Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_10002170 FileEncrypt, |
0_2_10002170 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_10002290 FileDecrypt, |
0_2_10002290 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_10004340 SecuritySave,CompareFileTime,CompareFileTime,CompareFileTime,EncryptEx, |
0_2_10004340 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_10001D30 Encrypt,SysAllocStringLen, |
0_2_10001D30 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_10001E50 EncryptEx, |
0_2_10001E50 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_10003E90 SecurityLoad,SecurityWipeMemory,GetSystemTime,SystemTimeToFileTime,wsprintfA,lstrcpyA,wsprintfA,wsprintfA,lstrlenA,lstrcpyA,lstrcpynA,DecryptEx, |
0_2_10003E90 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_10001EB0 DecryptEx, |
0_2_10001EB0 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_10001F10 Decrypt,SysAllocStringLen, |
0_2_10001F10 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_10001FF0 Decrypt2BinStr, |
0_2_10001FF0 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_10002170 FileEncrypt, |
3_2_10002170 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_10002290 FileDecrypt, |
3_2_10002290 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_10004340 SecuritySave,CompareFileTime,CompareFileTime,CompareFileTime,EncryptEx, |
3_2_10004340 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_10001D30 Encrypt,SysAllocStringLen, |
3_2_10001D30 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_10001E50 EncryptEx, |
3_2_10001E50 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_10003E90 SecurityLoad,SecurityWipeMemory,GetSystemTime,SystemTimeToFileTime,wsprintfA,lstrcpyA,wsprintfA,wsprintfA,lstrlenA,lstrcpyA,lstrcpynA,DecryptEx, |
3_2_10003E90 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_10001EB0 DecryptEx, |
3_2_10001EB0 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_10001F10 Decrypt,SysAllocStringLen, |
3_2_10001F10 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_10001FF0 Decrypt2BinStr, |
3_2_10001FF0 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_10002170 FileEncrypt, |
33_2_10002170 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_10002290 FileDecrypt, |
33_2_10002290 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_10004340 SecuritySave,CompareFileTime,CompareFileTime,CompareFileTime,EncryptEx, |
33_2_10004340 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_10001D30 Encrypt,SysAllocStringLen, |
33_2_10001D30 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_10001E50 EncryptEx, |
33_2_10001E50 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_10003E90 SecurityLoad,SecurityWipeMemory,GetSystemTime,SystemTimeToFileTime,wsprintfA,lstrcpyA,wsprintfA,wsprintfA,lstrlenA,lstrcpyA,lstrcpynA,DecryptEx, |
33_2_10003E90 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_10001EB0 DecryptEx, |
33_2_10001EB0 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_10001F10 Decrypt,SysAllocStringLen, |
33_2_10001F10 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_10001FF0 Decrypt2BinStr, |
33_2_10001FF0 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_10005830 |
0_2_10005830 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_100120C0 |
0_2_100120C0 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_10013160 |
0_2_10013160 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_1001E96D |
0_2_1001E96D |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_100019D0 |
0_2_100019D0 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_100151D2 |
0_2_100151D2 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_1000B9E0 |
0_2_1000B9E0 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_10011A80 |
0_2_10011A80 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_1000B390 |
0_2_1000B390 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_100143C1 |
0_2_100143C1 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_10009400 |
0_2_10009400 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_1000BC30 |
0_2_1000BC30 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_10011470 |
0_2_10011470 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_10018507 |
0_2_10018507 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_10014D10 |
0_2_10014D10 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_10015D40 |
0_2_10015D40 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_10015590 |
0_2_10015590 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_10014610 |
0_2_10014610 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_1000BE90 |
0_2_1000BE90 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_1000B6E0 |
0_2_1000B6E0 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_10002F80 |
0_2_10002F80 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_10013790 |
0_2_10013790 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_10010FC0 |
0_2_10010FC0 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_1000AFF0 |
0_2_1000AFF0 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_100019D0 |
3_2_100019D0 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_10005830 |
3_2_10005830 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_100120C0 |
3_2_100120C0 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_10013160 |
3_2_10013160 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_1001E96D |
3_2_1001E96D |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_100151D2 |
3_2_100151D2 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_1000B9E0 |
3_2_1000B9E0 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_10011A80 |
3_2_10011A80 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_1000B390 |
3_2_1000B390 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_100143C1 |
3_2_100143C1 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_10009400 |
3_2_10009400 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_1000BC30 |
3_2_1000BC30 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_10011470 |
3_2_10011470 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_10018507 |
3_2_10018507 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_10014D10 |
3_2_10014D10 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_10015D40 |
3_2_10015D40 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_10015590 |
3_2_10015590 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_10014610 |
3_2_10014610 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_1000BE90 |
3_2_1000BE90 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_1000B6E0 |
3_2_1000B6E0 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_10002F80 |
3_2_10002F80 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_10013790 |
3_2_10013790 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_10010FC0 |
3_2_10010FC0 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_1000AFF0 |
3_2_1000AFF0 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_10005830 |
33_2_10005830 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_100120C0 |
33_2_100120C0 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_10013160 |
33_2_10013160 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_1001E96D |
33_2_1001E96D |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_100019D0 |
33_2_100019D0 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_100151D2 |
33_2_100151D2 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_1000B9E0 |
33_2_1000B9E0 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_10011A80 |
33_2_10011A80 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_1000B390 |
33_2_1000B390 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_100143C1 |
33_2_100143C1 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_10009400 |
33_2_10009400 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_1000BC30 |
33_2_1000BC30 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_10011470 |
33_2_10011470 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_10018507 |
33_2_10018507 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_10014D10 |
33_2_10014D10 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_10015D40 |
33_2_10015D40 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_10015590 |
33_2_10015590 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_10014610 |
33_2_10014610 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_1000BE90 |
33_2_1000BE90 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_1000B6E0 |
33_2_1000B6E0 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_10002F80 |
33_2_10002F80 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_10013790 |
33_2_10013790 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_10010FC0 |
33_2_10010FC0 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_1000AFF0 |
33_2_1000AFF0 |
Source: unknown |
Process created: C:\Windows\System32\loaddll32.exe loaddll32.exe 'C:\Users\user\Desktop\utility.dll' |
|
Source: C:\Windows\System32\loaddll32.exe |
Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /C rundll32.exe 'C:\Users\user\Desktop\utility.dll',#1 |
|
Source: C:\Windows\System32\loaddll32.exe |
Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe C:\Users\user\Desktop\utility.dll,CPUSpeed |
|
Source: C:\Windows\SysWOW64\cmd.exe |
Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe 'C:\Users\user\Desktop\utility.dll',#1 |
|
Source: C:\Windows\SysWOW64\rundll32.exe |
Process created: C:\Windows\SysWOW64\WerFault.exe C:\Windows\SysWOW64\WerFault.exe -u -p 460 -s 688 |
|
Source: C:\Windows\SysWOW64\rundll32.exe |
Process created: C:\Windows\SysWOW64\WerFault.exe C:\Windows\SysWOW64\WerFault.exe -u -p 908 -s 696 |
|
Source: C:\Windows\System32\loaddll32.exe |
Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe C:\Users\user\Desktop\utility.dll,Decrypt |
|
Source: C:\Windows\SysWOW64\rundll32.exe |
Process created: C:\Windows\SysWOW64\WerFault.exe C:\Windows\SysWOW64\WerFault.exe -u -p 4120 -s 688 |
|
Source: C:\Windows\System32\loaddll32.exe |
Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe C:\Users\user\Desktop\utility.dll,Decrypt2BinStr |
|
Source: C:\Windows\SysWOW64\rundll32.exe |
Process created: C:\Windows\SysWOW64\WerFault.exe C:\Windows\SysWOW64\WerFault.exe -u -p 5436 -s 688 |
|
Source: C:\Windows\System32\loaddll32.exe |
Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe C:\Users\user\Desktop\utility.dll,DecryptEx |
|
Source: C:\Windows\SysWOW64\rundll32.exe |
Process created: C:\Windows\SysWOW64\WerFault.exe C:\Windows\SysWOW64\WerFault.exe -u -p 5988 -s 688 |
|
Source: C:\Windows\System32\loaddll32.exe |
Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe C:\Users\user\Desktop\utility.dll,Deflate |
|
Source: C:\Windows\SysWOW64\rundll32.exe |
Process created: C:\Windows\SysWOW64\WerFault.exe C:\Windows\SysWOW64\WerFault.exe -u -p 4928 -s 688 |
|
Source: C:\Windows\System32\loaddll32.exe |
Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe C:\Users\user\Desktop\utility.dll,DeflateToMemory |
|
Source: C:\Windows\SysWOW64\rundll32.exe |
Process created: C:\Windows\SysWOW64\WerFault.exe C:\Windows\SysWOW64\WerFault.exe -u -p 1268 -s 688 |
|
Source: C:\Windows\System32\loaddll32.exe |
Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe C:\Users\user\Desktop\utility.dll,DirectDrawEnumDisplayModes |
|
Source: C:\Windows\System32\loaddll32.exe |
Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe C:\Users\user\Desktop\utility.dll,DirectDrawIsSupported |
|
Source: C:\Windows\System32\loaddll32.exe |
Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe C:\Users\user\Desktop\utility.dll,DirectDrawRestoreDisplayMode |
|
Source: C:\Windows\System32\loaddll32.exe |
Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe C:\Users\user\Desktop\utility.dll,DirectDrawSetDisplayMode |
|
Source: C:\Windows\System32\loaddll32.exe |
Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe C:\Users\user\Desktop\utility.dll,DirectoryAdd |
|
Source: C:\Windows\SysWOW64\rundll32.exe |
Process created: C:\Windows\SysWOW64\WerFault.exe C:\Windows\SysWOW64\WerFault.exe -u -p 6220 -s 688 |
|
Source: C:\Windows\System32\loaddll32.exe |
Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe C:\Users\user\Desktop\utility.dll,DirectoryClear |
|
Source: C:\Windows\System32\loaddll32.exe |
Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe C:\Users\user\Desktop\utility.dll,DirectoryDump |
|
Source: C:\Windows\System32\loaddll32.exe |
Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /C rundll32.exe 'C:\Users\user\Desktop\utility.dll',#1 |
Jump to behavior |
Source: C:\Windows\System32\loaddll32.exe |
Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe C:\Users\user\Desktop\utility.dll,CPUSpeed |
Jump to behavior |
Source: C:\Windows\System32\loaddll32.exe |
Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe C:\Users\user\Desktop\utility.dll,Decrypt |
Jump to behavior |
Source: C:\Windows\System32\loaddll32.exe |
Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe C:\Users\user\Desktop\utility.dll,Decrypt2BinStr |
Jump to behavior |
Source: C:\Windows\System32\loaddll32.exe |
Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe C:\Users\user\Desktop\utility.dll,DecryptEx |
Jump to behavior |
Source: C:\Windows\System32\loaddll32.exe |
Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe C:\Users\user\Desktop\utility.dll,Deflate |
Jump to behavior |
Source: C:\Windows\System32\loaddll32.exe |
Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe C:\Users\user\Desktop\utility.dll,DeflateToMemory |
Jump to behavior |
Source: C:\Windows\System32\loaddll32.exe |
Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe C:\Users\user\Desktop\utility.dll,DirectDrawEnumDisplayModes |
Jump to behavior |
Source: C:\Windows\System32\loaddll32.exe |
Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe C:\Users\user\Desktop\utility.dll,DirectDrawIsSupported |
Jump to behavior |
Source: C:\Windows\System32\loaddll32.exe |
Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe C:\Users\user\Desktop\utility.dll,DirectDrawRestoreDisplayMode |
Jump to behavior |
Source: C:\Windows\System32\loaddll32.exe |
Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe C:\Users\user\Desktop\utility.dll,DirectDrawSetDisplayMode |
Jump to behavior |
Source: C:\Windows\System32\loaddll32.exe |
Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe C:\Users\user\Desktop\utility.dll,DirectoryAdd |
Jump to behavior |
Source: C:\Windows\System32\loaddll32.exe |
Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe C:\Users\user\Desktop\utility.dll,DirectoryClear |
Jump to behavior |
Source: C:\Windows\System32\loaddll32.exe |
Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe C:\Users\user\Desktop\utility.dll,DirectoryDump |
Jump to behavior |
Source: C:\Windows\System32\loaddll32.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Windows\System32\loaddll32.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Windows\System32\loaddll32.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Windows\System32\loaddll32.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Windows\System32\loaddll32.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Windows\System32\loaddll32.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Windows\System32\loaddll32.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Windows\System32\loaddll32.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Windows\System32\loaddll32.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Windows\System32\loaddll32.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Windows\System32\loaddll32.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Windows\System32\loaddll32.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Windows\SysWOW64\cmd.exe |
Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe 'C:\Users\user\Desktop\utility.dll',#1 |
Jump to behavior |
Source: C:\Windows\SysWOW64\cmd.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\rundll32.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\rundll32.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: FAILCRITICALERRORS | NOGPFAULTERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: FAILCRITICALERRORS | NOGPFAULTERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\rundll32.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: FAILCRITICALERRORS | NOGPFAULTERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\rundll32.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: FAILCRITICALERRORS | NOGPFAULTERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\rundll32.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: FAILCRITICALERRORS | NOGPFAULTERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\rundll32.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: FAILCRITICALERRORS | NOGPFAULTERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\rundll32.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: FAILCRITICALERRORS | NOGPFAULTERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\rundll32.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\rundll32.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\rundll32.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\rundll32.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\rundll32.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: FAILCRITICALERRORS | NOGPFAULTERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\WerFault.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\rundll32.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\SysWOW64\rundll32.exe |
Process information set: NOOPENFILEERRORBOX |
|
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_10004A80 ServerListen,_rand,__ftol,DestroyWindow,UnregisterClassA,CreateThread,DestroyWindow,UnregisterClassA,WSACleanup, |
0_2_10004A80 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_10004B60 ServerListenOnPort,DestroyWindow,UnregisterClassA,CreateThread,DestroyWindow,UnregisterClassA,WSACleanup, |
0_2_10004B60 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_10004D70 ServerIsListening, |
0_2_10004D70 |
Source: C:\Windows\System32\loaddll32.exe |
Code function: 0_2_10004DE0 socket,WSAAsyncSelect,closesocket,htons,bind,closesocket,listen,closesocket, |
0_2_10004DE0 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_10004A80 ServerListen,_rand,__ftol,DestroyWindow,UnregisterClassA,CreateThread,DestroyWindow,UnregisterClassA,WSACleanup, |
3_2_10004A80 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_10004B60 ServerListenOnPort,DestroyWindow,UnregisterClassA,CreateThread,DestroyWindow,UnregisterClassA,WSACleanup, |
3_2_10004B60 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_10004D70 ServerIsListening, |
3_2_10004D70 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 3_2_10004DE0 socket,WSAAsyncSelect,closesocket,htons,bind,closesocket,listen,closesocket, |
3_2_10004DE0 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_10004A80 ServerListen,_rand,__ftol,DestroyWindow,UnregisterClassA,CreateThread,DestroyWindow,UnregisterClassA,WSACleanup, |
33_2_10004A80 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_10004B60 ServerListenOnPort,DestroyWindow,UnregisterClassA,CreateThread,DestroyWindow,UnregisterClassA,WSACleanup, |
33_2_10004B60 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_10004D70 ServerIsListening, |
33_2_10004D70 |
Source: C:\Windows\SysWOW64\rundll32.exe |
Code function: 33_2_10004DE0 socket,WSAAsyncSelect,closesocket,htons,bind,closesocket,listen,closesocket, |
33_2_10004DE0 |