IOC Report
SecuriteInfo.com.Trojan-Spy.MSIL.Agent.14880.3646.exe

loading gif

Files

File Path
Type
Category
Malicious
SecuriteInfo.com.Trojan-Spy.MSIL.Agent.14880.3646.exe
PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
initial sample
malicious
C:\Users\user\AppData\Roaming\Vsjrhifhpua.exe
PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
malicious
C:\Users\user\AppData\Roaming\Vsjrhifhpua.exe:Zone.Identifier
ASCII text, with CRLF line terminators
dropped
malicious

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\SecuriteInfo.com.Trojan-Spy.MSIL.Agent.14880.3646.exe
"C:\Users\user\Desktop\SecuriteInfo.com.Trojan-Spy.MSIL.Agent.14880.3646.exe"
malicious
C:\Windows\Microsoft.NET\Framework\v4.0.30319\InstallUtil.exe
"C:\Windows\Microsoft.NET\Framework\v4.0.30319\InstallUtil.exe"
malicious
C:\Windows\SysWOW64\WerFault.exe
C:\Windows\SysWOW64\WerFault.exe -u -p 5016 -s 1144

URLs

Name
IP
Malicious
https://github.com/mgravell/protobuf-net
unknown
https://mathparser.org
unknown
https://mathparser.org/order-commercial-license
unknown
https://payhip.com/infima
unknown
https://github.com/mgravell/protobuf-neti
unknown
https://stackoverflow.com/q/14436606/23354
unknown
https://github.com/mgravell/protobuf-netJ
unknown
http://schemas.xmlsoap.org/ws/2005/05/identity/claims/name
unknown
https://payhip.com/infima)
unknown
https://stackoverflow.com/q/11564914/23354;
unknown
https://stackoverflow.com/q/2152978/23354
unknown
There are 1 hidden URLs, click here to show them.

Registry

Path
Value
Malicious
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Vsjrhifhpua

Memdumps

Base Address
Regiontype
Protect
Malicious
5250000
trusted library section
page read and write
malicious
2A01000
trusted library allocation
page read and write
malicious
2D90000
trusted library allocation
page read and write
2CED000
trusted library allocation
page read and write
2D1D000
stack
page read and write
2D76000
trusted library allocation
page read and write
30A3000
trusted library allocation
page read and write
13A7000
trusted library allocation
page execute and read and write
B7D000
trusted library allocation
page execute and read and write
5600000
trusted library section
page read and write
2F8A000
trusted library allocation
page read and write
2C41000
trusted library allocation
page read and write
3024000
trusted library allocation
page read and write
4EC0000
trusted library allocation
page execute and read and write
30B0000
trusted library allocation
page read and write
BD1000
heap
page read and write
400000
remote allocation
page execute and read and write
2F71000
trusted library allocation
page read and write
55EE000
stack
page read and write
3057000
trusted library allocation
page read and write
A00000
heap
page read and write
2CDE000
stack
page read and write
2FCE000
trusted library allocation
page read and write
2E86000
trusted library allocation
page read and write
4FBE000
stack
page read and write
2FCC000
trusted library allocation
page read and write
2FC8000
trusted library allocation
page read and write
2F0D000
trusted library allocation
page read and write
340000
unkown
page readonly
2C0C000
trusted library allocation
page read and write
2D7A000
trusted library allocation
page read and write
2D23000
trusted library allocation
page read and write
30AC000
trusted library allocation
page read and write
2BF7000
trusted library allocation
page read and write
2EC2000
trusted library allocation
page read and write
2CD2000
trusted library allocation
page read and write
DD2000
trusted library allocation
page read and write
2C8A000
trusted library allocation
page read and write
2CF2000
trusted library allocation
page read and write
56A0000
heap
page read and write
C0C000
heap
page read and write
2DFE000
stack
page read and write
2DA9000
trusted library allocation
page read and write
2D1F000
trusted library allocation
page read and write
2E9D000
trusted library allocation
page read and write
2F0F000
trusted library allocation
page read and write
2C0E000
trusted library allocation
page read and write
2BF3000
trusted library allocation
page read and write
2EFA000
trusted library allocation
page read and write
3096000
trusted library allocation
page read and write
305A000
trusted library allocation
page read and write
13D0000
heap
page read and write
3019000
trusted library allocation
page read and write
2D44000
trusted library allocation
page read and write
2D00000
trusted library allocation
page read and write
2DDB000
trusted library allocation
page read and write
B70000
trusted library allocation
page read and write
2C78000
trusted library allocation
page read and write
2CE9000
trusted library allocation
page read and write
2CF4000
trusted library allocation
page read and write
5820000
trusted library allocation
page execute and read and write
2C39000
trusted library allocation
page read and write
5580000
trusted library allocation
page read and write
2FAD000
trusted library allocation
page read and write
2E56000
trusted library allocation
page read and write
2C3D000
trusted library allocation
page read and write
2D5D000
trusted library allocation
page read and write
2EA7000
trusted library allocation
page read and write
2C08000
trusted library allocation
page read and write
4EB0000
trusted library allocation
page read and write
C64000
heap
page read and write
2F6D000
trusted library allocation
page read and write
2D02000
trusted library allocation
page read and write
B83000
trusted library allocation
page read and write
2C5E000
trusted library allocation
page read and write
2F0B000
trusted library allocation
page read and write
2EEE000
trusted library allocation
page read and write
4F20000
trusted library allocation
page read and write
2D3A000
trusted library allocation
page read and write
2EF2000
trusted library allocation
page read and write
2FA7000
trusted library allocation
page read and write
2DE1000
trusted library allocation
page read and write
2D60000
heap
page execute and read and write
2C88000
trusted library allocation
page read and write
581E000
stack
page read and write
3008000
trusted library allocation
page read and write
2E37000
trusted library allocation
page read and write
1098000
heap
page read and write
2E69000
trusted library allocation
page read and write
2D70000
heap
page read and write
2D4C000
trusted library allocation
page read and write
2CAB000
trusted library allocation
page read and write
30BF000
trusted library allocation
page read and write
2E00000
heap
page read and write
2FA9000
trusted library allocation
page read and write
2C58000
trusted library allocation
page read and write
2CCC000
trusted library allocation
page read and write
301D000
trusted library allocation
page read and write
987000
stack
page read and write
13F0000
heap
page read and write
2EC5000
trusted library allocation
page read and write
2C6D000
trusted library allocation
page read and write
3B45000
trusted library allocation
page read and write
2EF0000
trusted library allocation
page read and write
2DAD000
trusted library allocation
page read and write
2CFC000
trusted library allocation
page read and write
2E84000
trusted library allocation
page read and write
2C80000
trusted library allocation
page read and write
5BD0000
trusted library allocation
page read and write
2CFE000
trusted library allocation
page read and write
2D92000
trusted library allocation
page read and write
3004000
trusted library allocation
page read and write
D8E000
stack
page read and write
2F14000
trusted library allocation
page read and write
3000000
trusted library allocation
page read and write
2D21000
trusted library allocation
page read and write
2F94000
trusted library allocation
page read and write
2910000
heap
page read and write
30CB000
trusted library allocation
page read and write
2CB3000
trusted library allocation
page read and write
FE0000
heap
page read and write
2E71000
trusted library allocation
page read and write
2E3B000
trusted library allocation
page read and write
2C54000
trusted library allocation
page read and write
10FA000
heap
page read and write
304F000
trusted library allocation
page read and write
DD6000
trusted library allocation
page execute and read and write
2FD8000
trusted library allocation
page read and write
2E39000
trusted library allocation
page read and write
2BF5000
trusted library allocation
page read and write
2CCA000
trusted library allocation
page read and write
56F0000
trusted library allocation
page read and write
2F6F000
trusted library allocation
page read and write
13B7000
trusted library allocation
page execute and read and write
2C7C000
trusted library allocation
page read and write
3032000
trusted library allocation
page read and write
2E4E000
trusted library allocation
page read and write
2EAE000
trusted library allocation
page read and write
2E76000
trusted library allocation
page read and write
2930000
trusted library allocation
page read and write
586E000
stack
page read and write
2EF4000
trusted library allocation
page read and write
2EF8000
trusted library allocation
page read and write
2E4A000
trusted library allocation
page read and write
2F49000
trusted library allocation
page read and write
2CD0000
trusted library allocation
page read and write
2D55000
trusted library allocation
page read and write
2E3D000
trusted library allocation
page read and write
2D70000
trusted library allocation
page read and write
2C7A000
trusted library allocation
page read and write
2C24000
trusted library allocation
page read and write
E6C000
stack
page read and write
2E54000
trusted library allocation
page read and write
2E7E000
trusted library allocation
page read and write
F68000
stack
page read and write
2C67000
trusted library allocation
page read and write
2C9C000
trusted library allocation
page read and write
2D90000
heap
page read and write
5604000
heap
page read and write
13B0000
trusted library allocation
page read and write
28FE000
stack
page read and write
2D3E000
trusted library allocation
page read and write
342000
unkown
page readonly
2DA5000
trusted library allocation
page read and write
2E2F000
trusted library allocation
page read and write
3089000
trusted library allocation
page read and write
2FCA000
trusted library allocation
page read and write
303E000
trusted library allocation
page read and write
2E50000
trusted library allocation
page read and write
1090000
heap
page read and write
3B1D000
trusted library allocation
page read and write
2DAF000
trusted library allocation
page read and write
2CAF000
trusted library allocation
page read and write
2E80000
trusted library allocation
page read and write
2CB7000
trusted library allocation
page read and write
88B000
stack
page read and write
2E21000
trusted library allocation
page read and write
58FE000
stack
page read and write
E00000
trusted library allocation
page read and write
30A8000
trusted library allocation
page read and write
303A000
trusted library allocation
page read and write
2CB5000
trusted library allocation
page read and write
2EA1000
trusted library allocation
page read and write
307A000
trusted library allocation
page read and write
2DE5000
trusted library allocation
page read and write
2E88000
trusted library allocation
page read and write
2D8A000
trusted library allocation
page read and write
2B92000
trusted library allocation
page read and write
2EDF000
trusted library allocation
page read and write
DEB000
trusted library allocation
page execute and read and write
2CBA000
trusted library allocation
page read and write
1121000
heap
page read and write
3051000
trusted library allocation
page read and write
2EA3000
trusted library allocation
page read and write
4E80000
trusted library allocation
page read and write
2DCF000
trusted library allocation
page read and write
4089000
trusted library allocation
page read and write
2D59000
trusted library allocation
page read and write
308B000
trusted library allocation
page read and write
2D96000
trusted library allocation
page read and write
2C71000
trusted library allocation
page read and write
1050000
heap
page read and write
2F7A000
trusted library allocation
page read and write
2EE4000
trusted library allocation
page read and write
2C37000
trusted library allocation
page read and write
2FFA000
trusted library allocation
page read and write
2CE5000
trusted library allocation
page read and write
2F92000
trusted library allocation
page read and write
2C14000
trusted library allocation
page read and write
5B50000
trusted library allocation
page read and write
2D13000
trusted library allocation
page read and write
3093000
trusted library allocation
page read and write
541E000
stack
page read and write
30C3000
trusted library allocation
page read and write
4FD0000
trusted library allocation
page execute and read and write
30A6000
trusted library allocation
page read and write
303C000
trusted library allocation
page read and write
1070000
heap
page read and write
2D27000
trusted library allocation
page read and write
57FE000
stack
page read and write
2CE1000
trusted library allocation
page read and write
55F0000
trusted library section
page read and write
54CE000
stack
page read and write
2D34000
trusted library allocation
page read and write
2F0E000
stack
page read and write
2D46000
trusted library allocation
page read and write
2D78000
trusted library allocation
page read and write
2DA7000
trusted library allocation
page read and write
562C000
heap
page read and write
A4E000
stack
page read and write
4E50000
trusted library allocation
page execute and read and write
3006000
trusted library allocation
page read and write
30C7000
trusted library allocation
page read and write
2ECF000
trusted library allocation
page read and write
2C12000
trusted library allocation
page read and write
5420000
trusted library allocation
page read and write
2C5C000
trusted library allocation
page read and write
2DC6000
trusted library allocation
page read and write
DE2000
trusted library allocation
page read and write
5C2F000
stack
page read and write
4FF0000
heap
page execute and read and write
3B3D000
trusted library allocation
page read and write
2F4B000
trusted library allocation
page read and write
2CF8000
trusted library allocation
page read and write
2C52000
trusted library allocation
page read and write
2E6B000
trusted library allocation
page read and write
A80000
heap
page read and write
5590000
trusted library allocation
page read and write
2FAB000
trusted library allocation
page read and write
2E35000
trusted library allocation
page read and write
2C6B000
trusted library allocation
page read and write
3017000
trusted library allocation
page read and write
2F90000
trusted library allocation
page read and write
1383000
trusted library allocation
page execute and read and write
2D57000
trusted library allocation
page read and write
13BB000
trusted library allocation
page execute and read and write
2F8C000
trusted library allocation
page read and write
3078000
trusted library allocation
page read and write
2ED7000
trusted library allocation
page read and write
2EC0000
trusted library allocation
page read and write
55E1000
trusted library allocation
page read and write
2E18000
trusted library allocation
page read and write
2EBC000
trusted library allocation
page read and write
2FA3000
trusted library allocation
page read and write
4ED0000
trusted library section
page read and write
2CE3000
trusted library allocation
page read and write
B73000
trusted library allocation
page execute and read and write
2FDA000
trusted library allocation
page read and write
5B80000
trusted library section
page read and write
B90000
heap
page read and write
BB7000
heap
page read and write
C16000
heap
page read and write
2F7E000
trusted library allocation
page read and write
2DF4000
trusted library allocation
page read and write
5B54000
trusted library allocation
page read and write
29F0000
heap
page execute and read and write
3038000
trusted library allocation
page read and write
3DD9000
trusted library allocation
page read and write
1398000
trusted library allocation
page read and write
2E73000
trusted library allocation
page read and write
2EDD000
trusted library allocation
page read and write
2CD5000
trusted library allocation
page read and write
4FC0000
trusted library allocation
page execute and read and write
301B000
trusted library allocation
page read and write
2E1E000
trusted library allocation
page read and write
2C56000
trusted library allocation
page read and write
F9C000
stack
page read and write
2D8E000
trusted library allocation
page read and write
2D72000
trusted library allocation
page read and write
2C35000
trusted library allocation
page read and write
3002000
trusted library allocation
page read and write
F5E000
stack
page read and write
2E8B000
trusted library allocation
page read and write
13E0000
trusted library allocation
page read and write
13A0000
trusted library allocation
page read and write
2BF9000
trusted library allocation
page read and write
304B000
trusted library allocation
page read and write
2D2B000
trusted library allocation
page read and write
2F11000
trusted library allocation
page read and write
2D38000
trusted library allocation
page read and write
2C9A000
trusted library allocation
page read and write
2CEF000
trusted library allocation
page read and write
4F7A000
trusted library allocation
page read and write
3056000
trusted library allocation
page read and write
2E6D000
trusted library allocation
page read and write
2E1A000
trusted library allocation
page read and write
29D0000
trusted library allocation
page read and write
2940000
trusted library allocation
page read and write
B8D000
trusted library allocation
page execute and read and write
2CBC000
trusted library allocation
page read and write
2ED5000
trusted library allocation
page read and write
5A3E000
stack
page read and write
3091000
trusted library allocation
page read and write
2CC8000
trusted library allocation
page read and write
2D29000
trusted library allocation
page read and write
5430000
trusted library allocation
page execute and read and write
2BFB000
trusted library allocation
page read and write
2C0A000
trusted library allocation
page read and write
2E67000
trusted library allocation
page read and write
FB0000
heap
page read and write
2F11000
trusted library allocation
page read and write
2F8E000
trusted library allocation
page read and write
4E70000
trusted library allocation
page execute and read and write
5586000
trusted library allocation
page read and write
DDA000
trusted library allocation
page execute and read and write
2D8C000
trusted library allocation
page read and write
2FFE000
trusted library allocation
page read and write
2E4C000
trusted library allocation
page read and write
1124000
heap
page read and write
50FF000
stack
page read and write
53F0000
heap
page read and write
2F73000
trusted library allocation
page read and write
2F66000
trusted library allocation
page read and write
4EA0000
trusted library allocation
page read and write
2C75000
trusted library allocation
page read and write
5C90000
heap
page read and write
2DB3000
trusted library allocation
page read and write
548E000
stack
page read and write
5F4000
unkown
page readonly
2900000
trusted library allocation
page execute and read and write
2DC4000
trusted library allocation
page read and write
2CDF000
trusted library allocation
page read and write
5E50000
remote allocation
page read and write
2E52000
trusted library allocation
page read and write
2EBE000
trusted library allocation
page read and write
2D40000
trusted library allocation
page read and write
138D000
trusted library allocation
page execute and read and write
2EDB000
trusted library allocation
page read and write
2DC0000
trusted library allocation
page read and write
2EF6000
trusted library allocation
page read and write
2DC8000
trusted library allocation
page read and write
58E0000
trusted library allocation
page read and write
2E1C000
trusted library allocation
page read and write
2D5B000
trusted library allocation
page read and write
2C50000
trusted library allocation
page read and write
13AA000
trusted library allocation
page execute and read and write
2E5D000
trusted library allocation
page read and write
2E46000
trusted library allocation
page read and write
3F11000
trusted library allocation
page read and write
2C5A000
trusted library allocation
page read and write
2FAB000
trusted library allocation
page read and write
41FD000
trusted library allocation
page read and write
2FDC000
trusted library allocation
page read and write
2C22000
trusted library allocation
page read and write
2EE2000
trusted library allocation
page read and write
2ED9000
trusted library allocation
page read and write
2E9F000
trusted library allocation
page read and write
2C27000
trusted library allocation
page read and write
2E7C000
trusted library allocation
page read and write
2E33000
trusted library allocation
page read and write
2D94000
trusted library allocation
page read and write
2FD1000
trusted library allocation
page read and write
DE7000
trusted library allocation
page execute and read and write
50AD000
stack
page read and write
B60000
trusted library allocation
page read and write
2F09000
trusted library allocation
page read and write
9F0000
heap
page read and write
FA0000
heap
page read and write
2C10000
trusted library allocation
page read and write
7F880000
trusted library allocation
page execute and read and write
2D6A000
trusted library allocation
page read and write
2D6E000
trusted library allocation
page read and write
10D8000
heap
page read and write
2C86000
trusted library allocation
page read and write
30AA000
trusted library allocation
page read and write
2E31000
trusted library allocation
page read and write
55A0000
trusted library allocation
page execute and read and write
2DE8000
trusted library allocation
page read and write
5100000
trusted library section
page read and write
A86000
heap
page read and write
FB8000
trusted library allocation
page read and write
2FA5000
trusted library allocation
page read and write
2D42000
trusted library allocation
page read and write
2CEB000
trusted library allocation
page read and write
1384000
trusted library allocation
page read and write
55F7000
heap
page read and write
4F70000
trusted library allocation
page read and write
2D1D000
trusted library allocation
page read and write
10CA000
heap
page read and write
3DAE000
trusted library allocation
page read and write
B74000
trusted library allocation
page read and write
E10000
heap
page read and write
2F88000
trusted library allocation
page read and write
5D30000
heap
page read and write
2D25000
trusted library allocation
page read and write
2D74000
trusted library allocation
page read and write
3055000
trusted library allocation
page read and write
3053000
trusted library allocation
page read and write
1110000
heap
page read and write
5D2E000
stack
page read and write
402000
remote allocation
page execute and read and write
2DE3000
trusted library allocation
page read and write
2C3F000
trusted library allocation
page read and write
2C69000
trusted library allocation
page read and write
5440000
trusted library allocation
page read and write
2C73000
trusted library allocation
page read and write
2E65000
trusted library allocation
page read and write
2CAD000
trusted library allocation
page read and write
1394000
trusted library allocation
page read and write
55F0000
heap
page read and write
2C9E000
trusted library allocation
page read and write
2DB1000
trusted library allocation
page read and write
2CCE000
trusted library allocation
page read and write
1390000
trusted library allocation
page read and write
2E0E000
heap
page read and write
2DDD000
trusted library allocation
page read and write
2935000
trusted library allocation
page read and write
2F5F000
trusted library allocation
page read and write
3034000
trusted library allocation
page read and write
4AFE000
stack
page read and write
2DDF000
trusted library allocation
page read and write
2DA0000
heap
page execute and read and write
30C9000
trusted library allocation
page read and write
2FA1000
trusted library allocation
page read and write
4EA5000
trusted library allocation
page read and write
2D6C000
trusted library allocation
page read and write
DD0000
trusted library allocation
page read and write
593E000
stack
page read and write
2DCD000
trusted library allocation
page read and write
B9B000
heap
page read and write
4F6E000
stack
page read and write
1180000
heap
page read and write
2DBC000
trusted library allocation
page read and write
2EAA000
trusted library allocation
page read and write
2DCA000
trusted library allocation
page read and write
2E59000
trusted library allocation
page read and write
1370000
trusted library allocation
page read and write
308D000
trusted library allocation
page read and write
2FFC000
trusted library allocation
page read and write
2E6F000
trusted library allocation
page read and write
3A01000
trusted library allocation
page read and write
2EA5000
trusted library allocation
page read and write
5A40000
heap
page read and write
2DAB000
trusted library allocation
page read and write
2EBA000
trusted library allocation
page read and write
304D000
trusted library allocation
page read and write
10BF000
heap
page read and write
F1F000
stack
page read and write
DCE000
stack
page read and write
C07000
heap
page read and write
B9E000
heap
page read and write
2D30000
trusted library allocation
page read and write
3036000
trusted library allocation
page read and write
2D61000
trusted library allocation
page read and write
5B75000
trusted library allocation
page read and write
2D20000
trusted library allocation
page execute and read and write
2C44000
trusted library allocation
page read and write
2CB1000
trusted library allocation
page read and write
2D40000
trusted library allocation
page read and write
2DC2000
trusted library allocation
page read and write
2FF6000
trusted library allocation
page read and write
30C1000
trusted library allocation
page read and write
2EB8000
trusted library allocation
page read and write
55B0000
trusted library allocation
page execute and read and write
3028000
trusted library allocation
page read and write
2D3F000
trusted library allocation
page read and write
2C3B000
trusted library allocation
page read and write
There are 467 hidden memdumps, click here to show them.