IOCReport

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\ACS route, aircraft cond. req information & doc00710020210501154406 PDF.exe
'C:\Users\user\Desktop\ACS route, aircraft cond. req information & doc00710020210501154406 PDF.exe'
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
2B50000
unkown
page execute and read and write
malicious
1DF10720000
unkown
page read and write
clean
7FF576C86000
unkown
page readonly
clean
432A0FD000
unkown
page read and write
clean
560000
heap default
page read and write
clean
7FF5765A1000
unkown
page readonly
clean
19283200000
unkown
page readonly
clean
1DF10D9A000
unkown
page read and write
clean
1C553100000
unkown
page readonly
clean
4792000
unkown
page readonly
clean
500000
unkown
page read and write
clean
4102000
unkown
page readonly
clean
1DF10781000
unkown
page read and write
clean
7FF4F6D48000
unkown
page readonly
clean
880CFD000
unkown
page read and write
clean
7FF4FF49C000
unkown
page readonly
clean
1B93B7D0000
unkown
page readonly
clean
1DF10D53000
unkown
page read and write
clean
1C54E113000
unkown
page read and write
clean
7FF4F65E2000
unkown
page readonly
clean
1DF10744000
unkown
page read and write
clean
1DF10770000
unkown
page read and write
clean
7FF5E3016000
unkown
page readonly
clean
1C3FA8A8000
unkown
page read and write
clean
7FF4F6DD7000
unkown
page readonly
clean
18F1C2E4000
unkown
page read and write
clean
7FF5ADA2D000
unkown
page readonly
clean
1DF10699000
unkown
page read and write
clean
1DF10D81000
unkown
page read and write
clean
7FF576B8C000
unkown
page readonly
clean
217C1D30000
unkown
page read and write
clean
1C54D7F0000
unkown
page read and write
clean
7FF5BFDE1000
unkown
page readonly
clean
7FF4F6675000
unkown
page readonly
clean
24DE2A4C000
unkown
page read and write
clean
217C3640000
unkown
page read and write
clean
5121000
unkown
page read and write
clean
7FF4F6A6A000
unkown
page readonly
clean
1DF10D69000
unkown
page read and write
clean
581000
heap default
page read and write
clean
7FF4F867E000
unkown
page readonly
clean
18BB6B50000
unkown
page readonly
clean
19A223DD000
heap default
page read and write
clean
24DE2910000
heap default
page read and write
clean
7FF4F860B000
unkown
page readonly
clean
7FF4F9876000
unkown
page readonly
clean
7FF5ADA64000
unkown
page readonly
clean
24DE2A42000
unkown
page read and write
clean
4732000
unkown
page readonly
clean
7FF51A43F000
unkown
page readonly
clean
7FF5E2FAA000
unkown
page readonly
clean
1FDA4B80000
unkown
page readonly
clean
1DF10660000
unkown
page read and write
clean
18BB7920000
unkown
page read and write
clean
2250000
heap private
page read and write
clean
7FF4F664F000
unkown
page readonly
clean
1DF10784000
unkown
page read and write
clean
1DF10DAC000
unkown
page read and write
clean
1C3FB177000
unkown
page read and write
clean
7FF5BFD72000
unkown
page readonly
clean
7FF4F988C000
unkown
page readonly
clean
7FF5AD98B000
unkown
page readonly
clean
217C1E60000
unkown
page readonly
clean
7FF5BF660000
unkown
page readonly
clean
46A2000
unkown
page readonly
clean
7FF539DBC000
unkown
page readonly
clean
1DF10773000
unkown
page read and write
clean
1C54D8A8000
unkown
page read and write
clean
16C05302000
unkown
page read and write
clean
1C3FB16A000
unkown
page read and write
clean
18BB6E40000
unkown
page read and write
clean
18BB6E60000
heap private
page read and write
clean
1DF10675000
unkown
page read and write
clean
7FF5A5C36000
unkown
page readonly
clean
4125000
unkown
page readonly
clean
1DF10760000
unkown
page read and write
clean
217C1C20000
unkown
page readonly
clean
7FF56393C000
unkown
page readonly
clean