IOC Report
07c09ba5a84f619e5b83a54298ffc58d20b00f14399c7a94b7f02b70efc60f35_dump.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\07c09ba5a84f619e5b83a54298ffc58d20b00f14399c7a94b7f02b70efc60f35_dump.exe
"C:\Users\user\Desktop\07c09ba5a84f619e5b83a54298ffc58d20b00f14399c7a94b7f02b70efc60f35_dump.exe"
malicious

URLs

Name
IP
Malicious
contintnetksows.shop
malicious
ellaboratepwsz.xyzu
malicious
potterryisiw.shop
malicious
penetratedpoopp.xyz
malicious
swellfrrgwwos.xyz
malicious
towerxxuytwi.xyzd
malicious
foodypannyjsud.shop
malicious
pedestriankodwu.xyz
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
877000
heap
page read and write
47F000
unkown
page readonly
440000
unkown
page readonly
690000
heap
page read and write
440000
unkown
page readonly
5FC000
stack
page read and write
650000
heap
page read and write
872000
heap
page read and write
850000
heap
page read and write
441000
unkown
page execute read
47F000
unkown
page readonly
4FC000
stack
page read and write
48A000
unkown
page read and write
482000
unkown
page write copy
640000
heap
page read and write
494000
unkown
page readonly
85E000
heap
page read and write
441000
unkown
page execute read
482000
unkown
page write copy
494000
unkown
page readonly
85A000
heap
page read and write
There are 11 hidden memdumps, click here to show them.