Source: FACTURAS.exe | Static PE information: LOCAL_SYMS_STRIPPED, 32BIT_MACHINE, EXECUTABLE_IMAGE, LINE_NUMS_STRIPPED, RELOCS_STRIPPED |
Source: FACTURAS.exe | Static PE information: LOCAL_SYMS_STRIPPED, 32BIT_MACHINE, EXECUTABLE_IMAGE, LINE_NUMS_STRIPPED, RELOCS_STRIPPED |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306D940 NtAllocateVirtualMemory, |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306DB0E NtAllocateVirtualMemory, |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306DB52 NtAllocateVirtualMemory, |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306DE06 NtAllocateVirtualMemory, |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306DC8C NtAllocateVirtualMemory, |
Source: FACTURAS.exe, 00000000.00000002.860928984.0000000000424000.00000002.00020000.sdmp | Binary or memory string: OriginalFilenameSERVICEKONTRAKTS.exe vs FACTURAS.exe |
Source: FACTURAS.exe, 00000000.00000002.861579074.0000000002A60000.00000004.00000001.sdmp | Binary or memory string: OriginalFilenameSERVICEKONTRAKTS.exeFE2XMURALL vs FACTURAS.exe |
Source: FACTURAS.exe | Binary or memory string: OriginalFilenameSERVICEKONTRAKTS.exe vs FACTURAS.exe |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_03076B17 |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306D940 |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306E3A7 |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306A3A0 |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306E3C2 |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306A28E |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_030692AF |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_030692DA |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306A122 |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306B1FE |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306B034 |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306A0B4 |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306A0D5 |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306A730 |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306E75A |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306C76B |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_030697F8 |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306E65C |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306A6C9 |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306D566 |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306957A |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_03074430 |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_03069444 |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306A4C0 |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306E4F6 |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306DB0E |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_03074BBF |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_03073BCC |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_03069A80 |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_03073ABC |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306AAFA |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_03069932 |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306993C |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_03073994 |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306A9DE |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0307382F |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_03073860 |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306E8B4 |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306EF04 |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_03074F2E |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_03069FA8 |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_03069E60 |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306AE9A |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306EEB4 |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_03073D0C |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306CD2E |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306AD74 |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_03069DDE |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306AC38 |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_03069CDB |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_004098C0 push 2DBAC715h; retf |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_004098CB push ss; retf |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0040508B pushad ; ret |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0040755C push cs; retf |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_00407179 push esp; iretd |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_00407584 push cs; retf |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_004085B8 push edx; retf |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_00406245 push ecx; retf |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_004072E6 push ebp; iretd |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_004042FC push edx; retf |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0040972A push eax; iretd |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_004083D6 pushfd ; iretd |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_03066512 push ecx; retf |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_03064E82 push esi; iretd |
Source: C:\Users\user\Desktop\FACTURAS.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\Desktop\FACTURAS.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\Desktop\FACTURAS.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\Desktop\FACTURAS.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\Desktop\FACTURAS.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0307339D mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_0306C76B mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_03072A70 mov eax, dword ptr fs:[00000030h] |
Source: C:\Users\user\Desktop\FACTURAS.exe | Code function: 0_2_03074F2E mov eax, dword ptr fs:[00000030h] |
Source: FACTURAS.exe, 00000000.00000002.861049488.0000000000D90000.00000002.00020000.sdmp | Binary or memory string: Program Manager |
Source: FACTURAS.exe, 00000000.00000002.861049488.0000000000D90000.00000002.00020000.sdmp | Binary or memory string: Shell_TrayWnd |
Source: FACTURAS.exe, 00000000.00000002.861049488.0000000000D90000.00000002.00020000.sdmp | Binary or memory string: Progman |
Source: FACTURAS.exe, 00000000.00000002.861049488.0000000000D90000.00000002.00020000.sdmp | Binary or memory string: Progmanlock |
Thumbnails
This section contains all screenshots as thumbnails, including those not shown in the slideshow.