IOC Report
AFCMgr.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\AFCMgr.exe
"C:\Users\user\Desktop\AFCMgr.exe"

Memdumps

Base Address
Regiontype
Protect
Malicious
2D49000
heap
page read and write
2F7F000
stack
page read and write
24E5000
heap
page read and write
753000
heap
page read and write
827000
heap
page read and write
400000
unkown
page readonly
24E9000
heap
page read and write
81E000
heap
page read and write
7AE000
heap
page read and write
2DCE000
stack
page read and write
7CE000
heap
page read and write
827000
heap
page read and write
2D41000
heap
page read and write
2D46000
heap
page read and write
401000
unkown
page execute read
81E000
heap
page read and write
2410000
heap
page read and write
81E000
heap
page read and write
69E000
stack
page read and write
2D42000
heap
page read and write
740000
heap
page read and write
827000
heap
page read and write
1F0000
heap
page read and write
827000
heap
page read and write
648000
unkown
page readonly
45E0000
trusted library allocation
page read and write
2D49000
heap
page read and write
7AA000
heap
page read and write
81E000
heap
page read and write
2420000
heap
page read and write
2319000
heap
page read and write
307F000
stack
page read and write
81E000
heap
page read and write
2314000
heap
page read and write
650000
heap
page read and write
7CE000
heap
page read and write
401000
unkown
page execute read
790000
heap
page read and write
760000
heap
page read and write
827000
heap
page read and write
2E74000
heap
page read and write
2D8E000
stack
page read and write
7CE000
heap
page read and write
81E000
heap
page read and write
81D000
heap
page read and write
710000
heap
page read and write
828000
heap
page read and write
827000
heap
page read and write
7C0000
heap
page read and write
24F0000
trusted library allocation
page read and write
629000
unkown
page read and write
2E70000
heap
page read and write
2D4B000
heap
page read and write
827000
heap
page read and write
750000
heap
page read and write
2D49000
heap
page read and write
2D46000
heap
page read and write
81D000
heap
page read and write
24E0000
heap
page read and write
231A000
heap
page read and write
7C0000
heap
page read and write
648000
unkown
page readonly
6DE000
stack
page read and write
99000
stack
page read and write
827000
heap
page read and write
2313000
heap
page read and write
7A0000
heap
page read and write
700000
trusted library allocation
page execute read
A6F000
stack
page read and write
2D40000
heap
page read and write
19C000
stack
page read and write
81E000
heap
page read and write
827000
heap
page read and write
2318000
heap
page read and write
7CB000
heap
page read and write
2310000
heap
page read and write
B6F000
stack
page read and write
400000
unkown
page readonly
827000
heap
page read and write
81E000
heap
page read and write
2D4E000
heap
page read and write
There are 71 hidden memdumps, click here to show them.