IOC Report
z91dxf____.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\z91dxf____.exe
"C:\Users\user\Desktop\z91dxf____.exe"

Memdumps

Base Address
Regiontype
Protect
Malicious
419000
unkown
page readonly
400000
unkown
page readonly
66E000
heap
page read and write
401000
unkown
page execute read
9D000
stack
page read and write
660000
heap
page read and write
560000
heap
page read and write
421000
unkown
page readonly
19D000
stack
page read and write
1F0000
heap
page read and write
417000
unkown
page write copy
418000
unkown
page read and write
85F000
stack
page read and write
500000
heap
page read and write
419000
unkown
page readonly
66A000
heap
page read and write
400000
unkown
page readonly
401000
unkown
page execute read
417000
unkown
page write copy
416000
unkown
page readonly
54E000
stack
page read and write
95F000
stack
page read and write
5AE000
stack
page read and write
421000
unkown
page readonly
416000
unkown
page readonly
There are 15 hidden memdumps, click here to show them.