Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Users\user\Desktop\mU9H96igb3.exe
|
'C:\Users\user\Desktop\mU9H96igb3.exe'
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
http://implantecapilarpereira.com/NetGen
|
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
4BF0000
|
unkown
|
page execute and read and write
|
||
7FFC2000
|
unkown image
|
page readonly
|
||
400000
|
unkown image
|
page readonly
|
||
2278000
|
heap private
|
page read and write
|
||
401000
|
unkown image
|
page execute read
|
||
30000
|
unkown image
|
page read and write
|
||
C30000
|
unkown image
|
page readonly
|
||
400000
|
unkown image
|
page readonly
|
||
7FFC0000
|
unkown image
|
page readonly
|
||
2200000
|
unkown image
|
page readonly
|
||
486E000
|
stack
|
page read and write
|
||
9A000
|
unkown
|
page read and write
|
||
2CA0000
|
unkown
|
page read and write
|
||
2400000
|
heap private
|
page read and write
|
||
5E4000
|
heap private
|
page read and write
|
||
2270000
|
heap private
|
page read and write
|
||
5C0000
|
unkown
|
page execute read
|
||
2230000
|
heap private
|
page read and write
|
||
2220000
|
unkown
|
page read and write
|
||
7FFB2000
|
unkown image
|
page readonly
|
||
42F000
|
unkown image
|
page read and write
|
||
2C1E000
|
unkown image
|
page read and write
|
||
5E0000
|
heap private
|
page read and write
|
||
5FA000
|
heap default
|
page read and write
|
||
496F000
|
stack
|
page read and write
|
||
431000
|
unkown image
|
page readonly
|
||
DB0000
|
unkown image
|
page readonly
|
||
530000
|
heap default
|
page read and write
|
||
2380000
|
unkown
|
page read and write
|
||
DC0000
|
unkown image
|
page readonly
|
||
7FEB0000
|
unkown image
|
page readonly
|
||
21F0000
|
unkown
|
page read and write
|
||
7FFD0000
|
unkown image
|
page readonly
|
||
2239000
|
heap private
|
page read and write
|
||
7FFC0000
|
unkown image
|
page readonly
|
||
A30000
|
unkown image
|
page readonly
|
||
5D0000
|
heap private
|
page read and write
|
||
7FFB0000
|
unkown image
|
page readonly
|
||
2410000
|
unkown
|
page read and write
|
||
7FFC2000
|
unkown image
|
page readonly
|
||
1F0000
|
unkown
|
page read and write
|
||
7FFB0000
|
unkown image
|
page readonly
|
||
431000
|
unkown image
|
page readonly
|
||
2B50000
|
unkown image
|
page readonly
|
||
2280000
|
unkown
|
page read and write
|
||
401000
|
unkown image
|
page execute read
|
||
40000
|
unkown image
|
page readonly
|
||
3EA000
|
unkown
|
page read and write
|
||
3EE000
|
unkown
|
page read and write
|
||
472E000
|
stack
|
page read and write
|
||
482F000
|
stack
|
page read and write
|
||
400000
|
unkown image
|
page readonly
|
||
7FFB2000
|
unkown image
|
page readonly
|
||
2275000
|
heap private
|
page read and write
|
||
612000
|
heap default
|
page read and write
|
||
40000
|
unkown image
|
page readonly
|
||
510000
|
unkown image
|
page readonly
|
||
2240000
|
unkown
|
page read and write
|
||
5F0000
|
heap default
|
page read and write
|
||
1A0000
|
unkown image
|
page readonly
|
||
520000
|
unkown
|
page read and write
|
||
19C000
|
unkown
|
page read and write
|
||
7FFD0000
|
unkown image
|
page readonly
|
There are 53 hidden memdumps, click here to show them.