IOC Report
2852oQ7OHx.mem

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\2852oQ7OHx.exe
"C:\Users\user\Desktop\2852oQ7OHx.exe"
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
451000
unkown
page readonly
9D000
stack
page read and write
46D000
unkown
page readonly
6C0000
heap
page read and write
400000
unkown
page readonly
401000
unkown
page execute read
451000
unkown
page readonly
590000
heap
page read and write
401000
unkown
page execute read
19E000
stack
page read and write
466000
unkown
page write copy
46D000
unkown
page readonly
400000
unkown
page readonly
466000
unkown
page write copy
There are 4 hidden memdumps, click here to show them.