Threat Database Trojans Trojan.Trickbot.FD

Trojan.Trickbot.FD

By CagedTech in Trojans

Threat Scorecard

Popularity Rank: 10,073
Threat Level: 80 % (High)
Infected Computers: 263
First Seen: March 7, 2023
Last Seen: July 14, 2026
OS(es) Affected: Windows

The detection of Trojan.Trickbot.FD on your system indicates a potential security threat that requires immediate attention. This report aims to provide you with a comprehensive understanding of the threat, its operational mechanisms, symptoms of infection, and most importantly, steps to remove it from your system. It's crucial to approach this situation with a clear understanding of the risks and the necessary actions to protect your data and system integrity.

What Is Trojan.Trickbot.FD?

Trojan.Trickbot.FD is identified as a Trojan-type threat. Trojans are malicious programs that disguise themselves as legitimate software but are designed to allow unauthorized access to a computer system. They can be used to steal sensitive information, install additional malware, or provide a backdoor for remote access by an attacker. The name Trojan.Trickbot.FD suggests it may be related to the Trickbot malware family, known for its versatility and ability to evolve, but without specific details, it's essential to focus on the general characteristics of Trojan horses and the actions needed to mitigate the threat.

How Trojan.Trickbot.FD Operates

Trojan-type malware, like Trojan.Trickbot.FD, typically operates by deceiving users into installing it on their systems. This can happen through various means, such as opening malicious email attachments, downloading software from untrusted sources, or exploiting vulnerabilities in software. Once installed, it can communicate with its command and control servers to receive instructions, which might include stealing personal data, logging keystrokes, or downloading and installing additional malicious software. The exact operational methods of Trojan.Trickbot.FD may vary, but the end goal is usually to compromise the security of the infected system for financial gain or other malicious purposes.

Symptoms of Infection

Symptoms of a Trojan infection can be subtle and may not always be immediately apparent. Common signs include unusual system behavior, such as slow performance, frequent crashes, or unfamiliar programs and icons appearing on the desktop. Additionally, if the malware is designed to steal data or engage in other malicious activities, you might notice unauthorized transactions, unfamiliar accounts being accessed, or other signs of identity theft. Given the stealthy nature of Trojans, regular system monitoring and the use of reputable antivirus software are crucial for early detection.

How to Remove Trojan.Trickbot.FD

  1. Enter Safe Mode with Networking: This will limit the malware's ability to interfere with the removal process. Restart your computer, and as it boots up, press the F8 key repeatedly until you see the Advanced Boot Options menu. Select Safe Mode with Networking and press Enter.
  2. Perform a Full Scan with a Reputable Tool: Use a well-regarded antivirus or anti-malware tool, such as SpyHunter, to scan your system for malware. Ensure the tool is updated with the latest definitions before starting the scan.
  3. Uninstall Suspicious Programs: Go through your installed programs and remove any that you don't recognize or that were installed around the time the malware was detected.
  4. Reset Your Browser: If your browser was affected, reset it to its default settings. For Chrome, Firefox, and Edge, you can find this option in their respective settings or preferences menus. Be aware that this will remove all extensions and reset your homepage and search engine to their defaults.
  5. Reboot and Re-scan: After completing the above steps, restart your computer in normal mode and perform another full scan with your antivirus software to ensure the malware has been completely removed.

Conclusion

Removing Trojan.Trickbot.FD from your system requires careful and immediate action. By understanding the nature of Trojan-type threats and following the steps outlined above, you can protect your system and data from further compromise. It's also essential to adopt preventive measures, such as keeping your operating system and software up to date, using strong antivirus software, and practicing safe computing habits, like avoiding suspicious downloads and emails. Remember, vigilance and proactive security measures are key to maintaining a secure computing environment.

Analysis Report

General information

Family Name: Trojan.Trickbot.FD
Signature status: No Signature

Known Samples

MD5: 7aa0b944aa5470adb9bd678880a36775
SHA1: 9db26a29fcd4e7abced79db088728db48ece3889
File Size: 3.13 MB, 3133961 bytes
MD5: 42f13782720788c8f0410b251b16b063
SHA1: 555513da860fcc43efa7250970fc38dcde497fac
SHA256: 3E8AF34967A12AB721FFEEADD5C19B47D6BC808FAB091DCC0A901CDF04A45516
File Size: 3.13 MB, 3133938 bytes
MD5: 10c433b7374854e0a7905edb7d22ec83
SHA1: 290b1e6ba28414d8592d698d71db9d21ef74373b
SHA256: 91F2A3E961F54DB0306459560AAE99E50B6A38A7C09612057BA46B6F02B6DB81
File Size: 3.13 MB, 3133720 bytes
MD5: a6965e8d75b31ae2642fc18d3eccf35f
SHA1: fe62516bc2b4b6c06f2622df24c040662fc23965
SHA256: E9C9E4A3320466EB832CE1D9210F89ABA4117F0CFABB4F0C58E7382174C013A0
File Size: 3.14 MB, 3136075 bytes
MD5: 491753f0665bbfe7124649816952095e
SHA1: ee3ab1f873a9ec80cab77949cf97a991b34b0693
SHA256: 9022FE120D83AFDE54939F8183FDE1E1300D33B2CAFA57A4C8A9573F38DC8383
File Size: 3.13 MB, 3133915 bytes
Show More
MD5: 84febcca1e43080d3f5c86e62f93a8ee
SHA1: dc666df84f986b72e0a95aecaf9ee1673079dcfd
SHA256: D9D3EBC32346B5C35FAEB36123EA8C45B9E6700552236A8E0C3B634BEBAC81EC
File Size: 3.13 MB, 3133761 bytes
MD5: 6626581c74f2283fcb8c46c7c447b028
SHA1: c626d3cc7d78ab056bc8042497d4bc36db300d3f
SHA256: 57DCF68A4444770EE5E45E007C54F774A52FC9A87D27B0C7248207C734F7A2B0
File Size: 3.13 MB, 3133720 bytes
MD5: 69945b23e7a2718067bf9062ec81ed0b
SHA1: 100e00c4d90868ab90a964974f81ed79d5a4d7a4
SHA256: 6A36C47EB0F7DCBEF404224C35B7668B45136197D7D141E849E273CEF4351916
File Size: 3.13 MB, 3133720 bytes
MD5: 366be999909adbb9b3af9cd91a6f6f86
SHA1: ac776922a132e3f1e3b4e70bd9b7a9b6da7d4ee2
SHA256: 82F3868A9E18EE96CFB69678D24A0C45BF9F39D0766475A26965B34155B9B66D
File Size: 3.13 MB, 3133720 bytes
MD5: 44d1c7ec1bbabdae9ae8c6ab1607795c
SHA1: 37022dc2bb58ccad1de06f3f51c8586997cfb4b6
SHA256: 1518084853D0642BE8AC95B0054F5CF94D18572BA7DEB647D5CF68BE8D44EF44
File Size: 3.13 MB, 3133720 bytes
MD5: fa8e56719a9ed173e9b681bd814a50c8
SHA1: 0b3a99e2d6afff478be7291f5ac6a5f862f2ffc3
SHA256: 074D48B88A06EF2F5B493C4E8F22051D0EF6A60DB71AB07A4075838E6D20FE2D
File Size: 3.13 MB, 3133720 bytes
MD5: e715d196e93ccfc3c27fb31d24ced62b
SHA1: c4325e03e9ce85357dbee8f46e587c469186a7b3
SHA256: 615C9E962CFCDBA0F69D1740CD2AFA570F7D380694564C8F0A067C624FBAE691
File Size: 3.22 MB, 3221574 bytes
MD5: 1ea122038da88bd845e3cb91c55b811a
SHA1: a6c09904ae94f8bb8d3a3775ea3cdaaef26d9f4a
SHA256: 496E27DD35C427EF2AE9C0B461E650F2BB6C778C56FFB6C001234DD76D1C21C0
File Size: 3.13 MB, 3133720 bytes
MD5: 200609ea12f1e5407bf5a107e97fb5ab
SHA1: 97246d415607a6d22a0c9d058eba57e0b43ae6d0
SHA256: 0207E7C4485479CD367900CB2796BEF39E3DD5552EE42090B4F394A3A5DB5E90
File Size: 3.13 MB, 3133954 bytes
MD5: b18d989938d9fc2d230bd3ba27db757c
SHA1: c3bb8f6764fb58eae8c17269653e79235d983d01
SHA256: 79B26F90A3E8806A2D11122DDF6B278F35450A8ECE701FCD91AC75FCC5E2A548
File Size: 3.13 MB, 3133720 bytes
MD5: 370e03859d09dd832db5ccbbdfcaf1a3
SHA1: db810f768f3be0d7c5b3f29c0966dac6fe896970
SHA256: A43AA034949ABA34546544F90930265DC44A7E358050719FD06074CE5699E782
File Size: 3.22 MB, 3221038 bytes
MD5: a2ae573ceba0c009c8ee63bab94e4511
SHA1: 3f3dd69eb6f5f4209472b56b7a9fbe14060613bd
SHA256: 3D0AEAEA536F92E0A5758E9A26E6D4DD543BD01E4A473555E41917BF6C95344A
File Size: 3.13 MB, 3133915 bytes
MD5: 3725dc09f6465ff230be4b5f93e7e7cf
SHA1: 38ad90494befe71b68bbba001aab5d260e6c1532
SHA256: 269A67FBA0FD256E6E77AC33B5571B9C29C16597E91DF09A931F77F51950769A
File Size: 3.22 MB, 3221550 bytes
MD5: 458123a2e11d1157127eec20ac2dd29b
SHA1: a8deb151d6b207d4f53b28a1473c5851c10fec95
SHA256: A7751E071CCB3F4939209A0FC956A09085468EE4C0E608B329EA104D6F18AC04
File Size: 3.13 MB, 3133915 bytes
MD5: 140375bd508217df916e0b97e187c2a2
SHA1: 88111257178a12f317e16aa1794f15475867f2b5
SHA256: CA7186E066D7AE1181461497B4F05A0467EA5628D6F0440B2BF5FC0E93A77A20
File Size: 3.30 MB, 3299841 bytes
MD5: 93400c08b4d0489d35e44075fb3ea4bd
SHA1: c75b7202a7d0c4dd6ffe4d4d9c12e78e0b65a76e
SHA256: 1ACD35362A86407F8BE02068773BFEFD5FBFB03F05DB3F5706D1471207FECB72
File Size: 3.13 MB, 3133720 bytes
MD5: 42b1fde268dc8d664b2c6594fd5b4cbc
SHA1: dd09bd08608cd5fa0d9c634bb34c500feca52136
SHA256: 9A25429851F6124A81910BA83179701E6AE62C164614A0B8CC8944229A8DC606
File Size: 3.22 MB, 3221745 bytes
MD5: 8af96a6c719af4dcbcce965bc5f39b33
SHA1: 6ff3755df876d15799b615db9a36c3a167e7f00c
SHA256: BA4CBD10CED6F76D0AC1499AD383E65F2A19094F0C30ED254954D6F73F9BC3E7
File Size: 3.13 MB, 3133755 bytes
MD5: 1e9fc29dfe1a868739884926b0928a73
SHA1: 02163ff93a62b5c9339c91a58cc37710f344a658
SHA256: D610639CF3827565E19E2088CAA48C332AFDC09B601771E9568BF00E5D4CAD1C
File Size: 3.13 MB, 3133915 bytes
MD5: ae5da29d61bb760a2fd3757ea8fbf814
SHA1: 4754838dc0fe8f660d7aef4574a644ba3037fc9e
SHA256: 11B215B969266F0EB0B08B7229B5084CD55C55B7136722868BAAFD15B0352E92
File Size: 3.22 MB, 3221573 bytes
MD5: 245db1c149e5ab7474af32a687d48166
SHA1: 34d460692106ca191219eca9d73c3b7f7cc5c388
SHA256: CDB885EB39C94371AA94CEB67312DDD5C7661411783850FC499E04F329994F58
File Size: 3.13 MB, 3133915 bytes
MD5: 0a8a3a5663f32efe38b6e471003f7b45
SHA1: 0e27b43b6164d55456720ebd18bc82eeea7de883
SHA256: D10B95CB9F54B616137BE05CBE47A577D255F7FC04860C79DAC42E8E4B18EBB0
File Size: 3.13 MB, 3133720 bytes
MD5: 833e81cff87aef927cbf3f812bfa0aac
SHA1: ee4c1ec75769af07155afafa2201caad39e10210
SHA256: CBBB3083CCB6E03D22EF212090E7ADA7F47D3B2E3725A524A9E4D935AE1DC4A3
File Size: 3.13 MB, 3133915 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have relocations information
  • File doesn't have security information
  • File has TLS information
  • File is 64-bit executable
  • File is console application (IMAGE_SUBSYSTEM_WINDOWS_CUI)
  • File is either console or GUI application
  • File is Native application (NOT .NET application)
Show More
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Traits

  • big overlay
  • No Version Info
  • x64

Block Information

Total Blocks: 10,415
Potentially Malicious Blocks: 0
Whitelisted Blocks: 10,414
Unknown Blocks: 1

Visual Map

0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0
... Data truncated
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • Adaptix.A
  • Agent.BMG
  • Agent.BMGA
  • Agent.BMGD
  • Agent.LPQC
Show More
  • BadJoke.GF
  • Badjoke.FDA
  • Brute.DM
  • Downloader.Agent.BTTA
  • Downloader.Agent.BTU
  • Filecoder.DASA
  • Filecoder.RAR
  • Keylogger.XB
  • KillMBR.AO
  • Kryptik.EDIU
  • Mimikatz.CWG
  • TrickBot.FJA
  • Trickbot.FJ
  • Trojan.Downloader.Gen.FM
  • Trojan.Downloader.Gen.SU

Windows API Usage

Category API
Syscall Use
  • ntdll.dll!NtClose
  • ntdll.dll!NtDeviceIoControlFile
  • ntdll.dll!NtFreeVirtualMemory
  • ntdll.dll!NtProtectVirtualMemory
  • ntdll.dll!NtQueryInformationThread
  • ntdll.dll!NtQueryVirtualMemory
  • ntdll.dll!NtReleaseMutant
  • ntdll.dll!NtSetEvent
  • ntdll.dll!NtSetInformationWorkerFactory
  • ntdll.dll!NtTerminateProcess
Show More
  • ntdll.dll!NtTestAlert
  • ntdll.dll!NtWaitForSingleObject
  • ntdll.dll!NtWriteFile
  • ntdll.dll!NtWriteVirtualMemory
  • UNKNOWN
  • win32u.dll!NtUserGetKeyboardLayout
  • win32u.dll!NtUserGetThreadState

Trending

Most Viewed

Loading...