Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
Zapytanie ofertowe (THERMAR 04152021).exe
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
initial sample
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Cookies\KTDIPTU6.txt
|
ASCII text
|
downloaded
|
Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Users\user\Desktop\Zapytanie ofertowe (THERMAR 04152021).exe
|
'C:\Users\user\Desktop\Zapytanie ofertowe (THERMAR 04152021).exe'
|
||
C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
|
'C:\Users\user\Desktop\Zapytanie ofertowe (THERMAR 04152021).exe'
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
https://H59hPIoLS2g1MK.net
|
|||
http://127.0.0.1:HTTP/1.1
|
unknown
|
||
http://fedir.comsign.co.il/crl/ComSignSecuredCA.crl0
|
unknown
|
||
http://www.a-cert.at0E
|
unknown
|
||
http://www.certplus.com/CRL/class3.crl0
|
unknown
|
||
http://www.e-me.lv/repository0
|
unknown
|
||
http://www.acabogacia.org/doc0
|
unknown
|
||
http://crl.chambersign.org/chambersroot.crl0
|
unknown
|
||
http://www.digsigtrust.com/DST_TRUST_CPS_v990701.html0
|
unknown
|
||
http://acraiz.icpbrasil.gov.br/LCRacraiz.crl0
|
unknown
|
||
http://www.certifikat.dk/repository0
|
unknown
|
||
http://www.chambersign.org1
|
unknown
|
||
http://crl.pkioverheid.nl/DomOrganisatieLatestCRL-G2.crl0
|
unknown
|
||
https://doc-00-74-docs.googleusercontent.com/docs/securesc/ha0ro937gcuc7l7deffksulhg5h7mbp1/1c5gv62u
|
unknown
|
||
http://www.diginotar.nl/cps/pkioverheid0
|
unknown
|
||
http://www.pkioverheid.nl/policies/root-policy0
|
unknown
|
||
http://repository.swisssign.com/0
|
unknown
|
||
http://crl.ssc.lt/root-c/cacrl.crl0
|
unknown
|
||
https://www.certification.tn/cgi-bin/pub/crl/cacrl.crl0
|
unknown
|
||
http://www.trustcenter.de/crl/v2/tc_class_3_ca_II.crl
|
unknown
|
||
http://ca.disig.sk/ca/crl/ca_disig.crl0
|
unknown
|
||
http://repository.infonotary.com/cps/qcps.html0$
|
unknown
|
||
http://www.post.trust.ie/reposit/cps.html0
|
unknown
|
||
http://www.certplus.com/CRL/class2.crl0
|
unknown
|
||
http://www.disig.sk/ca/crl/ca_disig.crl0
|
unknown
|
||
http://crl.pki.goog/GTS1O1core.crl0
|
unknown
|
||
http://ocsp.infonotary.com/responder.cgi0V
|
unknown
|
||
http://www.sk.ee/cps/0
|
unknown
|
||
http://www.certicamara.com0
|
unknown
|
||
http://www.globaltrust.info0=
|
unknown
|
||
https://www.certification.tn/cgi-bin/pub/crl/cacrl.crl0E
|
unknown
|
||
http://servername/isapibackend.dll
|
unknown
|
||
http://www.ssc.lt/cps03
|
unknown
|
||
http://www.windows.com/pctv.
|
unknown
|
||
http://acraiz.icpbrasil.gov.br/DPCacraiz.pdf0=
|
unknown
|
||
http://ocsp.pki.gva.es0
|
unknown
|
||
http://crl.oces.certifikat.dk/oces.crl0
|
unknown
|
||
https://www.theonionrouter.com/dist.torproject.org/torbrowser/9.5.3/tor-win32-0.4.3.6.zip%tordir%%ha
|
unknown
|
||
http://crl.ssc.lt/root-b/cacrl.crl0
|
unknown
|
||
http://www.certicamara.com/dpc/0Z
|
unknown
|
||
http://crl.pki.wellsfargo.com/wsprca.crl0
|
unknown
|
||
http://www.dnie.es/dpc0
|
unknown
|
||
http://www.rootca.or.kr/rca/cps.html0
|
unknown
|
||
http://pki.goog/gsr2/GTS1O1.crt0
|
unknown
|
||
http://www.trustcenter.de/guidelines0
|
unknown
|
||
http://pki-root.ecertpki.cl/CertEnroll/E-CERT%20ROOT%20CA.crl0
|
unknown
|
||
http://windowsmedia.com/redir/services.asp?WMPFriendly=true
|
unknown
|
||
http://www.globaltrust.info0
|
unknown
|
||
https://pki.goog/repository/0
|
unknown
|
||
http://certificates.starfieldtech.com/repository/1604
|
unknown
|
||
http://www.certplus.com/CRL/class3TS.crl0
|
unknown
|
||
http://www.entrust.net/CRL/Client1.crl0
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/08/addressing/role/anonymous.
|
unknown
|
||
https://www.catcert.net/verarrel
|
unknown
|
||
http://www.disig.sk/ca0f
|
unknown
|
||
http://www.e-szigno.hu/RootCA.crl
|
unknown
|
||
http://www.signatur.rtr.at/current.crl0
|
unknown
|
||
http://www.sk.ee/juur/crl/0
|
unknown
|
||
http://crl.chambersign.org/chambersignroot.crl0
|
unknown
|
||
http://crl.xrampsecurity.com/XGCA.crl0
|
unknown
|
||
http://crl.ssc.lt/root-a/cacrl.crl0
|
unknown
|
||
http://mail.aepa.ws
|
unknown
|
||
http://www.trustdst.com/certificates/policy/ACES-index.html0
|
unknown
|
||
http://www.firmaprofesional.com0
|
unknown
|
||
http://crl.pki.goog/gsr2/gsr2.crl0?
|
unknown
|
||
https://www.netlock.net/docs
|
unknown
|
||
http://www.trustcenter.de/crl/v2/tc_class_2_ca_II.crl
|
unknown
|
||
https://doc-00-74-docs.googleusercontent.com/tG
|
unknown
|
||
http://crl.entrust.net/2048ca.crl0
|
unknown
|
||
http://aepa.ws
|
unknown
|
||
http://www.pki.admin.ch/policy/CPS_2_16_756_1_17_3_21_1.pdf0
|
unknown
|
||
http://cps.chambersign.org/cps/publicnotaryroot.html0
|
unknown
|
||
http://www.e-trust.be/CPS/QNcerts
|
unknown
|
||
http://www.certicamara.com/certicamaraca.crl0
|
unknown
|
||
http://www.msnbc.com/news/ticker.txt
|
unknown
|
||
http://crl.netsolssl.com/NetworkSolutionsCertificateAuthority.crl0
|
unknown
|
||
http://fedir.comsign.co.il/crl/ComSignCA.crl0
|
unknown
|
||
http://www.certificadodigital.com.br/repositorio/serasaca/crl/SerasaCAI.crl0
|
unknown
|
||
http://ocsp.entrust.net03
|
unknown
|
||
http://cps.chambersign.org/cps/chambersroot.html0
|
unknown
|
||
http://www.acabogacia.org0
|
unknown
|
||
https://ca.sia.it/seccli/repository/CPS0
|
unknown
|
||
http://crl.securetrust.com/SGCA.crl0
|
unknown
|
||
http://fedir.comsign.co.il/cacert/ComSignAdvancedSecurityCA.crt0
|
unknown
|
||
http://crl.securetrust.com/STCA.crl0
|
unknown
|
||
http://www.certificadodigital.com.br/repositorio/serasaca/crl/SerasaCAIII.crl0
|
unknown
|
||
http://www.icra.org/vocabulary/.
|
unknown
|
||
https://H59hPIoLS2g1MK.netLX
|
unknown
|
||
http://www.certicamara.com/certicamaraca.crl0;
|
unknown
|
||
http://www.e-szigno.hu/RootCA.crt0
|
unknown
|
||
http://www.quovadisglobal.com/cps0
|
unknown
|
||
http://investor.msn.com/
|
unknown
|
||
http://www.valicert.com/1
|
unknown
|
||
http://www.e-szigno.hu/SZSZ/0
|
unknown
|
||
http://www.%s.comPA
|
unknown
|
||
http://www.certificadodigital.com.br/repositorio/serasaca/crl/SerasaCAII.crl0
|
unknown
|
||
http://ocsp.entrust.net0D
|
unknown
|
||
http://cps.chambersign.org/cps/chambersignroot.html0
|
unknown
|
||
http://ca.sia.it/secsrv/repository/CRL.der0J
|
unknown
|
||
http://investor.msn.com
|
unknown
|
There are 90 hidden URLs, click here to show them.
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
aepa.ws
|
185.127.128.20
|
||
mail.aepa.ws
|
unknown
|
||
googlehosted.l.googleusercontent.com
|
216.58.214.225
|
||
doc-00-74-docs.googleusercontent.com
|
unknown
|
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
185.127.128.20
|
aepa.ws
|
Spain
|
||
216.58.214.225
|
googlehosted.l.googleusercontent.com
|
United States
|
Registry
Path
|
Value
|
Malicious
|
|
---|---|---|---|
C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
|
SavedLegacySettings
|
||
C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
|
Blob
|
||
C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
|
Blob
|
||
C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
|
Blob
|
||
C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
|
Blob
|
||
C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
|
Blob
|
||
C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
|
Blob
|
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
302000
|
unkown
|
page execute and read and write
|
||
1E0CE000
|
unkown
|
page read and write
|
||
1E031000
|
unkown
|
page read and write
|
||
2580000
|
unkown
|
page write copy
|
||
880000
|
unkown
|
page read and write
|
||
880000
|
unkown
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
1DBE0000
|
heap private
|
page read and write
|
||
1E54000
|
heap private
|
page read and write
|
||
2FD2000
|
unkown
|
page readonly
|
||
41A000
|
unkown image
|
page readonly
|
||
1DDD0000
|
heap private
|
page execute and read and write
|
||
881000
|
unkown
|
page read and write
|
||
8A5000
|
unkown
|
page read and write
|
||
6F5000
|
unkown
|
page read and write
|
||
3092000
|
unkown
|
page readonly
|
||
1D698000
|
unkown
|
page read and write
|
||
3255000
|
unkown
|
page readonly
|
||
2C5000
|
unkown
|
page read and write
|
||
BD0000
|
unkown
|
page readonly
|
||
774000
|
unkown
|
page read and write
|
||
2E0000
|
unkown
|
page read and write
|
||
2730000
|
unkown
|
page read and write
|
||
21550000
|
unkown
|
page readonly
|
||
2B30000
|
unkown
|
page readonly
|
||
2B50000
|
unkown
|
page readonly
|
||
750000
|
unkown
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
6F0000
|
unkown
|
page read and write
|
||
2154E000
|
unkown
|
page read and write
|
||
6F0000
|
unkown
|
page read and write
|
||
6FB000
|
unkown
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
6F5000
|
unkown
|
page read and write
|
||
7A4000
|
heap default
|
page read and write
|
||
1E11E000
|
unkown
|
page read and write
|
||
31B9000
|
unkown
|
page readonly
|
||
20CBE000
|
unkown
|
page read and write
|
||
2C5000
|
unkown
|
page read and write
|
||
1D162000
|
heap private
|
page read and write
|
||
2089E000
|
unkown
|
page read and write
|
||
5ED000
|
unkown
|
page execute and read and write
|
||
700000
|
unkown
|
page read and write
|
||
884000
|
unkown
|
page read and write
|
||
760000
|
unkown
|
page read and write
|
||
6F0000
|
unkown
|
page read and write
|
||
6F0000
|
unkown
|
page read and write
|
||
6F8000
|
unkown
|
page read and write
|
||
110000
|
unkown
|
page readonly
|
||
2C0000
|
unkown
|
page read and write
|
||
EB0000
|
unkown
|
page readonly
|
||
6F5000
|
unkown
|
page read and write
|
||
7D9000
|
heap default
|
page read and write
|
||
2C9000
|
unkown
|
page read and write
|
||
6F0000
|
unkown
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
885000
|
unkown
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
7E7000
|
heap default
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
120000
|
unkown
|
page read and write
|
||
890000
|
unkown
|
page read and write
|
||
6F0000
|
unkown
|
page read and write
|
||
855000
|
heap default
|
page read and write
|
||
880000
|
unkown
|
page read and write
|
||
560000
|
heap private
|
page read and write
|
||
20BA0000
|
unkown
|
page read and write
|
||
1E50000
|
heap private
|
page read and write
|
||
1D65C000
|
unkown
|
page read and write
|
||
750000
|
unkown
|
page read and write
|
||
1D0000
|
unkown
|
page readonly
|
||
2C5000
|
unkown
|
page read and write
|
||
1E188000
|
unkown
|
page read and write
|
||
6F5000
|
unkown
|
page read and write
|
||
6F0000
|
unkown
|
page read and write
|
||
6F0000
|
unkown
|
page read and write
|
||
20CA0000
|
unkown
|
page read and write
|
||
3202000
|
unkown
|
page readonly
|
||
1EB0000
|
unkown
|
page read and write
|
||
940000
|
heap private
|
page execute and read and write
|
||
890000
|
unkown
|
page read and write
|
||
2D0000
|
unkown
|
page read and write
|
||
2C5000
|
unkown
|
page read and write
|
||
5F0000
|
unkown
|
page read and write
|
||
6F0000
|
unkown
|
page read and write
|
||
7BD000
|
heap default
|
page read and write
|
||
880000
|
unkown
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
2E0000
|
unkown
|
page read and write
|
||
700000
|
unkown
|
page read and write
|
||
6F0000
|
unkown
|
page read and write
|
||
1DD3F000
|
stack
|
page read and write
|
||
6F5000
|
unkown
|
page read and write
|
||
700000
|
unkown
|
page read and write
|
||
1E0CC000
|
unkown
|
page read and write
|
||
700000
|
unkown
|
page read and write
|
||
1DB47000
|
unkown
|
page read and write
|
||
770000
|
unkown
|
page read and write
|
||
700000
|
unkown
|
page read and write
|
||
753000
|
unkown
|
page read and write
|
||
6F5000
|
unkown
|
page read and write
|
||
770000
|
unkown
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
265F000
|
unkown
|
page read and write
|
||
1DEF0000
|
heap private
|
page read and write
|
||
3094000
|
unkown
|
page readonly
|
||
ACE000
|
unkown
|
page read and write
|
||
2C5000
|
unkown
|
page read and write
|
||
3232000
|
unkown
|
page readonly
|
||
750000
|
unkown
|
page read and write
|
||
2C5000
|
unkown
|
page read and write
|
||
700000
|
unkown
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
20B9E000
|
unkown
|
page read and write | page guard
|
||
6F0000
|
unkown
|
page read and write
|
||
30B4000
|
unkown
|
page readonly
|
||
8EC000
|
unkown
|
page read and write
|
||
5C2000
|
heap private
|
page read and write
|
||
6E0000
|
unkown
|
page read and write
|
||
D93000
|
unkown
|
page read and write
|
||
BCF000
|
unkown
|
page read and write
|
||
1030000
|
unkown
|
page readonly
|
||
1DEAE000
|
unkown
|
page read and write
|
||
C8E000
|
unkown
|
page read and write
|
||
2C5000
|
unkown
|
page read and write
|
||
6F5000
|
unkown
|
page read and write
|
||
2F7000
|
heap default
|
page read and write
|
||
700000
|
unkown
|
page read and write
|
||
31F5000
|
unkown
|
page readonly
|
||
8F9000
|
heap private
|
page read and write
|
||
1D54B000
|
unkown
|
page read and write
|
||
1D6A6000
|
unkown
|
page read and write
|
||
C40000
|
unkown
|
page read and write
|
||
2C5000
|
unkown
|
page read and write
|
||
1F0000
|
unkown
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
D9F000
|
unkown
|
page read and write
|
||
CDE000
|
unkown
|
page read and write
|
||
1DF12000
|
heap private
|
page read and write
|
||
2D0000
|
unkown
|
page read and write
|
||
6F5000
|
unkown
|
page read and write
|
||
760000
|
unkown
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
881000
|
unkown
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
3647000
|
unkown
|
page readonly
|
||
770000
|
unkown
|
page read and write
|
||
701000
|
unkown
|
page read and write
|
||
1E02E000
|
unkown
|
page read and write | page guard
|
||
1210000
|
unkown
|
page readonly
|
||
600000
|
heap private
|
page read and write
|
||
31BD000
|
unkown
|
page readonly
|
||
6F0000
|
unkown
|
page read and write
|
||
1CFCE000
|
unkown
|
page read and write | page guard
|
||
2C2000
|
unkown
|
page read and write
|
||
560000
|
unkown
|
page readonly
|
||
936000
|
unkown
|
page read and write
|
||
30D4000
|
unkown
|
page readonly
|
||
2ED2000
|
unkown
|
page readonly
|
||
2101E000
|
unkown
|
page read and write
|
||
31D2000
|
unkown
|
page readonly
|
||
6F5000
|
unkown
|
page read and write
|
||
2128E000
|
unkown
|
page read and write
|
||
880000
|
unkown
|
page read and write
|
||
20000
|
heap private
|
page read and write
|
||
6F5000
|
unkown
|
page read and write
|
||
1DBCD000
|
unkown
|
page read and write
|
||
787000
|
heap default
|
page read and write
|
||
8A0000
|
unkown
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
6F0000
|
unkown
|
page read and write
|
||
59D000
|
unkown
|
page execute and read and write
|
||
DAF000
|
unkown
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
6F0000
|
unkown
|
page read and write
|
||
6F5000
|
unkown
|
page read and write
|
||
269E000
|
unkown
|
page read and write
|
||
700000
|
unkown
|
page read and write
|
||
6F0000
|
unkown
|
page read and write
|
||
8A0000
|
unkown
|
page read and write
|
||
1DC0000
|
unkown
|
page read and write
|
||
2E0000
|
unkown
|
page read and write
|
||
1D692000
|
unkown
|
page read and write
|
||
1B0000
|
unkown
|
page execute read
|
||
20B9F000
|
unkown
|
page read and write
|
||
1D672000
|
unkown
|
page read and write
|
||
3460000
|
unkown
|
page readonly
|
||
6F5000
|
unkown
|
page read and write
|
||
760000
|
unkown
|
page read and write
|
||
6F5000
|
unkown
|
page read and write
|
||
700000
|
unkown
|
page read and write
|
||
31A5000
|
unkown
|
page readonly
|
||
3156000
|
unkown
|
page readonly
|
||
2F0000
|
heap default
|
page read and write
|
||
30D2000
|
unkown
|
page readonly
|
||
700000
|
unkown
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
5A0000
|
heap private
|
page read and write
|
||
770000
|
unkown
|
page read and write
|
||
3440000
|
unkown
|
page readonly
|
||
608000
|
heap private
|
page read and write
|
||
6F0000
|
unkown
|
page read and write
|
||
200000
|
unkown
|
page write copy
|
||
1E0000
|
unkown
|
page read and write
|
||
170000
|
unkown
|
page readonly
|
||
7B8000
|
heap default
|
page read and write
|
||
750000
|
unkown
|
page read and write
|
||
6F0000
|
unkown
|
page read and write
|
||
401000
|
unkown image
|
page execute read
|
||
6F0000
|
unkown
|
page read and write
|
||
2E0000
|
unkown
|
page execute and read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
1E11B000
|
unkown
|
page read and write
|
||
705000
|
unkown
|
page read and write
|
||
770000
|
unkown
|
page read and write
|
||
1D34D000
|
unkown
|
page read and write
|
||
880000
|
unkown
|
page read and write
|
||
2A00000
|
unkown
|
page read and write
|
||
890000
|
unkown
|
page execute and read and write
|
||
1D73D000
|
unkown
|
page read and write
|
||
26F4000
|
heap private
|
page read and write
|
||
700000
|
unkown
|
page read and write
|
||
3186000
|
unkown
|
page readonly
|
||
7EFDF000
|
unkown
|
page read and write
|
||
400000
|
unkown image
|
page readonly
|
||
2D0000
|
unkown
|
page readonly
|
||
1DB3F000
|
stack
|
page read and write
|
||
205D0000
|
unkown
|
page read and write
|
||
3126000
|
unkown
|
page readonly
|
||
2C2000
|
unkown
|
page read and write
|
||
700000
|
unkown
|
page read and write
|
||
700000
|
unkown
|
page read and write
|
||
6F5000
|
unkown
|
page read and write
|
||
6F0000
|
unkown
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
700000
|
unkown
|
page read and write
|
||
20D32000
|
unkown
|
page read and write
|
||
1D190000
|
unkown
|
page read and write
|
||
1D0DD000
|
unkown
|
page read and write
|
||
5A4000
|
heap private
|
page read and write
|
||
20120000
|
heap private
|
page execute and read and write
|
||
D8D000
|
unkown
|
page read and write
|
||
2F0000
|
unkown
|
page read and write
|
||
180000
|
unkown
|
page execute and read and write
|
||
8A1000
|
unkown
|
page read and write
|
||
2C0000
|
unkown
|
page readonly
|
||
202EE000
|
unkown
|
page read and write
|
||
890000
|
unkown
|
page read and write
|
||
56A000
|
heap private
|
page read and write
|
||
880000
|
unkown
|
page read and write
|
||
1CB00000
|
unkown
|
page readonly
|
||
2E0000
|
unkown
|
page read and write
|
||
6F5000
|
unkown
|
page read and write
|
||
1E58000
|
heap private
|
page read and write
|
||
890000
|
unkown
|
page read and write
|
||
1D40E000
|
unkown
|
page read and write
|
||
617000
|
unkown
|
page execute and read and write
|
||
1CE0000
|
unkown
|
page readonly
|
||
700000
|
unkown
|
page read and write
|
||
2C5000
|
unkown
|
page read and write
|
||
6F0000
|
unkown
|
page read and write
|
||
1DA3F000
|
stack
|
page read and write
|
||
A4D000
|
unkown
|
page read and write
|
||
588000
|
heap private
|
page read and write
|
||
2C5000
|
unkown
|
page read and write
|
||
DB4000
|
unkown
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
6F0000
|
unkown
|
page read and write
|
||
6F0000
|
unkown
|
page read and write
|
||
1D3C0000
|
heap private
|
page read and write
|
||
1DEF5000
|
heap private
|
page read and write
|
||
5E0000
|
unkown
|
page read and write
|
||
770000
|
unkown
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
3239000
|
unkown
|
page readonly
|
||
2C0000
|
unkown
|
page read and write
|
||
8A0000
|
unkown
|
page read and write
|
||
26F0000
|
heap private
|
page read and write
|
||
2C5000
|
unkown
|
page read and write
|
||
740000
|
unkown
|
page readonly
|
||
6F0000
|
unkown
|
page read and write
|
||
2ED8000
|
unkown
|
page readonly
|
||
930000
|
unkown
|
page read and write
|
||
2D0000
|
unkown
|
page read and write
|
||
2C5000
|
unkown
|
page read and write
|
||
30B2000
|
unkown
|
page readonly
|
||
1DC3F000
|
stack
|
page read and write
|
||
261F000
|
unkown
|
page read and write
|
||
750000
|
unkown
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
1D650000
|
unkown
|
page read and write
|
||
1DC6D000
|
unkown
|
page read and write
|
||
1D660000
|
unkown
|
page read and write
|
||
41A000
|
unkown image
|
page readonly
|
||
1DCB0000
|
heap private
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
61B000
|
unkown
|
page execute and read and write
|
||
490000
|
unkown
|
page read and write
|
||
6C0000
|
unkown
|
page read and write
|
||
5FA000
|
unkown
|
page execute and read and write
|
||
890000
|
unkown
|
page read and write
|
||
6F5000
|
unkown
|
page read and write
|
||
930000
|
unkown
|
page read and write
|
||
3225000
|
unkown
|
page readonly
|
||
869000
|
heap default
|
page read and write
|
||
31D9000
|
unkown
|
page readonly
|
||
1D85F000
|
unkown
|
page read and write
|
||
3175000
|
unkown
|
page readonly
|
||
612000
|
unkown
|
page read and write
|
||
615000
|
unkown
|
page execute and read and write
|
||
6F8000
|
unkown
|
page read and write
|
||
700000
|
unkown
|
page read and write
|
||
1E16A000
|
unkown
|
page read and write
|
||
75B000
|
unkown
|
page read and write
|
||
580000
|
unkown
|
page read and write
|
||
1E0000
|
unkown
|
page readonly
|
||
9CE000
|
unkown
|
page read and write
|
||
630000
|
heap default
|
page read and write
|
||
6F0000
|
unkown
|
page execute and read and write
|
||
22B0000
|
unkown
|
page readonly
|
||
2712000
|
heap private
|
page read and write
|
||
A8E000
|
unkown
|
page read and write
|
||
1E160000
|
unkown
|
page read and write
|
||
8F0000
|
heap private
|
page read and write
|
||
5B0000
|
heap private
|
page read and write
|
||
20D04000
|
unkown
|
page read and write
|
||
6F0000
|
unkown
|
page read and write
|
||
74E000
|
unkown
|
page read and write
|
||
213BE000
|
unkown
|
page read and write
|
||
5C0000
|
unkown
|
page readonly
|
||
700000
|
unkown
|
page readonly
|
||
D6E000
|
unkown
|
page read and write
|
||
400000
|
unkown image
|
page readonly
|
||
3102000
|
unkown
|
page readonly
|
||
6F5000
|
unkown
|
page read and write
|
||
1A0000
|
unkown
|
page read and write
|
||
1F0000
|
unkown
|
page write copy
|
||
6F0000
|
unkown
|
page read and write
|
||
3162000
|
unkown
|
page readonly
|
||
880000
|
unkown
|
page read and write
|
||
210000
|
heap default
|
page read and write
|
||
3209000
|
unkown
|
page readonly
|
||
2C0000
|
unkown
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
750000
|
unkown
|
page read and write
|
||
418000
|
unkown image
|
page read and write
|
||
6F5000
|
unkown
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
1E0B4000
|
unkown
|
page read and write
|
||
1E162000
|
unkown
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
700000
|
unkown
|
page read and write
|
||
209AC000
|
unkown
|
page read and write
|
||
1F0000
|
unkown
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
20CF2000
|
unkown
|
page read and write
|
||
2D0000
|
unkown
|
page read and write
|
||
760000
|
unkown
|
page read and write
|
||
2C5000
|
unkown
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
18C000
|
stack
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
1E194000
|
unkown
|
page read and write
|
||
3115000
|
unkown
|
page readonly
|
||
780000
|
heap default
|
page read and write
|
||
880000
|
unkown
|
page read and write
|
||
890000
|
unkown
|
page read and write
|
||
314000
|
heap default
|
page read and write
|
||
1D150000
|
heap private
|
page read and write
|
||
1E18C000
|
unkown
|
page read and write
|
||
6F0000
|
unkown
|
page read and write
|
||
1F031000
|
unkown
|
page read and write
|
||
2C5000
|
unkown
|
page read and write
|
||
770000
|
unkown
|
page read and write
|
||
420000
|
unkown
|
page readonly
|
||
6F5000
|
unkown
|
page read and write
|
||
6F5000
|
unkown
|
page read and write
|
||
6D0000
|
unkown
|
page execute and read and write
|
||
1070000
|
heap private
|
page read and write
|
||
21120000
|
unkown
|
page read and write
|
||
6F5000
|
unkown
|
page read and write
|
||
3400000
|
unkown
|
page readonly
|
||
750000
|
unkown
|
page read and write
|
||
6F5000
|
unkown
|
page read and write
|
||
1D71B000
|
unkown
|
page read and write
|
||
770000
|
unkown
|
page read and write
|
||
2C2000
|
unkown
|
page read and write
|
||
89000
|
unkown
|
page read and write
|
||
6F5000
|
unkown
|
page read and write
|
||
1D6F9000
|
unkown
|
page read and write
|
||
917000
|
heap private
|
page read and write
|
||
2D0000
|
unkown
|
page read and write
|
||
5F2000
|
unkown
|
page read and write
|
||
6F0000
|
unkown
|
page read and write
|
||
158000
|
heap private
|
page read and write
|
||
2C0000
|
unkown
|
page read and write
|
||
930000
|
unkown
|
page read and write
|
||
1E5B000
|
heap private
|
page read and write
|
||
7EFDF000
|
unkown
|
page read and write
|
||
6F0000
|
unkown
|
page read and write
|
||
594000
|
unkown
|
page read and write
|
||
6F0000
|
unkown
|
page read and write
|
||
3420000
|
unkown
|
page readonly
|
||
1E17B000
|
unkown
|
page read and write
|
||
202F0000
|
unkown
|
page readonly
|
||
9D0000
|
heap private
|
page read and write
|
||
33C2000
|
unkown
|
page readonly
|
||
2A0000
|
unkown
|
page readonly
|
||
190000
|
unkown
|
page readonly
|
||
1F0000
|
unkown
|
page read and write
|
||
77A000
|
unkown
|
page read and write
|
||
880000
|
unkown
|
page read and write
|
||
6F5000
|
unkown
|
page read and write
|
||
2610000
|
unkown
|
page readonly
|
||
930000
|
unkown
|
page read and write
|
||
700000
|
unkown
|
page read and write
|
||
1EA0000
|
heap private
|
page read and write
|
||
400000
|
unkown image
|
page readonly
|
||
3132000
|
unkown
|
page readonly
|
||
26DF000
|
unkown
|
page read and write
|
||
530000
|
heap private
|
page read and write
|
||
8A0000
|
unkown
|
page read and write
|
||
750000
|
unkown
|
page readonly
|
||
1076000
|
heap private
|
page read and write
|
||
401000
|
unkown image
|
page execute read
|
||
2F0000
|
unkown
|
page read and write
|
||
D70000
|
unkown
|
page read and write
|
||
593000
|
unkown
|
page execute and read and write
|
||
700000
|
unkown
|
page read and write
|
||
6F0000
|
unkown
|
page read and write
|
||
1CF6D000
|
unkown
|
page read and write
|
||
20000
|
unkown
|
page read and write
|
||
6F5000
|
unkown
|
page read and write
|
||
200000
|
unkown
|
page readonly
|
||
2C0000
|
unkown
|
page read and write
|
||
760000
|
unkown
|
page read and write
|
||
890000
|
unkown
|
page read and write
|
||
1D743000
|
unkown
|
page read and write
|
||
90000
|
unkown
|
page readonly
|
||
6F0000
|
unkown
|
page read and write
|
||
5F6000
|
unkown
|
page execute and read and write
|
||
1E02F000
|
unkown
|
page read and write
|
||
2E0000
|
unkown
|
page read and write
|
||
150000
|
heap private
|
page read and write
|
||
1D6EE000
|
unkown
|
page read and write
|
||
3192000
|
unkown
|
page readonly
|
||
8A0000
|
unkown
|
page read and write
|
||
980000
|
unkown
|
page read and write
|
||
1DCF0000
|
unkown
|
page readonly
|
||
6F0000
|
unkown
|
page read and write
|
||
830000
|
heap default
|
page read and write
|
||
1CFCF000
|
unkown
|
page read and write
|
||
31B6000
|
unkown
|
page readonly
|
||
700000
|
unkown
|
page read and write
|
||
6F5000
|
unkown
|
page read and write
|
||
3145000
|
unkown
|
page readonly
|
||
890000
|
unkown
|
page read and write
|
||
880000
|
unkown
|
page read and write
|
There are 451 hidden memdumps, click here to show them.