IOC Report
console_zero.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\console_zero.exe
"C:\Users\user\Desktop\console_zero.exe"
malicious

URLs

Name
IP
Malicious
http://worldtimeapi.org/api/timezone/Etc/UTCapplication/octet-streamtext/plain;
unknown
http://worldtimeapi.org/api/timezone/Etc/UTC
unknown

Memdumps

Base Address
Regiontype
Protect
Malicious
19D000
stack
page read and write
250000
heap
page read and write
13F28E000
unkown
page readonly
10000
heap
page read and write
13F2CA000
unkown
page readonly
13F2C1000
unkown
page write copy
13F2C5000
unkown
page readonly
13F2CA000
unkown
page readonly
13F2C5000
unkown
page readonly
257000
heap
page read and write
13F251000
unkown
page execute read
13F28D000
unkown
page read and write
13F251000
unkown
page execute read
13F2C1000
unkown
page write copy
13F250000
unkown
page readonly
28E000
heap
page read and write
13F250000
unkown
page readonly
13F28D000
unkown
page readonly
There are 8 hidden memdumps, click here to show them.