IOC Report
EahLhB4Bby.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\EahLhB4Bby.exe
"C:\Users\user\Desktop\EahLhB4Bby.exe"
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
400000
unkown
page readonly
9D000
stack
page read and write
40F000
unkown
page readonly
61E000
heap
page read and write
61A000
heap
page read and write
401000
unkown
page execute and write copy
40F000
unkown
page readonly
411000
unkown
page readonly
411000
unkown
page readonly
430000
heap
page read and write
1D0000
heap
page read and write
19D000
stack
page read and write
510000
heap
page read and write
610000
heap
page read and write
401000
unkown
page execute and write copy
400000
unkown
page readonly
There are 6 hidden memdumps, click here to show them.