IOC Report
file.exe

loading gif

Files

File Path
Type
Category
Malicious
file.exe
PE32+ executable (GUI) x86-64, for MS Windows
initial sample
malicious
C:\Users\user\AppData\Local\Temp\IObit.Malware.Fighter.Pro-12.0.0.1433.exe
PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
dropped
malicious
C:\Users\user\AppData\Local\Temp\crack.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
malicious
C:\Users\user\AppData\Local\Temp\????? ?????????.cmd
ASCII text, with no line terminators
dropped

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\file.exe
"C:\Users\user\Desktop\file.exe"
malicious

URLs

Name
IP
Malicious
http://nsis.sf.net/NSIS_ErrorError
unknown

Registry

Path
Value
Malicious
HKEY_CURRENT_USER_Classes\Local Settings\MuiCache\1e\417C44EB
@%SystemRoot%\System32\ndfapi.dll,-40001

Memdumps

Base Address
Regiontype
Protect
Malicious
205F6831000
heap
page read and write
205F6850000
heap
page read and write
205F687D000
heap
page read and write
205F67E7000
heap
page read and write
205FCD7B000
heap
page read and write
205F6878000
heap
page read and write
205F686F000
heap
page read and write
205F687C000
heap
page read and write
575DAFE000
stack
page read and write
7FF76DB38000
unkown
page readonly
205F68B2000
heap
page read and write
205F6852000
heap
page read and write
205F67E7000
heap
page read and write
205F68B0000
heap
page read and write
205FCD7B000
heap
page read and write
205F6750000
heap
page read and write
205FCD84000
heap
page read and write
205F6854000
heap
page read and write
205F67F6000
heap
page read and write
205FCD58000
heap
page read and write
205F6834000
heap
page read and write
205F6889000
heap
page read and write
205F68B2000
heap
page read and write
205F67A5000
heap
page read and write
205FCD15000
heap
page read and write
205F84E0000
heap
page read and write
205FCE95000
heap
page read and write
205FCD8F000
heap
page read and write
205F6854000
heap
page read and write
205F68B0000
heap
page read and write
205F6862000
heap
page read and write
205FCD13000
heap
page read and write
205F8770000
trusted library allocation
page read and write
205FC630000
heap
page read and write
205F685C000
heap
page read and write
205FCDD3000
heap
page read and write
205F9F1C000
heap
page read and write
205F6990000
heap
page read and write
205F680B000
heap
page read and write
205FCE55000
heap
page read and write
205FCD7C000
heap
page read and write
205F68B2000
heap
page read and write
205FCD8F000
heap
page read and write
205F687F000
heap
page read and write
205FA710000
heap
page read and write
205F6812000
heap
page read and write
205F680B000
heap
page read and write
205FCE95000
heap
page read and write
7FF76DB54000
unkown
page read and write
205FCD91000
heap
page read and write
205F6841000
heap
page read and write
205F687F000
heap
page read and write
205F67F9000
heap
page read and write
205F84E4000
heap
page read and write
205F6884000
heap
page read and write
205F67AE000
heap
page read and write
575D8F5000
stack
page read and write
205F6857000
heap
page read and write
205F85F1000
trusted library allocation
page read and write
205F685A000
heap
page read and write
205F9F10000
trusted library allocation
page read and write
205F689F000
heap
page read and write
205F685F000
heap
page read and write
205F6867000
heap
page read and write
205F67E1000
heap
page read and write
205FCD50000
heap
page read and write
205F9F1A000
heap
page read and write
205F68B0000
heap
page read and write
205F6876000
heap
page read and write
205F6844000
heap
page read and write
205F6881000
heap
page read and write
205F67F3000
heap
page read and write
205FA833000
heap
page read and write
205F6831000
heap
page read and write
205F685D000
heap
page read and write
205F6871000
heap
page read and write
205F6869000
heap
page read and write
205F683C000
heap
page read and write
205FCD68000
heap
page read and write
7FF76DB5F000
unkown
page readonly
205F6760000
heap
page readonly
205FA832000
heap
page read and write
205F685F000
heap
page read and write
205F6850000
heap
page read and write
205FCD69000
heap
page read and write
205F6815000
heap
page read and write
205F686E000
heap
page read and write
7FF76DAF0000
unkown
page readonly
205FCD13000
heap
page read and write
205FCD64000
heap
page read and write
205F6834000
heap
page read and write
205F67E2000
heap
page read and write
205F6840000
heap
page read and write
205FC84D000
heap
page read and write
205FCD13000
heap
page read and write
205F6886000
heap
page read and write
205F689E000
heap
page read and write
205F8620000
heap
page read and write
7FF76DB5E000
unkown
page write copy
205F6818000
heap
page read and write
205FCCD3000
heap
page read and write
205FCC91000
heap
page read and write
7FF76DAF0000
unkown
page readonly
575DCFE000
stack
page read and write
7FF76DB4B000
unkown
page read and write
205F681F000
heap
page read and write
205F67FD000
heap
page read and write
205F6867000
heap
page read and write
205F68B0000
heap
page read and write
205F6875000
heap
page read and write
205FCC51000
heap
page read and write
205F6859000
heap
page read and write
205F6884000
heap
page read and write
575D8EF000
stack
page read and write
205FCD8F000
heap
page read and write
205FCE54000
heap
page read and write
205FCE95000
heap
page read and write
7FF76DB5A000
unkown
page readonly
205F687E000
heap
page read and write
205FCD7D000
heap
page read and write
575D9FE000
stack
page read and write
205FCD92000
heap
page read and write
205F685A000
heap
page read and write
205F6857000
heap
page read and write
205FCCD2000
heap
page read and write
205F680C000
heap
page read and write
7FF76DAF1000
unkown
page execute read
575DEFE000
stack
page read and write
205F67E7000
heap
page read and write
205F6883000
heap
page read and write
7FF76DB5A000
unkown
page readonly
205FCD64000
heap
page read and write
205F6831000
heap
page read and write
205F68A0000
heap
page read and write
205F67FE000
heap
page read and write
205F689F000
heap
page read and write
205F860A000
trusted library allocation
page read and write
205F6818000
heap
page read and write
205F6866000
heap
page read and write
205F684E000
heap
page read and write
7FF76DB38000
unkown
page readonly
205F67F6000
heap
page read and write
205F8750000
heap
page read and write
205FCD13000
heap
page read and write
205F681F000
heap
page read and write
205FCD7E000
heap
page read and write
205F6816000
heap
page read and write
205F6770000
heap
page read and write
205F689F000
heap
page read and write
205F67A0000
heap
page read and write
205F6851000
heap
page read and write
205F6856000
heap
page read and write
205F685A000
heap
page read and write
205F685C000
heap
page read and write
205FCC50000
heap
page read and write
205F681F000
heap
page read and write
205FCE13000
heap
page read and write
205FCD56000
heap
page read and write
205FBC30000
heap
page read and write
205F686C000
heap
page read and write
205FCD62000
heap
page read and write
205F6839000
heap
page read and write
205F684D000
heap
page read and write
205F67F6000
heap
page read and write
205F688D000
heap
page read and write
205F6854000
heap
page read and write
205F6815000
heap
page read and write
205F685B000
heap
page read and write
205F6818000
heap
page read and write
205FB230000
heap
page read and write
205F6832000
heap
page read and write
205F681F000
heap
page read and write
205F6866000
heap
page read and write
205F686E000
heap
page read and write
205F68A1000
heap
page read and write
205FCD51000
heap
page read and write
205F67C8000
heap
page read and write
205FA71A000
heap
page read and write
7FF76DAF1000
unkown
page execute read
205FA830000
heap
page read and write
205F686A000
heap
page read and write
205F6871000
heap
page read and write
205FCE14000
heap
page read and write
205F686E000
heap
page read and write
205FCD8C000
heap
page read and write
205FCE95000
heap
page read and write
205F6854000
heap
page read and write
205F67C0000
heap
page read and write
205F6818000
heap
page read and write
575DFFE000
stack
page read and write
7FF76DB4B000
unkown
page write copy
205FCE95000
heap
page read and write
205F684D000
heap
page read and write
205FCD62000
heap
page read and write
205F6863000
heap
page read and write
205F6865000
heap
page read and write
205FCD90000
heap
page read and write
205FCC92000
heap
page read and write
205FCD13000
heap
page read and write
205F685E000
heap
page read and write
205FCDD2000
heap
page read and write
7FF76DB5E000
unkown
page readonly
205F680B000
heap
page read and write
There are 193 hidden memdumps, click here to show them.