Extracted/injected images (may contain unpacked executables)
Download #1
Match: screenshot
Match: keylogger
Match: win_registry
Match: win_token
Match: win_files_operation
Match: Str_Win32_Wininet_Library
Match: DebuggerCheck__GlobalFlags
Match: DebuggerCheck__QueryInfo
Match: DebuggerHiding__Thread
Match: DebuggerHiding__Active
Match: ThreadControl__Context
Match: SEH__vectored
Match: anti_dbg
Match: disable_dep
Extracted/injected images (may contain unpacked executables)
Download #1
Match: inject_thread
Match: network_tcp_listen
Match: network_http
Match: network_dropper
Match: network_tcp_socket
Match: network_dns
Match: screenshot
Match: win_mutex
Match: win_registry
Match: win_token
Match: win_files_operation
Match: Str_Win32_Winsock2_Library
Match: Str_Win32_Wininet_Library
Match: Str_Win32_Internet_API
Match: Str_Win32_Http_API
Match: DebuggerCheck__GlobalFlags
Match: DebuggerCheck__QueryInfo
Match: DebuggerHiding__Thread
Match: DebuggerHiding__Active
Match: ThreadControl__Context
Match: SEH__vectored
Match: anti_dbg
Match: disable_dep