IOCReport

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\SecuriteInfo.com.Variant.Zusy.394472.15672.exe
'C:\Users\user\Desktop\SecuriteInfo.com.Variant.Zusy.394472.15672.exe'
malicious
C:\Users\user\Desktop\SecuriteInfo.com.Variant.Zusy.394472.15672.exe
'C:\Users\user\Desktop\SecuriteInfo.com.Variant.Zusy.394472.15672.exe'
malicious

URLs

Name
IP
Malicious
www.yjhlgg.com/grve/
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
400000
unkown image
page execute and read and write
malicious
600000
unkown
page execute and read and write
malicious
400000
unkown
page execute and read and write
malicious
19E000
unkown
page read and write
clean
401000
unkown image
page execute read
clean
23F0000
unkown
page read and write
clean
7FF5E343C000
unkown
page readonly
clean
5C0000
unkown
page read and write
clean
7FF5E3524000
unkown
page readonly
clean
2CAF9513000
unkown
page read and write
clean
2CAF944D000
unkown
page read and write
clean
E4EB4FF000
unkown
page read and write
clean
930000
unkown
page readonly
clean
7FF5E3373000
unkown
page readonly
clean
250F000
unkown
page read and write
clean
2CAF9230000
heap default
page read and write
clean
2CAF9402000
unkown
page read and write
clean
7FF5E341D000
unkown
page readonly
clean
250F000
unkown
page read and write
clean
92E000
unkown
page read and write
clean
7FF5E33CB000
unkown
page readonly
clean
2376000
unkown
page read and write
clean
7FF5E3514000
unkown
page readonly
clean
7FF5E3096000
unkown
page readonly
clean
19C000
unkown
page read and write
clean
403000
unkown image
page readonly
clean
430000
heap default
page read and write
clean
7FF5E3434000
unkown
page readonly
clean
2CAF9429000
unkown
page read and write
clean
9D000
unkown
page read and write
clean
580000
heap default
page read and write
clean
7FF5E3546000
unkown
page readonly
clean
2260000
unkown
page read and write
clean
2F7000
unkown
page read and write
clean
403000
unkown image
page readonly
clean
250F000
unkown
page read and write
clean
681000
unkown
page read and write
clean
250F000
unkown
page read and write
clean
7FF5E34DB000
unkown
page readonly
clean
584000
unkown
page read and write
clean
C6B000
unkown
page execute and read and write
clean
7FF5E3507000
unkown
page readonly
clean
250B000
unkown
page read and write
clean
ADB000
unkown
page execute and read and write
clean
2CAF9240000
unkown
page readonly
clean
250F000
unkown
page read and write
clean
2CAF9508000
unkown
page read and write
clean
63A000
heap default
page read and write
clean
5B0000
heap private
page read and write
clean
E4EB1FB000
unkown
page read and write
clean
7FF5E353E000
unkown
page readonly
clean
9C0000
unkown
page execute and read and write
clean
440000
unkown
page readonly
clean
400000
unkown image
page readonly
clean
430000
unkown
page read and write
clean
7FF5E33CE000
unkown
page readonly
clean
2376000
unkown
page read and write
clean
2CAF9455000
unkown
page read and write
clean
9D000
unkown
page read and write
clean
2260000
unkown
page read and write
clean
E4EACCB000
unkown
page read and write
clean
7FF5E35BA000
unkown
page readonly
clean
2CAF91D0000
heap private
page read and write
clean
4A0000
unkown
page readonly
clean
7FF5E354D000
unkown
page readonly
clean
7FF5E3538000
unkown
page readonly
clean
7FF5E34BC000
unkown
page readonly
clean
2376000
unkown
page read and write
clean
250B000
unkown
page read and write
clean
2DC000
unkown
page read and write
clean
7FF5E33B1000
unkown
page readonly
clean
589000
unkown
page read and write
clean
7FF5E3321000
unkown
page readonly
clean
400000
unkown image
page readonly
clean
2CAF9A02000
unkown
page read and write
clean
494000
unkown
page read and write
clean
2CAF948A000
unkown
page read and write
clean
7FF5E34BA000
unkown
page readonly
clean
58E000
unkown
page read and write
clean
2CAF9500000
unkown
page read and write
clean
7FF5E351A000
unkown
page readonly
clean
630000
heap default
page read and write
clean
7FF5E34D0000
unkown
page readonly
clean
E4EB3FF000
unkown
page read and write
clean
2260000
unkown
page read and write
clean
2376000
unkown
page read and write
clean
54E000
unkown
page read and write
clean
23F0000
unkown
page read and write
clean
23F0000
unkown
page read and write
clean
7FF5E35B4000
unkown
page readonly
clean
E4EB2F7000
unkown
page read and write
clean
2260000
unkown
page read and write
clean
2260000
unkown
page read and write
clean
7FF5E30A5000
unkown
page readonly
clean
2376000
unkown
page read and write
clean
23F0000
unkown
page read and write
clean
2CAF948D000
unkown
page read and write
clean
2CAF946C000
unkown
page read and write
clean
82D000
unkown
page read and write
clean
58F000
unkown
page read and write
clean
58F000
unkown
page read and write
clean
7FF5E34FF000
unkown
page readonly
clean
250B000
unkown
page read and write
clean
250F000
unkown
page read and write
clean
ADF000
unkown
page execute and read and write
clean
58E000
unkown
page read and write
clean
2CAF944A000
unkown
page read and write
clean
401000
unkown image
page execute read
clean
7FF5E3549000
unkown
page readonly
clean
2CAF9413000
unkown
page read and write
clean
2250000
heap private
page read and write
clean
2376000
unkown
page read and write
clean
401000
unkown image
page execute read
clean
420000
unkown
page readonly
clean
403000
unkown image
page readonly
clean
7FF5E35C1000
unkown
page readonly
clean
7FF5E352F000
unkown
page readonly
clean
250B000
unkown
page read and write
clean
400000
unkown image
page readonly
clean
23F0000
unkown
page read and write
clean
2CAF9600000
unkown
page readonly
clean
2CAF93F0000
unkown
page readonly
clean
2CAF943C000
unkown
page read and write
clean
7FF5E2DD2000
unkown
page readonly
clean
410000
unkown
page readonly
clean
2F3000
unkown
page read and write
clean
E4EADCE000
unkown
page read and write
clean
7FF5E34E7000
unkown
page readonly
clean
C6F000
unkown
page execute and read and write
clean
250F000
unkown
page read and write
clean
250B000
unkown
page read and write
clean
2CAF9F40000
unkown
page readonly
clean
2CAF9502000
unkown
page read and write
clean
490000
heap default
page read and write
clean
2CAF9400000
unkown
page read and write
clean
7FF5E34CA000
unkown
page readonly
clean
1F0000
unkown
page read and write
clean
7FF5E3423000
unkown
page readonly
clean
7FF5E3247000
unkown
page readonly
clean
250B000
unkown
page read and write
clean
23F0000
unkown
page read and write
clean
2376000
unkown
page read and write
clean
23F0000
unkown
page read and write
clean
2260000
unkown
page read and write
clean
250B000
unkown
page read and write
clean
E4EAD4E000
unkown
page read and write
clean
7FF5E3090000
unkown
page readonly
clean
2260000
unkown
page read and write
clean
2CAF9990000
unkown
page read and write
clean
7FF5E34FC000
unkown
page readonly
clean
E4EB0F5000
unkown
page read and write
clean
2CAF9310000
unkown
page readonly
clean
2CAF9450000
unkown
page read and write
clean
7FF5E34CE000
unkown
page readonly
clean
2CAF9C00000
unkown
page readonly
clean
7FF5E35C2000
unkown
page readonly
clean
7FF5E34D5000
unkown
page readonly
clean
680000
unkown
page read and write
clean
400000
unkown image
page readonly
clean
7FF5E2D2D000
unkown
page readonly
clean
590000
unkown
page execute and read and write
clean
There are 151 hidden memdumps, click here to show them.