IOC Report
file.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\file.exe
"C:\Users\user\Desktop\file.exe"
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
CB1000
unkown
page execute read
CF2000
unkown
page readonly
820000
heap
page read and write
D07000
unkown
page readonly
CF2000
unkown
page readonly
63C000
stack
page read and write
CF5000
unkown
page write copy
914000
heap
page read and write
CF5000
unkown
page write copy
D07000
unkown
page readonly
91A000
heap
page read and write
CB1000
unkown
page execute read
8FE000
heap
page read and write
770000
heap
page read and write
73C000
stack
page read and write
760000
heap
page read and write
8FA000
heap
page read and write
CB0000
unkown
page readonly
8F0000
heap
page read and write
2710000
heap
page read and write
CB0000
unkown
page readonly
There are 11 hidden memdumps, click here to show them.