IOC Report
HxTsr.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\HxTsr.exe
"C:\Users\user\Desktop\HxTsr.exe"

Memdumps

Base Address
Regiontype
Protect
Malicious
7FF77F509000
unkown
page readonly
7FF77F4F0000
unkown
page readonly
7FF77F506000
unkown
page read and write
7FF77F4FF000
unkown
page read and write
1A297D89000
heap
page read and write
91A48FF000
stack
page read and write
7FF77F4FF000
unkown
page readonly
1A297D80000
heap
page read and write
7FF77F4F1000
unkown
page execute read
91A43ED000
stack
page read and write
7FF77F507000
unkown
page readonly
1A297C90000
heap
page read and write
7FF77F507000
unkown
page readonly
91A46FF000
stack
page read and write
1A297E80000
heap
page read and write
7FF77F506000
unkown
page write copy
7FF77F4F0000
unkown
page readonly
91A47FF000
stack
page read and write
7FF77F4F1000
unkown
page execute read
7FF77F500000
unkown
page readonly
7FF77F509000
unkown
page readonly
There are 11 hidden memdumps, click here to show them.