Source: unknown | Process created: C:\Users\user\Desktop\Gulvmaattens.exe "C:\Users\user\Desktop\Gulvmaattens.exe" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x78^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x61^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7D^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7F^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x00^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x01^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x52^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x47^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x75^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5F^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x72^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1B^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5E^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x0B^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x43^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x4B^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x0B^51" | |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x78^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x61^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7D^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x00^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x01^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x47^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x75^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x01^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x72^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5E^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x75^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x75^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x0B^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x4B^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x0B^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7D^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x0B^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x0B^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x75^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7D^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x00^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7D^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x00^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5E^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x00^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7D^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5E^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x61^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5E^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x78^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x0B^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x0B^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x78^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x61^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7D^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7F^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x00^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x01^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x52^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x47^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x75^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5F^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x72^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1B^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5E^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x0B^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x43^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x4B^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x0B^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x78^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x61^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7D^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x00^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x01^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x47^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x75^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x01^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x72^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5E^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x75^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x75^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x0B^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x4B^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x0B^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7D^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x0B^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x0B^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x75^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7D^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x00^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7D^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x00^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5E^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x00^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7D^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5E^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x61^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5E^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x78^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x0B^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x0B^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x78^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x61^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7D^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x00^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x01^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x47^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x75^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x01^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x72^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5E^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x75^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x75^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x0B^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x4B^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x0B^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7D^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x0B^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x0B^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x75^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7D^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x00^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7D^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x00^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5E^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x00^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7D^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5E^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x61^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5E^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x78^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x0B^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x0B^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown | Jump to behavior |