IOC Report
SecuriteInfo.com.Trojan.MSIL.Basic.20957.14191.dll

loading gif

Processes

Path
Cmdline
Malicious
C:\Windows\System32\loaddll32.exe
loaddll32.exe "C:\Users\user\Desktop\SecuriteInfo.com.Trojan.MSIL.Basic.20957.14191.dll"
C:\Windows\System32\conhost.exe
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
C:\Windows\SysWOW64\cmd.exe
cmd.exe /C rundll32.exe "C:\Users\user\Desktop\SecuriteInfo.com.Trojan.MSIL.Basic.20957.14191.dll",#1
C:\Windows\SysWOW64\rundll32.exe
rundll32.exe "C:\Users\user\Desktop\SecuriteInfo.com.Trojan.MSIL.Basic.20957.14191.dll",#1

Domains

Name
IP
Malicious
15.164.165.52.in-addr.arpa
unknown

Memdumps

Base Address
Regiontype
Protect
Malicious
3FFF000
stack
page read and write
244D000
heap
page read and write
F2B000
heap
page read and write
2169000
stack
page read and write
EB0000
heap
page read and write
2448000
heap
page read and write
2448000
heap
page read and write
5C50000
trusted library allocation
page read and write
25C0000
heap
page read and write
BDD000
stack
page read and write
E9E000
stack
page read and write
2410000
heap
page read and write
E40000
heap
page read and write
25AD000
stack
page read and write
F37000
heap
page read and write
ADD000
stack
page read and write
2420000
heap
page read and write
E50000
heap
page read and write
3E7E000
stack
page read and write
5880000
heap
page read and write
EC0000
heap
page read and write
2465000
heap
page read and write
3EFE000
stack
page read and write
3FBE000
stack
page read and write
F2F000
heap
page read and write
242A000
heap
page read and write
5800000
heap
page read and write
2444000
heap
page read and write
2450000
heap
page read and write
2540000
heap
page read and write
2465000
heap
page read and write
3EBE000
stack
page read and write
2457000
heap
page read and write
21AC000
stack
page read and write
5810000
heap
page read and write
2440000
heap
page read and write
2546000
heap
page read and write
5884000
heap
page read and write
2520000
heap
page read and write
2457000
heap
page read and write
F20000
heap
page read and write
11EF000
stack
page read and write
2465000
heap
page read and write
254A000
heap
page read and write
2457000
heap
page read and write
2465000
heap
page read and write
2453000
heap
page read and write
There are 37 hidden memdumps, click here to show them.