IOC Report
am.exe

loading gif

Files

File Path
Type
Category
Malicious
am.exe
PE32 executable (GUI) Intel 80386, for MS Windows
initial sample
malicious
C:\Users\user\AppData\Local\Temp\ehjjrixuqulmn
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
malicious
C:\Users\user\AppData\Local\Temp\loufjff
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
malicious
C:\Users\user\AppData\Local\Temp\shiaswegdhp
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
malicious
C:\Users\user\AppData\Local\Temp\98a930d9
PNG image data, 1888 x 1469, 8-bit/color RGB, non-interlaced
dropped
C:\Users\user\AppData\Local\Temp\9f6ee75b
PNG image data, 1888 x 1469, 8-bit/color RGB, non-interlaced
dropped
C:\Users\user\AppData\Local\Temp\aaea12a3
PNG image data, 1888 x 1469, 8-bit/color RGB, non-interlaced
dropped
C:\Users\user\AppData\Local\Temp\ab1ed85b
data
dropped
C:\Users\user\AppData\Local\Temp\b1e81708
data
dropped
C:\Users\user\AppData\Local\Temp\bd338605
data
dropped
C:\Users\user\AppData\Roaming\Machete Lite\MacheteLiteSettings.xml
XML 1.0 document, ASCII text, with CRLF line terminators
dropped
C:\Windows\Tasks\Synapse Service.job
data
dropped
There are 2 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\am.exe
"C:\Users\user\Desktop\am.exe"
malicious
C:\Windows\SysWOW64\more.com
C:\Windows\SysWOW64\more.com
malicious
C:\Users\user\AppData\Roaming\AuthService\RstMwService.exe
C:\Users\user\AppData\Roaming\AuthService\RstMwService.exe
malicious
C:\Users\user\AppData\Roaming\AuthService\RstMwService.exe
C:\Users\user\AppData\Roaming\AuthService\RstMwService.exe
malicious
C:\Windows\SysWOW64\more.com
C:\Windows\SysWOW64\more.com
malicious
C:\Windows\SysWOW64\more.com
C:\Windows\SysWOW64\more.com
malicious
C:\Windows\SysWOW64\explorer.exe
C:\Windows\SysWOW64\explorer.exe
malicious
C:\Windows\SysWOW64\explorer.exe
C:\Windows\SysWOW64\explorer.exe
malicious
C:\Windows\SysWOW64\explorer.exe
C:\Windows\SysWOW64\explorer.exe
malicious
C:\Windows\System32\conhost.exe
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
C:\Windows\System32\conhost.exe
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
C:\Windows\System32\conhost.exe
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
There are 2 hidden processes, click here to show them.

URLs

Name
IP
Malicious
http://downloadsoftfiles.com/h9fmdW7/index.php
80.76.42.67
malicious
http://filesoftdownload.com/h9fmdW6/index.php
80.76.42.67
malicious
downloadsoftfiles.com/h9fmdW7/index.php
malicious
http://downloadfilesoft.com/h9fmdW5/index.php
80.76.42.67
malicious
http://filesoftdownload.com/h9fmdW6/index.phpd
unknown
https://s6.imgcdn.dev:443/3VOP8.png
unknown
https://sectigo.com/CPS0
unknown
http://www.vmware.com/0
unknown
http://filesoftdownload.com/h9fmdW6/index.php1B
unknown
http://crl.sectigo.com/SectigoPublicCodeSigningRootR46.crl0
unknown
http://ocsp.sectigo.com0
unknown
https://s6.imgcdn.dev/3VOP8.pnge
unknown
https://pixeldrain.com:443/api/file/rqxko9Q1
unknown
http://crt.sectigo.com/SectigoPublicCodeSigningCAR36.crt0#
unknown
http://www.vmware.com/0/
unknown
http://crt.sectigo.com/SectigoPublicCodeSigningRootR46.p7c0#
unknown
http://www.symauth.com/cps0(
unknown
https://pixeldrain.com/api/file/rqxko9Q1;https://s6.imgcdn.dev/3VOP8.png;https://www.upload.ee/image
unknown
http://filesoftdownload.com/h9fmdW6/index.phpq
unknown
https://pixeldrain.com/api/file/rqxko9Q1
50.7.236.50
http://downloadsoftfiles.com/
unknown
http://downloadsoftfiles.com/h9fmdW7/index.phpx
unknown
http://crl.sectigo.com/SectigoRSATimeStampingCA.crl0t
unknown
http://downloadfilesoft.com/h9fmdW5/index.phpd
unknown
http://downloadsoftfiles.com/h9fmdW7/index.php%
unknown
https://www.machetesoft.com&Couldn
unknown
http://downloadfilesoft.com/h9fmdW5/index.php(
unknown
http://crl.sectigo.com/SectigoPublicCodeSigningCAR36.crl0y
unknown
http://www.symauth.com/rpa00
unknown
http://crt.sectigo.com/SectigoRSATimeStampingCA.crt0#
unknown
http://downloadfilesoft.com/h9fmdW5/index.php51
unknown
http://downloadsoftfiles.com/h9fmdW7/index.phpi
unknown
http://filesoftdownload.com/h9fmdW6/index.phpB
unknown
http://www.info-zip.org/
unknown
http://downloadfilesoft.com/h9fmdW5/index.phps
unknown
http://filesoftdownload.com/h9fmdW6/index.phpdG
unknown
http://filesoftdownload.com/h9fmdW6/index.phpsoft
unknown
https://www.machetesoft.com/how-to.html
unknown
http://filesoftdownload.com/h9fmdW6/index.php33e54bb0548c8528f9$
unknown
https://s6.imgcdn.dev:443/3VOP8.pngw
unknown
https://store.payproglobal.com/checkout?products
unknown
https://s6.imgcdn.dev/3VOP8.png
188.114.96.3
http://filesoftdownload.com/h9fmdW6/index.phpN
unknown
http://downloadfilesoft.com/h9fmdW5/index.php2
unknown
There are 34 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
downloadsoftfiles.com
80.76.42.67
malicious
downloadfilesoft.com
80.76.42.67
malicious
filesoftdownload.com
80.76.42.67
malicious
pixeldrain.com
50.7.236.50
s6.imgcdn.dev
188.114.96.3

IPs

IP
Domain
Country
Malicious
80.76.42.67
downloadsoftfiles.com
Russian Federation
malicious
188.114.96.3
s6.imgcdn.dev
European Union
50.7.236.50
pixeldrain.com
United States

Memdumps

Base Address
Regiontype
Protect
Malicious
2EE1000
unkown
page execute read
malicious
21000
unkown
page execute read
malicious
5C30000
direct allocation
page read and write
malicious
5550000
direct allocation
page read and write
malicious
21000
unkown
page execute read
malicious
2701000
unkown
page execute read
malicious
59B0000
direct allocation
page read and write
malicious
549D000
unkown
page read and write
2AB6000
heap
page read and write
552B000
heap
page read and write
4E4E000
stack
page read and write
59A8000
heap
page read and write
2C0E000
stack
page read and write
790000
unkown
page readonly
7AE000
unkown
page readonly
4B74000
heap
page read and write
4960000
direct allocation
page read and write
5B3F000
stack
page read and write
2FE0000
heap
page read and write
711000
unkown
page readonly
771000
unkown
page readonly
54F6000
heap
page read and write
5491000
unkown
page read and write
3184000
heap
page read and write
699000
unkown
page write copy
3184000
heap
page read and write
E66000
heap
page read and write
6D8000
unkown
page readonly
3184000
heap
page read and write
3214000
heap
page read and write
5478000
heap
page read and write
60A000
unkown
page readonly
6D8000
unkown
page readonly
8F7000
heap
page read and write
5591000
unkown
page read and write
547A000
heap
page read and write
711000
unkown
page readonly
54E3000
heap
page read and write
400000
unkown
page readonly
50C0000
heap
page read and write
513A000
heap
page read and write
771000
unkown
page readonly
677D000
trusted library allocation
page read and write
5523000
heap
page read and write
4BF1000
heap
page read and write
560F000
heap
page read and write
54A6000
heap
page read and write
6B3000
unkown
page read and write
4F46000
heap
page read and write
3214000
heap
page read and write
557B000
heap
page read and write
2E10000
heap
page read and write
2ABA000
heap
page read and write
6B3000
unkown
page read and write
5471000
heap
page read and write
724000
unkown
page readonly
4FA1000
heap
page read and write
5B47000
unkown
page read and write
55BC000
heap
page read and write
32D0000
heap
page read and write
3215000
heap
page read and write
764000
unkown
page readonly
3180000
heap
page read and write
5079000
heap
page read and write
7B6000
unkown
page readonly
31D0000
heap
page read and write
3214000
heap
page read and write
53F8000
heap
page read and write
2CDE000
stack
page read and write
53F3000
heap
page read and write
276F000
unkown
page write copy
2B50000
remote allocation
page read and write
54A3000
heap
page read and write
54F2000
heap
page read and write
3490000
trusted library allocation
page read and write
3214000
heap
page read and write
5575000
heap
page read and write
75C000
unkown
page readonly
74E000
unkown
page readonly
526F000
stack
page read and write
3214000
heap
page read and write
5475000
heap
page read and write
3214000
heap
page read and write
678E000
trusted library allocation
page read and write
198000
stack
page read and write
3480000
direct allocation
page read and write
6AD000
unkown
page read and write
2AE0000
heap
page read and write
2B43000
heap
page read and write
59A0000
unkown
page read and write
79E000
unkown
page readonly
5591000
unkown
page read and write
3214000
heap
page read and write
27C3000
heap
page read and write
4BB9000
direct allocation
page read and write
3184000
heap
page read and write
26F0000
trusted library allocation
page read and write
2AEE000
stack
page read and write
60A000
unkown
page readonly
9EA000
heap
page read and write
5061000
trusted library allocation
page read and write
4D8E000
direct allocation
page read and write
54A7000
heap
page read and write
53FA000
heap
page read and write
755000
unkown
page readonly
5B7E000
stack
page read and write
760000
unkown
page readonly
3310000
unkown
page read and write
4893000
heap
page read and write
2B0F000
heap
page read and write
565E000
heap
page read and write
5470000
heap
page read and write
2EE0000
unkown
page write copy
82000
unkown
page read and write
79E000
unkown
page readonly
2940000
remote allocation
page read and write
6AD000
unkown
page read and write
2AA7000
heap
page read and write
2F90000
heap
page read and write
50D0000
direct allocation
page read and write
3210000
heap
page read and write
53F5000
heap
page read and write
567D000
heap
page read and write
281E000
stack
page read and write
2B01000
heap
page read and write
74E000
unkown
page readonly
5591000
unkown
page read and write
2A28000
heap
page read and write
55AE000
heap
page read and write
755000
unkown
page readonly
547B000
heap
page read and write
3214000
heap
page read and write
3184000
heap
page read and write
A3C000
heap
page read and write
333C000
heap
page read and write
51AC000
unkown
page read and write
2FE6000
heap
page read and write
3214000
heap
page read and write
3020000
heap
page read and write
3214000
heap
page read and write
3184000
heap
page read and write
764000
unkown
page readonly
3214000
heap
page read and write
2ABD000
heap
page read and write
8D5000
heap
page read and write
401000
unkown
page execute read
53F8000
heap
page read and write
7AE000
unkown
page readonly
A65000
heap
page read and write
E60000
heap
page read and write
90E000
stack
page read and write
2B59000
heap
page read and write
53F7000
heap
page read and write
2AB7000
heap
page read and write
3214000
heap
page read and write
5128000
heap
page read and write
5476000
heap
page read and write
53F6000
heap
page read and write
314E000
stack
page read and write
4C18000
heap
page read and write
D14000
heap
page read and write
3214000
heap
page read and write
987000
heap
page read and write
5370000
heap
page read and write
2AB0000
heap
page read and write
559F000
heap
page read and write
2AB2000
heap
page read and write
5591000
unkown
page read and write
A16000
heap
page read and write
96F000
heap
page read and write
6B5000
unkown
page readonly
5018000
trusted library allocation
page read and write
2C9F000
stack
page read and write
3214000
heap
page read and write
54A3000
heap
page read and write
5571000
heap
page read and write
4BF0000
direct allocation
page read and write
268C000
stack
page read and write
54AC000
heap
page read and write
511F000
heap
page read and write
54A1000
heap
page read and write
4D19000
direct allocation
page read and write
699000
unkown
page write copy
5591000
unkown
page read and write
5103000
heap
page read and write
5591000
unkown
page read and write
982000
heap
page read and write
54A1000
heap
page read and write
401000
unkown
page execute read
2F66000
heap
page read and write
2AB8000
heap
page read and write
3214000
heap
page read and write
31CF000
stack
page read and write
5591000
unkown
page read and write
6A6E000
unkown
page read and write
5471000
heap
page read and write
3184000
heap
page read and write
528C000
stack
page read and write
5591000
unkown
page read and write
56FE000
stack
page read and write
D14000
heap
page read and write
3340000
trusted library allocation
page read and write
2ABA000
heap
page read and write
D14000
heap
page read and write
3250000
heap
page read and write
5705000
heap
page read and write
3184000
heap
page read and write
50A0000
unkown
page read and write
6719000
trusted library allocation
page read and write
27DE000
stack
page read and write
54AF000
heap
page read and write
29AE000
stack
page read and write
5557000
heap
page read and write
547C000
heap
page read and write
2B5D000
heap
page read and write
6B5000
unkown
page readonly
5269000
direct allocation
page read and write
50CE000
heap
page read and write
30A0000
heap
page read and write
531D000
stack
page read and write
2CFC000
stack
page read and write
3270000
heap
page read and write
52EF000
stack
page read and write
5500000
heap
page read and write
53F3000
heap
page read and write
5591000
unkown
page read and write
55E8000
heap
page read and write
54AC000
heap
page read and write
2B5A000
heap
page read and write
74E000
unkown
page readonly
790000
unkown
page readonly
69D000
unkown
page write copy
781000
unkown
page readonly
5129000
heap
page read and write
4B1B000
trusted library allocation
page read and write
2AB6000
heap
page read and write
9F0000
direct allocation
page read and write
54A8000
heap
page read and write
4CE0000
heap
page read and write
D14000
heap
page read and write
6B2A000
unkown
page read and write
CFF000
stack
page read and write
2AB4000
heap
page read and write
8CE000
stack
page read and write
5140000
direct allocation
page read and write
54DA000
heap
page read and write
5580000
heap
page read and write
3184000
heap
page read and write
3417000
heap
page read and write
980000
heap
page read and write
53F5000
heap
page read and write
3090000
heap
page read and write
53F9000
heap
page read and write
6AD0000
unkown
page read and write
3214000
heap
page read and write
7B6000
unkown
page readonly
555E000
stack
page read and write
2AB8000
heap
page read and write
A1E000
heap
page read and write
9E0000
heap
page read and write
584D000
heap
page read and write
771000
unkown
page readonly
55FC000
stack
page read and write
4BF1000
heap
page read and write
2AB2000
heap
page read and write
A6F000
heap
page read and write
2AB2000
heap
page read and write
60A000
unkown
page readonly
97000
stack
page read and write
54A4000
heap
page read and write
547B000
heap
page read and write
2740000
heap
page read and write
3214000
heap
page read and write
5A9F000
unkown
page read and write
5132000
heap
page read and write
29B1000
heap
page read and write
3214000
heap
page read and write
5116000
heap
page read and write
54C4000
heap
page read and write
990000
heap
page read and write
3060000
heap
page read and write
550F000
heap
page read and write
2AD0000
heap
page read and write
3214000
heap
page read and write
521E000
stack
page read and write
5591000
unkown
page read and write
5591000
unkown
page read and write
4F96000
heap
page read and write
5A0D000
heap
page read and write
5476000
heap
page read and write
4DCB000
stack
page read and write
2AB7000
heap
page read and write
5590000
unkown
page read and write
3184000
heap
page read and write
92B000
heap
page read and write
9DE000
stack
page read and write
5475000
heap
page read and write
2F4F000
unkown
page write copy
32DE000
stack
page read and write
53F6000
heap
page read and write
291D000
stack
page read and write
A60000
heap
page read and write
5558000
heap
page read and write
3026000
heap
page read and write
7BF000
unkown
page readonly
D14000
heap
page read and write
79E000
unkown
page readonly
31E0000
direct allocation
page read and write
53BF000
stack
page read and write
50B6000
heap
page read and write
D60000
heap
page read and write
984000
heap
page read and write
5471000
heap
page read and write
4F13000
heap
page read and write
341C000
heap
page read and write
880000
heap
page read and write
198000
stack
page read and write
5591000
unkown
page read and write
7AE000
unkown
page readonly
5515000
heap
page read and write
3214000
heap
page read and write
558D000
heap
page read and write
556A000
heap
page read and write
3184000
heap
page read and write
2850000
heap
page read and write
8EB000
stack
page read and write
5586000
heap
page read and write
3214000
heap
page read and write
A6C000
heap
page read and write
2B45000
heap
page read and write
3214000
heap
page read and write
2EDB000
heap
page read and write
54BF000
heap
page read and write
724000
unkown
page readonly
55ED000
stack
page read and write
54A3000
heap
page read and write
6B5000
unkown
page readonly
75C000
unkown
page readonly
551D000
heap
page read and write
2693000
heap
page read and write
6A2000
unkown
page read and write
2B03000
heap
page read and write
54A7000
heap
page read and write
5475000
heap
page read and write
54A2000
heap
page read and write
760000
unkown
page readonly
4A89000
direct allocation
page read and write
5B10000
heap
page read and write
303C000
stack
page read and write
5591000
unkown
page read and write
553B000
heap
page read and write
553E000
heap
page read and write
2A20000
heap
page read and write
D14000
heap
page read and write
755000
unkown
page readonly
7C7000
unkown
page readonly
2AB7000
heap
page read and write
5654000
heap
page read and write
3214000
heap
page read and write
5529000
heap
page read and write
6B5000
unkown
page readonly
55C9000
heap
page read and write
54EC000
heap
page read and write
2AB5000
heap
page read and write
2ABD000
heap
page read and write
2762000
unkown
page read and write
771000
unkown
page readonly
4A90000
direct allocation
page read and write
970000
heap
page read and write
30BC000
stack
page read and write
BAF000
stack
page read and write
307C000
stack
page read and write
5591000
unkown
page read and write
2AB3000
heap
page read and write
44BF000
heap
page read and write
547C000
heap
page read and write
5591000
unkown
page read and write
D14000
heap
page read and write
55F4000
unkown
page read and write
53F4000
heap
page read and write
2B0B000
heap
page read and write
79E000
unkown
page readonly
54A6000
heap
page read and write
3214000
heap
page read and write
547D000
heap
page read and write
516D000
stack
page read and write
5AE7000
unkown
page read and write
5470000
heap
page read and write
3214000
heap
page read and write
7A3000
unkown
page readonly
53F0000
heap
page read and write
3184000
heap
page read and write
5591000
unkown
page read and write
69B000
unkown
page read and write
331E000
stack
page read and write
54A9000
heap
page read and write
2690000
heap
page read and write
2940000
remote allocation
page read and write
5597000
heap
page read and write
29B0000
heap
page read and write
2ABD000
heap
page read and write
5512000
heap
page read and write
50BE000
heap
page read and write
554B000
heap
page read and write
75C000
unkown
page readonly
5506000
heap
page read and write
3214000
heap
page read and write
54AD000
heap
page read and write
5699000
unkown
page read and write
3220000
heap
page read and write
79E000
unkown
page readonly
4AFE000
direct allocation
page read and write
9BB000
heap
page read and write
50D9000
heap
page read and write
3028000
heap
page read and write
D14000
heap
page read and write
51CE000
stack
page read and write
764000
unkown
page readonly
4CE8000
heap
page read and write
75C000
unkown
page readonly
7A3000
unkown
page readonly
D10000
heap
page read and write
2F42000
unkown
page read and write
2D00000
heap
page read and write
D76000
heap
page read and write
2B0F000
heap
page read and write
400000
unkown
page readonly
5120000
heap
page read and write
6D8000
unkown
page readonly
2B4C000
stack
page read and write
54AB000
heap
page read and write
5591000
unkown
page read and write
755000
unkown
page readonly
2E90000
heap
page read and write
930000
heap
page read and write
55AB000
heap
page read and write
8F0000
heap
page read and write
4EAC000
trusted library allocation
page read and write
54A9000
heap
page read and write
198000
stack
page read and write
3214000
heap
page read and write
7A3000
unkown
page readonly
5528000
heap
page read and write
973000
heap
page read and write
55BF000
heap
page read and write
552E000
heap
page read and write
50A1000
unkown
page read and write
27AB000
heap
page read and write
50C8000
heap
page read and write
4F1D000
heap
page read and write
6440000
trusted library allocation
page read and write
47A0000
heap
page read and write
2ED0000
heap
page read and write
3214000
heap
page read and write
74E000
unkown
page readonly
50A1000
unkown
page read and write
2A75000
heap
page read and write
6B3000
unkown
page read and write
69AD000
unkown
page read and write
5532000
heap
page read and write
9DD000
heap
page read and write
58E7000
heap
page read and write
29EE000
stack
page read and write
5591000
unkown
page read and write
549F000
unkown
page read and write
699000
unkown
page write copy
53F4000
heap
page read and write
2AB9000
heap
page read and write
699000
unkown
page write copy
3214000
heap
page read and write
9A1000
heap
page read and write
4D8E000
stack
page read and write
53F0000
heap
page read and write
3337000
heap
page read and write
2AB2000
heap
page read and write
2AB4000
heap
page read and write
54A9000
heap
page read and write
A58000
heap
page read and write
5534000
heap
page read and write
3184000
heap
page read and write
2AE7000
heap
page read and write
5591000
unkown
page read and write
970000
heap
page read and write
75C000
unkown
page readonly
2AEC000
stack
page read and write
2BB0000
heap
page read and write
2ABA000
heap
page read and write
27FE000
heap
page read and write
53F2000
heap
page read and write
4F69000
heap
page read and write
5480000
remote allocation
page read and write
3184000
heap
page read and write
A2B000
heap
page read and write
27D0000
heap
page read and write
5477000
heap
page read and write
53F4000
heap
page read and write
53F3000
heap
page read and write
5479000
heap
page read and write
5478000
heap
page read and write
2F40000
trusted library allocation
page read and write
53FB000
heap
page read and write
54AC000
heap
page read and write
3214000
heap
page read and write
5106000
heap
page read and write
54A2000
heap
page read and write
26CD000
stack
page read and write
5591000
unkown
page read and write
51F9000
direct allocation
page read and write
781000
unkown
page readonly
993000
heap
page read and write
53FD000
heap
page read and write
3330000
heap
page read and write
5591000
unkown
page read and write
672E000
trusted library allocation
page read and write
64A0000
trusted library allocation
page read and write
2B01000
heap
page read and write
54F1000
unkown
page read and write
5591000
heap
page read and write
97000
stack
page read and write
4670000
heap
page read and write
2820000
heap
page read and write
724000
unkown
page readonly
511B000
heap
page read and write
5591000
unkown
page read and write
3214000
heap
page read and write
2AB1000
heap
page read and write
54A9000
heap
page read and write
5530000
heap
page read and write
284F000
stack
page read and write
56B8000
heap
page read and write
4F09000
heap
page read and write
5591000
unkown
page read and write
5473000
heap
page read and write
52F0000
heap
page read and write
5471000
heap
page read and write
53F8000
heap
page read and write
3480000
heap
page read and write
6D8000
unkown
page readonly
547F000
heap
page read and write
5471000
heap
page read and write
2ABB000
heap
page read and write
54A0000
heap
page read and write
2B48000
heap
page read and write
3184000
heap
page read and write
2713000
heap
page read and write
3184000
heap
page read and write
5C10000
unkown
page read and write
5371000
heap
page read and write
2680000
heap
page read and write
4AFE000
heap
page read and write
3258000
heap
page read and write
54E2000
heap
page read and write
65F0000
trusted library allocation
page read and write
3184000
heap
page read and write
3184000
heap
page read and write
49E2000
heap
page read and write
3184000
heap
page read and write
2ABA000
heap
page read and write
6A2000
unkown
page read and write
50FD000
direct allocation
page read and write
699000
unkown
page write copy
7BF000
unkown
page readonly
269C000
stack
page read and write
71B000
unkown
page readonly
5472000
heap
page read and write
559A000
heap
page read and write
7BF000
unkown
page readonly
26F0000
trusted library allocation
page read and write
325E000
stack
page read and write
2F90000
heap
page read and write
3214000
heap
page read and write
A30000
heap
page read and write
5478000
heap
page read and write
4F4E000
heap
page read and write
935000
heap
page read and write
2ABD000
heap
page read and write
2AB0000
heap
page read and write
4FAC000
trusted library allocation
page read and write
5475000
heap
page read and write
4B20000
heap
page read and write
7AE000
unkown
page readonly
3214000
heap
page read and write
53FC000
heap
page read and write
56EB000
heap
page read and write
5C40000
heap
page read and write
53F4000
heap
page read and write
9F4000
heap
page read and write
5474000
heap
page read and write
781000
unkown
page readonly
6A2000
unkown
page read and write
4D4C000
stack
page read and write
4C00000
heap
page read and write
4CB2000
heap
page read and write
3184000
heap
page read and write
2A8E000
stack
page read and write
55CB000
heap
page read and write
4FF5000
trusted library allocation
page read and write
D14000
heap
page read and write
97000
stack
page read and write
3215000
heap
page read and write
D14000
heap
page read and write
63E0000
trusted library allocation
page read and write
7BF000
unkown
page readonly
4D65000
heap
page read and write
27B0000
heap
page read and write
549F000
unkown
page read and write
2FD0000
heap
page read and write
3184000
heap
page read and write
9E0000
heap
page read and write
3214000
heap
page read and write
3184000
heap
page read and write
5614000
heap
page read and write
D14000
heap
page read and write
C4E000
stack
page read and write
5DB8000
heap
page read and write
53F7000
heap
page read and write
316E000
stack
page read and write
5591000
unkown
page read and write
5BBF000
stack
page read and write
2AB3000
heap
page read and write
69D000
unkown
page write copy
3060000
heap
page read and write
55E6000
heap
page read and write
5475000
heap
page read and write
5083000
heap
page read and write
3184000
heap
page read and write
D14000
heap
page read and write
2AB5000
heap
page read and write
30CD000
stack
page read and write
A16000
heap
page read and write
54A5000
heap
page read and write
5591000
unkown
page read and write
32BF000
stack
page read and write
2925000
heap
page read and write
7A3000
unkown
page readonly
3184000
heap
page read and write
27A0000
heap
page read and write
2ED7000
heap
page read and write
2AF0000
heap
page read and write
724000
unkown
page readonly
5BC0000
unkown
page read and write
A34000
heap
page read and write
54A8000
heap
page read and write
724000
unkown
page readonly
2690000
heap
page read and write
DB6000
heap
page read and write
D0F000
stack
page read and write
559F000
heap
page read and write
2FA0000
heap
page read and write
2A9A000
heap
page read and write
5ACA000
heap
page read and write
26DC000
stack
page read and write
4BE1000
heap
page read and write
54F0000
heap
page read and write
4BA8000
heap
page read and write
69B000
unkown
page read and write
2F60000
heap
page read and write
880000
heap
page read and write
5567000
heap
page read and write
5517000
heap
page read and write
520F000
stack
page read and write
74E000
unkown
page readonly
4AF5000
heap
page read and write
4AD2000
trusted library allocation
page read and write
A33000
heap
page read and write
5E14000
heap
page read and write
5591000
unkown
page read and write
31F0000
heap
page read and write
6590000
trusted library allocation
page read and write
3214000
heap
page read and write
5474000
heap
page read and write
2AB2000
heap
page read and write
56CD000
heap
page read and write
54A8000
heap
page read and write
67EE000
trusted library allocation
page read and write
5111000
heap
page read and write
3184000
heap
page read and write
4FD0000
direct allocation
page read and write
3214000
heap
page read and write
5ABF000
stack
page read and write
7C7000
unkown
page readonly
CEF000
stack
page read and write
A33000
heap
page read and write
54CA000
heap
page read and write
2769000
unkown
page readonly
547A000
heap
page read and write
5591000
unkown
page read and write
318E000
stack
page read and write
2C1E000
stack
page read and write
5504000
heap
page read and write
547C000
heap
page read and write
3214000
heap
page read and write
496B000
trusted library allocation
page read and write
D9F000
stack
page read and write
5591000
unkown
page read and write
3214000
heap
page read and write
54A0000
heap
page read and write
3214000
heap
page read and write
D14000
heap
page read and write
2AB0000
heap
page read and write
D14000
heap
page read and write
45CF000
heap
page read and write
84000
unkown
page write copy
4FB8000
heap
page read and write
9F6000
heap
page read and write
55BF000
heap
page read and write
4BF0000
heap
page read and write
74E000
unkown
page readonly
8F000
unkown
page write copy
4B6D000
heap
page read and write
5479000
heap
page read and write
4838000
trusted library allocation
page read and write
2B00000
heap
page read and write
66B9000
trusted library allocation
page read and write
BEE000
stack
page read and write
79E000
unkown
page readonly
760000
unkown
page readonly
D14000
heap
page read and write
790000
unkown
page readonly
5516000
heap
page read and write
3184000
heap
page read and write
57ED000
heap
page read and write
5502000
heap
page read and write
400000
unkown
page readonly
53F9000
heap
page read and write
3184000
heap
page read and write
5510000
heap
page read and write
771000
unkown
page readonly
6AD000
unkown
page read and write
2AB4000
heap
page read and write
54F0000
unkown
page read and write
71B000
unkown
page readonly
3184000
heap
page read and write
53F7000
heap
page read and write
8E0000
heap
page read and write
69D000
unkown
page write copy
2750000
unkown
page readonly
5542000
heap
page read and write
5BE4000
heap
page read and write
4F40000
heap
page read and write
790000
unkown
page readonly
28AE000
stack
page read and write
3214000
heap
page read and write
51FD000
direct allocation
page read and write
5591000
unkown
page read and write
58AD000
heap
page read and write
547D000
heap
page read and write
547F000
heap
page read and write
550A000
heap
page read and write
671D000
trusted library allocation
page read and write
336B000
heap
page read and write
5A0A000
heap
page read and write
A03000
heap
page read and write
781000
unkown
page readonly
3184000
heap
page read and write
5593000
heap
page read and write
569D000
unkown
page read and write
53F6000
heap
page read and write
298E000
stack
page read and write
5591000
unkown
page read and write
5480000
remote allocation
page read and write
2BBE000
stack
page read and write
55A6000
heap
page read and write
54F1000
unkown
page read and write
9DF000
heap
page read and write
4770000
heap
page read and write
3060000
heap
page read and write
5591000
unkown
page read and write
5470000
heap
page read and write
2AC6000
heap
page read and write
5591000
unkown
page read and write
54A5000
heap
page read and write
880000
heap
page read and write
7B6000
unkown
page readonly
6B5000
unkown
page readonly
54C1000
heap
page read and write
5E78000
heap
page read and write
2F30000
unkown
page readonly
54A5000
heap
page read and write
3184000
heap
page read and write
53F6000
heap
page read and write
3184000
heap
page read and write
567C000
heap
page read and write
569B000
unkown
page read and write
A59000
heap
page read and write
55FB000
heap
page read and write
790000
unkown
page readonly
4F79000
heap
page read and write
4BE1000
heap
page read and write
5591000
unkown
page read and write
5591000
unkown
page read and write
5591000
unkown
page read and write
555D000
heap
page read and write
5597000
heap
page read and write
D70000
heap
page read and write
49F3000
heap
page read and write
2E6C000
stack
page read and write
54A2000
heap
page read and write
53FF000
heap
page read and write
53F2000
heap
page read and write
A50000
heap
page read and write
5083000
heap
page read and write
DF0000
heap
page read and write
4D7D000
heap
page read and write
2821000
heap
page read and write
54BB000
heap
page read and write
2AB9000
heap
page read and write
400000
unkown
page readonly
755000
unkown
page readonly
D14000
heap
page read and write
69B000
unkown
page read and write
2AB0000
heap
page read and write
2AB8000
heap
page read and write
3410000
heap
page read and write
3214000
heap
page read and write
4FC0000
heap
page read and write
4D1D000
direct allocation
page read and write
2ABE000
heap
page read and write
9C8000
heap
page read and write
2710000
heap
page read and write
2CA0000
unkown
page read and write
2AB6000
heap
page read and write
5740000
heap
page read and write
545D000
stack
page read and write
3184000
heap
page read and write
5AFF000
unkown
page read and write
BBE000
stack
page read and write
400000
unkown
page readonly
563A000
heap
page read and write
318E000
stack
page read and write
3214000
heap
page read and write
5543000
heap
page read and write
71B000
unkown
page readonly
6779000
trusted library allocation
page read and write
4F54000
heap
page read and write
7C7000
unkown
page readonly
4CF4000
heap
page read and write
56FF000
unkown
page read and write
5538000
heap
page read and write
5540000
heap
page read and write
5591000
unkown
page read and write
3214000
heap
page read and write
2700000
unkown
page write copy
7C7000
unkown
page readonly
53FB000
heap
page read and write
DB0000
heap
page read and write
2AB2000
heap
page read and write
968000
heap
page read and write
50BA000
heap
page read and write
554A000
heap
page read and write
49B4000
trusted library allocation
page read and write
4C2E000
direct allocation
page read and write
5476000
heap
page read and write
54EE000
stack
page read and write
50F9000
heap
page read and write
568D000
heap
page read and write
60A000
unkown
page readonly
D5E000
stack
page read and write
A3A000
heap
page read and write
8CE000
stack
page read and write
5591000
unkown
page read and write
5490000
unkown
page read and write
764000
unkown
page readonly
2ABD000
heap
page read and write
5591000
unkown
page read and write
51AA000
unkown
page read and write
3214000
heap
page read and write
2AB3000
heap
page read and write
5591000
unkown
page read and write
D14000
heap
page read and write
3080000
heap
page read and write
4C0D000
heap
page read and write
7C7000
unkown
page readonly
53FE000
heap
page read and write
D14000
heap
page read and write
54A3000
heap
page read and write
56EE000
stack
page read and write
2B50000
remote allocation
page read and write
5476000
heap
page read and write
559E000
heap
page read and write
52DE000
direct allocation
page read and write
5752000
unkown
page read and write
5BA4000
unkown
page read and write
2ABC000
heap
page read and write
2F40000
trusted library allocation
page read and write
4B30000
heap
page read and write
53D0000
unkown
page read and write
310E000
stack
page read and write
771000
unkown
page readonly
50F9000
direct allocation
page read and write
7BF000
unkown
page readonly
3214000
heap
page read and write
2BC0000
heap
page read and write
5471000
heap
page read and write
549C000
heap
page read and write
7C7000
unkown
page readonly
508D000
heap
page read and write
760000
unkown
page readonly
4FA6000
heap
page read and write
2AC8000
heap
page read and write
3214000
heap
page read and write
4D87000
heap
page read and write
4F89000
heap
page read and write
3214000
heap
page read and write
5097000
heap
page read and write
E00000
heap
page read and write
3380000
heap
page read and write
3214000
heap
page read and write
998000
heap
page read and write
6D8000
unkown
page readonly
3214000
heap
page read and write
46F2000
heap
page read and write
75C000
unkown
page readonly
A00000
heap
page read and write
4DD5000
heap
page read and write
3120000
heap
page read and write
4B34000
heap
page read and write
92C000
stack
page read and write
3184000
heap
page read and write
54A9000
heap
page read and write
790000
unkown
page readonly
2ABA000
heap
page read and write
52F1000
heap
page read and write
55FF000
unkown
page read and write
D4F000
stack
page read and write
5591000
unkown
page read and write
5558000
heap
page read and write
3000000
heap
page read and write
760000
unkown
page readonly
3214000
heap
page read and write
55EE000
heap
page read and write
27FD000
stack
page read and write
2AB0000
heap
page read and write
910000
heap
page read and write
3184000
heap
page read and write
53F0000
heap
page read and write
54E6000
heap
page read and write
7A3000
unkown
page readonly
4A8D000
direct allocation
page read and write
711000
unkown
page readonly
A14000
heap
page read and write
400000
unkown
page readonly
A5E000
heap
page read and write
5CA4000
heap
page read and write
5474000
heap
page read and write
59A7000
heap
page read and write
54DF000
heap
page read and write
5948000
heap
page read and write
54BE000
heap
page read and write
563B000
heap
page read and write
55AD000
stack
page read and write
5630000
heap
page read and write
5540000
heap
page read and write
50B0000
heap
page read and write
781000
unkown
page readonly
711000
unkown
page readonly
54AC000
heap
page read and write
2F49000
unkown
page readonly
551F000
heap
page read and write
711000
unkown
page readonly
3214000
heap
page read and write
3170000
heap
page read and write
711000
unkown
page readonly
7BF000
unkown
page readonly
7B6000
unkown
page readonly
D14000
heap
page read and write
5591000
unkown
page read and write
551E000
stack
page read and write
5591000
unkown
page read and write
53FD000
heap
page read and write
54A8000
heap
page read and write
52CE000
stack
page read and write
781000
unkown
page readonly
54A4000
heap
page read and write
2EB0000
unkown
page read and write
3214000
heap
page read and write
4C42000
heap
page read and write
764000
unkown
page readonly
D14000
heap
page read and write
4FAF000
heap
page read and write
2ABC000
heap
page read and write
3320000
heap
page read and write
53FF000
heap
page read and write
274E000
stack
page read and write
54AC000
heap
page read and write
DBB000
stack
page read and write
54AD000
heap
page read and write
2B50000
remote allocation
page read and write
755000
unkown
page readonly
5477000
heap
page read and write
CF0000
heap
page read and write
6B5000
unkown
page readonly
7A3000
unkown
page readonly
71B000
unkown
page readonly
5130000
heap
page read and write
5628000
heap
page read and write
526E000
direct allocation
page read and write
54AF000
heap
page read and write
5B5C000
unkown
page read and write
9FF000
heap
page read and write
A24000
heap
page read and write
54AA000
heap
page read and write
53F6000
heap
page read and write
2C5E000
stack
page read and write
556E000
heap
page read and write
5591000
unkown
page read and write
2D1F000
stack
page read and write
4BBD000
direct allocation
page read and write
2EAD000
stack
page read and write
3215000
heap
page read and write
694B000
unkown
page read and write
9DA000
heap
page read and write
53F8000
heap
page read and write
54AD000
heap
page read and write
53F4000
heap
page read and write
6D8000
unkown
page readonly
4E0E000
stack
page read and write
54A7000
heap
page read and write
5591000
unkown
page read and write
54A9000
heap
page read and write
5A7E000
stack
page read and write
8D0000
heap
page read and write
BFE000
stack
page read and write
A0B000
heap
page read and write
3120000
heap
page read and write
537E000
stack
page read and write
724000
unkown
page readonly
2AB4000
heap
page read and write
54AD000
heap
page read and write
569E000
heap
page read and write
401000
unkown
page execute read
7B6000
unkown
page readonly
5527000
heap
page read and write
7AE000
unkown
page readonly
7AE000
unkown
page readonly
50E9000
heap
page read and write
54E3000
heap
page read and write
56CA000
heap
page read and write
594E000
heap
page read and write
329F000
stack
page read and write
60A000
unkown
page readonly
55B8000
heap
page read and write
54AD000
heap
page read and write
89000
unkown
page readonly
99B000
heap
page read and write
3180000
heap
page read and write
54FD000
heap
page read and write
3214000
heap
page read and write
3214000
heap
page read and write
D14000
heap
page read and write
401000
unkown
page execute read
5480000
remote allocation
page read and write
3214000
heap
page read and write
54DB000
heap
page read and write
6A07000
unkown
page read and write
2AB2000
heap
page read and write
4BE1000
heap
page read and write
5591000
unkown
page read and write
A34000
heap
page read and write
5591000
unkown
page read and write
4FA0000
unkown
page read and write
3214000
heap
page read and write
5560000
heap
page read and write
50E3000
heap
page read and write
5591000
unkown
page read and write
7B6000
unkown
page readonly
54A5000
heap
page read and write
50F3000
heap
page read and write
2760000
heap
page read and write
3200000
heap
page read and write
71B000
unkown
page readonly
2821000
heap
page read and write
764000
unkown
page readonly
4BE0000
heap
page read and write
9A2000
heap
page read and write
553C000
heap
page read and write
5592000
heap
page read and write
516E000
direct allocation
page read and write
2AB3000
heap
page read and write
2B2E000
stack
page read and write
4881000
trusted library allocation
page read and write
2B42000
heap
page read and write
401000
unkown
page execute read
5AFE000
stack
page read and write
2A7A000
heap
page read and write
5711000
heap
page read and write
3214000
heap
page read and write
552E000
heap
page read and write
71B000
unkown
page readonly
53FF000
heap
page read and write
4EF5000
trusted library allocation
page read and write
50C4000
heap
page read and write
3214000
heap
page read and write
2F80000
heap
page read and write
2821000
heap
page read and write
547E000
heap
page read and write
5A6B000
heap
page read and write
D14000
heap
page read and write
530D000
stack
page read and write
3214000
heap
page read and write
3184000
heap
page read and write
401000
unkown
page execute read
2AED000
stack
page read and write
20000
unkown
page read and write
2BA0000
heap
page read and write
508D000
heap
page read and write
53F7000
heap
page read and write
6650000
trusted library allocation
page read and write
66BD000
trusted library allocation
page read and write
5544000
heap
page read and write
54AB000
heap
page read and write
54AE000
heap
page read and write
70000
unkown
page readonly
32C0000
heap
page read and write
524D000
stack
page read and write
60A000
unkown
page readonly
32B0000
heap
page read and write
5110000
heap
page read and write
3390000
trusted library allocation
page read and write
2AB4000
heap
page read and write
2940000
remote allocation
page read and write
960000
heap
page read and write
AAE000
stack
page read and write
3184000
heap
page read and write
760000
unkown
page readonly
3070000
heap
page read and write
2B40000
heap
page read and write
55AA000
heap
page read and write
535E000
stack
page read and write
3190000
heap
page read and write
2AB4000
heap
page read and write
4BB3000
heap
page read and write
53FA000
heap
page read and write
536E000
stack
page read and write
54A3000
heap
page read and write
526D000
direct allocation
page read and write
85000
unkown
page read and write
3184000
heap
page read and write
A73000
heap
page read and write
26DE000
stack
page read and write
699000
unkown
page write copy
45E2000
heap
page read and write
There are 1132 hidden memdumps, click here to show them.