IOC Report
file.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\file.exe
"C:\Users\user\Desktop\file.exe"
malicious

URLs

Name
IP
Malicious
studennotediw.stor
malicious
mobbipenju.stor
malicious
https://steamcommunity.com/profiles/76561199724331900
104.102.49.254
malicious
https://steamcommunity.com/profiles/76561199724331900/inventory/
unknown
malicious
bathdoomgaz.stor
malicious
dissapoiznw.stor
malicious
https://steamcommunity.com/profiles/76561199724331900/
unknown
malicious
spirittunek.stor
malicious
eaglepawnoy.stor
malicious
clearancek.site
malicious
licendfilteo.site
malicious
https://player.vimeo.com
unknown
https://community.akamai.steamstatic.com/public/shared/javascript/auth_refresh.js?v=WgUxSlKTb3W1&amp
unknown
https://steamcommunity.com/?subsection=broadcasts
unknown
https://store.steampowered.com/subscriber_agreement/
unknown
https://www.gstatic.cn/recaptcha/
unknown
https://steamcommunity.com/ki/c
unknown
https://community.akamai.steamstatic.com/public/javascript/applications/community/libraries~b28b7af6
unknown
http://www.valvesoftware.com/legal.htm
unknown
https://www.youtube.com
unknown
https://community.akamai.steamstatic.com/public/css/promo/summer2017/stickers.css?v=HA2Yr5oy3FFG&amp
unknown
https://community.akamai.steamstatic.com/public/shared/images/responsive/logo_valve_footer.png
unknown
https://www.google.com
unknown
https://community.akamai.steamstatic.com/public/shared/images/responsive/header_menu_hamburger.png
unknown
https://community.akamai.steamstatic.com/public/shared/css/shared_responsive.css?v=sHIIcMzCffX6&
unknown
https://www.valvesoftware.com/en/contact?contact-person=Translation%20Team%20Feedback
unknown
https://community.akamai.steamstatic.com/public/javascript/scriptaculous/_combined.js?v=OeNIgrpEF8tL
unknown
https://s.ytimg.com;
unknown
https://steam.tv/
unknown
https://feelystroll.buzz:443/apiofiles/76561199724331900
unknown
https://community.akamai.steamstatic.com/public/css/skin_1/header.css?v=NFoCa4OkAxRb&l=english
unknown
https://feelystroll.buzz/
unknown
http://store.steampowered.com/privacy_agreement/
unknown
https://community.akamai.steam0Nl
unknown
https://store.steampowered.com/points/shop/
unknown
https://sketchfab.com
unknown
https://lv.queniujq.cn
unknown
https://www.youtube.com/
unknown
https://community.akamai.steamstatic.com/public/css/applications/community/main.css?v=Ev2sBLgkgyWJ&a
unknown
https://avatars.akamai.steamstatic.com/fef49e7fa7e1997310d705b2a6158ff8dc1cdfeb_full.jpg
unknown
https://store.steampowered.com/privacy_agreement/
unknown
https://community.akamai.steamstatic.com/public/shared/css/shared_global.css?v=ezWS9te9Zwm9&l=en
unknown
https://community.akamai.steamstatic.com/public/shared/javascript/tooltip.js?v=.zYHOpI1L3Rt0
unknown
https://community.akamai.steamstatic.com/public/shared/javascript/shared_global.js?v=REEGJU1hwkYl&am
unknown
https://www.google.com/recaptcha/
unknown
https://checkout.steampowered.com/
unknown
https://feelystroll.buzz/1
unknown
https://community.akamai.steamstatic.com/public/css/globalv2.css?v=PAcV2zMBzzSV&l=english
unknown
https://community.akamai.steamstatic.com/public/javascript/modalv2.js?v=dfMhuy-Lrpyo&l=english
unknown
https://community.akamai.steamstatic.com/public/shared/images/responsive/header_logo.png
unknown
https://community.akamai.steamstatic.com/public/css/skin_1/profilev2.css?v=M_qL4gO2sKII&l=englis
unknown
https://community.akamai.steamstatic.com/public/javascript/jquery-1.11.1.min.js?v=.isFTSRckeNhC
unknown
https://store.steampowered.com/;
unknown
https://store.steampowered.com/about/
unknown
https://steamcommunity.com/my/wishlist/
unknown
https://feelystroll.buzz/api
unknown
https://community.akamai.steamstatic.com/public/javascript/global.js?v=9OzcxMXbaV84&l=english
unknown
https://help.steampowered.com/en/
unknown
https://cdn.akamai.steamstatic.com/steamcommunity/public/assets/
unknown
https://steamcommunity.com/market/
unknown
https://store.steampowered.com/news/
unknown
https://community.akamai.steamstatic.com/
unknown
http://store.steampowered.com/subscriber_agreement/
unknown
https://feelystroll.buzz/i
unknown
https://steamcommunity.com/linkfilter/?u=http%3A%2F%2Fwww.geonames.org
unknown
https://community.akamai.steamstatic.com/public/css/skin_1/modalContent.css?v=.VpiwkLAYt9r1
unknown
https://recaptcha.net/recaptcha/;
unknown
https://community.akamai.steamstatic.com/public/javascript/promo/stickers.js?v=upl9NJ5D2xkP&l=en
unknown
https://steamcommunity.com/discussions/
unknown
https://community.akamai.steamstatic.com/public/javascript/webui/clientcom.js?v=9yzMGndrVfY4&l=e
unknown
https://store.steampowered.com/stats/
unknown
https://medal.tv
unknown
https://broadcast.st.dl.eccdnx.com
unknown
https://feelystroll.buzz/y
unknown
https://community.akamai.steamstatic.com/public/images/skin_1/footerLogo_valve.png?v=1
unknown
https://store.steampowered.com/steam_refunds/
unknown
https://steamcommunity.com/login/home/?goto=profiles%2F76561199724331900
unknown
https://clearancek.site:443/api
unknown
https://community.akamai.steamstatic.com/public/javascript/applications/community/manifest.js?v=AeTz
unknown
https://steamcommunity.com/workshop/
unknown
https://login.steampowered.com/
unknown
https://store.steampowered.com/legal/
unknown
https://community.akamai.steamstatic.com/public/javascript/reportedcontent.js?v=dAtjbcZMWhSe&l=e
unknown
https://community.akamai.steamstatic.com/public/shared/javascript/shared_responsive_adapter.js?v=pSv
unknown
https://community.akamai.steamstatic.com/public/shared/css/motiva_sans.css?v=-DH0xTYpnVe2&l=engl
unknown
https://recaptcha.net
unknown
https://store.steampowered.com/
unknown
https://community.akamai.steamstatic.com/public/javascript/prototype-1.7.js?v=.55t44gwuwgvw
unknown
https://mobbipenju.store:443/api
unknown
https://community.akamai.steamstatic.com/public/images/skin_1/arrowDn9x5.gif
unknown
http://127.0.0.1:27060
unknown
https://feelystroll.buzz/api#
unknown
https://community.akamai.steamstatic.com/public/javascript/applications/community/main.js?v=10oP_O2R
unknown
https://community.akamai.steamstatic.com/public/shared/images/header/logo_steam.svg?t=962016
unknown
https://spirittunek.store:443/api
unknown
https://community.akamai.steamstatic.com/public/shared/css/buttons.css?v=PUJIfhtcQn7W&l=english
unknown
https://store.steVp
unknown
https://help.steampowered.com/
unknown
https://api.steampowered.com/
unknown
http://store.steampowered.com/account/cookiepreferences/
unknown
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
licendfilteo.site
unknown
malicious
clearancek.site
unknown
malicious
steamcommunity.com
104.102.49.254
feelystroll.buzz
unknown
eaglepawnoy.store
unknown
bathdoomgaz.store
unknown
spirittunek.store
unknown
studennotediw.store
unknown
mobbipenju.store
unknown
dissapoiznw.store
unknown

IPs

IP
Domain
Country
Malicious
104.102.49.254
steamcommunity.com
United States

Memdumps

Base Address
Regiontype
Protect
Malicious
301000
unkown
page execute and read and write
malicious
2DC0000
direct allocation
page read and write
5C8000
unkown
page execute and read and write
12BE000
stack
page read and write
13A8000
heap
page read and write
4B01000
heap
page read and write
4B01000
heap
page read and write
12C0000
heap
page read and write
45FF000
stack
page read and write
55AE000
stack
page read and write
50F0000
direct allocation
page execute and read and write
31FF000
stack
page read and write
4F7D000
stack
page read and write
1372000
heap
page read and write
60C000
unkown
page execute and write copy
44FE000
stack
page read and write
3D7E000
stack
page read and write
7AF000
unkown
page execute and write copy
3C3E000
stack
page read and write
2D3B000
stack
page read and write
3FFE000
stack
page read and write
1328000
heap
page read and write
477E000
stack
page read and write
2DC0000
direct allocation
page read and write
4B00000
heap
page read and write
4B01000
heap
page read and write
560E000
stack
page read and write
35FE000
stack
page read and write
50FD000
stack
page read and write
4B01000
heap
page read and write
4B01000
heap
page read and write
360000
unkown
page execute and read and write
487F000
stack
page read and write
2DC0000
direct allocation
page read and write
2DC0000
direct allocation
page read and write
12EA000
heap
page read and write
2EFF000
stack
page read and write
50C0000
direct allocation
page execute and read and write
4B01000
heap
page read and write
4B01000
heap
page read and write
2DC0000
direct allocation
page read and write
4B01000
heap
page read and write
1340000
heap
page read and write
300000
unkown
page read and write
3E7F000
stack
page read and write
60C000
unkown
page execute and read and write
4B01000
heap
page read and write
2DC0000
direct allocation
page read and write
60D000
unkown
page execute and write copy
1170000
heap
page read and write
463E000
stack
page read and write
48BE000
stack
page read and write
3FBF000
stack
page read and write
12E0000
heap
page read and write
5110000
direct allocation
page execute and read and write
50BF000
stack
page read and write
2DC0000
direct allocation
page read and write
1325000
heap
page read and write
3D3F000
stack
page read and write
4F80000
direct allocation
page read and write
4B01000
heap
page read and write
7AE000
unkown
page execute and read and write
522D000
stack
page read and write
1110000
heap
page read and write
40FF000
stack
page read and write
DDD000
stack
page read and write
3EBE000
stack
page read and write
13C0000
heap
page read and write
50D0000
direct allocation
page execute and read and write
151E000
stack
page read and write
11BE000
stack
page read and write
2D7E000
stack
page read and write
3AFE000
stack
page read and write
473F000
stack
page read and write
4B01000
heap
page read and write
397F000
stack
page read and write
2DC0000
direct allocation
page read and write
2DBE000
stack
page read and write
2DE0000
direct allocation
page read and write
55C0000
remote allocation
page read and write
1329000
heap
page read and write
4B01000
heap
page read and write
50F0000
direct allocation
page execute and read and write
1340000
heap
page read and write
13B4000
heap
page read and write
55C0000
remote allocation
page read and write
1175000
heap
page read and write
337E000
stack
page read and write
4AFF000
stack
page read and write
2DF7000
heap
page read and write
141E000
stack
page read and write
427E000
stack
page read and write
13AE000
heap
page read and write
2DF0000
heap
page read and write
35BF000
stack
page read and write
546F000
stack
page read and write
513A000
trusted library allocation
page read and write
413E000
stack
page read and write
3ABF000
stack
page read and write
4B01000
heap
page read and write
39BE000
stack
page read and write
13AE000
heap
page read and write
50F0000
direct allocation
page execute and read and write
5F6000
unkown
page execute and read and write
49FE000
stack
page read and write
4B01000
heap
page read and write
134F000
heap
page read and write
1030000
heap
page read and write
532D000
stack
page read and write
423F000
stack
page read and write
373E000
stack
page read and write
347F000
stack
page read and write
12EE000
heap
page read and write
301000
unkown
page execute and write copy
587F000
stack
page read and write
30FF000
stack
page read and write
44BF000
stack
page read and write
383F000
stack
page read and write
34BE000
stack
page read and write
5120000
direct allocation
page execute and read and write
2DC0000
direct allocation
page read and write
3BFF000
stack
page read and write
570D000
stack
page read and write
54AD000
stack
page read and write
323E000
stack
page read and write
2FFF000
stack
page read and write
55C0000
remote allocation
page read and write
2DC0000
direct allocation
page read and write
4B01000
heap
page read and write
2CFE000
stack
page read and write
43BE000
stack
page read and write
50F0000
direct allocation
page execute and read and write
CDC000
stack
page read and write
50F0000
direct allocation
page execute and read and write
536E000
stack
page read and write
2DC0000
direct allocation
page read and write
1372000
heap
page read and write
132E000
heap
page read and write
5100000
direct allocation
page execute and read and write
49BF000
stack
page read and write
4FBE000
stack
page read and write
2DC0000
direct allocation
page read and write
387E000
stack
page read and write
2DC0000
direct allocation
page read and write
1317000
heap
page read and write
437F000
stack
page read and write
2DE0000
direct allocation
page read and write
4E5000
unkown
page execute and read and write
4F40000
trusted library allocation
page read and write
4B01000
heap
page read and write
50F0000
direct allocation
page execute and read and write
36FF000
stack
page read and write
300000
unkown
page readonly
577E000
stack
page read and write
132E000
heap
page read and write
50E0000
direct allocation
page execute and read and write
5FE000
unkown
page execute and read and write
2DC0000
direct allocation
page read and write
1160000
heap
page read and write
333F000
stack
page read and write
4B01000
heap
page read and write
4B01000
heap
page read and write
13AB000
heap
page read and write
134F000
heap
page read and write
There are 154 hidden memdumps, click here to show them.