Source: | Binary string: UxTheme.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: rsaenh.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: xWindows.Security.Integrity.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: wshbth.pdbGCTL source: firefox.exe, 0000000D.00000003.1844280909.000001F0977A2000.00000004.00000020.00020000.00000000.sdmp |
Source: | Binary string: winsta.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: ktmw32.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: WscApi.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: NapiNSP.pdb source: firefox.exe, 0000000D.00000003.1843616152.000001F0886A4000.00000004.00000020.00020000.00000000.sdmp, firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: msvcrt.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: xWindows.StateRepositoryPS.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8WinTypes.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: webauthn.pdbGCTL source: firefox.exe, 0000000D.00000003.1811411662.000001F097601000.00000004.00000020.00020000.00000000.sdmp |
Source: | Binary string: xul.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: nssckbi.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: winnsi.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: dcomp.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: cryptsp.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8dhcpcsvc6.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8softokn3.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: ntmarta.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: CLBCatQ.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: urlmon.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8twinapi.appcore.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8kernelbase.pdb source: firefox.exe, 0000000D.00000003.1832802717.000001F08D8B0000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: shlwapi.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: netprofm.pdb source: firefox.exe, 0000000D.00000003.1836093178.000001F0886A4000.00000004.00000020.00020000.00000000.sdmp |
Source: | Binary string: 8CoreMessaging.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: win32u.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: dwmapi.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8bcryptprimitives.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: srvcli.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: imm32.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: freebl3.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: webauthn.pdb source: firefox.exe, 0000000D.00000003.1811411662.000001F097601000.00000004.00000020.00020000.00000000.sdmp |
Source: | Binary string: ws2_32.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8imagehlp.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: mswsock.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8gkcodecs.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8iphlpapi.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: nsi.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8ExplorerFrame.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: winmm.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: ole32.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8CoreUIComponents.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8osclientcerts.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8cryptbase.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8cfgmgr32.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: msasn1.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: DWrite.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: combase.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8iertutil.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8dhcpcsvc.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8msvcp140.amd64.pdb source: firefox.exe, 0000000D.00000003.1832802717.000001F08D8B0000.00000004.00000800.00020000.00000000.sdmp, firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: pnrpnsp.pdbUGP source: firefox.exe, 0000000D.00000003.1844280909.000001F0977A2000.00000004.00000020.00020000.00000000.sdmp |
Source: | Binary string: nss3.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: ncrypt.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8webauthn.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8Kernel.Appcore.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8ColorAdapterClient.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8powrprof.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: wsock32.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8MMDevAPI.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: UMPDC.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: wininet.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8oleaut32.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8kernel32.pdb source: firefox.exe, 0000000D.00000003.1832802717.000001F08D8B0000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: rpcrt4.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8TextInputFramework.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: wshbth.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp, firefox.exe, 0000000D.00000003.1844280909.000001F0977A2000.00000004.00000020.00020000.00000000.sdmp |
Source: | Binary string: pnrpnsp.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp, firefox.exe, 0000000D.00000003.1844280909.000001F0977A2000.00000004.00000020.00020000.00000000.sdmp |
Source: | Binary string: 8InputHost.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8ucrtbase.pdb source: firefox.exe, 0000000D.00000003.1832802717.000001F08D8B0000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: xOneCoreUAPCommonProxyStub.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: shcore.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8audioses.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8Bcp47mrm.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8netutils.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: shell32.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: sspicli.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8rasadhlp.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8Bcp47Langs.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8msvcp_win.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8wtsapi32.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8taskschd.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: NapiNSP.pdbUGP source: firefox.exe, 0000000D.00000003.1843616152.000001F0886A4000.00000004.00000020.00020000.00000000.sdmp |
Source: | Binary string: dnsapi.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: userenv.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8Windows.UI.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: nlaapi.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8fwpuclnt.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: winhttp.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: msimg32.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: ntasn1.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: devobj.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: d3d11.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: netprofm.pdbUGP source: firefox.exe, 0000000D.00000003.1836093178.000001F0886A4000.00000004.00000020.00020000.00000000.sdmp |
Source: | Binary string: 8advapi32.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8Windows.Storage.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: dbghelp.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8OnDemandConnRouteHelper.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8netprofm.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: gdi32.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: profapi.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8Windows.Globalization.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: avrt.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: WLDP.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: sechost.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8directmanipulation.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8setupapi.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8vcruntime140_1.amd64.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: propsys.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8lgpllibs.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: z:\task_1551543573\build\openh264\gmpopenh264.pdb source: gmpopenh264.dll.tmp.13.dr |
Source: | Binary string: 8gdi32full.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8vcruntime140.amd64.pdb source: firefox.exe, 0000000D.00000003.1832802717.000001F08D8B0000.00000004.00000800.00020000.00000000.sdmp, firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: winrnr.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: msctf.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: version.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: dbgcore.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: mscms.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: user32.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: twinapi.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8DataExchange.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: z:\task_1551543573\build\openh264\gmpopenh264.pdbV source: gmpopenh264.dll.tmp.13.dr |
Source: | Binary string: 8wintrust.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: psapi.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8WindowManagementAPI.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: dxgi.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8npmproxy.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8linkinfo.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: | Binary string: 8Windows.UI.Immersive.pdb source: firefox.exe, 0000000D.00000003.1827475431.000001F0973C2000.00000004.00000800.00020000.00000000.sdmp |
Source: C:\Users\user\Desktop\file.exe | Code function: 0_2_0077DBBE lstrlenW,GetFileAttributesW,FindFirstFileW,FindClose, | 0_2_0077DBBE |
Source: C:\Users\user\Desktop\file.exe | Code function: 0_2_007868EE FindFirstFileW,FindClose, | 0_2_007868EE |
Source: C:\Users\user\Desktop\file.exe | Code function: 0_2_0078698F FindFirstFileW,FindClose,FileTimeToLocalFileTime,FileTimeToLocalFileTime,FileTimeToLocalFileTime,FileTimeToSystemTime,FileTimeToSystemTime,FileTimeToSystemTime, | 0_2_0078698F |
Source: C:\Users\user\Desktop\file.exe | Code function: 0_2_0077D076 FindFirstFileW,DeleteFileW,DeleteFileW,MoveFileW,DeleteFileW,FindNextFileW,FindClose,FindClose, | 0_2_0077D076 |
Source: C:\Users\user\Desktop\file.exe | Code function: 0_2_0077D3A9 FindFirstFileW,DeleteFileW,FindNextFileW,FindClose,FindClose, | 0_2_0077D3A9 |
Source: C:\Users\user\Desktop\file.exe | Code function: 0_2_00789642 SetCurrentDirectoryW,FindFirstFileW,FindFirstFileW,GetFileAttributesW,SetFileAttributesW,FindNextFileW,FindClose,FindFirstFileW,SetCurrentDirectoryW,SetCurrentDirectoryW,SetCurrentDirectoryW,FindNextFileW,FindClose,FindClose, | 0_2_00789642 |
Source: C:\Users\user\Desktop\file.exe | Code function: 0_2_0078979D SetCurrentDirectoryW,FindFirstFileW,FindFirstFileW,FindNextFileW,FindClose,FindFirstFileW,SetCurrentDirectoryW,SetCurrentDirectoryW,SetCurrentDirectoryW,FindNextFileW,FindClose,FindClose, | 0_2_0078979D |
Source: C:\Users\user\Desktop\file.exe | Code function: 0_2_00789B2B FindFirstFileW,Sleep,FindNextFileW,FindClose, | 0_2_00789B2B |
Source: C:\Users\user\Desktop\file.exe | Code function: 0_2_00785C97 FindFirstFileW,FindNextFileW,FindClose, | 0_2_00785C97 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: global traffic | HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic | HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic | HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic | HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic | HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic | HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic | HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic | HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic | HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic | HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic | HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic | HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic | HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic | HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic | HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic | HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic | HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic | HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic | HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic | HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic | HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic | HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic | HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic | HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic | HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic | HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic | HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic | HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic | HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic | HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic | HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic | HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic | HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic | HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic | HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic | HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |
Source: global traffic | HTTP traffic detected: GET /canonical.html HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateCache-Control: no-cachePragma: no-cacheConnection: keep-alive |
Source: global traffic | HTTP traffic detected: GET /success.txt?ipv4 HTTP/1.1Host: detectportal.firefox.comUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/118.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflateConnection: keep-alivePragma: no-cacheCache-Control: no-cache |