IOC Report
SGIART9.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\SGIART9.exe
"C:\Users\user\Desktop\SGIART9.exe"

Memdumps

Base Address
Regiontype
Protect
Malicious
589000
heap
page read and write
58E000
heap
page read and write
42A000
unkown
page execute read
40C000
unkown
page execute read
580000
heap
page read and write
531000
unkown
page read and write
1F0000
heap
page read and write
401000
unkown
page execute read
42A000
unkown
page execute read
540000
heap
page read and write
6B0000
heap
page read and write
508000
unkown
page execute read
19E000
stack
page read and write
400000
unkown
page readonly
525000
unkown
page readonly
9D000
stack
page read and write
525000
unkown
page readonly
401000
unkown
page execute read
400000
unkown
page readonly
40C000
unkown
page execute read
532000
unkown
page readonly
508000
unkown
page execute read
There are 12 hidden memdumps, click here to show them.