IOC Report
setup.exe

loading gif

Files

File Path
Type
Category
Malicious
setup.exe
PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
initial sample
malicious
C:\Users\user\AppData\Local\Microsoft\CLR_v4.0_32\UsageLogs\setup.exe.log
ASCII text, with CRLF line terminators
dropped
malicious
C:\Users\Public\Desktop\Google Chrome.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Description string, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:41 2023, mtime=Thu Oct 5 05:47:20 2023, atime=Wed Sep 27 08:36:54 2023, length=3242272, window=hide
dropped
C:\Users\user\AppData\Local\Microsoft\CLR_v4.0_32\UsageLogs\RegAsm.exe.log
ASCII text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\Tmp6A0F.tmp
data
dropped
C:\Users\user\AppData\Local\Temp\Tmp6A20.tmp
data
dropped
C:\Users\user\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2246122658-3693405117-2476756634-1003\76b53b3ec448f7ccdda2063b15d2bfc3_9e146be9-c76a-4720-bcdb-53011b87bd06
data
dropped

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\setup.exe
"C:\Users\user\Desktop\setup.exe"
malicious
C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
"C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe"
malicious

URLs

Name
IP
Malicious
185.172.128.33:8970
malicious
http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-soap-message-security-1.0#Text
unknown
http://schemas.xmlsoap.org/ws/2005/02/sc/sct
unknown
http://schemas.xmlsoap.org/ws/2004/04/security/sc/dk
unknown
http://tempuri.org/Entity/Id14ResponseD
unknown
https://github.com/AzureAD/microsoft-authentication-extensions-for-dotnet
unknown
http://tempuri.org/Entity/Id23ResponseD
unknown
http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-soap-message-security-1.0#HexBinary
unknown
http://tempuri.org/Entity/Id12Response
unknown
http://tempuri.org/
unknown
http://tempuri.org/Entity/Id2Response
unknown
http://schemas.xmlsoap.org/ws/2005/02/sc/dk/p_sha1
unknown
http://tempuri.org/Entity/Id21Response
unknown
http://schemas.xmlsoap.org/2005/02/trust/spnego#GSS_Wrap
unknown
http://tempuri.org/Entity/Id9
unknown
http://docs.oasis-open.org/wss/oasis-wss-saml-token-profile-1.1#SAMLID
unknown
http://tempuri.org/Entity/Id8
unknown
http://tempuri.org/Entity/Id6ResponseD
unknown
http://tempuri.org/Entity/Id5
unknown
http://schemas.xmlsoap.org/ws/2004/10/wsat/Prepare
unknown
http://tempuri.org/Entity/Id4
unknown
http://tempuri.org/Entity/Id7
unknown
http://tempuri.org/Entity/Id6
unknown
http://schemas.xmlsoap.org/ws/2005/02/trust#BinarySecret
unknown
http://tempuri.org/Entity/Id19Response
unknown
http://docs.oasis-open.org/wss/oasis-wss-rel-token-profile-1.0.pdf#license
unknown
http://schemas.xmlsoap.org/ws/2005/02/trust/RSTR/Issue
unknown
http://schemas.xmlsoap.org/ws/2004/10/wsat/Aborted
unknown
http://schemas.xmlsoap.org/ws/2005/02/rm/TerminateSequence
unknown
http://tempuri.org/Entity/Id13ResponseD
unknown
http://schemas.xmlsoap.org/ws/2004/10/wsat/fault
unknown
http://schemas.xmlsoap.org/ws/2004/10/wsat
unknown
http://sharpvectors.codeplex.com/runtime/
unknown
http://docs.oasis-open.org/wss/oasis-wss-soap-message-security-1.1#EncryptedKey
unknown
http://tempuri.org/Entity/Id15Response
unknown
http://schemas.xmlsoap.org/ws/2005/05/identity/claims/name
unknown
http://schemas.xmlsoap.org/ws/2005/02/trust/RSTR/SCT/Renew
unknown
http://schemas.xmlsoap.org/ws/2004/08/addressing/faultp9
unknown
http://schemas.xmlsoap.org/ws/2004/10/wscoor/Register
unknown
http://tempuri.org/Entity/Id6Response
unknown
http://schemas.xmlsoap.org/ws/2004/04/trust/SymmetricKey
unknown
https://api.ip.sb/ip
unknown
http://schemas.xmlsoap.org/ws/2004/04/sc
unknown
http://tempuri.org/Entity/Id1ResponseD
unknown
http://schemas.xmlsoap.org/ws/2004/10/wsat/Volatile2PC
unknown
http://schemas.xmlsoap.org/ws/2005/02/trust/RSTR/SCT/Cancel
unknown
http://tempuri.org/Entity/Id9Response
unknown
http://tempuri.org/Entity/Id20
unknown
http://tempuri.org/Entity/Id21
unknown
http://tempuri.org/Entity/Id22
unknown
http://docs.oasis-open.org/wss/oasis-wss-kerberos-token-profile-1.1#Kerberosv5APREQSHA1
unknown
http://tempuri.org/Entity/Id23
unknown
http://schemas.xmlsoap.org/ws/2004/04/security/trust/CK/PSHA1
unknown
http://tempuri.org/Entity/Id24
unknown
http://schemas.xmlsoap.org/ws/2004/04/security/trust/RSTR/Issue
unknown
http://tempuri.org/Entity/Id24Response
unknown
http://tempuri.org/Entity/Id1Response
unknown
http://schemas.xmlsoap.org/ws/2005/02/rm/AckRequested
unknown
http://schemas.xmlsoap.org/ws/2004/10/wsat/ReadOnly
unknown
http://schemas.xmlsoap.org/ws/2004/10/wsat/Replay
unknown
http://schemas.xmlsoap.org/ws/2005/02/trust/tlsnego
unknown
http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-soap-message-security-1.0#Base64Binary
unknown
http://schemas.xmlsoap.org/ws/2004/10/wsat/Durable2PC
unknown
http://schemas.xmlsoap.org/ws/2004/04/security/trust/SymmetricKey
unknown
http://tempuri.org/Entity/Id21ResponseD
unknown
http://schemas.xmlsoap.org/ws/2004/08/addressing
unknown
http://schemas.xmlsoap.org/ws/2005/02/trust/RST/Issue
unknown
http://schemas.xmlsoap.org/ws/2004/10/wsat/Completion
unknown
http://schemas.xmlsoap.org/ws/2004/04/trust
unknown
http://tempuri.org/Entity/Id10
unknown
http://tempuri.org/Entity/Id11
unknown
http://tempuri.org/Entity/Id10ResponseD
unknown
http://tempuri.org/Entity/Id12
unknown
http://tempuri.org/Entity/Id16Response
unknown
http://schemas.xmlsoap.org/ws/2004/10/wscoor/CreateCoordinationContextResponse
unknown
http://schemas.xmlsoap.org/ws/2005/02/trust/RST/SCT/Cancel
unknown
http://tempuri.org/Entity/Id13
unknown
http://tempuri.org/Entity/Id14
unknown
http://tempuri.org/Entity/Id15
unknown
http://tempuri.org/Entity/Id16
unknown
http://schemas.xmlsoap.org/ws/2005/02/trust/Nonce
unknown
http://tempuri.org/Entity/Id17
unknown
http://tempuri.org/Entity/Id18
unknown
http://tempuri.org/Entity/Id5Response
unknown
http://tempuri.org/Entity/Id19
unknown
http://schemas.xmlsoap.org/ws/2005/05/identity/claims/dns
unknown
http://tempuri.org/Entity/Id15ResponseD
unknown
http://tempuri.org/Entity/Id10Response
unknown
http://schemas.xmlsoap.org/ws/2005/02/trust/Renew
unknown
http://tempuri.org/Entity/Id11ResponseD
unknown
http://tempuri.org/Entity/Id8Response
unknown
http://ocsp.sectigo.com0
unknown
http://schemas.xmlsoap.org/ws/2004/04/trust/PublicKey
unknown
http://docs.oasis-open.org/wss/oasis-wss-saml-token-profile-1.1#SAMLV2.0
unknown
http://docs.oasis-open.org/wss/oasis-wss-saml-token-profile-1.0#SAMLAssertionID
unknown
http://schemas.xmlsoap.org/ws/2004/04/security/trust/RST/SCT
unknown
http://schemas.xmlsoap.org/ws/2006/02/addressingidentity
unknown
http://tempuri.org/Entity/Id17ResponseD
unknown
http://schemas.xmlsoap.org/soap/envelope/
unknown
http://tempuri.org/Entity/Id8ResponseD
unknown
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
15.164.165.52.in-addr.arpa
unknown

IPs

IP
Domain
Country
Malicious
185.172.128.33
unknown
Russian Federation
malicious

Registry

Path
Value
Malicious
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\F1A578C4CB5DE79A370893983FD4DA8B67B2B064
Blob
malicious
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
Owner
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
SessionHash
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
Sequence
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
RegFiles0000
HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
RegFilesHash

Memdumps

Base Address
Regiontype
Protect
Malicious
46BE000
trusted library allocation
page read and write
malicious
47A2000
trusted library allocation
page read and write
malicious
4253000
trusted library allocation
page read and write
malicious
470A000
trusted library allocation
page read and write
malicious
4145000
trusted library allocation
page read and write
malicious
402000
remote allocation
page execute and read and write
malicious
801E000
stack
page read and write
1332000
trusted library allocation
page read and write
2F4E000
stack
page read and write
E14000
unkown
page readonly
7789000
heap
page read and write
32D3000
trusted library allocation
page read and write
7000000
trusted library allocation
page read and write
7759000
heap
page read and write
76B2000
heap
page read and write
320A000
trusted library allocation
page read and write
34AE000
trusted library allocation
page read and write
3208000
trusted library allocation
page read and write
4169000
trusted library allocation
page read and write
4272000
trusted library allocation
page read and write
41B0000
trusted library allocation
page read and write
3477000
trusted library allocation
page read and write
40F3000
trusted library allocation
page read and write
5C0D000
stack
page read and write
321D000
trusted library allocation
page read and write
4201000
trusted library allocation
page read and write
779A000
heap
page read and write
13B0000
heap
page read and write
3F8F000
trusted library allocation
page read and write
62FE000
heap
page read and write
342B000
trusted library allocation
page read and write
323E000
trusted library allocation
page read and write
314B000
trusted library allocation
page read and write
40F8000
trusted library allocation
page read and write
404D000
trusted library allocation
page read and write
1229000
heap
page read and write
3294000
trusted library allocation
page read and write
3225000
trusted library allocation
page read and write
772F000
heap
page read and write
40B3000
trusted library allocation
page read and write
12DC000
heap
page read and write
7B6E000
stack
page read and write
158B000
heap
page read and write
2F58000
trusted library allocation
page read and write
6A45000
trusted library allocation
page read and write
4121000
trusted library allocation
page read and write
3223000
trusted library allocation
page read and write
11FB000
heap
page read and write
3301000
trusted library allocation
page read and write
6200000
trusted library allocation
page read and write
4008000
trusted library allocation
page read and write
63EE000
heap
page read and write
3255000
trusted library allocation
page read and write
132A000
trusted library allocation
page execute and read and write
140E000
stack
page read and write
7E9E000
stack
page read and write
15BF000
heap
page read and write
1310000
trusted library allocation
page read and write
3233000
trusted library allocation
page read and write
5450000
trusted library allocation
page read and write
415E000
trusted library allocation
page read and write
6A81000
trusted library allocation
page read and write
2EE0000
trusted library allocation
page read and write
40FD000
trusted library allocation
page read and write
402E000
trusted library allocation
page read and write
3212000
trusted library allocation
page read and write
302D000
trusted library allocation
page read and write
2EEB000
trusted library allocation
page execute and read and write
2EDE000
stack
page read and write
3272000
trusted library allocation
page read and write
700D000
trusted library allocation
page read and write
32A5000
trusted library allocation
page read and write
3229000
trusted library allocation
page read and write
3141000
trusted library allocation
page read and write
303A000
trusted library allocation
page read and write
3276000
trusted library allocation
page read and write
7042000
trusted library allocation
page read and write
6AC5000
trusted library allocation
page read and write
3F1D000
trusted library allocation
page read and write
6A40000
trusted library allocation
page read and write
14FE000
stack
page read and write
76C4000
heap
page read and write
6B00000
trusted library allocation
page read and write
55E0000
trusted library allocation
page read and write
79CA000
trusted library allocation
page read and write
1588000
heap
page read and write
79B2000
trusted library allocation
page read and write
79F0000
trusted library allocation
page read and write
7084000
trusted library allocation
page read and write
777C000
heap
page read and write
3274000
trusted library allocation
page read and write
63DE000
heap
page read and write
5500000
trusted library allocation
page read and write
5710000
trusted library section
page read and write
79B0000
trusted library allocation
page read and write
6250000
trusted library allocation
page read and write
79B9000
trusted library allocation
page read and write
63D0000
heap
page read and write
41CD000
trusted library allocation
page read and write
79B5000
trusted library allocation
page read and write
1300000
heap
page read and write
6960000
trusted library allocation
page execute and read and write
3227000
trusted library allocation
page read and write
79DF000
trusted library allocation
page read and write
31ED000
trusted library allocation
page read and write
76CA000
heap
page read and write
6ACE000
trusted library allocation
page read and write
11F0000
heap
page read and write
3F82000
trusted library allocation
page read and write
5A32000
trusted library section
page read and write
6FFC000
stack
page read and write
76BC000
heap
page read and write
2E60000
heap
page execute and read and write
6AC0000
trusted library allocation
page read and write
2F18000
trusted library allocation
page read and write
321B000
trusted library allocation
page read and write
7AAE000
stack
page read and write
6DBC000
stack
page read and write
3F15000
trusted library allocation
page read and write
1335000
trusted library allocation
page execute and read and write
350B000
trusted library allocation
page read and write
1322000
trusted library allocation
page read and write
6B40000
trusted library allocation
page read and write
3038000
trusted library allocation
page read and write
3023000
trusted library allocation
page read and write
3109000
trusted library allocation
page read and write
40E5000
trusted library allocation
page read and write
320E000
trusted library allocation
page read and write
32C8000
trusted library allocation
page read and write
4013000
trusted library allocation
page read and write
3E7F000
trusted library allocation
page read and write
328E000
trusted library allocation
page read and write
31EF000
trusted library allocation
page read and write
41D7000
trusted library allocation
page read and write
3EF2000
trusted library allocation
page read and write
308E000
trusted library allocation
page read and write
32F8000
trusted library allocation
page read and write
6A35000
trusted library allocation
page read and write
4262000
trusted library allocation
page read and write
10E5000
heap
page read and write
6BC0000
trusted library allocation
page execute and read and write
328A000
trusted library allocation
page read and write
79CF000
trusted library allocation
page read and write
32CF000
trusted library allocation
page read and write
3EFF000
trusted library allocation
page read and write
3F68000
trusted library allocation
page read and write
676F000
stack
page read and write
1530000
heap
page read and write
6AA1000
trusted library allocation
page read and write
77C3000
heap
page read and write
6312000
heap
page read and write
771D000
heap
page read and write
136E000
stack
page read and write
AF0000
unkown
page readonly
12D0000
heap
page read and write
40EA000
trusted library allocation
page read and write
76E3000
heap
page read and write
60CF000
stack
page read and write
63D3000
heap
page read and write
6A30000
trusted library allocation
page read and write
2FF0000
heap
page execute and read and write
41DD000
trusted library allocation
page read and write
4035000
trusted library allocation
page read and write
1559000
heap
page read and write
63E3000
heap
page read and write
3F78000
trusted library allocation
page read and write
6A9E000
trusted library allocation
page read and write
10CE000
stack
page read and write
31F1000
trusted library allocation
page read and write
322D000
trusted library allocation
page read and write
3240000
trusted library allocation
page read and write
15F3000
heap
page read and write
4F78000
trusted library allocation
page read and write
3152000
trusted library allocation
page read and write
4F6E000
stack
page read and write
2E71000
trusted library allocation
page read and write
40E1000
trusted library allocation
page read and write
419E000
trusted library allocation
page read and write
55C7000
trusted library allocation
page read and write
4237000
trusted library allocation
page read and write
1410000
heap
page read and write
6B60000
trusted library allocation
page execute and read and write
2E50000
heap
page read and write
41EE000
trusted library allocation
page read and write
3452000
trusted library allocation
page read and write
56A0000
trusted library allocation
page read and write
41C1000
trusted library allocation
page read and write
77CA000
heap
page read and write
1050000
heap
page read and write
32A7000
trusted library allocation
page read and write
41B7000
trusted library allocation
page read and write
32DF000
trusted library allocation
page read and write
32FC000
trusted library allocation
page read and write
328C000
trusted library allocation
page read and write
5BC0000
trusted library allocation
page execute and read and write
40D4000
trusted library allocation
page read and write
326E000
trusted library allocation
page read and write
3F3D000
trusted library allocation
page read and write
1300000
trusted library allocation
page read and write
33B3000
trusted library allocation
page read and write
34E7000
trusted library allocation
page read and write
312C000
trusted library allocation
page read and write
3FD5000
trusted library allocation
page read and write
510B000
stack
page read and write
6D30000
trusted library allocation
page read and write
32AF000
trusted library allocation
page read and write
6A92000
trusted library allocation
page read and write
7010000
trusted library allocation
page execute and read and write
320C000
trusted library allocation
page read and write
700A000
trusted library allocation
page read and write
2E20000
trusted library allocation
page read and write
5471000
trusted library allocation
page read and write
5E8E000
stack
page read and write
3E92000
trusted library allocation
page read and write
2E0C000
stack
page read and write
58FE000
stack
page read and write
5502000
trusted library allocation
page read and write
325F000
trusted library allocation
page read and write
46FB000
trusted library allocation
page read and write
1385000
heap
page read and write
56F0000
trusted library allocation
page read and write
6D10000
trusted library allocation
page read and write
3411000
trusted library allocation
page read and write
6D20000
heap
page execute and read and write
3F5C000
trusted library allocation
page read and write
32C2000
trusted library allocation
page read and write
15CF000
heap
page read and write
4142000
trusted library allocation
page read and write
47EE000
trusted library allocation
page read and write
63B2000
heap
page read and write
41A5000
trusted library allocation
page read and write
2CCE000
stack
page read and write
313E000
stack
page read and write
6A3A000
trusted library allocation
page read and write
421E000
trusted library allocation
page read and write
79C8000
trusted library allocation
page read and write
3286000
trusted library allocation
page read and write
341A000
trusted library allocation
page read and write
3F96000
trusted library allocation
page read and write
3259000
trusted library allocation
page read and write
400E000
trusted library allocation
page read and write
54F0000
heap
page read and write
5730000
heap
page execute and read and write
1350000
trusted library allocation
page read and write
3264000
trusted library allocation
page read and write
344C000
trusted library allocation
page read and write
5A40000
heap
page read and write
6B50000
trusted library allocation
page read and write
6D50000
trusted library allocation
page execute and read and write
1592000
heap
page read and write
446000
remote allocation
page execute and read and write
6A47000
trusted library allocation
page read and write
77FD000
heap
page read and write
46AF000
trusted library allocation
page read and write
1304000
trusted library allocation
page read and write
77DF000
heap
page read and write
3311000
trusted library allocation
page read and write
3424000
trusted library allocation
page read and write
151D000
trusted library allocation
page execute and read and write
3436000
trusted library allocation
page read and write
815E000
stack
page read and write
3FB2000
trusted library allocation
page read and write
4184000
trusted library allocation
page read and write
5700000
trusted library allocation
page execute and read and write
40AE000
trusted library allocation
page read and write
3167000
trusted library allocation
page read and write
79E0000
trusted library allocation
page read and write
7761000
heap
page read and write
7796000
heap
page read and write
41F9000
trusted library allocation
page read and write
3111000
trusted library allocation
page read and write
40B8000
trusted library allocation
page read and write
329F000
trusted library allocation
page read and write
7F820000
trusted library allocation
page execute and read and write
47DF000
trusted library allocation
page read and write
311F000
trusted library allocation
page read and write
5A59000
heap
page read and write
76F4000
heap
page read and write
68B0000
trusted library allocation
page read and write
5F8E000
stack
page read and write
34CD000
trusted library allocation
page read and write
1360000
trusted library allocation
page execute and read and write
3F30000
trusted library allocation
page read and write
3221000
trusted library allocation
page read and write
3290000
trusted library allocation
page read and write
5510000
trusted library allocation
page execute and read and write
1520000
trusted library allocation
page read and write
3072000
trusted library allocation
page read and write
4244000
trusted library allocation
page read and write
12F0000
trusted library allocation
page read and write
3030000
heap
page read and write
6A86000
trusted library allocation
page read and write
5454000
trusted library allocation
page read and write
59FE000
stack
page read and write
8160000
trusted library allocation
page read and write
3257000
trusted library allocation
page read and write
1320000
trusted library allocation
page read and write
32AB000
trusted library allocation
page read and write
322B000
trusted library allocation
page read and write
413B000
trusted library allocation
page read and write
131D000
trusted library allocation
page execute and read and write
546E000
trusted library allocation
page read and write
7F1E000
stack
page read and write
1503000
trusted library allocation
page execute and read and write
55C0000
trusted library allocation
page read and write
6B70000
trusted library allocation
page execute and read and write
4178000
trusted library allocation
page read and write
3443000
trusted library allocation
page read and write
62F8000
heap
page read and write
2F8B000
trusted library allocation
page read and write
79DA000
trusted library allocation
page read and write
412E000
trusted library allocation
page read and write
40C3000
trusted library allocation
page read and write
40EE000
trusted library allocation
page read and write
6940000
trusted library allocation
page execute and read and write
3F99000
trusted library allocation
page read and write
7773000
heap
page read and write
5482000
trusted library allocation
page read and write
32AD000
trusted library allocation
page read and write
3401000
trusted library allocation
page read and write
77AA000
heap
page read and write
34FA000
trusted library allocation
page read and write
130D000
trusted library allocation
page execute and read and write
78B0000
heap
page read and write
15E1000
heap
page read and write
30C8000
trusted library allocation
page read and write
1513000
trusted library allocation
page read and write
5FC2000
heap
page read and write
1303000
trusted library allocation
page execute and read and write
6EBC000
stack
page read and write
4048000
trusted library allocation
page read and write
7040000
trusted library allocation
page read and write
3140000
trusted library allocation
page read and write
34C0000
trusted library allocation
page read and write
547D000
trusted library allocation
page read and write
61EE000
stack
page read and write
7707000
heap
page read and write
55D0000
trusted library allocation
page read and write
3079000
trusted library allocation
page read and write
2E38000
trusted library allocation
page read and write
517D000
stack
page read and write
152A000
trusted library allocation
page execute and read and write
7AE0000
trusted library allocation
page execute and read and write
77E3000
heap
page read and write
76DE000
heap
page read and write
1548000
heap
page read and write
32B3000
trusted library allocation
page read and write
2F93000
trusted library allocation
page read and write
2F00000
trusted library allocation
page read and write
40A7000
trusted library allocation
page read and write
15FE000
heap
page read and write
4115000
trusted library allocation
page read and write
5670000
heap
page execute and read and write
6358000
heap
page read and write
330B000
trusted library allocation
page read and write
13A0000
trusted library allocation
page read and write
2DCE000
stack
page read and write
639E000
heap
page read and write
3067000
trusted library allocation
page read and write
14BF000
stack
page read and write
6258000
trusted library allocation
page read and write
6AE0000
trusted library allocation
page read and write
5E4E000
stack
page read and write
330F000
trusted library allocation
page read and write
315C000
trusted library allocation
page read and write
32CA000
trusted library allocation
page read and write
3FA2000
trusted library allocation
page read and write
408F000
trusted library allocation
page read and write
6BD0000
trusted library allocation
page execute and read and write
6A7B000
trusted library allocation
page read and write
7791000
heap
page read and write
7B2E000
stack
page read and write
3506000
trusted library allocation
page read and write
2FEC000
trusted library allocation
page read and write
62F0000
heap
page read and write
1526000
trusted library allocation
page execute and read and write
4053000
trusted library allocation
page read and write
6207000
trusted library allocation
page read and write
1390000
heap
page read and write
4159000
trusted library allocation
page read and write
422A000
trusted library allocation
page read and write
13CE000
stack
page read and write
3EF9000
trusted library allocation
page read and write
6D40000
trusted library allocation
page read and write
12AA000
heap
page read and write
777A000
heap
page read and write
63C5000
heap
page read and write
6AF0000
trusted library allocation
page read and write
1370000
trusted library allocation
page read and write
6B10000
trusted library allocation
page read and write
1236000
heap
page read and write
4173000
trusted library allocation
page read and write
77F5000
heap
page read and write
31B9000
trusted library allocation
page read and write
3113000
trusted library allocation
page read and write
7AC0000
trusted library allocation
page read and write
5BA0000
trusted library allocation
page execute and read and write
3206000
trusted library allocation
page read and write
3F0F000
trusted library allocation
page read and write
403F000
trusted library allocation
page read and write
437000
remote allocation
page execute and read and write
31DD000
trusted library allocation
page read and write
3204000
trusted library allocation
page read and write
7745000
heap
page read and write
3060000
trusted library allocation
page read and write
31F6000
trusted library allocation
page read and write
5733000
heap
page execute and read and write
4256000
trusted library allocation
page read and write
4793000
trusted library allocation
page read and write
34EE000
trusted library allocation
page read and write
54B0000
trusted library allocation
page read and write
6337000
heap
page read and write
6EFE000
stack
page read and write
40DB000
trusted library allocation
page read and write
5B50000
trusted library allocation
page read and write
6A70000
trusted library allocation
page read and write
68AE000
stack
page read and write
32DD000
trusted library allocation
page read and write
1517000
trusted library allocation
page read and write
5D4E000
stack
page read and write
41F3000
trusted library allocation
page read and write
34DA000
trusted library allocation
page read and write
FB5000
stack
page read and write
6A49000
trusted library allocation
page read and write
56EE000
stack
page read and write
432000
remote allocation
page execute and read and write
7A6D000
stack
page read and write
5476000
trusted library allocation
page read and write
10E0000
heap
page read and write
3501000
trusted library allocation
page read and write
3F51000
trusted library allocation
page read and write
CEA000
stack
page read and write
3F06000
trusted library allocation
page read and write
6A38000
trusted library allocation
page read and write
3404000
trusted library allocation
page read and write
5B40000
trusted library allocation
page read and write
79E8000
trusted library allocation
page read and write
3F89000
trusted library allocation
page read and write
2EE7000
trusted library allocation
page execute and read and write
805D000
stack
page read and write
32E3000
trusted library allocation
page read and write
666E000
stack
page read and write
7AB0000
trusted library allocation
page read and write
545B000
trusted library allocation
page read and write
3053000
trusted library allocation
page read and write
3F9F000
trusted library allocation
page read and write
3FA7000
trusted library allocation
page read and write
63BD000
heap
page read and write
3279000
trusted library allocation
page read and write
6AD0000
trusted library allocation
page read and write
3EB3000
trusted library allocation
page read and write
7775000
heap
page read and write
3000000
heap
page read and write
41E4000
trusted library allocation
page read and write
2E40000
trusted library allocation
page read and write
4249000
trusted library allocation
page read and write
AF2000
unkown
page readonly
5690000
trusted library allocation
page read and write
424B000
trusted library allocation
page read and write
11C0000
heap
page read and write
1380000
heap
page read and write
414D000
trusted library allocation
page read and write
6CF0000
trusted library allocation
page read and write
570E000
stack
page read and write
3100000
trusted library allocation
page read and write
133B000
trusted library allocation
page execute and read and write
1420000
heap
page read and write
33BD000
trusted library allocation
page read and write
1326000
trusted library allocation
page execute and read and write
1060000
heap
page read and write
404A000
trusted library allocation
page read and write
3020000
trusted library allocation
page execute and read and write
4191000
trusted library allocation
page read and write
624E000
stack
page read and write
3173000
trusted library allocation
page read and write
424B000
trusted library allocation
page read and write
3210000
trusted library allocation
page read and write
67AE000
stack
page read and write
480B000
trusted library allocation
page read and write
3FC9000
trusted library allocation
page read and write
41BD000
trusted library allocation
page read and write
1320000
heap
page read and write
60EE000
stack
page read and write
79D5000
trusted library allocation
page read and write
DE7000
stack
page read and write
4206000
trusted library allocation
page read and write
4154000
trusted library allocation
page read and write
3E71000
trusted library allocation
page read and write
5490000
trusted library allocation
page read and write
527E000
stack
page read and write
87B0000
heap
page read and write
1337000
trusted library allocation
page execute and read and write
1500000
trusted library allocation
page read and write
41F7000
trusted library allocation
page read and write
3448000
trusted library allocation
page read and write
4001000
trusted library allocation
page read and write
31F3000
trusted library allocation
page read and write
3FF6000
trusted library allocation
page read and write
40CE000
trusted library allocation
page read and write
54BE000
trusted library allocation
page read and write
1220000
heap
page read and write
3F63000
trusted library allocation
page read and write
32CC000
trusted library allocation
page read and write
3139000
trusted library allocation
page read and write
32A9000
trusted library allocation
page read and write
4141000
trusted library allocation
page read and write
3FA5000
trusted library allocation
page read and write
3F09000
trusted library allocation
page read and write
32C6000
trusted library allocation
page read and write
3F4A000
trusted library allocation
page read and write
2E30000
trusted library allocation
page read and write
309A000
trusted library allocation
page read and write
32B1000
trusted library allocation
page read and write
662E000
stack
page read and write
3083000
trusted library allocation
page read and write
40F0000
trusted library allocation
page read and write
5B90000
trusted library allocation
page execute and read and write
7AB4000
trusted library allocation
page read and write
401E000
trusted library allocation
page read and write
76BF000
heap
page read and write
7EDF000
stack
page read and write
1540000
heap
page read and write
403B000
trusted library allocation
page read and write
3F12000
trusted library allocation
page read and write
4044000
trusted library allocation
page read and write
47FC000
trusted library allocation
page read and write
41FC000
trusted library allocation
page read and write
31EB000
trusted library allocation
page read and write
4028000
trusted library allocation
page read and write
34B8000
trusted library allocation
page read and write
6260000
trusted library allocation
page read and write
425D000
trusted library allocation
page read and write
7A00000
trusted library allocation
page read and write
4067000
trusted library allocation
page read and write
400000
remote allocation
page execute and read and write
6D70000
trusted library allocation
page execute and read and write
63B9000
heap
page read and write
2E10000
trusted library allocation
page read and write
32E7000
trusted library allocation
page read and write
3FE2000
trusted library allocation
page read and write
324A000
trusted library allocation
page read and write
3288000
trusted library allocation
page read and write
58CE000
stack
page read and write
41EA000
trusted library allocation
page read and write
12E2000
heap
page read and write
583F000
stack
page read and write
150D000
trusted library allocation
page execute and read and write
13B5000
heap
page read and write
6AB0000
trusted library allocation
page read and write
3FAD000
trusted library allocation
page read and write
2E45000
trusted library allocation
page read and write
330D000
trusted library allocation
page read and write
7AD0000
trusted library allocation
page execute and read and write
3F17000
trusted library allocation
page read and write
7818000
heap
page read and write
307E000
trusted library allocation
page read and write
1330000
trusted library allocation
page read and write
7050000
trusted library allocation
page execute and read and write
3F24000
trusted library allocation
page read and write
55C4000
trusted library allocation
page read and write
6ACB000
trusted library allocation
page read and write
3F6D000
trusted library allocation
page read and write
2E53000
heap
page read and write
1504000
trusted library allocation
page read and write
32FE000
trusted library allocation
page read and write
33B9000
trusted library allocation
page read and write
E16000
unkown
page readonly
3FEF000
trusted library allocation
page read and write
EBB000
stack
page read and write
3246000
trusted library allocation
page read and write
32E1000
trusted library allocation
page read and write
3292000
trusted library allocation
page read and write
4267000
trusted library allocation
page read and write
5FCE000
stack
page read and write
32C4000
trusted library allocation
page read and write
7080000
trusted library allocation
page read and write
5D0E000
stack
page read and write
58B0000
heap
page read and write
76EE000
heap
page read and write
3157000
trusted library allocation
page read and write
76B0000
heap
page read and write
3270000
trusted library allocation
page read and write
3297000
trusted library allocation
page read and write
61F0000
heap
page read and write
56A7000
trusted library allocation
page read and write
3046000
trusted library allocation
page read and write
87EC000
heap
page read and write
32E5000
trusted library allocation
page read and write
6D00000
trusted library allocation
page read and write
There are 579 hidden memdumps, click here to show them.