IOC Report
Salary_Receipt.exe

loading gif

Files

File Path
Type
Category
Malicious
Salary_Receipt.exe
PE32 executable (GUI) Intel 80386, for MS Windows
initial sample
malicious
C:\Users\user\AppData\Local\Temp\Maianthemum
data
dropped
C:\Users\user\AppData\Local\Temp\autD6DE.tmp
data
dropped

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\Salary_Receipt.exe
"C:\Users\user\Desktop\Salary_Receipt.exe"
malicious
C:\Windows\SysWOW64\svchost.exe
"C:\Users\user\Desktop\Salary_Receipt.exe"
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
400000
system
page execute and read and write
malicious
3950000
direct allocation
page read and write
malicious
1436000
heap
page read and write
3700000
heap
page read and write
3405000
heap
page read and write
39A0000
direct allocation
page read and write
13CC000
heap
page read and write
13AC000
heap
page read and write
1240000
direct allocation
page execute and read and write
758000
unkown
page readonly
690000
unkown
page readonly
758000
unkown
page readonly
3D40000
direct allocation
page read and write
3D40000
direct allocation
page read and write
1290000
heap
page read and write
39A0000
direct allocation
page read and write
3213000
heap
page read and write
3213000
heap
page read and write
2FB0000
heap
page read and write
3417000
heap
page read and write
3213000
heap
page read and write
13A8000
heap
page read and write
3200000
heap
page read and write
1465000
heap
page read and write
3CF0000
direct allocation
page read and write
13AD000
heap
page read and write
39B0000
direct allocation
page read and write
13A6000
heap
page read and write
39B0000
direct allocation
page read and write
3213000
heap
page read and write
3E6D000
direct allocation
page read and write
3213000
heap
page read and write
10C0000
heap
page read and write
3405000
heap
page read and write
1346000
heap
page read and write
133C000
heap
page read and write
2FE0000
heap
page read and write
3E69000
direct allocation
page read and write
3C2D000
direct allocation
page execute and read and write
3213000
heap
page read and write
3C73000
direct allocation
page read and write
394F000
stack
page read and write
FFC000
stack
page read and write
2F5D000
stack
page read and write
13A6000
heap
page read and write
1210000
heap
page read and write
3E1D000
direct allocation
page read and write
133F000
heap
page read and write
1100000
heap
page read and write
1476000
heap
page read and write
13AC000
heap
page read and write
3E8E000
direct allocation
page read and write
13AC000
heap
page read and write
4001000
heap
page read and write
3C73000
direct allocation
page read and write
753000
unkown
page write copy
3B50000
direct allocation
page read and write
3DCD000
direct allocation
page execute and read and write
3213000
heap
page read and write
3CF0000
direct allocation
page read and write
745000
unkown
page readonly
3EDE000
direct allocation
page read and write
3A2D000
heap
page read and write
3E1D000
direct allocation
page read and write
3900000
heap
page read and write
12A0000
direct allocation
page read and write
745000
unkown
page readonly
1459000
heap
page read and write
3213000
heap
page read and write
3412000
heap
page read and write
3417000
heap
page read and write
13AC000
heap
page read and write
3B50000
direct allocation
page read and write
3C9E000
direct allocation
page execute and read and write
691000
unkown
page execute read
3C29000
direct allocation
page execute and read and write
3213000
heap
page read and write
3213000
heap
page read and write
3BA0000
direct allocation
page read and write
3E19000
direct allocation
page read and write
1AFE000
stack
page read and write
3213000
heap
page read and write
3C73000
direct allocation
page read and write
3B00000
direct allocation
page execute and read and write
370E000
stack
page read and write
145A000
heap
page read and write
3400000
heap
page read and write
3BA0000
direct allocation
page read and write
9CA000
stack
page read and write
2F1D000
stack
page read and write
3E69000
direct allocation
page read and write
3E8E000
direct allocation
page read and write
3213000
heap
page read and write
3501000
heap
page read and write
145A000
heap
page read and write
3213000
heap
page read and write
1030000
heap
page read and write
3EDE000
direct allocation
page read and write
380F000
stack
page read and write
2F90000
heap
page read and write
1EFE000
stack
page read and write
3A9E000
heap
page read and write
3E69000
direct allocation
page read and write
3D40000
direct allocation
page read and write
39B0000
direct allocation
page read and write
3E19000
direct allocation
page read and write
133F000
heap
page read and write
3DD1000
direct allocation
page execute and read and write
3CC3000
direct allocation
page read and write
3BA0000
direct allocation
page read and write
13A8000
heap
page read and write
3E1D000
direct allocation
page read and write
74F000
unkown
page write copy
1308000
heap
page read and write
3CC3000
direct allocation
page read and write
FCE000
stack
page read and write
3213000
heap
page read and write
1459000
heap
page read and write
1294000
heap
page read and write
3213000
heap
page read and write
10BE000
stack
page read and write
3213000
heap
page read and write
3E19000
direct allocation
page read and write
3202000
heap
page read and write
1324000
heap
page read and write
3E42000
direct allocation
page execute and read and write
690000
unkown
page readonly
36D0000
direct allocation
page read and write
FDB000
stack
page read and write
3213000
heap
page read and write
691000
unkown
page execute read
3CC3000
direct allocation
page read and write
107E000
stack
page read and write
3213000
heap
page read and write
1333000
heap
page read and write
3E6D000
direct allocation
page read and write
1476000
heap
page read and write
3213000
heap
page read and write
3EDE000
direct allocation
page read and write
13AC000
heap
page read and write
384E000
stack
page read and write
13AC000
heap
page read and write
3CF0000
direct allocation
page read and write
2FF0000
heap
page read and write
3213000
heap
page read and write
3213000
heap
page read and write
3213000
heap
page read and write
3213000
heap
page read and write
1300000
heap
page read and write
71F000
unkown
page readonly
3A29000
heap
page read and write
3213000
heap
page read and write
1333000
heap
page read and write
3213000
heap
page read and write
1385000
heap
page read and write
1429000
heap
page read and write
3213000
heap
page read and write
39B0000
direct allocation
page read and write
13AC000
heap
page read and write
3823000
heap
page read and write
71F000
unkown
page readonly
3E6D000
direct allocation
page read and write
1346000
heap
page read and write
3213000
heap
page read and write
3E8E000
direct allocation
page read and write
74F000
unkown
page read and write
1220000
heap
page read and write
3213000
heap
page read and write
FBF000
stack
page read and write
3B50000
direct allocation
page read and write
There are 160 hidden memdumps, click here to show them.