IOC Report
server.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\server.exe
C:\Users\user\Desktop\server.exe
malicious

URLs

Name
IP
Malicious
http://62.173.142.81/drew/jYbXWzWzJZxMu/0bg7r4Fu/6FNvR8ClwgmU3K9eRFHwCZL/V4EUt2dyR_/2FQulKxQ_2Fze8eK3/SMO5Yl_2BPuQ/_2B49snui7_/2FLOe3Ko6as8fp/MUgDOSfZU6Dpa1I7o0j5G/VqQD_2Bumqn4Myfm/_2BQL_2BhR1HszY/TocLn3p8sVmtowm_2B/6OTZGgFfO/9qQJL2OyxO9xGC6r3J84/1Hw_2BXN3URNn_2FRiR/XmeYSNTVgprtLxVnjmtt4h/zq1_2FWGL3ouV/wUq7EqUY/xzZwPH0P8XChlht1ulV1_2F/xZqgBgTuj5/XO.jlk
62.173.142.81
malicious
http://checklist.skype.com/drew/atXnm1oMbB5L4Ntl5FgyfO/iEVslQ74abg_2/FW6J1whk/ejMAXerGRdbDd_2FjU9B8H
unknown
http://62.173.142.81/drew/jYbXWzWzJZxMu/0bg7r4Fu/6FNvR8ClwgmU3K9eRFHwCZL/V4EUt2dyR_/2FQulKxQ_2Fze8eK
unknown
http://62.173.142.81/
unknown
http://62.173
unknown
http://checklist.skype.com/
unknown
http://checklist.skype.com/drew/atXnm1oMbB5L4Ntl5Fgy
unknown

Domains

Name
IP
Malicious
checklist.skype.com
unknown

IPs

IP
Domain
Country
Malicious
62.173.142.81
unknown
Russian Federation
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
2D28000
heap
page read and write
malicious
2D28000
heap
page read and write
malicious
2D28000
heap
page read and write
malicious
2D28000
heap
page read and write
malicious
2D28000
heap
page read and write
malicious
2D28000
heap
page read and write
malicious
2D28000
heap
page read and write
malicious
2D28000
heap
page read and write
malicious
2D28000
heap
page read and write
malicious
225E000
stack
page read and write
21EB222E000
heap
page read and write
FCF3AAC000
stack
page read and write
21EB1FA0000
heap
page read and write
22DD000
stack
page read and write
8DEDAFC000
stack
page read and write
FCF44FD000
stack
page read and write
49F000
unkown
page readonly
F9946FF000
stack
page read and write
1A2AEE92000
heap
page read and write
376F000
stack
page read and write
21EB226B000
heap
page read and write
27078E00000
heap
page read and write
1A465802000
heap
page read and write
21EB2264000
heap
page read and write
21EB2249000
heap
page read and write
23FA0550000
heap
page read and write
2C74F845000
heap
page read and write
1A2AF76F000
heap
page read and write
18977E67000
heap
page read and write
1A2AF722000
heap
page read and write
1A2AF823000
heap
page read and write
23FA0658000
heap
page read and write
1A465813000
heap
page read and write
21EB2244000
heap
page read and write
257BF112000
heap
page read and write
257BE660000
heap
page read and write
2E3F000
stack
page read and write
5C0FE7E000
stack
page read and write
257BE800000
heap
page read and write
23FA0702000
heap
page read and write
18977E13000
heap
page read and write
23FA0602000
heap
page read and write
2C74F82E000
heap
page read and write
1A2AED80000
trusted library allocation
page read and write
18977E00000
heap
page read and write
2F20000
heap
page read and write
21EB2255000
heap
page read and write
1F0000
heap
page read and write
2C74F740000
heap
page read and write
2748000
heap
page read and write
23FA0666000
heap
page read and write
C6633CE000
stack
page read and write
C66387E000
stack
page read and write
1A2AF791000
heap
page read and write
873000
heap
page read and write
7C81B7C000
stack
page read and write
23FA062A000
heap
page read and write
18977E02000
heap
page read and write
346F000
stack
page read and write
27078C30000
heap
page read and write
680000
heap
page read and write
285C000
stack
page read and write
23FA2070000
trusted library allocation
page read and write
21EB2802000
trusted library allocation
page read and write
386E000
stack
page read and write
21EB2267000
heap
page read and write
21EB223A000
heap
page read and write
21EB223D000
heap
page read and write
87F000
heap
page read and write
1A2AEF8E000
heap
page read and write
2280000
heap
page read and write
1A2AEE69000
heap
page read and write
7C8217C000
stack
page read and write
257BE889000
heap
page read and write
28DE000
stack
page read and write
790000
unclassified section
page read and write
1A2AF827000
heap
page read and write
1A2AF7CA000
heap
page read and write
21EB2274000
heap
page read and write
5C0FB7B000
stack
page read and write
356A000
stack
page read and write
21EB2240000
heap
page read and write
1A2AEE75000
heap
page read and write
1A465650000
heap
page read and write