IOC Report
G2Hseja2zK.exe

loading gif

Files

File Path
Type
Category
Malicious
G2Hseja2zK.exe
PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
initial sample
malicious
C:\Users\user\AppData\Roaming\confuse\chargeable.exe
PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
malicious
C:\Users\user\AppData\Local\Microsoft\CLR_v2.0_32\UsageLogs\G2Hseja2zK.exe.log
ASCII text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Microsoft\CLR_v2.0_32\UsageLogs\chargeable.exe.log
ASCII text, with CRLF line terminators
dropped
\Device\ConDrv
ASCII text, with CRLF line terminators
dropped

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\G2Hseja2zK.exe
"C:\Users\user\Desktop\G2Hseja2zK.exe"
malicious
C:\Users\user\AppData\Roaming\confuse\chargeable.exe
"C:\Users\user\AppData\Roaming\confuse\chargeable.exe"
malicious
C:\Users\user\AppData\Roaming\confuse\chargeable.exe
C:\Users\user\AppData\Roaming\confuse\chargeable.exe
malicious
C:\Users\user\AppData\Roaming\confuse\chargeable.exe
"C:\Users\user\AppData\Roaming\confuse\chargeable.exe"
malicious
C:\Users\user\AppData\Roaming\confuse\chargeable.exe
C:\Users\user\AppData\Roaming\confuse\chargeable.exe
malicious
C:\Windows\SysWOW64\netsh.exe
netsh firewall add allowedprogram "C:\Users\user\AppData\Roaming\confuse\chargeable.exe" "chargeable.exe" ENABLE
malicious
C:\Users\user\Desktop\G2Hseja2zK.exe
"C:\Users\user\Desktop\G2Hseja2zK.exe"
malicious
C:\Users\user\AppData\Roaming\confuse\chargeable.exe
"C:\Users\user\AppData\Roaming\confuse\chargeable.exe"
malicious
C:\Users\user\AppData\Roaming\confuse\chargeable.exe
C:\Users\user\AppData\Roaming\confuse\chargeable.exe
malicious
C:\Users\user\Desktop\G2Hseja2zK.exe
"C:\Users\user\Desktop\G2Hseja2zK.exe"
malicious
C:\Windows\System32\conhost.exe
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
There are 1 hidden processes, click here to show them.

URLs

Name
IP
Malicious
http://www.apache.org/licenses/LICENSE-2.0
unknown
http://www.fontbureau.com
unknown
http://www.fontbureau.com/designersG
unknown
http://www.fontbureau.com/designers/?
unknown
http://www.founder.com.cn/cn/bThe
unknown
http://www.fontbureau.com/designers?
unknown
http://go.microsoft.
unknown
http://www.tiro.com
unknown
http://www.fontbureau.com/designers
unknown
http://www.goodfont.co.kr
unknown
http://go.microsoft.LinkId=42127
unknown
http://www.carterandcone.coml
unknown
http://www.sajatypeworks.com
unknown
http://www.typography.netD
unknown
http://www.fontbureau.com/designers/cabarga.htmlN
unknown
http://www.founder.com.cn/cn/cThe
unknown
http://www.galapagosdesign.com/staff/dennis.htm
unknown
http://www.founder.com.cn/cn
unknown
http://www.fontbureau.com/designers/frere-user.html
unknown
http://www.jiyu-kobo.co.jp/
unknown
http://www.galapagosdesign.com/DPlease
unknown
http://www.fontbureau.com/designers8
unknown
http://www.fonts.com
unknown
http://www.sandoll.co.kr
unknown
http://www.urwpp.deDPlease
unknown
http://www.zhongyicts.com.cn
unknown
doddyfire.linkpc.net
http://www.sakkal.com
unknown
There are 18 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
doddyfire.linkpc.net
41.249.109.159

IPs

IP
Domain
Country
Malicious
41.249.109.159
doddyfire.linkpc.net
Morocco

Registry

Path
Value
Malicious
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
confuse
malicious
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
SysMain
malicious
HKEY_CURRENT_USER
di
malicious
HKEY_CURRENT_USER\Environment
SEE_MASK_NOZONECHECKS
malicious
HKEY_CURRENT_USER\SOFTWARE\e1a87040f2026369a233f9ae76301b7b
[kl]

Memdumps

Base Address
Regiontype
Protect
Malicious
402000
remote allocation
page execute and read and write
malicious
2CD1000
trusted library allocation
page read and write
malicious
2D21000
trusted library allocation
page read and write
malicious
788000
heap
page read and write
4CD8000
trusted library allocation
page read and write
4ED0000
trusted library allocation
page read and write
5A2000
heap
page read and write
50BE000
stack
page read and write
17A2000
trusted library allocation
page execute and read and write
17C2000
trusted library allocation
page execute and read and write
6FEE000
stack
page read and write
31D1000
trusted library allocation
page read and write
619E000
stack
page read and write
7EC000
heap
page read and write
1580000
trusted library allocation
page read and write
497B000
stack
page read and write
4FC000
heap
page read and write
5535000
heap
page read and write
126E000
stack
page read and write
4C65000
heap
page read and write
BC5000
heap
page read and write
5A50000
heap
page read and write
561000
heap
page read and write
53A000
heap
page read and write
F82000
trusted library allocation
page execute and read and write
4FE3000
heap
page read and write
BAE000
stack
page read and write
109A000
trusted library allocation
page execute and read and write
4E0E000
stack
page read and write
10B7000
trusted library allocation
page execute and read and write
F90000
heap
page execute and read and write
B20000
heap
page read and write
8CC000
heap
page read and write
1A2C000
trusted library allocation
page execute and read and write
AA5000
heap
page read and write
4C05000
trusted library section
page readonly
3258000
trusted library allocation
page read and write
29C3000
trusted library allocation
page read and write
DBE000
heap
page read and write
A2B000
trusted library allocation
page execute and read and write
6B4F000
stack
page read and write
9F0000
trusted library allocation
page read and write
1012000
heap
page read and write
5A4000
heap
page read and write
132F000
stack
page read and write
5370000
heap
page read and write
7FE0000
heap
page read and write
5EEE000
stack
page read and write
D57000
trusted library allocation
page execute and read and write
15A0000
heap
page read and write
242E000
stack
page read and write
62EE000
heap
page read and write
1A20000
trusted library allocation
page read and write
1172000
heap
page read and write
FAE000
heap
page read and write
E66000
trusted library allocation
page execute and read and write
7A0000
heap
page read and write
C62000
trusted library allocation
page execute and read and write
502000
heap
page read and write
F90000
trusted library allocation
page read and write
3C81000
trusted library allocation
page read and write
56FE000
stack
page read and write
54E0000
heap
page read and write
6D3E000
stack
page read and write
10AA000
trusted library allocation
page execute and read and write
8BCE000
stack
page read and write
51F0000
heap
page read and write
54D0000
heap
page read and write
B40000
heap
page read and write
C7A000
trusted library allocation
page execute and read and write
8BE000
stack
page read and write
1358000
heap
page read and write
83B000
stack
page read and write
7B4000
heap
page read and write
259E000
stack
page read and write
612E000
stack
page read and write
894C000
stack
page read and write
1292000
trusted library allocation
page read and write
1357000
heap
page read and write
F3E000
stack
page read and write
F80000
trusted library allocation
page read and write
400000
remote allocation
page execute and read and write
D4A000
trusted library allocation
page execute and read and write
11A4000
heap
page read and write
5BCE000
stack
page read and write
6F0E000
stack
page read and write
4FE000
heap
page read and write
6640000
heap
page read and write
A82000
unkown
page readonly
4F6E000
stack
page read and write
535000
heap
page read and write
52B000
heap
page read and write
84C0000
heap
page read and write
C34000
heap
page read and write
51D5000
heap
page read and write
67CE000
stack
page read and write
C6A000
trusted library allocation
page execute and read and write
1870000
heap
page read and write
EF9000
stack
page read and write
10B0000
trusted library allocation
page read and write
E60000
trusted library allocation
page read and write
1607000
heap
page read and write
602E000
stack
page read and write
4B00000
heap
page read and write
5833000
heap
page read and write
1140000
heap
page read and write
52BE000
stack
page read and write
11AC000
heap
page read and write
1130000
trusted library allocation
page read and write
52C000
heap
page read and write
3521000
trusted library allocation
page read and write
506E000
stack
page read and write
A0A000
trusted library allocation
page execute and read and write
A80000
unkown
page readonly
E62000
trusted library allocation
page execute and read and write
1490000
trusted library allocation
page read and write
1351000
heap
page read and write
1353000
heap
page read and write
D40000
trusted library allocation
page read and write
BF0000
heap
page read and write
574E000
stack
page read and write
A40000
heap
page read and write
249E000
stack
page read and write
2771000
trusted library allocation
page read and write
9B4000
heap
page read and write
AF6000
stack
page read and write
15D3000
heap
page read and write
4C00000
trusted library section
page readonly
135B000
heap
page read and write
2981000
trusted library allocation
page read and write
EEE000
stack
page read and write
665E000
stack
page read and write
31E2000
trusted library allocation
page read and write
B50000
heap
page read and write
1170000
trusted library allocation
page execute and read and write
780000
heap
page read and write
17CA000
trusted library allocation
page execute and read and write
F40000
heap
page read and write
CE0000
trusted library allocation
page read and write
4F1C000
stack
page read and write
B47000
heap
page read and write
E6C000
trusted library allocation
page execute and read and write
113F000
stack
page read and write
53A000
heap
page read and write
702E000
stack
page read and write
4A5000
heap
page read and write
523E000
stack
page read and write
1A22000
trusted library allocation
page execute and read and write
38F1000
trusted library allocation
page read and write
808000
heap
page read and write
6EEE000
stack
page read and write
7E8000
heap
page read and write
4EEB000
stack
page read and write
6669000
heap
page read and write
102B000
stack
page read and write
FDE000
heap
page read and write
54E0000
trusted library section
page read and write
1470000
trusted library allocation
page execute and read and write
535000
heap
page read and write
1540000
heap
page read and write
1405000
heap
page read and write
BEF000
heap
page read and write
521000
heap
page read and write
3141000
trusted library allocation
page read and write
1800000
heap
page execute and read and write
DEF000
heap
page read and write
4F7000
heap
page read and write
51AF000
stack
page read and write
52C000
heap
page read and write
562000
heap
page read and write
4F33000
heap
page read and write
FA8000
heap
page read and write
609E000
stack
page read and write
4F5000
heap
page read and write
524000
heap
page read and write
4B10000
trusted library allocation
page execute and read and write
7600000
heap
page read and write
870E000
stack
page read and write
501000
heap
page read and write
D00000
trusted library allocation
page read and write
70AE000
stack
page read and write
3190000
trusted library allocation
page read and write
D4C000
trusted library allocation
page execute and read and write
16E0000
heap
page read and write
7E9000
stack
page read and write
1860000
trusted library allocation
page read and write
A6E000
stack
page read and write
1A60000
heap
page execute and read and write
11A0000
heap
page read and write
14D0000
heap
page execute and read and write
61DE000
stack
page read and write
53E000
heap
page read and write
5FEE000
stack
page read and write
48E000
stack
page read and write
884000
heap
page read and write
1357000
heap
page read and write
5C70000
heap
page read and write
50ED000
stack
page read and write
5380000
trusted library allocation
page execute and read and write
6270000
trusted library allocation
page execute and read and write
661E000
stack
page read and write
1A12000
trusted library allocation
page execute and read and write
4E8000
heap
page read and write
10A0000
heap
page read and write
28F1000
trusted library allocation
page read and write
3C91000
trusted library allocation
page read and write
35C0000
trusted library allocation
page read and write
F9A000
trusted library allocation
page execute and read and write
504000
heap
page read and write
55FE000
stack
page read and write
BFE000
stack
page read and write
4F30000
heap
page read and write
1297000
trusted library allocation
page execute and read and write
508000
heap
page read and write
10FE000
stack
page read and write
5360000
heap
page read and write
564B000
stack
page read and write
10BB000
trusted library allocation
page execute and read and write
1352000
heap
page read and write
53A0000
heap
page read and write
245B000
trusted library allocation
page execute and read and write
541000
heap
page read and write
598E000
stack
page read and write
581000
heap
page read and write
6B40000
heap
page read and write
12A0000
heap
page read and write
C0F000
stack
page read and write
5353000
heap
page read and write
FEE000
stack
page read and write
E24000
heap
page read and write
4524000
trusted library allocation
page read and write
BF0000
trusted library allocation
page read and write
4FF9000
stack
page read and write
68CE000
stack
page read and write
6AE0000
heap
page read and write
1090000
trusted library allocation
page read and write
184E000
stack
page read and write
54AD000
stack
page read and write
A02000
trusted library allocation
page read and write
1148000
heap
page read and write
EF6000
stack
page read and write
506000
heap
page read and write
3CD1000
trusted library allocation
page read and write
532000
heap
page read and write
153E000
stack
page read and write
127A000
trusted library allocation
page execute and read and write
1054000
heap
page read and write
4FB0000
heap
page read and write
17B0000
trusted library allocation
page read and write
506000
heap
page read and write
1016000
heap
page read and write
3571000
trusted library allocation
page read and write
B0E000
stack
page read and write
1060000
trusted library allocation
page read and write
990000
heap
page read and write
53A3000
heap
page read and write
2992000
trusted library allocation
page read and write
1290000
trusted library allocation
page read and write
1460000
heap
page read and write
73A000
stack
page read and write
98E000
stack
page read and write
77F000
unkown
page read and write
A12000
trusted library allocation
page execute and read and write
651E000
stack
page read and write
13E0000
heap
page read and write
31CE000
stack
page read and write
19E000
stack
page read and write
B58000
heap
page read and write
4F0E000
stack
page read and write
BF4000
heap
page read and write
41C1000
trusted library allocation
page read and write
690E000
stack
page read and write
15D0000
heap
page read and write
FBB000
trusted library allocation
page execute and read and write
11CF000
heap
page read and write
53A000
heap
page read and write
128A000
trusted library allocation
page execute and read and write
175E000
stack
page read and write
4F9000
heap
page read and write
FB7000
trusted library allocation
page execute and read and write
52D000
heap
page read and write
5A1000
heap
page read and write
4F20000
trusted library allocation
page execute and read and write
5900000
heap
page read and write
5520000
heap
page read and write
15AF000
stack
page read and write
13DE000
stack
page read and write
108A000
trusted library allocation
page execute and read and write
561000
heap
page read and write
2C81000
trusted library allocation
page read and write
27C0000
trusted library allocation
page read and write
BB0000
heap
page read and write
48AE000
stack
page read and write
956000
heap
page read and write
7C5000
heap
page read and write
322E000
stack
page read and write
E52000
trusted library allocation
page execute and read and write
6A4E000
stack
page read and write
4F8000
heap
page read and write
5450000
trusted library allocation
page execute and read and write
19B000
stack
page read and write
4BEB000
stack
page read and write
E3F000
heap
page read and write
7E6000
stack
page read and write
1070000
trusted library allocation
page read and write
9E2000
trusted library allocation
page execute and read and write
5550000
heap
page read and write
1628000
heap
page read and write
1037000
heap
page read and write
324E000
trusted library allocation
page read and write
4F5000
heap
page read and write
587B000
stack
page read and write
7870000
heap
page read and write
5A7000
heap
page read and write
1E0000
heap
page read and write
C1E000
heap
page read and write
9BE000
stack
page read and write
1465000
heap
page read and write
3596000
trusted library allocation
page read and write
F20000
heap
page read and write
EA0000
heap
page read and write
1020000
heap
page read and write
7EF30000
trusted library allocation
page execute and read and write
C40000
trusted library allocation
page read and write
536000
heap
page read and write
53A000
heap
page read and write
9F2000
trusted library allocation
page execute and read and write
52B000
heap
page read and write
53E000
heap
page read and write
14E0000
heap
page execute and read and write
884B000
stack
page read and write
5B8E000
stack
page read and write
F8A000
trusted library allocation
page execute and read and write
508000
heap
page read and write
A8D000
stack
page read and write
4521000
trusted library allocation
page read and write
5730000
trusted library allocation
page execute and read and write
2D28000
trusted library allocation
page read and write
F60000
trusted library allocation
page read and write
5350000
heap
page read and write
4D81000
heap
page read and write
527000
heap
page read and write
D52000
trusted library allocation
page read and write
293F000
stack
page read and write
D62000
trusted library allocation
page execute and read and write
C87000
trusted library allocation
page execute and read and write
521000
heap
page read and write
FA0000
heap
page read and write
4FC0000
trusted library allocation
page execute and read and write
5560000
heap
page read and write
4C40000
trusted library allocation
page execute and read and write
5110000
heap
page read and write
8E2000
heap
page read and write
F92000
trusted library allocation
page execute and read and write
4C1000
heap
page read and write
129B000
trusted library allocation
page execute and read and write
750000
heap
page read and write
C00000
heap
page read and write
5800000
trusted library section
page readonly
C9A000
trusted library allocation
page execute and read and write
4E6E000
stack
page read and write
10A2000
trusted library allocation
page execute and read and write
584000
heap
page read and write
F72000
trusted library allocation
page execute and read and write
3601000
trusted library allocation
page read and write
52B000
heap
page read and write
509000
heap
page read and write
123B000
stack
page read and write
4E4000
heap
page read and write
F82000
trusted library allocation
page execute and read and write
1040000
trusted library allocation
page execute and read and write
FB2000
trusted library allocation
page read and write
104C000
stack
page read and write
1336000
stack
page read and write
587E000
stack
page read and write
1877000
heap
page read and write
15B0000
trusted library section
page readonly
5750000
trusted library allocation
page execute and read and write
6B4E000
heap
page read and write
11C0000
trusted library allocation
page execute and read and write
532000
heap
page read and write
507000
heap
page read and write
BEE000
stack
page read and write
2D04000
trusted library allocation
page read and write
13EE000
stack
page read and write
509000
heap
page read and write
5AA000
heap
page read and write
E82000
trusted library allocation
page execute and read and write
5AE000
heap
page read and write
1A30000
heap
page read and write
1030000
heap
page read and write
1400000
heap
page read and write
BE6000
heap
page read and write
54F0000
heap
page read and write
562000
heap
page read and write
1450000
heap
page read and write
1080000
heap
page execute and read and write
554F000
heap
page read and write
5805000
trusted library section
page readonly
14D4000
trusted library section
page readonly
1270000
trusted library allocation
page read and write
4C5000
heap
page read and write
880000
heap
page read and write
950000
heap
page read and write
52C000
heap
page read and write
1050000
heap
page read and write
549D000
stack
page read and write
4B03000
heap
page read and write
6C50000
trusted library allocation
page execute and read and write
1330000
heap
page read and write
4E8000
heap
page read and write
FAA000
trusted library allocation
page execute and read and write
C6B000
heap
page read and write
524000
heap
page read and write
880E000
stack
page read and write
1180000
trusted library allocation
page read and write
3087000
trusted library allocation
page execute and read and write
509000
heap
page read and write
B6E000
heap
page read and write
31C1000
trusted library allocation
page read and write
52F000
heap
page read and write
F63000
trusted library allocation
page read and write
D00000
heap
page read and write
51D000
heap
page read and write
531000
heap
page read and write
4F9000
stack
page read and write
BAE000
stack
page read and write
53B000
heap
page read and write
E5E000
stack
page read and write
5830000
heap
page read and write
1D0000
heap
page read and write
57B0000
trusted library allocation
page read and write
706E000
stack
page read and write
490000
heap
page read and write
4B0000
heap
page read and write
6A0E000
stack
page read and write
15E0000
heap
page read and write
3251000
trusted library allocation
page read and write
161B000
heap
page read and write
5EAF000
stack
page read and write
5720000
trusted library allocation
page read and write
8EC000
heap
page read and write
1336000
stack
page read and write
57E0000
heap
page read and write
521000
heap
page read and write
5F5000
heap
page read and write
A27000
trusted library allocation
page execute and read and write
87E000
stack
page read and write
197E000
stack
page read and write
1350000
heap
page read and write
675E000
stack
page read and write
11E0000
heap
page read and write
1370000
heap
page read and write
EA7000
trusted library allocation
page execute and read and write
858000
heap
page read and write
B5A000
stack
page read and write
4BF0000
heap
page read and write
4ACD000
stack
page read and write
51AD000
stack
page read and write
505000
heap
page read and write
DB0000
heap
page read and write
5880000
heap
page read and write
C08000
heap
page read and write
4E8000
heap
page read and write
1400000
heap
page read and write
565000
heap
page read and write
17D7000
trusted library allocation
page execute and read and write
14AE000
stack
page read and write
3213000
trusted library allocation
page read and write
9C0000
heap
page read and write
56E0000
heap
page read and write
583E000
stack
page read and write
142B000
stack
page read and write
1B10000
heap
page read and write
74F000
stack
page read and write
509000
heap
page read and write
1592000
trusted library allocation
page execute and read and write
D10000
heap
page read and write
15F0000
heap
page read and write
1A26000
trusted library allocation
page execute and read and write
C7C000
trusted library allocation
page execute and read and write
536000
heap
page read and write
30CE000
stack
page read and write
57FD000
stack
page read and write
1620000
heap
page read and write
536000
heap
page read and write
53B000
heap
page read and write
135E000
heap
page read and write
E28000
heap
page read and write
4EC0000
trusted library allocation
page read and write
C70000
trusted library allocation
page read and write
52A000
heap
page read and write
4FA0000
heap
page read and write
DBA000
heap
page read and write
2C91000
trusted library allocation
page read and write
51D0000
heap
page read and write
13AE000
stack
page read and write
51E000
heap
page read and write
1A52000
trusted library allocation
page execute and read and write
B2A000
stack
page read and write
5A1000
heap
page read and write
51BE000
stack
page read and write
2801000
trusted library allocation
page read and write
100E000
heap
page read and write
F7E000
stack
page read and write
4F9000
heap
page read and write
533F000
stack
page read and write
17B2000
trusted library allocation
page read and write
9D0000
trusted library allocation
page read and write
A9E000
unkown
page readonly
1760000
trusted library allocation
page read and write
4E5000
heap
page read and write
2806000
trusted library allocation
page read and write
6D8F000
stack
page read and write
54F5000
heap
page read and write
F3E000
stack
page read and write
BE0000
heap
page execute and read and write
A90000
heap
page read and write
2450000
trusted library allocation
page read and write
F7A000
trusted library allocation
page execute and read and write
4FE0000
heap
page read and write
E5A000
trusted library allocation
page execute and read and write
505000
heap
page read and write
C00000
heap
page read and write
5930000
heap
page read and write
D30000
heap
page read and write
F27000
heap
page read and write
4F7B000
stack
page read and write
17BA000
trusted library allocation
page execute and read and write
4D70000
heap
page read and write
4F6000
heap
page read and write
C05000
heap
page read and write
4F8000
heap
page read and write
D7B000
trusted library allocation
page execute and read and write
6ECF000
stack
page read and write
4C60000
heap
page read and write
8A4000
heap
page read and write
805000
heap
page read and write
631E000
stack
page read and write
2DE0000
trusted library allocation
page read and write
5A8000
heap
page read and write
524000
heap
page read and write
B40000
heap
page read and write
B80000
heap
page read and write
2457000
trusted library allocation
page execute and read and write
F9A000
trusted library allocation
page execute and read and write
107A000
trusted library allocation
page execute and read and write
539B000
stack
page read and write
770000
heap
page read and write
163D000
heap
page read and write
506000
heap
page read and write
51E000
heap
page read and write
700E000
stack
page read and write
B90000
heap
page read and write
640000
heap
page read and write
2796000
trusted library allocation
page read and write
179F000
stack
page read and write
F8F000
trusted library allocation
page read and write
4985000
heap
page read and write
17D0000
trusted library allocation
page read and write
4D6D000
stack
page read and write
DFF000
stack
page read and write
17A000
stack
page read and write
9FC000
trusted library allocation
page execute and read and write
6EA000
stack
page read and write
5C60000
heap
page read and write
4FB000
heap
page read and write
187F000
stack
page read and write
2EDE000
trusted library allocation
page read and write
1603000
heap
page read and write
1390000
heap
page read and write
5E0000
heap
page execute and read and write
53C000
heap
page read and write
860E000
stack
page read and write
1437000
heap
page read and write
49CC000
stack
page read and write
CF0000
trusted library allocation
page execute and read and write
2D1E000
trusted library allocation
page read and write
133F000
stack
page read and write
1282000
trusted library allocation
page execute and read and write
194000
stack
page read and write
1339000
stack
page read and write
F9C000
trusted library allocation
page execute and read and write
509000
heap
page read and write
5060000
unclassified section
page read and write
534B000
stack
page read and write
6750000
trusted library allocation
page read and write
1130000
heap
page read and write
4C30000
heap
page read and write
507000
heap
page read and write
51E0000
heap
page read and write
DD7000
heap
page read and write
4E2E000
stack
page read and write
1082000
trusted library allocation
page execute and read and write
F8A000
trusted library allocation
page execute and read and write
C72000
trusted library allocation
page execute and read and write
53A000
heap
page read and write
4B20000
trusted library allocation
page read and write
4C50000
heap
page read and write
641E000
stack
page read and write
5130000
trusted library allocation
page read and write
C92000
trusted library allocation
page execute and read and write
BD5000
heap
page read and write
535000
heap
page read and write
4F20000
heap
page read and write
9B0000
heap
page read and write
EF6000
stack
page read and write
1026000
heap
page read and write
123A000
stack
page read and write
8A8F000
stack
page read and write
760000
heap
page read and write
F00000
heap
page read and write
53E000
heap
page read and write
13E0000
heap
page read and write
F80000
heap
page read and write
49C3000
heap
page read and write
9B000
stack
page read and write
5920000
trusted library allocation
page execute and read and write
9EA000
trusted library allocation
page execute and read and write
3606000
trusted library allocation
page read and write
1072000
trusted library allocation
page execute and read and write
524000
heap
page read and write
4AF0000
trusted library allocation
page read and write
4F5000
heap
page read and write
EAB000
trusted library allocation
page execute and read and write
1359000
heap
page read and write
D2A000
trusted library allocation
page execute and read and write
736000
stack
page read and write
5F0000
heap
page read and write
146E000
stack
page read and write
1430000
heap
page read and write
4EF0000
heap
page read and write
5524000
heap
page read and write
562000
heap
page read and write
11C3000
heap
page read and write
66E0000
trusted library allocation
page read and write
4571000
trusted library allocation
page read and write
4EF0000
trusted library section
page readonly
5910000
heap
page read and write
49C0000
heap
page read and write
1097000
trusted library allocation
page execute and read and write
4AD0000
heap
page read and write
17AC000
trusted library allocation
page execute and read and write
47AB000
stack
page read and write
4995000
trusted library section
page readonly
1770000
heap
page read and write
168A000
heap
page read and write
18E000
stack
page read and write
64DF000
stack
page read and write
528000
heap
page read and write
E90000
heap
page read and write
7FC000
heap
page read and write
D0E000
stack
page read and write
14A0000
trusted library allocation
page execute and read and write
D5A000
trusted library allocation
page execute and read and write
898E000
stack
page read and write
5A8E000
stack
page read and write
1090000
heap
page read and write
D90000
heap
page read and write
1359000
heap
page read and write
1570000
heap
page read and write
5530000
heap
page read and write
6E3E000
stack
page read and write
AA0000
heap
page read and write
572F000
trusted library allocation
page read and write
5760000
trusted library allocation
page read and write
308B000
trusted library allocation
page execute and read and write
5A40000
heap
page read and write
ACE000
stack
page read and write
2940000
trusted library allocation
page read and write
52B000
heap
page read and write
CA0000
heap
page read and write
51B000
heap
page read and write
4ACE000
stack
page read and write
739000
stack
page read and write
BD0000
heap
page read and write
5AE000
heap
page read and write
31EF000
trusted library allocation
page read and write
FFE000
stack
page read and write
850000
heap
page read and write
C00000
heap
page read and write
159A000
trusted library allocation
page execute and read and write
4AE0000
heap
page read and write
6650000
heap
page read and write
88B000
heap
page read and write
5510000
heap
page read and write
1A1A000
trusted library allocation
page execute and read and write
1160000
trusted library allocation
page read and write
4B8000
heap
page read and write
532000
heap
page read and write
F97000
trusted library allocation
page execute and read and write
51E000
heap
page read and write
6020000
trusted library allocation
page read and write
11A8000
heap
page read and write
D22000
trusted library allocation
page execute and read and write
790000
heap
page read and write
5CCE000
stack
page read and write
3771000
trusted library allocation
page read and write
F85000
heap
page read and write
52C000
heap
page read and write
6702000
trusted library allocation
page read and write
1092000
trusted library allocation
page read and write
160B000
heap
page read and write
C82000
trusted library allocation
page read and write
E40000
trusted library allocation
page read and write
11B0000
trusted library allocation
page read and write
D77000
trusted library allocation
page execute and read and write
1277000
trusted library allocation
page execute and read and write
BB4000
heap
page read and write
1272000
trusted library allocation
page read and write
1339000
stack
page read and write
3080000
trusted library allocation
page read and write
4F09000
heap
page read and write
6C8D000
stack
page read and write
17B7000
trusted library allocation
page execute and read and write
3C84000
trusted library allocation
page read and write
4FBC000
stack
page read and write
528000
heap
page read and write
A1A000
trusted library allocation
page execute and read and write
524000
heap
page read and write
63E000
stack
page read and write
E20000
heap
page read and write
B6E000
stack
page read and write
5A3D000
stack
page read and write
62DF000
stack
page read and write
FAF000
stack
page read and write
5540000
heap
page read and write
D10000
trusted library allocation
page read and write
4EF4000
trusted library section
page readonly
970000
heap
page read and write
FA2000
trusted library allocation
page execute and read and write
147B000
stack
page read and write
1688000
heap
page read and write
F80000
trusted library allocation
page read and write
4F6000
stack
page read and write
8D0000
heap
page read and write
F40000
heap
page read and write
1079000
heap
page read and write
7C0000
heap
page read and write
10A6000
heap
page read and write
299F000
trusted library allocation
page read and write
D42000
trusted library allocation
page execute and read and write
5935000
heap
page read and write
6DCE000
stack
page read and write
1331000
heap
page read and write
3CF7000
trusted library allocation
page read and write
A07000
trusted library allocation
page execute and read and write
4141000
trusted library allocation
page read and write
108C000
trusted library allocation
page execute and read and write
C8A000
trusted library allocation
page execute and read and write
535000
heap
page read and write
B84000
heap
page read and write
17DB000
trusted library allocation
page execute and read and write
44E000
unkown
page read and write
1480000
trusted library allocation
page read and write
1080000
trusted library allocation
page read and write
1654000
heap
page read and write
53C000
heap
page read and write
C50000
heap
page execute and read and write
63A000
stack
page read and write
50AE000
stack
page read and write
5DAE000
stack
page read and write
15A8000
heap
page read and write
54D0000
heap
page read and write
8ACE000
stack
page read and write
11AF000
stack
page read and write
504000
heap
page read and write
4980000
heap
page read and write
51C000
heap
page read and write
4F5000
heap
page read and write
17A0000
trusted library allocation
page read and write
5544000
heap
page read and write
5AE000
heap
page read and write
4A0000
heap
page read and write
EF9000
stack
page read and write
62E0000
heap
page read and write
53E000
heap
page read and write
4990000
trusted library section
page readonly
14D0000
trusted library section
page readonly
5500000
heap
page read and write
2DFE000
stack
page read and write
936000
stack
page read and write
2E7E000
stack
page read and write
14B0000
trusted library allocation
page read and write
400000
heap
page read and write
4D7E000
stack
page read and write
D6A000
trusted library allocation
page execute and read and write
There are 777 hidden memdumps, click here to show them.