Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_00971120 LoadLibraryA,LoadLibraryA,GetProcAddress,LoadLibraryA,GetProcAddress,GetConsoleWindow,ShowWindow,LoadLibraryA,RpcMgmtEpEltInqBegin,NtCreateSection,NtMapViewOfSection,CloseHandle,CallWindowProcW, |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_0041A060 NtClose, |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_0041A110 NtAllocateVirtualMemory, |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_00419F30 NtCreateFile, |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_00419FE0 NtReadFile, |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_0041A08A NtAllocateVirtualMemory, |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_00419FDA NtReadFile, |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_00419FDC NtReadFile, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048495D0 NtClose,LdrInitializeThunk, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04849540 NtReadFile,LdrInitializeThunk, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048496D0 NtCreateKey,LdrInitializeThunk, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048496E0 NtFreeVirtualMemory,LdrInitializeThunk, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04849650 NtQueryValueKey,LdrInitializeThunk, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04849660 NtAllocateVirtualMemory,LdrInitializeThunk, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04849780 NtMapViewOfSection,LdrInitializeThunk, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04849FE0 NtCreateMutant,LdrInitializeThunk, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04849710 NtQueryInformationToken,LdrInitializeThunk, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04849840 NtDelayExecution,LdrInitializeThunk, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04849860 NtQuerySystemInformation,LdrInitializeThunk, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048499A0 NtCreateSection,LdrInitializeThunk, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04849910 NtAdjustPrivilegesToken,LdrInitializeThunk, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04849A50 NtCreateFile,LdrInitializeThunk, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048495F0 NtQueryInformationFile, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04849520 NtWaitForSingleObject, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0484AD30 NtSetContextThread, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04849560 NtWriteFile, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04849610 NtEnumerateValueKey, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04849670 NtQueryInformationProcess, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048497A0 NtUnmapViewOfSection, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0484A710 NtOpenProcessToken, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04849730 NtQueryVirtualMemory, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04849760 NtOpenProcess, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0484A770 NtOpenThread, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04849770 NtSetInformationFile, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048498A0 NtWriteVirtualMemory, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048498F0 NtReadVirtualMemory, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04849820 NtEnumerateKey, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0484B040 NtSuspendThread, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048499D0 NtCreateProcessEx, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04849950 NtQueueApcThread, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04849A80 NtOpenDirectoryObject, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04849A00 NtProtectVirtualMemory, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04849A10 NtQuerySection, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04849A20 NtResumeThread, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0484A3B0 NtGetContextThread, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04849B00 NtSetValueKey, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0074A060 NtClose, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0074A110 NtAllocateVirtualMemory, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_00749F30 NtCreateFile, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_00749FE0 NtReadFile, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0074A08A NtAllocateVirtualMemory, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_00749FDC NtReadFile, |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_00749FDA NtReadFile, |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_009881F9 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_009743F3 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_00998313 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_009A8418 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_0098845E |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_009A8538 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_009886D2 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_00988937 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_009A2A60 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_00988B9C |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_00988E10 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_009A2F80 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_009AB025 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_009A33B0 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_009874AF |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_009A169A |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_009876E1 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_009A98F9 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_00987922 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_009A3A76 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_00987B54 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_00987D86 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_00987FC7 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_0040102F |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_00401030 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_0041D1EF |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_0041E18E |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_0041DAA3 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_00402D87 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_00402D90 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_00409E40 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_00409E3C |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_0041D6FE |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_00402FB0 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_009AC1A3 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_009881F9 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_009743F3 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_00998313 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_009A8418 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_0098845E |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_009A8538 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_009886D2 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_00988937 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_009A2A60 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_00988B9C |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_00988E10 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_009A2F80 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_009AB025 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_009A33B0 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_009874AF |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_009AB521 |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0481841F |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048CD466 |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04832581 |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D25DD |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0481D5E0 |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D2D07 |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04800D20 |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D1D55 |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D2EF7 |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048CD616 |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04826E30 |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048DDFCE |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D1FF1 |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0481B090 |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048320A0 |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D20A8 |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D28EC |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048C1002 |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048DE824 |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0480F900 |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04824120 |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D22AE |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048BFA2B |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0483EBB0 |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048C03DA |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048CDBD2 |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D2B28 |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0074D1EF |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0074E18E |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0074DAAF |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_00732D90 |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_00732D87 |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_00739E40 |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_00739E3C |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0074D6FE |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_00732FB0 |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_009950BD mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_00971000 mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_0097B073 mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_0099519E mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_0097B101 mov ecx, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_00995100 mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_00995143 mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_009952A8 mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_009952EC mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_00995264 mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\inv.exe | Code function: 0_2_0099531D mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_009950BD mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_00971000 mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_0097B073 mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_0099519E mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_0097B101 mov ecx, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_00995100 mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_00995143 mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_009952A8 mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_009952EC mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_00995264 mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\inv.exe | Code function: 2_2_0099531D mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0481849B mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D8CD6 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048C14FB mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04886CF0 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04886CF0 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04886CF0 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D740D mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D740D mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D740D mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04886C0A mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04886C0A mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04886C0A mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04886C0A mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048C1C06 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048C1C06 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048C1C06 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048C1C06 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048C1C06 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048C1C06 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048C1C06 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048C1C06 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048C1C06 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048C1C06 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048C1C06 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048C1C06 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048C1C06 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048C1C06 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0483BC2C mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0483A44B mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0489C450 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0489C450 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0482746D mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04832581 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04832581 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04832581 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04832581 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04802D8A mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04802D8A mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04802D8A mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04802D8A mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04802D8A mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0483FD9B mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0483FD9B mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D05AC mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D05AC mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048335A1 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04831DB5 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04831DB5 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04831DB5 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04886DC9 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04886DC9 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04886DC9 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04886DC9 mov ecx, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04886DC9 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04886DC9 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0481D5E0 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0481D5E0 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048CFDE2 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048CFDE2 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048CFDE2 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048CFDE2 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048B8DF1 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0480AD30 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04813D34 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04813D34 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04813D34 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04813D34 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04813D34 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04813D34 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04813D34 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04813D34 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04813D34 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04813D34 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04813D34 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04813D34 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04813D34 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048CE539 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04834D3B mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04834D3B mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04834D3B mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D8D34 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0488A537 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04843D43 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04883540 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048B3D40 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04827D50 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0482C577 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0482C577 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0489FE87 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D0EA5 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D0EA5 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D0EA5 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048846A7 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04848EC7 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048BFEC0 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048336CC mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D8ED6 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048316E0 mov ecx, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048176E2 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0480C600 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0480C600 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0480C600 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04838E00 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048C1608 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0483A61C mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0483A61C mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0480E620 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048BFE3F mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04817E41 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04817E41 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04817E41 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04817E41 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04817E41 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04817E41 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048CAE44 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048CAE44 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0481766D mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0482AE73 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0482AE73 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0482AE73 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0482AE73 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0482AE73 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04818794 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04887794 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04887794 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04887794 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048437F5 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D070D mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D070D mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0483A70E mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0483A70E mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0482F716 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0489FF10 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0489FF10 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04804F2E mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04804F2E mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0483E730 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0481EF40 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0481FF60 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D8F6A mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04809080 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04883884 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04883884 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048320A0 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048320A0 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048320A0 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048320A0 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048320A0 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048320A0 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048490AF mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0483F0BF mov ecx, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0483F0BF mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0483F0BF mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0489B8D0 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0489B8D0 mov ecx, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0489B8D0 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0489B8D0 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0489B8D0 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0489B8D0 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048040E1 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048040E1 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048040E1 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048058EC mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D4015 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D4015 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04887016 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04887016 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04887016 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0481B02A mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0481B02A mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0481B02A mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0481B02A mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0483002D mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0483002D mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0483002D mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0483002D mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0483002D mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04820050 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04820050 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D1074 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048C2073 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0482C182 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0483A185 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04832990 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048361A0 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048361A0 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048C49A4 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048C49A4 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048C49A4 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048C49A4 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048869A6 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048851BE mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048851BE mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048851BE mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048851BE mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048941E8 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0480B1E1 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0480B1E1 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0480B1E1 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04809100 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04809100 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04809100 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04824120 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04824120 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04824120 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04824120 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04824120 mov ecx, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0483513A mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0483513A mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0482B944 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0482B944 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0480C962 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0480B171 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0480B171 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0483D294 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0483D294 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048052A5 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048052A5 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048052A5 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048052A5 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048052A5 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0481AAB0 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0481AAB0 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0483FAB0 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04832ACB mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04832AE4 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04818A0A mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04805210 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04805210 mov ecx, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04805210 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04805210 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0480AA16 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0480AA16 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048CAA16 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048CAA16 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04823A1C mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04844A2C mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04844A2C mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04809240 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04809240 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04809240 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04809240 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048CEA55 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04894257 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048BB260 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048BB260 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D8A62 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0484927A mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048C138A mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048BD380 mov ecx, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04811B8F mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04811B8F mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0483B390 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04832397 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D5BA5 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04834BAD mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04834BAD mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04834BAD mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048853CA mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048853CA mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048303E2 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048303E2 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048303E2 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048303E2 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048303E2 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048303E2 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0482DBE9 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048C131B mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0480DB40 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_048D8B58 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0480F358 mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_0480DB60 mov ecx, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04833B7A mov eax, dword ptr fs:[00000030h] |
Source: C:\Windows\SysWOW64\systray.exe | Code function: 5_2_04833B7A mov eax, dword ptr fs:[00000030h] |