22132028000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.852965165.0000022132028000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22132028000
|
Size: |
102400
|
|
F680CFC000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.877499091.000000F680CFC000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
F680CFC000
|
Size: |
16384
|
|
3B9CBFE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.856145080.0000003B9CBFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3B9CBFE000
|
Size: |
8192
|
|
2061382A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.856464862.000002061382A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2061382A000
|
Size: |
110592
|
|
189EBE10000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000C.00000002.875563266.00000189EBE10000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
12
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
189EBE10000
|
Size: |
4096
|
|
F680AFF000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.877402364.000000F680AFF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
F680AFF000
|
Size: |
4096
|
|
26200D70000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.877577699.0000026200D70000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
26200D70000
|
Size: |
4096
|
|
1664F1C0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.850741130.000001664F1C0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1664F1C0000
|
Size: |
8192
|
|
225A5FF000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.865611848.000000225A5FF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
225A5FF000
|
Size: |
4096
|
|
1C0DC425000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.851276784.000001C0DC425000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C0DC425000
|
Size: |
4096
|
|
1C0DBF50000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.851153973.000001C0DBF50000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C0DBF50000
|
Size: |
4096
|
|
24B51270000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.853200073.0000024B51270000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
24B51270000
|
Size: |
4096
|
|
2213206E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.852751869.000002213206E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2213206E000
|
Size: |
28672
|
|
24B51350000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.853215857.0000024B51350000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
24B51350000
|
Size: |
4096
|
|
F6809FD000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.877375043.000000F6809FD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
F6809FD000
|
Size: |
12288
|
|
20613860000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.856595300.0000020613860000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20613860000
|
Size: |
32768
|
|
189EA000000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000C.00000002.875357817.00000189EA000000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
12
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
189EA000000
|
Size: |
4096
|
|
C11327F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.853183850.000000C11327F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C11327F000
|
Size: |
4096
|
|
1D723459000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.860890359.000001D723459000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D723459000
|
Size: |
20480
|
|
221321F0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.853062892.00000221321F0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
221321F0000
|
Size: |
4096
|
|
B44D8FF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000009.00000002.858133944.000000B44D8FF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B44D8FF000
|
Size: |
4096
|
|
F6806F7000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.877292798.000000F6806F7000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
F6806F7000
|
Size: |
36864
|
|
225A7FD000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.866712225.000000225A7FD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
225A7FD000
|
Size: |
12288
|
|
22132385000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.853078402.0000022132385000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22132385000
|
Size: |
12288
|
|
85ECAFD000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000C.00000002.875245255.00000085ECAFD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
12
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
85ECAFD000
|
Size: |
12288
|
|
1664F445000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.851014559.000001664F445000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1664F445000
|
Size: |
12288
|
|
26200E49000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.877716138.0000026200E49000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
26200E49000
|
Size: |
53248
|
|
3B9D0FC000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.856289892.0000003B9D0FC000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3B9D0FC000
|
Size: |
16384
|
|
189EA002000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000C.00000002.875357817.00000189EA002000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
12
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
189EA002000
|
Size: |
65536
|
|
1748FFE000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.872357519.0000001748FFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1748FFE000
|
Size: |
8192
|
|
26200E2A000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.877681804.0000026200E2A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
26200E2A000
|
Size: |
122880
|
|
189EA013000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000C.00000002.875403031.00000189EA013000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
12
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
189EA013000
|
Size: |
90112
|
|
20613846000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.856464862.0000020613846000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20613846000
|
Size: |
12288
|
|
17490FD000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.872385082.00000017490FD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
17490FD000
|
Size: |
12288
|
|
26200F02000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.877791091.0000026200F02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
26200F02000
|
Size: |
16384
|
|
2095AC30000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.867088135.000002095AC30000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2095AC30000
|
Size: |
8192
|
|
20613813000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.856448171.0000020613813000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20613813000
|
Size: |
90112
|
|
17E68E58000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.873022851.0000017E68E58000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
17E68E58000
|
Size: |
24576
|
|
1748EFE000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.872332371.0000001748EFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1748EFE000
|
Size: |
8192
|
|
24B51655000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.853290153.0000024B51655000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
24B51655000
|
Size: |
4096
|
|
9782D0F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000005.00000002.851111417.0000009782D0F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
9782D0F000
|
Size: |
4096
|
|
B44D7FE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000009.00000002.858116868.000000B44D7FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B44D7FE000
|
Size: |
8192
|
|
17491FE000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.872412027.00000017491FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
17491FE000
|
Size: |
8192
|
|
B44DBFD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000009.00000002.859272356.000000B44DBFD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B44DBFD000
|
Size: |
12288
|
|
37FCC7F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.852876089.00000037FCC7F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
37FCC7F000
|
Size: |
4096
|
|
24B51370000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.853227559.0000024B51370000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
24B51370000
|
Size: |
4096
|
|
85EC9FF000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000C.00000002.875223478.00000085EC9FF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
12
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
85EC9FF000
|
Size: |
4096
|
|
1C0DC030000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.851175886.000001C0DC030000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C0DC030000
|
Size: |
4096
|
|
3B9CDFD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.856208969.0000003B9CDFD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3B9CDFD000
|
Size: |
12288
|
|
1D7233E0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.859402815.000001D7233E0000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D7233E0000
|
Size: |
4096
|
|
22132057000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.852751869.0000022132057000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22132057000
|
Size: |
90112
|
|
2213206E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.852698804.000002213206E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2213206E000
|
Size: |
28672
|
|
206136B0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.856304045.00000206136B0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
206136B0000
|
Size: |
8192
|
|
2095AE69000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.867305891.000002095AE69000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2095AE69000
|
Size: |
24576
|
|
1664F21B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.850861675.000001664F21B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1664F21B000
|
Size: |
49152
|
|
37FCCFE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.852890911.00000037FCCFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
37FCCFE000
|
Size: |
8192
|
|
24B51447000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.853242141.0000024B51447000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
24B51447000
|
Size: |
8192
|
|
2213204B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.853003488.000002213204B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2213204B000
|
Size: |
49152
|
|
9782D8F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000005.00000002.851130982.0000009782D8F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
9782D8F000
|
Size: |
4096
|
|
9782C8C000
|
stack
|
page read and write
|
|
|
|
Name: |
00000005.00000002.851089489.0000009782C8C000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
9782C8C000
|
Size: |
16384
|
|
37FCDFE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.852920351.00000037FCDFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
37FCDFE000
|
Size: |
8192
|
|
24B51440000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.853242141.0000024B51440000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
24B51440000
|
Size: |
24576
|
|
1A5D68B000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.850550753.0000001A5D68B000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1A5D68B000
|
Size: |
20480
|
|
26200E13000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.877652831.0000026200E13000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
26200E13000
|
Size: |
90112
|
|
85EC8FD000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000C.00000002.875199215.00000085EC8FD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
12
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
85EC8FD000
|
Size: |
12288
|
|
1A5DB7E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.850670942.0000001A5DB7E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1A5DB7E000
|
Size: |
8192
|
|
85EC387000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000C.00000002.875132635.00000085EC387000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
12
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
85EC387000
|
Size: |
36864
|
|
189EC002000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000C.00000002.875584881.00000189EC002000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
12
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
189EC002000
|
Size: |
4096
|
|
2095AF02000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.868219866.000002095AF02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2095AF02000
|
Size: |
16384
|
|
22132020000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.852965165.0000022132020000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22132020000
|
Size: |
28672
|
|
26200E59000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.877716138.0000026200E59000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
26200E59000
|
Size: |
24576
|
|
1664F22B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000003.850210673.000001664F22B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1664F22B000
|
Size: |
69632
|
|
3B9C717000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.856111743.0000003B9C717000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3B9C717000
|
Size: |
36864
|
|
1664F0E0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.850719755.000001664F0E0000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1664F0E0000
|
Size: |
4096
|
|
1A5DAFF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.850649364.0000001A5DAFF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1A5DAFF000
|
Size: |
4096
|
|
17E68E3D000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.872952270.0000017E68E3D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
17E68E3D000
|
Size: |
45056
|
|
17492FD000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.872435760.00000017492FD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
17492FD000
|
Size: |
12288
|
|
1D72342A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.860847009.000001D72342A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D72342A000
|
Size: |
73728
|
|
1D723402000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.859779260.000001D723402000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D723402000
|
Size: |
65536
|
|
17E68DC0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.872482661.0000017E68DC0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
17E68DC0000
|
Size: |
8192
|
|
22132045000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.852698804.0000022132045000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22132045000
|
Size: |
163840
|
|
1C0DC050000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.851193050.000001C0DC050000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C0DC050000
|
Size: |
4096
|
|
225AAFC000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.867069085.000000225AAFC000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
225AAFC000
|
Size: |
16384
|
|
1664F23D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000003.850327123.000001664F23D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1664F23D000
|
Size: |
20480
|
|
B44DAFF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000009.00000002.858325700.000000B44DAFF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B44DAFF000
|
Size: |
4096
|
|
17493FC000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.872457374.00000017493FC000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
17493FC000
|
Size: |
16384
|
|
1C0DC420000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.851276784.000001C0DC420000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C0DC420000
|
Size: |
12288
|
|
1D723460000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.860930010.000001D723460000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D723460000
|
Size: |
32768
|
|
206136D0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.856354656.00000206136D0000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
206136D0000
|
Size: |
4096
|
|
37FCD7E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.852905027.00000037FCD7E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
37FCD7E000
|
Size: |
8192
|
|
2095AE60000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.867305891.000002095AE60000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2095AE60000
|
Size: |
24576
|
|
189E9ED0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000C.00000002.875313955.00000189E9ED0000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
12
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
189E9ED0000
|
Size: |
4096
|
|
1D72343D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.860847009.000001D72343D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D72343D000
|
Size: |
45056
|
|
37FC94B000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.852838994.00000037FC94B000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
37FC94B000
|
Size: |
20480
|
|
189EA102000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000C.00000002.875535145.00000189EA102000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
12
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
189EA102000
|
Size: |
16384
|
|
225A6FF000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.866605930.000000225A6FF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
225A6FF000
|
Size: |
4096
|
|
1664F23D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.850885881.000001664F23D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1664F23D000
|
Size: |
20480
|
|
1D723449000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.860890359.000001D723449000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D723449000
|
Size: |
53248
|
|
1C0DC13B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.851212585.000001C0DC13B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C0DC13B000
|
Size: |
12288
|
|
17E68DF0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.872531943.0000017E68DF0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
17E68DF0000
|
Size: |
4096
|
|
1664F228000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.850885881.000001664F228000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1664F228000
|
Size: |
8192
|
|
2095CC02000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.868403375.000002095CC02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2095CC02000
|
Size: |
4096
|
|
26200C90000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.877554243.0000026200C90000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
26200C90000
|
Size: |
4096
|
|
2095AE13000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.867235315.000002095AE13000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2095AE13000
|
Size: |
90112
|
|
1A5D70E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.850587296.0000001A5D70E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1A5D70E000
|
Size: |
8192
|
|
1D723413000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.860815370.000001D723413000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D723413000
|
Size: |
90112
|
|
20613869000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.856608951.0000020613869000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20613869000
|
Size: |
8192
|
|
225A4F7000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.865585393.000000225A4F7000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
225A4F7000
|
Size: |
36864
|
|
17E68E02000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.872551053.0000017E68E02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
17E68E02000
|
Size: |
65536
|
|
225A8FF000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.866934332.000000225A8FF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
225A8FF000
|
Size: |
4096
|
|
1D725320000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.860967673.000001D725320000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D725320000
|
Size: |
4096
|
|
3B9CAFD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.856130371.0000003B9CAFD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3B9CAFD000
|
Size: |
12288
|
|
2095AE2A000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.867258263.000002095AE2A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2095AE2A000
|
Size: |
122880
|
|
20613902000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.856621727.0000020613902000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20613902000
|
Size: |
16384
|
|
206137B0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.856368450.00000206137B0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
206137B0000
|
Size: |
4096
|
|
1A5D78E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.850609139.0000001A5D78E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1A5D78E000
|
Size: |
8192
|
|
37FC9CF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.852856381.00000037FC9CF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
37FC9CF000
|
Size: |
4096
|
|
F680BFE000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.877440006.000000F680BFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
F680BFE000
|
Size: |
8192
|
|
1D725402000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.860984990.000001D725402000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D725402000
|
Size: |
4096
|
|
1664F22B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.850885881.000001664F22B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1664F22B000
|
Size: |
69632
|
|
189E9EB0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000C.00000002.875289644.00000189E9EB0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
12
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
189E9EB0000
|
Size: |
8192
|
|
17E68E60000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.873070333.0000017E68E60000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
17E68E60000
|
Size: |
40960
|
|
2095AE00000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.867188759.000002095AE00000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2095AE00000
|
Size: |
4096
|
|
189EA049000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000C.00000002.875461735.00000189EA049000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
12
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
189EA049000
|
Size: |
40960
|
|
24B51650000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.853290153.0000024B51650000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
24B51650000
|
Size: |
12288
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
AV process strings found (often used to terminate AV products) |
Lowering of HIPS / PFW / Operating System Security Settings |
Security Software Discovery
|
|
20613800000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.856381158.0000020613800000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20613800000
|
Size: |
4096
|
|
F6808FE000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.877346580.000000F6808FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
F6808FE000
|
Size: |
8192
|
|
17E68E49000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.873022851.0000017E68E49000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
17E68E49000
|
Size: |
49152
|
|
17E6AE02000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.873135901.0000017E6AE02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
17E6AE02000
|
Size: |
4096
|
|
1A5DA7E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.850629619.0000001A5DA7E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1A5DA7E000
|
Size: |
8192
|
|
189EA060000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000C.00000002.875505152.00000189EA060000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
12
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
189EA060000
|
Size: |
40960
|
|
1664F215000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000003.850210673.000001664F215000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1664F215000
|
Size: |
86016
|
|
1C0DC130000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.851212585.000001C0DC130000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C0DC130000
|
Size: |
24576
|
|
85ECBFC000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000C.00000002.875265954.00000085ECBFC000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
12
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
85ECBFC000
|
Size: |
16384
|
|
22132380000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.853078402.0000022132380000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22132380000
|
Size: |
12288
|
|
1664F2F0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.850994318.000001664F2F0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1664F2F0000
|
Size: |
4096
|
|
1D7233C0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.859344371.000001D7233C0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D7233C0000
|
Size: |
8192
|
|
1C0DC138000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.851212585.000001C0DC138000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C0DC138000
|
Size: |
4096
|
|
22132058000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.853022250.0000022132058000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22132058000
|
Size: |
86016
|
|
1D723502000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.860948262.000001D723502000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D723502000
|
Size: |
16384
|
|
B44D6F7000
|
stack
|
page read and write
|
|
|
|
Name: |
00000009.00000002.858087087.000000B44D6F7000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B44D6F7000
|
Size: |
36864
|
|
24B5144A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.853242141.0000024B5144A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
24B5144A000
|
Size: |
16384
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
AV process strings found (often used to terminate AV products) |
Lowering of HIPS / PFW / Operating System Security Settings |
Security Software Discovery
|
|
3B9CEFF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.856221888.0000003B9CEFF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3B9CEFF000
|
Size: |
4096
|
|
17E6AD20000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.873115987.0000017E6AD20000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
17E6AD20000
|
Size: |
4096
|
|
2095AE49000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.867288598.000002095AE49000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2095AE49000
|
Size: |
53248
|
|
3B9CCFF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.856195699.0000003B9CCFF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3B9CCFF000
|
Size: |
4096
|
|
2095AE02000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.867188759.000002095AE02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2095AE02000
|
Size: |
65536
|
|
F6807FE000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.877320333.000000F6807FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
F6807FE000
|
Size: |
8192
|
|
1664F1F0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.850761218.000001664F1F0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1664F1F0000
|
Size: |
28672
|
|
1664F22B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000003.850327123.000001664F22B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1664F22B000
|
Size: |
69632
|
|
20615610000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.856637563.0000020615610000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20615610000
|
Size: |
4096
|
|
2095AD30000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.867170187.000002095AD30000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2095AD30000
|
Size: |
4096
|
|
B44D9FD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000009.00000002.858219865.000000B44D9FD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B44D9FD000
|
Size: |
12288
|
|
26202BD0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.877813857.0000026202BD0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
26202BD0000
|
Size: |
4096
|
|
26200E60000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.877766402.0000026200E60000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
26200E60000
|
Size: |
32768
|
|
1664F1F8000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.850761218.000001664F1F8000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1664F1F8000
|
Size: |
102400
|
|
22131FF0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.852933028.0000022131FF0000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22131FF0000
|
Size: |
4096
|
|
B44DCFC000
|
stack
|
page read and write
|
|
|
|
Name: |
00000009.00000002.859302206.000000B44DCFC000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B44DCFC000
|
Size: |
16384
|
|
2061384A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.856531995.000002061384A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2061384A000
|
Size: |
40960
|
|
17E68E00000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.872551053.0000017E68E00000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
17E68E00000
|
Size: |
4096
|
|
85EC7FD000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000C.00000002.875177324.00000085EC7FD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
12
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
85EC7FD000
|
Size: |
12288
|
|
189E9FB0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000C.00000002.875336996.00000189E9FB0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
12
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
189E9FB0000
|
Size: |
4096
|
|
1D723400000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.859779260.000001D723400000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D723400000
|
Size: |
4096
|
|
20613802000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.856381158.0000020613802000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20613802000
|
Size: |
65536
|
|
189EA02A000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000C.00000002.875434251.00000189EA02A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
12
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
189EA02A000
|
Size: |
122880
|
|
1D7233F0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.859723592.000001D7233F0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D7233F0000
|
Size: |
4096
|
|
26202C02000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.877836341.0000026202C02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
26202C02000
|
Size: |
4096
|
|
17E68E2A000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.872952270.0000017E68E2A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
17E68E2A000
|
Size: |
73728
|
|
189EA056000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000C.00000002.875461735.00000189EA056000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
12
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
189EA056000
|
Size: |
24576
|
|
2095AC50000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.867145109.000002095AC50000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2095AC50000
|
Size: |
4096
|
|
85EC6FE000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000C.00000002.875156653.00000085EC6FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
12
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
85EC6FE000
|
Size: |
8192
|
|
1664F440000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.851014559.000001664F440000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1664F440000
|
Size: |
12288
|
|
2095CB90000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.868356434.000002095CB90000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2095CB90000
|
Size: |
4096
|
|
2213206E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.853022250.000002213206E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2213206E000
|
Size: |
28672
|
|
20613857000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.856531995.0000020613857000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20613857000
|
Size: |
20480
|
|
20615802000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.856650268.0000020615802000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20615802000
|
Size: |
4096
|
|
3B9CFFD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.856276263.0000003B9CFFD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3B9CFFD000
|
Size: |
12288
|
|
1A5DBFE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.850696955.0000001A5DBFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1A5DBFE000
|
Size: |
8192
|
|
1748BB8000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.872306125.0000001748BB8000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1748BB8000
|
Size: |
32768
|
|
26200C70000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.877529504.0000026200C70000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
26200C70000
|
Size: |
8192
|
|
26200E00000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.877600141.0000026200E00000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
26200E00000
|
Size: |
4096
|
|
17E68F02000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.873091353.0000017E68F02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
17E68F02000
|
Size: |
16384
|
|
1664F227000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000003.850327123.000001664F227000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1664F227000
|
Size: |
12288
|
|
17E68DE0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.872506213.0000017E68DE0000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
17E68DE0000
|
Size: |
4096
|
|
225A9FE000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.867042625.000000225A9FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
225A9FE000
|
Size: |
8192
|
|
C112F6C000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.853149697.000000C112F6C000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C112F6C000
|
Size: |
16384
|
|
C112FEF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.853168004.000000C112FEF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C112FEF000
|
Size: |
4096
|
|
17E68E13000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000B.00000002.872760495.0000017E68E13000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
11
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
17E68E13000
|
Size: |
90112
|
|
1664F23D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000003.850210673.000001664F23D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1664F23D000
|
Size: |
20480
|
|
22132000000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.852952607.0000022132000000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
22132000000
|
Size: |
8192
|
|
26200E02000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000D.00000002.877600141.0000026200E02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
13
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
26200E02000
|
Size: |
65536
|
|