IOC Report
QFDXInkpM8.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\QFDXInkpM8.exe
"C:\Users\user\Desktop\QFDXInkpM8.exe"
malicious

IPs

IP
Domain
Country
Malicious
77.91.77.81
unknown
Russian Federation
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
2C1000
unkown
page execute read
malicious
2C1000
unkown
page execute read
malicious
280000
heap
page read and write
19E000
stack
page read and write
2C0000
unkown
page readonly
2C0000
unkown
page readonly
BA0000
heap
page read and write
9D000
stack
page read and write
612000
unkown
page execute and write copy
612000
unkown
page execute and write copy