Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
Qzo7rljbyQ.exe
|
PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
|
initial sample
|
||
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\77EC63BDA74BD0D0E0426DC8F8008506
|
Microsoft Cabinet archive data, Windows 2000/XP setup, 71954 bytes, 1 file, at 0x2c +A "authroot.stl", number 1, 6 datablocks,
0x1 compression
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\77EC63BDA74BD0D0E0426DC8F8008506
|
data
|
modified
|
Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Users\user\Desktop\Qzo7rljbyQ.exe
|
"C:\Users\user\Desktop\Qzo7rljbyQ.exe"
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
https://stackoverflow.com/q/14436606/23354
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/05/identity/claims/name
|
unknown
|
||
https://stackoverflow.com/q/2152978/23354rCannot
|
unknown
|
||
https://stackoverflow.com/q/11564914/23354;
|
unknown
|
||
https://github.com/testdemo345/DemoThing/raw/main/chromedriver.exe
|
unknown
|
||
https://github.com/testdemo345/DemoThing/raw/main/msedgedriver.exe
|
unknown
|
||
https://github.com/testdemo345/DemoThing/raw/main/WebDriver.dll
|
unknown
|
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
bg.microsoft.map.fastly.net
|
199.232.210.172
|
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
167.88.160.63
|
unknown
|
United States
|
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
8C28000
|
heap
|
page read and write
|
||
984E000
|
stack
|
page read and write
|
||
338E000
|
trusted library allocation
|
page read and write
|
||
7FD5000
|
heap
|
page read and write
|
||
3476000
|
trusted library allocation
|
page read and write
|
||
7D90000
|
trusted library allocation
|
page read and write
|
||
7880000
|
trusted library allocation
|
page read and write
|
||
338B000
|
trusted library allocation
|
page read and write
|
||
4D17000
|
trusted library allocation
|
page read and write
|
||
3278000
|
trusted library allocation
|
page read and write
|
||
33DA000
|
trusted library allocation
|
page read and write
|
||
3275000
|
trusted library allocation
|
page read and write
|
||
342A000
|
trusted library allocation
|
page read and write
|
||
31FA000
|
trusted library allocation
|
page read and write
|
||
3594000
|
trusted library allocation
|
page read and write
|
||
3516000
|
trusted library allocation
|
page read and write
|
||
1645000
|
trusted library allocation
|
page execute and read and write
|
||
33DE000
|
trusted library allocation
|
page read and write
|
||
7D10000
|
trusted library allocation
|
page read and write
|
||
362C000
|
trusted library allocation
|
page read and write
|
||
163E000
|
stack
|
page read and write
|
||
1413000
|
trusted library allocation
|
page execute and read and write
|
||
3606000
|
trusted library allocation
|
page read and write
|
||
353F000
|
trusted library allocation
|
page read and write
|
||
8EED000
|
stack
|
page read and write
|
||
D02000
|
unkown
|
page readonly
|
||
7D50000
|
trusted library allocation
|
page execute and read and write
|
||
33B6000
|
trusted library allocation
|
page read and write
|
||
1700000
|
heap
|
page read and write
|
||
1516000
|
heap
|
page read and write
|
||
78A0000
|
trusted library allocation
|
page read and write
|
||
8D7A000
|
heap
|
page read and write
|
||
3270000
|
trusted library allocation
|
page read and write
|
||
9170000
|
heap
|
page read and write
|
||
360C000
|
trusted library allocation
|
page read and write
|
||
353D000
|
trusted library allocation
|
page read and write
|
||
1857000
|
heap
|
page read and write
|
||
3590000
|
trusted library allocation
|
page read and write
|
||
3221000
|
trusted library allocation
|
page read and write
|
||
34A6000
|
trusted library allocation
|
page read and write
|
||
7BD0000
|
trusted library section
|
page read and write
|
||
1432000
|
trusted library allocation
|
page read and write
|
||
7F08000
|
heap
|
page read and write
|
||
7D30000
|
trusted library allocation
|
page read and write
|
||
14B0000
|
heap
|
page read and write
|
||
329D000
|
trusted library allocation
|
page read and write
|
||
3432000
|
trusted library allocation
|
page read and write
|
||
7D20000
|
trusted library allocation
|
page read and write
|
||
1690000
|
trusted library allocation
|
page execute and read and write
|
||
1525000
|
heap
|
page read and write
|
||
4001000
|
trusted library allocation
|
page read and write
|
||
127E000
|
stack
|
page read and write
|
||
1414000
|
trusted library allocation
|
page read and write
|
||
16EE000
|
stack
|
page read and write
|
||
3541000
|
trusted library allocation
|
page read and write
|
||
3566000
|
trusted library allocation
|
page read and write
|
||
1642000
|
trusted library allocation
|
page read and write
|
||
7FBD000
|
heap
|
page read and write
|
||
358E000
|
trusted library allocation
|
page read and write
|
||
9950000
|
trusted library allocation
|
page read and write
|
||
362E000
|
trusted library allocation
|
page read and write
|
||
335D000
|
trusted library allocation
|
page read and write
|
||
16A0000
|
heap
|
page read and write
|
||
3452000
|
trusted library allocation
|
page read and write
|
||
8BF0000
|
trusted library allocation
|
page execute and read and write
|
||
1300000
|
heap
|
page read and write
|
||
35B6000
|
trusted library allocation
|
page read and write
|
||
1640000
|
trusted library allocation
|
page read and write
|
||
180E000
|
stack
|
page read and write
|
||
333E000
|
trusted library allocation
|
page read and write
|
||
8BC0000
|
trusted library allocation
|
page read and write
|
||
3248000
|
trusted library allocation
|
page read and write
|
||
8280000
|
trusted library allocation
|
page execute and read and write
|
||
33B2000
|
trusted library allocation
|
page read and write
|
||
1482000
|
heap
|
page read and write
|
||
54E0000
|
trusted library allocation
|
page read and write
|
||
7CDB000
|
trusted library allocation
|
page read and write
|
||
48FD000
|
trusted library allocation
|
page read and write
|
||
950C000
|
stack
|
page read and write
|
||
321A000
|
trusted library allocation
|
page read and write
|
||
3518000
|
trusted library allocation
|
page read and write
|
||
7C9E000
|
trusted library allocation
|
page read and write
|
||
96CC000
|
stack
|
page read and write
|
||
33D6000
|
trusted library allocation
|
page read and write
|
||
34F2000
|
trusted library allocation
|
page read and write
|
||
7F6F0000
|
trusted library allocation
|
page execute and read and write
|
||
1448000
|
heap
|
page read and write
|
||
7D80000
|
trusted library allocation
|
page read and write
|
||
3402000
|
trusted library allocation
|
page read and write
|
||
342E000
|
trusted library allocation
|
page read and write
|
||
34F0000
|
trusted library allocation
|
page read and write
|
||
5723000
|
trusted library allocation
|
page read and write
|
||
8D74000
|
heap
|
page read and write
|
||
1670000
|
heap
|
page read and write
|
||
35DC000
|
trusted library allocation
|
page read and write
|
||
3298000
|
trusted library allocation
|
page read and write
|
||
3001000
|
trusted library allocation
|
page read and write
|
||
8E40000
|
trusted library allocation
|
page read and write
|
||
33FE000
|
trusted library allocation
|
page read and write
|
||
8BE0000
|
trusted library allocation
|
page execute and read and write
|
||
7D70000
|
trusted library allocation
|
page read and write
|
||
3226000
|
trusted library allocation
|
page read and write
|
||
3608000
|
trusted library allocation
|
page read and write
|
||
3360000
|
trusted library allocation
|
page read and write
|
||
34CA000
|
trusted library allocation
|
page read and write
|
||
3384000
|
trusted library allocation
|
page read and write
|
||
56EE000
|
stack
|
page read and write
|
||
3224000
|
trusted library allocation
|
page read and write
|
||
1660000
|
trusted library allocation
|
page read and write
|
||
7D01000
|
trusted library allocation
|
page read and write
|
||
356C000
|
trusted library allocation
|
page read and write
|
||
3568000
|
trusted library allocation
|
page read and write
|
||
994D000
|
stack
|
page read and write
|
||
324D000
|
trusted library allocation
|
page read and write
|
||
12BE000
|
stack
|
page read and write
|
||
8C00000
|
heap
|
page read and write
|
||
351E000
|
trusted library allocation
|
page read and write
|
||
8290000
|
trusted library allocation
|
page execute and read and write
|
||
D00000
|
unkown
|
page readonly
|
||
1230000
|
heap
|
page read and write
|
||
3364000
|
trusted library allocation
|
page read and write
|
||
7CE0000
|
trusted library allocation
|
page read and write
|
||
35BC000
|
trusted library allocation
|
page read and write
|
||
34CE000
|
trusted library allocation
|
page read and write
|
||
3250000
|
trusted library allocation
|
page read and write
|
||
8E50000
|
trusted library allocation
|
page read and write
|
||
8EF0000
|
heap
|
page read and write
|
||
3428000
|
trusted library allocation
|
page read and write
|
||
557E000
|
stack
|
page read and write
|
||
3478000
|
trusted library allocation
|
page read and write
|
||
DEB000
|
stack
|
page read and write
|
||
3316000
|
trusted library allocation
|
page read and write
|
||
5010000
|
trusted library allocation
|
page execute and read and write
|
||
5710000
|
trusted library allocation
|
page read and write
|
||
8C6A000
|
heap
|
page read and write
|
||
7EDC000
|
stack
|
page read and write
|
||
34C8000
|
trusted library allocation
|
page read and write
|
||
3406000
|
trusted library allocation
|
page read and write
|
||
3426000
|
trusted library allocation
|
page read and write
|
||
3564000
|
trusted library allocation
|
page read and write
|
||
1539000
|
heap
|
page read and write
|
||
3604000
|
trusted library allocation
|
page read and write
|
||
184C000
|
stack
|
page read and write
|
||
35E4000
|
trusted library allocation
|
page read and write
|
||
55E0000
|
heap
|
page read and write
|
||
31E8000
|
trusted library allocation
|
page read and write
|
||
3630000
|
trusted library allocation
|
page read and write
|
||
519E000
|
stack
|
page read and write
|
||
5740000
|
heap
|
page execute and read and write
|
||
1436000
|
trusted library allocation
|
page execute and read and write
|
||
3454000
|
trusted library allocation
|
page read and write
|
||
1305000
|
heap
|
page read and write
|
||
35B8000
|
trusted library allocation
|
page read and write
|
||
1850000
|
heap
|
page read and write
|
||
34A2000
|
trusted library allocation
|
page read and write
|
||
347A000
|
trusted library allocation
|
page read and write
|
||
164B000
|
trusted library allocation
|
page execute and read and write
|
||
141D000
|
trusted library allocation
|
page execute and read and write
|
||
3025000
|
trusted library allocation
|
page read and write
|
||
1410000
|
trusted library allocation
|
page read and write
|
||
1707000
|
heap
|
page read and write
|
||
35DE000
|
trusted library allocation
|
page read and write
|
||
33D8000
|
trusted library allocation
|
page read and write
|
||
3456000
|
trusted library allocation
|
page read and write
|
||
8CFC000
|
heap
|
page read and write
|
||
3634000
|
trusted library allocation
|
page read and write
|
||
8BDC000
|
trusted library allocation
|
page read and write
|
||
33AE000
|
trusted library allocation
|
page read and write
|
||
8BD0000
|
trusted library allocation
|
page read and write
|
||
3326000
|
trusted library allocation
|
page read and write
|
||
332D000
|
trusted library allocation
|
page read and write
|
||
34EE000
|
trusted library allocation
|
page read and write
|
||
3362000
|
trusted library allocation
|
page read and write
|
||
143A000
|
trusted library allocation
|
page execute and read and write
|
||
16F0000
|
heap
|
page execute and read and write
|
||
1468000
|
heap
|
page read and write
|
||
347E000
|
trusted library allocation
|
page read and write
|
||
980E000
|
stack
|
page read and write
|
||
56F0000
|
trusted library allocation
|
page read and write
|
||
351A000
|
trusted library allocation
|
page read and write
|
||
7DDC000
|
stack
|
page read and write
|
||
1508000
|
heap
|
page read and write
|
||
7BCE000
|
stack
|
page read and write
|
||
144E000
|
heap
|
page read and write
|
||
34F6000
|
trusted library allocation
|
page read and write
|
||
34A0000
|
trusted library allocation
|
page read and write
|
||
33B0000
|
trusted library allocation
|
page read and write
|
||
1647000
|
trusted library allocation
|
page execute and read and write
|
||
95CD000
|
stack
|
page read and write
|
||
1430000
|
trusted library allocation
|
page read and write
|
||
3544000
|
trusted library allocation
|
page read and write
|
||
3400000
|
trusted library allocation
|
page read and write
|
||
134F000
|
stack
|
page read and write
|
||
5580000
|
trusted library section
|
page read and write
|
||
D58000
|
unkown
|
page readonly
|
||
7EF0000
|
heap
|
page read and write
|
||
1440000
|
heap
|
page read and write
|
||
4C5F000
|
trusted library allocation
|
page read and write
|
||
321E000
|
trusted library allocation
|
page read and write
|
||
7D40000
|
trusted library allocation
|
page read and write
|
||
1530000
|
heap
|
page read and write
|
||
329A000
|
trusted library allocation
|
page read and write
|
||
12F0000
|
trusted library allocation
|
page read and write
|
||
1486000
|
heap
|
page read and write
|
||
1150000
|
heap
|
page read and write
|
||
138E000
|
stack
|
page read and write
|
||
1420000
|
trusted library allocation
|
page read and write
|
||
7CF0000
|
trusted library allocation
|
page read and write
|
||
358C000
|
trusted library allocation
|
page read and write
|
||
505D000
|
stack
|
page read and write
|
||
349E000
|
trusted library allocation
|
page read and write
|
||
35E0000
|
trusted library allocation
|
page read and write
|
||
8D7F000
|
heap
|
page read and write
|
||
49BE000
|
trusted library allocation
|
page read and write
|
||
34C6000
|
trusted library allocation
|
page read and write
|
||
8C78000
|
heap
|
page read and write
|
||
82A0000
|
trusted library allocation
|
page read and write
|
||
970E000
|
stack
|
page read and write
|
||
7D60000
|
trusted library allocation
|
page read and write
|
||
10F8000
|
stack
|
page read and write
|
||
8E3E000
|
unkown
|
page read and write
|
||
5730000
|
trusted library allocation
|
page read and write
|
||
35B4000
|
trusted library allocation
|
page read and write
|
||
5720000
|
trusted library allocation
|
page read and write
|
There are 214 hidden memdumps, click here to show them.