IOC Report
mwxZCB2H4p.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\mwxZCB2H4p.exe
"C:\Users\user\Desktop\mwxZCB2H4p.exe"
malicious

URLs

Name
IP
Malicious
http://www.7-zip.org/8
unknown

Memdumps

Base Address
Regiontype
Protect
Malicious
4CE000
heap
page read and write
30000000
unkown
page readonly
4BE000
stack
page read and write
470000
heap
page read and write
30001000
unkown
page execute read
4C0000
heap
page read and write
202F000
stack
page read and write
30001000
unkown
page execute read
30000000
unkown
page readonly
44E000
stack
page read and write
450000
heap
page read and write
400000
heap
page read and write
30022000
unkown
page readonly
9C000
stack
page read and write
1F0000
heap
page read and write
19D000
stack
page read and write
4CA000
heap
page read and write
30022000
unkown
page readonly
78F000
stack
page read and write
There are 9 hidden memdumps, click here to show them.