Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
SecuriteInfo.com.Variant.Lazy.606094.29765.28609.exe
|
PE32+ executable (GUI) x86-64, for MS Windows
|
initial sample
|
||
C:\Users\user\Desktop\log.bin
|
ASCII text, with CRLF line terminators
|
dropped
|
Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Users\user\Desktop\SecuriteInfo.com.Variant.Lazy.606094.29765.28609.exe
|
"C:\Users\user\Desktop\SecuriteInfo.com.Variant.Lazy.606094.29765.28609.exe"
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
https://curl.se/docs/hsts.html
|
unknown
|
||
http://154.53.160.19/ActiveState/
|
unknown
|
||
https://curl.se/docs/alt-svc.html
|
unknown
|
||
https://curl.se/docs/http-cookies.html
|
unknown
|
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
7FF6C2CB1000
|
unkown
|
page execute read
|
||
7FF6C3B64000
|
unkown
|
page readonly
|
||
19EDF9D5000
|
heap
|
page read and write
|
||
19EDF9C7000
|
heap
|
page read and write
|
||
19EDF9D5000
|
heap
|
page read and write
|
||
7FF6C304A000
|
unkown
|
page read and write
|
||
7FF6C2CB1000
|
unkown
|
page execute read
|
||
7FF6C2F69000
|
unkown
|
page readonly
|
||
19EDFBE0000
|
heap
|
page read and write
|
||
19EDF9C4000
|
heap
|
page read and write
|
||
19EDF9AC000
|
heap
|
page read and write
|
||
19EDF9DC000
|
heap
|
page read and write
|
||
19EDF9D0000
|
heap
|
page read and write
|
||
7FF6C304A000
|
unkown
|
page write copy
|
||
7FF6C2CB0000
|
unkown
|
page readonly
|
||
7FF6C3050000
|
unkown
|
page write copy
|
||
19EDF9CA000
|
heap
|
page read and write
|
||
19EDF9CF000
|
heap
|
page read and write
|
||
19EDF920000
|
heap
|
page read and write
|
||
19EDF9D6000
|
heap
|
page read and write
|
||
19EDF940000
|
heap
|
page read and write
|
||
19EDF9D2000
|
heap
|
page read and write
|
||
7FF6C3051000
|
unkown
|
page read and write
|
||
7FF6C3B61000
|
unkown
|
page read and write
|
||
19EDF9C5000
|
heap
|
page read and write
|
||
7FF6C3B64000
|
unkown
|
page readonly
|
||
19EDF9D5000
|
heap
|
page read and write
|
||
7FF6C2F69000
|
unkown
|
page readonly
|
||
19EDF9CA000
|
heap
|
page read and write
|
||
19EDF9CB000
|
heap
|
page read and write
|
||
7FF6C3B87000
|
unkown
|
page readonly
|
||
19EDF9DE000
|
heap
|
page read and write
|
||
17651FE000
|
stack
|
page read and write
|
||
17650FC000
|
stack
|
page read and write
|
||
19EDF9A0000
|
heap
|
page read and write
|
||
19EDF9A6000
|
heap
|
page read and write
|
||
19EDF910000
|
heap
|
page read and write
|
||
17652FE000
|
stack
|
page read and write
|
||
7FF6C2CB0000
|
unkown
|
page readonly
|
||
19EDF9C8000
|
heap
|
page read and write
|
||
7FF6C3B87000
|
unkown
|
page readonly
|
There are 31 hidden memdumps, click here to show them.