IOC Report

loading gif

Files

File Path
Type
Category
Malicious
9u4xTDR5bG.exe
PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
initial sample
malicious
C:\Users\user\AppData\Local\Temp\Bosporus5.dat
DOS executable (COM)
dropped
C:\Users\user\AppData\Local\Temp\gamer.txt
ASCII text, with very long lines, with no line terminators
dropped
C:\Users\user\AppData\Local\Temp\nsm4CBF.tmp\System.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\9u4xTDR5bG.exe
"C:\Users\user\Desktop\9u4xTDR5bG.exe"
malicious

URLs

Name
IP
Malicious
https://bangladeshshoecity.com/images/2w
malicious
http://nsis.sf.net/NSIS_ErrorError
unknown

Memdumps

Base Address
Regiontype
Protect
Malicious
2A50000
trusted library allocation
page execute and read and write
malicious
1BC42170000
heap
page read and write
240E1029000
unkown
page read and write
2096EC08000
trusted library allocation
page read and write
1BC42970000
remote allocation
page read and write
141A2629000
unkown
page read and write
28D7E9AA000
unkown
page read and write
28D7E918000
unkown
page read and write
8DEE8F8000
stack
page read and write
1FC67C000
stack
page read and write
24015D80000
heap
page read and write
28D7E98A000
unkown
page read and write
28D7E029000
unkown
page read and write
2096EA4D000
unkown
page read and write
EC6854B000
stack
page read and write
929CFDA000
stack
page read and write
1E15E760000
heap
page read and write
240E10C4000
unkown
page read and write
929D4FD000
stack
page read and write
20969477000
unkown
page read and write
2096945A000
unkown
page read and write
28D7E967000
unkown
page read and write
28D7E113000
unkown
page read and write
2096EA5F000
unkown
page read and write
28D7E102000
unkown
page read and write
28D7E0E0000
unkown
page read and write
1BC42202000
unkown
page read and write
23E40A53000
unkown
page read and write
3D1A4FF000
stack
page read and write
787000
heap
page read and write
2096E990000
trusted library allocation
page read and write
417827E000
stack
page read and write
240E106B000
unkown
page read and write
929D47F000
stack
page read and write
28D7E802000
unkown
page read and write
1E63F560000
heap
page read and write
28D7E065000
unkown
page read and write
2F50000
trusted library allocation
page read and write
2096A800000
trusted library allocation
page read and write
1151CE72000
unkown
page read and write
2096EC21000
trusted library allocation
page read and write
28D7E986000
unkown
page read and write
23E40A13000
unkown
page read and write
209693F0000
trusted library allocation
page read and write
23E40A4A000
unkown
page read and write
20969413000
unkown
page read and write
20969360000
unkown
page read and write
24015F73000
heap
page read and write
28D7E971000
unkown
page read and write
1E15E862000
unkown
page read and write
30000
heap
page read and write
24016200000
trusted library allocation
page read and write
28D7E95C000
unkown
page read and write
141A2580000
unkown
page read and write
19A000
stack
page read and write
1E15E861000
unkown
page read and write
24015FBD000
heap
page read and write
4177DFB000
stack
page read and write
1E15E900000
unkown
page read and write
4177C7E000
stack
page read and write
240E0FA0000
unkown
page read and write
1151CE13000
unkown
page read and write
20969D02000
unkown
page read and write
24016D50000
trusted library allocation
page read and write
141A2631000
unkown
page read and write
209692C0000
heap
page read and write
28D7E98A000
unkown
page read and write
1FC6FE000
stack
page read and write
28D7E969000
unkown
page read and write
42C000
unkown
page read and write
28D7E9BF000
unkown
page read and write
CDB7B7F000
stack
page read and write
1E15E800000
unkown
page read and write
24015FB3000
heap
page read and write
24015D90000
trusted library allocation
page read and write
3D1A977000
stack
page read and write
104647F000
stack
page read and write
EC68AFE000
stack
page read and write
28D7E98C000
unkown
page read and write
240161E0000
trusted library allocation
page read and write
1E15E913000
unkown
page read and write
3D1A87F000
stack
page read and write
2096EADD000
unkown
page read and write
28D7E982000
unkown
page read and write
1E63F210000
heap
page read and write
28D7E969000
unkown
page read and write
417817F000
stack
page read and write
240E1900000
unkown
page read and write
1151CE02000
unkown
page read and write
73201000
unkown
page execute read
28D7E98D000
unkown
page read and write
3D1A77B000
stack
page read and write
240E1802000
unkown
page read and write
28D7E03C000
unkown
page read and write
28D7E960000
unkown
page read and write
18810C00000
unkown
page read and write
28D7E953000
unkown
page read and write
28D7E966000
unkown
page read and write
18810D08000
unkown
page read and write
18810C82000
unkown
page read and write
141A266A000
unkown
page read and write
1FCBFE000
stack
page read and write
28D7E986000
unkown
page read and write
28D7E05D000
unkown
page read and write
F687A7B000
stack
page read and write
2096EE20000
trusted library allocation
page read and write
1E63F3A0000
heap
page read and write
615000
heap
page read and write
28D7E9BF000
unkown
page read and write
417807E000
stack
page read and write
1BC42A02000
unkown
page read and write
D5E34FE000
stack
page read and write
23E40A4C000
unkown
page read and write
400000
unkown
page readonly
104576C000
stack
page read and write
28D7E99D000
unkown
page read and write
1BC42229000
unkown
page read and write
28D7E0A8000
unkown
page read and write
28D7E984000
unkown
page read and write
20969D00000
unkown
page read and write
24016D00000
trusted library allocation
page read and write
20969D58000
unkown
page read and write
104627F000
stack
page read and write
28D7E986000
unkown
page read and write
209693F3000
trusted library allocation
page read and write
2096EC60000
trusted library allocation
page read and write
24015FC4000
heap
page read and write
1BC42970000
remote allocation
page read and write
28D7E982000
unkown
page read and write
20969496000
unkown
page read and write
1BC42200000
unkown
page read and write
23E40A29000
unkown
page read and write
28D7E0B2000
unkown
page read and write
141A2644000
unkown
page read and write
28D7E96E000
unkown
page read and write
141A263A000
unkown
page read and write
408000
unkown
page readonly
2096947A000
unkown
page read and write
2096E800000
trusted library allocation
page read and write
141A2661000
unkown
page read and write
240E1013000
unkown
page read and write
CDB7AFB000
stack
page read and write
2096EB00000
unkown
page read and write
2096EA2F000
unkown
page read and write
1E15E790000
unkown
page read and write
18810B50000
heap
page read and write
CDB711B000
stack
page read and write
18810C71000
unkown
page read and write
20969400000
unkown
page read and write
28D7E982000
unkown
page read and write
2096EAAB000
unkown
page read and write
18810C54000
unkown
page read and write
1BC42940000
unkown
page read and write
24015F9D000
heap
page read and write
2096E9D4000
trusted library allocation
page read and write
240E1040000
unkown
page read and write
2096EADD000
unkown
page read and write
22CE000
stack
page read and write
28D7E959000
unkown
page read and write
20969C15000
unkown
page read and write
28D7E000000
unkown
page read and write
1BC42258000
unkown
page read and write
23E40A4F000
unkown
page read and write
141A2657000
unkown
page read and write
28D7E956000
unkown
page read and write
28D7E087000
unkown
page read and write
28D7E966000
unkown
page read and write
141A2702000
unkown
page read and write
28D7E95C000
unkown
page read and write
240E10CA000
unkown
page read and write
24016220000
trusted library allocation
page read and write
8DEF1FC000
stack
page read and write
28D7E993000
unkown
page read and write
401000
unkown
page execute read
D5E33F9000
stack
page read and write
141A263E000
unkown
page read and write
24016235000
heap
page read and write
28D7E057000
unkown
page read and write
D5E327B000
stack
page read and write
2096EC00000
trusted library allocation
page read and write
8DEF3FF000
stack
page read and write
310E000
stack
page read and write
18810C4A000
unkown
page read and write
1151CF13000
unkown
page read and write
104637F000
stack
page read and write
28D7EE02000
unkown
page read and write
20969472000
unkown
page read and write
2096E870000
trusted library allocation
page read and write
3D1A57F000
stack
page read and write
28D7E995000
unkown
page read and write
209694A5000
unkown
page read and write
1E63F1D0000
heap
page read and write
24016230000
heap
page read and write
28D7E071000
unkown
page read and write
23E40900000
heap
page read and write
28D7E98B000
unkown
page read and write
240161F0000
trusted library allocation
page read and write
28D7E984000
unkown
page read and write
2096EB02000
unkown
page read and write
141A2613000
unkown
page read and write
141A2658000
unkown
page read and write
23E40A7E000
unkown
page read and write
1E15E829000
unkown
page read and write
1E15E6F0000
heap
page read and write
F6881FB000
stack
page read and write
240E1065000
unkown
page read and write
28D7E054000
unkown
page read and write
141A264E000
unkown
page read and write
28D7E9A5000
unkown
page read and write
73204000
unkown
page readonly
787000
heap
page read and write
9B93E7D000
stack
page read and write
240E1085000
unkown
page read and write
28D7DF10000
heap
page read and write
28D7E05A000
unkown
page read and write
23E40B08000
unkown
page read and write
2096EAA9000
unkown
page read and write
24016AB0000
trusted library allocation
page read and write
28D7E058000
unkown
page read and write
28D7E98A000
unkown
page read and write
41779DC000
stack
page read and write
141A2660000
unkown
page read and write
28D7E982000
unkown
page read and write
8DEEAFA000
stack
page read and write
1E15E84F000
unkown
page read and write
77E000
heap
page read and write
28D7E960000
unkown
page read and write
28D7E790000
remote allocation
page read and write
1E15E700000
heap
page read and write
9B93AFE000
stack
page read and write
2096E990000
trusted library allocation
page read and write
78B000
heap
page read and write
28D7EE02000
unkown
page read and write
28D7E986000
unkown
page read and write
23E40A51000
unkown
page read and write
1045B7B000
stack
page read and write
24015F9D000
heap
page read and write
2096943E000
unkown
page read and write
20969330000
heap
page read and write
18810BC0000
heap
page read and write
2096EB06000
unkown
page read and write
28D7E055000
unkown
page read and write
28D7E0C0000
unkown
page read and write
28D7E98A000
unkown
page read and write
141A265F000
unkown
page read and write
1151CE78000
unkown
page read and write
28D7E9A6000
unkown
page read and write
4177EFB000
stack
page read and write
2096EAE4000
unkown
page read and write
44C000
unkown
page readonly
23E40A89000
unkown
page read and write
28D7E98A000
unkown
page read and write
2096EAA3000
unkown
page read and write
1151D602000
unkown
page read and write
23E40A57000
unkown
page read and write
2096EACA000
unkown
page read and write
1E63F1FF000
heap
page read and write
2890000
heap
page read and write
2096EAF5000
unkown
page read and write
CDB719E000
stack
page read and write
28D7E962000
unkown
page read and write
A40000
heap
page read and write
1FC9FE000
stack
page read and write
28D7EE02000
unkown
page read and write
3D1AA7F000
stack
page read and write
1E15E83C000
unkown
page read and write
23E40A3C000
unkown
page read and write
224E000
stack
page read and write
28D7E9A8000
unkown
page read and write
18810C51000
unkown
page read and write
20969502000
unkown
page read and write
F687EFF000
stack
page read and write
288F000
stack
page read and write
141A2646000
unkown
page read and write
3D1AB7E000
stack
page read and write
28D7E04C000
unkown
page read and write
929D3FA000
stack
page read and write
2096EADD000
unkown
page read and write
2096EA40000
unkown
page read and write
18810B60000
heap
page read and write
141A267C000
unkown
page read and write
23E40990000
unkown
page read and write
141A2664000
unkown
page read and write
24016D50000
trusted library allocation
page read and write
240E1102000
unkown
page read and write
401000
unkown
page execute read
9B93FFF000
stack
page read and write
1151CF02000
unkown
page read and write
141A2E02000
unkown
page read and write
24015F57000
heap
page read and write
141A263D000
unkown
page read and write
2096EAFD000
unkown
page read and write
EC68CFE000
stack
page read and write
240E10B9000
unkown
page read and write
1E63F1FF000
heap
page read and write
28D7E963000
unkown
page read and write
141A2420000
heap
page read and write
28D7E9A6000
unkown
page read and write
1E15F002000
unkown
page read and write
24016CF0000
trusted library allocation
page read and write
F6885FE000
stack
page read and write
1151CE40000
unkown
page read and write
1BC42970000
remote allocation
page read and write
2096EACB000
unkown
page read and write
F68817D000
stack
page read and write
1E15E864000
unkown
page read and write
20969BF0000
trusted library allocation
page read and write
28D7E993000
unkown
page read and write
28D7E0C7000
unkown
page read and write
1045D7D000
stack
page read and write
28D7E99F000
unkown
page read and write
2330000
trusted library allocation
page read and write
28D7E961000
unkown
page read and write
28D7E96F000
unkown
page read and write
141A2600000
unkown
page read and write
2096E880000
trusted library allocation
page read and write
24016CE0000
heap
page readonly
73206000
unkown
page readonly
747000
heap
page read and write
560000
trusted library allocation
page read and write
28D7E050000
unkown
page read and write
28D7E982000
unkown
page read and write
23E40B00000
unkown
page read and write
2096EC60000
trusted library allocation
page read and write
278F000
stack
page read and write
28D7E99D000
unkown
page read and write
20969500000
unkown
page read and write
141A2675000
unkown
page read and write
2320000
trusted library allocation
page read and write
20969D18000
unkown
page read and write
2096ECF0000
remote allocation
page read and write
2344000
heap
page read and write
1151CCA0000
heap
page read and write
1151CE29000
unkown
page read and write
F687E7C000
stack
page read and write
28D7E99B000
unkown
page read and write
2096EC70000
trusted library allocation
page read and write
D5E3479000
stack
page read and write
24015FBB000
heap
page read and write
28D7E982000
unkown
page read and write
18810C4D000
unkown
page read and write
1045C7F000
stack
page read and write
28D7E99D000
unkown
page read and write
2096E9A0000
trusted library allocation
page read and write
23E40B13000
unkown
page read and write
1BC421E0000
heap
page read and write
141A2645000
unkown
page read and write
28D7E064000
unkown
page read and write
2096E9A0000
trusted library allocation
page read and write
28D7E961000
unkown
page read and write
240E10E0000
unkown
page read and write
1E63F565000
heap
page read and write
20969429000
unkown
page read and write
240E0EA0000
heap
page read and write
28D7E9A4000
unkown
page read and write
28D7E06E000
unkown
page read and write
F687FFF000
stack
page read and write
24016239000
heap
page read and write
1E15E859000
unkown
page read and write
740000
heap
page read and write
141A265C000
unkown
page read and write
23E40A58000
unkown
page read and write
1FC8FE000
stack
page read and write
2096948F000
unkown
page read and write
141A265B000
unkown
page read and write
141A266E000
unkown
page read and write
28D7E95A000
unkown
page read and write
1E15E85E000
unkown
page read and write
28D7DF70000
heap
page read and write
28D7E961000
unkown
page read and write
28D7E0A8000
unkown
page read and write
240E1113000
unkown
page read and write
1E63F3C0000
heap
page read and write
28D7DFA0000
unkown
page read and write
141A2662000
unkown
page read and write
99000
stack
page read and write
300D000
stack
page read and write
141A2668000
unkown
page read and write
28D7EE02000
unkown
page read and write
141A265A000
unkown
page read and write
23E41202000
unkown
page read and write
28D7E98A000
unkown
page read and write
28D7E04E000
unkown
page read and write
28D7E0F9000
unkown
page read and write
400000
unkown
page readonly
EC6887E000
stack
page read and write
1BC42240000
unkown
page read and write
240161F0000
trusted library allocation
page read and write
442000
unkown
page read and write
3D1A47C000
stack
page read and write
40A000
unkown
page read and write
28D7E982000
unkown
page read and write
1E63F160000
heap
page read and write
28D7E97E000
unkown
page read and write
141A2410000
heap
page read and write
28A0000
heap
page read and write
28D7E95C000
unkown
page read and write
18810C83000
unkown
page read and write
24015F95000
heap
page read and write
4177CFE000
stack
page read and write
28D7E963000
unkown
page read and write
24015EE0000
heap
page read and write
28D7E984000
unkown
page read and write
F68807C000
stack
page read and write
18810C29000
unkown
page read and write
1151CD00000
heap
page read and write
141A2667000
unkown
page read and write
1E15E87B000
unkown
page read and write
F6882FD000
stack
page read and write
141A267F000
unkown
page read and write
2096E9C0000
trusted library allocation
page read and write
929D2FF000
stack
page read and write
20969D13000
unkown
page read and write
28D7E06E000
unkown
page read and write
1151CC90000
heap
page read and write
CDB77F7000
stack
page read and write
104617E000
stack
page read and write
1151CE6B000
unkown
page read and write
20969D59000
unkown
page read and write
2096E9D0000
trusted library allocation
page read and write
240E0E30000
heap
page read and write
789000
heap
page read and write
1E63F1F6000
heap
page read and write
28D7E9A6000
unkown
page read and write
2096ECC0000
trusted library allocation
page read and write
28D7E924000
unkown
page read and write
440000
unkown
page read and write
73200000
unkown
page readonly
8DEEDFB000
stack
page read and write
20969C00000
unkown
page read and write
18810C3C000
unkown
page read and write
209694B2000
unkown
page read and write
141A2480000
heap
page read and write
18810D00000
unkown
page read and write
28D7DF00000
heap
page read and write
28D7E98C000
unkown
page read and write
240E1932000
unkown
page read and write
28D7E790000
remote allocation
page read and write
28D7E05C000
unkown
page read and write
1151CE5C000
unkown
page read and write
28D7E964000
unkown
page read and write
28D7E962000
unkown
page read and write
44C000
unkown
page readonly
EC68A7B000
stack
page read and write
20969D18000
unkown
page read and write
141A2641000
unkown
page read and write
8DEEBFE000
stack
page read and write
2340000
heap
page read and write
28D7E97E000
unkown
page read and write
209693D1000
trusted library allocation
page read and write
20969C02000
unkown
page read and write
141A267E000
unkown
page read and write
F6884FD000
stack
page read and write
CDB78FE000
stack
page read and write
18810D02000
unkown
page read and write
18810C02000
unkown
page read and write
610000
heap
page read and write
1E63F20F000
heap
page read and write
141A265E000
unkown
page read and write
929D379000
stack
page read and write
2096EC0E000
trusted library allocation
page read and write
774000
heap
page read and write
2096ECD0000
trusted library allocation
page read and write
2280000
heap
page read and write
141A266C000
unkown
page read and write
CDB75FF000
stack
page read and write
2096947C000
unkown
page read and write
240E1000000
unkown
page read and write
D5E35FB000
stack
page read and write
28D7E900000
unkown
page read and write
141A2676000
unkown
page read and write
28D7E790000
remote allocation
page read and write
1E15E908000
unkown
page read and write
28D7E96F000
unkown
page read and write
18810C8D000
unkown
page read and write
209692D0000
heap
page read and write
20969514000
unkown
page read and write
2096EAE1000
unkown
page read and write
2096EDE0000
trusted library allocation
page read and write
20969500000
unkown
page read and write
18810D13000
unkown
page read and write
141A2642000
unkown
page read and write
2096EAB5000
unkown
page read and write
24015F9D000
heap
page read and write
1BC42213000
unkown
page read and write
28D7E969000
unkown
page read and write
18810C4E000
unkown
page read and write
2096EA16000
unkown
page read and write
9B93D7E000
stack
page read and write
2096EC60000
trusted library allocation
page read and write
24015FC4000
heap
page read and write
CDB79F7000
stack
page read and write
28D7E0EA000
unkown
page read and write
1BC42302000
unkown
page read and write
9B93A7C000
stack
page read and write
A66000
heap
page read and write
23E40A52000
unkown
page read and write
141A2663000
unkown
page read and write
A60000
heap
page read and write
28D7E966000
unkown
page read and write
24015F50000
heap
page read and write
1151D460000
unkown
page read and write
1E15E852000
unkown
page read and write
2096ECF0000
remote allocation
page read and write
2096ECA0000
trusted library allocation
page read and write
28D7E9AF000
unkown
page read and write
28D7E982000
unkown
page read and write
28D7E96D000
unkown
page read and write
28D7E9B6000
unkown
page read and write
F6883FE000
stack
page read and write
141A2670000
unkown
page read and write
784000
heap
page read and write
20969502000
unkown
page read and write
2096A3E0000
trusted library allocation
page read and write
4177FF7000
stack
page read and write
EC68DFF000
stack
page read and write
EC68BF7000
stack
page read and write
CDB747E000
stack
page read and write
28D7E013000
unkown
page read and write
1E63F1E6000
heap
page read and write
28D7E967000
unkown
page read and write
1FCAFE000
stack
page read and write
23E40A55000
unkown
page read and write
8DEE9FB000
stack
page read and write
28D7E988000
unkown
page read and write
18810C13000
unkown
page read and write
2096ECF0000
remote allocation
page read and write
28D7E108000
unkown
page read and write
2096E9C0000
trusted library allocation
page read and write
240E1063000
unkown
page read and write
28D7E9CA000
unkown
page read and write
EC685CE000
stack
page read and write
1E15E887000
unkown
page read and write
1E63F1E1000
heap
page read and write
8DEECFB000
stack
page read and write
2096EB02000
unkown
page read and write
24015FBD000
heap
page read and write
28D7EE63000
unkown
page read and write
18810BF0000
unkown
page read and write
1E15E813000
unkown
page read and write
104657E000
stack
page read and write
28D7E9B1000
unkown
page read and write
28D7E969000
unkown
page read and write
28D7E997000
unkown
page read and write
23E40A00000
unkown
page read and write
2096EA21000
unkown
page read and write
9B93CFD000
stack
page read and write
D5E3579000
stack
page read and write
23E408F0000
heap
page read and write
1151CE00000
unkown
page read and write
28D7E116000
unkown
page read and write
1E63F1FF000
heap
page read and write
23E40A6D000
unkown
page read and write
20969507000
unkown
page read and write
28D7EE02000
unkown
page read and write
1045F7F000
stack
page read and write
1E15E902000
unkown
page read and write
24015EC0000
heap
page read and write
24016240000
trusted library allocation
page read and write
2096EB04000
unkown
page read and write
8DEE49C000
stack
page read and write
1BC42180000
heap
page read and write
929D27F000
stack
page read and write
28D7E04D000
unkown
page read and write
141A2647000
unkown
page read and write
2096EC24000
trusted library allocation
page read and write
CDB76F8000
stack
page read and write
141A2665000
unkown
page read and write
1E63F1F7000
heap
page read and write
141A2685000
unkown
page read and write
9B935FB000
stack
page read and write
2096EA00000
unkown
page read and write
20969D04000
unkown
page read and write
2096EB04000
unkown
page read and write
28D7EE00000
unkown
page read and write
770000
heap
page read and write
28D7E98A000
unkown
page read and write
40A000
unkown
page write copy
2096EACB000
unkown
page read and write
28D7E97C000
unkown
page read and write
23E40B02000
unkown
page read and write
23E40960000
heap
page read and write
408000
unkown
page readonly
104607D000
stack
page read and write
431000
unkown
page read and write
240E0E40000
heap
page read and write
1FC77E000
stack
page read and write
2096ECB0000
trusted library allocation
page read and write
18811402000
unkown
page read and write
1E15E85C000
unkown
page read and write
2096EAA0000
unkown
page read and write
2096E9D0000
trusted library allocation
page read and write
2096EAFF000
unkown
page read and write
28D7E9AA000
unkown
page read and write
There are 584 hidden memdumps, click here to show them.