IOC Report
compiler.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\compiler.exe
"C:\Users\user\Desktop\compiler.exe"
C:\Windows\System32\conhost.exe
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1

URLs

Name
IP
Malicious
http://luajit.org/
unknown

Memdumps

Base Address
Regiontype
Protect
Malicious
C10000
heap
page read and write
736000
unkown
page write copy
730000
unkown
page readonly
730000
unkown
page read and write
720000
unkown
page readonly
721000
unkown
page execute read
720000
unkown
page readonly
731000
unkown
page readonly
738000
unkown
page readonly
7C0000
heap
page read and write
738000
unkown
page readonly
C1A000
heap
page read and write
AFD000
stack
page read and write
736000
unkown
page read and write
770000
heap
page read and write
760000
heap
page read and write
721000
unkown
page execute read
6ED000
stack
page read and write
C1E000
heap
page read and write
There are 9 hidden memdumps, click here to show them.