IOC Report
Shiits.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\Shiits.exe
"C:\Users\user\Desktop\Shiits.exe"
malicious

URLs

Name
IP
Malicious
http://nsis.sf.net/NSIS_ErrorError
unknown

Memdumps

Base Address
Regiontype
Protect
Malicious
480000
heap
page read and write
19A000
stack
page read and write
400000
unkown
page readonly
658000
heap
page read and write
418000
unkown
page read and write
5B0000
heap
page read and write
67F000
heap
page read and write
5A0000
heap
page read and write
94F000
stack
page read and write
640000
heap
page read and write
214E000
stack
page read and write
228E000
stack
page read and write
408000
unkown
page readonly
20F0000
heap
page read and write
59E000
stack
page read and write
400000
unkown
page readonly
22C0000
heap
page read and write
650000
heap
page read and write
270F000
stack
page read and write
437000
unkown
page read and write
457000
unkown
page readonly
40A000
unkown
page write copy
5FE000
stack
page read and write
401000
unkown
page execute read
22B0000
heap
page read and write
84F000
stack
page read and write
224F000
stack
page read and write
40A000
unkown
page read and write
9B000
stack
page read and write
408000
unkown
page readonly
401000
unkown
page execute read
5B5000
heap
page read and write
427000
unkown
page read and write
457000
unkown
page readonly
There are 24 hidden memdumps, click here to show them.