Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_00407458 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_00406C81 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_71401B5F |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AB2B88 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA57F1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AB4B18 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AB3510 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA1AA2 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA12BA |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0EBF |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0285 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0A9A |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA069A |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA7E9F |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA12F8 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0EF4 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0ACE |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA06DD |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA1ADD |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA02D1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA1A2A |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0A29 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA862E |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA2E21 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0238 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0E36 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA1209 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0202 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0A1D |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0612 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA1A6A |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0A6E |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA7E7B |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA1275 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA065D |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA1257 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA17A4 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA1BB9 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA03B6 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0BB4 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0B89 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA1B85 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0795 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0F95 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0FEF |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA07E3 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA03FA |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AB43FB |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA6FF7 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0BF7 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA1BF4 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA17D0 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0F20 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0B0E |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA071A |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA1B11 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA1766 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0B48 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA1348 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0349 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA074E |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA1B42 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA1759 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0F56 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0CBF |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA088E |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0080 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA109A |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AB38C3 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA04C5 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA18D8 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA08D1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA10D6 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA842A |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AB582E |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0C39 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA043E |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AAC832 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA1C33 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA100E |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA180F |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0005 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA8405 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0018 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA5815 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0C6F |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0060 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA1858 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0853 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA1056 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA2857 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA4DA9 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA01BA |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA09BB |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA19BB |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AB41BA |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0182 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0983 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA1983 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA8587 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0592 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA09ED |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA19F4 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0DF5 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0DCA |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AABDD1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0D39 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0908 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0103 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA111B |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA1917 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA7917 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0979 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0D7D |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA5973 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0548 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA1946 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA0144 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Code function: 1_2_02AA1155 |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_00E1B025 |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_00E18960 |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_00E1DED0 |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_00E183E0 |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_00E1A0D0 |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_00E14928 |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_00E11BD8 |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_00E13348 |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_00E2D8F8 |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_00E255E8 |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_00E24168 |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_00E2C510 |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_00E296F0 |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_00E26790 |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_00E225E8 |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_00E2317B |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_00E237B0 |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_01111108 |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_0111DB68 |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_01117978 |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_1CFD5D08 |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_1CFD4374 |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_1CFD5CC1 |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_1CFD69F1 |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_1F2BBE70 |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_1F2B4320 |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_1F2BB110 |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_1F2B3708 |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Code function: 143_2_1F2B3A50 |
Source: unknown | Process created: C:\Users\user\Desktop\Gulvmaattens.exe "C:\Users\user\Desktop\Gulvmaattens.exe" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x78^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x61^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7D^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7F^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x00^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x01^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x70^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x52^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x47^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x75^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5F^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x72^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1B^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5E^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x4B^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x0B^51" |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe "C:\Users\user\Desktop\Gulvmaattens.exe" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe "C:\Users\user\Desktop\Gulvmaattens.exe" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe "C:\Users\user\Desktop\Gulvmaattens.exe" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe "C:\Users\user\Desktop\Gulvmaattens.exe" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe "C:\Users\user\Desktop\Gulvmaattens.exe" |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process created: C:\Windows\System32\conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x78^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x61^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7D^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x00^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x01^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x70^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x75^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x72^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1B^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5E^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x78^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x75^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x72^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1B^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5E^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x78^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x75^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x72^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1B^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5E^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x78^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x01^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x4B^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x70^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5E^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe "C:\Users\user\Desktop\Gulvmaattens.exe" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x72^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe "C:\Users\user\Desktop\Gulvmaattens.exe" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe "C:\Users\user\Desktop\Gulvmaattens.exe" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe "C:\Users\user\Desktop\Gulvmaattens.exe" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe "C:\Users\user\Desktop\Gulvmaattens.exe" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x61^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x75^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe "C:\Users\user\Desktop\Gulvmaattens.exe" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe "C:\Users\user\Desktop\Gulvmaattens.exe" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe "C:\Users\user\Desktop\Gulvmaattens.exe" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe "C:\Users\user\Desktop\Gulvmaattens.exe" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe "C:\Users\user\Desktop\Gulvmaattens.exe" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x78^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x61^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7D^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x00^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x01^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x70^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x52^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x47^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x75^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x72^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1B^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5E^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x4B^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x0B^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x78^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x61^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7D^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x00^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x01^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x70^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x75^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x72^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1B^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5E^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x78^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x75^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x72^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1B^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5E^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x78^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x75^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x72^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1B^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5E^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x78^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x01^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x4B^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x70^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5E^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x72^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x61^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x75^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\System32\conhost.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x78^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x61^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7D^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x7F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x00^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x01^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x70^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x75^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x72^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1B^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5E^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x78^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x75^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x72^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1B^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5E^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x78^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x75^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x72^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1B^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5E^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x78^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x07^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x01^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x4B^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x09^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x70^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x03^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5E^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe "C:\Users\user\Desktop\Gulvmaattens.exe" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x5A^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x41^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x72^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x56^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe "C:\Users\user\Desktop\Gulvmaattens.exe" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe "C:\Users\user\Desktop\Gulvmaattens.exe" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe "C:\Users\user\Desktop\Gulvmaattens.exe" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x76^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe "C:\Users\user\Desktop\Gulvmaattens.exe" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x61^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x13^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x1F^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\System32\Conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /c set /a "0x75^51" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: unknown unknown |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe "C:\Users\user\Desktop\Gulvmaattens.exe" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe "C:\Users\user\Desktop\Gulvmaattens.exe" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe "C:\Users\user\Desktop\Gulvmaattens.exe" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe "C:\Users\user\Desktop\Gulvmaattens.exe" |
Source: C:\Users\user\Desktop\Gulvmaattens.exe | Process created: C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe "C:\Users\user\Desktop\Gulvmaattens.exe" |