IOCReport

loading gif

Files

File Path
Type
Category
Malicious
initial sample
malicious
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\??????-????????[1].htm
HTML document, UTF-8 Unicode text, with very long lines
dropped
malicious
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\W26YVULP\263052666-atari-embeds.googleusercontent[1].xml
ASCII text, with no line terminators
dropped
clean
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{2CC6C75E-5609-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
dropped
clean
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{2CC6C760-5609-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
dropped
clean
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{33D77CC1-5609-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
dropped
clean
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-17529550060\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-18270793970\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-21706820\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-4759708130\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-6757900\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-8760897390\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20259167780\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20332743330\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin8215062560\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
dropped
clean
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\imagestore\ynfz0jx\imagestore.dat
data
dropped
clean
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\KFOlCnqEu92Fr1MmWUlfBBc-[1].woff
Web Open Font Format, TrueType, length 20356, version 1.1
downloaded
clean
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\KFOmCnqEu92Fr1Mu4mxM[1].woff
Web Open Font Format, TrueType, length 20268, version 1.1
downloaded
clean
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\cb=gapi[1].js
ASCII text
downloaded
clean
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\inner-frame-minified[1].htm
HTML document, ASCII text, with very long lines
downloaded
clean
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\rs=AGEqA5keFj278I7UZ01QR4UKHsO_o5zzEA[1].css
ASCII text, with very long lines, with no line terminators
downloaded
clean
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\EHPIBSAR.js
ASCII text, with very long lines
dropped
clean
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\cb=gapi[1].js
ASCII text, with very long lines
downloaded
clean
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\client[1].js
ASCII text, with very long lines
downloaded
clean
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\m=pB6Zqd,syt,IZT63,SF3gsd,vfuNJf,syo,syn,sym,syr,sys,syu,syy,YNjGDd,n73qwf,syx,syz,PrPYRd,xs1Gy,hc6Ubd,o02Jie,SpsfSb,sy15,sy14,syj,sy13,zbML3c[1].js
ASCII text, with very long lines
dropped
clean
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\unnamed[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 1920x1080, frames 3
downloaded
clean
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\KFOlCnqEu92Fr1MmEU9fBBc-[1].woff
Web Open Font Format, TrueType, length 20464, version 1.1
downloaded
clean
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\KFOlCnqEu92Fr1MmSU5fBBc-[1].woff
Web Open Font Format, TrueType, length 20348, version 1.1
downloaded
clean
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\cb=gapi[1].js
ASCII text, with very long lines
downloaded
clean
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\intermediate-frame-minified[1].htm
HTML document, ASCII text, with very long lines
downloaded
clean
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\jquery.min[1].js
ASCII text, with very long lines
downloaded
clean
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\api[1].js
ASCII text, with very long lines
downloaded
clean
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\css[1].css
ASCII text
downloaded
clean
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\css[2].css
ASCII text
dropped
clean
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\favicon_2[1].ico
MS Windows icon resource - 1 icon, 16x16, 32 bits/pixel
downloaded
clean
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\m=sy1a,fgj8Rb,EGNJFf,sy1b,uY3Nvd,syg,syi,HYv29e[1].js
ASCII text, with very long lines
dropped
clean
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\m=view[1].js
ASCII text, with very long lines
downloaded
clean
C:\Users\user\AppData\Local\Temp\~DF34392B1F52AB3DA5.TMP
data
dropped
clean
C:\Users\user\AppData\Local\Temp\~DF47EFAA0EAA46CB18.TMP
data
dropped
clean
C:\Users\user\AppData\Local\Temp\~DFD7A6DFAF6BAD27C2.TMP
data
dropped
clean
There are 30 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\internet explorer\iexplore.exe
'C:\Program Files\Internet Explorer\iexplore.exe' -Embedding
clean
C:\Program Files (x86)\Internet Explorer\iexplore.exe
'C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE' SCODEF:2592 CREDAT:17410 /prefetch:2
clean

URLs

Name
IP
Malicious
http://www.apache.org/licenses/LICENSE-2.0
unknown
clean
http://www.nytimes.com/
unknown
clean
https://code.jquery.com/jquery.min.js"></script>
unknown
clean
http://www.youtube.com/
unknown
clean
https://263052666-atari-embeds.googleusercontent.com/embeds/16cb204cf3a9d4d223a0a3fd8b0eec5d/inner-f
unknown
clean
https://developers.googleblog.com/2018/03/discontinuing-support-for-json-rpc-and.html
unknown
clean
https://code.jquery.com/jquery.min.js
unknown
clean
https://drive-thirdparty.googleusercontent.com/
unknown
clean
http://www.wikipedia.com/
unknown
clean
http://www.amazon.com/
unknown
clean
http://www.live.com/
unknown
clean
http://www.reddit.com/
unknown
clean
http://www.twitter.com/
unknown
clean
https://kelham-businesscentre.com/sm/xxl2.php
unknown
clean
http://schema.org/WebPage
unknown
clean
https://kelham-businesscentre.com/sm/xxl2.php">
unknown
clean
https://www.youtube.com
unknown
clean
There are 7 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
googlehosted.l.googleusercontent.com
108.177.126.132
clean
lh5.googleusercontent.com
unknown
clean
263052666-atari-embeds.googleusercontent.com
unknown
clean
code.jquery.com
unknown
clean

IPs

IP
Domain
Country
Active
Malicious
108.177.126.132
unknown
United States
unknown
clean

Registry

Path
Value
Malicious
C:\Program Files\internet explorer\iexplore.exe
{2CC6C75E-5609-11EB-90E4-ECF4BB862DED}
clean
C:\Program Files\internet explorer\iexplore.exe
AdminActive
clean
C:\Program Files\internet explorer\iexplore.exe
Type
clean
C:\Program Files\internet explorer\iexplore.exe
Flags
clean
C:\Program Files\internet explorer\iexplore.exe
Count
clean
C:\Program Files\internet explorer\iexplore.exe
Time
clean
C:\Program Files\internet explorer\iexplore.exe
Count
clean
C:\Program Files\internet explorer\iexplore.exe
Time
clean
C:\Program Files\internet explorer\iexplore.exe
Blocked
clean
C:\Program Files\internet explorer\iexplore.exe
Count
clean
C:\Program Files\internet explorer\iexplore.exe
Time
clean
C:\Program Files\internet explorer\iexplore.exe
Count
clean
C:\Program Files\internet explorer\iexplore.exe
Time
clean
C:\Program Files\internet explorer\iexplore.exe
LoadTimeArray
clean
C:\Program Files\internet explorer\iexplore.exe
LoadTimeArray
clean
C:\Program Files\internet explorer\iexplore.exe
Count
clean
C:\Program Files\internet explorer\iexplore.exe
Time
clean
C:\Program Files\internet explorer\iexplore.exe
Blocked
clean
C:\Program Files\internet explorer\iexplore.exe
Count
clean
C:\Program Files\internet explorer\iexplore.exe
Time
clean
C:\Program Files\internet explorer\iexplore.exe
LoadTimeArray
clean
C:\Program Files\internet explorer\iexplore.exe
Count
clean
C:\Program Files\internet explorer\iexplore.exe
Time
clean
C:\Program Files\internet explorer\iexplore.exe
LoadTimeArray
clean
C:\Program Files\internet explorer\iexplore.exe
CVListPingLastYMD
clean
C:\Program Files\internet explorer\iexplore.exe
DecayDateQueue
clean
C:\Program Files\internet explorer\iexplore.exe
LastProcessed
clean
C:\Program Files\internet explorer\iexplore.exe
DecayDateQueue
clean
C:\Program Files\internet explorer\iexplore.exe
LastProcessed
clean
C:\Program Files (x86)\Internet Explorer\iexplore.exe
NumberOfSubdomains
clean
C:\Program Files (x86)\Internet Explorer\iexplore.exe
NULL
clean
C:\Program Files (x86)\Internet Explorer\iexplore.exe
NULL
clean
C:\Program Files (x86)\Internet Explorer\iexplore.exe
Total
clean
C:\Program Files (x86)\Internet Explorer\iexplore.exe
@C:\Windows\System32\ieframe.dll,-912
clean
C:\Program Files (x86)\Internet Explorer\iexplore.exe
@C:\Windows\System32\ieframe.dll,-904
clean
There are 25 hidden registries, click here to show them.

Memdumps

Base Address
Regiontype
Protect
Malicious
7FF544CED000
unkown
page readonly
clean
2AC62860000
heap private
page read and write
clean
7FF5E703E000
unkown
page readonly
clean
287F4159000
unkown
page read and write
clean
287F4102000
unkown
page read and write
clean
25C16270000
heap default
page read and write
clean
7FF4FFF95000
unkown
page readonly
clean
287F3902000
unkown
page read and write
clean
7FF578CE0000
unkown
page readonly
clean
FFA495C000
unkown
page read and write
clean
7FF55437B000
unkown
page readonly
clean
7FF5445D1000
unkown
page readonly
clean
18E58100000
heap private
page read and write
clean
287F8EB8000
unkown
page read and write
clean
7FF5E230F000
unkown
page readonly
clean
7FF4FFBD8000
unkown
page readonly
clean
7FF578DDE000
unkown
page readonly
clean
2C6F19B000
unkown
page read and write
clean
287F8D40000
unkown
page read and write
clean
287F9047000
unkown
page write copy
clean
3925C7F000
unkown
page read and write
clean
3925E7F000
unkown
page read and write
clean
7FF4FFD3C000
unkown
page readonly
clean
2AC7FB000
unkown
page read and write
clean
18E58400000
unkown
page readonly
clean
287F3890000
unkown
page read and write
clean
26875200000
unkown
page read and write
clean
28059B10000
unkown
page readonly
clean
12E89F60000
unkown
page readonly
clean
7FF4FFED7000
unkown
page readonly
clean
7FF5E6FF7000
unkown
page readonly
clean
2C6F47E000
unkown
page read and write
clean
1978BB46000
unkown
page read and write
clean
7FF4FFF00000
unkown
page readonly
clean
7FF4FFB41000
unkown
page readonly
clean
15BE7540000
unkown
page readonly
clean
7FF578D0A000
unkown
page readonly
clean
26875308000
unkown
page read and write
clean
7FF544B97000
unkown
page readonly
clean
7FF4FC70E000
unkown
page readonly
clean
19789D02000
unkown
page read and write
clean
7FF4FF85B000
unkown
page readonly
clean
7FF5E7037000
unkown
page readonly
clean
7FF5785CD000
unkown
page readonly
clean
18E58202000
unkown
page read and write
clean
7FF4FC4B8000
unkown
page readonly
clean
7FF578D75000
unkown
page readonly
clean
19789D57000
unkown
page read and write
clean
7FF5A6D53000
unkown
page readonly
clean
18E58170000
unkown
page readonly
clean
7FF4FFEA1000
unkown
page readonly
clean
7FF4FC655000
unkown
page readonly
clean
2687524A000
unkown
page read and write
clean
7FF4FC64E000
unkown
page readonly
clean
287F3800000
unkown
page read and write
clean
2AC27D000
unkown
page read and write
clean
7FF5E726C000
unkown
page readonly
clean
7FF4FFF12000
unkown
page readonly
clean
287F37C0000
unkown
page readonly
clean
26875302000
unkown
page read and write
clean
18E58302000
unkown
page read and write
clean
7FF554454000
unkown
page readonly
clean
7FF4FC68C000
unkown
page readonly
clean
15BE6AD0000
unkown
page readonly
clean
7FF57C5CF000
unkown
page readonly
clean
B0B4FFA000
unkown
page read and write
clean
AA91C7E000
unkown
page read and write
clean
7FF5543B2000
unkown
page readonly
clean
7FF5E71FC000
unkown
page readonly
clean
7FF5E1EBA000
unkown
page readonly
clean
19789CA5000
unkown
page read and write
clean
7FF5E72C5000
unkown
page readonly
clean
7FF578D87000
unkown
page readonly
clean
287F90A0000
unkown
page read and write
clean
28059B20000
unkown
page readonly
clean
7FF544B78000
unkown
page readonly
clean
2687522A000
unkown
page read and write
clean
287F8D48000
unkown
page read and write
clean
28059C39000
unkown
page read and write
clean
7FF4FFF16000
unkown
page readonly
clean
5DD367E000
unkown
page read and write
clean
12E89E80000
heap default
page read and write
clean
7FF4F2024000
unkown
page readonly
clean
7FF553C36000
unkown
page readonly
clean
7FF5E2364000
unkown
page readonly
clean
287F9060000
unkown
page read and write
clean
7FF5E1ED0000
unkown
page readonly
clean
7FF57C657000
unkown
page readonly
clean
18E58180000
unkown
page readonly
clean
7FF5E7267000
unkown
page readonly
clean
3925F7F000
unkown
page read and write
clean
18E58259000
unkown
page read and write
clean
7FF57C3AE000
unkown
page readonly
clean
2AC9FF000
unkown
page read and write
clean
7FF4FFDAE000
unkown
page readonly
clean
7FF578DE1000
unkown
page readonly
clean
19789D16000
unkown
page read and write
clean
287F4830000
unkown
page readonly
clean
7FF4FFF3E000
unkown
page readonly
clean
19789C29000
unkown
page read and write
clean
7FF4F1FBE000
unkown
page readonly
clean
1629185B000
unkown
page read and write
clean
7FF544CD9000
unkown
page readonly
clean
7FF5E7241000
unkown
page readonly
clean
AA9127E000
unkown
page read and write
clean
287F8BA0000
unkown
page read and write
clean
7FF578DE9000
unkown
page readonly
clean
7FF5543FF000
unkown
page readonly
clean
287F90A0000
unkown
page read and write
clean
7FF5E223C000
unkown
page readonly
clean
287F47D0000
unkown
page readonly
clean
287F38A1000
unkown
page read and write
clean
1629186F000
unkown
page read and write
clean
7FF5A6E99000
unkown
page readonly
clean
2AC62940000
heap private
page read and write
clean
7FF5A6EBC000
unkown
page readonly
clean
7FF4F1FD9000
unkown
page readonly
clean
7FF5A6D5D000
unkown
page readonly
clean
7FF578D6C000
unkown
page readonly
clean
7FF5543EE000
unkown
page readonly
clean
7FF5A6A50000
unkown
page readonly
clean
7FF5E7045000
unkown
page readonly
clean
2687524D000
unkown
page read and write
clean
7FF5A6E58000
unkown
page readonly
clean
AA90BDE000
unkown
page read and write
clean
7FF4FC622000
unkown
page readonly
clean
287F4100000
unkown
page read and write
clean
7FF5449F3000
unkown
page readonly
clean
7FF5E70F0000
unkown
page readonly
clean
AA9117B000
unkown
page read and write
clean
26875313000
unkown
page read and write
clean
287F9034000
unkown
page readonly
clean
7FF55443C000
unkown
page readonly
clean
7FF57C756000
unkown
page readonly
clean
7FF5E232D000
unkown
page readonly
clean
7FF4FFFA7000
unkown
page readonly
clean
18E581C0000
unkown
page read and write
clean
287F8E00000
unkown
page read and write
clean
19789B70000
unkown
page readonly
clean
7FF4FFF02000
unkown
page readonly
clean
2ABFEE000
unkown
page read and write
clean
7FF554421000
unkown
page readonly
clean
287F8D70000
unkown
page read and write
clean
16291E60000
unkown
page readonly
clean
7FF4FFE7C000
unkown
page readonly
clean
7FF4FFF71000
unkown
page readonly
clean
15BE6780000
heap private
page read and write
clean
26875F40000
unkown
page readonly
clean
287F8C20000
unkown
page read and write
clean
7FF578DE9000
unkown
page readonly
clean
7FF4FFB45000
unkown
page readonly
clean
7FF4FC669000
unkown
page readonly
clean
26875120000
heap default
page read and write
clean
7FF57C840000
unkown
page readonly
clean
12E8AA00000
unkown
page readonly
clean
15BE6A00000
unkown
page readonly
clean
7FF544D0C000
unkown
page readonly
clean
69321F9000
unkown
page read and write
clean
7FF5E72ED000
unkown
page readonly
clean
7FF5E70EE000
unkown
page readonly
clean
2AC60EDB000
heap default
page read and write
clean
7FF544CFC000
unkown
page readonly
clean
7FF4F1CD8000
unkown
page readonly
clean
7FF57C5E8000
unkown
page readonly
clean
7FF5E7320000
unkown
page readonly
clean
7FF5A6ED5000
unkown
page readonly
clean
7FF544CAA000
unkown
page readonly
clean
7FF578D80000
unkown
page readonly
clean
7FF5E72D9000
unkown
page readonly
clean
7FF5A6D38000
unkown
page readonly
clean
7FF5543C2000
unkown
page readonly
clean
7FF5A6E85000
unkown
page readonly
clean
287F3D90000
unkown
page readonly
clean
287F9190000
unkown
page read and write
clean
392577F000
unkown
page read and write
clean
7FF4F207E000
unkown
page readonly
clean
19789A50000
unkown
page readonly
clean
7FF5E72F6000
unkown
page readonly
clean
7FF5E21DD000
unkown
page readonly
clean
7FF4FFF18000
unkown
page readonly
clean
7FF5E219A000
unkown
page readonly
clean
7FF4FFCC5000
unkown
page readonly
clean
7FF4FC626000
unkown
page readonly
clean
7FF57C660000
unkown
page readonly
clean
2C6F8FF000
unkown
page read and write
clean
7FF4F1C9C000
unkown
page readonly
clean
7FF4F202D000
unkown
page readonly
clean
7FF5A6E40000
unkown
page readonly
clean
7FF4F1FF1000
unkown
page readonly
clean
7FF4FFEB7000
unkown
page readonly
clean
26875880000
unkown
page read and write
clean
7FF4FC4E9000
unkown
page readonly
clean
7FF4FFEF8000
unkown
page readonly
clean
7FF5E7197000
unkown
page readonly
clean
287F8D4E000
unkown
page read and write
clean
7FF57C7CC000
unkown
page readonly
clean
7FF57C7D5000
unkown
page readonly
clean
7FF554426000
unkown
page readonly
clean
7FF4F1CC3000
unkown
page readonly
clean
7FF4FC3E0000
unkown
page readonly
clean
287F4201000
unkown
page read and write
clean
7FF5E710F000
unkown
page readonly
clean
7FF4FFEEC000
unkown
page readonly
clean
7FF5A6F3E000
unkown
page readonly
clean
287F4810000
unkown
page readonly
clean
7FF578588000
unkown
page readonly
clean
7FF4FC6B4000
unkown
page readonly
clean
7FF57C78F000
unkown
page readonly
clean
FFA4EFE000
unkown
page read and write
clean
7FF544A50000
unkown
page readonly
clean
12E8A200000
unkown
page readonly
clean
FFA51FF000
unkown
page read and write
clean
FFA49DE000
unkown
page read and write
clean
7FF5E2207000
unkown
page readonly
clean
25C16210000
heap private
page read and write
clean
287F3876000
unkown
page read and write
clean
7FF544ADA000
unkown
page readonly
clean
7FF4F1F9A000
unkown
page readonly
clean
7FF5E7178000
unkown
page readonly
clean
7FF4FFF7C000
unkown
page readonly
clean
7FF544C5C000
unkown
page readonly
clean
12E8A029000
unkown
page read and write
clean
AA9177F000
unkown
page read and write
clean
693247E000
unkown
page read and write
clean
7FF500000000
unkown
page readonly
clean
7FF4F1D0C000
unkown
page readonly
clean
7FF4FC65F000
unkown
page readonly
clean
16291841000
unkown
page read and write
clean
287F8E73000
unkown
page read and write
clean
26875400000
unkown
page readonly
clean
287F388B000
unkown
page read and write
clean
7FF4FC69C000
unkown
page readonly
clean
2AC77E000
unkown
page read and write
clean
AA9187F000
unkown
page read and write
clean
7FF4FC3D5000
unkown
page readonly
clean
7FF5A6F49000
unkown
page readonly
clean
16291813000
unkown
page read and write
clean
15BE6902000
unkown
page read and write
clean
7FF57C431000
unkown
page readonly
clean
1629186C000
unkown
page read and write
clean
7FF4FFDC8000
unkown
page readonly
clean
7FF4FFDC1000
unkown
page readonly
clean
2AC60E95000
heap private
page read and write
clean
7FF4F1F96000
unkown
page readonly
clean
693217F000
unkown
page read and write
clean
287F4BA0000
unkown
page read and write
clean
7FF5544AE000
unkown
page readonly
clean
25C16402000
unkown
page read and write
clean
69322FE000
unkown
page read and write
clean
7FF4F1FAA000
unkown
page readonly
clean
287F4015000
unkown
page read and write
clean
16291875000
unkown
page read and write
clean
7FF5E70C8000
unkown
page readonly
clean
28059BF0000
unkown
page readonly
clean
EE7A67F000
unkown
page read and write
clean
2AC37E000
unkown
page read and write
clean
162917D0000
unkown
page readonly
clean
25C17DA0000
unkown
page read and write
clean
25C16500000
unkown
page read and write
clean
1978BC50000
unkown
page readonly
clean
7FF4F2006000
unkown
page readonly
clean
25C16280000
unkown
page readonly
clean
7FF5E70AB000
unkown
page readonly
clean
FFA4FF7000
unkown
page read and write
clean
2C6F7F7000
unkown
page read and write
clean
7FF5E22C0000
unkown
page readonly
clean
7FF4FFD6E000
unkown
page readonly
clean
287F8EDB000
unkown
page read and write
clean
12E89E20000
heap private
page read and write
clean
1978BB86000
unkown
page read and write
clean
12E8A102000
unkown
page read and write
clean
7FF5A6EC6000
unkown
page readonly
clean
7FF5A6EAD000
unkown
page readonly
clean
7FF5E7282000
unkown
page readonly
clean
287F8D40000
unkown
page read and write
clean
28059C5F000
unkown
page read and write
clean
7FF4F2089000
unkown
page readonly
clean
28059E00000
unkown
page readonly
clean
28059C13000
unkown
page read and write
clean
12E8A802000
unkown
page read and write
clean
28059C29000
unkown
page read and write
clean
1978BB47000
unkown
page read and write
clean
6932079000
unkown
page read and write
clean
AA90B5E000
unkown
page read and write
clean
26875213000
unkown
page read and write
clean
2C6F4FD000
unkown
page read and write
clean
1978BB02000
unkown
page read and write
clean
7FF544C96000
unkown
page readonly
clean
7FF578D39000
unkown
page readonly
clean
287F46F0000
unkown
page read and write
clean
7FF4F2015000
unkown
page readonly
clean
AA9197D000
unkown
page read and write
clean
7FF5E23C9000
unkown
page readonly
clean
28059D02000
unkown
page read and write
clean
287F4B90000
unkown
page read and write
clean
7FF57C74D000
unkown
page readonly
clean
18E584D0000
unkown
page readonly
clean
AFB3A7E000
unkown
page read and write
clean
19789C95000
unkown
page read and write
clean
15BE67E0000
heap default
page read and write
clean
2AC60D50000
unkown
page readonly
clean
5DD34FE000
unkown
page read and write
clean
28059C83000
unkown
page read and write
clean
7FF5E2305000
unkown
page readonly
clean
7FF5E2201000
unkown
page readonly
clean
2AC62A60000
heap private
page read and write
clean
7FF57C71A000
unkown
page readonly
clean
1978BC10000
unkown
page read and write
clean
7FF4FFEE3000
unkown
page readonly
clean
2ABF6C000
unkown
page read and write
clean
7FF5A6E42000
unkown
page readonly
clean
7FF4FFEC1000
unkown
page readonly
clean
19789A40000
heap default
page read and write
clean
287F47E0000
unkown
page readonly
clean
AFB39FD000
unkown
page read and write
clean
7FF544D20000
unkown
page readonly
clean
7FF5544B9000
unkown
page readonly
clean
287F4002000
unkown
page read and write
clean
12E8A000000
unkown
page read and write
clean
3925A7F000
unkown
page read and write
clean
7FF5E6EBD000
unkown
page readonly
clean
7FF5E7389000
unkown
page readonly
clean
7FF5A6A40000
unkown
page readonly
clean
7FF4FC3C7000
unkown
page readonly
clean
7FF5E2346000
unkown
page readonly
clean
26875600000
unkown
page readonly
clean
7FF578D56000
unkown
page readonly
clean
7FF5E7280000
unkown
page readonly
clean
7FF4FFE87000
unkown
page readonly
clean
7FF4FFB97000
unkown
page readonly
clean
7FF57C576000
unkown
page readonly
clean
B0B4EFE000
unkown
page read and write
clean
25C16400000
unkown
page read and write
clean
7FF4FFC5C000
unkown
page readonly
clean
287F3870000
unkown
page read and write
clean
7FF5E7221000
unkown
page readonly
clean
7FF4FFD48000
unkown
page readonly
clean
7FF5E22C2000
unkown
page readonly
clean
7FF5A6F49000
unkown
page readonly
clean
7FF544CBE000
unkown
page readonly
clean
15BE684D000
unkown
page read and write
clean
5DD36FE000
unkown
page read and write
clean
7FF4FFC0D000
unkown
page readonly
clean
7FF4FC67D000
unkown
page readonly
clean
7FF57C7E4000
unkown
page readonly
clean
18E58860000
unkown
page readonly
clean
AA90ADB000
unkown
page read and write
clean
7FF554070000
unkown
page readonly
clean
15BE67F0000
unkown
page readonly
clean
287F37D0000
unkown
page readonly
clean
7FF578568000
unkown
page readonly
clean
392587F000
unkown
page read and write
clean
7FF554387000
unkown
page readonly
clean
7FF55442C000
unkown
page readonly
clean
3925B7D000
unkown
page read and write
clean
287F38A6000
unkown
page read and write
clean
B0B50FF000
unkown
page read and write
clean
7FF4FC608000
unkown
page readonly
clean
7FF5A6CCF000
unkown
page readonly
clean
19789BD0000
heap private
page read and write
clean
7FF5E72AA000
unkown
page readonly
clean
287F36F0000
unkown
page readonly
clean
7FF5A6EE7000
unkown
page readonly
clean
25C16502000
unkown
page read and write
clean
287F8D61000
unkown
page read and write
clean
7FF4FFFFE000
unkown
page readonly
clean
7FF4FFCBE000
unkown
page readonly
clean
AFB3AFE000
unkown
page read and write
clean
7FF5A6EB6000
unkown
page readonly
clean
268750C0000
heap private
page read and write
clean
7FF5E72FC000
unkown
page readonly
clean
287F90A0000
unkown
page readonly
clean
19789CBF000
unkown
page read and write
clean
7FF4F1F82000
unkown
page readonly
clean
12E8A660000
unkown
page write copy
clean
5DD3BFF000
unkown
page read and write
clean
18E58213000
unkown
page read and write
clean
B0B507A000
unkown
page read and write
clean
2C6F6FB000
unkown
page read and write
clean
287F8E49000
unkown
page read and write
clean
7FF57C738000
unkown
page readonly
clean
7FF5E214F000
unkown
page readonly
clean
19789C8A000
unkown
page read and write
clean
FFA50FE000
unkown
page read and write
clean
287F8D80000
unkown
page read and write
clean
287F90A0000
unkown
page read and write
clean
7FF4F2020000
unkown
page readonly
clean
AFB387C000
unkown
page read and write
clean
15BE7200000
unkown
page readonly
clean
287F9010000
unkown
page write copy
clean
12E89F80000
unkown
page read and write
clean
1978BC40000
unkown
page readonly
clean
EE7A37E000
unkown
page read and write
clean
7FF5449F7000
unkown
page readonly
clean
7FF544D27000
unkown
page readonly
clean
39252CC000
unkown
page read and write
clean
7FF5E7193000
unkown
page readonly
clean
FFA4E7B000
unkown
page read and write
clean
7FF5E7263000
unkown
page readonly
clean
26875130000
unkown
page readonly
clean
15BE683C000
unkown
page read and write
clean
7FF4FC6A5000
unkown
page readonly
clean
287F4610000
unkown
page read and write
clean
16292002000
unkown
page read and write
clean
1978BB00000
unkown
page read and write
clean
7FF5E72BE000
unkown
page readonly
clean
15BE6800000
unkown
page read and write
clean
7FF57C83E000
unkown
page readonly
clean
1978B6A0000
unkown
page readonly
clean
12E8A042000
unkown
page read and write
clean
7FF5E2367000
unkown
page readonly
clean
7FF544CCF000
unkown
page readonly
clean
7FF4FBEC8000
unkown
page readonly
clean
7FF4FC5FC000
unkown
page readonly
clean
AA9147B000
unkown
page read and write
clean
7FF4FFF45000
unkown
page readonly
clean
7FF4F200C000
unkown
page readonly
clean
2AC60ED0000
heap default
page read and write
clean
26875266000
unkown
page read and write
clean
7FF544C41000
unkown
page readonly
clean
7FF57C77E000
unkown
page readonly
clean
7FF544CF6000
unkown
page readonly
clean
26875C00000
unkown
page readonly
clean
7FF554409000
unkown
page readonly
clean
25C16429000
unkown
page read and write
clean
15BE684A000
unkown
page read and write
clean
AA90EF7000
unkown
page read and write
clean
7FF4FC719000
unkown
page readonly
clean
19789D14000
unkown
page read and write
clean
7FF578D5C000
unkown
page readonly
clean
287F8EB3000
unkown
page read and write
clean
7FF5E70BC000
unkown
page readonly
clean
7FF554084000
unkown
page readonly
clean
287F3680000
heap private
page read and write
clean
287F9050000
unkown
page read and write
clean
7FF5E7298000
unkown
page readonly
clean
19789B20000
unkown
page write copy
clean
12E8A0E0000
unkown
page read and write
clean
7FF5543B0000
unkown
page readonly
clean
287F4800000
unkown
page readonly
clean
1978C010000
unkown
page read and write
clean
7FF57C740000
unkown
page readonly
clean
280599D0000
heap private
page read and write
clean
12E89E90000
unkown
page readonly
clean
7FF4FFC1F000
unkown
page readonly
clean
7FF4F1F2E000
unkown
page readonly
clean
287F4118000
unkown
page read and write
clean
7FF5E723A000
unkown
page readonly
clean
7FF57C758000
unkown
page readonly
clean
7FF578B6F000
unkown
page readonly
clean
287F388E000
unkown
page read and write
clean
7FF57C47E000
unkown
page readonly
clean
7FF4FFFA4000
unkown
page readonly
clean
7FF544C3A000
unkown
page readonly
clean
7FF5E7237000
unkown
page readonly
clean
7FF578D84000
unkown
page readonly
clean
7FF500009000
unkown
page readonly
clean
AA915FF000
unkown
page read and write
clean
287F36E0000
heap default
page read and write
clean
287F8E86000
unkown
page read and write
clean
AA9157E000
unkown
page read and write
clean
28059C00000
unkown
page read and write
clean
7FF57C7BC000
unkown
page readonly
clean
7FF5A6E56000
unkown
page readonly
clean
12E8A900000
unkown
page read and write
clean
287F3859000
unkown
page read and write
clean
15BE6F40000
unkown
page read and write
clean
287F9014000
unkown
page readonly
clean
5DD347E000
unkown
page read and write
clean
7FF4F1F34000
unkown
page readonly
clean
7FF4FFB9E000
unkown
page readonly
clean
287F4158000
unkown
page read and write
clean
7FF57C6C7000
unkown
page readonly
clean
2C6F5F5000
unkown
page read and write
clean
2AC67C000
unkown
page read and write
clean
7FF578D1E000
unkown
page readonly
clean
15BE6900000
unkown
page read and write
clean
28059C02000
unkown
page read and write
clean
7FF5E722A000
unkown
page readonly
clean
7FF5A6E8F000
unkown
page readonly
clean
26875287000
unkown
page read and write
clean
7FF544D89000
unkown
page readonly
clean
7FF5E737E000
unkown
page readonly
clean
7FF4FC610000
unkown
page readonly
clean
287F3A00000
unkown
page readonly
clean
7FF578D4D000
unkown
page readonly
clean
287F47F0000
unkown
page readonly
clean
18E5822A000
unkown
page read and write
clean
12E8A06E000
unkown
page read and write
clean
7FF5E2360000
unkown
page readonly
clean
162917C0000
unkown
page readonly
clean
287F8E8C000
unkown
page read and write
clean
7FF5A6795000
unkown
page readonly
clean
162917E0000
unkown
page read and write
clean
7FF4F2081000
unkown
page readonly
clean
7FF578B0A000
unkown
page readonly
clean
18E58200000
unkown
page read and write
clean
15BE686C000
unkown
page read and write
clean
2AC60FD0000
unkown
page readonly
clean
5DD37FF000
unkown
page read and write
clean
7FF4FFF8C000
unkown
page readonly
clean
287F3813000
unkown
page read and write
clean
19789BB0000
unkown
page read and write
clean
EE7A2FE000
unkown
page read and write
clean
AFB397E000
unkown
page read and write
clean
7FF5A6ECC000
unkown
page readonly
clean
7FF5E22D8000
unkown
page readonly
clean
7FF5E7050000
unkown
page readonly
clean
18E58190000
unkown
page read and write
clean
19789C55000
unkown
page read and write
clean
7FF57C7AD000
unkown
page readonly
clean
7FF5E6FE4000
unkown
page readonly
clean
7FF57C6BC000
unkown
page readonly
clean
7FF4FC696000
unkown
page readonly
clean
AA91A7A000
unkown
page read and write
clean
7FF5544B9000
unkown
page readonly
clean
7FF5E1C15000
unkown
page readonly
clean
7FF4FF865000
unkown
page readonly
clean
2AC5FF000
unkown
page read and write
clean
7FF5E7317000
unkown
page readonly
clean
7FF4FFDBC000
unkown
page readonly
clean
7FF5A6D1A000
unkown
page readonly
clean
EE7A27B000
unkown
page read and write
clean
7FF57C41F000
unkown
page readonly
clean
7FF5A6A3A000
unkown
page readonly
clean
2687523C000
unkown
page read and write
clean
16291902000
unkown
page read and write
clean
25C16456000
unkown
page read and write
clean
7FF554436000
unkown
page readonly
clean
7FF5E7292000
unkown
page readonly
clean
5DD3B7E000
unkown
page read and write
clean
287F9037000
unkown
page readonly
clean
7FF4FC6B7000
unkown
page readonly
clean
7FF544C37000
unkown
page readonly
clean
7FF5E71F5000
unkown
page readonly
clean
7FF55423F000
unkown
page readonly
clean
7FF5E2355000
unkown
page readonly
clean
7FF4FFF6D000
unkown
page readonly
clean
2AC62830000
unkown
page readonly
clean
287F3895000
unkown
page read and write
clean
287F8D64000
unkown
page read and write
clean
12E89F70000
unkown
page readonly
clean
287F8E90000
unkown
page read and write
clean
7FF5E234C000
unkown
page readonly
clean
7FF4F1F98000
unkown
page readonly
clean
12E8A013000
unkown
page read and write
clean
1978BC10000
unkown
page read and write
clean
AA90F7E000
unkown
page read and write
clean
7FF544AF0000
unkown
page readonly
clean
287F37E0000
unkown
page read and write
clean
7FF4FFF59000
unkown
page readonly
clean
7FF57C7B6000
unkown
page readonly
clean
7FF544C5A000
unkown
page readonly
clean
7FF4FF843000
unkown
page readonly
clean
7FF4FFE75000
unkown
page readonly
clean
7FF4FFF86000
unkown
page readonly
clean
18E581C0000
unkown
page read and write
clean
287F38FD000
unkown
page read and write
clean
12E8A0BC000
unkown
page read and write
clean
7FF4FFDD9000
unkown
page readonly
clean
25C16513000
unkown
page read and write
clean
28059A30000
heap default
page read and write
clean
287F90F0000
unkown
page readonly
clean
7FF4FFC16000
unkown
page readonly
clean
287F8EA8000
unkown
page read and write
clean
7FF4FFC8C000
unkown
page readonly
clean
18E5823D000
unkown
page read and write
clean
25C16413000
unkown
page read and write
clean
7FF544B93000
unkown
page readonly
clean
7FF5A6D81000
unkown
page readonly
clean
7FF4FC628000
unkown
page readonly
clean
2687526E000
unkown
page read and write
clean
19789CFA000
unkown
page read and write
clean
7FF57C7E7000
unkown
page readonly
clean
287F90E0000
unkown
page readonly
clean
287F3879000
unkown
page read and write
clean
7FF544C9A000
unkown
page readonly
clean
7FF5E7324000
unkown
page readonly
clean
7FF5540D5000
unkown
page readonly
clean
69323FC000
unkown
page read and write
clean
16291D90000
unkown
page readonly
clean
693227B000
unkown
page read and write
clean
7FF57C785000
unkown
page readonly
clean
7FF4FC711000
unkown
page readonly
clean
AA917FE000
unkown
page read and write
clean
7FF4FFC1C000
unkown
page readonly
clean
7FF554457000
unkown
page readonly
clean
16291864000
unkown
page read and write
clean
AA9137D000
unkown
page read and write
clean
2AC60E40000
unkown
page read and write
clean
12E8A113000
unkown
page read and write
clean
7FF4FFEE7000
unkown
page readonly
clean
287F8BF0000
unkown
page readonly
clean
287F8E0D000
unkown
page read and write
clean
28059C3D000
unkown
page read and write
clean
7FF4FFB80000
unkown
page readonly
clean
7FF4F1FFC000
unkown
page readonly
clean
7FF5E23C1000
unkown
page readonly
clean
2C6F9FE000
unkown
page read and write
clean
16291913000
unkown
page read and write
clean
7FF5E725C000
unkown
page readonly
clean
12E8A932000
unkown
page read and write
clean
287F4113000
unkown
page read and write
clean
287F91C0000
unkown
page readonly
clean
7FF578D66000
unkown
page readonly
clean
AFB3B7C000
unkown
page read and write
clean
7FF544CC5000
unkown
page readonly
clean
7FF4FC47E000
unkown
page readonly
clean
7FF4FFCB7000
unkown
page readonly
clean
7FF5E22D6000
unkown
page readonly
clean
2AC57B000
unkown
page read and write
clean
16291680000
heap private
page read and write
clean
287F8EAA000
unkown
page read and write
clean
AFB38FF000
unkown
page read and write
clean
7FF5A6EE4000
unkown
page readonly
clean
26875266000
unkown
page read and write
clean
7FF5A67A6000
unkown
page readonly
clean
1978BC10000
unkown
page read and write
clean
7FF4FC719000
unkown
page readonly
clean
19789BC0000
unkown
page readonly
clean
287F9010000
unkown
page read and write
clean
7FF57C422000
unkown
page readonly
clean
16291865000
unkown
page read and write
clean
7FF5E7389000
unkown
page readonly
clean
7FF5E218E000
unkown
page readonly
clean
25C16350000
unkown
page write copy
clean
7FF57C7B1000
unkown
page readonly
clean
392607E000
unkown
page read and write
clean
AA914FE000
unkown
page read and write
clean
2AC60F0C000
heap default
page read and write
clean
7FF5E2319000
unkown
page readonly
clean
392617F000
unkown
page read and write
clean
197899E0000
heap private
page read and write
clean
287F8D84000
unkown
page read and write
clean
7FF4FC686000
unkown
page readonly
clean
2ACAFC000
unkown
page read and write
clean
B0B517F000
unkown
page read and write
clean
39253CD000
unkown
page read and write
clean
7FF5E22EA000
unkown
page readonly
clean
7FF5544B1000
unkown
page readonly
clean
18E58C00000
unkown
page read and write
clean
7FF5A6E7E000
unkown
page readonly
clean
287F9180000
unkown
page readonly
clean
7FF5E1C26000
unkown
page readonly
clean
287F8EB8000
unkown
page read and write
clean
7FF4FFFA0000
unkown
page readonly
clean
7FF57C76A000
unkown
page readonly
clean
28059C30000
unkown
page read and write
clean
5DD397E000
unkown
page read and write
clean
287F8EA0000
unkown
page read and write
clean
7FF5A6C6A000
unkown
page readonly
clean
2AC62840000
unkown
page readonly
clean
15BE6813000
unkown
page read and write
clean
7FF5E7315000
unkown
page readonly
clean
7FF5E7381000
unkown
page readonly
clean
2AC60E90000
heap private
page read and write
clean
7FF5A6E6A000
unkown
page readonly
clean
12E89FB0000
unkown
page readonly
clean
7FF4F1D03000
unkown
page readonly
clean
3925D7E000
unkown
page read and write
clean
15BE6802000
unkown
page read and write
clean
7FF578CF8000
unkown
page readonly
clean
7FF4FFF4F000
unkown
page readonly
clean
7FF5A6DBC000
unkown
page readonly
clean
18E58A02000
unkown
page read and write
clean
7FF5E233C000
unkown
page readonly
clean
12E8A590000
unkown
page readonly
clean
18E58224000
unkown
page read and write
clean
7FF4F1F80000
unkown
page readonly
clean
7FF57C752000
unkown
page readonly
clean
7FF57C72C000
unkown
page readonly
clean
7FF544D7E000
unkown
page readonly
clean
7FF4FC6B0000
unkown
page readonly
clean
7FF4F1F2A000
unkown
page readonly
clean
5DD3A7D000
unkown
page read and write
clean
2AC60CF0000
unkown
page readonly
clean
1978BB15000
unkown
page read and write
clean
693237D000
unkown
page read and write
clean
7FF544D06000
unkown
page readonly
clean
7FF57C496000
unkown
page readonly
clean
287F4820000
unkown
page readonly
clean
25C1643F000
unkown
page read and write
clean
16292200000
unkown
page readonly
clean
287F4B71000
unkown
page read and write
clean
16291802000
unkown
page read and write
clean
5DD38FD000
unkown
page read and write
clean
7FF5A6E52000
unkown
page readonly
clean
26875300000
unkown
page read and write
clean
2805A190000
unkown
page read and write
clean
7FF4FC5EA000
unkown
page readonly
clean
AA9107D000
unkown
page read and write
clean
7FF5A6D0E000
unkown
page readonly
clean
7FF544D17000
unkown
page readonly
clean
2805A202000
unkown
page read and write
clean
12E8A0CD000
unkown
page read and write
clean
7FF5E2336000
unkown
page readonly
clean
287F4B93000
unkown
page read and write
clean
7FF544C92000
unkown
page readonly
clean
7FF500009000
unkown
page readonly
clean
7FF57C799000
unkown
page readonly
clean
7FF554077000
unkown
page readonly
clean
25C17EA0000
unkown
page readonly
clean
7FF5E70DA000
unkown
page readonly
clean
7FF57C66C000
unkown
page readonly
clean
7FF5E1EC0000
unkown
page readonly
clean
7FF5E7234000
unkown
page readonly
clean
AA91B7C000
unkown
page read and write
clean
7FF5E22D2000
unkown
page readonly
clean
2AC60E60000
unkown
page readonly
clean
7FF57C742000
unkown
page readonly
clean
19789C41000
unkown
page read and write
clean
287F91A0000
unkown
page readonly
clean
7FF5E730C000
unkown
page readonly
clean
7FF554445000
unkown
page readonly
clean
7FF4FC4D8000
unkown
page readonly
clean
19789E00000
unkown
page readonly
clean
12E8A086000
unkown
page read and write
clean
7FF5E6FF3000
unkown
page readonly
clean
2ACBFE000
unkown
page read and write
clean
1978B5A0000
unkown
page read and write
clean
7FF5E6BD1000
unkown
page readonly
clean
7FF5E725A000
unkown
page readonly
clean
162916F0000
unkown
page readonly
clean
19789CBD000
unkown
page read and write
clean
16291829000
unkown
page read and write
clean
12E8A6B0000
unkown
page readonly
clean
7FF4F2027000
unkown
page readonly
clean
16291A00000
unkown
page readonly
clean
1978BC20000
unkown
page readonly
clean
26875A02000
unkown
page read and write
clean
12E8A0C7000
unkown
page read and write
clean
287F8E2B000
unkown
page read and write
clean
7FF57C7E0000
unkown
page readonly
clean
2AC60E20000
unkown
page read and write
clean
7FF4FFD2B000
unkown
page readonly
clean
28059A40000
unkown
page readonly
clean
7FF4FC49F000
unkown
page readonly
clean
7FF4FC63A000
unkown
page readonly
clean
7FF5E72CF000
unkown
page readonly
clean
2AC62770000
unkown
page readonly
clean
287F8C30000
unkown
page read and write
clean
7FF554073000
unkown
page readonly
clean
7FF57C3B2000
unkown
page readonly
clean
7FF544D24000
unkown
page readonly
clean
162916E0000
heap default
page read and write
clean
287F9100000
unkown
page readonly
clean
19789CC7000
unkown
page read and write
clean
15BE6908000
unkown
page read and write
clean
7FF4FC3CE000
unkown
page readonly
clean
AA9167F000
unkown
page read and write
clean
15BE687A000
unkown
page read and write
clean
287F4000000
unkown
page read and write
clean
287F9070000
unkown
page read and write
clean
7FF544C98000
unkown
page readonly
clean
7FF544D81000
unkown
page readonly
clean
7FF5A6D87000
unkown
page readonly
clean
7FF4FFD8F000
unkown
page readonly
clean
7FF5E7296000
unkown
page readonly
clean
7FF5E21B8000
unkown
page readonly
clean
7FF4FC2E8000
unkown
page readonly
clean
7FF5E700C000
unkown
page readonly
clean
7FF4F1FF6000
unkown
page readonly
clean
EE7A57F000
unkown
page read and write
clean
7FF5E6E93000
unkown
page readonly
clean
7FF57C849000
unkown
page readonly
clean
7FF4FFF76000
unkown
page readonly
clean
19789C7B000
unkown
page read and write
clean
287F8BB0000
unkown
page read and write
clean
15BE6855000
unkown
page read and write
clean
287F389F000
unkown
page read and write
clean
B0B4F7E000
unkown
page read and write
clean
2AC61360000
unkown
page readonly
clean
25C16600000
unkown
page readonly
clean
7FF544D89000
unkown
page readonly
clean
7FF5E23C9000
unkown
page readonly
clean
7FF4F1FC5000
unkown
page readonly
clean
26875250000
unkown
page read and write
clean
7FF4FFECB000
unkown
page readonly
clean
25C16434000
unkown
page read and write
clean
287F8E61000
unkown
page read and write
clean
287F4118000
unkown
page read and write
clean
16291865000
unkown
page read and write
clean
7FF57C849000
unkown
page readonly
clean
5DD31BB000
unkown
page read and write
clean
15BE6913000
unkown
page read and write
clean
19789C13000
unkown
page read and write
clean
19789C00000
unkown
page read and write
clean
FFA4C7E000
unkown
page read and write
clean
7FF5E23BE000
unkown
page readonly
clean
7FF5A6F41000
unkown
page readonly
clean
287F9044000
unkown
page write copy
clean
392597C000
unkown
page read and write
clean
7FF578D2F000
unkown
page readonly
clean
287F3829000
unkown
page read and write
clean
6931D5E000
unkown
page read and write
clean
7FF578CF6000
unkown
page readonly
clean
16291800000
unkown
page read and write
clean
7FF5E7327000
unkown
page readonly
clean
6931DDE000
unkown
page read and write
clean
18E58160000
heap default
page read and write
clean
7FF57C5AE000
unkown
page readonly
clean
287F8E3C000
unkown
page read and write
clean
7FF578D25000
unkown
page readonly
clean
25C163A0000
unkown
page readonly
clean
2AC62890000
heap private
page read and write
clean
7FF4F1FED000
unkown
page readonly
clean
15BE6829000
unkown
page read and write
clean
2AC62B5F000
heap private
page read and write
clean
7FF5E7306000
unkown
page readonly
clean
287F3913000
unkown
page read and write
clean
2AC8FD000
unkown
page read and write
clean
287F8D70000
unkown
page read and write
clean
287F8E1E000
unkown
page read and write
clean
26875255000
unkown
page read and write
clean
287F8ECA000
unkown
page read and write
clean
7FF4FBEC2000
unkown
page readonly
clean
19789CC0000
unkown
page read and write
clean
287F8C40000
unkown
page read and write
clean
1978BC10000
unkown
page read and write
clean
287F8D60000
unkown
page read and write
clean
7FF4F2032000
unkown
page readonly
clean
19789D00000
unkown
page read and write
clean
7FF4FC5A5000
unkown
page readonly
clean
15BE7002000
unkown
page read and write
clean
7FF5E21D3000
unkown
page readonly
clean
7FF55441D000
unkown
page readonly
clean
EE7A77E000
unkown
page read and write
clean
7FF5543C8000
unkown
page readonly
clean
B0B4E7B000
unkown
page read and write
clean
7FF4FC612000
unkown
page readonly
clean
1978BB86000
unkown
page read and write
clean
6931CDB000
unkown
page read and write
clean
7FF544A45000
unkown
page readonly
clean
39256FB000
unkown
page read and write
clean
18E581C0000
unkown
page read and write
clean
7FF57C60B000
unkown
page readonly
clean
15BE6F30000
unkown
page readonly
clean
1978BC00000
unkown
page readonly
clean
7FF4F2089000
unkown
page readonly
clean
7FF4FFF2A000
unkown
page readonly
clean
7FF5E72F1000
unkown
page readonly
clean
2AC60E70000
unkown
page readonly
clean
7FF5A6EE0000
unkown
page readonly
clean
392534D000
unkown
page read and write
clean
19789CE7000
unkown
page read and write
clean
7FF5543F5000
unkown
page readonly
clean
7FF4FFDD0000
unkown
page readonly
clean
287F37F0000
unkown
page read and write
clean
69320FA000
unkown
page read and write
clean
2AC60EC0000
unkown
page readonly
clean
1978BA02000
unkown
page read and write
clean
287F3841000
unkown
page read and write
clean
25C163E0000
unkown
page read and write
clean
15BE6850000
unkown
page read and write
clean
7FF5449E4000
unkown
page readonly
clean
7FF57C6D5000
unkown
page readonly
clean
7FF4FFCD0000
unkown
page readonly
clean
7FF57C7C6000
unkown
page readonly
clean
15BE688B000
unkown
page read and write
clean
7FF5E22FE000
unkown
page readonly
clean
287F9080000
unkown
page read and write
clean
7FF5E7278000
unkown
page readonly
clean
26875870000
unkown
page readonly
clean
7FF5E20EA000
unkown
page readonly
clean
There are 854 hidden memdumps, click here to show them.

DOM / HTML

URL
Malicious
https://sites.google.com/view/xfcghv/%D8%A7%D9%84%D8%B5%D9%81%D8%AD%D8%A9-%D8%A7%D9%84%D8%B1%D8%A6%D9%8A%D8%B3%D9%8A%D8%A9
malicious