IOC Report

loading gif

Files

File Path
Type
Category
Malicious
SecuriteInfo.com.Trojan.InjectNET.14.3934.exe
PE32+ executable (GUI) x86-64 (stripped to external PDB), for MS Windows
initial sample
malicious
C:\Users\user\AppData\Local\Microsoft\CLR_v4.0\UsageLogs\conhost.exe.log
ASCII text, with CRLF line terminators
dropped
clean

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\SecuriteInfo.com.Trojan.InjectNET.14.3934.exe
'C:\Users\user\Desktop\SecuriteInfo.com.Trojan.InjectNET.14.3934.exe'
malicious
C:\Windows\System32\conhost.exe
'C:\Windows\System32\conhost.exe' 'C:\Users\user\Desktop\SecuriteInfo.com.Trojan.InjectNET.14.3934.exe'
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
7FF5FFFE2000
unkown image
page readonly
clean
7DF535790000
unkown image
page readonly
clean
1BA55CE0000
unkown
page read and write
clean
7FF52B91A000
unkown image
page readonly
clean
26C917F000
stack
page read and write
clean
5EE000
unkown image
page readonly
clean
7FF52B8F1000
unkown image
page readonly
clean
1BA55AF0000
heap default
page read and write
clean
1BA57830000
unkown
page read and write
clean
30000
unkown image
page readonly
clean
1BA55B58000
heap default
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
1BA55D10000
unkown
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
1BA55D40000
unkown
page read and write
clean
7FF52B1CA000
unkown image
page readonly
clean
1BA55D10000
unkown
page read and write
clean
26C92FD000
stack
page read and write
clean
7FF52B67C000
unkown image
page readonly
clean
1BA57840000
unkown
page read and write
clean
1BA557A0000
unkown image
page readonly
clean
26C90FE000
stack
page read and write
clean
7FFD03E45000
unkown
page read and write
clean
7DF4335D0000
unkown
page execute and read and write
clean
7DF433660000
unkown image
page readonly
clean
B5A000
unkown
page read and write
clean
1BA557A0000
unkown image
page readonly
clean
1BA55D10000
unkown
page read and write
clean
1BA578A0000
heap private
page read and write
clean
1BA55D30000
unkown
page execute and read and write
clean
7FFD03EE6000
unkown
page read and write
clean
7FF52B922000
unkown image
page readonly
clean
1BA678B9000
unkown
page read and write
clean
7FFD03E45000
unkown
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
1BA6FF60000
unkown
page read and write
clean
7FFD03E34000
unkown
page read and write
clean
1BA55D10000
unkown
page read and write
clean
7FF52B9A1000
unkown image
page readonly
clean
7FF52B93D000
unkown image
page readonly
clean
7FFD03F16000
unkown
page execute and read and write
clean
7FF52B9A7000
unkown image
page readonly
clean
403000
unkown image
page readonly
clean
1BA55CE5000
unkown
page read and write
clean
1BA56300000
unkown image
page readonly
clean
1BA55CE0000
unkown
page read and write
clean
1BA57860000
unkown
page read and write
clean
7FF52B0A5000
unkown image
page readonly
clean
1BA55D60000
heap private
page execute and read and write
clean
1BA678C0000
unkown
page read and write
clean
7FF5FFFE0000
unkown image
page readonly
clean
7FF52B5CA000
unkown image
page readonly
clean
1BA578B1000
unkown
page read and write
clean
7FFD03E33000
unkown
page execute and read and write
clean
401000
unkown image
page execute read
clean
7FF52B8FF000
unkown image
page readonly
clean
1BA55C70000
unkown
page read and write
clean
1BA55790000
unkown image
page read and write
clean
7FFD03E30000
unkown
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
7DF5357B0000
unkown image
page readonly
clean
7FF52B9A4000
unkown image
page readonly
clean
7FFD03F60000
unkown
page read and write
clean
1BA55C10000
unkown
page read and write
clean
7FF52B095000
unkown image
page readonly
clean
1BA55800000
unkown
page execute and read and write
clean
7FF52B9AD000
unkown image
page readonly
clean
26C8E7C000
stack
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
1BA557D0000
unkown image
page readonly
clean
7FFD03E30000
unkown
page read and write
clean
7FF52B94E000
unkown image
page readonly
clean
1BA55D60000
heap private
page execute and read and write
clean
1BA57850000
unkown
page read and write
clean
1BA57840000
unkown
page read and write
clean
1BA55BF0000
unkown
page read and write
clean
7FF52B5CA000
unkown image
page readonly
clean
1BA55CE0000
unkown
page read and write
clean
26C8F7E000
stack
page read and write
clean
7FFD03E3D000
unkown
page execute and read and write
clean
1BA55CB5000
heap private
page read and write
clean
7DF4335B0000
unkown
page execute and read and write
clean
7FF52B68B000
unkown image
page readonly
clean
7DF4335C0000
unkown
page execute and read and write
clean
1BA70150000
unkown image
page read and write
clean
1BA55AC0000
unkown
page read and write
clean
1BA55AF9000
heap default
page read and write
clean
7FF5FFFF0000
unkown image
page readonly
clean
1BA55D40000
unkown
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
7DF5357A2000
unkown image
page readonly
clean
1BA55D85000
heap private
page read and write
clean
1BA55F80000
unkown image
page readonly
clean
1BA55D10000
unkown
page read and write
clean
7FF5FFFD2000
unkown image
page readonly
clean
7FF52B949000
unkown image
page readonly
clean
1BA55CB0000
heap private
page read and write
clean
7FFD03F60000
unkown
page read and write
clean
1BA578A0000
heap private
page read and write
clean
7FFD04082000
unkown
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
1BA55C50000
unkown
page read and write
clean
26C8FFE000
stack
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
7FF52B19F000
unkown image
page readonly
clean
7FF52B916000
unkown image
page readonly
clean
1BA55D10000
unkown
page read and write
clean
7FFD03F64000
unkown
page execute and read and write
clean
1BA55AC0000
unkown
page read and write
clean
690000
heap default
page read and write
clean
7FF52B9B7000
unkown image
page readonly
clean
1BA55B2E000
heap default
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
1BA55B5A000
heap default
page read and write
clean
7FF52B0BD000
unkown image
page readonly
clean
7FF52B954000
unkown image
page readonly
clean
1BA55C50000
unkown
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
7FF52B903000
unkown image
page readonly
clean
1BA55D20000
unkown
page read and write
clean
7FF52B9AD000
unkown image
page readonly
clean
7FFD03FF2000
unkown
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
7FF52B8EF000
unkown image
page readonly
clean
7FFD03F5D000
unkown
page execute and read and write
clean
7FF52B9B4000
unkown image
page readonly
clean
7FF52B095000
unkown image
page readonly
clean
1BA56310000
unkown image
page readonly
clean
7FF52B0BD000
unkown image
page readonly
clean
7FF52B9E3000
unkown image
page readonly
clean
5EE000
unkown image
page readonly
clean
7FFD03F5D000
unkown
page execute and read and write
clean
1BA55CE0000
unkown
page read and write
clean
1BA55AF0000
heap default
page read and write
clean
7FF52B0A5000
unkown image
page readonly
clean
7FFD03EE0000
unkown
page read and write
clean
7FFD03EF0000
unkown
page execute and read and write
clean
1BA55CE0000
unkown
page read and write
clean
7FF5FFFF0000
unkown image
page readonly
clean
7FF52B9F7000
unkown image
page readonly
clean
1BA55C80000
unkown
page readonly
clean
1BA55D10000
unkown
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
7FF5FFFD0000
unkown image
page readonly
clean
7FFD03F16000
unkown
page execute and read and write
clean
7FF52B67C000
unkown image
page readonly
clean
7FFD03E33000
unkown
page execute and read and write
clean
7FF52B19F000
unkown image
page readonly
clean
1BA578B1000
unkown
page read and write
clean
7FF52B709000
unkown image
page readonly
clean
1BA55AF9000
heap default
page read and write
clean
1BA55D80000
heap private
page read and write
clean
1BA55CA0000
unkown
page read and write
clean
7FF52B936000
unkown image
page readonly
clean
400000
unkown image
page readonly
clean
26C91FF000
stack
page read and write
clean
7FFD03FF2000
unkown
page read and write
clean
7FFD03F50000
unkown
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
1BA70150000
unkown image
page read and write
clean
1BA55C90000
unkown
page read and write
clean
1BA57880000
unkown
page read and write
clean
7FF52B947000
unkown image
page readonly
clean
7FFD03F66000
unkown
page execute and read and write
clean
1BA55D10000
unkown
page read and write
clean
1BA55D20000
unkown
page read and write
clean
7DF535790000
unkown image
page readonly
clean
1BA57850000
unkown
page read and write
clean
1BA67AAC000
unkown
page read and write
clean
1BA55B5A000
heap default
page read and write
clean
1BA55D20000
unkown
page read and write
clean
403000
unkown image
page readonly
clean
1BA55AFF000
heap default
page read and write
clean
1BA57860000
unkown
page read and write
clean
7FFD04082000
unkown
page read and write
clean
7FF52B93D000
unkown image
page readonly
clean
1BA6F8E0000
unkown
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
7FF52B9B7000
unkown image
page readonly
clean
7FF52B8F1000
unkown image
page readonly
clean
7FF52B903000
unkown image
page readonly
clean
1BA55CE0000
unkown
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
1BA55D10000
unkown
page read and write
clean
10000
unkown image
page read and write
clean
1BA678B1000
unkown
page read and write
clean
1BA55C30000
unkown image
page read and write
clean
26C8EFE000
stack
page read and write
clean
698000
heap default
page read and write
clean
1BA55D50000
unkown
page read and write
clean
26C8E74000
stack
page read and write
clean
7FF52B8EF000
unkown image
page readonly
clean
B40000
heap private
page read and write
clean
1BA5792E000
unkown
page read and write
clean
7FF4FDEA0000
unkown image
page readonly
clean
7DF433660000
unkown image
page readonly
clean
7FF52B9E6000
unkown image
page readonly
clean
7FFD03E3D000
unkown
page execute and read and write
clean
1BA55D90000
unkown
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
7FF52B9A7000
unkown image
page readonly
clean
1BA557B0000
unkown image
page readonly
clean
7FF52B91A000
unkown image
page readonly
clean
1BA55CE0000
unkown
page read and write
clean
1BA55C80000
unkown
page readonly
clean
7FF52B916000
unkown image
page readonly
clean
7FFD03F64000
unkown
page execute and read and write
clean
1BA55D10000
unkown
page read and write
clean
1BA55B1A000
heap default
page read and write
clean
7DF5357A2000
unkown image
page readonly
clean
7FF52B9E6000
unkown image
page readonly
clean
1BA55800000
unkown
page execute and read and write
clean
7FFD03EE0000
unkown
page read and write
clean
1BA55D20000
unkown
page read and write
clean
7FF5FFFE2000
unkown image
page readonly
clean
7FFD03F52000
unkown
page read and write
clean
1BA55D10000
unkown
page read and write
clean
1BA55D10000
unkown
page read and write
clean
1BA55D90000
unkown
page read and write
clean
7FF52B67F000
unkown image
page readonly
clean
1BA56180000
unkown image
page readonly
clean
7FF52B1C3000
unkown image
page readonly
clean
7FF52B1C3000
unkown image
page readonly
clean
7FFD04000000
unkown
page execute and read and write
clean
7FF52B90D000
unkown image
page readonly
clean
1BA55D10000
unkown
page read and write
clean
190000
unkown
page read and write
clean
1BA55D30000
heap private
page execute and read and write
clean
1BA55D10000
unkown
page read and write
clean
1BA57932000
unkown
page read and write
clean
1BA55BA3000
unkown
page read and write
clean
1BA55D20000
unkown
page read and write
clean
1BA55B2E000
heap default
page read and write
clean
1BA55C70000
unkown
page read and write
clean
7FFD03E34000
unkown
page read and write
clean
1BA55CE5000
unkown
page read and write
clean
7FF50DF38000
unkown image
page readonly
clean
1BA55D20000
unkown
page read and write
clean
1BA55CB0000
heap private
page read and write
clean
1BA56180000
unkown image
page readonly
clean
1BA55CB5000
heap private
page read and write
clean
1BA55D10000
unkown
page read and write
clean
7FFD03F50000
unkown
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
7FF52B954000
unkown image
page readonly
clean
7FFD03F68000
unkown
page execute and read and write
clean
7DF535792000
unkown image
page readonly
clean
1BA557B0000
unkown image
page readonly
clean
1BA55BBD000
heap default
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
7FF52B1C7000
unkown image
page readonly
clean
1BA55B95000
unkown
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
7FF52B687000
unkown image
page readonly
clean
1BA55790000
unkown image
page read and write
clean
1BA55D40000
unkown
page read and write
clean
1BA57880000
unkown
page read and write
clean
7FF52B90D000
unkown image
page readonly
clean
7FF52B1C7000
unkown image
page readonly
clean
7FF52B8D4000
unkown image
page readonly
clean
7FFD03EF0000
unkown
page execute and read and write
clean
1BA55D70000
unkown
page read and write
clean
7FF52B9A4000
unkown image
page readonly
clean
7FFD03F66000
unkown
page execute and read and write
clean
1BA55D50000
unkown
page read and write
clean
1BA55B30000
heap default
page read and write
clean
1BA557E0000
unkown image
page readonly
clean
1BA57830000
unkown
page read and write
clean
1BA55D20000
unkown
page read and write
clean
7DF535792000
unkown image
page readonly
clean
7FF52B936000
unkown image
page readonly
clean
1BA55AFF000
heap default
page read and write
clean
5EC000
unkown image
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
7FF52B94E000
unkown image
page readonly
clean
1BA55CE0000
unkown
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
1BA55D80000
heap private
page read and write
clean
1BA55C90000
unkown
page read and write
clean
7DF4335C0000
unkown
page execute and read and write
clean
7FF52B9F2000
unkown image
page readonly
clean
7FF52B1CA000
unkown image
page readonly
clean
7FF52B949000
unkown image
page readonly
clean
26C907D000
stack
page read and write
clean
1BA678B1000
unkown
page read and write
clean
7FF52B9E3000
unkown image
page readonly
clean
1BA55D40000
unkown
page read and write
clean
7FF52B5C6000
unkown image
page readonly
clean
1BA55D50000
unkown
page read and write
clean
170000
unkown
page read and write
clean
1BA55B8A000
unkown
page read and write
clean
7FFD03F52000
unkown
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
7FF52B8FF000
unkown image
page readonly
clean
7FF52B922000
unkown image
page readonly
clean
7FF52B9CA000
unkown image
page readonly
clean
7FF52B5C6000
unkown image
page readonly
clean
7FFD03F70000
unkown
page execute and read and write
clean
1BA55B30000
heap default
page read and write
clean
7FF52B8D4000
unkown image
page readonly
clean
7FFD03EE6000
unkown
page read and write
clean
7FF5FFFD0000
unkown image
page readonly
clean
1BA55CC4000
unkown
page read and write
clean
95F000
stack
page read and write
clean
69B000
heap default
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
1BA55D20000
unkown
page read and write
clean
1BA55CD0000
unkown
page read and write
clean
1BA678B9000
unkown
page read and write
clean
7FFD04000000
unkown
page execute and read and write
clean
1BA55D10000
unkown
page read and write
clean
1BA55B8A000
heap default
page read and write
clean
7FF52B9CA000
unkown image
page readonly
clean
7FFD03F68000
unkown
page execute and read and write
clean
7DF5357B0000
unkown image
page readonly
clean
1BA55C10000
unkown
page read and write
clean
26C8EFE000
stack
page read and write
clean
1BA55D10000
unkown
page read and write
clean
400000
unkown image
page readonly
clean
7FF52B947000
unkown image
page readonly
clean
7FF52B9F7000
unkown image
page readonly
clean
1BA55BC6000
heap default
page read and write
clean
1BA55BF0000
unkown
page read and write
clean
400000
unkown image
page readonly
clean
7DF4335D0000
unkown
page execute and read and write
clean
1BA55B1A000
heap default
page read and write
clean
1BA5787B000
unkown
page read and write
clean
1BA57870000
unkown
page read and write
clean
7FF5FFFE0000
unkown image
page readonly
clean
401000
unkown image
page execute read
clean
1BA56300000
unkown image
page readonly
clean
1BA55B7A000
unkown
page read and write
clean
1BA55D40000
unkown
page read and write
clean
7DF4335B0000
unkown
page execute and read and write
clean
7FF52B9B4000
unkown image
page readonly
clean
1BA5787B000
unkown
page read and write
clean
7DF5357A0000
unkown image
page readonly
clean
1BA55CC0000
unkown
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
1BA55D85000
heap private
page read and write
clean
150000
unkown image
page readonly
clean
1BA55B8C000
unkown
page read and write
clean
26C927E000
stack
page read and write
clean
26C8F7E000
stack
page read and write
clean
1BA557D0000
unkown image
page readonly
clean
7FF5FFFD2000
unkown image
page readonly
clean
1BA55CE0000
unkown
page read and write
clean
1BA55CE0000
unkown
page read and write
clean
1BA57870000
unkown
page read and write
clean
1BA55D20000
unkown
page read and write
clean
7DF5357A0000
unkown image
page readonly
clean
7FF50DF38000
unkown image
page readonly
clean
7FF52B9A1000
unkown image
page readonly
clean
30000
unkown image
page readonly
clean
1BA55F80000
unkown image
page readonly
clean
1BA55D40000
unkown
page read and write
clean
1BA55D10000
unkown
page read and write
clean
7FF52B9F2000
unkown image
page readonly
clean
1BA557E0000
unkown image
page readonly
clean
1BA55D20000
unkown image
page read and write
clean
14D000
unkown
page read and write
clean
7FFD03F70000
unkown
page execute and read and write
clean
There are 356 hidden memdumps, click here to show them.