IOC Report
4QamAQhoxB.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\4QamAQhoxB.exe
"C:\Users\user\Desktop\4QamAQhoxB.exe"
malicious

Domains

Name
IP
Malicious
stevenhead.ddns.net
157.20.182.5
malicious
booosisnhead.ddns.net
unknown
malicious

IPs

IP
Domain
Country
Malicious
157.20.182.5
stevenhead.ddns.net
unknown
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
1832000
unkown
page readonly
malicious
4521000
trusted library allocation
page read and write
malicious
457F000
trusted library allocation
page read and write
27B9000
heap
page read and write
272E000
heap
page read and write
6A65000
trusted library allocation
page read and write
5528000
trusted library allocation
page read and write
2747000
heap
page read and write
4390000
trusted library allocation
page read and write
66FE000
stack
page read and write
2954000
trusted library allocation
page read and write
232C000
stack
page read and write
2232000
unkown
page readonly
2BE0000
heap
page read and write
71BE000
stack
page read and write
6A42000
trusted library allocation
page read and write
707E000
stack
page read and write
2B82000
trusted library allocation
page read and write
6A57000
trusted library allocation
page read and write
2960000
heap
page read and write
5525000
trusted library allocation
page read and write
E30000
unkown
page readonly
43FE000
stack
page read and write
2B73000
trusted library allocation
page read and write
6B06000
heap
page read and write
2B92000
trusted library allocation
page read and write
2BD0000
trusted library allocation
page read and write
23E5000
heap
page read and write
2953000
trusted library allocation
page execute and read and write
703E000
stack
page read and write
451E000
stack
page read and write
6F3E000
stack
page read and write
4572000
trusted library allocation
page read and write
6A90000
heap
page read and write
2B80000
trusted library allocation
page read and write
2717000
heap
page read and write
2B87000
trusted library allocation
page execute and read and write
23F0000
heap
page read and write
5521000
trusted library allocation
page read and write
2390000
heap
page read and write
2710000
heap
page read and write
6BB0000
heap
page execute and read and write
2B8A000
trusted library allocation
page execute and read and write
717E000
stack
page read and write
26F9000
stack
page read and write
2292000
unkown
page readonly
457A000
trusted library allocation
page read and write
273A000
heap
page read and write
4574000
trusted library allocation
page read and write
2BC0000
trusted library allocation
page execute and read and write
6A63000
trusted library allocation
page read and write
6A70000
heap
page read and write
23E0000
heap
page read and write
2783000
heap
page read and write
E32000
unkown
page readonly
65FE000
stack
page read and write
43B0000
heap
page read and write
2940000
trusted library allocation
page read and write
4569000
trusted library allocation
page read and write
295D000
trusted library allocation
page execute and read and write
2B9B000
trusted library allocation
page execute and read and write
456C000
trusted library allocation
page read and write
2BB0000
trusted library allocation
page read and write
6BA0000
trusted library allocation
page read and write
2B97000
trusted library allocation
page execute and read and write
2B90000
trusted library allocation
page read and write
4410000
heap
page execute and read and write
6BC0000
heap
page read and write
72BF000
stack
page read and write
There are 59 hidden memdumps, click here to show them.