IOC Report
file.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\file.exe
"C:\Users\user\Desktop\file.exe"
malicious

URLs

Name
IP
Malicious
http://185.215.113.37/
185.215.113.37
malicious
http://185.215.113.37
unknown
malicious
http://185.215.113.37/e2b1563c6670f193.php?
unknown
malicious
http://185.215.113.37t=
unknown
malicious
http://185.215.113.37/e2b1563c6670f193.php
185.215.113.37
malicious
http://185.215.113.37/e2b1563c6670f193.phpSg
unknown
malicious
http://185.215.113.37/ws
unknown
malicious
http://185.215.113.37/Zg
unknown
malicious
http://185.215.113.37/e2b1563c6670f193.php7
unknown
malicious

IPs

IP
Domain
Country
Malicious
185.215.113.37
unknown
Portugal
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
FF1000
unkown
page execute and read and write
malicious
5490000
direct allocation
page read and write
malicious
196E000
heap
page read and write
malicious
5020000
heap
page read and write
5001000
heap
page read and write
1686000
unkown
page execute and read and write
1960000
heap
page read and write
5001000
heap
page read and write
5001000
heap
page read and write
5001000
heap
page read and write
5001000
heap
page read and write
1D50F000
stack
page read and write
1950000
heap
page read and write
463E000
stack
page read and write
387E000
stack
page read and write
5610000
direct allocation
page execute and read and write
10D2000
unkown
page execute and read and write
170E000
stack
page read and write
5001000
heap
page read and write
49FE000
stack
page read and write
43BE000
stack
page read and write
5001000
heap
page read and write
1790000
direct allocation
page read and write
1B5E000
stack
page read and write
5001000
heap
page read and write
1790000
direct allocation
page read and write
5001000
heap
page read and write
45FF000
stack
page read and write
1790000
direct allocation
page read and write
1D54E000
stack
page read and write
EF5000
stack
page read and write
18EE000
stack
page read and write
1D93D000
stack
page read and write
5001000
heap
page read and write
FE0000
heap
page read and write
5001000
heap
page read and write
5490000
direct allocation
page read and write
5001000
heap
page read and write
5001000
heap
page read and write
5001000
heap
page read and write
BB0000
heap
page read and write
5001000
heap
page read and write
5001000
heap
page read and write
34FF000
stack
page read and write
123A000
unkown
page execute and read and write
5001000
heap
page read and write
4DBE000
stack
page read and write
5001000
heap
page read and write
3FBF000
stack
page read and write
40FF000
stack
page read and write
5001000
heap
page read and write
1957000
heap
page read and write
1D8FE000
stack
page read and write
14EC000
unkown
page execute and write copy
5001000
heap
page read and write
1790000
direct allocation
page read and write
55E0000
direct allocation
page execute and read and write
5001000
heap
page read and write
413E000
stack
page read and write
1687000
unkown
page execute and write copy
5001000
heap
page read and write
5001000
heap
page read and write
16CE000
stack
page read and write
1790000
direct allocation
page read and write
5610000
direct allocation
page execute and read and write
5490000
direct allocation
page read and write
3FFE000
stack
page read and write
1790000
direct allocation
page read and write
1790000
direct allocation
page read and write
373E000
stack
page read and write
5001000
heap
page read and write
5001000
heap
page read and write
10A1000
unkown
page execute and read and write
473F000
stack
page read and write
5001000
heap
page read and write
44BF000
stack
page read and write
1D40E000
stack
page read and write
5001000
heap
page read and write
5001000
heap
page read and write
5007000
heap
page read and write
5001000
heap
page read and write
3D3F000
stack
page read and write
5001000
heap
page read and write
4EFE000
stack
page read and write
5001000
heap
page read and write
39BE000
stack
page read and write
5001000
heap
page read and write
4FFF000
stack
page read and write
19B1000
heap
page read and write
3E7F000
stack
page read and write
192E000
stack
page read and write
14B1000
unkown
page execute and read and write
5001000
heap
page read and write
48BE000
stack
page read and write
14DD000
unkown
page execute and read and write
5001000
heap
page read and write
54CE000
stack
page read and write
1930000
heap
page read and write
1D7FD000
stack
page read and write
1790000
direct allocation
page read and write
17A0000
heap
page read and write
35FF000
stack
page read and write
1790000
direct allocation
page read and write
5001000
heap
page read and write
3D7E000
stack
page read and write
10AD000
unkown
page execute and read and write
FF1000
unkown
page execute and write copy
5010000
heap
page read and write
5001000
heap
page read and write
5001000
heap
page read and write
5001000
heap
page read and write
13D9000
unkown
page execute and read and write
4AFF000
stack
page read and write
1790000
direct allocation
page read and write
5001000
heap
page read and write
174E000
stack
page read and write
55CF000
stack
page read and write
5001000
heap
page read and write
1790000
direct allocation
page read and write
423F000
stack
page read and write
19EB000
heap
page read and write
EFE000
stack
page read and write
14EB000
unkown
page execute and read and write
B5C000
stack
page read and write
4C3F000
stack
page read and write
437F000
stack
page read and write
5001000
heap
page read and write
1D3CF000
stack
page read and write
195B000
heap
page read and write
44FE000
stack
page read and write
1D7BF000
stack
page read and write
487F000
stack
page read and write
5001000
heap
page read and write
5001000
heap
page read and write
36FF000
stack
page read and write
18AE000
stack
page read and write
4C7E000
stack
page read and write
1DA3C000
stack
page read and write
BC0000
heap
page read and write
1790000
direct allocation
page read and write
4B3E000
stack
page read and write
5001000
heap
page read and write
14EB000
unkown
page execute and write copy
3AFE000
stack
page read and write
14D3000
unkown
page execute and read and write
5001000
heap
page read and write
FF0000
unkown
page readonly
5001000
heap
page read and write
5001000
heap
page read and write
5001000
heap
page read and write
477E000
stack
page read and write
124E000
unkown
page execute and read and write
19CA000
heap
page read and write
33FF000
stack
page read and write
5001000
heap
page read and write
5001000
heap
page read and write
5600000
direct allocation
page execute and read and write
5001000
heap
page read and write
5001000
heap
page read and write
5440000
trusted library allocation
page read and write
5001000
heap
page read and write
1790000
direct allocation
page read and write
5001000
heap
page read and write
1D64F000
stack
page read and write
49BF000
stack
page read and write
5001000
heap
page read and write
3C3E000
stack
page read and write
5001000
heap
page read and write
383F000
stack
page read and write
5630000
direct allocation
page execute and read and write
4EBF000
stack
page read and write
1D6BE000
stack
page read and write
5001000
heap
page read and write
196A000
heap
page read and write
3BFF000
stack
page read and write
5001000
heap
page read and write
5001000
heap
page read and write
5001000
heap
page read and write
5001000
heap
page read and write
3ABF000
stack
page read and write
5001000
heap
page read and write
5001000
heap
page read and write
427E000
stack
page read and write
55F0000
direct allocation
page execute and read and write
5001000
heap
page read and write
5000000
heap
page read and write
5001000
heap
page read and write
5001000
heap
page read and write
5001000
heap
page read and write
5001000
heap
page read and write
5001000
heap
page read and write
4D7F000
stack
page read and write
3EBE000
stack
page read and write
397F000
stack
page read and write
5001000
heap
page read and write
17A5000
heap
page read and write
5001000
heap
page read and write
FF0000
unkown
page read and write
5620000
direct allocation
page execute and read and write
178B000
stack
page read and write
5001000
heap
page read and write
1790000
direct allocation
page read and write
561E000
stack
page read and write
There are 193 hidden memdumps, click here to show them.