Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Users\user\Desktop\4QamAQhoxB.exe
|
"C:\Users\user\Desktop\4QamAQhoxB.exe"
|
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
stevenhead.ddns.net
|
157.20.182.5
|
||
booosisnhead.ddns.net
|
unknown
|
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
157.20.182.5
|
stevenhead.ddns.net
|
unknown
|
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
1832000
|
unkown
|
page readonly
|
||
4521000
|
trusted library allocation
|
page read and write
|
||
457F000
|
trusted library allocation
|
page read and write
|
||
27B9000
|
heap
|
page read and write
|
||
272E000
|
heap
|
page read and write
|
||
6A65000
|
trusted library allocation
|
page read and write
|
||
5528000
|
trusted library allocation
|
page read and write
|
||
2747000
|
heap
|
page read and write
|
||
4390000
|
trusted library allocation
|
page read and write
|
||
66FE000
|
stack
|
page read and write
|
||
2954000
|
trusted library allocation
|
page read and write
|
||
232C000
|
stack
|
page read and write
|
||
2232000
|
unkown
|
page readonly
|
||
2BE0000
|
heap
|
page read and write
|
||
71BE000
|
stack
|
page read and write
|
||
6A42000
|
trusted library allocation
|
page read and write
|
||
707E000
|
stack
|
page read and write
|
||
2B82000
|
trusted library allocation
|
page read and write
|
||
6A57000
|
trusted library allocation
|
page read and write
|
||
2960000
|
heap
|
page read and write
|
||
5525000
|
trusted library allocation
|
page read and write
|
||
E30000
|
unkown
|
page readonly
|
||
43FE000
|
stack
|
page read and write
|
||
2B73000
|
trusted library allocation
|
page read and write
|
||
6B06000
|
heap
|
page read and write
|
||
2B92000
|
trusted library allocation
|
page read and write
|
||
2BD0000
|
trusted library allocation
|
page read and write
|
||
23E5000
|
heap
|
page read and write
|
||
2953000
|
trusted library allocation
|
page execute and read and write
|
||
703E000
|
stack
|
page read and write
|
||
451E000
|
stack
|
page read and write
|
||
6F3E000
|
stack
|
page read and write
|
||
4572000
|
trusted library allocation
|
page read and write
|
||
6A90000
|
heap
|
page read and write
|
||
2B80000
|
trusted library allocation
|
page read and write
|
||
2717000
|
heap
|
page read and write
|
||
2B87000
|
trusted library allocation
|
page execute and read and write
|
||
23F0000
|
heap
|
page read and write
|
||
5521000
|
trusted library allocation
|
page read and write
|
||
2390000
|
heap
|
page read and write
|
||
2710000
|
heap
|
page read and write
|
||
6BB0000
|
heap
|
page execute and read and write
|
||
2B8A000
|
trusted library allocation
|
page execute and read and write
|
||
717E000
|
stack
|
page read and write
|
||
26F9000
|
stack
|
page read and write
|
||
2292000
|
unkown
|
page readonly
|
||
457A000
|
trusted library allocation
|
page read and write
|
||
273A000
|
heap
|
page read and write
|
||
4574000
|
trusted library allocation
|
page read and write
|
||
2BC0000
|
trusted library allocation
|
page execute and read and write
|
||
6A63000
|
trusted library allocation
|
page read and write
|
||
6A70000
|
heap
|
page read and write
|
||
23E0000
|
heap
|
page read and write
|
||
2783000
|
heap
|
page read and write
|
||
E32000
|
unkown
|
page readonly
|
||
65FE000
|
stack
|
page read and write
|
||
43B0000
|
heap
|
page read and write
|
||
2940000
|
trusted library allocation
|
page read and write
|
||
4569000
|
trusted library allocation
|
page read and write
|
||
295D000
|
trusted library allocation
|
page execute and read and write
|
||
2B9B000
|
trusted library allocation
|
page execute and read and write
|
||
456C000
|
trusted library allocation
|
page read and write
|
||
2BB0000
|
trusted library allocation
|
page read and write
|
||
6BA0000
|
trusted library allocation
|
page read and write
|
||
2B97000
|
trusted library allocation
|
page execute and read and write
|
||
2B90000
|
trusted library allocation
|
page read and write
|
||
4410000
|
heap
|
page execute and read and write
|
||
6BC0000
|
heap
|
page read and write
|
||
72BF000
|
stack
|
page read and write
|
There are 59 hidden memdumps, click here to show them.