Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Windows\SysWOW64\rundll32.exe
|
rundll32.exe C:\Users\user\Desktop\sample3.dll,D
|
||
C:\Windows\System32\loaddll32.exe
|
loaddll32.exe 'C:\Users\user\Desktop\sample3.dll'
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
http://207.154.235.218/campo/z/z
|
207.154.235.218
|
||
http://207.154.235.218/campo/z/zC:
|
unknown
|
IPs
IP
|
Domain
|
Country
|
Active
|
Malicious
|
|
---|---|---|---|---|---|
207.154.235.218
|
unknown
|
United States
|
unknown
|
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
105B000
|
heap default
|
page read and write
|
||
2F0C000
|
unkown
|
page readonly
|
||
725000
|
heap default
|
page read and write
|
||
7FF5B36D7000
|
unkown
|
page readonly
|
||
2FA4000
|
unkown
|
page readonly
|
||
7FF5B36A6000
|
unkown
|
page readonly
|
||
2EB91300000
|
heap private
|
page read and write
|
||
2F96000
|
unkown
|
page readonly
|
||
EEC000
|
unkown
|
page read and write
|
||
7FF5B3642000
|
unkown
|
page readonly
|
||
2EB91500000
|
unkown
|
page read and write
|
||
2F45000
|
unkown
|
page readonly
|
||
2FB8000
|
unkown
|
page readonly
|
||
2D49000
|
unkown
|
page readonly
|
||
2EF4000
|
unkown
|
page readonly
|
||
7FF5B3739000
|
unkown
|
page readonly
|
||
95E000
|
unkown
|
page read and write
|
||
CFD000
|
stack
|
page read and write
|
||
2EB91370000
|
unkown
|
page readonly
|
||
F4AC67B000
|
unkown
|
page read and write
|
||
2EF6000
|
unkown
|
page readonly
|
||
6A0000
|
unkown
|
page readonly
|
||
7FF5B36D0000
|
unkown
|
page readonly
|
||
2EAE000
|
unkown
|
page readonly
|
||
1050000
|
heap default
|
page read and write
|
||
7FF5B322A000
|
unkown
|
page readonly
|
||
740D0000
|
unkown image
|
page readonly
|
||
2ED2000
|
unkown
|
page readonly
|
||
2EBF000
|
unkown
|
page readonly
|
||
2EB91380000
|
unkown
|
page readonly
|
||
112E000
|
stack
|
page read and write
|
||
2F02000
|
unkown
|
page readonly
|
||
90E000
|
stack
|
page read and write
|
||
F30000
|
unkown
|
page read and write
|
||
10AF000
|
stack
|
page read and write
|
||
F4AC9FE000
|
unkown
|
page read and write
|
||
106E000
|
unkown
|
page read and write
|
||
2EB91429000
|
unkown
|
page read and write
|
||
1067000
|
heap default
|
page read and write
|
||
2EB91513000
|
unkown
|
page read and write
|
||
1140000
|
unkown
|
page readonly
|
||
F4AC97B000
|
unkown
|
page read and write
|
||
DE0000
|
heap private
|
page read and write
|
||
2DEA000
|
unkown
|
page readonly
|
||
2EB91470000
|
unkown
|
page read and write
|
||
7FF5B34BF000
|
unkown
|
page readonly
|
||
90D000
|
unkown
|
page read and write
|
||
2F30000
|
unkown
|
page readonly
|
||
2EB92140000
|
unkown
|
page readonly
|
||
2EB91450000
|
unkown
|
page read and write
|
||
124F000
|
stack
|
page read and write
|
||
7FF5B3230000
|
unkown
|
page readonly
|
||
2FB8000
|
unkown
|
page readonly
|
||
751000
|
heap default
|
page read and write
|
||
7FF5B372E000
|
unkown
|
page readonly
|
||
2EB91455000
|
unkown
|
page read and write
|
||
7FF5B3571000
|
unkown
|
page readonly
|
||
6EE000
|
unkown
|
page read and write
|
||
2EDD000
|
unkown
|
page readonly
|
||
2D53000
|
unkown
|
page readonly
|
||
2EB1000
|
unkown
|
page readonly
|
||
7FF5B365A000
|
unkown
|
page readonly
|
||
2EB91508000
|
unkown
|
page read and write
|
||
680000
|
unkown
|
page readonly
|
||
2EB9148A000
|
unkown
|
page read and write
|
||
2F10000
|
unkown
|
page readonly
|
||
695000
|
heap default
|
page read and write
|
||
F4AC77E000
|
unkown
|
page read and write
|
||
5A6000
|
unkown
|
page read and write
|
||
9CE000
|
unkown
|
page read and write
|
||
690000
|
heap default
|
page read and write
|
||
2EB91502000
|
unkown
|
page read and write
|
||
7FF5B345A000
|
unkown
|
page readonly
|
||
F4AC875000
|
unkown
|
page read and write
|
||
2EB916D0000
|
unkown
|
page readonly
|
||
2EB91400000
|
unkown
|
page read and write
|
||
7FF5B369D000
|
unkown
|
page readonly
|
||
2F12000
|
unkown
|
page readonly
|
||
7FF5B35AC000
|
unkown
|
page readonly
|
||
2D42000
|
unkown
|
page readonly
|
||
3BB000
|
unkown
|
page read and write
|
||
800000
|
unkown
|
page readonly
|
||
2EEB000
|
unkown
|
page readonly
|
||
F4ACAF7000
|
unkown
|
page read and write
|
||
763000
|
heap default
|
page read and write
|
||
F2B000
|
stack
|
page read and write
|
||
5A9000
|
unkown
|
page read and write
|
||
9E0000
|
heap private
|
page read and write
|
||
A2F000
|
unkown
|
page read and write
|
||
7FF5B3648000
|
unkown
|
page readonly
|
||
2D6C000
|
unkown
|
page readonly
|
||
599000
|
unkown
|
page read and write
|
||
2EE1000
|
unkown
|
page readonly
|
||
F4ACCFE000
|
unkown
|
page read and write
|
||
7FF5B350A000
|
unkown
|
page readonly
|
||
E0E000
|
unkown
|
page read and write
|
||
2F35000
|
unkown
|
page readonly
|
||
7FF5B3630000
|
unkown
|
page readonly
|
||
7FF5B3240000
|
unkown
|
page readonly
|
||
2EB91E00000
|
unkown
|
page readonly
|
||
7FF5B36BC000
|
unkown
|
page readonly
|
||
1420000
|
heap private
|
page read and write
|
||
5AC000
|
unkown
|
page read and write
|
||
700000
|
heap default
|
page read and write
|
||
970000
|
unkown
|
page read and write
|
||
2EA4000
|
unkown
|
page readonly
|
||
7FF5B36AC000
|
unkown
|
page readonly
|
||
7FF5B3632000
|
unkown
|
page readonly
|
||
7FF5B36C5000
|
unkown
|
page readonly
|
||
2EB91C02000
|
unkown
|
page read and write
|
||
740D0000
|
unkown image
|
page readonly
|
||
2EB91390000
|
unkown
|
page read and write
|
||
D80000
|
unkown
|
page read and write
|
||
7FF5B3739000
|
unkown
|
page readonly
|
||
9A0000
|
unkown
|
page read and write
|
||
2EF0000
|
unkown
|
page readonly
|
||
10EE000
|
unkown
|
page read and write
|
||
2F4A000
|
unkown
|
page readonly
|
||
2DD5000
|
unkown
|
page readonly
|
||
7FF5B3528000
|
unkown
|
page readonly
|
||
7FF5B36B6000
|
unkown
|
page readonly
|
||
E70000
|
heap default
|
page read and write
|
||
7FF5B3675000
|
unkown
|
page readonly
|
||
7FF5B3731000
|
unkown
|
page readonly
|
||
910000
|
unkown
|
page readonly
|
||
F4AC6FD000
|
unkown
|
page read and write
|
||
7FF5B354D000
|
unkown
|
page readonly
|
||
7FF5B36D4000
|
unkown
|
page readonly
|
||
766000
|
heap default
|
page read and write
|
||
70A000
|
heap default
|
page read and write
|
||
D00000
|
unkown
|
page readonly
|
||
7FF5B367F000
|
unkown
|
page readonly
|
||
2EB91600000
|
unkown
|
page readonly
|
||
740D0000
|
unkown image
|
page readonly
|
||
59D000
|
unkown
|
page read and write
|
||
F4ACBFF000
|
unkown
|
page read and write
|
||
2D72000
|
unkown
|
page readonly
|
||
2EB91360000
|
heap default
|
page read and write
|
||
99E000
|
stack
|
page read and write
|
||
2EB9143C000
|
unkown
|
page read and write
|
||
2EB9144E000
|
unkown
|
page read and write
|
||
2DE5000
|
unkown
|
page readonly
|
||
7FF5B3577000
|
unkown
|
page readonly
|
||
2EE6000
|
unkown
|
page readonly
|
||
3F9000
|
stack
|
page read and write
|
||
74B000
|
heap default
|
page read and write
|
||
45D0000
|
unkown
|
page readonly
|
||
9F0000
|
unkown
|
page readonly
|
||
660000
|
unkown
|
page read and write
|
||
2EA0000
|
unkown
|
page readonly
|
||
F7F000
|
stack
|
page read and write
|
||
2EB8000
|
unkown
|
page readonly
|
||
2F23000
|
unkown
|
page readonly
|
||
7FF5B3689000
|
unkown
|
page readonly
|
||
A33000
|
unkown
|
page read and write
|
||
2DC8000
|
unkown
|
page readonly
|
||
2EB9144A000
|
unkown
|
page read and write
|
||
7FF5B366E000
|
unkown
|
page readonly
|
||
2F07000
|
unkown
|
page readonly
|
||
7FF5B34FE000
|
unkown
|
page readonly
|
||
2EB91413000
|
unkown
|
page read and write
|
||
2FB0000
|
unkown
|
page readonly
|
||
7FF5B3646000
|
unkown
|
page readonly
|
||
2EDA000
|
unkown
|
page readonly
|
||
2F9B000
|
unkown
|
page readonly
|
||
2F90000
|
unkown
|
page readonly
|
||
7FF5B3543000
|
unkown
|
page readonly
|
There are 157 hidden memdumps, click here to show them.