Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
1647275689_4782.jpg
|
JPEG image data, JFIF standard 1.01, resolution (DPI), density 120x120, segment length 16, Exif Standard: [TIFF image data,
big-endian, direntries=1, orientation=upper-left], baseline, precision 8, 338x319, components 3
|
initial sample
|
||
C:\Windows\debug\WIA\wiatrace.log
|
ASCII text, with CRLF, LF line terminators
|
dropped
|
Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Windows\SysWOW64\mspaint.exe
|
mspaint.exe "C:\Users\user\Desktop\1647275689_4782.jpg"
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
http://www.w3.or
|
unknown
|
Registry
Path
|
Value
|
Malicious
|
|
---|---|---|---|
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Cached
|
{A38B883C-1682-497E-97B0-0A3A9E801682} {886D8EEB-8CF2-4446-8D02-CDBA1DBDCF99} 0xFFFF
|
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
6781000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4CB0000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
29AE000
|
stack
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2C60000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2E4E000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
534E000
|
stack
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4D37000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
48A1000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4878000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4F6E000
|
stack
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
87B0000
|
trusted library allocation
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4870000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4EAE000
|
stack
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4CDA000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4CC0000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2DC0000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
67F6000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2EBB000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4DC0000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4F2F000
|
stack
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4EEE000
|
stack
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4890000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2EB3000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
29F5000
|
stack
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2C70000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4990000
|
trusted library allocation
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4A50000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
482B000
|
stack
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
7BF1000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4FAE000
|
stack
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2DC8000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4A60000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4E6D000
|
stack
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2EBE000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4A63000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
304A000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
3040000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
6780000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
6831000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
7CE0000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
85D0000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
5840000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
6420000
|
trusted library allocation
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4E20000
|
trusted library allocation
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
538E000
|
stack
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
678A000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2DD7000
|
heap
|
page read and write
|
||
486C000
|
stack
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
304D000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
678E000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA0000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
4891000
|
heap
|
page read and write
|
||
2CA4000
|
heap
|
page read and write
|
There are 935 hidden memdumps, click here to show them.