IOC Report
kas77c5mDL.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\kas77c5mDL.exe
"C:\Users\user\Desktop\kas77c5mDL.exe"

URLs

Name
IP
Malicious
http://schemas.micr
unknown

Memdumps

Base Address
Regiontype
Protect
Malicious
85E000
unkown
page read and write
71AE000
stack
page read and write
7A3000
unkown
page readonly
4E1000
unkown
page execute read
78AF000
stack
page read and write
56BE000
stack
page read and write
7360000
heap
page read and write
53C0000
heap
page read and write
52A0000
heap
page read and write
5380000
heap
page read and write
53C0000
heap
page read and write
85E000
unkown
page write copy
53C1000
heap
page read and write
71C0000
heap
page read and write
53BE000
heap
page read and write
4EE9000
stack
page read and write
4E0000
unkown
page readonly
538D000
heap
page read and write
53AE000
heap
page read and write
A1C0000
trusted library allocation
page read and write
53C8000
heap
page read and write
4FEC000
stack
page read and write
7020000
heap
page read and write
4E0000
unkown
page readonly
4E1000
unkown
page execute read
716E000
stack
page read and write
53B0000
heap
page read and write
5250000
heap
page read and write
5393000
heap
page read and write
53C0000
heap
page read and write
861000
unkown
page read and write
55BE000
stack
page read and write
5394000
heap
page read and write
86D000
unkown
page readonly
53BD000
heap
page read and write
53B8000
heap
page read and write
6F50000
heap
page read and write
53AF000
heap
page read and write
56C0000
heap
page read and write
860000
unkown
page write copy
53C0000
heap
page read and write
6EC0000
heap
page read and write
557E000
stack
page read and write
53AE000
heap
page read and write
86C000
unkown
page write copy
702A000
heap
page read and write
71C4000
heap
page read and write
53D2000
heap
page read and write
86C000
unkown
page readonly
529D000
stack
page read and write
7025000
heap
page read and write
53C7000
heap
page read and write
7A3000
unkown
page readonly
77AF000
stack
page read and write
53C1000
heap
page read and write
53B8000
heap
page read and write
53DD000
heap
page read and write
6F90000
heap
page read and write
There are 48 hidden memdumps, click here to show them.