252000
|
unkown
|
page readonly
|
![malicious](data:image/png;base64,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) |
|
|
Name: |
00000000.00000000.1661117540.0000000000252000.00000002.00000001.01000000.00000003.sdmp
|
TargetID: |
0
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
252000
|
Size: |
77824
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
Yara detected XWorm |
Stealing of Sensitive Information, Remote Access Functionality |
|
Yara signature match |
System Summary |
|
|
12EE8000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2394817695.0000000012EE8000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
12EE8000
|
Size: |
4096
|
|
29BA1551000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1842980861.0000029BA1551000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29BA1551000
|
Size: |
1204224
|
|
22AD8EF2000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD8EF2000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD8EF2000
|
Size: |
405504
|
|
A27DCCF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1779966147.000000A27DCCF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A27DCCF000
|
Size: |
4096
|
|
1131000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2299146607.0000000001131000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1131000
|
Size: |
61440
|
|
22AD64D0000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000001.00000002.1731253237.0000022AD64D0000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
22AD64D0000
|
Size: |
4096
|
|
2E38188F000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E38188F000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E38188F000
|
Size: |
401408
|
|
E4D50F9000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1887220248.000000E4D50F9000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
E4D50F9000
|
Size: |
28672
|
|
2E381E27000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E381E27000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E381E27000
|
Size: |
49152
|
|
7FFD9BB9C000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1868429150.00007FFD9BB9C000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BB9C000
|
Size: |
16384
|
|
22AF064B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1754605687.0000022AF064B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AF064B000
|
Size: |
36864
|
|
C76F23E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1730099957.000000C76F23E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C76F23E000
|
Size: |
8192
|
|
1190000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2299685397.0000000001190000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1190000
|
Size: |
4096
|
|
29B921F2000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782408781.0000029B921F2000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B921F2000
|
Size: |
405504
|
|
C76FD8E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1730262563.000000C76FD8E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C76FD8E000
|
Size: |
8192
|
|
29B92FE5000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782408781.0000029B92FE5000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B92FE5000
|
Size: |
12288
|
|
7FFD9BAA0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1757725206.00007FFD9BAA0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAA0000
|
Size: |
4096
|
|
3F0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2464702139.00000000003F0000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
3F0000
|
Size: |
4096
|
|
7FFD9B890000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000001.00000002.1755718317.00007FFD9B890000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B890000
|
Size: |
53248
|
|
1E6DA794000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DA794000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DA794000
|
Size: |
12288
|
|
22AD8CA9000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD8CA9000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD8CA9000
|
Size: |
1093632
|
|
7FFD9B810000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2396207630.00007FFD9B810000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B810000
|
Size: |
4096
|
|
6C0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2917448909.00000000006C0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
6C0000
|
Size: |
20480
|
|
7FFD9B9A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1864429583.00007FFD9B9A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B9A0000
|
Size: |
65536
|
|
29B8F5A5000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1780302091.0000029B8F5A5000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29B8F5A5000
|
Size: |
12288
|
|
7FFD9B784000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2304558972.00007FFD9B784000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B784000
|
Size: |
20480
|
|
7FFD9B772000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1754902885.00007FFD9B772000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B772000
|
Size: |
4096
|
|
E4D507E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1887176082.000000E4D507E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
E4D507E000
|
Size: |
8192
|
|
1BBFF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2395549546.000000001BBFF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1BBFF000
|
Size: |
4096
|
|
2E390307000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1983628076.000002E390307000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E390307000
|
Size: |
1765376
|
|
A27D17E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1779820005.000000A27D17E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A27D17E000
|
Size: |
8192
|
|
1BCFE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2395611671.000000001BCFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1BCFE000
|
Size: |
8192
|
|
800000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2465113076.0000000000800000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
800000
|
Size: |
73728
|
|
2E390001000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1983628076.000002E390001000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E390001000
|
Size: |
57344
|
|
12658000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2953479310.0000000012658000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
12658000
|
Size: |
32768
|
|
A27CF79000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1779583732.000000A27CF79000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A27CF79000
|
Size: |
28672
|
|
7FFD9BBA0000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000001.00000002.1758737130.00007FFD9BBA0000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9BBA0000
|
Size: |
4096
|
|
7FFD9B912000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2229357429.00007FFD9B912000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B912000
|
Size: |
57344
|
|
1249000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2300577411.0000000001249000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1249000
|
Size: |
8192
|
|
7FFD9B773000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.2960880594.00007FFD9B773000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B773000
|
Size: |
4096
|
|
1E6DA787000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DA787000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DA787000
|
Size: |
12288
|
|
7FFD9BB90000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000B.00000002.2239689648.00007FFD9BB90000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9BB90000
|
Size: |
4096
|
|
7FFD9B941000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1863705255.00007FFD9B941000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B941000
|
Size: |
32768
|
|
1099000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2389828650.0000000001099000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1099000
|
Size: |
86016
|
|
840000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2465940195.0000000000840000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
840000
|
Size: |
4096
|
|
1B61D000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2303948401.000000001B61D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1B61D000
|
Size: |
12288
|
|
1B0F0000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.2955883114.000000001B0F0000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
1B0F0000
|
Size: |
4096
|
|
2E3FB40F000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2014668908.000002E3FB40F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FB40F000
|
Size: |
61440
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
C76EDFE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1729796058.000000C76EDFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C76EDFE000
|
Size: |
8192
|
|
102D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2385271008.000000000102D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
102D000
|
Size: |
16384
|
|
7FFD9B92A000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1755882541.00007FFD9B92A000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B92A000
|
Size: |
24576
|
|
12CC000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2302695935.00000000012CC000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
12CC000
|
Size: |
8192
|
|
1E6D7DC0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2047352043.000001E6D7DC0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6D7DC0000
|
Size: |
16384
|
|
A27D0F9000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1779769269.000000A27D0F9000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A27D0F9000
|
Size: |
28672
|
|
14B1000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2890828156.00000000014B1000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
14B1000
|
Size: |
65536
|
|
7FFD9BAD8000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1757943334.00007FFD9BAD8000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAD8000
|
Size: |
12288
|
|
1E6E988E000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2190496316.000001E6E988E000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6E988E000
|
Size: |
2576384
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
22AF0247000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1751830883.0000022AF0247000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AF0247000
|
Size: |
61440
|
|
1802000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2891248506.0000000001802000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1802000
|
Size: |
16384
|
|
22AD9CE5000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD9CE5000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD9CE5000
|
Size: |
12288
|
|
7FFD9B780000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2396132703.00007FFD9B780000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B780000
|
Size: |
4096
|
|
29B90FF0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782062285.0000029B90FF0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B90FF0000
|
Size: |
65536
|
|
7FFD9B774000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2893693085.00007FFD9B774000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B774000
|
Size: |
16384
|
|
22AF0337000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000001.00000002.1752874633.0000022AF0337000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
22AF0337000
|
Size: |
12288
|
|
1264000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2301371990.0000000001264000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1264000
|
Size: |
8192
|
|
1E6DA8E2000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DA8E2000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DA8E2000
|
Size: |
397312
|
|
620000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2917206813.0000000000620000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
620000
|
Size: |
12288
|
|
7FFD9B9F0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1865214246.00007FFD9B9F0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B9F0000
|
Size: |
65536
|
|
7FFD9BB89000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2022765164.00007FFD9BB89000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BB89000
|
Size: |
4096
|
|
2E381097000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E381097000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E381097000
|
Size: |
176128
|
|
C76E9EE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1729641726.000000C76E9EE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C76E9EE000
|
Size: |
8192
|
|
7FFD9BAC3000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2021727280.00007FFD9BAC3000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAC3000
|
Size: |
28672
|
|
7FFD9B880000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000010.00000002.2396347561.00007FFD9B880000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B880000
|
Size: |
12288
|
|
2EF1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2394074092.0000000002EF1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2EF1000
|
Size: |
20480
|
|
1E6DA9CB000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DA9CB000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DA9CB000
|
Size: |
200704
|
|
22AD7CD4000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731419817.0000022AD7CD4000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AD7CD4000
|
Size: |
798720
|
|
29B8F5A9000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1780302091.0000029B8F5A9000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29B8F5A9000
|
Size: |
4096
|
|
22AE81C7000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1747551046.0000022AE81C7000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AE81C7000
|
Size: |
1769472
|
|
22AF050B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1753159059.0000022AF050B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AF050B000
|
Size: |
8192
|
|
22AE81AF000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1747551046.0000022AE81AF000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AE81AF000
|
Size: |
12288
|
|
7FFD9B930000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000001.00000002.1755992951.00007FFD9B930000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B930000
|
Size: |
4096
|
|
7FFD9B850000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000011.00000002.2475014617.00007FFD9B850000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B850000
|
Size: |
4096
|
|
1E6E9B0D000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2190496316.000001E6E9B0D000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6E9B0D000
|
Size: |
12288
|
|
131A3000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2303793421.00000000131A3000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
131A3000
|
Size: |
12288
|
|
29B91015000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782185218.0000029B91015000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29B91015000
|
Size: |
24576
|
|
22AD909D000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD909D000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD909D000
|
Size: |
831488
|
|
7FFD9BBE0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1869017959.00007FFD9BBE0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BBE0000
|
Size: |
65536
|
|
7FFD9B856000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.2962335989.00007FFD9B856000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B856000
|
Size: |
4096
|
|
2E38134A000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E38134A000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E38134A000
|
Size: |
520192
|
|
1AF00000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000011.00000002.2474117975.000000001AF00000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
1AF00000
|
Size: |
4096
|
|
29BA968C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1856380853.0000029BA968C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA968C000
|
Size: |
536576
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
29B8F65C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1780302091.0000029B8F65C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29B8F65C000
|
Size: |
12288
|
|
7FFD9B794000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2961724042.00007FFD9B794000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B794000
|
Size: |
4096
|
|
2DB0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2393695208.0000000002DB0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2DB0000
|
Size: |
4096
|
|
7FFD9B790000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2961642605.00007FFD9B790000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B790000
|
Size: |
4096
|
|
7FFD9B960000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000001.00000002.1756167427.00007FFD9B960000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B960000
|
Size: |
45056
|
|
990000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2921951613.0000000000990000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
990000
|
Size: |
8192
|
|
7FFD9BBA0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2239754495.00007FFD9BBA0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BBA0000
|
Size: |
36864
|
|
22AF050F000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1753159059.0000022AF050F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AF050F000
|
Size: |
8192
|
|
22AF02B3000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1752535239.0000022AF02B3000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AF02B3000
|
Size: |
28672
|
|
1E6F1D30000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
0000000B.00000002.2219483511.000001E6F1D30000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
1E6F1D30000
|
Size: |
20480
|
|
E4D517F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1887299398.000000E4D517F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
E4D517F000
|
Size: |
4096
|
|
6B0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2917397178.00000000006B0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
6B0000
|
Size: |
4096
|
|
29BA9923000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1858058993.0000029BA9923000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA9923000
|
Size: |
4096
|
|
1330000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2887398545.0000000001330000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1330000
|
Size: |
4096
|
|
E4D52F8000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1887480482.000000E4D52F8000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
E4D52F8000
|
Size: |
32768
|
|
A27D1FE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1779854216.000000A27D1FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A27D1FE000
|
Size: |
8192
|
|
22AD7EB0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731628234.0000022AD7EB0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AD7EB0000
|
Size: |
12288
|
|
7FFD9BA60000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1757513811.00007FFD9BA60000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA60000
|
Size: |
65536
|
|
2E3902ED000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1983628076.000002E3902ED000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E3902ED000
|
Size: |
4096
|
|
7FFD9BAE9000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2021820774.00007FFD9BAE9000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAE9000
|
Size: |
28672
|
|
A27D078000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1779715465.000000A27D078000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A27D078000
|
Size: |
32768
|
|
22AE7EC1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1747551046.0000022AE7EC1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AE7EC1000
|
Size: |
77824
|
|
1025000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2384641628.0000000001025000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1025000
|
Size: |
28672
|
|
29BA14AD000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1842980861.0000029BA14AD000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29BA14AD000
|
Size: |
20480
|
|
1077000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2385967061.0000000001077000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1077000
|
Size: |
135168
|
|
1BB34000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2959958696.000000001BB34000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1BB34000
|
Size: |
49152
|
|
22AF0591000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1753977586.0000022AF0591000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AF0591000
|
Size: |
102400
|
|
2E380C07000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E380C07000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E380C07000
|
Size: |
323584
|
|
3A1000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2916723677.00000000003A1000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3A1000
|
Size: |
61440
|
|
22AF028C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1752482215.0000022AF028C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AF028C000
|
Size: |
45056
|
|
1E6D9CED000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6D9CED000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6D9CED000
|
Size: |
5787648
|
|
7FFD9B9E0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1756842896.00007FFD9B9E0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B9E0000
|
Size: |
65536
|
|
22AF04FF000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1753159059.0000022AF04FF000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AF04FF000
|
Size: |
8192
|
|
1E6E9821000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2190496316.000001E6E9821000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6E9821000
|
Size: |
77824
|
|
29B92A52000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782408781.0000029B92A52000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B92A52000
|
Size: |
778240
|
|
C02000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2468859923.0000000000C02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
C02000
|
Size: |
16384
|
|
1BA02000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2304082409.000000001BA02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1BA02000
|
Size: |
4096
|
|
29BA97E8000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1857675341.0000029BA97E8000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA97E8000
|
Size: |
16384
|
|
7FFD9B980000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000004.00000002.1864097700.00007FFD9B980000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B980000
|
Size: |
45056
|
|
2E380F9D000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E380F9D000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E380F9D000
|
Size: |
417792
|
|
7FFD9BA80000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1866942332.00007FFD9BA80000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA80000
|
Size: |
65536
|
|
2E381DF4000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E381DF4000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E381DF4000
|
Size: |
49152
|
|
7FFD9BB10000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1868016505.00007FFD9BB10000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BB10000
|
Size: |
65536
|
|
88BA64E000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2042392141.00000088BA64E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
88BA64E000
|
Size: |
8192
|
|
7FFD9B950000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000004.00000002.1863862723.00007FFD9B950000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B950000
|
Size: |
24576
|
|
132A3000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2892117493.00000000132A3000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
132A3000
|
Size: |
12288
|
|
1AED0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2474067137.000000001AED0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AED0000
|
Size: |
4096
|
|
7FFD9BAC3000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1867511044.00007FFD9BAC3000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAC3000
|
Size: |
28672
|
|
7FFD9B921000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1755882541.00007FFD9B921000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B921000
|
Size: |
32768
|
|
7FFD9BAC0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1867480736.00007FFD9BAC0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAC0000
|
Size: |
4096
|
|
7FFD9B952000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2230210781.00007FFD9B952000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B952000
|
Size: |
4096
|
|
1E6F1D6C000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2219727066.000001E6F1D6C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6F1D6C000
|
Size: |
16384
|
|
29B92B13000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782408781.0000029B92B13000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B92B13000
|
Size: |
4763648
|
|
1E6F1E6F000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2220612851.000001E6F1E6F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6F1E6F000
|
Size: |
630784
|
|
22AD6470000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731152001.0000022AD6470000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD6470000
|
Size: |
12288
|
|
7FFD9B770000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2227169980.00007FFD9B770000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B770000
|
Size: |
4096
|
|
29B924D4000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782408781.0000029B924D4000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B924D4000
|
Size: |
749568
|
|
29BA962C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1854965485.0000029BA962C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA962C000
|
Size: |
4096
|
|
1C1AA000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2960551114.000000001C1AA000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1C1AA000
|
Size: |
24576
|
|
1E6E9841000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2190496316.000001E6E9841000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6E9841000
|
Size: |
8192
|
|
1C3FF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2474310086.000000001C3FF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1C3FF000
|
Size: |
4096
|
|
1041000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2385271008.0000000001041000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1041000
|
Size: |
4096
|
|
7FFD9BAF8000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1867726464.00007FFD9BAF8000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAF8000
|
Size: |
12288
|
|
22AD63C0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1730948787.0000022AD63C0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AD63C0000
|
Size: |
4096
|
|
1242000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2300577411.0000000001242000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1242000
|
Size: |
16384
|
|
AE5000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2922674186.0000000000AE5000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
AE5000
|
Size: |
28672
|
|
22AD63E0000
|
trusted library section
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1730972691.0000022AD63E0000.00000004.08000000.00040000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library section
|
Protect: |
page read and write
|
Base address: |
22AD63E0000
|
Size: |
4096
|
|
902000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2468537878.0000000000902000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
902000
|
Size: |
16384
|
|
2B59EBA0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.2256544780.000002B59EBA0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2B59EBA0000
|
Size: |
4096
|
|
1E6D9670000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
0000000B.00000002.2047690039.000001E6D9670000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
1E6D9670000
|
Size: |
4096
|
|
7FFD9B972000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1863971374.00007FFD9B972000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B972000
|
Size: |
4096
|
|
22AD9287000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD9287000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD9287000
|
Size: |
3923968
|
|
2E3F92A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2003108544.000002E3F92A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E3F92A0000
|
Size: |
16384
|
|
AFF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2468677224.0000000000AFF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
AFF000
|
Size: |
4096
|
|
EF4ACB9000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.2256409480.000000EF4ACB9000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
EF4ACB9000
|
Size: |
28672
|
|
7FFD9BA80000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2021103162.00007FFD9BA80000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA80000
|
Size: |
65536
|
|
29B923A3000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782408781.0000029B923A3000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B923A3000
|
Size: |
835584
|
|
A27C98E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1778650422.000000A27C98E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A27C98E000
|
Size: |
8192
|
|
C76F2BC000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1730135159.000000C76F2BC000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C76F2BC000
|
Size: |
16384
|
|
7FFD9B7CC000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000001.00000002.1755262254.00007FFD9B7CC000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B7CC000
|
Size: |
4096
|
|
13F0000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000013.00000002.2887682213.00000000013F0000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
13F0000
|
Size: |
4096
|
|
7FFD9B954000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1756062121.00007FFD9B954000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B954000
|
Size: |
12288
|
|
29BA11D0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1842980861.0000029BA11D0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29BA11D0000
|
Size: |
16384
|
|
7FFD9BBCD000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2240292248.00007FFD9BBCD000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BBCD000
|
Size: |
12288
|
|
22AD62DD000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1730538712.0000022AD62DD000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AD62DD000
|
Size: |
20480
|
|
7FFD9B974000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1863971374.00007FFD9B974000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B974000
|
Size: |
12288
|
|
2E380A51000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E380A51000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E380A51000
|
Size: |
1740800
|
|
1E6D97D0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054584140.000001E6D97D0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6D97D0000
|
Size: |
4096
|
|
29B8F785000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1781669434.0000029B8F785000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29B8F785000
|
Size: |
40960
|
|
1C1B0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2960733010.000000001C1B0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C1B0000
|
Size: |
4096
|
|
22AD9CEA000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD9CEA000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD9CEA000
|
Size: |
49152
|
|
2540000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2922951154.0000000002540000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2540000
|
Size: |
4096
|
|
22AF0658000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1754605687.0000022AF0658000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AF0658000
|
Size: |
81920
|
|
15CF000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2302941268.00000000015CF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
15CF000
|
Size: |
4096
|
|
29BA9A46000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1861333341.0000029BA9A46000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA9A46000
|
Size: |
24576
|
|
29B91C11000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782408781.0000029B91C11000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B91C11000
|
Size: |
3276800
|
|
2E3F9355000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2005124654.000002E3F9355000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3F9355000
|
Size: |
40960
|
|
1E6F1C00000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2217132527.000001E6F1C00000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6F1C00000
|
Size: |
20480
|
|
1E6F1FAF000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2220612851.000001E6F1FAF000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6F1FAF000
|
Size: |
45056
|
|
1320000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2887342439.0000000001320000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1320000
|
Size: |
4096
|
|
7FFD9BBC6000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2240292248.00007FFD9BBC6000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BBC6000
|
Size: |
16384
|
|
7FFD9B960000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000004.00000002.1863943388.00007FFD9B960000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B960000
|
Size: |
4096
|
|
730000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2917448909.0000000000730000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
730000
|
Size: |
4096
|
|
1BEFE000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2304219786.000000001BEFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1BEFE000
|
Size: |
8192
|
|
29BA9A4D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1861333341.0000029BA9A4D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA9A4D000
|
Size: |
4096
|
|
22AD6288000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1730538712.0000022AD6288000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AD6288000
|
Size: |
40960
|
|
7FFD9BA30000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2235148861.00007FFD9BA30000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA30000
|
Size: |
65536
|
|
7FFD9BBF0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1869254461.00007FFD9BBF0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BBF0000
|
Size: |
8192
|
|
12EE3000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2394817695.0000000012EE3000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
12EE3000
|
Size: |
12288
|
|
7FFD9BAA0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2237665170.00007FFD9BAA0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAA0000
|
Size: |
4096
|
|
29B929EC000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782408781.0000029B929EC000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B929EC000
|
Size: |
249856
|
|
7FFD9BB80000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1868282700.00007FFD9BB80000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BB80000
|
Size: |
65536
|
|
1E6F1F0D000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2220612851.000001E6F1F0D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6F1F0D000
|
Size: |
4096
|
|
22AD6260000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1730518718.0000022AD6260000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AD6260000
|
Size: |
16384
|
|
7FFD9BADC000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1757943334.00007FFD9BADC000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BADC000
|
Size: |
8192
|
|
7FFD9B7BC000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000013.00000002.2893932283.00007FFD9B7BC000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B7BC000
|
Size: |
4096
|
|
22AD91CA000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD91CA000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD91CA000
|
Size: |
516096
|
|
15E0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2303017457.00000000015E0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
15E0000
|
Size: |
4096
|
|
2E3FB3AD000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2013236234.000002E3FB3AD000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FB3AD000
|
Size: |
122880
|
|
1E6F1C20000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2218132318.000001E6F1C20000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6F1C20000
|
Size: |
122880
|
|
29B92323000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782408781.0000029B92323000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B92323000
|
Size: |
311296
|
|
16FE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2891156622.00000000016FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
16FE000
|
Size: |
8192
|
|
7FFD9B876000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000007.00000002.2017412154.00007FFD9B876000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B876000
|
Size: |
86016
|
|
17FF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2891212148.00000000017FF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
17FF000
|
Size: |
4096
|
|
1C0AB000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2960431987.000000001C0AB000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1C0AB000
|
Size: |
20480
|
|
7FFD9B840000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2017035892.00007FFD9B840000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B840000
|
Size: |
8192
|
|
822000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2465435258.0000000000822000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
822000
|
Size: |
40960
|
|
7FFD9B9F0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2233650826.00007FFD9B9F0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B9F0000
|
Size: |
65536
|
|
1E6D7D20000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2046783521.000001E6D7D20000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6D7D20000
|
Size: |
12288
|
|
7FFD9BB80000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2239508170.00007FFD9BB80000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BB80000
|
Size: |
32768
|
|
1102000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2392839263.0000000001102000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1102000
|
Size: |
16384
|
|
2E3812AE000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E3812AE000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E3812AE000
|
Size: |
192512
|
|
1E6F1D76000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2219727066.000001E6F1D76000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6F1D76000
|
Size: |
16384
|
|
7FFD9BB90000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1758512077.00007FFD9BB90000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BB90000
|
Size: |
65536
|
|
7FFD9B76D000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000013.00000002.2893542715.00007FFD9B76D000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B76D000
|
Size: |
4096
|
|
A27C902000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1778568763.000000A27C902000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A27C902000
|
Size: |
57344
|
|
1229000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2300120113.0000000001229000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1229000
|
Size: |
16384
|
|
29B9258D000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782408781.0000029B9258D000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B9258D000
|
Size: |
3899392
|
|
88BA6C9000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2042449477.00000088BA6C9000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
88BA6C9000
|
Size: |
28672
|
|
271C000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2472748495.000000000271C000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
271C000
|
Size: |
8192
|
|
7FFD9B79D000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.2961816517.00007FFD9B79D000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B79D000
|
Size: |
4096
|
|
1602000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2303086157.0000000001602000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1602000
|
Size: |
16384
|
|
7FFD9B940000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000001.00000002.1756013295.00007FFD9B940000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B940000
|
Size: |
24576
|
|
22AE7F30000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1747551046.0000022AE7F30000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AE7F30000
|
Size: |
2576384
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
E4D53B8000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1887613036.000000E4D53B8000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
E4D53B8000
|
Size: |
32768
|
|
271F000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2472748495.000000000271F000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
271F000
|
Size: |
4096
|
|
1E6F1C3F000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2218132318.000001E6F1C3F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6F1C3F000
|
Size: |
131072
|
|
E4D51F7000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1887335922.000000E4D51F7000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
E4D51F7000
|
Size: |
36864
|
|
22AD6309000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1730538712.0000022AD6309000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AD6309000
|
Size: |
483328
|
|
7FFD9B895000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000B.00000002.2229093285.00007FFD9B895000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B895000
|
Size: |
32768
|
|
7FFD9B7EC000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000011.00000002.2474908794.00007FFD9B7EC000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B7EC000
|
Size: |
4096
|
|
22AF061C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1753977586.0000022AF061C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AF061C000
|
Size: |
28672
|
|
7FFD9BAF0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1867726464.00007FFD9BAF0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAF0000
|
Size: |
4096
|
|
12FF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2393158367.00000000012FF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
12FF000
|
Size: |
4096
|
|
29B92FA0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782408781.0000029B92FA0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B92FA0000
|
Size: |
139264
|
|
22AE81A9000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1747551046.0000022AE81A9000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AE81A9000
|
Size: |
12288
|
|
2E3FB110000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000007.00000002.2008167486.000002E3FB110000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
2E3FB110000
|
Size: |
20480
|
|
7FFD9B77D000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000001.00000002.1755040465.00007FFD9B77D000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B77D000
|
Size: |
12288
|
|
22AF04C2000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1752996540.0000022AF04C2000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AF04C2000
|
Size: |
98304
|
|
E4D610D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888094710.000000E4D610D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
E4D610D000
|
Size: |
12288
|
|
A27DE49000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1780078182.000000A27DE49000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A27DE49000
|
Size: |
28672
|
|
2E390263000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1983628076.000002E390263000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E390263000
|
Size: |
237568
|
|
1C2FF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2474257151.000000001C2FF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1C2FF000
|
Size: |
4096
|
|
2E3F910C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1997088361.000002E3F910C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3F910C000
|
Size: |
20480
|
|
7FFD9BA60000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2236258774.00007FFD9BA60000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA60000
|
Size: |
65536
|
|
12EE1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2394817695.0000000012EE1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
12EE1000
|
Size: |
4096
|
|
7FFD9BAC4000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2237898905.00007FFD9BAC4000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAC4000
|
Size: |
4096
|
|
C76FF0C000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1730355191.000000C76FF0C000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C76FF0C000
|
Size: |
16384
|
|
2E3F92D0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2003590598.000002E3F92D0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3F92D0000
|
Size: |
12288
|
|
22AD6180000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1730439518.0000022AD6180000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AD6180000
|
Size: |
4096
|
|
C76FF8C000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1730376730.000000C76FF8C000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C76FF8C000
|
Size: |
4096
|
|
E4D5438000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1887702938.000000E4D5438000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
E4D5438000
|
Size: |
32768
|
|
22AD6400000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731048068.0000022AD6400000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD6400000
|
Size: |
16384
|
|
2E381006000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E381006000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E381006000
|
Size: |
172032
|
|
29B90F80000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1781973328.0000029B90F80000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B90F80000
|
Size: |
4096
|
|
7FFD9BBE0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1759248044.00007FFD9BBE0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BBE0000
|
Size: |
8192
|
|
22AD9169000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD9169000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD9169000
|
Size: |
385024
|
|
7DF4344C0000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000007.00000002.2016154234.00007DF4344C0000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7DF4344C0000
|
Size: |
4096
|
|
29B913E8000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782408781.0000029B913E8000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B913E8000
|
Size: |
2768896
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
29BA98D1000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1858058993.0000029BA98D1000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA98D1000
|
Size: |
12288
|
|
2E3FACE0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2008140157.000002E3FACE0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FACE0000
|
Size: |
4096
|
|
1E6D7B42000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2043173654.000001E6D7B42000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6D7B42000
|
Size: |
4096
|
|
7FFD9BAF0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1758116736.00007FFD9BAF0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAF0000
|
Size: |
16384
|
|
7FFD9BC00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1869287703.00007FFD9BC00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BC00000
|
Size: |
65536
|
|
7FFD9B932000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2017955708.00007FFD9B932000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B932000
|
Size: |
16384
|
|
1E6DAA38000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DAA38000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DAA38000
|
Size: |
598016
|
|
7FFD9B846000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000013.00000002.2894017622.00007FFD9B846000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B846000
|
Size: |
4096
|
|
7FFD9BA9D000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2021345006.00007FFD9BA9D000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA9D000
|
Size: |
4096
|
|
842000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2465940195.0000000000842000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
842000
|
Size: |
16384
|
|
7FFD9B930000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1863510859.00007FFD9B930000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B930000
|
Size: |
4096
|
|
82D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2465940195.000000000082D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
82D000
|
Size: |
20480
|
|
7FFD9BA9F000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2021345006.00007FFD9BA9F000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA9F000
|
Size: |
4096
|
|
22AD8F84000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD8F84000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD8F84000
|
Size: |
393216
|
|
7DF4CDB90000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000001.00000002.1754871399.00007DF4CDB90000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7DF4CDB90000
|
Size: |
4096
|
|
6EC000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2917448909.00000000006EC000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
6EC000
|
Size: |
32768
|
|
29BA14B7000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1842980861.0000029BA14B7000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29BA14B7000
|
Size: |
4096
|
|
7FFD9B960000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000007.00000002.2018376147.00007FFD9B960000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B960000
|
Size: |
4096
|
|
22AD9752000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD9752000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD9752000
|
Size: |
778240
|
|
2E380BFB000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E380BFB000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E380BFB000
|
Size: |
12288
|
|
1902000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2891332844.0000000001902000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1902000
|
Size: |
4096
|
|
8BF000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2468414504.00000000008BF000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
8BF000
|
Size: |
16384
|
|
29B8F59B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1780302091.0000029B8F59B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29B8F59B000
|
Size: |
4096
|
|
22AD63F0000
|
trusted library section
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1730998028.0000022AD63F0000.00000004.08000000.00040000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library section
|
Protect: |
page read and write
|
Base address: |
22AD63F0000
|
Size: |
4096
|
|
8BA000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2467483953.00000000008BA000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
8BA000
|
Size: |
4096
|
|
88BA74C000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2042569273.00000088BA74C000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
88BA74C000
|
Size: |
16384
|
|
1E6D7AD0000
|
trusted library section
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2043056421.000001E6D7AD0000.00000004.08000000.00040000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library section
|
Protect: |
page read and write
|
Base address: |
1E6D7AD0000
|
Size: |
4096
|
|
29BA14B5000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1842980861.0000029BA14B5000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29BA14B5000
|
Size: |
4096
|
|
1BA3A000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2959815626.000000001BA3A000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1BA3A000
|
Size: |
24576
|
|
E4D4D6E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1887082073.000000E4D4D6E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
E4D4D6E000
|
Size: |
8192
|
|
2E3FB47A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2015552152.000002E3FB47A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FB47A000
|
Size: |
12288
|
|
7FFD9B9C0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1756654656.00007FFD9B9C0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B9C0000
|
Size: |
65536
|
|
7FFD9B846000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000010.00000002.2396296635.00007FFD9B846000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B846000
|
Size: |
4096
|
|
1B2A5000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2955962181.000000001B2A5000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1B2A5000
|
Size: |
225280
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
AV process strings found (often used to terminate AV products) |
Lowering of HIPS / PFW / Operating System Security Settings |
Security Software Discovery
|
|
7FFD9B820000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2962070689.00007FFD9B820000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B820000
|
Size: |
4096
|
|
2E380F6F000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E380F6F000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E380F6F000
|
Size: |
184320
|
|
7D0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2465027436.00000000007D0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
7D0000
|
Size: |
4096
|
|
2E3FB38B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2011460042.000002E3FB38B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FB38B000
|
Size: |
135168
|
|
7FFD9B912000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2304987185.00007FFD9B912000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B912000
|
Size: |
12288
|
|
2E390031000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1983628076.000002E390031000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E390031000
|
Size: |
233472
|
|
22AD62CB000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1730538712.0000022AD62CB000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AD62CB000
|
Size: |
4096
|
|
1B960000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2304011077.000000001B960000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1B960000
|
Size: |
4096
|
|
7FFD9B941000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2018058044.00007FFD9B941000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B941000
|
Size: |
32768
|
|
7FFD9BAE0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1867586024.00007FFD9BAE0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAE0000
|
Size: |
4096
|
|
7FFD9B921000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2229625673.00007FFD9B921000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B921000
|
Size: |
32768
|
|
22AE81AD000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1747551046.0000022AE81AD000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AE81AD000
|
Size: |
4096
|
|
1702000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2303172639.0000000001702000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1702000
|
Size: |
4096
|
|
8BC000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2467483953.00000000008BC000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
8BC000
|
Size: |
4096
|
|
7FFD9BA7C000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2020920289.00007FFD9BA7C000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA7C000
|
Size: |
16384
|
|
88B9AFE000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2042089554.00000088B9AFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
88B9AFE000
|
Size: |
8192
|
|
7FFD9B8B0000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000004.00000002.1863387820.00007FFD9B8B0000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B8B0000
|
Size: |
53248
|
|
600000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2917159115.0000000000600000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
600000
|
Size: |
4096
|
|
3F0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2917066829.00000000003F0000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
3F0000
|
Size: |
4096
|
|
88B94FE000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2041029468.00000088B94FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
88B94FE000
|
Size: |
8192
|
|
1B935000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2959579838.000000001B935000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1B935000
|
Size: |
45056
|
|
1370000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2887438528.0000000001370000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1370000
|
Size: |
4096
|
|
732000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2917448909.0000000000732000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
732000
|
Size: |
36864
|
|
7FFD9B790000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2016336156.00007FFD9B790000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B790000
|
Size: |
4096
|
|
22AD6293000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1730538712.0000022AD6293000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AD6293000
|
Size: |
163840
|
|
88B957E000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2041073349.00000088B957E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
88B957E000
|
Size: |
8192
|
|
C76EF79000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1729894063.000000C76EF79000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C76EF79000
|
Size: |
28672
|
|
7FFD9BA20000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1757124029.00007FFD9BA20000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA20000
|
Size: |
65536
|
|
29BA98EC000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1858058993.0000029BA98EC000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA98EC000
|
Size: |
12288
|
|
7FFD9BBC0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1868707792.00007FFD9BBC0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BBC0000
|
Size: |
36864
|
|
7FFD9B910000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1755802513.00007FFD9B910000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B910000
|
Size: |
65536
|
|
29BA150C000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1842980861.0000029BA150C000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29BA150C000
|
Size: |
270336
|
|
22AF0507000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1753159059.0000022AF0507000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AF0507000
|
Size: |
8192
|
|
7FFD9BB80000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1758423643.00007FFD9BB80000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BB80000
|
Size: |
65536
|
|
22AF0503000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1753159059.0000022AF0503000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AF0503000
|
Size: |
4096
|
|
2EDF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2394005209.0000000002EDF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
2EDF000
|
Size: |
4096
|
|
22AF0535000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1753465003.0000022AF0535000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AF0535000
|
Size: |
73728
|
|
7FFD9BA80000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1757623429.00007FFD9BA80000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA80000
|
Size: |
57344
|
|
7FFD9B7A4000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2474708354.00007FFD9B7A4000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B7A4000
|
Size: |
20480
|
|
22AD6525000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731280298.0000022AD6525000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AD6525000
|
Size: |
40960
|
|
22AD9646000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD9646000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD9646000
|
Size: |
929792
|
|
1E6E9BC4000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2190496316.000001E6E9BC4000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6E9BC4000
|
Size: |
1118208
|
|
7FFD9BAB0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1867420660.00007FFD9BAB0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAB0000
|
Size: |
16384
|
|
7FFD9B902000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2894240112.00007FFD9B902000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B902000
|
Size: |
8192
|
|
7FFD9B763000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000013.00000002.2893443315.00007FFD9B763000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B763000
|
Size: |
4096
|
|
7FFD9BB00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2022164672.00007FFD9BB00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BB00000
|
Size: |
4096
|
|
3D0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2464641733.00000000003D0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
3D0000
|
Size: |
8192
|
|
22AD8912000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD8912000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD8912000
|
Size: |
1667072
|
|
1253000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2301096037.0000000001253000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1253000
|
Size: |
65536
|
|
22AD9021000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD9021000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD9021000
|
Size: |
495616
|
|
22AF0330000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000001.00000002.1752874633.0000022AF0330000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
22AF0330000
|
Size: |
20480
|
|
C76FE0E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1730284049.000000C76FE0E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C76FE0E000
|
Size: |
8192
|
|
7FFD9B773000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000F.00000002.2304385206.00007FFD9B773000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B773000
|
Size: |
4096
|
|
7FFD9B82C000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000B.00000002.2228426782.00007FFD9B82C000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B82C000
|
Size: |
61440
|
|
2E3F92E0000
|
heap
|
page readonly
|
|
|
|
Name: |
00000007.00000002.2004682711.000002E3F92E0000.00000002.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page readonly
|
Base address: |
2E3F92E0000
|
Size: |
4096
|
|
2E3811E2000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E3811E2000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E3811E2000
|
Size: |
229376
|
|
1B802000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2395403405.000000001B802000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1B802000
|
Size: |
4096
|
|
7FFD9B770000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1754902885.00007FFD9B770000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B770000
|
Size: |
4096
|
|
123A000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2300577411.000000000123A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
123A000
|
Size: |
12288
|
|
1502000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2891068507.0000000001502000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1502000
|
Size: |
16384
|
|
22AD8E63000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD8E63000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD8E63000
|
Size: |
393216
|
|
1E6F1D60000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2219727066.000001E6F1D60000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6F1D60000
|
Size: |
45056
|
|
22AD62C1000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1730538712.0000022AD62C1000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AD62C1000
|
Size: |
20480
|
|
1C4FE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2474368048.000000001C4FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1C4FE000
|
Size: |
8192
|
|
7FFD9B77D000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000013.00000002.2893837083.00007FFD9B77D000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B77D000
|
Size: |
4096
|
|
7FFD9B820000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2228196155.00007FFD9B820000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B820000
|
Size: |
8192
|
|
1046000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2385271008.0000000001046000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1046000
|
Size: |
40960
|
|
1E6DA41B000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DA41B000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DA41B000
|
Size: |
81920
|
|
32AC000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2891430695.00000000032AC000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
32AC000
|
Size: |
8192
|
|
2E390010000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1983628076.000002E390010000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E390010000
|
Size: |
16384
|
|
12661000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2953479310.0000000012661000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
12661000
|
Size: |
339968
|
|
29B911C1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782408781.0000029B911C1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B911C1000
|
Size: |
483328
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
D02000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2470089451.0000000000D02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
D02000
|
Size: |
4096
|
|
329F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2891369027.000000000329F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
329F000
|
Size: |
4096
|
|
7FFD9B974000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2018424246.00007FFD9B974000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B974000
|
Size: |
12288
|
|
1C5FE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2474437773.000000001C5FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1C5FE000
|
Size: |
8192
|
|
7FFD9BAD5000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2238154542.00007FFD9BAD5000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAD5000
|
Size: |
4096
|
|
2E3F92C0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2003249398.000002E3F92C0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E3F92C0000
|
Size: |
4096
|
|
29B8F770000
|
trusted library section
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1781621055.0000029B8F770000.00000004.08000000.00040000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library section
|
Protect: |
page read and write
|
Base address: |
29B8F770000
|
Size: |
4096
|
|
2E381951000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E381951000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E381951000
|
Size: |
4763648
|
|
2E3FB116000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000007.00000002.2008167486.000002E3FB116000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
2E3FB116000
|
Size: |
16384
|
|
1E6DABE9000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DABE9000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DABE9000
|
Size: |
3928064
|
|
7FFD9B7CC000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000B.00000002.2228134713.00007FFD9B7CC000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B7CC000
|
Size: |
4096
|
|
22AD62BD000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1730538712.0000022AD62BD000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AD62BD000
|
Size: |
4096
|
|
29B921C6000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782408781.0000029B921C6000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B921C6000
|
Size: |
176128
|
|
22AF04DB000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1753159059.0000022AF04DB000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AF04DB000
|
Size: |
106496
|
|
7FFD9BB02000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2022164672.00007FFD9BB02000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BB02000
|
Size: |
32768
|
|
7FFD9B990000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2231664128.00007FFD9B990000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B990000
|
Size: |
65536
|
|
2E3F9090000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1997060164.000002E3F9090000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3F9090000
|
Size: |
4096
|
|
7FFD9B7A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2016732549.00007FFD9B7A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B7A0000
|
Size: |
40960
|
|
2E3F90F8000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1997088361.000002E3F90F8000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3F90F8000
|
Size: |
12288
|
|
1B71D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2892350554.000000001B71D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1B71D000
|
Size: |
12288
|
|
22AD9249000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD9249000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD9249000
|
Size: |
241664
|
|
7FFD9B902000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2396475439.00007FFD9B902000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B902000
|
Size: |
12288
|
|
29B911A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782324531.0000029B911A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B911A0000
|
Size: |
4096
|
|
2E3F9030000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1996957246.000002E3F9030000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3F9030000
|
Size: |
16384
|
|
2E380D7B000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E380D7B000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E380D7B000
|
Size: |
479232
|
|
7FFD9B980000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000007.00000002.2018557187.00007FFD9B980000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B980000
|
Size: |
45056
|
|
7FFD9B770000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2960813323.00007FFD9B770000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B770000
|
Size: |
4096
|
|
22AE7EE1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1747551046.0000022AE7EE1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AE7EE1000
|
Size: |
8192
|
|
7FFD9B792000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1861851142.00007FFD9B792000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B792000
|
Size: |
4096
|
|
7FFD9B9D0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1756762491.00007FFD9B9D0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B9D0000
|
Size: |
65536
|
|
1E6DA798000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DA798000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DA798000
|
Size: |
12288
|
|
1E6DB603000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DB603000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DB603000
|
Size: |
139264
|
|
7FFD9B830000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000F.00000002.2304848004.00007FFD9B830000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B830000
|
Size: |
4096
|
|
7FFD9BA51000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2020550746.00007FFD9BA51000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA51000
|
Size: |
12288
|
|
1E6D7B4C000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2043173654.000001E6D7B4C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6D7B4C000
|
Size: |
4096
|
|
7FFD9B793000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000011.00000002.2474508229.00007FFD9B793000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B793000
|
Size: |
4096
|
|
7FFD9BBB0000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000004.00000002.1868674156.00007FFD9BBB0000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9BBB0000
|
Size: |
4096
|
|
2AE6000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2923052360.0000000002AE6000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2AE6000
|
Size: |
1888256
|
|
7FFD9B9A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2231964591.00007FFD9B9A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B9A0000
|
Size: |
65536
|
|
7FFD9B9E0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2233329757.00007FFD9B9E0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B9E0000
|
Size: |
65536
|
|
7FFD9B9B0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2232316349.00007FFD9B9B0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B9B0000
|
Size: |
65536
|
|
7FFD9B7A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2474649685.00007FFD9B7A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B7A0000
|
Size: |
8192
|
|
C76ED79000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1729722699.000000C76ED79000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C76ED79000
|
Size: |
28672
|
|
2E3FB171000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2008324277.000002E3FB171000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FB171000
|
Size: |
8192
|
|
A27D2FB000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1779920920.000000A27D2FB000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A27D2FB000
|
Size: |
20480
|
|
7FFD9B950000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000007.00000002.2018276806.00007FFD9B950000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B950000
|
Size: |
24576
|
|
29B92371000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782408781.0000029B92371000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B92371000
|
Size: |
192512
|
|
784000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2917448909.0000000000784000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
784000
|
Size: |
110592
|
|
813000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2465435258.0000000000813000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
813000
|
Size: |
57344
|
|
7FFD9BC00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2023647139.00007FFD9BC00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BC00000
|
Size: |
20480
|
|
29BA990F000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1858058993.0000029BA990F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA990F000
|
Size: |
4096
|
|
2E3FB1BC000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2009997598.000002E3FB1BC000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FB1BC000
|
Size: |
172032
|
|
1E6D7B00000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2043173654.000001E6D7B00000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6D7B00000
|
Size: |
28672
|
|
29BA1230000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1842980861.0000029BA1230000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29BA1230000
|
Size: |
2576384
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
1E6DA46E000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DA46E000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DA46E000
|
Size: |
2822144
|
|
7FFD9B9B0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2018946708.00007FFD9B9B0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B9B0000
|
Size: |
65536
|
|
7FFD9BA30000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1757197975.00007FFD9BA30000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA30000
|
Size: |
65536
|
|
22AF0257000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1751830883.0000022AF0257000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AF0257000
|
Size: |
212992
|
|
7FFD9BA10000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1757057445.00007FFD9BA10000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA10000
|
Size: |
65536
|
|
1E6DA720000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DA720000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DA720000
|
Size: |
417792
|
|
BC0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2383633584.0000000000BC0000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
BC0000
|
Size: |
4096
|
|
2E3FB520000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2015915127.000002E3FB520000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E3FB520000
|
Size: |
4096
|
|
E4D533F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1887576178.000000E4D533F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
E4D533F000
|
Size: |
4096
|
|
1B6A0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2395167474.000000001B6A0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1B6A0000
|
Size: |
4096
|
|
7FFD9BBD2000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2023327407.00007FFD9BBD2000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BBD2000
|
Size: |
53248
|
|
2E381869000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E381869000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E381869000
|
Size: |
143360
|
|
E4D628D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888301471.000000E4D628D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
E4D628D000
|
Size: |
12288
|
|
2E3FB174000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2008324277.000002E3FB174000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FB174000
|
Size: |
184320
|
|
C76F3BB000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1730236366.000000C76F3BB000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C76F3BB000
|
Size: |
20480
|
|
1E6D7A30000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2042727198.000001E6D7A30000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6D7A30000
|
Size: |
4096
|
|
7FFD9B980000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2231302329.00007FFD9B980000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B980000
|
Size: |
65536
|
|
C76F037000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1729934869.000000C76F037000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C76F037000
|
Size: |
36864
|
|
7DF4BF540000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000004.00000002.1861808284.00007DF4BF540000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7DF4BF540000
|
Size: |
4096
|
|
1E6E9B25000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2190496316.000001E6E9B25000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6E9B25000
|
Size: |
438272
|
|
7FFD9BA10000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2234409556.00007FFD9BA10000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA10000
|
Size: |
65536
|
|
29B8F5A1000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1780302091.0000029B8F5A1000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29B8F5A1000
|
Size: |
4096
|
|
7FFD9B912000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2962865688.00007FFD9B912000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B912000
|
Size: |
40960
|
|
1B5FF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2959455061.000000001B5FF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1B5FF000
|
Size: |
4096
|
|
1E6F1D36000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
0000000B.00000002.2219483511.000001E6F1D36000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
1E6F1D36000
|
Size: |
16384
|
|
1E6DB08E000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DB08E000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DB08E000
|
Size: |
147456
|
|
88BA54E000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2042229893.00000088BA54E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
88BA54E000
|
Size: |
8192
|
|
2E38121B000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E38121B000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E38121B000
|
Size: |
598016
|
|
145D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2889804971.000000000145D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
145D000
|
Size: |
24576
|
|
18FF000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2303211042.00000000018FF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
18FF000
|
Size: |
4096
|
|
7FFD9B820000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1755348351.00007FFD9B820000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B820000
|
Size: |
8192
|
|
2E3FACA0000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000007.00000002.2008038720.000002E3FACA0000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
2E3FACA0000
|
Size: |
4096
|
|
7A2000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2917448909.00000000007A2000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
7A2000
|
Size: |
118784
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
AV process strings found (often used to terminate AV products) |
Lowering of HIPS / PFW / Operating System Security Settings |
Security Software Discovery
|
|
7FFD9B9B0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1864599608.00007FFD9B9B0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B9B0000
|
Size: |
65536
|
|
BD0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2383674794.0000000000BD0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
BD0000
|
Size: |
4096
|
|
E4D6209000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888205900.000000E4D6209000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
E4D6209000
|
Size: |
28672
|
|
7FFD9BC0B000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2023647139.00007FFD9BC0B000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BC0B000
|
Size: |
20480
|
|
7FFD9B8B0000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000011.00000002.2475109668.00007FFD9B8B0000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B8B0000
|
Size: |
12288
|
|
1E6DA9FF000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DA9FF000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DA9FF000
|
Size: |
229376
|
|
2E380BFF000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E380BFF000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E380BFF000
|
Size: |
28672
|
|
7FFD9B9C2000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2019199603.00007FFD9B9C2000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B9C2000
|
Size: |
8192
|
|
7FFD9BA60000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2020626567.00007FFD9BA60000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA60000
|
Size: |
65536
|
|
1452000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2889804971.0000000001452000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1452000
|
Size: |
16384
|
|
C76F1BF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1730033922.000000C76F1BF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C76F1BF000
|
Size: |
4096
|
|
1E6D9810000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054627351.000001E6D9810000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6D9810000
|
Size: |
4096
|
|
29BA11C1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1842980861.0000029BA11C1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29BA11C1000
|
Size: |
57344
|
|
C76EFBE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1729915118.000000C76EFBE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C76EFBE000
|
Size: |
8192
|
|
1B35E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2395082080.000000001B35E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1B35E000
|
Size: |
8192
|
|
7FFD9B9F0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1756913883.00007FFD9B9F0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B9F0000
|
Size: |
65536
|
|
1D0FE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2893315906.000000001D0FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1D0FE000
|
Size: |
8192
|
|
847000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2465940195.0000000000847000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
847000
|
Size: |
40960
|
|
7FFD9B94A000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2018058044.00007FFD9B94A000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B94A000
|
Size: |
24576
|
|
7FFD9B820000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000010.00000002.2396241804.00007FFD9B820000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B820000
|
Size: |
4096
|
|
2E3FB214000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2009997598.000002E3FB214000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FB214000
|
Size: |
45056
|
|
9C0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2922250341.00000000009C0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
9C0000
|
Size: |
8192
|
|
7FFD9BA90000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2021345006.00007FFD9BA90000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA90000
|
Size: |
12288
|
|
7FFD9B79D000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000004.00000002.1862046250.00007FFD9B79D000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B79D000
|
Size: |
12288
|
|
29B92159000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782408781.0000029B92159000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B92159000
|
Size: |
434176
|
|
31A1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2303296375.00000000031A1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
31A1000
|
Size: |
40960
|
|
2E3FB489000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2015650109.000002E3FB489000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FB489000
|
Size: |
20480
|
|
1B6D0000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000010.00000002.2395244152.000000001B6D0000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
1B6D0000
|
Size: |
4096
|
|
7FFD9BA20000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2020082203.00007FFD9BA20000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA20000
|
Size: |
65536
|
|
7FFD9BB00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2238997066.00007FFD9BB00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BB00000
|
Size: |
36864
|
|
1E6DB0B5000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DB0B5000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DB0B5000
|
Size: |
778240
|
|
132A8000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2892117493.00000000132A8000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
132A8000
|
Size: |
4096
|
|
29B92258000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782408781.0000029B92258000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B92258000
|
Size: |
176128
|
|
22AF05F1000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1753977586.0000022AF05F1000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AF05F1000
|
Size: |
81920
|
|
1E6E9B07000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2190496316.000001E6E9B07000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6E9B07000
|
Size: |
12288
|
|
7FFD9B783000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2961136614.00007FFD9B783000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B783000
|
Size: |
40960
|
|
A27CE77000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1779377951.000000A27CE77000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A27CE77000
|
Size: |
36864
|
|
7FFD9BAA3000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1757774763.00007FFD9BAA3000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAA3000
|
Size: |
28672
|
|
7FFD9BA50000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1757444973.00007FFD9BA50000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA50000
|
Size: |
65536
|
|
7FFD9BAFC000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1867726464.00007FFD9BAFC000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAFC000
|
Size: |
8192
|
|
22AE81B7000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1747551046.0000022AE81B7000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AE81B7000
|
Size: |
4096
|
|
2E3F92F0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2004728060.000002E3F92F0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E3F92F0000
|
Size: |
65536
|
|
7FFD9B76D000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000010.00000002.2395849053.00007FFD9B76D000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B76D000
|
Size: |
4096
|
|
2E3810F7000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E3810F7000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E3810F7000
|
Size: |
196608
|
|
E4D527D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1887432580.000000E4D527D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
E4D527D000
|
Size: |
12288
|
|
7FFD9B780000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1755071227.00007FFD9B780000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B780000
|
Size: |
40960
|
|
7FFD9BAD8000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2238154542.00007FFD9BAD8000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAD8000
|
Size: |
4096
|
|
7FFD9BB60000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1758205522.00007FFD9BB60000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BB60000
|
Size: |
8192
|
|
1E6E9B0B000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2190496316.000001E6E9B0B000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6E9B0B000
|
Size: |
4096
|
|
1022000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2384641628.0000000001022000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1022000
|
Size: |
8192
|
|
7FFD9B77D000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000B.00000002.2227611070.00007FFD9B77D000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B77D000
|
Size: |
12288
|
|
2B59EBF5000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.2256569173.000002B59EBF5000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2B59EBF5000
|
Size: |
12288
|
|
1BCFE000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2304123654.000000001BCFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1BCFE000
|
Size: |
8192
|
|
29B924A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782408781.0000029B924A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B924A0000
|
Size: |
200704
|
|
7FFD9BAC0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2021699403.00007FFD9BAC0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAC0000
|
Size: |
4096
|
|
22AD7E20000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731572732.0000022AD7E20000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AD7E20000
|
Size: |
4096
|
|
122E000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2300577411.000000000122E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
122E000
|
Size: |
20480
|
|
1B990000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
0000000F.00000002.2304041430.000000001B990000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
1B990000
|
Size: |
4096
|
|
7FFD9B970000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1756221539.00007FFD9B970000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B970000
|
Size: |
65536
|
|
29BA9A28000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1861333341.0000029BA9A28000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA9A28000
|
Size: |
73728
|
|
1E6DA790000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DA790000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DA790000
|
Size: |
12288
|
|
FE1000
|
stack
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2886969210.0000000000FE1000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
FE1000
|
Size: |
61440
|
|
2721000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2472748495.0000000002721000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2721000
|
Size: |
20480
|
|
7FFD9BAFC000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2021959693.00007FFD9BAFC000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAFC000
|
Size: |
8192
|
|
7FFD9BBB0000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000007.00000002.2023119244.00007FFD9BBB0000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9BBB0000
|
Size: |
4096
|
|
2E3902F7000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1983628076.000002E3902F7000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E3902F7000
|
Size: |
4096
|
|
7FFD9B78D000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.2961456746.00007FFD9B78D000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B78D000
|
Size: |
12288
|
|
1E6F1B7C000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2215177791.000001E6F1B7C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6F1B7C000
|
Size: |
286720
|
|
1BAFE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2395464584.000000001BAFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1BAFE000
|
Size: |
8192
|
|
29BA9917000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1858058993.0000029BA9917000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA9917000
|
Size: |
4096
|
|
A27CCFE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1779108263.000000A27CCFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A27CCFE000
|
Size: |
8192
|
|
7FFD9BB20000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1868175755.00007FFD9BB20000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BB20000
|
Size: |
45056
|
|
1E6DB04F000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DB04F000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DB04F000
|
Size: |
249856
|
|
1240000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2887300241.0000000001240000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1240000
|
Size: |
4096
|
|
7FFD9B7CC000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.2961931184.00007FFD9B7CC000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B7CC000
|
Size: |
8192
|
|
2E3FB46E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2015493958.000002E3FB46E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FB46E000
|
Size: |
12288
|
|
29B90FB0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1781973328.0000029B90FB0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B90FB0000
|
Size: |
12288
|
|
878000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2466524025.0000000000878000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
878000
|
Size: |
135168
|
|
7FFD9B826000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2962145524.00007FFD9B826000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B826000
|
Size: |
4096
|
|
BFE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2468728056.0000000000BFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
BFE000
|
Size: |
8192
|
|
1E6F1B60000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2215177791.000001E6F1B60000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6F1B60000
|
Size: |
106496
|
|
1E6D7B44000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2043173654.000001E6D7B44000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6D7B44000
|
Size: |
4096
|
|
88B99FE000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2042000263.00000088B99FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
88B99FE000
|
Size: |
8192
|
|
7FFD9BBEA000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2023525485.00007FFD9BBEA000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BBEA000
|
Size: |
12288
|
|
88B9876000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2041624609.00000088B9876000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
88B9876000
|
Size: |
40960
|
|
1E6DB628000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DB628000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DB628000
|
Size: |
90112
|
|
11A0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2299732708.00000000011A0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
11A0000
|
Size: |
4096
|
|
1E6F1D87000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2219727066.000001E6F1D87000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6F1D87000
|
Size: |
4096
|
|
22AD80E8000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD80E8000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD80E8000
|
Size: |
2768896
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
29BA11E1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1842980861.0000029BA11E1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29BA11E1000
|
Size: |
8192
|
|
7FFD9BAFA000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2021959693.00007FFD9BAFA000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAFA000
|
Size: |
4096
|
|
7FFD9BAE4000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2021820774.00007FFD9BAE4000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAE4000
|
Size: |
4096
|
|
7FFD9B890000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000F.00000002.2304921284.00007FFD9B890000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B890000
|
Size: |
12288
|
|
7FFD9B856000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000B.00000002.2228686640.00007FFD9B856000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B856000
|
Size: |
86016
|
|
7FFD9BAF2000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2021959693.00007FFD9BAF2000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAF2000
|
Size: |
4096
|
|
2E3F92D5000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2003590598.000002E3F92D5000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3F92D5000
|
Size: |
24576
|
|
C76FF8E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1730376730.000000C76FF8E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C76FF8E000
|
Size: |
8192
|
|
7FFD9BAC0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1757823370.00007FFD9BAC0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAC0000
|
Size: |
4096
|
|
6C6000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2917448909.00000000006C6000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
6C6000
|
Size: |
20480
|
|
7FFD9BBC0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2023185420.00007FFD9BBC0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BBC0000
|
Size: |
36864
|
|
7FFD9BA90000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1867124252.00007FFD9BA90000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA90000
|
Size: |
65536
|
|
7FFD9B940000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.2963554484.00007FFD9B940000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B940000
|
Size: |
4096
|
|
7FFD9B9A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1756500435.00007FFD9B9A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B9A0000
|
Size: |
65536
|
|
2E3FB220000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2011310670.000002E3FB220000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FB220000
|
Size: |
4096
|
|
32B1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2891430695.00000000032B1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
32B1000
|
Size: |
20480
|
|
29B911B0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782372675.0000029B911B0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29B911B0000
|
Size: |
4096
|
|
29BA98A0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1858058993.0000029BA98A0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA98A0000
|
Size: |
180224
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
7FFD9B826000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1755467472.00007FFD9B826000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B826000
|
Size: |
24576
|
|
88B9978000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2041871018.00000088B9978000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
88B9978000
|
Size: |
32768
|
|
88B91EF000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2040938790.00000088B91EF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
88B91EF000
|
Size: |
4096
|
|
29B90F70000
|
heap
|
page readonly
|
|
|
|
Name: |
00000004.00000002.1781946124.0000029B90F70000.00000002.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page readonly
|
Base address: |
29B90F70000
|
Size: |
4096
|
|
6CC000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2917448909.00000000006CC000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
6CC000
|
Size: |
98304
|
|
7FFD9B774000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2304422621.00007FFD9B774000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B774000
|
Size: |
4096
|
|
9F0000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.2922432137.00000000009F0000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
9F0000
|
Size: |
4096
|
|
22AF0640000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1754570910.0000022AF0640000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AF0640000
|
Size: |
20480
|
|
7FFD9B978000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2018424246.00007FFD9B978000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B978000
|
Size: |
4096
|
|
1E6D7CD0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2046615160.000001E6D7CD0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6D7CD0000
|
Size: |
4096
|
|
7FFD9BA40000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2235476004.00007FFD9BA40000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA40000
|
Size: |
65536
|
|
7FFD9B79D000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000007.00000002.2016634572.00007FFD9B79D000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B79D000
|
Size: |
12288
|
|
29BA965A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1856189317.0000029BA965A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA965A000
|
Size: |
20480
|
|
1439000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2889281616.0000000001439000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1439000
|
Size: |
4096
|
|
88B9A7E000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2042041852.00000088B9A7E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
88B9A7E000
|
Size: |
8192
|
|
29BA98E5000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1858058993.0000029BA98E5000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA98E5000
|
Size: |
8192
|
|
29BA9684000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1856380853.0000029BA9684000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA9684000
|
Size: |
8192
|
|
7FFD9B830000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.2962263464.00007FFD9B830000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B830000
|
Size: |
4096
|
|
A27CFF8000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1779655000.000000A27CFF8000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A27CFF8000
|
Size: |
32768
|
|
852000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2466524025.0000000000852000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
852000
|
Size: |
8192
|
|
22AD6430000
|
heap
|
page readonly
|
|
|
|
Name: |
00000001.00000002.1731098336.0000022AD6430000.00000002.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page readonly
|
Base address: |
22AD6430000
|
Size: |
4096
|
|
2E3FB43D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2014920026.000002E3FB43D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FB43D000
|
Size: |
28672
|
|
7FFD9B774000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2395972122.00007FFD9B774000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B774000
|
Size: |
20480
|
|
7FFD9BB10000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2022330348.00007FFD9BB10000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BB10000
|
Size: |
8192
|
|
7FFD9B78B000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2227786045.00007FFD9B78B000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B78B000
|
Size: |
4096
|
|
7FFD9B7EC000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000004.00000002.1862752947.00007FFD9B7EC000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B7EC000
|
Size: |
4096
|
|
1E6D7B87000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2043173654.000001E6D7B87000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6D7B87000
|
Size: |
8192
|
|
A27DFCE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1780182484.000000A27DFCE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A27DFCE000
|
Size: |
8192
|
|
A25000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2922484935.0000000000A25000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
A25000
|
Size: |
20480
|
|
22AE7EF1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1747551046.0000022AE7EF1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AE7EF1000
|
Size: |
237568
|
|
1000000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2384203071.0000000001000000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1000000
|
Size: |
73728
|
|
29B8F560000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1780302091.0000029B8F560000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29B8F560000
|
Size: |
24576
|
|
7FFD9BAF8000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2021959693.00007FFD9BAF8000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAF8000
|
Size: |
4096
|
|
29B8F520000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1780233984.0000029B8F520000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29B8F520000
|
Size: |
20480
|
|
2B59EB70000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.2256495770.000002B59EB70000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2B59EB70000
|
Size: |
4096
|
|
2E3FB320000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2011460042.000002E3FB320000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FB320000
|
Size: |
184320
|
|
E4D4CE2000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1886948720.000000E4D4CE2000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
E4D4CE2000
|
Size: |
57344
|
|
7FFD9BAA0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1867291482.00007FFD9BAA0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAA0000
|
Size: |
49152
|
|
2E3902E8000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1983628076.000002E3902E8000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E3902E8000
|
Size: |
12288
|
|
2DD0000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000010.00000002.2393938297.0000000002DD0000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
2DD0000
|
Size: |
4096
|
|
88B97F9000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2041510768.00000088B97F9000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
88B97F9000
|
Size: |
28672
|
|
2E3FB165000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2008324277.000002E3FB165000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FB165000
|
Size: |
40960
|
|
7FFD9BA40000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2020331640.00007FFD9BA40000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA40000
|
Size: |
65536
|
|
7FFD9B771000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2893617023.00007FFD9B771000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B771000
|
Size: |
4096
|
|
88BA7CE000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2042653937.00000088BA7CE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
88BA7CE000
|
Size: |
8192
|
|
1B7DE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2395307786.000000001B7DE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1B7DE000
|
Size: |
8192
|
|
29B8F59F000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1780302091.0000029B8F59F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29B8F59F000
|
Size: |
4096
|
|
7FFD9BAA3000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2237745121.00007FFD9BAA3000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAA3000
|
Size: |
28672
|
|
7FFD9BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2019850818.00007FFD9BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA00000
|
Size: |
65536
|
|
E4D618E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888142594.000000E4D618E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
E4D618E000
|
Size: |
8192
|
|
29B9123A000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782408781.0000029B9123A000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B9123A000
|
Size: |
1732608
|
|
29B90F30000
|
trusted library section
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1781824336.0000029B90F30000.00000004.08000000.00040000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library section
|
Protect: |
page read and write
|
Base address: |
29B90F30000
|
Size: |
4096
|
|
2EEF000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2394074092.0000000002EEF000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2EEF000
|
Size: |
4096
|
|
1457000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2889804971.0000000001457000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1457000
|
Size: |
20480
|
|
7FFD9BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1756984556.00007FFD9BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA00000
|
Size: |
65536
|
|
2E3813CB000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E3813CB000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E3813CB000
|
Size: |
3895296
|
|
7FFD9BAE0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1758039954.00007FFD9BAE0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAE0000
|
Size: |
65536
|
|
7FF462360000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000F.00000002.2304349833.00007FF462360000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF462360000
|
Size: |
4096
|
|
29BA98DE000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1858058993.0000029BA98DE000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA98DE000
|
Size: |
16384
|
|
7FFD9B876000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000004.00000002.1863146471.00007FFD9B876000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B876000
|
Size: |
86016
|
|
22AD8EC6000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD8EC6000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD8EC6000
|
Size: |
176128
|
|
2E381031000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E381031000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E381031000
|
Size: |
405504
|
|
7FFD9BA90000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1757696002.00007FFD9BA90000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA90000
|
Size: |
16384
|
|
1E6F1BEF000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2217132527.000001E6F1BEF000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6F1BEF000
|
Size: |
65536
|
|
2E3F90F0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1997088361.000002E3F90F0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3F90F0000
|
Size: |
4096
|
|
E4D56BB000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1887988658.000000E4D56BB000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
E4D56BB000
|
Size: |
20480
|
|
C76F138000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1730011702.000000C76F138000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C76F138000
|
Size: |
32768
|
|
7DF4B1820000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000B.00000002.2226871279.00007DF4B1820000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7DF4B1820000
|
Size: |
4096
|
|
1302000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2302851013.0000000001302000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1302000
|
Size: |
16384
|
|
7FFD9BAD2000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2238154542.00007FFD9BAD2000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAD2000
|
Size: |
4096
|
|
A27DD4C000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1780007833.000000A27DD4C000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A27DD4C000
|
Size: |
16384
|
|
7FFD9B840000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1862873968.00007FFD9B840000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B840000
|
Size: |
8192
|
|
2E380001000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E380001000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E380001000
|
Size: |
487424
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
1BC6E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2960202405.000000001BC6E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1BC6E000
|
Size: |
8192
|
|
1220000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2887240628.0000000001220000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1220000
|
Size: |
8192
|
|
1E6D7DC5000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2047352043.000001E6D7DC5000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6D7DC5000
|
Size: |
40960
|
|
29BA98F0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1858058993.0000029BA98F0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA98F0000
|
Size: |
98304
|
|
1B0CE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2955837780.000000001B0CE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1B0CE000
|
Size: |
8192
|
|
7FFD9B952000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1756062121.00007FFD9B952000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B952000
|
Size: |
4096
|
|
7FFD9B840000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2474963583.00007FFD9B840000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B840000
|
Size: |
4096
|
|
839000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2465940195.0000000000839000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
839000
|
Size: |
4096
|
|
E4D55BE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1887913355.000000E4D55BE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
E4D55BE000
|
Size: |
8192
|
|
2E3902F5000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1983628076.000002E3902F5000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E3902F5000
|
Size: |
4096
|
|
29BA991F000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1858058993.0000029BA991F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA991F000
|
Size: |
4096
|
|
7FFD9B932000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2475195604.00007FFD9B932000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B932000
|
Size: |
12288
|
|
7FFD9B970000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2230871830.00007FFD9B970000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B970000
|
Size: |
65536
|
|
22AF03D0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1752934326.0000022AF03D0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AF03D0000
|
Size: |
36864
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
13A0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2887533412.00000000013A0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
13A0000
|
Size: |
4096
|
|
2E381784000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E381784000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E381784000
|
Size: |
929792
|
|
2E380DF1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E380DF1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E380DF1000
|
Size: |
1560576
|
|
2E3FACC0000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000007.00000002.2008091098.000002E3FACC0000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
2E3FACC0000
|
Size: |
4096
|
|
2651000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2923052360.0000000002651000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2651000
|
Size: |
4800512
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
7FFD9BBD0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1868833050.00007FFD9BBD0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BBD0000
|
Size: |
65536
|
|
7FFD9B8B0000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000007.00000002.2017741777.00007FFD9B8B0000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B8B0000
|
Size: |
53248
|
|
2E381E22000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E381E22000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E381E22000
|
Size: |
16384
|
|
2E39006F000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1983628076.000002E39006F000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E39006F000
|
Size: |
2039808
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
7FFD9B920000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2963290560.00007FFD9B920000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B920000
|
Size: |
16384
|
|
7FFD9BA80000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2236985455.00007FFD9BA80000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA80000
|
Size: |
57344
|
|
1B4FE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2959394962.000000001B4FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1B4FE000
|
Size: |
8192
|
|
1E6DA430000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DA430000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DA430000
|
Size: |
249856
|
|
2E381312000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E381312000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E381312000
|
Size: |
225280
|
|
1E6DA79C000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DA79C000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DA79C000
|
Size: |
16384
|
|
7FFD9B7B0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1862612968.00007FFD9B7B0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B7B0000
|
Size: |
4096
|
|
13FF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2393285459.00000000013FF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
13FF000
|
Size: |
4096
|
|
2E3F9050000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1997015767.000002E3F9050000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3F9050000
|
Size: |
8192
|
|
7FFD9BBA0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1868521453.00007FFD9BBA0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BBA0000
|
Size: |
65536
|
|
2E3FB3CC000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2013236234.000002E3FB3CC000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FB3CC000
|
Size: |
270336
|
|
1B6FE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2959504474.000000001B6FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1B6FE000
|
Size: |
8192
|
|
7FFD9B773000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000B.00000002.2227340983.00007FFD9B773000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B773000
|
Size: |
4096
|
|
319F000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2303248701.000000000319F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
319F000
|
Size: |
4096
|
|
2B59EC37000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.2256630323.000002B59EC37000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2B59EC37000
|
Size: |
163840
|
|
7FFD9BAB0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2021630065.00007FFD9BAB0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAB0000
|
Size: |
16384
|
|
7FFD9B9D0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2233010032.00007FFD9B9D0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B9D0000
|
Size: |
65536
|
|
10D3000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2392756698.00000000010D3000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
10D3000
|
Size: |
4096
|
|
29BA14A9000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1842980861.0000029BA14A9000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29BA14A9000
|
Size: |
12288
|
|
1213000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2300120113.0000000001213000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1213000
|
Size: |
49152
|
|
7FFD9B77D000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000F.00000002.2304465301.00007FFD9B77D000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B77D000
|
Size: |
4096
|
|
2E3F90B0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1997088361.000002E3F90B0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3F90B0000
|
Size: |
28672
|
|
7FFD9BBE0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2240667545.00007FFD9BBE0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BBE0000
|
Size: |
65536
|
|
7FFD9B7EC000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000007.00000002.2016971975.00007FFD9B7EC000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B7EC000
|
Size: |
4096
|
|
7FFD9BAF0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2238643600.00007FFD9BAF0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAF0000
|
Size: |
65536
|
|
143D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2889281616.000000000143D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
143D000
|
Size: |
81920
|
|
29B90F40000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1781854390.0000029B90F40000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B90F40000
|
Size: |
16384
|
|
29B8F780000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1781669434.0000029B8F780000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29B8F780000
|
Size: |
16384
|
|
7FFD9B890000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000B.00000002.2229093285.00007FFD9B890000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B890000
|
Size: |
16384
|
|
29BA97D7000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1857675341.0000029BA97D7000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA97D7000
|
Size: |
24576
|
|
7FFD9B954000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2230210781.00007FFD9B954000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B954000
|
Size: |
12288
|
|
1247000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2300577411.0000000001247000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1247000
|
Size: |
4096
|
|
88BA5CC000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2042294501.00000088BA5CC000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
88BA5CC000
|
Size: |
16384
|
|
88B9B7B000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2042130681.00000088B9B7B000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
88B9B7B000
|
Size: |
20480
|
|
7FFD9B780000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2304507758.00007FFD9B780000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B780000
|
Size: |
8192
|
|
BE0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2383712923.0000000000BE0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
BE0000
|
Size: |
4096
|
|
7DF4344B0000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000007.00000002.2016069837.00007DF4344B0000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7DF4344B0000
|
Size: |
4096
|
|
2E3FB1E7000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2009997598.000002E3FB1E7000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FB1E7000
|
Size: |
73728
|
|
7FFD9B77D000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000010.00000002.2396086186.00007FFD9B77D000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B77D000
|
Size: |
4096
|
|
266000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000000.00000000.1661143851.0000000000266000.00000002.00000001.01000000.00000003.sdmp
|
TargetID: |
0
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
266000
|
Size: |
8192
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
Sample file is different than original file name gathered from version info |
System Summary |
|
|
2E3F90F6000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1997088361.000002E3F90F6000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3F90F6000
|
Size: |
4096
|
|
7FFD9B932000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1863510859.00007FFD9B932000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B932000
|
Size: |
57344
|
|
29B92FEA000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782408781.0000029B92FEA000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B92FEA000
|
Size: |
49152
|
|
7FFD9B9D0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1864907678.00007FFD9B9D0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B9D0000
|
Size: |
65536
|
|
2E3FB120000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2008324277.000002E3FB120000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FB120000
|
Size: |
245760
|
|
AE0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2922674186.0000000000AE0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
AE0000
|
Size: |
12288
|
|
7FFD9BA10000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1865663880.00007FFD9BA10000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA10000
|
Size: |
65536
|
|
A27CC7E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1778973706.000000A27CC7E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A27CC7E000
|
Size: |
8192
|
|
1E6D7D60000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2046888942.000001E6D7D60000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6D7D60000
|
Size: |
65536
|
|
29B91120000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000004.00000002.1782270256.0000029B91120000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
29B91120000
|
Size: |
4096
|
|
7FFD9BAA0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2021465753.00007FFD9BAA0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAA0000
|
Size: |
49152
|
|
1E6F1E40000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2220612851.000001E6F1E40000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6F1E40000
|
Size: |
188416
|
|
1E6D7AC0000
|
trusted library section
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2043019752.000001E6D7AC0000.00000004.08000000.00040000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library section
|
Protect: |
page read and write
|
Base address: |
1E6D7AC0000
|
Size: |
4096
|
|
1B2DE000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2955962181.000000001B2DE000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1B2DE000
|
Size: |
32768
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
AV process strings found (often used to terminate AV products) |
Lowering of HIPS / PFW / Operating System Security Settings |
Security Software Discovery
|
|
7DF4B1810000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000B.00000002.2226837504.00007DF4B1810000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7DF4B1810000
|
Size: |
4096
|
|
A27CEFD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1779526011.000000A27CEFD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A27CEFD000
|
Size: |
12288
|
|
7FFD9B793000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000007.00000002.2016402188.00007FFD9B793000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B793000
|
Size: |
4096
|
|
29B92946000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782408781.0000029B92946000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B92946000
|
Size: |
675840
|
|
7FFD9BAE4000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1867586024.00007FFD9BAE4000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAE4000
|
Size: |
4096
|
|
7FFD9B856000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000001.00000002.1755610354.00007FFD9B856000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B856000
|
Size: |
86016
|
|
32AF000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2891430695.00000000032AF000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
32AF000
|
Size: |
4096
|
|
1488000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2890146865.0000000001488000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1488000
|
Size: |
147456
|
|
29BA91CB000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1852994148.0000029BA91CB000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA91CB000
|
Size: |
798720
|
|
1E6DA945000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DA945000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DA945000
|
Size: |
237568
|
|
29BA9913000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1858058993.0000029BA9913000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA9913000
|
Size: |
4096
|
|
1E6D9821000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6D9821000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6D9821000
|
Size: |
536576
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
2E390021000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1983628076.000002E390021000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E390021000
|
Size: |
8192
|
|
7FFD9B763000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000010.00000002.2395740509.00007FFD9B763000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B763000
|
Size: |
4096
|
|
7FFD9B930000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000B.00000002.2229991162.00007FFD9B930000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B930000
|
Size: |
24576
|
|
132A1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2892117493.00000000132A1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
132A1000
|
Size: |
4096
|
|
7FFD9B960000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000B.00000002.2230387723.00007FFD9B960000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B960000
|
Size: |
45056
|
|
2E38007B000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E38007B000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E38007B000
|
Size: |
1732608
|
|
22AD7EC1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD7EC1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD7EC1000
|
Size: |
536576
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
1A9D2000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2955468155.000000001A9D2000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1A9D2000
|
Size: |
4096
|
|
1BDFE000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2304168335.000000001BDFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1BDFE000
|
Size: |
8192
|
|
E4D563E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1887947896.000000E4D563E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
E4D563E000
|
Size: |
8192
|
|
1E6F1FBB000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2220612851.000001E6F1FBB000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6F1FBB000
|
Size: |
4096
|
|
7FFD9BB90000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1868429150.00007FFD9BB90000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BB90000
|
Size: |
4096
|
|
7DF4CDB80000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000001.00000002.1754830096.00007DF4CDB80000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7DF4CDB80000
|
Size: |
4096
|
|
29B9168D000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782408781.0000029B9168D000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B9168D000
|
Size: |
5779456
|
|
22AD6520000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731280298.0000022AD6520000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AD6520000
|
Size: |
16384
|
|
83D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2465940195.000000000083D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
83D000
|
Size: |
8192
|
|
12713000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2473764847.0000000012713000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
12713000
|
Size: |
12288
|
|
7FFD9B7B0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2474870152.00007FFD9B7B0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B7B0000
|
Size: |
4096
|
|
1160000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2299580224.0000000001160000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1160000
|
Size: |
8192
|
|
264E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2922992004.000000000264E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
264E000
|
Size: |
8192
|
|
7FFD9BBB0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2239972343.00007FFD9BBB0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BBB0000
|
Size: |
65536
|
|
1E6D7B48000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2043173654.000001E6D7B48000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6D7B48000
|
Size: |
12288
|
|
7FFD9B84C000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000007.00000002.2017202616.00007FFD9B84C000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B84C000
|
Size: |
61440
|
|
13C0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2887628485.00000000013C0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
13C0000
|
Size: |
4096
|
|
1E6D9650000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
0000000B.00000002.2047624110.000001E6D9650000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
1E6D9650000
|
Size: |
4096
|
|
C76FE89000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1730335566.000000C76FE89000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C76FE89000
|
Size: |
28672
|
|
25C0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2470853101.00000000025C0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
25C0000
|
Size: |
4096
|
|
7FFD9BA78000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2020920289.00007FFD9BA78000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA78000
|
Size: |
12288
|
|
1E6D98A7000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6D98A7000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6D98A7000
|
Size: |
1683456
|
|
22AF04B0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1752996540.0000022AF04B0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AF04B0000
|
Size: |
4096
|
|
2EE1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2394074092.0000000002EE1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2EE1000
|
Size: |
40960
|
|
7FFD9B9B0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1756577739.00007FFD9B9B0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B9B0000
|
Size: |
65536
|
|
7FFD9BB60000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2239187432.00007FFD9BB60000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BB60000
|
Size: |
65536
|
|
7FFD9B9C0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2232685853.00007FFD9B9C0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B9C0000
|
Size: |
65536
|
|
1E6D9A49000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6D9A49000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6D9A49000
|
Size: |
2764800
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
7FFD9B82C000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000001.00000002.1755523406.00007FFD9B82C000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B82C000
|
Size: |
61440
|
|
124C000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2300577411.000000000124C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
124C000
|
Size: |
24576
|
|
7FFD9BADC000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2238154542.00007FFD9BADC000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BADC000
|
Size: |
8192
|
|
1E6D7A60000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2042862653.000001E6D7A60000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6D7A60000
|
Size: |
8192
|
|
1BC02000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2892504520.000000001BC02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1BC02000
|
Size: |
4096
|
|
1E6D7B5E000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2043173654.000001E6D7B5E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6D7B5E000
|
Size: |
16384
|
|
690000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2917324515.0000000000690000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
690000
|
Size: |
8192
|
|
12651000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2953479310.0000000012651000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
12651000
|
Size: |
24576
|
|
2E381E02000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E381E02000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E381E02000
|
Size: |
118784
|
|
7FFD9B958000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1756062121.00007FFD9B958000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B958000
|
Size: |
4096
|
|
A27DF4D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1780153738.000000A27DF4D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A27DF4D000
|
Size: |
12288
|
|
7DF4BF530000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000004.00000002.1861774220.00007DF4BF530000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7DF4BF530000
|
Size: |
4096
|
|
1E6DA273000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DA273000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DA273000
|
Size: |
1732608
|
|
7FFD9BA70000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2236585612.00007FFD9BA70000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA70000
|
Size: |
65536
|
|
22AD6420000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731069524.0000022AD6420000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD6420000
|
Size: |
4096
|
|
22AD9CC5000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD9CC5000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD9CC5000
|
Size: |
118784
|
|
7FFD9B78D000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000F.00000002.2304653368.00007FFD9B78D000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B78D000
|
Size: |
4096
|
|
25E0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2471468930.00000000025E0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
25E0000
|
Size: |
4096
|
|
FF0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2384115490.0000000000FF0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
FF0000
|
Size: |
4096
|
|
88B98FA000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2041779598.00000088B98FA000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
88B98FA000
|
Size: |
24576
|
|
29BA9796000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000004.00000002.1857496443.0000029BA9796000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
29BA9796000
|
Size: |
16384
|
|
7FFD9B980000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1756328707.00007FFD9B980000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B980000
|
Size: |
65536
|
|
2E39029E000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1983628076.000002E39029E000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E39029E000
|
Size: |
286720
|
|
DD0000
|
unkown
|
page readonly
|
|
|
|
Name: |
0000000F.00000002.2299060501.0000000000DD0000.00000002.00000001.01000000.00000009.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
DD0000
|
Size: |
4096
|
|
7FFD9B990000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1864248687.00007FFD9B990000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B990000
|
Size: |
65536
|
|
1E6D7B3D000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2043173654.000001E6D7B3D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6D7B3D000
|
Size: |
8192
|
|
1E6F2210000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2226794027.000001E6F2210000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6F2210000
|
Size: |
4096
|
|
29B8F510000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1780209626.0000029B8F510000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29B8F510000
|
Size: |
4096
|
|
2E3902EF000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1983628076.000002E3902EF000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E3902EF000
|
Size: |
12288
|
|
7FFD9B94A000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1863705255.00007FFD9B94A000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B94A000
|
Size: |
24576
|
|
1E6D9690000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2047757444.000001E6D9690000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6D9690000
|
Size: |
12288
|
|
1051000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2385967061.0000000001051000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1051000
|
Size: |
8192
|
|
29BA991B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1858058993.0000029BA991B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA991B000
|
Size: |
4096
|
|
142D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2889281616.000000000142D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
142D000
|
Size: |
20480
|
|
2B59EBF0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.2256569173.000002B59EBF0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2B59EBF0000
|
Size: |
16384
|
|
29B8F750000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1781594060.0000029B8F750000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29B8F750000
|
Size: |
4096
|
|
A27CD79000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1779283494.000000A27CD79000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A27CD79000
|
Size: |
28672
|
|
C76EE77000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1729813042.000000C76EE77000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C76EE77000
|
Size: |
36864
|
|
7FFD9B9C0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1864758890.00007FFD9B9C0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B9C0000
|
Size: |
65536
|
|
2E380229000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E380229000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E380229000
|
Size: |
2764800
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
29B92470000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782408781.0000029B92470000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B92470000
|
Size: |
192512
|
|
640000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2917279070.0000000000640000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
640000
|
Size: |
4096
|
|
1B1FE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2955911244.000000001B1FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1B1FE000
|
Size: |
8192
|
|
22AD7F47000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD7F47000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD7F47000
|
Size: |
1679360
|
|
88B96F7000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2041304269.00000088B96F7000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
88B96F7000
|
Size: |
36864
|
|
1E6DB648000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DB648000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DB648000
|
Size: |
12288
|
|
2E380C57000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E380C57000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E380C57000
|
Size: |
1187840
|
|
7FFD9B7CC000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000F.00000002.2304775962.00007FFD9B7CC000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B7CC000
|
Size: |
4096
|
|
10BD000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2392528008.00000000010BD000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
10BD000
|
Size: |
20480
|
|
7FFD9BAE9000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1867586024.00007FFD9BAE9000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAE9000
|
Size: |
28672
|
|
1E6D7A40000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2042769476.000001E6D7A40000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6D7A40000
|
Size: |
20480
|
|
993000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2921951613.0000000000993000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
993000
|
Size: |
53248
|
|
1B259000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2955962181.000000001B259000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1B259000
|
Size: |
200704
|
|
A27DECD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1780123307.000000A27DECD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A27DECD000
|
Size: |
12288
|
|
1402000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2393369699.0000000001402000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1402000
|
Size: |
16384
|
|
29B91010000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782185218.0000029B91010000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29B91010000
|
Size: |
12288
|
|
29BA9C20000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1861716538.0000029BA9C20000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA9C20000
|
Size: |
4096
|
|
C76EEFD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1729864491.000000C76EEFD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C76EEFD000
|
Size: |
12288
|
|
29B8F653000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1780302091.0000029B8F653000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29B8F653000
|
Size: |
32768
|
|
2E3810C3000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E3810C3000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E3810C3000
|
Size: |
208896
|
|
7FFD9BB63000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1758205522.00007FFD9BB63000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BB63000
|
Size: |
53248
|
|
29BA9660000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1856189317.0000029BA9660000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA9660000
|
Size: |
36864
|
|
15F0000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
0000000F.00000002.2303050405.00000000015F0000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
15F0000
|
Size: |
4096
|
|
7FFD9BBB0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1758885481.00007FFD9BBB0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BBB0000
|
Size: |
65536
|
|
89A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2467483953.000000000089A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
89A000
|
Size: |
65536
|
|
C76F33E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1730158902.000000C76F33E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C76F33E000
|
Size: |
8192
|
|
2E3812DE000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E3812DE000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E3812DE000
|
Size: |
200704
|
|
1B060000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2955781291.000000001B060000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1B060000
|
Size: |
4096
|
|
7FFD9BADA000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2238154542.00007FFD9BADA000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BADA000
|
Size: |
4096
|
|
7FFD9B958000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2230210781.00007FFD9B958000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B958000
|
Size: |
4096
|
|
1E6D7AE0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2043093317.000001E6D7AE0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6D7AE0000
|
Size: |
16384
|
|
A27CDFE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1779339850.000000A27CDFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A27CDFE000
|
Size: |
8192
|
|
1BCA0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2960285616.000000001BCA0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1BCA0000
|
Size: |
12288
|
|
8AB000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2467483953.00000000008AB000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
8AB000
|
Size: |
57344
|
|
1E6F1D71000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2219727066.000001E6F1D71000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6F1D71000
|
Size: |
16384
|
|
7FFD9B972000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2018424246.00007FFD9B972000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B972000
|
Size: |
4096
|
|
A27C9CE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1778789510.000000A27C9CE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A27C9CE000
|
Size: |
8192
|
|
1400000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2887727676.0000000001400000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1400000
|
Size: |
73728
|
|
2E3FAB30000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2005427383.000002E3FAB30000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E3FAB30000
|
Size: |
12288
|
|
1E6DA78C000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DA78C000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DA78C000
|
Size: |
12288
|
|
29B8F5E3000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1780302091.0000029B8F5E3000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29B8F5E3000
|
Size: |
16384
|
|
1BFFE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2892797086.000000001BFFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1BFFE000
|
Size: |
8192
|
|
22AD972C000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD972C000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD972C000
|
Size: |
143360
|
|
C76E963000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1729619721.000000C76E963000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C76E963000
|
Size: |
53248
|
|
1BEFE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2892707389.000000001BEFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1BEFE000
|
Size: |
8192
|
|
7FFD9BAE0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2238447163.00007FFD9BAE0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAE0000
|
Size: |
40960
|
|
7FFD9B82C000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.2962210918.00007FFD9B82C000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B82C000
|
Size: |
4096
|
|
1BB5F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2892448379.000000001BB5F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1BB5F000
|
Size: |
4096
|
|
270F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2472318477.000000000270F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
270F000
|
Size: |
4096
|
|
7FFD9B770000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2395890800.00007FFD9B770000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B770000
|
Size: |
8192
|
|
7FFD9BB00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1867913648.00007FFD9BB00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BB00000
|
Size: |
40960
|
|
73C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2917448909.000000000073C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
73C000
|
Size: |
278528
|
|
1220000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2300120113.0000000001220000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1220000
|
Size: |
24576
|
|
7FFD9B856000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000F.00000002.2304879316.00007FFD9B856000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B856000
|
Size: |
4096
|
|
29BA9A05000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1859541911.0000029BA9A05000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA9A05000
|
Size: |
4096
|
|
2E38112A000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E38112A000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E38112A000
|
Size: |
741376
|
|
22AD838D000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD838D000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD838D000
|
Size: |
5779456
|
|
29BA9610000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1854965485.0000029BA9610000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA9610000
|
Size: |
110592
|
|
7FFD9B9D0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2019294470.00007FFD9B9D0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B9D0000
|
Size: |
65536
|
|
7DF4CDB70000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000001.00000002.1754811630.00007DF4CDB70000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7DF4CDB70000
|
Size: |
4096
|
|
7FFD9B764000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2395785628.00007FFD9B764000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B764000
|
Size: |
4096
|
|
7FFD9B7A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1862344287.00007FFD9B7A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B7A0000
|
Size: |
40960
|
|
7FFD9BA30000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1866116242.00007FFD9BA30000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA30000
|
Size: |
65536
|
|
6E5000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2917448909.00000000006E5000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
6E5000
|
Size: |
24576
|
|
29BA97C0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1857675341.0000029BA97C0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA97C0000
|
Size: |
86016
|
|
2E3F9020000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1996926909.000002E3F9020000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3F9020000
|
Size: |
4096
|
|
1E6DA7A1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DA7A1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DA7A1000
|
Size: |
1126400
|
|
C76F0BB000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1729985136.000000C76F0BB000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C76F0BB000
|
Size: |
20480
|
|
14AF000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2890146865.00000000014AF000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
14AF000
|
Size: |
4096
|
|
7FFD9BA60000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1866591035.00007FFD9BA60000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA60000
|
Size: |
65536
|
|
2600000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000011.00000002.2472104144.0000000002600000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
2600000
|
Size: |
4096
|
|
1B01D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2955679279.000000001B01D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1B01D000
|
Size: |
12288
|
|
7FFD9B930000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.2963477553.00007FFD9B930000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B930000
|
Size: |
8192
|
|
7FFD9B820000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2304812814.00007FFD9B820000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B820000
|
Size: |
4096
|
|
7FFD9BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1865407816.00007FFD9BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA00000
|
Size: |
65536
|
|
2E3804CD000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E3804CD000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E3804CD000
|
Size: |
5779456
|
|
1E6DA8B6000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DA8B6000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DA8B6000
|
Size: |
176128
|
|
1390000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2887485529.0000000001390000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1390000
|
Size: |
4096
|
|
22AF05AB000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1753977586.0000022AF05AB000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AF05AB000
|
Size: |
258048
|
|
29B8F540000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1780273830.0000029B8F540000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29B8F540000
|
Size: |
8192
|
|
2EEC000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2394074092.0000000002EEC000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2EEC000
|
Size: |
8192
|
|
250000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000000.00000000.1661092755.0000000000250000.00000002.00000001.01000000.00000003.sdmp
|
TargetID: |
0
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
250000
|
Size: |
4096
|
|
1E6D7B12000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2043173654.000001E6D7B12000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6D7B12000
|
Size: |
167936
|
|
29B90F60000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1781915353.0000029B90F60000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B90F60000
|
Size: |
4096
|
|
1E6DAACB000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DAACB000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DAACB000
|
Size: |
385024
|
|
7FFD9B774000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2960920605.00007FFD9B774000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B774000
|
Size: |
8192
|
|
2E3FB48F000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2015650109.000002E3FB48F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FB48F000
|
Size: |
4096
|
|
2E3818F2000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E3818F2000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E3818F2000
|
Size: |
376832
|
|
1E6DB64D000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DB64D000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DB64D000
|
Size: |
49152
|
|
6F5000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2917448909.00000000006F5000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
6F5000
|
Size: |
45056
|
|
22AD7DF0000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000001.00000002.1731552256.0000022AD7DF0000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
22AD7DF0000
|
Size: |
4096
|
|
22AD6280000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1730538712.0000022AD6280000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AD6280000
|
Size: |
28672
|
|
10AF000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2389828650.00000000010AF000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
10AF000
|
Size: |
49152
|
|
22AD8FE6000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD8FE6000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD8FE6000
|
Size: |
237568
|
|
2E3F9350000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2005124654.000002E3F9350000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3F9350000
|
Size: |
16384
|
|
22AD9813000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD9813000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD9813000
|
Size: |
4763648
|
|
7FFD9B7AB000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2016732549.00007FFD9B7AB000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B7AB000
|
Size: |
4096
|
|
2E3F9139000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1997088361.000002E3F9139000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3F9139000
|
Size: |
483328
|
|
BA0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2383571314.0000000000BA0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
BA0000
|
Size: |
8192
|
|
12711000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2473764847.0000000012711000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
12711000
|
Size: |
4096
|
|
7FFD9BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2234015743.00007FFD9BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA00000
|
Size: |
65536
|
|
A20000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2922484935.0000000000A20000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
A20000
|
Size: |
12288
|
|
22AF04F7000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1753159059.0000022AF04F7000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AF04F7000
|
Size: |
8192
|
|
1E6F1F7D000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2220612851.000001E6F1F7D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6F1F7D000
|
Size: |
4096
|
|
1043000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2385271008.0000000001043000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1043000
|
Size: |
8192
|
|
22AF04B8000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1752996540.0000022AF04B8000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AF04B8000
|
Size: |
36864
|
|
7FFD9BA20000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2234761665.00007FFD9BA20000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA20000
|
Size: |
65536
|
|
12CA000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2302695935.00000000012CA000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
12CA000
|
Size: |
4096
|
|
C76EC7E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1729662966.000000C76EC7E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C76EC7E000
|
Size: |
8192
|
|
1E6D7B8A000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2043173654.000001E6D7B8A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6D7B8A000
|
Size: |
479232
|
|
7FFD9B846000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1862914976.00007FFD9B846000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B846000
|
Size: |
24576
|
|
EF4ADBE000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.2256469669.000000EF4ADBE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
EF4ADBE000
|
Size: |
8192
|
|
7FFD9B940000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000B.00000002.2230138550.00007FFD9B940000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B940000
|
Size: |
4096
|
|
A27DDCE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1780052456.000000A27DDCE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A27DDCE000
|
Size: |
8192
|
|
1E6DA980000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DA980000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DA980000
|
Size: |
303104
|
|
22AF02BB000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1752535239.0000022AF02BB000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AF02BB000
|
Size: |
278528
|
|
1200000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2299810094.0000000001200000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1200000
|
Size: |
73728
|
|
2E3FB425000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2014920026.000002E3FB425000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FB425000
|
Size: |
61440
|
|
7FFD9B846000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2017084176.00007FFD9B846000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B846000
|
Size: |
24576
|
|
88B947E000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2040982901.00000088B947E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
88B947E000
|
Size: |
8192
|
|
22AD8DB5000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD8DB5000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD8DB5000
|
Size: |
708608
|
|
7FFD9B773000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000001.00000002.1754949469.00007FFD9B773000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B773000
|
Size: |
4096
|
|
29B8F5BB000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1780302091.0000029B8F5BB000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29B8F5BB000
|
Size: |
20480
|
|
2E3F90EC000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1997088361.000002E3F90EC000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3F90EC000
|
Size: |
4096
|
|
2E3FB1FA000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2009997598.000002E3FB1FA000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FB1FA000
|
Size: |
102400
|
|
2E3FB47E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2015650109.000002E3FB47E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FB47E000
|
Size: |
40960
|
|
7FFD9BAC9000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2237898905.00007FFD9BAC9000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAC9000
|
Size: |
28672
|
|
7FFD9BA50000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1866433426.00007FFD9BA50000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA50000
|
Size: |
65536
|
|
13B0000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000013.00000002.2887582579.00000000013B0000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
13B0000
|
Size: |
4096
|
|
1E6D7AA0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2042926086.000001E6D7AA0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6D7AA0000
|
Size: |
4096
|
|
22AF0200000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1751830883.0000022AF0200000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AF0200000
|
Size: |
282624
|
|
2DC0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2393851628.0000000002DC0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2DC0000
|
Size: |
4096
|
|
128A000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2301371990.000000000128A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
128A000
|
Size: |
147456
|
|
1E6DAB2C000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DAB2C000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DAB2C000
|
Size: |
753664
|
|
1B3FE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2959310342.000000001B3FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1B3FE000
|
Size: |
8192
|
|
29B8F567000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1780302091.0000029B8F567000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29B8F567000
|
Size: |
200704
|
|
7FFD9BA70000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1866774022.00007FFD9BA70000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA70000
|
Size: |
65536
|
|
EF1000
|
stack
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2383750995.0000000000EF1000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
EF1000
|
Size: |
61440
|
|
A27D27E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1779887761.000000A27D27E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A27D27E000
|
Size: |
8192
|
|
E4D630E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888350039.000000E4D630E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
E4D630E000
|
Size: |
8192
|
|
7FFD9BBF0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1759271428.00007FFD9BBF0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BBF0000
|
Size: |
65536
|
|
12AF000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2302034040.00000000012AF000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
12AF000
|
Size: |
102400
|
|
7FFD9B7AD000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000011.00000002.2474819322.00007FFD9B7AD000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B7AD000
|
Size: |
4096
|
|
7FFD9B826000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2228271218.00007FFD9B826000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B826000
|
Size: |
24576
|
|
7FFD9B7BC000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000010.00000002.2396167692.00007FFD9B7BC000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B7BC000
|
Size: |
4096
|
|
7FFD9B876000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000011.00000002.2475065913.00007FFD9B876000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B876000
|
Size: |
4096
|
|
12718000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2473764847.0000000012718000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
12718000
|
Size: |
4096
|
|
123F000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2300577411.000000000123F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
123F000
|
Size: |
4096
|
|
2E3FB34F000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2011460042.000002E3FB34F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FB34F000
|
Size: |
86016
|
|
29B91140000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000004.00000002.1782297838.0000029B91140000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
29B91140000
|
Size: |
4096
|
|
7FFD9BA20000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1865899838.00007FFD9BA20000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA20000
|
Size: |
65536
|
|
7FFD9BAD0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1757943334.00007FFD9BAD0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAD0000
|
Size: |
28672
|
|
1C002000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2474201569.000000001C002000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C002000
|
Size: |
4096
|
|
7FFD9B790000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2304694109.00007FFD9B790000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B790000
|
Size: |
4096
|
|
31AC000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2303296375.00000000031AC000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
31AC000
|
Size: |
40960
|
|
E4D553F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1887879089.000000E4D553F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
E4D553F000
|
Size: |
4096
|
|
1E6D7CE0000
|
heap
|
page readonly
|
|
|
|
Name: |
0000000B.00000002.2046688654.000001E6D7CE0000.00000002.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page readonly
|
Base address: |
1E6D7CE0000
|
Size: |
4096
|
|
1013000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2384641628.0000000001013000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1013000
|
Size: |
57344
|
|
2E3FB15D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2008324277.000002E3FB15D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FB15D000
|
Size: |
28672
|
|
29B922E8000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782408781.0000029B922E8000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B922E8000
|
Size: |
237568
|
|
7E0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2465075756.00000000007E0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
7E0000
|
Size: |
4096
|
|
29BA11F1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1842980861.0000029BA11F1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29BA11F1000
|
Size: |
237568
|
|
7FFD9BBD0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1759194277.00007FFD9BBD0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BBD0000
|
Size: |
36864
|
|
29BA14C7000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1842980861.0000029BA14C7000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29BA14C7000
|
Size: |
270336
|
|
7FFD9BB70000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1758339141.00007FFD9BB70000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BB70000
|
Size: |
65536
|
|
88B967E000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2041250286.00000088B967E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
88B967E000
|
Size: |
8192
|
|
1038000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2385271008.0000000001038000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1038000
|
Size: |
4096
|
|
7FFD9B9E0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2019518523.00007FFD9B9E0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B9E0000
|
Size: |
65536
|
|
7FFD9B794000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2016490069.00007FFD9B794000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B794000
|
Size: |
36864
|
|
1422000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2888817459.0000000001422000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1422000
|
Size: |
40960
|
|
2E3FB6F0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2015951377.000002E3FB6F0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FB6F0000
|
Size: |
4096
|
|
7FFD9B790000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1861851142.00007FFD9B790000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B790000
|
Size: |
4096
|
|
2E3FB461000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2015338704.000002E3FB461000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FB461000
|
Size: |
45056
|
|
25F0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2471699091.00000000025F0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
25F0000
|
Size: |
4096
|
|
1E6D7B08000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2043173654.000001E6D7B08000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6D7B08000
|
Size: |
36864
|
|
7FFD9B9E0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1865052726.00007FFD9B9E0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B9E0000
|
Size: |
65536
|
|
1B200000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2955962181.000000001B200000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1B200000
|
Size: |
348160
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
May try to detect the virtual machine to hinder analysis (VM artifact strings found in memory) |
Malware Analysis System Evasion |
Security Software Discovery
|
|
1502000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2393579416.0000000001502000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1502000
|
Size: |
4096
|
|
22AD8C34000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD8C34000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD8C34000
|
Size: |
475136
|
|
1A680000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2955382636.000000001A680000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1A680000
|
Size: |
4096
|
|
7FFD9B890000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.2962420667.00007FFD9B890000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B890000
|
Size: |
57344
|
|
7FFD9B92A000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2229625673.00007FFD9B92A000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B92A000
|
Size: |
24576
|
|
7FFD9B7AB000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1862344287.00007FFD9B7AB000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B7AB000
|
Size: |
4096
|
|
29B91F32000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782408781.0000029B91F32000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B91F32000
|
Size: |
2252800
|
|
22AD8F58000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD8F58000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD8F58000
|
Size: |
172032
|
|
1E6F1BC3000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2217132527.000001E6F1BC3000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6F1BC3000
|
Size: |
151552
|
|
2B59EB80000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.2256521503.000002B59EB80000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2B59EB80000
|
Size: |
8192
|
|
88B91A3000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2040758106.00000088B91A3000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
88B91A3000
|
Size: |
53248
|
|
7FFD9BBF0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2023585918.00007FFD9BBF0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BBF0000
|
Size: |
8192
|
|
7FFD9B880000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000013.00000002.2894114208.00007FFD9B880000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B880000
|
Size: |
12288
|
|
7FFD9BAF2000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1867726464.00007FFD9BAF2000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAF2000
|
Size: |
20480
|
|
7FFD9BA40000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1757349932.00007FFD9BA40000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA40000
|
Size: |
65536
|
|
1413000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2888817459.0000000001413000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1413000
|
Size: |
57344
|
|
7FFD9BBA0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2022905694.00007FFD9BBA0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BBA0000
|
Size: |
32768
|
|
2E3F9134000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1997088361.000002E3F9134000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3F9134000
|
Size: |
16384
|
|
88B95F9000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2041127504.00000088B95F9000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
88B95F9000
|
Size: |
28672
|
|
EF4AD3E000
|
unkown
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.2256442397.000000EF4AD3E000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
EF4AD3E000
|
Size: |
8192
|
|
C76ECFE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1729705138.000000C76ECFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C76ECFE000
|
Size: |
8192
|
|
29BA9634000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1854965485.0000029BA9634000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA9634000
|
Size: |
151552
|
|
22AF0548000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1753465003.0000022AF0548000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AF0548000
|
Size: |
294912
|
|
7FFD9B978000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1863971374.00007FFD9B978000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B978000
|
Size: |
4096
|
|
E4D54B9000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1887799356.000000E4D54B9000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
E4D54B9000
|
Size: |
28672
|
|
6F1000
|
stack
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2464746703.00000000006F1000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
6F1000
|
Size: |
61440
|
|
E4D608F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888052146.000000E4D608F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
E4D608F000
|
Size: |
4096
|
|
29BA9949000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1859541911.0000029BA9949000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA9949000
|
Size: |
733184
|
|
1227000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2300120113.0000000001227000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1227000
|
Size: |
4096
|
|
1E6D7B40000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2043173654.000001E6D7B40000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6D7B40000
|
Size: |
4096
|
|
7FFD9B79D000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000011.00000002.2474607312.00007FFD9B79D000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B79D000
|
Size: |
4096
|
|
7FFD9BA40000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1866280087.00007FFD9BA40000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA40000
|
Size: |
65536
|
|
15D0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2302976352.00000000015D0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15D0000
|
Size: |
4096
|
|
7FFD9BB9E000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2022831464.00007FFD9BB9E000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BB9E000
|
Size: |
8192
|
|
7FFD9BAC0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2237898905.00007FFD9BAC0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAC0000
|
Size: |
4096
|
|
2E3FAB77000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2005525426.000002E3FAB77000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FAB77000
|
Size: |
798720
|
|
29B92284000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782408781.0000029B92284000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B92284000
|
Size: |
401408
|
|
1E6D96AC000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2047930982.000001E6D96AC000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6D96AC000
|
Size: |
798720
|
|
29B8F5E8000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1780302091.0000029B8F5E8000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29B8F5E8000
|
Size: |
380928
|
|
2E381DDD000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1888397655.000002E381DDD000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2E381DDD000
|
Size: |
61440
|
|
7FFD9BAC4000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1757823370.00007FFD9BAC4000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAC4000
|
Size: |
4096
|
|
7FFD9B794000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1861946954.00007FFD9B794000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B794000
|
Size: |
36864
|
|
7FFD9B78B000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1755071227.00007FFD9B78B000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B78B000
|
Size: |
8192
|
|
88B977D000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2041450529.00000088B977D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
88B977D000
|
Size: |
12288
|
|
22AD8AAA000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD8AAA000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD8AAA000
|
Size: |
1609728
|
|
22AD6380000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1730919431.0000022AD6380000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AD6380000
|
Size: |
8192
|
|
22AD62BF000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1730538712.0000022AD62BF000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AD62BF000
|
Size: |
4096
|
|
29B92A2B000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782408781.0000029B92A2B000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B92A2B000
|
Size: |
147456
|
|
2B59EC30000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.2256630323.000002B59EC30000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2B59EC30000
|
Size: |
20480
|
|
7FFD9BB20000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2022569872.00007FFD9BB20000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BB20000
|
Size: |
45056
|
|
1AB8D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2473974907.000000001AB8D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1AB8D000
|
Size: |
12288
|
|
7FFD9BBC0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2240292248.00007FFD9BBC0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BBC0000
|
Size: |
4096
|
|
1E6DB643000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DB643000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DB643000
|
Size: |
8192
|
|
2E3FB240000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2011310670.000002E3FB240000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FB240000
|
Size: |
32768
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
29B8F646000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1780302091.0000029B8F646000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29B8F646000
|
Size: |
49152
|
|
7FFD9B780000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2227786045.00007FFD9B780000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B780000
|
Size: |
40960
|
|
7FFD9B774000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1754968544.00007FFD9B774000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B774000
|
Size: |
36864
|
|
7FFD9B790000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1755166622.00007FFD9B790000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B790000
|
Size: |
4096
|
|
701000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2917448909.0000000000701000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
701000
|
Size: |
8192
|
|
7FFD9B774000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2227383576.00007FFD9B774000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B774000
|
Size: |
36864
|
|
131A1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2303793421.00000000131A1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
131A1000
|
Size: |
4096
|
|
7FFD9BAF5000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2021959693.00007FFD9BAF5000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAF5000
|
Size: |
4096
|
|
1E6D9695000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2047757444.000001E6D9695000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6D9695000
|
Size: |
20480
|
|
1E6D7CF0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2046783521.000001E6D7CF0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6D7CF0000
|
Size: |
4096
|
|
22AF0870000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1754790611.0000022AF0870000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AF0870000
|
Size: |
4096
|
|
11E0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2299773067.00000000011E0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
11E0000
|
Size: |
4096
|
|
22AD64B0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731184771.0000022AD64B0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD64B0000
|
Size: |
65536
|
|
7FFD9B77D000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.2960974445.00007FFD9B77D000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B77D000
|
Size: |
12288
|
|
1E6E9B15000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2190496316.000001E6E9B15000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6E9B15000
|
Size: |
4096
|
|
131A8000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2303793421.00000000131A8000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
131A8000
|
Size: |
4096
|
|
1BFAE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2960372645.000000001BFAE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1BFAE000
|
Size: |
8192
|
|
22AF0300000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1752852357.0000022AF0300000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AF0300000
|
Size: |
4096
|
|
32A1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2891430695.00000000032A1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
32A1000
|
Size: |
40960
|
|
9C3000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2922250341.00000000009C3000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
9C3000
|
Size: |
12288
|
|
103C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.2385271008.000000000103C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
103C000
|
Size: |
16384
|
|
7FFD9BA70000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1757587237.00007FFD9BA70000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA70000
|
Size: |
24576
|
|
29BA9A3F000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1861333341.0000029BA9A3F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA9A3F000
|
Size: |
24576
|
|
7FFD9B780000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2961054921.00007FFD9B780000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B780000
|
Size: |
8192
|
|
22AD9CA0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731672953.0000022AD9CA0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
22AD9CA0000
|
Size: |
143360
|
|
1180000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2299643362.0000000001180000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1180000
|
Size: |
4096
|
|
29B92FC5000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1782408781.0000029B92FC5000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29B92FC5000
|
Size: |
118784
|
|
7FFD9BB00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1758147732.00007FFD9BB00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BB00000
|
Size: |
36864
|
|
7FFD9BA90000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2237469283.00007FFD9BA90000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA90000
|
Size: |
16384
|
|
1BFFE000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.2304274937.000000001BFFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1BFFE000
|
Size: |
8192
|
|
22AD6305000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1730538712.0000022AD6305000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AD6305000
|
Size: |
12288
|
|
1E6E9851000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2190496316.000001E6E9851000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6E9851000
|
Size: |
229376
|
|
7FFD9BBD0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2240583807.00007FFD9BBD0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BBD0000
|
Size: |
8192
|
|
1ABDC000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2955557216.000000001ABDC000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1ABDC000
|
Size: |
16384
|
|
1E6F1F18000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2220612851.000001E6F1F18000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6F1F18000
|
Size: |
376832
|
|
E4D4DED000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1887125169.000000E4D4DED000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
E4D4DED000
|
Size: |
12288
|
|
7FFD9B990000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2018716438.00007FFD9B990000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B990000
|
Size: |
65536
|
|
22AD7EB5000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1731628234.0000022AD7EB5000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AD7EB5000
|
Size: |
24576
|
|
7FFD9BBC0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1759072838.00007FFD9BBC0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BBC0000
|
Size: |
65536
|
|
2711000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2472748495.0000000002711000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2711000
|
Size: |
40960
|
|
7FFD9BB14000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2022330348.00007FFD9BB14000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BB14000
|
Size: |
49152
|
|
2E3FB478000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2015552152.000002E3FB478000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3FB478000
|
Size: |
4096
|
|
1E6DB176000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DB176000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DB176000
|
Size: |
4763648
|
|
7FFD9B793000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000004.00000002.1861916281.00007FFD9B793000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B793000
|
Size: |
4096
|
|
29BA98D6000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1858058993.0000029BA98D6000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
29BA98D6000
|
Size: |
28672
|
|
22AF0606000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1753977586.0000022AF0606000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22AF0606000
|
Size: |
53248
|
|
1E6DAFA9000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2054736442.000001E6DAFA9000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1E6DAFA9000
|
Size: |
675840
|
|
14AD000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.2890146865.00000000014AD000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
14AD000
|
Size: |
4096
|
|
7FFD9BAC9000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1757823370.00007FFD9BAC9000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BAC9000
|
Size: |
28672
|
|
704000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2917448909.0000000000704000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
704000
|
Size: |
28672
|
|
29BA9790000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000004.00000002.1857496443.0000029BA9790000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
29BA9790000
|
Size: |
20480
|
|
2E3F90B8000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.1997088361.000002E3F90B8000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2E3F90B8000
|
Size: |
204800
|
|
7FFD9B84C000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000004.00000002.1862985027.00007FFD9B84C000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FFD9B84C000
|
Size: |
61440
|
|
7FFD9BA50000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2235856570.00007FFD9BA50000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9BA50000
|
Size: |
65536
|
|
1E6F1F9B000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.2220612851.000001E6F1F9B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E6F1F9B000
|
Size: |
77824
|
|
7FFD9B990000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1756420217.00007FFD9B990000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B990000
|
Size: |
65536
|
|
7FFD9B794000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000011.00000002.2474560702.00007FFD9B794000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FFD9B794000
|
Size: |
4096
|
|