Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
SecuriteInfo.com.Win32.PWSX-gen.11526.16693.exe
|
PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
|
initial sample
|
||
C:\Users\user\AppData\Local\Microsoft\CLR_v4.0_32\UsageLogs\SecuriteInfo.com.Win32.PWSX-gen.11526.16693.exe.log
|
ASCII text, with CRLF line terminators
|
dropped
|
Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Users\user\Desktop\SecuriteInfo.com.Win32.PWSX-gen.11526.16693.exe
|
"C:\Users\user\Desktop\SecuriteInfo.com.Win32.PWSX-gen.11526.16693.exe"
|
||
C:\Users\user\Desktop\SecuriteInfo.com.Win32.PWSX-gen.11526.16693.exe
|
"C:\Users\user\Desktop\SecuriteInfo.com.Win32.PWSX-gen.11526.16693.exe"
|
||
C:\Users\user\Desktop\SecuriteInfo.com.Win32.PWSX-gen.11526.16693.exe
|
"C:\Users\user\Desktop\SecuriteInfo.com.Win32.PWSX-gen.11526.16693.exe"
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
http://egyptian-international.com
|
unknown
|
||
https://account.dyn.com/
|
unknown
|
||
https://www.chiark.greenend.org.uk/~sgtatham/putty/0
|
unknown
|
||
http://mail.egyptian-international.com
|
unknown
|
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
egyptian-international.com
|
174.136.29.143
|
||
mail.egyptian-international.com
|
unknown
|
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
174.136.29.143
|
egyptian-international.com
|
United States
|
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
2FE1000
|
trusted library allocation
|
page read and write
|
||
43BE000
|
trusted library allocation
|
page read and write
|
||
31E1000
|
trusted library allocation
|
page read and write
|
||
402000
|
remote allocation
|
page execute and read and write
|
||
5B00000
|
trusted library section
|
page read and write
|
||
34D6000
|
trusted library allocation
|
page read and write
|
||
15EE000
|
heap
|
page read and write
|
||
5940000
|
heap
|
page read and write
|
||
1646000
|
trusted library allocation
|
page execute and read and write
|
||
5598000
|
trusted library allocation
|
page read and write
|
||
5DE0000
|
trusted library allocation
|
page read and write
|
||
5524000
|
trusted library allocation
|
page read and write
|
||
56B0000
|
trusted library allocation
|
page read and write
|
||
5681000
|
trusted library allocation
|
page read and write
|
||
685E000
|
stack
|
page read and write
|
||
4285000
|
trusted library allocation
|
page read and write
|
||
30F0000
|
heap
|
page execute and read and write
|
||
5692000
|
trusted library allocation
|
page read and write
|
||
13E0000
|
heap
|
page read and write
|
||
15D7000
|
trusted library allocation
|
page execute and read and write
|
||
32B7000
|
trusted library allocation
|
page read and write
|
||
34FA000
|
trusted library allocation
|
page read and write
|
||
4088000
|
trusted library allocation
|
page read and write
|
||
16C0000
|
heap
|
page read and write
|
||
5660000
|
trusted library allocation
|
page read and write
|
||
2F80000
|
heap
|
page execute and read and write
|
||
15AD000
|
trusted library allocation
|
page execute and read and write
|
||
138B000
|
stack
|
page read and write
|
||
6A62000
|
heap
|
page read and write
|
||
4268000
|
trusted library allocation
|
page read and write
|
||
704A000
|
heap
|
page read and write
|
||
5B40000
|
heap
|
page read and write
|
||
5590000
|
trusted library allocation
|
page read and write
|
||
5560000
|
heap
|
page execute and read and write
|
||
6570000
|
trusted library allocation
|
page execute and read and write
|
||
161D000
|
trusted library allocation
|
page execute and read and write
|
||
54C0000
|
trusted library allocation
|
page read and write
|
||
5B30000
|
trusted library section
|
page read and write
|
||
13E8000
|
heap
|
page read and write
|
||
599B000
|
stack
|
page read and write
|
||
41E9000
|
trusted library allocation
|
page read and write
|
||
15C6000
|
trusted library allocation
|
page execute and read and write
|
||
4208000
|
trusted library allocation
|
page read and write
|
||
640D000
|
stack
|
page read and write
|
||
5DD0000
|
trusted library allocation
|
page execute and read and write
|
||
334C000
|
trusted library allocation
|
page read and write
|
||
5690000
|
trusted library allocation
|
page read and write
|
||
1620000
|
heap
|
page read and write
|
||
346A000
|
trusted library allocation
|
page read and write
|
||
596E000
|
stack
|
page read and write
|
||
324D000
|
trusted library allocation
|
page read and write
|
||
10F8000
|
stack
|
page read and write
|
||
43E000
|
remote allocation
|
page execute and read and write
|
||
351E000
|
trusted library allocation
|
page read and write
|
||
4188000
|
trusted library allocation
|
page read and write
|
||
DFA000
|
stack
|
page read and write
|
||
669E000
|
stack
|
page read and write
|
||
1420000
|
heap
|
page read and write
|
||
5B60000
|
heap
|
page read and write
|
||
15A0000
|
trusted library allocation
|
page read and write
|
||
3223000
|
trusted library allocation
|
page read and write
|
||
5686000
|
trusted library allocation
|
page read and write
|
||
2FCC000
|
stack
|
page read and write
|
||
4288000
|
trusted library allocation
|
page read and write
|
||
566B000
|
trusted library allocation
|
page read and write
|
||
15B3000
|
trusted library allocation
|
page read and write
|
||
1610000
|
trusted library allocation
|
page read and write
|
||
5AE0000
|
trusted library allocation
|
page execute and read and write
|
||
313E000
|
stack
|
page read and write
|
||
802E000
|
stack
|
page read and write
|
||
13B0000
|
trusted library allocation
|
page read and write
|
||
73F0000
|
trusted library allocation
|
page read and write
|
||
4128000
|
trusted library allocation
|
page read and write
|
||
1609000
|
heap
|
page read and write
|
||
6550000
|
trusted library allocation
|
page read and write
|
||
7F150000
|
trusted library allocation
|
page execute and read and write
|
||
567E000
|
trusted library allocation
|
page read and write
|
||
30C4000
|
trusted library allocation
|
page read and write
|
||
758E000
|
stack
|
page read and write
|
||
7EF0000
|
heap
|
page read and write
|
||
7440000
|
trusted library allocation
|
page execute and read and write
|
||
743E000
|
stack
|
page read and write
|
||
41E1000
|
trusted library allocation
|
page read and write
|
||
56C0000
|
trusted library allocation
|
page read and write
|
||
30EF000
|
stack
|
page read and write
|
||
1640000
|
trusted library allocation
|
page read and write
|
||
73F5000
|
trusted library allocation
|
page read and write
|
||
12F7000
|
stack
|
page read and write
|
||
5732000
|
trusted library allocation
|
page read and write
|
||
15BD000
|
trusted library allocation
|
page execute and read and write
|
||
812E000
|
stack
|
page read and write
|
||
FE0000
|
heap
|
page read and write
|
||
16BE000
|
stack
|
page read and write
|
||
748E000
|
stack
|
page read and write
|
||
3132000
|
trusted library allocation
|
page read and write
|
||
3156000
|
trusted library allocation
|
page read and write
|
||
56E0000
|
trusted library allocation
|
page read and write
|
||
54FE000
|
trusted library allocation
|
page read and write
|
||
5CD0000
|
heap
|
page read and write
|
||
6A98000
|
heap
|
page read and write
|
||
1683000
|
heap
|
page read and write
|
||
874E000
|
stack
|
page read and write
|
||
6EA0000
|
heap
|
page read and write
|
||
322B000
|
trusted library allocation
|
page read and write
|
||
1416000
|
heap
|
page read and write
|
||
168C000
|
heap
|
page read and write
|
||
324A000
|
trusted library allocation
|
page read and write
|
||
56B5000
|
trusted library allocation
|
page read and write
|
||
5833000
|
heap
|
page read and write
|
||
15E0000
|
heap
|
page read and write
|
||
5664000
|
trusted library allocation
|
page read and write
|
||
6E8C000
|
stack
|
page read and write
|
||
319D000
|
trusted library allocation
|
page read and write
|
||
550D000
|
trusted library allocation
|
page read and write
|
||
689C000
|
stack
|
page read and write
|
||
5B50000
|
trusted library allocation
|
page read and write
|
||
5B2B000
|
stack
|
page read and write
|
||
54EE000
|
trusted library allocation
|
page read and write
|
||
5512000
|
trusted library allocation
|
page read and write
|
||
5AD0000
|
trusted library allocation
|
page read and write
|
||
15D2000
|
trusted library allocation
|
page read and write
|
||
15B0000
|
trusted library allocation
|
page read and write
|
||
5B20000
|
trusted library allocation
|
page read and write
|
||
5B45000
|
heap
|
page read and write
|
||
1630000
|
trusted library allocation
|
page read and write
|
||
319B000
|
trusted library allocation
|
page read and write
|
||
5730000
|
trusted library allocation
|
page read and write
|
||
6B60000
|
heap
|
page read and write
|
||
42A8000
|
trusted library allocation
|
page read and write
|
||
55A4000
|
heap
|
page read and write
|
||
1613000
|
trusted library allocation
|
page execute and read and write
|
||
40C8000
|
trusted library allocation
|
page read and write
|
||
66A0000
|
trusted library allocation
|
page read and write
|
||
A7DE000
|
stack
|
page read and write
|
||
699C000
|
stack
|
page read and write
|
||
521B000
|
stack
|
page read and write
|
||
6D8C000
|
stack
|
page read and write
|
||
3255000
|
trusted library allocation
|
page read and write
|
||
41E8000
|
trusted library allocation
|
page read and write
|
||
6A38000
|
heap
|
page read and write
|
||
15A4000
|
trusted library allocation
|
page read and write
|
||
59C0000
|
heap
|
page execute and read and write
|
||
65BE000
|
stack
|
page read and write
|
||
345F000
|
trusted library allocation
|
page read and write
|
||
15DB000
|
trusted library allocation
|
page execute and read and write
|
||
348F000
|
trusted library allocation
|
page read and write
|
||
164A000
|
trusted library allocation
|
page execute and read and write
|
||
4148000
|
trusted library allocation
|
page read and write
|
||
69DC000
|
stack
|
page read and write
|
||
5AC0000
|
heap
|
page read and write
|
||
568D000
|
trusted library allocation
|
page read and write
|
||
140E000
|
stack
|
page read and write
|
||
54EB000
|
trusted library allocation
|
page read and write
|
||
79A2000
|
trusted library allocation
|
page read and write
|
||
55B0000
|
heap
|
page read and write
|
||
5950000
|
trusted library allocation
|
page read and write
|
||
6B50000
|
trusted library allocation
|
page read and write
|
||
66B0000
|
trusted library allocation
|
page execute and read and write
|
||
6B80000
|
trusted library allocation
|
page execute and read and write
|
||
130C000
|
stack
|
page read and write
|
||
1440000
|
heap
|
page read and write
|
||
6566000
|
trusted library allocation
|
page read and write
|
||
61C9000
|
heap
|
page read and write
|
||
59A0000
|
heap
|
page read and write
|
||
4009000
|
trusted library allocation
|
page read and write
|
||
42E8000
|
trusted library allocation
|
page read and write
|
||
32E2000
|
trusted library allocation
|
page read and write
|
||
5520000
|
trusted library allocation
|
page read and write
|
||
57F0000
|
trusted library allocation
|
page execute and read and write
|
||
6A20000
|
heap
|
page read and write
|
||
6110000
|
heap
|
page read and write
|
||
42C8000
|
trusted library allocation
|
page read and write
|
||
A8DF000
|
stack
|
page read and write
|
||
34AE000
|
trusted library allocation
|
page read and write
|
||
1413000
|
heap
|
page read and write
|
||
3259000
|
trusted library allocation
|
page read and write
|
||
134D000
|
stack
|
page read and write
|
||
3070000
|
trusted library allocation
|
page read and write
|
||
146B000
|
heap
|
page read and write
|
||
5501000
|
trusted library allocation
|
page read and write
|
||
5800000
|
trusted library allocation
|
page execute and read and write
|
||
4048000
|
trusted library allocation
|
page read and write
|
||
339B000
|
trusted library allocation
|
page read and write
|
||
59B0000
|
trusted library allocation
|
page read and write
|
||
54D0000
|
trusted library allocation
|
page read and write
|
||
5740000
|
heap
|
page read and write
|
||
1445000
|
heap
|
page read and write
|
||
31D0000
|
heap
|
page read and write
|
||
54E0000
|
trusted library allocation
|
page read and write
|
||
9147000
|
trusted library allocation
|
page read and write
|
||
167B000
|
heap
|
page read and write
|
||
F7A000
|
stack
|
page read and write
|
||
317D000
|
stack
|
page read and write
|
||
17F0000
|
trusted library allocation
|
page read and write
|
||
65C0000
|
trusted library allocation
|
page read and write
|
||
5930000
|
trusted library section
|
page readonly
|
||
E40000
|
unkown
|
page readonly
|
||
1600000
|
trusted library allocation
|
page read and write
|
||
6B40000
|
heap
|
page read and write
|
||
158E000
|
stack
|
page read and write
|
||
4068000
|
trusted library allocation
|
page read and write
|
||
654E000
|
stack
|
page read and write
|
||
183E000
|
stack
|
page read and write
|
||
5830000
|
heap
|
page read and write
|
||
2F6E000
|
stack
|
page read and write
|
||
6556000
|
trusted library allocation
|
page read and write
|
||
128E000
|
stack
|
page read and write
|
||
1627000
|
heap
|
page read and write
|
||
5506000
|
trusted library allocation
|
page read and write
|
||
4168000
|
trusted library allocation
|
page read and write
|
||
3199000
|
trusted library allocation
|
page read and write
|
||
5B81000
|
heap
|
page read and write
|
||
4FE8000
|
trusted library allocation
|
page read and write
|
||
6FAD000
|
stack
|
page read and write
|
||
517D000
|
stack
|
page read and write
|
||
1655000
|
trusted library allocation
|
page execute and read and write
|
||
5ACD000
|
stack
|
page read and write
|
||
15D0000
|
trusted library allocation
|
page read and write
|
||
1150000
|
heap
|
page read and write
|
||
16B0000
|
heap
|
page read and write
|
||
665E000
|
stack
|
page read and write
|
||
5ABC000
|
stack
|
page read and write
|
||
341B000
|
trusted library allocation
|
page read and write
|
||
15C0000
|
trusted library allocation
|
page read and write
|
||
1390000
|
trusted library allocation
|
page read and write
|
||
786F000
|
stack
|
page read and write
|
||
531C000
|
stack
|
page read and write
|
||
3107000
|
trusted library allocation
|
page read and write
|
||
4237000
|
trusted library allocation
|
page read and write
|
||
3306000
|
trusted library allocation
|
page read and write
|
||
41C8000
|
trusted library allocation
|
page read and write
|
||
55A0000
|
heap
|
page read and write
|
||
1847000
|
heap
|
page read and write
|
||
6560000
|
trusted library allocation
|
page read and write
|
||
7F50000
|
heap
|
page read and write
|
||
54F2000
|
trusted library allocation
|
page read and write
|
||
1469000
|
heap
|
page read and write
|
||
4248000
|
trusted library allocation
|
page read and write
|
||
165B000
|
trusted library allocation
|
page execute and read and write
|
||
15C2000
|
trusted library allocation
|
page read and write
|
||
1652000
|
trusted library allocation
|
page read and write
|
||
40F0000
|
trusted library allocation
|
page read and write
|
||
31C0000
|
trusted library allocation
|
page read and write
|
||
1409000
|
heap
|
page read and write
|
||
582C000
|
stack
|
page read and write
|
||
4228000
|
trusted library allocation
|
page read and write
|
||
146E000
|
heap
|
page read and write
|
||
617D000
|
heap
|
page read and write
|
||
13C0000
|
trusted library allocation
|
page read and write
|
||
864C000
|
stack
|
page read and write
|
||
1590000
|
trusted library allocation
|
page read and write
|
||
61C5000
|
heap
|
page read and write
|
||
E42000
|
unkown
|
page readonly
|
||
1623000
|
heap
|
page read and write
|
||
4108000
|
trusted library allocation
|
page read and write
|
||
5B50000
|
heap
|
page read and write
|
||
1670000
|
trusted library allocation
|
page read and write
|
||
163D000
|
trusted library allocation
|
page execute and read and write
|
||
15CA000
|
trusted library allocation
|
page execute and read and write
|
||
15A3000
|
trusted library allocation
|
page execute and read and write
|
||
5B5C000
|
trusted library allocation
|
page read and write
|
||
348A000
|
trusted library allocation
|
page read and write
|
||
2F70000
|
trusted library allocation
|
page execute and read and write
|
||
304F000
|
trusted library allocation
|
page read and write
|
||
1614000
|
trusted library allocation
|
page read and write
|
||
1240000
|
heap
|
page read and write
|
||
73A0000
|
trusted library allocation
|
page execute and read and write
|
||
31B0000
|
trusted library allocation
|
page read and write
|
||
7F60000
|
heap
|
page read and write
|
||
1621000
|
heap
|
page read and write
|
||
154E000
|
stack
|
page read and write
|
||
650D000
|
stack
|
page read and write
|
||
76F0000
|
trusted library section
|
page read and write
|
||
7F52000
|
heap
|
page read and write
|
||
592C000
|
stack
|
page read and write
|
||
40E8000
|
trusted library allocation
|
page read and write
|
||
145E000
|
heap
|
page read and write
|
||
1616000
|
heap
|
page read and write
|
||
41A8000
|
trusted library allocation
|
page read and write
|
||
2FD0000
|
heap
|
page read and write
|
||
5530000
|
trusted library allocation
|
page read and write
|
||
16C7000
|
heap
|
page read and write
|
||
42D3000
|
trusted library allocation
|
page read and write
|
||
1840000
|
heap
|
page read and write
|
||
7DF0000
|
heap
|
page read and write
|
||
1650000
|
trusted library allocation
|
page read and write
|
||
884C000
|
stack
|
page read and write
|
||
1657000
|
trusted library allocation
|
page execute and read and write
|
||
17DF000
|
stack
|
page read and write
|
||
73E0000
|
trusted library allocation
|
page read and write
|
||
FD0000
|
heap
|
page read and write
|
||
40A8000
|
trusted library allocation
|
page read and write
|
||
5720000
|
heap
|
page read and write
|
||
1642000
|
trusted library allocation
|
page read and write
|
||
15DC000
|
stack
|
page read and write
|
||
7050000
|
trusted library allocation
|
page read and write
|
||
3270000
|
trusted library allocation
|
page read and write
|
||
5A6E000
|
stack
|
page read and write
|
||
3FE1000
|
trusted library allocation
|
page read and write
|
||
1230000
|
heap
|
page read and write
|
||
400000
|
remote allocation
|
page execute and read and write
|
||
7040000
|
heap
|
page read and write
|
||
3377000
|
trusted library allocation
|
page read and write
|
||
12CE000
|
stack
|
page read and write
|
||
31A0000
|
trusted library allocation
|
page execute and read and write
|
||
56A0000
|
trusted library allocation
|
page read and write
|
There are 296 hidden memdumps, click here to show them.