Source: Indtastningsfacilitet.exe, 0000000E.00000002.344883069.0000000000909000.00000004.00000020.sdmp | String found in binary or memory: http://crl3.digi |
Source: Indtastningsfacilitet.exe, 0000000E.00000002.344901282.000000000092D000.00000004.00000020.sdmp | String found in binary or memory: http://crl3.digicert.com/Omniroot2025.crl0 |
Source: Indtastningsfacilitet.exe, 0000000E.00000002.344901282.000000000092D000.00000004.00000020.sdmp | String found in binary or memory: http://ocsp.digicert.com0: |
Source: Indtastningsfacilitet.exe, 0000000E.00000002.344901282.000000000092D000.00000004.00000020.sdmp | String found in binary or memory: http://ocsp.msocsp.com0 |
Source: Indtastningsfacilitet.exe, 0000000E.00000002.344844732.00000000008D5000.00000004.00000020.sdmp | String found in binary or memory: https://fkteua.db.files.1drv.com/ |
Source: Indtastningsfacilitet.exe, 0000000E.00000002.344844732.00000000008D5000.00000004.00000020.sdmp, Indtastningsfacilitet.exe, 0000000E.00000002.344883069.0000000000909000.00000004.00000020.sdmp | String found in binary or memory: https://fkteua.db.files.1drv.com/y4m1K5aXO_hTJZwQ6sRUBeX3MwbIRGCEyLmUsy6a-Tv86ILmUxMJD16_BkowRYABW7o |
Source: Indtastningsfacilitet.exe, 0000000E.00000002.344883069.0000000000909000.00000004.00000020.sdmp, Indtastningsfacilitet.exe, 0000000E.00000002.344866328.00000000008F0000.00000004.00000020.sdmp | String found in binary or memory: https://fkteua.db.files.1drv.com/y4m7jo0uscLY3JGQOA8WNtz0kE6mECzmykD9EyNeCFL_ih_emej5aweglDZjRx1WKGH |
Source: Indtastningsfacilitet.exe, 0000000E.00000002.344796615.00000000008A7000.00000004.00000020.sdmp | String found in binary or memory: https://onedrive.live.com/ |
Source: Indtastningsfacilitet.exe, 0000000E.00000002.344844732.00000000008D5000.00000004.00000020.sdmp, Indtastningsfacilitet.exe, 0000000E.00000002.344883069.0000000000909000.00000004.00000020.sdmp, Indtastningsfacilitet.exe, 00000010.00000002.352919337.0000000000560000.00000040.00000001.sdmp | String found in binary or memory: https://onedrive.live.com/download?cid=A32AEA2B4355716B&resid=A32AEA2B4355716B%215171&authkey=APwe6- |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Code function: 0_2_021508B7 EnumWindows,NtSetInformationThread, |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Code function: 0_2_02158CE9 NtResumeThread, |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Code function: 0_2_0215310A NtWriteVirtualMemory, |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Code function: 0_2_021587FD NtProtectVirtualMemory, |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Code function: 0_2_02159012 NtResumeThread, |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Code function: 0_2_02157088 NtSetInformationThread, |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Code function: 0_2_021570B8 NtSetInformationThread, |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Code function: 0_2_021536AE NtWriteVirtualMemory, |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Code function: 0_2_021592AE NtResumeThread, |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Code function: 0_2_021512DE NtSetInformationThread, |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Code function: 0_2_021534F5 NtWriteVirtualMemory, |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Code function: 0_2_02158CF3 NtResumeThread, |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Code function: 0_2_021508EF NtSetInformationThread, |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Code function: 0_2_021532EA NtWriteVirtualMemory, |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Code function: 0_2_0215911A NtResumeThread, |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Code function: 0_2_02158F0D NtResumeThread, |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Code function: 0_2_02153187 NtWriteVirtualMemory, |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Code function: 0_2_02156DB9 NtSetInformationThread, |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Code function: 0_2_02158DF2 NtResumeThread, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 12_2_021408B7 EnumWindows,NtSetInformationThread, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 12_2_02148CE9 NtMapViewOfSection, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 12_2_0214310A NtWriteVirtualMemory, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 12_2_021487FD NtProtectVirtualMemory, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 12_2_02149012 NtMapViewOfSection, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 12_2_02147088 NtSetInformationThread, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 12_2_021470B8 NtSetInformationThread, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 12_2_021436AE NtWriteVirtualMemory, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 12_2_021492AE NtMapViewOfSection, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 12_2_021412DE NtSetInformationThread, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 12_2_021434F5 NtWriteVirtualMemory, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 12_2_02148CF3 NtMapViewOfSection, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 12_2_021408EF NtSetInformationThread, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 12_2_021432EA NtWriteVirtualMemory, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 12_2_0214911A NtMapViewOfSection, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 12_2_02148F0D NtMapViewOfSection, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 12_2_02143187 NtWriteVirtualMemory, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 12_2_02146DB9 NtSetInformationThread, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 12_2_02148DF2 NtMapViewOfSection, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 14_2_00568CE9 NtQueryInformationProcess, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 14_2_005608B7 EnumWindows,NtSetInformationThread, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 14_2_005687FD NtProtectVirtualMemory, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 14_2_00569012 NtQueryInformationProcess, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 14_2_005612DE NtSetInformationThread,NtProtectVirtualMemory, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 14_2_00568CF3 NtQueryInformationProcess, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 14_2_005608EF NtSetInformationThread, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 14_2_00567088 NtSetInformationThread, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 14_2_005670B8 NtSetInformationThread, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 14_2_005692AE NtQueryInformationProcess, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 14_2_0056911A NtQueryInformationProcess, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 14_2_00568F0D NtQueryInformationProcess, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 14_2_00568DF2 NtQueryInformationProcess, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 14_2_00566DB9 NtSetInformationThread, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 15_2_021F08B7 EnumWindows,NtSetInformationThread, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 15_2_021F8CE9 NtMapViewOfSection, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 15_2_021F310A NtWriteVirtualMemory, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 15_2_021F87FD NtProtectVirtualMemory, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 15_2_021F9012 NtMapViewOfSection, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 15_2_021F7088 NtSetInformationThread, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 15_2_021F70B8 NtSetInformationThread, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 15_2_021F36AE NtWriteVirtualMemory, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 15_2_021F92AE NtMapViewOfSection, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 15_2_021F12DE NtSetInformationThread, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 15_2_021F34F5 NtWriteVirtualMemory, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 15_2_021F8CF3 NtMapViewOfSection, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 15_2_021F08EF NtSetInformationThread, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 15_2_021F32EA NtWriteVirtualMemory, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 15_2_021F911A NtMapViewOfSection, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 15_2_021F8F0D NtMapViewOfSection, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 15_2_021F3187 NtWriteVirtualMemory, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 15_2_021F6DB9 NtSetInformationThread, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 15_2_021F8DF2 NtMapViewOfSection, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 16_2_00568CE9 NtQueryInformationProcess, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 16_2_005608B7 EnumWindows,NtSetInformationThread, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 16_2_005687FD NtProtectVirtualMemory, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 16_2_00569012 NtQueryInformationProcess, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 16_2_005612DE NtSetInformationThread,NtProtectVirtualMemory, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 16_2_00568CF3 NtQueryInformationProcess, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 16_2_005608EF NtSetInformationThread, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 16_2_00567088 NtSetInformationThread, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 16_2_005670B8 NtSetInformationThread, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 16_2_005692AE NtQueryInformationProcess, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 16_2_0056911A NtQueryInformationProcess, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 16_2_00568F0D NtQueryInformationProcess, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 16_2_00568DF2 NtQueryInformationProcess, |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 16_2_00566DB9 NtSetInformationThread, |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\System32\wscript.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\System32\wscript.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\System32\wscript.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\System32\wscript.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Code function: 0_2_02152A8A mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Code function: 0_2_021520DE mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Code function: 0_2_02153B0D mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Code function: 0_2_0215812E mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Code function: 0_2_02156D40 mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\New Doc 20211401#_our new price.exe | Code function: 0_2_02157391 mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 12_2_02142A8A mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 12_2_021420DE mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 12_2_02143B0D mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 12_2_0214812E mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 12_2_02146D40 mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 12_2_02147391 mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 14_2_00562A8A mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 14_2_005620DE mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 14_2_00566D40 mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 14_2_00563B0D mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 14_2_0056812E mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 14_2_00567391 mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 15_2_021F2A8A mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 15_2_021F20DE mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 15_2_021F3B0D mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 15_2_021F812E mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 15_2_021F6D40 mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 15_2_021F7391 mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 16_2_00562A8A mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 16_2_005620DE mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 16_2_00566D40 mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 16_2_00563B0D mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 16_2_0056812E mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\AppData\Local\Temp\Strikkebgernes\Indtastningsfacilitet.exe | Code function: 16_2_00567391 mov eax, dword ptr fs:[00000030h] |