Page | Module | Modified | Author |
PresentationFramework | user32 | 01/18/2021 4:11 PM | -62.168.119.130 |
OleCreatePictureIndirect | oleaut32 | 01/10/2021 4:46 PM | skuehlshelby-73.131.232.17 |
LsaQueryInformationPolicy | netapi32 | 01/10/2021 4:03 PM | -165.225.114.95 |
ZwQueryInformationProcess | ntdll | 01/10/2021 1:02 PM | -31.124.110.146 |
TrackPopupMenuEx | coredll | 01/07/2021 6:27 PM | -109.78.197.28 |
IShellItem | Interfaces | 12/30/2020 5:15 PM | -204.141.110.75 |
AdjustWindowRectEx | user32 | 12/30/2020 4:35 AM | semihartan-88.235.51.102 |
DeviceIoControl | kernel32 | 12/27/2020 2:45 AM | -84.110.53.106 |
FormatMessage | kernel32 | 12/27/2020 2:24 AM | -84.110.53.106 |
lmao | kernel32 | 12/21/2020 7:50 PM | -67.164.116.220 |
CreateMutex | kernel32 | 12/16/2020 3:25 AM | -87.95.55.7 |
CTL_CODE | kernel32 | 12/15/2020 3:11 AM | -84.110.53.106 |
Win32ErrorCodes | Constants | 12/14/2020 4:00 PM | -71.244.49.157 |
GetWindowText | user32 | 12/10/2020 12:10 PM | -71.239.92.169 |
GetTopWindow | user32 | 12/10/2020 1:37 AM | -199.203.190.21 |
SYSTEMTIME | Structures | 12/07/2020 4:47 AM | -185.211.159.214 |
SYSTEM_POWER_POLICY | powrprof | 11/30/2020 3:55 PM | -76.247.6.185 |
NtCreateSection | ntdll | 11/28/2020 6:49 PM | -186.136.223.176 |
DhcpDeleteClientInfo | dhcpsapi | 11/20/2020 8:58 AM | -109.182.206.121 |
AddAce | advapi32 | 11/18/2020 11:36 AM | -192.180.154.40 |
NtQueryInformationProcess | ntdll | 11/16/2020 3:19 PM | -186.136.223.176 |
NtWow64QueryInformationProcess64 | ntdll | 11/16/2020 3:19 PM | -186.136.223.176 |
NtWow64WriteVirtualMemory64 | ntdll | 11/16/2020 3:18 PM | -186.136.223.176 |
NtWow64ReadVirtualMemory64 | ntdll | 11/16/2020 3:18 PM | -186.136.223.176 |
NtCreateUserProcess | ntdll | 11/16/2020 3:17 PM | -186.136.223.176 |
CreateProcess | kernel32 | 11/16/2020 3:10 PM | -186.136.223.176 |
ZwCreateThreadEx | ntdll | 11/16/2020 3:07 PM | -186.136.223.176 |
NtMapViewOfSection | ntdll | 11/16/2020 3:05 PM | -186.136.223.176 |
NtClose | ntdll | 11/16/2020 3:02 PM | -186.136.223.176 |
NtCreateThreadEx | ntdll | 11/16/2020 3:02 PM | -186.136.223.176 |
NtProtectVirtualMemory | ntdll | 11/16/2020 3:01 PM | -186.136.223.176 |
NtWriteVirtualMemory | ntdll | 11/16/2020 3:01 PM | -186.136.223.176 |
NtAllocateVirtualMemory | ntdll | 11/16/2020 3:00 PM | -186.136.223.176 |
NtOpenProcess | ntdll | 11/16/2020 3:00 PM | -186.136.223.176 |
NtTerminateProcess | ntdll | 11/16/2020 2:58 PM | -186.136.223.176 |
NtTerminateThread | ntdll | 11/16/2020 2:56 PM | -186.136.223.176 |
GetProcessId | kernel32 | 11/16/2020 2:53 PM | -186.136.223.176 |
NtQueryVirtualMemory | ntdll | 11/16/2020 2:50 PM | -186.136.223.176 |
VirtualQueryEx | kernel32 | 11/16/2020 2:47 PM | -186.136.223.176 |
NtSetContextThread | ntdll | 11/16/2020 2:45 PM | -186.136.223.176 |
NtGetContextThread | ntdll | 11/16/2020 2:43 PM | -186.136.223.176 |
NtResumeThread | ntdll | 11/16/2020 2:39 PM | -186.136.223.176 |
RtlDestroyProcessParameters | ntdll | 11/16/2020 2:37 PM | -186.136.223.176 |
RtlGetCurrentPeb | ntdll | 11/16/2020 2:36 PM | -186.136.223.176 |
RtlInitUnicodeString | ntdll | 11/16/2020 2:34 PM | -186.136.223.176 |
RtlCreateProcessParametersEx | ntdll | 11/16/2020 2:32 PM | -186.136.223.176 |
QueueUserAPC | kernel32 | 11/16/2020 2:30 PM | -186.136.223.176 |
TerminateProcess | kernel32 | 11/16/2020 2:28 PM | -186.136.223.176 |
TerminateThread | kernel32 | 11/16/2020 2:27 PM | -186.136.223.176 |
Wow64GetThreadContext | kernel32 | 11/16/2020 2:26 PM | -186.136.223.176 |
Wow64SetThreadContext | kernel32 | 11/16/2020 2:26 PM | -186.136.223.176 |
SetThreadContext | kernel32 | 11/16/2020 2:23 PM | -186.136.223.176 |
GetThreadContext | kernel32 | 11/16/2020 2:19 PM | -186.136.223.176 |
ReadProcessMemory | kernel32 | 11/16/2020 2:14 PM | -186.136.223.176 |
CloseHandle | kernel32 | 11/16/2020 2:06 PM | -186.136.223.176 |
VirtualProtectEx | kernel32 | 11/16/2020 2:05 PM | -186.136.223.176 |
VirtualAllocEx | kernel32 | 11/16/2020 2:04 PM | -186.136.223.176 |
OpenProcess | kernel32 | 11/16/2020 2:03 PM | -186.136.223.176 |
Sleep | kernel32 | 11/16/2020 2:03 PM | -186.136.223.176 |
GetTickCount | kernel32 | 11/16/2020 2:02 PM | -186.136.223.176 |
IsDebuggerPresent | kernel32 | 11/16/2020 2:00 PM | -186.136.223.176 |
CheckRemoteDebuggerPresent | kernel32 | 11/16/2020 1:58 PM | -186.136.223.176 |
DeleteProcThreadAttributeList | kernel32 | 11/16/2020 1:54 PM | -186.136.223.176 |
UpdateProcThreadAttribute | kernel32 | 11/16/2020 1:53 PM | -186.136.223.176 |
InitializeProcThreadAttributeList | kernel32 | 11/16/2020 1:51 PM | -186.136.223.176 |
ResumeThread | kernel32 | 11/16/2020 1:48 PM | -186.136.223.176 |
RtlCreateUserThread | ntdll | 11/16/2020 1:44 PM | -186.136.223.176 |
CreateRemoteThread | kernel32 | 11/16/2020 1:38 PM | -186.136.223.176 |
NtReadVirtualMemory | ntdll | 11/16/2020 1:32 PM | -186.136.223.176 |
GetCurrentProcessId | kernel32 | 11/16/2020 1:27 PM | -186.136.223.176 |
RtlGetVersion | ntdll | 11/16/2020 1:25 PM | -186.136.223.176 |
VirtualProtect | kernel32 | 11/16/2020 1:23 PM | -186.136.223.176 |
VirtualAlloc | kernel32 | 11/16/2020 1:14 PM | -186.136.223.176 |
VirtualFree | kernel32 | 11/16/2020 1:14 PM | -186.136.223.176 |
123 | user32 | 11/16/2020 2:16 AM | -188.246.251.25 |
GetPixel | gdi32 | 11/16/2020 2:13 AM | -188.246.251.25 |
Boshit | user32 | 11/15/2020 9:25 PM | -165.225.48.74 |
GetLastInputInfo | user32 | 11/10/2020 12:41 PM | -70.130.76.223 |
GetForegroundWindow | user32 | 11/10/2020 12:39 PM | -70.130.76.223 |
CreateFile | kernel32 | 11/09/2020 11:09 AM | -81.82.109.244 |
FlsAlloc | kernel32 | 11/03/2020 12:37 AM | -70.66.139.68 |
LANA_ENUM | Structures | 11/02/2020 2:07 PM | -192.180.154.40 |
GetConsoleScreenBufferInfoEx | kernel32 | 10/28/2020 11:15 PM | -46.244.173.141 |
WinHttpDetectAutoProxyUrl | winhttp | 10/27/2020 10:20 AM | brubli@outlook.com-141.249.133.142 |
NetWkstaGetInfo | netapi32 | 10/26/2020 11:04 PM | -60.155.210.52 |
GetWindowPlacement | user32 | 10/26/2020 4:29 PM | DyS-73.47.171.17 |
AudioLineStatus | Structures | 10/25/2020 1:13 PM | -192.180.154.40 |
EnumYoMama | user32 | 10/21/2020 3:26 AM | -109.37.141.213 |
FillConsoleOutputCharacter | kernel32 | 10/18/2020 2:20 PM | -75.143.242.121 |
USER_INFO_2 | netapi32 | 10/18/2020 10:07 AM | -35.141.90.163 |
MB_GetString | user32 | 10/14/2020 4:27 AM | -81.217.39.232 |
NtSetProcessIsCritical | ntdll | 10/13/2020 4:58 PM | -35.141.90.163 |
Playground | misc | 10/06/2020 8:17 AM | -165.225.104.59 |
WinHttpGetProxyForUrl | winhttp | 10/06/2020 5:22 AM | -141.249.133.142 |
death | user32 | 10/04/2020 2:00 PM | inkognito-145.249.144.82 |
CreateProcessAsUser | advapi32 | 10/01/2020 1:08 PM | -87.186.76.92 |
WinHttpOpen | winhttp | 10/01/2020 5:00 AM | brubli@outlook.com-141.249.133.142 |
WINHTTP_PROXY_INFO | Structures | 10/01/2020 4:54 AM | brubli@outlook.com-141.249.133.142 |
WINHTTP_AUTO_PROXY_OPTIONS | Structures | 10/01/2020 4:52 AM | brubli@outlook.com-141.249.133.142 |
PaintDesktop | user32 | 10/01/2020 3:47 AM | Martin@Lehmann.ws-87.177.190.58 |