{% extends "base.html" %} {% load staticfiles %} {% load analysis_tags %} {% block content %}
{% include "analysis/pages/nav-sidebar.html" %}
{% if report.analysis.procmemory %} {% for proc in report.analysis.procmemory %}

Process memory dump for {{ proc.pid|process_name:report.analysis }} (PID {{ proc.pid }}, dump {{ proc.num }})

{% if proc.procmem_id %} Download {% endif %} {% if proc.extracted %}

Extracted/injected images (may contain unpacked executables)
{% for extracted in proc.extracted %} {% if extracted.extracted_id %} Download #{{ forloop.counter }}
{% endif %} {% endfor %}


{% endif %} {% if proc.yara %} Yara signatures matches on process memory {% for match in proc.yara %}

Match: {{match.name}}

    {% for string in match.strings %}
  • {{string}}
  • {% endfor %}

{% endfor %}
{% endif %} {% if proc.urls %} URLs found in process memory
    {% for url in proc.urls %}{{url}}
    {% endfor %}
                                                
{% endif %} {% if proc.procmem_id %} Download {% endif %}
{% endfor %} {% else %}
Sorry! No process memory available.
{% endif %}
{% endblock %}