IOC Report
Blake3.dll.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Windows\System32\loaddll64.exe
loaddll64.exe "C:\Users\user\Desktop\Blake3.dll.dll"
C:\Windows\System32\conhost.exe
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
C:\Windows\System32\cmd.exe
cmd.exe /C rundll32.exe "C:\Users\user\Desktop\Blake3.dll.dll",#1
C:\Windows\System32\rundll32.exe
rundll32.exe C:\Users\user\Desktop\Blake3.dll.dll,Blake3Finalize
C:\Windows\System32\rundll32.exe
rundll32.exe "C:\Users\user\Desktop\Blake3.dll.dll",#1
C:\Windows\System32\rundll32.exe
rundll32.exe C:\Users\user\Desktop\Blake3.dll.dll,Blake3Free
C:\Windows\System32\rundll32.exe
rundll32.exe C:\Users\user\Desktop\Blake3.dll.dll,Blake3Init

Memdumps

Base Address
Regiontype
Protect
Malicious
173F4304000
heap
page read and write
1D03EFE000
stack
page read and write
169BACB0000
heap
page read and write
14C81543000
heap
page read and write
14C8180B000
heap
page read and write
237F74F000
stack
page read and write
169BAFA5000
heap
page read and write
2CE27540000
heap
page read and write
14C8154E000
heap
page read and write
14C81549000
heap
page read and write
173F4321000
heap
page read and write
14C81542000
heap
page read and write
173F4301000
heap
page read and write
2CE2AD80000
trusted library allocation
page read and write
14C81470000
heap
page read and write
14C81542000
heap
page read and write
169BAC20000
heap
page read and write
27FCC060000
heap
page read and write
565B9AB000
stack
page read and write
14C8153F000
heap
page read and write
2CE2754B000
heap
page read and write
173F4329000
heap
page read and write
169BC810000
heap
page read and write
169BE1F0000
trusted library allocation
page read and write
173F7B40000
trusted library allocation
page read and write
2CE2A803000
heap
page read and write
169BAFAB000
heap
page read and write
169BACF8000
heap
page read and write
173F7690000
heap
page read and write
169BAFA0000
heap
page read and write
14C8153D000
heap
page read and write
169BACD3000
heap
page read and write
173F7693000
heap
page read and write
169BACD3000
heap
page read and write
14C8155A000
heap
page read and write
2CE27555000
heap
page read and write
173F42FC000
heap
page read and write
565BCFE000
stack
page read and write
2CE27875000
heap
page read and write
169BACCE000
heap
page read and write
173F4630000
heap
page read and write
169BACE5000
heap
page read and write
2CE2756A000
heap
page read and write
14C81527000
heap
page read and write
2CE29030000
heap
page read and write
169BAC00000
heap
page read and write
2CE27545000
heap
page read and write
14C81520000
heap
page read and write
2CE274F0000
heap
page read and write
1D03BBA000
stack
page read and write
EFD23AE000
stack
page read and write
2CE2A7B0000
heap
page read and write
2CE27520000
heap
page read and write
237F7CF000
stack
page read and write
9B4B5FF000
stack
page read and write
2CE276F0000
heap
page read and write
173F4304000
heap
page read and write
2CE2787B000
heap
page read and write
173F463B000
heap
page read and write
14C8152E000
heap
page read and write
169BACD4000
heap
page read and write
14C81536000
heap
page read and write
2CE2A800000
heap
page read and write
14C81539000
heap
page read and write
173F430C000
heap
page read and write
169BACD0000
heap
page read and write
2CE274E0000
heap
page read and write
169BACCB000
heap
page read and write
169BACF0000
heap
page read and write
173F44B0000
heap
page read and write
2CE2756B000
heap
page read and write
173F42C0000
heap
page read and write
14C81549000
heap
page read and write
2CE2753C000
heap
page read and write
2CE27562000
heap
page read and write
173F4305000
heap
page read and write
2CE2753C000
heap
page read and write
14C817B0000
heap
page read and write
173F42E8000
heap
page read and write
14C8156C000
heap
page read and write
169BAB20000
heap
page read and write
565BC7E000
stack
page read and write
14C8156C000
heap
page read and write
14C814A0000
heap
page read and write
2CE27528000
heap
page read and write
565BD7F000
stack
page read and write
14C81805000
heap
page read and write
173F42F8000
heap
page read and write
14C81542000
heap
page read and write
169BC813000
heap
page read and write
173F4304000
heap
page read and write
169BACC7000
heap
page read and write
14C8154A000
heap
page read and write
169BACB8000
heap
page read and write
173F42FF000
heap
page read and write
169BACD3000
heap
page read and write
27FCC06D000
heap
page read and write
173F5E20000
heap
page read and write
14C81542000
heap
page read and write
EFD26FF000
stack
page read and write
EFD267E000
stack
page read and write
14C81539000
heap
page read and write
2CE27569000
heap
page read and write
169BACCB000
heap
page read and write
2CE27545000
heap
page read and write
27FCC030000
heap
page read and write
169BCA10000
heap
page read and write
173F432C000
heap
page read and write
169BACFC000
heap
page read and write
14C81800000
heap
page read and write
27FCC020000
heap
page read and write
169BACE0000
heap
page read and write
2CE27870000
heap
page read and write
173F44D0000
heap
page read and write
14C816F0000
heap
page read and write
14C81553000
heap
page read and write
237F6CA000
stack
page read and write
14C8155A000
heap
page read and write
169BACDB000
heap
page read and write
14C8155F000
heap
page read and write
173F42E0000
heap
page read and write
14C81480000
heap
page read and write
27FCC069000
heap
page read and write
173F4635000
heap
page read and write
173F42FC000
heap
page read and write
173F4311000
heap
page read and write
14C81543000
heap
page read and write
2CE27551000
heap
page read and write
1D03E7E000
stack
page read and write
14C81567000
heap
page read and write
169BACD3000
heap
page read and write
169BAEF0000
heap
page read and write
EFD232A000
stack
page read and write
14C817B3000
heap
page read and write
14C830F0000
heap
page read and write
2CE2754B000
heap
page read and write
9B4B4FC000
stack
page read and write
173F4316000
heap
page read and write
9B4B6FE000
stack
page read and write
2CE2752F000
heap
page read and write
173F76A0000
heap
page read and write
2CE2754D000
heap
page read and write
27FCC078000
heap
page read and write
14C84D80000
trusted library allocation
page read and write
173F4304000
heap
page read and write
There are 135 hidden memdumps, click here to show them.