IOC Report
download.js

loading gif

Processes

Path
Cmdline
Malicious
C:\Windows\System32\wscript.exe
C:\Windows\System32\WScript.exe "C:\Users\user\Desktop\download.js"
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
28922C95000
heap
page read and write
28922BBE000
heap
page read and write
28922BBE000
heap
page read and write
28922B97000
heap
page read and write
EF0FDFE000
stack
page read and write
28922B4C000
heap
page read and write
28922B47000
heap
page read and write
28922B9A000
heap
page read and write
28922B60000
heap
page read and write
28922BA3000
heap
page read and write
28922B41000
heap
page read and write
28922B62000
heap
page read and write
EF0FEFF000
stack
page read and write
28922C9C000
heap
page read and write
28922B9A000
heap
page read and write
289245E0000
heap
page read and write
28922B20000
heap
page read and write
28922B4B000
heap
page read and write
28922BBE000
heap
page read and write
28922B80000
heap
page read and write
28922B9A000
heap
page read and write
28922B92000
heap
page read and write
28922B9A000
heap
page read and write
28922BBE000
heap
page read and write
28922BA3000
heap
page read and write
28922B47000
heap
page read and write
EF0F8FA000
stack
page read and write
28922BA3000
heap
page read and write
28922BA0000
heap
page read and write
289245E4000
heap
page read and write
289229F0000
heap
page read and write
28922BA3000
heap
page read and write
28922BA3000
heap
page read and write
28922AD0000
heap
page read and write
28922BAB000
heap
page read and write
EF0F9FE000
stack
page read and write
28922B41000
heap
page read and write
28922B9A000
heap
page read and write
EF0FAFE000
stack
page read and write
28922B3C000
heap
page read and write
28922BA5000
heap
page read and write
28922BBE000
heap
page read and write
EF100FE000
stack
page read and write
28922B77000
heap
page read and write
28922B47000
heap
page read and write
28922B92000
heap
page read and write
EF0FCFE000
stack
page read and write
28922B96000
heap
page read and write
28922AF0000
heap
page read and write
28922C90000
heap
page read and write
28922B9A000
heap
page read and write
28926290000
trusted library allocation
page read and write
28922B92000
heap
page read and write
28922BA4000
heap
page read and write
28922B6B000
heap
page read and write
EF0FFFE000
stack
page read and write
28922B6B000
heap
page read and write
28922BA7000
heap
page read and write
28922B5F000
heap
page read and write
28924930000
heap
page read and write
28924570000
heap
page read and write
28922BA3000
heap
page read and write
28922B92000
heap
page read and write
28922BBE000
heap
page read and write
28922BBE000
heap
page read and write
28922BA3000
heap
page read and write
There are 56 hidden memdumps, click here to show them.