Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: mscoree.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: apphelp.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: kernel.appcore.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: version.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: vcruntime140_clr0400.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: ucrtbase_clr0400.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: ucrtbase_clr0400.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: uxtheme.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: windows.storage.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: wldp.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: profapi.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: cryptsp.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: rsaenh.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: cryptbase.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: dwrite.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: amsi.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: userenv.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: msasn1.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: gpapi.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: windowscodecs.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: mscoree.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: kernel.appcore.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: version.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: vcruntime140_clr0400.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: ucrtbase_clr0400.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: ucrtbase_clr0400.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: uxtheme.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: windows.storage.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: wldp.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: profapi.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: cryptsp.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: rsaenh.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: cryptbase.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: wbemcomn.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: amsi.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: userenv.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: sspicli.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: vaultcli.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: wintypes.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: iphlpapi.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: dnsapi.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: dhcpcsvc6.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: dhcpcsvc.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: winnsi.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: mswsock.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: rasadhlp.dll | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Section loaded: fwpuclnt.dll | Jump to behavior |
Source: 0.2.NEW ORDER 98540-0.exe.7620000.11.raw.unpack, MpXysIaBDSPVFB0yTd.cs | High entropy of concatenated method names: 'uHnhsoyUZI', 'sNWhGOtDAL', 'yf1hvJ1GHI', 'fsFhrbvjJW', 'CbDhkAW1fW', 'lrqhpshUKk', 'KnrhMB8uXk', 'GpMhly5Cag', 'M0LhSwfIUw', 'g4Ch1aM2Vo' |
Source: 0.2.NEW ORDER 98540-0.exe.7620000.11.raw.unpack, lnblCeeykDavJbFESN.cs | High entropy of concatenated method names: 'vOvpsfILiN', 'Vc5pv3Zqvd', 'gIJpkm9ODd', 'axFkb5yJDU', 'nk0kzVB5X6', 'NX5pHWNtIm', 'o6spAD3ZGG', 'ynWpUdYWD8', 'vGfpq4W3wr', 'fe6pT7nFZP' |
Source: 0.2.NEW ORDER 98540-0.exe.7620000.11.raw.unpack, mQGffPbFAA8IEcj98t.cs | High entropy of concatenated method names: 'CHXEATO6Xm', 'zu9EqpHNKU', 'X6SETmy5VD', 'kjIEsiOpsY', 'WKoEGh60eA', 'e8AErrrNci', 'coMEkO0E2L', 'jDAhxYr3UU', 'dbDha5uPHa', 'HjVhC9OtVR' |
Source: 0.2.NEW ORDER 98540-0.exe.7620000.11.raw.unpack, HVHn2g3Q4LfsM7dyVK.cs | High entropy of concatenated method names: 'YyatSnHGd2', 'Q7Rt1mjJkl', 'ToString', 'YHJts0veGB', 'KuAtG8m2Au', 'hF5tv5T3WV', 'YYvtrfPCyb', 'DbXtkGOwST', 'kottp3ehFQ', 'ILbtMnS1Ko' |
Source: 0.2.NEW ORDER 98540-0.exe.7620000.11.raw.unpack, UYdeq7CoZY7D8MKIGo.cs | High entropy of concatenated method names: 'qXnhBGyte8', 'vFWh5mRYxO', 'QyRhgYcsxx', 'gAIh9M2MVn', 'xOPhwQDFbp', 'X9LhQFxEFG', 'Next', 'Next', 'Next', 'NextBytes' |
Source: 0.2.NEW ORDER 98540-0.exe.7620000.11.raw.unpack, r4D6nA4ylfJKbPA8Hx.cs | High entropy of concatenated method names: 'HM2pPj4KIA', 'QelpmKVSJR', 'CXqp2MpqsM', 'iAOpIllM9Q', 'tCXp0tM9VK', 'ATWp82ITsS', 'v3XpjxjbKv', 'UGXpyP0Btb', 'lK2pJnJ6nv', 'mWUpXUXC0v' |
Source: 0.2.NEW ORDER 98540-0.exe.7620000.11.raw.unpack, XLNrvkGXXVcIvSsY94.cs | High entropy of concatenated method names: 'Dispose', 'ewkACqArxA', 'PNdU5ZMoTN', 'Mk8YYQCwrs', 'r4pAbXysIB', 'nSPAzVFB0y', 'ProcessDialogKey', 'dduUHYdeq7', 'oZYUA7D8MK', 'AGoUU1QGff' |
Source: 0.2.NEW ORDER 98540-0.exe.7620000.11.raw.unpack, wLIAKIAH7d9yDyNmdO3.cs | High entropy of concatenated method names: 'gviEPnU80e', 'FVjEmOXdk3', 'QYlE2micL1', 'NXlEI49LKM', 'fXSE0r1oc0', 'I82E8sV1oe', 'G1kEjx6WmB', 'E6bEy1vQBI', 'lfvEJ7xQht', 'SrLEXUFQ2C' |
Source: 0.2.NEW ORDER 98540-0.exe.7620000.11.raw.unpack, uZlOL9TLYmU5CQWggV.cs | High entropy of concatenated method names: 'ucUAp8twtf', 'QxeAMIQtw5', 'xjBASYsGvi', 'x51A1GShLv', 'Vy5AowkZGo', 'm3aAOOruWk', 'fp9iGhwijMs7COukQq', 'Epg9EZB9DDomvBbAil', 'j5JAAib0tc', 'B1SAqHGTh9' |
Source: 0.2.NEW ORDER 98540-0.exe.7620000.11.raw.unpack, b8twtfyFxeIQtw5F0G.cs | High entropy of concatenated method names: 'IqbGw6dbgA', 'aGmGLdXeGy', 'YjDGVL1tgE', 'UYcG3XWX4x', 'DbIGuOD2LN', 'X6GGndeUui', 'WZxGxpvxHs', 'i4MGa6FDMs', 'NrmGCPWUqE', 'bJdGblQlCB' |
Source: 0.2.NEW ORDER 98540-0.exe.7620000.11.raw.unpack, HCIZegUnFlju9F3i60.cs | High entropy of concatenated method names: 'eOj2Om7JU', 'AF4ItOeY1', 'HyZ8PqOYP', 'XJbjuFcWh', 'PKJJBnMy0', 'fO7XRpwM5', 'ADrPjUZHfL79Dpc7R0', 'xRnsK71ppjC6SNaQlN', 'AZ7hNEwyg', 'tyiRTVHgN' |
Source: 0.2.NEW ORDER 98540-0.exe.7620000.11.raw.unpack, NL0FkmAqDomhZHob5QI.cs | High entropy of concatenated method names: 'CanConvertFrom', 'ConvertFrom', 'ConvertTo', 'KiuRw1kZqD', 'r2ZRLeRPgQ', 'r7WRVxYbRh', 'jdKR3cqNM4', 'WObRu0woYQ', 'oX3RncB1jE', 'gp1RxL6HY0' |
Source: 0.2.NEW ORDER 98540-0.exe.7620000.11.raw.unpack, L06p97JjBYsGviP51G.cs | High entropy of concatenated method names: 'CSCvITw9MF', 'f6sv8kt23a', 'wY7vy44eOi', 'P3CvJOhVro', 'pbnvoT0Ehp', 'NyMvOi0VTd', 'VlivtEFTET', 'JhtvhslbC4', 'zmUvEGj4in', 'LxLvRbRQEJ' |
Source: 0.2.NEW ORDER 98540-0.exe.7620000.11.raw.unpack, fHXvykMgXmg0e7ArtG.cs | High entropy of concatenated method names: 'G0aqiFIZZe', 'tUGqsPObsv', 'OAiqGtvUAs', 'AI7qvbsc94', 'VvVqr6hZFW', 'Hvhqkq0j5k', 'ew2qprpEkx', 'wIuqMDsKJn', 'FN9qlyq73c', 'kT8qSxbJ7t' |
Source: 0.2.NEW ORDER 98540-0.exe.7620000.11.raw.unpack, bfJrT0FFvJIbmSerca.cs | High entropy of concatenated method names: 'gIQDylRnNs', 'oKVDJ5uYmn', 'L6dDBFxDmn', 'dWwD52DTQv', 'uWUD9j0J5H', 'PSrDQnS8vE', 'U5NDe6o9WD', 'TqjDND0371', 'FRsDfR6ecO', 'DvjDWJ5kdu' |
Source: 0.2.NEW ORDER 98540-0.exe.7620000.11.raw.unpack, L44r0f5UsYFLUKxgXK.cs | High entropy of concatenated method names: 'IRVsWJ5U97pd92mNq0d', 'nYEDxm5f64SLLjgBvH8', 'gOwkhmKZO2', 'I50kE51Eck', 'LBfkRqqggx', 'W0NFea56ELXIQBSplJQ', 'tPc8Qa5q9cfS0egVXWj', 'OAhntG5vGrrviNNTJsd' |
Source: 0.2.NEW ORDER 98540-0.exe.7620000.11.raw.unpack, mhLvAJXlOjXsFxy5wk.cs | High entropy of concatenated method names: 'qkur0a7qN9', 'aDgrjtNofP', 'i07vg9U1Tq', 'NSGv9TNAK9', 'tcLvQB1D02', 'l01vKJiobv', 'x3IveQ4Cl0', 'qmqvNUxg3r', 'HROv4SyTOS', 'hmZvf1X1WM' |
Source: 0.2.NEW ORDER 98540-0.exe.7620000.11.raw.unpack, TdcdN7Vi89EF5K6Q2j.cs | High entropy of concatenated method names: 'ToString', 'pSFOWSpF8g', 'gyVO51D53r', 'HZrOgZkoXj', 'vagO9YYAx0', 'RybOQFnDT9', 'CuMOKqFMlR', 'p9jOegIex0', 'O1aONbUOOk', 'uyqO40vL1v' |
Source: 0.2.NEW ORDER 98540-0.exe.7620000.11.raw.unpack, e3rC94nD6GJjOouD8Y.cs | High entropy of concatenated method names: 'BW3tayfXBU', 't5YtbVDBdu', 'poqhHln7vZ', 'uC3hAqsoTS', 'IUotWPPAKu', 'RL5tdxSvDZ', 'eRJtFHh1Qn', 'dIdtw38mgV', 'hp4tLxg28D', 'tY1tV73008' |
Source: 0.2.NEW ORDER 98540-0.exe.7620000.11.raw.unpack, i9x7YJvmZq74sAn79s.cs | High entropy of concatenated method names: 'EditValue', 'GetEditStyle', 'SWPUCRNnX6', 'FH2UbTkfos', 'cPWUz6Xtvd', 'I5aqH8p3xt', 'gIBqAsyOFR', 'CiYqUQxOhN', 'InvqqSb85R', 'AKyP72LDCR3cyE6qdSq' |
Source: 0.2.NEW ORDER 98540-0.exe.7620000.11.raw.unpack, a4TpKUw4fdYmZyjBY2.cs | High entropy of concatenated method names: 'FUBofQ2rmf', 'FslodW4OJJ', 'FOKowdQg2x', 'vWqoLxbPkQ', 'Kpco51RUXN', 'VKHogu3b1T', 'GuBo9LLWsb', 'd19oQVG6mn', 'SlsoKyyrIn', 'TqBoeIZjnq' |
Source: 0.2.NEW ORDER 98540-0.exe.7620000.11.raw.unpack, wGo13aBOruWkEkDsnU.cs | High entropy of concatenated method names: 'ssYkivua5o', 'XmWkGCZc7D', 'TRhkr2TSaB', 'sBDkp9gEqC', 'NvpkMxGKEy', 'kKOruriKHG', 'aRDrnOF1hq', 'arqrxu8JhC', 'oRcraQbYKo', 'ITQrCFFkhu' |
Source: 0.2.NEW ORDER 98540-0.exe.4458f90.7.raw.unpack, MpXysIaBDSPVFB0yTd.cs | High entropy of concatenated method names: 'uHnhsoyUZI', 'sNWhGOtDAL', 'yf1hvJ1GHI', 'fsFhrbvjJW', 'CbDhkAW1fW', 'lrqhpshUKk', 'KnrhMB8uXk', 'GpMhly5Cag', 'M0LhSwfIUw', 'g4Ch1aM2Vo' |
Source: 0.2.NEW ORDER 98540-0.exe.4458f90.7.raw.unpack, lnblCeeykDavJbFESN.cs | High entropy of concatenated method names: 'vOvpsfILiN', 'Vc5pv3Zqvd', 'gIJpkm9ODd', 'axFkb5yJDU', 'nk0kzVB5X6', 'NX5pHWNtIm', 'o6spAD3ZGG', 'ynWpUdYWD8', 'vGfpq4W3wr', 'fe6pT7nFZP' |
Source: 0.2.NEW ORDER 98540-0.exe.4458f90.7.raw.unpack, mQGffPbFAA8IEcj98t.cs | High entropy of concatenated method names: 'CHXEATO6Xm', 'zu9EqpHNKU', 'X6SETmy5VD', 'kjIEsiOpsY', 'WKoEGh60eA', 'e8AErrrNci', 'coMEkO0E2L', 'jDAhxYr3UU', 'dbDha5uPHa', 'HjVhC9OtVR' |
Source: 0.2.NEW ORDER 98540-0.exe.4458f90.7.raw.unpack, HVHn2g3Q4LfsM7dyVK.cs | High entropy of concatenated method names: 'YyatSnHGd2', 'Q7Rt1mjJkl', 'ToString', 'YHJts0veGB', 'KuAtG8m2Au', 'hF5tv5T3WV', 'YYvtrfPCyb', 'DbXtkGOwST', 'kottp3ehFQ', 'ILbtMnS1Ko' |
Source: 0.2.NEW ORDER 98540-0.exe.4458f90.7.raw.unpack, UYdeq7CoZY7D8MKIGo.cs | High entropy of concatenated method names: 'qXnhBGyte8', 'vFWh5mRYxO', 'QyRhgYcsxx', 'gAIh9M2MVn', 'xOPhwQDFbp', 'X9LhQFxEFG', 'Next', 'Next', 'Next', 'NextBytes' |
Source: 0.2.NEW ORDER 98540-0.exe.4458f90.7.raw.unpack, r4D6nA4ylfJKbPA8Hx.cs | High entropy of concatenated method names: 'HM2pPj4KIA', 'QelpmKVSJR', 'CXqp2MpqsM', 'iAOpIllM9Q', 'tCXp0tM9VK', 'ATWp82ITsS', 'v3XpjxjbKv', 'UGXpyP0Btb', 'lK2pJnJ6nv', 'mWUpXUXC0v' |
Source: 0.2.NEW ORDER 98540-0.exe.4458f90.7.raw.unpack, XLNrvkGXXVcIvSsY94.cs | High entropy of concatenated method names: 'Dispose', 'ewkACqArxA', 'PNdU5ZMoTN', 'Mk8YYQCwrs', 'r4pAbXysIB', 'nSPAzVFB0y', 'ProcessDialogKey', 'dduUHYdeq7', 'oZYUA7D8MK', 'AGoUU1QGff' |
Source: 0.2.NEW ORDER 98540-0.exe.4458f90.7.raw.unpack, wLIAKIAH7d9yDyNmdO3.cs | High entropy of concatenated method names: 'gviEPnU80e', 'FVjEmOXdk3', 'QYlE2micL1', 'NXlEI49LKM', 'fXSE0r1oc0', 'I82E8sV1oe', 'G1kEjx6WmB', 'E6bEy1vQBI', 'lfvEJ7xQht', 'SrLEXUFQ2C' |
Source: 0.2.NEW ORDER 98540-0.exe.4458f90.7.raw.unpack, uZlOL9TLYmU5CQWggV.cs | High entropy of concatenated method names: 'ucUAp8twtf', 'QxeAMIQtw5', 'xjBASYsGvi', 'x51A1GShLv', 'Vy5AowkZGo', 'm3aAOOruWk', 'fp9iGhwijMs7COukQq', 'Epg9EZB9DDomvBbAil', 'j5JAAib0tc', 'B1SAqHGTh9' |
Source: 0.2.NEW ORDER 98540-0.exe.4458f90.7.raw.unpack, b8twtfyFxeIQtw5F0G.cs | High entropy of concatenated method names: 'IqbGw6dbgA', 'aGmGLdXeGy', 'YjDGVL1tgE', 'UYcG3XWX4x', 'DbIGuOD2LN', 'X6GGndeUui', 'WZxGxpvxHs', 'i4MGa6FDMs', 'NrmGCPWUqE', 'bJdGblQlCB' |
Source: 0.2.NEW ORDER 98540-0.exe.4458f90.7.raw.unpack, HCIZegUnFlju9F3i60.cs | High entropy of concatenated method names: 'eOj2Om7JU', 'AF4ItOeY1', 'HyZ8PqOYP', 'XJbjuFcWh', 'PKJJBnMy0', 'fO7XRpwM5', 'ADrPjUZHfL79Dpc7R0', 'xRnsK71ppjC6SNaQlN', 'AZ7hNEwyg', 'tyiRTVHgN' |
Source: 0.2.NEW ORDER 98540-0.exe.4458f90.7.raw.unpack, NL0FkmAqDomhZHob5QI.cs | High entropy of concatenated method names: 'CanConvertFrom', 'ConvertFrom', 'ConvertTo', 'KiuRw1kZqD', 'r2ZRLeRPgQ', 'r7WRVxYbRh', 'jdKR3cqNM4', 'WObRu0woYQ', 'oX3RncB1jE', 'gp1RxL6HY0' |
Source: 0.2.NEW ORDER 98540-0.exe.4458f90.7.raw.unpack, L06p97JjBYsGviP51G.cs | High entropy of concatenated method names: 'CSCvITw9MF', 'f6sv8kt23a', 'wY7vy44eOi', 'P3CvJOhVro', 'pbnvoT0Ehp', 'NyMvOi0VTd', 'VlivtEFTET', 'JhtvhslbC4', 'zmUvEGj4in', 'LxLvRbRQEJ' |
Source: 0.2.NEW ORDER 98540-0.exe.4458f90.7.raw.unpack, fHXvykMgXmg0e7ArtG.cs | High entropy of concatenated method names: 'G0aqiFIZZe', 'tUGqsPObsv', 'OAiqGtvUAs', 'AI7qvbsc94', 'VvVqr6hZFW', 'Hvhqkq0j5k', 'ew2qprpEkx', 'wIuqMDsKJn', 'FN9qlyq73c', 'kT8qSxbJ7t' |
Source: 0.2.NEW ORDER 98540-0.exe.4458f90.7.raw.unpack, bfJrT0FFvJIbmSerca.cs | High entropy of concatenated method names: 'gIQDylRnNs', 'oKVDJ5uYmn', 'L6dDBFxDmn', 'dWwD52DTQv', 'uWUD9j0J5H', 'PSrDQnS8vE', 'U5NDe6o9WD', 'TqjDND0371', 'FRsDfR6ecO', 'DvjDWJ5kdu' |
Source: 0.2.NEW ORDER 98540-0.exe.4458f90.7.raw.unpack, L44r0f5UsYFLUKxgXK.cs | High entropy of concatenated method names: 'IRVsWJ5U97pd92mNq0d', 'nYEDxm5f64SLLjgBvH8', 'gOwkhmKZO2', 'I50kE51Eck', 'LBfkRqqggx', 'W0NFea56ELXIQBSplJQ', 'tPc8Qa5q9cfS0egVXWj', 'OAhntG5vGrrviNNTJsd' |
Source: 0.2.NEW ORDER 98540-0.exe.4458f90.7.raw.unpack, mhLvAJXlOjXsFxy5wk.cs | High entropy of concatenated method names: 'qkur0a7qN9', 'aDgrjtNofP', 'i07vg9U1Tq', 'NSGv9TNAK9', 'tcLvQB1D02', 'l01vKJiobv', 'x3IveQ4Cl0', 'qmqvNUxg3r', 'HROv4SyTOS', 'hmZvf1X1WM' |
Source: 0.2.NEW ORDER 98540-0.exe.4458f90.7.raw.unpack, TdcdN7Vi89EF5K6Q2j.cs | High entropy of concatenated method names: 'ToString', 'pSFOWSpF8g', 'gyVO51D53r', 'HZrOgZkoXj', 'vagO9YYAx0', 'RybOQFnDT9', 'CuMOKqFMlR', 'p9jOegIex0', 'O1aONbUOOk', 'uyqO40vL1v' |
Source: 0.2.NEW ORDER 98540-0.exe.4458f90.7.raw.unpack, e3rC94nD6GJjOouD8Y.cs | High entropy of concatenated method names: 'BW3tayfXBU', 't5YtbVDBdu', 'poqhHln7vZ', 'uC3hAqsoTS', 'IUotWPPAKu', 'RL5tdxSvDZ', 'eRJtFHh1Qn', 'dIdtw38mgV', 'hp4tLxg28D', 'tY1tV73008' |
Source: 0.2.NEW ORDER 98540-0.exe.4458f90.7.raw.unpack, i9x7YJvmZq74sAn79s.cs | High entropy of concatenated method names: 'EditValue', 'GetEditStyle', 'SWPUCRNnX6', 'FH2UbTkfos', 'cPWUz6Xtvd', 'I5aqH8p3xt', 'gIBqAsyOFR', 'CiYqUQxOhN', 'InvqqSb85R', 'AKyP72LDCR3cyE6qdSq' |
Source: 0.2.NEW ORDER 98540-0.exe.4458f90.7.raw.unpack, a4TpKUw4fdYmZyjBY2.cs | High entropy of concatenated method names: 'FUBofQ2rmf', 'FslodW4OJJ', 'FOKowdQg2x', 'vWqoLxbPkQ', 'Kpco51RUXN', 'VKHogu3b1T', 'GuBo9LLWsb', 'd19oQVG6mn', 'SlsoKyyrIn', 'TqBoeIZjnq' |
Source: 0.2.NEW ORDER 98540-0.exe.4458f90.7.raw.unpack, wGo13aBOruWkEkDsnU.cs | High entropy of concatenated method names: 'ssYkivua5o', 'XmWkGCZc7D', 'TRhkr2TSaB', 'sBDkp9gEqC', 'NvpkMxGKEy', 'kKOruriKHG', 'aRDrnOF1hq', 'arqrxu8JhC', 'oRcraQbYKo', 'ITQrCFFkhu' |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Users\user\Desktop\NEW ORDER 98540-0.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |