Extracted/injected images (may contain unpacked executables)
Download #1
Match: ScreenShot
Match: Str_Win32_Http_API
Match: local_credential_Steal
Match: DebuggerCheck__GlobalFlags
Match: DebuggerCheck__QueryInfo
Match: DebuggerHiding__Thread
Match: DebuggerHiding__Active
Match: ThreadControl__Context
Match: SEH__vectored
Match: anti_dbg
Match: disable_dep
Extracted/injected images (may contain unpacked executables)
Download #1
Match: Network_DNS
Match: Network_TCP_Socket
Match: Win32_PWS_Loki_Zero
Match: KeyLogger
Match: Network_HTTP
Match: Str_Win32_Internet_API
Match: ScreenShot
Match: Str_Win32_Http_API
Match: DebuggerCheck__GlobalFlags
Match: DebuggerCheck__QueryInfo
Match: DebuggerHiding__Thread
Match: DebuggerHiding__Active
Match: ThreadControl__Context
Match: SEH__vectored
Match: anti_dbg
Match: disable_dep
http://ip-api.com/json https://dotbit.me/a/
Extracted/injected images (may contain unpacked executables)
Download #1
Match: DebuggerCheck__GlobalFlags
Match: DebuggerCheck__QueryInfo
Match: DebuggerHiding__Thread
Match: DebuggerHiding__Active
Match: ThreadControl__Context
Match: SEH__vectored
Match: anti_dbg
Match: disable_dep