IOC Report
uddisrw.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\uddisrw.exe
"C:\Users\user\Desktop\uddisrw.exe"
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
400000
unkown
page readonly
46C000
unkown
page execute and read and write
20F0000
direct allocation
page read and write
1F0000
heap
page read and write
AD0000
heap
page read and write
2333000
heap
page read and write
2330000
heap
page read and write
464000
unkown
page execute and read and write
54A000
heap
page read and write
520000
heap
page read and write
449000
unkown
page execute and write copy
477000
unkown
page read and write
400000
unkown
page readonly
20F8000
direct allocation
page read and write
546000
heap
page read and write
54E000
heap
page read and write
4C0000
heap
page read and write
401000
unkown
page execute and read and write
19C000
stack
page read and write
99000
stack
page read and write
2270000
heap
page read and write
AC0000
heap
page read and write
21F0000
direct allocation
page execute and read and write
46F000
unkown
page write copy
528000
heap
page read and write
52E000
heap
page read and write
553000
heap
page read and write
480000
heap
page read and write
There are 18 hidden memdumps, click here to show them.