IOC Report
openurl.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\openurl.exe
"C:\Users\user\Desktop\openurl.exe"

Memdumps

Base Address
Regiontype
Protect
Malicious
DBF000
stack
page read and write
770000
unkown
page readonly
A20000
heap
page read and write
773000
unkown
page readonly
777000
unkown
page readonly
771000
unkown
page execute read
776000
unkown
page read and write
773000
unkown
page read and write
776000
unkown
page write copy
B9E000
stack
page read and write
73D000
stack
page read and write
770000
unkown
page readonly
63D000
stack
page read and write
7C0000
heap
page read and write
774000
unkown
page readonly
A2E000
heap
page read and write
771000
unkown
page execute read
A2A000
heap
page read and write
777000
unkown
page readonly
7B0000
heap
page read and write
BE0000
heap
page read and write
EBF000
stack
page read and write
B5E000
stack
page read and write
There are 13 hidden memdumps, click here to show them.