String found in binary or memory: 3.digicert. String found in binary or memory: e.google.c om/p/qntp/ String found in binary or memory: e.google.c om/p/msint types/ String found in binary or memory: erts.digic ert.com/Di giCertHigh AssuranceE VRootCA.cr t0 String found in binary or memory: erts.digic ert.com/Di giCertEVCo deSigningC A-SHA2.crt 0 String found in binary or memory: erts.digic ert.com/Di giCertAssu redIDRootC A.crt0 String found in binary or memory: erts.digic ert.com/Di giCertAssu redIDCA-1. 3.7_win.ex eįile opened: C:\Users\u ser\AppDat a\Roaming\ Microsoft\ Windows\St art Menu\d esktop.iniįile opened: C:\Users\u ser\AppDat a\Roaming\ Microsoftįile opened: C:\Users\u ser\AppDat a\Roaming\ Microsoft\ Windowsįile opened: C:\Users\u ser\AppDat a\RoamingĬontains functionality to enumerate / list files inside a directoryĬode function: 1_2_004026 54 FindFir stFileA,Ĭode function: 1_2_004056 20 CloseHa ndle,Delet eFileA,lst rcatA,lstr catA,lstrl enA,FindFi rstFileA,D eleteFileA ,FindNextF ileA,FindC lose,Remov eDirectory A,Ĭode function: 1_2_00405F F6 FindFir stFileA,Fi ndClose,Ĭode function: 1_1_004026 54 FindFir stFileA,Ĭode function: 1_1_004056 20 CloseHa ndle,Delet eFileA,lst rcatA,lstr catA,lstrl enA,FindFi rstFileA,D eleteFileA ,FindNextF ileA,FindC lose,Remov eDirectory A,Ĭode function: 1_1_00405F F6 FindFir stFileA,Fi ndClose,Ĭode function: 1_1_032719 06 MoveWin dow,SendMe ssageA,SHG etSpecialF olderLocat ion,SHGetP athFromIDL istA,CoTas kMemFree,l strcatA,Fi ndFirstFil eA,SendMes sageA,Send MessageA,S endMessage A,FindNext FileA,Find Close, ![]() ![]() Source: C:\Users\u ser\Deskto p\snapgene _viewer_4. Stop behavior analysis, all processes terminated.Found application associated with file extension.Successful, ratio: 38.8% (good quality ratio 36.7%).Number of analysed new started processes analysed:
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |