IOC Report
askeyhiddemon.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\askeyhiddemon.exe
"C:\Users\user\Desktop\askeyhiddemon.exe"

Memdumps

Base Address
Regiontype
Protect
Malicious
420000
heap
page read and write
21F0000
heap
page read and write
470000
heap
page read and write
47A000
heap
page read and write
408000
unkown
page readonly
22C0000
heap
page read and write
40B000
unkown
page write copy
409000
unkown
page write copy
5D0000
heap
page read and write
40F000
unkown
page read and write
1F0000
heap
page read and write
408000
unkown
page readonly
40B000
unkown
page read and write
401000
unkown
page execute read
47E000
heap
page read and write
400000
unkown
page readonly
9B000
stack
page read and write
412000
unkown
page readonly
23B0000
heap
page read and write
19D000
stack
page read and write
There are 10 hidden memdumps, click here to show them.