Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
44QHzbqD3m.exe
|
PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
|
initial sample
|
||
C:\Users\Public\Desktop\Google Chrome.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Description string, Has Relative path, Has Working
directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:41 2023, mtime=Wed Oct 4 11:02:29 2023,
atime=Wed Sep 27 04:28:27 2023, length=3242272, window=hide
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\CLR_v4.0_32\UsageLogs\44QHzbqD3m.exe.log
|
ASCII text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\Tmp7E50.tmp
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\Tmp7E60.tmp
|
data
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2246122658-3693405117-2476756634-1002\76b53b3ec448f7ccdda2063b15d2bfc3_9e146be9-c76a-4720-bcdb-53011b87bd06
|
data
|
dropped
|
Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Users\user\Desktop\44QHzbqD3m.exe
|
"C:\Users\user\Desktop\44QHzbqD3m.exe"
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-soap-message-security-1.0#Text
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/sc/sct
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/04/security/sc/dk
|
unknown
|
||
http://tempuri.org/Entity/Id14ResponseD
|
unknown
|
||
http://tempuri.org/Entity/Id23ResponseD
|
unknown
|
||
http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-soap-message-security-1.0#HexBinary
|
unknown
|
||
http://tempuri.org/Entity/Id12Response
|
unknown
|
||
http://tempuri.org/
|
unknown
|
||
http://tempuri.org/Entity/Id2Response
|
unknown
|
||
http://tempuri.org/Entity/Id15V
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/sc/dk/p_sha1
|
unknown
|
||
http://tempuri.org/Entity/Id21Response
|
unknown
|
||
http://schemas.xmlsoap.org/2005/02/trust/spnego#GSS_Wrap
|
unknown
|
||
http://tempuri.org/Entity/Id9
|
unknown
|
||
http://docs.oasis-open.org/wss/oasis-wss-saml-token-profile-1.1#SAMLID
|
unknown
|
||
http://tempuri.org/Entity/Id8
|
unknown
|
||
http://tempuri.org/Entity/Id6ResponseD
|
unknown
|
||
http://tempuri.org/Entity/Id5
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/10/wsat/Prepare
|
unknown
|
||
http://tempuri.org/Entity/Id7
|
unknown
|
||
http://tempuri.org/Entity/Id6
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/trust#BinarySecret
|
unknown
|
||
http://docs.oasis-open.org/wss/oasis-wss-rel-token-profile-1.0.pdf#license
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/trust/Nonce4
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/trust/RSTR/Issue
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/10/wsat/Aborted
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/rm/TerminateSequence
|
unknown
|
||
http://tempuri.org/Entity/Id13ResponseD
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/10/wsat/fault
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/10/wsat
|
unknown
|
||
http://docs.oasis-open.org/wss/oasis-wss-soap-message-security-1.1#EncryptedKey
|
unknown
|
||
http://tempuri.org/Entity/Id15Response
|
unknown
|
||
http://tempuri.org/Entity/Id5ResponseD
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/05/identity/claims/name
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/trust/RSTR/SCT/Renew
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/08/addressing/faultp9
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/10/wscoor/Register
|
unknown
|
||
http://tempuri.org/Entity/Id6Response
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/04/trust/SymmetricKey
|
unknown
|
||
https://api.ip.sb/ip
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/04/sc
|
unknown
|
||
http://tempuri.org/Entity/Id1ResponseD
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/10/wsat/Volatile2PC
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/trust/RSTR/SCT/Cancel
|
unknown
|
||
http://tempuri.org/Entity/Id9Response
|
unknown
|
||
http://tempuri.org/Entity/Id19Responseus
|
unknown
|
||
http://tempuri.org/Entity/Id20
|
unknown
|
||
http://tempuri.org/Entity/Id21
|
unknown
|
||
http://tempuri.org/Entity/Id22
|
unknown
|
||
http://docs.oasis-open.org/wss/oasis-wss-kerberos-token-profile-1.1#Kerberosv5APREQSHA1
|
unknown
|
||
http://tempuri.org/Entity/Id23
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/04/security/trust/CK/PSHA1
|
unknown
|
||
http://tempuri.org/Entity/Id24
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/04/security/trust/RSTR/Issue
|
unknown
|
||
http://tempuri.org/Entity/Id24Response
|
unknown
|
||
http://tempuri.org/Entity/Id1Response
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/rm/AckRequested
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/10/wsat/ReadOnly
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/10/wsat/Replay
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/trust/tlsnego
|
unknown
|
||
http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-soap-message-security-1.0#Base64Binary
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/10/wsat/Durable2PC
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/04/security/trust/SymmetricKey
|
unknown
|
||
http://tempuri.org/Entity/Id21ResponseD
|
unknown
|
||
http://tempuri.org/Entity/Id4rA
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/08/addressing
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/trust/RST/Issue
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/10/wsat/Completion
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/04/trust
|
unknown
|
||
http://tempuri.org/Entity/Id10
|
unknown
|
||
http://tempuri.org/Entity/Id11
|
unknown
|
||
http://tempuri.org/Entity/Id10ResponseD
|
unknown
|
||
http://tempuri.org/Entity/Id12
|
unknown
|
||
http://tempuri.org/Entity/Id16Response
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/10/wscoor/CreateCoordinationContextResponse
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/trust/RST/SCT/Cancel
|
unknown
|
||
http://tempuri.org/Entity/Id13
|
unknown
|
||
http://tempuri.org/Entity/Id14
|
unknown
|
||
http://tempuri.org/Entity/Id15
|
unknown
|
||
http://tempuri.org/Entity/Id16
|
unknown
|
||
http://tempuri.org/Entity/Id17
|
unknown
|
||
http://tempuri.org/Entity/Id18
|
unknown
|
||
http://tempuri.org/Entity/Id5Response
|
unknown
|
||
http://tempuri.org/Entity/Id19
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/05/identity/claims/dns
|
unknown
|
||
http://tempuri.org/Entity/Id15ResponseD
|
unknown
|
||
http://tempuri.org/Entity/Id10Response
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/trust/Renew
|
unknown
|
||
http://tempuri.org/Entity/Id11ResponseD
|
unknown
|
||
http://tempuri.org/Entity/Id8Response
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/04/trust/PublicKey
|
unknown
|
||
http://docs.oasis-open.org/wss/oasis-wss-saml-token-profile-1.1#SAMLV2.0
|
unknown
|
||
http://docs.oasis-open.org/wss/oasis-wss-saml-token-profile-1.0#SAMLAssertionID
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/04/security/trust/RST/SCT
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2006/02/addressingidentity
|
unknown
|
||
http://tempuri.org/Entity/Id17ResponseD
|
unknown
|
||
http://schemas.xmlsoap.org/soap/envelope/
|
unknown
|
||
http://tempuri.org/Entity/Id8ResponseD
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/trust/PublicKey
|
unknown
|
||
http://docs.oasis-open.org/wss/oasis-wss-soap-message-security-1.1#EncryptedKeySHA1
|
unknown
|
There are 90 hidden URLs, click here to show them.
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
103.113.70.99
|
unknown
|
India
|
Registry
Path
|
Value
|
Malicious
|
|
---|---|---|---|
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\F1A578C4CB5DE79A370893983FD4DA8B67B2B064
|
Blob
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
Owner
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
SessionHash
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
Sequence
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
RegFiles0000
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
RegFilesHash
|
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
3239000
|
trusted library allocation
|
page read and write
|
||
DF2000
|
unkown
|
page readonly
|
||
E22000
|
unkown
|
page readonly
|
||
18A3000
|
heap
|
page read and write
|
||
17AE000
|
stack
|
page read and write
|
||
32FD000
|
trusted library allocation
|
page read and write
|
||
8010000
|
trusted library allocation
|
page execute and read and write
|
||
56E0000
|
trusted library allocation
|
page read and write
|
||
45C6000
|
trusted library allocation
|
page read and write
|
||
44DF000
|
trusted library allocation
|
page read and write
|
||
419F000
|
trusted library allocation
|
page read and write
|
||
5650000
|
trusted library allocation
|
page read and write
|
||
43D1000
|
trusted library allocation
|
page read and write
|
||
6A20000
|
trusted library allocation
|
page execute and read and write
|
||
6EA0000
|
trusted library allocation
|
page read and write
|
||
7C95000
|
heap
|
page read and write
|
||
58D4000
|
trusted library allocation
|
page read and write
|
||
175E000
|
stack
|
page read and write
|
||
1504000
|
trusted library allocation
|
page read and write
|
||
45DE000
|
trusted library allocation
|
page read and write
|
||
5621000
|
trusted library allocation
|
page read and write
|
||
43F4000
|
trusted library allocation
|
page read and write
|
||
4314000
|
trusted library allocation
|
page read and write
|
||
44CD000
|
trusted library allocation
|
page read and write
|
||
45B5000
|
trusted library allocation
|
page read and write
|
||
565E000
|
trusted library allocation
|
page read and write
|
||
1536000
|
trusted library allocation
|
page execute and read and write
|
||
18E0000
|
heap
|
page read and write
|
||
41CC000
|
trusted library allocation
|
page read and write
|
||
45F7000
|
trusted library allocation
|
page read and write
|
||
685E000
|
stack
|
page read and write
|
||
3387000
|
trusted library allocation
|
page read and write
|
||
43EF000
|
trusted library allocation
|
page read and write
|
||
7C81000
|
heap
|
page read and write
|
||
6F10000
|
trusted library allocation
|
page read and write
|
||
43B0000
|
trusted library allocation
|
page read and write
|
||
4595000
|
trusted library allocation
|
page read and write
|
||
845E000
|
stack
|
page read and write
|
||
1560000
|
heap
|
page read and write
|
||
358D000
|
trusted library allocation
|
page read and write
|
||
4500000
|
trusted library allocation
|
page read and write
|
||
1610000
|
heap
|
page read and write
|
||
80DE000
|
stack
|
page read and write
|
||
55E0000
|
trusted library allocation
|
page read and write
|
||
1606000
|
heap
|
page read and write
|
||
45A8000
|
trusted library allocation
|
page read and write
|
||
7C4D000
|
heap
|
page read and write
|
||
730C000
|
stack
|
page read and write
|
||
452C000
|
trusted library allocation
|
page read and write
|
||
4437000
|
trusted library allocation
|
page read and write
|
||
3510000
|
trusted library allocation
|
page read and write
|
||
1532000
|
trusted library allocation
|
page read and write
|
||
45D0000
|
trusted library allocation
|
page read and write
|
||
7CCA000
|
heap
|
page read and write
|
||
15A0000
|
heap
|
page read and write
|
||
6EF2000
|
trusted library allocation
|
page read and write
|
||
45D3000
|
trusted library allocation
|
page read and write
|
||
41CF000
|
trusted library allocation
|
page read and write
|
||
43E9000
|
trusted library allocation
|
page read and write
|
||
44F0000
|
trusted library allocation
|
page read and write
|
||
6F25000
|
trusted library allocation
|
page read and write
|
||
162B000
|
heap
|
page read and write
|
||
6E95000
|
trusted library allocation
|
page read and write
|
||
1658000
|
heap
|
page read and write
|
||
7E10000
|
trusted library allocation
|
page execute and read and write
|
||
446B000
|
trusted library allocation
|
page read and write
|
||
1587000
|
heap
|
page read and write
|
||
151D000
|
trusted library allocation
|
page execute and read and write
|
||
5670000
|
trusted library allocation
|
page read and write
|
||
35EF000
|
trusted library allocation
|
page read and write
|
||
4460000
|
trusted library allocation
|
page read and write
|
||
7C73000
|
heap
|
page read and write
|
||
45E9000
|
trusted library allocation
|
page read and write
|
||
7030000
|
trusted library allocation
|
page execute and read and write
|
||
528C000
|
stack
|
page read and write
|
||
44E5000
|
trusted library allocation
|
page read and write
|
||
7453000
|
trusted library allocation
|
page read and write
|
||
6FD0000
|
trusted library allocation
|
page execute and read and write
|
||
1540000
|
trusted library allocation
|
page read and write
|
||
14EF000
|
stack
|
page read and write
|
||
7C6D000
|
heap
|
page read and write
|
||
17B8000
|
trusted library allocation
|
page read and write
|
||
4552000
|
trusted library allocation
|
page read and write
|
||
6DE5000
|
heap
|
page read and write
|
||
6EA9000
|
trusted library allocation
|
page read and write
|
||
7EAD000
|
trusted library allocation
|
page read and write
|
||
6968000
|
trusted library allocation
|
page read and write
|
||
3685000
|
trusted library allocation
|
page read and write
|
||
58E0000
|
heap
|
page execute and read and write
|
||
6D90000
|
heap
|
page read and write
|
||
43D6000
|
trusted library allocation
|
page read and write
|
||
157F000
|
heap
|
page read and write
|
||
8000000
|
trusted library allocation
|
page read and write
|
||
3507000
|
trusted library allocation
|
page read and write
|
||
35F8000
|
trusted library allocation
|
page read and write
|
||
7490000
|
trusted library allocation
|
page read and write
|
||
4212000
|
trusted library allocation
|
page read and write
|
||
7480000
|
trusted library allocation
|
page execute and read and write
|
||
13E5000
|
heap
|
page read and write
|
||
7EF40000
|
trusted library allocation
|
page execute and read and write
|
||
7160000
|
trusted library allocation
|
page read and write
|
||
7FC0000
|
trusted library allocation
|
page read and write
|
||
645E000
|
stack
|
page read and write
|
||
44FD000
|
trusted library allocation
|
page read and write
|
||
43DC000
|
trusted library allocation
|
page read and write
|
||
7C69000
|
heap
|
page read and write
|
||
15A2000
|
heap
|
page read and write
|
||
439B000
|
trusted library allocation
|
page read and write
|
||
5AEE000
|
stack
|
page read and write
|
||
560B000
|
trusted library allocation
|
page read and write
|
||
6FB0000
|
trusted library allocation
|
page read and write
|
||
1652000
|
heap
|
page read and write
|
||
43AA000
|
trusted library allocation
|
page read and write
|
||
7C10000
|
heap
|
page read and write
|
||
80F0000
|
heap
|
page read and write
|
||
3554000
|
trusted library allocation
|
page read and write
|
||
18C0000
|
heap
|
page read and write
|
||
6E85000
|
heap
|
page read and write
|
||
4615000
|
trusted library allocation
|
page read and write
|
||
434C000
|
trusted library allocation
|
page read and write
|
||
164D000
|
heap
|
page read and write
|
||
3564000
|
trusted library allocation
|
page read and write
|
||
6DD6000
|
heap
|
page read and write
|
||
1568000
|
heap
|
page read and write
|
||
6B1E000
|
stack
|
page read and write
|
||
355E000
|
trusted library allocation
|
page read and write
|
||
7C6B000
|
heap
|
page read and write
|
||
447E000
|
trusted library allocation
|
page read and write
|
||
7C37000
|
heap
|
page read and write
|
||
6EE1000
|
trusted library allocation
|
page read and write
|
||
7FF8000
|
trusted library allocation
|
page read and write
|
||
41D3000
|
trusted library allocation
|
page read and write
|
||
6A30000
|
trusted library allocation
|
page execute and read and write
|
||
7FC5000
|
trusted library allocation
|
page read and write
|
||
7C18000
|
heap
|
page read and write
|
||
7FBD000
|
stack
|
page read and write
|
||
6F2E000
|
trusted library allocation
|
page read and write
|
||
4602000
|
trusted library allocation
|
page read and write
|
||
440C000
|
trusted library allocation
|
page read and write
|
||
7B10000
|
heap
|
page read and write
|
||
3677000
|
trusted library allocation
|
page read and write
|
||
4364000
|
trusted library allocation
|
page read and write
|
||
1320000
|
heap
|
page read and write
|
||
5604000
|
trusted library allocation
|
page read and write
|
||
7180000
|
trusted library allocation
|
page read and write
|
||
153A000
|
trusted library allocation
|
page execute and read and write
|
||
35FC000
|
trusted library allocation
|
page read and write
|
||
6960000
|
trusted library allocation
|
page read and write
|
||
80E0000
|
trusted library allocation
|
page read and write
|
||
6E5F000
|
heap
|
page read and write
|
||
3521000
|
trusted library allocation
|
page read and write
|
||
438F000
|
trusted library allocation
|
page read and write
|
||
136E000
|
stack
|
page read and write
|
||
7EA9000
|
trusted library allocation
|
page read and write
|
||
41B2000
|
trusted library allocation
|
page read and write
|
||
337B000
|
trusted library allocation
|
page read and write
|
||
435C000
|
trusted library allocation
|
page read and write
|
||
71A0000
|
trusted library allocation
|
page execute and read and write
|
||
3561000
|
trusted library allocation
|
page read and write
|
||
3512000
|
trusted library allocation
|
page read and write
|
||
442A000
|
trusted library allocation
|
page read and write
|
||
44B4000
|
trusted library allocation
|
page read and write
|
||
6283000
|
heap
|
page read and write
|
||
41C0000
|
trusted library allocation
|
page read and write
|
||
6DA4000
|
heap
|
page read and write
|
||
1503000
|
trusted library allocation
|
page execute and read and write
|
||
58D0000
|
trusted library allocation
|
page read and write
|
||
366D000
|
trusted library allocation
|
page read and write
|
||
5632000
|
trusted library allocation
|
page read and write
|
||
671F000
|
stack
|
page read and write
|
||
6E51000
|
heap
|
page read and write
|
||
43A0000
|
trusted library allocation
|
page read and write
|
||
7170000
|
trusted library allocation
|
page read and write
|
||
7FDA000
|
trusted library allocation
|
page read and write
|
||
4345000
|
trusted library allocation
|
page read and write
|
||
436F000
|
trusted library allocation
|
page read and write
|
||
43C3000
|
trusted library allocation
|
page read and write
|
||
18A0000
|
heap
|
page read and write
|
||
4443000
|
trusted library allocation
|
page read and write
|
||
56E2000
|
trusted library allocation
|
page read and write
|
||
4388000
|
trusted library allocation
|
page read and write
|
||
13AE000
|
stack
|
page read and write
|
||
457A000
|
trusted library allocation
|
page read and write
|
||
35BC000
|
trusted library allocation
|
page read and write
|
||
875E000
|
stack
|
page read and write
|
||
3656000
|
trusted library allocation
|
page read and write
|
||
7E70000
|
trusted library allocation
|
page read and write
|
||
188B000
|
stack
|
page read and write
|
||
809E000
|
stack
|
page read and write
|
||
4533000
|
trusted library allocation
|
page read and write
|
||
4458000
|
trusted library allocation
|
page read and write
|
||
45FC000
|
trusted library allocation
|
page read and write
|
||
6DE3000
|
heap
|
page read and write
|
||
FD7000
|
stack
|
page read and write
|
||
6F40000
|
trusted library allocation
|
page read and write
|
||
3528000
|
trusted library allocation
|
page read and write
|
||
6F20000
|
trusted library allocation
|
page read and write
|
||
8030000
|
trusted library allocation
|
page read and write
|
||
1601000
|
heap
|
page read and write
|
||
1510000
|
trusted library allocation
|
page read and write
|
||
7CE3000
|
heap
|
page read and write
|
||
5600000
|
trusted library allocation
|
page read and write
|
||
156E000
|
heap
|
page read and write
|
||
154B000
|
trusted library allocation
|
page execute and read and write
|
||
6287000
|
heap
|
page read and write
|
||
43FE000
|
trusted library allocation
|
page read and write
|
||
592E000
|
stack
|
page read and write
|
||
6E8A000
|
heap
|
page read and write
|
||
4526000
|
trusted library allocation
|
page read and write
|
||
7C63000
|
heap
|
page read and write
|
||
7150000
|
trusted library allocation
|
page read and write
|
||
4356000
|
trusted library allocation
|
page read and write
|
||
44AC000
|
trusted library allocation
|
page read and write
|
||
7C3A000
|
heap
|
page read and write
|
||
569E000
|
trusted library allocation
|
page read and write
|
||
815E000
|
stack
|
page read and write
|
||
7FC9000
|
trusted library allocation
|
page read and write
|
||
6F70000
|
trusted library allocation
|
page read and write
|
||
45C1000
|
trusted library allocation
|
page read and write
|
||
6E7B000
|
heap
|
page read and write
|
||
851E000
|
stack
|
page read and write
|
||
4382000
|
trusted library allocation
|
page read and write
|
||
6E62000
|
heap
|
page read and write
|
||
365F000
|
trusted library allocation
|
page read and write
|
||
3515000
|
trusted library allocation
|
page read and write
|
||
6E4D000
|
heap
|
page read and write
|
||
5B2E000
|
stack
|
page read and write
|
||
3689000
|
trusted library allocation
|
page read and write
|
||
1240000
|
heap
|
page read and write
|
||
56F0000
|
trusted library allocation
|
page execute and read and write
|
||
6FA0000
|
trusted library allocation
|
page read and write
|
||
6E9A000
|
trusted library allocation
|
page read and write
|
||
4455000
|
trusted library allocation
|
page read and write
|
||
44A9000
|
trusted library allocation
|
page read and write
|
||
561E000
|
trusted library allocation
|
page read and write
|
||
7FE5000
|
trusted library allocation
|
page read and write
|
||
351E000
|
trusted library allocation
|
page read and write
|
||
5665000
|
trusted library allocation
|
page read and write
|
||
44D8000
|
trusted library allocation
|
page read and write
|
||
44EB000
|
trusted library allocation
|
page read and write
|
||
1542000
|
trusted library allocation
|
page read and write
|
||
5690000
|
trusted library allocation
|
page read and write
|
||
4609000
|
trusted library allocation
|
page read and write
|
||
4321000
|
trusted library allocation
|
page read and write
|
||
1760000
|
trusted library allocation
|
page read and write
|
||
3585000
|
trusted library allocation
|
page read and write
|
||
744C000
|
stack
|
page read and write
|
||
8160000
|
trusted library allocation
|
page read and write
|
||
443D000
|
trusted library allocation
|
page read and write
|
||
4508000
|
trusted library allocation
|
page read and write
|
||
55D0000
|
trusted library allocation
|
page execute and read and write
|
||
7CB6000
|
heap
|
page read and write
|
||
6E6E000
|
heap
|
page read and write
|
||
6EDB000
|
trusted library allocation
|
page read and write
|
||
4395000
|
trusted library allocation
|
page read and write
|
||
14F0000
|
trusted library allocation
|
page read and write
|
||
3191000
|
trusted library allocation
|
page read and write
|
||
4430000
|
trusted library allocation
|
page read and write
|
||
4425000
|
trusted library allocation
|
page read and write
|
||
43E3000
|
trusted library allocation
|
page read and write
|
||
4513000
|
trusted library allocation
|
page read and write
|
||
5660000
|
trusted library allocation
|
page read and write
|
||
437D000
|
trusted library allocation
|
page read and write
|
||
6EE6000
|
trusted library allocation
|
page read and write
|
||
4359000
|
trusted library allocation
|
page read and write
|
||
5BAE000
|
stack
|
page read and write
|
||
150D000
|
trusted library allocation
|
page execute and read and write
|
||
3381000
|
trusted library allocation
|
page read and write
|
||
720C000
|
stack
|
page read and write
|
||
7FC2000
|
trusted library allocation
|
page read and write
|
||
7EA0000
|
trusted library allocation
|
page read and write
|
||
4448000
|
trusted library allocation
|
page read and write
|
||
431E000
|
trusted library allocation
|
page read and write
|
||
1520000
|
heap
|
page read and write
|
||
448B000
|
trusted library allocation
|
page read and write
|
||
EDA000
|
stack
|
page read and write
|
||
7190000
|
trusted library allocation
|
page read and write
|
||
1530000
|
trusted library allocation
|
page read and write
|
||
4491000
|
trusted library allocation
|
page read and write
|
||
41C5000
|
trusted library allocation
|
page read and write
|
||
4521000
|
trusted library allocation
|
page read and write
|
||
1545000
|
trusted library allocation
|
page execute and read and write
|
||
6FC0000
|
trusted library allocation
|
page execute and read and write
|
||
6E90000
|
trusted library allocation
|
page read and write
|
||
4497000
|
trusted library allocation
|
page read and write
|
||
1527000
|
heap
|
page read and write
|
||
5B6E000
|
stack
|
page read and write
|
||
339A000
|
trusted library allocation
|
page read and write
|
||
4191000
|
trusted library allocation
|
page read and write
|
||
4636000
|
trusted library allocation
|
page read and write
|
||
3385000
|
trusted library allocation
|
page read and write
|
||
625E000
|
stack
|
page read and write
|
||
41B9000
|
trusted library allocation
|
page read and write
|
||
3625000
|
trusted library allocation
|
page read and write
|
||
453F000
|
trusted library allocation
|
page read and write
|
||
432C000
|
trusted library allocation
|
page read and write
|
||
45D6000
|
trusted library allocation
|
page read and write
|
||
3577000
|
trusted library allocation
|
page read and write
|
||
337F000
|
trusted library allocation
|
page read and write
|
||
7EA7000
|
trusted library allocation
|
page read and write
|
||
5A2F000
|
stack
|
page read and write
|
||
6D8F000
|
stack
|
page read and write
|
||
734E000
|
stack
|
page read and write
|
||
356C000
|
trusted library allocation
|
page read and write
|
||
8020000
|
trusted library allocation
|
page read and write
|
||
7C9B000
|
heap
|
page read and write
|
||
4484000
|
trusted library allocation
|
page read and write
|
||
44BF000
|
trusted library allocation
|
page read and write
|
||
4618000
|
trusted library allocation
|
page read and write
|
||
7C49000
|
heap
|
page read and write
|
||
449C000
|
trusted library allocation
|
page read and write
|
||
6F01000
|
trusted library allocation
|
page read and write
|
||
35CB000
|
trusted library allocation
|
page read and write
|
||
18B0000
|
heap
|
page read and write
|
||
6C1E000
|
stack
|
page read and write
|
||
1547000
|
trusted library allocation
|
page execute and read and write
|
||
6EFE000
|
trusted library allocation
|
page read and write
|
||
E36000
|
unkown
|
page readonly
|
||
1890000
|
heap
|
page execute and read and write
|
||
6EA5000
|
trusted library allocation
|
page read and write
|
||
6F2B000
|
trusted library allocation
|
page read and write
|
||
6F50000
|
trusted library allocation
|
page read and write
|
||
6EA7000
|
trusted library allocation
|
page read and write
|
||
318E000
|
stack
|
page read and write
|
||
7EB0000
|
heap
|
page read and write
|
||
6A10000
|
heap
|
page read and write
|
||
7FDF000
|
trusted library allocation
|
page read and write
|
||
44D2000
|
trusted library allocation
|
page read and write
|
||
45BA000
|
trusted library allocation
|
page read and write
|
||
6E76000
|
heap
|
page read and write
|
||
6271000
|
heap
|
page read and write
|
||
6E30000
|
heap
|
page read and write
|
||
13E0000
|
heap
|
page read and write
|
||
6F30000
|
trusted library allocation
|
page read and write
|
||
4417000
|
trusted library allocation
|
page read and write
|
||
3552000
|
trusted library allocation
|
page read and write
|
||
DF0000
|
unkown
|
page readonly
|
||
6E5A000
|
heap
|
page read and write
|
||
44A6000
|
trusted library allocation
|
page read and write
|
||
55F0000
|
trusted library allocation
|
page read and write
|
||
43B8000
|
trusted library allocation
|
page read and write
|
||
4479000
|
trusted library allocation
|
page read and write
|
||
458A000
|
trusted library allocation
|
page read and write
|
||
6F60000
|
trusted library allocation
|
page read and write
|
||
4404000
|
trusted library allocation
|
page read and write
|
||
43AD000
|
trusted library allocation
|
page read and write
|
||
5626000
|
trusted library allocation
|
page read and write
|
||
4401000
|
trusted library allocation
|
page read and write
|
||
44FA000
|
trusted library allocation
|
page read and write
|
||
6980000
|
trusted library allocation
|
page read and write
|
||
7C2B000
|
heap
|
page read and write
|
||
7FEF000
|
trusted library allocation
|
page read and write
|
||
8110000
|
trusted library allocation
|
page execute and read and write
|
||
6ED0000
|
trusted library allocation
|
page read and write
|
||
4539000
|
trusted library allocation
|
page read and write
|
||
7FD8000
|
trusted library allocation
|
page read and write
|
||
4452000
|
trusted library allocation
|
page read and write
|
||
7FF0000
|
trusted library allocation
|
page read and write
|
||
7020000
|
trusted library allocation
|
page execute and read and write
|
||
865D000
|
stack
|
page read and write
|
||
5640000
|
trusted library allocation
|
page read and write
|
||
7FEA000
|
trusted library allocation
|
page read and write
|
||
3377000
|
trusted library allocation
|
page read and write
|
||
695F000
|
stack
|
page read and write
|
||
861E000
|
stack
|
page read and write
|
||
71C0000
|
trusted library allocation
|
page execute and read and write
|
||
7C21000
|
heap
|
page read and write
|
||
5A30000
|
heap
|
page read and write
|
||
56D0000
|
heap
|
page read and write
|
||
18E6000
|
heap
|
page read and write
|
||
6DED000
|
heap
|
page read and write
|
||
45AE000
|
trusted library allocation
|
page read and write
|
||
7E6B000
|
stack
|
page read and write
|
||
7C28000
|
heap
|
page read and write
|
||
7C41000
|
heap
|
page read and write
|
||
4324000
|
trusted library allocation
|
page read and write
|
||
562D000
|
trusted library allocation
|
page read and write
|
||
6C8E000
|
stack
|
page read and write
|
||
18EE000
|
heap
|
page read and write
|
||
7C57000
|
heap
|
page read and write
|
||
7450000
|
trusted library allocation
|
page read and write
|
||
4337000
|
trusted library allocation
|
page read and write
|
||
6970000
|
trusted library allocation
|
page read and write
|
||
1500000
|
trusted library allocation
|
page read and write
|
||
681E000
|
stack
|
page read and write
|
||
E27000
|
unkown
|
page readonly
|
||
45A3000
|
trusted library allocation
|
page read and write
|
||
3680000
|
trusted library allocation
|
page read and write
|
||
460E000
|
trusted library allocation
|
page read and write
|
There are 379 hidden memdumps, click here to show them.