IOC Report
LisectAVT_2403002C_59.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\LisectAVT_2403002C_59.exe
"C:\Users\user\Desktop\LisectAVT_2403002C_59.exe"
malicious

URLs

Name
IP
Malicious
edurestunningcrackyow.fun
malicious
turkeyunlikelyofw.shop
malicious
problemregardybuiwo.fun
malicious
lighterepisodeheighte.fun
malicious
pooreveningfuseor.pwo
malicious
detectordiscusser.shop
malicious
technologyenterdo.shop
malicious
associationokeo.shop
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
420000
unkown
page readonly
464000
unkown
page readonly
F7A000
heap
page read and write
F94000
heap
page read and write
2BD0000
heap
page read and write
456000
unkown
page readonly
D90000
heap
page read and write
456000
unkown
page readonly
462000
unkown
page read and write
F70000
heap
page read and write
F7E000
heap
page read and write
421000
unkown
page execute read
D3D000
stack
page read and write
EC0000
heap
page read and write
459000
unkown
page write copy
421000
unkown
page execute read
E70000
heap
page read and write
C3C000
stack
page read and write
459000
unkown
page write copy
420000
unkown
page readonly
464000
unkown
page readonly
There are 11 hidden memdumps, click here to show them.