcess,TerminateProcess, |
14_2_005BB98E |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: 14_2_005C7A08 SetUnhandledExceptionFilter, |
14_2_005C7A08 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: __calloc_crt,__malloc_crt,__malloc_crt,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___free_lconv_mon,InterlockedDecrement,InterlockedDecrement, |
7_2_0049C054 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: GetLocaleInfoA,GetLocaleInfoA,GetACP, |
7_2_0049C4A5 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: __getptd,_LcidFromHexString,GetLocaleInfoA, |
7_2_0049C5BC |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: GetLocaleInfoW,GetLocaleInfoW,GetLastError,GetLocaleInfoW,__alloca_probe_16,_malloc,GetLocaleInfoW,WideCharToMultiByte,__freea,GetLocaleInfoA, |
7_2_004A0644 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: GetLocaleInfoA,_LcidFromHexString,_GetPrimaryLen,_strlen, |
7_2_0049C654 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: _LocaleUpdate::_LocaleUpdate,GetLocaleInfoW, |
7_2_004A0610 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: __getptd,_LcidFromHexString,GetLocaleInfoA,GetLocaleInfoA,GetLocaleInfoA,_strlen,GetLocaleInfoA,_strlen,_TestDefaultLanguage, |
7_2_0049C6C8 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: _LocaleUpdate::_LocaleUpdate,__crtGetLocaleInfoA_stat, |
7_2_004A0783 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: __getptd,_LcidFromHexString,GetLocaleInfoA,_TestDefaultLanguage, |
7_2_0049C89A |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: _strlen,_strlen,_GetPrimaryLen,EnumSystemLocalesA, |
7_2_0049C95B |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: _strlen,_GetPrimaryLen,EnumSystemLocalesA, |
7_2_0049C9C2 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: __getptd,_TranslateName,_GetLcidFromLangCountry,_GetLcidFromLanguage,_TranslateName,_GetLcidFromLangCountry,_GetLcidFromLanguage,_strlen,EnumSystemLocalesA,GetUserDefaultLCID,_ProcessCodePage,IsValidCodePage,IsValidLocale,GetLocaleInfoA,_strcpy_s,__invoke_watson,GetLocaleInfoA,GetLocaleInfoA,__itoa_s, |
7_2_0049C9FE |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: GetLocaleInfoA, |
7_2_00491348 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: GetLocaleInfoA, |
7_2_0049E2B0 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: ___crtGetLocaleInfoA,GetLastError,___crtGetLocaleInfoA,__calloc_crt,___crtGetLocaleInfoA,__calloc_crt,__invoke_watson,___crtGetLocaleInfoW, |
7_2_0049724B |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: ___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo, |
7_2_0049B78E |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: ___getlocaleinfo,__malloc_crt,__calloc_crt,__calloc_crt,__calloc_crt,__calloc_crt,GetCPInfo,___crtGetStringTypeA,___crtLCMapStringA,___crtLCMapStringA,InterlockedDecrement,InterlockedDecrement, |
7_2_0048FC20 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: __calloc_crt,__malloc_crt,__malloc_crt,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___free_lconv_num,InterlockedDecrement,InterlockedDecrement,InterlockedDecrement, |
7_2_0049BDFC |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: __calloc_crt,__malloc_crt,__malloc_crt,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___free_lconv_mon,InterlockedDecrement,InterlockedDecrement, |
8_2_0049C054 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: GetLocaleInfoA,GetLocaleInfoA,GetACP, |
8_2_0049C4A5 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: __getptd,_LcidFromHexString,GetLocaleInfoA, |
8_2_0049C5BC |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: GetLocaleInfoW,GetLocaleInfoW,GetLastError,GetLocaleInfoW,__alloca_probe_16,_malloc,GetLocaleInfoW,WideCharToMultiByte,__freea,GetLocaleInfoA, |
8_2_004A0644 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: GetLocaleInfoA,_LcidFromHexString,_GetPrimaryLen,_strlen, |
8_2_0049C654 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: _LocaleUpdate::_LocaleUpdate,GetLocaleInfoW, |
8_2_004A0610 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: __getptd,_LcidFromHexString,GetLocaleInfoA,GetLocaleInfoA,GetLocaleInfoA,_strlen,GetLocaleInfoA,_strlen,_TestDefaultLanguage, |
8_2_0049C6C8 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: _LocaleUpdate::_LocaleUpdate,__crtGetLocaleInfoA_stat, |
8_2_004A0783 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: __getptd,_LcidFromHexString,GetLocaleInfoA,_TestDefaultLanguage, |
8_2_0049C89A |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: _strlen,_strlen,_GetPrimaryLen,EnumSystemLocalesA, |
8_2_0049C95B |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: _strlen,_GetPrimaryLen,EnumSystemLocalesA, |
8_2_0049C9C2 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: __getptd,_TranslateName,_GetLcidFromLangCountry,_GetLcidFromLanguage,_TranslateName,_GetLcidFromLangCountry,_GetLcidFromLanguage,_strlen,EnumSystemLocalesA,GetUserDefaultLCID,_ProcessCodePage,IsValidCodePage,IsValidLocale,GetLocaleInfoA,_strcpy_s,__invoke_watson,GetLocaleInfoA,GetLocaleInfoA,__itoa_s, |
8_2_0049C9FE |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: GetLocaleInfoA, |
8_2_00491348 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: GetLocaleInfoA, |
8_2_0049E2B0 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: ___crtGetLocaleInfoA,GetLastError,___crtGetLocaleInfoA,__calloc_crt,___crtGetLocaleInfoA,__calloc_crt,__invoke_watson,___crtGetLocaleInfoW, |
8_2_0049724B |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: ___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo, |
8_2_0049B78E |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: ___getlocaleinfo,__malloc_crt,__calloc_crt,__calloc_crt,__calloc_crt,__calloc_crt,GetCPInfo,___crtGetStringTypeA,___crtLCMapStringA,___crtLCMapStringA,InterlockedDecrement,InterlockedDecrement, |
8_2_0048FC20 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: __calloc_crt,__malloc_crt,__malloc_crt,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___free_lconv_num,InterlockedDecrement,InterlockedDecrement,InterlockedDecrement, |
8_2_0049BDFC |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: __calloc_crt,__malloc_crt,__malloc_crt,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___free_lconv_mon,InterlockedDecrement,InterlockedDecrement, |
14_2_005CC054 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: GetLocaleInfoA,GetLocaleInfoA,GetACP, |
14_2_005CC4A5 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: __getptd,_LcidFromHexString,GetLocaleInfoA, |
14_2_005CC5BC |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: GetLocaleInfoA,_LcidFromHexString,_GetPrimaryLen,_strlen, |
14_2_005CC654 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: GetLocaleInfoW,GetLocaleInfoW,GetLastError,GetLocaleInfoW,__alloca_probe_16,_malloc,GetLocaleInfoW,WideCharToMultiByte,__freea,GetLocaleInfoA, |
14_2_005D0644 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: _LocaleUpdate::_LocaleUpdate,GetLocaleInfoW, |
14_2_005D0610 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: __getptd,_LcidFromHexString,GetLocaleInfoA,GetLocaleInfoA,GetLocaleInfoA,_strlen,GetLocaleInfoA,_strlen,_TestDefaultLanguage, |
14_2_005CC6C8 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: _LocaleUpdate::_LocaleUpdate,__crtGetLocaleInfoA_stat, |
14_2_005D0783 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: __getptd,_LcidFromHexString,GetLocaleInfoA,_TestDefaultLanguage, |
14_2_005CC89A |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: _strlen,_strlen,_GetPrimaryLen,EnumSystemLocalesA, |
14_2_005CC95B |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: _strlen,_GetPrimaryLen,EnumSystemLocalesA, |
14_2_005CC9C2 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: __getptd,_TranslateName,_GetLcidFromLangCountry,_GetLcidFromLanguage,_TranslateName,_GetLcidFromLangCountry,_GetLcidFromLanguage,_strlen,EnumSystemLocalesA,GetUserDefaultLCID,_ProcessCodePage,IsValidCodePage,IsValidLocale,GetLocaleInfoA,_strcpy_s,__invoke_watson,GetLocaleInfoA,GetLocaleInfoA,__itoa_s, |
14_2_005CC9FE |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: GetLocaleInfoA, |
14_2_005C1348 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: GetLocaleInfoA, |
14_2_005CE2B0 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: ___crtGetLocaleInfoA,GetLastError,___crtGetLocaleInfoA,__calloc_crt,___crtGetLocaleInfoA,__calloc_crt,__invoke_watson,___crtGetLocaleInfoW, |
14_2_005C724B |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: ___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo, |
14_2_005CB78E |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: ___getlocaleinfo,__malloc_crt,__calloc_crt,__calloc_crt,__calloc_crt,__calloc_crt,GetCPInfo,___crtGetStringTypeA,___crtLCMapStringA,___crtLCMapStringA,InterlockedDecrement,InterlockedDecrement, |
14_2_005BFC20 |
Source: C:\Program Files (x86)\Advanced System Repair Pro 1.8.2.3.0\tscmon.exe |
Code function: __calloc_crt,__malloc_crt,__malloc_crt,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___free_lconv_num,InterlockedDecrement,InterlockedDecrement,InterlockedDecrement, |
14_2_005CBDFC |