Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
Quotation For Inverter.exe
|
PE32+ executable (GUI) x86-64 Mono/.Net assembly, for MS Windows
|
initial sample
|
||
C:\Users\user\AppData\Local\Temp\tmpBEAB.tmp
|
XML 1.0 document, ASCII text
|
dropped
|
||
C:\Users\user\AppData\Roaming\KaCTPSocApHQCE.exe
|
PE32+ executable (GUI) x86-64 Mono/.Net assembly, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\CLR_v4.0\UsageLogs\KaCTPSocApHQCE.exe.log
|
CSV text
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\CLR_v4.0\UsageLogs\Quotation For Inverter.exe.log
|
CSV text
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\Windows\PowerShell\StartupProfileData-NonInteractive
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\__PSScriptPolicyTest_han14qxc.v4g.ps1
|
ASCII text, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\__PSScriptPolicyTest_ktgcmbfk.hij.psm1
|
ASCII text, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\__PSScriptPolicyTest_of5t1xhi.qy5.ps1
|
ASCII text, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\__PSScriptPolicyTest_xfsci01p.jbp.psm1
|
ASCII text, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\tmpC4D5.tmp
|
XML 1.0 document, ASCII text
|
dropped
|
||
C:\Users\user\AppData\Roaming\KaCTPSocApHQCE.exe:Zone.Identifier
|
ASCII text, with CRLF line terminators
|
dropped
|
There are 2 hidden files, click here to show them.
Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Users\user\Desktop\Quotation For Inverter.exe
|
"C:\Users\user\Desktop\Quotation For Inverter.exe"
|
||
C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe
|
"C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe" Add-MpPreference -ExclusionPath "C:\Users\user\AppData\Roaming\KaCTPSocApHQCE.exe"
|
||
C:\Windows\System32\schtasks.exe
|
"C:\Windows\System32\schtasks.exe" /Create /TN "Updates\KaCTPSocApHQCE" /XML "C:\Users\user\AppData\Local\Temp\tmpBEAB.tmp"
|
||
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\RegSvcs.exe
|
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\RegSvcs.exe
|
||
C:\Users\user\AppData\Roaming\KaCTPSocApHQCE.exe
|
C:\Users\user\AppData\Roaming\KaCTPSocApHQCE.exe
|
||
C:\Windows\System32\schtasks.exe
|
"C:\Windows\System32\schtasks.exe" /Create /TN "Updates\KaCTPSocApHQCE" /XML "C:\Users\user\AppData\Local\Temp\tmpC4D5.tmp"
|
||
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\RegSvcs.exe
|
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\RegSvcs.exe
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\WerFault.exe
|
C:\Windows\system32\WerFault.exe -u -p 6496 -s 12
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\WerFault.exe
|
C:\Windows\system32\WerFault.exe -u -p 5476 -s 12
|
||
C:\Windows\System32\wbem\WmiPrvSE.exe
|
C:\Windows\system32\wbem\wmiprvse.exe -secured -Embedding
|
There are 3 hidden processes, click here to show them.
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
https://api.ipify.org
|
unknown
|
||
https://account.dyn.com/
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/05/identity/claims/name
|
unknown
|
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
13240000
|
trusted library allocation
|
page read and write
|
||
13E8E000
|
trusted library allocation
|
page read and write
|
||
1F27D000
|
heap
|
page read and write
|
||
1E204000
|
heap
|
page read and write
|
||
FF0000
|
trusted library section
|
page readonly
|
||
32D7000
|
trusted library allocation
|
page read and write
|
||
37A0000
|
heap
|
page execute and read and write
|
||
30CF000
|
trusted library allocation
|
page read and write
|
||
3285000
|
trusted library allocation
|
page read and write
|
||
1DDBE000
|
stack
|
page read and write
|
||
3295000
|
trusted library allocation
|
page read and write
|
||
7FFD34880000
|
trusted library allocation
|
page execute and read and write
|
||
316B000
|
trusted library allocation
|
page read and write
|
||
312D000
|
trusted library allocation
|
page read and write
|
||
3063000
|
trusted library allocation
|
page read and write
|
||
3321000
|
trusted library allocation
|
page read and write
|
||
7FFD34870000
|
trusted library allocation
|
page read and write
|
||
32EF000
|
trusted library allocation
|
page read and write
|
||
4173000
|
trusted library allocation
|
page read and write
|
||
3305000
|
trusted library allocation
|
page read and write
|
||
30F3000
|
trusted library allocation
|
page read and write
|
||
7FF4BD610000
|
trusted library allocation
|
page execute and read and write
|
||
F64000
|
heap
|
page read and write
|
||
3347000
|
trusted library allocation
|
page read and write
|
||
3075000
|
trusted library allocation
|
page read and write
|
||
34D8000
|
trusted library allocation
|
page read and write
|
||
30DF000
|
trusted library allocation
|
page read and write
|
||
323F000
|
trusted library allocation
|
page read and write
|
||
31BD000
|
trusted library allocation
|
page read and write
|
||
3171000
|
trusted library allocation
|
page read and write
|
||
3097000
|
trusted library allocation
|
page read and write
|
||
30E1000
|
trusted library allocation
|
page read and write
|
||
31E3000
|
trusted library allocation
|
page read and write
|
||
3035000
|
trusted library allocation
|
page read and write
|
||
322D000
|
trusted library allocation
|
page read and write
|
||
26CA9EE8000
|
heap
|
page read and write
|
||
3227000
|
trusted library allocation
|
page read and write
|
||
3287000
|
trusted library allocation
|
page read and write
|
||
9059AFF000
|
unkown
|
page read and write
|
||
7FFD346F0000
|
trusted library allocation
|
page read and write
|
||
307D000
|
trusted library allocation
|
page read and write
|
||
7FFD34780000
|
trusted library allocation
|
page read and write
|
||
30DD000
|
trusted library allocation
|
page read and write
|
||
31D1000
|
trusted library allocation
|
page read and write
|
||
7FFD346E2000
|
trusted library allocation
|
page read and write
|
||
3367000
|
trusted library allocation
|
page read and write
|
||
34B1000
|
trusted library allocation
|
page read and write
|
||
13BB8000
|
trusted library allocation
|
page read and write
|
||
3137000
|
trusted library allocation
|
page read and write
|
||
AC0000
|
heap
|
page read and write
|
||
344B000
|
trusted library allocation
|
page read and write
|
||
3509000
|
trusted library allocation
|
page read and write
|
||
3307000
|
trusted library allocation
|
page read and write
|
||
3067000
|
trusted library allocation
|
page read and write
|
||
3125000
|
trusted library allocation
|
page read and write
|
||
3071000
|
trusted library allocation
|
page read and write
|
||
4179000
|
trusted library allocation
|
page read and write
|
||
8F0000
|
heap
|
page read and write
|
||
31FB000
|
trusted library allocation
|
page read and write
|
||
3303000
|
trusted library allocation
|
page read and write
|
||
1BBE0000
|
heap
|
page read and write
|
||
203BE000
|
stack
|
page read and write
|
||
2F70000
|
trusted library allocation
|
page read and write
|
||
30DB000
|
trusted library allocation
|
page read and write
|
||
321B000
|
trusted library allocation
|
page read and write
|
||
7FFD346C2000
|
trusted library allocation
|
page read and write
|
||
1E6BE000
|
stack
|
page read and write
|
||
7FFD346D2000
|
trusted library allocation
|
page read and write
|
||
3353000
|
trusted library allocation
|
page read and write
|
||
313B000
|
trusted library allocation
|
page read and write
|
||
3247000
|
trusted library allocation
|
page read and write
|
||
3197000
|
trusted library allocation
|
page read and write
|
||
336F000
|
trusted library allocation
|
page read and write
|
||
7FFD348A0000
|
trusted library allocation
|
page read and write
|
||
3319000
|
trusted library allocation
|
page read and write
|
||
31C3000
|
trusted library allocation
|
page read and write
|
||
1A60000
|
trusted library section
|
page read and write
|
||
326B000
|
trusted library allocation
|
page read and write
|
||
347E000
|
trusted library allocation
|
page read and write
|
||
303D000
|
trusted library allocation
|
page read and write
|
||
32C5000
|
trusted library allocation
|
page read and write
|
||
3175000
|
trusted library allocation
|
page read and write
|
||
337D000
|
trusted library allocation
|
page read and write
|
||
3179000
|
trusted library allocation
|
page read and write
|
||
1F7BE000
|
stack
|
page read and write
|
||
30AF000
|
trusted library allocation
|
page read and write
|
||
A90000
|
trusted library allocation
|
page read and write
|
||
3151000
|
trusted library allocation
|
page read and write
|
||
3293000
|
trusted library allocation
|
page read and write
|
||
7FFD347D0000
|
trusted library allocation
|
page execute and read and write
|
||
207BE000
|
stack
|
page read and write
|
||
7FFD346D3000
|
trusted library allocation
|
page execute and read and write
|
||
30D9000
|
trusted library allocation
|
page read and write
|
||
A4FF53E000
|
unkown
|
page read and write
|
||
3FE8000
|
trusted library allocation
|
page read and write
|
||
3103000
|
trusted library allocation
|
page read and write
|
||
1E1BE000
|
stack
|
page read and write
|
||
30B1000
|
trusted library allocation
|
page read and write
|
||
1015000
|
heap
|
page read and write
|
||
3217000
|
trusted library allocation
|
page read and write
|
||
335B000
|
trusted library allocation
|
page read and write
|
||
4169000
|
trusted library allocation
|
page read and write
|
||
3281000
|
trusted library allocation
|
page read and write
|
||
3251000
|
trusted library allocation
|
page read and write
|
||
312B000
|
trusted library allocation
|
page read and write
|
||
30C9000
|
trusted library allocation
|
page read and write
|
||
3105000
|
trusted library allocation
|
page read and write
|
||
2FB1000
|
trusted library allocation
|
page read and write
|
||
1E1C0000
|
heap
|
page read and write
|
||
31CB000
|
trusted library allocation
|
page read and write
|
||
3113000
|
trusted library allocation
|
page read and write
|
||
3049000
|
trusted library allocation
|
page read and write
|
||
30A9000
|
trusted library allocation
|
page read and write
|
||
326D000
|
trusted library allocation
|
page read and write
|
||
311F000
|
trusted library allocation
|
page read and write
|
||
980000
|
heap
|
page read and write
|
||
335D000
|
trusted library allocation
|
page read and write
|
||
1BFB5000
|
heap
|
page read and write
|
||
334D000
|
trusted library allocation
|
page read and write
|
||
31B3000
|
trusted library allocation
|
page read and write
|
||
7FFD3485E000
|
trusted library allocation
|
page read and write
|
||
3127000
|
trusted library allocation
|
page read and write
|
||
1BBE3000
|
heap
|
page read and write
|
||
304F000
|
trusted library allocation
|
page read and write
|
||
3323000
|
trusted library allocation
|
page read and write
|
||
1E96E000
|
stack
|
page read and write
|
||
7FFD346D0000
|
trusted library allocation
|
page read and write
|
||
3237000
|
trusted library allocation
|
page read and write
|
||
30AB000
|
trusted library allocation
|
page read and write
|
||
320F000
|
trusted library allocation
|
page read and write
|
||
EF6000
|
heap
|
page read and write
|
||
1DB70000
|
heap
|
page read and write
|
||
7FFD346FB000
|
trusted library allocation
|
page execute and read and write
|
||
2F5E000
|
stack
|
page read and write
|
||
13DAC000
|
trusted library allocation
|
page read and write
|
||
EFC000
|
heap
|
page read and write
|
||
3177000
|
trusted library allocation
|
page read and write
|
||
3523000
|
trusted library allocation
|
page read and write
|
||
6B0000
|
heap
|
page read and write
|
||
F60000
|
heap
|
page read and write
|
||
32CF000
|
trusted library allocation
|
page read and write
|
||
304D000
|
trusted library allocation
|
page read and write
|
||
BB0000
|
heap
|
page read and write
|
||
31FF000
|
trusted library allocation
|
page read and write
|
||
3145000
|
trusted library allocation
|
page read and write
|
||
9B7000
|
heap
|
page read and write
|
||
1A90000
|
heap
|
page read and write
|
||
316F000
|
trusted library allocation
|
page read and write
|
||
3183000
|
trusted library allocation
|
page read and write
|
||
32FB000
|
trusted library allocation
|
page read and write
|
||
12F6F000
|
trusted library allocation
|
page read and write
|
||
3265000
|
trusted library allocation
|
page read and write
|
||
7FFD348A0000
|
trusted library allocation
|
page execute and read and write
|
||
26CA9E90000
|
heap
|
page read and write
|
||
30FB000
|
trusted library allocation
|
page read and write
|
||
1FABB000
|
stack
|
page read and write
|
||
32F1000
|
trusted library allocation
|
page read and write
|
||
319F000
|
trusted library allocation
|
page read and write
|
||
325F000
|
trusted library allocation
|
page read and write
|
||
309D000
|
trusted library allocation
|
page read and write
|
||
983000
|
heap
|
page read and write
|
||
30F1000
|
trusted library allocation
|
page read and write
|
||
1EEBB000
|
stack
|
page read and write
|
||
326F000
|
trusted library allocation
|
page read and write
|
||
323B000
|
trusted library allocation
|
page read and write
|
||
31D3000
|
trusted library allocation
|
page read and write
|
||
3147000
|
trusted library allocation
|
page read and write
|
||
3037000
|
trusted library allocation
|
page read and write
|
||
3165000
|
trusted library allocation
|
page read and write
|
||
7FFD34796000
|
trusted library allocation
|
page execute and read and write
|
||
3089000
|
trusted library allocation
|
page read and write
|
||
30FF000
|
trusted library allocation
|
page read and write
|
||
31AF000
|
trusted library allocation
|
page read and write
|
||
3261000
|
trusted library allocation
|
page read and write
|
||
B40000
|
heap
|
page read and write
|
||
416B000
|
trusted library allocation
|
page read and write
|
||
3325000
|
trusted library allocation
|
page read and write
|
||
327B000
|
trusted library allocation
|
page read and write
|
||
3510000
|
trusted library allocation
|
page read and write
|
||
32A5000
|
trusted library allocation
|
page read and write
|
||
3C80000
|
trusted library allocation
|
page read and write
|
||
3091000
|
trusted library allocation
|
page read and write
|
||
133CF000
|
trusted library allocation
|
page read and write
|
||
3041000
|
trusted library allocation
|
page read and write
|
||
3167000
|
trusted library allocation
|
page read and write
|
||
1F252000
|
heap
|
page read and write
|
||
34ED000
|
trusted library allocation
|
page read and write
|
||
1EABF000
|
stack
|
page read and write
|
||
3077000
|
trusted library allocation
|
page read and write
|
||
351F000
|
trusted library allocation
|
page read and write
|
||
3267000
|
trusted library allocation
|
page read and write
|
||
3069000
|
trusted library allocation
|
page read and write
|
||
317D000
|
trusted library allocation
|
page read and write
|
||
4099000
|
trusted library allocation
|
page read and write
|
||
1A95000
|
heap
|
page read and write
|
||
31C9000
|
trusted library allocation
|
page read and write
|
||
12F87000
|
trusted library allocation
|
page read and write
|
||
3355000
|
trusted library allocation
|
page read and write
|
||
7FFD34880000
|
trusted library allocation
|
page execute and read and write
|
||
31F3000
|
trusted library allocation
|
page read and write
|
||
3149000
|
trusted library allocation
|
page read and write
|
||
32A7000
|
trusted library allocation
|
page read and write
|
||
E70000
|
heap
|
page execute and read and write
|
||
E20000
|
trusted library allocation
|
page read and write
|
||
7FFD346EB000
|
trusted library allocation
|
page read and write
|
||
329B000
|
trusted library allocation
|
page read and write
|
||
319D000
|
trusted library allocation
|
page read and write
|
||
3207000
|
trusted library allocation
|
page read and write
|
||
7FFD346DD000
|
trusted library allocation
|
page execute and read and write
|
||
30D1000
|
trusted library allocation
|
page read and write
|
||
3315000
|
trusted library allocation
|
page read and write
|
||
7FFD3472C000
|
trusted library allocation
|
page execute and read and write
|
||
332B000
|
trusted library allocation
|
page read and write
|
||
32AF000
|
trusted library allocation
|
page read and write
|
||
32B5000
|
trusted library allocation
|
page read and write
|
||
314F000
|
trusted library allocation
|
page read and write
|
||
964000
|
heap
|
page read and write
|
||
32F9000
|
trusted library allocation
|
page read and write
|
||
3087000
|
trusted library allocation
|
page read and write
|
||
3249000
|
trusted library allocation
|
page read and write
|
||
31E1000
|
trusted library allocation
|
page read and write
|
||
7FFD346D4000
|
trusted library allocation
|
page read and write
|
||
313F000
|
trusted library allocation
|
page read and write
|
||
3301000
|
trusted library allocation
|
page read and write
|
||
5D4000
|
unkown
|
page readonly
|
||
3519000
|
trusted library allocation
|
page read and write
|
||
31E5000
|
trusted library allocation
|
page read and write
|
||
7FFD346CD000
|
trusted library allocation
|
page execute and read and write
|
||
3233000
|
trusted library allocation
|
page read and write
|
||
3159000
|
trusted library allocation
|
page read and write
|
||
3195000
|
trusted library allocation
|
page read and write
|
||
3083000
|
trusted library allocation
|
page read and write
|
||
31CD000
|
trusted library allocation
|
page read and write
|
||
2FB4000
|
trusted library allocation
|
page read and write
|
||
318F000
|
trusted library allocation
|
page read and write
|
||
30C7000
|
trusted library allocation
|
page read and write
|
||
416F000
|
trusted library allocation
|
page read and write
|
||
327F000
|
trusted library allocation
|
page read and write
|
||
3359000
|
trusted library allocation
|
page read and write
|
||
7FFD34766000
|
trusted library allocation
|
page read and write
|
||
3095000
|
trusted library allocation
|
page read and write
|
||
7FFD346B2000
|
trusted library allocation
|
page read and write
|
||
31E9000
|
trusted library allocation
|
page read and write
|
||
31B7000
|
trusted library allocation
|
page read and write
|
||
9B5000
|
heap
|
page read and write
|
||
3053000
|
trusted library allocation
|
page read and write
|
||
32AB000
|
trusted library allocation
|
page read and write
|
||
7FFD346DB000
|
trusted library allocation
|
page execute and read and write
|
||
315F000
|
trusted library allocation
|
page read and write
|
||
34E5000
|
trusted library allocation
|
page read and write
|
||
31D7000
|
trusted library allocation
|
page read and write
|
||
3141000
|
trusted library allocation
|
page read and write
|
||
607A5FC000
|
stack
|
page read and write
|
||
314D000
|
trusted library allocation
|
page read and write
|
||
1CA6D000
|
stack
|
page read and write
|
||
32D9000
|
trusted library allocation
|
page read and write
|
||
3221000
|
trusted library allocation
|
page read and write
|
||
3203000
|
trusted library allocation
|
page read and write
|
||
3101000
|
trusted library allocation
|
page read and write
|
||
31B9000
|
trusted library allocation
|
page read and write
|
||
1CA70000
|
heap
|
page read and write
|
||
3C01000
|
trusted library allocation
|
page read and write
|
||
7FFD34890000
|
trusted library allocation
|
page read and write
|
||
32ED000
|
trusted library allocation
|
page read and write
|
||
322F000
|
trusted library allocation
|
page read and write
|
||
F32000
|
heap
|
page read and write
|
||
3057000
|
trusted library allocation
|
page read and write
|
||
4163000
|
trusted library allocation
|
page read and write
|
||
1F2BD000
|
stack
|
page read and write
|
||
30BF000
|
trusted library allocation
|
page read and write
|
||
352B000
|
trusted library allocation
|
page read and write
|
||
3525000
|
trusted library allocation
|
page read and write
|
||
31AD000
|
trusted library allocation
|
page read and write
|
||
417D000
|
trusted library allocation
|
page read and write
|
||
30F5000
|
trusted library allocation
|
page read and write
|
||
334B000
|
trusted library allocation
|
page read and write
|
||
324F000
|
trusted library allocation
|
page read and write
|
||
3349000
|
trusted library allocation
|
page read and write
|
||
A40000
|
heap
|
page read and write
|
||
32C7000
|
trusted library allocation
|
page read and write
|
||
332F000
|
trusted library allocation
|
page read and write
|
||
3259000
|
trusted library allocation
|
page read and write
|
||
32DB000
|
trusted library allocation
|
page read and write
|
||
1F6BE000
|
stack
|
page read and write
|
||
3379000
|
trusted library allocation
|
page read and write
|
||
305F000
|
trusted library allocation
|
page read and write
|
||
7FFD34770000
|
trusted library allocation
|
page execute and read and write
|
||
31EF000
|
trusted library allocation
|
page read and write
|
||
32DD000
|
trusted library allocation
|
page read and write
|
||
3257000
|
trusted library allocation
|
page read and write
|
||
32B3000
|
trusted library allocation
|
page read and write
|
||
1D3C0000
|
heap
|
page read and write
|
||
3493000
|
trusted library allocation
|
page read and write
|
||
4167000
|
trusted library allocation
|
page read and write
|
||
3115000
|
trusted library allocation
|
page read and write
|
||
32E1000
|
trusted library allocation
|
page read and write
|
||
3111000
|
trusted library allocation
|
page read and write
|
||
30FD000
|
trusted library allocation
|
page read and write
|
||
3527000
|
trusted library allocation
|
page read and write
|
||
13354000
|
trusted library allocation
|
page read and write
|
||
3343000
|
trusted library allocation
|
page read and write
|
||
2F61000
|
trusted library allocation
|
page read and write
|
||
3299000
|
trusted library allocation
|
page read and write
|
||
308B000
|
trusted library allocation
|
page read and write
|
||
3289000
|
trusted library allocation
|
page read and write
|
||
31D9000
|
trusted library allocation
|
page read and write
|
||
30F7000
|
trusted library allocation
|
page read and write
|
||
30EB000
|
trusted library allocation
|
page read and write
|
||
1E1ED000
|
heap
|
page read and write
|
||
1E56E000
|
stack
|
page read and write
|
||
31B5000
|
trusted library allocation
|
page read and write
|
||
3341000
|
trusted library allocation
|
page read and write
|
||
3199000
|
trusted library allocation
|
page read and write
|
||
41B0000
|
trusted library allocation
|
page read and write
|
||
AB0000
|
trusted library allocation
|
page read and write
|
||
1A40000
|
trusted library section
|
page read and write
|
||
BAF000
|
trusted library allocation
|
page read and write
|
||
32CB000
|
trusted library allocation
|
page read and write
|
||
1938000
|
heap
|
page read and write
|
||
32B9000
|
trusted library allocation
|
page read and write
|
||
3117000
|
trusted library allocation
|
page read and write
|
||
520000
|
unkown
|
page readonly
|
||
3223000
|
trusted library allocation
|
page read and write
|
||
32E3000
|
trusted library allocation
|
page read and write
|
||
131E2000
|
trusted library allocation
|
page read and write
|
||
3211000
|
trusted library allocation
|
page read and write
|
||
335F000
|
trusted library allocation
|
page read and write
|
||
3279000
|
trusted library allocation
|
page read and write
|
||
3085000
|
trusted library allocation
|
page read and write
|
||
96C000
|
heap
|
page read and write
|
||
32D1000
|
trusted library allocation
|
page read and write
|
||
3497000
|
trusted library allocation
|
page read and write
|
||
331D000
|
trusted library allocation
|
page read and write
|
||
31F5000
|
trusted library allocation
|
page read and write
|
||
30AD000
|
trusted library allocation
|
page read and write
|
||
4177000
|
trusted library allocation
|
page read and write
|
||
309B000
|
trusted library allocation
|
page read and write
|
||
32BD000
|
trusted library allocation
|
page read and write
|
||
3231000
|
trusted library allocation
|
page read and write
|
||
7FFD3470C000
|
trusted library allocation
|
page execute and read and write
|
||
3155000
|
trusted library allocation
|
page read and write
|
||
30E3000
|
trusted library allocation
|
page read and write
|
||
31FD000
|
trusted library allocation
|
page read and write
|
||
24FB2B00000
|
heap
|
page read and write
|
||
308F000
|
trusted library allocation
|
page read and write
|
||
946000
|
heap
|
page read and write
|
||
3093000
|
trusted library allocation
|
page read and write
|
||
1120000
|
heap
|
page read and write
|
||
13BBF000
|
trusted library allocation
|
page read and write
|
||
1315C000
|
trusted library allocation
|
page read and write
|
||
31A5000
|
trusted library allocation
|
page read and write
|
||
32FF000
|
trusted library allocation
|
page read and write
|
||
12F68000
|
trusted library allocation
|
page read and write
|
||
1020000
|
heap
|
page read and write
|
||
13071000
|
trusted library allocation
|
page read and write
|
||
E40000
|
trusted library allocation
|
page read and write
|
||
EF0000
|
heap
|
page read and write
|
||
7FFD346B3000
|
trusted library allocation
|
page execute and read and write
|
||
1BDC0000
|
heap
|
page read and write
|
||
31A9000
|
trusted library allocation
|
page read and write
|
||
34DB000
|
trusted library allocation
|
page read and write
|
||
3488000
|
trusted library allocation
|
page read and write
|
||
351B000
|
trusted library allocation
|
page read and write
|
||
30C1000
|
trusted library allocation
|
page read and write
|
||
24FB2D80000
|
heap
|
page read and write
|
||
A4FF4B9000
|
stack
|
page read and write
|
||
32C3000
|
trusted library allocation
|
page read and write
|
||
B80000
|
heap
|
page read and write
|
||
30BD000
|
trusted library allocation
|
page read and write
|
||
24FB2D85000
|
heap
|
page read and write
|
||
7FFD348C0000
|
trusted library allocation
|
page read and write
|
||
BB5000
|
heap
|
page read and write
|
||
351D000
|
trusted library allocation
|
page read and write
|
||
7FFD34856000
|
trusted library allocation
|
page read and write
|
||
3283000
|
trusted library allocation
|
page read and write
|
||
3243000
|
trusted library allocation
|
page read and write
|
||
417B000
|
trusted library allocation
|
page read and write
|
||
3311000
|
trusted library allocation
|
page read and write
|
||
1A70000
|
trusted library section
|
page read and write
|
||
31DD000
|
trusted library allocation
|
page read and write
|
||
7FFD346E8000
|
trusted library allocation
|
page read and write
|
||
3121000
|
trusted library allocation
|
page read and write
|
||
3373000
|
trusted library allocation
|
page read and write
|
||
34C1000
|
trusted library allocation
|
page read and write
|
||
810000
|
heap
|
page read and write
|
||
24FB2B08000
|
heap
|
page read and write
|
||
A85000
|
heap
|
page read and write
|
||
4175000
|
trusted library allocation
|
page read and write
|
||
26CA9EE0000
|
heap
|
page read and write
|
||
9BB000
|
heap
|
page read and write
|
||
7FFD346BD000
|
trusted library allocation
|
page execute and read and write
|
||
7FFD34850000
|
trusted library allocation
|
page read and write
|
||
3335000
|
trusted library allocation
|
page read and write
|
||
32F5000
|
trusted library allocation
|
page read and write
|
||
32D5000
|
trusted library allocation
|
page read and write
|
||
1BFB0000
|
heap
|
page read and write
|
||
325B000
|
trusted library allocation
|
page read and write
|
||
3225000
|
trusted library allocation
|
page read and write
|
||
31D5000
|
trusted library allocation
|
page read and write
|
||
624000
|
unkown
|
page readonly
|
||
24FB2AC0000
|
heap
|
page read and write
|
||
7FFD346B0000
|
trusted library allocation
|
page read and write
|
||
317B000
|
trusted library allocation
|
page read and write
|
||
320B000
|
trusted library allocation
|
page read and write
|
||
4101000
|
trusted library allocation
|
page read and write
|
||
317F000
|
trusted library allocation
|
page read and write
|
||
1AF90000
|
trusted library allocation
|
page read and write
|
||
311B000
|
trusted library allocation
|
page read and write
|
||
1C3BD000
|
stack
|
page read and write
|
||
1125000
|
heap
|
page read and write
|
||
192E000
|
stack
|
page read and write
|
||
7FFD34860000
|
trusted library allocation
|
page execute and read and write
|
||
414D000
|
trusted library allocation
|
page read and write
|
||
26CA9E30000
|
heap
|
page read and write
|
||
3375000
|
trusted library allocation
|
page read and write
|
||
333B000
|
trusted library allocation
|
page read and write
|
||
31F7000
|
trusted library allocation
|
page read and write
|
||
ED0000
|
heap
|
page read and write
|
||
328F000
|
trusted library allocation
|
page read and write
|
||
322B000
|
trusted library allocation
|
page read and write
|
||
31A7000
|
trusted library allocation
|
page read and write
|
||
1CA80000
|
heap
|
page read and write
|
||
352D000
|
trusted library allocation
|
page read and write
|
||
3365000
|
trusted library allocation
|
page read and write
|
||
3059000
|
trusted library allocation
|
page read and write
|
||
3235000
|
trusted library allocation
|
page read and write
|
||
7FFD346D4000
|
trusted library allocation
|
page read and write
|
||
30B9000
|
trusted library allocation
|
page read and write
|
||
315D000
|
trusted library allocation
|
page read and write
|
||
348C000
|
trusted library allocation
|
page read and write
|
||
3BB1000
|
trusted library allocation
|
page read and write
|
||
A80000
|
heap
|
page read and write
|
||
7FFD348B2000
|
trusted library allocation
|
page read and write
|
||
1CAAE000
|
heap
|
page read and write
|
||
31ED000
|
trusted library allocation
|
page read and write
|
||
3205000
|
trusted library allocation
|
page read and write
|
||
790000
|
heap
|
page read and write
|
||
303B000
|
trusted library allocation
|
page read and write
|
||
B70000
|
trusted library section
|
page readonly
|
||
3297000
|
trusted library allocation
|
page read and write
|
||
3291000
|
trusted library allocation
|
page read and write
|
||
34E1000
|
trusted library allocation
|
page read and write
|
||
3189000
|
trusted library allocation
|
page read and write
|
||
7FFD348D0000
|
trusted library allocation
|
page read and write
|
||
3153000
|
trusted library allocation
|
page read and write
|
||
31EB000
|
trusted library allocation
|
page read and write
|
||
4160000
|
trusted library allocation
|
page read and write
|
||
30CD000
|
trusted library allocation
|
page read and write
|
||
7FFD348C0000
|
trusted library allocation
|
page execute and read and write
|
||
309F000
|
trusted library allocation
|
page read and write
|
||
3219000
|
trusted library allocation
|
page read and write
|
||
7FFD3487E000
|
trusted library allocation
|
page read and write
|
||
1E9E000
|
stack
|
page read and write
|
||
3275000
|
trusted library allocation
|
page read and write
|
||
3371000
|
trusted library allocation
|
page read and write
|
||
3337000
|
trusted library allocation
|
page read and write
|
||
3245000
|
trusted library allocation
|
page read and write
|
||
31B1000
|
trusted library allocation
|
page read and write
|
||
312F000
|
trusted library allocation
|
page read and write
|
||
7FFD34790000
|
trusted library allocation
|
page execute and read and write
|
||
30E5000
|
trusted library allocation
|
page read and write
|
||
331F000
|
trusted library allocation
|
page read and write
|
||
3123000
|
trusted library allocation
|
page read and write
|
||
1FFBE000
|
stack
|
page read and write
|
||
1BDD0000
|
heap
|
page read and write
|
||
30A7000
|
trusted library allocation
|
page read and write
|
||
304B000
|
trusted library allocation
|
page read and write
|
||
3081000
|
trusted library allocation
|
page read and write
|
||
31BF000
|
trusted library allocation
|
page read and write
|
||
30BB000
|
trusted library allocation
|
page read and write
|
||
3229000
|
trusted library allocation
|
page read and write
|
||
308D000
|
trusted library allocation
|
page read and write
|
||
30F9000
|
trusted library allocation
|
page read and write
|
||
3139000
|
trusted library allocation
|
page read and write
|
||
3273000
|
trusted library allocation
|
page read and write
|
||
336B000
|
trusted library allocation
|
page read and write
|
||
152E000
|
stack
|
page read and write
|
||
31BB000
|
trusted library allocation
|
page read and write
|
||
26CA9E10000
|
heap
|
page read and write
|
||
7FFD34870000
|
trusted library allocation
|
page read and write
|
||
330F000
|
trusted library allocation
|
page read and write
|
||
7FFD34892000
|
trusted library allocation
|
page read and write
|
||
3135000
|
trusted library allocation
|
page read and write
|
||
3143000
|
trusted library allocation
|
page read and write
|
||
A3D000
|
heap
|
page read and write
|
||
31C1000
|
trusted library allocation
|
page read and write
|
||
30C3000
|
trusted library allocation
|
page read and write
|
||
32E5000
|
trusted library allocation
|
page read and write
|
||
30D5000
|
trusted library allocation
|
page read and write
|
||
34D0000
|
trusted library allocation
|
page read and write
|
||
318D000
|
trusted library allocation
|
page read and write
|
||
32E9000
|
trusted library allocation
|
page read and write
|
||
3119000
|
trusted library allocation
|
page read and write
|
||
3760000
|
heap
|
page read and write
|
||
32AD000
|
trusted library allocation
|
page read and write
|
||
31DF000
|
trusted library allocation
|
page read and write
|
||
3329000
|
trusted library allocation
|
page read and write
|
||
305D000
|
trusted library allocation
|
page read and write
|
||
7B0000
|
heap
|
page read and write
|
||
327D000
|
trusted library allocation
|
page read and write
|
||
3109000
|
trusted library allocation
|
page read and write
|
||
30C5000
|
trusted library allocation
|
page read and write
|
||
313D000
|
trusted library allocation
|
page read and write
|
||
32F7000
|
trusted library allocation
|
page read and write
|
||
316D000
|
trusted library allocation
|
page read and write
|
||
3051000
|
trusted library allocation
|
page read and write
|
||
3398000
|
trusted library allocation
|
page read and write
|
||
3339000
|
trusted library allocation
|
page read and write
|
||
7FFD34760000
|
trusted library allocation
|
page read and write
|
||
13BB1000
|
trusted library allocation
|
page read and write
|
||
3039000
|
trusted library allocation
|
page read and write
|
||
310D000
|
trusted library allocation
|
page read and write
|
||
3185000
|
trusted library allocation
|
page read and write
|
||
329F000
|
trusted library allocation
|
page read and write
|
||
31F9000
|
trusted library allocation
|
page read and write
|
||
32B1000
|
trusted library allocation
|
page read and write
|
||
30B5000
|
trusted library allocation
|
page read and write
|
||
321D000
|
trusted library allocation
|
page read and write
|
||
7FFD34876000
|
trusted library allocation
|
page read and write
|
||
32D3000
|
trusted library allocation
|
page read and write
|
||
303F000
|
trusted library allocation
|
page read and write
|
||
32BB000
|
trusted library allocation
|
page read and write
|
||
324B000
|
trusted library allocation
|
page read and write
|
||
30B3000
|
trusted library allocation
|
page read and write
|
||
94C000
|
heap
|
page read and write
|
||
13CC1000
|
trusted library allocation
|
page read and write
|
||
7FFD346D0000
|
trusted library allocation
|
page read and write
|
||
332D000
|
trusted library allocation
|
page read and write
|
||
3351000
|
trusted library allocation
|
page read and write
|
||
3363000
|
trusted library allocation
|
page read and write
|
||
9B0000
|
heap
|
page read and write
|
||
306D000
|
trusted library allocation
|
page read and write
|
||
910000
|
heap
|
page read and write
|
||
3271000
|
trusted library allocation
|
page read and write
|
||
331B000
|
trusted library allocation
|
page read and write
|
||
30D3000
|
trusted library allocation
|
page read and write
|
||
3133000
|
trusted library allocation
|
page read and write
|
||
3215000
|
trusted library allocation
|
page read and write
|
||
3099000
|
trusted library allocation
|
page read and write
|
||
630FFD000
|
stack
|
page read and write
|
||
3327000
|
trusted library allocation
|
page read and write
|
||
32FD000
|
trusted library allocation
|
page read and write
|
||
333F000
|
trusted library allocation
|
page read and write
|
||
3377000
|
trusted library allocation
|
page read and write
|
||
1B7EC000
|
stack
|
page read and write
|
||
311D000
|
trusted library allocation
|
page read and write
|
||
3107000
|
trusted library allocation
|
page read and write
|
||
3560000
|
trusted library allocation
|
page read and write
|
||
32BF000
|
trusted library allocation
|
page read and write
|
||
7FFD346FD000
|
trusted library allocation
|
page execute and read and write
|
||
306F000
|
trusted library allocation
|
page read and write
|
||
940000
|
heap
|
page read and write
|
||
DF4000
|
stack
|
page read and write
|
||
3055000
|
trusted library allocation
|
page read and write
|
||
522000
|
unkown
|
page readonly
|
||
31C7000
|
trusted library allocation
|
page read and write
|
||
3239000
|
trusted library allocation
|
page read and write
|
||
9059B7F000
|
stack
|
page read and write
|
||
1BCC0000
|
heap
|
page read and write
|
||
3BAE000
|
stack
|
page read and write
|
||
30B7000
|
trusted library allocation
|
page read and write
|
||
3FE4000
|
trusted library allocation
|
page read and write
|
||
FBE000
|
stack
|
page read and write
|
||
3045000
|
trusted library allocation
|
page read and write
|
||
7D0000
|
heap
|
page read and write
|
||
3187000
|
trusted library allocation
|
page read and write
|
||
1DF10000
|
trusted library section
|
page read and write
|
||
319B000
|
trusted library allocation
|
page read and write
|
||
5D2000
|
unkown
|
page readonly
|
||
1B2E0000
|
heap
|
page read and write
|
||
3269000
|
trusted library allocation
|
page read and write
|
||
324D000
|
trusted library allocation
|
page read and write
|
||
307F000
|
trusted library allocation
|
page read and write
|
||
315B000
|
trusted library allocation
|
page read and write
|
||
3521000
|
trusted library allocation
|
page read and write
|
||
348A000
|
trusted library allocation
|
page read and write
|
||
3173000
|
trusted library allocation
|
page read and write
|
||
1090000
|
heap
|
page read and write
|
||
3061000
|
trusted library allocation
|
page read and write
|
||
3C6E000
|
trusted library allocation
|
page read and write
|
||
325D000
|
trusted library allocation
|
page read and write
|
||
3161000
|
trusted library allocation
|
page read and write
|
||
31F1000
|
trusted library allocation
|
page read and write
|
||
321F000
|
trusted library allocation
|
page read and write
|
||
7FFD346E0000
|
trusted library allocation
|
page read and write
|
||
7FFD348B8000
|
trusted library allocation
|
page read and write
|
||
2F9E000
|
trusted library allocation
|
page read and write
|
||
337F000
|
trusted library allocation
|
page read and write
|
||
1FBBB000
|
stack
|
page read and write
|
||
A4FF5BF000
|
stack
|
page read and write
|
||
3169000
|
trusted library allocation
|
page read and write
|
||
9059A79000
|
stack
|
page read and write
|
||
336D000
|
trusted library allocation
|
page read and write
|
||
3079000
|
trusted library allocation
|
page read and write
|
||
3209000
|
trusted library allocation
|
page read and write
|
||
330B000
|
trusted library allocation
|
page read and write
|
||
7F4000
|
stack
|
page read and write
|
||
333D000
|
trusted library allocation
|
page read and write
|
||
3369000
|
trusted library allocation
|
page read and write
|
||
EC0000
|
heap
|
page read and write
|
||
1C32C000
|
stack
|
page read and write
|
||
32A9000
|
trusted library allocation
|
page read and write
|
||
7FFD346F4000
|
trusted library allocation
|
page read and write
|
||
3345000
|
trusted library allocation
|
page read and write
|
||
7FFD346CB000
|
trusted library allocation
|
page read and write
|
||
7FFD347B6000
|
trusted library allocation
|
page execute and read and write
|
||
4171000
|
trusted library allocation
|
page read and write
|
||
31C5000
|
trusted library allocation
|
page read and write
|
||
307B000
|
trusted library allocation
|
page read and write
|
||
32C1000
|
trusted library allocation
|
page read and write
|
||
1EE72000
|
trusted library allocation
|
page read and write
|
||
B00000
|
heap
|
page execute and read and write
|
||
32F3000
|
trusted library allocation
|
page read and write
|
||
310B000
|
trusted library allocation
|
page read and write
|
||
334F000
|
trusted library allocation
|
page read and write
|
||
24FB2AE0000
|
heap
|
page read and write
|
||
32E7000
|
trusted library allocation
|
page read and write
|
||
30D7000
|
trusted library allocation
|
page read and write
|
||
32EB000
|
trusted library allocation
|
page read and write
|
||
3515000
|
trusted library allocation
|
page read and write
|
||
1ED6E000
|
stack
|
page read and write
|
||
318B000
|
trusted library allocation
|
page read and write
|
||
328D000
|
trusted library allocation
|
page read and write
|
||
7FFD348B0000
|
trusted library allocation
|
page read and write
|
||
330D000
|
trusted library allocation
|
page read and write
|
||
7FFD346B4000
|
trusted library allocation
|
page read and write
|
||
3213000
|
trusted library allocation
|
page read and write
|
||
34FD000
|
trusted library allocation
|
page read and write
|
||
3181000
|
trusted library allocation
|
page read and write
|
||
30A5000
|
trusted library allocation
|
page read and write
|
||
32A3000
|
trusted library allocation
|
page read and write
|
||
3317000
|
trusted library allocation
|
page read and write
|
||
26CA9D30000
|
heap
|
page read and write
|
||
30A3000
|
trusted library allocation
|
page read and write
|
||
323D000
|
trusted library allocation
|
page read and write
|
||
31CF000
|
trusted library allocation
|
page read and write
|
||
7FFD347F0000
|
trusted library allocation
|
page execute and read and write
|
||
3763000
|
heap
|
page read and write
|
||
1FEBF000
|
stack
|
page read and write
|
||
30E7000
|
trusted library allocation
|
page read and write
|
||
305B000
|
trusted library allocation
|
page read and write
|
||
416D000
|
trusted library allocation
|
page read and write
|
||
31A3000
|
trusted library allocation
|
page read and write
|
||
7FFD3476C000
|
trusted library allocation
|
page execute and read and write
|
||
3333000
|
trusted library allocation
|
page read and write
|
||
329D000
|
trusted library allocation
|
page read and write
|
||
328B000
|
trusted library allocation
|
page read and write
|
||
1010000
|
heap
|
page read and write
|
||
32A1000
|
trusted library allocation
|
page read and write
|
||
30CB000
|
trusted library allocation
|
page read and write
|
||
337B000
|
trusted library allocation
|
page read and write
|
||
30A1000
|
trusted library allocation
|
page read and write
|
||
3193000
|
trusted library allocation
|
page read and write
|
||
314B000
|
trusted library allocation
|
page read and write
|
||
30ED000
|
trusted library allocation
|
page read and write
|
||
26CA9E95000
|
heap
|
page read and write
|
||
3131000
|
trusted library allocation
|
page read and write
|
||
32C9000
|
trusted library allocation
|
page read and write
|
||
3517000
|
trusted library allocation
|
page read and write
|
||
3073000
|
trusted library allocation
|
page read and write
|
||
30E9000
|
trusted library allocation
|
page read and write
|
||
3394000
|
trusted library allocation
|
page read and write
|
||
13BE000
|
stack
|
page read and write
|
||
20BBB000
|
stack
|
page read and write
|
||
7FFD34786000
|
trusted library allocation
|
page read and write
|
||
12F61000
|
trusted library allocation
|
page read and write
|
||
3513000
|
trusted library allocation
|
page read and write
|
||
31E7000
|
trusted library allocation
|
page read and write
|
||
3255000
|
trusted library allocation
|
page read and write
|
||
F1B000
|
heap
|
page read and write
|
||
306B000
|
trusted library allocation
|
page read and write
|
||
F30000
|
heap
|
page read and write
|
||
3263000
|
trusted library allocation
|
page read and write
|
||
3163000
|
trusted library allocation
|
page read and write
|
||
1BBE0000
|
trusted library allocation
|
page read and write
|
||
24FB29E0000
|
heap
|
page read and write
|
||
349F000
|
trusted library allocation
|
page read and write
|
||
3191000
|
trusted library allocation
|
page read and write
|
||
3277000
|
trusted library allocation
|
page read and write
|
||
3043000
|
trusted library allocation
|
page read and write
|
||
612000
|
unkown
|
page readonly
|
||
32CD000
|
trusted library allocation
|
page read and write
|
||
3201000
|
trusted library allocation
|
page read and write
|
||
B30000
|
heap
|
page execute and read and write
|
||
3047000
|
trusted library allocation
|
page read and write
|
||
320D000
|
trusted library allocation
|
page read and write
|
||
3253000
|
trusted library allocation
|
page read and write
|
||
3331000
|
trusted library allocation
|
page read and write
|
||
3157000
|
trusted library allocation
|
page read and write
|
||
7FFD346C0000
|
trusted library allocation
|
page read and write
|
||
3241000
|
trusted library allocation
|
page read and write
|
||
310F000
|
trusted library allocation
|
page read and write
|
||
32B7000
|
trusted library allocation
|
page read and write
|
||
3309000
|
trusted library allocation
|
page read and write
|
||
3529000
|
trusted library allocation
|
page read and write
|
||
3357000
|
trusted library allocation
|
page read and write
|
||
31AB000
|
trusted library allocation
|
page read and write
|
||
3449000
|
trusted library allocation
|
page read and write
|
||
3129000
|
trusted library allocation
|
page read and write
|
||
31DB000
|
trusted library allocation
|
page read and write
|
||
30EF000
|
trusted library allocation
|
page read and write
|
||
32DF000
|
trusted library allocation
|
page read and write
|
||
3313000
|
trusted library allocation
|
page read and write
|
||
3361000
|
trusted library allocation
|
page read and write
|
||
7FFD3478C000
|
trusted library allocation
|
page execute and read and write
|
||
31A1000
|
trusted library allocation
|
page read and write
|
||
B7F000
|
trusted library section
|
page readonly
|
||
7FFD346ED000
|
trusted library allocation
|
page execute and read and write
|
||
4165000
|
trusted library allocation
|
page read and write
|
||
1F250000
|
heap
|
page read and write
|
||
7FFD346DD000
|
trusted library allocation
|
page execute and read and write
|
||
3065000
|
trusted library allocation
|
page read and write
|
There are 702 hidden memdumps, click here to show them.