Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then cmp dword ptr [ebp+edi*8+00h], AF697AECh |
3_2_0043ACA1 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then mov ecx, eax |
3_2_00414040 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then mov ebx, eax |
3_2_004090A0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then movzx edi, byte ptr [esp+eax+000000A8h] |
3_2_0042B124 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then movzx ebx, byte ptr [edx] |
3_2_00433130 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then mov ecx, eax |
3_2_00415196 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then movzx esi, byte ptr [esp+ecx-0000008Fh] |
3_2_004391B0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then movzx edi, byte ptr [esp+ecx+1Dh] |
3_2_0042A216 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then movzx esi, byte ptr [esp+ecx-28DB6A02h] |
3_2_0042A216 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then mov ecx, eax |
3_2_0040E2D1 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then mov esi, ecx |
3_2_004182DD |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then mov word ptr [edx], cx |
3_2_004182DD |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then mov eax, dword ptr [edi+0Ch] |
3_2_004022B0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then cmp dword ptr [edi+esi*8], E785F9BAh |
3_2_00424320 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then mov word ptr [eax], cx |
3_2_0040A39C |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then add eax, dword ptr [esp+ecx*4+24h] |
3_2_004073A0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then movzx ecx, word ptr [edi+esi*4] |
3_2_004073A0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then movzx edi, byte ptr [esp+eax+06h] |
3_2_0040C433 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then movzx edx, byte ptr [esp+ecx-2DE6A924h] |
3_2_0043D430 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then movzx edx, byte ptr [esp+ecx] |
3_2_004224E0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then test eax, eax |
3_2_00436490 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then push eax |
3_2_00436490 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then mov byte ptr [edx], al |
3_2_0042A67D |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then mov byte ptr [edx], al |
3_2_0042A615 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then movzx edi, byte ptr [ecx] |
3_2_00419620 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then movzx esi, byte ptr [esp+eax+78h] |
3_2_00419620 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then movzx esi, byte ptr [esp+eax+1Ch] |
3_2_00425620 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then movzx esi, byte ptr [esp+eax+1B4BB045h] |
3_2_00425620 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then jmp eax |
3_2_004276F0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then mov word ptr [edi], ax |
3_2_0041C720 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then movzx esi, byte ptr [esp+ebx+0Ah] |
3_2_0041C720 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then mov esi, edx |
3_2_0040C7E8 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then movzx edx, byte ptr [esp+eax+00000106h] |
3_2_00415800 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then movzx ebp, byte ptr [esp+edx-0000009Bh] |
3_2_00438800 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then mov ebx, dword ptr [edi+04h] |
3_2_00428930 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then movzx esi, byte ptr [ebp+edx+00h] |
3_2_004029C0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then movzx esi, byte ptr [esp+eax+08h] |
3_2_004359F0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then mov eax, edx |
3_2_004359F0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then mov ebx, eax |
3_2_004359F0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then movzx ebx, byte ptr [esp+ecx-6Fh] |
3_2_004359F0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then cmp word ptr [edi+ebx+02h], 0000h |
3_2_0043C9A0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then movzx ebx, byte ptr [esp+eax+6BC763FCh] |
3_2_0041EA40 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then cmp word ptr [edx+eax], 0000h |
3_2_0041EA40 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then mov ecx, eax |
3_2_00416B1F |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then movzx edx, byte ptr [esp+ecx-3E4A6BB3h] |
3_2_0043ABCC |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then mov ecx, eax |
3_2_0040DBDB |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then mov edx, ecx |
3_2_0040DBDB |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then movzx edx, byte ptr [ecx+esi] |
3_2_00402BA0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then movzx ecx, byte ptr [esp+eax-78168CD7h] |
3_2_00438D60 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then mov esi, ecx |
3_2_00422D28 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then movzx edi, byte ptr [esp+ecx+1Dh] |
3_2_0042AD95 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then movzx esi, byte ptr [esp+ecx-28DB6A02h] |
3_2_0042AD95 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then mov byte ptr [edi], bl |
3_2_00408E40 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then jmp eax |
3_2_00426E70 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then jmp eax |
3_2_0040BE22 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then mov ecx, eax |
3_2_00439E20 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then cmp byte ptr [esi+eax], 00000000h |
3_2_00428EC0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then cmp dword ptr [ebp+edi*8+00h], AF697AECh |
3_2_0043AEB0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then movzx edx, byte ptr [esp+ecx-24B7157Ah] |
3_2_0043AF20 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then mov esi, ecx |
3_2_00422FD0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then movzx esi, byte ptr [esp+eax+1Ch] |
3_2_0043AF8A |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then movzx ebx, byte ptr [esp+ecx+2376781Ah] |
3_2_0041BFA0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 4x nop then cmp word ptr [edi+ecx], 0000h |
3_2_0041BFA0 |
Source: Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://127.0.0.1:27060 |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000002.3134453720.0000000000ACA000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://store.steampowered.com/account/cookiepreferences/ |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000002.3134453720.0000000000ACA000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://store.steampowered.com/privacy_agreement/ |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000002.3134453720.0000000000ACA000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://store.steampowered.com/subscriber_agreement/ |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://www.valvesoftware.com/legal.htm |
Source: Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://api.steampowered.com/ |
Source: Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://broadcast.st.dl.eccdnx.com |
Source: Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://cdn.fastly.steamstatic.com/steamcommunity/public/assets/ |
Source: Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://checkout.steampowered.com/ |
Source: Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://community.fastly.steamstatic.com/ |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://community.fastly.steamstatic.com/public/css/applications/community/main.css?v=Lj6X7NKUMfzk&a |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://community.fastly.steamstatic.com/public/css/globalv2.css?v=hzEgqbtRcI5V&l=english&_c |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://community.fastly.steamstatic.com/public/css/skin_1/fatalerror.css?v=OFUqlcDNiD6y&l=engli |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://community.fastly.steamstatic.com/public/css/skin_1/header.css?v=EM4kCu67DNda&l=english&a |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000002.3134453720.0000000000ACA000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://community.fastly.steamstatic.com/public/images/skin_1/footerLogo_valve.png?v=1 |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://community.fastly.steamstatic.com/public/javascript/applications/community/libraries~b28b7af6 |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://community.fastly.steamstatic.com/public/javascript/applications/community/main.js?v=_92TWn81 |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://community.fastly.steamstatic.com/public/javascript/applications/community/manifest.js?v=hyEE |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://community.fastly.steamstatic.com/public/javascript/global.js?v=jWc2JLWHx5Kn&l=english&am |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://community.fastly.steamstatic.com/public/javascript/jquery-1.11.1.min.js?v=gQHVlrK4-jX-&l |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://community.fastly.steamstatic.com/public/javascript/prototype-1.7.js?v=npJElBnrEO6W&l=eng |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://community.fastly.steamstatic.com/public/javascript/scriptaculous/_combined.js?v=pbdAKOcDIgbC |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://community.fastly.steamstatic.com/public/shared/css/buttons.css?v=qhQgyjWi6LgJ&l=english& |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://community.fastly.steamstatic.com/public/shared/css/motiva_sans.css?v=-yZgCk0Nu7kH&l=engl |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://community.fastly.steamstatic.com/public/shared/css/shared_global.css?v=wuA4X_n5-mo0&l=en |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://community.fastly.steamstatic.com/public/shared/css/shared_responsive.css?v=JL1e4uQSrVGe& |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://community.fastly.steamstatic.com/public/shared/images/header/logo_steam.svg?t=962016 |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://community.fastly.steamstatic.com/public/shared/images/responsive/header_logo.png |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://community.fastly.steamstatic.com/public/shared/images/responsive/header_menu_hamburger.png |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://community.fastly.steamstatic.com/public/shared/images/responsive/logo_valve_footer.png |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://community.fastly.steamstatic.com/public/shared/javascript/auth_refresh.js?v=w6QbwI-5-j2S& |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://community.fastly.steamstatic.com/public/shared/javascript/shared_global.js?v=Gr6TbGRvDtNE&am |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://community.fastly.steamstatic.com/public/shared/javascript/shared_responsive_adapter.js?v=tvQ |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://community.fastly.steamstatic.com/public/shared/javascript/tooltip.js?v=QYkT4eS5mbTN&l=en |
Source: Wave-Executor.exe, 00000003.00000003.3094339040.0000000000ACC000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://greywe-snotty.cyou/api |
Source: Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://help.steampowered.com/ |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://help.steampowered.com/en/ |
Source: Wave-Executor.exe, 00000003.00000002.3134453720.0000000000AB0000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://hosue-billowy.cyou:443/api |
Source: Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://login.steampowered.com/ |
Source: Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://lv.queniujq.cn |
Source: Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://medal.tv |
Source: Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://player.vimeo.com |
Source: Wave-Executor.exe, 00000003.00000002.3134453720.0000000000AB0000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://pollution-raker.cyou:443/api |
Source: Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://recaptcha.net |
Source: Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://recaptcha.net/recaptcha/; |
Source: Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://s.ytimg.com; |
Source: Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://sketchfab.com |
Source: Wave-Executor.exe, 00000003.00000002.3134453720.0000000000AB0000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://smash-boiling.cyou:443/apipi |
Source: Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://steam.tv/ |
Source: Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://steambroadcast-test.akamaized.net |
Source: Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://steambroadcast.akamaized.net |
Source: Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://steambroadcastchat.akamaized.net |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000002.3134453720.0000000000ACA000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://steamcommunity.com |
Source: Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://steamcommunity.com/ |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://steamcommunity.com/?subsection=broadcasts |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://steamcommunity.com/discussions/ |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000002.3134453720.0000000000ACA000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://steamcommunity.com/linkfilter/?u=http%3A%2F%2Fwww.geonames.org |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://steamcommunity.com/login/home/?goto=profiles%2F76561199724331900 |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://steamcommunity.com/market/ |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://steamcommunity.com/my/wishlist/ |
Source: Wave-Executor.exe, 00000003.00000002.3134453720.0000000000AB0000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133632330.0000000000AD7000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000002.3134570473.0000000000AD7000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://steamcommunity.com/profiles/76561199724331900 |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://steamcommunity.com/workshop/ |
Source: Wave-Executor.exe, 00000003.00000002.3134453720.0000000000AB0000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://steamcommunity.com:443/profiles/76561199724331900d |
Source: Wave-Executor.exe, 00000003.00000002.3134453720.0000000000AB0000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://steppriflej.xyz:443/api3 |
Source: Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://store.steampowered.com/ |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000002.3134761785.0000000000B09000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://store.steampowered.com/; |
Source: Wave-Executor.exe, 00000003.00000002.3134761785.0000000000B09000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://store.steampowered.com/;Persistent-AuthWWW-AuthenticateVarysteamCountry=US%7C185ce35c568ebbb |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://store.steampowered.com/about/ |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://store.steampowered.com/explore/ |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000002.3134453720.0000000000ACA000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://store.steampowered.com/legal/ |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://store.steampowered.com/mobile |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://store.steampowered.com/news/ |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://store.steampowered.com/points/shop/ |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://store.steampowered.com/points/shopT |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://store.steampowered.com/privacy_agreement/ |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://store.steampowered.com/stats/ |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://store.steampowered.com/steam_refunds/ |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://store.steampowered.com/subscriber_agreement/ |
Source: Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://www.google.com |
Source: Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://www.google.com/recaptcha/ |
Source: Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://www.gstatic.cn/recaptcha/ |
Source: Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://www.gstatic.com/recaptcha/ |
Source: Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B41000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133632330.0000000000ACC000.00000004.00000020.00020000.00000000.sdmp, Wave-Executor.exe, 00000003.00000003.3133529344.0000000000B47000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://www.valvesoftware.com/en/contact?contact-person=Translation%20Team%20Feedback |
Source: Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://www.youtube.com |
Source: Wave-Executor.exe, 00000003.00000003.3133583262.0000000000B09000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: https://www.youtube.com/ |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 0_2_00271000 |
0_2_00271000 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 0_2_0028C040 |
0_2_0028C040 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 0_2_00286194 |
0_2_00286194 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 0_2_00291250 |
0_2_00291250 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 0_2_0029EB72 |
0_2_0029EB72 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 0_2_0028AC41 |
0_2_0028AC41 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 0_2_0029CD97 |
0_2_0029CD97 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00271000 |
3_2_00271000 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0028C040 |
3_2_0028C040 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00286194 |
3_2_00286194 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00291250 |
3_2_00291250 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0029EB72 |
3_2_0029EB72 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0028AC41 |
3_2_0028AC41 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0029CD97 |
3_2_0029CD97 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_004084B0 |
3_2_004084B0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0043C6F0 |
3_2_0043C6F0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0040ADD0 |
3_2_0040ADD0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00414040 |
3_2_00414040 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0043D050 |
3_2_0043D050 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_004090A0 |
3_2_004090A0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00421170 |
3_2_00421170 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0042E17E |
3_2_0042E17E |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00427110 |
3_2_00427110 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00435110 |
3_2_00435110 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0042B124 |
3_2_0042B124 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00406130 |
3_2_00406130 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_004361D0 |
3_2_004361D0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0042F1A0 |
3_2_0042F1A0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_004391B0 |
3_2_004391B0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_004182DD |
3_2_004182DD |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0041D280 |
3_2_0041D280 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00425280 |
3_2_00425280 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00404290 |
3_2_00404290 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00415300 |
3_2_00415300 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0041132E |
3_2_0041132E |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_004343ED |
3_2_004343ED |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_004073A0 |
3_2_004073A0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00428452 |
3_2_00428452 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00417428 |
3_2_00417428 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0043D430 |
3_2_0043D430 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_004224E0 |
3_2_004224E0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00436490 |
3_2_00436490 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0042A497 |
3_2_0042A497 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00426502 |
3_2_00426502 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_004065C0 |
3_2_004065C0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_004295C0 |
3_2_004295C0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00409580 |
3_2_00409580 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00435670 |
3_2_00435670 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00419620 |
3_2_00419620 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00425620 |
3_2_00425620 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_004276F0 |
3_2_004276F0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0041570C |
3_2_0041570C |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0041C720 |
3_2_0041C720 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00415800 |
3_2_00415800 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00438800 |
3_2_00438800 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00425804 |
3_2_00425804 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00433821 |
3_2_00433821 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0043B820 |
3_2_0043B820 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_004058D0 |
3_2_004058D0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_004038E0 |
3_2_004038E0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0041D940 |
3_2_0041D940 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0043B940 |
3_2_0043B940 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0043B95B |
3_2_0043B95B |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0043B959 |
3_2_0043B959 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0040A900 |
3_2_0040A900 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_004029C0 |
3_2_004029C0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_004359F0 |
3_2_004359F0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0041B9A6 |
3_2_0041B9A6 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0041EA40 |
3_2_0041EA40 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0043CAC0 |
3_2_0043CAC0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0043BAD0 |
3_2_0043BAD0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0043BB60 |
3_2_0043BB60 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00404BC0 |
3_2_00404BC0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00414BD0 |
3_2_00414BD0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0040DBDB |
3_2_0040DBDB |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0043BBF0 |
3_2_0043BBF0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00423C21 |
3_2_00423C21 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0042BCB4 |
3_2_0042BCB4 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00421D48 |
3_2_00421D48 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00416D50 |
3_2_00416D50 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0042A497 |
3_2_0042A497 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00436D5C |
3_2_00436D5C |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0043CD60 |
3_2_0043CD60 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00422D28 |
3_2_00422D28 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00405D90 |
3_2_00405D90 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00411D90 |
3_2_00411D90 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00430D90 |
3_2_00430D90 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0042AD95 |
3_2_0042AD95 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00408E40 |
3_2_00408E40 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00426E70 |
3_2_00426E70 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00427E7A |
3_2_00427E7A |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00420E10 |
3_2_00420E10 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00402EE0 |
3_2_00402EE0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00434EB0 |
3_2_00434EB0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00422FD0 |
3_2_00422FD0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_00415F8B |
3_2_00415F8B |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0041BFA0 |
3_2_0041BFA0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: 3_2_0041CFB0 |
3_2_0041CFB0 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: apphelp.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: kernel.appcore.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: windows.storage.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: wldp.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: winhttp.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: ondemandconnroutehelper.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: webio.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: mswsock.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: iphlpapi.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: winnsi.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: sspicli.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: dnsapi.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: rasadhlp.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: fwpuclnt.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: schannel.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: ondemandconnroutehelper.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: ondemandconnroutehelper.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: ondemandconnroutehelper.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: ondemandconnroutehelper.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: ondemandconnroutehelper.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: mskeyprotect.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: ntasn1.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: ncrypt.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: ncryptsslp.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: msasn1.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: cryptsp.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: rsaenh.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: cryptbase.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: gpapi.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Section loaded: dpapi.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: EnumSystemLocalesW, |
0_2_002943A7 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: GetUserDefaultLCID,IsValidCodePage,IsValidLocale,GetLocaleInfoW,GetLocaleInfoW, |
0_2_002983DF |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: EnumSystemLocalesW, |
0_2_00298630 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: GetLocaleInfoW,GetLocaleInfoW,GetLocaleInfoW, |
0_2_002986CB |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: EnumSystemLocalesW, |
0_2_0029891E |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: GetLocaleInfoW, |
0_2_0029897D |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: EnumSystemLocalesW, |
0_2_00298A52 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: GetLocaleInfoW, |
0_2_00298A9D |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: GetLocaleInfoW,GetLocaleInfoW,GetACP, |
0_2_00298B44 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: GetLocaleInfoW, |
0_2_00298C4A |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: GetLocaleInfoW, |
0_2_00293EAC |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: EnumSystemLocalesW, |
3_2_002943A7 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: GetUserDefaultLCID,IsValidCodePage,IsValidLocale,GetLocaleInfoW,GetLocaleInfoW, |
3_2_002983DF |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: EnumSystemLocalesW, |
3_2_00298630 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: GetLocaleInfoW,GetLocaleInfoW,GetLocaleInfoW, |
3_2_002986CB |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: EnumSystemLocalesW, |
3_2_0029891E |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: GetLocaleInfoW, |
3_2_0029897D |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: EnumSystemLocalesW, |
3_2_00298A52 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: GetLocaleInfoW, |
3_2_00298A9D |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: GetLocaleInfoW,GetLocaleInfoW,GetACP, |
3_2_00298B44 |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: GetLocaleInfoW, |
3_2_00298C4A |
Source: C:\Users\user\Desktop\Wave-Executor.exe |
Code function: GetLocaleInfoW, |
3_2_00293EAC |