IOC Report
HammerDB-4.11-Win-x64-Setup.exe

loading gif

Files

File Path
Type
Category
Malicious
HammerDB-4.11-Win-x64-Setup.exe
PE32+ executable (GUI) x86-64 (stripped to external PDB), for MS Windows
initial sample
C:\Users\user\AppData\Local\Temp\BRL00001c7c\BRF137.tmp
PE32+ executable (DLL) (console) x86-64, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\BRL00001c7c\BRF1A6.tmp
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\BRL00001c7c\BRF1F5.tmp
PE32+ executable (DLL) (console) x86-64, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\BRL00001c7c\BRF215.tmp
PE32+ executable (DLL) (console) x86-64, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\BRL00001c7c\BRF226.tmp
PE32+ executable (DLL) (console) x86-64 (stripped to external PDB), for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\BRL00001c7c\BRF246.tmp
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\BRL00001c7c\BRF322.tmp
PE32+ executable (DLL) (console) x86-64 (stripped to external PDB), for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\BRL00001c7c\BRF43C.tmp
PE32+ executable (DLL) (console) x86-64, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\BRL00001c7c\BRF44D.tmp
PE32+ executable (DLL) (console) x86-64, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\BRL00001c7c\BRF651.tmp
PE32+ executable (DLL) (console) x86-64, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\BRL00001c7c\BRF662.tmp
PE32+ executable (DLL) (console) x86-64, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\BRL00001c7c\BRF6A1.tmp
PE32+ executable (DLL) (console) x86-64, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\BRL00001c7c\BRF6C2.tmp
PE32+ executable (DLL) (console) x86-64, for MS Windows
dropped
There are 4 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\HammerDB-4.11-Win-x64-Setup.exe
"C:\Users\user\Desktop\HammerDB-4.11-Win-x64-Setup.exe"
malicious

URLs

Name
IP
Malicious
http://tcl.sf.net
unknown
http://forum.java.sun.com/thread.jspa?threadID=426291&messageID=1997063
unknown
http://www.iana.org/assignments/character-sets
unknown
http://docs.fedoraproject.org/en-US/Fedora/13/html/SELinux_FAQ/index.html#id3037154
unknown
http://download.bitrock.com/feedback.phpller.Er
unknown
http://update.bitrock.com/api/1_0
unknown
http://support.micr
unknown
http://www.tdom.org
unknown
http://blogs.msdn.com/b/oldnewthing/archive/2004/01/30/65013.aspx
unknown
http://download.bitrock.com/feedback.phpsions
unknown
http://www.google.com
unknown
http://tkcon.sourceforge.net/
unknown
http://www.activestate.com/tcl/
unknown
http://msdn.mic
unknown
http://support.microsoft.co
unknown
http://blogs.msdn.com/oldnewthing/archive/2003/08/21/54675.aspx
unknown
http://download.bitrock.com/feedback.php
unknown
There are 7 hidden URLs, click here to show them.

Registry

Path
Value
Malicious
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Session Manager\Environment
InstallBuilder

Memdumps

Base Address
Regiontype
Protect
Malicious
6847000
heap
page read and write
6C6B000
heap
page read and write
2CC9000
heap
page read and write
2F45000
heap
page read and write
71A5000
heap
page read and write
6CA01000
unkown
page execute read
2C50000
heap
page read and write
37AF000
heap
page read and write
63981000
unkown
page execute read
6F4000
unkown
page write copy
5A3E000
heap
page read and write
63110000
unkown
page readonly
6A180000
unkown
page readonly
6007000
heap
page read and write
2CFE000
heap
page read and write
3280000
heap
page read and write
63101000
unkown
page execute read
709000
unkown
page write copy
6804000
heap
page read and write
6259000
heap
page read and write
3532000
heap
page read and write
52E0000
heap
page read and write
E76000
heap
page read and write
49EC000
heap
page read and write
6B3E000
heap
page read and write
2E43000
heap
page read and write
2CB3000
heap
page read and write
64ED000
heap
page read and write
610F000
heap
page read and write
7A5000
unkown
page readonly
3313000
heap
page read and write
673B000
heap
page read and write
7AD000
unkown
page write copy
4DB8000
heap
page read and write
5503000
heap
page read and write
3532000
heap
page read and write
6310E000
unkown
page readonly
5F41000
heap
page read and write
2CF8000
heap
page read and write
6FE000
unkown
page write copy
2E43000
heap
page read and write
3A3A000
heap
page read and write
4896000
heap
page read and write
6609F000
unkown
page readonly
66090000
unkown
page readonly
3A62000
heap
page read and write
389A000
heap
page read and write
54F9000
heap
page read and write
6F2000
unkown
page write copy
2CAD000
heap
page read and write
6A1B000
heap
page read and write
4DFA000
heap
page read and write
4580000
heap
page read and write
2CAA000
heap
page read and write
2CF8000
heap
page read and write
5CA3000
heap
page read and write
6A1B3000
unkown
page readonly
67D04000
unkown
page readonly
6670C000
unkown
page read and write
5DB0000
heap
page read and write
6398E000
unkown
page readonly
5BDD000
heap
page read and write
59FC000
heap
page read and write
525C000
heap
page read and write
3388000
heap
page read and write
5E7B000
heap
page read and write
370D000
heap
page read and write
2CB5000
heap
page read and write
5E39000
heap
page read and write
32DC000
heap
page read and write
6CA9000
heap
page read and write
710D2000
unkown
page read and write
2D92000
heap
page read and write
6B89000
heap
page read and write
6952000
heap
page read and write
53F1000
heap
page read and write
6FA000
unkown
page read and write
66F8000
heap
page read and write
70E000
unkown
page write copy
2CA7000
heap
page read and write
10059000
unkown
page read and write
2CF8000
heap
page read and write
5C61000
heap
page read and write
5556000
heap
page read and write
2CC1000
heap
page read and write
5196000
heap
page read and write
5EFF000
heap
page read and write
6361000
heap
page read and write
32C8000
heap
page read and write
3D6C000
heap
page read and write
6B7B000
heap
page read and write
5FC5000
heap
page read and write
2EFF000
heap
page read and write
67D08000
unkown
page readonly
71EF000
heap
page read and write
66681000
unkown
page execute read
4BA6000
heap
page read and write
6F32000
heap
page read and write
4BEA000
heap
page read and write
6D8A000
heap
page read and write
6D31000
heap
page read and write
3532000
heap
page read and write
2C97000
heap
page read and write
63100000
unkown
page readonly
6C595000
unkown
page readonly
3E4C000
heap
page read and write
3D51000
heap
page read and write
6049000
heap
page read and write
2D51000
heap
page read and write
10042000
unkown
page readonly
E27000
heap
page read and write
4922000
heap
page read and write
4689000
heap
page read and write
3D3A000
heap
page read and write
6A1A3000
unkown
page readonly
7D8000
unkown
page readonly
4A52000
heap
page read and write
3680000
heap
page read and write
710C1000
unkown
page execute read
6996000
heap
page read and write
67CE9000
unkown
page readonly
970000
heap
page read and write
70B000
unkown
page write copy
4FC8000
heap
page read and write
2F43000
heap
page read and write
3629000
heap
page read and write
2CC1000
heap
page read and write
6BBF000
heap
page read and write
6672000
heap
page read and write
5B9B000
heap
page read and write
3A00000
heap
page read and write
3428000
heap
page read and write
3DC4000
heap
page read and write
7019000
heap
page read and write
4E7E000
heap
page read and write
2CC1000
heap
page read and write
66080000
unkown
page readonly
6A1B0000
unkown
page read and write
2CC1000
heap
page read and write
2D41000
heap
page read and write
3540000
heap
page read and write
41CA000
heap
page read and write
2EBE000
heap
page read and write
4C2C000
heap
page read and write
6F6000
unkown
page read and write
6C9C000
heap
page read and write
4964000
heap
page read and write
631F000
heap
page read and write
2CC9000
heap
page read and write
4D76000
heap
page read and write
79FE000
stack
page read and write
6C0D000
heap
page read and write
6AB1000
heap
page read and write
5A80000
heap
page read and write
38B7000
heap
page read and write
65F5000
heap
page read and write
3A68000
heap
page read and write
67CE4000
unkown
page write copy
3440000
heap
page read and write
32CC000
heap
page read and write
3AAA000
heap
page read and write
710DF000
unkown
page readonly
66C00000
unkown
page readonly
6668B000
unkown
page readonly
6EE7000
heap
page read and write
34A1000
heap
page read and write
3D5F000
heap
page read and write
3C1D000
heap
page read and write
2CF7000
heap
page read and write
6F89000
heap
page read and write
6A35000
heap
page read and write
2CC1000
heap
page read and write
67E1C000
unkown
page readonly
70A000
unkown
page read and write
6630000
heap
page read and write
66691000
unkown
page readonly
5936000
heap
page read and write
67C80000
unkown
page readonly
6C61000
heap
page read and write
6C6B000
heap
page read and write
66C15000
unkown
page readonly
39B2000
heap
page read and write
2DC7000
heap
page read and write
706000
unkown
page read and write
6AF3000
heap
page read and write
652F000
heap
page read and write
66706000
unkown
page read and write
6CA00000
unkown
page readonly
57EC000
heap
page read and write
3ADA000
heap
page read and write
5DB5000
heap
page read and write
70F000
unkown
page read and write
63105000
unkown
page readonly
3304000
heap
page read and write
7A9000
unkown
page write copy
46B1000
heap
page read and write
3346000
heap
page read and write
3795000
heap
page read and write
5AC2000
heap
page read and write
6EDB000
heap
page read and write
2CC9000
heap
page read and write
2F43000
heap
page read and write
2CA7000
heap
page read and write
6910000
heap
page read and write
3D5A000
heap
page read and write
4E1000
unkown
page execute read
760C000
heap
page read and write
6CA6000
heap
page read and write
7AD000
unkown
page write copy
DF1000
stack
page read and write
2D51000
heap
page read and write
67C81000
unkown
page execute read
6994000
heap
page read and write
5475000
heap
page read and write
2CF8000
heap
page read and write
68CD000
heap
page read and write
6CA05000
unkown
page readonly
6889000
heap
page read and write
370F000
heap
page read and write
34C1000
heap
page read and write
66707000
unkown
page readonly
46CB000
heap
page read and write
66711000
unkown
page readonly
47DA000
heap
page read and write
32C2000
heap
page read and write
508E000
heap
page read and write
2D71000
heap
page read and write
3DFD000
heap
page read and write
5726000
heap
page read and write
2EBA000
heap
page read and write
5DB1000
heap
page read and write
34E7000
heap
page read and write
3D82000
heap
page read and write
3494000
heap
page read and write
5CEA000
heap
page read and write
60CD000
heap
page read and write
629B000
heap
page read and write
6CA0A000
unkown
page read and write
66685000
unkown
page read and write
1005A000
unkown
page readonly
66C11000
unkown
page readonly
41CB000
heap
page read and write
2CC9000
heap
page read and write
3E0F000
heap
page read and write
4F44000
heap
page read and write
710D9000
unkown
page readonly
340C000
heap
page read and write
6E87000
heap
page read and write
980000
heap
page read and write
6C95000
heap
page read and write
6469000
heap
page read and write
5DF7000
heap
page read and write
489E000
heap
page read and write
6F2000
unkown
page read and write
1480000
heap
page read and write
730A000
heap
page read and write
4E0000
unkown
page readonly
7A6000
unkown
page write copy
2D51000
heap
page read and write
5F83000
heap
page read and write
2F5A000
heap
page read and write
65B3000
heap
page read and write
34F0000
heap
page read and write
677E000
heap
page read and write
56E4000
heap
page read and write
45C2000
heap
page read and write
5978000
heap
page read and write
2CC1000
heap
page read and write
67D05000
unkown
page read and write
474F000
heap
page read and write
E8A000
heap
page read and write
4791000
heap
page read and write
41C1000
heap
page read and write
54B7000
heap
page read and write
504C000
heap
page read and write
63A3000
heap
page read and write
3D27000
heap
page read and write
36C2000
heap
page read and write
3D82000
heap
page read and write
4E0000
unkown
page readonly
3490000
heap
page read and write
4A56000
heap
page read and write
5768000
heap
page read and write
4E3C000
heap
page read and write
6A6F000
heap
page read and write
9A0000
heap
page read and write
35E7000
heap
page read and write
6E45000
heap
page read and write
3113000
heap
page read and write
4647000
heap
page read and write
2F5C000
heap
page read and write
3CD9000
heap
page read and write
6151000
heap
page read and write
7A7000
unkown
page read and write
6193000
heap
page read and write
2DF8000
heap
page read and write
2EFA000
heap
page read and write
4F02000
heap
page read and write
722000
unkown
page readonly
58B2000
heap
page read and write
5B4F000
heap
page read and write
4C6E000
heap
page read and write
2E36000
heap
page read and write
66C12000
unkown
page read and write
5C3F000
heap
page read and write
2F5B000
heap
page read and write
6C90000
heap
page read and write
707E000
heap
page read and write
62DD000
heap
page read and write
6668F000
unkown
page readonly
66701000
unkown
page execute read
41CF000
heap
page read and write
2CFA000
heap
page read and write
48E0000
heap
page read and write
2CFE000
heap
page read and write
35D6000
heap
page read and write
703D000
heap
page read and write
6A181000
unkown
page execute read
2DE6000
heap
page read and write
3CA4000
heap
page read and write
6BA3000
heap
page read and write
72E6000
heap
page read and write
8D60000
trusted library allocation
page read and write
2D98000
heap
page read and write
67E1A000
unkown
page readonly
710DA000
unkown
page read and write
2D50000
heap
page read and write
710C0000
unkown
page readonly
3679000
heap
page read and write
5433000
heap
page read and write
64AB000
heap
page read and write
4CB0000
heap
page read and write
37FA000
heap
page read and write
5154000
heap
page read and write
6C62000
heap
page read and write
376C000
heap
page read and write
6A1B5000
unkown
page readonly
5CA4000
heap
page read and write
6210000
heap
page read and write
2EFF000
heap
page read and write
6FB000
unkown
page write copy
77FF000
stack
page read and write
67E11000
unkown
page readonly
6E03000
heap
page read and write
6C8D000
heap
page read and write
14A5000
heap
page read and write
2DD4000
heap
page read and write
71E7000
heap
page read and write
6398B000
unkown
page read and write
61D5000
heap
page read and write
733A000
heap
page read and write
69D9000
heap
page read and write
3B75000
heap
page read and write
63986000
unkown
page readonly
34CB000
heap
page read and write
2EBC000
heap
page read and write
5870000
heap
page read and write
33CA000
heap
page read and write
32CC000
heap
page read and write
7033000
heap
page read and write
5B4F000
heap
page read and write
6D73000
heap
page read and write
2CA7000
heap
page read and write
2DF3000
heap
page read and write
33C9000
heap
page read and write
5322000
heap
page read and write
3593000
heap
page read and write
67E16000
unkown
page readonly
41C6000
heap
page read and write
722000
unkown
page readonly
726B000
heap
page read and write
7280000
heap
page read and write
33D1000
heap
page read and write
59BA000
heap
page read and write
49A7000
heap
page read and write
4F86000
heap
page read and write
3281000
heap
page read and write
6C590000
unkown
page read and write
3703000
heap
page read and write
2F5F000
heap
page read and write
6609D000
unkown
page readonly
3960000
heap
page read and write
2D51000
heap
page read and write
4CF2000
heap
page read and write
3BF5000
heap
page read and write
14A0000
heap
page read and write
2CA5000
heap
page read and write
2CC9000
heap
page read and write
608B000
heap
page read and write
6571000
heap
page read and write
521A000
heap
page read and write
38E5000
heap
page read and write
3B14000
heap
page read and write
67E00000
unkown
page readonly
6C99000
heap
page read and write
5B0E000
heap
page read and write
10000000
unkown
page readonly
457F000
stack
page read and write
63990000
unkown
page readonly
6670F000
unkown
page readonly
4BA7000
heap
page read and write
66680000
unkown
page readonly
3C7E000
heap
page read and write
7163000
heap
page read and write
550A000
heap
page read and write
2E1F000
heap
page read and write
4B06000
heap
page read and write
3B14000
heap
page read and write
5660000
heap
page read and write
5B0D000
heap
page read and write
66C0C000
unkown
page readonly
3D28000
heap
page read and write
2CA7000
heap
page read and write
66B5000
heap
page read and write
2E00000
heap
page read and write
3B69000
heap
page read and write
41C0000
heap
page read and write
6427000
heap
page read and write
4A7C000
heap
page read and write
3769000
heap
page read and write
7A1000
unkown
page read and write
500A000
heap
page read and write
2CC9000
heap
page read and write
5364000
heap
page read and write
6CAD000
heap
page read and write
3795000
heap
page read and write
6F7000
unkown
page write copy
5D6E000
heap
page read and write
32DC000
heap
page read and write
67E01000
unkown
page execute read
E20000
heap
page read and write
66700000
unkown
page readonly
6CEF000
heap
page read and write
6609A000
unkown
page read and write
2F43000
heap
page read and write
2F02000
heap
page read and write
7A6000
unkown
page write copy
582E000
heap
page read and write
2F58000
heap
page read and write
2CAA000
heap
page read and write
3D3E000
heap
page read and write
E00000
heap
page read and write
34F4000
heap
page read and write
7A5000
unkown
page readonly
6310B000
unkown
page read and write
470D000
heap
page read and write
3BAB000
heap
page read and write
6FD000
unkown
page read and write
6C1F000
heap
page read and write
56A2000
heap
page read and write
50D0000
heap
page read and write
2E1F000
heap
page read and write
36FB000
heap
page read and write
39A2000
heap
page read and write
2D1A000
heap
page read and write
5EBD000
heap
page read and write
6668C000
unkown
page read and write
3E55000
heap
page read and write
6C581000
unkown
page execute read
7229000
heap
page read and write
3C37000
heap
page read and write
710DD000
unkown
page readonly
6F89000
heap
page read and write
39E4000
heap
page read and write
4E1000
unkown
page execute read
67E17000
unkown
page read and write
3765000
heap
page read and write
3B1E000
heap
page read and write
6C79000
heap
page read and write
7304000
heap
page read and write
6C8A000
heap
page read and write
6C580000
unkown
page readonly
66099000
unkown
page readonly
6217000
heap
page read and write
33AD000
heap
page read and write
3DA9000
heap
page read and write
10001000
unkown
page execute read
6C86000
heap
page read and write
3A26000
heap
page read and write
6EB9000
heap
page read and write
2C7D000
heap
page read and write
383C000
heap
page read and write
3392000
heap
page read and write
67E10000
unkown
page read and write
3CE5000
heap
page read and write
2CFE000
heap
page read and write
7121000
heap
page read and write
3452000
heap
page read and write
57AA000
heap
page read and write
4EC0000
heap
page read and write
3D53000
heap
page read and write
6CA09000
unkown
page readonly
5D2C000
heap
page read and write
63980000
unkown
page readonly
2D45000
heap
page read and write
66C0B000
unkown
page read and write
72B6000
heap
page read and write
63E5000
heap
page read and write
2E12000
heap
page read and write
3766000
heap
page read and write
481C000
heap
page read and write
6E00000
heap
page read and write
66C17000
unkown
page readonly
366E000
heap
page read and write
51D8000
heap
page read and write
2F53000
heap
page read and write
6F85000
heap
page read and write
72E4000
heap
page read and write
2E16000
heap
page read and write
3110000
heap
page read and write
7D8000
unkown
page readonly
66686000
unkown
page readonly
2DD2000
heap
page read and write
E47000
heap
page read and write
2CC9000
heap
page read and write
2CC1000
heap
page read and write
2F59000
heap
page read and write
6FD5000
heap
page read and write
4A2E000
heap
page read and write
6E45000
heap
page read and write
4605000
heap
page read and write
5C1F000
heap
page read and write
66081000
unkown
page execute read
2D51000
heap
page read and write
61ED000
heap
page read and write
529E000
heap
page read and write
6DBE000
heap
page read and write
E76000
heap
page read and write
6C585000
unkown
page readonly
6F3C000
heap
page read and write
66C01000
unkown
page execute read
34A5000
heap
page read and write
4792000
heap
page read and write
4D34000
heap
page read and write
4B64000
heap
page read and write
67C1000
heap
page read and write
67CE8000
unkown
page read and write
70D000
unkown
page read and write
2E9B000
heap
page read and write
6803000
heap
page read and write
4855000
heap
page read and write
2CAA000
heap
page read and write
2E78000
heap
page read and write
710D3000
unkown
page readonly
5112000
heap
page read and write
4AB2000
heap
page read and write
67E15000
unkown
page read and write
70D2000
heap
page read and write
2E79000
heap
page read and write
53A6000
heap
page read and write
2F4A000
heap
page read and write
6BCB000
heap
page read and write
58F4000
heap
page read and write
4A70000
heap
page read and write
32C2000
heap
page read and write
34F5000
heap
page read and write
There are 546 hidden memdumps, click here to show them.