IOCReport

loading gif

Files

File Path
Type
Category
Malicious
Zapytanie ofertowe (THERMAR 04152021).exe
PE32 executable (GUI) Intel 80386, for MS Windows
initial sample
malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Cookies\KTDIPTU6.txt
ASCII text
downloaded
clean

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\Zapytanie ofertowe (THERMAR 04152021).exe
'C:\Users\user\Desktop\Zapytanie ofertowe (THERMAR 04152021).exe'
malicious
C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
'C:\Users\user\Desktop\Zapytanie ofertowe (THERMAR 04152021).exe'
malicious

URLs

Name
IP
Malicious
https://H59hPIoLS2g1MK.net
malicious
http://127.0.0.1:HTTP/1.1
unknown
clean
http://fedir.comsign.co.il/crl/ComSignSecuredCA.crl0
unknown
clean
http://www.a-cert.at0E
unknown
clean
http://www.certplus.com/CRL/class3.crl0
unknown
clean
http://www.e-me.lv/repository0
unknown
clean
http://www.acabogacia.org/doc0
unknown
clean
http://crl.chambersign.org/chambersroot.crl0
unknown
clean
http://www.digsigtrust.com/DST_TRUST_CPS_v990701.html0
unknown
clean
http://acraiz.icpbrasil.gov.br/LCRacraiz.crl0
unknown
clean
http://www.certifikat.dk/repository0
unknown
clean
http://www.chambersign.org1
unknown
clean
http://crl.pkioverheid.nl/DomOrganisatieLatestCRL-G2.crl0
unknown
clean
https://doc-00-74-docs.googleusercontent.com/docs/securesc/ha0ro937gcuc7l7deffksulhg5h7mbp1/1c5gv62u
unknown
clean
http://www.diginotar.nl/cps/pkioverheid0
unknown
clean
http://www.pkioverheid.nl/policies/root-policy0
unknown
clean
http://repository.swisssign.com/0
unknown
clean
http://crl.ssc.lt/root-c/cacrl.crl0
unknown
clean
https://www.certification.tn/cgi-bin/pub/crl/cacrl.crl0
unknown
clean
http://www.trustcenter.de/crl/v2/tc_class_3_ca_II.crl
unknown
clean
http://ca.disig.sk/ca/crl/ca_disig.crl0
unknown
clean
http://repository.infonotary.com/cps/qcps.html0$
unknown
clean
http://www.post.trust.ie/reposit/cps.html0
unknown
clean
http://www.certplus.com/CRL/class2.crl0
unknown
clean
http://www.disig.sk/ca/crl/ca_disig.crl0
unknown
clean
http://crl.pki.goog/GTS1O1core.crl0
unknown
clean
http://ocsp.infonotary.com/responder.cgi0V
unknown
clean
http://www.sk.ee/cps/0
unknown
clean
http://www.certicamara.com0
unknown
clean
http://www.globaltrust.info0=
unknown
clean
https://www.certification.tn/cgi-bin/pub/crl/cacrl.crl0E
unknown
clean
http://servername/isapibackend.dll
unknown
clean
http://www.ssc.lt/cps03
unknown
clean
http://www.windows.com/pctv.
unknown
clean
http://acraiz.icpbrasil.gov.br/DPCacraiz.pdf0=
unknown
clean
http://ocsp.pki.gva.es0
unknown
clean
http://crl.oces.certifikat.dk/oces.crl0
unknown
clean
https://www.theonionrouter.com/dist.torproject.org/torbrowser/9.5.3/tor-win32-0.4.3.6.zip%tordir%%ha
unknown
clean
http://crl.ssc.lt/root-b/cacrl.crl0
unknown
clean
http://www.certicamara.com/dpc/0Z
unknown
clean
http://crl.pki.wellsfargo.com/wsprca.crl0
unknown
clean
http://www.dnie.es/dpc0
unknown
clean
http://www.rootca.or.kr/rca/cps.html0
unknown
clean
http://pki.goog/gsr2/GTS1O1.crt0
unknown
clean
http://www.trustcenter.de/guidelines0
unknown
clean
http://pki-root.ecertpki.cl/CertEnroll/E-CERT%20ROOT%20CA.crl0
unknown
clean
http://windowsmedia.com/redir/services.asp?WMPFriendly=true
unknown
clean
http://www.globaltrust.info0
unknown
clean
https://pki.goog/repository/0
unknown
clean
http://certificates.starfieldtech.com/repository/1604
unknown
clean
http://www.certplus.com/CRL/class3TS.crl0
unknown
clean
http://www.entrust.net/CRL/Client1.crl0
unknown
clean
http://schemas.xmlsoap.org/ws/2004/08/addressing/role/anonymous.
unknown
clean
https://www.catcert.net/verarrel
unknown
clean
http://www.disig.sk/ca0f
unknown
clean
http://www.e-szigno.hu/RootCA.crl
unknown
clean
http://www.signatur.rtr.at/current.crl0
unknown
clean
http://www.sk.ee/juur/crl/0
unknown
clean
http://crl.chambersign.org/chambersignroot.crl0
unknown
clean
http://crl.xrampsecurity.com/XGCA.crl0
unknown
clean
http://crl.ssc.lt/root-a/cacrl.crl0
unknown
clean
http://mail.aepa.ws
unknown
clean
http://www.trustdst.com/certificates/policy/ACES-index.html0
unknown
clean
http://www.firmaprofesional.com0
unknown
clean
http://crl.pki.goog/gsr2/gsr2.crl0?
unknown
clean
https://www.netlock.net/docs
unknown
clean
http://www.trustcenter.de/crl/v2/tc_class_2_ca_II.crl
unknown
clean
https://doc-00-74-docs.googleusercontent.com/tG
unknown
clean
http://crl.entrust.net/2048ca.crl0
unknown
clean
http://aepa.ws
unknown
clean
http://www.pki.admin.ch/policy/CPS_2_16_756_1_17_3_21_1.pdf0
unknown
clean
http://cps.chambersign.org/cps/publicnotaryroot.html0
unknown
clean
http://www.e-trust.be/CPS/QNcerts
unknown
clean
http://www.certicamara.com/certicamaraca.crl0
unknown
clean
http://www.msnbc.com/news/ticker.txt
unknown
clean
http://crl.netsolssl.com/NetworkSolutionsCertificateAuthority.crl0
unknown
clean
http://fedir.comsign.co.il/crl/ComSignCA.crl0
unknown
clean
http://www.certificadodigital.com.br/repositorio/serasaca/crl/SerasaCAI.crl0
unknown
clean
http://ocsp.entrust.net03
unknown
clean
http://cps.chambersign.org/cps/chambersroot.html0
unknown
clean
http://www.acabogacia.org0
unknown
clean
https://ca.sia.it/seccli/repository/CPS0
unknown
clean
http://crl.securetrust.com/SGCA.crl0
unknown
clean
http://fedir.comsign.co.il/cacert/ComSignAdvancedSecurityCA.crt0
unknown
clean
http://crl.securetrust.com/STCA.crl0
unknown
clean
http://www.certificadodigital.com.br/repositorio/serasaca/crl/SerasaCAIII.crl0
unknown
clean
http://www.icra.org/vocabulary/.
unknown
clean
https://H59hPIoLS2g1MK.netLX
unknown
clean
http://www.certicamara.com/certicamaraca.crl0;
unknown
clean
http://www.e-szigno.hu/RootCA.crt0
unknown
clean
http://www.quovadisglobal.com/cps0
unknown
clean
http://investor.msn.com/
unknown
clean
http://www.valicert.com/1
unknown
clean
http://www.e-szigno.hu/SZSZ/0
unknown
clean
http://www.%s.comPA
unknown
clean
http://www.certificadodigital.com.br/repositorio/serasaca/crl/SerasaCAII.crl0
unknown
clean
http://ocsp.entrust.net0D
unknown
clean
http://cps.chambersign.org/cps/chambersignroot.html0
unknown
clean
http://ca.sia.it/secsrv/repository/CRL.der0J
unknown
clean
http://investor.msn.com
unknown
clean
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
aepa.ws
185.127.128.20
malicious
mail.aepa.ws
unknown
malicious
googlehosted.l.googleusercontent.com
216.58.214.225
clean
doc-00-74-docs.googleusercontent.com
unknown
clean

IPs

IP
Domain
Country
Malicious
185.127.128.20
aepa.ws
Spain
malicious
216.58.214.225
googlehosted.l.googleusercontent.com
United States
clean

Registry

Path
Value
Malicious
C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
SavedLegacySettings
clean
C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
Blob
clean
C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
Blob
clean
C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
Blob
clean
C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
Blob
clean
C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
Blob
clean
C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
Blob
clean

Memdumps

Base Address
Regiontype
Protect
Malicious
302000
unkown
page execute and read and write
malicious
1E0CE000
unkown
page read and write
malicious
1E031000
unkown
page read and write
malicious
2580000
unkown
page write copy
clean
880000
unkown
page read and write
clean
880000
unkown
page read and write
clean
2C0000
unkown
page read and write
clean
1DBE0000
heap private
page read and write
clean
1E54000
heap private
page read and write
clean
2FD2000
unkown
page readonly
clean
41A000
unkown image
page readonly
clean
1DDD0000
heap private
page execute and read and write
clean
881000
unkown
page read and write
clean
8A5000
unkown
page read and write
clean
6F5000
unkown
page read and write
clean
3092000
unkown
page readonly
clean
1D698000
unkown
page read and write
clean
3255000
unkown
page readonly
clean
2C5000
unkown
page read and write
clean
BD0000
unkown
page readonly
clean
774000
unkown
page read and write
clean
2E0000
unkown
page read and write
clean
2730000
unkown
page read and write
clean
21550000
unkown
page readonly
clean
2B30000
unkown
page readonly
clean
2B50000
unkown
page readonly
clean
750000
unkown
page read and write
clean
2C0000
unkown
page read and write
clean
6F0000
unkown
page read and write
clean
2154E000
unkown
page read and write
clean
6F0000
unkown
page read and write
clean
6FB000
unkown
page read and write
clean
2C0000
unkown
page read and write
clean
6F5000
unkown
page read and write
clean
7A4000
heap default
page read and write
clean
1E11E000
unkown
page read and write
clean
31B9000
unkown
page readonly
clean
20CBE000
unkown
page read and write
clean
2C5000
unkown
page read and write
clean
1D162000
heap private
page read and write
clean
2089E000
unkown
page read and write
clean
5ED000
unkown
page execute and read and write
clean
700000
unkown
page read and write
clean
884000
unkown
page read and write
clean
760000
unkown
page read and write
clean
6F0000
unkown
page read and write
clean
6F0000
unkown
page read and write
clean
6F8000
unkown
page read and write
clean
110000
unkown
page readonly
clean
2C0000
unkown
page read and write
clean
EB0000
unkown
page readonly
clean
6F5000
unkown
page read and write
clean
7D9000
heap default
page read and write
clean
2C9000
unkown
page read and write
clean
6F0000
unkown
page read and write
clean
2C0000
unkown
page read and write
clean
885000
unkown
page read and write
clean
2C0000
unkown
page read and write
clean
7E7000
heap default
page read and write
clean
2C0000
unkown
page read and write
clean
120000
unkown
page read and write
clean
890000
unkown
page read and write
clean
6F0000
unkown
page read and write
clean
855000
heap default
page read and write
clean
880000
unkown
page read and write
clean
560000
heap private
page read and write
clean
20BA0000
unkown
page read and write
clean
1E50000
heap private
page read and write
clean
1D65C000
unkown
page read and write
clean
750000
unkown
page read and write
clean
1D0000
unkown
page readonly
clean
2C5000
unkown
page read and write
clean
1E188000
unkown
page read and write
clean
6F5000
unkown
page read and write
clean
6F0000
unkown
page read and write
clean
6F0000
unkown
page read and write
clean
20CA0000
unkown
page read and write
clean
3202000
unkown
page readonly
clean
1EB0000
unkown
page read and write
clean
940000
heap private
page execute and read and write
clean
890000
unkown
page read and write
clean
2D0000
unkown
page read and write
clean
2C5000
unkown
page read and write
clean
5F0000
unkown
page read and write
clean
6F0000
unkown
page read and write
clean
7BD000
heap default
page read and write
clean
880000
unkown
page read and write
clean
2C0000
unkown
page read and write
clean
2E0000
unkown
page read and write
clean
700000
unkown
page read and write
clean
6F0000
unkown
page read and write
clean
1DD3F000
stack
page read and write
clean
6F5000
unkown
page read and write
clean
700000
unkown
page read and write
clean
1E0CC000
unkown
page read and write
clean
700000
unkown
page read and write
clean
1DB47000
unkown
page read and write
clean
770000
unkown
page read and write
clean
700000
unkown
page read and write
clean
753000
unkown
page read and write
clean
6F5000
unkown
page read and write
clean
770000
unkown
page read and write
clean
2C0000
unkown
page read and write
clean
265F000
unkown
page read and write
clean
1DEF0000
heap private
page read and write
clean
3094000
unkown
page readonly
clean
ACE000
unkown
page read and write
clean
2C5000
unkown
page read and write
clean
3232000
unkown
page readonly
clean
750000
unkown
page read and write
clean
2C5000
unkown
page read and write
clean
700000
unkown
page read and write
clean
2C0000
unkown
page read and write
clean
20B9E000
unkown
page read and write | page guard
clean
6F0000
unkown
page read and write
clean
30B4000
unkown
page readonly
clean
8EC000
unkown
page read and write
clean
5C2000
heap private
page read and write
clean
6E0000
unkown
page read and write
clean
D93000
unkown
page read and write
clean
BCF000
unkown
page read and write
clean
1030000
unkown
page readonly
clean
1DEAE000
unkown
page read and write
clean
C8E000
unkown
page read and write
clean
2C5000
unkown
page read and write
clean
6F5000
unkown
page read and write
clean
2F7000
heap default
page read and write
clean
700000
unkown
page read and write
clean
31F5000
unkown
page readonly
clean
8F9000
heap private
page read and write
clean
1D54B000
unkown
page read and write
clean
1D6A6000
unkown
page read and write
clean
C40000
unkown
page read and write
clean
2C5000
unkown
page read and write
clean
1F0000
unkown
page read and write
clean
2C0000
unkown
page read and write
clean
D9F000
unkown
page read and write
clean
CDE000
unkown
page read and write
clean
1DF12000
heap private
page read and write
clean
2D0000
unkown
page read and write
clean
6F5000
unkown
page read and write
clean
760000
unkown
page read and write
clean
2C0000
unkown
page read and write
clean
881000
unkown
page read and write
clean
2C0000
unkown
page read and write
clean
3647000
unkown
page readonly
clean
770000
unkown
page read and write
clean
701000
unkown
page read and write
clean
1E02E000
unkown
page read and write | page guard
clean
1210000
unkown
page readonly
clean
600000
heap private
page read and write
clean
31BD000
unkown
page readonly
clean
6F0000
unkown
page read and write
clean
1CFCE000
unkown
page read and write | page guard
clean
2C2000
unkown
page read and write
clean
560000
unkown
page readonly
clean
936000
unkown
page read and write
clean
30D4000
unkown
page readonly
clean
2ED2000
unkown
page readonly
clean
2101E000
unkown
page read and write
clean
31D2000
unkown
page readonly
clean
6F5000
unkown
page read and write
clean
2128E000
unkown
page read and write
clean
880000
unkown
page read and write
clean
20000
heap private
page read and write
clean
6F5000
unkown
page read and write
clean
1DBCD000
unkown
page read and write
clean
787000
heap default
page read and write
clean
8A0000
unkown
page read and write
clean
2C0000
unkown
page read and write
clean
6F0000
unkown
page read and write
clean
59D000
unkown
page execute and read and write
clean
DAF000
unkown
page read and write
clean
2C0000
unkown
page read and write
clean
6F0000
unkown
page read and write
clean
6F5000
unkown
page read and write
clean
269E000
unkown
page read and write
clean
700000
unkown
page read and write
clean
6F0000
unkown
page read and write
clean
8A0000
unkown
page read and write
clean
1DC0000
unkown
page read and write
clean
2E0000
unkown
page read and write
clean
1D692000
unkown
page read and write
clean
1B0000
unkown
page execute read
clean
20B9F000
unkown
page read and write
clean
1D672000
unkown
page read and write
clean
3460000
unkown
page readonly
clean
6F5000
unkown
page read and write
clean
760000
unkown
page read and write
clean
6F5000
unkown
page read and write
clean
700000
unkown
page read and write
clean
31A5000
unkown
page readonly
clean
3156000
unkown
page readonly
clean
2F0000
heap default
page read and write
clean
30D2000
unkown
page readonly
clean
700000
unkown
page read and write
clean
2C0000
unkown
page read and write
clean
5A0000
heap private
page read and write
clean
770000
unkown
page read and write
clean
3440000
unkown
page readonly
clean
608000
heap private
page read and write
clean
6F0000
unkown
page read and write
clean
200000
unkown
page write copy
clean
1E0000
unkown
page read and write
clean
170000
unkown
page readonly
clean
7B8000
heap default
page read and write
clean
750000
unkown
page read and write
clean
6F0000
unkown
page read and write
clean
401000
unkown image
page execute read
clean
6F0000
unkown
page read and write
clean
2E0000
unkown
page execute and read and write
clean
2C0000
unkown
page read and write
clean
1E11B000
unkown
page read and write
clean
705000
unkown
page read and write
clean
770000
unkown
page read and write
clean
1D34D000
unkown
page read and write
clean
880000
unkown
page read and write
clean
2A00000
unkown
page read and write
clean
890000
unkown
page execute and read and write
clean
1D73D000
unkown
page read and write
clean
26F4000
heap private
page read and write
clean
700000
unkown
page read and write
clean
3186000
unkown
page readonly
clean
7EFDF000
unkown
page read and write
clean
400000
unkown image
page readonly
clean
2D0000
unkown
page readonly
clean
1DB3F000
stack
page read and write
clean
205D0000
unkown
page read and write
clean
3126000
unkown
page readonly
clean
2C2000
unkown
page read and write
clean
700000
unkown
page read and write
clean
700000
unkown
page read and write
clean
6F5000
unkown
page read and write
clean
6F0000
unkown
page read and write
clean
2C0000
unkown
page read and write
clean
2C0000
unkown
page read and write
clean
2C0000
unkown
page read and write
clean
700000
unkown
page read and write
clean
20D32000
unkown
page read and write
clean
1D190000
unkown
page read and write
clean
1D0DD000
unkown
page read and write
clean
5A4000
heap private
page read and write
clean
20120000
heap private
page execute and read and write
clean
D8D000
unkown
page read and write
clean
2F0000
unkown
page read and write
clean
180000
unkown
page execute and read and write
clean
8A1000
unkown
page read and write
clean
2C0000
unkown
page readonly
clean
202EE000
unkown
page read and write
clean
890000
unkown
page read and write
clean
56A000
heap private
page read and write
clean
880000
unkown
page read and write
clean
1CB00000
unkown
page readonly
clean
2E0000
unkown
page read and write
clean
6F5000
unkown
page read and write
clean
1E58000
heap private
page read and write
clean
890000
unkown
page read and write
clean
1D40E000
unkown
page read and write
clean
617000
unkown
page execute and read and write
clean
1CE0000
unkown
page readonly
clean
700000
unkown
page read and write
clean
2C5000
unkown
page read and write
clean
6F0000
unkown
page read and write
clean
1DA3F000
stack
page read and write
clean
A4D000
unkown
page read and write
clean
588000
heap private
page read and write
clean
2C5000
unkown
page read and write
clean
DB4000
unkown
page read and write
clean
2C0000
unkown
page read and write
clean
6F0000
unkown
page read and write
clean
6F0000
unkown
page read and write
clean
1D3C0000
heap private
page read and write
clean
1DEF5000
heap private
page read and write
clean
5E0000
unkown
page read and write
clean
770000
unkown
page read and write
clean
2C0000
unkown
page read and write
clean
3239000
unkown
page readonly
clean
2C0000
unkown
page read and write
clean
8A0000
unkown
page read and write
clean
26F0000
heap private
page read and write
clean
2C5000
unkown
page read and write
clean
740000
unkown
page readonly
clean
6F0000
unkown
page read and write
clean
2ED8000
unkown
page readonly
clean
930000
unkown
page read and write
clean
2D0000
unkown
page read and write
clean
2C5000
unkown
page read and write
clean
30B2000
unkown
page readonly
clean
1DC3F000
stack
page read and write
clean
261F000
unkown
page read and write
clean
750000
unkown
page read and write
clean
2C0000
unkown
page read and write
clean
1D650000
unkown
page read and write
clean
1DC6D000
unkown
page read and write
clean
1D660000
unkown
page read and write
clean
41A000
unkown image
page readonly
clean
1DCB0000
heap private
page read and write
clean
2C0000
unkown
page read and write
clean
61B000
unkown
page execute and read and write
clean
490000
unkown
page read and write
clean
6C0000
unkown
page read and write
clean
5FA000
unkown
page execute and read and write
clean
890000
unkown
page read and write
clean
6F5000
unkown
page read and write
clean
930000
unkown
page read and write
clean
3225000
unkown
page readonly
clean
869000
heap default
page read and write
clean
31D9000
unkown
page readonly
clean
1D85F000
unkown
page read and write
clean
3175000
unkown
page readonly
clean
612000
unkown
page read and write
clean
615000
unkown
page execute and read and write
clean
6F8000
unkown
page read and write
clean
700000
unkown
page read and write
clean
1E16A000
unkown
page read and write
clean
75B000
unkown
page read and write
clean
580000
unkown
page read and write
clean
1E0000
unkown
page readonly
clean
9CE000
unkown
page read and write
clean
630000
heap default
page read and write
clean
6F0000
unkown
page execute and read and write
clean
22B0000
unkown
page readonly
clean
2712000
heap private
page read and write
clean
A8E000
unkown
page read and write
clean
1E160000
unkown
page read and write
clean
8F0000
heap private
page read and write
clean
5B0000
heap private
page read and write
clean
20D04000
unkown
page read and write
clean
6F0000
unkown
page read and write
clean
74E000
unkown
page read and write
clean
213BE000
unkown
page read and write
clean
5C0000
unkown
page readonly
clean
700000
unkown
page readonly
clean
D6E000
unkown
page read and write
clean
400000
unkown image
page readonly
clean
3102000
unkown
page readonly
clean
6F5000
unkown
page read and write
clean
1A0000
unkown
page read and write
clean
1F0000
unkown
page write copy
clean
6F0000
unkown
page read and write
clean
3162000
unkown
page readonly
clean
880000
unkown
page read and write
clean
210000
heap default
page read and write
clean
3209000
unkown
page readonly
clean
2C0000
unkown
page read and write
clean
2C0000
unkown
page read and write
clean
750000
unkown
page read and write
clean
418000
unkown image
page read and write
clean
6F5000
unkown
page read and write
clean
2C0000
unkown
page read and write
clean
1E0B4000
unkown
page read and write
clean
1E162000
unkown
page read and write
clean
2C0000
unkown
page read and write
clean
700000
unkown
page read and write
clean
209AC000
unkown
page read and write
clean
1F0000
unkown
page read and write
clean
2C0000
unkown
page read and write
clean
20CF2000
unkown
page read and write
clean
2D0000
unkown
page read and write
clean
760000
unkown
page read and write
clean
2C5000
unkown
page read and write
clean
2C0000
unkown
page read and write
clean
18C000
stack
page read and write
clean
2C0000
unkown
page read and write
clean
2C0000
unkown
page read and write
clean
1E194000
unkown
page read and write
clean
3115000
unkown
page readonly
clean
780000
heap default
page read and write
clean
880000
unkown
page read and write
clean
890000
unkown
page read and write
clean
314000
heap default
page read and write
clean
1D150000
heap private
page read and write
clean
1E18C000
unkown
page read and write
clean
6F0000
unkown
page read and write
clean
1F031000
unkown
page read and write
clean
2C5000
unkown
page read and write
clean
770000
unkown
page read and write
clean
420000
unkown
page readonly
clean
6F5000
unkown
page read and write
clean
6F5000
unkown
page read and write
clean
6D0000
unkown
page execute and read and write
clean
1070000
heap private
page read and write
clean
21120000
unkown
page read and write
clean
6F5000
unkown
page read and write
clean
3400000
unkown
page readonly
clean
750000
unkown
page read and write
clean
6F5000
unkown
page read and write
clean
1D71B000
unkown
page read and write
clean
770000
unkown
page read and write
clean
2C2000
unkown
page read and write
clean
89000
unkown
page read and write
clean
6F5000
unkown
page read and write
clean
1D6F9000
unkown
page read and write
clean
917000
heap private
page read and write
clean
2D0000
unkown
page read and write
clean
5F2000
unkown
page read and write
clean
6F0000
unkown
page read and write
clean
158000
heap private
page read and write
clean
2C0000
unkown
page read and write
clean
930000
unkown
page read and write
clean
1E5B000
heap private
page read and write
clean
7EFDF000
unkown
page read and write
clean
6F0000
unkown
page read and write
clean
594000
unkown
page read and write
clean
6F0000
unkown
page read and write
clean
3420000
unkown
page readonly
clean
1E17B000
unkown
page read and write
clean
202F0000
unkown
page readonly
clean
9D0000
heap private
page read and write
clean
33C2000
unkown
page readonly
clean
2A0000
unkown
page readonly
clean
190000
unkown
page readonly
clean
1F0000
unkown
page read and write
clean
77A000
unkown
page read and write
clean
880000
unkown
page read and write
clean
6F5000
unkown
page read and write
clean
2610000
unkown
page readonly
clean
930000
unkown
page read and write
clean
700000
unkown
page read and write
clean
1EA0000
heap private
page read and write
clean
400000
unkown image
page readonly
clean
3132000
unkown
page readonly
clean
26DF000
unkown
page read and write
clean
530000
heap private
page read and write
clean
8A0000
unkown
page read and write
clean
750000
unkown
page readonly
clean
1076000
heap private
page read and write
clean
401000
unkown image
page execute read
clean
2F0000
unkown
page read and write
clean
D70000
unkown
page read and write
clean
593000
unkown
page execute and read and write
clean
700000
unkown
page read and write
clean
6F0000
unkown
page read and write
clean
1CF6D000
unkown
page read and write
clean
20000
unkown
page read and write
clean
6F5000
unkown
page read and write
clean
200000
unkown
page readonly
clean
2C0000
unkown
page read and write
clean
760000
unkown
page read and write
clean
890000
unkown
page read and write
clean
1D743000
unkown
page read and write
clean
90000
unkown
page readonly
clean
6F0000
unkown
page read and write
clean
5F6000
unkown
page execute and read and write
clean
1E02F000
unkown
page read and write
clean
2E0000
unkown
page read and write
clean
150000
heap private
page read and write
clean
1D6EE000
unkown
page read and write
clean
3192000
unkown
page readonly
clean
8A0000
unkown
page read and write
clean
980000
unkown
page read and write
clean
1DCF0000
unkown
page readonly
clean
6F0000
unkown
page read and write
clean
830000
heap default
page read and write
clean
1CFCF000
unkown
page read and write
clean
31B6000
unkown
page readonly
clean
700000
unkown
page read and write
clean
6F5000
unkown
page read and write
clean
3145000
unkown
page readonly
clean
890000
unkown
page read and write
clean
880000
unkown
page read and write
clean
There are 451 hidden memdumps, click here to show them.