IOC Report
doc-1.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\doc-1.exe
"C:\Users\user\Desktop\doc-1.exe"
malicious

URLs

Name
IP
Malicious
https://docs.rs/getrandom#nodejs-es-module-supportyfqBCUuiHMkgJBsjVLIZXuZmbxVFvbUFzjnbhVPhCE
unknown

Memdumps

Base Address
Regiontype
Protect
Malicious
180000
heap
page read and write
401000
unkown
page execute read
6BD000
stack
page read and write
98E000
stack
page read and write
401000
unkown
page execute read
190000
heap
page read and write
491000
unkown
page readonly
400000
unkown
page readonly
C30000
heap
page read and write
76000
heap
page read and write
4B8000
unkown
page write copy
4B0000
unkown
page readonly
4B9000
unkown
page write copy
490000
unkown
page write copy
4B0000
unkown
page readonly
B8E000
stack
page read and write
7C000
heap
page read and write
70000
heap
page read and write
1B0000
heap
page read and write
400000
unkown
page readonly
490000
unkown
page read and write
491000
unkown
page readonly
4B8000
unkown
page read and write
There are 13 hidden memdumps, click here to show them.