F32000
|
unkown
|
page readonly
|
 |
|
|
Name: |
00000000.00000000.1040177506.0000000000F32000.00000002.00000001.01000000.00000003.sdmp
|
TargetID: |
0
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
F32000
|
Size: |
53248
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
Yara detected Njrat |
AV Detection, E-Banking Fraud, Stealing of Sensitive Information, Remote Access Functionality |
|
Yara signature match |
System Summary |
|
|
186A000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.3485694500.000000000186A000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
186A000
|
Size: |
4096
|
|
1AE0000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.3486136321.0000000001AE0000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
1AE0000
|
Size: |
8192
|
|
6EAE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3503113465.0000000006EAE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
6EAE000
|
Size: |
8192
|
|
187A000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.3485730323.000000000187A000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
187A000
|
Size: |
4096
|
|
CF2D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3520156895.000000000CF2D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
CF2D000
|
Size: |
12288
|
|
A16D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3508400765.000000000A16D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A16D000
|
Size: |
12288
|
|
E70B000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E70B000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E70B000
|
Size: |
147456
|
|
65ED000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3502396757.00000000065ED000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
65ED000
|
Size: |
12288
|
|
AFA000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000003.00000002.1292268046.0000000000AFA000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
AFA000
|
Size: |
8192
|
|
4A00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1421736816.0000000004A00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4A00000
|
Size: |
8192
|
|
10DF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1501322639.00000000010DF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
10DF000
|
Size: |
4096
|
|
185C000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.3485608137.000000000185C000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
185C000
|
Size: |
4096
|
|
52C6000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.00000000052C6000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
52C6000
|
Size: |
147456
|
|
4A23000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004A23000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4A23000
|
Size: |
143360
|
|
1880000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3485792311.0000000001880000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1880000
|
Size: |
4096
|
|
57CE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1329150344.00000000057CE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
57CE000
|
Size: |
8192
|
|
3982000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1418324526.0000000003982000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
3982000
|
Size: |
172032
|
|
7B6E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3504519674.0000000007B6E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
7B6E000
|
Size: |
8192
|
|
6EED000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3503162821.0000000006EED000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
6EED000
|
Size: |
12288
|
|
4E8D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1324042667.0000000004E8D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
4E8D000
|
Size: |
12288
|
|
32FC000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1501946136.00000000032FC000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
32FC000
|
Size: |
106496
|
|
583E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3500137837.000000000583E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
583E000
|
Size: |
8192
|
|
A2B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1398778472.0000000000A2B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
A2B000
|
Size: |
4096
|
|
880000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1283716897.0000000000880000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
880000
|
Size: |
4096
|
|
4B00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1322466402.0000000004B00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4B00000
|
Size: |
65536
|
|
3631000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3486734567.0000000003631000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
3631000
|
Size: |
4096
|
|
F2AE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3531925141.000000000F2AE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
F2AE000
|
Size: |
8192
|
|
BFED000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3519001212.000000000BFED000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
BFED000
|
Size: |
12288
|
|
AE72000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000AE72000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
AE72000
|
Size: |
53248
|
|
10931000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3532227793.0000000010931000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
10931000
|
Size: |
143360
|
|
1710000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3485164411.0000000001710000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1710000
|
Size: |
16384
|
|
86AD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3505564538.00000000086AD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
86AD000
|
Size: |
12288
|
|
C12E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3519090151.000000000C12E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C12E000
|
Size: |
8192
|
|
4FBD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1425033124.0000000004FBD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
4FBD000
|
Size: |
12288
|
|
D50000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1500574230.0000000000D50000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
D50000
|
Size: |
4096
|
|
6B60000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3502890641.0000000006B60000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
6B60000
|
Size: |
4096
|
|
4BDF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1422806196.0000000004BDF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
4BDF000
|
Size: |
4096
|
|
74ED000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3503658460.00000000074ED000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
74ED000
|
Size: |
12288
|
|
A62D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3508782237.000000000A62D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A62D000
|
Size: |
12288
|
|
5236000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000005236000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
5236000
|
Size: |
147456
|
|
3885000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1318795093.0000000003885000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
3885000
|
Size: |
172032
|
|
AEC7000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000AEC7000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
AEC7000
|
Size: |
147456
|
|
AB2D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3509258734.000000000AB2D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
AB2D000
|
Size: |
12288
|
|
88EE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3505812282.00000000088EE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
88EE000
|
Size: |
8192
|
|
D56E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3520801988.000000000D56E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
D56E000
|
Size: |
8192
|
|
996E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3507821546.000000000996E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
996E000
|
Size: |
8192
|
|
B2C9000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B2C9000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B2C9000
|
Size: |
147456
|
|
4FF5000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004FF5000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4FF5000
|
Size: |
143360
|
|
B821000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B821000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B821000
|
Size: |
69632
|
|
AF2000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000003.00000002.1291822991.0000000000AF2000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
AF2000
|
Size: |
4096
|
|
1450000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000008.00000002.1501860748.0000000001450000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
1450000
|
Size: |
4096
|
|
6ABE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3502764122.0000000006ABE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
6ABE000
|
Size: |
8192
|
|
51FE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1425982099.00000000051FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
51FE000
|
Size: |
8192
|
|
113E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1501656594.000000000113E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
113E000
|
Size: |
8192
|
|
4741000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004741000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4741000
|
Size: |
143360
|
|
55BE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1429547173.00000000055BE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
55BE000
|
Size: |
8192
|
|
1C90000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3486402903.0000000001C90000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C90000
|
Size: |
65536
|
|
ADB1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000ADB1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
ADB1000
|
Size: |
143360
|
|
944000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1285730771.0000000000944000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
944000
|
Size: |
77824
|
|
C7AD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3519615336.000000000C7AD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C7AD000
|
Size: |
12288
|
|
AFE7000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000AFE7000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
AFE7000
|
Size: |
147456
|
|
5155000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000005155000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
5155000
|
Size: |
147456
|
|
E0D1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E0D1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E0D1000
|
Size: |
147456
|
|
B945000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B945000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B945000
|
Size: |
143360
|
|
B32000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000003.00000002.1304820935.0000000000B32000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
B32000
|
Size: |
4096
|
|
3821000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1318795093.0000000003821000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
3821000
|
Size: |
8192
|
|
2B6F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1501904905.0000000002B6F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
2B6F000
|
Size: |
4096
|
|
C3AE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3519261064.000000000C3AE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C3AE000
|
Size: |
8192
|
|
84E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1393059514.000000000084E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
84E000
|
Size: |
8192
|
|
E1F2000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E1F2000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E1F2000
|
Size: |
143360
|
|
73AD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3503568776.00000000073AD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
73AD000
|
Size: |
12288
|
|
1C2D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3486246598.0000000001C2D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1C2D000
|
Size: |
12288
|
|
3D4F000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3486734567.0000000003D4F000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
3D4F000
|
Size: |
69632
|
|
4F6A000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004F6A000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4F6A000
|
Size: |
143360
|
|
DF66000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000DF66000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
DF66000
|
Size: |
16384
|
|
4656000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004656000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4656000
|
Size: |
147456
|
|
1430000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3483947076.0000000001430000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1430000
|
Size: |
36864
|
|
167D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3485072765.000000000167D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
167D000
|
Size: |
12288
|
|
6070000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3501068086.0000000006070000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
6070000
|
Size: |
266240
|
|
EB0F000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000EB0F000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
EB0F000
|
Size: |
94208
|
|
90AD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3506930385.00000000090AD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
90AD000
|
Size: |
12288
|
|
CF6000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1500498280.0000000000CF6000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
CF6000
|
Size: |
8192
|
|
CB2E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3519870564.000000000CB2E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
CB2E000
|
Size: |
8192
|
|
CCAD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3519977145.000000000CCAD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
CCAD000
|
Size: |
12288
|
|
4CDE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1423046464.0000000004CDE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
4CDE000
|
Size: |
8192
|
|
B8BA000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B8BA000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B8BA000
|
Size: |
143360
|
|
BEED000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3518943714.000000000BEED000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
BEED000
|
Size: |
12288
|
|
A4ED000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3508645094.000000000A4ED000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A4ED000
|
Size: |
12288
|
|
842E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3505349096.000000000842E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
842E000
|
Size: |
8192
|
|
1830000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3485314567.0000000001830000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1830000
|
Size: |
8192
|
|
7A2E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3504369348.0000000007A2E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
7A2E000
|
Size: |
8192
|
|
4B2C000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004B2C000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4B2C000
|
Size: |
147456
|
|
C8AE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3519677399.000000000C8AE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C8AE000
|
Size: |
8192
|
|
B9F0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B9F0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B9F0000
|
Size: |
4096
|
|
69BD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3502681828.00000000069BD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
69BD000
|
Size: |
12288
|
|
1BEE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3486222151.0000000001BEE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1BEE000
|
Size: |
8192
|
|
ACAE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3509398028.000000000ACAE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
ACAE000
|
Size: |
8192
|
|
1867000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.3485677354.0000000001867000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
1867000
|
Size: |
4096
|
|
623C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3501368797.000000000623C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
623C000
|
Size: |
4096
|
|
946D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3507242094.000000000946D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
946D000
|
Size: |
12288
|
|
8A2E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3506054288.0000000008A2E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8A2E000
|
Size: |
8192
|
|
C52D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3519408421.000000000C52D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C52D000
|
Size: |
12288
|
|
CDAE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3520034456.000000000CDAE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
CDAE000
|
Size: |
8192
|
|
632C000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3501956683.000000000632C000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
632C000
|
Size: |
16384
|
|
547E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1427744125.000000000547E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
547E000
|
Size: |
8192
|
|
A26D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3508455491.000000000A26D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A26D000
|
Size: |
12288
|
|
6B3D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3502818187.0000000006B3D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
6B3D000
|
Size: |
12288
|
|
E862000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E862000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E862000
|
Size: |
143360
|
|
B99A000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B99A000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B99A000
|
Size: |
147456
|
|
38C1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1418324526.00000000038C1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
38C1000
|
Size: |
8192
|
|
B57000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000003.00000002.1305980917.0000000000B57000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
B57000
|
Size: |
4096
|
|
5120000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000005120000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
5120000
|
Size: |
143360
|
|
143C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3483947076.000000000143C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
143C000
|
Size: |
12288
|
|
38C4000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1418324526.00000000038C4000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
38C4000
|
Size: |
180224
|
|
E2D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1501097583.0000000000E2D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
E2D000
|
Size: |
65536
|
|
5C8E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1528636524.0000000005C8E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
5C8E000
|
Size: |
8192
|
|
A9ED000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3509157994.000000000A9ED000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A9ED000
|
Size: |
12288
|
|
1348000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3483947076.0000000001348000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1348000
|
Size: |
16384
|
|
49ED000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.00000000049ED000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
49ED000
|
Size: |
143360
|
|
590E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1329628644.000000000590E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
590E000
|
Size: |
8192
|
|
A8AD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3509061208.000000000A8AD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A8AD000
|
Size: |
12288
|
|
24DE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1308087159.00000000024DE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
24DE000
|
Size: |
8192
|
|
B40000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1305487376.0000000000B40000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
B40000
|
Size: |
16384
|
|
E9B8000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E9B8000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E9B8000
|
Size: |
147456
|
|
B70F000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B70F000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B70F000
|
Size: |
143360
|
|
4BCD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1323089668.0000000004BCD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
4BCD000
|
Size: |
12288
|
|
DD0000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000006.00000002.1409197748.0000000000DD0000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
DD0000
|
Size: |
4096
|
|
109A6000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3532227793.00000000109A6000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
109A6000
|
Size: |
147456
|
|
49BF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1321634773.00000000049BF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
49BF000
|
Size: |
4096
|
|
5D8E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1528796427.0000000005D8E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
5D8E000
|
Size: |
8192
|
|
4FBF000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004FBF000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4FBF000
|
Size: |
143360
|
|
8FB000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1285730771.00000000008FB000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
8FB000
|
Size: |
4096
|
|
ACD6000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3509434860.000000000ACD6000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
ACD6000
|
Size: |
8192
|
|
520E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1326273336.000000000520E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
520E000
|
Size: |
8192
|
|
730000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1392705136.0000000000730000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
730000
|
Size: |
4096
|
|
4C2D000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004C2D000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4C2D000
|
Size: |
143360
|
|
47EC000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.00000000047EC000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
47EC000
|
Size: |
143360
|
|
E17C000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E17C000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E17C000
|
Size: |
147456
|
|
87E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1283101257.000000000087E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
87E000
|
Size: |
8192
|
|
BEAD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3518912631.000000000BEAD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
BEAD000
|
Size: |
12288
|
|
E09C000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E09C000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E09C000
|
Size: |
143360
|
|
8F6000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000006.00000002.1394742320.00000000008F6000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
8F6000
|
Size: |
4096
|
|
E5B5000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E5B5000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E5B5000
|
Size: |
143360
|
|
87EE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3505714010.00000000087EE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
87EE000
|
Size: |
8192
|
|
DF11000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000DF11000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
DF11000
|
Size: |
143360
|
|
3EB000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1278588134.00000000003EB000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3EB000
|
Size: |
20480
|
|
580D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1526700298.000000000580D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
580D000
|
Size: |
12288
|
|
6370000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.3502070465.0000000006370000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
6370000
|
Size: |
12288
|
|
149E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3484954705.000000000149E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
149E000
|
Size: |
8192
|
|
510D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1325947079.000000000510D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
510D000
|
Size: |
12288
|
|
6F9000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1279138191.00000000006F9000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
6F9000
|
Size: |
28672
|
|
568E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1526057727.000000000568E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
568E000
|
Size: |
8192
|
|
4962000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004962000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4962000
|
Size: |
143360
|
|
4A58000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004A58000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4A58000
|
Size: |
147456
|
|
529E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1516432646.000000000529E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
529E000
|
Size: |
8192
|
|
DFC000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000008.00000002.1501062644.0000000000DFC000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
DFC000
|
Size: |
4096
|
|
F30000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000000.00000000.1040159180.0000000000F30000.00000002.00000001.01000000.00000003.sdmp
|
TargetID: |
0
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
F30000
|
Size: |
4096
|
|
4D44000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004D44000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4D44000
|
Size: |
143360
|
|
3FB4000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1512021710.0000000003FB4000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
3FB4000
|
Size: |
8192
|
|
B440000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B440000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B440000
|
Size: |
143360
|
|
BEE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1306949210.0000000000BEE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
BEE000
|
Size: |
8192
|
|
F40000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000000.00000000.1040177506.0000000000F40000.00000002.00000001.01000000.00000003.sdmp
|
TargetID: |
0
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
F40000
|
Size: |
4096
|
|
F16E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3531838113.000000000F16E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
F16E000
|
Size: |
8192
|
|
4AD0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1422289531.0000000004AD0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
4AD0000
|
Size: |
4096
|
|
A00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1396643924.0000000000A00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
A00000
|
Size: |
12288
|
|
CC6E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3519952495.000000000CC6E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
CC6E000
|
Size: |
8192
|
|
B093000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B093000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B093000
|
Size: |
143360
|
|
518B000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.000000000518B000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
518B000
|
Size: |
143360
|
|
524E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1326504391.000000000524E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
524E000
|
Size: |
8192
|
|
AC6D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3509357415.000000000AC6D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
AC6D000
|
Size: |
12288
|
|
1364000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3483947076.0000000001364000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1364000
|
Size: |
684032
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
May try to detect the virtual machine to hinder analysis (VM artifact strings found in memory) |
Malware Analysis System Evasion |
Security Software Discovery
|
URLs found in memory or binary data |
Networking |
|
|
C2E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1307534886.0000000000C2E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C2E000
|
Size: |
8192
|
|
8FA000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000006.00000002.1395062831.00000000008FA000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
8FA000
|
Size: |
4096
|
|
54CA000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.00000000054CA000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
54CA000
|
Size: |
139264
|
|
490C000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.000000000490C000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
490C000
|
Size: |
143360
|
|
4AA1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004AA1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4AA1000
|
Size: |
143360
|
|
DCEE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522659618.000000000DCEE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
DCEE000
|
Size: |
8192
|
|
914000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1285730771.0000000000914000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
914000
|
Size: |
192512
|
|
5A50000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1527599078.0000000005A50000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
5A50000
|
Size: |
221184
|
|
1850000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3485442133.0000000001850000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1850000
|
Size: |
8192
|
|
5FEE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3500944989.0000000005FEE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
5FEE000
|
Size: |
8192
|
|
6D6E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3503000943.0000000006D6E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
6D6E000
|
Size: |
8192
|
|
B5B000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000003.00000002.1306391449.0000000000B5B000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
B5B000
|
Size: |
4096
|
|
117E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1501674683.000000000117E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
117E000
|
Size: |
8192
|
|
50BE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1425423101.00000000050BE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
50BE000
|
Size: |
8192
|
|
AE0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1290545966.0000000000AE0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
AE0000
|
Size: |
8192
|
|
E0A000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000008.00000002.1501079697.0000000000E0A000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
E0A000
|
Size: |
4096
|
|
5A4E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1329907123.0000000005A4E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
5A4E000
|
Size: |
8192
|
|
ADE6000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000ADE6000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
ADE6000
|
Size: |
147456
|
|
F06E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3531782745.000000000F06E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
F06E000
|
Size: |
8192
|
|
766D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3503856744.000000000766D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
766D000
|
Size: |
12288
|
|
55B3000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.00000000055B3000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
55B3000
|
Size: |
147456
|
|
D02E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3520218931.000000000D02E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
D02E000
|
Size: |
8192
|
|
98B000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1500432398.000000000098B000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
98B000
|
Size: |
20480
|
|
4796000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004796000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4796000
|
Size: |
147456
|
|
A76D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3508899637.000000000A76D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A76D000
|
Size: |
12288
|
|
4D99000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004D99000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4D99000
|
Size: |
147456
|
|
B1C000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000003.00000002.1302926018.0000000000B1C000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
B1C000
|
Size: |
4096
|
|
802D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3504893358.000000000802D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
802D000
|
Size: |
12288
|
|
7B2D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3504462487.0000000007B2D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
7B2D000
|
Size: |
12288
|
|
1842000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.3485383177.0000000001842000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
1842000
|
Size: |
8192
|
|
8A6E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3506118958.0000000008A6E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8A6E000
|
Size: |
8192
|
|
16BD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3485105510.00000000016BD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
16BD000
|
Size: |
12288
|
|
C62E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3519470441.000000000C62E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C62E000
|
Size: |
8192
|
|
4EEF000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004EEF000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4EEF000
|
Size: |
16384
|
|
906E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3506896094.000000000906E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
906E000
|
Size: |
8192
|
|
4AD7000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004AD7000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4AD7000
|
Size: |
143360
|
|
E10000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1501097583.0000000000E10000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
E10000
|
Size: |
24576
|
|
594D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1527109625.000000000594D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
594D000
|
Size: |
12288
|
|
A3AD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3508545800.000000000A3AD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A3AD000
|
Size: |
12288
|
|
1280000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1501840835.0000000001280000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1280000
|
Size: |
16384
|
|
B9E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1306674957.0000000000B9E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B9E000
|
Size: |
8192
|
|
992D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3507767407.000000000992D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
992D000
|
Size: |
12288
|
|
B182000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B182000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B182000
|
Size: |
147456
|
|
B00000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1293029159.0000000000B00000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
B00000
|
Size: |
16384
|
|
E474000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E474000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E474000
|
Size: |
53248
|
|
DBAD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522364017.000000000DBAD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
DBAD000
|
Size: |
12288
|
|
5BAE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3500465034.0000000005BAE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
5BAE000
|
Size: |
8192
|
|
DF6000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000008.00000002.1501003387.0000000000DF6000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
DF6000
|
Size: |
4096
|
|
C8ED000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3519726490.000000000C8ED000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C8ED000
|
Size: |
12288
|
|
5DCE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1528914854.0000000005DCE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
5DCE000
|
Size: |
8192
|
|
3824000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1318795093.0000000003824000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
3824000
|
Size: |
184320
|
|
725000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1280139165.0000000000725000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
725000
|
Size: |
12288
|
|
E047000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E047000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E047000
|
Size: |
143360
|
|
CF9000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1500498280.0000000000CF9000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
CF9000
|
Size: |
28672
|
|
184A000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.3485422632.000000000184A000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
184A000
|
Size: |
8192
|
|
8C0000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000003.00000002.1284298878.00000000008C0000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
8C0000
|
Size: |
4096
|
|
9D0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1396203846.00000000009D0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
9D0000
|
Size: |
16384
|
|
920000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1395816282.0000000000920000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
920000
|
Size: |
16384
|
|
EBB8000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000EBB8000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
EBB8000
|
Size: |
147456
|
|
4F25000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004F25000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4F25000
|
Size: |
143360
|
|
C16E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3519120009.000000000C16E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C16E000
|
Size: |
8192
|
|
5534000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000005534000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
5534000
|
Size: |
147456
|
|
8E8000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1285730771.00000000008E8000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
8E8000
|
Size: |
73728
|
|
191E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3485980743.000000000191E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
191E000
|
Size: |
8192
|
|
8DEE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3506588138.0000000008DEE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8DEE000
|
Size: |
8192
|
|
EB58000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000EB58000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
EB58000
|
Size: |
4096
|
|
4E44000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004E44000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4E44000
|
Size: |
147456
|
|
558A000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.000000000558A000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
558A000
|
Size: |
12288
|
|
3FD6000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1512021710.0000000003FD6000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
3FD6000
|
Size: |
163840
|
|
DDED000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522717598.000000000DDED000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
DDED000
|
Size: |
12288
|
|
942E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3507203319.000000000942E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
942E000
|
Size: |
8192
|
|
DC0000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000006.00000002.1408476757.0000000000DC0000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
DC0000
|
Size: |
8192
|
|
1220000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1501802370.0000000001220000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1220000
|
Size: |
8192
|
|
61B6000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3501368797.00000000061B6000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
61B6000
|
Size: |
200704
|
|
AE1C000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000AE1C000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
AE1C000
|
Size: |
143360
|
|
5462000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000005462000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
5462000
|
Size: |
143360
|
|
D8EE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3521353303.000000000D8EE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
D8EE000
|
Size: |
8192
|
|
912000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000006.00000002.1395395388.0000000000912000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
912000
|
Size: |
4096
|
|
18CE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3485945650.00000000018CE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
18CE000
|
Size: |
8192
|
|
91EE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3507035352.00000000091EE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
91EE000
|
Size: |
8192
|
|
CEEE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3520123871.000000000CEEE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
CEEE000
|
Size: |
8192
|
|
4FD0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1325590845.0000000004FD0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
4FD0000
|
Size: |
4096
|
|
E228000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E228000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E228000
|
Size: |
143360
|
|
E80C000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E80C000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E80C000
|
Size: |
143360
|
|
73ED000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3503600325.00000000073ED000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
73ED000
|
Size: |
12288
|
|
6C6E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3502937832.0000000006C6E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
6C6E000
|
Size: |
8192
|
|
57CE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1526455571.00000000057CE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
57CE000
|
Size: |
8192
|
|
62AD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3501862658.00000000062AD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
62AD000
|
Size: |
12288
|
|
806D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3504945647.000000000806D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
806D000
|
Size: |
12288
|
|
548E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1327634148.000000000548E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
548E000
|
Size: |
8192
|
|
E761000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E761000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E761000
|
Size: |
143360
|
|
8CAE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3506427891.0000000008CAE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8CAE000
|
Size: |
8192
|
|
B844000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B844000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B844000
|
Size: |
16384
|
|
A12E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3508372946.000000000A12E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A12E000
|
Size: |
8192
|
|
4D0E000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004D0E000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4D0E000
|
Size: |
147456
|
|
3CB000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1392241158.00000000003CB000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3CB000
|
Size: |
20480
|
|
E313000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E313000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E313000
|
Size: |
143360
|
|
502A000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.000000000502A000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
502A000
|
Size: |
147456
|
|
E90D000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E90D000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E90D000
|
Size: |
143360
|
|
DA2E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3521550197.000000000DA2E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
DA2E000
|
Size: |
8192
|
|
4C83000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004C83000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4C83000
|
Size: |
143360
|
|
B80F000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B80F000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B80F000
|
Size: |
69632
|
|
AB6E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3509295992.000000000AB6E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
AB6E000
|
Size: |
8192
|
|
64AD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3502287633.00000000064AD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
64AD000
|
Size: |
12288
|
|
61EB000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3501368797.00000000061EB000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
61EB000
|
Size: |
204800
|
|
5EEE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3500885328.0000000005EEE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
5EEE000
|
Size: |
8192
|
|
188B000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.3485891520.000000000188B000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
188B000
|
Size: |
4096
|
|
4D8D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1323871988.0000000004D8D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
4D8D000
|
Size: |
12288
|
|
EA0E000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000EA0E000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
EA0E000
|
Size: |
143360
|
|
4B82000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004B82000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4B82000
|
Size: |
143360
|
|
890000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1393939219.0000000000890000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
890000
|
Size: |
4096
|
|
662D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3502465160.000000000662D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
662D000
|
Size: |
12288
|
|
533E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1426804592.000000000533E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
533E000
|
Size: |
8192
|
|
3A3E000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1418324526.0000000003A3E000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
3A3E000
|
Size: |
167936
|
|
181E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3485261687.000000000181E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
181E000
|
Size: |
8192
|
|
72AD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3503491771.00000000072AD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
72AD000
|
Size: |
12288
|
|
5095000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000005095000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
5095000
|
Size: |
147456
|
|
56FE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1436458262.00000000056FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
56FE000
|
Size: |
8192
|
|
D3ED000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3520600134.000000000D3ED000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
D3ED000
|
Size: |
12288
|
|
DFA000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000008.00000002.1501045610.0000000000DFA000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
DFA000
|
Size: |
4096
|
|
1860000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3485627818.0000000001860000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1860000
|
Size: |
4096
|
|
537D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1427134793.000000000537D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
537D000
|
Size: |
12288
|
|
531C000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.000000000531C000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
531C000
|
Size: |
143360
|
|
54FF000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.00000000054FF000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
54FF000
|
Size: |
143360
|
|
E44000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1501097583.0000000000E44000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
E44000
|
Size: |
294912
|
|
55FE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1433689248.00000000055FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
55FE000
|
Size: |
8192
|
|
6F6000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1392583081.00000000006F6000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
6F6000
|
Size: |
40960
|
|
4FB8000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1513365228.0000000004FB8000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4FB8000
|
Size: |
4096
|
|
850000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1393171355.0000000000850000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
850000
|
Size: |
4096
|
|
D40000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1500554534.0000000000D40000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
D40000
|
Size: |
16384
|
|
81AD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3505083621.00000000081AD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
81AD000
|
Size: |
12288
|
|
B2A000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000003.00000002.1304108975.0000000000B2A000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
B2A000
|
Size: |
4096
|
|
140C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3483947076.000000000140C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
140C000
|
Size: |
4096
|
|
57FD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3500075018.00000000057FD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
57FD000
|
Size: |
12288
|
|
6F6000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1279138191.00000000006F6000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
6F6000
|
Size: |
8192
|
|
83EE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3505297906.00000000083EE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
83EE000
|
Size: |
8192
|
|
8FD000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1285730771.00000000008FD000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
8FD000
|
Size: |
65536
|
|
49FE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1421504534.00000000049FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
49FE000
|
Size: |
8192
|
|
50AE000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1325713008.00000000050AE000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
50AE000
|
Size: |
4096
|
|
2C3B000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1409378647.0000000002C3B000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2C3B000
|
Size: |
155648
|
|
AF92000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000AF92000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
AF92000
|
Size: |
143360
|
|
1CB0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3486609743.0000000001CB0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1CB0000
|
Size: |
16384
|
|
6B50000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3502869311.0000000006B50000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
6B50000
|
Size: |
4096
|
|
8E0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1285730771.00000000008E0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
8E0000
|
Size: |
24576
|
|
ACBE000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3509434860.000000000ACBE000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
ACBE000
|
Size: |
86016
|
|
885000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1393582862.0000000000885000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
885000
|
Size: |
12288
|
|
AF5C000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000AF5C000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
AF5C000
|
Size: |
147456
|
|
C2AE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3519205878.000000000C2AE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C2AE000
|
Size: |
8192
|
|
4897000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004897000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4897000
|
Size: |
143360
|
|
4997000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004997000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4997000
|
Size: |
147456
|
|
A2AD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3508486380.000000000A2AD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A2AD000
|
Size: |
12288
|
|
636C000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3502015600.000000000636C000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
636C000
|
Size: |
16384
|
|
E963000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E963000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E963000
|
Size: |
143360
|
|
E3B3000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E3B3000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E3B3000
|
Size: |
143360
|
|
D52D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3520760674.000000000D52D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
D52D000
|
Size: |
12288
|
|
7CAD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3504621996.0000000007CAD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
7CAD000
|
Size: |
12288
|
|
F02E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3531750732.000000000F02E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
F02E000
|
Size: |
8192
|
|
EA64000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000EA64000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
EA64000
|
Size: |
143360
|
|
B2B4000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B2B4000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B2B4000
|
Size: |
12288
|
|
9BED000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3508035855.0000000009BED000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
9BED000
|
Size: |
12288
|
|
8F0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1394523837.00000000008F0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
8F0000
|
Size: |
8192
|
|
A8EE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3509099936.000000000A8EE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A8EE000
|
Size: |
8192
|
|
82AD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3505164860.00000000082AD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
82AD000
|
Size: |
12288
|
|
1CA0000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.3486579648.0000000001CA0000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
1CA0000
|
Size: |
16384
|
|
E8B7000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E8B7000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E8B7000
|
Size: |
147456
|
|
D90000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1500669697.0000000000D90000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
D90000
|
Size: |
4096
|
|
8E2D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3506634303.0000000008E2D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8E2D000
|
Size: |
12288
|
|
D10000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1402733051.0000000000D10000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
D10000
|
Size: |
16384
|
|
ACB0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3509434860.000000000ACB0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
ACB0000
|
Size: |
49152
|
|
D1AD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3520344302.000000000D1AD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
D1AD000
|
Size: |
12288
|
|
523E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1426363491.000000000523E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
523E000
|
Size: |
8192
|
|
5ECE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1529142011.0000000005ECE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
5ECE000
|
Size: |
8192
|
|
3FB1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1512021710.0000000003FB1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
3FB1000
|
Size: |
8192
|
|
1340000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3483947076.0000000001340000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1340000
|
Size: |
24576
|
|
E7B6000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E7B6000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E7B6000
|
Size: |
147456
|
|
F530000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3531954394.000000000F530000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
F530000
|
Size: |
200704
|
|
DEA000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000008.00000002.1500865106.0000000000DEA000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
DEA000
|
Size: |
8192
|
|
C0F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1400432521.0000000000C0F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C0F000
|
Size: |
4096
|
|
1852000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.3485461219.0000000001852000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
1852000
|
Size: |
24576
|
|
DD0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1500692425.0000000000DD0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
DD0000
|
Size: |
8192
|
|
4CB9000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004CB9000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4CB9000
|
Size: |
143360
|
|
4BE0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1323216701.0000000004BE0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
4BE0000
|
Size: |
4096
|
|
7DEE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3504716815.0000000007DEE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
7DEE000
|
Size: |
8192
|
|
B4DA000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B4DA000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B4DA000
|
Size: |
143360
|
|
B564000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B564000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B564000
|
Size: |
147456
|
|
56CE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1526316165.00000000056CE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
56CE000
|
Size: |
8192
|
|
982D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3507601511.000000000982D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
982D000
|
Size: |
12288
|
|
D3E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1500537573.0000000000D3E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
D3E000
|
Size: |
8192
|
|
B683000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B683000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B683000
|
Size: |
147456
|
|
EB7A000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000EB7A000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
EB7A000
|
Size: |
8192
|
|
AF1D000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000AF1D000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
AF1D000
|
Size: |
143360
|
|
956E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3507303856.000000000956E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
956E000
|
Size: |
8192
|
|
50FE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1425731441.00000000050FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
50FE000
|
Size: |
8192
|
|
6380000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3502115830.0000000006380000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
6380000
|
Size: |
65536
|
|
A04000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1396643924.0000000000A04000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
A04000
|
Size: |
49152
|
|
8E2000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000006.00000002.1394275708.00000000008E2000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
8E2000
|
Size: |
4096
|
|
B12000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000003.00000002.1301086991.0000000000B12000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
B12000
|
Size: |
12288
|
|
D6AD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3520997475.000000000D6AD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
D6AD000
|
Size: |
12288
|
|
580E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1329280454.000000000580E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
580E000
|
Size: |
8192
|
|
C3EE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3519322677.000000000C3EE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C3EE000
|
Size: |
8192
|
|
7EED000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3504779147.0000000007EED000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
7EED000
|
Size: |
12288
|
|
A18000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1398778472.0000000000A18000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
A18000
|
Size: |
73728
|
|
EB5B000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000EB5B000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
EB5B000
|
Size: |
122880
|
|
B7B9000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B7B9000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B7B9000
|
Size: |
147456
|
|
49BE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1421286228.00000000049BE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
49BE000
|
Size: |
8192
|
|
82ED000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3505208476.00000000082ED000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
82ED000
|
Size: |
12288
|
|
B10000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1293821230.0000000000B10000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B10000
|
Size: |
8192
|
|
1882000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3485810795.0000000001882000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1882000
|
Size: |
4096
|
|
856D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3505446138.000000000856D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
856D000
|
Size: |
12288
|
|
10A1C000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3532227793.0000000010A1C000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
10A1C000
|
Size: |
143360
|
|
EAB9000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000EAB9000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
EAB9000
|
Size: |
147456
|
|
1947000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3486036973.0000000001947000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1947000
|
Size: |
28672
|
|
134E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3483947076.000000000134E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
134E000
|
Size: |
86016
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
Sample file is different than original file name gathered from version info |
System Summary |
|
|
514F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1514676228.000000000514F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
514F000
|
Size: |
4096
|
|
8CEE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3506474050.0000000008CEE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8CEE000
|
Size: |
8192
|
|
A66D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3508818920.000000000A66D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A66D000
|
Size: |
12288
|
|
5A4E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3500374175.0000000005A4E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
5A4E000
|
Size: |
8192
|
|
726E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3503452091.000000000726E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
726E000
|
Size: |
8192
|
|
53FC000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.00000000053FC000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
53FC000
|
Size: |
147456
|
|
DCAE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522577595.000000000DCAE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
DCAE000
|
Size: |
8192
|
|
10FB000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000008.00000002.1501629111.00000000010FB000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
10FB000
|
Size: |
4096
|
|
E147000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E147000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E147000
|
Size: |
143360
|
|
9AAE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3507901271.0000000009AAE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
9AAE000
|
Size: |
8192
|
|
D16E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3520311026.000000000D16E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
D16E000
|
Size: |
8192
|
|
D42E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3520647337.000000000D42E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
D42E000
|
Size: |
8192
|
|
DFD1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000DFD1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
DFD1000
|
Size: |
147456
|
|
38E3000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3486734567.00000000038E3000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
38E3000
|
Size: |
4632576
|
|
52E0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1523904593.00000000052E0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
52E0000
|
Size: |
4096
|
|
1CD0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3486638481.0000000001CD0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1CD0000
|
Size: |
20480
|
|
A7AD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3508938670.000000000A7AD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A7AD000
|
Size: |
12288
|
|
7DAD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3504676853.0000000007DAD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
7DAD000
|
Size: |
12288
|
|
53A7000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.00000000053A7000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
53A7000
|
Size: |
143360
|
|
CDED000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3520066178.000000000CDED000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
CDED000
|
Size: |
12288
|
|
9F0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1500455209.00000000009F0000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
9F0000
|
Size: |
4096
|
|
712E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3503348284.000000000712E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
712E000
|
Size: |
8192
|
|
185A000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.3485530394.000000000185A000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
185A000
|
Size: |
4096
|
|
762E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3503803042.000000000762E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
762E000
|
Size: |
8192
|
|
6DAE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3503038728.0000000006DAE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
6DAE000
|
Size: |
8192
|
|
4DCF000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004DCF000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4DCF000
|
Size: |
143360
|
|
87AE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3505661843.00000000087AE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
87AE000
|
Size: |
8192
|
|
4ABF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1322052766.0000000004ABF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
4ABF000
|
Size: |
4096
|
|
4828000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1320893206.0000000004828000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4828000
|
Size: |
4096
|
|
E409000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E409000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E409000
|
Size: |
143360
|
|
79ED000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3504315594.00000000079ED000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
79ED000
|
Size: |
12288
|
|
B6B9000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B6B9000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B6B9000
|
Size: |
143360
|
|
93B000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000006.00000002.1395936720.000000000093B000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
93B000
|
Size: |
4096
|
|
97E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1396035334.000000000097E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
97E000
|
Size: |
8192
|
|
A43000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1398778472.0000000000A43000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
A43000
|
Size: |
290816
|
|
D75000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1500594240.0000000000D75000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
D75000
|
Size: |
12288
|
|
D0F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1401217286.0000000000D0F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
D0F000
|
Size: |
4096
|
|
B60E000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B60E000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B60E000
|
Size: |
143360
|
|
E25D000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E25D000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E25D000
|
Size: |
147456
|
|
C02D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3519032064.000000000C02D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C02D000
|
Size: |
12288
|
|
DF0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1500984537.0000000000DF0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
DF0000
|
Size: |
8192
|
|
720000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1280139165.0000000000720000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
720000
|
Size: |
16384
|
|
892D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3505863459.000000000892D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
892D000
|
Size: |
12288
|
|
B12D000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B12D000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B12D000
|
Size: |
143360
|
|
9C2E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3508094855.0000000009C2E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
9C2E000
|
Size: |
8192
|
|
1717000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3485164411.0000000001717000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1717000
|
Size: |
28672
|
|
D06D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3520249421.000000000D06D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
D06D000
|
Size: |
12288
|
|
140E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3483947076.000000000140E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
140E000
|
Size: |
126976
|
|
B309000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B309000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B309000
|
Size: |
147456
|
|
7C6D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3504593474.0000000007C6D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
7C6D000
|
Size: |
12288
|
|
65AE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3502348694.00000000065AE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
65AE000
|
Size: |
8192
|
|
8EA000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000006.00000002.1394402050.00000000008EA000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
8EA000
|
Size: |
8192
|
|
6FED000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3503233698.0000000006FED000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
6FED000
|
Size: |
12288
|
|
10F0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1501496398.00000000010F0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
10F0000
|
Size: |
4096
|
|
8D0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1394163703.00000000008D0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
8D0000
|
Size: |
8192
|
|
937000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000006.00000002.1395921214.0000000000937000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
937000
|
Size: |
4096
|
|
B8EF000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B8EF000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B8EF000
|
Size: |
147456
|
|
8F2000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000006.00000002.1394742320.00000000008F2000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
8F2000
|
Size: |
12288
|
|
3317000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1501946136.0000000003317000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
3317000
|
Size: |
163840
|
|
5291000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000005291000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
5291000
|
Size: |
143360
|
|
A10000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1398778472.0000000000A10000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
A10000
|
Size: |
24576
|
|
12F6000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3483903837.00000000012F6000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
12F6000
|
Size: |
40960
|
|
EF2E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3531694372.000000000EF2E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
EF2E000
|
Size: |
8192
|
|
B16000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000003.00000002.1301086991.0000000000B16000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
B16000
|
Size: |
4096
|
|
A02E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3508316173.000000000A02E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A02E000
|
Size: |
8192
|
|
8BAE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3506322973.0000000008BAE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8BAE000
|
Size: |
8192
|
|
1940000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3486036973.0000000001940000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1940000
|
Size: |
20480
|
|
2BB0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1308331612.0000000002BB0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2BB0000
|
Size: |
344064
|
|
95AE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3507341622.00000000095AE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
95AE000
|
Size: |
8192
|
|
46B6000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.00000000046B6000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
46B6000
|
Size: |
143360
|
|
4BD7000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004BD7000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4BD7000
|
Size: |
147456
|
|
880000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1393582862.0000000000880000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
880000
|
Size: |
16384
|
|
4AC0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1322334175.0000000004AC0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
4AC0000
|
Size: |
4096
|
|
D92E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3521413216.000000000D92E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
D92E000
|
Size: |
8192
|
|
B50F000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B50F000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B50F000
|
Size: |
143360
|
|
8B6E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3506256962.0000000008B6E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8B6E000
|
Size: |
8192
|
|
1210000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000008.00000002.1501784064.0000000001210000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
1210000
|
Size: |
8192
|
|
8F6D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3506811523.0000000008F6D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8F6D000
|
Size: |
12288
|
|
9C30000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3508155989.0000000009C30000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
9C30000
|
Size: |
32768
|
|
9D30000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3508195408.0000000009D30000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
9D30000
|
Size: |
32768
|
|
E55F000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E55F000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E55F000
|
Size: |
143360
|
|
510B000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.000000000510B000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
510B000
|
Size: |
12288
|
|
697E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3502620631.000000000697E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
697E000
|
Size: |
8192
|
|
600E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1529569876.000000000600E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
600E000
|
Size: |
8192
|
|
8F2E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3506744085.0000000008F2E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8F2E000
|
Size: |
8192
|
|
4E7A000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004E7A000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4E7A000
|
Size: |
143360
|
|
2821000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1308331612.0000000002821000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2821000
|
Size: |
1728512
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
Tries to detect sandboxes and other dynamic analysis tools (process name or module or function) |
Malware Analysis System Evasion |
Security Software Discovery
|
AV process strings found (often used to terminate AV products) |
Lowering of HIPS / PFW / Operating System Security Settings |
Security Software Discovery
|
|
590E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1526969661.000000000590E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
590E000
|
Size: |
8192
|
|
E18000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1501097583.0000000000E18000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
E18000
|
Size: |
73728
|
|
DE2000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000008.00000002.1500710363.0000000000DE2000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
DE2000
|
Size: |
4096
|
|
D2AE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3520458188.000000000D2AE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
D2AE000
|
Size: |
8192
|
|
29C8000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1308331612.00000000029C8000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
29C8000
|
Size: |
286720
|
|
932D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3507133558.000000000932D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
932D000
|
Size: |
12288
|
|
760000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1282731578.0000000000760000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
760000
|
Size: |
4096
|
|
11CE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1501693468.00000000011CE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
11CE000
|
Size: |
8192
|
|
1204000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1501733384.0000000001204000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1204000
|
Size: |
49152
|
|
D70000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1500594240.0000000000D70000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
D70000
|
Size: |
16384
|
|
E4F4000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E4F4000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E4F4000
|
Size: |
143360
|
|
606D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3501028867.000000000606D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
606D000
|
Size: |
12288
|
|
90A000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000006.00000002.1395293837.000000000090A000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
90A000
|
Size: |
4096
|
|
DB6E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522037708.000000000DB6E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
DB6E000
|
Size: |
8192
|
|
2FB3000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1501946136.0000000002FB3000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2FB3000
|
Size: |
3440640
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
May try to detect the virtual machine to hinder analysis (VM artifact strings found in memory) |
Malware Analysis System Evasion |
Security Software Discovery
|
|
11F0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1501711341.00000000011F0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
11F0000
|
Size: |
16384
|
|
B5BA000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B5BA000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B5BA000
|
Size: |
12288
|
|
C76E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3519555655.000000000C76E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C76E000
|
Size: |
8192
|
|
10E2000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000008.00000002.1501340251.00000000010E2000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
10E2000
|
Size: |
4096
|
|
816D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3505028015.000000000816D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
816D000
|
Size: |
12288
|
|
5BB0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3500502357.0000000005BB0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
5BB0000
|
Size: |
233472
|
|
10EA000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000008.00000002.1501367967.00000000010EA000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
10EA000
|
Size: |
4096
|
|
4841000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004841000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4841000
|
Size: |
147456
|
|
B1D8000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B1D8000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B1D8000
|
Size: |
143360
|
|
602D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3500986247.000000000602D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
602D000
|
Size: |
12288
|
|
5CEE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3500748580.0000000005CEE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
5CEE000
|
Size: |
8192
|
|
E2B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1501097583.0000000000E2B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
E2B000
|
Size: |
4096
|
|
F565000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3531954394.000000000F565000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
F565000
|
Size: |
4096
|
|
91A000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000006.00000002.1395522492.000000000091A000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
91A000
|
Size: |
4096
|
|
56CE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1328778808.00000000056CE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
56CE000
|
Size: |
8192
|
|
E529000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E529000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E529000
|
Size: |
147456
|
|
28C3000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1409378647.00000000028C3000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
28C3000
|
Size: |
3633152
|
|
C4EE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3519381625.000000000C4EE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C4EE000
|
Size: |
8192
|
|
B1A000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000003.00000002.1302136204.0000000000B1A000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
B1A000
|
Size: |
4096
|
|
A52E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3508720495.000000000A52E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A52E000
|
Size: |
8192
|
|
6AFE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3502791141.0000000006AFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
6AFE000
|
Size: |
8192
|
|
39E0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1418324526.00000000039E0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
39E0000
|
Size: |
167936
|
|
2C62000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1409378647.0000000002C62000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2C62000
|
Size: |
24576
|
|
1887000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.3485874502.0000000001887000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
1887000
|
Size: |
4096
|
|
3924000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1418324526.0000000003924000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
3924000
|
Size: |
172032
|
|
1C6D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3486321250.0000000001C6D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1C6D000
|
Size: |
12288
|
|
FDA000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3483708567.0000000000FDA000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
FDA000
|
Size: |
24576
|
|
2A10000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1308331612.0000000002A10000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2A10000
|
Size: |
561152
|
|
4631000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000004631000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4631000
|
Size: |
24576
|
|
16E0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3485134257.00000000016E0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
16E0000
|
Size: |
4096
|
|
28C1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1409378647.00000000028C1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
28C1000
|
Size: |
4096
|
|
B3EA000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B3EA000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B3EA000
|
Size: |
147456
|
|
4D7D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1423269946.0000000004D7D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
4D7D000
|
Size: |
12288
|
|
776D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3503935582.000000000776D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
776D000
|
Size: |
12288
|
|
C26E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3519178076.000000000C26E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C26E000
|
Size: |
8192
|
|
1872000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.3485711732.0000000001872000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
1872000
|
Size: |
4096
|
|
14A5000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3484983197.00000000014A5000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
14A5000
|
Size: |
8192
|
|
F1AE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3531869484.000000000F1AE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
F1AE000
|
Size: |
8192
|
|
1450000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3484925193.0000000001450000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1450000
|
Size: |
8192
|
|
4B10000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000003.00000002.1322605280.0000000004B10000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
4B10000
|
Size: |
8192
|
|
CB6D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3519896641.000000000CB6D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
CB6D000
|
Size: |
12288
|
|
C30000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1307807723.0000000000C30000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
C30000
|
Size: |
16384
|
|
716E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3503377010.000000000716E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
716E000
|
Size: |
8192
|
|
A3ED000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3508582681.000000000A3ED000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A3ED000
|
Size: |
12288
|
|
ADF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1289805583.0000000000ADF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
ADF000
|
Size: |
4096
|
|
57BD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3500019423.00000000057BD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
57BD000
|
Size: |
12288
|
|
9A6D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3507874274.0000000009A6D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
9A6D000
|
Size: |
12288
|
|
544D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1525235173.000000000544D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
544D000
|
Size: |
12288
|
|
2A9A000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1308331612.0000000002A9A000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2A9A000
|
Size: |
1134592
|
|
1440000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3484872509.0000000001440000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1440000
|
Size: |
4096
|
|
558D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1525532720.000000000558D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
558D000
|
Size: |
12288
|
|
78EE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3504173548.00000000078EE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
78EE000
|
Size: |
8192
|
|
7F2D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3504823298.0000000007F2D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
7F2D000
|
Size: |
12288
|
|
D7ED000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3521292114.000000000D7ED000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
D7ED000
|
Size: |
12288
|
|
DA6D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3521696543.000000000DA6D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
DA6D000
|
Size: |
12288
|
|
B764000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B764000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B764000
|
Size: |
147456
|
|
5371000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000005371000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
5371000
|
Size: |
147456
|
|
702E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3503295338.000000000702E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
702E000
|
Size: |
8192
|
|
DF9C000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000DF9C000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
DF9C000
|
Size: |
143360
|
|
91AE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3506996747.00000000091AE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
91AE000
|
Size: |
8192
|
|
97EE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3507524907.00000000097EE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
97EE000
|
Size: |
8192
|
|
B0F7000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B0F7000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B0F7000
|
Size: |
143360
|
|
4CEE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1323497943.0000000004CEE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
4CEE000
|
Size: |
8192
|
|
96ED000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3507449988.00000000096ED000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
96ED000
|
Size: |
12288
|
|
52DD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1522735782.00000000052DD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
52DD000
|
Size: |
12288
|
|
14A0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3484983197.00000000014A0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
14A0000
|
Size: |
16384
|
|
B25E000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B25E000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B25E000
|
Size: |
147456
|
|
594F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3500269266.000000000594F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
594F000
|
Size: |
4096
|
|
B475000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B475000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B475000
|
Size: |
147456
|
|
46EB000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.00000000046EB000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
46EB000
|
Size: |
147456
|
|
4ECD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1324136471.0000000004ECD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
4ECD000
|
Size: |
12288
|
|
62EB000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3501902873.00000000062EB000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
62EB000
|
Size: |
20480
|
|
E660000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E660000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E660000
|
Size: |
143360
|
|
D7AD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3521215475.000000000D7AD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
D7AD000
|
Size: |
12288
|
|
5DEE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3500811030.0000000005DEE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
5DEE000
|
Size: |
8192
|
|
534E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1326758198.000000000534E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
534E000
|
Size: |
8192
|
|
5A4E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1527451371.0000000005A4E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
5A4E000
|
Size: |
8192
|
|
9CE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1396054212.00000000009CE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
9CE000
|
Size: |
8192
|
|
E43E000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E43E000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E43E000
|
Size: |
147456
|
|
A2D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1398778472.0000000000A2D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
A2D000
|
Size: |
61440
|
|
5490000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1328263803.0000000005490000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
5490000
|
Size: |
135168
|
|
C9EE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3519789609.000000000C9EE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C9EE000
|
Size: |
8192
|
|
B864000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B864000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B864000
|
Size: |
143360
|
|
4E80000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1423997096.0000000004E80000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
4E80000
|
Size: |
229376
|
|
468C000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.000000000468C000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
468C000
|
Size: |
36864
|
|
1200000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1501733384.0000000001200000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1200000
|
Size: |
12288
|
|
B3A000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000003.00000002.1305239903.0000000000B3A000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
B3A000
|
Size: |
4096
|
|
4AAD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1422059613.0000000004AAD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
4AAD000
|
Size: |
12288
|
|
D28000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1405597680.0000000000D28000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
D28000
|
Size: |
4096
|
|
5F0E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1529265737.0000000005F0E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
5F0E000
|
Size: |
8192
|
|
5840000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3500195033.0000000005840000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
5840000
|
Size: |
4096
|
|
866E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3505515224.000000000866E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
866E000
|
Size: |
8192
|
|
95D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1285730771.000000000095D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
95D000
|
Size: |
4096
|
|
1CD7000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3486638481.0000000001CD7000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1CD7000
|
Size: |
28672
|
|
B33F000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B33F000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B33F000
|
Size: |
143360
|
|
AE92000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000AE92000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
AE92000
|
Size: |
143360
|
|
77AE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3503990059.00000000077AE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
77AE000
|
Size: |
8192
|
|
CA2E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3519816777.000000000CA2E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
CA2E000
|
Size: |
8192
|
|
E60A000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E60A000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E60A000
|
Size: |
147456
|
|
9BAE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3507993170.0000000009BAE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
9BAE000
|
Size: |
8192
|
|
4B20000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1322852119.0000000004B20000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
4B20000
|
Size: |
8192
|
|
6B40000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3502848151.0000000006B40000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
6B40000
|
Size: |
4096
|
|
5450000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1525499253.0000000005450000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
5450000
|
Size: |
4096
|
|
60B5000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3501068086.00000000060B5000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
60B5000
|
Size: |
4096
|
|
594E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1329673100.000000000594E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
594E000
|
Size: |
8192
|
|
4E7D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1423764982.0000000004E7D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
4E7D000
|
Size: |
12288
|
|
96AE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3507408904.00000000096AE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
96AE000
|
Size: |
8192
|
|
538D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1327109920.000000000538D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
538D000
|
Size: |
12288
|
|
3633000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3486734567.0000000003633000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
3633000
|
Size: |
2813952
|
|
D66E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3520910028.000000000D66E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
D66E000
|
Size: |
8192
|
|
2FB1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1501946136.0000000002FB1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2FB1000
|
Size: |
4096
|
|
78AD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3504118881.00000000078AD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
78AD000
|
Size: |
12288
|
|
D2ED000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3520490310.000000000D2ED000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
D2ED000
|
Size: |
12288
|
|
958000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1285730771.0000000000958000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
958000
|
Size: |
16384
|
|
1F58D000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3532818804.000000001F58D000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F58D000
|
Size: |
12288
|
|
6390000
|
unclassified section
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3502215364.0000000006390000.00000004.10000000.00040000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
unclassified section
|
Protect: |
page read and write
|
Base address: |
6390000
|
Size: |
4096
|
|
54BE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.1428205800.00000000054BE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
54BE000
|
Size: |
8192
|
|
5060000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000005060000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
5060000
|
Size: |
143360
|
|
C66E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3519498545.000000000C66E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C66E000
|
Size: |
8192
|
|
572E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3499956190.000000000572E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
572E000
|
Size: |
8192
|
|
9E30000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3508239408.0000000009E30000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
9E30000
|
Size: |
32768
|
|
B394000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B394000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B394000
|
Size: |
147456
|
|
E349000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E349000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E349000
|
Size: |
143360
|
|
687E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3502540832.000000000687E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
687E000
|
Size: |
8192
|
|
DF2000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000008.00000002.1501003387.0000000000DF2000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
DF2000
|
Size: |
12288
|
|
92EE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3507094680.00000000092EE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
92EE000
|
Size: |
8192
|
|
8FC000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000006.00000002.1395185775.00000000008FC000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
8FC000
|
Size: |
4096
|
|
4FCE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1324328140.0000000004FCE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
4FCE000
|
Size: |
8192
|
|
AA2D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3509195178.000000000AA2D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
AA2D000
|
Size: |
12288
|
|
10F7000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000008.00000002.1501609112.00000000010F7000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
10F7000
|
Size: |
4096
|
|
752E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3503722913.000000000752E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
752E000
|
Size: |
8192
|
|
B5D8000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B5D8000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B5D8000
|
Size: |
143360
|
|
127E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1501820776.000000000127E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
127E000
|
Size: |
8192
|
|
B03D000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3510339943.000000000B03D000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
B03D000
|
Size: |
143360
|
|
3904000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000003.00000002.1318795093.0000000003904000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
3904000
|
Size: |
172032
|
|
E6B5000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3522777006.000000000E6B5000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
E6B5000
|
Size: |
147456
|
|
5216000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3491495339.0000000005216000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
5216000
|
Size: |
57344
|
|
2C6F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.1501921956.0000000002C6F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
2C6F000
|
Size: |
4096
|
|
852E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.3505411635.000000000852E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
852E000
|
Size: |
8192
|
|