Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 0_2_0040270B FindFirstFileA, |
0_2_0040270B |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 0_2_004061FB FindFirstFileA,FindClose, |
0_2_004061FB |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 0_2_00405799 CloseHandle,GetTempPathA,DeleteFileA,lstrcatA,lstrcatA,lstrlenA,FindFirstFileA,FindNextFileA,FindClose, |
0_2_00405799 |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 4_2_0040270B FindFirstFileA, |
4_2_0040270B |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 4_2_004061FB FindFirstFileA,FindClose, |
4_2_004061FB |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 4_2_00405799 CloseHandle,GetTempPathA,DeleteFileA,lstrcatA,lstrcatA,lstrlenA,FindFirstFileA,FindNextFileA,FindClose, |
4_2_00405799 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 84.38.129.16 |
Source: Documenti di spedizione.bat.exe, 00000004.00000002.3250163188.00000000071D0000.00000004.00001000.00020000.00000000.sdmp, Documenti di spedizione.bat.exe, 00000004.00000002.3249854436.00000000056D3000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://84.38.129.16/rNWbaMk175.bin |
Source: Documenti di spedizione.bat.exe, 00000004.00000002.3249854436.00000000056D3000.00000004.00000020.00020000.00000000.sdmp |
String found in binary or memory: http://84.38.129.16/rNWbaMk175.bini |
Source: Documenti di spedizione.bat.exe, 00000004.00000002.3268012189.0000000035D3C000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: http://concaribe.com |
Source: Documenti di spedizione.bat.exe, 00000004.00000002.3268012189.0000000035D3C000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: http://ftp.concaribe.com |
Source: Documenti di spedizione.bat.exe |
String found in binary or memory: http://nsis.sf.net/NSIS_Error |
Source: Documenti di spedizione.bat.exe |
String found in binary or memory: http://nsis.sf.net/NSIS_ErrorError |
Source: Documenti di spedizione.bat.exe, 00000004.00000002.3268012189.0000000035CC1000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: http://schemas.xmlsoap.org/ws/2005/05/identity/claims/name |
Source: Documenti di spedizione.bat.exe, 00000004.00000002.3268012189.0000000035CC1000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: https://api.ipify.org |
Source: Documenti di spedizione.bat.exe, 00000004.00000002.3268012189.0000000035CC1000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: https://api.ipify.org/ |
Source: Documenti di spedizione.bat.exe, 00000004.00000002.3268012189.0000000035CC1000.00000004.00000800.00020000.00000000.sdmp |
String found in binary or memory: https://api.ipify.org/t |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 0_2_0040524E GetDlgItem,GetDlgItem,GetDlgItem,GetDlgItem,GetClientRect,GetSystemMetrics,SendMessageA,SendMessageA,SendMessageA,SendMessageA,SendMessageA,SendMessageA,ShowWindow,ShowWindow,GetDlgItem,SendMessageA,SendMessageA,SendMessageA,GetDlgItem,CreateThread,CloseHandle,ShowWindow,ShowWindow,ShowWindow,SendMessageA,CreatePopupMenu,AppendMenuA,GetWindowRect,TrackPopupMenu,SendMessageA,OpenClipboard,EmptyClipboard,GlobalAlloc,GlobalLock,SendMessageA,GlobalUnlock,SetClipboardData,CloseClipboard, |
0_2_0040524E |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 0_2_004032BF EntryPoint,SetErrorMode,GetVersion,lstrlenA,#17,OleInitialize,SHGetFileInfoA,GetCommandLineA,GetModuleHandleA,CharNextA,GetTempPathA,GetTempPathA,GetWindowsDirectoryA,lstrcatA,GetTempPathA,lstrcatA,SetEnvironmentVariableA,SetEnvironmentVariableA,SetEnvironmentVariableA,DeleteFileA,OleUninitialize,ExitProcess,lstrcatA,lstrcatA,lstrcatA,lstrcmpiA,SetCurrentDirectoryA,DeleteFileA,CopyFileA,CloseHandle,GetCurrentProcess,OpenProcessToken,LookupPrivilegeValueA,AdjustTokenPrivileges,ExitWindowsEx,ExitProcess, |
0_2_004032BF |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 4_2_004032BF EntryPoint,SetErrorMode,GetVersion,lstrlenA,#17,OleInitialize,SHGetFileInfoA,GetCommandLineA,GetModuleHandleA,CharNextA,GetTempPathA,GetTempPathA,GetWindowsDirectoryA,lstrcatA,GetTempPathA,lstrcatA,SetEnvironmentVariableA,SetEnvironmentVariableA,SetEnvironmentVariableA,DeleteFileA,OleUninitialize,ExitProcess,lstrcatA,lstrcatA,lstrcatA,lstrcmpiA,SetCurrentDirectoryA,DeleteFileA,CopyFileA,CloseHandle,GetCurrentProcess,OpenProcessToken,LookupPrivilegeValueA,AdjustTokenPrivileges,ExitWindowsEx,ExitProcess, |
4_2_004032BF |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 0_2_00406542 |
0_2_00406542 |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 0_2_00404A8D |
0_2_00404A8D |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 4_2_00406542 |
4_2_00406542 |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 4_2_00404A8D |
4_2_00404A8D |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 4_2_000D4188 |
4_2_000D4188 |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 4_2_000DA214 |
4_2_000DA214 |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 4_2_000D4A58 |
4_2_000D4A58 |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 4_2_000DAAAB |
4_2_000DAAAB |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 4_2_000D3E40 |
4_2_000D3E40 |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 4_2_38CEBB90 |
4_2_38CEBB90 |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 4_2_38CEA7DC |
4_2_38CEA7DC |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 4_2_38CF3158 |
4_2_38CF3158 |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 4_2_38CF0040 |
4_2_38CF0040 |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 4_2_38CFE468 |
4_2_38CFE468 |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 4_2_38CF7760 |
4_2_38CF7760 |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 4_2_39202B98 |
4_2_39202B98 |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 4_2_38CF0038 |
4_2_38CF0038 |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 0_2_004032BF EntryPoint,SetErrorMode,GetVersion,lstrlenA,#17,OleInitialize,SHGetFileInfoA,GetCommandLineA,GetModuleHandleA,CharNextA,GetTempPathA,GetTempPathA,GetWindowsDirectoryA,lstrcatA,GetTempPathA,lstrcatA,SetEnvironmentVariableA,SetEnvironmentVariableA,SetEnvironmentVariableA,DeleteFileA,OleUninitialize,ExitProcess,lstrcatA,lstrcatA,lstrcatA,lstrcmpiA,SetCurrentDirectoryA,DeleteFileA,CopyFileA,CloseHandle,GetCurrentProcess,OpenProcessToken,LookupPrivilegeValueA,AdjustTokenPrivileges,ExitWindowsEx,ExitProcess, |
0_2_004032BF |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 4_2_004032BF EntryPoint,SetErrorMode,GetVersion,lstrlenA,#17,OleInitialize,SHGetFileInfoA,GetCommandLineA,GetModuleHandleA,CharNextA,GetTempPathA,GetTempPathA,GetWindowsDirectoryA,lstrcatA,GetTempPathA,lstrcatA,SetEnvironmentVariableA,SetEnvironmentVariableA,SetEnvironmentVariableA,DeleteFileA,OleUninitialize,ExitProcess,lstrcatA,lstrcatA,lstrcatA,lstrcmpiA,SetCurrentDirectoryA,DeleteFileA,CopyFileA,CloseHandle,GetCurrentProcess,OpenProcessToken,LookupPrivilegeValueA,AdjustTokenPrivileges,ExitWindowsEx,ExitProcess, |
4_2_004032BF |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: uxtheme.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: userenv.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: apphelp.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: propsys.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: dwmapi.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: cryptbase.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: oleacc.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: version.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: shfolder.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: kernel.appcore.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: windows.storage.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: wldp.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: riched20.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: usp10.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: msls31.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: textinputframework.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: coreuicomponents.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: coremessaging.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: ntmarta.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: textshaping.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: profapi.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: wininet.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: iertutil.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: sspicli.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: windows.storage.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: wldp.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: profapi.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: kernel.appcore.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: ondemandconnroutehelper.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: winhttp.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: mswsock.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: iphlpapi.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: winnsi.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: urlmon.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: srvcli.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: netutils.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: mscoree.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: version.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: vcruntime140_clr0400.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: ucrtbase_clr0400.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: uxtheme.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: cryptsp.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: rsaenh.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: cryptbase.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: wbemcomn.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: amsi.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: userenv.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: rasapi32.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: rasman.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: rtutils.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: dhcpcsvc6.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: dhcpcsvc.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: dnsapi.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: rasadhlp.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: fwpuclnt.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: secur32.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: schannel.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: mskeyprotect.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: ntasn1.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: ncrypt.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: ncryptsslp.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: msasn1.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: gpapi.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: vaultcli.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Section loaded: wintypes.dll |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 922337203685477 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 600000 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 599890 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 599781 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 599671 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 599562 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 599452 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 599343 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 599234 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 599124 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 599014 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 598906 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 598796 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 598687 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 598578 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 598468 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 598359 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 598249 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 598140 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 598031 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 597921 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 597812 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 597703 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 597593 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 597484 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 597374 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 597265 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 597156 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 597046 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 596937 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 596828 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 596718 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 596609 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 596499 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 596390 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 596281 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 596171 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 596062 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 595948 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 595828 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 595718 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 595609 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 595499 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 595390 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 595279 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 595171 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 595062 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 594953 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 594843 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 594734 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 594624 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep count: 37 > 30 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -34126476536362649s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -600000s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -599890s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 2292 |
Thread sleep count: 7521 > 30 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 2292 |
Thread sleep count: 2332 > 30 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -599781s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -599671s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -599562s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -599452s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -599343s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -599234s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -599124s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -599014s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -598906s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -598796s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -598687s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -598578s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -598468s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -598359s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -598249s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -598140s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -598031s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -597921s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -597812s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -597703s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -597593s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -597484s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -597374s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -597265s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -597156s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -597046s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -596937s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -596828s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -596718s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -596609s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -596499s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -596390s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -596281s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -596171s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -596062s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -595948s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -595828s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -595718s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -595609s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -595499s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -595390s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -595279s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -595171s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -595062s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -594953s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -594843s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -594734s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe TID: 5136 |
Thread sleep time: -594624s >= -30000s |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 0_2_0040270B FindFirstFileA, |
0_2_0040270B |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 0_2_004061FB FindFirstFileA,FindClose, |
0_2_004061FB |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 0_2_00405799 CloseHandle,GetTempPathA,DeleteFileA,lstrcatA,lstrcatA,lstrlenA,FindFirstFileA,FindNextFileA,FindClose, |
0_2_00405799 |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 4_2_0040270B FindFirstFileA, |
4_2_0040270B |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 4_2_004061FB FindFirstFileA,FindClose, |
4_2_004061FB |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Code function: 4_2_00405799 CloseHandle,GetTempPathA,DeleteFileA,lstrcatA,lstrcatA,lstrlenA,FindFirstFileA,FindNextFileA,FindClose, |
4_2_00405799 |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 922337203685477 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 600000 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 599890 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 599781 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 599671 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 599562 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 599452 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 599343 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 599234 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 599124 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 599014 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 598906 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 598796 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 598687 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 598578 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 598468 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 598359 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 598249 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 598140 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 598031 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 597921 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 597812 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 597703 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 597593 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 597484 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 597374 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 597265 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 597156 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 597046 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 596937 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 596828 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 596718 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 596609 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 596499 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 596390 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 596281 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 596171 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 596062 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 595948 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 595828 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 595718 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 595609 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 595499 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 595390 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 595279 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 595171 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 595062 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 594953 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 594843 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 594734 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Thread delayed: delay time: 594624 |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Queries volume information: C:\Users\user\Desktop\Documenti di spedizione.bat.exe VolumeInformation |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Queries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Forms\v4.0_4.0.0.0__b77a5c561934e089\System.Windows.Forms.dll VolumeInformation |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Queries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Security\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Security.dll VolumeInformation |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Queries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualBasic\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll VolumeInformation |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Queries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Drawing\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll VolumeInformation |
Jump to behavior |
Source: C:\Users\user\Desktop\Documenti di spedizione.bat.exe |
Queries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\Accessibility\v4.0_4.0.0.0__b03f5f7f11d50a3a\Accessibility.dll VolumeInformation |
Jump to behavior |