IOC Report
NXK7tvxiAh.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\NXK7tvxiAh.exe
"C:\Users\user\Desktop\NXK7tvxiAh.exe"
malicious

IPs

IP
Domain
Country
Malicious
47.239.242.141
unknown
United States
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
140004000
unkown
page execute and write copy
malicious
140004000
unkown
page execute and write copy
malicious
5F0000
heap
page read and write
190000
heap
page read and write
14D000
stack
page read and write
5F6000
heap
page read and write
180000
heap
page read and write
140000000
unkown
page readonly
600000
heap
page read and write
140000000
unkown
page readonly