IOC Report
0Subtitle Edit.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\0Subtitle Edit.exe
"C:\Users\user\Desktop\0Subtitle Edit.exe"
malicious
C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe
"C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe"
malicious

URLs

Name
IP
Malicious
https://locatedblsoqp.shop/api
188.114.96.3
malicious
https://traineiwnqo.shop/api
188.114.96.3
malicious
https://separateedmsqj.shop/api
188.114.96.3
malicious
http://www.opengis.net/gml
unknown
http://www.collada.org/2005/11/COLLADASchema
unknown
https://locatedblsoqp.shop/
unknown
http://www.topografix.com/GPX/1/1
unknown
https://locatedblsoqp.shop/0z
unknown
http://earth.google.com/kml/2.2
unknown
http://earth.google.com/kml/2.0
unknown
http://earth.google.com/kml/2.1
unknown
http://www.opengis.net/gml/3.2
unknown
http://www.garmin.com/xmlschemas/TrainingCenterDatabase/v2
unknown
https://traineiwnqo.shop/8
unknown
http://www.opengis.net/kml/2.2
unknown
http://www.opengis.net/gml/3.3/exr
unknown
https://www.cloudflare.com/learning/ddos/glossary/malware/
unknown
https://locatedblsoqp.shop/W
unknown
https://login.microsoftonline.us/crypto/aes:
unknown
https://traineiwnqo.shop/
unknown
https://separateedmsqj.shop/x86
unknown
https://www.cloudflare.com/5xx-error-landing
unknown
There are 12 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
separateedmsqj.shop
188.114.96.3
malicious
locatedblsoqp.shop
188.114.96.3
malicious
traineiwnqo.shop
188.114.96.3
malicious

IPs

IP
Domain
Country
Malicious
188.114.96.3
separateedmsqj.shop
European Union
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
2880000
direct allocation
page read and write
1AF8000
unkown
page write copy
2B48000
direct allocation
page read and write
27B0000
remote allocation
page read and write
2C12000
direct allocation
page read and write
2B0A000
direct allocation
page read and write
2B94000
direct allocation
page read and write
2800000
direct allocation
page read and write
475E000
stack
page read and write
1BBD000
unkown
page readonly
22C80000
heap
page read and write
2883000
heap
page read and write
44D000
remote allocation
page execute and read and write
2B18000
direct allocation
page read and write
2F1E000
direct allocation
page read and write
2C10000
direct allocation
page read and write
2AAE000
direct allocation
page read and write
27B0000
remote allocation
page read and write
15FA000
unkown
page readonly
28E0000
direct allocation
page read and write
15D9000
unkown
page readonly
2B7E000
direct allocation
page read and write
42DC000
stack
page read and write
28F0000
direct allocation
page read and write
28B6000
direct allocation
page read and write
284C000
direct allocation
page read and write
28F8000
direct allocation
page read and write
2B00000
direct allocation
page read and write
3021000
direct allocation
page read and write
1B02000
unkown
page write copy
2846000
direct allocation
page read and write
2C14000
direct allocation
page read and write
229FF000
stack
page read and write
1B43000
unkown
page read and write
1F5D000
stack
page read and write
2C08000
direct allocation
page read and write
22D7D000
direct allocation
page read and write
2B08000
direct allocation
page read and write
28D6000
heap
page read and write
1B50000
unkown
page readonly
22C45000
direct allocation
page read and write
22C3E000
stack
page read and write
2824000
direct allocation
page read and write
27FD000
stack
page read and write
22C77000
direct allocation
page read and write
2884000
direct allocation
page read and write
2914000
direct allocation
page read and write
2804000
direct allocation
page read and write
293E000
direct allocation
page read and write
26BF000
stack
page read and write
2886000
direct allocation
page read and write
2C1C000
direct allocation
page read and write
22AFF000
stack
page read and write
2840000
heap
page read and write
1B4F000
unkown
page write copy
2B7C000
direct allocation
page read and write
289E000
direct allocation
page read and write
2848000
direct allocation
page read and write
A61000
unkown
page execute read
2270000
direct allocation
page read and write
22B3D000
stack
page read and write
15D9000
unkown
page readonly
43DD000
stack
page read and write
2760000
heap
page read and write
1AFF000
unkown
page read and write
22C40000
direct allocation
page read and write
28C8000
heap
page read and write
28B8000
direct allocation
page read and write
1E5C000
stack
page read and write
2892000
direct allocation
page read and write
2080000
heap
page read and write
2916000
direct allocation
page read and write
41DF000
stack
page read and write
2B58000
direct allocation
page read and write
11F6000
unkown
page readonly
1FC0000
heap
page read and write
21ED000
stack
page read and write
2ABE000
direct allocation
page read and write
28F4000
direct allocation
page read and write
287F000
heap
page read and write
2B90000
direct allocation
page read and write
2B96000
direct allocation
page read and write
2B82000
direct allocation
page read and write
28B0000
direct allocation
page read and write
280D000
stack
page read and write
2840000
direct allocation
page read and write
287D000
heap
page read and write
15B9000
unkown
page readonly
400000
remote allocation
page execute and read and write
2820000
direct allocation
page read and write
A60000
unkown
page readonly
2B8A000
direct allocation
page read and write
28D6000
heap
page read and write
2B80000
direct allocation
page read and write
1AA0000
unkown
page write copy
2B84000
direct allocation
page read and write
2828000
direct allocation
page read and write
2B1C000
direct allocation
page read and write
282C000
direct allocation
page read and write
2ABA000
direct allocation
page read and write
2B1E000
direct allocation
page read and write
2863000
heap
page read and write
2B5C000
direct allocation
page read and write
28D8000
heap
page read and write
19C000
stack
page read and write
2B22000
direct allocation
page read and write
28C8000
heap
page read and write
2090000
heap
page read and write
26C0000
heap
page read and write
282A000
direct allocation
page read and write
15EF000
unkown
page readonly
2863000
heap
page read and write
2720000
heap
page read and write
2934000
direct allocation
page read and write
1629000
unkown
page readonly
27C0000
heap
page read and write
1629000
unkown
page readonly
1FE0000
direct allocation
page read and write
1BBD000
unkown
page readonly
2C18000
direct allocation
page read and write
2832000
direct allocation
page read and write
15FA000
unkown
page readonly
15B9000
unkown
page readonly
280C000
direct allocation
page read and write
2918000
direct allocation
page read and write
28FC000
direct allocation
page read and write
1AA0000
unkown
page write copy
2765000
heap
page read and write
2E58000
direct allocation
page read and write
2C00000
direct allocation
page read and write
28DA000
direct allocation
page read and write
2847000
heap
page read and write
286E000
direct allocation
page read and write
2869000
heap
page read and write
2869000
heap
page read and write
2095000
heap
page read and write
226D000
stack
page read and write
2812000
direct allocation
page read and write
1B17000
unkown
page read and write
1B3E000
unkown
page read and write
2B10000
direct allocation
page read and write
2875000
direct allocation
page read and write
2863000
heap
page read and write
2C0A000
direct allocation
page read and write
2C04000
direct allocation
page read and write
2B62000
direct allocation
page read and write
28FE000
direct allocation
page read and write
1B50000
unkown
page readonly
11F6000
unkown
page readonly
1FE8000
direct allocation
page read and write
1AA1000
unkown
page read and write
15F2000
unkown
page readonly
289A000
direct allocation
page read and write
2869000
heap
page read and write
291C000
direct allocation
page read and write
1AAA000
unkown
page read and write
26BF000
stack
page read and write
460000
heap
page read and write
28B2000
direct allocation
page read and write
485F000
stack
page read and write
28C0000
direct allocation
page read and write
22C52000
direct allocation
page read and write
2A00000
direct allocation
page read and write
271E000
stack
page read and write
2DCB000
direct allocation
page read and write
2930000
direct allocation
page read and write
15EF000
unkown
page readonly
1AEA000
unkown
page read and write
21AE000
stack
page read and write
28CA000
direct allocation
page read and write
2B16000
direct allocation
page read and write
2822000
direct allocation
page read and write
2826000
direct allocation
page read and write
A60000
unkown
page readonly
2AA0000
direct allocation
page read and write
15F2000
unkown
page readonly
2B4A000
direct allocation
page read and write
1AF9000
unkown
page read and write
499E000
stack
page read and write
1AA7000
unkown
page write copy
2954000
direct allocation
page read and write
228FF000
stack
page read and write
2C58000
direct allocation
page read and write
27B0000
remote allocation
page read and write
28D0000
heap
page read and write
2853000
direct allocation
page read and write
A61000
unkown
page execute read
27BF000
stack
page read and write
285C000
direct allocation
page read and write
28B4000
direct allocation
page read and write
2B52000
direct allocation
page read and write
2894000
direct allocation
page read and write
2EE4000
direct allocation
page read and write
2882000
direct allocation
page read and write
1AFD000
unkown
page write copy
286A000
direct allocation
page read and write
27AE000
stack
page read and write
15C000
stack
page read and write
222D000
stack
page read and write
2C02000
direct allocation
page read and write
284E000
direct allocation
page read and write
282E000
direct allocation
page read and write
2280000
heap
page read and write
1B4F000
unkown
page write copy
292E000
direct allocation
page read and write
2B78000
direct allocation
page read and write
2060000
direct allocation
page read and write
2B32000
direct allocation
page read and write
2883000
heap
page read and write
57E000
stack
page read and write
1AAB000
unkown
page write copy
2AA6000
direct allocation
page read and write
285E000
heap
page read and write
291E000
direct allocation
page read and write
2380000
direct allocation
page read and write
280A000
direct allocation
page read and write
28D8000
heap
page read and write
228D000
heap
page read and write
2862000
direct allocation
page read and write
489D000
stack
page read and write
2883000
heap
page read and write
2B20000
direct allocation
page read and write
2C1E000
direct allocation
page read and write
2982000
direct allocation
page read and write
2C06000
direct allocation
page read and write
2B27000
direct allocation
page read and write
1B21000
unkown
page read and write
2070000
direct allocation
page read and write
28D7000
heap
page read and write
287D000
heap
page read and write
28C6000
direct allocation
page read and write
287D000
heap
page read and write
There are 222 hidden memdumps, click here to show them.