Source: |
Binary string: UxTheme.pdb source: firefox.exe, 00000010.00000003.2137162706.000002803AF11000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: rsaenh.pdb source: firefox.exe, 00000010.00000003.2133688217.000002803BC70000.00000004.00000800.00020000.00000000.sdmp, firefox.exe, 00000010.00000003.2149845816.000002803BC89000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: winsta.pdb source: firefox.exe, 00000010.00000003.2134277813.000002803B7B0000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: bcrypt.pdb source: firefox.exe, 00000010.00000003.2137703740.000002803ACE9000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: ktmw32.pdb source: firefox.exe, 00000010.00000003.2136584894.000002803AF7A000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: WscApi.pdb source: firefox.exe, 00000010.00000003.2159730383.000002803B93E000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: msvcrt.pdb source: firefox.exe, 00000010.00000003.2137703740.000002803ACE9000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: xWindows.StateRepositoryPS.pdb source: firefox.exe, 00000010.00000003.2150981838.000002803ABD6000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: d:\a01\_work\12\s\\binaries\amd64ret\bin\amd64\\vcruntime140_1.amd64.pdb source: firefox.exe, 00000010.00000003.2136822788.000002803AF6B000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8WinTypes.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: xul.pdb source: firefox.exe, 00000010.00000003.2136584894.000002803AF7A000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: mozglue.pdb source: firefox.exe, 00000010.00000003.2137703740.000002803ACE9000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: winnsi.pdb source: firefox.exe, 00000010.00000003.2134470408.000002803B680000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: cryptsp.pdb source: firefox.exe, 00000010.00000003.2133688217.000002803BC5C000.00000004.00000800.00020000.00000000.sdmp, firefox.exe, 00000010.00000003.2133688217.000002803BC70000.00000004.00000800.00020000.00000000.sdmp, firefox.exe, 00000010.00000003.2149845816.000002803BC89000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8dhcpcsvc6.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8softokn3.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: D:\a\_work\1\s\binaries\amd64ret\bin\amd64\\vcruntime140_1.amd64.pdb source: firefox.exe, 00000010.00000003.2136822788.000002803AF6B000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: ntmarta.pdb source: firefox.exe, 00000010.00000003.2137162706.000002803AF11000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: urlmon.pdb source: firefox.exe, 00000010.00000003.2159730383.000002803B93E000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8twinapi.appcore.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: d:\a01\_work\12\s\\binaries\amd64ret\bin\amd64\\vcruntime140.amd64.pdb source: firefox.exe, 00000010.00000003.2136822788.000002803AF6B000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8kernelbase.pdb source: firefox.exe, 00000010.00000003.2154682025.0000028039261000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: shlwapi.pdb source: firefox.exe, 00000010.00000003.2150365892.000002803AF4C000.00000004.00000800.00020000.00000000.sdmp, firefox.exe, 00000010.00000003.2137049996.000002803AF39000.00000004.00000800.00020000.00000000.sdmp, firefox.exe, 00000010.00000003.2137162706.000002803AF11000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8CoreMessaging.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: d:\a01\_work\12\s\\binaries\amd64ret\bin\amd64\\msvcp140.amd64.pdb source: firefox.exe, 00000010.00000003.2136822788.000002803AF6B000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: mswsock.pdbchrome://browser/skin/window.svg source: firefox.exe, 00000010.00000003.2134470408.000002803B680000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: win32u.pdb source: firefox.exe, 00000010.00000003.2137162706.000002803AF11000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: dwmapi.pdb source: firefox.exe, 00000010.00000003.2134277813.000002803B7B0000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8bcryptprimitives.pdb source: firefox.exe, 00000010.00000003.2154563356.0000028039269000.00000004.00000800.00020000.00000000.sdmp, firefox.exe, 00000010.00000003.2154563356.0000028039274000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: firefox.pdb source: firefox.exe, 00000010.00000003.2137703740.000002803ACE9000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: srvcli.pdb source: firefox.exe, 00000010.00000003.2159730383.000002803B93E000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: imm32.pdb source: firefox.exe, 00000010.00000003.2137162706.000002803AF11000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: D:\a\_work\1\s\binaries\amd64ret\bin\amd64\\msvcp140.amd64.pdb source: firefox.exe, 00000010.00000003.2136822788.000002803AF6B000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: ws2_32.pdb source: firefox.exe, 00000010.00000003.2136584894.000002803AF7A000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: version.pdb@ source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: mswsock.pdb source: firefox.exe, 00000010.00000003.2134470408.000002803B680000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8gkcodecs.pdb source: firefox.exe, 00000010.00000003.2154413440.0000028039281000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8iphlpapi.pdb source: firefox.exe, 00000010.00000003.2154413440.0000028039281000.00000004.00000800.00020000.00000000.sdmp, firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8ExplorerFrame.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: nsi.pdb source: firefox.exe, 00000010.00000003.2134470408.000002803B680000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: D:\a\_work\1\s\binaries\amd64ret\bin\amd64\\vcruntime140.amd64.pdb source: firefox.exe, 00000010.00000003.2136822788.000002803AF6B000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: ole32.pdb source: firefox.exe, 00000010.00000003.2136584894.000002803AF7A000.00000004.00000800.00020000.00000000.sdmp, firefox.exe, 00000010.00000003.2150365892.000002803AF4C000.00000004.00000800.00020000.00000000.sdmp, firefox.exe, 00000010.00000003.2137049996.000002803AF39000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: dbgcore.pdb0 source: firefox.exe, 00000010.00000003.2136584894.000002803AF7A000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8CoreUIComponents.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8osclientcerts.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8cryptbase.pdb source: firefox.exe, 00000010.00000003.2154682025.0000028039261000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8cfgmgr32.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: msasn1.pdb source: firefox.exe, 00000010.00000003.2136584894.000002803AF7A000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: combase.pdb source: firefox.exe, 00000010.00000003.2137162706.000002803AF11000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8iertutil.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8dhcpcsvc.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8msvcp140.amd64.pdb source: firefox.exe, 00000010.00000003.2154413440.0000028039281000.00000004.00000800.00020000.00000000.sdmp, firefox.exe, 00000010.00000003.2154682025.0000028039261000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: nss3.pdb source: firefox.exe, 00000010.00000003.2136584894.000002803AF7A000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: ncrypt.pdb source: firefox.exe, 00000010.00000003.2133688217.000002803BC5C000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8webauthn.pdb source: firefox.exe, 00000010.00000003.2154413440.0000028039281000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8Kernel.Appcore.pdb source: firefox.exe, 00000010.00000003.2154413440.0000028039281000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8powrprof.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8ColorAdapterClient.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: wsock32.pdb source: firefox.exe, 00000010.00000003.2136584894.000002803AF7A000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8MMDevAPI.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: UMPDC.pdb source: firefox.exe, 00000010.00000003.2159730383.000002803B93E000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8oleaut32.pdb source: firefox.exe, 00000010.00000003.2154413440.0000028039281000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8kernel32.pdb source: firefox.exe, 00000010.00000003.2154682025.0000028039261000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: rpcrt4.pdb source: firefox.exe, 00000010.00000003.2137703740.000002803ACE9000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8TextInputFramework.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8InputHost.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8ucrtbase.pdb source: firefox.exe, 00000010.00000003.2154682025.0000028039261000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: wsock32.pdb@ source: firefox.exe, 00000010.00000003.2136584894.000002803AF7A000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: xOneCoreUAPCommonProxyStub.pdb source: firefox.exe, 00000010.00000003.2136584894.000002803AF7A000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: shcore.pdb source: firefox.exe, 00000010.00000003.2137162706.000002803AF11000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8audioses.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8Bcp47mrm.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8netutils.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8rasadhlp.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: shell32.pdb source: firefox.exe, 00000010.00000003.2137162706.000002803AF11000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8Bcp47Langs.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8wtsapi32.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8taskschd.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8msvcp_win.pdb source: firefox.exe, 00000010.00000003.2154563356.0000028039274000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: dnsapi.pdb source: firefox.exe, 00000010.00000003.2134470408.000002803B680000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: mozglue.pdbcontentLONGVARCHAR source: firefox.exe, 00000010.00000003.2137703740.000002803ACE9000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8Windows.UI.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: nlaapi.pdb source: firefox.exe, 00000010.00000003.2134470408.000002803B680000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8fwpuclnt.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: winhttp.pdb source: firefox.exe, 00000010.00000003.2133688217.000002803BC5C000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: ntasn1.pdb source: firefox.exe, 00000010.00000003.2133688217.000002803BC5C000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: devobj.pdb source: firefox.exe, 00000010.00000003.2134470408.000002803B680000.00000004.00000800.00020000.00000000.sdmp, firefox.exe, 00000010.00000003.2134277813.000002803B719000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8advapi32.pdb source: firefox.exe, 00000010.00000003.2154563356.0000028039269000.00000004.00000800.00020000.00000000.sdmp, firefox.exe, 00000010.00000003.2154682025.0000028039261000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8Windows.Storage.pdb source: firefox.exe, 00000010.00000003.2154413440.0000028039281000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: dbghelp.pdb source: firefox.exe, 00000010.00000003.2136584894.000002803AF7A000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8OnDemandConnRouteHelper.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8netprofm.pdb source: firefox.exe, 00000010.00000003.2154413440.0000028039281000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: gdi32.pdb source: firefox.exe, 00000010.00000003.2137162706.000002803AF11000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8Windows.Globalization.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: WLDP.pdb source: firefox.exe, 00000010.00000003.2137162706.000002803AF11000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: sechost.pdb source: firefox.exe, 00000010.00000003.2137703740.000002803ACE9000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8directmanipulation.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8setupapi.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8vcruntime140_1.amd64.pdb source: firefox.exe, 00000010.00000003.2154413440.0000028039281000.00000004.00000800.00020000.00000000.sdmp, firefox.exe, 00000010.00000003.2154682025.0000028039261000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: propsys.pdb source: firefox.exe, 00000010.00000003.2136584894.000002803AF7A000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8lgpllibs.pdb source: firefox.exe, 00000010.00000003.2154413440.0000028039281000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: z:\task_1551543573\build\openh264\gmpopenh264.pdb source: gmpopenh264.dll.tmp.16.dr |
Source: |
Binary string: 8vcruntime140.amd64.pdb source: firefox.exe, 00000010.00000003.2154413440.0000028039281000.00000004.00000800.00020000.00000000.sdmp, firefox.exe, 00000010.00000003.2154682025.0000028039261000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8gdi32full.pdb source: firefox.exe, 00000010.00000003.2154563356.0000028039274000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: winrnr.pdb source: firefox.exe, 00000010.00000003.2134470408.000002803B680000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: msctf.pdb source: firefox.exe, 00000010.00000003.2134277813.000002803B7B0000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: version.pdb source: firefox.exe, 00000010.00000003.2136584894.000002803AF7A000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: dbgcore.pdb source: firefox.exe, 00000010.00000003.2136584894.000002803AF7A000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: user32.pdb source: firefox.exe, 00000010.00000003.2137162706.000002803AF11000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: twinapi.pdb source: firefox.exe, 00000010.00000003.2134277813.000002803B7B0000.00000004.00000800.00020000.00000000.sdmp, firefox.exe, 00000010.00000003.2134277813.000002803B719000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8DataExchange.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: z:\task_1551543573\build\openh264\gmpopenh264.pdbV source: gmpopenh264.dll.tmp.16.dr |
Source: |
Binary string: 8wintrust.pdb source: firefox.exe, 00000010.00000003.2154413440.0000028039281000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: psapi.pdb source: firefox.exe, 00000010.00000003.2136584894.000002803AF7A000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8WindowManagementAPI.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: ntdll.pdb source: firefox.exe, 00000010.00000003.2137703740.000002803ACE9000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: dxgi.pdb source: firefox.exe, 00000010.00000003.2134277813.000002803B7B0000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8npmproxy.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8linkinfo.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: 8Windows.UI.Immersive.pdb source: firefox.exe, 00000010.00000003.2154270326.000002803939F000.00000004.00000800.00020000.00000000.sdmp |
Source: |
Binary string: crypt32.pdb source: firefox.exe, 00000010.00000003.2137703740.000002803ACE9000.00000004.00000800.00020000.00000000.sdmp |
Source: C:\Users\user\Desktop\file.exe |
Code function: 1_2_0017DBBE lstrlenW,GetFileAttributesW,FindFirstFileW,FindClose, |
1_2_0017DBBE |
Source: C:\Users\user\Desktop\file.exe |
Code function: 1_2_001868EE FindFirstFileW,FindClose, |
1_2_001868EE |
Source: C:\Users\user\Desktop\file.exe |
Code function: 1_2_0018698F FindFirstFileW,FindClose,FileTimeToLocalFileTime,FileTimeToLocalFileTime,FileTimeToLocalFileTime,FileTimeToSystemTime,FileTimeToSystemTime,FileTimeToSystemTime, |
1_2_0018698F |
Source: C:\Users\user\Desktop\file.exe |
Code function: 1_2_0017D076 FindFirstFileW,DeleteFileW,DeleteFileW,MoveFileW,DeleteFileW,FindNextFileW,FindClose,FindClose, |
1_2_0017D076 |
Source: C:\Users\user\Desktop\file.exe |
Code function: 1_2_0017D3A9 FindFirstFileW,DeleteFileW,FindNextFileW,FindClose,FindClose, |
1_2_0017D3A9 |
Source: C:\Users\user\Desktop\file.exe |
Code function: 1_2_00189642 SetCurrentDirectoryW,FindFirstFileW,FindFirstFileW,GetFileAttributesW,SetFileAttributesW,FindNextFileW,FindClose,FindFirstFileW,SetCurrentDirectoryW,SetCurrentDirectoryW,SetCurrentDirectoryW,FindNextFileW,FindClose,FindClose, |
1_2_00189642 |
Source: C:\Users\user\Desktop\file.exe |
Code function: 1_2_0018979D SetCurrentDirectoryW,FindFirstFileW,FindFirstFileW,FindNextFileW,FindClose,FindFirstFileW,SetCurrentDirectoryW,SetCurrentDirectoryW,SetCurrentDirectoryW,FindNextFileW,FindClose,FindClose, |
1_2_0018979D |
Source: C:\Users\user\Desktop\file.exe |
Code function: 1_2_00189B2B FindFirstFileW,Sleep,FindNextFileW,FindClose, |
1_2_00189B2B |
Source: C:\Users\user\Desktop\file.exe |
Code function: 1_2_00185C97 FindFirstFileW,FindNextFileW,FindClose, |
1_2_00185C97 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown |
UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: global traffic |
HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic |
HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic |
HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic |
HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic |
HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic |
HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic |
HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic |
HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic |
HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic |
HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic |
HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic |
HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic |
HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic |
HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic |
HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic |
HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic |
HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic |
HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic |
HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic |
HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic |
HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic |
HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic |
HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic |
HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic |
HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic |
HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic |
HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic |
HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic |
HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic |
HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic |
HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic |
HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic |
HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic |
HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic |
HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic |
HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |