Source: VAT INVOICE.exe, 00000004.00000002.594381302.0000000002E61000.00000004.00000001.sdmp | String found in binary or memory: http://127.0.0.1:HTTP/1.1 |
Source: VAT INVOICE.exe, 00000004.00000002.594381302.0000000002E61000.00000004.00000001.sdmp | String found in binary or memory: http://AaaJ72US7p3dsZNMOkJh.com |
Source: VAT INVOICE.exe, 00000004.00000002.594381302.0000000002E61000.00000004.00000001.sdmp | String found in binary or memory: http://Buyaon.com |
Source: VAT INVOICE.exe, 00000004.00000002.594381302.0000000002E61000.00000004.00000001.sdmp | String found in binary or memory: http://DynDns.comDynDNS |
Source: VAT INVOICE.exe, 00000001.00000002.348350305.0000000004EA0000.00000002.00000001.sdmp | String found in binary or memory: http://fontfabrik.com |
Source: VAT INVOICE.exe, 00000001.00000003.328866674.0000000004D6D000.00000004.00000001.sdmp | String found in binary or memory: http://fontfabrik.comu |
Source: VAT INVOICE.exe | String found in binary or memory: http://tempuri.org/GridOneHSDataSet.xsd |
Source: VAT INVOICE.exe | String found in binary or memory: http://tempuri.org/HighScoresDataSet.xsd |
Source: VAT INVOICE.exe, 00000001.00000002.348350305.0000000004EA0000.00000002.00000001.sdmp | String found in binary or memory: http://www.apache.org/licenses/LICENSE-2.0 |
Source: VAT INVOICE.exe, 00000001.00000002.348350305.0000000004EA0000.00000002.00000001.sdmp | String found in binary or memory: http://www.carterandcone.coml |
Source: VAT INVOICE.exe, 00000001.00000002.348350305.0000000004EA0000.00000002.00000001.sdmp | String found in binary or memory: http://www.fontbureau.com |
Source: VAT INVOICE.exe, 00000001.00000003.338452984.0000000004D36000.00000004.00000001.sdmp | String found in binary or memory: http://www.fontbureau.com/ |
Source: VAT INVOICE.exe, 00000001.00000002.348350305.0000000004EA0000.00000002.00000001.sdmp, VAT INVOICE.exe, 00000001.00000003.338452984.0000000004D36000.00000004.00000001.sdmp | String found in binary or memory: http://www.fontbureau.com/designers |
Source: VAT INVOICE.exe, 00000001.00000003.336272385.0000000004D4F000.00000004.00000001.sdmp | String found in binary or memory: http://www.fontbureau.com/designers/ |
Source: VAT INVOICE.exe, 00000001.00000002.348350305.0000000004EA0000.00000002.00000001.sdmp | String found in binary or memory: http://www.fontbureau.com/designers/? |
Source: VAT INVOICE.exe, 00000001.00000002.348350305.0000000004EA0000.00000002.00000001.sdmp | String found in binary or memory: http://www.fontbureau.com/designers/cabarga.htmlN |
Source: VAT INVOICE.exe, 00000001.00000002.348350305.0000000004EA0000.00000002.00000001.sdmp | String found in binary or memory: http://www.fontbureau.com/designers/frere-jones.html |
Source: VAT INVOICE.exe, 00000001.00000003.337737854.0000000004D42000.00000004.00000001.sdmp | String found in binary or memory: http://www.fontbureau.com/designers/frere-jones.html-e |
Source: VAT INVOICE.exe, 00000001.00000002.348350305.0000000004EA0000.00000002.00000001.sdmp | String found in binary or memory: http://www.fontbureau.com/designers8 |
Source: VAT INVOICE.exe, 00000001.00000002.348350305.0000000004EA0000.00000002.00000001.sdmp | String found in binary or memory: http://www.fontbureau.com/designers? |
Source: VAT INVOICE.exe, 00000001.00000002.348350305.0000000004EA0000.00000002.00000001.sdmp | String found in binary or memory: http://www.fontbureau.com/designersG |
Source: VAT INVOICE.exe, 00000001.00000003.338452984.0000000004D36000.00000004.00000001.sdmp | String found in binary or memory: http://www.fontbureau.comF |
Source: VAT INVOICE.exe, 00000001.00000003.338452984.0000000004D36000.00000004.00000001.sdmp | String found in binary or memory: http://www.fontbureau.comals0 |
Source: VAT INVOICE.exe, 00000001.00000003.338452984.0000000004D36000.00000004.00000001.sdmp | String found in binary or memory: http://www.fontbureau.comalsJ |
Source: VAT INVOICE.exe, 00000001.00000003.338452984.0000000004D36000.00000004.00000001.sdmp | String found in binary or memory: http://www.fontbureau.comalso |
Source: VAT INVOICE.exe, 00000001.00000003.345400773.0000000004D30000.00000004.00000001.sdmp | String found in binary or memory: http://www.fontbureau.comiono |
Source: VAT INVOICE.exe, 00000001.00000003.345400773.0000000004D30000.00000004.00000001.sdmp | String found in binary or memory: http://www.fontbureau.comt |
Source: VAT INVOICE.exe, 00000001.00000003.345400773.0000000004D30000.00000004.00000001.sdmp | String found in binary or memory: http://www.fontbureau.comu |
Source: VAT INVOICE.exe, 00000001.00000003.328790456.0000000004D6D000.00000004.00000001.sdmp | String found in binary or memory: http://www.fonts.com |
Source: VAT INVOICE.exe, 00000001.00000003.328656624.0000000004D6D000.00000004.00000001.sdmp | String found in binary or memory: http://www.fonts.comx |
Source: VAT INVOICE.exe, 00000001.00000003.331390370.0000000004D33000.00000004.00000001.sdmp | String found in binary or memory: http://www.founder.com.cn/cn |
Source: VAT INVOICE.exe, 00000001.00000003.332299063.0000000004D36000.00000004.00000001.sdmp | String found in binary or memory: http://www.founder.com.cn/cn/ |
Source: VAT INVOICE.exe, 00000001.00000002.348350305.0000000004EA0000.00000002.00000001.sdmp | String found in binary or memory: http://www.founder.com.cn/cn/bThe |
Source: VAT INVOICE.exe, 00000001.00000002.348350305.0000000004EA0000.00000002.00000001.sdmp | String found in binary or memory: http://www.founder.com.cn/cn/cThe |
Source: VAT INVOICE.exe, 00000001.00000003.331390370.0000000004D33000.00000004.00000001.sdmp | String found in binary or memory: http://www.founder.com.cn/cn8? |
Source: VAT INVOICE.exe, 00000001.00000003.331390370.0000000004D33000.00000004.00000001.sdmp | String found in binary or memory: http://www.founder.com.cn/cna-d |
Source: VAT INVOICE.exe, 00000001.00000003.331557275.0000000004D41000.00000004.00000001.sdmp | String found in binary or memory: http://www.founder.com.cn/cnaad |
Source: VAT INVOICE.exe, 00000001.00000003.331390370.0000000004D33000.00000004.00000001.sdmp | String found in binary or memory: http://www.founder.com.cn/cnh? |
Source: VAT INVOICE.exe, 00000001.00000003.331557275.0000000004D41000.00000004.00000001.sdmp | String found in binary or memory: http://www.founder.com.cn/cnicr |
Source: VAT INVOICE.exe, 00000001.00000003.331390370.0000000004D33000.00000004.00000001.sdmp | String found in binary or memory: http://www.founder.com.cn/cnv-s- |
Source: VAT INVOICE.exe, 00000001.00000002.348350305.0000000004EA0000.00000002.00000001.sdmp | String found in binary or memory: http://www.galapagosdesign.com/DPlease |
Source: VAT INVOICE.exe, 00000001.00000002.348350305.0000000004EA0000.00000002.00000001.sdmp | String found in binary or memory: http://www.galapagosdesign.com/staff/dennis.htm |
Source: VAT INVOICE.exe, 00000001.00000002.348350305.0000000004EA0000.00000002.00000001.sdmp | String found in binary or memory: http://www.goodfont.co.kr |
Source: VAT INVOICE.exe, 00000001.00000003.333869649.0000000004D36000.00000004.00000001.sdmp | String found in binary or memory: http://www.jiyu-kobo.co.jp/ |
Source: VAT INVOICE.exe, 00000001.00000003.333869649.0000000004D36000.00000004.00000001.sdmp | String found in binary or memory: http://www.jiyu-kobo.co.jp/0 |
Source: VAT INVOICE.exe, 00000001.00000003.334111800.0000000004D36000.00000004.00000001.sdmp | String found in binary or memory: http://www.jiyu-kobo.co.jp/J |
Source: VAT INVOICE.exe, 00000001.00000003.333869649.0000000004D36000.00000004.00000001.sdmp | String found in binary or memory: http://www.jiyu-kobo.co.jp/Y0 |
Source: VAT INVOICE.exe, 00000001.00000003.333623422.0000000004D35000.00000004.00000001.sdmp | String found in binary or memory: http://www.jiyu-kobo.co.jp/fontn |
Source: VAT INVOICE.exe, 00000001.00000003.333869649.0000000004D36000.00000004.00000001.sdmp | String found in binary or memory: http://www.jiyu-kobo.co.jp/jp/ |
Source: VAT INVOICE.exe, 00000001.00000003.334111800.0000000004D36000.00000004.00000001.sdmp | String found in binary or memory: http://www.jiyu-kobo.co.jp/jp/0 |
Source: VAT INVOICE.exe, 00000001.00000003.334111800.0000000004D36000.00000004.00000001.sdmp | String found in binary or memory: http://www.jiyu-kobo.co.jp/jp/g |
Source: VAT INVOICE.exe, 00000001.00000003.333869649.0000000004D36000.00000004.00000001.sdmp | String found in binary or memory: http://www.jiyu-kobo.co.jp/n |
Source: VAT INVOICE.exe, 00000001.00000003.328401081.0000000000D7D000.00000004.00000001.sdmp | String found in binary or memory: http://www.sajatypeworks.com |
Source: VAT INVOICE.exe, 00000001.00000003.328401081.0000000000D7D000.00000004.00000001.sdmp | String found in binary or memory: http://www.sajatypeworks.comca |
Source: VAT INVOICE.exe, 00000001.00000003.328401081.0000000000D7D000.00000004.00000001.sdmp | String found in binary or memory: http://www.sajatypeworks.comd? |
Source: VAT INVOICE.exe, 00000001.00000003.328401081.0000000000D7D000.00000004.00000001.sdmp | String found in binary or memory: http://www.sajatypeworks.comno4 |
Source: VAT INVOICE.exe, 00000001.00000002.348350305.0000000004EA0000.00000002.00000001.sdmp | String found in binary or memory: http://www.sakkal.com |
Source: VAT INVOICE.exe, 00000001.00000002.348350305.0000000004EA0000.00000002.00000001.sdmp | String found in binary or memory: http://www.sandoll.co.kr |
Source: VAT INVOICE.exe, 00000001.00000002.348350305.0000000004EA0000.00000002.00000001.sdmp | String found in binary or memory: http://www.tiro.com |
Source: VAT INVOICE.exe, 00000001.00000003.333349655.0000000004D4B000.00000004.00000001.sdmp | String found in binary or memory: http://www.tiro.comlic |
Source: VAT INVOICE.exe, 00000001.00000002.348350305.0000000004EA0000.00000002.00000001.sdmp | String found in binary or memory: http://www.typography.netD |
Source: VAT INVOICE.exe, 00000001.00000003.338615231.0000000004D4F000.00000004.00000001.sdmp | String found in binary or memory: http://www.urwpp.de |
Source: VAT INVOICE.exe, 00000001.00000002.348350305.0000000004EA0000.00000002.00000001.sdmp | String found in binary or memory: http://www.urwpp.deDPlease |
Source: VAT INVOICE.exe, 00000001.00000003.335498902.0000000004D4F000.00000004.00000001.sdmp | String found in binary or memory: http://www.urwpp.ded |
Source: VAT INVOICE.exe, 00000001.00000003.338615231.0000000004D4F000.00000004.00000001.sdmp | String found in binary or memory: http://www.urwpp.demD |
Source: VAT INVOICE.exe, 00000001.00000002.348350305.0000000004EA0000.00000002.00000001.sdmp | String found in binary or memory: http://www.zhongyicts.com.cn |
Source: VAT INVOICE.exe, 00000001.00000002.346844036.0000000002A69000.00000004.00000001.sdmp | String found in binary or memory: https://stackpath.bootstrapcdn.com/bootstrap/4.5.0/css/bootstrap.min.css |
Source: VAT INVOICE.exe, 00000001.00000002.351717362.0000000009A31000.00000004.00000001.sdmp, VAT INVOICE.exe, 00000004.00000002.590285183.0000000000402000.00000040.00000001.sdmp | String found in binary or memory: https://www.theonionrouter.com/dist.torproject.org/torbrowser/9.5.3/tor-win32-0.4.3.6.zip |
Source: VAT INVOICE.exe, 00000004.00000002.594381302.0000000002E61000.00000004.00000001.sdmp | String found in binary or memory: https://www.theonionrouter.com/dist.torproject.org/torbrowser/9.5.3/tor-win32-0.4.3.6.zip%tordir%%ha |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0026A9E2 | 1_2_0026A9E2 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0026DCDF | 1_2_0026DCDF |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_00BD6B5C | 1_2_00BD6B5C |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_00D20070 | 1_2_00D20070 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_00D27DDB | 1_2_00D27DDB |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_00D281C1 | 1_2_00D281C1 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_00D261F0 | 1_2_00D261F0 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_00D23110 | 1_2_00D23110 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_00D24A40 | 1_2_00D24A40 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_00D26678 | 1_2_00D26678 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_00D238E4 | 1_2_00D238E4 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_00D20012 | 1_2_00D20012 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_00D23100 | 1_2_00D23100 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_00D26930 | 1_2_00D26930 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_00D26920 | 1_2_00D26920 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_00D20A68 | 1_2_00D20A68 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_00D24A30 | 1_2_00D24A30 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_00D257C8 | 1_2_00D257C8 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_00D23350 | 1_2_00D23350 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_00D23360 | 1_2_00D23360 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_00D20B08 | 1_2_00D20B08 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_02670A70 | 1_2_02670A70 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0267BECB | 1_2_0267BECB |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0267D688 | 1_2_0267D688 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0267B738 | 1_2_0267B738 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0267A788 | 1_2_0267A788 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0267AC53 | 1_2_0267AC53 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0267C830 | 1_2_0267C830 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_02679D70 | 1_2_02679D70 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0267A108 | 1_2_0267A108 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0267A990 | 1_2_0267A990 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0267D662 | 1_2_0267D662 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0267F660 | 1_2_0267F660 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0267F651 | 1_2_0267F651 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_02670A5F | 1_2_02670A5F |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0267E230 | 1_2_0267E230 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0267B6A1 | 1_2_0267B6A1 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0267EEA8 | 1_2_0267EEA8 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0267EEB8 | 1_2_0267EEB8 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0267A778 | 1_2_0267A778 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0267C330 | 1_2_0267C330 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0267F460 | 1_2_0267F460 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0267F451 | 1_2_0267F451 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0267E420 | 1_2_0267E420 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0267E410 | 1_2_0267E410 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0267A0F9 | 1_2_0267A0F9 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0267F8C8 | 1_2_0267F8C8 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0267F8B8 | 1_2_0267F8B8 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0026AABF | 1_2_0026AABF |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0026AA4C | 1_2_0026AA4C |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 4_2_0076A9E2 | 4_2_0076A9E2 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 4_2_0076DCDF | 4_2_0076DCDF |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 4_2_02ABF4F0 | 4_2_02ABF4F0 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 4_2_02ABCE20 | 4_2_02ABCE20 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 4_2_02AB7920 | 4_2_02AB7920 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 4_2_059D16D8 | 4_2_059D16D8 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 4_2_059D1C58 | 4_2_059D1C58 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 4_2_059D21DF | 4_2_059D21DF |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 4_2_059D21E0 | 4_2_059D21E0 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 4_2_07069328 | 4_2_07069328 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 4_2_0706D740 | 4_2_0706D740 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 4_2_07060070 | 4_2_07060070 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 4_2_07065AB8 | 4_2_07065AB8 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 4_2_0706BAF8 | 4_2_0706BAF8 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 4_2_070669E8 | 4_2_070669E8 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 4_2_0706006F | 4_2_0706006F |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 4_2_0076AA4C | 4_2_0076AA4C |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 4_2_0076AABF | 4_2_0076AABF |
Source: VAT INVOICE.exe | Binary or memory string: OriginalFilename vs VAT INVOICE.exe |
Source: VAT INVOICE.exe, 00000001.00000002.346787019.0000000002A31000.00000004.00000001.sdmp | Binary or memory string: OriginalFilenameSimpleUI.dll2 vs VAT INVOICE.exe |
Source: VAT INVOICE.exe, 00000001.00000002.345705269.0000000000262000.00000002.00020000.sdmp | Binary or memory string: OriginalFilenameBinaryObject.exe4 vs VAT INVOICE.exe |
Source: VAT INVOICE.exe, 00000001.00000002.347011827.0000000002ABC000.00000004.00000001.sdmp | Binary or memory string: OriginalFilenameBhBklfZbgTwtYptXoglSw.exe4 vs VAT INVOICE.exe |
Source: VAT INVOICE.exe, 00000001.00000002.347578088.0000000003A31000.00000004.00000001.sdmp | Binary or memory string: OriginalFilenameDSASignature.dll" vs VAT INVOICE.exe |
Source: VAT INVOICE.exe, 00000001.00000002.351044330.0000000007BD0000.00000002.00000001.sdmp | Binary or memory string: OriginalFilenamemscorrc.dllT vs VAT INVOICE.exe |
Source: VAT INVOICE.exe | Binary or memory string: OriginalFilename vs VAT INVOICE.exe |
Source: VAT INVOICE.exe, 00000004.00000002.590398073.0000000000762000.00000002.00020000.sdmp | Binary or memory string: OriginalFilenameBinaryObject.exe4 vs VAT INVOICE.exe |
Source: VAT INVOICE.exe, 00000004.00000002.597171039.00000000051D0000.00000002.00000001.sdmp | Binary or memory string: OriginalFilenameKernelbase.dll.muij% vs VAT INVOICE.exe |
Source: VAT INVOICE.exe, 00000004.00000002.590285183.0000000000402000.00000040.00000001.sdmp | Binary or memory string: OriginalFilenameBhBklfZbgTwtYptXoglSw.exe4 vs VAT INVOICE.exe |
Source: VAT INVOICE.exe, 00000004.00000002.597795285.00000000059C0000.00000002.00000001.sdmp | Binary or memory string: OriginalFilenamewshom.ocx.mui vs VAT INVOICE.exe |
Source: VAT INVOICE.exe, 00000004.00000002.598240392.0000000006160000.00000002.00000001.sdmp | Binary or memory string: OriginalFilenamemscorrc.dllT vs VAT INVOICE.exe |
Source: VAT INVOICE.exe | Binary or memory string: OriginalFilenameBinaryObject.exe4 vs VAT INVOICE.exe |
Source: VAT INVOICE.exe, 00000001.00000002.346844036.0000000002A69000.00000004.00000001.sdmp | Binary or memory string: Select * from UnmanagedMemoryStreamWrapper WHERE modelo=@modelo;? |
Source: VAT INVOICE.exe, 00000001.00000002.346844036.0000000002A69000.00000004.00000001.sdmp | Binary or memory string: Select * from Clientes WHERE id=@id;; |
Source: VAT INVOICE.exe, 00000001.00000002.346844036.0000000002A69000.00000004.00000001.sdmp | Binary or memory string: Select * from Aluguel5Erro ao listar Banco sql-UnmanagedMemoryStreamWrapper.INSERT INTO Aluguel VALUES(@clienteID, @data); |
Source: VAT INVOICE.exe, 00000001.00000002.346844036.0000000002A69000.00000004.00000001.sdmp | Binary or memory string: INSERT INTO UnmanagedMemoryStreamWrapper VALUES(@modelo, @fabricante, @ano, @cor); |
Source: VAT INVOICE.exe, 00000001.00000002.346844036.0000000002A69000.00000004.00000001.sdmp | Binary or memory string: INSERT INTO Itens_Aluguel VALUES(@aluguelID, @aviaoID, @validade); |
Source: VAT INVOICE.exe, 00000001.00000002.346844036.0000000002A69000.00000004.00000001.sdmp | Binary or memory string: Insert into Clientes values (@nome, @cpf, @rg, @cidade, @endereco, @uf, @telefone); |
Source: VAT INVOICE.exe, 00000001.00000002.346844036.0000000002A69000.00000004.00000001.sdmp | Binary or memory string: INSERT INTO Aluguel VALUES(@clienteID, @data); |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0026DC46 push 00000000h; iretd | 1_2_0026DC90 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0026D657 push es; retn 0001h | 1_2_0026D6B5 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_00C30CEC push cs; ret | 1_2_00C30D02 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_00C30C71 push cs; ret | 1_2_00C30C72 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_00C30C75 push cs; ret | 1_2_00C30C76 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_00D21879 push dword ptr [ebp+4Fh]; retf | 1_2_00D21887 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 1_2_0267CD3E push dword ptr [esi]; iretd | 1_2_0267CD47 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 4_2_0076D657 push es; retn 0001h | 4_2_0076D6B5 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 4_2_0076DC46 push 00000000h; iretd | 4_2_0076DC90 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 4_2_058940F0 push cs; retf | 4_2_05894107 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 4_2_05894008 push cs; retf | 4_2_0589401F |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 4_2_0589407C push cs; retf | 4_2_05894093 |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Code function: 4_2_07069DA0 push ds; iretd | 4_2_07069E3E |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\VAT INVOICE.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: VAT INVOICE.exe, 00000004.00000002.597171039.00000000051D0000.00000002.00000001.sdmp | Binary or memory string: A Virtual Machine could not be started because Hyper-V is not installed. |
Source: VAT INVOICE.exe, 00000001.00000002.346844036.0000000002A69000.00000004.00000001.sdmp | Binary or memory string: vmware |
Source: VAT INVOICE.exe, 00000001.00000002.346844036.0000000002A69000.00000004.00000001.sdmp | Binary or memory string: C:\PROGRAM FILES\VMWARE\VMWARE TOOLS\ |
Source: VAT INVOICE.exe, 00000001.00000002.346844036.0000000002A69000.00000004.00000001.sdmp | Binary or memory string: SOFTWARE\VMware, Inc.\VMware Tools |
Source: VAT INVOICE.exe, 00000001.00000002.346844036.0000000002A69000.00000004.00000001.sdmp | Binary or memory string: VMware SVGA II!Add-MpPreference -ExclusionPath " |
Source: VAT INVOICE.exe, 00000001.00000002.346844036.0000000002A69000.00000004.00000001.sdmp | Binary or memory string: VMWARE |
Source: VAT INVOICE.exe, 00000001.00000002.346844036.0000000002A69000.00000004.00000001.sdmp | Binary or memory string: InstallPath%C:\PROGRAM FILES\VMWARE\VMWARE TOOLS\ |
Source: VAT INVOICE.exe, 00000004.00000002.597171039.00000000051D0000.00000002.00000001.sdmp | Binary or memory string: A communication protocol error has occurred between the Hyper-V Host and Guest Compute Service. |
Source: VAT INVOICE.exe, 00000004.00000002.597171039.00000000051D0000.00000002.00000001.sdmp | Binary or memory string: The communication protocol version between the Hyper-V Host and Guest Compute Services is not supported. |
Source: VAT INVOICE.exe, 00000001.00000002.346844036.0000000002A69000.00000004.00000001.sdmp | Binary or memory string: VMWARE"SOFTWARE\VMware, Inc.\VMware ToolsLHARDWARE\DEVICEMAP\Scsi\Scsi Port 1\Scsi Bus 0\Target Id 0\Logical Unit Id 0LHARDWARE\DEVICEMAP\Scsi\Scsi Port 2\Scsi Bus 0\Target Id 0\Logical Unit Id 0'SYSTEM\ControlSet001\Services\Disk\Enum |
Source: VAT INVOICE.exe, 00000001.00000002.346844036.0000000002A69000.00000004.00000001.sdmp | Binary or memory string: VMware SVGA II |
Source: VAT INVOICE.exe, 00000001.00000002.346844036.0000000002A69000.00000004.00000001.sdmp | Binary or memory string: vmwareNSYSTEM\ControlSet001\Control\Class\{4D36E968-E325-11CE-BFC1-08002BE10318}\0000 |
Source: VAT INVOICE.exe, 00000004.00000002.598670487.0000000006DE0000.00000004.00000001.sdmp | Binary or memory string: Hyper-V RAW%SystemRoot%\system32\mswsock.dlld |
Source: VAT INVOICE.exe, 00000004.00000002.597171039.00000000051D0000.00000002.00000001.sdmp | Binary or memory string: An unknown internal message was received by the Hyper-V Compute Service. |