Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
setup.exe
|
PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
|
initial sample
|
||
C:\Users\user\AppData\Local\Microsoft\CLR_v4.0_32\UsageLogs\setup.exe.log
|
ASCII text, with CRLF line terminators
|
dropped
|
||
C:\Users\Public\Desktop\Google Chrome.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Description string, Has Relative path, Has Working
directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:41 2023, mtime=Thu Oct 5 05:47:20 2023,
atime=Wed Sep 27 08:36:54 2023, length=3242272, window=hide
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\CLR_v4.0_32\UsageLogs\RegAsm.exe.log
|
ASCII text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\Tmp6A0F.tmp
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\Tmp6A20.tmp
|
data
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2246122658-3693405117-2476756634-1003\76b53b3ec448f7ccdda2063b15d2bfc3_9e146be9-c76a-4720-bcdb-53011b87bd06
|
data
|
dropped
|
Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Users\user\Desktop\setup.exe
|
"C:\Users\user\Desktop\setup.exe"
|
||
C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
|
"C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe"
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
185.172.128.33:8970
|
|||
http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-soap-message-security-1.0#Text
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/sc/sct
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/04/security/sc/dk
|
unknown
|
||
http://tempuri.org/Entity/Id14ResponseD
|
unknown
|
||
https://github.com/AzureAD/microsoft-authentication-extensions-for-dotnet
|
unknown
|
||
http://tempuri.org/Entity/Id23ResponseD
|
unknown
|
||
http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-soap-message-security-1.0#HexBinary
|
unknown
|
||
http://tempuri.org/Entity/Id12Response
|
unknown
|
||
http://tempuri.org/
|
unknown
|
||
http://tempuri.org/Entity/Id2Response
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/sc/dk/p_sha1
|
unknown
|
||
http://tempuri.org/Entity/Id21Response
|
unknown
|
||
http://schemas.xmlsoap.org/2005/02/trust/spnego#GSS_Wrap
|
unknown
|
||
http://tempuri.org/Entity/Id9
|
unknown
|
||
http://docs.oasis-open.org/wss/oasis-wss-saml-token-profile-1.1#SAMLID
|
unknown
|
||
http://tempuri.org/Entity/Id8
|
unknown
|
||
http://tempuri.org/Entity/Id6ResponseD
|
unknown
|
||
http://tempuri.org/Entity/Id5
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/10/wsat/Prepare
|
unknown
|
||
http://tempuri.org/Entity/Id4
|
unknown
|
||
http://tempuri.org/Entity/Id7
|
unknown
|
||
http://tempuri.org/Entity/Id6
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/trust#BinarySecret
|
unknown
|
||
http://tempuri.org/Entity/Id19Response
|
unknown
|
||
http://docs.oasis-open.org/wss/oasis-wss-rel-token-profile-1.0.pdf#license
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/trust/RSTR/Issue
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/10/wsat/Aborted
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/rm/TerminateSequence
|
unknown
|
||
http://tempuri.org/Entity/Id13ResponseD
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/10/wsat/fault
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/10/wsat
|
unknown
|
||
http://sharpvectors.codeplex.com/runtime/
|
unknown
|
||
http://docs.oasis-open.org/wss/oasis-wss-soap-message-security-1.1#EncryptedKey
|
unknown
|
||
http://tempuri.org/Entity/Id15Response
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/05/identity/claims/name
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/trust/RSTR/SCT/Renew
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/08/addressing/faultp9
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/10/wscoor/Register
|
unknown
|
||
http://tempuri.org/Entity/Id6Response
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/04/trust/SymmetricKey
|
unknown
|
||
https://api.ip.sb/ip
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/04/sc
|
unknown
|
||
http://tempuri.org/Entity/Id1ResponseD
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/10/wsat/Volatile2PC
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/trust/RSTR/SCT/Cancel
|
unknown
|
||
http://tempuri.org/Entity/Id9Response
|
unknown
|
||
http://tempuri.org/Entity/Id20
|
unknown
|
||
http://tempuri.org/Entity/Id21
|
unknown
|
||
http://tempuri.org/Entity/Id22
|
unknown
|
||
http://docs.oasis-open.org/wss/oasis-wss-kerberos-token-profile-1.1#Kerberosv5APREQSHA1
|
unknown
|
||
http://tempuri.org/Entity/Id23
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/04/security/trust/CK/PSHA1
|
unknown
|
||
http://tempuri.org/Entity/Id24
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/04/security/trust/RSTR/Issue
|
unknown
|
||
http://tempuri.org/Entity/Id24Response
|
unknown
|
||
http://tempuri.org/Entity/Id1Response
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/rm/AckRequested
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/10/wsat/ReadOnly
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/10/wsat/Replay
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/trust/tlsnego
|
unknown
|
||
http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-soap-message-security-1.0#Base64Binary
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/10/wsat/Durable2PC
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/04/security/trust/SymmetricKey
|
unknown
|
||
http://tempuri.org/Entity/Id21ResponseD
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/08/addressing
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/trust/RST/Issue
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/10/wsat/Completion
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/04/trust
|
unknown
|
||
http://tempuri.org/Entity/Id10
|
unknown
|
||
http://tempuri.org/Entity/Id11
|
unknown
|
||
http://tempuri.org/Entity/Id10ResponseD
|
unknown
|
||
http://tempuri.org/Entity/Id12
|
unknown
|
||
http://tempuri.org/Entity/Id16Response
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/10/wscoor/CreateCoordinationContextResponse
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/trust/RST/SCT/Cancel
|
unknown
|
||
http://tempuri.org/Entity/Id13
|
unknown
|
||
http://tempuri.org/Entity/Id14
|
unknown
|
||
http://tempuri.org/Entity/Id15
|
unknown
|
||
http://tempuri.org/Entity/Id16
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/trust/Nonce
|
unknown
|
||
http://tempuri.org/Entity/Id17
|
unknown
|
||
http://tempuri.org/Entity/Id18
|
unknown
|
||
http://tempuri.org/Entity/Id5Response
|
unknown
|
||
http://tempuri.org/Entity/Id19
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/05/identity/claims/dns
|
unknown
|
||
http://tempuri.org/Entity/Id15ResponseD
|
unknown
|
||
http://tempuri.org/Entity/Id10Response
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2005/02/trust/Renew
|
unknown
|
||
http://tempuri.org/Entity/Id11ResponseD
|
unknown
|
||
http://tempuri.org/Entity/Id8Response
|
unknown
|
||
http://ocsp.sectigo.com0
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/04/trust/PublicKey
|
unknown
|
||
http://docs.oasis-open.org/wss/oasis-wss-saml-token-profile-1.1#SAMLV2.0
|
unknown
|
||
http://docs.oasis-open.org/wss/oasis-wss-saml-token-profile-1.0#SAMLAssertionID
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2004/04/security/trust/RST/SCT
|
unknown
|
||
http://schemas.xmlsoap.org/ws/2006/02/addressingidentity
|
unknown
|
||
http://tempuri.org/Entity/Id17ResponseD
|
unknown
|
||
http://schemas.xmlsoap.org/soap/envelope/
|
unknown
|
||
http://tempuri.org/Entity/Id8ResponseD
|
unknown
|
There are 90 hidden URLs, click here to show them.
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
15.164.165.52.in-addr.arpa
|
unknown
|
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
185.172.128.33
|
unknown
|
Russian Federation
|
Registry
Path
|
Value
|
Malicious
|
|
---|---|---|---|
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\F1A578C4CB5DE79A370893983FD4DA8B67B2B064
|
Blob
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
Owner
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
SessionHash
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
Sequence
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
RegFiles0000
|
||
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
|
RegFilesHash
|
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
46BE000
|
trusted library allocation
|
page read and write
|
||
47A2000
|
trusted library allocation
|
page read and write
|
||
4253000
|
trusted library allocation
|
page read and write
|
||
470A000
|
trusted library allocation
|
page read and write
|
||
4145000
|
trusted library allocation
|
page read and write
|
||
402000
|
remote allocation
|
page execute and read and write
|
||
801E000
|
stack
|
page read and write
|
||
1332000
|
trusted library allocation
|
page read and write
|
||
2F4E000
|
stack
|
page read and write
|
||
E14000
|
unkown
|
page readonly
|
||
7789000
|
heap
|
page read and write
|
||
32D3000
|
trusted library allocation
|
page read and write
|
||
7000000
|
trusted library allocation
|
page read and write
|
||
7759000
|
heap
|
page read and write
|
||
76B2000
|
heap
|
page read and write
|
||
320A000
|
trusted library allocation
|
page read and write
|
||
34AE000
|
trusted library allocation
|
page read and write
|
||
3208000
|
trusted library allocation
|
page read and write
|
||
4169000
|
trusted library allocation
|
page read and write
|
||
4272000
|
trusted library allocation
|
page read and write
|
||
41B0000
|
trusted library allocation
|
page read and write
|
||
3477000
|
trusted library allocation
|
page read and write
|
||
40F3000
|
trusted library allocation
|
page read and write
|
||
5C0D000
|
stack
|
page read and write
|
||
321D000
|
trusted library allocation
|
page read and write
|
||
4201000
|
trusted library allocation
|
page read and write
|
||
779A000
|
heap
|
page read and write
|
||
13B0000
|
heap
|
page read and write
|
||
3F8F000
|
trusted library allocation
|
page read and write
|
||
62FE000
|
heap
|
page read and write
|
||
342B000
|
trusted library allocation
|
page read and write
|
||
323E000
|
trusted library allocation
|
page read and write
|
||
314B000
|
trusted library allocation
|
page read and write
|
||
40F8000
|
trusted library allocation
|
page read and write
|
||
404D000
|
trusted library allocation
|
page read and write
|
||
1229000
|
heap
|
page read and write
|
||
3294000
|
trusted library allocation
|
page read and write
|
||
3225000
|
trusted library allocation
|
page read and write
|
||
772F000
|
heap
|
page read and write
|
||
40B3000
|
trusted library allocation
|
page read and write
|
||
12DC000
|
heap
|
page read and write
|
||
7B6E000
|
stack
|
page read and write
|
||
158B000
|
heap
|
page read and write
|
||
2F58000
|
trusted library allocation
|
page read and write
|
||
6A45000
|
trusted library allocation
|
page read and write
|
||
4121000
|
trusted library allocation
|
page read and write
|
||
3223000
|
trusted library allocation
|
page read and write
|
||
11FB000
|
heap
|
page read and write
|
||
3301000
|
trusted library allocation
|
page read and write
|
||
6200000
|
trusted library allocation
|
page read and write
|
||
4008000
|
trusted library allocation
|
page read and write
|
||
63EE000
|
heap
|
page read and write
|
||
3255000
|
trusted library allocation
|
page read and write
|
||
132A000
|
trusted library allocation
|
page execute and read and write
|
||
140E000
|
stack
|
page read and write
|
||
7E9E000
|
stack
|
page read and write
|
||
15BF000
|
heap
|
page read and write
|
||
1310000
|
trusted library allocation
|
page read and write
|
||
3233000
|
trusted library allocation
|
page read and write
|
||
5450000
|
trusted library allocation
|
page read and write
|
||
415E000
|
trusted library allocation
|
page read and write
|
||
6A81000
|
trusted library allocation
|
page read and write
|
||
2EE0000
|
trusted library allocation
|
page read and write
|
||
40FD000
|
trusted library allocation
|
page read and write
|
||
402E000
|
trusted library allocation
|
page read and write
|
||
3212000
|
trusted library allocation
|
page read and write
|
||
302D000
|
trusted library allocation
|
page read and write
|
||
2EEB000
|
trusted library allocation
|
page execute and read and write
|
||
2EDE000
|
stack
|
page read and write
|
||
3272000
|
trusted library allocation
|
page read and write
|
||
700D000
|
trusted library allocation
|
page read and write
|
||
32A5000
|
trusted library allocation
|
page read and write
|
||
3229000
|
trusted library allocation
|
page read and write
|
||
3141000
|
trusted library allocation
|
page read and write
|
||
303A000
|
trusted library allocation
|
page read and write
|
||
3276000
|
trusted library allocation
|
page read and write
|
||
7042000
|
trusted library allocation
|
page read and write
|
||
6AC5000
|
trusted library allocation
|
page read and write
|
||
3F1D000
|
trusted library allocation
|
page read and write
|
||
6A40000
|
trusted library allocation
|
page read and write
|
||
14FE000
|
stack
|
page read and write
|
||
76C4000
|
heap
|
page read and write
|
||
6B00000
|
trusted library allocation
|
page read and write
|
||
55E0000
|
trusted library allocation
|
page read and write
|
||
79CA000
|
trusted library allocation
|
page read and write
|
||
1588000
|
heap
|
page read and write
|
||
79B2000
|
trusted library allocation
|
page read and write
|
||
79F0000
|
trusted library allocation
|
page read and write
|
||
7084000
|
trusted library allocation
|
page read and write
|
||
777C000
|
heap
|
page read and write
|
||
3274000
|
trusted library allocation
|
page read and write
|
||
63DE000
|
heap
|
page read and write
|
||
5500000
|
trusted library allocation
|
page read and write
|
||
5710000
|
trusted library section
|
page read and write
|
||
79B0000
|
trusted library allocation
|
page read and write
|
||
6250000
|
trusted library allocation
|
page read and write
|
||
79B9000
|
trusted library allocation
|
page read and write
|
||
63D0000
|
heap
|
page read and write
|
||
41CD000
|
trusted library allocation
|
page read and write
|
||
79B5000
|
trusted library allocation
|
page read and write
|
||
1300000
|
heap
|
page read and write
|
||
6960000
|
trusted library allocation
|
page execute and read and write
|
||
3227000
|
trusted library allocation
|
page read and write
|
||
79DF000
|
trusted library allocation
|
page read and write
|
||
31ED000
|
trusted library allocation
|
page read and write
|
||
76CA000
|
heap
|
page read and write
|
||
6ACE000
|
trusted library allocation
|
page read and write
|
||
11F0000
|
heap
|
page read and write
|
||
3F82000
|
trusted library allocation
|
page read and write
|
||
5A32000
|
trusted library section
|
page read and write
|
||
6FFC000
|
stack
|
page read and write
|
||
76BC000
|
heap
|
page read and write
|
||
2E60000
|
heap
|
page execute and read and write
|
||
6AC0000
|
trusted library allocation
|
page read and write
|
||
2F18000
|
trusted library allocation
|
page read and write
|
||
321B000
|
trusted library allocation
|
page read and write
|
||
7AAE000
|
stack
|
page read and write
|
||
6DBC000
|
stack
|
page read and write
|
||
3F15000
|
trusted library allocation
|
page read and write
|
||
1335000
|
trusted library allocation
|
page execute and read and write
|
||
350B000
|
trusted library allocation
|
page read and write
|
||
1322000
|
trusted library allocation
|
page read and write
|
||
6B40000
|
trusted library allocation
|
page read and write
|
||
3038000
|
trusted library allocation
|
page read and write
|
||
3023000
|
trusted library allocation
|
page read and write
|
||
3109000
|
trusted library allocation
|
page read and write
|
||
40E5000
|
trusted library allocation
|
page read and write
|
||
320E000
|
trusted library allocation
|
page read and write
|
||
32C8000
|
trusted library allocation
|
page read and write
|
||
4013000
|
trusted library allocation
|
page read and write
|
||
3E7F000
|
trusted library allocation
|
page read and write
|
||
328E000
|
trusted library allocation
|
page read and write
|
||
31EF000
|
trusted library allocation
|
page read and write
|
||
41D7000
|
trusted library allocation
|
page read and write
|
||
3EF2000
|
trusted library allocation
|
page read and write
|
||
308E000
|
trusted library allocation
|
page read and write
|
||
32F8000
|
trusted library allocation
|
page read and write
|
||
6A35000
|
trusted library allocation
|
page read and write
|
||
4262000
|
trusted library allocation
|
page read and write
|
||
10E5000
|
heap
|
page read and write
|
||
6BC0000
|
trusted library allocation
|
page execute and read and write
|
||
328A000
|
trusted library allocation
|
page read and write
|
||
79CF000
|
trusted library allocation
|
page read and write
|
||
32CF000
|
trusted library allocation
|
page read and write
|
||
3EFF000
|
trusted library allocation
|
page read and write
|
||
3F68000
|
trusted library allocation
|
page read and write
|
||
676F000
|
stack
|
page read and write
|
||
1530000
|
heap
|
page read and write
|
||
6AA1000
|
trusted library allocation
|
page read and write
|
||
77C3000
|
heap
|
page read and write
|
||
6312000
|
heap
|
page read and write
|
||
771D000
|
heap
|
page read and write
|
||
136E000
|
stack
|
page read and write
|
||
AF0000
|
unkown
|
page readonly
|
||
12D0000
|
heap
|
page read and write
|
||
40EA000
|
trusted library allocation
|
page read and write
|
||
76E3000
|
heap
|
page read and write
|
||
60CF000
|
stack
|
page read and write
|
||
63D3000
|
heap
|
page read and write
|
||
6A30000
|
trusted library allocation
|
page read and write
|
||
2FF0000
|
heap
|
page execute and read and write
|
||
41DD000
|
trusted library allocation
|
page read and write
|
||
4035000
|
trusted library allocation
|
page read and write
|
||
1559000
|
heap
|
page read and write
|
||
63E3000
|
heap
|
page read and write
|
||
3F78000
|
trusted library allocation
|
page read and write
|
||
6A9E000
|
trusted library allocation
|
page read and write
|
||
10CE000
|
stack
|
page read and write
|
||
31F1000
|
trusted library allocation
|
page read and write
|
||
322D000
|
trusted library allocation
|
page read and write
|
||
3240000
|
trusted library allocation
|
page read and write
|
||
15F3000
|
heap
|
page read and write
|
||
4F78000
|
trusted library allocation
|
page read and write
|
||
3152000
|
trusted library allocation
|
page read and write
|
||
4F6E000
|
stack
|
page read and write
|
||
2E71000
|
trusted library allocation
|
page read and write
|
||
40E1000
|
trusted library allocation
|
page read and write
|
||
419E000
|
trusted library allocation
|
page read and write
|
||
55C7000
|
trusted library allocation
|
page read and write
|
||
4237000
|
trusted library allocation
|
page read and write
|
||
1410000
|
heap
|
page read and write
|
||
6B60000
|
trusted library allocation
|
page execute and read and write
|
||
2E50000
|
heap
|
page read and write
|
||
41EE000
|
trusted library allocation
|
page read and write
|
||
3452000
|
trusted library allocation
|
page read and write
|
||
56A0000
|
trusted library allocation
|
page read and write
|
||
41C1000
|
trusted library allocation
|
page read and write
|
||
77CA000
|
heap
|
page read and write
|
||
1050000
|
heap
|
page read and write
|
||
32A7000
|
trusted library allocation
|
page read and write
|
||
41B7000
|
trusted library allocation
|
page read and write
|
||
32DF000
|
trusted library allocation
|
page read and write
|
||
32FC000
|
trusted library allocation
|
page read and write
|
||
328C000
|
trusted library allocation
|
page read and write
|
||
5BC0000
|
trusted library allocation
|
page execute and read and write
|
||
40D4000
|
trusted library allocation
|
page read and write
|
||
326E000
|
trusted library allocation
|
page read and write
|
||
3F3D000
|
trusted library allocation
|
page read and write
|
||
1300000
|
trusted library allocation
|
page read and write
|
||
33B3000
|
trusted library allocation
|
page read and write
|
||
34E7000
|
trusted library allocation
|
page read and write
|
||
312C000
|
trusted library allocation
|
page read and write
|
||
3FD5000
|
trusted library allocation
|
page read and write
|
||
510B000
|
stack
|
page read and write
|
||
6D30000
|
trusted library allocation
|
page read and write
|
||
32AF000
|
trusted library allocation
|
page read and write
|
||
6A92000
|
trusted library allocation
|
page read and write
|
||
7010000
|
trusted library allocation
|
page execute and read and write
|
||
320C000
|
trusted library allocation
|
page read and write
|
||
700A000
|
trusted library allocation
|
page read and write
|
||
2E20000
|
trusted library allocation
|
page read and write
|
||
5471000
|
trusted library allocation
|
page read and write
|
||
5E8E000
|
stack
|
page read and write
|
||
3E92000
|
trusted library allocation
|
page read and write
|
||
2E0C000
|
stack
|
page read and write
|
||
58FE000
|
stack
|
page read and write
|
||
5502000
|
trusted library allocation
|
page read and write
|
||
325F000
|
trusted library allocation
|
page read and write
|
||
46FB000
|
trusted library allocation
|
page read and write
|
||
1385000
|
heap
|
page read and write
|
||
56F0000
|
trusted library allocation
|
page read and write
|
||
6D10000
|
trusted library allocation
|
page read and write
|
||
3411000
|
trusted library allocation
|
page read and write
|
||
6D20000
|
heap
|
page execute and read and write
|
||
3F5C000
|
trusted library allocation
|
page read and write
|
||
32C2000
|
trusted library allocation
|
page read and write
|
||
15CF000
|
heap
|
page read and write
|
||
4142000
|
trusted library allocation
|
page read and write
|
||
47EE000
|
trusted library allocation
|
page read and write
|
||
63B2000
|
heap
|
page read and write
|
||
41A5000
|
trusted library allocation
|
page read and write
|
||
2CCE000
|
stack
|
page read and write
|
||
313E000
|
stack
|
page read and write
|
||
6A3A000
|
trusted library allocation
|
page read and write
|
||
421E000
|
trusted library allocation
|
page read and write
|
||
79C8000
|
trusted library allocation
|
page read and write
|
||
3286000
|
trusted library allocation
|
page read and write
|
||
341A000
|
trusted library allocation
|
page read and write
|
||
3F96000
|
trusted library allocation
|
page read and write
|
||
3259000
|
trusted library allocation
|
page read and write
|
||
400E000
|
trusted library allocation
|
page read and write
|
||
54F0000
|
heap
|
page read and write
|
||
5730000
|
heap
|
page execute and read and write
|
||
1350000
|
trusted library allocation
|
page read and write
|
||
3264000
|
trusted library allocation
|
page read and write
|
||
344C000
|
trusted library allocation
|
page read and write
|
||
5A40000
|
heap
|
page read and write
|
||
6B50000
|
trusted library allocation
|
page read and write
|
||
6D50000
|
trusted library allocation
|
page execute and read and write
|
||
1592000
|
heap
|
page read and write
|
||
446000
|
remote allocation
|
page execute and read and write
|
||
6A47000
|
trusted library allocation
|
page read and write
|
||
77FD000
|
heap
|
page read and write
|
||
46AF000
|
trusted library allocation
|
page read and write
|
||
1304000
|
trusted library allocation
|
page read and write
|
||
77DF000
|
heap
|
page read and write
|
||
3311000
|
trusted library allocation
|
page read and write
|
||
3424000
|
trusted library allocation
|
page read and write
|
||
151D000
|
trusted library allocation
|
page execute and read and write
|
||
3436000
|
trusted library allocation
|
page read and write
|
||
815E000
|
stack
|
page read and write
|
||
3FB2000
|
trusted library allocation
|
page read and write
|
||
4184000
|
trusted library allocation
|
page read and write
|
||
5700000
|
trusted library allocation
|
page execute and read and write
|
||
40AE000
|
trusted library allocation
|
page read and write
|
||
3167000
|
trusted library allocation
|
page read and write
|
||
79E0000
|
trusted library allocation
|
page read and write
|
||
7761000
|
heap
|
page read and write
|
||
7796000
|
heap
|
page read and write
|
||
41F9000
|
trusted library allocation
|
page read and write
|
||
3111000
|
trusted library allocation
|
page read and write
|
||
40B8000
|
trusted library allocation
|
page read and write
|
||
329F000
|
trusted library allocation
|
page read and write
|
||
7F820000
|
trusted library allocation
|
page execute and read and write
|
||
47DF000
|
trusted library allocation
|
page read and write
|
||
311F000
|
trusted library allocation
|
page read and write
|
||
5A59000
|
heap
|
page read and write
|
||
76F4000
|
heap
|
page read and write
|
||
68B0000
|
trusted library allocation
|
page read and write
|
||
5F8E000
|
stack
|
page read and write
|
||
34CD000
|
trusted library allocation
|
page read and write
|
||
1360000
|
trusted library allocation
|
page execute and read and write
|
||
3F30000
|
trusted library allocation
|
page read and write
|
||
3221000
|
trusted library allocation
|
page read and write
|
||
3290000
|
trusted library allocation
|
page read and write
|
||
5510000
|
trusted library allocation
|
page execute and read and write
|
||
1520000
|
trusted library allocation
|
page read and write
|
||
3072000
|
trusted library allocation
|
page read and write
|
||
4244000
|
trusted library allocation
|
page read and write
|
||
12F0000
|
trusted library allocation
|
page read and write
|
||
3030000
|
heap
|
page read and write
|
||
6A86000
|
trusted library allocation
|
page read and write
|
||
5454000
|
trusted library allocation
|
page read and write
|
||
59FE000
|
stack
|
page read and write
|
||
8160000
|
trusted library allocation
|
page read and write
|
||
3257000
|
trusted library allocation
|
page read and write
|
||
1320000
|
trusted library allocation
|
page read and write
|
||
32AB000
|
trusted library allocation
|
page read and write
|
||
322B000
|
trusted library allocation
|
page read and write
|
||
413B000
|
trusted library allocation
|
page read and write
|
||
131D000
|
trusted library allocation
|
page execute and read and write
|
||
546E000
|
trusted library allocation
|
page read and write
|
||
7F1E000
|
stack
|
page read and write
|
||
1503000
|
trusted library allocation
|
page execute and read and write
|
||
55C0000
|
trusted library allocation
|
page read and write
|
||
6B70000
|
trusted library allocation
|
page execute and read and write
|
||
4178000
|
trusted library allocation
|
page read and write
|
||
3443000
|
trusted library allocation
|
page read and write
|
||
62F8000
|
heap
|
page read and write
|
||
2F8B000
|
trusted library allocation
|
page read and write
|
||
79DA000
|
trusted library allocation
|
page read and write
|
||
412E000
|
trusted library allocation
|
page read and write
|
||
40C3000
|
trusted library allocation
|
page read and write
|
||
40EE000
|
trusted library allocation
|
page read and write
|
||
6940000
|
trusted library allocation
|
page execute and read and write
|
||
3F99000
|
trusted library allocation
|
page read and write
|
||
7773000
|
heap
|
page read and write
|
||
5482000
|
trusted library allocation
|
page read and write
|
||
32AD000
|
trusted library allocation
|
page read and write
|
||
3401000
|
trusted library allocation
|
page read and write
|
||
77AA000
|
heap
|
page read and write
|
||
34FA000
|
trusted library allocation
|
page read and write
|
||
130D000
|
trusted library allocation
|
page execute and read and write
|
||
78B0000
|
heap
|
page read and write
|
||
15E1000
|
heap
|
page read and write
|
||
30C8000
|
trusted library allocation
|
page read and write
|
||
1513000
|
trusted library allocation
|
page read and write
|
||
5FC2000
|
heap
|
page read and write
|
||
1303000
|
trusted library allocation
|
page execute and read and write
|
||
6EBC000
|
stack
|
page read and write
|
||
4048000
|
trusted library allocation
|
page read and write
|
||
7040000
|
trusted library allocation
|
page read and write
|
||
3140000
|
trusted library allocation
|
page read and write
|
||
34C0000
|
trusted library allocation
|
page read and write
|
||
547D000
|
trusted library allocation
|
page read and write
|
||
61EE000
|
stack
|
page read and write
|
||
7707000
|
heap
|
page read and write
|
||
55D0000
|
trusted library allocation
|
page read and write
|
||
3079000
|
trusted library allocation
|
page read and write
|
||
2E38000
|
trusted library allocation
|
page read and write
|
||
517D000
|
stack
|
page read and write
|
||
152A000
|
trusted library allocation
|
page execute and read and write
|
||
7AE0000
|
trusted library allocation
|
page execute and read and write
|
||
77E3000
|
heap
|
page read and write
|
||
76DE000
|
heap
|
page read and write
|
||
1548000
|
heap
|
page read and write
|
||
32B3000
|
trusted library allocation
|
page read and write
|
||
2F93000
|
trusted library allocation
|
page read and write
|
||
2F00000
|
trusted library allocation
|
page read and write
|
||
40A7000
|
trusted library allocation
|
page read and write
|
||
15FE000
|
heap
|
page read and write
|
||
4115000
|
trusted library allocation
|
page read and write
|
||
5670000
|
heap
|
page execute and read and write
|
||
6358000
|
heap
|
page read and write
|
||
330B000
|
trusted library allocation
|
page read and write
|
||
13A0000
|
trusted library allocation
|
page read and write
|
||
2DCE000
|
stack
|
page read and write
|
||
639E000
|
heap
|
page read and write
|
||
3067000
|
trusted library allocation
|
page read and write
|
||
14BF000
|
stack
|
page read and write
|
||
6258000
|
trusted library allocation
|
page read and write
|
||
6AE0000
|
trusted library allocation
|
page read and write
|
||
5E4E000
|
stack
|
page read and write
|
||
330F000
|
trusted library allocation
|
page read and write
|
||
315C000
|
trusted library allocation
|
page read and write
|
||
32CA000
|
trusted library allocation
|
page read and write
|
||
3FA2000
|
trusted library allocation
|
page read and write
|
||
408F000
|
trusted library allocation
|
page read and write
|
||
6BD0000
|
trusted library allocation
|
page execute and read and write
|
||
6A7B000
|
trusted library allocation
|
page read and write
|
||
7791000
|
heap
|
page read and write
|
||
7B2E000
|
stack
|
page read and write
|
||
3506000
|
trusted library allocation
|
page read and write
|
||
2FEC000
|
trusted library allocation
|
page read and write
|
||
62F0000
|
heap
|
page read and write
|
||
1526000
|
trusted library allocation
|
page execute and read and write
|
||
4053000
|
trusted library allocation
|
page read and write
|
||
6207000
|
trusted library allocation
|
page read and write
|
||
1390000
|
heap
|
page read and write
|
||
4159000
|
trusted library allocation
|
page read and write
|
||
422A000
|
trusted library allocation
|
page read and write
|
||
13CE000
|
stack
|
page read and write
|
||
3EF9000
|
trusted library allocation
|
page read and write
|
||
6D40000
|
trusted library allocation
|
page read and write
|
||
12AA000
|
heap
|
page read and write
|
||
777A000
|
heap
|
page read and write
|
||
63C5000
|
heap
|
page read and write
|
||
6AF0000
|
trusted library allocation
|
page read and write
|
||
1370000
|
trusted library allocation
|
page read and write
|
||
6B10000
|
trusted library allocation
|
page read and write
|
||
1236000
|
heap
|
page read and write
|
||
4173000
|
trusted library allocation
|
page read and write
|
||
77F5000
|
heap
|
page read and write
|
||
31B9000
|
trusted library allocation
|
page read and write
|
||
3113000
|
trusted library allocation
|
page read and write
|
||
7AC0000
|
trusted library allocation
|
page read and write
|
||
5BA0000
|
trusted library allocation
|
page execute and read and write
|
||
3206000
|
trusted library allocation
|
page read and write
|
||
3F0F000
|
trusted library allocation
|
page read and write
|
||
403F000
|
trusted library allocation
|
page read and write
|
||
437000
|
remote allocation
|
page execute and read and write
|
||
31DD000
|
trusted library allocation
|
page read and write
|
||
3204000
|
trusted library allocation
|
page read and write
|
||
7745000
|
heap
|
page read and write
|
||
3060000
|
trusted library allocation
|
page read and write
|
||
31F6000
|
trusted library allocation
|
page read and write
|
||
5733000
|
heap
|
page execute and read and write
|
||
4256000
|
trusted library allocation
|
page read and write
|
||
4793000
|
trusted library allocation
|
page read and write
|
||
34EE000
|
trusted library allocation
|
page read and write
|
||
54B0000
|
trusted library allocation
|
page read and write
|
||
6337000
|
heap
|
page read and write
|
||
6EFE000
|
stack
|
page read and write
|
||
40DB000
|
trusted library allocation
|
page read and write
|
||
5B50000
|
trusted library allocation
|
page read and write
|
||
6A70000
|
trusted library allocation
|
page read and write
|
||
68AE000
|
stack
|
page read and write
|
||
32DD000
|
trusted library allocation
|
page read and write
|
||
1517000
|
trusted library allocation
|
page read and write
|
||
5D4E000
|
stack
|
page read and write
|
||
41F3000
|
trusted library allocation
|
page read and write
|
||
34DA000
|
trusted library allocation
|
page read and write
|
||
FB5000
|
stack
|
page read and write
|
||
6A49000
|
trusted library allocation
|
page read and write
|
||
56EE000
|
stack
|
page read and write
|
||
432000
|
remote allocation
|
page execute and read and write
|
||
7A6D000
|
stack
|
page read and write
|
||
5476000
|
trusted library allocation
|
page read and write
|
||
10E0000
|
heap
|
page read and write
|
||
3501000
|
trusted library allocation
|
page read and write
|
||
3F51000
|
trusted library allocation
|
page read and write
|
||
CEA000
|
stack
|
page read and write
|
||
3F06000
|
trusted library allocation
|
page read and write
|
||
6A38000
|
trusted library allocation
|
page read and write
|
||
3404000
|
trusted library allocation
|
page read and write
|
||
5B40000
|
trusted library allocation
|
page read and write
|
||
79E8000
|
trusted library allocation
|
page read and write
|
||
3F89000
|
trusted library allocation
|
page read and write
|
||
2EE7000
|
trusted library allocation
|
page execute and read and write
|
||
805D000
|
stack
|
page read and write
|
||
32E3000
|
trusted library allocation
|
page read and write
|
||
666E000
|
stack
|
page read and write
|
||
7AB0000
|
trusted library allocation
|
page read and write
|
||
545B000
|
trusted library allocation
|
page read and write
|
||
3053000
|
trusted library allocation
|
page read and write
|
||
3F9F000
|
trusted library allocation
|
page read and write
|
||
3FA7000
|
trusted library allocation
|
page read and write
|
||
63BD000
|
heap
|
page read and write
|
||
3279000
|
trusted library allocation
|
page read and write
|
||
6AD0000
|
trusted library allocation
|
page read and write
|
||
3EB3000
|
trusted library allocation
|
page read and write
|
||
7775000
|
heap
|
page read and write
|
||
3000000
|
heap
|
page read and write
|
||
41E4000
|
trusted library allocation
|
page read and write
|
||
2E40000
|
trusted library allocation
|
page read and write
|
||
4249000
|
trusted library allocation
|
page read and write
|
||
AF2000
|
unkown
|
page readonly
|
||
5690000
|
trusted library allocation
|
page read and write
|
||
424B000
|
trusted library allocation
|
page read and write
|
||
11C0000
|
heap
|
page read and write
|
||
1380000
|
heap
|
page read and write
|
||
414D000
|
trusted library allocation
|
page read and write
|
||
6CF0000
|
trusted library allocation
|
page read and write
|
||
570E000
|
stack
|
page read and write
|
||
3100000
|
trusted library allocation
|
page read and write
|
||
133B000
|
trusted library allocation
|
page execute and read and write
|
||
1420000
|
heap
|
page read and write
|
||
33BD000
|
trusted library allocation
|
page read and write
|
||
1326000
|
trusted library allocation
|
page execute and read and write
|
||
1060000
|
heap
|
page read and write
|
||
404A000
|
trusted library allocation
|
page read and write
|
||
3020000
|
trusted library allocation
|
page execute and read and write
|
||
4191000
|
trusted library allocation
|
page read and write
|
||
624E000
|
stack
|
page read and write
|
||
3173000
|
trusted library allocation
|
page read and write
|
||
424B000
|
trusted library allocation
|
page read and write
|
||
3210000
|
trusted library allocation
|
page read and write
|
||
67AE000
|
stack
|
page read and write
|
||
480B000
|
trusted library allocation
|
page read and write
|
||
3FC9000
|
trusted library allocation
|
page read and write
|
||
41BD000
|
trusted library allocation
|
page read and write
|
||
1320000
|
heap
|
page read and write
|
||
60EE000
|
stack
|
page read and write
|
||
79D5000
|
trusted library allocation
|
page read and write
|
||
DE7000
|
stack
|
page read and write
|
||
4206000
|
trusted library allocation
|
page read and write
|
||
4154000
|
trusted library allocation
|
page read and write
|
||
3E71000
|
trusted library allocation
|
page read and write
|
||
5490000
|
trusted library allocation
|
page read and write
|
||
527E000
|
stack
|
page read and write
|
||
87B0000
|
heap
|
page read and write
|
||
1337000
|
trusted library allocation
|
page execute and read and write
|
||
1500000
|
trusted library allocation
|
page read and write
|
||
41F7000
|
trusted library allocation
|
page read and write
|
||
3448000
|
trusted library allocation
|
page read and write
|
||
4001000
|
trusted library allocation
|
page read and write
|
||
31F3000
|
trusted library allocation
|
page read and write
|
||
3FF6000
|
trusted library allocation
|
page read and write
|
||
40CE000
|
trusted library allocation
|
page read and write
|
||
54BE000
|
trusted library allocation
|
page read and write
|
||
1220000
|
heap
|
page read and write
|
||
3F63000
|
trusted library allocation
|
page read and write
|
||
32CC000
|
trusted library allocation
|
page read and write
|
||
3139000
|
trusted library allocation
|
page read and write
|
||
32A9000
|
trusted library allocation
|
page read and write
|
||
4141000
|
trusted library allocation
|
page read and write
|
||
3FA5000
|
trusted library allocation
|
page read and write
|
||
3F09000
|
trusted library allocation
|
page read and write
|
||
32C6000
|
trusted library allocation
|
page read and write
|
||
3F4A000
|
trusted library allocation
|
page read and write
|
||
2E30000
|
trusted library allocation
|
page read and write
|
||
309A000
|
trusted library allocation
|
page read and write
|
||
32B1000
|
trusted library allocation
|
page read and write
|
||
662E000
|
stack
|
page read and write
|
||
3083000
|
trusted library allocation
|
page read and write
|
||
40F0000
|
trusted library allocation
|
page read and write
|
||
5B90000
|
trusted library allocation
|
page execute and read and write
|
||
7AB4000
|
trusted library allocation
|
page read and write
|
||
401E000
|
trusted library allocation
|
page read and write
|
||
76BF000
|
heap
|
page read and write
|
||
7EDF000
|
stack
|
page read and write
|
||
1540000
|
heap
|
page read and write
|
||
403B000
|
trusted library allocation
|
page read and write
|
||
3F12000
|
trusted library allocation
|
page read and write
|
||
4044000
|
trusted library allocation
|
page read and write
|
||
47FC000
|
trusted library allocation
|
page read and write
|
||
41FC000
|
trusted library allocation
|
page read and write
|
||
31EB000
|
trusted library allocation
|
page read and write
|
||
4028000
|
trusted library allocation
|
page read and write
|
||
34B8000
|
trusted library allocation
|
page read and write
|
||
6260000
|
trusted library allocation
|
page read and write
|
||
425D000
|
trusted library allocation
|
page read and write
|
||
7A00000
|
trusted library allocation
|
page read and write
|
||
4067000
|
trusted library allocation
|
page read and write
|
||
400000
|
remote allocation
|
page execute and read and write
|
||
6D70000
|
trusted library allocation
|
page execute and read and write
|
||
63B9000
|
heap
|
page read and write
|
||
2E10000
|
trusted library allocation
|
page read and write
|
||
32E7000
|
trusted library allocation
|
page read and write
|
||
3FE2000
|
trusted library allocation
|
page read and write
|
||
324A000
|
trusted library allocation
|
page read and write
|
||
3288000
|
trusted library allocation
|
page read and write
|
||
58CE000
|
stack
|
page read and write
|
||
41EA000
|
trusted library allocation
|
page read and write
|
||
12E2000
|
heap
|
page read and write
|
||
583F000
|
stack
|
page read and write
|
||
150D000
|
trusted library allocation
|
page execute and read and write
|
||
13B5000
|
heap
|
page read and write
|
||
6AB0000
|
trusted library allocation
|
page read and write
|
||
3FAD000
|
trusted library allocation
|
page read and write
|
||
2E45000
|
trusted library allocation
|
page read and write
|
||
330D000
|
trusted library allocation
|
page read and write
|
||
7AD0000
|
trusted library allocation
|
page execute and read and write
|
||
3F17000
|
trusted library allocation
|
page read and write
|
||
7818000
|
heap
|
page read and write
|
||
307E000
|
trusted library allocation
|
page read and write
|
||
1330000
|
trusted library allocation
|
page read and write
|
||
7050000
|
trusted library allocation
|
page execute and read and write
|
||
3F24000
|
trusted library allocation
|
page read and write
|
||
55C4000
|
trusted library allocation
|
page read and write
|
||
6ACB000
|
trusted library allocation
|
page read and write
|
||
3F6D000
|
trusted library allocation
|
page read and write
|
||
2E53000
|
heap
|
page read and write
|
||
1504000
|
trusted library allocation
|
page read and write
|
||
32FE000
|
trusted library allocation
|
page read and write
|
||
33B9000
|
trusted library allocation
|
page read and write
|
||
E16000
|
unkown
|
page readonly
|
||
3FEF000
|
trusted library allocation
|
page read and write
|
||
EBB000
|
stack
|
page read and write
|
||
3246000
|
trusted library allocation
|
page read and write
|
||
32E1000
|
trusted library allocation
|
page read and write
|
||
3292000
|
trusted library allocation
|
page read and write
|
||
4267000
|
trusted library allocation
|
page read and write
|
||
5FCE000
|
stack
|
page read and write
|
||
32C4000
|
trusted library allocation
|
page read and write
|
||
7080000
|
trusted library allocation
|
page read and write
|
||
5D0E000
|
stack
|
page read and write
|
||
58B0000
|
heap
|
page read and write
|
||
76EE000
|
heap
|
page read and write
|
||
3157000
|
trusted library allocation
|
page read and write
|
||
76B0000
|
heap
|
page read and write
|
||
3270000
|
trusted library allocation
|
page read and write
|
||
3297000
|
trusted library allocation
|
page read and write
|
||
61F0000
|
heap
|
page read and write
|
||
56A7000
|
trusted library allocation
|
page read and write
|
||
3046000
|
trusted library allocation
|
page read and write
|
||
87EC000
|
heap
|
page read and write
|
||
32E5000
|
trusted library allocation
|
page read and write
|
||
6D00000
|
trusted library allocation
|
page read and write
|
There are 579 hidden memdumps, click here to show them.