Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx eax, word ptr [esi] |
14_2_00BAF2DB |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx esi, byte ptr [esp+ecx-5E8897A6h] |
14_2_00BED380 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx ecx, byte ptr [esp+eax+0Ch] |
14_2_00BC14D0 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx ecx, byte ptr [esp+eax+2Ch] |
14_2_00BC14D0 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx ecx, byte ptr [esp+eax-51131DAEh] |
14_2_00BCF610 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then mov ebp, dword ptr [ecx+edx+3Ch] |
14_2_00BE7840 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx ecx, byte ptr [esp+eax-5EFC0AFAh] |
14_2_00BE991B |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx edx, byte ptr [esp+eax+18h] |
14_2_00BBC907 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then lea esi, dword ptr [eax-000000ECh] |
14_2_00BABA30 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then push edi |
14_2_00BAEA60 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then push 00000000h |
14_2_00BBBBD0 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then mov dword ptr [esp+04h], ecx |
14_2_00BE3CD0 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx edx, byte ptr [esp+ecx+14h] |
14_2_00BE3CD0 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx edi, byte ptr [esp+eax-5EFC0B12h] |
14_2_00BECC10 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx ecx, byte ptr [esp+eax] |
14_2_00BECC10 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then cmp word ptr [edi+ebx], 0000h |
14_2_00BEBEE0 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx esi, byte ptr [esp+edx+64h] |
14_2_00BD6E1C |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then mov byte ptr [esi], cl |
14_2_00BD6E1C |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx ecx, byte ptr [esi+eax] |
14_2_00BC3F3D |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then mov byte ptr [esi], cl |
14_2_00BD70BB |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then mov byte ptr [esi], cl |
14_2_00BD70AB |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx edx, byte ptr [esp+eax-3FFFFFFCh] |
14_2_00BC5080 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx ecx, byte ptr [esp+eax+5E7F957Eh] |
14_2_00BE80C0 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx edx, byte ptr [esp+eax-00000084h] |
14_2_00BE80C0 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx ecx, byte ptr [esp+eax+5E7F957Eh] |
14_2_00BE80C0 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then mov byte ptr [esi], cl |
14_2_00BD7014 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then mov dword ptr [edi], esi |
14_2_00BA1040 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then mov dword ptr [esp+0Ch], eax |
14_2_00BC3187 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then cmp dword ptr [esi+edx*8], 93A82FD1h |
14_2_00BC92F0 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then add eax, dword ptr [esp+ecx*4+24h] |
14_2_00BAA2C0 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx ecx, word ptr [edi+esi*4] |
14_2_00BAA2C0 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx esi, byte ptr [esp+edx+64h] |
14_2_00BD723B |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then mov byte ptr [esi], cl |
14_2_00BD723B |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx ecx, byte ptr [esp+eax+2A63AD04h] |
14_2_00BE9270 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx esi, byte ptr [esp+ecx+00000184h] |
14_2_00BD53D0 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then jmp dword ptr [00BF3070h] |
14_2_00BCC337 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx esi, byte ptr [esp+edx+64h] |
14_2_00BD6E1C |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then mov byte ptr [esi], cl |
14_2_00BD6E1C |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx edx, byte ptr [esp+eax+6F2AC920h] |
14_2_00BCF4BE |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx eax, byte ptr [esp+edx+4Ch] |
14_2_00BAF480 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then mov byte ptr [esp+ebx+18h], cl |
14_2_00BAE478 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx edi, byte ptr [esp+ebx+05F22ED0h] |
14_2_00BBD5E8 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then mov ecx, eax |
14_2_00BEB5D0 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then cmp word ptr [ecx+eax+02h], 0000h |
14_2_00BBF57E |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx ebx, bx |
14_2_00BCE560 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then mov dword ptr [esp+04h], esi |
14_2_00BEA6BC |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then mov word ptr [ebp+00h], ax |
14_2_00BAD690 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then cmp dword ptr [esp], 00000000h |
14_2_00BE5681 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx edx, byte ptr [esp+eax+7BB9014Ah] |
14_2_00BD66EE |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx edx, byte ptr [esp+eax+7BB9014Ah] |
14_2_00BD66E8 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then mov ecx, eax |
14_2_00BEB670 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx edx, byte ptr [esp+ecx-42092694h] |
14_2_00BBE642 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then mov word ptr [eax], cx |
14_2_00BBE642 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx edx, byte ptr [ecx+esi] |
14_2_00BA2790 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx edi, byte ptr [esp+ebx] |
14_2_00BE37F0 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx edx, byte ptr [esp+ecx+5C59A7BEh] |
14_2_00BCE8B0 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then mov ebx, dword ptr [edi+04h] |
14_2_00BD38B0 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx ebx, byte ptr [esp+ecx-5EFC0B12h] |
14_2_00BEC890 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx esi, word ptr [ecx] |
14_2_00BBA8E0 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then cmp dword ptr [esi+edx*8], 93A82FD1h |
14_2_00BB1806 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then mov eax, dword ptr [edi+0Ch] |
14_2_00BA19E0 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx edx, byte ptr [esp+ecx-3EB3DFC6h] |
14_2_00BCC9DB |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then cmp dword ptr [esi+edx*8], 93A82FD1h |
14_2_00BBE9C7 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx edi, byte ptr [esp+ecx] |
14_2_00BEA970 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx edi, byte ptr [esp+ebx+07h] |
14_2_00BC4A30 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then mov eax, ebx |
14_2_00BC4A30 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx edx, byte ptr [esp+ecx+10h] |
14_2_00BC2A70 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx ecx, byte ptr [esp+eax+28h] |
14_2_00BD2BA0 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx edx, byte ptr [esp+ecx+41288CCAh] |
14_2_00BC7B38 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx edi, byte ptr [esp+ebx+54h] |
14_2_00BC2B31 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then cmp dword ptr [edi+esi*8], 1ED597A4h |
14_2_00BE7B00 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx esi, byte ptr [esp+ecx-6715F17Bh] |
14_2_00BC2CB3 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx esi, byte ptr [esp+edx+37CF7FBCh] |
14_2_00BCECE0 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then mov word ptr [ebx], ax |
14_2_00BCECE0 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx edx, byte ptr [esp+eax] |
14_2_00BCECE0 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx esi, byte ptr [ebx+edx-56h] |
14_2_00BC3CE1 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then cmp word ptr [ecx+eax+02h], 0000h |
14_2_00BBFCD2 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movsx edx, byte ptr [esi+eax] |
14_2_00BBACC0 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then cmp dword ptr [edx+ecx*8], 93A82FD1h |
14_2_00BBAD90 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx ebx, byte ptr [edx] |
14_2_00BE0DD0 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then mov word ptr [ebx], cx |
14_2_00BD1DC6 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx esi, byte ptr [esp+edx+5E7F9582h] |
14_2_00BE7D20 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx ebp, byte ptr [esp+ecx-16h] |
14_2_00BEBD10 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then mov byte ptr [esi], cl |
14_2_00BD7D60 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then movzx edx, byte ptr [esp+eax+18h] |
14_2_00BBC907 |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then mov word ptr [eax], cx |
14_2_00BD1F4B |
Source: C:\dmikhsv\file_scaricato.exe |
Code function: 4x nop then jmp dword ptr [00BF3B4Ch] |
14_2_00BD1F4B |
Source: C:\Users\user\AppData\Local\Temp\ZTXEX2709J4S3M888Q2LJG.exe |
Code function: 4x nop then mov dword ptr [ebp-14h], 00000000h |
15_2_00CC4668 |
Source: C:\Users\user\AppData\Local\Temp\ZTXEX2709J4S3M888Q2LJG.exe |
Code function: 4x nop then jmp 028CCC89h |
15_2_028CC878 |
Source: C:\Users\user\AppData\Local\Temp\ZTXEX2709J4S3M888Q2LJG.exe |
Code function: 4x nop then jmp 028CD794h |
15_2_028CCCA8 |
Source: C:\Users\user\AppData\Local\Temp\ZTXEX2709J4S3M888Q2LJG.exe |
Code function: 4x nop then jmp 028CD794h |
15_2_028CD370 |
Source: C:\Users\user\AppData\Local\Temp\ZTXEX2709J4S3M888Q2LJG.exe |
Code function: 4x nop then jmp 028CD794h |
15_2_028CD372 |
Source: C:\Users\user\AppData\Local\Temp\ZTXEX2709J4S3M888Q2LJG.exe |
Code function: 4x nop then jmp 028CD794h |
15_2_028CD7A7 |
Source: C:\Users\user\AppData\Local\Temp\ZTXEX2709J4S3M888Q2LJG.exe |
Code function: 4x nop then jmp 028CD87Ah |
15_2_028CD7A7 |
Source: C:\Users\user\AppData\Local\Temp\ZTXEX2709J4S3M888Q2LJG.exe |
Code function: 4x nop then jmp 028CDA54h |
15_2_028CD7A7 |
Source: C:\Users\user\AppData\Local\Temp\ZTXEX2709J4S3M888Q2LJG.exe |
Code function: 4x nop then jmp 028CD87Ah |
15_2_028CD7B8 |
Source: C:\Users\user\AppData\Local\Temp\ZTXEX2709J4S3M888Q2LJG.exe |
Code function: 4x nop then jmp 028CDA54h |
15_2_028CD7B8 |
Source: C:\Users\user\AppData\Local\Temp\ZTXEX2709J4S3M888Q2LJG.exe |
Code function: 4x nop then jmp 028CDA67h |
15_2_028CD7B8 |
Source: C:\Users\user\AppData\Local\Temp\ZTXEX2709J4S3M888Q2LJG.exe |
Code function: 4x nop then jmp 028CD794h |
15_2_028CD592 |
Source: C:\Users\user\AppData\Local\Temp\ZTXEX2709J4S3M888Q2LJG.exe |
Code function: 4x nop then jmp 028CD794h |
15_2_028CCC9A |
Source: C:\Users\user\AppData\Local\Temp\ZTXEX2709J4S3M888Q2LJG.exe |
Code function: 4x nop then lea esp, dword ptr [ebp-0Ch] |
15_2_028C6D0D |
Source: C:\Users\user\AppData\Local\Temp\ZTXEX2709J4S3M888Q2LJG.exe |
Code function: 4x nop then lea esp, dword ptr [ebp-0Ch] |
15_2_028C6D0F |