Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Users\user\Desktop\RICHIESTA DI OFFERTA.exe
|
'C:\Users\user\Desktop\RICHIESTA DI OFFERTA.exe'
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
https://bamontarquitectura.com.mx/IRANSAT_kowbB4.bi}
|
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
1E47000
|
heap private
|
page read and write
|
||
32B2000
|
unkown
|
page readonly
|
||
4F0000
|
unkown
|
page readonly
|
||
1E20000
|
heap private
|
page read and write
|
||
435000
|
unkown image
|
page readonly
|
||
1DCC000
|
unkown
|
page execute and read and write
|
||
23B000
|
heap private
|
page read and write
|
||
3182000
|
unkown
|
page readonly
|
||
3E0000
|
unkown
|
page read and write
|
||
31B2000
|
unkown
|
page readonly
|
||
300000
|
unkown
|
page readonly
|
||
31A6000
|
unkown
|
page readonly
|
||
3236000
|
unkown
|
page readonly
|
||
3239000
|
unkown
|
page readonly
|
||
220000
|
unkown
|
page execute read
|
||
89000
|
unkown
|
page read and write
|
||
31E2000
|
unkown
|
page readonly
|
||
400000
|
unkown image
|
page readonly
|
||
3114000
|
unkown
|
page readonly
|
||
18C000
|
unkown
|
page read and write
|
||
32A5000
|
unkown
|
page readonly
|
||
435000
|
unkown image
|
page readonly
|
||
401000
|
unkown image
|
page execute read
|
||
2792000
|
heap private
|
page read and write
|
||
2770000
|
heap private
|
page read and write
|
||
1F10000
|
unkown
|
page read and write
|
||
20000
|
unkown
|
page read and write
|
||
1D40000
|
unkown
|
page read and write
|
||
34A0000
|
unkown
|
page readonly
|
||
433000
|
unkown image
|
page read and write
|
||
3132000
|
unkown
|
page readonly
|
||
31D6000
|
unkown
|
page readonly
|
||
34C0000
|
unkown
|
page readonly
|
||
2F58000
|
unkown
|
page readonly
|
||
610000
|
unkown
|
page readonly
|
||
7A0000
|
heap private
|
page read and write
|
||
3282000
|
unkown
|
page readonly
|
||
510000
|
heap default
|
page read and write
|
||
790000
|
unkown
|
page readonly
|
||
3134000
|
unkown
|
page readonly
|
||
2774000
|
heap private
|
page read and write
|
||
32B9000
|
unkown
|
page readonly
|
||
3195000
|
unkown
|
page readonly
|
||
2310000
|
unkown
|
page readonly
|
||
3225000
|
unkown
|
page readonly
|
||
440000
|
unkown
|
page read and write
|
||
3152000
|
unkown
|
page readonly
|
||
3112000
|
unkown
|
page readonly
|
||
517000
|
heap default
|
page read and write
|
||
1F00000
|
heap private
|
page read and write
|
||
3442000
|
unkown
|
page readonly
|
||
401000
|
unkown image
|
page execute read
|
||
31C5000
|
unkown
|
page readonly
|
||
534000
|
heap default
|
page read and write
|
||
3289000
|
unkown
|
page readonly
|
||
3275000
|
unkown
|
page readonly
|
||
1B0000
|
unkown
|
page readonly
|
||
3206000
|
unkown
|
page readonly
|
||
27B0000
|
unkown
|
page read and write
|
||
32D5000
|
unkown
|
page readonly
|
||
4C0000
|
unkown
|
page write copy
|
||
3052000
|
unkown
|
page readonly
|
||
230000
|
heap private
|
page read and write
|
||
3480000
|
unkown
|
page readonly
|
||
2F52000
|
unkown
|
page readonly
|
||
2BD0000
|
unkown
|
page readonly
|
||
400000
|
unkown image
|
page readonly
|
||
4D0000
|
unkown
|
page readonly
|
||
280000
|
heap default
|
page read and write
|
||
3212000
|
unkown
|
page readonly
|
||
31F5000
|
unkown
|
page readonly
|
||
238000
|
heap private
|
page read and write
|
||
234000
|
heap private
|
page read and write
|
||
400000
|
unkown image
|
page readonly
|
||
1E2A000
|
heap private
|
page read and write
|
||
270000
|
unkown
|
page readonly
|
||
3259000
|
unkown
|
page readonly
|
||
3F0000
|
heap private
|
page read and write
|
||
2BB0000
|
unkown
|
page readonly
|
||
323D000
|
unkown
|
page readonly
|
||
3252000
|
unkown
|
page readonly
|
||
3154000
|
unkown
|
page readonly
|
||
7EFDF000
|
unkown
|
page read and write
|
There are 73 hidden memdumps, click here to show them.