IOC Report
NOTEPAD.EXE.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\NOTEPAD.EXE.exe
"C:\Users\user\Desktop\NOTEPAD.EXE.exe"
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
2560000
heap
page read and write
400000
unkown
page readonly
401000
unkown
page execute and write copy
401000
unkown
page execute and write copy
DE000
stack
page read and write
400000
unkown
page readonly
439000
unkown
page write copy
438000
unkown
page execute and write copy
26E0000
heap
page read and write
438000
unkown
page execute and write copy
439000
unkown
page write copy
9D000
stack
page read and write
There are 2 hidden memdumps, click here to show them.