IOC Report
Jr2YluqEVG.dll

loading gif

Processes

Path
Cmdline
Malicious
C:\Windows\System32\loaddll32.exe
loaddll32.exe "C:\Users\user\Desktop\Jr2YluqEVG.dll"
C:\Windows\System32\conhost.exe
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
C:\Windows\SysWOW64\cmd.exe
cmd.exe /C rundll32.exe "C:\Users\user\Desktop\Jr2YluqEVG.dll",#1
C:\Windows\SysWOW64\rundll32.exe
rundll32.exe C:\Users\user\Desktop\Jr2YluqEVG.dll,?gb_FB2CImage@@YAHPAXHHAAVCImage@ATL@@_N@Z
C:\Windows\SysWOW64\rundll32.exe
rundll32.exe "C:\Users\user\Desktop\Jr2YluqEVG.dll",#1
C:\Windows\SysWOW64\rundll32.exe
rundll32.exe C:\Users\user\Desktop\Jr2YluqEVG.dll,?gb_get_widget_image_with_alpha@@YAHPAXAAVCImage@ATL@@_N@Z
C:\Windows\SysWOW64\rundll32.exe
rundll32.exe C:\Users\user\Desktop\Jr2YluqEVG.dll,UG_ArcCreate

Memdumps

Base Address
Regiontype
Protect
Malicious
2DF8000
heap
page read and write
3374000
heap
page read and write
323C000
stack
page read and write
3118000
heap
page read and write
63D0000
heap
page read and write
2F50000
heap
page read and write
335B000
heap
page read and write
28FF000
stack
page read and write
2F46000
heap
page read and write
13E0000
heap
page read and write
2F4A000
heap
page read and write
2DDB000
heap
page read and write
299E000
stack
page read and write
2DE5000
heap
page read and write
3377000
heap
page read and write
2E1F000
stack
page read and write
3108000
heap
page read and write
3356000
heap
page read and write
3103000
heap
page read and write
3118000
heap
page read and write
29A0000
heap
page read and write
6B9000
stack
page read and write
29E0000
heap
page read and write
89D000
stack
page read and write
DF0000
heap
page read and write
62D0000
trusted library allocation
page read and write
2DE3000
heap
page read and write
2DDB000
heap
page read and write
2D60000
heap
page read and write
E30000
heap
page read and write
2DDD000
stack
page read and write
6410000
heap
page read and write
357E000
stack
page read and write
30FC000
heap
page read and write
30F7000
heap
page read and write
2DB0000
heap
page read and write
739000
stack
page read and write
28F5000
heap
page read and write
3352000
heap
page read and write
4A9E000
stack
page read and write
740000
heap
page read and write
2D6A000
heap
page read and write
2DF8000
heap
page read and write
F6E000
stack
page read and write
630000
heap
page read and write
2DCE000
stack
page read and write
5EE4000
heap
page read and write
30FF000
heap
page read and write
3108000
heap
page read and write
6B0000
heap
page read and write
333A000
heap
page read and write
4A2E000
stack
page read and write
28F1000
heap
page read and write
30FB000
heap
page read and write
30DA000
heap
page read and write
2904000
heap
page read and write
13CF000
stack
page read and write
67A4000
heap
page read and write
2917000
heap
page read and write
3640000
heap
page read and write
2D90000
heap
page read and write
30FB000
heap
page read and write
2FD9000
stack
page read and write
DAC000
stack
page read and write
49AF000
stack
page read and write
29E4000
heap
page read and write
35BE000
stack
page read and write
28F1000
heap
page read and write
CAD000
stack
page read and write
29AA000
heap
page read and write
4BEF000
stack
page read and write
2E9E000
stack
page read and write
2DD3000
heap
page read and write
30F3000
heap
page read and write
6820000
trusted library allocation
page read and write
C20000
heap
page read and write
335A000
heap
page read and write
335F000
heap
page read and write
890000
heap
page read and write
35D0000
heap
page read and write
30D0000
heap
page read and write
35C0000
heap
page read and write
49EE000
stack
page read and write
353E000
stack
page read and write
6FC000
stack
page read and write
335D000
heap
page read and write
30F3000
heap
page read and write
30F8000
heap
page read and write
2DBA000
heap
page read and write
2EF0000
heap
page read and write
6B70000
trusted library allocation
page read and write
295E000
stack
page read and write
2D66000
heap
page read and write
30F7000
heap
page read and write
2DDB000
heap
page read and write
2D30000
heap
page read and write
28EE000
heap
page read and write
30F7000
heap
page read and write
335A000
heap
page read and write
4BAE000
stack
page read and write
335A000
heap
page read and write
63E0000
heap
page read and write
32DE000
stack
page read and write
6414000
heap
page read and write
E3F000
heap
page read and write
2DDB000
heap
page read and write
3310000
heap
page read and write
E3B000
heap
page read and write
28D0000
heap
page read and write
2E5E000
stack
page read and write
2917000
heap
page read and write
29A6000
heap
page read and write
2DDF000
heap
page read and write
2DD7000
heap
page read and write
5E8E000
stack
page read and write
3361000
heap
page read and write
3646000
heap
page read and write
3105000
heap
page read and write
2901000
heap
page read and write
3260000
heap
page read and write
3108000
heap
page read and write
3362000
heap
page read and write
2DDC000
heap
page read and write
2CEC000
stack
page read and write
2CA9000
stack
page read and write
2F40000
heap
page read and write
5ECF000
stack
page read and write
3100000
heap
page read and write
5FE0000
trusted library allocation
page read and write
2DF8000
heap
page read and write
3115000
heap
page read and write
335A000
heap
page read and write
5EE0000
heap
page read and write
2D50000
heap
page read and write
3118000
heap
page read and write
28DA000
heap
page read and write
FAE000
stack
page read and write
30FF000
heap
page read and write
77C000
stack
page read and write
67A0000
heap
page read and write
2DE0000
heap
page read and write
29F0000
heap
page read and write
3352000
heap
page read and write
29D0000
heap
page read and write
2DF5000
heap
page read and write
364A000
heap
page read and write
4ADF000
stack
page read and write
3330000
heap
page read and write
2DD3000
heap
page read and write
2DD8000
heap
page read and write
14EF000
stack
page read and write
780000
heap
page read and write
3357000
heap
page read and write
30FB000
heap
page read and write
28FA000
heap
page read and write
2EE0000
heap
page read and write
30EF000
heap
page read and write
2C20000
heap
page read and write
30FB000
heap
page read and write
There are 149 hidden memdumps, click here to show them.