IOC Report
eVirFdGeXm.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\eVirFdGeXm.exe
"C:\Users\user\Desktop\eVirFdGeXm.exe"

Memdumps

Base Address
Regiontype
Protect
Malicious
22301202000
heap
page read and write
223011CD000
heap
page read and write
22301236000
heap
page read and write
22301246000
heap
page read and write
223011E8000
heap
page read and write
22301238000
heap
page read and write
223011E3000
heap
page read and write
223011FA000
heap
page read and write
223011D2000
heap
page read and write
4CDF87E000
stack
page read and write
223013B5000
heap
page read and write
223011B8000
heap
page read and write
223011F3000
heap
page read and write
223011E7000
heap
page read and write
7FF6BC722000
unkown
page readonly
22301232000
heap
page read and write
7FF6BC72A000
unkown
page readonly
223011E0000
heap
page read and write
2230122D000
heap
page read and write
22302CF0000
heap
page read and write
2230122D000
heap
page read and write
22301236000
heap
page read and write
7FF6BC710000
unkown
page readonly
22301390000
heap
page read and write
223011E4000
heap
page read and write
22301130000
heap
page read and write
4CDF5CB000
stack
page read and write
223011EB000
heap
page read and write
2230122D000
heap
page read and write
2230122D000
heap
page read and write
223011A8000
heap
page read and write
223011EF000
heap
page read and write
223011A0000
heap
page read and write
22302CB4000
heap
page read and write
223011D8000
heap
page read and write
223011D3000
heap
page read and write
223011DB000
heap
page read and write
22301110000
heap
page read and write
223011D8000
heap
page read and write
223011E4000
heap
page read and write
7FF6BC729000
unkown
page write copy
22301236000
heap
page read and write
2230122D000
heap
page read and write
22301232000
heap
page read and write
2230123B000
heap
page read and write
7FF6BC711000
unkown
page execute read
7FF6BC729000
unkown
page read and write
223011EE000
heap
page read and write
7FF6BC711000
unkown
page execute read
22301236000
heap
page read and write
223011DF000
heap
page read and write
22301030000
heap
page read and write
22301232000
heap
page read and write
2230122D000
heap
page read and write
4CDF8FE000
stack
page read and write
22301232000
heap
page read and write
223011E7000
heap
page read and write
22301232000
heap
page read and write
22301232000
heap
page read and write
223011E4000
heap
page read and write
2230124C000
heap
page read and write
2230122D000
heap
page read and write
223011D8000
heap
page read and write
22301236000
heap
page read and write
22301236000
heap
page read and write
2230123F000
heap
page read and write
22301236000
heap
page read and write
7FF6BC722000
unkown
page readonly
22301238000
heap
page read and write
22301232000
heap
page read and write
7FF6BC72A000
unkown
page readonly
223011DB000
heap
page read and write
223013B0000
heap
page read and write
22302CB0000
heap
page read and write
7FF6BC710000
unkown
page readonly
223011EC000
heap
page read and write
There are 66 hidden memdumps, click here to show them.