IOC Report
file.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\file.exe
"C:\Users\user\Desktop\file.exe"
malicious

URLs

Name
IP
Malicious
bathdoomgaz.store
malicious
studennotediw.store
malicious
https://clearancek.site:443/api
unknown
malicious
clearancek.site
malicious
dissapoiznw.store
malicious
https://steamcommunity.com/profiles/76561199724331900
104.102.49.254
malicious
spirittunek.store
malicious
licendfilteo.site
malicious
https://steamcommunity.com:443/profiles/76561199724331900
unknown
malicious
eaglepawnoy.store
malicious
mobbipenju.store
malicious
https://steamcommunity.com/my/wishlist/
unknown
https://player.vimeo.com
unknown
https://community.akamai.steamstatic.com/public/javascript/global.js?v=9OzcxMXbaV84&l=english
unknown
https://community.akamai.steamstatic.com/public/shared/javascript/auth_refresh.js?v=WgUxSlKTb3W1&amp
unknown
https://store.steampowered.com/;Persistent-AuthWWW-AuthenticateVarysteamCountry=US%7Cd7fb65801182a5f
unknown
https://steamcommunity.com/?subsection=broadcasts
unknown
https://help.steampowered.com/en/
unknown
https://cdn.akamai.steamstatic.com/steamcommunity/public/assets/
unknown
https://steamcommunity.com/market/
unknown
https://store.steampowered.com/news/
unknown
https://community.akamai.steamstatic.com/
unknown
https://store.steampowered.com/subscriber_agreement/
unknown
https://www.gstatic.cn/recaptcha/
unknown
http://store.steampowered.com/subscriber_agreement/
unknown
https://steamcommunity.com/linkfilter/?u=http%3A%2F%2Fwww.geonames.org
unknown
https://community.akamai.steamstatic.com/public/javascript/applications/community/libraries~b28b7af6
unknown
https://recaptcha.net/recaptcha/;
unknown
http://www.valvesoftware.com/legal.htm
unknown
https://steamcommunity.com/discussions/
unknown
https://www.youtube.com
unknown
https://community.akamai.steamstatic.com/public/shared/images/responsive/logo_valve_footer.png
unknown
https://www.google.com
unknown
https://community.akamai.steamstatic.com/public/css/skin_1/fatalerror.css?v=wctRWaBvNt2z&l=engli
unknown
https://store.steampowered.com/stats/
unknown
https://community.akamai.steamstatic.com/public/shared/images/responsive/header_menu_hamburger.png
unknown
https://medal.tv
unknown
https://broadcast.st.dl.eccdnx.com
unknown
https://steamcommunity.com/P
unknown
https://community.akamai.steamstatic.com/public/images/skin_1/footerLogo_valve.png?v=1
unknown
https://store.steampowered.com/steam_refunds/
unknown
https://community.akamai.steamstatic.com/public/shared/css/shared_responsive.css?v=sHIIcMzCffX6&
unknown
https://www.valvesoftware.com/en/contact?contact-person=Translation%20Team%20Feedback
unknown
https://steamcommunity.com/login/home/?goto=profiles%2F76561199724331900
unknown
https://community.akamai.steamstatic.com/public/javascript/scriptaculous/_combined.js?v=OeNIgrpEF8tL
unknown
https://s.ytimg.com;
unknown
https://steamcommunity.com/workshop/
unknown
https://login.steampowered.com/
unknown
https://steamcommunity.com/Microsoft
unknown
https://store.steampowered.com/legal/
unknown
https://steam.tv/
unknown
https://community.akamai.steamstatic.com/public/javascript/applications/community/main.js?v=Gu9gs5hf
unknown
https://community.akamai.steamstatic.com/public/css/skin_1/header.css?v=NFoCa4OkAxRb&l=english
unknown
https://community.akamai.steamstatic.com/public/shared/javascript/shared_responsive_adapter.js?v=pSv
unknown
https://community.akamai.steamstatic.com/public/shared/css/motiva_sans.css?v=-DH0xTYpnVe2&l=engl
unknown
http://store.steampowered.com/privacy_agreement/
unknown
https://community.akamai.steamstatic.com/public/javascript/applications/community/manifest.js?v=M7aU
unknown
https://store.steampowered.com/points/shop/
unknown
https://recaptcha.net
unknown
https://store.steampowered.com/
unknown
https://community.akamai.steamstatic.com/public/javascript/prototype-1.7.js?v=.55t44gwuwgvw
unknown
https://steamcommunity.com
unknown
https://sketchfab.com
unknown
https://lv.queniujq.cn
unknown
https://www.youtube.com/
unknown
http://127.0.0.1:27060
unknown
https://store.steampowered.com/privacy_agreement/
unknown
https://community.akamai.steamstatic.com/public/shared/css/shared_global.css?v=ezWS9te9Zwm9&l=en
unknown
https://community.akamai.steamstatic.com/public/shared/javascript/tooltip.js?v=.zYHOpI1L3Rt0
unknown
https://community.akamai.steamstatic.com/public/css/applications/community/main.css?v=2Ih2WOq7ErXY&a
unknown
https://community.akamai.steamstatic.com/public/shared/images/header/logo_steam.svg?t=962016
unknown
https://community.akamai.steamstatic.com/public/shared/javascript/shared_global.js?v=REEGJU1hwkYl&am
unknown
https://community.akamai.steamstatic.com/public/shared/css/buttons.css?v=PUJIfhtcQn7W&l=english
unknown
https://www.google.com/recaptcha/
unknown
https://checkout.steampowered.com/
unknown
https://community.akamai.steamstatic.com/public/css/globalv2.css?v=PAcV2zMBzzSV&l=english
unknown
https://help.steampowered.com/
unknown
https://api.steampowered.com/
unknown
http://store.steampowered.com/account/cookiepreferences/
unknown
https://store.steampowered.com/mobile
unknown
https://community.akamai.steamstatic.com/public/shared/images/responsive/header_logo.png
unknown
https://steamcommunity.com/
unknown
https://community.akamai.steamstatic.com/public/javascript/jquery-1.11.1.min.js?v=.isFTSRckeNhC
unknown
https://store.steampowered.com/;
unknown
https://store.steampowered.com/about/
unknown
There are 75 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
steamcommunity.com
104.102.49.254
malicious
eaglepawnoy.store
unknown
malicious
bathdoomgaz.store
unknown
malicious
spirittunek.store
unknown
malicious
licendfilteo.site
unknown
malicious
studennotediw.store
unknown
malicious
mobbipenju.store
unknown
malicious
clearancek.site
unknown
malicious
dissapoiznw.store
unknown
malicious

IPs

IP
Domain
Country
Malicious
104.102.49.254
steamcommunity.com
United States
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
E21000
unkown
page execute and read and write
malicious
571E000
stack
page read and write
4C40000
direct allocation
page read and write
1412000
heap
page read and write
52AE000
trusted library allocation
page read and write
141D000
heap
page read and write
54DE000
stack
page read and write
5B2F000
stack
page read and write
141D000
heap
page read and write
5280000
direct allocation
page execute and read and write
138E000
heap
page read and write
35BF000
stack
page read and write
337F000
stack
page read and write
4C51000
heap
page read and write
1408000
heap
page read and write
133E000
stack
page read and write
13CA000
heap
page read and write
1408000
heap
page read and write
34BE000
stack
page read and write
1412000
heap
page read and write
35FE000
stack
page read and write
45FF000
stack
page read and write
3FFE000
stack
page read and write
50E0000
direct allocation
page read and write
5230000
direct allocation
page execute and read and write
5240000
direct allocation
page execute and read and write
423F000
stack
page read and write
4C51000
heap
page read and write
36FF000
stack
page read and write
E20000
unkown
page readonly
4C40000
direct allocation
page read and write
4C51000
heap
page read and write
511E000
stack
page read and write
13B8000
heap
page read and write
4C40000
direct allocation
page read and write
4C51000
heap
page read and write
5260000
direct allocation
page execute and read and write
427D000
stack
page read and write
141B000
heap
page read and write
13D7000
heap
page read and write
4C60000
heap
page read and write
4C51000
heap
page read and write
549D000
stack
page read and write
4C51000
heap
page read and write
DF0000
heap
page read and write
141D000
heap
page read and write
4C51000
heap
page read and write
5A2E000
stack
page read and write
1005000
unkown
page execute and read and write
110D000
unkown
page execute and read and write
387E000
stack
page read and write
373E000
stack
page read and write
44BF000
stack
page read and write
9AC000
stack
page read and write
13C9000
heap
page read and write
137E000
stack
page read and write
4C51000
heap
page read and write
587E000
stack
page read and write
4C51000
heap
page read and write
164F000
stack
page read and write
13FD000
heap
page read and write
141B000
heap
page read and write
1380000
heap
page read and write
12BA000
unkown
page execute and read and write
526E000
stack
page read and write
4C40000
direct allocation
page read and write
D50000
heap
page read and write
3C3E000
stack
page read and write
DDE000
stack
page read and write
141B000
heap
page read and write
327F000
stack
page read and write
50E0000
direct allocation
page read and write
D9E000
stack
page read and write
3BFF000
stack
page read and write
4C51000
heap
page read and write
397F000
stack
page read and write
5260000
direct allocation
page execute and read and write
4C51000
heap
page read and write
2EEF000
stack
page read and write
463E000
stack
page read and write
4C40000
direct allocation
page read and write
13EE000
heap
page read and write
145A000
heap
page read and write
1412000
heap
page read and write
58BE000
stack
page read and write
4C51000
heap
page read and write
D00000
heap
page read and write
539D000
stack
page read and write
4B3E000
stack
page read and write
1438000
heap
page read and write
4C51000
heap
page read and write
302E000
stack
page read and write
3FBF000
stack
page read and write
521F000
stack
page read and write
347F000
stack
page read and write
4C40000
direct allocation
page read and write
13C5000
heap
page read and write
13D7000
heap
page read and write
5260000
direct allocation
page execute and read and write
E80000
unkown
page execute and read and write
1438000
heap
page read and write
D55000
heap
page read and write
43BE000
stack
page read and write
13FE000
heap
page read and write
4C51000
heap
page read and write
44FE000
stack
page read and write
5270000
direct allocation
page execute and read and write
3E7F000
stack
page read and write
3ABF000
stack
page read and write
3070000
heap
page read and write
4C40000
direct allocation
page read and write
E21000
unkown
page execute and write copy
413E000
stack
page read and write
5730000
remote allocation
page read and write
39BE000
stack
page read and write
577D000
stack
page read and write
437F000
stack
page read and write
5250000
direct allocation
page execute and read and write
1438000
heap
page read and write
1123000
unkown
page execute and write copy
59BD000
stack
page read and write
5290000
direct allocation
page execute and read and write
10E2000
unkown
page execute and read and write
4C51000
heap
page read and write
141B000
heap
page read and write
5730000
remote allocation
page read and write
1438000
heap
page read and write
473F000
stack
page read and write
48BE000
stack
page read and write
50E0000
direct allocation
page read and write
138A000
heap
page read and write
1408000
heap
page read and write
1454000
heap
page read and write
50CD000
stack
page read and write
49FE000
stack
page read and write
4C40000
direct allocation
page read and write
12FE000
stack
page read and write
1114000
unkown
page execute and read and write
13CF000
heap
page read and write
4C51000
heap
page read and write
5090000
trusted library allocation
page read and write
1123000
unkown
page execute and read and write
477E000
stack
page read and write
141D000
heap
page read and write
13E1000
heap
page read and write
49BF000
stack
page read and write
3D3F000
stack
page read and write
5260000
direct allocation
page execute and read and write
5730000
remote allocation
page read and write
4C40000
direct allocation
page read and write
CFD000
stack
page read and write
E20000
unkown
page read and write
4C40000
direct allocation
page read and write
306E000
stack
page read and write
487F000
stack
page read and write
3077000
heap
page read and write
E00000
heap
page read and write
1124000
unkown
page execute and write copy
4C51000
heap
page read and write
383F000
stack
page read and write
13CF000
heap
page read and write
D10000
heap
page read and write
3EBE000
stack
page read and write
55DF000
stack
page read and write
40FF000
stack
page read and write
4C40000
direct allocation
page read and write
2FEF000
stack
page read and write
4C40000
direct allocation
page read and write
4AFF000
stack
page read and write
5260000
direct allocation
page execute and read and write
4C51000
heap
page read and write
3AFE000
stack
page read and write
13E1000
heap
page read and write
4C40000
direct allocation
page read and write
12BB000
unkown
page execute and write copy
4C3F000
stack
page read and write
3D7E000
stack
page read and write
4C51000
heap
page read and write
4C40000
direct allocation
page read and write
4C50000
heap
page read and write
5260000
direct allocation
page execute and read and write
13EE000
heap
page read and write
13C2000
heap
page read and write
561E000
stack
page read and write
317F000
stack
page read and write
There are 175 hidden memdumps, click here to show them.