Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
tZvjMg3Hw9.exe
|
MS-DOS executable PE32+ executable (GUI) x86-64 (stripped to external PDB), for MS Windows, MZ for MS-DOS
|
initial sample
|
||
C:\ProgramData\MPGPH131\MPGPH131.exe
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\ProgramData\ndfbaljqaqzm\dckuybanmlgp.exe
|
PE32+ executable (GUI) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\53IVYM2Y\Default15_big[1].exe
|
MS-DOS executable PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows, MZ for MS-DOS
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\53IVYM2Y\Retailer_prog[1].exe
|
MS-DOS executable PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows, MZ for MS-DOS
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\53IVYM2Y\bbd637be[1].exe
|
PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\53IVYM2Y\setup[1].exe
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9C680Q69\7725eaa6592c80f8124e769b4e8a07f7[1].exe
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9C680Q69\cad54ba5b01423b1af8ec10ab5719d97[1].exe
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9C680Q69\sqlx[1].dll
|
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\T9RRWRNL\060[1].exe
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\T9RRWRNL\123p[1].exe
|
PE32+ executable (GUI) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\T9RRWRNL\Space1.9_menu[1].exe
|
MS-DOS executable PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows, MZ for MS-DOS
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\T9RRWRNL\buben[1].exe
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\T9RRWRNL\timeSync[1].exe
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\RageMP131\RageMP131.exe
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\Qt5OpenGL.dll (copy)
|
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\Qt5WinExtras.dll (copy)
|
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\Qt5Xml.dll (copy)
|
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\QtAVWidgets1.dll (copy)
|
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\avdevice-58.dll (copy)
|
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\is-0UKVK.tmp
|
PE32+ executable (DLL) (console) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\is-1NPB1.tmp
|
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\is-5MHG6.tmp
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\is-8JVHL.tmp
|
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\is-ARFBB.tmp
|
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\is-E8REQ.tmp
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\is-HI6SG.tmp
|
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\is-INE33.tmp
|
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\is-L6RND.tmp
|
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\is-P9O5E.tmp
|
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\is-Q23S7.tmp
|
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\libcurl.dll (copy)
|
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\libeay32.dll (copy)
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\libmp3lame.dll (copy)
|
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\mousehelper.dll (copy)
|
PE32+ executable (DLL) (console) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\openh264.dll (copy)
|
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\softjenimmp3converter.exe
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
modified
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\unins000.exe (copy)
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\7zS76DB.tmp\Install.exe
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\7zS933D.tmp\Install.exe
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\Protect544cd51a.dll
|
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\is-J1NGJ.tmp\_isetup\_RegDLL.tmp
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\is-J1NGJ.tmp\_isetup\_iscrypt.dll
|
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\is-J1NGJ.tmp\_isetup\_isdecmp.dll
|
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\is-J1NGJ.tmp\_isetup\_setup64.tmp
|
PE32+ executable (console) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\is-RS88H.tmp\FXnrFSfIY3onUvtSB3cuKesF.tmp
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Users\user\Documents\SimpleAdobe\1sMfNqnOFjTOadWc0yClvu5P.exe
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Users\user\Documents\SimpleAdobe\9AzlS7F3tYa6PD9PpLcR316P.exe
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Users\user\Documents\SimpleAdobe\FXnrFSfIY3onUvtSB3cuKesF.exe
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Users\user\Documents\SimpleAdobe\N_fzNzObxT0UJ9JQqz4nPKUC.exe
|
PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
|
dropped
|
||
C:\Users\user\Documents\SimpleAdobe\TrIR3OjzF5zT6wur9yJ59R0V.exe
|
PE32+ executable (GUI) x86-64 Mono/.Net assembly, for MS Windows
|
dropped
|
||
C:\Users\user\Documents\SimpleAdobe\ZzA4CiLYTNO5oC4gZR_wrNaZ.exe
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Users\user\Documents\SimpleAdobe\_MpzZq9udo_WMns6EY9VnO9e.exe
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Users\user\Documents\SimpleAdobe\c7pGL4_L_P3yOlPkhT4UG9k1.exe
|
PE32+ executable (GUI) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\Documents\SimpleAdobe\cWSgbiiWuHkrGD6e9Bvvb03z.exe
|
PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
|
dropped
|
||
C:\Users\user\Documents\SimpleAdobe\gEsYklrF8leHWug4608tQIe6.exe
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Users\user\Documents\SimpleAdobe\ijWSnAA5feFcALhcRIb98yTf.exe
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Users\user\Documents\SimpleAdobe\lrPP7Py6j59vWWqs5P8cBSO1.exe
|
MS-DOS executable PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows, MZ for MS-DOS
|
dropped
|
||
C:\Users\user\Documents\SimpleAdobe\pnUE3Ri3AJFo6xuNgBEk3Rs_.exe
|
MS-DOS executable PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows, MZ for MS-DOS
|
dropped
|
||
C:\Users\user\Documents\SimpleAdobe\smXaUwB1apxcy5uQ1QhDrzwt.exe
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Users\user\Documents\SimpleAdobe\tDrDIT3EJ93dpzmmxTIMr4ah.exe
|
MS-DOS executable PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows, MZ for MS-DOS
|
dropped
|
||
C:\Users\user\Documents\SimpleAdobe\vLezrpzeJwHmxmMpZ0dBr09m.exe
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Windows\System32\GroupPolicy\gpt.ini
|
ASCII text, with CRLF line terminators
|
dropped
|
||
C:\ProgramData\AAAAECGH
|
SQLite 3.x database, last written using SQLite version 3042000, page size 2048, file counter 3, database pages 52, cookie
0x21, schema 4, UTF-8, version-valid-for 3
|
dropped
|
||
C:\ProgramData\BAAFIJKKEHJDHJKFIECAAKFIJJ
|
SQLite 3.x database, last written using SQLite version 3042000, file counter 7, database pages 5, cookie 0x5, schema 4, UTF-8,
version-valid-for 7
|
dropped
|
||
C:\ProgramData\BFIDGHDB
|
SQLite 3.x database, last written using SQLite version 3042000, file counter 1, database pages 38, cookie 0x1f, schema 4,
UTF-8, version-valid-for 1
|
dropped
|
||
C:\ProgramData\CGCFCFBKFCFCBGDGIEGHJDAFHJ
|
SQLite 3.x database, last written using SQLite version 3042000, file counter 4, database pages 5, cookie 0x3, schema 4, UTF-8,
version-valid-for 4
|
dropped
|
||
C:\ProgramData\DHJDAKEGDBFHCAAKJJJD
|
SQLite 3.x database, last written using SQLite version 3042000, page size 2048, file counter 1, database pages 20, cookie
0xb, schema 4, UTF-8, version-valid-for 1
|
dropped
|
||
C:\ProgramData\FIDGHIIE
|
SQLite 3.x database, last written using SQLite version 3042000, page size 2048, file counter 9, database pages 89, cookie
0x36, schema 4, UTF-8, version-valid-for 9
|
modified
|
||
C:\ProgramData\IDHIIJJJKEGIDGCBAFIJ
|
SQLite 3.x database, last written using SQLite version 3042000, page size 2048, file counter 1, database pages 25, cookie
0xe, schema 4, UTF-8, version-valid-for 1
|
dropped
|
||
C:\ProgramData\JKJECBAA
|
SQLite 3.x database, last written using SQLite version 3042000, file counter 1, database pages 39, cookie 0x20, schema 4,
UTF-8, version-valid-for 1
|
dropped
|
||
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Description string, Has Relative path, Has Working
directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:41 2023, mtime=Wed Oct 4 13:16:46 2023,
atime=Wed Sep 27 04:28:27 2023, length=3242272, window=hide
|
dropped
|
||
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Description string, Has Relative path, Has Working
directory, Has command line arguments, Icon number=0, Archive, ctime=Thu Aug 5 21:41:46 2021, mtime=Tue Oct 3 11:10:59 2023,
atime=Fri Sep 29 11:17:35 2023, length=4210216, window=hide
|
modified
|
||
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_1sMfNqnOFjTOadWc_efd7a33ee5ae48da83ecf73b724c1b3779a55e1_126df0ce_778e6498-f883-4b13-a668-18dbcddde37e\Report.wer
|
Unicode text, UTF-16, little-endian text, with CRLF line terminators
|
dropped
|
||
C:\ProgramData\Microsoft\Windows\WER\Temp\WER255D.tmp.csv
|
data
|
dropped
|
||
C:\ProgramData\Microsoft\Windows\WER\Temp\WER33A6.tmp.txt
|
data
|
dropped
|
||
C:\ProgramData\Microsoft\Windows\WER\Temp\WER91E5.tmp.dmp
|
Mini DuMP crash report, 14 streams, Wed May 1 18:27:04 2024, 0x1205a4 type
|
dropped
|
||
C:\ProgramData\Microsoft\Windows\WER\Temp\WER939C.tmp.WERInternalMetadata.xml
|
XML 1.0 document, Unicode text, UTF-16, little-endian text, with CRLF line terminators
|
dropped
|
||
C:\ProgramData\Microsoft\Windows\WER\Temp\WER9A73.tmp.xml
|
XML 1.0 document, ASCII text, with CRLF line terminators
|
dropped
|
||
C:\ProgramData\Microsoft\Windows\WER\Temp\WER9B4B.tmp.csv
|
data
|
dropped
|
||
C:\ProgramData\Microsoft\Windows\WER\Temp\WERA000.tmp.txt
|
data
|
dropped
|
||
C:\Users\Public\Desktop\Google Chrome.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Description string, Has Relative path, Has Working
directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:41 2023, mtime=Wed Oct 4 13:17:01 2023,
atime=Wed Sep 27 04:28:27 2023, length=3242272, window=hide
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\CLR_v4.0_32\UsageLogs\MsBuild.exe.log
|
ASCII text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\CLR_v4.0_32\UsageLogs\cWSgbiiWuHkrGD6e9Bvvb03z.exe.log
|
ASCII text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\53IVYM2Y\adsupressor[1].jpg
|
Google Chrome extension, version 3
|
modified
|
||
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9C680Q69\76561199680449169[1].htm
|
HTML document, Unicode text, UTF-8 text, with very long lines (3041), with CRLF, LF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9C680Q69\setup[1].htm
|
HTML document, ASCII text
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PMW3U6MX\PL_Clients[1].bmp
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PMW3U6MX\crypted[1].bmp
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PMW3U6MX\crypted[2].bmp
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PMW3U6MX\file[1].bmp
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PMW3U6MX\grwg_20240501083043[1].bmp
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\Qt5Svg.dll (copy)
|
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\is-14F2M.tmp
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\is-9KGTB.tmp
|
PE32+ executable (DLL) (console) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\is-FLU1L.tmp
|
PE32+ executable (DLL) (console) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\is-L54T1.tmp
|
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\is-L99RE.tmp
|
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\is-LT7B9.tmp
|
ASCII text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\is-P0TNH.tmp
|
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\is-PJMQ1.tmp
|
ASCII text
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\msvcp120.dll (copy)
|
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\msvcp140.dll (copy)
|
PE32+ executable (DLL) (console) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\msvcp140_1.dll (copy)
|
PE32+ executable (DLL) (console) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\msvcr120.dll (copy)
|
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\openh264_license.txt (copy)
|
ASCII text
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\proportions.txt (copy)
|
ASCII text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Soft Jenim MP3 Converter\unins000.dat
|
InnoSetup Log Soft Jenim MP3 Converter, version 0x30, 5433 bytes, 226533\user, "C:\Users\user\AppData\Local\Soft Jenim MP3
Converter"
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\7zS76DB.tmp\__data__\config.txt
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\Extension\background.js
|
C source, ASCII text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\Extension\js\content.js
|
ASCII text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\Extension\js\injected-script.js
|
ASCII text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\Extension\manifest.json
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\TmpA398.tmp
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\TmpA3B9.tmp
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\is-J1NGJ.tmp\_isetup\_shfoldr.dll
|
PE32 executable (DLL) (GUI) Intel 80386 (stripped to external PDB), for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\rage131MP.tmp
|
ASCII text, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\spanlGXeIawcURUg\02zdBXl47cvzcookies.sqlite
|
SQLite 3.x database, user version 12, last written using SQLite version 3042000, page size 32768, writer version 2, read version
2, file counter 3, database pages 3, cookie 0x1, schema 4, UTF-8, version-valid-for 3
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\spanlGXeIawcURUg\3b6N2Xdh3CYwplaces.sqlite
|
SQLite 3.x database, user version 75, last written using SQLite version 3042000, page size 32768, writer version 2, read version
2, file counter 2, database pages 46, cookie 0x26, schema 4, UTF-8, version-valid-for 2
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\spanlGXeIawcURUg\5iBJ41v5WYQFWeb Data
|
SQLite 3.x database, last written using SQLite version 3042000, page size 2048, file counter 10, database pages 91, cookie
0x36, schema 4, UTF-8, version-valid-for 10
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\spanlGXeIawcURUg\BHDLzi_NVpW1Login Data
|
SQLite 3.x database, last written using SQLite version 3042000, page size 2048, file counter 1, database pages 20, cookie
0xb, schema 4, UTF-8, version-valid-for 1
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\spanlGXeIawcURUg\D87fZN3R3jFeplaces.sqlite
|
SQLite 3.x database, user version 75, last written using SQLite version 3042000, page size 32768, writer version 2, read version
2, file counter 2, database pages 46, cookie 0x26, schema 4, UTF-8, version-valid-for 2
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\spanlGXeIawcURUg\DCZuYQi6rs3ZHistory
|
SQLite 3.x database, last written using SQLite version 3042000, file counter 1, database pages 39, cookie 0x20, schema 4,
UTF-8, version-valid-for 1
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\spanlGXeIawcURUg\Di8GPtNG1gKyWeb Data
|
SQLite 3.x database, last written using SQLite version 3042000, page size 2048, file counter 3, database pages 52, cookie
0x21, schema 4, UTF-8, version-valid-for 3
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\spanlGXeIawcURUg\FVsJ6Hah0DL5History
|
SQLite 3.x database, last written using SQLite version 3042000, file counter 1, database pages 39, cookie 0x20, schema 4,
UTF-8, version-valid-for 1
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\spanlGXeIawcURUg\PMfLSFpM9A20Cookies
|
SQLite 3.x database, last written using SQLite version 3042000, file counter 4, database pages 5, cookie 0x3, schema 4, UTF-8,
version-valid-for 4
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\spanlGXeIawcURUg\PTCHbx1gWpJqWeb Data
|
SQLite 3.x database, last written using SQLite version 3042000, page size 2048, file counter 3, database pages 52, cookie
0x21, schema 4, UTF-8, version-valid-for 3
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\spanlGXeIawcURUg\TmyEigKJnf45Web Data
|
SQLite 3.x database, last written using SQLite version 3042000, page size 2048, file counter 3, database pages 52, cookie
0x21, schema 4, UTF-8, version-valid-for 3
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\spanlGXeIawcURUg\ZnjmWAJCIAxVLogin Data
|
SQLite 3.x database, last written using SQLite version 3042000, page size 2048, file counter 1, database pages 25, cookie
0xe, schema 4, UTF-8, version-valid-for 1
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\spanlGXeIawcURUg\c9npYYlafTioLogin Data For Account
|
SQLite 3.x database, last written using SQLite version 3042000, page size 2048, file counter 1, database pages 20, cookie
0xb, schema 4, UTF-8, version-valid-for 1
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\spanlGXeIawcURUg\eSacU9UhpUT2History
|
SQLite 3.x database, last written using SQLite version 3042000, file counter 1, database pages 38, cookie 0x1f, schema 4,
UTF-8, version-valid-for 1
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\spanlGXeIawcURUg\t93IeyEir41DWeb Data
|
SQLite 3.x database, last written using SQLite version 3042000, page size 2048, file counter 10, database pages 91, cookie
0x36, schema 4, UTF-8, version-valid-for 10
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2246122658-3693405117-2476756634-1003\76b53b3ec448f7ccdda2063b15d2bfc3_9e146be9-c76a-4720-bcdb-53011b87bd06
|
data
|
modified
|
||
C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Description string, Has Relative path, Has Working
directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:41 2023, mtime=Wed Oct 4 12:40:12 2023,
atime=Wed Sep 27 04:28:27 2023, length=3242272, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Edge.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Description string, Has Relative path, Has Working
directory, Has command line arguments, Icon number=0, Archive, ctime=Thu Aug 5 21:41:46 2021, mtime=Wed Oct 4 12:34:48 2023,
atime=Fri Sep 29 11:17:35 2023, length=4210216, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Description string, Has Relative path, Has Working
directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:41 2023, mtime=Tue Oct 3 09:48:42 2023,
atime=Wed Sep 27 04:28:27 2023, length=3242272, window=hide
|
dropped
|
||
C:\Users\user\Documents\SimpleAdobe\UsAeOiVczGq_p4QRa8zeFder.exe
|
HTML document, ASCII text, with very long lines (6927)
|
dropped
|
||
C:\Users\user\Documents\SimpleAdobe\yXgtFZ7XB0cQTCLf83XR0xIo.exe
|
HTML document, ASCII text, with very long lines (6927)
|
dropped
|
||
C:\Windows\Logs\StorGroupPolicy.log
|
data
|
modified
|
||
C:\Windows\SysWOW64\GroupPolicy\gpt.ini
|
ASCII text, with CRLF line terminators
|
dropped
|
||
C:\Windows\System32\GroupPolicy\Machine\Registry.pol
|
RAGE Package Format (RPF),
|
dropped
|
||
C:\Windows\appcompat\Programs\Amcache.hve
|
MS Windows registry file, NT/2000 or above
|
dropped
|
There are 133 hidden files, click here to show them.
Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Users\user\Desktop\tZvjMg3Hw9.exe
|
"C:\Users\user\Desktop\tZvjMg3Hw9.exe"
|
||
C:\Users\user\Documents\SimpleAdobe\lrPP7Py6j59vWWqs5P8cBSO1.exe
|
C:\Users\user\Documents\SimpleAdobe\lrPP7Py6j59vWWqs5P8cBSO1.exe
|
||
C:\Users\user\Documents\SimpleAdobe\pnUE3Ri3AJFo6xuNgBEk3Rs_.exe
|
C:\Users\user\Documents\SimpleAdobe\pnUE3Ri3AJFo6xuNgBEk3Rs_.exe
|
||
C:\Users\user\Documents\SimpleAdobe\c7pGL4_L_P3yOlPkhT4UG9k1.exe
|
C:\Users\user\Documents\SimpleAdobe\c7pGL4_L_P3yOlPkhT4UG9k1.exe
|
||
C:\Users\user\Documents\SimpleAdobe\ZzA4CiLYTNO5oC4gZR_wrNaZ.exe
|
C:\Users\user\Documents\SimpleAdobe\ZzA4CiLYTNO5oC4gZR_wrNaZ.exe
|
||
C:\Users\user\Documents\SimpleAdobe\cWSgbiiWuHkrGD6e9Bvvb03z.exe
|
C:\Users\user\Documents\SimpleAdobe\cWSgbiiWuHkrGD6e9Bvvb03z.exe
|
||
C:\Users\user\Documents\SimpleAdobe\1sMfNqnOFjTOadWc0yClvu5P.exe
|
C:\Users\user\Documents\SimpleAdobe\1sMfNqnOFjTOadWc0yClvu5P.exe
|
||
C:\Users\user\Documents\SimpleAdobe\tDrDIT3EJ93dpzmmxTIMr4ah.exe
|
C:\Users\user\Documents\SimpleAdobe\tDrDIT3EJ93dpzmmxTIMr4ah.exe
|
||
C:\Users\user\Documents\SimpleAdobe\gEsYklrF8leHWug4608tQIe6.exe
|
C:\Users\user\Documents\SimpleAdobe\gEsYklrF8leHWug4608tQIe6.exe
|
||
C:\Users\user\Documents\SimpleAdobe\vLezrpzeJwHmxmMpZ0dBr09m.exe
|
C:\Users\user\Documents\SimpleAdobe\vLezrpzeJwHmxmMpZ0dBr09m.exe
|
||
C:\Users\user\Documents\SimpleAdobe\_MpzZq9udo_WMns6EY9VnO9e.exe
|
C:\Users\user\Documents\SimpleAdobe\_MpzZq9udo_WMns6EY9VnO9e.exe
|
||
C:\Users\user\Documents\SimpleAdobe\smXaUwB1apxcy5uQ1QhDrzwt.exe
|
C:\Users\user\Documents\SimpleAdobe\smXaUwB1apxcy5uQ1QhDrzwt.exe
|
||
C:\Users\user\Documents\SimpleAdobe\FXnrFSfIY3onUvtSB3cuKesF.exe
|
C:\Users\user\Documents\SimpleAdobe\FXnrFSfIY3onUvtSB3cuKesF.exe
|
||
C:\Users\user\Documents\SimpleAdobe\ijWSnAA5feFcALhcRIb98yTf.exe
|
C:\Users\user\Documents\SimpleAdobe\ijWSnAA5feFcALhcRIb98yTf.exe
|
||
C:\Users\user\Documents\SimpleAdobe\9AzlS7F3tYa6PD9PpLcR316P.exe
|
C:\Users\user\Documents\SimpleAdobe\9AzlS7F3tYa6PD9PpLcR316P.exe
|
||
C:\Users\user\Documents\SimpleAdobe\TrIR3OjzF5zT6wur9yJ59R0V.exe
|
C:\Users\user\Documents\SimpleAdobe\TrIR3OjzF5zT6wur9yJ59R0V.exe
|
||
C:\Users\user\Documents\SimpleAdobe\N_fzNzObxT0UJ9JQqz4nPKUC.exe
|
C:\Users\user\Documents\SimpleAdobe\N_fzNzObxT0UJ9JQqz4nPKUC.exe
|
||
C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
|
"C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe"
|
||
C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
|
"C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe"
|
||
C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
|
"C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe"
|
||
C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
|
"C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe"
|
||
C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
|
"C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe"
|
||
C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
|
"C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe"
|
||
C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
|
"C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe"
|
||
C:\Windows\Microsoft.NET\Framework\v4.0.30319\MSBuild.exe
|
C:\Windows\Microsoft.NET\Framework\v4.0.30319\MsBuild.exe
|
||
C:\Windows\System32\powercfg.exe
|
C:\Windows\system32\powercfg.exe /x -hibernate-timeout-ac 0
|
||
C:\Windows\System32\powercfg.exe
|
C:\Windows\system32\powercfg.exe /x -hibernate-timeout-dc 0
|
||
C:\Windows\System32\powercfg.exe
|
C:\Windows\system32\powercfg.exe /x -standby-timeout-ac 0
|
||
C:\Windows\System32\powercfg.exe
|
C:\Windows\system32\powercfg.exe /x -standby-timeout-dc 0
|
||
C:\Windows\System32\svchost.exe
|
C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s fhsvc
|
||
C:\Windows\System32\svchost.exe
|
C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted -s WPDBusEnum
|
||
C:\Windows\System32\svchost.exe
|
C:\Windows\System32\svchost.exe -k NetSvcs -p -s NcaSvc
|
||
C:\Windows\System32\svchost.exe
|
C:\Windows\System32\svchost.exe -k WerSvcGroup
|
||
C:\Windows\SysWOW64\WerFault.exe
|
C:\Windows\SysWOW64\WerFault.exe -pss -s 436 -p 2724 -ip 2724
|
||
C:\Windows\SysWOW64\WerFault.exe
|
C:\Windows\SysWOW64\WerFault.exe -u -p 2724 -s 316
|
||
C:\Users\user\AppData\Local\Temp\7zS76DB.tmp\Install.exe
|
.\Install.exe
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Users\user\AppData\Local\Temp\is-RS88H.tmp\FXnrFSfIY3onUvtSB3cuKesF.tmp
|
"C:\Users\user\AppData\Local\Temp\is-RS88H.tmp\FXnrFSfIY3onUvtSB3cuKesF.tmp" /SL5="$A0070,4844569,54272,C:\Users\user\Documents\SimpleAdobe\FXnrFSfIY3onUvtSB3cuKesF.exe"
|
There are 28 hidden processes, click here to show them.
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
http://193.233.132.167/cost/lenin.exe
|
unknown
|
||
http://5.42.66.10/ext/adsupressor.jpeg
|
5.42.66.10
|
||
http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-soap-message-security-1.0#Text
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/sc/sct
|
unknown
|
||
https://community.cloudflare.steamstatic.com/public/javascript/webui/clientcom.js?v=gzzYk5pkHqW6&
|
unknown
|
||
http://5.42.66.10/download/th/retail.phphp
|
unknown
|
||
https://community.cloudflare.steamstatic.com/public/shared/javascript/shared_global.js?v=wJD9maDpDcV
|
unknown
|
||
http://193.233.132.139/rumba/buben.exe
|
193.233.132.139
|
||
http://tempuri.org/
|
unknown
|
||
http://pki-crl.symauth.com/offlineca/TheInstituteofElectricalandElectronicsEngineersIncIEEERootCA.cr
|
unknown
|
||
http://tempuri.org/Entity/Id23ResponseH
|
unknown
|
||
https://sun6-23.userapi.com/
|
unknown
|
||
http://schemas.xmlsoap.org/2005/02/trust/spnego#GSS_Wrap
|
unknown
|
||
https://95.217.245.42:9000al
|
unknown
|
||
http://docs.oasis-open.org/wss/oasis-wss-saml-token-profile-1.1#SAMLID
|
unknown
|
||
https://community.cloudflare.steamstatic.com/public/javascript/modalv2.js?v=dfMhuy-Lrpyo&l=engli
|
unknown
|
||
https://dod.fastbutters.com:80/style/060.exeindows
|
unknown
|
||
https://sun6-21.userapi.com/c237231/u5294803/docs/d14/fab319a9eaa9/file.bmp?extra=XekPvLwajf3zjaY5buJAe3HnfkyeicpSttiDxaJzdLoB5YHmFFoUME6QuSgS26MeSPNwYYaTqVwUYy3Yw-9Wvle-70JE1-Pdb5-fcQuxBsuGV0qmjloWPkyYmuqS-f4G1K17ZAtAoLg
|
95.142.206.1
|
||
http://193.233.132.167/cost/go.exe0.1
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/rm/TerminateSequence
|
unknown
|
||
http://5.42.66.10/ext/adsupressor.jpegh
|
unknown
|
||
https://t.me/RiseProSUPPORTN
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/10/wsat/fault
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/10/wsat
|
unknown
|
||
http://5.42.66.10/ext/adsupressor.jpegK
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/04/trust/SymmetricKey
|
unknown
|
||
https://api.ip.sb/ip
|
unknown
|
||
https://sextipolar.sbs/qwqw/
|
unknown
|
||
https://community.cloudflare.steamstatic.com/public/javascript/prototype-1.7.js?v=.55t44gwuwgvw&
|
unknown
|
||
http://sextipolar.sbs/qwqwi
|
unknown
|
||
http://5.42.66.10/ext/adsupressor.jpegG
|
unknown
|
||
https://community.cloudflare.steamstatic.com/public/css/applications/community/main.css?v=tIrWyaxi8A
|
unknown
|
||
https://sextipolar.sbs/qwqw)
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/04/security/trust/CK/PSHA1
|
unknown
|
||
https://steamcommunity.com/profiles/76561199680449169/badges
|
unknown
|
||
https://www.ecosia.org/newtab/
|
unknown
|
||
http://sextipolar.sbs/qwqwS
|
unknown
|
||
https://triedchicken.net:80/cad54ba5b01423b1af8ec10ab5719d97.exe
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/trust/tlsnego
|
unknown
|
||
https://community.cloudflare.steamstatic.com/public/shared/images/responsive/logo_valve_footer.png
|
unknown
|
||
http://193.233.132.167/cost/lenin.exe192.168.06
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/08/addressing
|
unknown
|
||
https://ipinfo.io/
|
unknown
|
||
http://sextipolar.sbs/qwqwG
|
unknown
|
||
https://community.cloudflare.steamstatic.com/public/shared/images/header/logo_steam.svg?t=962016
|
unknown
|
||
http://tempuri.org/Entity/Id8ResponseH
|
unknown
|
||
https://monoblocked.com/525403/setup.exexeO
|
unknown
|
||
http://tempuri.org/Entity/Id10ResponseH
|
unknown
|
||
http://tempuri.org/Entity/Id10ResponseD
|
unknown
|
||
https://community.cloudflare.steamstatic.com/public/shared/images/responsive/header_logo.png
|
unknown
|
||
https://f.123654987.xyz/
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/10/wscoor/CreateCoordinationContextResponse
|
unknown
|
||
http://tempuri.org/Entity/Id15ResponseH
|
unknown
|
||
http://www.gzip.org/zlib/rfc-gzip.html
|
unknown
|
||
https://95.217.245.42:9000/msvcp140.dllEdge
|
unknown
|
||
https://95.217.245.42:9000/vcruntime140.dllet
|
unknown
|
||
http://docs.oasis-open.org/wss/oasis-wss-saml-token-profile-1.0#SAMLAssertionID
|
unknown
|
||
https://help.steampowered.com/en/
|
unknown
|
||
http://147.45.47.102:57893/hera/amadka.exe
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2006/02/addressingidentity
|
unknown
|
||
https://95.217.245.42:9000/~CD
|
unknown
|
||
https://community.cloudflare.steamstatic.com/public/javascript/applications/community/manifest.js?v=
|
unknown
|
||
http://tempuri.org/Entity/Id3ResponseH
|
unknown
|
||
https://sun6-23.userapi.com/c909218/u5294803/docs/d33/75149034c64a/crypted.bmp?extra=a1Y3DfMrVV-HLQV
|
unknown
|
||
https://f.123654987.xyz/525403/setup.exes
|
unknown
|
||
https://monoblocked.com/
|
unknown
|
||
https://vk.com/doc5294803_669152103?hash=pkblRovv4LMe1R6iuxvW4DDThffFR8gbvrqSTKlz4BX&dl=OZ0YEqh4RYRcb5Su2JqOKNJMaEcBe7Ll19G2uM9kyeX&api=1&no_preview=1#mene
|
93.186.225.194
|
||
https://monoblocked.com/525403/setup.exe
|
45.130.41.108
|
||
http://schemas.xmlsoap.org/ws/2004/04/security/trust/RSTR/SCT
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/04/security/trust/Nonce
|
unknown
|
||
http://ns.adp/1.0/Vg2
|
unknown
|
||
https://community.cloudflare.steamstatic.com/public/shared/javascript/shared_responsive_adapter.js?v
|
unknown
|
||
http://docs.oasis-open.org/wss/oasis-wss-kerberos-token-profile-1.1#GSS_Kerberosv5_AP_REQ1510
|
unknown
|
||
https://www.security.us.panasonic.com
|
unknown
|
||
https://vk.com/doc5294803_668917518?hash=HcqSqB4BEz69zZduDzHpG5p3oDuUGmC4h5HdrueZTFD&dl=73Wmq1mPcIfG
|
unknown
|
||
http://tempuri.org/Entity/Id13Response
|
unknown
|
||
https://t.me/risepro_bot6
|
unknown
|
||
http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-utility-1.0.xsd
|
unknown
|
||
https://steamcommunity.com/workshop/
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/trust/CK/PSHA1
|
unknown
|
||
https://db-ip.com/demo/home.php?s=149.18.24.96
|
172.67.75.166
|
||
http://docs.oasis-open.org/wss/oasis-wss-soap-message-security-1.1#ThumbprintSHA1
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/05/identity/right/possessproperty
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/rm/SequenceAcknowledgement
|
unknown
|
||
https://community.cloudflare.steamstatic.com/public/css/skin_1/profilev2.css?v=gNE3gksLVEVa&l=en
|
unknown
|
||
https://api.myip.com/
|
172.67.75.163
|
||
http://tempuri.org/Entity/Id4ResponseD
|
unknown
|
||
http://schemas.xmlsoap.org/2005/02/trust/tlsnego#TLS_Wrap
|
unknown
|
||
http://tempuri.org/Entity/Id22ResponseH
|
unknown
|
||
http://tempuri.org/Entity/Id4ResponseH
|
unknown
|
||
http://tempuri.org/Entity/Id16ResponseH
|
unknown
|
||
http://tempuri.org/Entity/Id19ResponseH
|
unknown
|
||
http://tempuri.org/Entity/Id16ResponseD
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/04/security/trust/RST/Issue
|
unknown
|
||
https://95.217.245.42:9000/sqlx.dll
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/10/wscoor/CreateCoordinationContext
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/trust/Issue
|
unknown
|
||
http://tempuri.org/Entity/Id19ResponseD
|
unknown
|
||
https://steamcommunity.com/profiles/76561199680449169/inventory/
|
unknown
|
||
http://pofix.red/upd/index.php8
|
unknown
|
There are 90 hidden URLs, click here to show them.
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
f.123654987.xyz
|
37.221.125.202
|
||
bzib.nelreports.net
|
unknown
|
||
chrome.cloudflare-dns.com
|
172.64.41.3
|
||
monoblocked.com
|
45.130.41.108
|
||
sun6-21.userapi.com
|
95.142.206.1
|
||
sextipolar.sbs
|
172.67.151.19
|
||
ssl.bingadsedgeextension-prod-eastus.azurewebsites.net
|
40.71.99.188
|
||
fp2e7a.wpc.phicdn.net
|
192.229.211.108
|
||
sun6-20.userapi.com
|
95.142.206.0
|
||
bg.microsoft.map.fastly.net
|
199.232.210.172
|
||
api.myip.com
|
172.67.75.163
|
||
carthewasher.net
|
172.67.161.113
|
||
steamcommunity.com
|
104.105.90.131
|
||
pofix.red
|
186.10.35.108
|
||
dod.fastbutters.com
|
104.21.49.118
|
||
ipinfo.io
|
34.117.186.192
|
||
cheremushki.net
|
172.67.172.104
|
||
zanzibarpivo.com
|
172.67.144.181
|
||
www.google.com
|
142.251.111.104
|
||
triedchicken.net
|
172.67.180.119
|
||
sun6-23.userapi.com
|
95.142.206.3
|
||
db-ip.com
|
172.67.75.166
|
||
vk.com
|
93.186.225.194
|
||
iplis.ru
|
172.67.147.32
|
||
ntp.msn.com
|
unknown
|
||
browser.events.data.msn.com
|
unknown
|
There are 16 hidden domains, click here to show them.
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
37.221.125.202
|
f.123654987.xyz
|
Lithuania
|
||
5.42.65.96
|
unknown
|
Russian Federation
|
||
147.45.47.93
|
unknown
|
Russian Federation
|
||
5.42.66.10
|
unknown
|
Russian Federation
|
||
193.233.132.139
|
unknown
|
Russian Federation
|
||
34.117.186.192
|
ipinfo.io
|
United States
|
||
186.10.35.108
|
pofix.red
|
Chile
|
||
95.217.245.42
|
unknown
|
Germany
|
||
172.67.172.104
|
cheremushki.net
|
United States
|
||
172.67.161.113
|
carthewasher.net
|
United States
|
||
104.21.49.118
|
dod.fastbutters.com
|
United States
|
||
95.142.206.3
|
sun6-23.userapi.com
|
Russian Federation
|
||
95.142.206.0
|
sun6-20.userapi.com
|
Russian Federation
|
||
95.142.206.1
|
sun6-21.userapi.com
|
Russian Federation
|
||
104.105.90.131
|
steamcommunity.com
|
United States
|
||
172.67.147.32
|
iplis.ru
|
United States
|
||
185.172.128.203
|
unknown
|
Russian Federation
|
||
193.233.132.226
|
unknown
|
Russian Federation
|
||
172.67.144.181
|
zanzibarpivo.com
|
United States
|
||
172.67.75.166
|
db-ip.com
|
United States
|
||
172.67.75.163
|
api.myip.com
|
United States
|
||
104.26.8.59
|
unknown
|
United States
|
||
93.186.225.194
|
vk.com
|
Russian Federation
|
||
172.67.180.119
|
triedchicken.net
|
United States
|
||
45.130.41.108
|
monoblocked.com
|
Russian Federation
|
||
172.67.151.19
|
sextipolar.sbs
|
United States
|
There are 16 hidden IPs, click here to show them.
Registry
Path
|
Value
|
Malicious
|
|
---|---|---|---|
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\group policy objects\{1165AB9F-ABBA-404C-88FE-8FD0CB61EBCD}Machine\SOFTWARE\Policies\Microsoft\Windows
Defender\Exclusions
|
Exclusions_Extensions
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\group policy objects\{1165AB9F-ABBA-404C-88FE-8FD0CB61EBCD}Machine\SOFTWARE\Policies\Microsoft\Windows
Defender\Exclusions\Extensions
|
exe
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\group policy objects\{1165AB9F-ABBA-404C-88FE-8FD0CB61EBCD}Machine\SOFTWARE\Policies\Microsoft\Windows
Defender
|
DisableAntiSpyware
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\group policy objects\{1165AB9F-ABBA-404C-88FE-8FD0CB61EBCD}Machine\SOFTWARE\Policies\Microsoft\Windows
Defender
|
DisableRoutinelyTakingAction
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\group policy objects\{1165AB9F-ABBA-404C-88FE-8FD0CB61EBCD}Machine\SOFTWARE\Policies\Microsoft\Windows
Defender\Real-Time Protection
|
DisableBehaviorMonitoring
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\group policy objects\{1165AB9F-ABBA-404C-88FE-8FD0CB61EBCD}Machine\SOFTWARE\Policies\Microsoft\Windows
Defender\Real-Time Protection
|
DisableOnAccessProtection
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\group policy objects\{1165AB9F-ABBA-404C-88FE-8FD0CB61EBCD}Machine\SOFTWARE\Policies\Microsoft\Windows
Defender\Real-Time Protection
|
DisableScanOnRealtimeEnable
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\group policy objects\{1165AB9F-ABBA-404C-88FE-8FD0CB61EBCD}Machine\SOFTWARE\Policies\Microsoft\Windows
Defender\Real-Time Protection
|
DisableRealtimeMonitoring
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\group policy objects\{1165AB9F-ABBA-404C-88FE-8FD0CB61EBCD}Machine\SOFTWARE\Policies\Microsoft\Windows
Defender\Real-Time Protection
|
DisableIOAVProtection
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\group policy objects\{1165AB9F-ABBA-404C-88FE-8FD0CB61EBCD}Machine\SOFTWARE\Policies\Microsoft\Windows
Defender\Real-Time Protection
|
DisableRawWriteNotification
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\group policy objects\{4A7AB507-57D4-4EFC-A429-A9DAE0E31F7A}Machine\SOFTWARE\Policies\Microsoft\Windows
Defender
|
DisableAntiSpyware
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\group policy objects\{4A7AB507-57D4-4EFC-A429-A9DAE0E31F7A}Machine\SOFTWARE\Policies\Microsoft\Windows
Defender
|
DisableRoutinelyTakingAction
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\group policy objects\{4A7AB507-57D4-4EFC-A429-A9DAE0E31F7A}Machine\SOFTWARE\Policies\Microsoft\Windows
Defender\Exclusions
|
Exclusions_Extensions
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\group policy objects\{4A7AB507-57D4-4EFC-A429-A9DAE0E31F7A}Machine\SOFTWARE\Policies\Microsoft\Windows
Defender\Exclusions\Extensions
|
exe
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\group policy objects\{4A7AB507-57D4-4EFC-A429-A9DAE0E31F7A}Machine\SOFTWARE\Policies\Microsoft\Windows
Defender\Real-Time Protection
|
DisableBehaviorMonitoring
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\group policy objects\{4A7AB507-57D4-4EFC-A429-A9DAE0E31F7A}Machine\SOFTWARE\Policies\Microsoft\Windows
Defender\Real-Time Protection
|
DisableOnAccessProtection
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\group policy objects\{4A7AB507-57D4-4EFC-A429-A9DAE0E31F7A}Machine\SOFTWARE\Policies\Microsoft\Windows
Defender\Real-Time Protection
|
DisableScanOnRealtimeEnable
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\group policy objects\{4A7AB507-57D4-4EFC-A429-A9DAE0E31F7A}Machine\SOFTWARE\Policies\Microsoft\Windows
Defender\Real-Time Protection
|
DisableRealtimeMonitoring
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\group policy objects\{4A7AB507-57D4-4EFC-A429-A9DAE0E31F7A}Machine\SOFTWARE\Policies\Microsoft\Windows
Defender\Real-Time Protection
|
DisableIOAVProtection
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\group policy objects\{4A7AB507-57D4-4EFC-A429-A9DAE0E31F7A}Machine\SOFTWARE\Policies\Microsoft\Windows
Defender\Real-Time Protection
|
DisableRawWriteNotification
|
||
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\F1A578C4CB5DE79A370893983FD4DA8B67B2B064
|
Blob
|
||
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\F1A578C4CB5DE79A370893983FD4DA8B67B2B064
|
Blob
|
||
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\F1A578C4CB5DE79A370893983FD4DA8B67B2B064
|
Blob
|
||
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules
|
C:\
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
|
RageMP131
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
Owner
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
SessionHash
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
Sequence
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
RegFiles0000
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
RegFilesHash
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
Sequence
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer
|
SlowContextMenuEntries
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer
|
SlowContextMenuEntries
|
||
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\TermReason\6968
|
Terminator
|
||
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\TermReason\6968
|
Reason
|
||
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\TermReason\6968
|
CreationTime
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
Owner
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
SessionHash
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
Sequence
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
RegFiles0000
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
RegFilesHash
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
Owner
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
SessionHash
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
Sequence
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
RegFiles0000
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
RegFilesHash
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
Owner
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
SessionHash
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
Sequence
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
RegFiles0000
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
RegFilesHash
|
||
\REGISTRY\A\{3dc42531-1ead-bed8-145f-aad147d95aa2}\Root\InventoryApplicationFile\1smfnqnofjtoadwc|526869486bd36192
|
ProgramId
|
||
\REGISTRY\A\{3dc42531-1ead-bed8-145f-aad147d95aa2}\Root\InventoryApplicationFile\1smfnqnofjtoadwc|526869486bd36192
|
FileId
|
||
\REGISTRY\A\{3dc42531-1ead-bed8-145f-aad147d95aa2}\Root\InventoryApplicationFile\1smfnqnofjtoadwc|526869486bd36192
|
LowerCaseLongPath
|
||
\REGISTRY\A\{3dc42531-1ead-bed8-145f-aad147d95aa2}\Root\InventoryApplicationFile\1smfnqnofjtoadwc|526869486bd36192
|
LongPathHash
|
||
\REGISTRY\A\{3dc42531-1ead-bed8-145f-aad147d95aa2}\Root\InventoryApplicationFile\1smfnqnofjtoadwc|526869486bd36192
|
Name
|
||
\REGISTRY\A\{3dc42531-1ead-bed8-145f-aad147d95aa2}\Root\InventoryApplicationFile\1smfnqnofjtoadwc|526869486bd36192
|
OriginalFileName
|
||
\REGISTRY\A\{3dc42531-1ead-bed8-145f-aad147d95aa2}\Root\InventoryApplicationFile\1smfnqnofjtoadwc|526869486bd36192
|
Publisher
|
||
\REGISTRY\A\{3dc42531-1ead-bed8-145f-aad147d95aa2}\Root\InventoryApplicationFile\1smfnqnofjtoadwc|526869486bd36192
|
Version
|
||
\REGISTRY\A\{3dc42531-1ead-bed8-145f-aad147d95aa2}\Root\InventoryApplicationFile\1smfnqnofjtoadwc|526869486bd36192
|
BinFileVersion
|
||
\REGISTRY\A\{3dc42531-1ead-bed8-145f-aad147d95aa2}\Root\InventoryApplicationFile\1smfnqnofjtoadwc|526869486bd36192
|
BinaryType
|
||
\REGISTRY\A\{3dc42531-1ead-bed8-145f-aad147d95aa2}\Root\InventoryApplicationFile\1smfnqnofjtoadwc|526869486bd36192
|
ProductName
|
||
\REGISTRY\A\{3dc42531-1ead-bed8-145f-aad147d95aa2}\Root\InventoryApplicationFile\1smfnqnofjtoadwc|526869486bd36192
|
ProductVersion
|
||
\REGISTRY\A\{3dc42531-1ead-bed8-145f-aad147d95aa2}\Root\InventoryApplicationFile\1smfnqnofjtoadwc|526869486bd36192
|
LinkDate
|
||
\REGISTRY\A\{3dc42531-1ead-bed8-145f-aad147d95aa2}\Root\InventoryApplicationFile\1smfnqnofjtoadwc|526869486bd36192
|
BinProductVersion
|
||
\REGISTRY\A\{3dc42531-1ead-bed8-145f-aad147d95aa2}\Root\InventoryApplicationFile\1smfnqnofjtoadwc|526869486bd36192
|
AppxPackageFullName
|
||
\REGISTRY\A\{3dc42531-1ead-bed8-145f-aad147d95aa2}\Root\InventoryApplicationFile\1smfnqnofjtoadwc|526869486bd36192
|
AppxPackageRelativeId
|
||
\REGISTRY\A\{3dc42531-1ead-bed8-145f-aad147d95aa2}\Root\InventoryApplicationFile\1smfnqnofjtoadwc|526869486bd36192
|
Size
|
||
\REGISTRY\A\{3dc42531-1ead-bed8-145f-aad147d95aa2}\Root\InventoryApplicationFile\1smfnqnofjtoadwc|526869486bd36192
|
Language
|
||
\REGISTRY\A\{3dc42531-1ead-bed8-145f-aad147d95aa2}\Root\InventoryApplicationFile\1smfnqnofjtoadwc|526869486bd36192
|
Usn
|
||
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Soft Jenim MP3 Converter_is1
|
Inno Setup: Setup Version
|
||
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Soft Jenim MP3 Converter_is1
|
Inno Setup: App Path
|
||
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Soft Jenim MP3 Converter_is1
|
InstallLocation
|
||
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Soft Jenim MP3 Converter_is1
|
Inno Setup: Icon Group
|
||
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Soft Jenim MP3 Converter_is1
|
Inno Setup: User
|
||
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Soft Jenim MP3 Converter_is1
|
Inno Setup: Language
|
||
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Soft Jenim MP3 Converter_is1
|
DisplayName
|
||
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Soft Jenim MP3 Converter_is1
|
UninstallString
|
||
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Soft Jenim MP3 Converter_is1
|
QuietUninstallString
|
||
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Soft Jenim MP3 Converter_is1
|
NoModify
|
||
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Soft Jenim MP3 Converter_is1
|
NoRepair
|
||
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Soft Jenim MP3 Converter_is1
|
InstallDate
|
||
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Soft Jenim MP3 Converter_is1
|
EstimatedSize
|
There are 73 hidden registries, click here to show them.
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
44D000
|
unkown
|
page read and write
|
||
400000
|
remote allocation
|
page execute and read and write
|
||
402000
|
remote allocation
|
page execute and read and write
|
||
402000
|
remote allocation
|
page execute and read and write
|
||
3DD8000
|
trusted library allocation
|
page read and write
|
||
D05000
|
unkown
|
page read and write
|
||
612000
|
unkown
|
page readonly
|
||
164E000
|
heap
|
page read and write
|
||
2B56000
|
trusted library allocation
|
page read and write
|
||
1125F000
|
stack
|
page read and write
|
||
18D5000
|
heap
|
page read and write
|
||
550E000
|
stack
|
page read and write
|
||
41DF000
|
heap
|
page read and write
|
||
4971000
|
heap
|
page read and write
|
||
30AD000
|
trusted library allocation
|
page read and write
|
||
4208000
|
heap
|
page read and write
|
||
18C5000
|
heap
|
page read and write
|
||
FE4000
|
heap
|
page read and write
|
||
3283000
|
trusted library allocation
|
page read and write
|
||
D07000
|
unkown
|
page write copy
|
||
40F5000
|
heap
|
page read and write
|
||
7FF4FC890000
|
trusted library allocation
|
page execute and read and write
|
||
432000
|
unkown
|
page read and write
|
||
CB08C7E000
|
stack
|
page read and write
|
||
96867F000
|
stack
|
page read and write
|
||
76AB000
|
heap
|
page read and write
|
||
7FF848EE0000
|
trusted library allocation
|
page execute and read and write
|
||
91C000
|
unkown
|
page execute read
|
||
3790000
|
heap
|
page read and write
|
||
7A2C000
|
heap
|
page read and write
|
||
EDA000
|
unkown
|
page execute and write copy
|
||
B40000
|
direct allocation
|
page read and write
|
||
15DFB000
|
stack
|
page read and write
|
||
400000
|
unkown
|
page readonly
|
||
F90000
|
direct allocation
|
page read and write
|
||
FE0000
|
direct allocation
|
page read and write
|
||
33CB000
|
stack
|
page read and write
|
||
1C4BF000
|
direct allocation
|
page readonly
|
||
130D000
|
heap
|
page read and write
|
||
18C5000
|
heap
|
page read and write
|
||
18AD000
|
heap
|
page read and write
|
||
497000
|
unkown
|
page write copy
|
||
F29000
|
unkown
|
page execute and write copy
|
||
3099000
|
trusted library allocation
|
page read and write
|
||
31CF000
|
trusted library allocation
|
page read and write
|
||
18C5000
|
heap
|
page read and write
|
||
556C000
|
heap
|
page read and write
|
||
7413000
|
direct allocation
|
page read and write
|
||
813000
|
unkown
|
page read and write
|
||
268C13F0000
|
trusted library allocation
|
page read and write
|
||
18C5000
|
heap
|
page read and write
|
||
F90000
|
heap
|
page read and write
|
||
10E0000
|
heap
|
page read and write
|
||
CB09077000
|
stack
|
page read and write
|
||
4BA9000
|
heap
|
page read and write
|
||
4B41000
|
heap
|
page read and write
|
||
411000
|
unkown
|
page readonly
|
||
739D000
|
stack
|
page read and write
|
||
3A9D000
|
stack
|
page read and write
|
||
7FF848FC0000
|
trusted library allocation
|
page read and write
|
||
52B0000
|
heap
|
page read and write
|
||
12FD000
|
stack
|
page read and write
|
||
2B00000
|
heap
|
page read and write
|
||
4BC000
|
heap
|
page read and write
|
||
268C13E0000
|
trusted library allocation
|
page read and write
|
||
2AF8000
|
heap
|
page read and write
|
||
2B2B000
|
heap
|
page read and write
|
||
18D5000
|
heap
|
page read and write
|
||
28F0000
|
direct allocation
|
page read and write
|
||
18CD000
|
heap
|
page read and write
|
||
497000
|
unkown
|
page read and write
|
||
B40000
|
trusted library allocation
|
page read and write
|
||
659000
|
unkown
|
page execute and read and write
|
||
64BB000
|
trusted library allocation
|
page read and write
|
||
41FF000
|
heap
|
page read and write
|
||
2B41000
|
heap
|
page read and write
|
||
11F4000
|
heap
|
page read and write
|
||
9684FF000
|
stack
|
page read and write
|
||
FFB000
|
trusted library allocation
|
page execute and read and write
|
||
18AD000
|
heap
|
page read and write
|
||
9A4000
|
heap
|
page read and write
|
||
2B2B000
|
heap
|
page read and write
|
||
5990000
|
heap
|
page read and write
|
||
4F6E000
|
trusted library allocation
|
page read and write
|
||
54A0000
|
trusted library allocation
|
page execute and read and write
|
||
30E7000
|
trusted library allocation
|
page read and write
|
||
2B2B000
|
heap
|
page read and write
|
||
13EC000
|
heap
|
page read and write
|
||
29A0000
|
trusted library allocation
|
page read and write
|
||
2AF3000
|
heap
|
page read and write
|
||
419F000
|
stack
|
page read and write
|
||
B7A000
|
heap
|
page read and write
|
||
88B000
|
heap
|
page read and write
|
||
3075000
|
trusted library allocation
|
page read and write
|
||
8B5000
|
heap
|
page read and write
|
||
4D7C000
|
heap
|
page read and write
|
||
5818000
|
trusted library section
|
page read and write
|
||
7FF848CC6000
|
trusted library allocation
|
page execute and read and write
|
||
18CD000
|
heap
|
page read and write
|
||
1F4000
|
heap
|
page read and write
|
||
1ECDCC39000
|
heap
|
page read and write
|
||
5BC0000
|
heap
|
page read and write
|
||
930000
|
heap
|
page read and write
|
||
3255000
|
trusted library allocation
|
page read and write
|
||
40C000
|
unkown
|
page readonly
|
||
18D5000
|
heap
|
page read and write
|
||
219E000
|
stack
|
page read and write
|
||
6560000
|
trusted library allocation
|
page execute and read and write
|
||
1168000
|
heap
|
page read and write
|
||
BD8000
|
stack
|
page read and write
|
||
2B19000
|
heap
|
page read and write
|
||
2B41000
|
heap
|
page read and write
|
||
614B1DE000
|
stack
|
page read and write
|
||
3964000
|
direct allocation
|
page execute and read and write
|
||
14B0000
|
trusted library allocation
|
page execute and read and write
|
||
694000
|
unkown
|
page execute and read and write
|
||
2B34000
|
heap
|
page read and write
|
||
18D8000
|
heap
|
page read and write
|
||
663000
|
unkown
|
page execute and read and write
|
||
1365000
|
heap
|
page read and write
|
||
40A000
|
unkown
|
page read and write
|
||
705F000
|
stack
|
page read and write
|
||
2AE6000
|
heap
|
page read and write
|
||
189D000
|
heap
|
page read and write
|
||
18D5000
|
heap
|
page read and write
|
||
76A5000
|
heap
|
page read and write
|
||
1210000
|
direct allocation
|
page read and write
|
||
50AD000
|
stack
|
page read and write
|
||
1ECDCE02000
|
heap
|
page read and write
|
||
7FF848E40000
|
trusted library allocation
|
page read and write
|
||
F1F000
|
unkown
|
page execute and write copy
|
||
63D7000
|
heap
|
page read and write
|
||
2AE6000
|
heap
|
page read and write
|
||
F19000
|
unkown
|
page execute and write copy
|
||
420C000
|
heap
|
page read and write
|
||
564000
|
unkown
|
page execute and read and write
|
||
187F000
|
heap
|
page read and write
|
||
59C000
|
unkown
|
page execute and read and write
|
||
7A32000
|
heap
|
page read and write
|
||
17E9000
|
heap
|
page read and write
|
||
22DEE115000
|
heap
|
page read and write
|
||
76B3000
|
heap
|
page read and write
|
||
2B41000
|
heap
|
page read and write
|
||
7FF849040000
|
trusted library allocation
|
page read and write
|
||
57FD000
|
direct allocation
|
page read and write
|
||
18BD000
|
heap
|
page read and write
|
||
A20000
|
heap
|
page read and write
|
||
761E000
|
heap
|
page read and write
|
||
18CD000
|
heap
|
page read and write
|
||
29E0000
|
trusted library allocation
|
page read and write
|
||
1F0000
|
direct allocation
|
page read and write
|
||
EF0000
|
heap
|
page read and write
|
||
2CD1000
|
heap
|
page read and write
|
||
430000
|
unkown
|
page read and write
|
||
2CD1000
|
heap
|
page read and write
|
||
2AFC000
|
heap
|
page read and write
|
||
2B30000
|
heap
|
page read and write
|
||
5D40000
|
heap
|
page execute and read and write
|
||
4207000
|
heap
|
page read and write
|
||
268C2FB2000
|
trusted library allocation
|
page read and write
|
||
268DB670000
|
heap
|
page execute and read and write
|
||
4E1F000
|
heap
|
page read and write
|
||
2CD1000
|
heap
|
page read and write
|
||
7409000
|
direct allocation
|
page read and write
|
||
75D000
|
unkown
|
page execute and read and write
|
||
ABE000
|
stack
|
page read and write
|
||
2CD1000
|
heap
|
page read and write
|
||
3102000
|
trusted library allocation
|
page read and write
|
||
5DBF000
|
stack
|
page read and write
|
||
1F0000
|
heap
|
page read and write
|
||
B40000
|
direct allocation
|
page read and write
|
||
41A000
|
unkown
|
page readonly
|
||
1423000
|
heap
|
page read and write
|
||
1F4000
|
heap
|
page read and write
|
||
3D1A000
|
heap
|
page read and write
|
||
9F3E000
|
stack
|
page read and write
|
||
679E000
|
stack
|
page read and write
|
||
2B14000
|
heap
|
page read and write
|
||
ADB000
|
stack
|
page read and write
|
||
148B000
|
trusted library allocation
|
page execute and read and write
|
||
41F2000
|
heap
|
page read and write
|
||
6280000
|
trusted library allocation
|
page read and write
|
||
17B0000
|
heap
|
page read and write
|
||
3964000
|
direct allocation
|
page execute and read and write
|
||
140009000
|
unkown
|
page readonly
|
||
6288000
|
trusted library allocation
|
page read and write
|
||
2B1C000
|
heap
|
page read and write
|
||
6430000
|
trusted library allocation
|
page read and write
|
||
18B1000
|
heap
|
page read and write
|
||
CFC000
|
unkown
|
page readonly
|
||
1883000
|
heap
|
page read and write
|
||
18E3000
|
heap
|
page read and write
|
||
7FF848FF3000
|
trusted library allocation
|
page read and write
|
||
268DB5D1000
|
heap
|
page read and write
|
||
177A000
|
heap
|
page read and write
|
||
FB0000
|
direct allocation
|
page read and write
|
||
4971000
|
heap
|
page read and write
|
||
574A000
|
trusted library section
|
page read and write
|
||
28D9D9F0000
|
heap
|
page read and write
|
||
18D5000
|
heap
|
page read and write
|
||
30E9000
|
trusted library allocation
|
page read and write
|
||
268C2E40000
|
heap
|
page read and write
|
||
18F6000
|
heap
|
page read and write
|
||
13B5000
|
heap
|
page read and write
|
||
1C416000
|
direct allocation
|
page execute read
|
||
30DF000
|
trusted library allocation
|
page read and write
|
||
51A0000
|
heap
|
page read and write
|
||
4A53000
|
heap
|
page read and write
|
||
18CD000
|
heap
|
page read and write
|
||
278E000
|
stack
|
page read and write
|
||
7FF848EF8000
|
trusted library allocation
|
page read and write
|
||
18E5000
|
heap
|
page read and write
|
||
F29000
|
unkown
|
page execute and write copy
|
||
323E000
|
trusted library allocation
|
page read and write
|
||
3E9C000
|
trusted library allocation
|
page read and write
|
||
325A000
|
trusted library allocation
|
page read and write
|
||
268C2FB6000
|
trusted library allocation
|
page read and write
|
||
B40000
|
heap
|
page read and write
|
||
16492000
|
heap
|
page read and write
|
||
76AB000
|
heap
|
page read and write
|
||
813000
|
unkown
|
page write copy
|
||
540000
|
unkown
|
page execute and read and write
|
||
31A9000
|
trusted library allocation
|
page read and write
|
||
665000
|
unkown
|
page execute and read and write
|
||
41DF000
|
heap
|
page read and write
|
||
69ED000
|
stack
|
page read and write
|
||
78A4000
|
heap
|
page read and write
|
||
268DC050000
|
heap
|
page read and write
|
||
400000
|
unkown
|
page readonly
|
||
13DF000
|
heap
|
page read and write
|
||
9B0000
|
heap
|
page read and write
|
||
1F0000
|
direct allocation
|
page read and write
|
||
446000
|
remote allocation
|
page execute and read and write
|
||
435000
|
remote allocation
|
page execute and read and write
|
||
49B000
|
unkown
|
page write copy
|
||
7B52000
|
heap
|
page read and write
|
||
18CD000
|
heap
|
page read and write
|
||
2B41000
|
heap
|
page read and write
|
||
7FF848F60000
|
trusted library allocation
|
page read and write
|
||
CB7000
|
unkown
|
page execute and write copy
|
||
680000
|
heap
|
page read and write
|
||
3954000
|
direct allocation
|
page execute and read and write
|
||
F23000
|
unkown
|
page execute and write copy
|
||
CB1000
|
unkown
|
page readonly
|
||
614B4FE000
|
stack
|
page read and write
|
||
2980000
|
trusted library allocation
|
page execute and read and write
|
||
18CD000
|
heap
|
page read and write
|
||
319F000
|
trusted library allocation
|
page read and write
|
||
4971000
|
heap
|
page read and write
|
||
5240000
|
heap
|
page read and write
|
||
536E000
|
heap
|
page read and write
|
||
13E4000
|
heap
|
page read and write
|
||
189C000
|
heap
|
page read and write
|
||
41A7000
|
heap
|
page read and write
|
||
2B35000
|
heap
|
page read and write
|
||
18AD000
|
heap
|
page read and write
|
||
C5FD000
|
stack
|
page read and write
|
||
3015000
|
trusted library allocation
|
page read and write
|
||
22DEDFF0000
|
heap
|
page read and write
|
||
642A000
|
trusted library allocation
|
page read and write
|
||
190000
|
heap
|
page read and write
|
||
2B41000
|
heap
|
page read and write
|
||
7B20000
|
heap
|
page read and write
|
||
DF4000
|
unkown
|
page write copy
|
||
49E000
|
unkown
|
page write copy
|
||
326A000
|
trusted library allocation
|
page read and write
|
||
542E000
|
trusted library allocation
|
page read and write
|
||
1724000
|
heap
|
page read and write
|
||
443000
|
unkown
|
page readonly
|
||
2D70000
|
heap
|
page read and write
|
||
71BC000
|
heap
|
page read and write
|
||
4B4B000
|
heap
|
page read and write
|
||
DCA000
|
heap
|
page read and write
|
||
191D000
|
heap
|
page read and write
|
||
140369000
|
unkown
|
page execute and write copy
|
||
CAC000
|
unkown
|
page readonly
|
||
4F81000
|
trusted library allocation
|
page read and write
|
||
18CD000
|
heap
|
page read and write
|
||
1C2B1000
|
direct allocation
|
page execute read
|
||
D36000
|
unkown
|
page execute and read and write
|
||
30A5000
|
trusted library allocation
|
page read and write
|
||
420B000
|
heap
|
page read and write
|
||
5BC1000
|
heap
|
page read and write
|
||
5D45000
|
heap
|
page read and write
|
||
420000
|
unkown
|
page write copy
|
||
116A000
|
unkown
|
page execute and write copy
|
||
7FF848C9C000
|
trusted library allocation
|
page execute and read and write
|
||
65B0000
|
trusted library allocation
|
page execute and read and write
|
||
2F00000
|
heap
|
page read and write
|
||
401000
|
unkown
|
page execute read
|
||
B40000
|
direct allocation
|
page read and write
|
||
2B2B000
|
heap
|
page read and write
|
||
2046BE02000
|
heap
|
page read and write
|
||
18B1000
|
heap
|
page read and write
|
||
2160000
|
heap
|
page read and write
|
||
755000
|
unkown
|
page execute and read and write
|
||
2D71000
|
heap
|
page read and write
|
||
2FC0000
|
heap
|
page read and write
|
||
408000
|
unkown
|
page readonly
|
||
435C000
|
trusted library allocation
|
page read and write
|
||
556000
|
heap
|
page read and write
|
||
9C000
|
stack
|
page read and write
|
||
5022000
|
heap
|
page read and write
|
||
4B39000
|
heap
|
page read and write
|
||
18D8000
|
heap
|
page read and write
|
||
18C5000
|
heap
|
page read and write
|
||
2B41000
|
heap
|
page read and write
|
||
4FB0000
|
trusted library allocation
|
page read and write
|
||
2B5C000
|
heap
|
page read and write
|
||
268C2FC9000
|
trusted library allocation
|
page read and write
|
||
2B40000
|
heap
|
page read and write
|
||
18BD000
|
heap
|
page read and write
|
||
53FF000
|
stack
|
page read and write
|
||
1100C550000
|
trusted library allocation
|
page read and write
|
||
F27000
|
unkown
|
page execute and write copy
|
||
2AF8000
|
heap
|
page read and write
|
||
18F7000
|
heap
|
page read and write
|
||
FB0000
|
direct allocation
|
page read and write
|
||
5414000
|
trusted library allocation
|
page read and write
|
||
187A000
|
heap
|
page read and write
|
||
41F2000
|
heap
|
page read and write
|
||
29F0000
|
heap
|
page read and write
|
||
413E000
|
heap
|
page read and write
|
||
177E000
|
heap
|
page read and write
|
||
401000
|
unkown
|
page execute read
|
||
268C1470000
|
direct allocation
|
page execute and read and write
|
||
2AF8000
|
heap
|
page read and write
|
||
2B41000
|
heap
|
page read and write
|
||
5CA0000
|
heap
|
page read and write
|
||
30A7000
|
trusted library allocation
|
page read and write
|
||
76A1000
|
heap
|
page read and write
|
||
54CD000
|
stack
|
page read and write
|
||
63DC000
|
heap
|
page read and write
|
||
EE6000
|
unkown
|
page execute and write copy
|
||
76A1000
|
heap
|
page read and write
|
||
2B40000
|
heap
|
page read and write
|
||
31C7000
|
trusted library allocation
|
page read and write
|
||
268C1150000
|
heap
|
page read and write
|
||
13E4000
|
heap
|
page read and write
|
||
4F6B000
|
trusted library allocation
|
page read and write
|
||
E9E000
|
stack
|
page read and write
|
||
CB4000
|
unkown
|
page readonly
|
||
975000
|
heap
|
page read and write
|
||
2CD1000
|
heap
|
page read and write
|
||
F60000
|
unkown
|
page execute and write copy
|
||
550000
|
heap
|
page read and write
|
||
7FF848FB0000
|
trusted library allocation
|
page read and write
|
||
52B8000
|
heap
|
page read and write
|
||
1DD06A30000
|
heap
|
page read and write
|
||
4B17000
|
heap
|
page read and write
|
||
D90000
|
heap
|
page read and write
|
||
1ECDCF13000
|
heap
|
page read and write
|
||
268DC040000
|
heap
|
page read and write
|
||
610000
|
heap
|
page read and write
|
||
44F000
|
unkown
|
page write copy
|
||
EBAE000
|
stack
|
page read and write
|
||
1F0000
|
direct allocation
|
page read and write
|
||
4BA9000
|
heap
|
page read and write
|
||
FB0000
|
direct allocation
|
page read and write
|
||
33DE000
|
stack
|
page read and write
|
||
844000
|
heap
|
page read and write
|
||
2AE6000
|
heap
|
page read and write
|
||
852000
|
heap
|
page read and write
|
||
22DEDE20000
|
heap
|
page read and write
|
||
B40000
|
direct allocation
|
page read and write
|
||
56B000
|
heap
|
page read and write
|
||
3274000
|
trusted library allocation
|
page read and write
|
||
7FF848FF0000
|
trusted library allocation
|
page read and write
|
||
E40000
|
trusted library allocation
|
page read and write
|
||
A3A000
|
stack
|
page read and write
|
||
692000
|
unkown
|
page execute and read and write
|
||
B40000
|
direct allocation
|
page read and write
|
||
18D5000
|
heap
|
page read and write
|
||
430000
|
unkown
|
page write copy
|
||
5030000
|
trusted library allocation
|
page read and write
|
||
13DC000
|
heap
|
page read and write
|
||
FE0000
|
direct allocation
|
page read and write
|
||
B11000
|
unkown
|
page execute and write copy
|
||
6DD000
|
heap
|
page read and write
|
||
1100BE59000
|
heap
|
page read and write
|
||
2B41000
|
heap
|
page read and write
|
||
2B41000
|
heap
|
page read and write
|
||
18EC000
|
heap
|
page read and write
|
||
12C7000
|
trusted library allocation
|
page read and write
|
||
512F000
|
heap
|
page read and write
|
||
1FC1000
|
direct allocation
|
page read and write
|
||
18D8000
|
heap
|
page read and write
|
||
8D0000
|
heap
|
page read and write
|
||
400000
|
unkown
|
page readonly
|
||
CB077FE000
|
stack
|
page read and write
|
||
1470000
|
trusted library allocation
|
page read and write
|
||
5430000
|
heap
|
page read and write
|
||
4E81000
|
heap
|
page read and write
|
||
2B40000
|
heap
|
page read and write
|
||
16352000
|
heap
|
page read and write
|
||
12CC000
|
heap
|
page read and write
|
||
E50000
|
trusted library allocation
|
page read and write
|
||
1F4000
|
heap
|
page read and write
|
||
400000
|
unkown
|
page readonly
|
||
7FF849030000
|
trusted library allocation
|
page read and write
|
||
4AFF000
|
heap
|
page read and write
|
||
18E9000
|
heap
|
page read and write
|
||
31D9000
|
trusted library allocation
|
page read and write
|
||
7469000
|
direct allocation
|
page read and write
|
||
FE0000
|
trusted library allocation
|
page read and write
|
||
B40000
|
direct allocation
|
page read and write
|
||
31F2000
|
trusted library allocation
|
page read and write
|
||
94E000
|
stack
|
page read and write
|
||
306F000
|
trusted library allocation
|
page read and write
|
||
55E000
|
heap
|
page read and write
|
||
B2E000
|
stack
|
page read and write
|
||
420000
|
unkown
|
page write copy
|
||
3094000
|
trusted library allocation
|
page read and write
|
||
41CC000
|
heap
|
page read and write
|
||
268C1535000
|
heap
|
page read and write
|
||
41D6000
|
heap
|
page read and write
|
||
436000
|
unkown
|
page read and write
|
||
18D8000
|
heap
|
page read and write
|
||
EE8000
|
unkown
|
page execute and write copy
|
||
1050000
|
trusted library allocation
|
page execute and read and write
|
||
62BE000
|
heap
|
page read and write
|
||
3100000
|
heap
|
page read and write
|
||
2B3E000
|
heap
|
page read and write
|
||
2B34000
|
heap
|
page read and write
|
||
16701780000
|
trusted library allocation
|
page read and write
|
||
13EA000
|
heap
|
page read and write
|
||
4A54000
|
heap
|
page read and write
|
||
65D000
|
unkown
|
page execute and read and write
|
||
4BAA000
|
heap
|
page read and write
|
||
2B3E000
|
heap
|
page read and write
|
||
76BD000
|
heap
|
page read and write
|
||
F2B000
|
unkown
|
page execute and write copy
|
||
2B23000
|
heap
|
page read and write
|
||
1210000
|
direct allocation
|
page read and write
|
||
10E5000
|
unkown
|
page write copy
|
||
2046BE2B000
|
heap
|
page read and write
|
||
3964000
|
direct allocation
|
page execute and read and write
|
||
4AFF000
|
heap
|
page read and write
|
||
2CD0000
|
heap
|
page read and write
|
||
268C120C000
|
heap
|
page read and write
|
||
6626000
|
heap
|
page read and write
|
||
2B50000
|
heap
|
page read and write
|
||
268C2E51000
|
trusted library allocation
|
page read and write
|
||
2AE9000
|
heap
|
page read and write
|
||
55F0000
|
trusted library allocation
|
page read and write
|
||
55F9000
|
heap
|
page read and write
|
||
18CD000
|
heap
|
page read and write
|
||
F90000
|
direct allocation
|
page read and write
|
||
500000
|
remote allocation
|
page read and write
|
||
500000
|
remote allocation
|
page read and write
|
||
314D000
|
stack
|
page read and write
|
||
557000
|
heap
|
page read and write
|
||
E01000
|
unkown
|
page execute and read and write
|
||
401000
|
unkown
|
page execute read
|
||
4E5A000
|
heap
|
page read and write
|
||
1F5000
|
heap
|
page read and write
|
||
2AE9000
|
heap
|
page read and write
|
||
140000000
|
unkown
|
page readonly
|
||
150E000
|
stack
|
page read and write
|
||
77F000
|
stack
|
page read and write
|
||
140293000
|
unkown
|
page execute and write copy
|
||
323A000
|
trusted library allocation
|
page read and write
|
||
2190000
|
direct allocation
|
page read and write
|
||
31EC000
|
trusted library allocation
|
page read and write
|
||
7970000
|
trusted library allocation
|
page read and write
|
||
1F4000
|
heap
|
page read and write
|
||
E7B000
|
trusted library allocation
|
page execute and read and write
|
||
1301000
|
heap
|
page read and write
|
||
2B26000
|
heap
|
page read and write
|
||
18BC000
|
heap
|
page read and write
|
||
648E000
|
trusted library allocation
|
page read and write
|
||
19C000
|
stack
|
page read and write
|
||
F17000
|
unkown
|
page execute and write copy
|
||
31B8000
|
trusted library allocation
|
page read and write
|
||
2B30000
|
heap
|
page read and write
|
||
CB0A47C000
|
stack
|
page read and write
|
||
63F5000
|
heap
|
page read and write
|
||
65B000
|
unkown
|
page execute and read and write
|
||
1480000
|
trusted library allocation
|
page read and write
|
||
400000
|
unkown
|
page readonly
|
||
430000
|
heap
|
page read and write
|
||
2EFB000
|
stack
|
page read and write
|
||
41F2000
|
heap
|
page read and write
|
||
1364000
|
heap
|
page read and write
|
||
55D000
|
heap
|
page read and write
|
||
DB3000
|
unkown
|
page execute and read and write
|
||
18E3000
|
heap
|
page read and write
|
||
3247000
|
trusted library allocation
|
page read and write
|
||
41D5000
|
heap
|
page read and write
|
||
400000
|
unkown
|
page readonly
|
||
2B3A000
|
heap
|
page read and write
|
||
FE4000
|
heap
|
page read and write
|
||
49C000
|
unkown
|
page readonly
|
||
F1D000
|
unkown
|
page execute and write copy
|
||
10000000
|
unkown
|
page readonly
|
||
191B000
|
heap
|
page read and write
|
||
2C80000
|
heap
|
page read and write
|
||
18D8000
|
heap
|
page read and write
|
||
3279000
|
trusted library allocation
|
page read and write
|
||
65F000
|
unkown
|
page execute and read and write
|
||
ACD000
|
stack
|
page read and write
|
||
F31000
|
heap
|
page read and write
|
||
CFF000
|
unkown
|
page readonly
|
||
423000
|
unkown
|
page read and write
|
||
729F000
|
stack
|
page read and write
|
||
56B000
|
heap
|
page read and write
|
||
400000
|
unkown
|
page readonly
|
||
BCC000
|
stack
|
page read and write
|
||
31F4000
|
trusted library allocation
|
page read and write
|
||
1712000
|
heap
|
page read and write
|
||
400000
|
unkown
|
page readonly
|
||
13B0000
|
heap
|
page read and write
|
||
815000
|
unkown
|
page read and write
|
||
1F0000
|
direct allocation
|
page read and write
|
||
18C5000
|
heap
|
page read and write
|
||
5A60000
|
heap
|
page read and write
|
||
FF5000
|
trusted library allocation
|
page execute and read and write
|
||
BB0000
|
unkown
|
page readonly
|
||
189C000
|
heap
|
page read and write
|
||
1700000
|
heap
|
page read and write
|
||
F50000
|
unkown
|
page execute and write copy
|
||
18D8000
|
heap
|
page read and write
|
||
F19000
|
unkown
|
page execute and write copy
|
||
3AA0000
|
remote allocation
|
page read and write
|
||
772000
|
unkown
|
page execute and read and write
|
||
3100000
|
unkown
|
page readonly
|
||
18D5000
|
heap
|
page read and write
|
||
323C000
|
trusted library allocation
|
page read and write
|
||
41D6000
|
heap
|
page read and write
|
||
490000
|
heap
|
page read and write
|
||
7FF848F80000
|
trusted library allocation
|
page read and write
|
||
75F8000
|
heap
|
page read and write
|
||
400000
|
unkown
|
page readonly
|
||
2B41000
|
heap
|
page read and write
|
||
40C9000
|
heap
|
page read and write
|
||
43A000
|
unkown
|
page readonly
|
||
657000
|
unkown
|
page execute and read and write
|
||
10E4000
|
unkown
|
page execute and write copy
|
||
1341000
|
heap
|
page read and write
|
||
401000
|
unkown
|
page execute and write copy
|
||
18CD000
|
heap
|
page read and write
|
||
AC7000
|
heap
|
page read and write
|
||
12DE000
|
heap
|
page read and write
|
||
2046C602000
|
trusted library allocation
|
page read and write
|
||
1621000
|
heap
|
page read and write
|
||
17C8000
|
heap
|
page read and write
|
||
3A4C7FE000
|
unkown
|
page readonly
|
||
2B12000
|
heap
|
page read and write
|
||
31DC000
|
trusted library allocation
|
page read and write
|
||
10001000
|
unkown
|
page execute read
|
||
18E2000
|
heap
|
page read and write
|
||
4971000
|
heap
|
page read and write
|
||
18B8000
|
heap
|
page read and write
|
||
13DC000
|
heap
|
page read and write
|
||
40C9000
|
heap
|
page read and write
|
||
68AC000
|
stack
|
page read and write
|
||
18BC000
|
heap
|
page read and write
|
||
4D71000
|
heap
|
page read and write
|
||
12D4000
|
heap
|
page read and write
|
||
67F0000
|
heap
|
page read and write
|
||
2B26000
|
heap
|
page read and write
|
||
16701790000
|
remote allocation
|
page read and write
|
||
22B0000
|
direct allocation
|
page read and write
|
||
29F3000
|
heap
|
page read and write
|
||
2B23000
|
heap
|
page read and write
|
||
2B05000
|
heap
|
page read and write
|
||
96877E000
|
stack
|
page read and write
|
||
1169000
|
unkown
|
page execute and read and write
|
||
5F3F000
|
heap
|
page read and write
|
||
552B000
|
heap
|
page read and write
|
||
2B4B000
|
heap
|
page read and write
|
||
718000
|
unkown
|
page execute and read and write
|
||
FC0000
|
trusted library allocation
|
page read and write
|
||
268C1229000
|
heap
|
page read and write
|
||
18B8000
|
heap
|
page read and write
|
||
4F34000
|
heap
|
page read and write
|
||
31A5000
|
trusted library allocation
|
page read and write
|
||
2AF3000
|
heap
|
page read and write
|
||
840000
|
heap
|
page read and write
|
||
18FD000
|
heap
|
page read and write
|
||
41F2000
|
heap
|
page read and write
|
||
FEA000
|
trusted library allocation
|
page execute and read and write
|
||
18D8000
|
heap
|
page read and write
|
||
57C1000
|
heap
|
page read and write
|
||
D05000
|
heap
|
page read and write
|
||
2B14000
|
heap
|
page read and write
|
||
428D000
|
trusted library allocation
|
page read and write
|
||
5740000
|
heap
|
page read and write
|
||
13DA000
|
heap
|
page read and write
|
||
32CF000
|
stack
|
page read and write
|
||
28D9DD45000
|
heap
|
page read and write
|
||
422000
|
unkown
|
page write copy
|
||
78A1000
|
heap
|
page read and write
|
||
B40000
|
direct allocation
|
page read and write
|
||
18D8000
|
heap
|
page read and write
|
||
401000
|
unkown
|
page execute read
|
||
6700000
|
trusted library allocation
|
page read and write
|
||
2890000
|
heap
|
page read and write
|
||
2B42000
|
heap
|
page read and write
|
||
28D9D9C0000
|
heap
|
page read and write
|
||
18D5000
|
heap
|
page read and write
|
||
28D9DD40000
|
heap
|
page read and write
|
||
A07E000
|
stack
|
page read and write
|
||
CA2000
|
unkown
|
page execute and read and write
|
||
437000
|
remote allocation
|
page execute and read and write
|
||
D34000
|
unkown
|
page readonly
|
||
68E000
|
unkown
|
page execute and read and write
|
||
55C3000
|
heap
|
page read and write
|
||
140529000
|
unkown
|
page execute and write copy
|
||
B70000
|
heap
|
page read and write
|
||
18C5000
|
heap
|
page read and write
|
||
1210000
|
heap
|
page read and write
|
||
64F000
|
unkown
|
page execute and read and write
|
||
ECAF000
|
stack
|
page read and write
|
||
4A9000
|
unkown
|
page readonly
|
||
325F000
|
stack
|
page read and write
|
||
400000
|
remote allocation
|
page execute and read and write
|
||
14026F000
|
unkown
|
page execute and write copy
|
||
B40000
|
direct allocation
|
page read and write
|
||
2046BE28000
|
heap
|
page read and write
|
||
1C4FA000
|
direct allocation
|
page readonly
|
||
41E7000
|
heap
|
page read and write
|
||
1100000
|
heap
|
page read and write
|
||
4D7F000
|
heap
|
page read and write
|
||
18D5000
|
heap
|
page read and write
|
||
419E000
|
heap
|
page read and write
|
||
2B2B000
|
heap
|
page read and write
|
||
1100BDF0000
|
heap
|
page read and write
|
||
2046BE40000
|
heap
|
page read and write
|
||
40F3000
|
heap
|
page read and write
|
||
3169000
|
trusted library allocation
|
page read and write
|
||
3A4BF1B000
|
stack
|
page read and write
|
||
645A000
|
heap
|
page read and write
|
||
140001000
|
unkown
|
page execute and write copy
|
||
3106000
|
unkown
|
page write copy
|
||
7FF848BF0000
|
trusted library allocation
|
page read and write
|
||
401000
|
unkown
|
page execute read
|
||
1137000
|
heap
|
page read and write
|
||
64D000
|
unkown
|
page execute and read and write
|
||
34C0000
|
heap
|
page read and write
|
||
35CD000
|
stack
|
page read and write
|
||
3079000
|
trusted library allocation
|
page read and write
|
||
4500000
|
trusted library allocation
|
page read and write
|
||
360E000
|
stack
|
page read and write
|
||
B40000
|
direct allocation
|
page read and write
|
||
41E7000
|
heap
|
page read and write
|
||
1ECDCC02000
|
unkown
|
page read and write
|
||
18CD000
|
heap
|
page read and write
|
||
3178000
|
trusted library allocation
|
page read and write
|
||
401000
|
unkown
|
page execute read
|
||
9B000
|
stack
|
page read and write
|
||
F3B000
|
heap
|
page read and write
|
||
3390000
|
heap
|
page read and write
|
||
3A63000
|
trusted library allocation
|
page read and write
|
||
268C1545000
|
heap
|
page read and write
|
||
4C0000
|
heap
|
page read and write
|
||
1210000
|
direct allocation
|
page read and write
|
||
4F6F000
|
heap
|
page read and write
|
||
1F0000
|
direct allocation
|
page read and write
|
||
18B1000
|
heap
|
page read and write
|
||
4971000
|
heap
|
page read and write
|
||
422000
|
unkown
|
page write copy
|
||
18E6000
|
heap
|
page read and write
|
||
76A4000
|
heap
|
page read and write
|
||
E10000
|
heap
|
page read and write
|
||
75C5000
|
heap
|
page read and write
|
||
5660000
|
trusted library section
|
page readonly
|
||
18C5000
|
heap
|
page read and write
|
||
2BD0000
|
trusted library allocation
|
page read and write
|
||
140A0B000
|
unkown
|
page read and write
|
||
2180000
|
heap
|
page read and write
|
||
401000
|
unkown
|
page execute read
|
||
49DC000
|
heap
|
page read and write
|
||
1100BE25000
|
heap
|
page read and write
|
||
2B41000
|
heap
|
page read and write
|
||
7970000
|
trusted library allocation
|
page read and write
|
||
78A1000
|
heap
|
page read and write
|
||
499000
|
unkown
|
page read and write
|
||
5A0000
|
heap
|
page read and write
|
||
305F000
|
trusted library allocation
|
page read and write
|
||
1750000
|
direct allocation
|
page execute and read and write
|
||
F21000
|
unkown
|
page execute and write copy
|
||
2F69000
|
trusted library allocation
|
page read and write
|
||
7FF8490F0000
|
trusted library allocation
|
page read and write
|
||
1ECDCC3B000
|
heap
|
page read and write
|
||
550000
|
heap
|
page read and write
|
||
7FF848E6D000
|
trusted library allocation
|
page read and write
|
||
3970000
|
direct allocation
|
page execute and read and write
|
||
7424000
|
direct allocation
|
page read and write
|
||
B3E000
|
unkown
|
page execute and read and write
|
||
7FF848E94000
|
trusted library allocation
|
page read and write
|
||
1230000
|
trusted library allocation
|
page read and write
|
||
67AC000
|
stack
|
page read and write
|
||
627E000
|
stack
|
page read and write
|
||
12E0000
|
trusted library allocation
|
page read and write
|
||
FB0000
|
trusted library allocation
|
page read and write
|
||
1F4000
|
heap
|
page read and write
|
||
22DEE010000
|
heap
|
page read and write
|
||
3158000
|
trusted library allocation
|
page read and write
|
||
18B8000
|
heap
|
page read and write
|
||
F8E000
|
stack
|
page read and write
|
||
2AED000
|
heap
|
page read and write
|
||
64F0000
|
trusted library allocation
|
page read and write
|
||
528000
|
remote allocation
|
page execute and read and write
|
||
18DD000
|
heap
|
page read and write
|
||
1270000
|
heap
|
page read and write
|
||
C5BD000
|
stack
|
page read and write
|
||
A1E000
|
unkown
|
page readonly
|
||
5480000
|
trusted library allocation
|
page read and write
|
||
7EF000
|
stack
|
page read and write
|
||
18C5000
|
heap
|
page read and write
|
||
2B10000
|
heap
|
page read and write
|
||
40F3000
|
heap
|
page read and write
|
||
13EA000
|
heap
|
page read and write
|
||
1F4000
|
heap
|
page read and write
|
||
8FEF000
|
stack
|
page read and write
|
||
31EA000
|
trusted library allocation
|
page read and write
|
||
2AE6000
|
heap
|
page read and write
|
||
2A00000
|
trusted library allocation
|
page read and write
|
||
112BD000
|
stack
|
page read and write
|
||
78A0000
|
heap
|
page read and write
|
||
310A000
|
heap
|
page read and write
|
||
2B2E000
|
heap
|
page read and write
|
||
2F11000
|
trusted library allocation
|
page read and write
|
||
1DD06A10000
|
heap
|
page read and write
|
||
41F2000
|
heap
|
page read and write
|
||
2AEE000
|
unkown
|
page readonly
|
||
4B9000
|
heap
|
page read and write
|
||
126E000
|
heap
|
page read and write
|
||
651000
|
unkown
|
page execute and read and write
|
||
541E000
|
trusted library allocation
|
page read and write
|
||
48E000
|
stack
|
page read and write
|
||
F17000
|
unkown
|
page execute and write copy
|
||
260F000
|
stack
|
page read and write
|
||
18D8000
|
heap
|
page read and write
|
||
18B8000
|
heap
|
page read and write
|
||
18B0000
|
heap
|
page read and write
|
||
41CE000
|
heap
|
page read and write
|
||
73AF000
|
stack
|
page read and write
|
||
E01000
|
unkown
|
page execute and write copy
|
||
362F000
|
stack
|
page read and write
|
||
7FF4FC8A0000
|
trusted library allocation
|
page execute and read and write
|
||
4A54000
|
heap
|
page read and write
|
||
E48000
|
unkown
|
page execute and read and write
|
||
268C3011000
|
trusted library allocation
|
page read and write
|
||
DA4000
|
unkown
|
page readonly
|
||
268C11F0000
|
trusted library allocation
|
page read and write
|
||
421000
|
unkown
|
page execute read
|
||
3A4C27E000
|
stack
|
page read and write
|
||
18CD000
|
heap
|
page read and write
|
||
7A2C000
|
heap
|
page read and write
|
||
18B8000
|
heap
|
page read and write
|
||
2A10000
|
heap
|
page execute and read and write
|
||
DE7000
|
unkown
|
page execute and read and write
|
||
7FF848D8D000
|
trusted library allocation
|
page execute and read and write
|
||
9A000
|
stack
|
page read and write
|
||
18C5000
|
heap
|
page read and write
|
||
135F000
|
stack
|
page read and write
|
||
5450000
|
trusted library allocation
|
page read and write
|
||
5230000
|
heap
|
page execute and read and write
|
||
3847AD000
|
stack
|
page read and write
|
||
AC7000
|
heap
|
page read and write
|
||
18B8000
|
heap
|
page read and write
|
||
7B30000
|
heap
|
page read and write
|
||
22E0000
|
heap
|
page read and write
|
||
140F62000
|
unkown
|
page execute read
|
||
162A000
|
heap
|
page read and write
|
||
18C5000
|
heap
|
page read and write
|
||
7FF848E67000
|
trusted library allocation
|
page read and write
|
||
1476000
|
trusted library allocation
|
page execute and read and write
|
||
22CF000
|
stack
|
page read and write
|
||
2B3E000
|
heap
|
page read and write
|
||
37A0000
|
heap
|
page read and write
|
||
10E5000
|
unkown
|
page write copy
|
||
4B17000
|
heap
|
page read and write
|
||
2B40000
|
heap
|
page read and write
|
||
3289000
|
trusted library allocation
|
page read and write
|
||
716E000
|
stack
|
page read and write
|
||
1D0000
|
heap
|
page read and write
|
||
1590000
|
heap
|
page read and write
|
||
4B0000
|
heap
|
page read and write
|
||
1ECDCF02000
|
heap
|
page read and write
|
||
CE0000
|
unkown
|
page readonly
|
||
7FF848E98000
|
trusted library allocation
|
page read and write
|
||
10E5000
|
heap
|
page read and write
|
||
1100BE44000
|
heap
|
page read and write
|
||
18C5000
|
heap
|
page read and write
|
||
5B70000
|
trusted library allocation
|
page read and write
|
||
2B41000
|
heap
|
page read and write
|
||
318D000
|
stack
|
page read and write
|
||
76A3000
|
heap
|
page read and write
|
||
19C000
|
stack
|
page read and write
|
||
432000
|
remote allocation
|
page execute and read and write
|
||
617E000
|
stack
|
page read and write
|
||
566000
|
unkown
|
page execute and read and write
|
||
646B000
|
trusted library allocation
|
page read and write
|
||
18CD000
|
heap
|
page read and write
|
||
D38000
|
unkown
|
page readonly
|
||
11F4000
|
heap
|
page read and write
|
||
F14000
|
unkown
|
page execute and read and write
|
||
1010000
|
trusted library allocation
|
page read and write
|
||
18D5000
|
heap
|
page read and write
|
||
18B8000
|
heap
|
page read and write
|
||
31A7000
|
trusted library allocation
|
page read and write
|
||
18D5000
|
heap
|
page read and write
|
||
B40000
|
direct allocation
|
page read and write
|
||
2B25000
|
heap
|
page read and write
|
||
1803000
|
heap
|
page read and write
|
||
18CD000
|
heap
|
page read and write
|
||
D3A000
|
unkown
|
page read and write
|
||
6330000
|
trusted library allocation
|
page execute and read and write
|
||
219C000
|
direct allocation
|
page read and write
|
||
2046BE13000
|
heap
|
page read and write
|
||
189C000
|
heap
|
page read and write
|
||
2B40000
|
heap
|
page read and write
|
||
520000
|
heap
|
page read and write
|
||
2B41000
|
heap
|
page read and write
|
||
A03E000
|
stack
|
page read and write
|
||
661000
|
unkown
|
page execute and read and write
|
||
7970000
|
trusted library allocation
|
page read and write
|
||
2B00000
|
heap
|
page read and write
|
||
32D0000
|
heap
|
page read and write
|
||
14000B000
|
unkown
|
page read and write
|
||
137FD000
|
stack
|
page read and write
|
||
17EC000
|
heap
|
page read and write
|
||
8B0000
|
heap
|
page read and write
|
||
18D5000
|
heap
|
page read and write
|
||
10B0000
|
trusted library allocation
|
page execute and read and write
|
||
7FF848D90000
|
trusted library allocation
|
page read and write
|
||
2AF8000
|
heap
|
page read and write
|
||
6D1000
|
unkown
|
page execute and read and write
|
||
41CE000
|
heap
|
page read and write
|
||
83C000
|
heap
|
page read and write
|
||
10002000
|
unkown
|
page readonly
|
||
2B40000
|
heap
|
page read and write
|
||
10B0000
|
heap
|
page read and write
|
||
5475000
|
trusted library allocation
|
page read and write
|
||
18C5000
|
heap
|
page read and write
|
||
2B25000
|
heap
|
page read and write
|
||
307B000
|
trusted library allocation
|
page read and write
|
||
18D5000
|
heap
|
page read and write
|
||
D1CDFBD000
|
stack
|
page read and write
|
||
53D0000
|
trusted library section
|
page read and write
|
||
6A581000
|
unkown
|
page read and write
|
||
3A10000
|
heap
|
page read and write
|
||
401000
|
unkown
|
page execute read
|
||
4FEE000
|
trusted library allocation
|
page read and write
|
||
2B41000
|
heap
|
page read and write
|
||
5CEA000
|
heap
|
page read and write
|
||
3188000
|
trusted library allocation
|
page read and write
|
||
13DA000
|
heap
|
page read and write
|
||
1333000
|
heap
|
page read and write
|
||
49DC000
|
heap
|
page read and write
|
||
7FF849020000
|
trusted library allocation
|
page read and write
|
||
DF4000
|
unkown
|
page read and write
|
||
5DE000
|
stack
|
page read and write
|
||
18AB000
|
heap
|
page read and write
|
||
2B3A000
|
heap
|
page read and write
|
||
5745000
|
heap
|
page read and write
|
||
187F000
|
heap
|
page read and write
|
||
174F0350000
|
heap
|
page read and write
|
||
268C14C0000
|
trusted library allocation
|
page read and write
|
||
4D0000
|
heap
|
page read and write
|
||
111E000
|
heap
|
page read and write
|
||
93A000
|
stack
|
page read and write
|
||
2185000
|
heap
|
page read and write
|
||
19C000
|
stack
|
page read and write
|
||
384A7F000
|
stack
|
page read and write
|
||
2B41000
|
heap
|
page read and write
|
||
ED0000
|
heap
|
page read and write
|
||
653000
|
unkown
|
page execute and read and write
|
||
630000
|
direct allocation
|
page execute and read and write
|
||
1C4FF000
|
direct allocation
|
page readonly
|
||
8EA9FD000
|
stack
|
page read and write
|
||
401000
|
unkown
|
page execute read
|
||
9A4000
|
heap
|
page read and write
|
||
1421000
|
heap
|
page read and write
|
||
7FF848EA0000
|
trusted library allocation
|
page read and write
|
||
980000
|
unkown
|
page read and write
|
||
18C5000
|
heap
|
page read and write
|
||
1F0000
|
heap
|
page read and write
|
||
4CCD000
|
stack
|
page read and write
|
||
7FF848F74000
|
trusted library allocation
|
page read and write
|
||
310E000
|
heap
|
page read and write
|
||
9C000
|
stack
|
page read and write
|
||
41F0000
|
heap
|
page read and write
|
||
400000
|
unkown
|
page readonly
|
||
41E7000
|
heap
|
page read and write
|
||
3B10000
|
heap
|
page read and write
|
||
7732000
|
trusted library allocation
|
page read and write
|
||
31C0000
|
heap
|
page read and write
|
||
CB7000
|
unkown
|
page execute and read and write
|
||
2B19000
|
heap
|
page read and write
|
||
28F0000
|
direct allocation
|
page read and write
|
||
108B000
|
heap
|
page read and write
|
||
6476000
|
trusted library allocation
|
page read and write
|
||
41D6000
|
heap
|
page read and write
|
||
50C2000
|
heap
|
page read and write
|
||
E66000
|
trusted library allocation
|
page execute and read and write
|
||
6482000
|
trusted library allocation
|
page read and write
|
||
2B42000
|
heap
|
page read and write
|
||
E90000
|
unkown
|
page execute and read and write
|
||
9A0000
|
heap
|
page read and write
|
||
75A1000
|
heap
|
page read and write
|
||
1F0000
|
direct allocation
|
page read and write
|
||
318A000
|
trusted library allocation
|
page read and write
|
||
CB07BFB000
|
stack
|
page read and write
|
||
6A57E000
|
unkown
|
page read and write
|
||
2046BF02000
|
heap
|
page read and write
|
||
F54000
|
unkown
|
page execute and read and write
|
||
F1F000
|
unkown
|
page execute and write copy
|
||
78A1000
|
heap
|
page read and write
|
||
2EBF000
|
stack
|
page read and write
|
||
13E4000
|
heap
|
page read and write
|
||
FD2000
|
trusted library allocation
|
page read and write
|
||
2AF8000
|
heap
|
page read and write
|
||
41E0000
|
heap
|
page read and write
|
||
75A1000
|
heap
|
page read and write
|
||
2B2B000
|
heap
|
page read and write
|
||
3113000
|
trusted library allocation
|
page read and write
|
||
FE6000
|
trusted library allocation
|
page execute and read and write
|
||
5820000
|
heap
|
page read and write
|
||
140000000
|
unkown
|
page readonly
|
||
2B3E000
|
heap
|
page read and write
|
||
3226000
|
trusted library allocation
|
page read and write
|
||
5690000
|
trusted library section
|
page read and write
|
||
18B8000
|
heap
|
page read and write
|
||
41F2000
|
heap
|
page read and write
|
||
400000
|
unkown
|
page readonly
|
||
7FF848F0F000
|
trusted library allocation
|
page read and write
|
||
23B0000
|
direct allocation
|
page read and write
|
||
600000
|
heap
|
page read and write
|
||
34D9000
|
heap
|
page execute and read and write
|
||
41B000
|
unkown
|
page readonly
|
||
6350000
|
trusted library allocation
|
page execute and read and write
|
||
830000
|
heap
|
page read and write
|
||
546F000
|
trusted library allocation
|
page read and write
|
||
E5D000
|
trusted library allocation
|
page execute and read and write
|
||
63F0000
|
heap
|
page read and write
|
||
13DF000
|
heap
|
page read and write
|
||
18CD000
|
heap
|
page read and write
|
||
189C000
|
heap
|
page read and write
|
||
882000
|
heap
|
page read and write
|
||
5148000
|
heap
|
page read and write
|
||
18CD000
|
heap
|
page read and write
|
||
140CE1000
|
unkown
|
page read and write
|
||
2B30000
|
heap
|
page read and write
|
||
2B40000
|
heap
|
page read and write
|
||
EDC000
|
unkown
|
page execute and write copy
|
||
2D4C000
|
trusted library allocation
|
page read and write
|
||
2B0D000
|
heap
|
page read and write
|
||
18D8000
|
heap
|
page read and write
|
||
2B50000
|
heap
|
page read and write
|
||
F90000
|
direct allocation
|
page read and write
|
||
174F0140000
|
heap
|
page read and write
|
||
2ED1000
|
unkown
|
page readonly
|
||
5F6C000
|
heap
|
page read and write
|
||
2B3E000
|
heap
|
page read and write
|
||
115F000
|
heap
|
page read and write
|
||
2B40000
|
heap
|
page read and write
|
||
75A1000
|
heap
|
page read and write
|
||
69F5000
|
trusted library allocation
|
page read and write
|
||
30FE000
|
trusted library allocation
|
page read and write
|
||
401000
|
unkown
|
page execute and write copy
|
||
41F7000
|
heap
|
page read and write
|
||
2B00000
|
heap
|
page read and write
|
||
74F6000
|
heap
|
page read and write
|
||
3AB3000
|
heap
|
page read and write
|
||
554000
|
heap
|
page read and write
|
||
7FF848ED0000
|
trusted library allocation
|
page read and write
|
||
18B0000
|
heap
|
page read and write
|
||
2CF2000
|
trusted library allocation
|
page read and write
|
||
10F4000
|
heap
|
page read and write
|
||
D1CE27F000
|
stack
|
page read and write
|
||
2B19000
|
heap
|
page read and write
|
||
400000
|
unkown
|
page readonly
|
||
11F0000
|
heap
|
page read and write
|
||
1DD06BC0000
|
heap
|
page read and write
|
||
3173000
|
trusted library allocation
|
page read and write
|
||
29D0000
|
heap
|
page read and write
|
||
1100BE00000
|
heap
|
page read and write
|
||
1510000
|
heap
|
page read and write
|
||
18C5000
|
heap
|
page read and write
|
||
13E0000
|
heap
|
page read and write
|
||
3A4C3FE000
|
unkown
|
page readonly
|
||
500000
|
remote allocation
|
page read and write
|
||
7FF848EFB000
|
trusted library allocation
|
page read and write
|
||
18C5000
|
heap
|
page read and write
|
||
16701000000
|
heap
|
page read and write
|
||
2B25000
|
heap
|
page read and write
|
||
5700000
|
heap
|
page read and write
|
||
3268000
|
trusted library allocation
|
page read and write
|
||
18D5000
|
heap
|
page read and write
|
||
18CD000
|
heap
|
page read and write
|
||
7FF848FE0000
|
trusted library allocation
|
page read and write
|
||
2B3E000
|
heap
|
page read and write
|
||
268C2CFB000
|
heap
|
page read and write
|
||
1F0000
|
heap
|
page read and write
|
||
18C5000
|
heap
|
page read and write
|
||
30F8000
|
trusted library allocation
|
page read and write
|
||
140CAA000
|
unkown
|
page readonly
|
||
2B35000
|
heap
|
page read and write
|
||
114D000
|
heap
|
page read and write
|
||
187F000
|
heap
|
page read and write
|
||
69E000
|
heap
|
page read and write
|
||
107E000
|
unkown
|
page execute and read and write
|
||
268D2E7E000
|
trusted library allocation
|
page read and write
|
||
422000
|
unkown
|
page write copy
|
||
21C0000
|
heap
|
page read and write
|
||
F90000
|
direct allocation
|
page read and write
|
||
9A4000
|
heap
|
page read and write
|
||
3229000
|
trusted library allocation
|
page read and write
|
||
2B41000
|
heap
|
page read and write
|
||
14C0000
|
heap
|
page execute and read and write
|
||
18AB000
|
heap
|
page read and write
|
||
55D000
|
heap
|
page read and write
|
||
41E0000
|
heap
|
page read and write
|
||
4FC0000
|
trusted library allocation
|
page read and write
|
||
76A1000
|
heap
|
page read and write
|
||
39BF000
|
stack
|
page read and write
|
||
18CD000
|
heap
|
page read and write
|
||
FE0000
|
direct allocation
|
page read and write
|
||
3207000
|
trusted library allocation
|
page read and write
|
||
2FC0000
|
heap
|
page read and write
|
||
13DA000
|
heap
|
page read and write
|
||
11F4000
|
heap
|
page read and write
|
||
3020000
|
heap
|
page read and write
|
||
16701102000
|
heap
|
page read and write
|
||
2F00000
|
heap
|
page read and write
|
||
775D000
|
heap
|
page read and write
|
||
40B000
|
unkown
|
page read and write
|
||
28A8000
|
trusted library allocation
|
page read and write
|
||
13E000
|
stack
|
page read and write
|
||
E50000
|
heap
|
page read and write
|
||
28D0000
|
heap
|
page read and write
|
||
2B25000
|
heap
|
page read and write
|
||
1330000
|
heap
|
page read and write
|
||
E10000
|
heap
|
page read and write
|
||
18AD000
|
heap
|
page read and write
|
||
268C126A000
|
heap
|
page read and write
|
||
7FF8490D0000
|
trusted library allocation
|
page read and write
|
||
7FF848F30000
|
trusted library allocation
|
page read and write
|
||
12DA000
|
heap
|
page read and write
|
||
1615000
|
heap
|
page read and write
|
||
18E6000
|
heap
|
page read and write
|
||
64B000
|
unkown
|
page execute and read and write
|
||
41FF000
|
heap
|
page read and write
|
||
30AF000
|
trusted library allocation
|
page read and write
|
||
3A4C37E000
|
stack
|
page read and write
|
||
3A3F000
|
heap
|
page read and write
|
||
6457000
|
heap
|
page read and write
|
||
41DF000
|
heap
|
page read and write
|
||
40C000
|
unkown
|
page readonly
|
||
3A11000
|
heap
|
page read and write
|
||
1243000
|
trusted library allocation
|
page execute and read and write
|
||
32B8000
|
trusted library allocation
|
page read and write
|
||
140537000
|
unkown
|
page execute and write copy
|
||
75A1000
|
heap
|
page read and write
|
||
74EF000
|
direct allocation
|
page read and write
|
||
18E2000
|
heap
|
page read and write
|
||
794000
|
heap
|
page read and write
|
||
18D5000
|
heap
|
page read and write
|
||
53D000
|
heap
|
page read and write
|
||
540000
|
unkown
|
page execute and read and write
|
||
7FF849049000
|
trusted library allocation
|
page read and write
|
||
18F8000
|
heap
|
page read and write
|
||
18F2000
|
heap
|
page read and write
|
||
4A54000
|
heap
|
page read and write
|
||
FB0000
|
direct allocation
|
page read and write
|
||
144F000
|
stack
|
page read and write
|
||
5400000
|
trusted library allocation
|
page read and write
|
||
614B77E000
|
unkown
|
page readonly
|
||
4F8D000
|
trusted library allocation
|
page read and write
|
||
32D0000
|
trusted library allocation
|
page read and write
|
||
450000
|
heap
|
page read and write
|
||
1F4000
|
heap
|
page read and write
|
||
41F2000
|
heap
|
page read and write
|
||
76A1000
|
heap
|
page read and write
|
||
28F0000
|
direct allocation
|
page read and write
|
||
16701028000
|
heap
|
page read and write
|
||
75F8000
|
heap
|
page read and write
|
||
7FF848EB0000
|
trusted library allocation
|
page read and write
|
||
9C000
|
stack
|
page read and write
|
||
2B23000
|
heap
|
page read and write
|
||
310B000
|
trusted library allocation
|
page read and write
|
||
2C9F000
|
stack
|
page read and write
|
||
320B000
|
trusted library allocation
|
page read and write
|
||
1100C602000
|
trusted library allocation
|
page read and write
|
||
2B35000
|
heap
|
page read and write
|
||
187F000
|
heap
|
page read and write
|
||
6B9000
|
unkown
|
page execute and read and write
|
||
528E000
|
stack
|
page read and write
|
||
52A3000
|
heap
|
page execute and read and write
|
||
3073000
|
trusted library allocation
|
page read and write
|
||
268C2FFD000
|
trusted library allocation
|
page read and write
|
||
54D0000
|
trusted library allocation
|
page read and write
|
||
3100000
|
direct allocation
|
page read and write
|
||
40F9000
|
heap
|
page read and write
|
||
2D71000
|
heap
|
page read and write
|
||
30C4000
|
trusted library allocation
|
page read and write
|
||
76A9000
|
heap
|
page read and write
|
||
2B25000
|
heap
|
page read and write
|
||
28F0000
|
direct allocation
|
page read and write
|
||
1306000
|
heap
|
page read and write
|
||
40C000
|
unkown
|
page read and write
|
||
7FF848D82000
|
trusted library allocation
|
page read and write
|
||
F21000
|
unkown
|
page execute and write copy
|
||
3209000
|
trusted library allocation
|
page read and write
|
||
21C0000
|
direct allocation
|
page read and write
|
||
1060000
|
heap
|
page read and write
|
||
2D71000
|
heap
|
page read and write
|
||
21C2000
|
direct allocation
|
page read and write
|
||
147A000
|
trusted library allocation
|
page execute and read and write
|
||
2350000
|
heap
|
page read and write
|
||
2B41000
|
heap
|
page read and write
|
||
970000
|
heap
|
page read and write
|
||
28F0000
|
direct allocation
|
page read and write
|
||
40EB000
|
heap
|
page read and write
|
||
3096000
|
trusted library allocation
|
page read and write
|
||
64BE000
|
trusted library allocation
|
page read and write
|
||
268C302B000
|
trusted library allocation
|
page read and write
|
||
11F4000
|
heap
|
page read and write
|
||
6492000
|
heap
|
page read and write
|
||
AC0000
|
heap
|
page read and write
|
||
73E0000
|
direct allocation
|
page read and write
|
||
5032000
|
trusted library allocation
|
page read and write
|
||
557000
|
heap
|
page read and write
|
||
2CD1000
|
heap
|
page read and write
|
||
18D5000
|
heap
|
page read and write
|
||
1020000
|
heap
|
page read and write
|
||
2B1A000
|
heap
|
page read and write
|
||
2B41000
|
heap
|
page read and write
|
||
EE06EDD000
|
stack
|
page read and write
|
||
1100000
|
heap
|
page read and write
|
||
140CE7000
|
unkown
|
page execute read
|
||
96887E000
|
stack
|
page read and write
|
||
3920000
|
direct allocation
|
page execute and read and write
|
||
40C000
|
unkown
|
page readonly
|
||
1240000
|
trusted library allocation
|
page read and write
|
||
1100BE33000
|
heap
|
page read and write
|
||
2AE9000
|
heap
|
page read and write
|
||
75A1000
|
heap
|
page read and write
|
||
133E000
|
stack
|
page read and write
|
||
18AE000
|
heap
|
page read and write
|
||
5431000
|
trusted library allocation
|
page read and write
|
||
2B25000
|
heap
|
page read and write
|
||
FC4000
|
trusted library allocation
|
page read and write
|
||
2046C550000
|
trusted library allocation
|
page read and write
|
||
12D0000
|
trusted library allocation
|
page read and write
|
||
B60000
|
direct allocation
|
page read and write
|
||
420000
|
unkown
|
page readonly
|
||
655000
|
unkown
|
page execute and read and write
|
||
40EA000
|
heap
|
page read and write
|
||
5460000
|
trusted library allocation
|
page read and write
|
||
2CE0000
|
heap
|
page read and write
|
||
30AB000
|
trusted library allocation
|
page read and write
|
||
6530000
|
trusted library allocation
|
page read and write
|
||
2B42000
|
heap
|
page read and write
|
||
1C2B0000
|
direct allocation
|
page execute and read and write
|
||
B60000
|
direct allocation
|
page read and write
|
||
4076000
|
heap
|
page read and write
|
||
1670102B000
|
heap
|
page read and write
|
||
2B42000
|
heap
|
page read and write
|
||
268C2FF9000
|
trusted library allocation
|
page read and write
|
||
18E5000
|
heap
|
page read and write
|
||
D2B000
|
unkown
|
page read and write
|
||
2B42000
|
heap
|
page read and write
|
||
2B14000
|
heap
|
page read and write
|
||
2B41000
|
heap
|
page read and write
|
||
9CD000
|
unkown
|
page execute and read and write
|
||
F90000
|
direct allocation
|
page read and write
|
||
18C5000
|
heap
|
page read and write
|
||
18D5000
|
heap
|
page read and write
|
||
7FF848EC0000
|
trusted library allocation
|
page read and write
|
||
2AE6000
|
heap
|
page read and write
|
||
566000
|
unkown
|
page execute and read and write
|
||
268DB571000
|
heap
|
page read and write
|
||
968979000
|
stack
|
page read and write
|
||
38BE000
|
stack
|
page read and write
|
||
6425000
|
trusted library allocation
|
page read and write
|
||
DB4000
|
unkown
|
page write copy
|
||
41CE000
|
heap
|
page read and write
|
||
4B6000
|
heap
|
page read and write
|
||
5AB000
|
stack
|
page read and write
|
||
6C1E000
|
stack
|
page read and write
|
||
5BD5000
|
heap
|
page read and write
|
||
400000
|
unkown
|
page readonly
|
||
4A54000
|
heap
|
page read and write
|
||
2B14000
|
heap
|
page read and write
|
||
2B26000
|
heap
|
page read and write
|
||
3257000
|
trusted library allocation
|
page read and write
|
||
326E000
|
trusted library allocation
|
page read and write
|
||
F25000
|
unkown
|
page execute and write copy
|
||
2B41000
|
heap
|
page read and write
|
||
7A38000
|
heap
|
page read and write
|
||
76C1000
|
heap
|
page read and write
|
||
7C0000
|
heap
|
page read and write
|
||
64B000
|
unkown
|
page execute and read and write
|
||
18AF000
|
heap
|
page read and write
|
||
384AFF000
|
stack
|
page read and write
|
||
E30000
|
trusted library allocation
|
page read and write
|
||
2EF0000
|
heap
|
page read and write
|
||
41FF000
|
heap
|
page read and write
|
||
13E4000
|
heap
|
page read and write
|
||
18D8000
|
heap
|
page read and write
|
||
3117000
|
trusted library allocation
|
page read and write
|
||
DF6000
|
unkown
|
page execute and write copy
|
||
1395000
|
heap
|
page read and write
|
||
C60000
|
heap
|
page read and write
|
||
5E7E000
|
stack
|
page read and write
|
||
10EF000
|
stack
|
page read and write
|
||
FC3000
|
trusted library allocation
|
page execute and read and write
|
||
C92000
|
unkown
|
page execute and read and write
|
||
268C1530000
|
heap
|
page read and write
|
||
319D000
|
trusted library allocation
|
page read and write
|
||
18B8000
|
heap
|
page read and write
|
||
40C000
|
unkown
|
page readonly
|
||
374E000
|
stack
|
page read and write
|
||
83DF000
|
stack
|
page read and write
|
||
1163000
|
heap
|
page read and write
|
||
19A000
|
stack
|
page read and write
|
||
321E000
|
trusted library allocation
|
page read and write
|
||
7FF848D92000
|
trusted library allocation
|
page read and write
|
||
30E3000
|
trusted library allocation
|
page read and write
|
||
B60000
|
direct allocation
|
page read and write
|
||
2ED1000
|
unkown
|
page readonly
|
||
D38000
|
unkown
|
page readonly
|
||
1ECDCAD0000
|
heap
|
page read and write
|
||
19C000
|
stack
|
page read and write
|
||
FF5000
|
stack
|
page read and write
|
||
1F0000
|
direct allocation
|
page read and write
|
||
3236000
|
trusted library allocation
|
page read and write
|
||
2D51000
|
trusted library allocation
|
page read and write
|
||
66E0000
|
trusted library allocation
|
page read and write
|
||
765E000
|
stack
|
page read and write
|
||
3A4C8FE000
|
stack
|
page read and write
|
||
12D0000
|
heap
|
page read and write
|
||
2B28000
|
heap
|
page read and write
|
||
75A1000
|
heap
|
page read and write
|
||
53CE000
|
stack
|
page read and write
|
||
268C1180000
|
heap
|
page read and write
|
||
33E0000
|
heap
|
page read and write
|
||
3320000
|
heap
|
page read and write
|
||
41FF000
|
heap
|
page read and write
|
||
41A000
|
unkown
|
page readonly
|
||
10E4000
|
unkown
|
page execute and read and write
|
||
189C000
|
heap
|
page read and write
|
||
41CE000
|
heap
|
page read and write
|
||
11F4000
|
heap
|
page read and write
|
||
FE0000
|
direct allocation
|
page read and write
|
||
189C000
|
heap
|
page read and write
|
||
18D5000
|
heap
|
page read and write
|
||
FCD000
|
trusted library allocation
|
page execute and read and write
|
||
417A000
|
heap
|
page read and write
|
||
44E7000
|
trusted library allocation
|
page read and write
|
||
187F000
|
heap
|
page read and write
|
||
18CD000
|
heap
|
page read and write
|
||
297C000
|
stack
|
page read and write
|
||
16142000
|
heap
|
page read and write
|
||
B10000
|
unkown
|
page readonly
|
||
427000
|
unkown
|
page readonly
|
||
EE6000
|
unkown
|
page execute and write copy
|
||
655000
|
unkown
|
page execute and read and write
|
||
EE06F5F000
|
stack
|
page read and write
|
||
3AA0000
|
remote allocation
|
page read and write
|
||
2B15000
|
heap
|
page read and write
|
||
18D5000
|
heap
|
page read and write
|
||
180000
|
heap
|
page read and write
|
||
3F00000
|
trusted library allocation
|
page read and write
|
||
40CE000
|
heap
|
page read and write
|
||
3A2F000
|
trusted library allocation
|
page read and write
|
||
76B7000
|
heap
|
page read and write
|
||
3A22000
|
heap
|
page read and write
|
||
427000
|
unkown
|
page readonly
|
||
4BA9000
|
heap
|
page read and write
|
||
41A000
|
unkown
|
page readonly
|
||
17E4000
|
heap
|
page read and write
|
||
3105000
|
unkown
|
page readonly
|
||
18BC000
|
heap
|
page read and write
|
||
538E000
|
stack
|
page read and write
|
||
268C10B2000
|
unkown
|
page readonly
|
||
41F2000
|
heap
|
page read and write
|
||
7F190000
|
direct allocation
|
page execute and read and write
|
||
75D8000
|
heap
|
page read and write
|
||
2AFC000
|
heap
|
page read and write
|
||
CB0847F000
|
stack
|
page read and write
|
||
13FC000
|
heap
|
page read and write
|
||
268C14B0000
|
trusted library allocation
|
page read and write
|
||
6A564000
|
unkown
|
page readonly
|
||
546B000
|
heap
|
page read and write
|
||
5500000
|
heap
|
page read and write
|
||
49E2000
|
heap
|
page read and write
|
||
76A1000
|
heap
|
page read and write
|
||
2CD1000
|
heap
|
page read and write
|
||
2D25000
|
trusted library allocation
|
page read and write
|
||
4FD0000
|
heap
|
page read and write
|
||
663000
|
unkown
|
page execute and read and write
|
||
2CD1000
|
heap
|
page read and write
|
||
1634B000
|
heap
|
page read and write
|
||
3100000
|
trusted library allocation
|
page read and write
|
||
657000
|
unkown
|
page execute and read and write
|
||
68B000
|
heap
|
page read and write
|
||
CA0000
|
heap
|
page read and write
|
||
17BE000
|
heap
|
page read and write
|
||
2B2B000
|
heap
|
page read and write
|
||
4B77000
|
heap
|
page read and write
|
||
DDE000
|
stack
|
page read and write
|
||
41E0000
|
heap
|
page read and write
|
||
268C126E000
|
heap
|
page read and write
|
||
2EC0000
|
direct allocation
|
page read and write
|
||
18FD000
|
heap
|
page read and write
|
||
B40000
|
direct allocation
|
page read and write
|
||
3A5E000
|
stack
|
page read and write
|
||
4F7E000
|
trusted library allocation
|
page read and write
|
||
CB07FFF000
|
stack
|
page read and write
|
||
40EA000
|
heap
|
page read and write
|
||
EE8000
|
unkown
|
page execute and write copy
|
||
13DF000
|
heap
|
page read and write
|
||
FE0000
|
direct allocation
|
page read and write
|
||
9A4000
|
heap
|
page read and write
|
||
7970000
|
trusted library allocation
|
page read and write
|
||
F27000
|
unkown
|
page execute and write copy
|
||
61A000
|
heap
|
page read and write
|
||
400000
|
unkown
|
page readonly
|
||
268C10B0000
|
unkown
|
page readonly
|
||
7970000
|
trusted library allocation
|
page read and write
|
||
A16000
|
unkown
|
page execute read
|
||
4A0000
|
heap
|
page read and write
|
||
420000
|
unkown
|
page readonly
|
||
556000
|
heap
|
page read and write
|
||
13E4000
|
heap
|
page read and write
|
||
1100BE40000
|
heap
|
page read and write
|
||
18E7000
|
heap
|
page read and write
|
||
41D5000
|
heap
|
page read and write
|
||
439F000
|
stack
|
page read and write
|
||
21DC000
|
direct allocation
|
page read and write
|
||
815000
|
unkown
|
page read and write
|
||
41E2000
|
heap
|
page read and write
|
||
3272000
|
trusted library allocation
|
page read and write
|
||
13EA000
|
heap
|
page read and write
|
||
FE4000
|
heap
|
page read and write
|
||
669000
|
unkown
|
page execute and read and write
|
||
490000
|
heap
|
page read and write
|
||
1463000
|
trusted library allocation
|
page read and write
|
||
55D000
|
heap
|
page read and write
|
||
2AE0000
|
heap
|
page read and write
|
||
13DF000
|
heap
|
page read and write
|
||
2046BDF0000
|
heap
|
page read and write
|
||
2B3A000
|
heap
|
page read and write
|
||
D10000
|
heap
|
page read and write
|
||
F1B000
|
unkown
|
page execute and write copy
|
||
6491000
|
trusted library allocation
|
page read and write
|
||
7FF84902B000
|
trusted library allocation
|
page read and write
|
||
1FB0000
|
direct allocation
|
page read and write
|
||
8E70000
|
trusted library allocation
|
page execute and read and write
|
||
6E1F000
|
stack
|
page read and write
|
||
180F000
|
heap
|
page read and write
|
||
401000
|
unkown
|
page execute read
|
||
268D2E59000
|
trusted library allocation
|
page read and write
|
||
1886000
|
heap
|
page read and write
|
||
215F000
|
stack
|
page read and write
|
||
3964000
|
direct allocation
|
page execute and read and write
|
||
57F6000
|
direct allocation
|
page read and write
|
||
A00000
|
unkown
|
page execute and read and write
|
||
12F0000
|
heap
|
page execute and read and write
|
||
1200000
|
heap
|
page read and write
|
||
540000
|
heap
|
page read and write
|
||
13DA000
|
heap
|
page read and write
|
||
4207000
|
heap
|
page read and write
|
||
2AF0000
|
heap
|
page read and write
|
||
5013000
|
heap
|
page read and write
|
||
5B95000
|
heap
|
page read and write
|
||
F1D000
|
unkown
|
page execute and write copy
|
||
514E000
|
stack
|
page read and write
|
||
32D0000
|
trusted library allocation
|
page read and write
|
||
268C1160000
|
heap
|
page read and write
|
||
40D000
|
unkown
|
page write copy
|
||
41F2000
|
heap
|
page read and write
|
||
31BC000
|
trusted library allocation
|
page read and write
|
||
1179000
|
heap
|
page read and write
|
||
40F2000
|
heap
|
page read and write
|
||
669000
|
unkown
|
page execute and read and write
|
||
4A53000
|
heap
|
page read and write
|
||
4AFF000
|
heap
|
page read and write
|
||
FB0000
|
direct allocation
|
page read and write
|
||
68C000
|
unkown
|
page execute and read and write
|
||
1738000
|
heap
|
page read and write
|
||
B10000
|
unkown
|
page readonly
|
||
2B19000
|
heap
|
page read and write
|
||
5670000
|
heap
|
page read and write
|
||
18B8000
|
heap
|
page read and write
|
||
5F7E000
|
stack
|
page read and write
|
||
75C5000
|
heap
|
page read and write
|
||
2197000
|
direct allocation
|
page read and write
|
||
17C1000
|
heap
|
page read and write
|
||
EC0000
|
heap
|
page read and write
|
||
540000
|
unkown
|
page execute and read and write
|
||
4204000
|
heap
|
page read and write
|
||
187F000
|
heap
|
page read and write
|
||
7521000
|
direct allocation
|
page read and write
|
||
18D5000
|
heap
|
page read and write
|
||
2AE1000
|
heap
|
page read and write
|
||
18D5000
|
heap
|
page read and write
|
||
1670105D000
|
heap
|
page read and write
|
||
78AE000
|
heap
|
page read and write
|
||
4F64000
|
trusted library allocation
|
page read and write
|
||
18E2000
|
heap
|
page read and write
|
||
7FF848FD0000
|
trusted library allocation
|
page read and write
|
||
2AFC000
|
heap
|
page read and write
|
||
1380000
|
unkown
|
page read and write
|
||
18B0000
|
heap
|
page read and write
|
||
74F6000
|
heap
|
page read and write
|
||
76A5000
|
heap
|
page read and write
|
||
559000
|
heap
|
page read and write
|
||
41FF000
|
heap
|
page read and write
|
||
2B23000
|
heap
|
page read and write
|
||
57F0000
|
trusted library allocation
|
page read and write
|
||
F50000
|
unkown
|
page execute and write copy
|
||
B90000
|
direct allocation
|
page read and write
|
||
268C2E8B000
|
trusted library allocation
|
page read and write
|
||
CF9000
|
stack
|
page read and write
|
||
318C000
|
trusted library allocation
|
page read and write
|
||
2B56000
|
heap
|
page read and write
|
||
5C3000
|
heap
|
page read and write
|
||
2B41000
|
heap
|
page read and write
|
||
1317000
|
heap
|
page read and write
|
||
4204000
|
heap
|
page read and write
|
||
1ECDCC00000
|
unkown
|
page read and write
|
||
327F000
|
trusted library allocation
|
page read and write
|
||
FE4000
|
heap
|
page read and write
|
||
7B0000
|
heap
|
page read and write
|
||
690000
|
unkown
|
page execute and read and write
|
||
53F0000
|
trusted library allocation
|
page read and write
|
||
3077000
|
trusted library allocation
|
page read and write
|
||
2B00000
|
heap
|
page read and write
|
||
F90000
|
direct allocation
|
page read and write
|
||
400000
|
trusted library allocation
|
page read and write
|
||
1DD06BC5000
|
heap
|
page read and write
|
||
140000000
|
unkown
|
page readonly
|
||
116B000
|
heap
|
page read and write
|
||
268C303F000
|
trusted library allocation
|
page read and write
|
||
6420000
|
trusted library allocation
|
page read and write
|
||
9E8000
|
unkown
|
page execute read
|
||
F62000
|
heap
|
page read and write
|
||
28F0000
|
trusted library allocation
|
page read and write
|
||
41E7000
|
heap
|
page read and write
|
||
2B19000
|
heap
|
page read and write
|
||
1DD06A78000
|
heap
|
page read and write
|
||
607E000
|
stack
|
page read and write
|
||
2B14000
|
heap
|
page read and write
|
||
1450000
|
heap
|
page read and write
|
||
500000
|
heap
|
page read and write
|
||
F90000
|
trusted library allocation
|
page read and write
|
||
55C0000
|
heap
|
page read and write
|
||
534F000
|
stack
|
page read and write
|
||
2AE1000
|
heap
|
page read and write
|
||
BA0000
|
remote allocation
|
page read and write
|
||
DB3000
|
unkown
|
page execute and write copy
|
||
3A4C2FE000
|
unkown
|
page readonly
|
||
2AEE000
|
unkown
|
page readonly
|
||
1ECDCF02000
|
heap
|
page read and write
|
||
7FF848D96000
|
trusted library allocation
|
page execute and read and write
|
||
53E0000
|
heap
|
page read and write
|
||
41B000
|
unkown
|
page readonly
|
||
41DF000
|
heap
|
page read and write
|
||
401000
|
unkown
|
page execute read
|
||
4D74000
|
heap
|
page read and write
|
||
3171000
|
trusted library allocation
|
page read and write
|
||
64B5000
|
trusted library allocation
|
page read and write
|
||
75A1000
|
heap
|
page read and write
|
||
4418000
|
trusted library allocation
|
page read and write
|
||
D3A000
|
unkown
|
page write copy
|
||
1409000
|
heap
|
page read and write
|
||
13F1000
|
heap
|
page read and write
|
||
2F5E000
|
heap
|
page read and write
|
||
400000
|
heap
|
page read and write
|
||
F4D000
|
heap
|
page read and write
|
||
CE1000
|
unkown
|
page execute read
|
||
2AFC000
|
heap
|
page read and write
|
||
7FF848DA0000
|
trusted library allocation
|
page read and write
|
||
1110000
|
heap
|
page read and write
|
||
C92000
|
unkown
|
page execute and write copy
|
||
FE0000
|
heap
|
page read and write
|
||
5020000
|
heap
|
page read and write
|
||
7FF848EB4000
|
trusted library allocation
|
page read and write
|
||
D00000
|
heap
|
page read and write
|
||
813000
|
unkown
|
page read and write
|
||
813000
|
unkown
|
page read and write
|
||
74F7000
|
heap
|
page read and write
|
||
185A000
|
heap
|
page read and write
|
||
830000
|
heap
|
page read and write
|
||
7FF848BE2000
|
trusted library allocation
|
page read and write
|
||
2E70000
|
heap
|
page read and write
|
||
4B52000
|
heap
|
page read and write
|
||
52F2000
|
heap
|
page read and write
|
||
12F7000
|
heap
|
page read and write
|
||
3A61000
|
heap
|
page read and write
|
||
3190000
|
trusted library allocation
|
page read and write
|
||
D2B000
|
unkown
|
page write copy
|
||
57F0000
|
direct allocation
|
page read and write
|
||
63C000
|
remote allocation
|
page execute and read and write
|
||
1390000
|
heap
|
page read and write
|
||
1472000
|
trusted library allocation
|
page read and write
|
||
4E85000
|
heap
|
page read and write
|
||
2AED000
|
heap
|
page read and write
|
||
41FF000
|
heap
|
page read and write
|
||
75D2000
|
heap
|
page read and write
|
||
4FE0000
|
trusted library allocation
|
page read and write
|
||
18CD000
|
heap
|
page read and write
|
||
2B18000
|
heap
|
page read and write
|
||
55B0000
|
trusted library allocation
|
page execute and read and write
|
||
4A4E000
|
heap
|
page read and write
|
||
813000
|
unkown
|
page read and write
|
||
401000
|
unkown
|
page execute read
|
||
FC0E7C000
|
stack
|
page read and write
|
||
189C000
|
heap
|
page read and write
|
||
30F6000
|
trusted library allocation
|
page read and write
|
||
2046BE00000
|
heap
|
page read and write
|
||
CFF000
|
unkown
|
page readonly
|
||
1100BDC0000
|
heap
|
page read and write
|
||
1F4000
|
heap
|
page read and write
|
||
30D5000
|
trusted library allocation
|
page read and write
|
||
2B4B000
|
heap
|
page read and write
|
||
268DB5A3000
|
heap
|
page read and write
|
||
31A1000
|
trusted library allocation
|
page read and write
|
||
422000
|
unkown
|
page write copy
|
||
3630000
|
direct allocation
|
page execute and read and write
|
||
2B23000
|
heap
|
page read and write
|
||
4E22000
|
heap
|
page read and write
|
||
18CD000
|
heap
|
page read and write
|
||
7FF848D00000
|
trusted library allocation
|
page execute and read and write
|
||
796B000
|
heap
|
page read and write
|
||
7B10000
|
heap
|
page read and write
|
||
B70000
|
direct allocation
|
page read and write
|
||
2B19000
|
heap
|
page read and write
|
||
43A000
|
unkown
|
page readonly
|
||
6C0000
|
heap
|
page read and write
|
||
DB4000
|
unkown
|
page write copy
|
||
7FF848F01000
|
trusted library allocation
|
page read and write
|
||
6A583000
|
unkown
|
page write copy
|
||
4990000
|
heap
|
page read and write
|
||
2E70000
|
trusted library allocation
|
page read and write
|
||
6290000
|
trusted library allocation
|
page read and write
|
||
EC5000
|
heap
|
page read and write
|
||
FE4000
|
heap
|
page read and write
|
||
1258000
|
heap
|
page read and write
|
||
2B56000
|
heap
|
page read and write
|
||
6A6000
|
heap
|
page read and write
|
||
2BC6000
|
trusted library allocation
|
page read and write
|
||
A10000
|
unkown
|
page read and write
|
||
1368000
|
heap
|
page read and write
|
||
5600000
|
trusted library allocation
|
page read and write
|
||
C6A000
|
unkown
|
page execute and write copy
|
||
1DD06A70000
|
heap
|
page read and write
|
||
423F000
|
heap
|
page read and write
|
||
7951000
|
heap
|
page read and write
|
||
6F0000
|
unkown
|
page execute and read and write
|
||
1210000
|
direct allocation
|
page read and write
|
||
4E9B000
|
stack
|
page read and write
|
||
554000
|
heap
|
page read and write
|
||
28F0000
|
direct allocation
|
page read and write
|
||
7FF848C96000
|
trusted library allocation
|
page read and write
|
||
64D000
|
unkown
|
page execute and read and write
|
||
1ECDCD00000
|
trusted library allocation
|
page read and write
|
||
56B000
|
heap
|
page read and write
|
||
268D2E51000
|
trusted library allocation
|
page read and write
|
||
30C8000
|
trusted library allocation
|
page read and write
|
||
268DB566000
|
heap
|
page read and write
|
||
41FF000
|
heap
|
page read and write
|
||
288E000
|
stack
|
page read and write
|
||
41E7000
|
heap
|
page read and write
|
||
268C2FDA000
|
trusted library allocation
|
page read and write
|
||
F90000
|
direct allocation
|
page read and write
|
||
18C5000
|
heap
|
page read and write
|
||
268C3028000
|
trusted library allocation
|
page read and write
|
||
16701802000
|
trusted library allocation
|
page read and write
|
||
41B8000
|
heap
|
page read and write
|
||
96000
|
stack
|
page read and write
|
||
F3E000
|
stack
|
page read and write
|
||
28D9DA30000
|
heap
|
page read and write
|
||
41CE000
|
heap
|
page read and write
|
||
76A0000
|
heap
|
page read and write
|
||
51B0000
|
heap
|
page execute and read and write
|
||
2740000
|
trusted library allocation
|
page read and write
|
||
EE2000
|
unkown
|
page execute and write copy
|
||
18CD000
|
heap
|
page read and write
|
||
1C4FD000
|
direct allocation
|
page readonly
|
||
2B30000
|
heap
|
page read and write
|
||
4B6B000
|
heap
|
page read and write
|
||
268C123F000
|
heap
|
page read and write
|
||
33EC000
|
heap
|
page execute and read and write
|
||
DF6000
|
unkown
|
page execute and write copy
|
||
7FF848E8D000
|
trusted library allocation
|
page read and write
|
||
141962000
|
unkown
|
page execute read
|
||
8EACFF000
|
stack
|
page read and write
|
||
780000
|
heap
|
page read and write
|
||
61E000
|
heap
|
page read and write
|
||
18CD000
|
heap
|
page read and write
|
||
2046BDE0000
|
heap
|
page read and write
|
||
E9E000
|
unkown
|
page execute and read and write
|
||
545000
|
unkown
|
page readonly
|
||
3AB3000
|
trusted library allocation
|
page read and write
|
||
420000
|
unkown
|
page read and write
|
||
501F000
|
heap
|
page read and write
|
||
50FB000
|
heap
|
page read and write
|
||
18BD000
|
heap
|
page read and write
|
||
15F5C000
|
heap
|
page read and write
|
||
6428000
|
trusted library allocation
|
page read and write
|
||
2B23000
|
heap
|
page read and write
|
||
815000
|
unkown
|
page read and write
|
||
161F000
|
stack
|
page read and write
|
||
13E6000
|
heap
|
page read and write
|
||
18C5000
|
heap
|
page read and write
|
||
5302000
|
heap
|
page read and write
|
||
7FF848BE4000
|
trusted library allocation
|
page read and write
|
||
E77000
|
trusted library allocation
|
page execute and read and write
|
||
18AD000
|
heap
|
page read and write
|
||
1ECDCF00000
|
heap
|
page read and write
|
||
2AFD000
|
heap
|
page read and write
|
||
2AAF000
|
stack
|
page read and write
|
||
66F0000
|
trusted library allocation
|
page read and write
|
||
401000
|
unkown
|
page execute read
|
||
518E000
|
stack
|
page read and write
|
||
7954000
|
heap
|
page read and write
|
||
29C0000
|
trusted library allocation
|
page execute and read and write
|
||
54A000
|
heap
|
page read and write
|
||
7FF848BED000
|
trusted library allocation
|
page execute and read and write
|
||
18E4000
|
heap
|
page read and write
|
||
1060000
|
trusted library allocation
|
page read and write
|
||
4A54000
|
heap
|
page read and write
|
||
13DC000
|
heap
|
page read and write
|
||
400000
|
unkown
|
page readonly
|
||
2ED1000
|
unkown
|
page readonly
|
||
7FF848FA0000
|
trusted library allocation
|
page read and write
|
||
4A9000
|
unkown
|
page readonly
|
||
E6A000
|
trusted library allocation
|
page execute and read and write
|
||
13EA000
|
heap
|
page read and write
|
||
1337000
|
heap
|
page read and write
|
||
5BB0000
|
heap
|
page read and write
|
||
2450000
|
heap
|
page read and write
|
||
268C3246000
|
trusted library allocation
|
page read and write
|
||
41F2000
|
heap
|
page read and write
|
||
2B1C000
|
heap
|
page read and write
|
||
41A000
|
unkown
|
page readonly
|
||
665000
|
unkown
|
page execute and read and write
|
||
81B000
|
heap
|
page read and write
|
||
12FB000
|
heap
|
page read and write
|
||
852000
|
heap
|
page read and write
|
||
2B25000
|
heap
|
page read and write
|
||
18E9000
|
heap
|
page read and write
|
||
53E000
|
unkown
|
page execute and read and write
|
||
4A34000
|
heap
|
page read and write
|
||
2CD1000
|
heap
|
page read and write
|
||
2B42000
|
heap
|
page read and write
|
||
2194000
|
heap
|
page read and write
|
||
31BE000
|
trusted library allocation
|
page read and write
|
||
1040000
|
heap
|
page read and write
|
||
13E4000
|
heap
|
page read and write
|
||
EE4000
|
unkown
|
page execute and write copy
|
||
40C9000
|
heap
|
page read and write
|
||
63A8000
|
heap
|
page read and write
|
||
7970000
|
trusted library allocation
|
page read and write
|
||
1210000
|
direct allocation
|
page read and write
|
||
18D5000
|
heap
|
page read and write
|
||
5B1C000
|
heap
|
page read and write
|
||
18D8000
|
heap
|
page read and write
|
||
18B8000
|
heap
|
page read and write
|
||
515000
|
unkown
|
page execute and read and write
|
||
268C1540000
|
heap
|
page read and write
|
||
18CD000
|
heap
|
page read and write
|
||
2AF8000
|
heap
|
page read and write
|
||
75A1000
|
heap
|
page read and write
|
||
18FE000
|
heap
|
page read and write
|
||
5A5E000
|
stack
|
page read and write
|
||
18D5000
|
heap
|
page read and write
|
||
1930000
|
heap
|
page read and write
|
||
4B6B000
|
heap
|
page read and write
|
||
5760000
|
heap
|
page execute and read and write
|
||
E43000
|
trusted library allocation
|
page execute and read and write
|
||
384F000
|
stack
|
page read and write
|
||
1181000
|
heap
|
page read and write
|
||
5960000
|
heap
|
page read and write
|
||
3186000
|
trusted library allocation
|
page read and write
|
||
699D000
|
stack
|
page read and write
|
||
4207000
|
heap
|
page read and write
|
||
2CD1000
|
heap
|
page read and write
|
||
11F5000
|
heap
|
page read and write
|
||
174F0238000
|
heap
|
page read and write
|
||
7FF848F03000
|
trusted library allocation
|
page read and write
|
||
EEC000
|
unkown
|
page execute and read and write
|
||
64F000
|
unkown
|
page execute and read and write
|
||
FF7000
|
trusted library allocation
|
page execute and read and write
|
||
A7F000
|
stack
|
page read and write
|
||
5EBD000
|
heap
|
page read and write
|
||
268DAE80000
|
trusted library allocation
|
page read and write
|
||
FFE000
|
stack
|
page read and write
|
||
1FC8000
|
direct allocation
|
page read and write
|
||
2B41000
|
heap
|
page read and write
|
||
5730000
|
trusted library allocation
|
page read and write
|
||
651000
|
unkown
|
page execute and read and write
|
||
143F000
|
unkown
|
page execute and write copy
|
||
4D72000
|
heap
|
page read and write
|
||
4BA9000
|
heap
|
page read and write
|
||
40C5000
|
heap
|
page read and write
|
||
62A0000
|
trusted library allocation
|
page read and write
|
||
2B41000
|
heap
|
page read and write
|
||
18BC000
|
heap
|
page read and write
|
||
543D000
|
trusted library allocation
|
page read and write
|
||
140270000
|
unkown
|
page write copy
|
||
16F000
|
stack
|
page read and write
|
||
883000
|
heap
|
page read and write
|
||
7963000
|
heap
|
page read and write
|
||
2AF8000
|
heap
|
page read and write
|
||
41E0000
|
heap
|
page read and write
|
||
A6E000
|
stack
|
page read and write
|
||
2B40000
|
heap
|
page read and write
|
||
142A000
|
heap
|
page read and write
|
||
17CC000
|
heap
|
page read and write
|
||
1100BE13000
|
heap
|
page read and write
|
||
1442000
|
unkown
|
page execute and read and write
|
||
408000
|
unkown
|
page readonly
|
||
7970000
|
trusted library allocation
|
page read and write
|
||
4D7A000
|
heap
|
page read and write
|
||
3AC000
|
stack
|
page read and write
|
||
2AF3000
|
heap
|
page read and write
|
||
CB0987B000
|
stack
|
page read and write
|
||
40C2000
|
heap
|
page read and write
|
||
7FF848F40000
|
trusted library allocation
|
page read and write
|
||
18F9000
|
heap
|
page read and write
|
||
943000
|
unkown
|
page readonly
|
||
268DB5D6000
|
heap
|
page read and write
|
||
40F9000
|
heap
|
page read and write
|
||
127A000
|
heap
|
page read and write
|
||
5710000
|
heap
|
page read and write
|
||
2B25000
|
heap
|
page read and write
|
||
319B000
|
trusted library allocation
|
page read and write
|
||
18C5000
|
heap
|
page read and write
|
||
46C000
|
remote allocation
|
page execute and read and write
|
||
13DF000
|
heap
|
page read and write
|
||
4D92000
|
heap
|
page read and write
|
||
2046BDC0000
|
heap
|
page read and write
|
||
41F2000
|
heap
|
page read and write
|
||
9B9F000
|
stack
|
page read and write
|
||
159A000
|
heap
|
page read and write
|
||
DCE000
|
heap
|
page read and write
|
||
716000
|
unkown
|
page execute and read and write
|
||
268DB563000
|
heap
|
page read and write
|
||
E99000
|
heap
|
page read and write
|
||
52BE000
|
stack
|
page read and write
|
||
420B000
|
heap
|
page read and write
|
||
6435000
|
trusted library allocation
|
page read and write
|
||
2B15000
|
heap
|
page read and write
|
||
7970000
|
trusted library allocation
|
page read and write
|
||
667000
|
unkown
|
page execute and read and write
|
||
76A5000
|
heap
|
page read and write
|
||
7969000
|
heap
|
page read and write
|
||
7FF848E9A000
|
trusted library allocation
|
page read and write
|
||
7FF848E52000
|
trusted library allocation
|
page read and write
|
||
1C4C8000
|
direct allocation
|
page readonly
|
||
12E7000
|
heap
|
page read and write
|
||
13DC000
|
heap
|
page read and write
|
||
6437000
|
trusted library allocation
|
page read and write
|
||
18CD000
|
heap
|
page read and write
|
||
315A000
|
trusted library allocation
|
page read and write
|
||
684000
|
unkown
|
page execute and read and write
|
||
268C122C000
|
heap
|
page read and write
|
||
31AB000
|
trusted library allocation
|
page read and write
|
||
7970000
|
trusted library allocation
|
page read and write
|
||
1ECDCC2B000
|
heap
|
page read and write
|
||
9685FA000
|
stack
|
page read and write
|
||
16557000
|
heap
|
page read and write
|
||
76E6000
|
heap
|
page read and write
|
||
6540000
|
trusted library allocation
|
page read and write
|
||
87E000
|
heap
|
page read and write
|
||
78A4000
|
heap
|
page read and write
|
||
4C4000
|
heap
|
page read and write
|
||
10C9000
|
heap
|
page read and write
|
||
9C000
|
stack
|
page read and write
|
||
3285000
|
trusted library allocation
|
page read and write
|
||
568E000
|
stack
|
page read and write
|
||
7A20000
|
heap
|
page read and write
|
||
2C8E000
|
stack
|
page read and write
|
||
76A2000
|
heap
|
page read and write
|
||
30DD000
|
trusted library allocation
|
page read and write
|
||
2B41000
|
heap
|
page read and write
|
||
64B0000
|
trusted library allocation
|
page read and write
|
||
EDE000
|
unkown
|
page execute and write copy
|
||
E44000
|
trusted library allocation
|
page read and write
|
||
FF2000
|
trusted library allocation
|
page read and write
|
||
18B0000
|
heap
|
page read and write
|
||
22D0000
|
heap
|
page read and write
|
||
12F0000
|
heap
|
page read and write
|
||
18F5000
|
heap
|
page read and write
|
||
595E000
|
stack
|
page read and write
|
||
16701790000
|
remote allocation
|
page read and write
|
||
18D5000
|
heap
|
page read and write
|
||
2B42000
|
heap
|
page read and write
|
||
B70000
|
direct allocation
|
page read and write
|
||
1244000
|
trusted library allocation
|
page read and write
|
||
17E5000
|
heap
|
page read and write
|
||
FC127E000
|
stack
|
page read and write
|
||
7FE000
|
heap
|
page read and write
|
||
2FC0000
|
heap
|
page read and write
|
||
2470000
|
heap
|
page read and write
|
||
EDA000
|
unkown
|
page execute and write copy
|
||
7FF848E89000
|
trusted library allocation
|
page read and write
|
||
2AE9000
|
heap
|
page read and write
|
||
709E000
|
stack
|
page read and write
|
||
5B0000
|
heap
|
page read and write
|
||
F1B000
|
unkown
|
page execute and write copy
|
||
3287000
|
trusted library allocation
|
page read and write
|
||
E80000
|
heap
|
page read and write
|
||
40D1000
|
heap
|
page read and write
|
||
7FF848F0B000
|
trusted library allocation
|
page read and write
|
||
6439000
|
trusted library allocation
|
page read and write
|
||
7A23000
|
heap
|
page read and write
|
||
1386000
|
heap
|
page read and write
|
||
FC137F000
|
stack
|
page read and write
|
||
74F0000
|
heap
|
page read and write
|
||
73F5000
|
direct allocation
|
page read and write
|
||
2AED000
|
heap
|
page read and write
|
||
1B0000
|
heap
|
page read and write
|
||
27C0000
|
trusted library allocation
|
page read and write
|
||
65D000
|
unkown
|
page execute and read and write
|
||
75A1000
|
heap
|
page read and write
|
||
16701013000
|
heap
|
page read and write
|
||
18E2000
|
heap
|
page read and write
|
||
75F8000
|
heap
|
page read and write
|
||
3978000
|
direct allocation
|
page execute and read and write
|
||
193000
|
stack
|
page read and write
|
||
2B40000
|
heap
|
page read and write
|
||
D34000
|
unkown
|
page readonly
|
||
72DE000
|
stack
|
page read and write
|
||
18D8000
|
heap
|
page read and write
|
||
2CD1000
|
heap
|
page read and write
|
||
59D000
|
stack
|
page read and write
|
||
2CD1000
|
heap
|
page read and write
|
||
30C6000
|
trusted library allocation
|
page read and write
|
||
2B04000
|
heap
|
page read and write
|
||
2B42000
|
heap
|
page read and write
|
||
75B000
|
unkown
|
page execute and read and write
|
||
4208000
|
heap
|
page read and write
|
||
D20000
|
heap
|
page read and write
|
||
FB0000
|
direct allocation
|
page read and write
|
||
139A000
|
heap
|
page read and write
|
||
5452000
|
heap
|
page read and write
|
||
18B0000
|
heap
|
page read and write
|
||
5354000
|
heap
|
page read and write
|
||
2B3A000
|
heap
|
page read and write
|
||
EE0000
|
unkown
|
page execute and write copy
|
||
54C0000
|
trusted library allocation
|
page read and write
|
||
324D000
|
trusted library allocation
|
page read and write
|
||
41B000
|
unkown
|
page readonly
|
||
324B000
|
trusted library allocation
|
page read and write
|
||
400000
|
unkown
|
page readonly
|
||
4110000
|
heap
|
page read and write
|
||
430000
|
unkown
|
page read and write
|
||
2B35000
|
heap
|
page read and write
|
||
1796000
|
heap
|
page read and write
|
||
115C000
|
heap
|
page read and write
|
||
CB06FF3000
|
stack
|
page read and write
|
||
FE0000
|
direct allocation
|
page read and write
|
||
18BD000
|
heap
|
page read and write
|
||
E90000
|
heap
|
page read and write
|
||
78A3000
|
heap
|
page read and write
|
||
40B000
|
unkown
|
page write copy
|
||
12BF000
|
stack
|
page read and write
|
||
337E000
|
stack
|
page read and write
|
||
401000
|
unkown
|
page execute and write copy
|
||
12BE000
|
stack
|
page read and write
|
||
1144000
|
heap
|
page read and write
|
||
18CD000
|
heap
|
page read and write
|
||
2B28000
|
heap
|
page read and write
|
||
75C5000
|
heap
|
page read and write
|
||
18D8000
|
heap
|
page read and write
|
||
2AE1000
|
heap
|
page read and write
|
||
68EE000
|
stack
|
page read and write
|
||
18CD000
|
heap
|
page read and write
|
||
18B8000
|
heap
|
page read and write
|
||
795A000
|
heap
|
page read and write
|
||
3EE3000
|
heap
|
page read and write
|
||
7FF848EF5000
|
trusted library allocation
|
page read and write
|
||
13EA000
|
heap
|
page read and write
|
||
6720000
|
trusted library allocation
|
page read and write
|
||
556000
|
heap
|
page read and write
|
||
141A11000
|
unkown
|
page readonly
|
||
64E0000
|
trusted library allocation
|
page read and write
|
||
E40000
|
heap
|
page read and write
|
||
1F0000
|
direct allocation
|
page read and write
|
||
9C000
|
stack
|
page read and write
|
||
9C000
|
stack
|
page read and write
|
||
B7E000
|
heap
|
page read and write
|
||
18B8000
|
heap
|
page read and write
|
||
31D5000
|
trusted library allocation
|
page read and write
|
||
610000
|
unkown
|
page readonly
|
||
2B40000
|
heap
|
page read and write
|
||
2063000
|
heap
|
page read and write
|
||
1ECDCAF0000
|
heap
|
page read and write
|
||
4168000
|
heap
|
page read and write
|
||
2B41000
|
heap
|
page read and write
|
||
2B42000
|
heap
|
page read and write
|
||
6CA000
|
heap
|
page read and write
|
||
268C2FE5000
|
trusted library allocation
|
page read and write
|
||
BB1000
|
unkown
|
page execute read
|
||
FE5000
|
heap
|
page read and write
|
||
3A21000
|
trusted library allocation
|
page read and write
|
||
7A6000
|
unkown
|
page execute and read and write
|
||
401000
|
unkown
|
page execute read
|
||
FE0000
|
direct allocation
|
page read and write
|
||
2B25000
|
heap
|
page read and write
|
||
31F7000
|
trusted library allocation
|
page read and write
|
||
18B0000
|
heap
|
page read and write
|
||
2B00000
|
heap
|
page read and write
|
||
443000
|
unkown
|
page readonly
|
||
13DF000
|
heap
|
page read and write
|
||
55D000
|
heap
|
page read and write
|
||
F2B000
|
unkown
|
page execute and write copy
|
||
30A9000
|
trusted library allocation
|
page read and write
|
||
18CD000
|
heap
|
page read and write
|
||
164B0000
|
heap
|
page read and write
|
||
EED000
|
unkown
|
page execute and write copy
|
||
2B41000
|
heap
|
page read and write
|
||
18C5000
|
heap
|
page read and write
|
||
AC5000
|
heap
|
page read and write
|
||
1F4000
|
heap
|
page read and write
|
||
4200000
|
heap
|
page read and write
|
||
13EA000
|
heap
|
page read and write
|
||
19D000
|
stack
|
page read and write
|
||
75A1000
|
heap
|
page read and write
|
||
2B42000
|
heap
|
page read and write
|
||
6460000
|
trusted library allocation
|
page read and write
|
||
527E000
|
heap
|
page read and write
|
||
41FF000
|
heap
|
page read and write
|
||
1F0000
|
direct allocation
|
page read and write
|
||
41DF000
|
heap
|
page read and write
|
||
548E000
|
stack
|
page read and write
|
||
268DB57B000
|
heap
|
page read and write
|
||
16701790000
|
remote allocation
|
page read and write
|
||
18C5000
|
heap
|
page read and write
|
||
1906000
|
heap
|
page read and write
|
||
2ED1000
|
unkown
|
page readonly
|
||
2AE9000
|
heap
|
page read and write
|
||
3F11000
|
trusted library allocation
|
page read and write
|
||
141962000
|
unkown
|
page execute read
|
||
7FF848F90000
|
trusted library allocation
|
page read and write
|
||
2B40000
|
heap
|
page read and write
|
||
191A000
|
heap
|
page read and write
|
||
663F000
|
heap
|
page read and write
|
||
189C000
|
heap
|
page read and write
|
||
2B40000
|
heap
|
page read and write
|
||
2CCE000
|
stack
|
page read and write
|
||
401000
|
unkown
|
page execute read
|
||
3224000
|
trusted library allocation
|
page read and write
|
||
76E4000
|
heap
|
page read and write
|
||
9C000
|
stack
|
page read and write
|
||
187F000
|
heap
|
page read and write
|
||
4FA0000
|
trusted library allocation
|
page read and write
|
||
3270000
|
trusted library allocation
|
page read and write
|
||
2B47000
|
heap
|
page execute and read and write
|
||
4208000
|
heap
|
page read and write
|
||
11A1000
|
unkown
|
page execute and read and write
|
||
2B3A000
|
heap
|
page read and write
|
||
55D000
|
heap
|
page read and write
|
||
1F4000
|
heap
|
page read and write
|
||
268C14F0000
|
unkown
|
page readonly
|
||
1180000
|
heap
|
page read and write
|
||
2FBE000
|
stack
|
page read and write
|
||
18FD000
|
heap
|
page read and write
|
||
13EA000
|
heap
|
page read and write
|
||
2B30000
|
heap
|
page read and write
|
||
420000
|
unkown
|
page read and write
|
||
400000
|
unkown
|
page readonly
|
||
17EE000
|
heap
|
page read and write
|
||
78AB000
|
heap
|
page read and write
|
||
1F0000
|
trusted library allocation
|
page read and write
|
||
4F37000
|
heap
|
page read and write
|
||
1080000
|
heap
|
page read and write
|
||
1F0000
|
heap
|
page read and write
|
||
193000
|
stack
|
page read and write
|
||
74DE000
|
stack
|
page read and write
|
||
96847D000
|
stack
|
page read and write
|
||
2B41000
|
heap
|
page read and write
|
||
49B000
|
unkown
|
page execute and read and write
|
||
18C5000
|
heap
|
page read and write
|
||
74F9000
|
direct allocation
|
page read and write
|
||
13DC000
|
heap
|
page read and write
|
||
E4D000
|
trusted library allocation
|
page execute and read and write
|
||
7FF848BE3000
|
trusted library allocation
|
page execute and read and write
|
||
EA1000
|
unkown
|
page execute and write copy
|
||
4F94000
|
heap
|
page read and write
|
||
7FF848E78000
|
trusted library allocation
|
page read and write
|
||
410B000
|
heap
|
page read and write
|
||
12BB000
|
heap
|
page read and write
|
||
68A000
|
unkown
|
page execute and read and write
|
||
4AFF000
|
heap
|
page read and write
|
||
12D0000
|
heap
|
page read and write
|
||
76A1000
|
heap
|
page read and write
|
||
EFC000
|
stack
|
page read and write
|
||
2AE6000
|
heap
|
page read and write
|
||
16240000
|
heap
|
page read and write
|
||
7FF848F50000
|
trusted library allocation
|
page read and write
|
||
EDE000
|
unkown
|
page execute and write copy
|
||
7FA70000
|
trusted library allocation
|
page execute and read and write
|
||
B37000
|
stack
|
page read and write
|
||
7970000
|
trusted library allocation
|
page read and write
|
||
7970000
|
trusted library allocation
|
page read and write
|
||
400000
|
unkown
|
page readonly
|
||
B8E000
|
heap
|
page read and write
|
||
1ECDCBD0000
|
trusted library allocation
|
page read and write
|
||
76BA000
|
heap
|
page read and write
|
||
431000
|
remote allocation
|
page execute and read and write
|
||
781000
|
heap
|
page read and write
|
||
6A58A000
|
unkown
|
page read and write
|
||
2CD1000
|
heap
|
page read and write
|
||
18AB000
|
heap
|
page read and write
|
||
526A000
|
heap
|
page read and write
|
||
3107000
|
unkown
|
page readonly
|
||
320D000
|
trusted library allocation
|
page read and write
|
||
3222000
|
trusted library allocation
|
page read and write
|
||
73D0000
|
heap
|
page read and write
|
||
4E88000
|
heap
|
page read and write
|
||
2B00000
|
heap
|
page read and write
|
||
2B40000
|
heap
|
page read and write
|
||
3960000
|
direct allocation
|
page execute and read and write
|
||
75FE000
|
heap
|
page read and write
|
||
18CD000
|
heap
|
page read and write
|
||
3251000
|
trusted library allocation
|
page read and write
|
||
72AE000
|
stack
|
page read and write
|
||
401000
|
unkown
|
page execute read
|
||
2B41000
|
heap
|
page read and write
|
||
40F5000
|
heap
|
page read and write
|
||
EEA000
|
unkown
|
page execute and write copy
|
||
3298000
|
trusted library allocation
|
page read and write
|
||
71D2000
|
heap
|
page read and write
|
||
1100BE02000
|
heap
|
page read and write
|
||
E62000
|
trusted library allocation
|
page read and write
|
||
49D5000
|
heap
|
page read and write
|
||
1100BE6A000
|
heap
|
page read and write
|
||
1C4BD000
|
direct allocation
|
page execute read
|
||
131C000
|
heap
|
page read and write
|
||
557000
|
heap
|
page read and write
|
||
2AF3000
|
heap
|
page read and write
|
||
18A4000
|
heap
|
page read and write
|
||
421000
|
unkown
|
page execute read
|
||
7FF8490E0000
|
trusted library allocation
|
page read and write
|
||
741D000
|
direct allocation
|
page read and write
|
||
2B04000
|
heap
|
page read and write
|
||
427000
|
unkown
|
page readonly
|
||
4A54000
|
heap
|
page read and write
|
||
2061000
|
heap
|
page read and write
|
||
3205000
|
trusted library allocation
|
page read and write
|
||
18B8000
|
heap
|
page read and write
|
||
4D70000
|
heap
|
page read and write
|
||
EB3C000
|
stack
|
page read and write
|
||
76A1000
|
heap
|
page read and write
|
||
2B2B000
|
heap
|
page read and write
|
||
CE0000
|
unkown
|
page readonly
|
||
83B000
|
stack
|
page read and write
|
||
18F000
|
stack
|
page read and write
|
||
22DEE110000
|
heap
|
page read and write
|
||
9A4000
|
heap
|
page read and write
|
||
18ED000
|
heap
|
page read and write
|
||
2450000
|
direct allocation
|
page read and write
|
||
113B000
|
heap
|
page read and write
|
||
18B8000
|
heap
|
page read and write
|
||
659000
|
unkown
|
page execute and read and write
|
||
1ECDCC13000
|
unkown
|
page read and write
|
||
CB0807D000
|
stack
|
page read and write
|
||
3253000
|
trusted library allocation
|
page read and write
|
||
173B000
|
heap
|
page read and write
|
||
76C0000
|
heap
|
page read and write
|
||
5436000
|
trusted library allocation
|
page read and write
|
||
76B4000
|
heap
|
page read and write
|
||
5040000
|
trusted library allocation
|
page execute and read and write
|
||
13E4000
|
heap
|
page read and write
|
||
18AD000
|
heap
|
page read and write
|
||
3A4C6FE000
|
stack
|
page read and write
|
||
16030000
|
heap
|
page read and write
|
||
4D97000
|
heap
|
page read and write
|
||
339F000
|
stack
|
page read and write
|
||
1F0000
|
heap
|
page read and write
|
||
18E6000
|
heap
|
page read and write
|
||
315E000
|
stack
|
page read and write
|
||
64A0000
|
trusted library allocation
|
page read and write
|
||
18AB000
|
heap
|
page read and write
|
||
FC0000
|
heap
|
page read and write
|
||
3978000
|
direct allocation
|
page execute and read and write
|
||
7970000
|
trusted library allocation
|
page read and write
|
||
DF7000
|
stack
|
page read and write
|
||
794000
|
heap
|
page read and write
|
||
2AE1000
|
heap
|
page read and write
|
||
BB1000
|
unkown
|
page execute read
|
||
4D7E000
|
heap
|
page read and write
|
||
56C000
|
remote allocation
|
page execute and read and write
|
||
DF2000
|
unkown
|
page readonly
|
||
B40000
|
direct allocation
|
page read and write
|
||
30CC000
|
trusted library allocation
|
page read and write
|
||
4207000
|
heap
|
page read and write
|
||
5150000
|
heap
|
page read and write
|
||
1C51E000
|
heap
|
page read and write
|
||
1ECDCE13000
|
heap
|
page read and write
|
||
1ECDCE00000
|
heap
|
page read and write
|
||
410000
|
heap
|
page read and write
|
||
4A54000
|
heap
|
page read and write
|
||
76A1000
|
heap
|
page read and write
|
||
268C1241000
|
heap
|
page read and write
|
||
137A000
|
heap
|
page read and write
|
||
411000
|
unkown
|
page readonly
|
||
1770000
|
heap
|
page read and write
|
||
5BAE000
|
heap
|
page read and write
|
||
1146000
|
heap
|
page read and write
|
||
316D000
|
trusted library allocation
|
page read and write
|
||
3820000
|
direct allocation
|
page execute and read and write
|
||
1ECDCD15000
|
trusted library allocation
|
page read and write
|
||
1C2B8000
|
direct allocation
|
page execute read
|
||
1740000
|
heap
|
page read and write
|
||
CA2000
|
unkown
|
page execute and write copy
|
||
2AFC000
|
heap
|
page read and write
|
||
187F000
|
heap
|
page read and write
|
||
498000
|
unkown
|
page write copy
|
||
2078000
|
direct allocation
|
page read and write
|
||
41CE000
|
heap
|
page read and write
|
||
12C0000
|
trusted library allocation
|
page read and write
|
||
2CD1000
|
heap
|
page read and write
|
||
18EF000
|
heap
|
page read and write
|
||
329C000
|
trusted library allocation
|
page read and write
|
||
18C5000
|
heap
|
page read and write
|
||
423000
|
unkown
|
page read and write
|
||
140F62000
|
unkown
|
page execute read
|
||
21A8000
|
direct allocation
|
page read and write
|
||
3420000
|
heap
|
page read and write
|
||
74FF000
|
heap
|
page read and write
|
||
74F3000
|
heap
|
page read and write
|
||
13E4000
|
heap
|
page read and write
|
||
10CE000
|
heap
|
page read and write
|
||
2F50000
|
heap
|
page read and write
|
||
75F8000
|
heap
|
page read and write
|
||
18E7000
|
heap
|
page read and write
|
||
4F72000
|
trusted library allocation
|
page read and write
|
||
69DE000
|
stack
|
page read and write
|
||
4F3E000
|
stack
|
page read and write
|
||
E01000
|
unkown
|
page execute and read and write
|
||
370F000
|
stack
|
page read and write
|
||
41F2000
|
heap
|
page read and write
|
||
2D3E000
|
trusted library allocation
|
page read and write
|
||
1906000
|
heap
|
page read and write
|
||
FE4000
|
heap
|
page read and write
|
||
1160000
|
heap
|
page read and write
|
||
4C0000
|
heap
|
page read and write
|
||
50E2000
|
heap
|
page read and write
|
||
FD0000
|
trusted library allocation
|
page read and write
|
||
1ECDCF00000
|
heap
|
page read and write
|
||
4F60000
|
trusted library allocation
|
page read and write
|
||
41EC000
|
heap
|
page read and write
|
||
3AB0000
|
heap
|
page read and write
|
||
50FD000
|
heap
|
page read and write
|
||
18D8000
|
heap
|
page read and write
|
||
1260000
|
heap
|
page read and write
|
||
6760000
|
trusted library allocation
|
page execute and read and write
|
||
970000
|
heap
|
page read and write
|
||
9FB000
|
stack
|
page read and write
|
||
686000
|
unkown
|
page execute and read and write
|
||
5BBC000
|
stack
|
page read and write
|
||
51BA000
|
heap
|
page execute and read and write
|
||
516000
|
unkown
|
page readonly
|
||
5885000
|
heap
|
page read and write
|
||
3964000
|
direct allocation
|
page execute and read and write
|
||
653000
|
unkown
|
page execute and read and write
|
||
1482000
|
trusted library allocation
|
page read and write
|
||
EE0000
|
unkown
|
page execute and write copy
|
||
57DA000
|
heap
|
page read and write
|
||
140001000
|
unkown
|
page execute read
|
||
5720000
|
trusted library allocation
|
page execute and read and write
|
||
4B41000
|
heap
|
page read and write
|
||
3D1B000
|
heap
|
page read and write
|
||
1907000
|
heap
|
page read and write
|
||
307D000
|
trusted library allocation
|
page read and write
|
||
8B0000
|
heap
|
page read and write
|
||
E75000
|
trusted library allocation
|
page execute and read and write
|
||
2BC4000
|
trusted library allocation
|
page read and write
|
||
18D8000
|
heap
|
page read and write
|
||
1286000
|
heap
|
page read and write
|
||
9A4000
|
heap
|
page read and write
|
||
400000
|
remote allocation
|
page execute and read and write
|
||
49C000
|
unkown
|
page readonly
|
||
4A54000
|
heap
|
page read and write
|
||
16559000
|
heap
|
page read and write
|
||
FE4000
|
heap
|
page read and write
|
||
10AE000
|
stack
|
page read and write
|
||
187A000
|
heap
|
page read and write
|
||
2B3E000
|
stack
|
page read and write
|
||
41FF000
|
heap
|
page read and write
|
||
1B6E000
|
stack
|
page read and write
|
||
2CF0000
|
heap
|
page read and write
|
||
401000
|
unkown
|
page execute read
|
||
566000
|
unkown
|
page execute and read and write
|
||
1C4F2000
|
direct allocation
|
page read and write
|
||
FE0000
|
direct allocation
|
page read and write
|
||
17D7000
|
heap
|
page read and write
|
||
3110000
|
direct allocation
|
page read and write
|
||
174F03D5000
|
heap
|
page read and write
|
||
41A000
|
unkown
|
page readonly
|
||
400000
|
unkown
|
page readonly
|
||
FB0000
|
direct allocation
|
page read and write
|
||
CB4000
|
unkown
|
page readonly
|
||
9A4000
|
heap
|
page read and write
|
||
FB0000
|
direct allocation
|
page read and write
|
||
2B23000
|
heap
|
page read and write
|
||
49BB000
|
heap
|
page read and write
|
||
DC0000
|
heap
|
page read and write
|
||
528000
|
heap
|
page read and write
|
||
30CA000
|
trusted library allocation
|
page read and write
|
||
18C5000
|
heap
|
page read and write
|
||
41D6000
|
heap
|
page read and write
|
||
2D5F000
|
stack
|
page read and write
|
||
427000
|
unkown
|
page read and write
|
||
18AF000
|
heap
|
page read and write
|
||
7466000
|
direct allocation
|
page read and write
|
||
268DB530000
|
heap
|
page read and write
|
||
2B2B000
|
heap
|
page read and write
|
||
531C000
|
heap
|
page read and write
|
||
16F7000
|
heap
|
page read and write
|
||
4D0000
|
direct allocation
|
page read and write
|
||
18D5000
|
heap
|
page read and write
|
||
18E3000
|
heap
|
page read and write
|
||
3964000
|
direct allocation
|
page execute and read and write
|
||
7FF848F70000
|
trusted library allocation
|
page read and write
|
||
2B00000
|
heap
|
page read and write
|
||
327D000
|
trusted library allocation
|
page read and write
|
||
30E1000
|
trusted library allocation
|
page read and write
|
||
1210000
|
direct allocation
|
page read and write
|
||
E84000
|
heap
|
page read and write
|
||
76A5000
|
heap
|
page read and write
|
||
11F4000
|
heap
|
page read and write
|
||
268C11A0000
|
heap
|
page read and write
|
||
7FF848D94000
|
trusted library allocation
|
page execute and read and write
|
||
13DF000
|
heap
|
page read and write
|
||
4162000
|
heap
|
page read and write
|
||
2B3A000
|
heap
|
page read and write
|
||
7FF848EF0000
|
trusted library allocation
|
page read and write
|
||
9EE0000
|
heap
|
page read and write
|
||
1182000
|
heap
|
page read and write
|
||
174F0330000
|
heap
|
page read and write
|
||
17D3000
|
heap
|
page read and write
|
||
268C32B7000
|
trusted library allocation
|
page read and write
|
||
268DB5F3000
|
heap
|
page read and write
|
||
9A5000
|
heap
|
page read and write
|
||
7FF849000000
|
trusted library allocation
|
page read and write
|
||
EEC000
|
unkown
|
page execute and write copy
|
||
40F9000
|
heap
|
page read and write
|
||
FB0000
|
heap
|
page read and write
|
||
556000
|
heap
|
page read and write
|
||
8EA000
|
unkown
|
page execute read
|
||
7FF848E54000
|
trusted library allocation
|
page read and write
|
||
22DEDE28000
|
heap
|
page read and write
|
||
1110000
|
heap
|
page read and write
|
||
B30000
|
heap
|
page read and write
|
||
1442000
|
unkown
|
page execute and write copy
|
||
140CAD000
|
unkown
|
page execute read
|
||
5A6E000
|
heap
|
page read and write
|
||
D80000
|
heap
|
page read and write
|
||
31D7000
|
trusted library allocation
|
page read and write
|
||
111A000
|
heap
|
page read and write
|
||
268DB568000
|
heap
|
page read and write
|
||
1100BF02000
|
heap
|
page read and write
|
||
564000
|
unkown
|
page execute and read and write
|
||
7FF848EA6000
|
trusted library allocation
|
page read and write
|
||
F23000
|
unkown
|
page execute and write copy
|
||
6471000
|
trusted library allocation
|
page read and write
|
||
7FF848F06000
|
trusted library allocation
|
page read and write
|
||
76B0000
|
heap
|
page read and write
|
||
2B1C000
|
heap
|
page read and write
|
||
82E000
|
stack
|
page read and write
|
||
781000
|
heap
|
page read and write
|
||
B80000
|
heap
|
page read and write
|
||
40C2000
|
heap
|
page read and write
|
||
1100BE3C000
|
heap
|
page read and write
|
||
7FF848F20000
|
trusted library allocation
|
page read and write
|
||
7FF848F1B000
|
trusted library allocation
|
page read and write
|
||
564000
|
unkown
|
page execute and read and write
|
||
4102000
|
heap
|
page read and write
|
||
1874000
|
heap
|
page read and write
|
||
76A4000
|
heap
|
page read and write
|
||
B60000
|
direct allocation
|
page read and write
|
||
57FA000
|
direct allocation
|
page read and write
|
||
726E000
|
stack
|
page read and write
|
||
1F0000
|
heap
|
page read and write
|
||
18AD000
|
heap
|
page read and write
|
||
99000
|
stack
|
page read and write
|
||
329E000
|
stack
|
page read and write
|
||
18BC000
|
heap
|
page read and write
|
||
40F2000
|
heap
|
page read and write
|
||
3111000
|
trusted library allocation
|
page read and write
|
||
28F0000
|
direct allocation
|
page read and write
|
||
FE0000
|
direct allocation
|
page read and write
|
||
558E000
|
stack
|
page read and write
|
||
5410000
|
trusted library allocation
|
page read and write
|
||
41A7000
|
heap
|
page read and write
|
||
316F000
|
trusted library allocation
|
page read and write
|
||
76A1000
|
heap
|
page read and write
|
||
18D5000
|
heap
|
page read and write
|
||
882000
|
heap
|
page read and write
|
||
427000
|
unkown
|
page readonly
|
||
40FF000
|
heap
|
page read and write
|
||
2450000
|
direct allocation
|
page read and write
|
||
4B17000
|
heap
|
page read and write
|
||
18F9000
|
heap
|
page read and write
|
||
13EA000
|
heap
|
page read and write
|
||
4971000
|
heap
|
page read and write
|
||
FC117C000
|
stack
|
page read and write
|
||
9A4000
|
heap
|
page read and write
|
||
400000
|
unkown
|
page readonly
|
||
6E5E000
|
stack
|
page read and write
|
||
456000
|
remote allocation
|
page execute and read and write
|
||
515000
|
unkown
|
page readonly
|
||
167012F0000
|
heap
|
page read and write
|
||
18C5000
|
heap
|
page read and write
|
||
4F66000
|
trusted library allocation
|
page read and write
|
||
BA0000
|
remote allocation
|
page read and write
|
||
44D000
|
unkown
|
page write copy
|
||
18C5000
|
heap
|
page read and write
|
||
5A1E000
|
stack
|
page read and write
|
||
70A0000
|
heap
|
page read and write
|
||
400000
|
unkown
|
page readonly
|
||
18D5000
|
heap
|
page read and write
|
||
40DA000
|
heap
|
page read and write
|
||
268C1222000
|
heap
|
page read and write
|
||
41BD000
|
heap
|
page read and write
|
||
514E000
|
stack
|
page read and write
|
||
315C000
|
trusted library allocation
|
page read and write
|
||
16244000
|
heap
|
page read and write
|
||
5970000
|
heap
|
page read and write
|
||
107F000
|
unkown
|
page execute and write copy
|
||
1DD06930000
|
heap
|
page read and write
|
||
268C13F3000
|
trusted library allocation
|
page read and write
|
||
7FF848D80000
|
trusted library allocation
|
page read and write
|
||
CCD000
|
stack
|
page read and write
|
||
268DB56B000
|
heap
|
page read and write
|
||
316B000
|
trusted library allocation
|
page read and write
|
||
1517000
|
heap
|
page read and write
|
||
41A000
|
unkown
|
page readonly
|
||
B60000
|
direct allocation
|
page read and write
|
||
40FB000
|
heap
|
page read and write
|
||
1370000
|
heap
|
page read and write
|
||
3B93000
|
trusted library allocation
|
page read and write
|
||
E02000
|
unkown
|
page write copy
|
||
B60000
|
direct allocation
|
page read and write
|
||
310F000
|
trusted library allocation
|
page read and write
|
||
1F0000
|
direct allocation
|
page read and write
|
||
3119000
|
trusted library allocation
|
page read and write
|
||
15D9F000
|
stack
|
page read and write
|
||
18B8000
|
heap
|
page read and write
|
||
1100BDE0000
|
heap
|
page read and write
|
||
6550000
|
trusted library allocation
|
page execute and read and write
|
||
7CE000
|
heap
|
page read and write
|
||
CB0887F000
|
stack
|
page read and write
|
||
41F7000
|
heap
|
page read and write
|
||
614B57E000
|
unkown
|
page readonly
|
||
3220000
|
trusted library allocation
|
page read and write
|
||
30E5000
|
trusted library allocation
|
page read and write
|
||
4DCD000
|
stack
|
page read and write
|
||
2B41000
|
heap
|
page read and write
|
||
75A1000
|
heap
|
page read and write
|
||
3067000
|
trusted library allocation
|
page read and write
|
||
852000
|
heap
|
page read and write
|
||
1161000
|
heap
|
page read and write
|
||
10C0000
|
heap
|
page read and write
|
||
E70000
|
trusted library allocation
|
page read and write
|
||
6A58E000
|
unkown
|
page readonly
|
||
5470000
|
trusted library allocation
|
page read and write
|
||
7FF848F08000
|
trusted library allocation
|
page read and write
|
||
4E8F000
|
heap
|
page read and write
|
||
64D0000
|
trusted library allocation
|
page read and write
|
||
2CD1000
|
heap
|
page read and write
|
||
2B2F000
|
heap
|
page read and write
|
||
29D0000
|
trusted library allocation
|
page read and write
|
||
D05000
|
unkown
|
page write copy
|
||
133A000
|
heap
|
page read and write
|
||
2B41000
|
heap
|
page read and write
|
||
41FF000
|
heap
|
page read and write
|
||
7970000
|
trusted library allocation
|
page read and write
|
||
CAC000
|
unkown
|
page readonly
|
||
545000
|
unkown
|
page readonly
|
||
1250000
|
heap
|
page read and write
|
||
5632000
|
heap
|
page read and write
|
||
18B8000
|
heap
|
page read and write
|
||
40A000
|
unkown
|
page write copy
|
||
6A4E0000
|
unkown
|
page readonly
|
||
3071000
|
trusted library allocation
|
page read and write
|
||
324F000
|
trusted library allocation
|
page read and write
|
||
492000
|
unkown
|
page read and write
|
||
69F0000
|
trusted library allocation
|
page read and write
|
||
12F3000
|
heap
|
page read and write
|
||
2B35000
|
heap
|
page read and write
|
||
3A11000
|
heap
|
page read and write
|
||
6BDD000
|
stack
|
page read and write
|
||
2AFC000
|
heap
|
page read and write
|
||
40E9000
|
heap
|
page read and write
|
||
EC4000
|
heap
|
page read and write
|
||
420000
|
heap
|
page read and write
|
||
4FB5000
|
trusted library allocation
|
page read and write
|
||
18B0000
|
heap
|
page read and write
|
||
6A4E1000
|
unkown
|
page execute read
|
||
2CFD000
|
trusted library allocation
|
page read and write
|
||
42C9000
|
heap
|
page read and write
|
||
B60000
|
direct allocation
|
page read and write
|
||
1200000
|
heap
|
page read and write
|
||
1181000
|
heap
|
page read and write
|
||
55D0000
|
trusted library allocation
|
page execute and read and write
|
||
174F03D0000
|
heap
|
page read and write
|
||
28F0000
|
direct allocation
|
page read and write
|
||
BB0000
|
unkown
|
page readonly
|
||
116A000
|
heap
|
page read and write
|
||
2CD1000
|
heap
|
page read and write
|
||
432000
|
unkown
|
page read and write
|
||
541B000
|
trusted library allocation
|
page read and write
|
||
ED0000
|
heap
|
page read and write
|
||
40CE000
|
heap
|
page read and write
|
||
14E000
|
stack
|
page read and write
|
||
ED1E000
|
stack
|
page read and write
|
||
10A0000
|
trusted library allocation
|
page read and write
|
||
4989000
|
heap
|
page read and write
|
||
16701210000
|
heap
|
page read and write
|
||
4FE000
|
stack
|
page read and write
|
||
3964000
|
direct allocation
|
page execute and read and write
|
||
4AFF000
|
heap
|
page read and write
|
||
41CE000
|
heap
|
page read and write
|
||
B40000
|
direct allocation
|
page read and write
|
||
420C000
|
heap
|
page read and write
|
||
661000
|
unkown
|
page execute and read and write
|
||
13E1000
|
heap
|
page read and write
|
||
2F60000
|
heap
|
page read and write
|
||
8EAC7F000
|
stack
|
page read and write
|
||
1ECDCF13000
|
heap
|
page read and write
|
||
7970000
|
trusted library allocation
|
page read and write
|
||
71A9000
|
heap
|
page read and write
|
||
8B9000
|
heap
|
page read and write
|
||
49E000
|
unkown
|
page read and write
|
||
2D56000
|
trusted library allocation
|
page read and write
|
||
3100000
|
direct allocation
|
page read and write
|
||
2B23000
|
heap
|
page read and write
|
||
5B60000
|
trusted library allocation
|
page execute and read and write
|
||
2B41000
|
heap
|
page read and write
|
||
18F9000
|
heap
|
page read and write
|
||
18AD000
|
heap
|
page read and write
|
||
19C000
|
stack
|
page read and write
|
||
18E2000
|
heap
|
page read and write
|
||
A10000
|
heap
|
page read and write
|
||
1FC1000
|
direct allocation
|
page read and write
|
||
12DE000
|
heap
|
page read and write
|
||
11F4000
|
heap
|
page read and write
|
||
1100BE2B000
|
heap
|
page read and write
|
||
31A3000
|
trusted library allocation
|
page read and write
|
||
41F2000
|
heap
|
page read and write
|
||
116E000
|
heap
|
page read and write
|
||
18CD000
|
heap
|
page read and write
|
||
CE1000
|
unkown
|
page execute read
|
||
1385E000
|
stack
|
page read and write
|
||
40C000
|
unkown
|
page readonly
|
||
BA0000
|
remote allocation
|
page read and write
|
||
16701002000
|
heap
|
page read and write
|
||
2190000
|
heap
|
page read and write
|
||
2AF3000
|
heap
|
page read and write
|
||
EEA000
|
unkown
|
page execute and write copy
|
||
2470000
|
trusted library allocation
|
page read and write
|
||
55D000
|
heap
|
page read and write
|
||
18AE000
|
heap
|
page read and write
|
||
52A0000
|
heap
|
page execute and read and write
|
||
1070000
|
trusted library allocation
|
page read and write
|
||
7FF4FC880000
|
trusted library allocation
|
page execute and read and write
|
||
74E2000
|
direct allocation
|
page read and write
|
||
FB0000
|
direct allocation
|
page read and write
|
||
16701040000
|
heap
|
page read and write
|
||
5B5F000
|
stack
|
page read and write
|
||
813000
|
unkown
|
page write copy
|
||
6A0000
|
heap
|
page read and write
|
||
4A34000
|
heap
|
page read and write
|
||
1340000
|
heap
|
page read and write
|
||
8EEE000
|
stack
|
page read and write
|
||
1361000
|
heap
|
page read and write
|
||
18BC000
|
heap
|
page read and write
|
||
15EFC000
|
stack
|
page read and write
|
||
1487000
|
trusted library allocation
|
page execute and read and write
|
||
2B41000
|
heap
|
page read and write
|
||
18B8000
|
heap
|
page read and write
|
||
13DF000
|
heap
|
page read and write
|
||
65AF000
|
heap
|
page read and write
|
||
3175000
|
trusted library allocation
|
page read and write
|
||
17D1000
|
heap
|
page read and write
|
||
2198000
|
direct allocation
|
page read and write
|
||
5BB6000
|
heap
|
page read and write
|
||
3C91000
|
trusted library allocation
|
page read and write
|
||
64C0000
|
trusted library allocation
|
page read and write
|
||
2B5D000
|
heap
|
page read and write
|
||
EDC000
|
unkown
|
page execute and write copy
|
||
2F30000
|
heap
|
page read and write
|
||
16700FF0000
|
heap
|
page read and write
|
||
31D1000
|
trusted library allocation
|
page read and write
|
||
1152000
|
heap
|
page read and write
|
||
3C7B000
|
trusted library allocation
|
page read and write
|
||
AD0000
|
heap
|
page read and write
|
||
2F5A000
|
heap
|
page read and write
|
||
18B7000
|
heap
|
page read and write
|
||
4989000
|
heap
|
page read and write
|
||
F58000
|
heap
|
page read and write
|
||
614B67C000
|
stack
|
page read and write
|
||
40C000
|
unkown
|
page readonly
|
||
FE0000
|
direct allocation
|
page read and write
|
||
11FE000
|
stack
|
page read and write
|
||
2354000
|
heap
|
page read and write
|
||
3101000
|
unkown
|
page execute read
|
||
2C91000
|
trusted library allocation
|
page read and write
|
||
440000
|
heap
|
page read and write
|
||
21A8000
|
direct allocation
|
page read and write
|
||
401000
|
unkown
|
page execute read
|
||
49E2000
|
heap
|
page read and write
|
||
614B47E000
|
unkown
|
page readonly
|
||
3A42000
|
trusted library allocation
|
page read and write
|
||
483000
|
unkown
|
page read and write
|
||
18BD000
|
heap
|
page read and write
|
||
410A000
|
heap
|
page read and write
|
||
606000
|
remote allocation
|
page execute and read and write
|
||
76C1000
|
heap
|
page read and write
|
||
41E2000
|
heap
|
page read and write
|
||
18AE000
|
heap
|
page read and write
|
||
5994000
|
heap
|
page read and write
|
||
55DD000
|
heap
|
page read and write
|
||
41CE000
|
heap
|
page read and write
|
||
31D3000
|
trusted library allocation
|
page read and write
|
||
2B42000
|
heap
|
page read and write
|
||
565B000
|
stack
|
page read and write
|
||
174F0230000
|
heap
|
page read and write
|
||
192B000
|
heap
|
page read and write
|
||
127E000
|
stack
|
page read and write
|
||
18B8000
|
heap
|
page read and write
|
||
15F7000
|
heap
|
page read and write
|
||
65B000
|
unkown
|
page execute and read and write
|
||
59A000
|
unkown
|
page execute and read and write
|
||
2B50000
|
heap
|
page read and write
|
||
17B9000
|
heap
|
page read and write
|
||
72D000
|
unkown
|
page execute and read and write
|
||
CB073FF000
|
stack
|
page read and write
|
||
E02000
|
unkown
|
page write copy
|
||
F90000
|
direct allocation
|
page read and write
|
||
124D000
|
trusted library allocation
|
page execute and read and write
|
||
7FF848ED5000
|
trusted library allocation
|
page read and write
|
||
76A5000
|
heap
|
page read and write
|
||
400000
|
unkown
|
page readonly
|
||
3281000
|
trusted library allocation
|
page read and write
|
||
9A4000
|
heap
|
page read and write
|
||
FE4000
|
heap
|
page read and write
|
||
7FF848BF2000
|
trusted library allocation
|
page read and write
|
||
11F4000
|
heap
|
page read and write
|
||
74F4000
|
heap
|
page read and write
|
||
741F000
|
direct allocation
|
page read and write
|
||
75A1000
|
heap
|
page read and write
|
||
18C5000
|
heap
|
page read and write
|
||
545000
|
unkown
|
page readonly
|
||
18FE000
|
heap
|
page read and write
|
||
5319000
|
heap
|
page read and write
|
||
FE4000
|
heap
|
page read and write
|
||
31BA000
|
trusted library allocation
|
page read and write
|
||
176B000
|
heap
|
page read and write
|
||
7FF848CA0000
|
trusted library allocation
|
page execute and read and write
|
||
795B000
|
heap
|
page read and write
|
||
1210000
|
direct allocation
|
page read and write
|
||
30DB000
|
trusted library allocation
|
page read and write
|
||
18AB000
|
heap
|
page read and write
|
||
FDD000
|
trusted library allocation
|
page execute and read and write
|
||
73FA000
|
direct allocation
|
page read and write
|
||
495000
|
heap
|
page read and write
|
||
18B0000
|
heap
|
page read and write
|
||
5D2C000
|
heap
|
page read and write
|
||
74C7000
|
direct allocation
|
page read and write
|
||
6740000
|
trusted library allocation
|
page execute and read and write
|
||
18D5000
|
heap
|
page read and write
|
||
4971000
|
heap
|
page read and write
|
||
3238000
|
trusted library allocation
|
page read and write
|
||
82D000
|
heap
|
page read and write
|
||
3115000
|
trusted library allocation
|
page read and write
|
||
268C123D000
|
heap
|
page read and write
|
||
450000
|
heap
|
page read and write
|
||
2AFC000
|
heap
|
page read and write
|
||
18C5000
|
heap
|
page read and write
|
||
41F2000
|
heap
|
page read and write
|
||
75F4000
|
heap
|
page read and write
|
||
22DEDE00000
|
heap
|
page read and write
|
||
308C000
|
trusted library allocation
|
page read and write
|
||
40E9000
|
heap
|
page read and write
|
||
6A580000
|
unkown
|
page write copy
|
||
B40000
|
direct allocation
|
page read and write
|
||
815000
|
unkown
|
page read and write
|
||
5442000
|
trusted library allocation
|
page read and write
|
||
7F0000
|
heap
|
page read and write
|
||
18B8000
|
heap
|
page read and write
|
||
3BD0000
|
heap
|
page read and write
|
||
14A0000
|
trusted library allocation
|
page read and write
|
||
41DF000
|
heap
|
page read and write
|
||
76A1000
|
heap
|
page read and write
|
||
7FA000
|
heap
|
page read and write
|
||
65F000
|
unkown
|
page execute and read and write
|
||
430000
|
heap
|
page read and write
|
||
2189000
|
heap
|
page read and write
|
||
1312000
|
heap
|
page read and write
|
||
13DF000
|
heap
|
page read and write
|
||
146D000
|
trusted library allocation
|
page execute and read and write
|
||
4B1D000
|
stack
|
page read and write
|
||
7FF848C90000
|
trusted library allocation
|
page read and write
|
||
1418000
|
heap
|
page read and write
|
||
30FC000
|
trusted library allocation
|
page read and write
|
||
268C1200000
|
heap
|
page read and write
|
||
3192000
|
trusted library allocation
|
page read and write
|
||
40F3000
|
heap
|
page read and write
|
||
614B0DB000
|
stack
|
page read and write
|
||
6A58C000
|
unkown
|
page read and write
|
||
2A21000
|
trusted library allocation
|
page read and write
|
||
EE2000
|
unkown
|
page execute and write copy
|
||
2BC0000
|
trusted library allocation
|
page read and write
|
||
11F4000
|
heap
|
page read and write
|
||
515000
|
unkown
|
page readonly
|
||
16EB000
|
heap
|
page read and write
|
||
268C1206000
|
heap
|
page read and write
|
||
7B5B000
|
heap
|
page read and write
|
||
3210000
|
trusted library allocation
|
page read and write
|
||
13DA000
|
heap
|
page read and write
|
||
1907000
|
heap
|
page read and write
|
||
268C2FB4000
|
trusted library allocation
|
page read and write
|
||
B40000
|
direct allocation
|
page read and write
|
||
13D0000
|
trusted library allocation
|
page read and write
|
||
2B40000
|
heap
|
page read and write
|
||
40F3000
|
heap
|
page read and write
|
||
882000
|
heap
|
page read and write
|
||
2A04000
|
trusted library allocation
|
page read and write
|
||
CFC000
|
unkown
|
page readonly
|
||
E72000
|
trusted library allocation
|
page read and write
|
||
28D9DA38000
|
heap
|
page read and write
|
||
2474000
|
heap
|
page read and write
|
||
1FB4000
|
direct allocation
|
page read and write
|
||
4F86000
|
trusted library allocation
|
page read and write
|
||
13DB000
|
heap
|
page read and write
|
||
2C88000
|
trusted library allocation
|
page read and write
|
||
2CD1000
|
heap
|
page read and write
|
||
18C5000
|
heap
|
page read and write
|
||
3092000
|
trusted library allocation
|
page read and write
|
||
18D5000
|
heap
|
page read and write
|
||
E60000
|
trusted library allocation
|
page read and write
|
||
3A4C9FE000
|
unkown
|
page readonly
|
||
573000
|
heap
|
page read and write
|
||
141A11000
|
unkown
|
page readonly
|
||
7A37000
|
heap
|
page read and write
|
||
6D1000
|
unkown
|
page execute and read and write
|
||
1ECDCD02000
|
trusted library allocation
|
page read and write
|
||
CE0000
|
trusted library allocation
|
page read and write
|
||
688000
|
unkown
|
page execute and read and write
|
||
329A000
|
trusted library allocation
|
page read and write
|
||
3104000
|
trusted library allocation
|
page read and write
|
||
189C000
|
heap
|
page read and write
|
||
EE4000
|
unkown
|
page execute and write copy
|
||
2470000
|
trusted library allocation
|
page read and write
|
||
6710000
|
heap
|
page execute and read and write
|
||
CB0947E000
|
stack
|
page read and write
|
||
52FE000
|
stack
|
page read and write
|
||
18B8000
|
heap
|
page read and write
|
||
18E7000
|
heap
|
page read and write
|
||
6500000
|
trusted library allocation
|
page read and write
|
||
7FF848EB2000
|
trusted library allocation
|
page read and write
|
||
41E7000
|
heap
|
page read and write
|
||
1ECDCD24000
|
heap
|
page read and write
|
||
1230000
|
direct allocation
|
page read and write
|
||
7970000
|
trusted library allocation
|
page read and write
|
||
50C5000
|
heap
|
page read and write
|
||
4B99000
|
heap
|
page read and write
|
||
FE4000
|
heap
|
page read and write
|
||
78AC000
|
heap
|
page read and write
|
||
41DF000
|
heap
|
page read and write
|
||
76A1000
|
heap
|
page read and write
|
||
667000
|
unkown
|
page execute and read and write
|
||
2AF3000
|
heap
|
page read and write
|
||
1F0000
|
direct allocation
|
page read and write
|
||
41B000
|
unkown
|
page readonly
|
||
2B00000
|
heap
|
page read and write
|
||
18BC000
|
heap
|
page read and write
|
||
68FC000
|
heap
|
page read and write
|
||
40D5000
|
heap
|
page read and write
|
||
6730000
|
trusted library allocation
|
page read and write
|
||
5941000
|
heap
|
page read and write
|
||
16040000
|
heap
|
page read and write
|
||
2B30000
|
heap
|
page read and write
|
||
328B000
|
trusted library allocation
|
page read and write
|
||
2F99000
|
trusted library allocation
|
page read and write
|
||
5B1000
|
heap
|
page read and write
|
||
32D0000
|
trusted library allocation
|
page read and write
|
||
1870000
|
heap
|
page read and write
|
||
3AA0000
|
remote allocation
|
page read and write
|
||
3107000
|
trusted library allocation
|
page read and write
|
||
11F4000
|
heap
|
page read and write
|
||
2B30000
|
heap
|
page read and write
|
||
401000
|
unkown
|
page execute read
|
||
2CD1000
|
heap
|
page read and write
|
||
189C000
|
heap
|
page read and write
|
||
41FF000
|
heap
|
page read and write
|
||
2470000
|
trusted library allocation
|
page read and write
|
||
30B2000
|
trusted library allocation
|
page read and write
|
||
65C0000
|
trusted library allocation
|
page execute and read and write
|
||
B11000
|
unkown
|
page execute and read and write
|
||
40DA000
|
heap
|
page read and write
|
||
2B42000
|
heap
|
page read and write
|
||
3034000
|
trusted library allocation
|
page read and write
|
||
3DDB000
|
heap
|
page read and write
|
||
41B6000
|
heap
|
page read and write
|
||
28D9D9D0000
|
heap
|
page read and write
|
||
41FF000
|
heap
|
page read and write
|
||
3953000
|
direct allocation
|
page execute and read and write
|
||
34CE000
|
stack
|
page read and write
|
||
40DD000
|
heap
|
page read and write
|
||
2AF3000
|
heap
|
page read and write
|
||
F25000
|
unkown
|
page execute and write copy
|
||
7B18000
|
heap
|
page read and write
|
||
FB0000
|
direct allocation
|
page read and write
|
||
4F92000
|
trusted library allocation
|
page read and write
|
||
CB1000
|
unkown
|
page readonly
|
||
F5C000
|
unkown
|
page execute and write copy
|
||
268C14A0000
|
heap
|
page execute and read and write
|
There are 2713 hidden memdumps, click here to show them.