IOC Report
SecuriteInfo.com.Variant.Lazy.606929.21165.21266.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\SecuriteInfo.com.Variant.Lazy.606929.21165.21266.exe
"C:\Users\user\Desktop\SecuriteInfo.com.Variant.Lazy.606929.21165.21266.exe"
malicious
C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe
"C:\Windows\BitLockerDiscoveryVolumeContents\BitLockerToGo.exe"
malicious

URLs

Name
IP
Malicious
nippydxmnwquo.shop
malicious
https://locatedblsoqp.shop/api
unknown
malicious
https://steamcommunity.com/profiles/76561199724331900
104.102.49.254
malicious
https://nippydxmnwquo.shop/api
188.114.97.3
malicious
locatedblsoqp.shop
malicious
caffegclasiqwp.shop
malicious
millyscroqwp.shop
malicious
https://locatedblsoqp.shop/
unknown
malicious
traineiwnqo.shop
malicious
condedqpwqm.shop
malicious
stagedchheiqwo.shop
malicious
stamppreewntnq.shop
malicious
evoliutwoqm.shop
malicious
https://sergei-esenin.com/api
172.67.206.204
malicious
https://www.cloudflare.com/learning/accek
unknown
https://www.cloudflare.com/learning/access-management/phishing-attack/
unknown
https://caffegclasiqwp.shop/
unknown
https://community.akamai.steamstatic.com/public/shared/javascript/auth_refresh.js?v=WgUxSlKTb3W1&amp
unknown
https://caffegclasiqwp.shop/?Sd
unknown
https://steamcommunity.com/?subsection=broadcasts
unknown
https://github.com/golang/protobuf/issues/1609):
unknown
https://sergei-esenin.com/
unknown
https://store.steampowered.com/subscriber_agreement/
unknown
https://www.cloudflare.com/learning/acce_
unknown
http://store.steampowered:
unknown
https://community.akamai.steamstatic.com/public/javascript/applications/community/libraries~b28b7af6
unknown
https://community.akamai.steamstatic.com/puS
unknown
https://community.akamai.steamstatic.com/public/css/globalv2.css?v=PA
unknown
http://www.valvesoftware.com/legal.htm
unknown
https://community.akamai.steamstatic.com/public/css/promo/summer2017/stickers.css?v=HA2Yr5oy3FFG&amp
unknown
https://community.akamai.steamstatic.com/public/shared/images/responsive/logo_valve_footer.png
unknown
https://community.akamai.steamstatic.com/public/shared/images/responsive/header_menu_hamburger.png
unknown
http://store.stea
unknown
https://community.akamai.steamstatic.com/public/shared/css/shared_responsive.css?v=sHIIcMzCffX6&
unknown
https://www.valvesoftware.com/en/contact?contact-person=Translation%20Team%20Feedback
unknown
https://community.akamai.steamstatic.com/public/javascript/scriptaculous/_combined.js?v=OeNIgrpEF8tL
unknown
https://community.akamai.steamstatic.com/public/javascript/applications/community/manifest.js?v=hgPi
unknown
https://community.akamai.steamstatic.com/public/css/skin_1/header.css?v=NFoCa4OkAxRb&l=english
unknown
https://sergei-esenin.com/~
unknown
http://store.steampowered.com/privacy_agreement/
unknown
https://community.akam
unknown
https://stagedchheiqwo.shop/api
unknown
https://store.steampowered.com/points/shop/
unknown
https://caffegclasiqwp.shop/api
unknown
https://steamcommunity.com/profiles/76561199724331900/inventory/
unknown
https://avatars.akamai.steamstatic.com/fef49e7fa7e1997310d705b2a6158ff8dc1cdfeb_full.jpg
unknown
https://store.steampowered.com/privacy_agreement/
unknown
https://www.cloudflare.com/5xx-error-landing
unknown
https://community.akamai.steamstatic.com/public/shared/css/shared_global.css?v=ezWS9te9Zwm9&l=en
unknown
https://community.akamai.steamstatic.com/public/shared/javascript/tooltip.js?v=.zYHOpI1L3Rt0
unknown
https://sergei-esenin.com/h
unknown
https://protobuf.dev/reference/go/faq#namespace-conflictnot
unknown
https://community.akamai.steamstatic.com/public/css/applications/community/main.css?v=2Ih2WOq7ErXY&a
unknown
https://community.akamaC
unknown
https://community.akamai.steamstatic.com/public/shared/javascript/shared_global.js?v=REEGJU1hwkYl&am
unknown
https://community.akamai.steamstatic.com/public/css/globalv2.css?v=PAcV2zMBzzSV&l=english
unknown
https://community.akamai.steamstatic.com/public/javascript/modalv2.js?v=dfMhuy-Lrpyo&l=english
unknown
https://community.akamai.steamstatic.com/public/shared/images/responsive/header_logo.png
unknown
https://avatars.akamai.steamstatic
unknown
https://community.akamai.steamstatic.com/public/css/skin_1/profilev2.css?v=M_qL4gO2sKII&l=englis
unknown
https://community.akamai.steamstatic.com/public/javascript/jquery-1.11.1.min.js?v=.isFTSRckeNhC
unknown
https://store.steampowered.com/about/
unknown
https://steamcommunity.com/my/wishlist/
unknown
https://community.akamai.steamstatic.com/public/javascript/global.js?v=9OzcxMXbaV84&l=english
unknown
https://help.steampowered.com/en/
unknown
https://steamcommunity.com/market/
unknown
https://store.steampowered.com/news/
unknown
http://store.steampowered.com/subscriber_agreement/
unknown
https://steamcommunity.com/linkfilter/?u=http%3A%2F%2Fwww.geonames.org
unknown
https://community.akamai.steamstatic.com/public/css/skin_1/header.css?v=NFoCa4OkAxRb&l=engli0
unknown
https://community.akamai.steamstatic.com/public/css/skin_1/modalContent.css?v=.VpiwkLAYt9r1
unknown
https://community.akamai.steamstatic.com/public/javascript/promo/stickers.js?v=upl9NJ5D2xkP&l=en
unknown
https://steamcommunity.com/discussions/
unknown
https://store.steampowered.com/stats/
unknown
https://stamppreewntnq.shop/
unknown
https://community.akamai.steamstatic.com/public/images/skin_1/footerLogo_valve.png?v=1
unknown
https://store.steampowered.com/steam_refunds/
unknown
https://sergei-esenin.com/apiK
unknown
https://steamcommunity.com/login/home/?goto=profiles%2F76561199724331900
unknown
http://store.steampowered.com/
unknown
https://community.akamai.steamstatic.com/public/javascript/webui/clientcom.js?v=jGtzAgjYROne&l=e
unknown
https://steamcommunity.com/workshop/
unknown
https://store.steampowered.com/legal/
unknown
https://community.akamai.steamstatic.com/public/javascript/reportedcontent.js?v=dAtjbcZMWhSe&l=e
unknown
https://community.a
unknown
https://community.akamai.steamstatic.com/public/css/p
unknown
https://community.akamai.steamstatic.com/public/shared/javascript/shared_responsive_adapter.js?v=pSv
unknown
https://community.akamai.steamstatic.com/public/shared/css/motiva_sans.css?v=-DH0xTYpnVe2&l=engl
unknown
https://www.cloudflare.com/le
unknown
https://store.steampowered.com/
unknown
https://community.akamai.steamstatic.com/public/javascript/prototype-1.7.js?v=.55t44gwuwgvw
unknown
https://community.akamai.steamstatic.com/public/shared/css/motiva_sans.css?v=
unknown
https://community.akamai.steamstatic.com/public/images/skin_1/arrowDn9x5.gif
unknown
https://sergei-esenin.com/apiz;
unknown
https://community.akamai.steamstatic.com/public/shared/images/header/logo_steam.svg?t=962016
unknown
https://community.akamai.steamstatic.com/public/javascript/applications/community/main.js?v=bz0kMfQA
unknown
https://community.akamai.steamstatic.com/public/shared/css/buttons.css?v=PUJIfhtcQn7W&l=english
unknown
http://store.steampowered.com/account/cookiepreferences/
unknown
https://store.steampowered.com/mobile
unknown
https://steamcommunity.com/
unknown
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
steamcommunity.com
104.102.49.254
malicious
nippydxmnwquo.shop
188.114.97.3
malicious
sergei-esenin.com
172.67.206.204
malicious
locatedblsoqp.shop
unknown
malicious
caffegclasiqwp.shop
unknown
malicious
condedqpwqm.shop
unknown
malicious
millyscroqwp.shop
unknown
malicious
stamppreewntnq.shop
unknown
malicious
evoliutwoqm.shop
unknown
malicious
stagedchheiqwo.shop
unknown
malicious
traineiwnqo.shop
unknown
malicious
There are 1 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
188.114.97.3
nippydxmnwquo.shop
European Union
malicious
104.102.49.254
steamcommunity.com
United States
malicious
172.67.206.204
sergei-esenin.com
United States
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
21A3000
direct allocation
page read and write
malicious
21A3000
direct allocation
page read and write
malicious
2320000
direct allocation
page read and write
malicious
205A000
direct allocation
page read and write
malicious
1FF0000
direct allocation
page read and write
malicious
2320000
direct allocation
page read and write
malicious
205A000
direct allocation
page read and write
malicious
26C1000
remote allocation
page execute read
1FC0000
direct allocation
page read and write
1F3E000
direct allocation
page read and write
1F44000
direct allocation
page read and write
21FBD000
stack
page read and write
27A5000
heap
page read and write
50C000
stack
page read and write
1392000
unkown
page write copy
2CDE000
stack
page read and write
1321000
unkown
page read and write
2851000
heap
page read and write
1324000
unkown
page write copy
1F46000
direct allocation
page read and write
1F32000
direct allocation
page read and write
43C0000
heap
page read and write
288F000
heap
page read and write
1081000
unkown
page readonly
1DD2000
direct allocation
page read and write
220BF000
stack
page read and write
104A000
unkown
page readonly
1086000
unkown
page readonly
1FA8000
direct allocation
page read and write
4AEE000
stack
page read and write
1322000
unkown
page write copy
1EBC000
direct allocation
page read and write
1C80000
direct allocation
page read and write
1FCE000
direct allocation
page read and write
1EB5000
direct allocation
page read and write
1FA0000
direct allocation
page read and write
1C5C000
direct allocation
page read and write
1FBE000
direct allocation
page read and write
16DD000
stack
page read and write
1F68000
direct allocation
page read and write
1C8E000
direct allocation
page read and write
285F000
heap
page read and write
1F3A000
direct allocation
page read and write
1D34000
direct allocation
page read and write
1C60000
direct allocation
page read and write
921000
unkown
page execute read
1D24000
direct allocation
page read and write
2886000
heap
page read and write
2851000
heap
page read and write
1C86000
direct allocation
page read and write
21CFE000
stack
page read and write
27C0000
remote allocation
page read and write
104A000
unkown
page readonly
5F0000
direct allocation
page read and write
285F000
heap
page read and write
1F48000
direct allocation
page read and write
289F000
heap
page read and write
1F58000
direct allocation
page read and write
1CB0000
direct allocation
page read and write
1C78000
direct allocation
page read and write
1C38000
direct allocation
page read and write
1386000
unkown
page read and write
1382000
unkown
page read and write
1FC6000
direct allocation
page read and write
1F00000
direct allocation
page read and write
1076000
unkown
page readonly
1F78000
direct allocation
page read and write
1F88000
direct allocation
page read and write
1C8A000
direct allocation
page read and write
2889000
heap
page read and write
1DB0000
direct allocation
page read and write
1F5C000
direct allocation
page read and write
1C4C000
direct allocation
page read and write
660000
heap
page read and write
1C08000
direct allocation
page read and write
1C1C000
direct allocation
page read and write
1084000
unkown
page readonly
21F00000
direct allocation
page read and write
4BEE000
stack
page read and write
13D1000
unkown
page readonly
1D06000
direct allocation
page read and write
1C54000
direct allocation
page read and write
1C70000
direct allocation
page read and write
275E000
stack
page read and write
285F000
heap
page read and write
1F74000
direct allocation
page read and write
1C92000
direct allocation
page read and write
1F82000
direct allocation
page read and write
131C000
unkown
page write copy
1FB2000
direct allocation
page read and write
1FAE000
direct allocation
page read and write
2881000
heap
page read and write
2834000
heap
page read and write
2A9F000
stack
page read and write
1EB2000
direct allocation
page read and write
8FD000
stack
page read and write
2815000
heap
page read and write
1C18000
direct allocation
page read and write
1D2C000
direct allocation
page read and write
135C000
unkown
page write copy
2885000
heap
page read and write
1D16000
direct allocation
page read and write
1F28000
direct allocation
page read and write
1065000
unkown
page readonly
2815000
heap
page read and write
2870000
heap
page read and write
1C88000
direct allocation
page read and write
D9C000
unkown
page readonly
1FBA000
direct allocation
page read and write
1C72000
direct allocation
page read and write
1F24000
direct allocation
page read and write
107C000
unkown
page readonly
D9C000
unkown
page readonly
10A8000
unkown
page readonly
1F0D000
direct allocation
page read and write
1D28000
direct allocation
page read and write
4AAF000
stack
page read and write
1F56000
direct allocation
page read and write
16EC000
heap
page read and write
1F84000
direct allocation
page read and write
43BE000
stack
page read and write
1062000
unkown
page readonly
21EFF000
stack
page read and write
2288000
direct allocation
page read and write
1393000
unkown
page readonly
1BE0000
direct allocation
page read and write
1D32000
direct allocation
page read and write
1EC4000
direct allocation
page read and write
1550000
heap
page read and write
1FB6000
direct allocation
page read and write
220EF000
direct allocation
page read and write
27FC000
heap
page read and write
106D000
unkown
page readonly
1F40000
direct allocation
page read and write
2835000
heap
page read and write
1D0C000
direct allocation
page read and write
2DDF000
stack
page read and write
1EBE000
direct allocation
page read and write
107E000
unkown
page readonly
1C16000
direct allocation
page read and write
1F94000
direct allocation
page read and write
2815000
heap
page read and write
2851000
heap
page read and write
2014000
direct allocation
page read and write
1BA9000
direct allocation
page read and write
2812000
heap
page read and write
1ECA000
direct allocation
page read and write
1FB0000
direct allocation
page read and write
26C0000
remote allocation
page execute and read and write
1320000
unkown
page write copy
450D000
stack
page read and write
2835000
heap
page read and write
1F8A000
direct allocation
page read and write
1F13000
direct allocation
page read and write
2875000
heap
page read and write
598000
direct allocation
page read and write
27FC000
heap
page read and write
1C82000
direct allocation
page read and write
1C64000
direct allocation
page read and write
10B1000
unkown
page readonly
169E000
stack
page read and write
1078000
unkown
page readonly
1D7E000
direct allocation
page read and write
1078000
unkown
page readonly
2812000
heap
page read and write
1C0E000
direct allocation
page read and write
2875000
heap
page read and write
135D000
unkown
page read and write
1065000
unkown
page readonly
1F5E000
direct allocation
page read and write
3BC000
stack
page read and write
1F42000
direct allocation
page read and write
2288000
direct allocation
page read and write
1EAA000
direct allocation
page read and write
1D0A000
direct allocation
page read and write
1392000
unkown
page write copy
1FA6000
direct allocation
page read and write
1D18000
direct allocation
page read and write
285F000
heap
page read and write
27F8000
heap
page read and write
1C7C000
direct allocation
page read and write
107C000
unkown
page readonly
1B9E000
stack
page read and write
131C000
unkown
page write copy
1F09000
direct allocation
page read and write
17E0000
direct allocation
page read and write
1E62000
direct allocation
page read and write
2712000
remote allocation
page readonly
1086000
unkown
page readonly
1D46000
direct allocation
page read and write
1FC2000
direct allocation
page read and write
2851000
heap
page read and write
1556000
heap
page read and write
1C98000
direct allocation
page read and write
27F7000
heap
page read and write
1C52000
direct allocation
page read and write
16E0000
heap
page read and write
1F62000
direct allocation
page read and write
2888000
heap
page read and write
1C45000
direct allocation
page read and write
14D0000
direct allocation
page read and write
1F52000
direct allocation
page read and write
1081000
unkown
page readonly
670000
heap
page read and write
44CD000
stack
page read and write
1520000
heap
page read and write
1F19000
direct allocation
page read and write
1F22000
direct allocation
page read and write
1393000
unkown
page readonly
151E000
stack
page read and write
288E000
heap
page read and write
2890000
heap
page read and write
1F80000
direct allocation
page read and write
1EFA000
direct allocation
page read and write
1C20000
direct allocation
page read and write
27EB000
heap
page read and write
2894000
heap
page read and write
1C10000
direct allocation
page read and write
106D000
unkown
page readonly
1E1D000
direct allocation
page read and write
1C2B000
direct allocation
page read and write
136A000
unkown
page read and write
4C9F000
stack
page read and write
1C6C000
direct allocation
page read and write
27D0000
heap
page read and write
1F36000
direct allocation
page read and write
27F8000
heap
page read and write
1CA0000
direct allocation
page read and write
27C0000
remote allocation
page read and write
1BA0000
direct allocation
page read and write
4C5E000
stack
page read and write
1F1F000
direct allocation
page read and write
2885000
heap
page read and write
570000
heap
page read and write
1C7A000
direct allocation
page read and write
59C000
direct allocation
page read and write
10B1000
unkown
page readonly
1EA4000
direct allocation
page read and write
1062000
unkown
page readonly
131D000
unkown
page read and write
289F000
heap
page read and write
1C3A000
direct allocation
page read and write
1F90000
direct allocation
page read and write
1B5D000
stack
page read and write
1F54000
direct allocation
page read and write
1B1F000
stack
page read and write
1D1A000
direct allocation
page read and write
27A0000
heap
page read and write
107E000
unkown
page readonly
1EBA000
direct allocation
page read and write
21DFF000
stack
page read and write
1530000
heap
page read and write
220DC000
direct allocation
page read and write
2812000
heap
page read and write
1F64000
direct allocation
page read and write
2703000
remote allocation
page execute and read and write
1C94000
direct allocation
page read and write
460D000
stack
page read and write
1F8E000
direct allocation
page read and write
1C00000
direct allocation
page read and write
1352000
unkown
page read and write
1D64000
direct allocation
page read and write
1D04000
direct allocation
page read and write
1FB4000
direct allocation
page read and write
1D00000
direct allocation
page read and write
1C1A000
direct allocation
page read and write
1C30000
direct allocation
page read and write
27D7000
heap
page read and write
1F7A000
direct allocation
page read and write
1C7E000
direct allocation
page read and write
1323000
unkown
page read and write
13D1000
unkown
page readonly
590000
direct allocation
page read and write
165F000
stack
page read and write
1084000
unkown
page readonly
1FCA000
direct allocation
page read and write
920000
unkown
page readonly
921000
unkown
page execute read
10A8000
unkown
page readonly
1F6C000
direct allocation
page read and write
1F60000
direct allocation
page read and write
1F8C000
direct allocation
page read and write
920000
unkown
page readonly
1F2C000
direct allocation
page read and write
2700000
remote allocation
page readonly
27C0000
remote allocation
page read and write
1C8C000
direct allocation
page read and write
3FC000
stack
page read and write
1F1B000
direct allocation
page read and write
1076000
unkown
page readonly
1F66000
direct allocation
page read and write
27FC000
heap
page read and write
1F76000
direct allocation
page read and write
2815000
heap
page read and write
1F07000
direct allocation
page read and write
1F86000
direct allocation
page read and write
1FD4000
direct allocation
page read and write
2770000
heap
page read and write
49AE000
stack
page read and write
2870000
heap
page read and write
There are 290 hidden memdumps, click here to show them.