Source: VZghv7yI7g.exe | Static PE information: LOCAL_SYMS_STRIPPED, 32BIT_MACHINE, EXECUTABLE_IMAGE, LINE_NUMS_STRIPPED, RELOCS_STRIPPED |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_004092BC |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225662B |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02256E00 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02251664 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02251276 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02251A43 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_022562A3 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02256AAB |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225E280 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02256692 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_022516E3 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_022512E8 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_022536FA |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_022566C7 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02256EC7 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225C329 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02256B6B |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02256778 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225634E |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225DB55 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02251783 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02256F9B |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02256BEB |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_022563F7 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02255FF1 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225AFD7 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02257025 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02257022 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225681F |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225684F |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225A455 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02257CAB |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02256C93 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225709F |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_022518FB |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225AFD7 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225692D |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02256D2C |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02256138 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225156F |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225A969 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02251175 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02253971 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02256955 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02256554 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_022555A6 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_022561DC |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225C5D9 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_022569D8 |
Source: VZghv7yI7g.exe, 00000000.00000002.756145297.00000000021F0000.00000002.00000001.sdmp | Binary or memory string: OriginalFilenameuser32j% vs VZghv7yI7g.exe |
Source: VZghv7yI7g.exe, 00000000.00000000.226808596.0000000000435000.00000002.00020000.sdmp | Binary or memory string: OriginalFilenameIndtr8.exe vs VZghv7yI7g.exe |
Source: VZghv7yI7g.exe | Binary or memory string: OriginalFilenameIndtr8.exe vs VZghv7yI7g.exe |
Source: VZghv7yI7g.exe | Static PE information: LOCAL_SYMS_STRIPPED, 32BIT_MACHINE, EXECUTABLE_IMAGE, LINE_NUMS_STRIPPED, RELOCS_STRIPPED |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0040C06E push 00000000h; retf |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_00406625 push ebp; iretd |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02253429 push 84000002h; retf |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02250095 pushad ; retf |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225010B pushad ; retf |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225662B |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02251664 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02251276 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_022562A3 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02256AAB |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225E280 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02256692 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_022516E3 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_022512E8 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_022536FA |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_022566C7 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02256778 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225634E |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02251783 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_022563F7 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02255FF1 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225681F |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225684F |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225A455 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_022518FB |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225692D |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02256138 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225156F |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225A969 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02251175 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02253971 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02256955 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02256554 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_022561DC |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225C5D9 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_022569D8 |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_02257AB1 mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225A900 mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225B1FE mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\VZghv7yI7g.exe | Code function: 0_2_0225C5D9 mov eax, dword ptr fs:[00000030h] |
Source: VZghv7yI7g.exe, 00000000.00000002.755749327.0000000000DA0000.00000002.00000001.sdmp | Binary or memory string: uProgram Manager |
Source: VZghv7yI7g.exe, 00000000.00000002.755749327.0000000000DA0000.00000002.00000001.sdmp | Binary or memory string: Shell_TrayWnd |
Source: VZghv7yI7g.exe, 00000000.00000002.755749327.0000000000DA0000.00000002.00000001.sdmp | Binary or memory string: Progman |
Source: VZghv7yI7g.exe, 00000000.00000002.755749327.0000000000DA0000.00000002.00000001.sdmp | Binary or memory string: Progmanlock |
Thumbnails
This section contains all screenshots as thumbnails, including those not shown in the slideshow.