IOC Report
glib-2.0.dll

loading gif

Processes

Path
Cmdline
Malicious
C:\Windows\System32\loaddll32.exe
loaddll32.exe "C:\Users\user\Desktop\glib-2.0.dll"
C:\Windows\System32\conhost.exe
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
C:\Windows\SysWOW64\cmd.exe
cmd.exe /C rundll32.exe "C:\Users\user\Desktop\glib-2.0.dll",#1
C:\Windows\SysWOW64\rundll32.exe
rundll32.exe C:\Users\user\Desktop\glib-2.0.dll,_g_debug_flags
C:\Windows\SysWOW64\rundll32.exe
rundll32.exe "C:\Users\user\Desktop\glib-2.0.dll",#1
C:\Windows\SysWOW64\rundll32.exe
rundll32.exe C:\Users\user\Desktop\glib-2.0.dll,_g_debug_initialized
C:\Windows\SysWOW64\rundll32.exe
rundll32.exe C:\Users\user\Desktop\glib-2.0.dll,g_access

URLs

Name
IP
Malicious
http://www.freedesktop.org/standards/desktop-bookmarks
unknown
http://www.freedesktop.org/standards/desktop-bookmarksgrouphttp://www.freedesktop.org/standards/desk
unknown
http://www.vmware.com/0
unknown
http://crl.thawte.com/ThawteTimestampingCA.crl0
unknown
http://www.freedesktop.org/standards/desktop-bookmarksgroupshttp://www.freedesktop.org/standards/des
unknown
http://www.freedesktop.org/standards/shared-mime-info
unknown
http://freedesktop.org
unknown
http://ocsp.thawte.com0
unknown

Memdumps

Base Address
Regiontype
Protect
Malicious
610000
heap
page read and write
2830000
heap
page read and write
2910000
heap
page read and write
2850000
heap
page read and write
34E5000
heap
page read and write
676000
heap
page read and write
2D0A000
heap
page read and write
2854000
heap
page read and write
2E30000
heap
page read and write
34E1000
heap
page read and write
293A000
heap
page read and write
34EF000
heap
page read and write
161A000
heap
page read and write
1601000
heap
page read and write
2D10000
heap
page read and write
1607000
heap
page read and write
32C000
stack
page read and write
439F000
stack
page read and write
2D13000
heap
page read and write
59D0000
heap
page read and write
67E000
stack
page read and write
27BE000
stack
page read and write
2D06000
heap
page read and write
1611000
heap
page read and write
2C6F000
stack
page read and write
620000
heap
page read and write
17DF000
stack
page read and write
6B10000
trusted library allocation
page read and write
1A0000
heap
page read and write
2E1F000
stack
page read and write
2CEA000
heap
page read and write
2AC0000
heap
page read and write
2850000
heap
page read and write
15EF000
heap
page read and write
2958000
heap
page read and write
295C000
heap
page read and write
410F000
stack
page read and write
2CAE000
stack
page read and write
283A000
heap
page read and write
34E5000
heap
page read and write
3505000
heap
page read and write
285F000
heap
page read and write
2B50000
heap
page read and write
15FC000
heap
page read and write
2930000
heap
page read and write
2960000
heap
page read and write
330E000
stack
page read and write
670000
heap
page read and write
2CE0000
heap
page read and write
34EC000
heap
page read and write
2875000
heap
page read and write
2975000
heap
page read and write
2D04000
heap
page read and write
2D01000
heap
page read and write
153E000
stack
page read and write
2F3C000
stack
page read and write
4F1F000
stack
page read and write
1B0000
heap
page read and write
160A000
heap
page read and write
34E9000
heap
page read and write
2E20000
heap
page read and write
66D4000
heap
page read and write
2FB0000
heap
page read and write
15FF000
heap
page read and write
59D4000
heap
page read and write
500000
heap
page read and write
2A3A000
stack
page read and write
13F0000
heap
page read and write
2D09000
heap
page read and write
2974000
heap
page read and write
5B94000
heap
page read and write
390000
heap
page read and write
295D000
heap
page read and write
2963000
heap
page read and write
334F000
stack
page read and write
2967000
heap
page read and write
2ECA000
heap
page read and write
12FC000
stack
page read and write
2BCA000
heap
page read and write
3360000
heap
page read and write
2E80000
heap
page read and write
157E000
stack
page read and write
3A0000
heap
page read and write
33EF000
stack
page read and write
2859000
heap
page read and write
FA000
stack
page read and write
2959000
heap
page read and write
2EC0000
heap
page read and write
60F000
stack
page read and write
FE0000
heap
page read and write
284D000
heap
page read and write
67A000
heap
page read and write
282E000
stack
page read and write
2AB0000
heap
page read and write
5CE000
stack
page read and write
34F0000
heap
page read and write
58E000
stack
page read and write
F7D000
stack
page read and write
27D0000
heap
page read and write
5D20000
trusted library allocation
page read and write
5EE0000
trusted library allocation
page read and write
285F000
heap
page read and write
2967000
heap
page read and write
5B90000
heap
page read and write
2955000
heap
page read and write
285F000
heap
page read and write
2BC6000
heap
page read and write
34EF000
heap
page read and write
3504000
heap
page read and write
435E000
stack
page read and write
2E9000
stack
page read and write
346A000
heap
page read and write
161A000
heap
page read and write
2859000
heap
page read and write
13C000
stack
page read and write
15E0000
heap
page read and write
34DD000
heap
page read and write
3430000
heap
page read and write
5F10000
trusted library allocation
page read and write
3420000
heap
page read and write
285C000
heap
page read and write
FF0000
heap
page read and write
2859000
heap
page read and write
2D09000
heap
page read and write
2A7C000
stack
page read and write
285B000
heap
page read and write
2D01000
heap
page read and write
1601000
heap
page read and write
281E000
stack
page read and write
2CFD000
heap
page read and write
34E5000
heap
page read and write
34CA000
heap
page read and write
2954000
heap
page read and write
2975000
heap
page read and write
143E000
stack
page read and write
3460000
heap
page read and write
2D09000
heap
page read and write
2950000
heap
page read and write
15EB000
heap
page read and write
2920000
heap
page read and write
34E1000
heap
page read and write
4EDE000
stack
page read and write
2E84000
heap
page read and write
287D000
heap
page read and write
2859000
heap
page read and write
2958000
heap
page read and write
2967000
heap
page read and write
2861000
heap
page read and write
285F000
heap
page read and write
33AE000
stack
page read and write
1603000
heap
page read and write
3466000
heap
page read and write
350D000
heap
page read and write
54E000
stack
page read and write
2D09000
heap
page read and write
2BC0000
heap
page read and write
2958000
heap
page read and write
2EC6000
heap
page read and write
66D0000
heap
page read and write
2EF9000
stack
page read and write
63D000
stack
page read and write
34C0000
heap
page read and write
2B3E000
stack
page read and write
2859000
heap
page read and write
2FA0000
heap
page read and write
There are 155 hidden memdumps, click here to show them.