IOC Report
SecuriteInfo.com.Trojan.Win64.Vmprotect.6275.24214.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\SecuriteInfo.com.Trojan.Win64.Vmprotect.6275.24214.exe
"C:\Users\user\Desktop\SecuriteInfo.com.Trojan.Win64.Vmprotect.6275.24214.exe"
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
7FF682DD0000
unkown
page readonly
228D3084000
heap
page read and write
7FF682E1D000
unkown
page read and write
228D30BE000
heap
page read and write
228D309C000
heap
page read and write
228D30BC000
heap
page read and write
FCE66FB000
stack
page read and write
7FF682DE9000
unkown
page execute read
228D30BE000
heap
page read and write
228D30C3000
heap
page read and write
228D4B30000
heap
page read and write
7FF6843BF000
unkown
page readonly
7FF682DE7000
unkown
page read and write
228D4950000
trusted library allocation
page read and write
7FF6835FD000
unkown
page execute read
7FF6835FC000
unkown
page read and write
7FF682DD1000
unkown
page execute read
228D30CF000
heap
page read and write
228D30C4000
heap
page read and write
FCE67FE000
stack
page read and write
228D4930000
heap
page read and write
7FF682DE8000
unkown
page readonly
228D3080000
heap
page read and write
7FF682E23000
unkown
page execute read
7FF682DE1000
unkown
page readonly
228D30C3000
heap
page read and write
228D4950000
trusted library allocation
page read and write
7FF6835FC000
unkown
page write copy
7FF6835FD000
unkown
page execute read
228D30BE000
heap
page read and write
228D3090000
heap
page read and write
228D30A8000
heap
page read and write
228D49D0000
heap
page read and write
228D30C3000
heap
page read and write
228D2F50000
heap
page read and write
228D3060000
heap
page read and write
FCE68FE000
stack
page read and write
228D30D0000
heap
page read and write
7FF682DD0000
unkown
page readonly
7FF683FFD000
unkown
page execute read
7FF683FFD000
unkown
page execute read
228D3030000
heap
page read and write
7FF6843BF000
unkown
page readonly
228D30D0000
heap
page read and write
There are 34 hidden memdumps, click here to show them.