Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Users\user\Desktop\sj-pulse-ui.exe
|
"C:\Users\user\Desktop\sj-pulse-ui.exe"
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
https://github.com/rsms/inter)InterRegular3.019;RSMS;Inter-RegularInter
|
unknown
|
||
http://scripts.sil.org/OFLhttp://scripts.sil.org/OFLRalewayThinRalewayRomanWeightExtraLight
|
unknown
|
||
http://theleagueofmoveabletype.comhttp://pixelspread.comThis
|
unknown
|
||
http://ns.useplus.org/ldf/xmp/1.0/
|
unknown
|
||
http://iptc.org/std/Iptc4xmpExt/2008-02-29/
|
unknown
|
||
http://pixelspread.comThis
|
unknown
|
||
http://www.gimp.org/xmp/
|
unknown
|
||
https://rsms.me/This
|
unknown
|
||
http://scripts.sil.org/OFLhttp://sc
|
unknown
|
||
http://scripts.sil.org/OFLhttp://scripts.sil.org/OFLOpen
|
unknown
|
||
http://scripts.sil.org/OFLhttp://scripts.sil.org/OFLRalewayThinRalewayRomanWeightExtraLightLightMedi
|
unknown
|
There are 1 hidden URLs, click here to show them.
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
1FCE8D16000
|
heap
|
page read and write
|
||
7FF7DFE64000
|
unkown
|
page write copy
|
||
7FF7DFE62000
|
unkown
|
page write copy
|
||
7FF7DFD41000
|
unkown
|
page execute read
|
||
7FF7DFE62000
|
unkown
|
page write copy
|
||
7FF7DFD41000
|
unkown
|
page execute read
|
||
1FCE8D1C000
|
heap
|
page read and write
|
||
7FF7DFD40000
|
unkown
|
page readonly
|
||
996717C000
|
stack
|
page read and write
|
||
99674FE000
|
stack
|
page read and write
|
||
7FF7DFE15000
|
unkown
|
page readonly
|
||
7FF7DFE63000
|
unkown
|
page read and write
|
||
99675FF000
|
stack
|
page read and write
|
||
1FCE8CD0000
|
heap
|
page read and write
|
||
99676FF000
|
stack
|
page read and write
|
||
7FF7DFD40000
|
unkown
|
page readonly
|
||
1FCE8D10000
|
heap
|
page read and write
|
||
7FF7DFE72000
|
unkown
|
page readonly
|
||
1FCE8CC0000
|
heap
|
page read and write
|
||
7FF7DFE12000
|
unkown
|
page readonly
|
||
7FF7DFE72000
|
unkown
|
page readonly
|
||
7FF7DFE12000
|
unkown
|
page read and write
|
There are 12 hidden memdumps, click here to show them.