248CAFFC000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.495932496.00000248CAFFC000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248CAFFC000
|
Size: |
8192
|
|
15A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.471501808.00000000015A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15A0000
|
Size: |
12288
|
|
15A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.448104547.00000000015A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15A0000
|
Size: |
8192
|
|
7C2000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000005.00000000.444324230.00000000007C2000.00000002.00000001.01000000.00000006.sdmp
|
TargetID: |
5
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7C2000
|
Size: |
4771840
|
|
1BA30000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.443260160.000000001BA30000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA30000
|
Size: |
65536
|
|
1B11A908000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.514792356.000001B11A908000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1B11A908000
|
Size: |
24576
|
|
3F48637000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459342005.0000003F48637000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3F48637000
|
Size: |
36864
|
|
1974D554000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.624107022.000001974D554000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1974D554000
|
Size: |
4096
|
|
1F879770000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.450970851.000001F879770000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879770000
|
Size: |
53248
|
|
2FE0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.435032325.0000000002FE0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2FE0000
|
Size: |
65536
|
|
1AFFB1E0000
|
trusted library section
|
page readonly
|
|
|
|
Name: |
0000000F.00000002.703214189.000001AFFB1E0000.00000002.08000000.00040000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library section
|
Protect: |
page readonly
|
Base address: |
1AFFB1E0000
|
Size: |
65536
|
|
1F85F450000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000006.00000000.445714500.000001F85F450000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
1F85F450000
|
Size: |
4096
|
|
FD0000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000000.00000000.426614767.0000000000FD0000.00000002.00000001.01000000.00000003.sdmp
|
TargetID: |
0
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
FD0000
|
Size: |
4096
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
Sample file is different than original file name gathered from version info |
System Summary |
|
|
9B6B8FE000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702313656.0000009B6B8FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
9B6B8FE000
|
Size: |
8192
|
|
136D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000005.00000002.481860175.000000000136D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
136D000
|
Size: |
12288
|
|
1F861D0D000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.467950396.000001F861D0D000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F861D0D000
|
Size: |
192512
|
|
7C2000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000005.00000002.478280226.00000000007C2000.00000002.00000001.01000000.00000006.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7C2000
|
Size: |
4771840
|
|
131A4000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.449771197.00000000131A4000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
131A4000
|
Size: |
9191424
|
|
1AF80030000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702372096.000001AF80030000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AF80030000
|
Size: |
4096
|
|
62770EC000
|
stack
|
page read and write
|
|
|
|
Name: |
00000010.00000002.514523625.00000062770EC000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
62770EC000
|
Size: |
16384
|
|
143C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.447749047.000000000143C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
143C000
|
Size: |
49152
|
|
1F879532000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.454911125.000001F879532000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F879532000
|
Size: |
49152
|
|
1F862608000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.472814760.000001F862608000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F862608000
|
Size: |
524288
|
|
7FF9F1DB0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475946271.00007FF9F1DB0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1DB0000
|
Size: |
65536
|
|
1C580000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441288946.000000001C580000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C580000
|
Size: |
65536
|
|
248E25F0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.480645369.00000248E25F0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E25F0000
|
Size: |
24576
|
|
8E2117E000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.487771093.0000008E2117E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8E2117E000
|
Size: |
8192
|
|
1C420000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440553311.000000001C420000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C420000
|
Size: |
65536
|
|
1AFFAB02000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.703114846.000001AFFAB02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFAB02000
|
Size: |
45056
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.443157312.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
65536
|
|
248CADA1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.494032994.00000248CADA1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248CADA1000
|
Size: |
8192
|
|
201580B0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660378044.00000201580B0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201580B0000
|
Size: |
16384
|
|
1390000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.448058970.0000000001390000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1390000
|
Size: |
57344
|
|
248E2CB2000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.487049078.00000248E2CB2000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248E2CB2000
|
Size: |
4096
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.470374850.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
16384
|
|
7FF9F1B40000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475421806.00007FF9F1B40000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1B40000
|
Size: |
12288
|
|
20158985000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.633734798.0000020158985000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158985000
|
Size: |
8192
|
|
1370000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.447867759.0000000001370000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1370000
|
Size: |
65536
|
|
1AFFAA8E000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.703024632.000001AFFAA8E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFAA8E000
|
Size: |
4096
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441775898.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
65536
|
|
248E2661000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.487225223.00000248E2661000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248E2661000
|
Size: |
28672
|
|
1AFFFE30000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.703447618.000001AFFFE30000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AFFFE30000
|
Size: |
4096
|
|
20158E02000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.625797701.0000020158E02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158E02000
|
Size: |
143360
|
|
20158988000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.627022015.0000020158988000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158988000
|
Size: |
4096
|
|
20158992000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.620395010.0000020158992000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158992000
|
Size: |
245760
|
|
1F85F670000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.447335257.000001F85F670000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F85F670000
|
Size: |
28672
|
|
1F85F5A0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459585174.000001F85F5A0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F85F5A0000
|
Size: |
16384
|
|
15D0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.473202041.00000000015D0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15D0000
|
Size: |
24576
|
|
1C460000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440798576.000000001C460000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C460000
|
Size: |
65536
|
|
248E2970000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.497957934.00000248E2970000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248E2970000
|
Size: |
4096
|
|
15A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.471301013.00000000015A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15A0000
|
Size: |
12288
|
|
3F487BF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459522501.0000003F487BF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3F487BF000
|
Size: |
4096
|
|
20158987000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.620851517.0000020158987000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158987000
|
Size: |
12288
|
|
1C4F0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440959881.000000001C4F0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C4F0000
|
Size: |
65536
|
|
1C160000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.469101447.000000001C160000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C160000
|
Size: |
65536
|
|
2C0267F0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000015.00000002.702181266.000002C0267F0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2C0267F0000
|
Size: |
4096
|
|
7FF9F1B53000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475534658.00007FF9F1B53000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1B53000
|
Size: |
28672
|
|
7FF9F1E40000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.499772277.00007FF9F1E40000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1E40000
|
Size: |
65536
|
|
15B0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.470273520.00000000015B0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15B0000
|
Size: |
20480
|
|
248E2600000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.482420422.00000248E2600000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E2600000
|
Size: |
65536
|
|
201580EB000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.616194191.00000201580EB000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201580EB000
|
Size: |
36864
|
|
201580A3000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.620683933.00000201580A3000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201580A3000
|
Size: |
32768
|
|
248E2950000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.482598873.00000248E2950000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E2950000
|
Size: |
40960
|
|
8E20CFE000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.487613830.0000008E20CFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8E20CFE000
|
Size: |
8192
|
|
1F87953F000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.454927869.000001F87953F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F87953F000
|
Size: |
200704
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442438160.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
65536
|
|
2F94000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.446659260.0000000002F94000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2F94000
|
Size: |
49152
|
|
11AD000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.481346886.00000000011AD000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
11AD000
|
Size: |
8192
|
|
2015890E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660530587.000002015890E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2015890E000
|
Size: |
28672
|
|
5BE97B000
|
stack
|
page read and write
|
|
|
|
Name: |
00000012.00000002.538996309.00000005BE97B000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
5BE97B000
|
Size: |
20480
|
|
CEA6C79000
|
stack
|
page read and write
|
|
|
|
Name: |
00000015.00000002.702102422.000000CEA6C79000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
CEA6C79000
|
Size: |
28672
|
|
201589C3000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.642736977.00000201589C3000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201589C3000
|
Size: |
147456
|
|
1453000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.447812180.0000000001453000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1453000
|
Size: |
12288
|
|
2015898C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.639071288.000002015898C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2015898C000
|
Size: |
20480
|
|
3F4893C000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459537249.0000003F4893C000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3F4893C000
|
Size: |
16384
|
|
88714FD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660020151.00000088714FD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
88714FD000
|
Size: |
12288
|
|
248C864B000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.488075445.00000248C864B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248C864B000
|
Size: |
20480
|
|
1251AC4D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000012.00000003.538777328.000001251AC4D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1251AC4D000
|
Size: |
114688
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441808353.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
28672
|
|
1F87957C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475319427.000001F87957C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F87957C000
|
Size: |
12288
|
|
1974D555000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000003.623443667.000001974D555000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1974D555000
|
Size: |
32768
|
|
248CA000000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.488327078.00000248CA000000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248CA000000
|
Size: |
12288
|
|
20158992000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.620023786.0000020158992000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158992000
|
Size: |
118784
|
|
248CA269000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.488708764.00000248CA269000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248CA269000
|
Size: |
1712128
|
|
1C220000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.469552221.000000001C220000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C220000
|
Size: |
65536
|
|
7FF9F1B2D000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000A.00000002.498370746.00007FF9F1B2D000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1B2D000
|
Size: |
12288
|
|
201580D6000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.633703115.00000201580D6000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201580D6000
|
Size: |
49152
|
|
248C85F9000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.487955408.00000248C85F9000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248C85F9000
|
Size: |
196608
|
|
1BA10000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442676983.000000001BA10000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA10000
|
Size: |
65536
|
|
2C0269F5000
|
heap
|
page read and write
|
|
|
|
Name: |
00000015.00000002.702356624.000002C0269F5000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2C0269F5000
|
Size: |
12288
|
|
1C4D0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440916729.000000001C4D0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C4D0000
|
Size: |
65536
|
|
1AFFAAAF000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.703075791.000001AFFAAAF000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFAAAF000
|
Size: |
40960
|
|
201580D0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.638903468.00000201580D0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201580D0000
|
Size: |
8192
|
|
1AFFAA13000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702827909.000001AFFAA13000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFAA13000
|
Size: |
45056
|
|
1F879780000
|
direct allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.452048894.000001F879780000.00000004.00001000.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
direct allocation
|
Protect: |
page read and write
|
Base address: |
1F879780000
|
Size: |
4096
|
|
1C230000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.469578169.000000001C230000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C230000
|
Size: |
65536
|
|
20158987000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.639060790.0000020158987000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158987000
|
Size: |
16384
|
|
20158029000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660259358.0000020158029000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158029000
|
Size: |
73728
|
|
2012FFB000
|
stack
|
page read and write
|
|
|
|
Name: |
00000017.00000002.587074055.0000002012FFB000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
2012FFB000
|
Size: |
20480
|
|
1C130000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.468952550.000000001C130000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C130000
|
Size: |
65536
|
|
1F85F400000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459570955.000001F85F400000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F85F400000
|
Size: |
4096
|
|
2012BBE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000017.00000002.587015633.0000002012BBE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
2012BBE000
|
Size: |
8192
|
|
1BA10000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442421366.000000001BA10000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA10000
|
Size: |
12288
|
|
7DF4974F0000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000A.00000002.498287428.00007DF4974F0000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7DF4974F0000
|
Size: |
4096
|
|
248E2600000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.481214037.00000248E2600000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E2600000
|
Size: |
65536
|
|
1AF80130000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702410447.000001AF80130000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AF80130000
|
Size: |
4096
|
|
2081B070000
|
heap
|
page read and write
|
|
|
|
Name: |
00000017.00000002.587384770.000002081B070000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2081B070000
|
Size: |
16384
|
|
1F860EA0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459856019.000001F860EA0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F860EA0000
|
Size: |
4096
|
|
1C500000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440977298.000000001C500000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C500000
|
Size: |
65536
|
|
1C470000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440820562.000000001C470000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C470000
|
Size: |
49152
|
|
2015804A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.659856363.000002015804A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2015804A000
|
Size: |
16384
|
|
7FFA5FC70000
|
unkown
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.500242159.00007FFA5FC70000.00000004.00000001.01000000.00000007.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
7FFA5FC70000
|
Size: |
8192
|
|
2FB0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.434995384.0000000002FB0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2FB0000
|
Size: |
65536
|
|
1D3ED800000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.702215359.000001D3ED800000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D3ED800000
|
Size: |
4096
|
|
1BAF0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440107577.000000001BAF0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BAF0000
|
Size: |
65536
|
|
1BA20000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441626349.000000001BA20000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA20000
|
Size: |
20480
|
|
7FF9F1B42000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.459295794.00007FF9F1B42000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1B42000
|
Size: |
24576
|
|
1BA90000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.439884350.000000001BA90000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA90000
|
Size: |
65536
|
|
1AF80110000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702383429.000001AF80110000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AF80110000
|
Size: |
4096
|
|
1BA20000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442938491.000000001BA20000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA20000
|
Size: |
49152
|
|
2C0269F0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000015.00000002.702345327.000002C0269F0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2C0269F0000
|
Size: |
12288
|
|
1B11AFB0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000010.00000002.514805210.000001B11AFB0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1B11AFB0000
|
Size: |
4096
|
|
315A000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.448553925.000000000315A000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
315A000
|
Size: |
1400832
|
|
20158988000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660694578.0000020158988000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158988000
|
Size: |
8192
|
|
1F85F61E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459776091.000001F85F61E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F85F61E000
|
Size: |
8192
|
|
1F860F60000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.460051352.000001F860F60000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F860F60000
|
Size: |
4096
|
|
7FF9F1C50000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.459518628.00007FF9F1C50000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1C50000
|
Size: |
36864
|
|
1974D570000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000003.623537013.000001974D570000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1974D570000
|
Size: |
20480
|
|
1C25B000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.457480347.000000001C25B000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1C25B000
|
Size: |
20480
|
|
1F8797F0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475337377.000001F8797F0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F8797F0000
|
Size: |
4096
|
|
1AFFB313000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.703309254.000001AFFB313000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFB313000
|
Size: |
20480
|
|
1B11A813000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.514680456.000001B11A813000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1B11A813000
|
Size: |
86016
|
|
248C8520000
|
unkown
|
page readonly
|
|
|
|
Name: |
0000000A.00000000.476628972.00000248C8520000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
248C8520000
|
Size: |
4096
|
|
1AFFAA56000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702925016.000001AFFAA56000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFAA56000
|
Size: |
73728
|
|
201589D0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.637622256.00000201589D0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201589D0000
|
Size: |
90112
|
|
7FF9F1B42000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000002.485454636.00007FF9F1B42000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1B42000
|
Size: |
24576
|
|
9B6B7FF000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702276154.0000009B6B7FF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
9B6B7FF000
|
Size: |
4096
|
|
2015898C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.639085802.000002015898C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2015898C000
|
Size: |
20480
|
|
1F879780000
|
direct allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.452778029.000001F879780000.00000004.00001000.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
direct allocation
|
Protect: |
page read and write
|
Base address: |
1F879780000
|
Size: |
4096
|
|
2081B000000
|
heap
|
page read and write
|
|
|
|
Name: |
00000017.00000002.587143844.000002081B000000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2081B000000
|
Size: |
73728
|
|
2C0268E1000
|
heap
|
page read and write
|
|
|
|
Name: |
00000015.00000003.581083503.000002C0268E1000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2C0268E1000
|
Size: |
4096
|
|
1974D560000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000003.623475510.000001974D560000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1974D560000
|
Size: |
86016
|
|
7FF9F1D79000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475851432.00007FF9F1D79000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1D79000
|
Size: |
28672
|
|
62779FE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000010.00000002.514632298.00000062779FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
62779FE000
|
Size: |
8192
|
|
1B11A84D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000003.514391164.000001B11A84D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1B11A84D000
|
Size: |
24576
|
|
11D9000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.481421283.00000000011D9000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
11D9000
|
Size: |
4096
|
|
8E2113E000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.487759029.0000008E2113E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8E2113E000
|
Size: |
8192
|
|
15B0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.470160100.00000000015B0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15B0000
|
Size: |
20480
|
|
1251AD13000
|
heap
|
page read and write
|
|
|
|
Name: |
00000012.00000002.539356244.000001251AD13000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1251AD13000
|
Size: |
16384
|
|
20158991000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.620865882.0000020158991000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158991000
|
Size: |
4096
|
|
3F47F75000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.457718832.0000003F47F75000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3F47F75000
|
Size: |
45056
|
|
1BA20000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.443131389.000000001BA20000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA20000
|
Size: |
45056
|
|
248E2C2D000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.497994066.00000248E2C2D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248E2C2D000
|
Size: |
94208
|
|
1974D575000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000003.623436527.000001974D575000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1974D575000
|
Size: |
12288
|
|
1F879770000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.450950277.000001F879770000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879770000
|
Size: |
40960
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.469942896.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
8192
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441721763.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
16384
|
|
7FF9F1DA0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.499011075.00007FF9F1DA0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1DA0000
|
Size: |
65536
|
|
1BA10000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441598729.000000001BA10000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA10000
|
Size: |
65536
|
|
1445000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.481881660.0000000001445000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1445000
|
Size: |
8192
|
|
1B8F0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.468479343.000000001B8F0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1B8F0000
|
Size: |
20480
|
|
1430000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.447711637.0000000001430000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1430000
|
Size: |
45056
|
|
13F0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.449009761.00000000013F0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
13F0000
|
Size: |
61440
|
|
15A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.470439235.00000000015A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15A0000
|
Size: |
12288
|
|
7C0000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000005.00000000.444319003.00000000007C0000.00000002.00000001.01000000.00000006.sdmp
|
TargetID: |
5
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7C0000
|
Size: |
4096
|
|
248E2600000
|
direct allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.482313715.00000248E2600000.00000004.00001000.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
direct allocation
|
Protect: |
page read and write
|
Base address: |
248E2600000
|
Size: |
4096
|
|
1AF80024000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000003.492732240.000001AF80024000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AF80024000
|
Size: |
4096
|
|
1B900000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.468561978.000000001B900000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1B900000
|
Size: |
65536
|
|
62776F7000
|
stack
|
page read and write
|
|
|
|
Name: |
00000010.00000002.514575637.00000062776F7000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
62776F7000
|
Size: |
36864
|
|
2FB0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.435265595.0000000002FB0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2FB0000
|
Size: |
65536
|
|
15C0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.472237354.00000000015C0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15C0000
|
Size: |
65536
|
|
1BA70000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.443851504.000000001BA70000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA70000
|
Size: |
65536
|
|
1B11A88B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.514772721.000001B11A88B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1B11A88B000
|
Size: |
24576
|
|
5BECFF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000012.00000002.539072742.00000005BECFF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
5BECFF000
|
Size: |
4096
|
|
1C490000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440858295.000000001C490000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C490000
|
Size: |
65536
|
|
8871BFE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660183075.0000008871BFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8871BFE000
|
Size: |
8192
|
|
1AF80021000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000003.492727141.000001AF80021000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AF80021000
|
Size: |
4096
|
|
1120000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000002.481136785.0000000001120000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1120000
|
Size: |
8192
|
|
1BA10000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442330793.000000001BA10000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA10000
|
Size: |
8192
|
|
201589A2000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.648971138.00000201589A2000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201589A2000
|
Size: |
32768
|
|
248E2600000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.480959193.00000248E2600000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E2600000
|
Size: |
40960
|
|
1F879770000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.451078037.000001F879770000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879770000
|
Size: |
4096
|
|
1F871141000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.474211913.000001F871141000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F871141000
|
Size: |
53248
|
|
1B87F000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.468093152.000000001B87F000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1B87F000
|
Size: |
4096
|
|
15C0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.471990690.00000000015C0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15C0000
|
Size: |
61440
|
|
2F21000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000002.482054860.0000000002F21000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2F21000
|
Size: |
1470464
|
|
20158976000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.650430305.0000020158976000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158976000
|
Size: |
12288
|
|
1C1C0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.469262190.000000001C1C0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C1C0000
|
Size: |
65536
|
|
2081B113000
|
heap
|
page read and write
|
|
|
|
Name: |
00000017.00000002.587621339.000002081B113000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2081B113000
|
Size: |
12288
|
|
7FF9F1C40000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000A.00000002.498466554.00007FF9F1C40000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1C40000
|
Size: |
12288
|
|
15B0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.472950223.00000000015B0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15B0000
|
Size: |
45056
|
|
7FF9F1D22000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475765684.00007FF9F1D22000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1D22000
|
Size: |
8192
|
|
1F879760000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.450843949.000001F879760000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879760000
|
Size: |
45056
|
|
2C0274F0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000015.00000002.702429146.000002C0274F0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2C0274F0000
|
Size: |
49152
|
|
20158089000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660354118.0000020158089000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158089000
|
Size: |
147456
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442031233.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
20480
|
|
1C240000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.469643114.000000001C240000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C240000
|
Size: |
45056
|
|
15A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.474761068.00000000015A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15A0000
|
Size: |
8192
|
|
7FF9F1C16000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000005.00000002.485632955.00007FF9F1C16000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1C16000
|
Size: |
4096
|
|
1F85F540000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459575950.000001F85F540000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F85F540000
|
Size: |
16384
|
|
7FF9F1E20000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.499574936.00007FF9F1E20000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1E20000
|
Size: |
65536
|
|
CEA6D7E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000015.00000002.702130583.000000CEA6D7E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
CEA6D7E000
|
Size: |
8192
|
|
887197E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660091698.000000887197E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
887197E000
|
Size: |
8192
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.470499494.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
28672
|
|
201580D6000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660434128.00000201580D6000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201580D6000
|
Size: |
49152
|
|
1495000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.447877965.0000000001495000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1495000
|
Size: |
4096
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441734337.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
4096
|
|
248C9F70000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.488288268.00000248C9F70000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248C9F70000
|
Size: |
4096
|
|
1C140000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.468966860.000000001C140000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C140000
|
Size: |
49152
|
|
20158082000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660341417.0000020158082000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158082000
|
Size: |
24576
|
|
1457000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.447841704.0000000001457000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1457000
|
Size: |
77824
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.443290501.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
8192
|
|
1BAE0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440091201.000000001BAE0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BAE0000
|
Size: |
65536
|
|
1BBEE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000005.00000002.484989976.000000001BBEE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1BBEE000
|
Size: |
8192
|
|
1AFFB300000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.703277032.000001AFFB300000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFB300000
|
Size: |
4096
|
|
1154000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.477857787.0000000001154000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1154000
|
Size: |
49152
|
|
2081B100000
|
heap
|
page read and write
|
|
|
|
Name: |
00000017.00000002.587547190.000002081B100000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2081B100000
|
Size: |
4096
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.472027044.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
65536
|
|
248CAD99000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.494004079.00000248CAD99000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248CAD99000
|
Size: |
4096
|
|
1D3ED828000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.702293930.000001D3ED828000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D3ED828000
|
Size: |
98304
|
|
248E2600000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.482537270.00000248E2600000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E2600000
|
Size: |
65536
|
|
248E2CA7000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.498112535.00000248E2CA7000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248E2CA7000
|
Size: |
12288
|
|
B4E327B000
|
stack
|
page read and write
|
|
|
|
Name: |
00000011.00000002.702147345.000000B4E327B000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B4E327B000
|
Size: |
20480
|
|
2C026A00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000015.00000002.702382632.000002C026A00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2C026A00000
|
Size: |
4096
|
|
2C0268BE000
|
heap
|
page read and write
|
|
|
|
Name: |
00000015.00000003.569270265.000002C0268BE000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2C0268BE000
|
Size: |
8192
|
|
FE0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.447678740.0000000000FE0000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
FE0000
|
Size: |
4096
|
|
2EE0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.467391236.0000000002EE0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2EE0000
|
Size: |
65536
|
|
7FF9F1D59000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.498628738.00007FF9F1D59000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1D59000
|
Size: |
28672
|
|
1F862697000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.473182203.000001F862697000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F862697000
|
Size: |
1830912
|
|
248C85D0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.487839252.00000248C85D0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248C85D0000
|
Size: |
12288
|
|
1F879780000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.452068346.000001F879780000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879780000
|
Size: |
65536
|
|
8871778000
|
stack
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660049563.0000008871778000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8871778000
|
Size: |
32768
|
|
248C8530000
|
unkown
|
page read and write
|
|
|
|
Name: |
0000000A.00000000.477143412.00000248C8530000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
248C8530000
|
Size: |
4096
|
|
248C862F000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.488035148.00000248C862F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248C862F000
|
Size: |
4096
|
|
7FF9F1C60000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000006.00000002.475663549.00007FF9F1C60000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1C60000
|
Size: |
12288
|
|
248E2600000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.484131437.00000248E2600000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E2600000
|
Size: |
24576
|
|
1974D470000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.624035394.000001974D470000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1974D470000
|
Size: |
8192
|
|
1F879780000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.451391821.000001F879780000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879780000
|
Size: |
40960
|
|
1AFFA930000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702786750.000001AFFA930000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AFFA930000
|
Size: |
4096
|
|
1B49D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000005.00000002.484865448.000000001B49D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1B49D000
|
Size: |
12288
|
|
1499000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.447896723.0000000001499000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1499000
|
Size: |
466944
|
|
248CB0C0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.496548225.00000248CB0C0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248CB0C0000
|
Size: |
4096
|
|
15A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.471604337.00000000015A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15A0000
|
Size: |
8192
|
|
1C390000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440246144.000000001C390000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C390000
|
Size: |
49152
|
|
C50000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000005.00000000.446698830.0000000000C50000.00000002.00000001.01000000.00000006.sdmp
|
TargetID: |
5
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
C50000
|
Size: |
4096
|
|
13D0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.448859099.00000000013D0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
13D0000
|
Size: |
65536
|
|
1C480000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440833575.000000001C480000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C480000
|
Size: |
61440
|
|
7FF9F1DA0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475895783.00007FF9F1DA0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1DA0000
|
Size: |
65536
|
|
20157E10000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660197480.0000020157E10000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20157E10000
|
Size: |
4096
|
|
7FF9F1E60000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.476417104.00007FF9F1E60000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1E60000
|
Size: |
65536
|
|
248C9F90000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.488309147.00000248C9F90000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248C9F90000
|
Size: |
65536
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442084128.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
16384
|
|
1AFFAA70000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702959858.000001AFFAA70000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFAA70000
|
Size: |
4096
|
|
12F31000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000002.483010988.0000000012F31000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
12F31000
|
Size: |
5070848
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441890174.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
16384
|
|
20158999000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.625655310.0000020158999000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158999000
|
Size: |
143360
|
|
1251B602000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000012.00000002.539364441.000001251B602000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1251B602000
|
Size: |
4096
|
|
1BA70000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.439800016.000000001BA70000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA70000
|
Size: |
28672
|
|
DD0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.481107667.0000000000DD0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
DD0000
|
Size: |
4096
|
|
1BA10000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.443048141.000000001BA10000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA10000
|
Size: |
65536
|
|
8E20D7F000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.487622255.0000008E20D7F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8E20D7F000
|
Size: |
4096
|
|
1BA10000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.439609622.000000001BA10000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA10000
|
Size: |
65536
|
|
1B840000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.467801952.000000001B840000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1B840000
|
Size: |
65536
|
|
7C0000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000005.00000002.478235811.00000000007C0000.00000002.00000001.01000000.00000006.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7C0000
|
Size: |
4096
|
|
201580B5000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660408745.00000201580B5000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201580B5000
|
Size: |
45056
|
|
1AFFB1B0000
|
trusted library section
|
page readonly
|
|
|
|
Name: |
0000000F.00000002.703151950.000001AFFB1B0000.00000002.08000000.00040000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library section
|
Protect: |
page readonly
|
Base address: |
1AFFB1B0000
|
Size: |
65536
|
|
20158991000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.639010028.0000020158991000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158991000
|
Size: |
4096
|
|
7FF9F1B3D000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000005.00000002.485408571.00007FF9F1B3D000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1B3D000
|
Size: |
12288
|
|
1251AC29000
|
heap
|
page read and write
|
|
|
|
Name: |
00000012.00000002.539178490.000001251AC29000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1251AC29000
|
Size: |
12288
|
|
248CA065000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.488357427.00000248CA065000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248CA065000
|
Size: |
16384
|
|
1B870000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.467944510.000000001B870000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1B870000
|
Size: |
49152
|
|
1B11B002000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000010.00000002.514810188.000001B11B002000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1B11B002000
|
Size: |
4096
|
|
1251AB80000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000012.00000002.539133498.000001251AB80000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1251AB80000
|
Size: |
4096
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441586140.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
65536
|
|
248DA201000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.497438144.00000248DA201000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248DA201000
|
Size: |
53248
|
|
1BA70000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.444047796.000000001BA70000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA70000
|
Size: |
65536
|
|
1C540000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441100310.000000001C540000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C540000
|
Size: |
65536
|
|
1F879611000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.457238840.000001F879611000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879611000
|
Size: |
8192
|
|
1F8711B1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.474450346.000001F8711B1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F8711B1000
|
Size: |
1232896
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
1AFFA940000
|
trusted library section
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702795912.000001AFFA940000.00000004.08000000.00040000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library section
|
Protect: |
page read and write
|
Base address: |
1AFFA940000
|
Size: |
4096
|
|
2015899F000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.642774201.000002015899F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2015899F000
|
Size: |
147456
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.473008584.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
65536
|
|
20158E02000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.632491123.0000020158E02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158E02000
|
Size: |
126976
|
|
248C9FC0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.488319238.00000248C9FC0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248C9FC0000
|
Size: |
4096
|
|
201589BA000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.625597878.00000201589BA000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201589BA000
|
Size: |
73728
|
|
7FFA54060000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000006.00000002.476627648.00007FFA54060000.00000004.00000001.01000000.00000007.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
7FFA54060000
|
Size: |
8192
|
|
7FFA54056000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000006.00000002.476604685.00007FFA54056000.00000002.00000001.01000000.00000007.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FFA54056000
|
Size: |
40960
|
|
20158991000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.649009081.0000020158991000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158991000
|
Size: |
65536
|
|
1251AD08000
|
heap
|
page read and write
|
|
|
|
Name: |
00000012.00000002.539348226.000001251AD08000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1251AD08000
|
Size: |
24576
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441549834.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
65536
|
|
10D0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.481114555.00000000010D0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
10D0000
|
Size: |
12288
|
|
1AFFB1C0000
|
trusted library section
|
page readonly
|
|
|
|
Name: |
0000000F.00000002.703171100.000001AFFB1C0000.00000002.08000000.00040000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library section
|
Protect: |
page readonly
|
Base address: |
1AFFB1C0000
|
Size: |
65536
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441528103.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
8192
|
|
1B810000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.467573158.000000001B810000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1B810000
|
Size: |
65536
|
|
1F861CAB000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.467759684.000001F861CAB000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F861CAB000
|
Size: |
159744
|
|
1F860EF0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.460005561.000001F860EF0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F860EF0000
|
Size: |
12288
|
|
1AF802F9000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702720793.000001AF802F9000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF802F9000
|
Size: |
4096
|
|
248E266C000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.497935581.00000248E266C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248E266C000
|
Size: |
69632
|
|
1974D530000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.624044907.000001974D530000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1974D530000
|
Size: |
40960
|
|
20158113000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660496375.0000020158113000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158113000
|
Size: |
8192
|
|
1F861351000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.464028550.000001F861351000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F861351000
|
Size: |
9777152
|
|
7FF9F1E30000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.476275059.00007FF9F1E30000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1E30000
|
Size: |
65536
|
|
20158977000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.626996954.0000020158977000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158977000
|
Size: |
65536
|
|
248E2CAB000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.498124531.00000248E2CAB000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248E2CAB000
|
Size: |
20480
|
|
1F879780000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.452100562.000001F879780000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879780000
|
Size: |
24576
|
|
8E20A75000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.487554106.0000008E20A75000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8E20A75000
|
Size: |
45056
|
|
7FF9F1BFC000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000006.00000002.475581902.00007FF9F1BFC000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1BFC000
|
Size: |
12288
|
|
1BA20000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442698636.000000001BA20000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA20000
|
Size: |
61440
|
|
1BA20000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442494124.000000001BA20000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA20000
|
Size: |
65536
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441416088.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
65536
|
|
62774FC000
|
stack
|
page read and write
|
|
|
|
Name: |
00000010.00000002.514548722.00000062774FC000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
62774FC000
|
Size: |
16384
|
|
20158E00000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660715100.0000020158E00000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158E00000
|
Size: |
4096
|
|
7FFA54040000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000006.00000002.476520354.00007FFA54040000.00000002.00000001.01000000.00000007.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FFA54040000
|
Size: |
4096
|
|
1BA30000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.439634730.000000001BA30000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA30000
|
Size: |
65536
|
|
8871C7F000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660190650.0000008871C7F000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
8871C7F000
|
Size: |
4096
|
|
201589C3000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.648954091.00000201589C3000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201589C3000
|
Size: |
65536
|
|
8871A78000
|
stack
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660162917.0000008871A78000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8871A78000
|
Size: |
32768
|
|
7FF9F1B40000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.459285651.00007FF9F1B40000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1B40000
|
Size: |
4096
|
|
1BFEB000
|
stack
|
page read and write
|
|
|
|
Name: |
00000005.00000002.485093819.000000001BFEB000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1BFEB000
|
Size: |
20480
|
|
248E2CB4000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.498149347.00000248E2CB4000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248E2CB4000
|
Size: |
4096
|
|
1974D55E000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.624139698.000001974D55E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1974D55E000
|
Size: |
4096
|
|
248CA201000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.488556362.00000248CA201000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248CA201000
|
Size: |
413696
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
248E2940000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.482562772.00000248E2940000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E2940000
|
Size: |
65536
|
|
1F85F603000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459649796.000001F85F603000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F85F603000
|
Size: |
12288
|
|
20158920000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660584712.0000020158920000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158920000
|
Size: |
188416
|
|
1F85F607000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459654142.000001F85F607000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F85F607000
|
Size: |
4096
|
|
7FF9F1E10000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.476225640.00007FF9F1E10000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1E10000
|
Size: |
12288
|
|
248C8520000
|
unkown
|
page readonly
|
|
|
|
Name: |
0000000A.00000000.477133199.00000248C8520000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
248C8520000
|
Size: |
4096
|
|
2FB0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.435097666.0000000002FB0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2FB0000
|
Size: |
20480
|
|
9B6B97F000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702323069.0000009B6B97F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
9B6B97F000
|
Size: |
4096
|
|
11B1000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.481360871.00000000011B1000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
11B1000
|
Size: |
8192
|
|
1F861D08000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.467914775.000001F861D08000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F861D08000
|
Size: |
8192
|
|
1BA30000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442719283.000000001BA30000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA30000
|
Size: |
65536
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.472646193.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
65536
|
|
20158993000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.639028790.0000020158993000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158993000
|
Size: |
8192
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.470048690.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
65536
|
|
1974D7A5000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.624210258.000001974D7A5000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1974D7A5000
|
Size: |
12288
|
|
20133FE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000017.00000002.587105852.00000020133FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
20133FE000
|
Size: |
8192
|
|
2081B04E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000017.00000003.586829969.000002081B04E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2081B04E000
|
Size: |
135168
|
|
20158991000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.630019428.0000020158991000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158991000
|
Size: |
16384
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442020317.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
20480
|
|
2081BA02000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000017.00000002.587629911.000002081BA02000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2081BA02000
|
Size: |
4096
|
|
12F21000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000002.482919022.0000000012F21000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
12F21000
|
Size: |
20480
|
|
20158999000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.625727561.0000020158999000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158999000
|
Size: |
286720
|
|
1C110000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.468876556.000000001C110000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C110000
|
Size: |
49152
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.469961157.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
20480
|
|
248C8560000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.487818217.00000248C8560000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248C8560000
|
Size: |
4096
|
|
248E2C85000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.498067840.00000248E2C85000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248E2C85000
|
Size: |
135168
|
|
3F488BF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459531814.0000003F488BF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3F488BF000
|
Size: |
4096
|
|
1F860F46000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000006.00000002.460029327.000001F860F46000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
1F860F46000
|
Size: |
8192
|
|
7FF9F1D02000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.498536104.00007FF9F1D02000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1D02000
|
Size: |
8192
|
|
1314D000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.449568364.000000001314D000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1314D000
|
Size: |
4096
|
|
248CB00D000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.495954376.00000248CB00D000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248CB00D000
|
Size: |
8192
|
|
2081AF50000
|
heap
|
page read and write
|
|
|
|
Name: |
00000017.00000002.587117240.000002081AF50000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2081AF50000
|
Size: |
4096
|
|
1BAC0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.439957222.000000001BAC0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BAC0000
|
Size: |
65536
|
|
1C0F0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.468757726.000000001C0F0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C0F0000
|
Size: |
65536
|
|
1251AC13000
|
heap
|
page read and write
|
|
|
|
Name: |
00000012.00000002.539159927.000001251AC13000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1251AC13000
|
Size: |
86016
|
|
1F860F40000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000006.00000002.460023347.000001F860F40000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
1F860F40000
|
Size: |
20480
|
|
1974D450000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.624024785.000001974D450000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1974D450000
|
Size: |
4096
|
|
20158974000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.626977013.0000020158974000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158974000
|
Size: |
8192
|
|
1C260000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.457616806.000000001C260000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C260000
|
Size: |
204800
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
May try to detect the virtual machine to hinder analysis (VM artifact strings found in memory) |
Malware Analysis System Evasion |
Security Software Discovery
|
|
7FF9F1BF0000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000005.00000002.485614662.00007FF9F1BF0000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1BF0000
|
Size: |
4096
|
|
1F85F5FB000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459637998.000001F85F5FB000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F85F5FB000
|
Size: |
4096
|
|
2C026878000
|
heap
|
page read and write
|
|
|
|
Name: |
00000015.00000002.702228545.000002C026878000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2C026878000
|
Size: |
339968
|
|
2081AFE0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000017.00000002.587138546.000002081AFE0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2081AFE0000
|
Size: |
4096
|
|
8E20E7A000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.487640917.0000008E20E7A000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8E20E7A000
|
Size: |
24576
|
|
248DA263000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.497593704.00000248DA263000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248DA263000
|
Size: |
45056
|
|
1D3ED813000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.702254328.000001D3ED813000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D3ED813000
|
Size: |
81920
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.470357115.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
32768
|
|
1F860E80000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459851320.000001F860E80000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F860E80000
|
Size: |
12288
|
|
7FF9F1E80000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.476463718.00007FF9F1E80000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1E80000
|
Size: |
65536
|
|
D95000
|
stack
|
page read and write
|
|
|
|
Name: |
00000005.00000002.481026957.0000000000D95000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
D95000
|
Size: |
45056
|
|
1BA10000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442231905.000000001BA10000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA10000
|
Size: |
4096
|
|
2012ABB000
|
stack
|
page read and write
|
|
|
|
Name: |
00000017.00000002.586989511.0000002012ABB000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
2012ABB000
|
Size: |
20480
|
|
13B0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.448553163.00000000013B0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
13B0000
|
Size: |
65536
|
|
7FF9F1B4D000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000005.00000002.485490912.00007FF9F1B4D000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1B4D000
|
Size: |
8192
|
|
1B11A913000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.514798544.000001B11A913000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1B11A913000
|
Size: |
16384
|
|
248CB03A000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.496098945.00000248CB03A000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248CB03A000
|
Size: |
520192
|
|
1251AC79000
|
heap
|
page read and write
|
|
|
|
Name: |
00000012.00000003.538756917.000001251AC79000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1251AC79000
|
Size: |
32768
|
|
7FF9F1D80000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475866587.00007FF9F1D80000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1D80000
|
Size: |
65536
|
|
1C370000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440162632.000000001C370000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C370000
|
Size: |
65536
|
|
2C0277A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000015.00000003.581110434.000002C0277A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2C0277A0000
|
Size: |
20480
|
|
201580B0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.620724032.00000201580B0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201580B0000
|
Size: |
16384
|
|
1C430000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440587137.000000001C430000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C430000
|
Size: |
65536
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.471774233.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
65536
|
|
1974D560000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000003.623418466.000001974D560000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1974D560000
|
Size: |
98304
|
|
9B6B37A000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702159781.0000009B6B37A000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
9B6B37A000
|
Size: |
24576
|
|
1AFFFEC0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.703473559.000001AFFFEC0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AFFFEC0000
|
Size: |
4096
|
|
13C0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.448803357.00000000013C0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
13C0000
|
Size: |
65536
|
|
2EB0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.467206372.0000000002EB0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2EB0000
|
Size: |
65536
|
|
15A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.473040571.00000000015A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15A0000
|
Size: |
65536
|
|
8E20AFD000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.487569033.0000008E20AFD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8E20AFD000
|
Size: |
12288
|
|
1C550000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441164820.000000001C550000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C550000
|
Size: |
65536
|
|
1570000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.448094160.0000000001570000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1570000
|
Size: |
4096
|
|
1AFFAA24000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702860207.000001AFFAA24000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFAA24000
|
Size: |
98304
|
|
1F879480000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.474915527.000001F879480000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F879480000
|
Size: |
364544
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
248CADC8000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.494097555.00000248CADC8000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248CADC8000
|
Size: |
8192
|
|
248E2600000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.482344658.00000248E2600000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E2600000
|
Size: |
45056
|
|
1B920000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.468711323.000000001B920000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1B920000
|
Size: |
65536
|
|
1B11A6A0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.514638991.000001B11A6A0000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1B11A6A0000
|
Size: |
4096
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.474923057.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
65536
|
|
1F879820000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.456246501.000001F879820000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F879820000
|
Size: |
16384
|
|
7FF9F1D10000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000A.00000002.498541539.00007FF9F1D10000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1D10000
|
Size: |
4096
|
|
1BCB0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.457244910.000000001BCB0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1BCB0000
|
Size: |
4096
|
|
1BAA0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.439901560.000000001BAA0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BAA0000
|
Size: |
65536
|
|
20158917000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660555288.0000020158917000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158917000
|
Size: |
4096
|
|
9B6B87E000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702286167.0000009B6B87E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
9B6B87E000
|
Size: |
8192
|
|
B4E307B000
|
stack
|
page read and write
|
|
|
|
Name: |
00000011.00000002.702114008.000000B4E307B000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B4E307B000
|
Size: |
20480
|
|
248C867A000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.488188526.00000248C867A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248C867A000
|
Size: |
479232
|
|
1C45D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.457750572.000000001C45D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1C45D000
|
Size: |
12288
|
|
15A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.471749866.00000000015A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15A0000
|
Size: |
12288
|
|
1F860FF5000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.460081158.000001F860FF5000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F860FF5000
|
Size: |
16384
|
|
1F85F440000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000006.00000000.445710345.000001F85F440000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
1F85F440000
|
Size: |
12288
|
|
1AF802FB000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000003.501090862.000001AF802FB000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF802FB000
|
Size: |
4096
|
|
7FF9F1E60000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.499935276.00007FF9F1E60000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1E60000
|
Size: |
65536
|
|
1D3ED7B0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000011.00000002.702201451.000001D3ED7B0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1D3ED7B0000
|
Size: |
4096
|
|
11DB000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.481453319.00000000011DB000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
11DB000
|
Size: |
290816
|
|
201589C3000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.642708629.00000201589C3000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201589C3000
|
Size: |
147456
|
|
1BAD0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440008750.000000001BAD0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BAD0000
|
Size: |
65536
|
|
1AF80030000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000003.492774977.000001AF80030000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AF80030000
|
Size: |
8192
|
|
20132FD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000017.00000002.587099395.00000020132FD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
20132FD000
|
Size: |
12288
|
|
8E20F37000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.487665064.0000008E20F37000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8E20F37000
|
Size: |
36864
|
|
7FF9F1CE6000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475720449.00007FF9F1CE6000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1CE6000
|
Size: |
40960
|
|
1D3ED86E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.582134692.000001D3ED86E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D3ED86E000
|
Size: |
32768
|
|
2F90000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.446612141.0000000002F90000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2F90000
|
Size: |
12288
|
|
2081B013000
|
heap
|
page read and write
|
|
|
|
Name: |
00000017.00000002.587157298.000002081B013000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2081B013000
|
Size: |
86016
|
|
248E2940000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.482509155.00000248E2940000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E2940000
|
Size: |
53248
|
|
2015898B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.629473047.000002015898B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2015898B000
|
Size: |
4096
|
|
1C590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441318011.000000001C590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C590000
|
Size: |
65536
|
|
1F862600000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.472788373.000001F862600000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F862600000
|
Size: |
4096
|
|
2C0268B6000
|
heap
|
page read and write
|
|
|
|
Name: |
00000015.00000003.569221445.000002C0268B6000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2C0268B6000
|
Size: |
4096
|
|
1C100000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.468861452.000000001C100000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C100000
|
Size: |
65536
|
|
1AF802F4000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702708853.000001AF802F4000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF802F4000
|
Size: |
16384
|
|
CEA6DF9000
|
stack
|
page read and write
|
|
|
|
Name: |
00000015.00000002.702140079.000000CEA6DF9000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
CEA6DF9000
|
Size: |
28672
|
|
1974D546000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.624086342.000001974D546000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1974D546000
|
Size: |
49152
|
|
248E2600000
|
direct allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.482879997.00000248E2600000.00000004.00001000.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
direct allocation
|
Protect: |
page read and write
|
Base address: |
248E2600000
|
Size: |
4096
|
|
7FFA5FC50000
|
unkown
|
page readonly
|
|
|
|
Name: |
0000000A.00000002.500046892.00007FFA5FC50000.00000002.00000001.01000000.00000007.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FFA5FC50000
|
Size: |
4096
|
|
7FF9F1BD0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.498402534.00007FF9F1BD0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1BD0000
|
Size: |
8192
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.471633325.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
16384
|
|
1BA60000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.439783839.000000001BA60000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA60000
|
Size: |
65536
|
|
248E2C45000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.498026227.00000248E2C45000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248E2C45000
|
Size: |
151552
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
1AFFAA3D000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702892675.000001AFFAA3D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFAA3D000
|
Size: |
98304
|
|
1BFF8000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.485169624.000000001BFF8000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1BFF8000
|
Size: |
237568
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
May try to detect the virtual machine to hinder analysis (VM artifact strings found in memory) |
Malware Analysis System Evasion |
Security Software Discovery
|
|
7FF9F1CD1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.498507445.00007FF9F1CD1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1CD1000
|
Size: |
8192
|
|
7FFA5FC51000
|
unkown
|
page execute read
|
|
|
|
Name: |
0000000A.00000002.500076814.00007FFA5FC51000.00000020.00000001.01000000.00000007.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page execute read
|
Base address: |
7FFA5FC51000
|
Size: |
86016
|
|
1BA80000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.439869374.000000001BA80000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA80000
|
Size: |
65536
|
|
7FF9F1DD0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.476032435.00007FF9F1DD0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1DD0000
|
Size: |
16384
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442967189.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
65536
|
|
12F2D000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000002.482985751.0000000012F2D000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
12F2D000
|
Size: |
4096
|
|
20158108000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660488030.0000020158108000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158108000
|
Size: |
28672
|
|
1F879780000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.451715402.000001F879780000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879780000
|
Size: |
65536
|
|
1F85F5C9000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459617720.000001F85F5C9000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F85F5C9000
|
Size: |
196608
|
|
1AFFB318000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000003.500699412.000001AFFB318000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFB318000
|
Size: |
4096
|
|
7FF9F1DD0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.499336348.00007FF9F1DD0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1DD0000
|
Size: |
65536
|
|
1BA40000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.439645349.000000001BA40000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA40000
|
Size: |
65536
|
|
15B0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.466988049.00000000015B0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15B0000
|
Size: |
65536
|
|
2081B081000
|
heap
|
page read and write
|
|
|
|
Name: |
00000017.00000002.587413790.000002081B081000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2081B081000
|
Size: |
61440
|
|
1B11A83C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.514709524.000001B11A83C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1B11A83C000
|
Size: |
69632
|
|
1974D560000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.624167228.000001974D560000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1974D560000
|
Size: |
65536
|
|
1C440000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440604433.000000001C440000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C440000
|
Size: |
65536
|
|
1B8D0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.468319958.000000001B8D0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1B8D0000
|
Size: |
65536
|
|
1BA10000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441562288.000000001BA10000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA10000
|
Size: |
65536
|
|
7FF9F1DC0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475983366.00007FF9F1DC0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1DC0000
|
Size: |
65536
|
|
1B880000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.468126781.000000001B880000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1B880000
|
Size: |
65536
|
|
7FF9F1D70000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.498669688.00007FF9F1D70000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1D70000
|
Size: |
49152
|
|
1C410000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440390311.000000001C410000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C410000
|
Size: |
20480
|
|
7FF9F1D30000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000006.00000002.475776226.00007FF9F1D30000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1D30000
|
Size: |
4096
|
|
7FF9F1D60000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.498653324.00007FF9F1D60000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1D60000
|
Size: |
65536
|
|
1170000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.481159928.0000000001170000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1170000
|
Size: |
45056
|
|
1AFFB318000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000003.499826660.000001AFFB318000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFB318000
|
Size: |
4096
|
|
20158917000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.638954247.0000020158917000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158917000
|
Size: |
4096
|
|
1F879770000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.450909062.000001F879770000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879770000
|
Size: |
65536
|
|
7FF9F1D50000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.498605703.00007FF9F1D50000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1D50000
|
Size: |
32768
|
|
7FF9F1B34000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.458923178.00007FF9F1B34000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1B34000
|
Size: |
4096
|
|
248E2600000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.482365663.00000248E2600000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E2600000
|
Size: |
45056
|
|
15A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.466921734.00000000015A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15A0000
|
Size: |
65536
|
|
7FF9F1C16000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.459514308.00007FF9F1C16000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1C16000
|
Size: |
4096
|
|
15D0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.472310161.00000000015D0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15D0000
|
Size: |
45056
|
|
7FF9F1C50000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000005.00000002.485645322.00007FF9F1C50000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1C50000
|
Size: |
36864
|
|
1AF80160000
|
remote allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000003.493551639.000001AF80160000.00000004.00000400.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
free memory
|
Regiontype: |
remote allocation
|
Protect: |
page read and write
|
Base address: |
1AF80160000
|
Size: |
4096
|
|
248DA26F000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.497605055.00000248DA26F000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248DA26F000
|
Size: |
1232896
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.471512965.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
65536
|
|
20158917000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.620813416.0000020158917000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158917000
|
Size: |
4096
|
|
B4E2E7E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000011.00000002.702102763.000000B4E2E7E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B4E2E7E000
|
Size: |
8192
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.473216176.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
8192
|
|
7FFA54065000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000006.00000002.476692168.00007FFA54065000.00000002.00000001.01000000.00000007.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FFA54065000
|
Size: |
4096
|
|
2015897A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.650452826.000002015897A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2015897A000
|
Size: |
12288
|
|
1BA20000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.443220361.000000001BA20000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA20000
|
Size: |
65536
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442126545.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
65536
|
|
7FF9F1B8C000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.459351514.00007FF9F1B8C000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1B8C000
|
Size: |
4096
|
|
13141000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.449509422.0000000013141000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
13141000
|
Size: |
20480
|
|
7FF9F1DC0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.499303121.00007FF9F1DC0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1DC0000
|
Size: |
65536
|
|
1C520000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441062649.000000001C520000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C520000
|
Size: |
65536
|
|
1C1D0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.469331643.000000001C1D0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C1D0000
|
Size: |
65536
|
|
1BAE0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.484965867.000000001BAE0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1BAE0000
|
Size: |
4096
|
|
2FD0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.435020826.0000000002FD0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2FD0000
|
Size: |
57344
|
|
7FF9F1D90000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475882456.00007FF9F1D90000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1D90000
|
Size: |
53248
|
|
20158E02000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.620136828.0000020158E02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158E02000
|
Size: |
122880
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441983931.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
12288
|
|
7FF44B770000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.458911967.00007FF44B770000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF44B770000
|
Size: |
4096
|
|
1D3ED902000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.702509332.000001D3ED902000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D3ED902000
|
Size: |
53248
|
|
1974D55E000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000003.623458378.000001974D55E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1974D55E000
|
Size: |
4096
|
|
248E2CB8000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.487067039.00000248E2CB8000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248E2CB8000
|
Size: |
331776
|
|
1AF80200000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702424959.000001AF80200000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF80200000
|
Size: |
65536
|
|
201589BA000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.637716019.00000201589BA000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201589BA000
|
Size: |
90112
|
|
7FF9F1CD2000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.459532349.00007FF9F1CD2000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1CD2000
|
Size: |
20480
|
|
1974D552000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000003.623530799.000001974D552000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1974D552000
|
Size: |
12288
|
|
7FF9F1D40000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.498581768.00007FF9F1D40000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1D40000
|
Size: |
65536
|
|
1C180000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.469172472.000000001C180000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C180000
|
Size: |
65536
|
|
20158E02000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.628644608.0000020158E02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158E02000
|
Size: |
98304
|
|
1AF80160000
|
remote allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000003.493582832.000001AF80160000.00000004.00000400.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
free memory
|
Regiontype: |
remote allocation
|
Protect: |
page read and write
|
Base address: |
1AF80160000
|
Size: |
4096
|
|
2081B049000
|
heap
|
page read and write
|
|
|
|
Name: |
00000017.00000003.586849335.000002081B049000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2081B049000
|
Size: |
20480
|
|
92239FF000
|
stack
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.623966842.00000092239FF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
92239FF000
|
Size: |
4096
|
|
7FF9F1B49000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.459315524.00007FF9F1B49000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1B49000
|
Size: |
12288
|
|
1BA10000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442467690.000000001BA10000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA10000
|
Size: |
65536
|
|
1BA3E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000005.00000002.484951378.000000001BA3E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1BA3E000
|
Size: |
8192
|
|
1D3ED853000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.702404791.000001D3ED853000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D3ED853000
|
Size: |
126976
|
|
7FF9F1E00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.476206443.00007FF9F1E00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1E00000
|
Size: |
65536
|
|
1BA40000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442735368.000000001BA40000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA40000
|
Size: |
45056
|
|
1AFFBE20000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.703413355.000001AFFBE20000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AFFBE20000
|
Size: |
8192
|
|
201589BC000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.625941601.00000201589BC000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201589BC000
|
Size: |
143360
|
|
7FF9F1BF0000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.459386644.00007FF9F1BF0000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1BF0000
|
Size: |
4096
|
|
1AF80020000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702357893.000001AF80020000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AF80020000
|
Size: |
4096
|
|
1AF80044000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000003.492795378.000001AF80044000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AF80044000
|
Size: |
4096
|
|
1F879532000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475187293.000001F879532000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F879532000
|
Size: |
49152
|
|
248CB005000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.495942664.00000248CB005000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248CB005000
|
Size: |
4096
|
|
7FF9F1D10000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000006.00000002.475758859.00007FF9F1D10000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1D10000
|
Size: |
12288
|
|
8E212BB000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.487784655.0000008E212BB000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8E212BB000
|
Size: |
20480
|
|
1F87980A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475365267.000001F87980A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F87980A000
|
Size: |
57344
|
|
1F861130000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000006.00000002.462156135.000001F861130000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
1F861130000
|
Size: |
4096
|
|
1B11A902000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.514786645.000001B11A902000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1B11A902000
|
Size: |
12288
|
|
1B830000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.467770279.000000001B830000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1B830000
|
Size: |
65536
|
|
1AFFAA00000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702810811.000001AFFAA00000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFAA00000
|
Size: |
73728
|
|
C60000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.481018668.0000000000C60000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
C60000
|
Size: |
4096
|
|
248E2668000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.487159350.00000248E2668000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248E2668000
|
Size: |
86016
|
|
7FF9F1CF1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475732047.00007FF9F1CF1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1CF1000
|
Size: |
8192
|
|
7FF9F1B4D000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000006.00000002.475506219.00007FF9F1B4D000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1B4D000
|
Size: |
12288
|
|
1BA10000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442199624.000000001BA10000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA10000
|
Size: |
12288
|
|
8E20B7E000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.487579372.0000008E20B7E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8E20B7E000
|
Size: |
8192
|
|
1F879760000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.450827925.000001F879760000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879760000
|
Size: |
45056
|
|
12F28000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000002.482929722.0000000012F28000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
12F28000
|
Size: |
8192
|
|
1C380000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440237270.000000001C380000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C380000
|
Size: |
65536
|
|
248C86AD000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.478574550.00000248C86AD000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248C86AD000
|
Size: |
4096
|
|
1F879760000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.450981343.000001F879760000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879760000
|
Size: |
65536
|
|
248CA1F0000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
0000000A.00000002.488549410.00000248CA1F0000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
248CA1F0000
|
Size: |
4096
|
|
1B7E0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.467460085.000000001B7E0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1B7E0000
|
Size: |
65536
|
|
2C0268E0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000015.00000002.702329194.000002C0268E0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2C0268E0000
|
Size: |
4096
|
|
1F879820000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475380913.000001F879820000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F879820000
|
Size: |
16384
|
|
8E20DFE000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.487634682.0000008E20DFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8E20DFE000
|
Size: |
8192
|
|
7FF9F1B33000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.458917145.00007FF9F1B33000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1B33000
|
Size: |
4096
|
|
8E20EBE000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.487659181.0000008E20EBE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8E20EBE000
|
Size: |
8192
|
|
20158993000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.638574558.0000020158993000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158993000
|
Size: |
8192
|
|
2081B04C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000017.00000002.587242944.000002081B04C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2081B04C000
|
Size: |
8192
|
|
1B11A82C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.514700322.000001B11A82C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1B11A82C000
|
Size: |
61440
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.470972457.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
61440
|
|
7FF9F1B50000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.459337147.00007FF9F1B50000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1B50000
|
Size: |
4096
|
|
248C85F0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.487917674.00000248C85F0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248C85F0000
|
Size: |
32768
|
|
7FF9F1BD6000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.498420142.00007FF9F1BD6000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1BD6000
|
Size: |
24576
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.474446748.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
20480
|
|
3F482FF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.458915936.0000003F482FF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3F482FF000
|
Size: |
4096
|
|
7FF9F1C26000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000006.00000002.475627149.00007FF9F1C26000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1C26000
|
Size: |
61440
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441993882.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
32768
|
|
3F47FFD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.457751324.0000003F47FFD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3F47FFD000
|
Size: |
12288
|
|
7FF9F1E10000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.499509846.00007FF9F1E10000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1E10000
|
Size: |
65536
|
|
1F860FF0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.460058558.000001F860FF0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F860FF0000
|
Size: |
12288
|
|
15A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.470487132.00000000015A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15A0000
|
Size: |
8192
|
|
1C4A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440870462.000000001C4A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C4A0000
|
Size: |
49152
|
|
5BE5CE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000012.00000002.538974671.00000005BE5CE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
5BE5CE000
|
Size: |
8192
|
|
248E2CAB000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.487038133.00000248E2CAB000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248E2CAB000
|
Size: |
20480
|
|
1BA80000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.443866889.000000001BA80000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA80000
|
Size: |
8192
|
|
20158919000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.638971142.0000020158919000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158919000
|
Size: |
24576
|
|
2FF0000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.448289231.0000000002FF0000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
2FF0000
|
Size: |
4096
|
|
1C3E0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440351251.000000001C3E0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C3E0000
|
Size: |
65536
|
|
1C530000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.458904043.000000001C530000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
1C530000
|
Size: |
4096
|
|
1B11A800000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.514667222.000001B11A800000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1B11A800000
|
Size: |
73728
|
|
201580D6000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.620754793.00000201580D6000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201580D6000
|
Size: |
49152
|
|
7FF9F1B23000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000A.00000002.498344795.00007FF9F1B23000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1B23000
|
Size: |
4096
|
|
1C560000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441253184.000000001C560000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C560000
|
Size: |
65536
|
|
201589D0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.637645446.00000201589D0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201589D0000
|
Size: |
90112
|
|
1F8794FB000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.454875558.000001F8794FB000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F8794FB000
|
Size: |
192512
|
|
1370000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.449063530.0000000001370000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1370000
|
Size: |
4096
|
|
125A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.481820970.000000000125A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
125A000
|
Size: |
86016
|
|
248E25E1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.487249829.00000248E25E1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E25E1000
|
Size: |
8192
|
|
1BA78000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.439859577.000000001BA78000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA78000
|
Size: |
32768
|
|
1F861006000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.460096636.000001F861006000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F861006000
|
Size: |
774144
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.439525038.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
65536
|
|
1550000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.448087086.0000000001550000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1550000
|
Size: |
8192
|
|
1251AC00000
|
heap
|
page read and write
|
|
|
|
Name: |
00000012.00000002.539142912.000001251AC00000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1251AC00000
|
Size: |
73728
|
|
1F860E60000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459846979.000001F860E60000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F860E60000
|
Size: |
4096
|
|
7FF9F1B49000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000002.485476588.00007FF9F1B49000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1B49000
|
Size: |
12288
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.470653863.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
16384
|
|
3F483FE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.458956549.0000003F483FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3F483FE000
|
Size: |
8192
|
|
248E2600000
|
direct allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.483962417.00000248E2600000.00000004.00001000.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
direct allocation
|
Protect: |
page read and write
|
Base address: |
248E2600000
|
Size: |
4096
|
|
3F4847E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459290686.0000003F4847E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3F4847E000
|
Size: |
8192
|
|
1AFFAA75000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702972330.000001AFFAA75000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFAA75000
|
Size: |
12288
|
|
1D3ED710000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.702171662.000001D3ED710000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D3ED710000
|
Size: |
4096
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.471222767.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
65536
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.470462154.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
65536
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.443690996.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
4096
|
|
1383000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.447916480.0000000001383000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1383000
|
Size: |
53248
|
|
1C190000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.469186837.000000001C190000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C190000
|
Size: |
65536
|
|
2FC0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.435278150.0000000002FC0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2FC0000
|
Size: |
49152
|
|
20158071000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660323555.0000020158071000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158071000
|
Size: |
65536
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442295484.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
65536
|
|
248E2CB4000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.487057252.00000248E2CB4000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248E2CB4000
|
Size: |
4096
|
|
1591000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.471142681.0000000001591000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1591000
|
Size: |
28672
|
|
2C0269D0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000015.00000002.702336341.000002C0269D0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2C0269D0000
|
Size: |
4096
|
|
1AF802EA000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702689678.000001AF802EA000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF802EA000
|
Size: |
4096
|
|
1251AC3C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000012.00000002.539199892.000001251AC3C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1251AC3C000
|
Size: |
69632
|
|
1AFFAA89000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702993927.000001AFFAA89000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFAA89000
|
Size: |
4096
|
|
201589D9000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.632436051.00000201589D9000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201589D9000
|
Size: |
126976
|
|
20158974000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.639040158.0000020158974000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158974000
|
Size: |
65536
|
|
20157F80000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660225342.0000020157F80000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
20157F80000
|
Size: |
4096
|
|
1AF8000E000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000003.492715007.000001AF8000E000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AF8000E000
|
Size: |
73728
|
|
1AFFA7C0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702738108.000001AFFA7C0000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFA7C0000
|
Size: |
4096
|
|
2081B075000
|
heap
|
page read and write
|
|
|
|
Name: |
00000017.00000002.587399721.000002081B075000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2081B075000
|
Size: |
4096
|
|
1BA70000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.444257182.000000001BA70000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA70000
|
Size: |
40960
|
|
1140000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000002.481149530.0000000001140000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1140000
|
Size: |
4096
|
|
1F87952D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475171233.000001F87952D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F87952D000
|
Size: |
4096
|
|
248E25F0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.480987193.00000248E25F0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E25F0000
|
Size: |
65536
|
|
20158999000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.637700632.0000020158999000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158999000
|
Size: |
45056
|
|
1BFF0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.485151833.000000001BFF0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1BFF0000
|
Size: |
4096
|
|
7FF9F1DB7000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.499283763.00007FF9F1DB7000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1DB7000
|
Size: |
36864
|
|
146B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.447858753.000000000146B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
146B000
|
Size: |
4096
|
|
201589B3000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.620115794.00000201589B3000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201589B3000
|
Size: |
106496
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.443300470.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
12288
|
|
1C530000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441085792.000000001C530000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C530000
|
Size: |
65536
|
|
9B6B77E000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702267091.0000009B6B77E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
9B6B77E000
|
Size: |
8192
|
|
1F85F6B5000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459828063.000001F85F6B5000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F85F6B5000
|
Size: |
40960
|
|
1F85F643000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459782114.000001F85F643000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F85F643000
|
Size: |
12288
|
|
20157FF0000
|
remote allocation
|
page read and write
|
|
|
|
Name: |
00000019.00000003.616021199.0000020157FF0000.00000004.00000400.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
remote allocation
|
Protect: |
page read and write
|
Base address: |
20157FF0000
|
Size: |
4096
|
|
1B8F8000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.468500232.000000001B8F8000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1B8F8000
|
Size: |
32768
|
|
7FF9F1B44000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475487722.00007FF9F1B44000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1B44000
|
Size: |
36864
|
|
1F879760000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.451010601.000001F879760000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879760000
|
Size: |
65536
|
|
1F879780000
|
direct allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.451648685.000001F879780000.00000004.00001000.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
direct allocation
|
Protect: |
page read and write
|
Base address: |
1F879780000
|
Size: |
4096
|
|
1F861D0B000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.467938165.000001F861D0B000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F861D0B000
|
Size: |
4096
|
|
1AFFFFE0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000003.492657296.000001AFFFFE0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AFFFFE0000
|
Size: |
8192
|
|
CEA689B000
|
stack
|
page read and write
|
|
|
|
Name: |
00000015.00000002.702084899.000000CEA689B000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
CEA689B000
|
Size: |
20480
|
|
2C0268DD000
|
heap
|
page read and write
|
|
|
|
Name: |
00000015.00000003.581094735.000002C0268DD000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2C0268DD000
|
Size: |
16384
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442057800.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
36864
|
|
2C026970000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000015.00000003.581135029.000002C026970000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2C026970000
|
Size: |
4096
|
|
248E2600000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.483424287.00000248E2600000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E2600000
|
Size: |
24576
|
|
9B6B67B000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702230610.0000009B6B67B000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
9B6B67B000
|
Size: |
20480
|
|
1974D53B000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.624057585.000001974D53B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1974D53B000
|
Size: |
24576
|
|
248E2C10000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.497970175.00000248E2C10000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248E2C10000
|
Size: |
86016
|
|
248CADCB000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.494130570.00000248CADCB000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248CADCB000
|
Size: |
192512
|
|
20158991000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.633716279.0000020158991000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158991000
|
Size: |
16384
|
|
1BA50000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.439655064.000000001BA50000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA50000
|
Size: |
65536
|
|
1F879800000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475350468.000001F879800000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F879800000
|
Size: |
12288
|
|
248E25B0000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
0000000A.00000002.497864263.00000248E25B0000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
248E25B0000
|
Size: |
4096
|
|
2015898C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.638545894.000002015898C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2015898C000
|
Size: |
24576
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.470681199.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
65536
|
|
2015898A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.630011507.000002015898A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2015898A000
|
Size: |
4096
|
|
1AF8024C000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702527419.000001AF8024C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF8024C000
|
Size: |
86016
|
|
8E21038000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.487709492.0000008E21038000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8E21038000
|
Size: |
32768
|
|
201580C3000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660417717.00000201580C3000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201580C3000
|
Size: |
24576
|
|
248E25D6000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
0000000A.00000002.497880533.00000248E25D6000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
248E25D6000
|
Size: |
8192
|
|
8E210BF000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.487750545.0000008E210BF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8E210BF000
|
Size: |
4096
|
|
248C9F80000
|
heap
|
page readonly
|
|
|
|
Name: |
0000000A.00000002.488295487.00000248C9F80000.00000002.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page readonly
|
Base address: |
248C9F80000
|
Size: |
4096
|
|
1F861D3D000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.468156634.000001F861D3D000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F861D3D000
|
Size: |
8941568
|
|
1251AC6E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000012.00000002.539273132.000001251AC6E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1251AC6E000
|
Size: |
45056
|
|
248E2600000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.484186303.00000248E2600000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E2600000
|
Size: |
20480
|
|
1F861141000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.462161730.000001F861141000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F861141000
|
Size: |
417792
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
1BFBE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.457409554.000000001BFBE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1BFBE000
|
Size: |
8192
|
|
15B0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.471964235.00000000015B0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15B0000
|
Size: |
65536
|
|
2FB0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.435105939.0000000002FB0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2FB0000
|
Size: |
4096
|
|
248E2600000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.484329897.00000248E2600000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E2600000
|
Size: |
65536
|
|
1C39F000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440292489.000000001C39F000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C39F000
|
Size: |
4096
|
|
1AFFB215000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.703270265.000001AFFB215000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFB215000
|
Size: |
4096
|
|
248C86A0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.478533220.00000248C86A0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248C86A0000
|
Size: |
28672
|
|
1B860000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.467890022.000000001B860000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1B860000
|
Size: |
65536
|
|
1974D320000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.623983233.000001974D320000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1974D320000
|
Size: |
4096
|
|
1AFFB1F0000
|
trusted library section
|
page readonly
|
|
|
|
Name: |
0000000F.00000002.703226452.000001AFFB1F0000.00000002.08000000.00040000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library section
|
Protect: |
page readonly
|
Base address: |
1AFFB1F0000
|
Size: |
65536
|
|
8E20FBA000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.487690937.0000008E20FBA000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8E20FBA000
|
Size: |
24576
|
|
2E8E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000005.00000002.481942953.0000000002E8E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
2E8E000
|
Size: |
8192
|
|
15A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.472805018.00000000015A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15A0000
|
Size: |
65536
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442607111.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
65536
|
|
1F871150000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.474224914.000001F871150000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F871150000
|
Size: |
327680
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441827567.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
65536
|
|
201589BA000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.628593571.00000201589BA000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201589BA000
|
Size: |
196608
|
|
7FF9F1C06000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000A.00000002.498447142.00007FF9F1C06000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1C06000
|
Size: |
61440
|
|
1F879780000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.452793410.000001F879780000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879780000
|
Size: |
24576
|
|
1F87953F000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475231493.000001F87953F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F87953F000
|
Size: |
200704
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.470521743.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
65536
|
|
20158984000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.650480033.0000020158984000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158984000
|
Size: |
4096
|
|
1AFFA7D0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702747197.000001AFFA7D0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFA7D0000
|
Size: |
4096
|
|
248C8510000
|
unkown
|
page readonly
|
|
|
|
Name: |
0000000A.00000000.476616200.00000248C8510000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
248C8510000
|
Size: |
12288
|
|
3000000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.435042393.0000000003000000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
3000000
|
Size: |
65536
|
|
20158992000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.617244413.0000020158992000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158992000
|
Size: |
114688
|
|
20158964000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660679099.0000020158964000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158964000
|
Size: |
86016
|
|
13151000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.449602731.0000000013151000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
13151000
|
Size: |
323584
|
|
201580D0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.633694539.00000201580D0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201580D0000
|
Size: |
8192
|
|
20158951000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660658076.0000020158951000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158951000
|
Size: |
73728
|
|
922356A000
|
stack
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.623915737.000000922356A000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
922356A000
|
Size: |
24576
|
|
248C8639000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.488059425.00000248C8639000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248C8639000
|
Size: |
4096
|
|
20130F7000
|
stack
|
page read and write
|
|
|
|
Name: |
00000017.00000002.587082025.00000020130F7000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
20130F7000
|
Size: |
36864
|
|
248DA210000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.497461163.00000248DA210000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248DA210000
|
Size: |
323584
|
|
248E25F0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.480934020.00000248E25F0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E25F0000
|
Size: |
65536
|
|
7FF9F1BF6000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475561794.00007FF9F1BF6000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1BF6000
|
Size: |
24576
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.471363728.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
65536
|
|
1595000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.471181951.0000000001595000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1595000
|
Size: |
40960
|
|
7FF9F1B33000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.498389356.00007FF9F1B33000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1B33000
|
Size: |
28672
|
|
1380000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.449643244.0000000001380000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1380000
|
Size: |
49152
|
|
7FF9F1BE0000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000A.00000002.498439116.00007FF9F1BE0000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1BE0000
|
Size: |
32768
|
|
1C400000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440379814.000000001C400000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C400000
|
Size: |
24576
|
|
7FF9F1DD7000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.476049404.00007FF9F1DD7000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1DD7000
|
Size: |
36864
|
|
1380000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.447910218.0000000001380000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1380000
|
Size: |
4096
|
|
248E2CB8000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.498155636.00000248E2CB8000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248E2CB8000
|
Size: |
331776
|
|
B42000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000000.00000000.425629941.0000000000B42000.00000002.00000001.01000000.00000003.sdmp
|
TargetID: |
0
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
B42000
|
Size: |
4771840
|
|
1974D577000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.624192222.000001974D577000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1974D577000
|
Size: |
4096
|
|
20158970000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.617302979.0000020158970000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158970000
|
Size: |
57344
|
|
1F879760000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.451220315.000001F879760000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879760000
|
Size: |
45056
|
|
248CA412000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.489474628.00000248CA412000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248CA412000
|
Size: |
9773056
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
2EC8000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.467330223.0000000002EC8000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2EC8000
|
Size: |
32768
|
|
2012B3E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000017.00000002.587005087.0000002012B3E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
2012B3E000
|
Size: |
8192
|
|
9B6BA7E000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702335498.0000009B6BA7E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
9B6BA7E000
|
Size: |
8192
|
|
7FF4E1270000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000005.00000002.485367635.00007FF4E1270000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF4E1270000
|
Size: |
4096
|
|
1F861CD9000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.467845039.000001F861CD9000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F861CD9000
|
Size: |
8192
|
|
1BA10000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441487508.000000001BA10000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA10000
|
Size: |
65536
|
|
248E2600000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.480915223.00000248E2600000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E2600000
|
Size: |
4096
|
|
1BA10000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441763777.000000001BA10000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA10000
|
Size: |
12288
|
|
7FF9F1CD4000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.498514030.00007FF9F1CD4000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1CD4000
|
Size: |
32768
|
|
7FF9F1BDC000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000A.00000002.498433328.00007FF9F1BDC000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1BDC000
|
Size: |
12288
|
|
1AFFB200000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.703241264.000001AFFB200000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFB200000
|
Size: |
4096
|
|
1B11A870000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.514739744.000001B11A870000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1B11A870000
|
Size: |
65536
|
|
2C026870000
|
heap
|
page read and write
|
|
|
|
Name: |
00000015.00000002.702201284.000002C026870000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2C026870000
|
Size: |
28672
|
|
2C027740000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000015.00000002.702531814.000002C027740000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2C027740000
|
Size: |
4096
|
|
248E25F0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.481510073.00000248E25F0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E25F0000
|
Size: |
45056
|
|
1AFFAAA0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.703059835.000001AFFAAA0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFAAA0000
|
Size: |
45056
|
|
92238F9000
|
stack
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.623937945.00000092238F9000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
92238F9000
|
Size: |
28672
|
|
62778FC000
|
stack
|
page read and write
|
|
|
|
Name: |
00000010.00000002.514622486.00000062778FC000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
62778FC000
|
Size: |
16384
|
|
15D0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.467087733.00000000015D0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15D0000
|
Size: |
65536
|
|
2081AF40000
|
heap
|
page read and write
|
|
|
|
Name: |
00000017.00000002.587111504.000002081AF40000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2081AF40000
|
Size: |
4096
|
|
2C0268BE000
|
heap
|
page read and write
|
|
|
|
Name: |
00000015.00000003.569252073.000002C0268BE000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2C0268BE000
|
Size: |
8192
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441534972.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
20480
|
|
20158013000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660244617.0000020158013000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158013000
|
Size: |
86016
|
|
1AFFBE30000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.703433864.000001AFFBE30000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AFFBE30000
|
Size: |
4096
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442044917.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
61440
|
|
2015897E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.650465258.000002015897E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2015897E000
|
Size: |
8192
|
|
15B0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.473098782.00000000015B0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15B0000
|
Size: |
65536
|
|
1C510000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440999928.000000001C510000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C510000
|
Size: |
65536
|
|
1C418000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440409764.000000001C418000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C418000
|
Size: |
32768
|
|
1C1ED000
|
stack
|
page read and write
|
|
|
|
Name: |
00000005.00000002.485328124.000000001C1ED000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1C1ED000
|
Size: |
12288
|
|
3030000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.448302858.0000000003030000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
3030000
|
Size: |
4096
|
|
20158999000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.628559721.0000020158999000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158999000
|
Size: |
98304
|
|
7FF9F1D20000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.498546905.00007FF9F1D20000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1D20000
|
Size: |
65536
|
|
248C8675000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.488122792.00000248C8675000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248C8675000
|
Size: |
16384
|
|
248E2600000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.483166673.00000248E2600000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E2600000
|
Size: |
65536
|
|
20158974000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.629994824.0000020158974000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158974000
|
Size: |
77824
|
|
1C200000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.469434876.000000001C200000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C200000
|
Size: |
65536
|
|
20157FF0000
|
remote allocation
|
page read and write
|
|
|
|
Name: |
00000019.00000003.616059121.0000020157FF0000.00000004.00000400.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
remote allocation
|
Protect: |
page read and write
|
Base address: |
20157FF0000
|
Size: |
4096
|
|
2015898A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.650517374.000002015898A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2015898A000
|
Size: |
8192
|
|
1F85F450000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000006.00000000.446057263.000001F85F450000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
1F85F450000
|
Size: |
4096
|
|
1AF802F0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702698027.000001AF802F0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF802F0000
|
Size: |
12288
|
|
1F879760000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.451352938.000001F879760000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879760000
|
Size: |
65536
|
|
3F486BA000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459375829.0000003F486BA000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3F486BA000
|
Size: |
24576
|
|
1974D7A0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.624201253.000001974D7A0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1974D7A0000
|
Size: |
12288
|
|
1B11A853000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000003.514360396.000001B11A853000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1B11A853000
|
Size: |
114688
|
|
201589BA000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.632471189.00000201589BA000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201589BA000
|
Size: |
126976
|
|
248E2640000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.497888048.00000248E2640000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248E2640000
|
Size: |
20480
|
|
15A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.470123032.00000000015A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15A0000
|
Size: |
65536
|
|
20158900000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660520281.0000020158900000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158900000
|
Size: |
53248
|
|
2015890D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.638930853.000002015890D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2015890D000
|
Size: |
32768
|
|
20158970000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.617172109.0000020158970000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158970000
|
Size: |
53248
|
|
7FF9F1B5D000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000005.00000002.485533083.00007FF9F1B5D000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1B5D000
|
Size: |
4096
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.474429683.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
4096
|
|
7FF9F1B4D000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.459323390.00007FF9F1B4D000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1B4D000
|
Size: |
8192
|
|
20158802000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660513986.0000020158802000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158802000
|
Size: |
4096
|
|
5BEA7B000
|
stack
|
page read and write
|
|
|
|
Name: |
00000012.00000002.539014021.00000005BEA7B000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
5BEA7B000
|
Size: |
20480
|
|
1AFFB359000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000003.500728989.000001AFFB359000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFB359000
|
Size: |
4096
|
|
16CE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.448199747.00000000016CE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
16CE000
|
Size: |
8192
|
|
1C170000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.469156240.000000001C170000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C170000
|
Size: |
65536
|
|
1BA10000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442802530.000000001BA10000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA10000
|
Size: |
65536
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.474687924.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
65536
|
|
1251AC2D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000012.00000002.539186208.000001251AC2D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1251AC2D000
|
Size: |
57344
|
|
1AFFB9E0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.703376550.000001AFFB9E0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AFFB9E0000
|
Size: |
4096
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.435075385.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
65536
|
|
7FF9F1B50000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000002.485501383.00007FF9F1B50000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1B50000
|
Size: |
4096
|
|
2C026690000
|
heap
|
page read and write
|
|
|
|
Name: |
00000015.00000002.702154129.000002C026690000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2C026690000
|
Size: |
4096
|
|
2081AFB0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000017.00000002.587132326.000002081AFB0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2081AFB0000
|
Size: |
8192
|
|
20158000000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660231620.0000020158000000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158000000
|
Size: |
73728
|
|
20158981000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.617214178.0000020158981000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158981000
|
Size: |
28672
|
|
1B11A6B0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.514648243.000001B11A6B0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1B11A6B0000
|
Size: |
4096
|
|
2F10000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.482034745.0000000002F10000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2F10000
|
Size: |
4096
|
|
1F85F5FD000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459641839.000001F85F5FD000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F85F5FD000
|
Size: |
12288
|
|
154E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000005.00000002.481903028.000000000154E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
154E000
|
Size: |
8192
|
|
92235EE000
|
stack
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.623923439.00000092235EE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
92235EE000
|
Size: |
8192
|
|
313E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.448330469.000000000313E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
313E000
|
Size: |
8192
|
|
7FF9F1E70000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.499969440.00007FF9F1E70000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1E70000
|
Size: |
8192
|
|
7FF9F1B50000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475519892.00007FF9F1B50000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1B50000
|
Size: |
8192
|
|
2C0266A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000015.00000002.702160677.000002C0266A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2C0266A0000
|
Size: |
4096
|
|
1F85F61B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459659981.000001F85F61B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F85F61B000
|
Size: |
8192
|
|
3141000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.448351853.0000000003141000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
3141000
|
Size: |
98304
|
|
1BA10000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441800114.000000001BA10000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA10000
|
Size: |
8192
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442405860.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
65536
|
|
1F879780000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.450919638.000001F879780000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879780000
|
Size: |
65536
|
|
1BA10000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.435084961.000000001BA10000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA10000
|
Size: |
61440
|
|
2015804E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.659848910.000002015804E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2015804E000
|
Size: |
12288
|
|
1AF80000000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000003.497104945.000001AF80000000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AF80000000
|
Size: |
4096
|
|
8E20BFE000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.487588500.0000008E20BFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8E20BFE000
|
Size: |
8192
|
|
3010000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.435053501.0000000003010000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
3010000
|
Size: |
65536
|
|
1C3C0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440321915.000000001C3C0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C3C0000
|
Size: |
65536
|
|
7FF9F1E90000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.476480210.00007FF9F1E90000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1E90000
|
Size: |
8192
|
|
1AFFAABA000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.703089073.000001AFFAABA000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFAABA000
|
Size: |
4096
|
|
1370000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.449036690.0000000001370000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1370000
|
Size: |
20480
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441749610.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
65536
|
|
248E2960000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.483404830.00000248E2960000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E2960000
|
Size: |
4096
|
|
1BA10000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442263593.000000001BA10000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA10000
|
Size: |
12288
|
|
1AF80211000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702461891.000001AF80211000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF80211000
|
Size: |
45056
|
|
1B11A880000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000003.514336821.000001B11A880000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1B11A880000
|
Size: |
40960
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.466890583.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
65536
|
|
1AFFAB13000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.703127795.000001AFFAB13000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFAB13000
|
Size: |
12288
|
|
248C8635000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.488051079.00000248C8635000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248C8635000
|
Size: |
4096
|
|
20158919000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.620820298.0000020158919000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158919000
|
Size: |
24576
|
|
1C1A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.469202890.000000001C1A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C1A0000
|
Size: |
65536
|
|
1974D571000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.624180334.000001974D571000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1974D571000
|
Size: |
16384
|
|
1251AC83000
|
heap
|
page read and write
|
|
|
|
Name: |
00000012.00000002.539298755.000001251AC83000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1251AC83000
|
Size: |
53248
|
|
1BC90000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440118486.000000001BC90000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BC90000
|
Size: |
65536
|
|
1F8625CB000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.472614086.000001F8625CB000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F8625CB000
|
Size: |
4096
|
|
1AFFAA1F000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702849239.000001AFFAA1F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFAA1F000
|
Size: |
16384
|
|
1B890000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.468233420.000000001B890000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1B890000
|
Size: |
65536
|
|
7FF9F1D80000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.498686486.00007FF9F1D80000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1D80000
|
Size: |
65536
|
|
1BA30000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442526469.000000001BA30000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA30000
|
Size: |
61440
|
|
1C3F0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440363368.000000001C3F0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C3F0000
|
Size: |
65536
|
|
1BA70000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.443911967.000000001BA70000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA70000
|
Size: |
65536
|
|
1C3D0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440335140.000000001C3D0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C3D0000
|
Size: |
65536
|
|
15E0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.481916354.00000000015E0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
15E0000
|
Size: |
12288
|
|
B40000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000000.00000000.425619917.0000000000B40000.00000002.00000001.01000000.00000003.sdmp
|
TargetID: |
0
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
B40000
|
Size: |
4096
|
|
13E0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.448921339.00000000013E0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
13E0000
|
Size: |
65536
|
|
1AFFFE40000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.703455415.000001AFFFE40000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AFFFE40000
|
Size: |
4096
|
|
2081B108000
|
heap
|
page read and write
|
|
|
|
Name: |
00000017.00000002.587584110.000002081B108000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2081B108000
|
Size: |
24576
|
|
2012EFB000
|
stack
|
page read and write
|
|
|
|
Name: |
00000017.00000002.587065250.0000002012EFB000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
2012EFB000
|
Size: |
20480
|
|
2015894C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.638989418.000002015894C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2015894C000
|
Size: |
16384
|
|
1BCA0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440128626.000000001BCA0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BCA0000
|
Size: |
65536
|
|
7FF9F1CFD000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475751075.00007FF9F1CFD000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1CFD000
|
Size: |
12288
|
|
2015899D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.644949482.000002015899D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2015899D000
|
Size: |
8192
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.470913696.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
20480
|
|
2C0267D0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000015.00000002.702172320.000002C0267D0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2C0267D0000
|
Size: |
8192
|
|
2C0269F9000
|
heap
|
page read and write
|
|
|
|
Name: |
00000015.00000002.702372862.000002C0269F9000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2C0269F9000
|
Size: |
4096
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442220409.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
65536
|
|
7FFA5FC66000
|
unkown
|
page readonly
|
|
|
|
Name: |
0000000A.00000002.500189490.00007FFA5FC66000.00000002.00000001.01000000.00000007.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FFA5FC66000
|
Size: |
40960
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.472439765.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
65536
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.475350533.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
40960
|
|
7FF9F1B34000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000002.485392691.00007FF9F1B34000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1B34000
|
Size: |
4096
|
|
119A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.481249789.000000000119A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
119A000
|
Size: |
73728
|
|
248E2CA7000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.486970461.00000248E2CA7000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248E2CA7000
|
Size: |
12288
|
|
1BDBE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.457375116.000000001BDBE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1BDBE000
|
Size: |
8192
|
|
9B6B57A000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702202756.0000009B6B57A000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
9B6B57A000
|
Size: |
24576
|
|
20158919000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660561809.0000020158919000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158919000
|
Size: |
24576
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.469705462.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
65536
|
|
B40000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000000.00000002.446893941.0000000000B40000.00000002.00000001.01000000.00000003.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
B40000
|
Size: |
4096
|
|
15A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.471799373.00000000015A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15A0000
|
Size: |
65536
|
|
1F879571000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.455237617.000001F879571000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F879571000
|
Size: |
12288
|
|
887157E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660029314.000000887157E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
887157E000
|
Size: |
8192
|
|
151C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.448062468.000000000151C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
151C000
|
Size: |
77824
|
|
7FF9F1D50000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475802504.00007FF9F1D50000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1D50000
|
Size: |
65536
|
|
20158999000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.632400706.0000020158999000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158999000
|
Size: |
110592
|
|
9223A7C000
|
stack
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.623974337.0000009223A7C000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
9223A7C000
|
Size: |
16384
|
|
1161000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.447602543.0000000001161000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1161000
|
Size: |
8192
|
|
7FF9F1E80000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.500019951.00007FF9F1E80000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1E80000
|
Size: |
4096
|
|
1AFFB302000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.703288087.000001AFFB302000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFB302000
|
Size: |
32768
|
|
1F85F460000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000006.00000000.445717998.000001F85F460000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
1F85F460000
|
Size: |
4096
|
|
1D3EE202000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000011.00000002.702553273.000001D3EE202000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1D3EE202000
|
Size: |
4096
|
|
15A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.472471974.00000000015A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15A0000
|
Size: |
65536
|
|
1BA20000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.439622530.000000001BA20000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA20000
|
Size: |
65536
|
|
248CA060000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.488343061.00000248CA060000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248CA060000
|
Size: |
12288
|
|
7FF9F1B33000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000005.00000002.485378936.00007FF9F1B33000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1B33000
|
Size: |
4096
|
|
7FF9F1E00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.499430159.00007FF9F1E00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1E00000
|
Size: |
65536
|
|
2C026860000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000015.00000002.702190363.000002C026860000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2C026860000
|
Size: |
4096
|
|
2015898A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.633743017.000002015898A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2015898A000
|
Size: |
28672
|
|
9223978000
|
stack
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.623952145.0000009223978000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
9223978000
|
Size: |
32768
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442241582.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
65536
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442006467.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
53248
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.443698067.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
20480
|
|
1B7F0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.467477001.000000001B7F0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1B7F0000
|
Size: |
65536
|
|
1F861CEA000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.467879425.000001F861CEA000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F861CEA000
|
Size: |
94208
|
|
2015898A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.644788297.000002015898A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2015898A000
|
Size: |
8192
|
|
1F879790000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.450932267.000001F879790000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879790000
|
Size: |
28672
|
|
7FF9F1B40000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000002.485431754.00007FF9F1B40000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1B40000
|
Size: |
4096
|
|
1F8625D3000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.472625140.000001F8625D3000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F8625D3000
|
Size: |
8192
|
|
5BEEFF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000012.00000002.539104538.00000005BEEFF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
5BEEFF000
|
Size: |
4096
|
|
1C1F0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.469414034.000000001C1F0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C1F0000
|
Size: |
65536
|
|
1AFFAA79000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702983339.000001AFFAA79000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFAA79000
|
Size: |
4096
|
|
150E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.448044627.000000000150E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
150E000
|
Size: |
28672
|
|
7FF9F1C00000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000006.00000002.475606094.00007FF9F1C00000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1C00000
|
Size: |
32768
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.470411531.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
65536
|
|
1BCEF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000005.00000002.485017698.000000001BCEF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1BCEF000
|
Size: |
4096
|
|
887167C000
|
stack
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660039767.000000887167C000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
887167C000
|
Size: |
16384
|
|
15B0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.472581975.00000000015B0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15B0000
|
Size: |
49152
|
|
1F85F5A5000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459590775.000001F85F5A5000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F85F5A5000
|
Size: |
32768
|
|
248E25F0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.480884724.00000248E25F0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E25F0000
|
Size: |
65536
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.470844336.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
32768
|
|
7DF4D7C80000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000006.00000002.475387433.00007DF4D7C80000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7DF4D7C80000
|
Size: |
4096
|
|
3F4930E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459552168.0000003F4930E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3F4930E000
|
Size: |
8192
|
|
7FF9F1E50000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.476320024.00007FF9F1E50000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1E50000
|
Size: |
53248
|
|
3F48578000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459310381.0000003F48578000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3F48578000
|
Size: |
32768
|
|
248E2600000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.481175039.00000248E2600000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E2600000
|
Size: |
40960
|
|
248CADAA000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.494054847.00000248CADAA000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248CADAA000
|
Size: |
94208
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.471086546.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
36864
|
|
9B6BC7E000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702346320.0000009B6BC7E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
9B6BC7E000
|
Size: |
8192
|
|
3F4883E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459526681.0000003F4883E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3F4883E000
|
Size: |
8192
|
|
117C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.481183821.000000000117C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
117C000
|
Size: |
118784
|
|
7FFA5FC75000
|
unkown
|
page readonly
|
|
|
|
Name: |
0000000A.00000002.500288956.00007FFA5FC75000.00000002.00000001.01000000.00000007.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FFA5FC75000
|
Size: |
4096
|
|
1F879760000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.450940919.000001F879760000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879760000
|
Size: |
65536
|
|
15C0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.448120375.00000000015C0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
15C0000
|
Size: |
12288
|
|
248E2646000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.497903352.00000248E2646000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248E2646000
|
Size: |
110592
|
|
1AF802AB000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702642149.000001AF802AB000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF802AB000
|
Size: |
188416
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.474815283.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
65536
|
|
2FA1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.434812911.0000000002FA1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2FA1000
|
Size: |
8192
|
|
1D3ED86E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.647149852.000001D3ED86E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D3ED86E000
|
Size: |
28672
|
|
20158E02000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.620185071.0000020158E02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158E02000
|
Size: |
245760
|
|
13148000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.449545218.0000000013148000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
13148000
|
Size: |
8192
|
|
1974D546000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000003.623515727.000001974D546000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1974D546000
|
Size: |
61440
|
|
201580E3000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660445772.00000201580E3000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201580E3000
|
Size: |
24576
|
|
7FF9F1B5D000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.459346189.00007FF9F1B5D000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1B5D000
|
Size: |
4096
|
|
1F860EB0000
|
heap
|
page readonly
|
|
|
|
Name: |
00000006.00000002.459859820.000001F860EB0000.00000002.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page readonly
|
Base address: |
1F860EB0000
|
Size: |
4096
|
|
5BE87D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000012.00000002.538984521.00000005BE87D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
5BE87D000
|
Size: |
12288
|
|
1AFFAA9E000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.703052636.000001AFFAA9E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFAA9E000
|
Size: |
4096
|
|
1F879780000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.453154164.000001F879780000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879780000
|
Size: |
24576
|
|
248E2950000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.481378735.00000248E2950000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E2950000
|
Size: |
28672
|
|
1C450000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440636500.000000001C450000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C450000
|
Size: |
65536
|
|
1974D55E000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000003.623412605.000001974D55E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1974D55E000
|
Size: |
4096
|
|
1F861CE2000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.467866456.000001F861CE2000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F861CE2000
|
Size: |
4096
|
|
1F879760000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.451184674.000001F879760000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879760000
|
Size: |
45056
|
|
62771EE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000010.00000002.514539926.00000062771EE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
62771EE000
|
Size: |
8192
|
|
2C0268CD000
|
heap
|
page read and write
|
|
|
|
Name: |
00000015.00000002.702309299.000002C0268CD000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2C0268CD000
|
Size: |
65536
|
|
146D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.447865920.000000000146D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
146D000
|
Size: |
16384
|
|
1AF802DF000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702675328.000001AF802DF000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF802DF000
|
Size: |
40960
|
|
2015899F000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.642078585.000002015899F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2015899F000
|
Size: |
118784
|
|
1449000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.447789541.0000000001449000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1449000
|
Size: |
36864
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
Sample file is different than original file name gathered from version info |
System Summary |
|
|
20158985000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.639051122.0000020158985000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158985000
|
Size: |
4096
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.473235925.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
12288
|
|
1AFFAAFC000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.703099023.000001AFFAAFC000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFAAFC000
|
Size: |
20480
|
|
1B8C0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.468299177.000000001B8C0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1B8C0000
|
Size: |
65536
|
|
248E25F1000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.481189261.00000248E25F1000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E25F1000
|
Size: |
61440
|
|
1440000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.481870012.0000000001440000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1440000
|
Size: |
12288
|
|
1F8794DA000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475078620.000001F8794DA000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F8794DA000
|
Size: |
24576
|
|
15B0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.472211939.00000000015B0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15B0000
|
Size: |
61440
|
|
7FF9F1D30000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.498557245.00007FF9F1D30000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1D30000
|
Size: |
65536
|
|
1B820000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.467706443.000000001B820000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1B820000
|
Size: |
65536
|
|
248CADFB000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.494187852.00000248CADFB000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248CADFB000
|
Size: |
2019328
|
|
20158989000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.633675613.0000020158989000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158989000
|
Size: |
49152
|
|
3020000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.435064232.0000000003020000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
3020000
|
Size: |
65536
|
|
1974D541000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000003.623395161.000001974D541000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1974D541000
|
Size: |
114688
|
|
201580CA000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660425065.00000201580CA000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201580CA000
|
Size: |
32768
|
|
2015890B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.620771404.000002015890B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2015890B000
|
Size: |
40960
|
|
20157E20000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660208215.0000020157E20000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20157E20000
|
Size: |
4096
|
|
1AFFBE01000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.703402360.000001AFFBE01000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AFFBE01000
|
Size: |
4096
|
|
1F879780000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.453234454.000001F879780000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879780000
|
Size: |
36864
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.470389547.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
4096
|
|
2081B029000
|
heap
|
page read and write
|
|
|
|
Name: |
00000017.00000002.587172288.000002081B029000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2081B029000
|
Size: |
73728
|
|
1AF8022B000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702486316.000001AF8022B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF8022B000
|
Size: |
65536
|
|
248C8530000
|
unkown
|
page read and write
|
|
|
|
Name: |
0000000A.00000000.476676723.00000248C8530000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
248C8530000
|
Size: |
4096
|
|
1F85F601000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459646071.000001F85F601000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F85F601000
|
Size: |
4096
|
|
2EF0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.467412284.0000000002EF0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2EF0000
|
Size: |
65536
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442339865.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
16384
|
|
2C027720000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000015.00000002.702500845.000002C027720000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2C027720000
|
Size: |
65536
|
|
627716E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000010.00000002.514532055.000000627716E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
627716E000
|
Size: |
8192
|
|
7FF9F1E20000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.476232661.00007FF9F1E20000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1E20000
|
Size: |
65536
|
|
248CA079000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.488372957.00000248CA079000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248CA079000
|
Size: |
729088
|
|
1BEEE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000005.00000002.485069157.000000001BEEE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1BEEE000
|
Size: |
8192
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.470874935.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
53248
|
|
2015898A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.639079752.000002015898A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2015898A000
|
Size: |
4096
|
|
1B930000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000005.00000002.484922796.000000001B930000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
1B930000
|
Size: |
4096
|
|
3F4837D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.458922847.0000003F4837D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3F4837D000
|
Size: |
12288
|
|
1370000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.449532021.0000000001370000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1370000
|
Size: |
65536
|
|
1F879790000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.452082211.000001F879790000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879790000
|
Size: |
4096
|
|
201580D0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.620738831.00000201580D0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201580D0000
|
Size: |
8192
|
|
20158054000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660303925.0000020158054000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158054000
|
Size: |
114688
|
|
1315000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.447687661.0000000001315000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1315000
|
Size: |
45056
|
|
2F00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.467439168.0000000002F00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2F00000
|
Size: |
65536
|
|
1C120000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.468934272.000000001C120000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C120000
|
Size: |
61440
|
|
1BA10000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441845959.000000001BA10000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA10000
|
Size: |
40960
|
|
20158991000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.644926625.0000020158991000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158991000
|
Size: |
32768
|
|
248E25F0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.481425109.00000248E25F0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E25F0000
|
Size: |
57344
|
|
1164000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.447615387.0000000001164000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1164000
|
Size: |
49152
|
|
1AFFB501000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.703323070.000001AFFB501000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AFFB501000
|
Size: |
4096
|
|
1251AC53000
|
heap
|
page read and write
|
|
|
|
Name: |
00000012.00000002.539217655.000001251AC53000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1251AC53000
|
Size: |
90112
|
|
20157FF0000
|
remote allocation
|
page read and write
|
|
|
|
Name: |
00000019.00000003.616030738.0000020157FF0000.00000004.00000400.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
remote allocation
|
Protect: |
page read and write
|
Base address: |
20157FF0000
|
Size: |
4096
|
|
3F484FF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459301430.0000003F484FF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3F484FF000
|
Size: |
4096
|
|
1AF80008000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000003.492707761.000001AF80008000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AF80008000
|
Size: |
16384
|
|
1B850000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.467853259.000000001B850000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1B850000
|
Size: |
65536
|
|
1F879780000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.453175574.000001F879780000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879780000
|
Size: |
24576
|
|
1F879770000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.450993448.000001F879770000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879770000
|
Size: |
40960
|
|
248E2940000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.481281401.00000248E2940000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E2940000
|
Size: |
65536
|
|
7FF9F1E50000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.499854693.00007FF9F1E50000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1E50000
|
Size: |
45056
|
|
248E2600000
|
direct allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.483150996.00000248E2600000.00000004.00001000.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
direct allocation
|
Protect: |
page read and write
|
Base address: |
248E2600000
|
Size: |
4096
|
|
3F48739000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459391567.0000003F48739000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3F48739000
|
Size: |
28672
|
|
1D3ED802000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.702229229.000001D3ED802000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D3ED802000
|
Size: |
65536
|
|
201589C3000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.649025477.00000201589C3000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201589C3000
|
Size: |
126976
|
|
1BAB0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.439945599.000000001BAB0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BAB0000
|
Size: |
65536
|
|
15B0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.469924505.00000000015B0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15B0000
|
Size: |
4096
|
|
1C360000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440151403.000000001C360000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C360000
|
Size: |
65536
|
|
20158E02000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.642825368.0000020158E02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158E02000
|
Size: |
147456
|
|
1223000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.481688704.0000000001223000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1223000
|
Size: |
180224
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
May try to detect the virtual machine to hinder analysis (VM artifact strings found in memory) |
Malware Analysis System Evasion |
Security Software Discovery
|
|
248E2600000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.484115110.00000248E2600000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E2600000
|
Size: |
24576
|
|
15E5000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.481930699.00000000015E5000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
15E5000
|
Size: |
16384
|
|
1C150000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.468999433.000000001C150000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C150000
|
Size: |
65536
|
|
2015898D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660706889.000002015898D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2015898D000
|
Size: |
16384
|
|
20158E02000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.637750896.0000020158E02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158E02000
|
Size: |
90112
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.470201897.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
65536
|
|
1C1B0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.469242504.000000001C1B0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C1B0000
|
Size: |
65536
|
|
8871877000
|
stack
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660062265.0000008871877000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8871877000
|
Size: |
36864
|
|
9B6ACBC000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702083706.0000009B6ACBC000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
9B6ACBC000
|
Size: |
16384
|
|
1C4E0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440944711.000000001C4E0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C4E0000
|
Size: |
65536
|
|
1C0BE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.457434888.000000001C0BE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1C0BE000
|
Size: |
8192
|
|
1AFFB359000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000003.500776923.000001AFFB359000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFB359000
|
Size: |
4096
|
|
248CB016000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.495979754.00000248CB016000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248CB016000
|
Size: |
81920
|
|
7FF9F1E70000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.476450169.00007FF9F1E70000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1E70000
|
Size: |
45056
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.470776667.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
12288
|
|
15A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.474842422.00000000015A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15A0000
|
Size: |
61440
|
|
1AF8021E000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702472259.000001AF8021E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF8021E000
|
Size: |
49152
|
|
7FF9F1B3D000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.458952340.00007FF9F1B3D000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1B3D000
|
Size: |
12288
|
|
2FC0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.435006847.0000000002FC0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2FC0000
|
Size: |
4096
|
|
1251AB50000
|
heap
|
page read and write
|
|
|
|
Name: |
00000012.00000002.539126175.000001251AB50000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1251AB50000
|
Size: |
8192
|
|
2E90000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000005.00000002.481982263.0000000002E90000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
2E90000
|
Size: |
4096
|
|
7FF9F1E40000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.476295649.00007FF9F1E40000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1E40000
|
Size: |
65536
|
|
2081B076000
|
heap
|
page read and write
|
|
|
|
Name: |
00000017.00000003.586785780.000002081B076000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2081B076000
|
Size: |
40960
|
|
1C4B0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440884984.000000001C4B0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C4B0000
|
Size: |
65536
|
|
922387F000
|
stack
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.623931452.000000922387F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
922387F000
|
Size: |
4096
|
|
FD0000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000000.00000002.447669146.0000000000FD0000.00000002.00000001.01000000.00000003.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
FD0000
|
Size: |
4096
|
|
201589D9000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.632416544.00000201589D9000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201589D9000
|
Size: |
126976
|
|
1AF802FB000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702728705.000001AF802FB000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF802FB000
|
Size: |
16384
|
|
3F4827E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.458904729.0000003F4827E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3F4827E000
|
Size: |
8192
|
|
1AF8029E000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702631055.000001AF8029E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF8029E000
|
Size: |
36864
|
|
1251AAF0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000012.00000002.539119345.000001251AAF0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1251AAF0000
|
Size: |
4096
|
|
2081B03C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000017.00000002.587211362.000002081B03C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2081B03C000
|
Size: |
53248
|
|
248C8651000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.488090706.00000248C8651000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248C8651000
|
Size: |
4096
|
|
201580D6000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.638916574.00000201580D6000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201580D6000
|
Size: |
49152
|
|
15C5000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.448137071.00000000015C5000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
15C5000
|
Size: |
8192
|
|
7FF9F1D90000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.498835907.00007FF9F1D90000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1D90000
|
Size: |
65536
|
|
248E25F0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.481124527.00000248E25F0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E25F0000
|
Size: |
65536
|
|
248C8510000
|
unkown
|
page readonly
|
|
|
|
Name: |
0000000A.00000000.477112508.00000248C8510000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
248C8510000
|
Size: |
12288
|
|
1F8625E5000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.472669944.000001F8625E5000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F8625E5000
|
Size: |
81920
|
|
1F879760000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.450853321.000001F879760000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879760000
|
Size: |
57344
|
|
C50000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000005.00000002.481004764.0000000000C50000.00000002.00000001.01000000.00000006.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
C50000
|
Size: |
4096
|
|
1B8E0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.468353637.000000001B8E0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1B8E0000
|
Size: |
24576
|
|
1F85F67D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.447342073.000001F85F67D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F85F67D000
|
Size: |
4096
|
|
248E25D0000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
0000000A.00000002.497871097.00000248E25D0000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
248E25D0000
|
Size: |
20480
|
|
1F85F6AA000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459821522.000001F85F6AA000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F85F6AA000
|
Size: |
40960
|
|
7FFA54041000
|
unkown
|
page execute read
|
|
|
|
Name: |
00000006.00000002.476544977.00007FFA54041000.00000020.00000001.01000000.00000007.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page execute read
|
Base address: |
7FFA54041000
|
Size: |
86016
|
|
1BDEE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000005.00000002.485041393.000000001BDEE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1BDEE000
|
Size: |
8192
|
|
887147C000
|
stack
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660008901.000000887147C000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
887147C000
|
Size: |
16384
|
|
15A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.469829036.00000000015A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15A0000
|
Size: |
65536
|
|
1B6BD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.457202755.000000001B6BD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1B6BD000
|
Size: |
12288
|
|
1AFFAA8C000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.703007083.000001AFFAA8C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFAA8C000
|
Size: |
4096
|
|
10F0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000005.00000002.481128723.00000000010F0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
10F0000
|
Size: |
4096
|
|
20158974000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.633723800.0000020158974000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158974000
|
Size: |
65536
|
|
1F85F460000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000006.00000000.446061702.000001F85F460000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
1F85F460000
|
Size: |
4096
|
|
248C8540000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.487805291.00000248C8540000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248C8540000
|
Size: |
16384
|
|
20158974000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.642806633.0000020158974000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158974000
|
Size: |
73728
|
|
2C027750000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000015.00000002.702539766.000002C027750000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2C027750000
|
Size: |
4096
|
|
7FF9F1D60000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475821174.00007FF9F1D60000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1D60000
|
Size: |
65536
|
|
20158116000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660506747.0000020158116000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158116000
|
Size: |
4096
|
|
248CAD6B000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.493968750.00000248CAD6B000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248CAD6B000
|
Size: |
159744
|
|
1B910000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.468592106.000000001B910000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1B910000
|
Size: |
65536
|
|
7FFA5FC72000
|
unkown
|
page readonly
|
|
|
|
Name: |
0000000A.00000002.500265538.00007FFA5FC72000.00000002.00000001.01000000.00000007.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FFA5FC72000
|
Size: |
8192
|
|
2015803C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660275942.000002015803C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2015803C000
|
Size: |
57344
|
|
1F8794FB000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475113552.000001F8794FB000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F8794FB000
|
Size: |
192512
|
|
2EA0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.467123364.0000000002EA0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2EA0000
|
Size: |
65536
|
|
248E2600000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.482910647.00000248E2600000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E2600000
|
Size: |
65536
|
|
7FF9F1D40000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475784554.00007FF9F1D40000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1D40000
|
Size: |
65536
|
|
9B6B0F8000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702112312.0000009B6B0F8000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
9B6B0F8000
|
Size: |
32768
|
|
8E2123E000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.487777466.0000008E2123E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8E2123E000
|
Size: |
8192
|
|
1F879760000
|
direct allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.451122358.000001F879760000.00000004.00001000.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
direct allocation
|
Protect: |
page read and write
|
Base address: |
1F879760000
|
Size: |
4096
|
|
20158986000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.638523133.0000020158986000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158986000
|
Size: |
20480
|
|
1F879571000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475311919.000001F879571000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F879571000
|
Size: |
4096
|
|
248E2600000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.483978534.00000248E2600000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E2600000
|
Size: |
24576
|
|
7FF9F1CE2000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475712485.00007FF9F1CE2000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1CE2000
|
Size: |
12288
|
|
7FF9F1CF4000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475739879.00007FF9F1CF4000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1CF4000
|
Size: |
32768
|
|
1B8B0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.468282219.000000001B8B0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1B8B0000
|
Size: |
65536
|
|
2FC3000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.435012036.0000000002FC3000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2FC3000
|
Size: |
53248
|
|
7FF9F1BEC000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000005.00000002.485602329.00007FF9F1BEC000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1BEC000
|
Size: |
4096
|
|
7FF9F1DF0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.499399842.00007FF9F1DF0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1DF0000
|
Size: |
12288
|
|
1AFFBE23000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.703427369.000001AFFBE23000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AFFBE23000
|
Size: |
4096
|
|
B4E317B000
|
stack
|
page read and write
|
|
|
|
Name: |
00000011.00000002.702128672.000000B4E317B000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B4E317B000
|
Size: |
20480
|
|
B4E2B5B000
|
stack
|
page read and write
|
|
|
|
Name: |
00000011.00000002.702084897.000000B4E2B5B000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B4E2B5B000
|
Size: |
20480
|
|
248C84D0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.487799141.00000248C84D0000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248C84D0000
|
Size: |
4096
|
|
13A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.448268450.00000000013A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
13A0000
|
Size: |
65536
|
|
248E2662000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.497928980.00000248E2662000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248E2662000
|
Size: |
24576
|
|
1D3ED720000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.702181521.000001D3ED720000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D3ED720000
|
Size: |
4096
|
|
1B11A900000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.514781170.000001B11A900000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1B11A900000
|
Size: |
4096
|
|
20158E02000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.642510747.0000020158E02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158E02000
|
Size: |
73728
|
|
1F85F5C0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459610247.000001F85F5C0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F85F5C0000
|
Size: |
32768
|
|
62777FF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000010.00000002.514607730.00000062777FF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
62777FF000
|
Size: |
4096
|
|
201589AD000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.648993219.00000201589AD000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201589AD000
|
Size: |
65536
|
|
7FF9F1BEC000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000000.00000002.459380934.00007FF9F1BEC000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1BEC000
|
Size: |
4096
|
|
1F86268F000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.473172290.000001F86268F000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F86268F000
|
Size: |
4096
|
|
248E2CB2000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.498141391.00000248E2CB2000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248E2CB2000
|
Size: |
4096
|
|
7FF9F1B20000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.498323792.00007FF9F1B20000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1B20000
|
Size: |
12288
|
|
9B6B6FF000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702252916.0000009B6B6FF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
9B6B6FF000
|
Size: |
4096
|
|
1AF80262000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702558938.000001AF80262000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF80262000
|
Size: |
229376
|
|
1F879780000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.453457126.000001F879780000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879780000
|
Size: |
65536
|
|
1AFFAA92000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.703035655.000001AFFAA92000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFAA92000
|
Size: |
45056
|
|
20157E80000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660217323.0000020157E80000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20157E80000
|
Size: |
12288
|
|
7FF9F1BE0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000002.485558443.00007FF9F1BE0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1BE0000
|
Size: |
4096
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.470341040.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
32768
|
|
7FF9F1CD2000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000002.485680547.00007FF9F1CD2000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1CD2000
|
Size: |
20480
|
|
1F879760000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.451245838.000001F879760000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879760000
|
Size: |
12288
|
|
15C0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.473171396.00000000015C0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15C0000
|
Size: |
65536
|
|
1BA40000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.443276690.000000001BA40000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA40000
|
Size: |
24576
|
|
2ED0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.467348049.0000000002ED0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2ED0000
|
Size: |
65536
|
|
8E20C7D000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.487605615.0000008E20C7D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8E20C7D000
|
Size: |
12288
|
|
7FF9F1CF0000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
0000000A.00000002.498527076.00007FF9F1CF0000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1CF0000
|
Size: |
12288
|
|
1AFFA830000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702767875.000001AFFA830000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFA830000
|
Size: |
12288
|
|
1974D556000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.624119977.000001974D556000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1974D556000
|
Size: |
28672
|
|
1970000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.448256718.0000000001970000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1970000
|
Size: |
12288
|
|
1BBFF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.457236705.000000001BBFF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1BBFF000
|
Size: |
4096
|
|
1C210000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.469526151.000000001C210000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C210000
|
Size: |
65536
|
|
7FF9F1E30000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.499720913.00007FF9F1E30000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1E30000
|
Size: |
53248
|
|
5BEBF7000
|
stack
|
page read and write
|
|
|
|
Name: |
00000012.00000002.539040849.00000005BEBF7000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
5BEBF7000
|
Size: |
36864
|
|
1251AC6A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000012.00000002.539255378.000001251AC6A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1251AC6A000
|
Size: |
12288
|
|
2C0268BE000
|
heap
|
page read and write
|
|
|
|
Name: |
00000015.00000003.569229337.000002C0268BE000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2C0268BE000
|
Size: |
8192
|
|
248E2D0A000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.498277079.00000248E2D0A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248E2D0A000
|
Size: |
20480
|
|
20158976000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.625925931.0000020158976000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158976000
|
Size: |
69632
|
|
1AFFB1A0000
|
trusted library section
|
page readonly
|
|
|
|
Name: |
0000000F.00000002.703136560.000001AFFB1A0000.00000002.08000000.00040000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library section
|
Protect: |
page readonly
|
Base address: |
1AFFB1A0000
|
Size: |
65536
|
|
7FF9F1B30000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.498382840.00007FF9F1B30000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1B30000
|
Size: |
8192
|
|
248CB0C8000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.496564493.00000248CB0C8000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248CB0C8000
|
Size: |
1835008
|
|
20158051000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.659828567.0000020158051000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158051000
|
Size: |
126976
|
|
B4E337F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000011.00000002.702159799.000000B4E337F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B4E337F000
|
Size: |
4096
|
|
1530000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.448081096.0000000001530000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1530000
|
Size: |
4096
|
|
1B11A852000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.514722002.000001B11A852000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1B11A852000
|
Size: |
4096
|
|
1AF800D0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000003.493421812.000001AF800D0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AF800D0000
|
Size: |
4096
|
|
20158999000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.625569856.0000020158999000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158999000
|
Size: |
118784
|
|
1AFFB202000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.703252487.000001AFFB202000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AFFB202000
|
Size: |
4096
|
|
1D3ED900000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.702493390.000001D3ED900000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D3ED900000
|
Size: |
4096
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.470929181.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
20480
|
|
2081B053000
|
heap
|
page read and write
|
|
|
|
Name: |
00000017.00000002.587253935.000002081B053000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2081B053000
|
Size: |
114688
|
|
248E2C85000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.486917789.00000248E2C85000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248E2C85000
|
Size: |
135168
|
|
248C85E5000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.487854195.00000248C85E5000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248C85E5000
|
Size: |
36864
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442748022.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
65536
|
|
1AF8023F000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702509885.000001AF8023F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF8023F000
|
Size: |
49152
|
|
7FF9F1EA0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.476487879.00007FF9F1EA0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1EA0000
|
Size: |
4096
|
|
CEA6CFA000
|
stack
|
page read and write
|
|
|
|
Name: |
00000015.00000002.702121168.000000CEA6CFA000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
CEA6CFA000
|
Size: |
24576
|
|
20158102000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660480251.0000020158102000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158102000
|
Size: |
16384
|
|
15A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.470549856.00000000015A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15A0000
|
Size: |
40960
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441641959.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
32768
|
|
1C5A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441338227.000000001C5A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C5A0000
|
Size: |
45056
|
|
1BA10000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441970322.000000001BA10000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA10000
|
Size: |
20480
|
|
1497000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.447892224.0000000001497000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1497000
|
Size: |
4096
|
|
7FF9F1B43000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000006.00000002.475438052.00007FF9F1B43000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1B43000
|
Size: |
4096
|
|
1F879770000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.451372472.000001F879770000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879770000
|
Size: |
65536
|
|
1F85F440000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000006.00000000.446049557.000001F85F440000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
1F85F440000
|
Size: |
12288
|
|
248E2600000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.482393230.00000248E2600000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E2600000
|
Size: |
12288
|
|
7FF9F1BF0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475550199.00007FF9F1BF0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1BF0000
|
Size: |
8192
|
|
1251AD00000
|
heap
|
page read and write
|
|
|
|
Name: |
00000012.00000002.539333719.000001251AD00000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1251AD00000
|
Size: |
4096
|
|
1150000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.477846135.0000000001150000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1150000
|
Size: |
12288
|
|
1AFFFEB0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.703465116.000001AFFFEB0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AFFFEB0000
|
Size: |
4096
|
|
20131FE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000017.00000002.587092589.00000020131FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
20131FE000
|
Size: |
8192
|
|
201580F9000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660470059.00000201580F9000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201580F9000
|
Size: |
32768
|
|
1975000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.448269899.0000000001975000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1975000
|
Size: |
16384
|
|
248E2D0A000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.487138769.00000248E2D0A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248E2D0A000
|
Size: |
20480
|
|
1BA80000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.443930315.000000001BA80000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA80000
|
Size: |
61440
|
|
1C3A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440296894.000000001C3A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C3A0000
|
Size: |
65536
|
|
1F8625DC000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.472641289.000001F8625DC000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F8625DC000
|
Size: |
8192
|
|
2EC0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.467316848.0000000002EC0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2EC0000
|
Size: |
28672
|
|
1AF80000000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000003.492698750.000001AF80000000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AF80000000
|
Size: |
28672
|
|
1B11A857000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.514727229.000001B11A857000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1B11A857000
|
Size: |
98304
|
|
15A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.470699315.00000000015A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15A0000
|
Size: |
20480
|
|
5BE54C000
|
stack
|
page read and write
|
|
|
|
Name: |
00000012.00000002.538941521.00000005BE54C000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
5BE54C000
|
Size: |
16384
|
|
1C4C0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440898525.000000001C4C0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C4C0000
|
Size: |
65536
|
|
248E2600000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.484155566.00000248E2600000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E2600000
|
Size: |
36864
|
|
1C1E0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.469392739.000000001C1E0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C1E0000
|
Size: |
65536
|
|
1C3B0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.440307041.000000001C3B0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C3B0000
|
Size: |
65536
|
|
1F879770000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.451336405.000001F879770000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879770000
|
Size: |
53248
|
|
1F879572000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.455835462.000001F879572000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F879572000
|
Size: |
8192
|
|
2081B102000
|
heap
|
page read and write
|
|
|
|
Name: |
00000017.00000002.587567027.000002081B102000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
23
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2081B102000
|
Size: |
12288
|
|
7FF9F1DE0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.499361449.00007FF9F1DE0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1DE0000
|
Size: |
65536
|
|
8871B78000
|
stack
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660173242.0000008871B78000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8871B78000
|
Size: |
32768
|
|
1F879578000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.455860954.000001F879578000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F879578000
|
Size: |
28672
|
|
7FF9F1B8C000
|
trusted library allocation
|
page execute and read and write
|
|
|
|
Name: |
00000005.00000002.485544489.00007FF9F1B8C000.00000040.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page execute and read and write
|
Base address: |
7FF9F1B8C000
|
Size: |
4096
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441665162.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
32768
|
|
248C8590000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.487823367.00000248C8590000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248C8590000
|
Size: |
4096
|
|
15A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.470235106.00000000015A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15A0000
|
Size: |
65536
|
|
1D3ED780000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.702190290.000001D3ED780000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D3ED780000
|
Size: |
8192
|
|
1D3ED841000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.702360827.000001D3ED841000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D3ED841000
|
Size: |
69632
|
|
248CB031000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.496052439.00000248CB031000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248CB031000
|
Size: |
4096
|
|
9B6B27C000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702138906.0000009B6B27C000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
9B6B27C000
|
Size: |
16384
|
|
1F8611AA000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.463166015.000001F8611AA000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F8611AA000
|
Size: |
1703936
|
|
1D3ED913000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.702539853.000001D3ED913000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D3ED913000
|
Size: |
20480
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.471672156.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
65536
|
|
7FF9F1DF0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.476096078.00007FF9F1DF0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1DF0000
|
Size: |
65536
|
|
1B800000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.467504915.000000001B800000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1B800000
|
Size: |
65536
|
|
1960000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.448249891.0000000001960000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1960000
|
Size: |
4096
|
|
1F860F30000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.460013570.000001F860F30000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F860F30000
|
Size: |
65536
|
|
62775FB000
|
stack
|
page read and write
|
|
|
|
Name: |
00000010.00000002.514560659.00000062775FB000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
62775FB000
|
Size: |
20480
|
|
1F85F560000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459580941.000001F85F560000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F85F560000
|
Size: |
4096
|
|
7FF9F1D70000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.475835411.00007FF9F1D70000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1D70000
|
Size: |
32768
|
|
B42000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000000.00000002.446898459.0000000000B42000.00000002.00000001.01000000.00000003.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
B42000
|
Size: |
4771840
|
|
20158948000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.620436428.0000020158948000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158948000
|
Size: |
12288
|
|
1AF8029B000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702623913.000001AF8029B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF8029B000
|
Size: |
8192
|
|
1251AAE0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000012.00000002.539111076.000001251AAE0000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1251AAE0000
|
Size: |
4096
|
|
1B8A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.468265185.000000001B8A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1B8A0000
|
Size: |
65536
|
|
1251AD02000
|
heap
|
page read and write
|
|
|
|
Name: |
00000012.00000002.539340472.000001251AD02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1251AD02000
|
Size: |
12288
|
|
1F879578000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.455794161.000001F879578000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F879578000
|
Size: |
28672
|
|
1F879614000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.457244077.000001F879614000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879614000
|
Size: |
49152
|
|
20158E02000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.620268490.0000020158E02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158E02000
|
Size: |
491520
|
|
1C570000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441272860.000000001C570000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C570000
|
Size: |
65536
|
|
9B6B47E000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702189712.0000009B6B47E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
9B6B47E000
|
Size: |
8192
|
|
1BA00000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441902740.000000001BA00000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA00000
|
Size: |
65536
|
|
1BA20000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.441574318.000000001BA20000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA20000
|
Size: |
20480
|
|
1AFFFFD0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000003.492765139.000001AFFFFD0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AFFFFD0000
|
Size: |
4096
|
|
15A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.471348950.00000000015A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15A0000
|
Size: |
4096
|
|
248E25F0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.481611050.00000248E25F0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E25F0000
|
Size: |
45056
|
|
248E2600000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.481054913.00000248E2600000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E2600000
|
Size: |
53248
|
|
20158974000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.620830081.0000020158974000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158974000
|
Size: |
73728
|
|
5BEAFE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000012.00000002.539027328.00000005BEAFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
5BEAFE000
|
Size: |
8192
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.471325218.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
65536
|
|
7FFA54062000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000006.00000002.476676047.00007FFA54062000.00000002.00000001.01000000.00000007.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FFA54062000
|
Size: |
8192
|
|
248C85E0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.487845846.00000248C85E0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248C85E0000
|
Size: |
16384
|
|
20158E3E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.620458929.0000020158E3E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158E3E000
|
Size: |
245760
|
|
1590000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.471167043.0000000001590000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1590000
|
Size: |
16384
|
|
1F879760000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.450959960.000001F879760000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879760000
|
Size: |
65536
|
|
1AF80160000
|
remote allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000003.493567104.000001AF80160000.00000004.00000400.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
free memory
|
Regiontype: |
remote allocation
|
Protect: |
page read and write
|
Base address: |
1AF80160000
|
Size: |
4096
|
|
5BEDFD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000012.00000002.539094646.00000005BEDFD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
18
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
5BEDFD000
|
Size: |
12288
|
|
1F85F647000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459786875.000001F85F647000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F85F647000
|
Size: |
401408
|
|
1F8795F0000
|
heap
|
page execute and read and write
|
|
|
|
Name: |
00000006.00000002.475328862.000001F8795F0000.00000040.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page execute and read and write
|
Base address: |
1F8795F0000
|
Size: |
4096
|
|
15C0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.467007172.00000000015C0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15C0000
|
Size: |
65536
|
|
201580AB000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.615788448.00000201580AB000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201580AB000
|
Size: |
36864
|
|
1F879803000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.456009212.000001F879803000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F879803000
|
Size: |
86016
|
|
7FF9F1CDD000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.498521578.00007FF9F1CDD000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1CDD000
|
Size: |
12288
|
|
1BEBE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.457386492.000000001BEBE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
1BEBE000
|
Size: |
8192
|
|
248E2600000
|
direct allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.484313190.00000248E2600000.00000004.00001000.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
direct allocation
|
Protect: |
page read and write
|
Base address: |
248E2600000
|
Size: |
4096
|
|
201580AC000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.620716192.00000201580AC000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201580AC000
|
Size: |
4096
|
|
248E25E4000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000003.487277696.00000248E25E4000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248E25E4000
|
Size: |
49152
|
|
17CE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.448208645.00000000017CE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
17CE000
|
Size: |
8192
|
|
1F879780000
|
direct allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.453377009.000001F879780000.00000004.00001000.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
direct allocation
|
Protect: |
page read and write
|
Base address: |
1F879780000
|
Size: |
4096
|
|
1F879650000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.449115523.000001F879650000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879650000
|
Size: |
24576
|
|
248CAFE9000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.495793746.00000248CAFE9000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
248CAFE9000
|
Size: |
49152
|
|
1AF80140000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702416801.000001AF80140000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AF80140000
|
Size: |
4096
|
|
15A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000005.00000003.472065282.00000000015A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
5
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
15A0000
|
Size: |
65536
|
|
1B11A829000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.514694206.000001B11A829000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1B11A829000
|
Size: |
8192
|
|
7FF9F1DE0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.476061407.00007FF9F1DE0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1DE0000
|
Size: |
65536
|
|
7FF9F1B24000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.498356703.00007FF9F1B24000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1B24000
|
Size: |
36864
|
|
1AF80120000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000002.702393061.000001AF80120000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AF80120000
|
Size: |
4096
|
|
2FA4000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.434819010.0000000002FA4000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2FA4000
|
Size: |
49152
|
|
1BA05000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442100997.000000001BA05000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA05000
|
Size: |
40960
|
|
1AFFB1D0000
|
trusted library section
|
page readonly
|
|
|
|
Name: |
0000000F.00000002.703195566.000001AFFB1D0000.00000002.08000000.00040000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library section
|
Protect: |
page readonly
|
Base address: |
1AFFB1D0000
|
Size: |
65536
|
|
1BA10000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.443199995.000000001BA10000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA10000
|
Size: |
65536
|
|
2015804D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660294263.000002015804D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2015804D000
|
Size: |
4096
|
|
1F87952D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.454903571.000001F87952D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F87952D000
|
Size: |
4096
|
|
1BA01000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000003.442070466.000000001BA01000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1BA01000
|
Size: |
32768
|
|
7FF9F1CC2000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.498495892.00007FF9F1CC2000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1CC2000
|
Size: |
57344
|
|
1F8711A5000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.474429637.000001F8711A5000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F8711A5000
|
Size: |
45056
|
|
1D3ED879000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.702477443.000001D3ED879000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D3ED879000
|
Size: |
36864
|
|
7FF9F1BE0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.459356949.00007FF9F1BE0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1BE0000
|
Size: |
4096
|
|
3F485BF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.459332565.0000003F485BF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3F485BF000
|
Size: |
4096
|
|
7FF9F1DB0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.499266531.00007FF9F1DB0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
7FF9F1DB0000
|
Size: |
16384
|
|
2C027730000
|
heap
|
page readonly
|
|
|
|
Name: |
00000015.00000002.702522349.000002C027730000.00000002.00000020.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page readonly
|
Base address: |
2C027730000
|
Size: |
4096
|
|
1AF80040000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000000F.00000003.492789265.000001AF80040000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
15
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1AF80040000
|
Size: |
4096
|
|
20158991000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.627037763.0000020158991000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
20158991000
|
Size: |
16384
|
|
201580E8000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000003.616168000.00000201580E8000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201580E8000
|
Size: |
4096
|
|
201580EB000
|
heap
|
page read and write
|
|
|
|
Name: |
00000019.00000002.660455452.00000201580EB000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
25
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
201580EB000
|
Size: |
53248
|
|
1B11A710000
|
heap
|
page read and write
|
|
|
|
Name: |
00000010.00000002.514658814.000001B11A710000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
16
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1B11A710000
|
Size: |
8192
|
|
1F879760000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.451323093.000001F879760000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879760000
|
Size: |
65536
|
|
1F879780000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.453253858.000001F879780000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879780000
|
Size: |
20480
|
|
1F879761000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000003.450898992.000001F879761000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F879761000
|
Size: |
61440
|
|
248C862B000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000A.00000002.488014282.00000248C862B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
10
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
248C862B000
|
Size: |
4096
|
|