IOC Report
file.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\file.exe
"C:\Users\user\Desktop\file.exe"
malicious

URLs

Name
IP
Malicious
dissapoiznw.storec
malicious
https://steamcommunity.com/profiles/76561199724331900
104.102.49.254
malicious
https://steamcommunity.com/profiles/76561199724331900/inventory/
unknown
malicious
eaglepawnoy.storec
malicious
https://steamcommunity.com/profiles/76561199724331900IF
unknown
malicious
spirittunek.storec
malicious
studennotediw.storec
malicious
licendfilteo.sitec
malicious
clearancek.site
malicious
bathdoomgaz.storec
malicious
mobbipenju.store
malicious
https://sergei-esenin.com/api
104.21.53.8
malicious
https://steamcommunity.com/profiles/76561199724331900/badges
unknown
malicious
https://player.vimeo.com
unknown
https://community.akamai.steamstatic.com/public/shared/javascript/auth_refresh.js?v=WgUxSlKTb3W1&amp
unknown
https://store.steampowered.com/;Persistent-AuthWWW-AuthenticateVarysteamCountry=US%7Cd7fb65801182a5f
unknown
https://steamcommunity.com/?subsection=broadcasts
unknown
https://sergei-esenin.com/
unknown
https://store.steampowered.com/subscriber_agreement/
unknown
https://www.gstatic.cn/recaptcha/
unknown
https://community.akamai.steamstatic.com/public/javascript/applications/community/libraries~b28b7af6
unknown
http://www.valvesoftware.com/legal.htm
unknown
https://www.youtube.com
unknown
https://community.akamai.steamstatic.com/public/css/promo/summer2017/stickers.css?v=HA2Yr5oy3FFG&amp
unknown
https://community.akamai.steamstatic.com/public/shared/images/responsive/logo_valve_footer.png
unknown
https://www.google.com
unknown
https://community.akamai.steamstatic.com/public/shared/images/responsive/header_menu_hamburger.png
unknown
https://community.akamai.steamstatic.com/public/shared/css/shared_responsive.css?v=sHIIcMzCffX6&
unknown
https://www.valvesoftware.com/en/contact?contact-person=Translation%20Team%20Feedback
unknown
https://community.akamai.steamstatic.com/public/javascript/scriptaculous/_combined.js?v=OeNIgrpEF8tL
unknown
https://s.ytimg.com;
unknown
https://steam.tv/
unknown
https://community.akamai.steamstatic.com/public/css/skin_1/header.css?v=NFoCa4OkAxRb&l=english
unknown
http://store.steampowered.com/privacy_agreement/
unknown
https://community.akamai.steamstatic.u
unknown
https://store.steampowered.com/points/shop/
unknown
https://sketchfab.com
unknown
https://lv.queniujq.cn
unknown
https://www.youtube.com/
unknown
https://community.akamai.steamstatic.com/public/css/applications/community/main.css?v=Ev2sBLgkgyWJ&a
unknown
https://avatars.akamai.steamstatic.com/fef49e7fa7e1997310d705b2a6158ff8dc1cdfeb_full.jpg
unknown
https://store.steampowered.com/privacy_agreement/
unknown
https://community.akamai.steamstatic.com/public/shared/css/shared_global.css?v=ezWS9te9Zwm9&l=en
unknown
https://community.akamai.steamstatic.com/public/shared/javascript/tooltip.js?v=.zYHOpI1L3Rt0
unknown
https://community.akamai.steamstatic.com/public/shared/javascript/shared_global.js?v=REEGJU1hwkYl&am
unknown
https://www.google.com/recaptcha/
unknown
https://checkout.steampowered.com/
unknown
https://community.akamai.steamstatic.com/public/css/globalv2.css?v=PAcV2zMBzzSV&l=english
unknown
https://community.akamai.steamstatic.com/public/javascript/modalv2.js?v=dfMhuy-Lrpyo&l=english
unknown
https://community.akamai.steamstatic.com/public/shared/images/responsive/header_logo.png
unknown
https://avatars.akamai.steamstatic
unknown
https://community.akamai.steamstatic.com/public/css/skin_1/profilev2.css?v=M_qL4gO2sKII&l=englis
unknown
https://community.akamai.steamstatic.com/public/javascript/jquery-1.11.1.min.js?v=.isFTSRckeNhC
unknown
https://store.steampowered.com/;
unknown
https://store.steampowered.com/about/
unknown
https://steamcommunity.com/my/wishlist/
unknown
https://community.akamai.steamstatic.com/public/javascript/applications/community/manifest.js?v=cdfm
unknown
https://community.akamai.steamstatic.com/public/javascript/global.js?v=9OzcxMXbaV84&l=english
unknown
https://help.steampowered.com/en/
unknown
https://cdn.akamai.steamstatic.com/steamcommunity/public/assets/
unknown
https://steamcommunity.com/market/
unknown
https://store.steampowered.com/news/
unknown
https://community.akamai.steamstatic.com/
unknown
http://store.steampowered.com/subscriber_agreement/
unknown
https://steamcommunity.com/linkfilter/?u=http%3A%2F%2Fwww.geonames.org
unknown
https://community.akamai.steamstatic.com/public/css/skin_1/modalContent.css?v=.VpiwkLAYt9r1
unknown
https://recaptcha.net/recaptcha/;
unknown
https://community.akamai.steamstatic.com/public/javascript/promo/stickers.js?v=upl9NJ5D2xkP&l=en
unknown
https://steamcommunity.com/discussions/
unknown
https://store.steampowered.com/stats/
unknown
https://medal.tv
unknown
https://broadcast.st.dl.eccdnx.com
unknown
https://community.akamai.steamstatic.com/public/images/skin_1/footerLogo_valve.png?v=1
unknown
https://store.steampowered.com/steam_refunds/
unknown
https://steamcommunity.com/login/home/?goto=profiles%2F76561199724331900
unknown
https://steamcommunity.com/workshop/
unknown
https://login.steampowered.com/
unknown
https://store.steampowered.com/legal/
unknown
https://community.akamai.steamstatic.com/public/javascript/reportedcontent.js?v=dAtjbcZMWhSe&l=e
unknown
https://community.akamai.steamstatic.com/public/javascript/webui/clientcom.js?v=qu55UpguGheU&l=e
unknown
https://community.akamai.steamstatic.com/public/shared/javascript/shared_responsive_adapter.js?v=pSv
unknown
https://community.akamai.steamstatic.com/public/shared/css/motiva_sans.css?v=-DH0xTYpnVe2&l=engl
unknown
https://recaptcha.net
unknown
https://store.steampowered.com/
unknown
https://community.akamai.steamstatic.com/public/javascript/prototype-1.7.js?v=.55t44gwuwgvw
unknown
https://community.akamai.steamstatic.com/public/images/skin_1/arrowDn9x5.gif
unknown
http://127.0.0.1:27060
unknown
https://community.akamai.steamstatic.com/public/javascript/applications/community/main.js?v=10oP_O2R
unknown
https://community.akamai.steamstatic.com/public/shared/images/header/logo_steam.svg?t=962016
unknown
https://community.akamai.steamstatic.com/public/shared/css/buttons.css?v=PUJIfhtcQn7W&l=english
unknown
https://help.steampowered.com/
unknown
https://api.steampowered.com/
unknown
http://store.steampowered.com/account/cookiepreferences/
unknown
https://store.steampowered.com/mobile
unknown
https://steamcommunity.com/
unknown
https://community.akamai.steamstatic.com/public/javascript/profile.js?v=f3vWO7swdDqp&l=english
unknown
https://community.akamai.steamstatic.com/public/javascript/modalContent.js?v=f2hMA1v9Zkc8&l=engl
unknown
There are 87 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
sergei-esenin.com
104.21.53.8
malicious
eaglepawnoy.store
unknown
malicious
bathdoomgaz.store
unknown
malicious
spirittunek.store
unknown
malicious
licendfilteo.site
unknown
malicious
studennotediw.store
unknown
malicious
mobbipenju.store
unknown
malicious
clearancek.site
unknown
malicious
dissapoiznw.store
unknown
malicious
steamcommunity.com
104.102.49.254

IPs

IP
Domain
Country
Malicious
104.21.53.8
sergei-esenin.com
United States
malicious
104.102.49.254
steamcommunity.com
United States

Memdumps

Base Address
Regiontype
Protect
Malicious
4B1000
unkown
page execute and read and write
malicious
49CE000
stack
page read and write
4511000
heap
page read and write
B54000
heap
page read and write
C58000
heap
page read and write
360F000
stack
page read and write
BF0000
direct allocation
page read and write
4A0000
heap
page read and write
404E000
stack
page read and write
4B00000
direct allocation
page execute and read and write
B54000
heap
page read and write
C44000
heap
page read and write
2C4E000
stack
page read and write
962000
unkown
page execute and read and write
428F000
stack
page read and write
4511000
heap
page read and write
BE0000
heap
page read and write
4B00000
direct allocation
page execute and read and write
C4E000
heap
page read and write
BBE000
stack
page read and write
400F000
stack
page read and write
C60000
heap
page read and write
4511000
heap
page read and write
C89000
heap
page read and write
440E000
stack
page read and write
B54000
heap
page read and write
C00000
heap
page read and write
BF0000
direct allocation
page read and write
2ACF000
stack
page read and write
B54000
heap
page read and write
518D000
stack
page read and write
B54000
heap
page read and write
45C000
stack
page read and write
B54000
heap
page read and write
38CE000
stack
page read and write
B54000
heap
page read and write
CC5000
heap
page read and write
450F000
stack
page read and write
4D7D000
stack
page read and write
418E000
stack
page read and write
4EFE000
stack
page read and write
7C1000
unkown
page execute and read and write
C49000
heap
page read and write
B54000
heap
page read and write
374F000
stack
page read and write
C49000
heap
page read and write
C4E000
heap
page read and write
B54000
heap
page read and write
4511000
heap
page read and write
B54000
heap
page read and write
364E000
stack
page read and write
3ECF000
stack
page read and write
4B00000
direct allocation
page execute and read and write
CC2000
heap
page read and write
4FFF000
stack
page read and write
34CF000
stack
page read and write
2FCF000
stack
page read and write
B54000
heap
page read and write
BF0000
direct allocation
page read and write
284F000
stack
page read and write
C37000
heap
page read and write
2747000
heap
page read and write
B54000
heap
page read and write
C60000
heap
page read and write
C0A000
heap
page read and write
2D4F000
stack
page read and write
4980000
remote allocation
page read and write
324F000
stack
page read and write
4950000
heap
page read and write
378E000
stack
page read and write
4B10000
direct allocation
page execute and read and write
BF0000
direct allocation
page read and write
7AB000
unkown
page execute and read and write
29CE000
stack
page read and write
B54000
heap
page read and write
4B20000
direct allocation
page execute and read and write
CC2000
heap
page read and write
4B0000
unkown
page read and write
4980000
remote allocation
page read and write
BF0000
direct allocation
page read and write
BF0000
direct allocation
page read and write
4ACF000
stack
page read and write
4B0000
unkown
page readonly
CC2000
heap
page read and write
3C4F000
stack
page read and write
4511000
heap
page read and write
42CE000
stack
page read and write
C60000
heap
page read and write
43CF000
stack
page read and write
4511000
heap
page read and write
4B00000
direct allocation
page execute and read and write
7B2000
unkown
page execute and read and write
B54000
heap
page read and write
C4E000
heap
page read and write
3DCE000
stack
page read and write
BF0000
direct allocation
page read and write
C7D000
heap
page read and write
4DBE000
stack
page read and write
4520000
heap
page read and write
B54000
heap
page read and write
300E000
stack
page read and write
2C0F000
stack
page read and write
4511000
heap
page read and write
33CE000
stack
page read and write
4950000
trusted library allocation
page read and write
510000
unkown
page execute and read and write
BF0000
direct allocation
page read and write
4AF0000
direct allocation
page execute and read and write
A6D000
stack
page read and write
CC4000
heap
page read and write
350E000
stack
page read and write
388F000
stack
page read and write
4980000
remote allocation
page read and write
B54000
heap
page read and write
BF0000
direct allocation
page read and write
4B4D000
trusted library allocation
page read and write
CCD000
heap
page read and write
C63000
heap
page read and write
B40000
heap
page read and write
B54000
heap
page read and write
4C3D000
stack
page read and write
4B30000
direct allocation
page execute and read and write
3A0E000
stack
page read and write
4B1000
unkown
page execute and write copy
4B00000
direct allocation
page execute and read and write
C63000
heap
page read and write
69F000
unkown
page execute and read and write
4510000
heap
page read and write
CBF000
heap
page read and write
C3F000
heap
page read and write
513E000
stack
page read and write
53EF000
stack
page read and write
2E8F000
stack
page read and write
B54000
heap
page read and write
B50000
heap
page read and write
BF0000
direct allocation
page read and write
113F000
stack
page read and write
C89000
heap
page read and write
2ECE000
stack
page read and write
288B000
stack
page read and write
4990000
direct allocation
page read and write
4AE0000
direct allocation
page execute and read and write
C8A000
heap
page read and write
2740000
heap
page read and write
52EE000
stack
page read and write
BF0000
direct allocation
page read and write
3F0E000
stack
page read and write
77D000
unkown
page execute and read and write
271E000
stack
page read and write
7C1000
unkown
page execute and write copy
2B0E000
stack
page read and write
2D8E000
stack
page read and write
B54000
heap
page read and write
4B0D000
stack
page read and write
414F000
stack
page read and write
2730000
direct allocation
page read and write
963000
unkown
page execute and write copy
C7D000
heap
page read and write
338F000
stack
page read and write
4AD0000
direct allocation
page execute and read and write
528E000
stack
page read and write
BF0000
direct allocation
page read and write
3D8F000
stack
page read and write
DFF000
stack
page read and write
298F000
stack
page read and write
B54000
heap
page read and write
C89000
heap
page read and write
C62000
heap
page read and write
4EBF000
stack
page read and write
4C7E000
stack
page read and write
CC5000
heap
page read and write
4511000
heap
page read and write
CC5000
heap
page read and write
4511000
heap
page read and write
3B4E000
stack
page read and write
B54000
heap
page read and write
503E000
stack
page read and write
B54000
heap
page read and write
4B00000
direct allocation
page execute and read and write
B54000
heap
page read and write
314E000
stack
page read and write
B54000
heap
page read and write
7C2000
unkown
page execute and write copy
C7D000
heap
page read and write
BF0000
direct allocation
page read and write
328E000
stack
page read and write
BF0000
direct allocation
page read and write
310F000
stack
page read and write
B54000
heap
page read and write
C0E000
heap
page read and write
3C8E000
stack
page read and write
C4A000
heap
page read and write
3B0F000
stack
page read and write
2730000
direct allocation
page read and write
39CF000
stack
page read and write
103E000
stack
page read and write
There are 186 hidden memdumps, click here to show them.