IOC Report
172883701194d92b397f675a5540cc755b22045792762d574d00728a55f4aa1d3437adce26334.dat-decoded.dll

loading gif

Processes

Path
Cmdline
Malicious
C:\Windows\System32\loaddll32.exe
loaddll32.exe "C:\Users\user\Desktop\172883701194d92b397f675a5540cc755b22045792762d574d00728a55f4aa1d3437adce26334.dat-decoded.dll"
malicious
C:\Windows\SysWOW64\cmd.exe
cmd.exe /C rundll32.exe "C:\Users\user\Desktop\172883701194d92b397f675a5540cc755b22045792762d574d00728a55f4aa1d3437adce26334.dat-decoded.dll",#1
malicious
C:\Windows\SysWOW64\rundll32.exe
rundll32.exe "C:\Users\user\Desktop\172883701194d92b397f675a5540cc755b22045792762d574d00728a55f4aa1d3437adce26334.dat-decoded.dll",#1
malicious
C:\Windows\System32\conhost.exe
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1

Domains

Name
IP
Malicious
s-part-0017.t-0009.t-msedge.net
13.107.246.45

Memdumps

Base Address
Regiontype
Protect
Malicious
3023000
heap
page read and write
300E000
heap
page read and write
A90000
heap
page read and write
300E000
heap
page read and write
B1E000
stack
page read and write
3290000
heap
page read and write
FCF000
stack
page read and write
300C000
heap
page read and write
3023000
heap
page read and write
2B3C000
stack
page read and write
A2D000
stack
page read and write
2FE0000
heap
page read and write
2BB0000
heap
page read and write
302C000
heap
page read and write
92D000
stack
page read and write
2FEA000
heap
page read and write
3004000
heap
page read and write
300C000
heap
page read and write
2FCF000
stack
page read and write
3008000
heap
page read and write
AD0000
heap
page read and write
AA0000
heap
page read and write
300F000
heap
page read and write
FEF000
heap
page read and write
3023000
heap
page read and write
6040000
heap
page read and write
2B70000
heap
page read and write
300E000
heap
page read and write
11C0000
heap
page read and write
2AF9000
stack
page read and write
FE0000
heap
page read and write
6570000
trusted library allocation
page read and write
3008000
heap
page read and write
2BC0000
heap
page read and write
2FFC000
heap
page read and write
2F8E000
stack
page read and write
6050000
heap
page read and write
329A000
heap
page read and write
2F4F000
stack
page read and write
3003000
heap
page read and write
3297000
heap
page read and write
3024000
heap
page read and write
2FFF000
heap
page read and write
2FFF000
heap
page read and write
6060000
heap
page read and write
2F0E000
stack
page read and write
3023000
heap
page read and write
FEB000
heap
page read and write
6064000
heap
page read and write
There are 39 hidden memdumps, click here to show them.