IOC Report
SecuriteInfo.com.Variant.Lazy.606094.29765.28609.exe

loading gif

Files

File Path
Type
Category
Malicious
SecuriteInfo.com.Variant.Lazy.606094.29765.28609.exe
PE32+ executable (GUI) x86-64, for MS Windows
initial sample
malicious
C:\Users\user\Desktop\log.bin
ASCII text, with CRLF line terminators
dropped

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\SecuriteInfo.com.Variant.Lazy.606094.29765.28609.exe
"C:\Users\user\Desktop\SecuriteInfo.com.Variant.Lazy.606094.29765.28609.exe"
malicious

URLs

Name
IP
Malicious
https://curl.se/docs/hsts.html
unknown
http://154.53.160.19/ActiveState/
unknown
https://curl.se/docs/alt-svc.html
unknown
https://curl.se/docs/http-cookies.html
unknown

Memdumps

Base Address
Regiontype
Protect
Malicious
7FF6C2CB1000
unkown
page execute read
7FF6C3B64000
unkown
page readonly
19EDF9D5000
heap
page read and write
19EDF9C7000
heap
page read and write
19EDF9D5000
heap
page read and write
7FF6C304A000
unkown
page read and write
7FF6C2CB1000
unkown
page execute read
7FF6C2F69000
unkown
page readonly
19EDFBE0000
heap
page read and write
19EDF9C4000
heap
page read and write
19EDF9AC000
heap
page read and write
19EDF9DC000
heap
page read and write
19EDF9D0000
heap
page read and write
7FF6C304A000
unkown
page write copy
7FF6C2CB0000
unkown
page readonly
7FF6C3050000
unkown
page write copy
19EDF9CA000
heap
page read and write
19EDF9CF000
heap
page read and write
19EDF920000
heap
page read and write
19EDF9D6000
heap
page read and write
19EDF940000
heap
page read and write
19EDF9D2000
heap
page read and write
7FF6C3051000
unkown
page read and write
7FF6C3B61000
unkown
page read and write
19EDF9C5000
heap
page read and write
7FF6C3B64000
unkown
page readonly
19EDF9D5000
heap
page read and write
7FF6C2F69000
unkown
page readonly
19EDF9CA000
heap
page read and write
19EDF9CB000
heap
page read and write
7FF6C3B87000
unkown
page readonly
19EDF9DE000
heap
page read and write
17651FE000
stack
page read and write
17650FC000
stack
page read and write
19EDF9A0000
heap
page read and write
19EDF9A6000
heap
page read and write
19EDF910000
heap
page read and write
17652FE000
stack
page read and write
7FF6C2CB0000
unkown
page readonly
19EDF9C8000
heap
page read and write
7FF6C3B87000
unkown
page readonly
There are 31 hidden memdumps, click here to show them.