Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
G2Hseja2zK.exe
|
PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
|
initial sample
|
||
C:\Users\user\AppData\Roaming\confuse\chargeable.exe
|
PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\CLR_v2.0_32\UsageLogs\G2Hseja2zK.exe.log
|
ASCII text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\CLR_v2.0_32\UsageLogs\chargeable.exe.log
|
ASCII text, with CRLF line terminators
|
dropped
|
||
\Device\ConDrv
|
ASCII text, with CRLF line terminators
|
dropped
|
Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Users\user\Desktop\G2Hseja2zK.exe
|
"C:\Users\user\Desktop\G2Hseja2zK.exe"
|
||
C:\Users\user\AppData\Roaming\confuse\chargeable.exe
|
"C:\Users\user\AppData\Roaming\confuse\chargeable.exe"
|
||
C:\Users\user\AppData\Roaming\confuse\chargeable.exe
|
C:\Users\user\AppData\Roaming\confuse\chargeable.exe
|
||
C:\Users\user\AppData\Roaming\confuse\chargeable.exe
|
"C:\Users\user\AppData\Roaming\confuse\chargeable.exe"
|
||
C:\Users\user\AppData\Roaming\confuse\chargeable.exe
|
C:\Users\user\AppData\Roaming\confuse\chargeable.exe
|
||
C:\Windows\SysWOW64\netsh.exe
|
netsh firewall add allowedprogram "C:\Users\user\AppData\Roaming\confuse\chargeable.exe" "chargeable.exe" ENABLE
|
||
C:\Users\user\Desktop\G2Hseja2zK.exe
|
"C:\Users\user\Desktop\G2Hseja2zK.exe"
|
||
C:\Users\user\AppData\Roaming\confuse\chargeable.exe
|
"C:\Users\user\AppData\Roaming\confuse\chargeable.exe"
|
||
C:\Users\user\AppData\Roaming\confuse\chargeable.exe
|
C:\Users\user\AppData\Roaming\confuse\chargeable.exe
|
||
C:\Users\user\Desktop\G2Hseja2zK.exe
|
"C:\Users\user\Desktop\G2Hseja2zK.exe"
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
There are 1 hidden processes, click here to show them.
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
http://www.apache.org/licenses/LICENSE-2.0
|
unknown
|
||
http://www.fontbureau.com
|
unknown
|
||
http://www.fontbureau.com/designersG
|
unknown
|
||
http://www.fontbureau.com/designers/?
|
unknown
|
||
http://www.founder.com.cn/cn/bThe
|
unknown
|
||
http://www.fontbureau.com/designers?
|
unknown
|
||
http://go.microsoft.
|
unknown
|
||
http://www.tiro.com
|
unknown
|
||
http://www.fontbureau.com/designers
|
unknown
|
||
http://www.goodfont.co.kr
|
unknown
|
||
http://go.microsoft.LinkId=42127
|
unknown
|
||
http://www.carterandcone.coml
|
unknown
|
||
http://www.sajatypeworks.com
|
unknown
|
||
http://www.typography.netD
|
unknown
|
||
http://www.fontbureau.com/designers/cabarga.htmlN
|
unknown
|
||
http://www.founder.com.cn/cn/cThe
|
unknown
|
||
http://www.galapagosdesign.com/staff/dennis.htm
|
unknown
|
||
http://www.founder.com.cn/cn
|
unknown
|
||
http://www.fontbureau.com/designers/frere-user.html
|
unknown
|
||
http://www.jiyu-kobo.co.jp/
|
unknown
|
||
http://www.galapagosdesign.com/DPlease
|
unknown
|
||
http://www.fontbureau.com/designers8
|
unknown
|
||
http://www.fonts.com
|
unknown
|
||
http://www.sandoll.co.kr
|
unknown
|
||
http://www.urwpp.deDPlease
|
unknown
|
||
http://www.zhongyicts.com.cn
|
unknown
|
||
doddyfire.linkpc.net
|
|||
http://www.sakkal.com
|
unknown
|
There are 18 hidden URLs, click here to show them.
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
doddyfire.linkpc.net
|
41.249.109.159
|
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
41.249.109.159
|
doddyfire.linkpc.net
|
Morocco
|
Registry
Path
|
Value
|
Malicious
|
|
---|---|---|---|
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
|
confuse
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
|
SysMain
|
||
HKEY_CURRENT_USER
|
di
|
||
HKEY_CURRENT_USER\Environment
|
SEE_MASK_NOZONECHECKS
|
||
HKEY_CURRENT_USER\SOFTWARE\e1a87040f2026369a233f9ae76301b7b
|
[kl]
|
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
402000
|
remote allocation
|
page execute and read and write
|
||
2CD1000
|
trusted library allocation
|
page read and write
|
||
2D21000
|
trusted library allocation
|
page read and write
|
||
788000
|
heap
|
page read and write
|
||
4CD8000
|
trusted library allocation
|
page read and write
|
||
4ED0000
|
trusted library allocation
|
page read and write
|
||
5A2000
|
heap
|
page read and write
|
||
50BE000
|
stack
|
page read and write
|
||
17A2000
|
trusted library allocation
|
page execute and read and write
|
||
17C2000
|
trusted library allocation
|
page execute and read and write
|
||
6FEE000
|
stack
|
page read and write
|
||
31D1000
|
trusted library allocation
|
page read and write
|
||
619E000
|
stack
|
page read and write
|
||
7EC000
|
heap
|
page read and write
|
||
1580000
|
trusted library allocation
|
page read and write
|
||
497B000
|
stack
|
page read and write
|
||
4FC000
|
heap
|
page read and write
|
||
5535000
|
heap
|
page read and write
|
||
126E000
|
stack
|
page read and write
|
||
4C65000
|
heap
|
page read and write
|
||
BC5000
|
heap
|
page read and write
|
||
5A50000
|
heap
|
page read and write
|
||
561000
|
heap
|
page read and write
|
||
53A000
|
heap
|
page read and write
|
||
F82000
|
trusted library allocation
|
page execute and read and write
|
||
4FE3000
|
heap
|
page read and write
|
||
BAE000
|
stack
|
page read and write
|
||
109A000
|
trusted library allocation
|
page execute and read and write
|
||
4E0E000
|
stack
|
page read and write
|
||
10B7000
|
trusted library allocation
|
page execute and read and write
|
||
F90000
|
heap
|
page execute and read and write
|
||
B20000
|
heap
|
page read and write
|
||
8CC000
|
heap
|
page read and write
|
||
1A2C000
|
trusted library allocation
|
page execute and read and write
|
||
AA5000
|
heap
|
page read and write
|
||
4C05000
|
trusted library section
|
page readonly
|
||
3258000
|
trusted library allocation
|
page read and write
|
||
29C3000
|
trusted library allocation
|
page read and write
|
||
DBE000
|
heap
|
page read and write
|
||
A2B000
|
trusted library allocation
|
page execute and read and write
|
||
6B4F000
|
stack
|
page read and write
|
||
9F0000
|
trusted library allocation
|
page read and write
|
||
1012000
|
heap
|
page read and write
|
||
5A4000
|
heap
|
page read and write
|
||
132F000
|
stack
|
page read and write
|
||
5370000
|
heap
|
page read and write
|
||
7FE0000
|
heap
|
page read and write
|
||
5EEE000
|
stack
|
page read and write
|
||
D57000
|
trusted library allocation
|
page execute and read and write
|
||
15A0000
|
heap
|
page read and write
|
||
242E000
|
stack
|
page read and write
|
||
62EE000
|
heap
|
page read and write
|
||
1A20000
|
trusted library allocation
|
page read and write
|
||
1172000
|
heap
|
page read and write
|
||
FAE000
|
heap
|
page read and write
|
||
E66000
|
trusted library allocation
|
page execute and read and write
|
||
7A0000
|
heap
|
page read and write
|
||
C62000
|
trusted library allocation
|
page execute and read and write
|
||
502000
|
heap
|
page read and write
|
||
F90000
|
trusted library allocation
|
page read and write
|
||
3C81000
|
trusted library allocation
|
page read and write
|
||
56FE000
|
stack
|
page read and write
|
||
54E0000
|
heap
|
page read and write
|
||
6D3E000
|
stack
|
page read and write
|
||
10AA000
|
trusted library allocation
|
page execute and read and write
|
||
8BCE000
|
stack
|
page read and write
|
||
51F0000
|
heap
|
page read and write
|
||
54D0000
|
heap
|
page read and write
|
||
B40000
|
heap
|
page read and write
|
||
C7A000
|
trusted library allocation
|
page execute and read and write
|
||
8BE000
|
stack
|
page read and write
|
||
1358000
|
heap
|
page read and write
|
||
83B000
|
stack
|
page read and write
|
||
7B4000
|
heap
|
page read and write
|
||
259E000
|
stack
|
page read and write
|
||
612E000
|
stack
|
page read and write
|
||
894C000
|
stack
|
page read and write
|
||
1292000
|
trusted library allocation
|
page read and write
|
||
1357000
|
heap
|
page read and write
|
||
F3E000
|
stack
|
page read and write
|
||
F80000
|
trusted library allocation
|
page read and write
|
||
400000
|
remote allocation
|
page execute and read and write
|
||
D4A000
|
trusted library allocation
|
page execute and read and write
|
||
11A4000
|
heap
|
page read and write
|
||
5BCE000
|
stack
|
page read and write
|
||
6F0E000
|
stack
|
page read and write
|
||
4FE000
|
heap
|
page read and write
|
||
6640000
|
heap
|
page read and write
|
||
A82000
|
unkown
|
page readonly
|
||
4F6E000
|
stack
|
page read and write
|
||
535000
|
heap
|
page read and write
|
||
52B000
|
heap
|
page read and write
|
||
84C0000
|
heap
|
page read and write
|
||
C34000
|
heap
|
page read and write
|
||
51D5000
|
heap
|
page read and write
|
||
67CE000
|
stack
|
page read and write
|
||
C6A000
|
trusted library allocation
|
page execute and read and write
|
||
1870000
|
heap
|
page read and write
|
||
EF9000
|
stack
|
page read and write
|
||
10B0000
|
trusted library allocation
|
page read and write
|
||
E60000
|
trusted library allocation
|
page read and write
|
||
1607000
|
heap
|
page read and write
|
||
602E000
|
stack
|
page read and write
|
||
4B00000
|
heap
|
page read and write
|
||
5833000
|
heap
|
page read and write
|
||
1140000
|
heap
|
page read and write
|
||
52BE000
|
stack
|
page read and write
|
||
11AC000
|
heap
|
page read and write
|
||
1130000
|
trusted library allocation
|
page read and write
|
||
52C000
|
heap
|
page read and write
|
||
3521000
|
trusted library allocation
|
page read and write
|
||
506E000
|
stack
|
page read and write
|
||
A0A000
|
trusted library allocation
|
page execute and read and write
|
||
A80000
|
unkown
|
page readonly
|
||
E62000
|
trusted library allocation
|
page execute and read and write
|
||
1490000
|
trusted library allocation
|
page read and write
|
||
1351000
|
heap
|
page read and write
|
||
1353000
|
heap
|
page read and write
|
||
D40000
|
trusted library allocation
|
page read and write
|
||
BF0000
|
heap
|
page read and write
|
||
574E000
|
stack
|
page read and write
|
||
A40000
|
heap
|
page read and write
|
||
249E000
|
stack
|
page read and write
|
||
2771000
|
trusted library allocation
|
page read and write
|
||
9B4000
|
heap
|
page read and write
|
||
AF6000
|
stack
|
page read and write
|
||
15D3000
|
heap
|
page read and write
|
||
4C00000
|
trusted library section
|
page readonly
|
||
135B000
|
heap
|
page read and write
|
||
2981000
|
trusted library allocation
|
page read and write
|
||
EEE000
|
stack
|
page read and write
|
||
665E000
|
stack
|
page read and write
|
||
31E2000
|
trusted library allocation
|
page read and write
|
||
B50000
|
heap
|
page read and write
|
||
1170000
|
trusted library allocation
|
page execute and read and write
|
||
780000
|
heap
|
page read and write
|
||
17CA000
|
trusted library allocation
|
page execute and read and write
|
||
F40000
|
heap
|
page read and write
|
||
CE0000
|
trusted library allocation
|
page read and write
|
||
4F1C000
|
stack
|
page read and write
|
||
B47000
|
heap
|
page read and write
|
||
E6C000
|
trusted library allocation
|
page execute and read and write
|
||
113F000
|
stack
|
page read and write
|
||
53A000
|
heap
|
page read and write
|
||
702E000
|
stack
|
page read and write
|
||
4A5000
|
heap
|
page read and write
|
||
523E000
|
stack
|
page read and write
|
||
1A22000
|
trusted library allocation
|
page execute and read and write
|
||
38F1000
|
trusted library allocation
|
page read and write
|
||
808000
|
heap
|
page read and write
|
||
6EEE000
|
stack
|
page read and write
|
||
7E8000
|
heap
|
page read and write
|
||
4EEB000
|
stack
|
page read and write
|
||
6669000
|
heap
|
page read and write
|
||
102B000
|
stack
|
page read and write
|
||
FDE000
|
heap
|
page read and write
|
||
54E0000
|
trusted library section
|
page read and write
|
||
1470000
|
trusted library allocation
|
page execute and read and write
|
||
535000
|
heap
|
page read and write
|
||
1540000
|
heap
|
page read and write
|
||
1405000
|
heap
|
page read and write
|
||
BEF000
|
heap
|
page read and write
|
||
521000
|
heap
|
page read and write
|
||
3141000
|
trusted library allocation
|
page read and write
|
||
1800000
|
heap
|
page execute and read and write
|
||
DEF000
|
heap
|
page read and write
|
||
4F7000
|
heap
|
page read and write
|
||
51AF000
|
stack
|
page read and write
|
||
52C000
|
heap
|
page read and write
|
||
562000
|
heap
|
page read and write
|
||
4F33000
|
heap
|
page read and write
|
||
FA8000
|
heap
|
page read and write
|
||
609E000
|
stack
|
page read and write
|
||
4F5000
|
heap
|
page read and write
|
||
524000
|
heap
|
page read and write
|
||
4B10000
|
trusted library allocation
|
page execute and read and write
|
||
7600000
|
heap
|
page read and write
|
||
870E000
|
stack
|
page read and write
|
||
501000
|
heap
|
page read and write
|
||
D00000
|
trusted library allocation
|
page read and write
|
||
70AE000
|
stack
|
page read and write
|
||
3190000
|
trusted library allocation
|
page read and write
|
||
D4C000
|
trusted library allocation
|
page execute and read and write
|
||
16E0000
|
heap
|
page read and write
|
||
7E9000
|
stack
|
page read and write
|
||
1860000
|
trusted library allocation
|
page read and write
|
||
A6E000
|
stack
|
page read and write
|
||
1A60000
|
heap
|
page execute and read and write
|
||
11A0000
|
heap
|
page read and write
|
||
14D0000
|
heap
|
page execute and read and write
|
||
61DE000
|
stack
|
page read and write
|
||
53E000
|
heap
|
page read and write
|
||
5FEE000
|
stack
|
page read and write
|
||
48E000
|
stack
|
page read and write
|
||
884000
|
heap
|
page read and write
|
||
1357000
|
heap
|
page read and write
|
||
5C70000
|
heap
|
page read and write
|
||
50ED000
|
stack
|
page read and write
|
||
5380000
|
trusted library allocation
|
page execute and read and write
|
||
6270000
|
trusted library allocation
|
page execute and read and write
|
||
661E000
|
stack
|
page read and write
|
||
1A12000
|
trusted library allocation
|
page execute and read and write
|
||
4E8000
|
heap
|
page read and write
|
||
10A0000
|
heap
|
page read and write
|
||
28F1000
|
trusted library allocation
|
page read and write
|
||
3C91000
|
trusted library allocation
|
page read and write
|
||
35C0000
|
trusted library allocation
|
page read and write
|
||
F9A000
|
trusted library allocation
|
page execute and read and write
|
||
504000
|
heap
|
page read and write
|
||
55FE000
|
stack
|
page read and write
|
||
BFE000
|
stack
|
page read and write
|
||
4F30000
|
heap
|
page read and write
|
||
1297000
|
trusted library allocation
|
page execute and read and write
|
||
508000
|
heap
|
page read and write
|
||
10FE000
|
stack
|
page read and write
|
||
5360000
|
heap
|
page read and write
|
||
564B000
|
stack
|
page read and write
|
||
10BB000
|
trusted library allocation
|
page execute and read and write
|
||
1352000
|
heap
|
page read and write
|
||
53A0000
|
heap
|
page read and write
|
||
245B000
|
trusted library allocation
|
page execute and read and write
|
||
541000
|
heap
|
page read and write
|
||
598E000
|
stack
|
page read and write
|
||
581000
|
heap
|
page read and write
|
||
6B40000
|
heap
|
page read and write
|
||
12A0000
|
heap
|
page read and write
|
||
C0F000
|
stack
|
page read and write
|
||
5353000
|
heap
|
page read and write
|
||
FEE000
|
stack
|
page read and write
|
||
E24000
|
heap
|
page read and write
|
||
4524000
|
trusted library allocation
|
page read and write
|
||
BF0000
|
trusted library allocation
|
page read and write
|
||
4FF9000
|
stack
|
page read and write
|
||
68CE000
|
stack
|
page read and write
|
||
6AE0000
|
heap
|
page read and write
|
||
1090000
|
trusted library allocation
|
page read and write
|
||
184E000
|
stack
|
page read and write
|
||
54AD000
|
stack
|
page read and write
|
||
A02000
|
trusted library allocation
|
page read and write
|
||
1148000
|
heap
|
page read and write
|
||
EF6000
|
stack
|
page read and write
|
||
506000
|
heap
|
page read and write
|
||
3CD1000
|
trusted library allocation
|
page read and write
|
||
532000
|
heap
|
page read and write
|
||
153E000
|
stack
|
page read and write
|
||
127A000
|
trusted library allocation
|
page execute and read and write
|
||
1054000
|
heap
|
page read and write
|
||
4FB0000
|
heap
|
page read and write
|
||
17B0000
|
trusted library allocation
|
page read and write
|
||
506000
|
heap
|
page read and write
|
||
1016000
|
heap
|
page read and write
|
||
3571000
|
trusted library allocation
|
page read and write
|
||
B0E000
|
stack
|
page read and write
|
||
1060000
|
trusted library allocation
|
page read and write
|
||
990000
|
heap
|
page read and write
|
||
53A3000
|
heap
|
page read and write
|
||
2992000
|
trusted library allocation
|
page read and write
|
||
1290000
|
trusted library allocation
|
page read and write
|
||
1460000
|
heap
|
page read and write
|
||
73A000
|
stack
|
page read and write
|
||
98E000
|
stack
|
page read and write
|
||
77F000
|
unkown
|
page read and write
|
||
A12000
|
trusted library allocation
|
page execute and read and write
|
||
651E000
|
stack
|
page read and write
|
||
13E0000
|
heap
|
page read and write
|
||
31CE000
|
stack
|
page read and write
|
||
19E000
|
stack
|
page read and write
|
||
B58000
|
heap
|
page read and write
|
||
4F0E000
|
stack
|
page read and write
|
||
BF4000
|
heap
|
page read and write
|
||
41C1000
|
trusted library allocation
|
page read and write
|
||
690E000
|
stack
|
page read and write
|
||
15D0000
|
heap
|
page read and write
|
||
FBB000
|
trusted library allocation
|
page execute and read and write
|
||
11CF000
|
heap
|
page read and write
|
||
53A000
|
heap
|
page read and write
|
||
128A000
|
trusted library allocation
|
page execute and read and write
|
||
175E000
|
stack
|
page read and write
|
||
4F9000
|
heap
|
page read and write
|
||
FB7000
|
trusted library allocation
|
page execute and read and write
|
||
52D000
|
heap
|
page read and write
|
||
5A1000
|
heap
|
page read and write
|
||
4F20000
|
trusted library allocation
|
page execute and read and write
|
||
5900000
|
heap
|
page read and write
|
||
5520000
|
heap
|
page read and write
|
||
15AF000
|
stack
|
page read and write
|
||
13DE000
|
stack
|
page read and write
|
||
108A000
|
trusted library allocation
|
page execute and read and write
|
||
561000
|
heap
|
page read and write
|
||
2C81000
|
trusted library allocation
|
page read and write
|
||
27C0000
|
trusted library allocation
|
page read and write
|
||
BB0000
|
heap
|
page read and write
|
||
48AE000
|
stack
|
page read and write
|
||
956000
|
heap
|
page read and write
|
||
7C5000
|
heap
|
page read and write
|
||
322E000
|
stack
|
page read and write
|
||
E52000
|
trusted library allocation
|
page execute and read and write
|
||
6A4E000
|
stack
|
page read and write
|
||
4F8000
|
heap
|
page read and write
|
||
5450000
|
trusted library allocation
|
page execute and read and write
|
||
19B000
|
stack
|
page read and write
|
||
4BEB000
|
stack
|
page read and write
|
||
E3F000
|
heap
|
page read and write
|
||
7E6000
|
stack
|
page read and write
|
||
1070000
|
trusted library allocation
|
page read and write
|
||
9E2000
|
trusted library allocation
|
page execute and read and write
|
||
5550000
|
heap
|
page read and write
|
||
1628000
|
heap
|
page read and write
|
||
1037000
|
heap
|
page read and write
|
||
324E000
|
trusted library allocation
|
page read and write
|
||
4F5000
|
heap
|
page read and write
|
||
587B000
|
stack
|
page read and write
|
||
7870000
|
heap
|
page read and write
|
||
5A7000
|
heap
|
page read and write
|
||
1E0000
|
heap
|
page read and write
|
||
C1E000
|
heap
|
page read and write
|
||
9BE000
|
stack
|
page read and write
|
||
1465000
|
heap
|
page read and write
|
||
3596000
|
trusted library allocation
|
page read and write
|
||
F20000
|
heap
|
page read and write
|
||
EA0000
|
heap
|
page read and write
|
||
1020000
|
heap
|
page read and write
|
||
7EF30000
|
trusted library allocation
|
page execute and read and write
|
||
C40000
|
trusted library allocation
|
page read and write
|
||
536000
|
heap
|
page read and write
|
||
53A000
|
heap
|
page read and write
|
||
9F2000
|
trusted library allocation
|
page execute and read and write
|
||
52B000
|
heap
|
page read and write
|
||
53E000
|
heap
|
page read and write
|
||
14E0000
|
heap
|
page execute and read and write
|
||
884B000
|
stack
|
page read and write
|
||
5B8E000
|
stack
|
page read and write
|
||
F8A000
|
trusted library allocation
|
page execute and read and write
|
||
508000
|
heap
|
page read and write
|
||
A8D000
|
stack
|
page read and write
|
||
4521000
|
trusted library allocation
|
page read and write
|
||
5730000
|
trusted library allocation
|
page execute and read and write
|
||
2D28000
|
trusted library allocation
|
page read and write
|
||
F60000
|
trusted library allocation
|
page read and write
|
||
5350000
|
heap
|
page read and write
|
||
4D81000
|
heap
|
page read and write
|
||
527000
|
heap
|
page read and write
|
||
D52000
|
trusted library allocation
|
page read and write
|
||
293F000
|
stack
|
page read and write
|
||
D62000
|
trusted library allocation
|
page execute and read and write
|
||
C87000
|
trusted library allocation
|
page execute and read and write
|
||
521000
|
heap
|
page read and write
|
||
FA0000
|
heap
|
page read and write
|
||
4FC0000
|
trusted library allocation
|
page execute and read and write
|
||
5560000
|
heap
|
page read and write
|
||
4C40000
|
trusted library allocation
|
page execute and read and write
|
||
5110000
|
heap
|
page read and write
|
||
8E2000
|
heap
|
page read and write
|
||
F92000
|
trusted library allocation
|
page execute and read and write
|
||
4C1000
|
heap
|
page read and write
|
||
129B000
|
trusted library allocation
|
page execute and read and write
|
||
750000
|
heap
|
page read and write
|
||
C00000
|
heap
|
page read and write
|
||
5800000
|
trusted library section
|
page readonly
|
||
C9A000
|
trusted library allocation
|
page execute and read and write
|
||
4E6E000
|
stack
|
page read and write
|
||
10A2000
|
trusted library allocation
|
page execute and read and write
|
||
584000
|
heap
|
page read and write
|
||
F72000
|
trusted library allocation
|
page execute and read and write
|
||
3601000
|
trusted library allocation
|
page read and write
|
||
52B000
|
heap
|
page read and write
|
||
509000
|
heap
|
page read and write
|
||
123B000
|
stack
|
page read and write
|
||
4E4000
|
heap
|
page read and write
|
||
F82000
|
trusted library allocation
|
page execute and read and write
|
||
1040000
|
trusted library allocation
|
page execute and read and write
|
||
FB2000
|
trusted library allocation
|
page read and write
|
||
104C000
|
stack
|
page read and write
|
||
1336000
|
stack
|
page read and write
|
||
587E000
|
stack
|
page read and write
|
||
1877000
|
heap
|
page read and write
|
||
15B0000
|
trusted library section
|
page readonly
|
||
5750000
|
trusted library allocation
|
page execute and read and write
|
||
6B4E000
|
heap
|
page read and write
|
||
11C0000
|
trusted library allocation
|
page execute and read and write
|
||
532000
|
heap
|
page read and write
|
||
507000
|
heap
|
page read and write
|
||
BEE000
|
stack
|
page read and write
|
||
2D04000
|
trusted library allocation
|
page read and write
|
||
13EE000
|
stack
|
page read and write
|
||
509000
|
heap
|
page read and write
|
||
5AA000
|
heap
|
page read and write
|
||
E82000
|
trusted library allocation
|
page execute and read and write
|
||
5AE000
|
heap
|
page read and write
|
||
1A30000
|
heap
|
page read and write
|
||
1030000
|
heap
|
page read and write
|
||
1400000
|
heap
|
page read and write
|
||
BE6000
|
heap
|
page read and write
|
||
54F0000
|
heap
|
page read and write
|
||
562000
|
heap
|
page read and write
|
||
1450000
|
heap
|
page read and write
|
||
1080000
|
heap
|
page execute and read and write
|
||
554F000
|
heap
|
page read and write
|
||
5805000
|
trusted library section
|
page readonly
|
||
14D4000
|
trusted library section
|
page readonly
|
||
1270000
|
trusted library allocation
|
page read and write
|
||
4C5000
|
heap
|
page read and write
|
||
880000
|
heap
|
page read and write
|
||
950000
|
heap
|
page read and write
|
||
52C000
|
heap
|
page read and write
|
||
1050000
|
heap
|
page read and write
|
||
549D000
|
stack
|
page read and write
|
||
4B03000
|
heap
|
page read and write
|
||
6C50000
|
trusted library allocation
|
page execute and read and write
|
||
1330000
|
heap
|
page read and write
|
||
4E8000
|
heap
|
page read and write
|
||
FAA000
|
trusted library allocation
|
page execute and read and write
|
||
C6B000
|
heap
|
page read and write
|
||
524000
|
heap
|
page read and write
|
||
880E000
|
stack
|
page read and write
|
||
1180000
|
trusted library allocation
|
page read and write
|
||
3087000
|
trusted library allocation
|
page execute and read and write
|
||
509000
|
heap
|
page read and write
|
||
B6E000
|
heap
|
page read and write
|
||
31C1000
|
trusted library allocation
|
page read and write
|
||
52F000
|
heap
|
page read and write
|
||
F63000
|
trusted library allocation
|
page read and write
|
||
D00000
|
heap
|
page read and write
|
||
51D000
|
heap
|
page read and write
|
||
531000
|
heap
|
page read and write
|
||
4F9000
|
stack
|
page read and write
|
||
BAE000
|
stack
|
page read and write
|
||
53B000
|
heap
|
page read and write
|
||
E5E000
|
stack
|
page read and write
|
||
5830000
|
heap
|
page read and write
|
||
1D0000
|
heap
|
page read and write
|
||
57B0000
|
trusted library allocation
|
page read and write
|
||
706E000
|
stack
|
page read and write
|
||
490000
|
heap
|
page read and write
|
||
4B0000
|
heap
|
page read and write
|
||
6A0E000
|
stack
|
page read and write
|
||
15E0000
|
heap
|
page read and write
|
||
3251000
|
trusted library allocation
|
page read and write
|
||
161B000
|
heap
|
page read and write
|
||
5EAF000
|
stack
|
page read and write
|
||
5720000
|
trusted library allocation
|
page read and write
|
||
8EC000
|
heap
|
page read and write
|
||
1336000
|
stack
|
page read and write
|
||
57E0000
|
heap
|
page read and write
|
||
521000
|
heap
|
page read and write
|
||
5F5000
|
heap
|
page read and write
|
||
A27000
|
trusted library allocation
|
page execute and read and write
|
||
87E000
|
stack
|
page read and write
|
||
197E000
|
stack
|
page read and write
|
||
1350000
|
heap
|
page read and write
|
||
675E000
|
stack
|
page read and write
|
||
11E0000
|
heap
|
page read and write
|
||
1370000
|
heap
|
page read and write
|
||
EA7000
|
trusted library allocation
|
page execute and read and write
|
||
858000
|
heap
|
page read and write
|
||
B5A000
|
stack
|
page read and write
|
||
4BF0000
|
heap
|
page read and write
|
||
4ACD000
|
stack
|
page read and write
|
||
51AD000
|
stack
|
page read and write
|
||
505000
|
heap
|
page read and write
|
||
DB0000
|
heap
|
page read and write
|
||
5880000
|
heap
|
page read and write
|
||
C08000
|
heap
|
page read and write
|
||
4E8000
|
heap
|
page read and write
|
||
1400000
|
heap
|
page read and write
|
||
565000
|
heap
|
page read and write
|
||
17D7000
|
trusted library allocation
|
page execute and read and write
|
||
14AE000
|
stack
|
page read and write
|
||
3213000
|
trusted library allocation
|
page read and write
|
||
9C0000
|
heap
|
page read and write
|
||
56E0000
|
heap
|
page read and write
|
||
583E000
|
stack
|
page read and write
|
||
142B000
|
stack
|
page read and write
|
||
1B10000
|
heap
|
page read and write
|
||
74F000
|
stack
|
page read and write
|
||
509000
|
heap
|
page read and write
|
||
1592000
|
trusted library allocation
|
page execute and read and write
|
||
D10000
|
heap
|
page read and write
|
||
15F0000
|
heap
|
page read and write
|
||
1A26000
|
trusted library allocation
|
page execute and read and write
|
||
C7C000
|
trusted library allocation
|
page execute and read and write
|
||
536000
|
heap
|
page read and write
|
||
30CE000
|
stack
|
page read and write
|
||
57FD000
|
stack
|
page read and write
|
||
1620000
|
heap
|
page read and write
|
||
536000
|
heap
|
page read and write
|
||
53B000
|
heap
|
page read and write
|
||
135E000
|
heap
|
page read and write
|
||
E28000
|
heap
|
page read and write
|
||
4EC0000
|
trusted library allocation
|
page read and write
|
||
C70000
|
trusted library allocation
|
page read and write
|
||
52A000
|
heap
|
page read and write
|
||
4FA0000
|
heap
|
page read and write
|
||
DBA000
|
heap
|
page read and write
|
||
2C91000
|
trusted library allocation
|
page read and write
|
||
51D0000
|
heap
|
page read and write
|
||
13AE000
|
stack
|
page read and write
|
||
51E000
|
heap
|
page read and write
|
||
1A52000
|
trusted library allocation
|
page execute and read and write
|
||
B2A000
|
stack
|
page read and write
|
||
5A1000
|
heap
|
page read and write
|
||
51BE000
|
stack
|
page read and write
|
||
2801000
|
trusted library allocation
|
page read and write
|
||
100E000
|
heap
|
page read and write
|
||
F7E000
|
stack
|
page read and write
|
||
4F9000
|
heap
|
page read and write
|
||
533F000
|
stack
|
page read and write
|
||
17B2000
|
trusted library allocation
|
page read and write
|
||
9D0000
|
trusted library allocation
|
page read and write
|
||
A9E000
|
unkown
|
page readonly
|
||
1760000
|
trusted library allocation
|
page read and write
|
||
4E5000
|
heap
|
page read and write
|
||
2806000
|
trusted library allocation
|
page read and write
|
||
6D8F000
|
stack
|
page read and write
|
||
54F5000
|
heap
|
page read and write
|
||
F3E000
|
stack
|
page read and write
|
||
BE0000
|
heap
|
page execute and read and write
|
||
A90000
|
heap
|
page read and write
|
||
2450000
|
trusted library allocation
|
page read and write
|
||
F7A000
|
trusted library allocation
|
page execute and read and write
|
||
4FE0000
|
heap
|
page read and write
|
||
E5A000
|
trusted library allocation
|
page execute and read and write
|
||
505000
|
heap
|
page read and write
|
||
C00000
|
heap
|
page read and write
|
||
5930000
|
heap
|
page read and write
|
||
D30000
|
heap
|
page read and write
|
||
F27000
|
heap
|
page read and write
|
||
4F7B000
|
stack
|
page read and write
|
||
17BA000
|
trusted library allocation
|
page execute and read and write
|
||
4D70000
|
heap
|
page read and write
|
||
4F6000
|
heap
|
page read and write
|
||
C05000
|
heap
|
page read and write
|
||
4F8000
|
heap
|
page read and write
|
||
D7B000
|
trusted library allocation
|
page execute and read and write
|
||
6ECF000
|
stack
|
page read and write
|
||
4C60000
|
heap
|
page read and write
|
||
8A4000
|
heap
|
page read and write
|
||
805000
|
heap
|
page read and write
|
||
631E000
|
stack
|
page read and write
|
||
2DE0000
|
trusted library allocation
|
page read and write
|
||
5A8000
|
heap
|
page read and write
|
||
524000
|
heap
|
page read and write
|
||
B40000
|
heap
|
page read and write
|
||
B80000
|
heap
|
page read and write
|
||
2457000
|
trusted library allocation
|
page execute and read and write
|
||
F9A000
|
trusted library allocation
|
page execute and read and write
|
||
107A000
|
trusted library allocation
|
page execute and read and write
|
||
539B000
|
stack
|
page read and write
|
||
770000
|
heap
|
page read and write
|
||
163D000
|
heap
|
page read and write
|
||
506000
|
heap
|
page read and write
|
||
51E000
|
heap
|
page read and write
|
||
700E000
|
stack
|
page read and write
|
||
B90000
|
heap
|
page read and write
|
||
640000
|
heap
|
page read and write
|
||
2796000
|
trusted library allocation
|
page read and write
|
||
179F000
|
stack
|
page read and write
|
||
F8F000
|
trusted library allocation
|
page read and write
|
||
4985000
|
heap
|
page read and write
|
||
17D0000
|
trusted library allocation
|
page read and write
|
||
4D6D000
|
stack
|
page read and write
|
||
DFF000
|
stack
|
page read and write
|
||
17A000
|
stack
|
page read and write
|
||
9FC000
|
trusted library allocation
|
page execute and read and write
|
||
6EA000
|
stack
|
page read and write
|
||
5C60000
|
heap
|
page read and write
|
||
4FB000
|
heap
|
page read and write
|
||
187F000
|
stack
|
page read and write
|
||
2EDE000
|
trusted library allocation
|
page read and write
|
||
1603000
|
heap
|
page read and write
|
||
1390000
|
heap
|
page read and write
|
||
5E0000
|
heap
|
page execute and read and write
|
||
53C000
|
heap
|
page read and write
|
||
860E000
|
stack
|
page read and write
|
||
1437000
|
heap
|
page read and write
|
||
49CC000
|
stack
|
page read and write
|
||
CF0000
|
trusted library allocation
|
page execute and read and write
|
||
2D1E000
|
trusted library allocation
|
page read and write
|
||
133F000
|
stack
|
page read and write
|
||
1282000
|
trusted library allocation
|
page execute and read and write
|
||
194000
|
stack
|
page read and write
|
||
1339000
|
stack
|
page read and write
|
||
F9C000
|
trusted library allocation
|
page execute and read and write
|
||
509000
|
heap
|
page read and write
|
||
5060000
|
unclassified section
|
page read and write
|
||
534B000
|
stack
|
page read and write
|
||
6750000
|
trusted library allocation
|
page read and write
|
||
1130000
|
heap
|
page read and write
|
||
4C30000
|
heap
|
page read and write
|
||
507000
|
heap
|
page read and write
|
||
51E0000
|
heap
|
page read and write
|
||
DD7000
|
heap
|
page read and write
|
||
4E2E000
|
stack
|
page read and write
|
||
1082000
|
trusted library allocation
|
page execute and read and write
|
||
F8A000
|
trusted library allocation
|
page execute and read and write
|
||
C72000
|
trusted library allocation
|
page execute and read and write
|
||
53A000
|
heap
|
page read and write
|
||
4B20000
|
trusted library allocation
|
page read and write
|
||
4C50000
|
heap
|
page read and write
|
||
641E000
|
stack
|
page read and write
|
||
5130000
|
trusted library allocation
|
page read and write
|
||
C92000
|
trusted library allocation
|
page execute and read and write
|
||
BD5000
|
heap
|
page read and write
|
||
535000
|
heap
|
page read and write
|
||
4F20000
|
heap
|
page read and write
|
||
9B0000
|
heap
|
page read and write
|
||
EF6000
|
stack
|
page read and write
|
||
1026000
|
heap
|
page read and write
|
||
123A000
|
stack
|
page read and write
|
||
8A8F000
|
stack
|
page read and write
|
||
760000
|
heap
|
page read and write
|
||
F00000
|
heap
|
page read and write
|
||
53E000
|
heap
|
page read and write
|
||
13E0000
|
heap
|
page read and write
|
||
F80000
|
heap
|
page read and write
|
||
49C3000
|
heap
|
page read and write
|
||
9B000
|
stack
|
page read and write
|
||
5920000
|
trusted library allocation
|
page execute and read and write
|
||
9EA000
|
trusted library allocation
|
page execute and read and write
|
||
3606000
|
trusted library allocation
|
page read and write
|
||
1072000
|
trusted library allocation
|
page execute and read and write
|
||
524000
|
heap
|
page read and write
|
||
4AF0000
|
trusted library allocation
|
page read and write
|
||
4F5000
|
heap
|
page read and write
|
||
EAB000
|
trusted library allocation
|
page execute and read and write
|
||
1359000
|
heap
|
page read and write
|
||
D2A000
|
trusted library allocation
|
page execute and read and write
|
||
736000
|
stack
|
page read and write
|
||
5F0000
|
heap
|
page read and write
|
||
146E000
|
stack
|
page read and write
|
||
1430000
|
heap
|
page read and write
|
||
4EF0000
|
heap
|
page read and write
|
||
5524000
|
heap
|
page read and write
|
||
562000
|
heap
|
page read and write
|
||
11C3000
|
heap
|
page read and write
|
||
66E0000
|
trusted library allocation
|
page read and write
|
||
4571000
|
trusted library allocation
|
page read and write
|
||
4EF0000
|
trusted library section
|
page readonly
|
||
5910000
|
heap
|
page read and write
|
||
49C0000
|
heap
|
page read and write
|
||
1097000
|
trusted library allocation
|
page execute and read and write
|
||
4AD0000
|
heap
|
page read and write
|
||
17AC000
|
trusted library allocation
|
page execute and read and write
|
||
47AB000
|
stack
|
page read and write
|
||
4995000
|
trusted library section
|
page readonly
|
||
1770000
|
heap
|
page read and write
|
||
168A000
|
heap
|
page read and write
|
||
18E000
|
stack
|
page read and write
|
||
64DF000
|
stack
|
page read and write
|
||
528000
|
heap
|
page read and write
|
||
E90000
|
heap
|
page read and write
|
||
7FC000
|
heap
|
page read and write
|
||
D0E000
|
stack
|
page read and write
|
||
14A0000
|
trusted library allocation
|
page execute and read and write
|
||
D5A000
|
trusted library allocation
|
page execute and read and write
|
||
898E000
|
stack
|
page read and write
|
||
5A8E000
|
stack
|
page read and write
|
||
1090000
|
heap
|
page read and write
|
||
D90000
|
heap
|
page read and write
|
||
1359000
|
heap
|
page read and write
|
||
1570000
|
heap
|
page read and write
|
||
5530000
|
heap
|
page read and write
|
||
6E3E000
|
stack
|
page read and write
|
||
AA0000
|
heap
|
page read and write
|
||
572F000
|
trusted library allocation
|
page read and write
|
||
5760000
|
trusted library allocation
|
page read and write
|
||
308B000
|
trusted library allocation
|
page execute and read and write
|
||
5A40000
|
heap
|
page read and write
|
||
ACE000
|
stack
|
page read and write
|
||
2940000
|
trusted library allocation
|
page read and write
|
||
52B000
|
heap
|
page read and write
|
||
CA0000
|
heap
|
page read and write
|
||
51B000
|
heap
|
page read and write
|
||
4ACE000
|
stack
|
page read and write
|
||
739000
|
stack
|
page read and write
|
||
BD0000
|
heap
|
page read and write
|
||
5AE000
|
heap
|
page read and write
|
||
31EF000
|
trusted library allocation
|
page read and write
|
||
FFE000
|
stack
|
page read and write
|
||
850000
|
heap
|
page read and write
|
||
C00000
|
heap
|
page read and write
|
||
159A000
|
trusted library allocation
|
page execute and read and write
|
||
4AE0000
|
heap
|
page read and write
|
||
6650000
|
heap
|
page read and write
|
||
88B000
|
heap
|
page read and write
|
||
5510000
|
heap
|
page read and write
|
||
1A1A000
|
trusted library allocation
|
page execute and read and write
|
||
1160000
|
trusted library allocation
|
page read and write
|
||
4B8000
|
heap
|
page read and write
|
||
532000
|
heap
|
page read and write
|
||
F97000
|
trusted library allocation
|
page execute and read and write
|
||
51E000
|
heap
|
page read and write
|
||
6020000
|
trusted library allocation
|
page read and write
|
||
11A8000
|
heap
|
page read and write
|
||
D22000
|
trusted library allocation
|
page execute and read and write
|
||
790000
|
heap
|
page read and write
|
||
5CCE000
|
stack
|
page read and write
|
||
3771000
|
trusted library allocation
|
page read and write
|
||
F85000
|
heap
|
page read and write
|
||
52C000
|
heap
|
page read and write
|
||
6702000
|
trusted library allocation
|
page read and write
|
||
1092000
|
trusted library allocation
|
page read and write
|
||
160B000
|
heap
|
page read and write
|
||
C82000
|
trusted library allocation
|
page read and write
|
||
E40000
|
trusted library allocation
|
page read and write
|
||
11B0000
|
trusted library allocation
|
page read and write
|
||
D77000
|
trusted library allocation
|
page execute and read and write
|
||
1277000
|
trusted library allocation
|
page execute and read and write
|
||
BB4000
|
heap
|
page read and write
|
||
1272000
|
trusted library allocation
|
page read and write
|
||
1339000
|
stack
|
page read and write
|
||
3080000
|
trusted library allocation
|
page read and write
|
||
4F09000
|
heap
|
page read and write
|
||
6C8D000
|
stack
|
page read and write
|
||
17B7000
|
trusted library allocation
|
page execute and read and write
|
||
3C84000
|
trusted library allocation
|
page read and write
|
||
4FBC000
|
stack
|
page read and write
|
||
528000
|
heap
|
page read and write
|
||
A1A000
|
trusted library allocation
|
page execute and read and write
|
||
524000
|
heap
|
page read and write
|
||
63E000
|
stack
|
page read and write
|
||
E20000
|
heap
|
page read and write
|
||
B6E000
|
stack
|
page read and write
|
||
5A3D000
|
stack
|
page read and write
|
||
62DF000
|
stack
|
page read and write
|
||
FAF000
|
stack
|
page read and write
|
||
5540000
|
heap
|
page read and write
|
||
D10000
|
trusted library allocation
|
page read and write
|
||
4EF4000
|
trusted library section
|
page readonly
|
||
970000
|
heap
|
page read and write
|
||
FA2000
|
trusted library allocation
|
page execute and read and write
|
||
147B000
|
stack
|
page read and write
|
||
1688000
|
heap
|
page read and write
|
||
F80000
|
trusted library allocation
|
page read and write
|
||
4F6000
|
stack
|
page read and write
|
||
8D0000
|
heap
|
page read and write
|
||
F40000
|
heap
|
page read and write
|
||
1079000
|
heap
|
page read and write
|
||
7C0000
|
heap
|
page read and write
|
||
10A6000
|
heap
|
page read and write
|
||
299F000
|
trusted library allocation
|
page read and write
|
||
D42000
|
trusted library allocation
|
page execute and read and write
|
||
5935000
|
heap
|
page read and write
|
||
6DCE000
|
stack
|
page read and write
|
||
1331000
|
heap
|
page read and write
|
||
3CF7000
|
trusted library allocation
|
page read and write
|
||
A07000
|
trusted library allocation
|
page execute and read and write
|
||
4141000
|
trusted library allocation
|
page read and write
|
||
108C000
|
trusted library allocation
|
page execute and read and write
|
||
C8A000
|
trusted library allocation
|
page execute and read and write
|
||
535000
|
heap
|
page read and write
|
||
B84000
|
heap
|
page read and write
|
||
17DB000
|
trusted library allocation
|
page execute and read and write
|
||
44E000
|
unkown
|
page read and write
|
||
1480000
|
trusted library allocation
|
page read and write
|
||
1080000
|
trusted library allocation
|
page read and write
|
||
1654000
|
heap
|
page read and write
|
||
53C000
|
heap
|
page read and write
|
||
C50000
|
heap
|
page execute and read and write
|
||
63A000
|
stack
|
page read and write
|
||
50AE000
|
stack
|
page read and write
|
||
5DAE000
|
stack
|
page read and write
|
||
15A8000
|
heap
|
page read and write
|
||
54D0000
|
heap
|
page read and write
|
||
8ACE000
|
stack
|
page read and write
|
||
11AF000
|
stack
|
page read and write
|
||
504000
|
heap
|
page read and write
|
||
4980000
|
heap
|
page read and write
|
||
51C000
|
heap
|
page read and write
|
||
4F5000
|
heap
|
page read and write
|
||
17A0000
|
trusted library allocation
|
page read and write
|
||
5544000
|
heap
|
page read and write
|
||
5AE000
|
heap
|
page read and write
|
||
4A0000
|
heap
|
page read and write
|
||
EF9000
|
stack
|
page read and write
|
||
62E0000
|
heap
|
page read and write
|
||
53E000
|
heap
|
page read and write
|
||
4990000
|
trusted library section
|
page readonly
|
||
14D0000
|
trusted library section
|
page readonly
|
||
5500000
|
heap
|
page read and write
|
||
2DFE000
|
stack
|
page read and write
|
||
936000
|
stack
|
page read and write
|
||
2E7E000
|
stack
|
page read and write
|
||
14B0000
|
trusted library allocation
|
page read and write
|
||
400000
|
heap
|
page read and write
|
||
4D7E000
|
stack
|
page read and write
|
||
D6A000
|
trusted library allocation
|
page execute and read and write
|
There are 777 hidden memdumps, click here to show them.