IOC Report
NA.exe

loading gif

Files

File Path
Type
Category
Malicious
NA.exe
PE32+ executable (GUI) x86-64 Mono/.Net assembly, for MS Windows
initial sample
malicious
C:\Users\user\AppData\Local\Microsoft\CLR_v4.0\UsageLogs\NA.exe.log
CSV text
dropped
malicious
C:\Users\user\AppData\Roaming\D06ED635-68F6-4E9A-955C-4899F5F57B9A\run.dat
Non-ISO extended-ASCII text, with no line terminators, with escape sequences
dropped
malicious
C:\Program Files (x86)\DHCP Monitor\dhcpmon.exe
PE32 executable (console) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
C:\Users\user\AppData\Local\Microsoft\CLR_v4.0_32\UsageLogs\dhcpmon.exe.log
ASCII text, with CRLF line terminators
modified
\Device\ConDrv
ASCII text, with CRLF line terminators
dropped

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\NA.exe
C:\Users\user\Desktop\NA.exe
malicious
C:\Windows\Microsoft.NET\Framework\v4.0.30319\CasPol.exe
C:\Windows\Microsoft.NET\Framework\v4.0.30319\Caspol.exe
malicious
C:\Program Files (x86)\DHCP Monitor\dhcpmon.exe
"C:\Program Files (x86)\DHCP Monitor\dhcpmon.exe"
C:\Windows\System32\conhost.exe
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1

URLs

Name
IP
Malicious
ezemnia3.ddns.net
malicious
91.193.75.178
malicious
http://schemas.xmlsoap.org/ws/2005/05/identity/claims/name
unknown

Domains

Name
IP
Malicious
ezemnia3.ddns.net
102.90.46.28
malicious

IPs

IP
Domain
Country
Malicious
91.193.75.178
unknown
Serbia
malicious
102.90.46.28
ezemnia3.ddns.net
Nigeria
malicious

Registry

Path
Value
Malicious
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Run
DHCP Monitor

Memdumps

Base Address
Regiontype
Protect
Malicious
3E99000
trusted library allocation
page read and write
malicious
402000
remote allocation
page execute and read and write
malicious
5D70000
trusted library section
page read and write
malicious
2E91000
trusted library allocation
page read and write
malicious
16110009000
trusted library allocation
page read and write
malicious
16110167000
trusted library allocation
page read and write
malicious
6071000
heap
page read and write
51D0000
trusted library allocation
page read and write
3FC07FE000
stack
page read and write
CE8000
heap
page read and write
C89000
heap
page read and write
5EE1000
heap
page read and write
6072000
heap
page read and write
5FE0000
heap
page execute and read and write
CE5000
heap
page read and write
16178C10000
trusted library allocation
page read and write
4FA4000
trusted library allocation
page read and write
5510000
unkown
page read and write
6071000
heap
page read and write
5EDD000
stack
page read and write
16178C90000
trusted library allocation
page read and write
16178BC0000
trusted library allocation
page read and write
6096000
heap
page read and write
C85000
heap
page read and write
6083000
heap
page read and write
6071000
heap
page read and write
6071000
heap
page read and write
6087000
heap
page read and write
6071000
heap
page read and write
5045000
trusted library allocation
page read and write
1617AE10000
trusted library allocation
page read and write
6071000
heap
page read and write
6072000
heap
page read and write
342B000
trusted library allocation
page read and write
5D75000
trusted library allocation
page read and write
6094000
heap
page read and write
16178BB0000
trusted library allocation
page read and write
5090000
trusted library allocation
page read and write
51D0000
trusted library allocation
page read and write
2968000
trusted library allocation
page read and write
606F000
heap
page read and write
6072000
heap
page read and write
6072000
heap
page read and write
6071000
heap
page read and write
5D90000
trusted library allocation
page read and write
606F000
heap
page read and write
C86000
heap
page read and write
5180000
trusted library allocation
page read and write
6072000
heap
page read and write
5CE0000
trusted library section
page read and write
161788A0000
unkown
page readonly
69E0000
trusted library allocation
page read and write
3FBFBFF000
stack
page read and write
6071000
heap
page read and write
6071000
heap
page read and write
6072000
heap
page read and write
604A000
heap
page read and write
1617AEB6000
trusted library allocation
page read and write
CAB000
heap
page read and write
16178BC0000
trusted library allocation
page read and write
3042000
trusted library allocation
page read and write
6071000
heap
page read and write
6072000
heap
page read and write
6071000
heap
page read and write
6083000
heap
page read and write
5D96000
trusted library allocation
page read and write
6071000
heap
page read and write
6096000
heap
page read and write
50C0000
trusted library allocation
page read and write
6071000
heap
page read and write
C8B000
heap
page read and write
6072000
heap
page read and write
6071000
heap
page read and write
50C0000
trusted library allocation
page read and write
318F000
trusted library allocation
page read and write
C20000
heap
page read and write
FDA000
trusted library allocation
page execute and read and write
5040000
trusted library allocation
page read and write
6100000
trusted library allocation
page read and write
6071000
heap
page read and write
F8D000
unkown
page read and write
6072000
heap
page read and write
6086000
heap
page read and write
4731000
trusted library allocation
page read and write
5040000
trusted library allocation
page read and write
6071000
heap
page read and write
6071000
heap
page read and write
6071000
heap
page read and write
CE2000
heap
page read and write
6072000
heap
page read and write
5D90000
trusted library allocation
page read and write
5D90000
trusted library allocation
page read and write
1617A5E0000
trusted library allocation
page read and write
C47000
heap
page read and write
604A000
heap
page read and write
5EE1000
heap
page read and write
51A0000
trusted library allocation
page read and write
5190000
trusted library allocation
page read and write
1617AD90000
trusted library allocation
page read and write
6071000
heap
page read and write
6072000
heap
page read and write
6097000
heap
page read and write
3189000
trusted library allocation
page read and write
51C0000
trusted library allocation
page execute and read and write
6086000
heap
page read and write
6097000
heap
page read and write
6071000
heap
page read and write
6086000
heap
page read and write
6097000
heap
page read and write
6083000
heap
page read and write
6083000
heap
page read and write
6072000
heap
page read and write
6096000
heap
page read and write
6059000
heap
page read and write
6072000
heap
page read and write
6072000
heap
page read and write
5DB0000
trusted library allocation
page read and write
609B000
heap
page read and write
6071000
heap
page read and write
5C6B000
stack
page read and write
51F0000
trusted library allocation
page read and write
6072000
heap
page read and write
5080000
heap
page read and write
6086000
heap
page read and write
6086000
heap
page read and write
6083000
heap
page read and write
16178C40000
trusted library allocation
page read and write
51D0000
trusted library allocation
page read and write
3357000
trusted library allocation
page read and write
5D2D000
stack
page read and write
51A0000
trusted library allocation
page read and write
51D0000
trusted library allocation
page read and write
50C1000
trusted library allocation
page read and write
1108000
heap
page read and write
606F000
heap
page read and write
6072000
heap
page read and write
6072000
heap
page read and write
6071000
heap
page read and write
6071000
heap
page read and write
51D0000
trusted library allocation
page read and write
16178C70000
trusted library allocation
page read and write
1140000
heap
page execute and read and write
6071000
heap
page read and write
6086000
heap
page read and write
6071000
heap
page read and write
C9A000
heap
page read and write
6097000
heap
page read and write
6072000
heap
page read and write
3034000
trusted library allocation
page read and write
6071000
heap
page read and write
6086000
heap
page read and write
6086000
heap
page read and write
6086000
heap
page read and write
6071000
heap
page read and write
6072000
heap
page read and write
6071000
heap
page read and write
5F20000
heap
page read and write
50C0000
trusted library allocation
page read and write
51D0000
trusted library allocation
page read and write
2EFD000
trusted library allocation
page read and write
5510000
unkown
page read and write
5D90000
trusted library allocation
page read and write
5DDD000
stack
page read and write
6072000
heap
page read and write
6072000
heap
page read and write
6071000
heap
page read and write
6071000
heap
page read and write
6072000
heap
page read and write
603B000
heap
page read and write
6071000
heap
page read and write
6072000
heap
page read and write
C8F000
heap
page read and write
6071000
heap
page read and write
16178A1A000
heap
page read and write
6086000
heap
page read and write
6097000
heap
page read and write
6071000
heap
page read and write
51AA000
trusted library allocation
page read and write
1617ADC0000
trusted library allocation
page read and write
6086000
heap
page read and write
6096000
heap
page read and write
161787E0000
unkown
page readonly
6083000
heap
page read and write
6072000
heap
page read and write
16178C80000
trusted library allocation
page read and write
CA1000
heap
page read and write
6071000
heap
page read and write
6087000
heap
page read and write
6072000
heap
page read and write
3FC0BFF000
stack
page read and write
6071000
heap
page read and write
6099000
heap
page read and write
6072000
heap
page read and write
6086000
heap
page read and write
1617ADA0000
trusted library allocation
page read and write
6086000
heap
page read and write
CAF000
heap
page read and write
6097000
heap
page read and write
6071000
heap
page read and write
6071000
heap
page read and write
6071000
heap
page read and write
6072000
heap
page read and write
6071000
heap
page read and write
6071000
heap
page read and write
5070000
trusted library allocation
page read and write
C8E000
heap
page read and write
60A9000
heap
page read and write
6086000
heap
page read and write
1040000
heap
page read and write
6072000
heap
page read and write
108E000
stack
page read and write
60F0000
trusted library section
page read and write
1617A620000
heap
page read and write
2E50000
heap
page execute and read and write
6086000
heap
page read and write
6094000
heap
page read and write
50C0000
trusted library allocation
page read and write
6033000
heap
page read and write
5F1D000
heap
page read and write
6072000
heap
page read and write
6071000
heap
page read and write
60AF000
heap
page read and write
6086000
heap
page read and write
161789DF000
heap
page read and write
604D000
heap
page read and write
6072000
heap
page read and write
6071000
heap
page read and write
6086000
heap
page read and write
6072000
heap
page read and write
608E000
heap
page read and write
6097000
heap
page read and write
606F000
heap
page read and write
3022000
trusted library allocation
page read and write
604A000
heap
page read and write
6072000
heap
page read and write
6086000
heap
page read and write
161789EE000
heap
page read and write
609A000
heap
page read and write
6086000
heap
page read and write
CDC000
stack
page read and write
6071000
heap
page read and write
51B0000
trusted library allocation
page read and write
6072000
heap
page read and write
603B000
heap
page read and write
6072000
heap
page read and write
5180000
trusted library allocation
page read and write
6096000
heap
page read and write
16178BF0000
trusted library allocation
page read and write
6072000
heap
page read and write
6072000
heap
page read and write
6086000
heap
page read and write
5060000
trusted library allocation
page read and write
6072000
heap
page read and write
1224000
trusted library allocation
page read and write
6072000
heap
page read and write
6072000
heap
page read and write
51E0000
trusted library allocation
page read and write
2F30000
heap
page read and write
6072000
heap
page read and write
C70000
heap
page read and write
51D0000
trusted library allocation
page read and write
2E80000
trusted library allocation
page read and write
1617AE40000
trusted library allocation
page read and write
6071000
heap
page read and write
16178940000
heap
page read and write
6071000
heap
page read and write
C8D000
heap
page read and write
6083000
heap
page read and write
FB4000
trusted library allocation
page read and write
6071000
heap
page read and write
6072000
heap
page read and write
639D000
stack
page read and write
6110000
trusted library allocation
page read and write
5050000
trusted library allocation
page read and write
6072000
heap
page read and write
679D000
stack
page read and write
51B0000
trusted library allocation
page read and write
6078000
heap
page read and write
6050000
heap
page read and write
16178B90000
trusted library allocation
page read and write
6071000
heap
page read and write
6083000
heap
page read and write
6083000
heap
page read and write
6085000
heap
page read and write
51B0000
trusted library allocation
page read and write
50C0000
trusted library allocation
page read and write
C89000
heap
page read and write
1126000
heap
page read and write
504F000
trusted library allocation
page read and write
51D0000
trusted library allocation
page read and write
6072000
heap
page read and write
16178C40000
trusted library allocation
page read and write
51A0000
trusted library allocation
page read and write
CA3000
heap
page read and write
6071000
heap
page read and write
FE2000
trusted library allocation
page read and write
6071000
heap
page read and write
6086000
heap
page read and write
6086000
heap
page read and write
6071000
heap
page read and write
6071000
heap
page read and write
161789A0000
trusted library allocation
page read and write
500A000
trusted library allocation
page read and write
6072000
heap
page read and write
6086000
heap
page read and write
5090000
trusted library allocation
page read and write
4F90000
trusted library allocation
page read and write
6072000
heap
page read and write
6085000
heap
page read and write
5D70000
trusted library allocation
page read and write
1617AE90000
trusted library allocation
page read and write
1617AE80000
trusted library allocation
page read and write
6072000
heap
page read and write
6072000
heap
page read and write
6086000
heap
page read and write
51A0000
trusted library allocation
page read and write
6072000
heap
page read and write
16178C50000
trusted library allocation
page read and write
6071000
heap
page read and write
51C0000
trusted library allocation
page read and write
5FF0000
heap
page read and write
6086000
heap
page read and write
6071000
heap
page read and write
51D0000
trusted library allocation
page read and write
6083000
heap
page read and write
6097000
heap
page read and write
3FBFFFF000
stack
page read and write
6093000
heap
page read and write
16178BF0000
trusted library allocation
page read and write
5D95000
trusted library allocation
page read and write
6086000
heap
page read and write
6086000
heap
page read and write
609A000
heap
page read and write
6071000
heap
page read and write
6071000
heap
page read and write
6071000
heap
page read and write
6096000
heap
page read and write
6086000
heap
page read and write
6096000
heap
page read and write
5EFE000
heap
page read and write
51B0000
trusted library allocation
page read and write
5D90000
trusted library allocation
page read and write
6072000
heap
page read and write
3E91000
trusted library allocation
page read and write
1617ADC0000
heap
page read and write
51D0000
trusted library allocation
page read and write
6072000
heap
page read and write
5090000
trusted library allocation
page read and write
6096000
heap
page read and write
4FAD000
trusted library allocation
page read and write
6072000
heap
page read and write
6096000
heap
page read and write
6072000
heap
page read and write
115B000
heap
page read and write
6085000
heap
page read and write
16178BB0000
trusted library allocation
page read and write
132B000
trusted library allocation
page execute and read and write
6043000
heap
page read and write
6072000
heap
page read and write
51DD000
trusted library allocation
page read and write
60AD000
heap
page read and write
2FE7000
trusted library allocation
page read and write
6071000
heap
page read and write
4FBC000
trusted library allocation
page read and write
3FC13FE000
stack
page read and write
1150000
heap
page read and write
4FB0000
trusted library allocation
page read and write
51A0000
trusted library allocation
page read and write
6072000
heap
page read and write
6072000
heap
page read and write
6086000
heap
page read and write
1617AE20000
trusted library allocation
page read and write
6072000
heap
page read and write
1617A600000
trusted library allocation
page read and write
6071000
heap
page read and write
FEB000
trusted library allocation
page execute and read and write
995000
stack
page read and write
6072000
heap
page read and write
6096000
heap
page read and write
16178D00000
trusted library allocation
page read and write
161788B0000
heap
page read and write
CEB000
heap
page read and write
6083000
heap
page read and write
5D90000
trusted library allocation
page read and write
6072000
heap
page read and write
51B0000
trusted library allocation
page read and write
2E60000
trusted library allocation
page read and write
1617AECC000
heap
page read and write
5D6E000
stack
page read and write
1220000
trusted library allocation
page read and write
609A000
heap
page read and write
16178CC0000
trusted library allocation
page read and write
6072000
heap
page read and write
6086000
heap
page read and write
1617AE60000
trusted library allocation
page read and write
5090000
trusted library allocation
page read and write
830000
heap
page read and write
1617AD10000
trusted library allocation
page read and write
6086000
heap
page read and write
6096000
heap
page read and write
6083000
heap
page read and write
6071000
heap
page read and write
6085000
heap
page read and write
5EE1000
heap
page read and write
6086000
heap
page read and write
51D0000
trusted library allocation
page read and write
6072000
heap
page read and write
608C000
heap
page read and write
6072000
heap
page read and write
6083000
heap
page read and write
5510000
trusted library allocation
page read and write
6096000
heap
page read and write
5040000
trusted library allocation
page read and write
7F7A0000
trusted library allocation
page execute and read and write
623E000
stack
page read and write
6086000
heap
page read and write
5D90000
trusted library allocation
page read and write
6071000
heap
page read and write
6086000
heap
page read and write
3FC03FD000
stack
page read and write
6072000
heap
page read and write
C30000
unkown
page readonly
5F1A000
heap
page read and write
10CE000
stack
page read and write
6072000
heap
page read and write
6096000
heap
page read and write
6097000
heap
page read and write
604B000
heap
page read and write
50C0000
trusted library allocation
page read and write
6086000
heap
page read and write
6071000
heap
page read and write
6072000
heap
page read and write
651E000
stack
page read and write
6072000
heap
page read and write
6072000
heap
page read and write
6072000
heap
page read and write
C93000
heap
page read and write
16178BB0000
trusted library allocation
page read and write
5520000
trusted library allocation
page read and write
16110003000
trusted library allocation
page read and write
6071000
heap
page read and write
1100000
heap
page read and write
6071000
heap
page read and write
6086000
heap
page read and write
609A000
heap
page read and write
CA8000
heap
page read and write
1213000
trusted library allocation
page execute and read and write
3316000
trusted library allocation
page read and write
4FD4000
trusted library allocation
page read and write
53D0000
heap
page read and write
6096000
heap
page read and write
6071000
heap
page read and write
1617ADE0000
trusted library allocation
page read and write
606F000
heap
page read and write
5EE6000
heap
page read and write
51A0000
heap
page read and write
16178C00000
trusted library allocation
page read and write
51D0000
trusted library allocation
page read and write
6094000
heap
page read and write
6086000
heap
page read and write
6071000
heap
page read and write
6096000
heap
page read and write
FD0000
trusted library allocation
page read and write
6071000
heap
page read and write
51E0000
trusted library allocation
page read and write
6097000
heap
page read and write
1340000
trusted library allocation
page read and write
16178BE0000
trusted library allocation
page read and write
5D80000
trusted library allocation
page read and write
6072000
heap
page read and write
5B6D000
stack
page read and write
6071000
heap
page read and write
6072000
heap
page read and write
6071000
heap
page read and write
6071000
heap
page read and write
3FC0FFE000
stack
page read and write
6072000
heap
page read and write
6087000
heap
page read and write
6072000
heap
page read and write
51D0000
trusted library allocation
page read and write
51B0000
trusted library allocation
page read and write
609B000
heap
page read and write
1170000
heap
page read and write
C8D000
heap
page read and write
6072000
heap
page read and write
DDB000
stack
page read and write
161787E0000
unkown
page readonly
6072000
heap
page read and write
6092000
heap
page read and write
6086000
heap
page read and write
6071000
heap
page read and write
6071000
heap
page read and write
6086000
heap
page read and write
7FF9A594B000
trusted library allocation
page read and write
6083000
heap
page read and write
6072000
heap
page read and write
5090000
trusted library allocation
page read and write
6071000
heap
page read and write
16100001000
trusted library allocation
page read and write
C93000
heap
page read and write
4F8E000
stack
page read and write
16178BB0000
trusted library allocation
page read and write
6043000
heap
page read and write
3296000
trusted library allocation
page read and write
161787E2000
unkown
page readonly
6071000
heap
page read and write
33B5000
trusted library allocation
page read and write
6094000
heap
page read and write
1617AD20000
trusted library allocation
page read and write
7FF9A5942000
trusted library allocation
page read and write
629D000
stack
page read and write
6072000
heap
page read and write
6083000
heap
page read and write
FC0000
trusted library allocation
page read and write
6072000
heap
page read and write
1617AD80000
trusted library allocation
page read and write
6083000
heap
page read and write
FA0000
trusted library allocation
page read and write
6086000
heap
page read and write
6097000
heap
page read and write
2E80000
trusted library allocation
page read and write
1617AE00000
trusted library allocation
page read and write
6097000
heap
page read and write
6083000
heap
page read and write
6086000
heap
page read and write
1617AE50000
trusted library allocation
page read and write
6086000
heap
page read and write
6071000
heap
page read and write
6072000
heap
page read and write
6250000
trusted library allocation
page read and write
7FF9A5834000
trusted library allocation
page read and write
6083000
heap
page read and write
5000000
trusted library allocation
page read and write
6083000
heap
page read and write
6072000
heap
page read and write
CA3000
heap
page read and write
6086000
heap
page read and write
6072000
heap
page read and write
CA4000
heap
page read and write
6072000
heap
page read and write
16178CF0000
trusted library allocation
page read and write
6050000
heap
page read and write
1617AE30000
trusted library allocation
page read and write
16178BE0000
trusted library allocation
page read and write
CE2000
heap
page read and write
C97000
heap
page read and write
6071000
heap
page read and write
C98000
heap
page read and write
CC4000
heap
page read and write
6083000
heap
page read and write
16178C30000
heap
page read and write
6072000
heap
page read and write
6086000
heap
page read and write
6086000
heap
page read and write
2EC0000
heap
page execute and read and write
6083000
heap
page read and write
6086000
heap
page read and write
6083000
heap
page read and write
5180000
trusted library allocation
page read and write
6072000
heap
page read and write
6071000
heap
page read and write
5040000
trusted library allocation
page read and write
6085000
heap
page read and write
6086000
heap
page read and write
121D000
trusted library allocation
page execute and read and write
7FF9A5830000
trusted library allocation
page read and write
16178D10000
heap
page read and write
5D90000
trusted library allocation
page read and write
6072000
heap
page read and write
6072000
heap
page read and write
6086000
heap
page read and write
6072000
heap
page read and write
7FF9A582D000
trusted library allocation
page execute and read and write
6071000
heap
page read and write
5D90000
trusted library allocation
page read and write
6072000
heap
page read and write
13E0000
trusted library allocation
page execute and read and write
4FA7000
trusted library allocation
page read and write
6086000
heap
page read and write
6083000
heap
page read and write
50C0000
trusted library allocation
page read and write
5090000
trusted library allocation
page read and write
6097000
heap
page read and write
6072000
heap
page read and write
5040000
trusted library allocation
page read and write
6072000
heap
page read and write
6072000
heap
page read and write
6086000
heap
page read and write
5EE1000
heap
page read and write
6071000
heap
page read and write
6071000
heap
page read and write
513E000
stack
page read and write
6072000
heap
page read and write
606F000
heap
page read and write
6086000
heap
page read and write
6072000
heap
page read and write
6086000
heap
page read and write
1617AECE000
heap
page read and write
5514000
unkown
page read and write
6097000
heap
page read and write
16178BC0000
trusted library allocation
page read and write
6085000
heap
page read and write
5090000
trusted library allocation
page read and write
6086000
heap
page read and write
6071000
heap
page read and write
6097000
heap
page read and write
609A000
heap
page read and write
6086000
heap
page read and write
6072000
heap
page read and write
609B000
heap
page read and write
5F17000
heap
page read and write
608C000
heap
page read and write
1200000
trusted library allocation
page read and write
5D90000
trusted library allocation
page read and write
2FE1000
trusted library allocation
page read and write
6071000
heap
page read and write
50A0000
trusted library allocation
page read and write
6087000
heap
page read and write
6094000
heap
page read and write
6072000
heap
page read and write
6071000
heap
page read and write
5090000
trusted library allocation
page read and write
6096000
heap
page read and write
6086000
heap
page read and write
16178BB0000
trusted library section
page read and write
1230000
heap
page read and write
6072000
heap
page read and write
6071000
heap
page read and write
6086000
heap
page read and write
6096000
heap
page read and write
16178BA4000
trusted library allocation
page read and write
FCD000
trusted library allocation
page execute and read and write
1320000
trusted library allocation
page read and write
6071000
heap
page read and write
5EFC000
heap
page read and write
6071000
heap
page read and write
51D0000
trusted library allocation
page read and write
6096000
heap
page read and write
6071000
heap
page read and write
1617ACF0000
trusted library allocation
page read and write
6085000
heap
page read and write
6071000
heap
page read and write
6083000
heap
page read and write
6071000
heap
page read and write
6072000
heap
page read and write
6072000
heap
page read and write
6072000
heap
page read and write
3F31000
trusted library allocation
page read and write
6071000
heap
page read and write
6086000
heap
page read and write
1617ACE0000
trusted library allocation
page read and write
51D0000
trusted library allocation
page read and write
6071000
heap
page read and write
161789EA000
heap
page read and write
16178C70000
trusted library allocation
page read and write
6097000
heap
page read and write
5510000
trusted library allocation
page read and write
5EE0000
heap
page read and write
C00000
heap
page read and write
6071000
heap
page read and write
50C0000
trusted library allocation
page read and write
1327000
trusted library allocation
page execute and read and write
1617AEA9000
trusted library allocation
page read and write
C88000
heap
page read and write
4FC1000
trusted library allocation
page read and write
6071000
heap
page read and write
1617AEB0000
trusted library allocation
page read and write
6071000
heap
page read and write
6097000
heap
page read and write
6072000
heap
page read and write
16110001000
trusted library allocation
page read and write
6097000
heap
page read and write
6097000
heap
page read and write
5040000
trusted library allocation
page read and write
6086000
heap
page read and write
5D90000
trusted library allocation
page read and write
606F000
heap
page read and write
1310000
trusted library allocation
page read and write
6086000
heap
page read and write
51D0000
trusted library allocation
page read and write
6071000
heap
page read and write
7FF9A5832000
trusted library allocation
page read and write
6072000
heap
page read and write
1617ADB0000
heap
page read and write
6071000
heap
page read and write
131A000
trusted library allocation
page execute and read and write
6072000
heap
page read and write
6071000
heap
page read and write
6072000
heap
page read and write
6072000
heap
page read and write
6097000
heap
page read and write
6099000
heap
page read and write
6078000
heap
page read and write
6086000
heap
page read and write
6083000
heap
page read and write
6097000
heap
page read and write
6071000
heap
page read and write
6071000
heap
page read and write
6071000
heap
page read and write
16178C20000
trusted library allocation
page read and write
CBA000
heap
page read and write
520E000
stack
page read and write
6083000
heap
page read and write
6072000
heap
page read and write
60AF000
heap
page read and write
51A0000
trusted library allocation
page read and write
160F000
stack
page read and write
6097000
heap
page read and write
16178C00000
trusted library allocation
page read and write
295E000
stack
page read and write
5510000
trusted library allocation
page read and write
16178C10000
trusted library allocation
page read and write
4041000
trusted library allocation
page read and write
7FF9A5824000
trusted library allocation
page read and write
1617ADD0000
trusted library allocation
page read and write
6071000
heap
page read and write
5518000
trusted library allocation
page read and write
6071000
heap
page read and write
6086000
heap
page read and write
303F000
stack
page read and write
6097000
heap
page read and write
6096000
heap
page read and write
51A0000
trusted library allocation
page read and write
6083000
heap
page read and write
6071000
heap
page read and write
6071000
heap
page read and write
5090000
trusted library allocation
page read and write
606F000
heap
page read and write
6086000
heap
page read and write
6086000
heap
page read and write
6072000
heap
page read and write
6097000
heap
page read and write
6083000
heap
page read and write
6097000
heap
page read and write
1617AEA0000
trusted library allocation
page read and write
6072000
heap
page read and write
5D90000
trusted library allocation
page read and write
5510000
unkown
page read and write
6072000
heap
page read and write
7FF9A5940000
trusted library allocation
page read and write
661E000
stack
page read and write
6072000
heap
page read and write
6072000
heap
page read and write
161789B0000
heap
page read and write
1110000
trusted library allocation
page read and write
5050000
trusted library allocation
page read and write
5D90000
trusted library allocation
page read and write
16178CE0000
trusted library allocation
page read and write
6072000
heap
page read and write
5EE1000
heap
page read and write
6071000
heap
page read and write
5F20000
heap
page read and write
6096000
heap
page read and write
1617A5D0000
heap
page execute and read and write
6097000
heap
page read and write
16178BD0000
trusted library allocation
page read and write
1000000
heap
page read and write
6086000
heap
page read and write
6083000
heap
page read and write
5EF8000
heap
page read and write
6072000
heap
page read and write
6072000
heap
page read and write
6086000
heap
page read and write
1617AD40000
trusted library allocation
page read and write
CF3000
heap
page read and write
51A0000
trusted library allocation
page read and write
6071000
heap
page read and write
6086000
heap
page read and write
5EE1000
heap
page read and write
50C0000
trusted library allocation
page read and write
609A000
heap
page read and write
6086000
heap
page read and write
606F000
heap
page read and write
5030000
trusted library allocation
page read and write
5D90000
trusted library allocation
page read and write
551D000
trusted library allocation
page read and write
16178D15000
heap
page read and write
5518000
trusted library allocation
page read and write
6071000
heap
page read and write
51B0000
trusted library allocation
page read and write
C8D000
heap
page read and write
6071000
heap
page read and write
6091000
heap
page read and write
6071000
heap
page read and write
6072000
heap
page read and write
609A000
heap
page read and write
6071000
heap
page read and write
6083000
heap
page read and write
51D0000
trusted library allocation
page read and write
2A47000
heap
page read and write
CD8000
heap
page read and write
6071000
heap
page read and write
7FF4A4040000
trusted library allocation
page execute and read and write
6086000
heap
page read and write
6085000
heap
page read and write
6072000
heap
page read and write
16178BD0000
trusted library allocation
page read and write
51D1000
trusted library allocation
page read and write
6071000
heap
page read and write
6097000
heap
page read and write
6072000
heap
page read and write
2A40000
heap
page read and write
5EE1000
heap
page read and write
51B0000
trusted library allocation
page read and write
5F17000
heap
page read and write
6086000
heap
page read and write
6072000
heap
page read and write
6072000
heap
page read and write
51D0000
trusted library allocation
page read and write
16178C60000
trusted library allocation
page read and write
6071000
heap
page read and write
6097000
heap
page read and write
50C0000
trusted library allocation
page read and write
6072000
heap
page read and write
6072000
heap
page read and write
1617ADF0000
trusted library allocation
page read and write
6071000
heap
page read and write
5510000
trusted library allocation
page read and write
16178C50000
trusted library allocation
page read and write
6072000
heap
page read and write
C8D000
heap
page read and write
606F000
heap
page read and write
6074000
heap
page read and write
1617AD00000
trusted library allocation
page read and write
51D5000
trusted library allocation
page read and write
5D70000
trusted library allocation
page read and write
6083000
heap
page read and write
1617AD70000
trusted library allocation
page read and write
6071000
heap
page read and write
1617ADC1000
heap
page read and write
6086000
heap
page read and write
6072000
heap
page read and write
335F000
trusted library allocation
page read and write
5023000
heap
page read and write
6086000
heap
page read and write
6071000
heap
page read and write
53C3000
heap
page execute and read and write
4FEF000
trusted library allocation
page read and write
C28000
heap
page read and write
6072000
heap
page read and write
63DE000
stack
page read and write
6072000
heap
page read and write
61FE000
stack
page read and write
3041000
trusted library allocation
page read and write
6087000
heap
page read and write
6072000
heap
page read and write
6072000
heap
page read and write
6071000
heap
page read and write
6086000
heap
page read and write
6086000
heap
page read and write
6043000
heap
page read and write
6097000
heap
page read and write
5040000
trusted library allocation
page read and write
33A1000
trusted library allocation
page read and write
5D90000
trusted library allocation
page read and write
32B3000
trusted library allocation
page read and write
6071000
heap
page read and write
1139000
heap
page read and write
2E80000
trusted library allocation
page read and write
6097000
heap
page read and write
608C000
heap
page read and write
6071000
heap
page read and write
6071000
heap
page read and write
FB3000
trusted library allocation
page execute and read and write
C9B000
heap
page read and write
6083000
heap
page read and write
161789BC000
heap
page read and write
6096000
heap
page read and write
6071000
heap
page read and write
33AF000
trusted library allocation
page read and write
50A0000
trusted library allocation
page execute and read and write
6083000
heap
page read and write
671E000
stack
page read and write
422000
remote allocation
page execute and read and write
6086000
heap
page read and write
6071000
heap
page read and write
CEF000
heap
page read and write
6092000
heap
page read and write
3160000
trusted library allocation
page read and write
6072000
heap
page read and write
6071000
heap
page read and write
6097000
heap
page read and write
6039000
heap
page read and write
5090000
trusted library allocation
page read and write
5D70000
trusted library allocation
page read and write
CA4000
heap
page read and write
C32000
unkown
page readonly
FD6000
trusted library allocation
page execute and read and write
6086000
heap
page read and write
5D90000
trusted library allocation
page read and write
CAB000
heap
page read and write
6072000
heap
page read and write
6071000
heap
page read and write
6086000
heap
page read and write
6071000
heap
page read and write
C5B000
heap
page read and write
16178920000
heap
page read and write
3FBF3FE000
stack
page read and write
609A000
heap
page read and write
13D0000
heap
page read and write
6250000
trusted library allocation
page read and write
C8E000
heap
page read and write
16178BC0000
trusted library allocation
page read and write
CC7000
heap
page read and write
13F0000
trusted library allocation
page read and write
7FF9A58E0000
trusted library allocation
page execute and read and write
6087000
heap
page read and write
6072000
heap
page read and write
6046000
heap
page read and write
6086000
heap
page read and write
6086000
heap
page read and write
6043000
heap
page read and write
6086000
heap
page read and write
5EE1000
heap
page read and write
6071000
heap
page read and write
16178CB0000
trusted library allocation
page read and write
6097000
heap
page read and write
6096000
heap
page read and write
161788A0000
unkown
page readonly
6071000
heap
page read and write
6083000
heap
page read and write
1617AD30000
trusted library allocation
page read and write
6086000
heap
page read and write
C8F000
heap
page read and write
4FEC000
trusted library allocation
page read and write
5510000
trusted library allocation
page read and write
CA6000
heap
page read and write
51B0000
trusted library allocation
page read and write
5EE1000
heap
page read and write
6096000
heap
page read and write
6086000
heap
page read and write
51B0000
trusted library allocation
page read and write
606F000
heap
page read and write
5D70000
trusted library allocation
page read and write
5170000
trusted library allocation
page read and write
6072000
heap
page read and write
6072000
heap
page read and write
6071000
heap
page read and write
16178BA0000
trusted library allocation
page read and write
6086000
heap
page read and write
6071000
heap
page read and write
6086000
heap
page read and write
6071000
heap
page read and write
6072000
heap
page read and write
2A3E000
stack
page read and write
1400000
heap
page read and write
51D0000
trusted library allocation
page read and write
6072000
heap
page read and write
6096000
heap
page read and write
6097000
heap
page read and write
6086000
heap
page read and write
6071000
heap
page read and write
6097000
heap
page read and write
6072000
heap
page read and write
6086000
heap
page read and write
6072000
heap
page read and write
161789EC000
heap
page read and write
6072000
heap
page read and write
5020000
heap
page read and write
6071000
heap
page read and write
6083000
heap
page read and write
6072000
heap
page read and write
6087000
heap
page read and write
5EE1000
heap
page read and write
6039000
heap
page read and write
6083000
heap
page read and write
6086000
heap
page read and write
5170000
trusted library allocation
page read and write
FBD000
trusted library allocation
page execute and read and write
16110005000
trusted library allocation
page read and write
6071000
heap
page read and write
6083000
heap
page read and write
C80000
heap
page read and write
3441000
trusted library allocation
page read and write
16178BC0000
trusted library allocation
page read and write
6086000
heap
page read and write
53B0000
heap
page read and write
6083000
heap
page read and write
6072000
heap
page read and write
5D90000
trusted library allocation
page read and write
1617AD50000
trusted library allocation
page read and write
606F000
heap
page read and write
C97000
heap
page read and write
150F000
stack
page read and write
C9A000
heap
page read and write
C97000
heap
page read and write
6097000
heap
page read and write
6072000
heap
page read and write
5F17000
heap
page read and write
1617AD60000
trusted library allocation
page read and write
51D0000
trusted library allocation
page read and write
C95000
heap
page read and write
6085000
heap
page read and write
6071000
heap
page read and write
6072000
heap
page read and write
16178A48000
heap
page read and write
6071000
heap
page read and write
6072000
heap
page read and write
5D90000
trusted library allocation
page read and write
51D0000
trusted library allocation
page read and write
16178C20000
trusted library allocation
page read and write
53AE000
stack
page read and write
6086000
heap
page read and write
D45000
heap
page read and write
6048000
heap
page read and write
550F000
stack
page read and write
5F1B000
heap
page read and write
6072000
heap
page read and write
6086000
heap
page read and write
6072000
heap
page read and write
5005000
trusted library allocation
page read and write
6071000
heap
page read and write
16178BD0000
trusted library allocation
page read and write
5510000
trusted library allocation
page read and write
4FE0000
trusted library allocation
page read and write
6091000
heap
page read and write
5D90000
trusted library allocation
page read and write
7FF9A5950000
trusted library allocation
page execute and read and write
6071000
heap
page read and write
6071000
heap
page read and write
5EE6000
heap
page read and write
64DF000
stack
page read and write
6083000
heap
page read and write
6071000
heap
page read and write
2B4E000
stack
page read and write
6072000
heap
page read and write
6086000
heap
page read and write
C97000
heap
page read and write
6071000
heap
page read and write
6096000
heap
page read and write
6072000
heap
page read and write
6097000
heap
page read and write
C9A000
heap
page read and write
6072000
heap
page read and write
6097000
heap
page read and write
6097000
heap
page read and write
606F000
heap
page read and write
6071000
heap
page read and write
6083000
heap
page read and write
13CE000
stack
page read and write
3FBEFF6000
stack
page read and write
6071000
heap
page read and write
C83000
heap
page read and write
6071000
heap
page read and write
16178960000
heap
page read and write
6086000
heap
page read and write
6086000
heap
page read and write
6032000
heap
page read and write
F4E000
stack
page read and write
138E000
stack
page read and write
5010000
trusted library allocation
page read and write
6086000
heap
page read and write
D40000
heap
page read and write
6086000
heap
page read and write
5510000
trusted library allocation
page read and write
7FF9A5906000
trusted library allocation
page execute and read and write
6083000
heap
page read and write
161787E2000
unkown
page readonly
CA3000
heap
page read and write
6086000
heap
page read and write
6072000
heap
page read and write
6071000
heap
page read and write
4FD0000
trusted library allocation
page read and write
4FF0000
trusted library allocation
page execute and read and write
6072000
heap
page read and write
16178BC0000
trusted library allocation
page read and write
C88000
heap
page read and write
6071000
heap
page read and write
5090000
trusted library allocation
page read and write
16178BC0000
trusted library allocation
page read and write
6071000
heap
page read and write
4F9B000
trusted library allocation
page read and write
5061000
trusted library allocation
page read and write
110F000
stack
page read and write
6071000
heap
page read and write
6097000
heap
page read and write
1617AE70000
trusted library allocation
page read and write
16178C35000
heap
page read and write
6072000
heap
page read and write
6071000
heap
page read and write
6072000
heap
page read and write
5D90000
trusted library allocation
page read and write
C8F000
heap
page read and write
6097000
heap
page read and write
6083000
heap
page read and write
6071000
heap
page read and write
6086000
heap
page read and write
5090000
trusted library allocation
page read and write
4FB5000
trusted library allocation
page read and write
16178C60000
trusted library allocation
page read and write
50B0000
trusted library allocation
page read and write
C97000
heap
page read and write
7FF9A58D0000
trusted library allocation
page read and write
6096000
heap
page read and write
2960000
trusted library allocation
page read and write
5510000
trusted library allocation
page read and write
689D000
stack
page read and write
6071000
heap
page read and write
16178BD0000
trusted library allocation
page read and write
6072000
heap
page read and write
6096000
heap
page read and write
5EE1000
heap
page read and write
6072000
heap
page read and write
16178CD0000
trusted library allocation
page read and write
5D90000
trusted library allocation
page read and write
6072000
heap
page read and write
604F000
heap
page read and write
6086000
heap
page read and write
5040000
trusted library allocation
page read and write
606F000
heap
page read and write
6096000
heap
page read and write
6071000
heap
page read and write
6071000
heap
page read and write
6072000
heap
page read and write
2E80000
trusted library allocation
page read and write
6086000
heap
page read and write
6097000
heap
page read and write
6086000
heap
page read and write
51B0000
trusted library allocation
page read and write
6071000
heap
page read and write
6072000
heap
page read and write
5F20000
heap
page read and write
6072000
heap
page read and write
5090000
trusted library allocation
page read and write
6071000
heap
page read and write
6086000
heap
page read and write
6071000
heap
page read and write
6071000
heap
page read and write
16178CA0000
trusted library allocation
page read and write
FE7000
trusted library allocation
page execute and read and write
5EE1000
heap
page read and write
6086000
heap
page read and write
CA3000
heap
page read and write
C82000
heap
page read and write
C99000
heap
page read and write
89A000
stack
page read and write
51A0000
trusted library allocation
page read and write
53C0000
heap
page execute and read and write
1214000
trusted library allocation
page read and write
50A0000
trusted library allocation
page read and write
3FBF7FF000
stack
page read and write
6072000
heap
page read and write
4FAA000
trusted library allocation
page read and write
50C0000
trusted library allocation
page read and write
6240000
trusted library allocation
page execute and read and write
5D90000
trusted library allocation
page read and write
C90000
heap
page read and write
1617A610000
trusted library allocation
page read and write
C9A000
heap
page read and write
6072000
heap
page read and write
6056000
heap
page read and write
6072000
heap
page read and write
6071000
heap
page read and write
6071000
heap
page read and write
608C000
heap
page read and write
6072000
heap
page read and write
6074000
heap
page read and write
50C0000
trusted library allocation
page read and write
6091000
heap
page read and write
6043000
heap
page read and write
6072000
heap
page read and write
6071000
heap
page read and write
5510000
trusted library allocation
page read and write
6072000
heap
page read and write
6097000
heap
page read and write
5B2C000
stack
page read and write
400000
remote allocation
page execute and read and write
1617ADD1000
heap
page read and write
5516000
trusted library allocation
page read and write
There are 1159 hidden memdumps, click here to show them.