IOC Report
17279183995338063c3337b59437329df8d8819a0f5a4ea9cf1609b9c4eed2206be54f143f469.dat-decoded.dll

loading gif

Processes

Path
Cmdline
Malicious
C:\Windows\System32\loaddll32.exe
loaddll32.exe "C:\Users\user\Desktop\17279183995338063c3337b59437329df8d8819a0f5a4ea9cf1609b9c4eed2206be54f143f469.dat-decoded.dll"
malicious
C:\Windows\SysWOW64\cmd.exe
cmd.exe /C rundll32.exe "C:\Users\user\Desktop\17279183995338063c3337b59437329df8d8819a0f5a4ea9cf1609b9c4eed2206be54f143f469.dat-decoded.dll",#1
malicious
C:\Windows\SysWOW64\rundll32.exe
rundll32.exe "C:\Users\user\Desktop\17279183995338063c3337b59437329df8d8819a0f5a4ea9cf1609b9c4eed2206be54f143f469.dat-decoded.dll",#1
malicious
C:\Windows\System32\conhost.exe
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1

Memdumps

Base Address
Regiontype
Protect
Malicious
94E000
stack
page read and write
31BF000
heap
page read and write
3486000
heap
page read and write
53D000
stack
page read and write
2E59000
stack
page read and write
2EF0000
heap
page read and write
5DE000
stack
page read and write
580000
heap
page read and write
31C7000
heap
page read and write
43D000
stack
page read and write
600000
heap
page read and write
2FF0000
heap
page read and write
33AE000
stack
page read and write
3410000
heap
page read and write
2FD0000
heap
page read and write
680000
heap
page read and write
62F0000
trusted library allocation
page read and write
31CF000
heap
page read and write
64E000
stack
page read and write
3480000
heap
page read and write
31AA000
heap
page read and write
348A000
heap
page read and write
31CC000
heap
page read and write
590000
heap
page read and write
2E9C000
stack
page read and write
31BB000
heap
page read and write
31E4000
heap
page read and write
B1F000
stack
page read and write
3474000
heap
page read and write
32EE000
stack
page read and write
31C7000
heap
page read and write
336D000
stack
page read and write
68B000
heap
page read and write
31E4000
heap
page read and write
3470000
heap
page read and write
31C3000
heap
page read and write
68F000
heap
page read and write
31D2000
heap
page read and write
D00000
heap
page read and write
31C3000
heap
page read and write
332E000
stack
page read and write
3420000
heap
page read and write
31A0000
heap
page read and write
There are 33 hidden memdumps, click here to show them.