IOC Report
Fattura (4).jar

loading gif

Files

File Path
Type
Category
Malicious
Fattura (4).jar
Zip archive data, at least v2.0 to extract, compression method=deflate
initial sample
malicious
C:\ProgramData\Oracle\Java\.oracle_jre_usage\b5820291038aa69c.timestamp
ASCII text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\hsperfdata_user\4236
data
dropped
C:\cmdlinestart.log
ASCII text, with CRLF, LF line terminators, with escape sequences
modified

Processes

Path
Cmdline
Malicious
C:\Windows\SysWOW64\cmd.exe
C:\Windows\system32\cmd.exe /c ""C:\Program Files (x86)\Java\jre-1.8\bin\java.exe" -javaagent:"C:\Users\user~1\AppData\Local\Temp\jartracer.jar" -jar "C:\Users\user\Desktop\Fattura (4).jar"" >> C:\cmdlinestart.log 2>&1
C:\Windows\System32\conhost.exe
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
C:\Program Files (x86)\Java\jre-1.8\bin\java.exe
"C:\Program Files (x86)\Java\jre-1.8\bin\java.exe" -javaagent:"C:\Users\user~1\AppData\Local\Temp\jartracer.jar" -jar "C:\Users\user\Desktop\Fattura (4).jar"
C:\Windows\SysWOW64\icacls.exe
C:\Windows\system32\icacls.exe C:\ProgramData\Oracle\Java\.oracle_jre_usage /grant "everyone":(OI)(CI)M
C:\Windows\System32\conhost.exe
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1

URLs

Name
IP
Malicious
http://java.oracle.com/
unknown
http://null.oracle.com/
unknown
http://bugreport.sun.com/bugreport/
unknown

Domains

Name
IP
Malicious
s-part-0015.t-0009.fb-t-msedge.net
13.107.253.43
de4.localto.net
116.203.56.216

IPs

IP
Domain
Country
Malicious
116.203.56.216
de4.localto.net
Germany

Memdumps

Base Address
Regiontype
Protect
Malicious
431F000
trusted library allocation
page read and write
4338000
trusted library allocation
page read and write
4273000
trusted library allocation
page read and write
44A1000
trusted library allocation
page read and write
4575000
trusted library allocation
page read and write
4592000
trusted library allocation
page read and write
158B4000
heap
page read and write
44F2000
trusted library allocation
page read and write
3418000
heap
page read and write
4296000
trusted library allocation
page read and write
4259000
trusted library allocation
page read and write
9916000
trusted library allocation
page read and write
459F000
trusted library allocation
page read and write
4413000
trusted library allocation
page read and write
451D000
trusted library allocation
page read and write
4424000
trusted library allocation
page read and write
44C1000
trusted library allocation
page read and write
43D2000
trusted library allocation
page read and write
428D000
trusted library allocation
page read and write
4374000
trusted library allocation
page read and write
14BEB000
heap
page read and write
4328000
trusted library allocation
page read and write
151D1000
heap
page read and write
4224000
trusted library allocation
page read and write
6AB000
heap
page read and write
4505000
trusted library allocation
page read and write
43C5000
trusted library allocation
page read and write
44C8000
trusted library allocation
page read and write
42C2000
trusted library allocation
page read and write
42CA000
trusted library allocation
page read and write
45AD000
trusted library allocation
page read and write
330E000
stack
page read and write
14D9D000
stack
page read and write
9ACB000
trusted library allocation
page read and write
447A000
trusted library allocation
page read and write
462A000
trusted library allocation
page read and write
151A0000
heap
page read and write
441D000
trusted library allocation
page read and write
4319000
trusted library allocation
page read and write
4316000
trusted library allocation
page read and write
4522000
trusted library allocation
page read and write
15A7E000
trusted library allocation
page read and write
4483000
trusted library allocation
page read and write
429C000
trusted library allocation
page read and write
449F000
trusted library allocation
page read and write
43FE000
trusted library allocation
page read and write
146EE000
stack
page read and write
43CE000
trusted library allocation
page read and write
423E000
trusted library allocation
page read and write
14D55000
heap
page read and write
44B1000
trusted library allocation
page read and write
43B0000
trusted library allocation
page read and write
4285000
trusted library allocation
page read and write
4454000
trusted library allocation
page read and write
4598000
trusted library allocation
page read and write
5DE000
unkown
page read and write
4217000
trusted library allocation
page read and write
15180000
heap
page read and write
44BE000
trusted library allocation
page read and write
4508000
trusted library allocation
page read and write
99E5000
trusted library allocation
page read and write
42E3000
trusted library allocation
page read and write
4342000
trusted library allocation
page read and write
42FF000
trusted library allocation
page read and write
937000
heap
page read and write
151F8000
heap
page read and write
42BD000
trusted library allocation
page read and write
45E7000
trusted library allocation
page read and write
15890000
heap
page read and write
458F000
trusted library allocation
page read and write
444B000
trusted library allocation
page read and write
14C81000
heap
page read and write
342A000
heap
page read and write
425C000
trusted library allocation
page read and write
4266000
trusted library allocation
page read and write
45D5000
trusted library allocation
page read and write
43F6000
trusted library allocation
page read and write
450000
heap
page read and write
4308000
trusted library allocation
page read and write
4235000
trusted library allocation
page read and write
4333000
trusted library allocation
page read and write
15173000
heap
page read and write
14C7A000
heap
page read and write
3410000
heap
page read and write
45B0000
trusted library allocation
page read and write
4610000
trusted library allocation
page read and write
45CB000
trusted library allocation
page read and write
42F0000
trusted library allocation
page read and write
43DB000
trusted library allocation
page read and write
14E7E000
unkown
page read and write
445B000
trusted library allocation
page read and write
14909000
heap
page read and write
462D000
trusted library allocation
page read and write
45BA000
trusted library allocation
page read and write
45CD000
trusted library allocation
page read and write
4549000
trusted library allocation
page read and write
435E000
trusted library allocation
page read and write
45E4000
trusted library allocation
page read and write
4354000
trusted library allocation
page read and write
4596000
trusted library allocation
page read and write
4550000
trusted library allocation
page read and write
43C0000
trusted library allocation
page read and write
43F9000
trusted library allocation
page read and write
20B2000
trusted library allocation
page execute and read and write
15A86000
trusted library allocation
page read and write
43E3000
trusted library allocation
page read and write
434C000
trusted library allocation
page read and write
14840000
heap
page read and write
437E000
trusted library allocation
page read and write
4638000
trusted library allocation
page read and write
43A7000
trusted library allocation
page read and write
43EA000
trusted library allocation
page read and write
4617000
trusted library allocation
page read and write
42AE000
trusted library allocation
page read and write
4403000
trusted library allocation
page read and write
14C52000
heap
page read and write
424E000
trusted library allocation
page read and write
56D000
stack
page read and write
4648000
trusted library allocation
page read and write
45A2000
trusted library allocation
page read and write
432D000
trusted library allocation
page read and write
4322000
trusted library allocation
page read and write
14ACE000
unkown
page read and write
433B000
trusted library allocation
page read and write
15D3E000
stack
page read and write
45C8000
trusted library allocation
page read and write
44AE000
trusted library allocation
page read and write
4568000
trusted library allocation
page read and write
1583D000
stack
page read and write
14D1D000
heap
page read and write
44C6000
trusted library allocation
page read and write
14F10000
heap
page read and write
44D8000
trusted library allocation
page read and write
147BD000
stack
page read and write
930000
heap
page read and write
43DE000
trusted library allocation
page read and write
434F000
trusted library allocation
page read and write
19C000
stack
page read and write
1561D000
stack
page read and write
4356000
trusted library allocation
page read and write
4366000
trusted library allocation
page read and write
9750000
trusted library allocation
page read and write
42CF000
trusted library allocation
page read and write
15DC0000
trusted library allocation
page read and write
42A1000
trusted library allocation
page read and write
2050000
heap
page read and write
960000
unkown
page read and write
152A2000
heap
page read and write
4554000
trusted library allocation
page read and write
9B38000
trusted library allocation
page read and write
44B9000
trusted library allocation
page read and write
4385000
trusted library allocation
page read and write
4408000
trusted library allocation
page read and write
4721000
trusted library allocation
page read and write
45F9000
trusted library allocation
page read and write
443C000
trusted library allocation
page read and write
420F000
trusted library allocation
page read and write
4625000
trusted library allocation
page read and write
446D000
trusted library allocation
page read and write
46B6000
trusted library allocation
page read and write
2F3D000
stack
page read and write
45C1000
trusted library allocation
page read and write
4478000
trusted library allocation
page read and write
4410000
trusted library allocation
page read and write
431B000
trusted library allocation
page read and write
461A000
trusted library allocation
page read and write
43D0000
trusted library allocation
page read and write
453D000
trusted library allocation
page read and write
15AFD000
stack
page read and write
4502000
trusted library allocation
page read and write
3370000
heap
page read and write
452F000
trusted library allocation
page read and write
2046000
unkown
page read and write
15CFF000
stack
page read and write
14B0D000
stack
page read and write
984F000
trusted library allocation
page read and write
45FD000
trusted library allocation
page read and write
14CD6000
heap
page read and write
1477E000
unkown
page read and write
4280000
trusted library allocation
page read and write
44EE000
trusted library allocation
page read and write
4302000
trusted library allocation
page read and write
20AA000
trusted library allocation
page execute and read and write
460D000
trusted library allocation
page read and write
451B000
trusted library allocation
page read and write
14F45000
heap
page read and write
42E8000
trusted library allocation
page read and write
15119000
heap
page read and write
427C000
trusted library allocation
page read and write
61D000
stack
page read and write
4546000
trusted library allocation
page read and write
460B000
trusted library allocation
page read and write
155DE000
unkown
page read and write
43E1000
trusted library allocation
page read and write
45B5000
trusted library allocation
page read and write
44B7000
trusted library allocation
page read and write
42DE000
trusted library allocation
page read and write
4640000
trusted library allocation
page read and write
45DF000
trusted library allocation
page read and write
9AE0000
trusted library allocation
page read and write
45D0000
trusted library allocation
page read and write
99EB000
trusted library allocation
page read and write
4202000
trusted library allocation
page read and write
42B4000
trusted library allocation
page read and write
14DED000
unkown
page read and write
4435000
trusted library allocation
page read and write
42D9000
trusted library allocation
page read and write
430B000
trusted library allocation
page read and write
45C6000
trusted library allocation
page read and write
448E000
trusted library allocation
page read and write
4180000
trusted library allocation
page read and write
33BE000
stack
page read and write
45B3000
trusted library allocation
page read and write
14CD6000
heap
page read and write
15CAE000
stack
page read and write
4444000
trusted library allocation
page read and write
20C3000
trusted library allocation
page execute and read and write
4552000
trusted library allocation
page read and write
97E4000
trusted library allocation
page read and write
148F4000
heap
page read and write
6A0000
heap
page read and write
1472D000
stack
page read and write
439E000
trusted library allocation
page read and write
4227000
trusted library allocation
page read and write
4613000
trusted library allocation
page read and write
42C4000
trusted library allocation
page read and write
462F000
trusted library allocation
page read and write
442E000
trusted library allocation
page read and write
4589000
trusted library allocation
page read and write
2114000
trusted library allocation
page execute and read and write
33FF000
stack
page read and write
431D000
trusted library allocation
page read and write
2072000
trusted library allocation
page execute and read and write
44D2000
trusted library allocation
page read and write
44FC000
trusted library allocation
page read and write
4430000
trusted library allocation
page read and write
44AA000
trusted library allocation
page read and write
455F000
trusted library allocation
page read and write
4221000
trusted library allocation
page read and write
9A01000
trusted library allocation
page read and write
4260000
trusted library allocation
page read and write
4271000
trusted library allocation
page read and write
4476000
trusted library allocation
page read and write
443E000
trusted library allocation
page read and write
152C1000
heap
page read and write
4070000
trusted library allocation
page read and write
452C000
trusted library allocation
page read and write
457B000
trusted library allocation
page read and write
1558D000
stack
page read and write
99F1000
trusted library allocation
page read and write
4628000
trusted library allocation
page read and write
42D1000
trusted library allocation
page read and write
4615000
trusted library allocation
page read and write
15D8F000
stack
page read and write
4346000
trusted library allocation
page read and write
4326000
trusted library allocation
page read and write
4480000
trusted library allocation
page read and write
4573000
trusted library allocation
page read and write
580000
heap
page read and write
15201000
heap
page read and write
44A3000
trusted library allocation
page read and write
4531000
trusted library allocation
page read and write
14A7D000
stack
page read and write
14F0E000
stack
page read and write
43EC000
trusted library allocation
page read and write
4400000
trusted library allocation
page read and write
44E9000
trusted library allocation
page read and write
444D000
trusted library allocation
page read and write
15F2A000
heap
page read and write
14B5E000
unkown
page read and write
461D000
trusted library allocation
page read and write
4542000
trusted library allocation
page read and write
15889000
unkown
page read and write
4494000
trusted library allocation
page read and write
99FB000
trusted library allocation
page read and write
9A10000
trusted library allocation
page read and write
2F7D000
stack
page read and write
432B000
trusted library allocation
page read and write
42D6000
trusted library allocation
page read and write
42BA000
trusted library allocation
page read and write
15199000
heap
page read and write
44A8000
trusted library allocation
page read and write
14D38000
heap
page read and write
4645000
trusted library allocation
page read and write
9AD5000
trusted library allocation
page read and write
15970000
trusted library allocation
page read and write
66E000
unkown
page read and write
4383000
trusted library allocation
page read and write
4594000
trusted library allocation
page read and write
43CB000
trusted library allocation
page read and write
42C6000
trusted library allocation
page read and write
1469D000
stack
page read and write
4473000
trusted library allocation
page read and write
440D000
trusted library allocation
page read and write
4250000
trusted library allocation
page read and write
422B000
trusted library allocation
page read and write
9A83000
trusted library allocation
page read and write
4512000
trusted library allocation
page read and write
210D000
trusted library allocation
page execute and read and write
14EBD000
stack
page read and write
4571000
trusted library allocation
page read and write
158B0000
heap
page read and write
4438000
trusted library allocation
page read and write
14665000
heap
page read and write
458B000
trusted library allocation
page read and write
4432000
trusted library allocation
page read and write
429E000
trusted library allocation
page read and write
425E000
trusted library allocation
page read and write
4344000
trusted library allocation
page read and write
4349000
trusted library allocation
page read and write
4428000
trusted library allocation
page read and write
1519E000
heap
page read and write
20BB000
trusted library allocation
page execute and read and write
15450000
trusted library allocation
page read and write
9AD0000
trusted library allocation
page read and write
4380000
trusted library allocation
page read and write
2FF0000
heap
page read and write
44C4000
trusted library allocation
page read and write
46C6000
trusted library allocation
page read and write
4245000
trusted library allocation
page read and write
45DC000
trusted library allocation
page read and write
42CD000
trusted library allocation
page read and write
2107000
trusted library allocation
page execute and read and write
424A000
trusted library allocation
page read and write
438F000
trusted library allocation
page read and write
45FB000
trusted library allocation
page read and write
4335000
trusted library allocation
page read and write
43B7000
trusted library allocation
page read and write
436B000
trusted library allocation
page read and write
472D000
trusted library allocation
page read and write
14E2D000
stack
page read and write
44CE000
trusted library allocation
page read and write
4520000
trusted library allocation
page read and write
44E6000
trusted library allocation
page read and write
43B3000
trusted library allocation
page read and write
4497000
trusted library allocation
page read and write
457E000
trusted library allocation
page read and write
421E000
trusted library allocation
page read and write
44DA000
trusted library allocation
page read and write
454C000
trusted library allocation
page read and write
43AC000
trusted library allocation
page read and write
442B000
trusted library allocation
page read and write
44D5000
trusted library allocation
page read and write
4304000
trusted library allocation
page read and write
4459000
trusted library allocation
page read and write
4209000
trusted library allocation
page read and write
9A07000
trusted library allocation
page read and write
4278000
trusted library allocation
page read and write
6BA000
heap
page read and write
464D000
trusted library allocation
page read and write
45D7000
trusted library allocation
page read and write
44F0000
trusted library allocation
page read and write
437C000
trusted library allocation
page read and write
43EE000
trusted library allocation
page read and write
4379000
trusted library allocation
page read and write
15980000
trusted library allocation
page read and write
4214000
trusted library allocation
page read and write
14F11000
heap
page read and write
4600000
trusted library allocation
page read and write
4377000
trusted library allocation
page read and write
4406000
trusted library allocation
page read and write
4361000
trusted library allocation
page read and write
438B000
trusted library allocation
page read and write
4398000
trusted library allocation
page read and write
148EA000
heap
page read and write
14C14000
heap
page read and write
4352000
trusted library allocation
page read and write
15EC0000
heap
page read and write
148E1000
heap
page read and write
45A7000
trusted library allocation
page read and write
42EE000
trusted library allocation
page read and write
4371000
trusted library allocation
page read and write
4467000
trusted library allocation
page read and write
45B8000
trusted library allocation
page read and write
157F0000
heap
page read and write
463B000
trusted library allocation
page read and write
44CB000
trusted library allocation
page read and write
4636000
trusted library allocation
page read and write
4556000
trusted library allocation
page read and write
2FE0000
heap
page read and write
14F48000
heap
page read and write
44EC000
trusted library allocation
page read and write
4242000
trusted library allocation
page read and write
45A5000
trusted library allocation
page read and write
44E0000
trusted library allocation
page read and write
159C0000
trusted library allocation
page read and write
759000
heap
page read and write
14B60000
heap
page read and write
44F6000
trusted library allocation
page read and write
4293000
trusted library allocation
page read and write
45C3000
trusted library allocation
page read and write
42A7000
trusted library allocation
page read and write
42DC000
trusted library allocation
page read and write
453F000
trusted library allocation
page read and write
4622000
trusted library allocation
page read and write
4605000
trusted library allocation
page read and write
4262000
trusted library allocation
page read and write
45E1000
trusted library allocation
page read and write
44E3000
trusted library allocation
page read and write
44AC000
trusted library allocation
page read and write
43F3000
trusted library allocation
page read and write
455A000
trusted library allocation
page read and write
4539000
trusted library allocation
page read and write
42B6000
trusted library allocation
page read and write
1ED000
stack
page read and write
426C000
trusted library allocation
page read and write
42AA000
trusted library allocation
page read and write
9A96000
trusted library allocation
page read and write
4609000
trusted library allocation
page read and write
447C000
trusted library allocation
page read and write
43D5000
trusted library allocation
page read and write
4238000
trusted library allocation
page read and write
43F1000
trusted library allocation
page read and write
4631000
trusted library allocation
page read and write
4516000
trusted library allocation
page read and write
4452000
trusted library allocation
page read and write
4211000
trusted library allocation
page read and write
44BB000
trusted library allocation
page read and write
4518000
trusted library allocation
page read and write
4462000
trusted library allocation
page read and write
435B000
trusted library allocation
page read and write
440A000
trusted library allocation
page read and write
4363000
trusted library allocation
page read and write
4457000
trusted library allocation
page read and write
586000
heap
page read and write
427A000
trusted library allocation
page read and write
421A000
trusted library allocation
page read and write
97F7000
trusted library allocation
page read and write
421C000
trusted library allocation
page read and write
43A9000
trusted library allocation
page read and write
4207000
trusted library allocation
page read and write
148FE000
heap
page read and write
4392000
trusted library allocation
page read and write
334F000
stack
page read and write
42A3000
trusted library allocation
page read and write
4642000
trusted library allocation
page read and write
438D000
trusted library allocation
page read and write
45D3000
trusted library allocation
page read and write
14200000
trusted library allocation
page read and write
4275000
trusted library allocation
page read and write
1566E000
unkown
page read and write
4471000
trusted library allocation
page read and write
43FB000
trusted library allocation
page read and write
4368000
trusted library allocation
page read and write
4204000
trusted library allocation
page read and write
450D000
trusted library allocation
page read and write
15F63000
heap
page read and write
152BA000
heap
page read and write
43C2000
trusted library allocation
page read and write
2070000
trusted library allocation
page execute and read and write
44B4000
trusted library allocation
page read and write
4448000
trusted library allocation
page read and write
9AA6000
trusted library allocation
page read and write
15F42000
heap
page read and write
422F000
trusted library allocation
page read and write
4415000
trusted library allocation
page read and write
42C0000
trusted library allocation
page read and write
9A31000
trusted library allocation
page read and write
449C000
trusted library allocation
page read and write
4306000
trusted library allocation
page read and write
4229000
trusted library allocation
page read and write
158C0000
trusted library allocation
page read and write
4248000
trusted library allocation
page read and write
459C000
trusted library allocation
page read and write
570000
heap
page read and write
4564000
trusted library allocation
page read and write
4232000
trusted library allocation
page read and write
455D000
trusted library allocation
page read and write
448C000
trusted library allocation
page read and write
4283000
trusted library allocation
page read and write
45BC000
trusted library allocation
page read and write
4578000
trusted library allocation
page read and write
9812000
trusted library allocation
page read and write
1FFB000
stack
page read and write
430F000
trusted library allocation
page read and write
43AE000
trusted library allocation
page read and write
42AC000
trusted library allocation
page read and write
456E000
trusted library allocation
page read and write
420D000
trusted library allocation
page read and write
426A000
trusted library allocation
page read and write
4419000
trusted library allocation
page read and write
14CD6000
heap
page read and write
156AB000
stack
page read and write
44FA000
trusted library allocation
page read and write
43B9000
trusted library allocation
page read and write
4580000
trusted library allocation
page read and write
449A000
trusted library allocation
page read and write
9A99000
trusted library allocation
page read and write
4312000
trusted library allocation
page read and write
42EB000
trusted library allocation
page read and write
4561000
trusted library allocation
page read and write
4395000
trusted library allocation
page read and write
1480E000
unkown
page read and write
450B000
trusted library allocation
page read and write
42D4000
trusted library allocation
page read and write
4602000
trusted library allocation
page read and write
423C000
trusted library allocation
page read and write
4534000
trusted library allocation
page read and write
43C7000
trusted library allocation
page read and write
156F9000
unkown
page read and write
1501D000
heap
page read and write
445F000
trusted library allocation
page read and write
4388000
trusted library allocation
page read and write
4290000
trusted library allocation
page read and write
3640000
heap
page read and write
456B000
trusted library allocation
page read and write
15B48000
unkown
page read and write
15FA7000
heap
page read and write
There are 498 hidden memdumps, click here to show them.