IOCReport

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\K8nV75e45o.exe
'C:\Users\user\Desktop\K8nV75e45o.exe'
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
400000
unkown image
page readonly
clean
5C0000
heap default
page read and write
clean
401000
unkown image
page execute read
clean
9D000
unkown
page read and write
clean
422000
unkown image
page write copy
clean
425000
unkown image
page readonly
clean
4B0000
unkown
page readonly
clean
2120000
heap private
page read and write
clean
290000
unkown
page read and write
clean
4AE000
unkown
page read and write
clean
4CA000
heap default
page read and write
clean
401000
unkown image
page execute read
clean
294000
unkown
page read and write
clean
8A0000
unkown
page readonly
clean
46E000
unkown
page read and write
clean
2210000
heap private
page read and write
clean
425000
unkown image
page readonly
clean
5D0000
unkown
page readonly
clean
89F000
stack
page read and write
clean
4C0000
heap default
page read and write
clean
400000
unkown image
page readonly
clean
79F000
stack
page read and write
clean
19C000
stack
page read and write
clean
1F0000
unkown
page read and write
clean
400000
unkown image
page readonly
clean
422000
unkown image
page read and write
clean
There are 16 hidden memdumps, click here to show them.