Source: StchCtrl.exe, 0000000B.00000002.3342588557.00000000010D9000.00000002.00000001.01000000.00000008.sdmp, Stretch.exe.4.dr, StchCtrl.exe.4.dr |
String found in binary or memory: http://activate.esellerate.net |
Source: StchCtrl.exe.4.dr |
String found in binary or memory: http://activate.esellerate.net). |
Source: setup.exe, 00000002.00000002.3342719410.0000000002356000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://go.microsoft.c |
Source: StchCtrl.exe, 0000000B.00000002.3342588557.00000000010D9000.00000002.00000001.01000000.00000008.sdmp, Stretch.exe.4.dr, StchCtrl.exe.4.dr |
String found in binary or memory: http://www.esellerate.net/papolicy |
Source: StchCtrl.exe, 0000000B.00000002.3342588557.00000000010D9000.00000002.00000001.01000000.00000008.sdmp, Stretch.exe.4.dr, StchCtrl.exe.4.dr |
String found in binary or memory: http://www.esellerate.net/papolicyhttp://activate.esellerate.netSelect |
Source: StchCtrl.exe, 0000000B.00000002.3342588557.00000000010D9000.00000002.00000001.01000000.00000008.sdmp, Stretch.exe.4.dr, StchCtrl.exe.4.dr |
String found in binary or memory: http://www.esellerate.net/privacy.asp |
Source: StchCtrl.exe, 0000000B.00000002.3342588557.00000000010D9000.00000002.00000001.01000000.00000008.sdmp, Stretch.exe.4.dr, StchCtrl.exe.4.dr |
String found in binary or memory: http://www.esellerate.net/privacy.aspCONNECTION |
Source: StchCtrl.exe, 0000000B.00000002.3342928233.000000006BCFA000.00000002.00000001.01000000.0000000A.sdmp, StretchRes.dll.4.dr |
String found in binary or memory: http://www.shelterpub.com/ |
Source: StchCtrl.exe, 0000000B.00000002.3342928233.000000006BCFA000.00000002.00000001.01000000.0000000A.sdmp, StretchRes.dll.4.dr |
String found in binary or memory: http://www.stretchware.com/ |
Source: StchCtrl.exe.4.dr |
String found in binary or memory: http://www.stretchware.com/expire.html |
Source: StchCtrl.exe, 0000000B.00000002.3342928233.000000006BCFA000.00000002.00000001.01000000.0000000A.sdmp, StretchRes.dll.4.dr |
String found in binary or memory: http://www.stretchware.com/expire.htmlPAMornKeybWrisStrsLbakStanStifSpon |
Source: StretchRes.dll.4.dr |
String found in binary or memory: http://www.stretchware.com/stretching_resources.html(http://www.stretchware.com/products.html |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00FC0035 MessageBeep,SendMessageA,SendMessageA,SendMessageA,SendMessageA,GetKeyState,SendMessageA,GetKeyState,SendMessageA,SendMessageA,GetKeyState,GetKeyState,GetKeyState,GetKeyState,SendMessageA,SendMessageA,GetKeyState,SendMessageA,GetKeyState,SendMessageA,SendMessageA, |
11_2_00FC0035 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00FB235A GetKeyState,GetKeyState,GetKeyState, |
11_2_00FB235A |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00F94665 IsWindow,SendMessageA,GetCapture,GetKeyState,GetKeyState,GetKeyState,ImmGetContext,ImmGetOpenStatus,ImmReleaseContext,GetFocus,IsWindow,IsWindow,IsWindow,ClientToScreen,IsWindow,ClientToScreen, |
11_2_00F94665 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00F927D9 IsWindow,SendMessageA,GetCapture,GetKeyState,GetKeyState,GetKeyState,ImmGetContext,ImmGetOpenStatus,ImmReleaseContext,GetFocus,IsWindow,IsWindow,IsWindow,ClientToScreen,IsWindow,ClientToScreen, |
11_2_00F927D9 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00FC0BF8 GetParent,GetKeyState,GetKeyState,GetKeyState,SendMessageA,SendMessageA,SendMessageA, |
11_2_00FC0BF8 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00F6F1C6 SendMessageA,UpdateWindow,GetKeyState,GetKeyState,GetKeyState,GetParent,PostMessageA, |
11_2_00F6F1C6 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00FB3910 ScreenToClient,_memset,_free,GetKeyState,GetKeyState,GetKeyState,KillTimer,IsWindow, |
11_2_00FB3910 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00F6DAD0 GetKeyState,GetKeyState,GetKeyState, |
11_2_00F6DAD0 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00F6DA80 GetKeyState,GetKeyState,GetKeyState,MessageBeep, |
11_2_00F6DA80 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00FDBC1B GetWindowRect,GetKeyState,GetKeyState,GetKeyState,KillTimer,GetFocus,SetTimer, |
11_2_00FDBC1B |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00F75E51 GetKeyState,GetKeyState,GetKeyState,GetKeyState,SendMessageA, |
11_2_00F75E51 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00FCDF74 GetKeyState,GetKeyState,GetKeyState,GetKeyState, |
11_2_00FCDF74 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_73F71160 GetKeyState,GetKeyState,GetKeyState,GetKeyState,FindWindowA,PostMessageA, |
11_2_73F71160 |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Code function: 0_2_0100871A |
0_2_0100871A |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Code function: 0_2_01009A1F |
0_2_01009A1F |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Code function: 0_2_01008A3E |
0_2_01008A3E |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Code function: 0_2_01009175 |
0_2_01009175 |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Code function: 0_2_01008DBD |
0_2_01008DBD |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Code function: 0_2_010095E5 |
0_2_010095E5 |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: 2_2_00D4509A |
2_2_00D4509A |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: 2_2_00D611BB |
2_2_00D611BB |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: 2_2_00D64334 |
2_2_00D64334 |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: 2_2_00D5C5BF |
2_2_00D5C5BF |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: 2_2_00D62656 |
2_2_00D62656 |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: 2_2_00D6070F |
2_2_00D6070F |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: 2_2_00D6189C |
2_2_00D6189C |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: 2_2_00D51A79 |
2_2_00D51A79 |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: 2_2_00D60C65 |
2_2_00D60C65 |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: 2_2_00D50DF0 |
2_2_00D50DF0 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00FE40F6 |
11_2_00FE40F6 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00FA421B |
11_2_00FA421B |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_0100A9CA |
11_2_0100A9CA |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00FE4A45 |
11_2_00FE4A45 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00FE2E85 |
11_2_00FE2E85 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00F972BF |
11_2_00F972BF |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_0106353C |
11_2_0106353C |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_01071C17 |
11_2_01071C17 |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: apphelp.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: aclayers.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: mpr.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: sfc.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: sfc_os.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: acgenral.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: uxtheme.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: winmm.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: samcli.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: msacm32.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: version.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: userenv.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: dwmapi.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: urlmon.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: sspicli.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: winmmbase.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: winmmbase.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: iertutil.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: srvcli.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: netutils.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: feclient.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: kernel.appcore.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: textinputframework.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: coreuicomponents.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: coremessaging.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: ntmarta.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: textshaping.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Section loaded: advpack.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: apphelp.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: acgenral.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: uxtheme.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: winmm.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: samcli.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: msacm32.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: version.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: userenv.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: dwmapi.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: urlmon.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: mpr.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: sspicli.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: winmmbase.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: winmmbase.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: iertutil.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: srvcli.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: netutils.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: aclayers.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: sfc.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: sfc_os.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: secur32.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: wininet.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: msi.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: riched20.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: usp10.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: msls31.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: kernel.appcore.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: textinputframework.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: coreuicomponents.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: coremessaging.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: ntmarta.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: textshaping.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: windows.storage.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: wldp.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: propsys.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: profapi.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: edputil.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: windows.staterepositoryps.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: appresolver.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: bcp47langs.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: slc.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: sppc.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: onecorecommonproxystub.dll |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Section loaded: onecoreuapcommonproxystub.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: apphelp.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: aclayers.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: mpr.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: sfc.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: sfc_os.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: msi.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: srpapi.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: kernel.appcore.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: kernel.appcore.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: tsappcmp.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: uxtheme.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: textinputframework.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: coreuicomponents.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: coremessaging.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: ntmarta.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: coremessaging.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: windows.storage.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: wldp.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: propsys.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: textshaping.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: netapi32.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: wkscli.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: netutils.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: version.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: mscoree.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: profapi.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: sspicli.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: msihnd.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: dwmapi.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: pcacli.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: oleacc.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: windowscodecs.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: riched20.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: usp10.dll |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Section loaded: msls31.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: apphelp.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: aclayers.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: sfc.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: sfc_os.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: kernel.appcore.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: msi.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: tsappcmp.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: userenv.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: profapi.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: sspicli.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: netapi32.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: wkscli.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: netutils.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: srclient.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: spp.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: powrprof.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: vssapi.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: vsstrace.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: umpdc.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: wldp.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: mscoree.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: version.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: vcruntime140_clr0400.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: ucrtbase_clr0400.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: ucrtbase_clr0400.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: rstrtmgr.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: ncrypt.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: ntasn1.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: windows.storage.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: pcacli.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: mpr.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: cabinet.dll |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Section loaded: propsys.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Section loaded: apphelp.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Section loaded: winmm.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Section loaded: stretchhook.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Section loaded: msimg32.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Section loaded: oleacc.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Section loaded: stretchres.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Section loaded: uxtheme.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Section loaded: dwmapi.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Section loaded: textshaping.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Section loaded: windows.storage.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Section loaded: wldp.dll |
Jump to behavior |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00FD6205 GetParent,GetParent,IsIconic,GetParent, |
11_2_00FD6205 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00FD0420 IsIconic,PostMessageA, |
11_2_00FD0420 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00FCE541 IsWindow,GetFocus,IsChild,SendMessageA,IsChild,SendMessageA,IsIconic,GetAsyncKeyState,GetAsyncKeyState,GetAsyncKeyState,GetAsyncKeyState,IsWindowVisible, |
11_2_00FCE541 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00F9AD43 SetRectEmpty,RedrawWindow,ReleaseCapture,SetCapture,ReleaseCapture,SetCapture,SendMessageA,UpdateWindow,SendMessageA,IsWindow,IsIconic,IsZoomed,IsWindow,UpdateWindow, |
11_2_00F9AD43 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00FCEFD0 GetSystemMetrics,GetSystemMetrics,GetSystemMetrics,IsIconic,GetWindowRect,IsIconic,GetSystemMetrics,OffsetRect,GetSystemMetrics,IsIconic,GetSystemMetrics,GetSystemMetrics, |
11_2_00FCEFD0 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00FCEFD0 GetSystemMetrics,GetSystemMetrics,GetSystemMetrics,IsIconic,GetWindowRect,IsIconic,GetSystemMetrics,OffsetRect,GetSystemMetrics,IsIconic,GetSystemMetrics,GetSystemMetrics, |
11_2_00FCEFD0 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00FCEFD0 GetSystemMetrics,GetSystemMetrics,GetSystemMetrics,IsIconic,GetWindowRect,IsIconic,GetSystemMetrics,OffsetRect,GetSystemMetrics,IsIconic,GetSystemMetrics,GetSystemMetrics, |
11_2_00FCEFD0 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00FCF2D0 IsWindowVisible,ScreenToClient,GetSystemMetrics,GetSystemMetrics,GetSystemMetrics,IsIconic,GetSystemMetrics,PtInRect,GetSystemMetrics,PtInRect,GetSystemMetrics,PtInRect, |
11_2_00FCF2D0 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00FCF85B IsWindow,IsWindowVisible,GetWindowRect,PtInRect,GetAsyncKeyState,ScreenToClient,IsWindow,IsWindow,IsWindow,GetWindowRect,PtInRect,SendMessageA,PtInRect,SendMessageA,ScreenToClient,PtInRect,GetParent,SendMessageA,GetFocus,WindowFromPoint,SendMessageA,GetSystemMenu,IsMenu,EnableMenuItem,EnableMenuItem,EnableMenuItem,IsZoomed,IsIconic,EnableMenuItem,TrackPopupMenu,SendMessageA, |
11_2_00FCF85B |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00F6F9C7 IsWindowVisible,IsIconic, |
11_2_00F6F9C7 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00F8FDC9 SetForegroundWindow,IsIconic, |
11_2_00F8FDC9 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00F8FE6D IsIconic, |
11_2_00F8FE6D |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_00FAFE0D GetClientRect,IsRectEmpty,IsIconic,BeginDeferWindowPos,GetClientRect,IsRectEmpty,IsRectEmpty,EqualRect,GetWindowRect,GetParent,EndDeferWindowPos, |
11_2_00FAFE0D |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\SysWOW64\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\msiexec.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\rundll32.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\rundll32.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Windows\System32\rundll32.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\StretchInstall.exe |
Code function: 0_2_010064DE SetUnhandledExceptionFilter,UnhandledExceptionFilter,GetCurrentProcess,TerminateProcess, |
0_2_010064DE |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: 2_2_00D55243 _memset,IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter, |
2_2_00D55243 |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: 2_2_00D4EF49 IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter,GetCurrentProcess,TerminateProcess, |
2_2_00D4EF49 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_01060BBE IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter,GetCurrentProcess,TerminateProcess, |
11_2_01060BBE |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_01068E21 _memset,IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter, |
11_2_01068E21 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_6BCF3EF6 IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter,GetCurrentProcess,TerminateProcess, |
11_2_6BCF3EF6 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_6BCF3719 _memset,IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter, |
11_2_6BCF3719 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_73F74226 IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter,GetCurrentProcess,TerminateProcess, |
11_2_73F74226 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: 11_2_73F73A49 _memset,IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter, |
11_2_73F73A49 |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: __getptd,_LcidFromHexString,GetLocaleInfoA,GetLocaleInfoA,GetLocaleInfoA,_strlen,GetLocaleInfoA,_strlen,_TestDefaultLanguage, |
2_2_00D5C081 |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: GetLocaleInfoA,_LocaleUpdate::_LocaleUpdate,___ascii_strnicmp,__tolower_l,__tolower_l, |
2_2_00D60070 |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: GetLocaleInfoW,_GetPrimaryLen,_strlen, |
2_2_00D5C021 |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: GetLocaleInfoA, |
2_2_00D601AF |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: __getptd,_LcidFromHexString,GetLocaleInfoA,_TestDefaultLanguage, |
2_2_00D5C257 |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: ___crtGetLocaleInfoA,GetLastError,___crtGetLocaleInfoA,__calloc_crt,___crtGetLocaleInfoA,__calloc_crt,_free,_free,__invoke_watson,GetLocaleInfoW,GetLocaleInfoW,__calloc_crt,GetLocaleInfoW,_free,GetLocaleInfoW, |
2_2_00D563CD |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: __getptd,_TranslateName,_GetLcidFromLangCountry,_GetLcidFromLanguage,_TranslateName,_GetLcidFromLangCountry,_GetLcidFromLanguage,_strlen,EnumSystemLocalesA,GetUserDefaultLCID,IsValidCodePage,IsValidLocale,GetLocaleInfoA,_strcpy_s,__invoke_watson,GetLocaleInfoA,GetLocaleInfoA,__itow_s, |
2_2_00D5C3C9 |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: _strlen,_GetPrimaryLen,EnumSystemLocalesA, |
2_2_00D5C388 |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: _strlen,_strlen,_GetPrimaryLen,EnumSystemLocalesA, |
2_2_00D5C31C |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: __calloc_crt,__malloc_crt,_free,__malloc_crt,_free,_free,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___free_lconv_num,InterlockedDecrement,InterlockedDecrement,InterlockedDecrement,_free,_free, |
2_2_00D5B67C |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: __calloc_crt,__malloc_crt,_free,__malloc_crt,_free,_free,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___free_lconv_mon,_free,_free,_free,InterlockedDecrement,InterlockedDecrement,_free,_free, |
2_2_00D5B974 |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: ___getlocaleinfo,__malloc_crt,__calloc_crt,__calloc_crt,__calloc_crt,__calloc_crt,GetCPInfo,___crtGetStringTypeA,___crtLCMapStringA,___crtLCMapStringA,_memmove,_memmove,_memmove,InterlockedDecrement,_free,_free,_free,_free,_free,_free,_free,_free,_free,InterlockedDecrement, |
2_2_00D4FADD |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: ___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo,___getlocaleinfo, |
2_2_00D5AA0C |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: GetLocaleInfoW,GetLocaleInfoW,_malloc,GetLocaleInfoW,WideCharToMultiByte,__freea, |
2_2_00D5DC25 |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: _LocaleUpdate::_LocaleUpdate,__crtGetLocaleInfoA_stat, |
2_2_00D5DD04 |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: GetLocaleInfoW,GetLocaleInfoW,GetACP, |
2_2_00D5BE6C |
Source: C:\Users\user\AppData\Local\Temp\IXP000.TMP\setup.exe |
Code function: __getptd,_LcidFromHexString,GetLocaleInfoA, |
2_2_00D5BF75 |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: _strcpy_s,GetLocaleInfoA,__snwprintf_s,LoadLibraryA, |
11_2_00F7F6EB |
Source: C:\Program Files (x86)\Shelter Publications\StretchWare\StchCtrl.exe |
Code function: __EH_prolog3_GS,__ehfuncinfo$??2@YAPAXIABUnothrow_t@std@@@Z,GetNumberFormatA,GetLocaleInfoA,lstrlenA, |
11_2_00FB5CD0 |