2474C1C0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1583567921.000002474C1C0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C1C0000
|
Size: |
12288
|
|
1D9DD42D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1510294713.000001D9DD42D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD42D000
|
Size: |
20480
|
|
16371D95000
|
heap
|
page read and write
|
|
|
|
Name: |
00000014.00000002.1518589869.0000016371D95000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
20
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
16371D95000
|
Size: |
16384
|
|
1AF64137000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1509837534.000001AF64137000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64137000
|
Size: |
20480
|
|
28F98039000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000022.00000002.2651152692.0000028F98039000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
28F98039000
|
Size: |
16384
|
|
1D9DD38A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519887359.000001D9DD38A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD38A000
|
Size: |
32768
|
|
B4CB5FF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582167259.000000B4CB5FF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B4CB5FF000
|
Size: |
4096
|
|
11A2C7E000
|
stack
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.2650099795.00000011A2C7E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
11A2C7E000
|
Size: |
8192
|
|
1C8F49BF000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.1399577161.000001C8F49BF000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F49BF000
|
Size: |
4096
|
|
23927313000
|
heap
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2654175736.0000023927313000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
23927313000
|
Size: |
98304
|
|
2474BFBA000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582753630.000002474BFBA000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474BFBA000
|
Size: |
8192
|
|
7FF63F4F1000
|
unkown
|
page execute read
|
|
|
|
Name: |
00000013.00000000.1501259835.00007FF63F4F1000.00000020.00000001.01000000.00000006.sdmp
|
TargetID: |
19
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page execute read
|
Base address: |
7FF63F4F1000
|
Size: |
151552
|
|
1D9DD3DE000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1505473479.000001D9DD3DE000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3DE000
|
Size: |
4096
|
|
2474BFCC000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000003.1580755717.000002474BFCC000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474BFCC000
|
Size: |
8192
|
|
2474DF90000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1583934273.000002474DF90000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474DF90000
|
Size: |
53248
|
|
1766C85A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2653843258.000001766C85A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1766C85A000
|
Size: |
45056
|
|
21845C47000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000003.1485313645.0000021845C47000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C47000
|
Size: |
4096
|
|
7FF5ADCC1000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000022.00000000.2342505715.00007FF5ADCC1000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FF5ADCC1000
|
Size: |
16384
|
|
7FF5ADC2E000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000022.00000000.2342404727.00007FF5ADC2E000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FF5ADC2E000
|
Size: |
8192
|
|
1D9DD3B5000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1494531858.000001D9DD3B5000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3B5000
|
Size: |
57344
|
|
1D9DD418000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1500181838.000001D9DD418000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD418000
|
Size: |
8192
|
|
1AF63FD0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1510053993.000001AF63FD0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF63FD0000
|
Size: |
4096
|
|
21845C2B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1487289570.0000021845C2B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C2B000
|
Size: |
65536
|
|
B4CB6FA000
|
stack
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582281313.000000B4CB6FA000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B4CB6FA000
|
Size: |
24576
|
|
1D9DD3F1000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1503373639.000001D9DD3F1000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3F1000
|
Size: |
8192
|
|
1AF640BD000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1499545184.000001AF640BD000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF640BD000
|
Size: |
20480
|
|
2474C031000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000003.1525429471.000002474C031000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C031000
|
Size: |
40960
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
28F97F60000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000022.00000000.2341829614.0000028F97F60000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
28F97F60000
|
Size: |
4096
|
|
1D9DDC52000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1504955509.000001D9DDC52000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDC52000
|
Size: |
16384
|
|
1AF642B0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1516101004.000001AF642B0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF642B0000
|
Size: |
12288
|
|
1C8F4A7A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2656320824.000001C8F4A7A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F4A7A000
|
Size: |
49152
|
|
1D9DD360000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519592689.000001D9DD360000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD360000
|
Size: |
49152
|
|
1D9DD630000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1522222786.000001D9DD630000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD630000
|
Size: |
8192
|
|
1D9DDC5F000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1509876797.000001D9DDC5F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDC5F000
|
Size: |
4096
|
|
1D9DDF4C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1517339521.000001D9DDF4C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDF4C000
|
Size: |
8192
|
|
1759FE80000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2654239159.000001759FE80000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1759FE80000
|
Size: |
4096
|
|
1D9DD3F4000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1520674783.000001D9DD3F4000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3F4000
|
Size: |
4096
|
|
1D9DD406000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1520674783.000001D9DD406000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD406000
|
Size: |
4096
|
|
1D9DD40A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1497092547.000001D9DD40A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD40A000
|
Size: |
4096
|
|
1D9DD3D1000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1520674783.000001D9DD3D1000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3D1000
|
Size: |
12288
|
|
21845C5B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1487548738.0000021845C5B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C5B000
|
Size: |
4096
|
|
23927200000
|
heap
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2651526484.0000023927200000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
23927200000
|
Size: |
73728
|
|
1D9DDC69000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1505321200.000001D9DDC69000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDC69000
|
Size: |
4096
|
|
116DC228000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.2651830200.00000116DC228000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
116DC228000
|
Size: |
8192
|
|
1D9DD413000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1497092547.000001D9DD413000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD413000
|
Size: |
12288
|
|
4761C7E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519223720.0000004761C7E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
4761C7E000
|
Size: |
8192
|
|
1D9DD41B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1505473479.000001D9DD41B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD41B000
|
Size: |
12288
|
|
1D9DD3B6000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1466010174.000001D9DD3B6000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3B6000
|
Size: |
36864
|
|
21846402000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1489138890.0000021846402000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
21846402000
|
Size: |
4096
|
|
DCD098D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000023.00000002.2345059253.000000DCD098D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
35
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
DCD098D000
|
Size: |
12288
|
|
1C8F4327000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2652126681.000001C8F4327000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F4327000
|
Size: |
65536
|
|
2474C022000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582941785.000002474C022000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C022000
|
Size: |
4096
|
|
21845C69000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000003.1482323136.0000021845C69000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C69000
|
Size: |
4096
|
|
2392724C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2652796102.000002392724C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2392724C000
|
Size: |
57344
|
|
1D9DDF47000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1517791715.000001D9DDF47000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDF47000
|
Size: |
20480
|
|
62616D000
|
stack
|
page read and write
|
|
|
|
Name: |
0000001F.00000002.2171683419.000000062616D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
31
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
62616D000
|
Size: |
12288
|
|
1C8F4980000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.1398730785.000001C8F4980000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F4980000
|
Size: |
196608
|
|
A56B27F000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000E.00000002.1487154332.000000A56B27F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
14
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A56B27F000
|
Size: |
4096
|
|
CBBF96A000
|
stack
|
page read and write
|
|
|
|
Name: |
00000015.00000002.1512553232.000000CBBF96A000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
CBBF96A000
|
Size: |
24576
|
|
1D9DD421000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1500181838.000001D9DD421000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD421000
|
Size: |
4096
|
|
1F02BA62000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.2652937830.000001F02BA62000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F02BA62000
|
Size: |
45056
|
|
1D9DD3B0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1494531858.000001D9DD3B0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3B0000
|
Size: |
8192
|
|
3E207E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2650510728.00000003E207E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3E207E000
|
Size: |
8192
|
|
7FF63F4F0000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000013.00000000.1501232791.00007FF63F4F0000.00000002.00000001.01000000.00000006.sdmp
|
TargetID: |
19
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FF63F4F0000
|
Size: |
4096
|
|
2474DEA0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1583744138.000002474DEA0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474DEA0000
|
Size: |
4096
|
|
28F982D0000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000022.00000002.2651845546.0000028F982D0000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
28F982D0000
|
Size: |
4096
|
|
1D9DD412000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1520674783.000001D9DD412000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD412000
|
Size: |
4096
|
|
1AF6408F000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1513446303.000001AF6408F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF6408F000
|
Size: |
8192
|
|
28F9803E000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000022.00000000.2342083276.0000028F9803E000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
28F9803E000
|
Size: |
4096
|
|
8C15B7D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000020.00000002.2201212489.0000008C15B7D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
32
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8C15B7D000
|
Size: |
12288
|
|
B8EF37E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1486949804.000000B8EF37E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B8EF37E000
|
Size: |
8192
|
|
B72C9DB000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.2649855542.000000B72C9DB000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B72C9DB000
|
Size: |
20480
|
|
36E767E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2651644831.00000036E767E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
36E767E000
|
Size: |
8192
|
|
1D9DD3E3000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1503373639.000001D9DD3E3000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3E3000
|
Size: |
24576
|
|
1F377444000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000003.1391869952.000001F377444000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F377444000
|
Size: |
4096
|
|
1C8F496D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.1400458980.000001C8F496D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F496D000
|
Size: |
4096
|
|
11A317C000
|
stack
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.2650905528.00000011A317C000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
11A317C000
|
Size: |
16384
|
|
1D9DDC61000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1515189915.000001D9DDC61000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDC61000
|
Size: |
4096
|
|
2474E2C2000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000003.1580652060.000002474E2C2000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474E2C2000
|
Size: |
4096
|
|
8C15AFE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000020.00000002.2201168217.0000008C15AFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
32
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8C15AFE000
|
Size: |
8192
|
|
B8EEE7E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1486209542.000000B8EEE7E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B8EEE7E000
|
Size: |
8192
|
|
1D9DD44D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1503373639.000001D9DD44D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD44D000
|
Size: |
8192
|
|
1D9DD421000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1510294713.000001D9DD421000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD421000
|
Size: |
8192
|
|
21845C80000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1487950772.0000021845C80000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C80000
|
Size: |
4096
|
|
1C8F4A45000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.1399642111.000001C8F4A45000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F4A45000
|
Size: |
286720
|
|
11A327F000
|
stack
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.2651093201.00000011A327F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
11A327F000
|
Size: |
4096
|
|
1766C800000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2651749258.000001766C800000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1766C800000
|
Size: |
73728
|
|
1D9DDF40000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1518243173.000001D9DDF40000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDF40000
|
Size: |
28672
|
|
1D9DD426000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1520674783.000001D9DD426000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD426000
|
Size: |
4096
|
|
1AF64073000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1502289749.000001AF64073000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64073000
|
Size: |
81920
|
|
1D9DDF56000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1516588074.000001D9DDF56000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDF56000
|
Size: |
8192
|
|
23E7A590000
|
heap
|
page read and write
|
|
|
|
Name: |
00000020.00000002.2201396906.0000023E7A590000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
32
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
23E7A590000
|
Size: |
4096
|
|
2784FCC4000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000E.00000002.1487613676.000002784FCC4000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
14
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2784FCC4000
|
Size: |
16384
|
|
1759FE2B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2652685155.000001759FE2B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1759FE2B000
|
Size: |
53248
|
|
116DC070000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.2651273125.00000116DC070000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
116DC070000
|
Size: |
8192
|
|
1C8F4968000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.1400358253.000001C8F4968000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F4968000
|
Size: |
98304
|
|
1AF64057000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1515062774.000001AF64057000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64057000
|
Size: |
4096
|
|
1D9DD42C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1503373639.000001D9DD42C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD42C000
|
Size: |
24576
|
|
1C8F49DF000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.1399577161.000001C8F49DF000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F49DF000
|
Size: |
4096
|
|
1AF6424E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1509514803.000001AF6424E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF6424E000
|
Size: |
4096
|
|
7FF5ADD6D000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000022.00000000.2343071221.00007FF5ADD6D000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FF5ADD6D000
|
Size: |
16384
|
|
1C8F44B5000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2655164952.000001C8F44B5000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F44B5000
|
Size: |
40960
|
|
1D9DD393000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1515294998.000001D9DD393000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD393000
|
Size: |
49152
|
|
2BDF9675000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1392011164.000002BDF9675000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2BDF9675000
|
Size: |
8192
|
|
252589A0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000023.00000002.2345144850.00000252589A0000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
35
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
252589A0000
|
Size: |
4096
|
|
1D9DD280000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519534504.000001D9DD280000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD280000
|
Size: |
8192
|
|
1D9DD440000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1520674783.000001D9DD440000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD440000
|
Size: |
8192
|
|
1D9DD3F4000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1510294713.000001D9DD3F4000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3F4000
|
Size: |
16384
|
|
2474C013000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000003.1580755717.000002474C013000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C013000
|
Size: |
24576
|
|
21845C8F000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000003.1480753078.0000021845C8F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C8F000
|
Size: |
28672
|
|
1F626B80000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001F.00000002.2171862455.000001F626B80000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
31
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F626B80000
|
Size: |
8192
|
|
3E247C000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2651072581.00000003E247C000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3E247C000
|
Size: |
16384
|
|
1C8F4920000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2655268446.000001C8F4920000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F4920000
|
Size: |
819200
|
|
247504A0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1584382821.00000247504A0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
247504A0000
|
Size: |
4096
|
|
7FF63F525000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1584531588.00007FF63F525000.00000004.00000001.01000000.00000006.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
7FF63F525000
|
Size: |
4096
|
|
3E1E7E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2650160774.00000003E1E7E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3E1E7E000
|
Size: |
8192
|
|
1D9DD3F9000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1500181838.000001D9DD3F9000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3F9000
|
Size: |
16384
|
|
1D9DDF3A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1516618554.000001D9DDF3A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDF3A000
|
Size: |
20480
|
|
16371BA0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000014.00000002.1516497514.0000016371BA0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
20
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
16371BA0000
|
Size: |
28672
|
|
2474C008000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582941785.000002474C008000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C008000
|
Size: |
4096
|
|
1C8F4A20000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2656320824.000001C8F4A20000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F4A20000
|
Size: |
8192
|
|
2525A470000
|
heap
|
page read and write
|
|
|
|
Name: |
00000023.00000002.2345819381.000002525A470000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
35
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2525A470000
|
Size: |
12288
|
|
7FF5ADD1A000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000022.00000000.2342914216.00007FF5ADD1A000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FF5ADD1A000
|
Size: |
12288
|
|
1F02BA40000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.2652380717.000001F02BA40000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F02BA40000
|
Size: |
131072
|
|
2474C02A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000003.1525429471.000002474C02A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C02A000
|
Size: |
20480
|
|
116DC25C000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.2653442142.00000116DC25C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
116DC25C000
|
Size: |
122880
|
|
1D9DD3F9000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1505473479.000001D9DD3F9000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3F9000
|
Size: |
45056
|
|
1C8F4A66000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2656320824.000001C8F4A66000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F4A66000
|
Size: |
77824
|
|
1766C700000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2651528174.000001766C700000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1766C700000
|
Size: |
4096
|
|
B4CB274000
|
stack
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1581939389.000000B4CB274000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B4CB274000
|
Size: |
4096
|
|
1F02BA7E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.2653584656.000001F02BA7E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F02BA7E000
|
Size: |
8192
|
|
1D9DD2A0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519566369.000001D9DD2A0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD2A0000
|
Size: |
4096
|
|
23E7A5D0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000020.00000002.2201504483.0000023E7A5D0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
32
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
23E7A5D0000
|
Size: |
24576
|
|
25258B45000
|
heap
|
page read and write
|
|
|
|
Name: |
00000023.00000002.2345240727.0000025258B45000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
35
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
25258B45000
|
Size: |
12288
|
|
1766C874000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2654310241.000001766C874000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1766C874000
|
Size: |
69632
|
|
36E6D5D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2649863686.00000036E6D5D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
36E6D5D000
|
Size: |
12288
|
|
1D9DD3BD000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519887359.000001D9DD3BD000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3BD000
|
Size: |
24576
|
|
36E72F9000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2650396072.00000036E72F9000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
36E72F9000
|
Size: |
28672
|
|
1D9DD425000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1505473479.000001D9DD425000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD425000
|
Size: |
20480
|
|
B72CFF7000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.2650320145.000000B72CFF7000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B72CFF7000
|
Size: |
36864
|
|
1D9DD415000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1520674783.000001D9DD415000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD415000
|
Size: |
20480
|
|
47619DE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519179964.00000047619DE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
47619DE000
|
Size: |
8192
|
|
2474C022000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000003.1525429471.000002474C022000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C022000
|
Size: |
28672
|
|
1F02BA13000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.2651445958.000001F02BA13000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F02BA13000
|
Size: |
94208
|
|
3E1EFE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2650255146.00000003E1EFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3E1EFE000
|
Size: |
8192
|
|
1D9DD41B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1510294713.000001D9DD41B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD41B000
|
Size: |
12288
|
|
28F98002000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000022.00000000.2341853866.0000028F98002000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
28F98002000
|
Size: |
65536
|
|
2474C063000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000003.1580274019.000002474C063000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C063000
|
Size: |
4096
|
|
7FF5ADCBE000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000022.00000000.2342505715.00007FF5ADCBE000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FF5ADCBE000
|
Size: |
8192
|
|
B8EEB8B000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1486158916.000000B8EEB8B000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B8EEB8B000
|
Size: |
20480
|
|
2474DF10000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1583792480.000002474DF10000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474DF10000
|
Size: |
4096
|
|
1759FD40000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2651413059.000001759FD40000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1759FD40000
|
Size: |
8192
|
|
1AF6424A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1508400363.000001AF6424A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF6424A000
|
Size: |
4096
|
|
1D9DD3F4000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1503373639.000001D9DD3F4000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3F4000
|
Size: |
65536
|
|
2784F9C0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000E.00000002.1487250753.000002784F9C0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
14
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2784F9C0000
|
Size: |
28672
|
|
21845C41000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000003.1485272556.0000021845C41000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C41000
|
Size: |
12288
|
|
1AF642BB000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1516101004.000001AF642BB000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF642BB000
|
Size: |
16384
|
|
4761EFF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519433705.0000004761EFF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
4761EFF000
|
Size: |
4096
|
|
175A0602000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2654479298.00000175A0602000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
175A0602000
|
Size: |
4096
|
|
1D9DD426000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1500181838.000001D9DD426000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD426000
|
Size: |
16384
|
|
1D9DDC61000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1509876797.000001D9DDC61000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDC61000
|
Size: |
4096
|
|
1D9DD3F9000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1510294713.000001D9DD3F9000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3F9000
|
Size: |
45056
|
|
21845C35000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000003.1379580627.0000021845C35000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C35000
|
Size: |
45056
|
|
255F47C000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.2650280179.000000255F47C000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
255F47C000
|
Size: |
16384
|
|
28F97F30000
|
heap
|
page read and write
|
|
|
|
Name: |
00000022.00000002.2650148158.0000028F97F30000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
28F97F30000
|
Size: |
8192
|
|
1759FE13000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2652168889.000001759FE13000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1759FE13000
|
Size: |
94208
|
|
21845C8D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1488241619.0000021845C8D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C8D000
|
Size: |
4096
|
|
1F626DA5000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001F.00000002.2172107935.000001F626DA5000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
31
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F626DA5000
|
Size: |
12288
|
|
28F98015000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000022.00000002.2650700009.0000028F98015000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
28F98015000
|
Size: |
4096
|
|
3005D7F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000014.00000002.1516069969.0000003005D7F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
20
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3005D7F000
|
Size: |
4096
|
|
23E7A7B5000
|
heap
|
page read and write
|
|
|
|
Name: |
00000020.00000002.2201941897.0000023E7A7B5000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
32
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
23E7A7B5000
|
Size: |
12288
|
|
3005EFF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000014.00000002.1516184099.0000003005EFF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
20
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3005EFF000
|
Size: |
4096
|
|
1F377C02000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000003.00000002.2654511316.000001F377C02000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F377C02000
|
Size: |
4096
|
|
1D9DDF33000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1517575038.000001D9DDF33000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDF33000
|
Size: |
8192
|
|
21845C62000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000003.1483400121.0000021845C62000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C62000
|
Size: |
4096
|
|
222387B000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2651135785.000000222387B000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
222387B000
|
Size: |
20480
|
|
1F37742B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.2652870209.000001F37742B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F37742B000
|
Size: |
102400
|
|
2474C255000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1583631033.000002474C255000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C255000
|
Size: |
32768
|
|
1D9DD440000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1505473479.000001D9DD440000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD440000
|
Size: |
8192
|
|
1D9DD3E1000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1510294713.000001D9DD3E1000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3E1000
|
Size: |
4096
|
|
2474C250000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1583631033.000002474C250000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C250000
|
Size: |
16384
|
|
7FF63F527000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000013.00000000.1501484735.00007FF63F527000.00000002.00000001.01000000.00000006.sdmp
|
TargetID: |
19
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FF63F527000
|
Size: |
8192
|
|
23927240000
|
heap
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2652796102.0000023927240000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
23927240000
|
Size: |
16384
|
|
1F377434000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000003.1391869952.000001F377434000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F377434000
|
Size: |
4096
|
|
1D9DD415000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1500181838.000001D9DD415000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD415000
|
Size: |
4096
|
|
1E0A1D90000
|
heap
|
page read and write
|
|
|
|
Name: |
00000015.00000002.1514055573.000001E0A1D90000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E0A1D90000
|
Size: |
12288
|
|
23927239000
|
heap
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2652519363.0000023927239000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
23927239000
|
Size: |
24576
|
|
28F98037000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000022.00000000.2342083276.0000028F98037000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
28F98037000
|
Size: |
24576
|
|
B72D37E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.2651146105.000000B72D37E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B72D37E000
|
Size: |
8192
|
|
36E757E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2651279560.00000036E757E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
36E757E000
|
Size: |
8192
|
|
16371BA8000
|
heap
|
page read and write
|
|
|
|
Name: |
00000014.00000002.1516497514.0000016371BA8000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
20
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
16371BA8000
|
Size: |
217088
|
|
7FF63F517000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000023.00000002.2345894557.00007FF63F517000.00000002.00000001.01000000.00000006.sdmp
|
TargetID: |
35
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FF63F517000
|
Size: |
4096
|
|
F5C5EFE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000022.00000000.2341657371.000000F5C5EFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
F5C5EFE000
|
Size: |
8192
|
|
36E747E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2650850016.00000036E747E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
36E747E000
|
Size: |
8192
|
|
4761D7F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519336088.0000004761D7F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
4761D7F000
|
Size: |
4096
|
|
23927302000
|
heap
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2653971711.0000023927302000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
23927302000
|
Size: |
32768
|
|
1D9DD3FA000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1520674783.000001D9DD3FA000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3FA000
|
Size: |
28672
|
|
21845C57000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1487548738.0000021845C57000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C57000
|
Size: |
4096
|
|
1759FE39000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2652685155.000001759FE39000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1759FE39000
|
Size: |
36864
|
|
1D9DD445000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1510294713.000001D9DD445000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD445000
|
Size: |
4096
|
|
116DC240000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.2652741921.00000116DC240000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
116DC240000
|
Size: |
81920
|
|
1C8F43EB000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.1397997745.000001C8F43EB000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F43EB000
|
Size: |
73728
|
|
3E217D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2650662730.00000003E217D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3E217D000
|
Size: |
12288
|
|
1D9DDC53000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1494273814.000001D9DDC53000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDC53000
|
Size: |
12288
|
|
B4CB276000
|
stack
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1581939389.000000B4CB276000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B4CB276000
|
Size: |
40960
|
|
1D9DD3DE000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1503373639.000001D9DD3DE000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3DE000
|
Size: |
4096
|
|
2474C03E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582941785.000002474C03E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C03E000
|
Size: |
4096
|
|
23E7A570000
|
heap
|
page read and write
|
|
|
|
Name: |
00000020.00000002.2201350118.0000023E7A570000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
32
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
23E7A570000
|
Size: |
8192
|
|
1AF65EE0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1516290740.000001AF65EE0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF65EE0000
|
Size: |
12288
|
|
21845C46000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000003.1484699316.0000021845C46000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C46000
|
Size: |
28672
|
|
A56AFCE000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000E.00000002.1487057414.000000A56AFCE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
14
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A56AFCE000
|
Size: |
8192
|
|
28F98000000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000022.00000000.2341853866.0000028F98000000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
28F98000000
|
Size: |
4096
|
|
1D9DD3FE000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1500181838.000001D9DD3FE000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3FE000
|
Size: |
8192
|
|
29C035F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1514252760.00000029C035F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
29C035F000
|
Size: |
4096
|
|
B8EF07E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1486274355.000000B8EF07E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B8EF07E000
|
Size: |
8192
|
|
7FF63F517000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000014.00000002.1518726009.00007FF63F517000.00000002.00000001.01000000.00000006.sdmp
|
TargetID: |
20
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FF63F517000
|
Size: |
8192
|
|
1D9DD443000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1500181838.000001D9DD443000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD443000
|
Size: |
4096
|
|
1D9DD3F1000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1505473479.000001D9DD3F1000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3F1000
|
Size: |
8192
|
|
1D9DD3F1000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1500181838.000001D9DD3F1000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3F1000
|
Size: |
4096
|
|
B8EF17F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1486334433.000000B8EF17F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B8EF17F000
|
Size: |
4096
|
|
1D9DD3E0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1500181838.000001D9DD3E0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3E0000
|
Size: |
4096
|
|
255F37C000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.2650101264.000000255F37C000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
255F37C000
|
Size: |
16384
|
|
1D9DDC5B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1514330388.000001D9DDC5B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDC5B000
|
Size: |
4096
|
|
1D9DD37B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519730638.000001D9DD37B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD37B000
|
Size: |
12288
|
|
7FF5ADCAD000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000022.00000000.2342505715.00007FF5ADCAD000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FF5ADCAD000
|
Size: |
12288
|
|
1D9DDC52000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1506494664.000001D9DDC52000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDC52000
|
Size: |
16384
|
|
2474BFBE000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582753630.000002474BFBE000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474BFBE000
|
Size: |
8192
|
|
21845C48000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000003.1485138036.0000021845C48000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C48000
|
Size: |
4096
|
|
23927265000
|
heap
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2653247973.0000023927265000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
23927265000
|
Size: |
61440
|
|
1C8F4971000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.1400458980.000001C8F4971000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F4971000
|
Size: |
4096
|
|
1D9DD160000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519507248.000001D9DD160000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD160000
|
Size: |
4096
|
|
8EB27FE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2651002034.0000008EB27FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8EB27FE000
|
Size: |
8192
|
|
1766C841000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2653215924.000001766C841000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1766C841000
|
Size: |
86016
|
|
1D9DDF3A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1518437788.000001D9DDF3A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDF3A000
|
Size: |
4096
|
|
2784F9C8000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000E.00000002.1487250753.000002784F9C8000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
14
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2784F9C8000
|
Size: |
8192
|
|
1F377413000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.2652461924.000001F377413000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F377413000
|
Size: |
94208
|
|
28F98664000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000022.00000002.2651896648.0000028F98664000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
28F98664000
|
Size: |
16384
|
|
1C8F4412000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2652126681.000001C8F4412000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F4412000
|
Size: |
4096
|
|
7FF5ADD23000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000022.00000000.2343009896.00007FF5ADD23000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FF5ADD23000
|
Size: |
8192
|
|
2784F8D0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000E.00000002.1487176937.000002784F8D0000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
14
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2784F8D0000
|
Size: |
4096
|
|
1AF64073000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1515542966.000001AF64073000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64073000
|
Size: |
8192
|
|
1AF64245000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1505983835.000001AF64245000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64245000
|
Size: |
12288
|
|
1D9DDC5F000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1506494664.000001D9DDC5F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDC5F000
|
Size: |
8192
|
|
1D9DD406000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1497092547.000001D9DD406000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD406000
|
Size: |
12288
|
|
2474C022000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000003.1580755717.000002474C022000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C022000
|
Size: |
28672
|
|
1AF64244000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1511097778.000001AF64244000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64244000
|
Size: |
4096
|
|
255ECFC000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.2649852778.000000255ECFC000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
255ECFC000
|
Size: |
16384
|
|
247505A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000013.00000003.1577919032.00000247505A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
247505A0000
|
Size: |
4096
|
|
1F626BA0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001F.00000002.2171893572.000001F626BA0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
31
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F626BA0000
|
Size: |
24576
|
|
1C8F4A21000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.1400656545.000001C8F4A21000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F4A21000
|
Size: |
303104
|
|
F5C5BCB000
|
stack
|
page read and write
|
|
|
|
Name: |
00000022.00000000.2341543538.000000F5C5BCB000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
F5C5BCB000
|
Size: |
20480
|
|
1D9DD44D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1497092547.000001D9DD44D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD44D000
|
Size: |
8192
|
|
36E71FE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2650121770.00000036E71FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
36E71FE000
|
Size: |
8192
|
|
1F377390000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.2651738891.000001F377390000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F377390000
|
Size: |
8192
|
|
1D9DDC65000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1509876797.000001D9DDC65000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDC65000
|
Size: |
4096
|
|
1D9DDC73000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1503211619.000001D9DDC73000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDC73000
|
Size: |
4096
|
|
1D9DD435000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1510294713.000001D9DD435000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD435000
|
Size: |
8192
|
|
1C8F43BD000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2652126681.000001C8F43BD000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F43BD000
|
Size: |
4096
|
|
1D9DD41B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1503373639.000001D9DD41B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD41B000
|
Size: |
20480
|
|
7FF5ADD07000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000022.00000000.2342851728.00007FF5ADD07000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FF5ADD07000
|
Size: |
12288
|
|
2392725B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2652796102.000002392725B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2392725B000
|
Size: |
36864
|
|
1D9DD428000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1520674783.000001D9DD428000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD428000
|
Size: |
4096
|
|
1AF64091000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1499228812.000001AF64091000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64091000
|
Size: |
53248
|
|
1D9DD406000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1505473479.000001D9DD406000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD406000
|
Size: |
8192
|
|
2474BFD0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000003.1580755717.000002474BFD0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474BFD0000
|
Size: |
192512
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
May try to detect the virtual machine to hinder analysis (VM artifact strings found in memory) |
Malware Analysis System Evasion |
Security Software Discovery
|
|
1E0A1C10000
|
heap
|
page read and write
|
|
|
|
Name: |
00000015.00000002.1513911704.000001E0A1C10000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E0A1C10000
|
Size: |
8192
|
|
2474E0D0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1584119665.000002474E0D0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474E0D0000
|
Size: |
4096
|
|
28F98661000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000022.00000000.2342306356.0000028F98661000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
28F98661000
|
Size: |
28672
|
|
1AF6406C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1515542966.000001AF6406C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF6406C000
|
Size: |
20480
|
|
222367C000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2650799677.000000222367C000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
222367C000
|
Size: |
16384
|
|
1D9DDC75000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1509448357.000001D9DDC75000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDC75000
|
Size: |
4096
|
|
1AF64051000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1515062774.000001AF64051000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64051000
|
Size: |
8192
|
|
36E717E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2649995995.00000036E717E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
36E717E000
|
Size: |
8192
|
|
1D9DD437000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1497092547.000001D9DD437000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD437000
|
Size: |
4096
|
|
1D9DD421000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1503373639.000001D9DD421000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD421000
|
Size: |
4096
|
|
1D9DD42F000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1505473479.000001D9DD42F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD42F000
|
Size: |
12288
|
|
1D9DD40A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1505473479.000001D9DD40A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD40A000
|
Size: |
8192
|
|
1F02BB00000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.2653686777.000001F02BB00000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F02BB00000
|
Size: |
4096
|
|
8C15A7D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000020.00000002.2201114467.0000008C15A7D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
32
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8C15A7D000
|
Size: |
12288
|
|
21845A10000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1486992369.0000021845A10000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845A10000
|
Size: |
4096
|
|
1D9DD43E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1500181838.000001D9DD43E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD43E000
|
Size: |
4096
|
|
36E73FE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2650701710.00000036E73FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
36E73FE000
|
Size: |
8192
|
|
1F02B970000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000008.00000002.2650858044.000001F02B970000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F02B970000
|
Size: |
4096
|
|
2BDF9610000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1391971747.000002BDF9610000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2BDF9610000
|
Size: |
4096
|
|
1766C750000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2651629396.000001766C750000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1766C750000
|
Size: |
8192
|
|
3005BFE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000014.00000002.1515955104.0000003005BFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
20
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3005BFE000
|
Size: |
8192
|
|
23E7A430000
|
heap
|
page read and write
|
|
|
|
Name: |
00000020.00000002.2201315594.0000023E7A430000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
32
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
23E7A430000
|
Size: |
4096
|
|
1C8F43DA000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2652126681.000001C8F43DA000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F43DA000
|
Size: |
225280
|
|
7FF5AD932000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000022.00000000.2342375458.00007FF5AD932000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FF5AD932000
|
Size: |
8192
|
|
1AF6424A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1511097778.000001AF6424A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF6424A000
|
Size: |
4096
|
|
28F98661000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000022.00000002.2651896648.0000028F98661000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
28F98661000
|
Size: |
8192
|
|
21845C85000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1488241619.0000021845C85000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C85000
|
Size: |
4096
|
|
1D9DDC5B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1504955509.000001D9DDC5B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDC5B000
|
Size: |
45056
|
|
2474C043000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000003.1525289988.000002474C043000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C043000
|
Size: |
118784
|
|
1D9DD425000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1510294713.000001D9DD425000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD425000
|
Size: |
20480
|
|
1D9DD43D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1503373639.000001D9DD43D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD43D000
|
Size: |
8192
|
|
16371BF1000
|
heap
|
page read and write
|
|
|
|
Name: |
00000014.00000002.1516497514.0000016371BF1000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
20
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
16371BF1000
|
Size: |
57344
|
|
29C067F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1514336573.00000029C067F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
29C067F000
|
Size: |
4096
|
|
1D9DD402000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1497092547.000001D9DD402000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD402000
|
Size: |
8192
|
|
1D9DD43D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1497092547.000001D9DD43D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD43D000
|
Size: |
28672
|
|
1D9DD42C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1497092547.000001D9DD42C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD42C000
|
Size: |
24576
|
|
1D9DDF32000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1518437788.000001D9DDF32000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDF32000
|
Size: |
4096
|
|
7FF63F525000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000023.00000002.2345941801.00007FF63F525000.00000004.00000001.01000000.00000006.sdmp
|
TargetID: |
35
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
7FF63F525000
|
Size: |
4096
|
|
1AF6409F000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1499228812.000001AF6409F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF6409F000
|
Size: |
77824
|
|
1D9DDC6F000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1503211619.000001D9DDC6F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDC6F000
|
Size: |
12288
|
|
2474C058000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582941785.000002474C058000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C058000
|
Size: |
4096
|
|
21845C6C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000003.1482099753.0000021845C6C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C6C000
|
Size: |
4096
|
|
1D9DD388000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519887359.000001D9DD388000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD388000
|
Size: |
4096
|
|
1D9DD3F1000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1497092547.000001D9DD3F1000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3F1000
|
Size: |
8192
|
|
21845C61000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000003.1483568262.0000021845C61000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C61000
|
Size: |
4096
|
|
1D9DD420000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1520674783.000001D9DD420000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD420000
|
Size: |
4096
|
|
21845C8D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000003.1480865987.0000021845C8D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C8D000
|
Size: |
8192
|
|
16371D80000
|
heap
|
page read and write
|
|
|
|
Name: |
00000014.00000002.1518536593.0000016371D80000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
20
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
16371D80000
|
Size: |
12288
|
|
1D9DD435000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1500181838.000001D9DD435000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD435000
|
Size: |
8192
|
|
36E74F9000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2650988776.00000036E74F9000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
36E74F9000
|
Size: |
28672
|
|
1D9DD3B5000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1515294998.000001D9DD3B5000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3B5000
|
Size: |
4096
|
|
1D9DD3CE000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1520674783.000001D9DD3CE000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3CE000
|
Size: |
8192
|
|
21845A20000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1487038012.0000021845A20000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845A20000
|
Size: |
4096
|
|
3E21FE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2650786236.00000003E21FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3E21FE000
|
Size: |
8192
|
|
2BDF9630000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1391991480.000002BDF9630000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2BDF9630000
|
Size: |
8192
|
|
1AF64144000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1497150758.000001AF64144000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64144000
|
Size: |
12288
|
|
1F377513000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.2654421650.000001F377513000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F377513000
|
Size: |
8192
|
|
B72D07E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.2650545814.000000B72D07E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B72D07E000
|
Size: |
8192
|
|
2474DF30000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000013.00000003.1578496620.000002474DF30000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2474DF30000
|
Size: |
4096
|
|
1D9DD445000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1497092547.000001D9DD445000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD445000
|
Size: |
4096
|
|
28F97EC0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000022.00000000.2341687626.0000028F97EC0000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
28F97EC0000
|
Size: |
4096
|
|
1D9DD439000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1500181838.000001D9DD439000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD439000
|
Size: |
4096
|
|
21845C44000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000003.1485242847.0000021845C44000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C44000
|
Size: |
4096
|
|
1D9DD370000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519730638.000001D9DD370000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD370000
|
Size: |
40960
|
|
1F377502000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.2654318592.000001F377502000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F377502000
|
Size: |
24576
|
|
1D9DD411000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1497092547.000001D9DD411000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD411000
|
Size: |
4096
|
|
1D9DD3BD000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1515294998.000001D9DD3BD000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3BD000
|
Size: |
8192
|
|
1D9DDF30000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1518437788.000001D9DDF30000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDF30000
|
Size: |
4096
|
|
1D9DDC5C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1496970961.000001D9DDC5C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDC5C000
|
Size: |
24576
|
|
1D9DDC53000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1514330388.000001D9DDC53000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDC53000
|
Size: |
12288
|
|
1F02BB02000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.2653686777.000001F02BB02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F02BB02000
|
Size: |
45056
|
|
1AF64092000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1499545184.000001AF64092000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64092000
|
Size: |
8192
|
|
1AF6413B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1510119112.000001AF6413B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF6413B000
|
Size: |
4096
|
|
1F02BB13000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.2653922232.000001F02BB13000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F02BB13000
|
Size: |
8192
|
|
1D9DD440000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1500181838.000001D9DD440000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD440000
|
Size: |
8192
|
|
21845C68000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000003.1482424856.0000021845C68000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C68000
|
Size: |
4096
|
|
1D9DD410000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1500181838.000001D9DD410000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD410000
|
Size: |
4096
|
|
1D9DD447000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1505473479.000001D9DD447000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD447000
|
Size: |
8192
|
|
1D9DD39E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519887359.000001D9DD39E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD39E000
|
Size: |
12288
|
|
1D9DDC63000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1509876797.000001D9DDC63000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDC63000
|
Size: |
4096
|
|
8EB25F7000
|
stack
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2650596111.0000008EB25F7000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8EB25F7000
|
Size: |
36864
|
|
1D9DD40C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1520674783.000001D9DD40C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD40C000
|
Size: |
8192
|
|
7FF63F52A000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000013.00000000.1501521632.00007FF63F52A000.00000002.00000001.01000000.00000006.sdmp
|
TargetID: |
19
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FF63F52A000
|
Size: |
12288
|
|
1AF64030000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1515062774.000001AF64030000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64030000
|
Size: |
28672
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
Contains functionality to create processes via WMI |
System Summary |
Windows Management Instrumentation
|
|
2474C039000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000003.1580274019.000002474C039000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C039000
|
Size: |
8192
|
|
7FF63F517000
|
unkown
|
page readonly
|
|
|
|
Name: |
0000001F.00000002.2172221280.00007FF63F517000.00000002.00000001.01000000.00000006.sdmp
|
TargetID: |
31
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FF63F517000
|
Size: |
4096
|
|
1D9DDC50000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1522488452.000001D9DDC50000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDC50000
|
Size: |
4096
|
|
1AF640B3000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1499228812.000001AF640B3000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF640B3000
|
Size: |
8192
|
|
7FF63F525000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000020.00000002.2202123553.00007FF63F525000.00000004.00000001.01000000.00000006.sdmp
|
TargetID: |
32
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
7FF63F525000
|
Size: |
4096
|
|
1AF6404A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1515062774.000001AF6404A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF6404A000
|
Size: |
4096
|
|
21845C6D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000003.1481269923.0000021845C6D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C6D000
|
Size: |
16384
|
|
1D9DDF3E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1517629865.000001D9DDF3E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDF3E000
|
Size: |
4096
|
|
1D9DD418000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1497092547.000001D9DD418000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD418000
|
Size: |
73728
|
|
3005E7F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000014.00000002.1516132517.0000003005E7F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
20
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3005E7F000
|
Size: |
4096
|
|
2474DEF0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1583767670.000002474DEF0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474DEF0000
|
Size: |
4096
|
|
23E7A7B0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000020.00000002.2201941897.0000023E7A7B0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
32
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
23E7A7B0000
|
Size: |
16384
|
|
25258B00000
|
heap
|
page read and write
|
|
|
|
Name: |
00000023.00000002.2345211894.0000025258B00000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
35
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
25258B00000
|
Size: |
4096
|
|
7FF63F516000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000013.00000000.1501414620.00007FF63F516000.00000002.00000001.01000000.00000006.sdmp
|
TargetID: |
19
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FF63F516000
|
Size: |
61440
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
Binary contains paths to debug symbols |
Compliance, System Summary |
|
|
2474C01E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582941785.000002474C01E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C01E000
|
Size: |
4096
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
1D9DDC62000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1506494664.000001D9DDC62000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDC62000
|
Size: |
12288
|
|
1C8F42B0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2651839807.000001C8F42B0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F42B0000
|
Size: |
8192
|
|
1766C857000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2653215924.000001766C857000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1766C857000
|
Size: |
8192
|
|
1D9DD3CE000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1505473479.000001D9DD3CE000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3CE000
|
Size: |
8192
|
|
1D9DD3D2000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1500181838.000001D9DD3D2000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3D2000
|
Size: |
8192
|
|
C6EE4FF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1391867349.000000C6EE4FF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C6EE4FF000
|
Size: |
4096
|
|
7FF5ADCE2000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000022.00000000.2342666335.00007FF5ADCE2000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FF5ADCE2000
|
Size: |
16384
|
|
25258AE0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000023.00000002.2345177972.0000025258AE0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
35
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
25258AE0000
|
Size: |
8192
|
|
28F98024000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000022.00000002.2650700009.0000028F98024000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
28F98024000
|
Size: |
20480
|
|
2474DF23000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1583817671.000002474DF23000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474DF23000
|
Size: |
12288
|
|
23927060000
|
heap
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2651151445.0000023927060000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
23927060000
|
Size: |
4096
|
|
3005A79000
|
stack
|
page read and write
|
|
|
|
Name: |
00000014.00000002.1515731297.0000003005A79000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
20
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3005A79000
|
Size: |
28672
|
|
116DC255000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.2652741921.00000116DC255000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
116DC255000
|
Size: |
24576
|
|
1D9DD439000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1497092547.000001D9DD439000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD439000
|
Size: |
4096
|
|
1D9DDC65000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1515189915.000001D9DDC65000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDC65000
|
Size: |
4096
|
|
1759FCE0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2651213018.000001759FCE0000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1759FCE0000
|
Size: |
4096
|
|
1F37746F000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.2654087269.000001F37746F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F37746F000
|
Size: |
32768
|
|
1D9DDF4B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1518243173.000001D9DDF4B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDF4B000
|
Size: |
4096
|
|
2474C033000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000003.1580755717.000002474C033000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C033000
|
Size: |
24576
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
247505A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000013.00000003.1578028237.00000247505A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
247505A0000
|
Size: |
4096
|
|
2474DF30000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000013.00000003.1575064036.000002474DF30000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2474DF30000
|
Size: |
4096
|
|
1D9DD440000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1510294713.000001D9DD440000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD440000
|
Size: |
8192
|
|
29C06FE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1514448887.00000029C06FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
29C06FE000
|
Size: |
8192
|
|
222377F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2651000405.000000222377F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
222377F000
|
Size: |
4096
|
|
116DC000000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.2651148000.00000116DC000000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
116DC000000
|
Size: |
4096
|
|
1D9DD44E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1520674783.000001D9DD44E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD44E000
|
Size: |
4096
|
|
C6EE47C000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1391826529.000000C6EE47C000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C6EE47C000
|
Size: |
16384
|
|
1766C886000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2654640284.000001766C886000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1766C886000
|
Size: |
8192
|
|
1AF64066000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1513765948.000001AF64066000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64066000
|
Size: |
4096
|
|
1D9DD447000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1503373639.000001D9DD447000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD447000
|
Size: |
8192
|
|
2BDF9730000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1392052794.000002BDF9730000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2BDF9730000
|
Size: |
40960
|
|
2474FFA0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1584245739.000002474FFA0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474FFA0000
|
Size: |
20480
|
|
1D9DD403000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1520674783.000001D9DD403000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD403000
|
Size: |
4096
|
|
222397F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2651357990.000000222397F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
222397F000
|
Size: |
4096
|
|
7FF5ADCAB000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000022.00000000.2342505715.00007FF5ADCAB000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FF5ADCAB000
|
Size: |
4096
|
|
28F97EC0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000022.00000002.2650049753.0000028F97EC0000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
28F97EC0000
|
Size: |
4096
|
|
1D9DD3F4000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1500181838.000001D9DD3F4000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3F4000
|
Size: |
16384
|
|
16371AE0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000014.00000002.1516266744.0000016371AE0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
20
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
16371AE0000
|
Size: |
8192
|
|
1766C86A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000003.1377083673.000001766C86A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1766C86A000
|
Size: |
36864
|
|
4761957000
|
stack
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519107127.0000004761957000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
4761957000
|
Size: |
36864
|
|
163719A0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000014.00000002.1516218406.00000163719A0000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
20
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
163719A0000
|
Size: |
4096
|
|
1C8F4A88000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2656320824.000001C8F4A88000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F4A88000
|
Size: |
16384
|
|
1AF640A4000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1500352093.000001AF640A4000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF640A4000
|
Size: |
12288
|
|
2BDF973B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1392052794.000002BDF973B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2BDF973B000
|
Size: |
98304
|
|
2474C150000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1583458846.000002474C150000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C150000
|
Size: |
4096
|
|
1D9DDC51000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1499985206.000001D9DDC51000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDC51000
|
Size: |
45056
|
|
6261EE000
|
stack
|
page read and write
|
|
|
|
Name: |
0000001F.00000002.2171732891.00000006261EE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
31
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
6261EE000
|
Size: |
8192
|
|
1D9DDF34000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1518437788.000001D9DDF34000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDF34000
|
Size: |
4096
|
|
28F98802000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000022.00000000.2342348522.0000028F98802000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
28F98802000
|
Size: |
4096
|
|
21845C7A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1487950772.0000021845C7A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C7A000
|
Size: |
16384
|
|
1C8F499F000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.1398973607.000001C8F499F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F499F000
|
Size: |
4096
|
|
2474BFE2000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582941785.000002474BFE2000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474BFE2000
|
Size: |
4096
|
|
DCD0C7D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000023.00000002.2345107276.000000DCD0C7D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
35
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
DCD0C7D000
|
Size: |
12288
|
|
1D9DD43E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1510294713.000001D9DD43E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD43E000
|
Size: |
4096
|
|
1E0A1CF0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000015.00000002.1514011796.000001E0A1CF0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E0A1CF0000
|
Size: |
4096
|
|
23927277000
|
heap
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2653247973.0000023927277000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
23927277000
|
Size: |
8192
|
|
1D9DD36C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1515294998.000001D9DD36C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD36C000
|
Size: |
155648
|
|
1F02D402000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000008.00000002.2654215354.000001F02D402000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F02D402000
|
Size: |
4096
|
|
28F98102000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000022.00000000.2342248751.0000028F98102000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
28F98102000
|
Size: |
12288
|
|
21845C4D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000003.1483741292.0000021845C4D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C4D000
|
Size: |
61440
|
|
1D9DD44D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1505473479.000001D9DD44D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD44D000
|
Size: |
8192
|
|
11A2E7B000
|
stack
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.2650392701.00000011A2E7B000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
11A2E7B000
|
Size: |
20480
|
|
21845C71000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000003.1481184645.0000021845C71000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C71000
|
Size: |
8192
|
|
1F626BA7000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001F.00000002.2171893572.000001F626BA7000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
31
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F626BA7000
|
Size: |
159744
|
|
B4CB37D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582048355.000000B4CB37D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B4CB37D000
|
Size: |
12288
|
|
8C157AC000
|
stack
|
page read and write
|
|
|
|
Name: |
00000020.00000002.2201053619.0000008C157AC000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
32
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8C157AC000
|
Size: |
16384
|
|
7FF5ADCF4000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000022.00000000.2342810593.00007FF5ADCF4000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FF5ADCF4000
|
Size: |
20480
|
|
1D9DD3C8000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1515294998.000001D9DD3C8000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3C8000
|
Size: |
12288
|
|
1AF6413C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1497195744.000001AF6413C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF6413C000
|
Size: |
32768
|
|
1F626CA0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001F.00000002.2172079789.000001F626CA0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
31
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F626CA0000
|
Size: |
4096
|
|
1C8F42D0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2651943914.000001C8F42D0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F42D0000
|
Size: |
8192
|
|
1766C913000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2654818701.000001766C913000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1766C913000
|
Size: |
4096
|
|
1F02BA02000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.2650914328.000001F02BA02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F02BA02000
|
Size: |
65536
|
|
7FF5ADD0F000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000022.00000000.2342885665.00007FF5ADD0F000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FF5ADD0F000
|
Size: |
8192
|
|
3005DFF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000014.00000002.1516099617.0000003005DFF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
20
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3005DFF000
|
Size: |
4096
|
|
21845C74000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1487950772.0000021845C74000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C74000
|
Size: |
4096
|
|
1D9DD3A6000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519887359.000001D9DD3A6000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3A6000
|
Size: |
24576
|
|
1D9DD443000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1520674783.000001D9DD443000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD443000
|
Size: |
4096
|
|
2474C038000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582941785.000002474C038000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C038000
|
Size: |
4096
|
|
28F97F30000
|
heap
|
page read and write
|
|
|
|
Name: |
00000022.00000000.2341768843.0000028F97F30000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
28F97F30000
|
Size: |
8192
|
|
1C8F4A69000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.1399798280.000001C8F4A69000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F4A69000
|
Size: |
4096
|
|
1AF6404A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1512898773.000001AF6404A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF6404A000
|
Size: |
135168
|
|
B8EF27E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1486487263.000000B8EF27E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B8EF27E000
|
Size: |
8192
|
|
1F02BA2B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.2651966051.000001F02BA2B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F02BA2B000
|
Size: |
81920
|
|
1AF6424B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1504533876.000001AF6424B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF6424B000
|
Size: |
16384
|
|
1F02B950000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000008.00000002.2650794097.000001F02B950000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F02B950000
|
Size: |
4096
|
|
1F3773D0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000003.00000002.2651916190.000001F3773D0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F3773D0000
|
Size: |
8192
|
|
11A275B000
|
stack
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.2649955828.00000011A275B000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
11A275B000
|
Size: |
20480
|
|
2BDFB120000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1392148967.000002BDFB120000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2BDFB120000
|
Size: |
4096
|
|
116DC22B000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.2652330599.00000116DC22B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
116DC22B000
|
Size: |
81920
|
|
1AF64060000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1515062774.000001AF64060000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64060000
|
Size: |
4096
|
|
2474BF88000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582392453.000002474BF88000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474BF88000
|
Size: |
200704
|
|
1AF64045000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1502289749.000001AF64045000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64045000
|
Size: |
184320
|
|
1D9DD3C1000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1515294998.000001D9DD3C1000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3C1000
|
Size: |
4096
|
|
7FF5ADD21000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000022.00000000.2342914216.00007FF5ADD21000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FF5ADD21000
|
Size: |
4096
|
|
2474BF60000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582358141.000002474BF60000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474BF60000
|
Size: |
8192
|
|
1D9DD3C6000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1494531858.000001D9DD3C6000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3C6000
|
Size: |
12288
|
|
1D9DDF51000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1516450828.000001D9DDF51000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDF51000
|
Size: |
8192
|
|
23E7A5D7000
|
heap
|
page read and write
|
|
|
|
Name: |
00000020.00000002.2201504483.0000023E7A5D7000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
32
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
23E7A5D7000
|
Size: |
163840
|
|
28F97ED0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000022.00000000.2341740864.0000028F97ED0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
28F97ED0000
|
Size: |
4096
|
|
1759FE5C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2653790814.000001759FE5C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1759FE5C000
|
Size: |
65536
|
|
2474BFC8000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000003.1580755717.000002474BFC8000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474BFC8000
|
Size: |
12288
|
|
1F377402000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.2652015451.000001F377402000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F377402000
|
Size: |
65536
|
|
21845C73000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000003.1480949391.0000021845C73000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C73000
|
Size: |
65536
|
|
255F27F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.2650004881.000000255F27F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
255F27F000
|
Size: |
4096
|
|
1D9DD410000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1510294713.000001D9DD410000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD410000
|
Size: |
4096
|
|
1D9DD41C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1520674783.000001D9DD41C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD41C000
|
Size: |
8192
|
|
21845C5E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000003.1484603589.0000021845C5E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C5E000
|
Size: |
4096
|
|
1AF640A6000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1516031810.000001AF640A6000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF640A6000
|
Size: |
4096
|
|
7FF63F525000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000014.00000002.1518770953.00007FF63F525000.00000004.00000001.01000000.00000006.sdmp
|
TargetID: |
20
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
7FF63F525000
|
Size: |
4096
|
|
1D9DD439000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1510294713.000001D9DD439000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD439000
|
Size: |
4096
|
|
1C8F42F0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2652011635.000001C8F42F0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1C8F42F0000
|
Size: |
8192
|
|
29C03DE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1514307457.00000029C03DE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
29C03DE000
|
Size: |
8192
|
|
16371B50000
|
heap
|
page read and write
|
|
|
|
Name: |
00000014.00000002.1516429869.0000016371B50000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
20
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
16371B50000
|
Size: |
4096
|
|
1D9DD3D1000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1497092547.000001D9DD3D1000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3D1000
|
Size: |
12288
|
|
23927A00000
|
heap
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2654572362.0000023927A00000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
23927A00000
|
Size: |
4096
|
|
3E1D7D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2650021224.00000003E1D7D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3E1D7D000
|
Size: |
12288
|
|
28F98010000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000022.00000002.2650256839.0000028F98010000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
28F98010000
|
Size: |
4096
|
|
1D9DD3D3000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1505473479.000001D9DD3D3000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3D3000
|
Size: |
4096
|
|
1D9DD3F4000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1505473479.000001D9DD3F4000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3F4000
|
Size: |
16384
|
|
1AF64243000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1506997573.000001AF64243000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64243000
|
Size: |
8192
|
|
1F37745D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.2654051808.000001F37745D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F37745D000
|
Size: |
4096
|
|
1E0A1A4E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000015.00000002.1513076287.000001E0A1A4E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E0A1A4E000
|
Size: |
114688
|
|
1D9DD44D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1510294713.000001D9DD44D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD44D000
|
Size: |
8192
|
|
CBBF9EF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000015.00000002.1512769463.000000CBBF9EF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
CBBF9EF000
|
Size: |
4096
|
|
1759FE43000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2653077378.000001759FE43000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1759FE43000
|
Size: |
40960
|
|
1D9DD448000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1520674783.000001D9DD448000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD448000
|
Size: |
4096
|
|
1D9DDF3B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1517494888.000001D9DDF3B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDF3B000
|
Size: |
16384
|
|
1C8F4A40000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2656320824.000001C8F4A40000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F4A40000
|
Size: |
4096
|
|
1F377445000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.2653500142.000001F377445000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F377445000
|
Size: |
36864
|
|
2784FCC0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000E.00000002.1487613676.000002784FCC0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
14
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2784FCC0000
|
Size: |
12288
|
|
DCD090E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000023.00000002.2345013931.000000DCD090E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
35
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
DCD090E000
|
Size: |
8192
|
|
7FF63F525000
|
unkown
|
page read and write
|
|
|
|
Name: |
0000001F.00000002.2172248754.00007FF63F525000.00000004.00000001.01000000.00000006.sdmp
|
TargetID: |
31
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
7FF63F525000
|
Size: |
4096
|
|
1AF64038000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1515062774.000001AF64038000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64038000
|
Size: |
53248
|
|
2474C003000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582941785.000002474C003000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C003000
|
Size: |
8192
|
|
22232FB000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2650306234.00000022232FB000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
22232FB000
|
Size: |
20480
|
|
1D9DD3D1000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1503373639.000001D9DD3D1000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3D1000
|
Size: |
12288
|
|
7FF5ADCB4000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000022.00000000.2342505715.00007FF5ADCB4000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FF5ADCB4000
|
Size: |
20480
|
|
1D9DD416000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1510294713.000001D9DD416000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD416000
|
Size: |
16384
|
|
28F98013000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000022.00000000.2341968133.0000028F98013000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
28F98013000
|
Size: |
94208
|
|
1AF64076000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1515542966.000001AF64076000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64076000
|
Size: |
16384
|
|
1D9DD3E6000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1497092547.000001D9DD3E6000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3E6000
|
Size: |
12288
|
|
21845C5F000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000003.1483634262.0000021845C5F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C5F000
|
Size: |
8192
|
|
21845C4B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000003.1485138036.0000021845C4B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C4B000
|
Size: |
8192
|
|
1D9DD3DE000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1510294713.000001D9DD3DE000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3DE000
|
Size: |
4096
|
|
8EB26FE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2650907765.0000008EB26FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8EB26FE000
|
Size: |
8192
|
|
21845C6B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000003.1482147268.0000021845C6B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C6B000
|
Size: |
4096
|
|
B72D0FD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.2650706348.000000B72D0FD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B72D0FD000
|
Size: |
12288
|
|
28F98017000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000022.00000002.2650700009.0000028F98017000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
28F98017000
|
Size: |
12288
|
|
255F57C000
|
stack
|
page read and write
|
|
|
|
Name: |
00000008.00000002.2650417217.000000255F57C000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
255F57C000
|
Size: |
16384
|
|
2784F940000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000E.00000002.1487202618.000002784F940000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
14
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2784F940000
|
Size: |
4096
|
|
1D9DD3E8000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1510294713.000001D9DD3E8000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3E8000
|
Size: |
4096
|
|
8EB24FB000
|
stack
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2650403179.0000008EB24FB000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8EB24FB000
|
Size: |
20480
|
|
1D9DD635000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1522222786.000001D9DD635000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD635000
|
Size: |
40960
|
|
1AF6408A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1513446303.000001AF6408A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF6408A000
|
Size: |
16384
|
|
28F98045000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000022.00000002.2651688481.0000028F98045000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
28F98045000
|
Size: |
16384
|
|
1D9DD3E3000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1510294713.000001D9DD3E3000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3E3000
|
Size: |
4096
|
|
1C8F4362000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.1393911294.000001C8F4362000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F4362000
|
Size: |
4096
|
|
1AF64247000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1511097778.000001AF64247000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64247000
|
Size: |
4096
|
|
21845C4B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000003.1485212851.0000021845C4B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C4B000
|
Size: |
8192
|
|
1AF64099000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1500352093.000001AF64099000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64099000
|
Size: |
32768
|
|
21845A80000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1487060303.0000021845A80000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845A80000
|
Size: |
8192
|
|
116DC213000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.2651830200.00000116DC213000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
116DC213000
|
Size: |
81920
|
|
1766C82B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2652667173.000001766C82B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1766C82B000
|
Size: |
86016
|
|
4761F7D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519475240.0000004761F7D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
4761F7D000
|
Size: |
12288
|
|
B72D47B000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.2651316896.000000B72D47B000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B72D47B000
|
Size: |
20480
|
|
29C02DA000
|
stack
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1514183155.00000029C02DA000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
29C02DA000
|
Size: |
24576
|
|
2474C035000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582941785.000002474C035000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C035000
|
Size: |
4096
|
|
A56AF4A000
|
stack
|
page read and write
|
|
|
|
Name: |
0000000E.00000002.1486292416.000000A56AF4A000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
14
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
A56AF4A000
|
Size: |
24576
|
|
1D9DD439000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1505473479.000001D9DD439000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD439000
|
Size: |
4096
|
|
1F02B850000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.2650712651.000001F02B850000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F02B850000
|
Size: |
8192
|
|
1D9DD3E8000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1520674783.000001D9DD3E8000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3E8000
|
Size: |
4096
|
|
2474BFB9000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000003.1580755717.000002474BFB9000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474BFB9000
|
Size: |
57344
|
|
1AF640C0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1516063082.000001AF640C0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF640C0000
|
Size: |
8192
|
|
1766C780000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2651702105.000001766C780000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1766C780000
|
Size: |
4096
|
|
1D9DD3E3000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1505473479.000001D9DD3E3000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3E3000
|
Size: |
24576
|
|
1D9DD3A4000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519887359.000001D9DD3A4000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3A4000
|
Size: |
4096
|
|
16371B00000
|
heap
|
page read and write
|
|
|
|
Name: |
00000014.00000002.1516340490.0000016371B00000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
20
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
16371B00000
|
Size: |
4096
|
|
1F02B9A0000
|
remote allocation
|
page read and write
|
|
|
|
Name: |
00000008.00000003.1398062991.000001F02B9A0000.00000004.00000400.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
free memory
|
Regiontype: |
remote allocation
|
Protect: |
page read and write
|
Base address: |
1F02B9A0000
|
Size: |
4096
|
|
1766C864000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000003.1377083673.000001766C864000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1766C864000
|
Size: |
12288
|
|
1D9DDC55000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1516337165.000001D9DDC55000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDC55000
|
Size: |
4096
|
|
1AF6407B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1515762250.000001AF6407B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF6407B000
|
Size: |
49152
|
|
1F6286A0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001F.00000002.2172173431.000001F6286A0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
31
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F6286A0000
|
Size: |
12288
|
|
1D9DD42F000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1500181838.000001D9DD42F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD42F000
|
Size: |
12288
|
|
36E75F9000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2651450198.00000036E75F9000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
36E75F9000
|
Size: |
28672
|
|
1D9DD3D2000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1510294713.000001D9DD3D2000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3D2000
|
Size: |
8192
|
|
1D9DD443000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1503373639.000001D9DD443000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD443000
|
Size: |
4096
|
|
1F377400000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.2652015451.000001F377400000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F377400000
|
Size: |
4096
|
|
2474C01A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000003.1580755717.000002474C01A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C01A000
|
Size: |
20480
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
28F982D0000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000022.00000000.2342282417.0000028F982D0000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
28F982D0000
|
Size: |
4096
|
|
2474BFE8000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582941785.000002474BFE8000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474BFE8000
|
Size: |
4096
|
|
4761DFC000
|
stack
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519367815.0000004761DFC000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
4761DFC000
|
Size: |
16384
|
|
21845C00000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1487109250.0000021845C00000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C00000
|
Size: |
73728
|
|
1D9DDF3A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1517665314.000001D9DDF3A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDF3A000
|
Size: |
4096
|
|
1D9DD3DD000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1493625044.000001D9DD3DD000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3DD000
|
Size: |
49152
|
|
28F98005000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000022.00000002.2650256839.0000028F98005000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
28F98005000
|
Size: |
4096
|
|
28F9802E000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000022.00000002.2651152692.0000028F9802E000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
28F9802E000
|
Size: |
4096
|
|
CBBFCFF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000015.00000002.1512952149.000000CBBFCFF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
CBBFCFF000
|
Size: |
4096
|
|
28F98002000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000022.00000002.2650256839.0000028F98002000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
28F98002000
|
Size: |
4096
|
|
1766C86E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2654139754.000001766C86E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1766C86E000
|
Size: |
20480
|
|
2474C045000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582941785.000002474C045000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C045000
|
Size: |
8192
|
|
2474C03E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000003.1580274019.000002474C03E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C03E000
|
Size: |
114688
|
|
21845C64000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1487724490.0000021845C64000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C64000
|
Size: |
4096
|
|
1D9DD3CB000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1503373639.000001D9DD3CB000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3CB000
|
Size: |
20480
|
|
3005B7D000
|
stack
|
page read and write
|
|
|
|
Name: |
00000014.00000002.1515846302.0000003005B7D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
20
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3005B7D000
|
Size: |
12288
|
|
1759FE00000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2651643300.000001759FE00000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1759FE00000
|
Size: |
4096
|
|
222357C000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2650656026.000000222357C000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
222357C000
|
Size: |
16384
|
|
1F37744F000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.2653500142.000001F37744F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F37744F000
|
Size: |
40960
|
|
1C8F496B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.1400458980.000001C8F496B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F496B000
|
Size: |
4096
|
|
21845C63000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000003.1482460314.0000021845C63000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C63000
|
Size: |
20480
|
|
23927A15000
|
heap
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2654679760.0000023927A15000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
23927A15000
|
Size: |
4096
|
|
21845C82000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1487950772.0000021845C82000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C82000
|
Size: |
4096
|
|
1F3773C0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000003.00000002.2651823904.000001F3773C0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1F3773C0000
|
Size: |
4096
|
|
1D9DD412000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1505473479.000001D9DD412000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD412000
|
Size: |
4096
|
|
1F377330000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.2651639384.000001F377330000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F377330000
|
Size: |
4096
|
|
1759FE02000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2651643300.000001759FE02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1759FE02000
|
Size: |
65536
|
|
21845C76000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1487950772.0000021845C76000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C76000
|
Size: |
8192
|
|
1D9DD43E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1505473479.000001D9DD43E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD43E000
|
Size: |
4096
|
|
21845C54000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1487548738.0000021845C54000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C54000
|
Size: |
4096
|
|
116DC332000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.2654979314.00000116DC332000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
116DC332000
|
Size: |
24576
|
|
21845C4C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1487489911.0000021845C4C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C4C000
|
Size: |
4096
|
|
1F02BB16000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.2653922232.000001F02BB16000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F02BB16000
|
Size: |
24576
|
|
21845C3E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1487384913.0000021845C3E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C3E000
|
Size: |
8192
|
|
1AF6406A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1515485710.000001AF6406A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF6406A000
|
Size: |
4096
|
|
1759FCF0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2651320124.000001759FCF0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1759FCF0000
|
Size: |
4096
|
|
21845C66000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1487724490.0000021845C66000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C66000
|
Size: |
8192
|
|
1D9DD3E0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1497092547.000001D9DD3E0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3E0000
|
Size: |
20480
|
|
2222FAF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2650202367.0000002222FAF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
2222FAF000
|
Size: |
4096
|
|
1C8F44B0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2655164952.000001C8F44B0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F44B0000
|
Size: |
16384
|
|
1D9DD435000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1503373639.000001D9DD435000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD435000
|
Size: |
12288
|
|
B8EEEFE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1486247176.000000B8EEEFE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B8EEEFE000
|
Size: |
8192
|
|
21845C5D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1487694871.0000021845C5D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C5D000
|
Size: |
4096
|
|
2BDF9670000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1392011164.000002BDF9670000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2BDF9670000
|
Size: |
12288
|
|
2474BF80000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582392453.000002474BF80000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474BF80000
|
Size: |
28672
|
|
3E178B000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2649879130.00000003E178B000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3E178B000
|
Size: |
20480
|
|
11A307C000
|
stack
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.2650702726.00000011A307C000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
11A307C000
|
Size: |
16384
|
|
1AF640B4000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1499545184.000001AF640B4000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF640B4000
|
Size: |
32768
|
|
1D9DDC66000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1503211619.000001D9DDC66000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDC66000
|
Size: |
16384
|
|
23927213000
|
heap
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2651964826.0000023927213000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
23927213000
|
Size: |
90112
|
|
1AF64138000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1510119112.000001AF64138000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64138000
|
Size: |
4096
|
|
1D9DD3E8000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1500181838.000001D9DD3E8000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3E8000
|
Size: |
4096
|
|
1D9DD3E0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1503373639.000001D9DD3E0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3E0000
|
Size: |
4096
|
|
1C8F43C7000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2652126681.000001C8F43C7000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F43C7000
|
Size: |
4096
|
|
B4CB57E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582135092.000000B4CB57E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B4CB57E000
|
Size: |
8192
|
|
CBBFC7F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000015.00000002.1512896794.000000CBBFC7F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
CBBFC7F000
|
Size: |
4096
|
|
1F02BA00000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.2650914328.000001F02BA00000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F02BA00000
|
Size: |
4096
|
|
1D9DD3AD000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519887359.000001D9DD3AD000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3AD000
|
Size: |
4096
|
|
8EB23FB000
|
stack
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2650239121.0000008EB23FB000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8EB23FB000
|
Size: |
20480
|
|
1AF6408C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1515934700.000001AF6408C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF6408C000
|
Size: |
4096
|
|
1D9DD3EF000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1520674783.000001D9DD3EF000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3EF000
|
Size: |
16384
|
|
1AF64088000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1502289749.000001AF64088000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64088000
|
Size: |
36864
|
|
1D9DD412000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1510294713.000001D9DD412000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD412000
|
Size: |
4096
|
|
C6EE57E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1391903617.000000C6EE57E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
C6EE57E000
|
Size: |
8192
|
|
1D9DDF37000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1517665314.000001D9DDF37000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDF37000
|
Size: |
4096
|
|
1E0A1A20000
|
heap
|
page read and write
|
|
|
|
Name: |
00000015.00000002.1513051398.000001E0A1A20000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E0A1A20000
|
Size: |
4096
|
|
23927A02000
|
heap
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2654572362.0000023927A02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
23927A02000
|
Size: |
4096
|
|
8EB22FE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2650160011.0000008EB22FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8EB22FE000
|
Size: |
8192
|
|
1D9DD393000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519887359.000001D9DD393000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD393000
|
Size: |
28672
|
|
1D9DD41B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1500181838.000001D9DD41B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD41B000
|
Size: |
12288
|
|
1C8F43B3000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.1398107844.000001C8F43B3000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F43B3000
|
Size: |
229376
|
|
1F626DA0000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001F.00000002.2172107935.000001F626DA0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
31
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F626DA0000
|
Size: |
12288
|
|
1D9DD447000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1510294713.000001D9DD447000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD447000
|
Size: |
8192
|
|
8EB28FE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2651079757.0000008EB28FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8EB28FE000
|
Size: |
8192
|
|
1F02B9A0000
|
remote allocation
|
page read and write
|
|
|
|
Name: |
00000008.00000003.1397970482.000001F02B9A0000.00000004.00000400.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
free memory
|
Regiontype: |
remote allocation
|
Protect: |
page read and write
|
Base address: |
1F02B9A0000
|
Size: |
4096
|
|
1C8F49AF000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.1398973607.000001C8F49AF000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F49AF000
|
Size: |
200704
|
|
8EB227E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2650049801.0000008EB227E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8EB227E000
|
Size: |
8192
|
|
1D9DD406000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1500181838.000001D9DD406000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD406000
|
Size: |
8192
|
|
1D9DD435000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1505473479.000001D9DD435000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD435000
|
Size: |
8192
|
|
1D9DD439000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1493625044.000001D9DD439000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD439000
|
Size: |
90112
|
|
2BDF94D0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000004.00000002.1391943685.000002BDF94D0000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
4
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2BDF94D0000
|
Size: |
4096
|
|
21845C6A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000003.1482257406.0000021845C6A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C6A000
|
Size: |
4096
|
|
1759FE6D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2653790814.000001759FE6D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1759FE6D000
|
Size: |
4096
|
|
B4CB3FE000
|
stack
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582077985.000000B4CB3FE000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B4CB3FE000
|
Size: |
8192
|
|
1C8F43D2000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2652126681.000001C8F43D2000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F43D2000
|
Size: |
28672
|
|
21845C93000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1488348415.0000021845C93000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C93000
|
Size: |
12288
|
|
116DC010000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.2651219274.00000116DC010000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
116DC010000
|
Size: |
4096
|
|
3E22FD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2650934210.00000003E22FD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3E22FD000
|
Size: |
12288
|
|
1AF65FF0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1516400180.000001AF65FF0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF65FF0000
|
Size: |
4096
|
|
239270D0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2651367161.00000239270D0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
239270D0000
|
Size: |
12288
|
|
1E0A19B0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000015.00000002.1513001111.000001E0A19B0000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E0A19B0000
|
Size: |
4096
|
|
1AF640C0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1500311162.000001AF640C0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF640C0000
|
Size: |
8192
|
|
28F98030000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000022.00000002.2651152692.0000028F98030000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
28F98030000
|
Size: |
32768
|
|
1E0A1A40000
|
heap
|
page read and write
|
|
|
|
Name: |
00000015.00000002.1513076287.000001E0A1A40000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E0A1A40000
|
Size: |
40960
|
|
1D9DD43D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1520674783.000001D9DD43D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD43D000
|
Size: |
8192
|
|
1D9DD384000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519887359.000001D9DD384000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD384000
|
Size: |
8192
|
|
1D9DD3EF000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1493625044.000001D9DD3EF000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3EF000
|
Size: |
299008
|
|
1D9DD3E5000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1510294713.000001D9DD3E5000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3E5000
|
Size: |
4096
|
|
1AF63F90000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1515012077.000001AF63F90000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF63F90000
|
Size: |
4096
|
|
1D9DD439000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1503373639.000001D9DD439000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD439000
|
Size: |
4096
|
|
2392722A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2652519363.000002392722A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2392722A000
|
Size: |
28672
|
|
29C077E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1514538677.00000029C077E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
29C077E000
|
Size: |
8192
|
|
7FF5ADCA4000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000022.00000000.2342457565.00007FF5ADCA4000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FF5ADCA4000
|
Size: |
4096
|
|
1D9DDC6D000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1509448357.000001D9DDC6D000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDC6D000
|
Size: |
4096
|
|
7FF63F525000
|
unkown
|
page write copy
|
|
|
|
Name: |
00000013.00000000.1501464488.00007FF63F525000.00000008.00000001.01000000.00000006.sdmp
|
TargetID: |
19
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page write copy
|
Base address: |
7FF63F525000
|
Size: |
4096
|
|
1AF6424A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1505983835.000001AF6424A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF6424A000
|
Size: |
4096
|
|
1F02B7E0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.2650567338.000001F02B7E0000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F02B7E0000
|
Size: |
4096
|
|
1C8F4961000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.1400554401.000001C8F4961000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F4961000
|
Size: |
28672
|
|
1E0A1D95000
|
heap
|
page read and write
|
|
|
|
Name: |
00000015.00000002.1514055573.000001E0A1D95000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E0A1D95000
|
Size: |
12288
|
|
21845C13000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1487178206.0000021845C13000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C13000
|
Size: |
94208
|
|
239271D0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2651491059.00000239271D0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
239271D0000
|
Size: |
4096
|
|
1D9DD424000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1503373639.000001D9DD424000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD424000
|
Size: |
20480
|
|
1D9DD3CC000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1493625044.000001D9DD3CC000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3CC000
|
Size: |
28672
|
|
1766C827000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2652146515.000001766C827000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1766C827000
|
Size: |
12288
|
|
1D9DD443000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1510294713.000001D9DD443000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD443000
|
Size: |
4096
|
|
1D9DD410000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1520674783.000001D9DD410000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD410000
|
Size: |
4096
|
|
1D9DD3E3000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1500181838.000001D9DD3E3000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3E3000
|
Size: |
16384
|
|
B72D27F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.2651078088.000000B72D27F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B72D27F000
|
Size: |
4096
|
|
23927300000
|
heap
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2653971711.0000023927300000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
23927300000
|
Size: |
4096
|
|
3E1F7B000
|
stack
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2650360357.00000003E1F7B000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3E1F7B000
|
Size: |
20480
|
|
4761CFB000
|
stack
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519266192.0000004761CFB000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
4761CFB000
|
Size: |
20480
|
|
16371BDE000
|
heap
|
page read and write
|
|
|
|
Name: |
00000014.00000002.1516497514.0000016371BDE000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
20
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
16371BDE000
|
Size: |
73728
|
|
B72CEFF000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.2650205900.000000B72CEFF000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B72CEFF000
|
Size: |
4096
|
|
1766C902000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2654730301.000001766C902000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1766C902000
|
Size: |
28672
|
|
1C8F4320000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2652126681.000001C8F4320000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F4320000
|
Size: |
24576
|
|
1766D002000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2654849239.000001766D002000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1766D002000
|
Size: |
4096
|
|
23E7A780000
|
heap
|
page read and write
|
|
|
|
Name: |
00000020.00000002.2201784361.0000023E7A780000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
32
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
23E7A780000
|
Size: |
12288
|
|
B4CB2FD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582020565.000000B4CB2FD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B4CB2FD000
|
Size: |
12288
|
|
1766C813000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2652146515.000001766C813000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1766C813000
|
Size: |
77824
|
|
2784F960000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000E.00000002.1487228513.000002784F960000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
14
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2784F960000
|
Size: |
4096
|
|
7FF5ADD64000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000022.00000000.2343040007.00007FF5ADD64000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FF5ADD64000
|
Size: |
8192
|
|
1D9DD42E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1520674783.000001D9DD42E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD42E000
|
Size: |
16384
|
|
16371D90000
|
heap
|
page read and write
|
|
|
|
Name: |
00000014.00000002.1518589869.0000016371D90000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
20
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
16371D90000
|
Size: |
12288
|
|
21845D02000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1489060692.0000021845D02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845D02000
|
Size: |
16384
|
|
21845C49000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1487437225.0000021845C49000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C49000
|
Size: |
4096
|
|
2474E2A0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1584163643.000002474E2A0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474E2A0000
|
Size: |
4096
|
|
1D9DD435000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1497092547.000001D9DD435000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD435000
|
Size: |
4096
|
|
28F9802C000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000022.00000002.2651152692.0000028F9802C000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
28F9802C000
|
Size: |
4096
|
|
4761E7F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519405669.0000004761E7F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
4761E7F000
|
Size: |
4096
|
|
1D9DD3D7000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1493625044.000001D9DD3D7000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3D7000
|
Size: |
12288
|
|
36E737F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2650614920.00000036E737F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
36E737F000
|
Size: |
4096
|
|
1D9DD406000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1510294713.000001D9DD406000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD406000
|
Size: |
8192
|
|
1D9DDC56000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1493443583.000001D9DDC56000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDC56000
|
Size: |
32768
|
|
1D9DD3EA000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1493625044.000001D9DD3EA000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3EA000
|
Size: |
16384
|
|
2784F9CB000
|
heap
|
page read and write
|
|
|
|
Name: |
0000000E.00000002.1487250753.000002784F9CB000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
14
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2784F9CB000
|
Size: |
192512
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
Binary contains paths to debug symbols |
Compliance, System Summary |
|
|
2222EAC000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2649965048.0000002222EAC000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
2222EAC000
|
Size: |
16384
|
|
B72D177000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.2650852345.000000B72D177000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B72D177000
|
Size: |
36864
|
|
1F02B7F0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.2650662925.000001F02B7F0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F02B7F0000
|
Size: |
4096
|
|
1AF64142000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1504441583.000001AF64142000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64142000
|
Size: |
8192
|
|
1C8F4A8A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.1400656545.000001C8F4A8A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F4A8A000
|
Size: |
8192
|
|
116DC170000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.2651369677.00000116DC170000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
116DC170000
|
Size: |
4096
|
|
116DC300000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.2654512553.00000116DC300000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
116DC300000
|
Size: |
4096
|
|
2474F7A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1584203694.000002474F7A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2474F7A0000
|
Size: |
4096
|
|
11A2D7B000
|
stack
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.2650224810.00000011A2D7B000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
11A2D7B000
|
Size: |
20480
|
|
25258B40000
|
heap
|
page read and write
|
|
|
|
Name: |
00000023.00000002.2345240727.0000025258B40000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
35
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
25258B40000
|
Size: |
16384
|
|
21845C45000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000003.1485078260.0000021845C45000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C45000
|
Size: |
4096
|
|
1D9DD3CE000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1510294713.000001D9DD3CE000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3CE000
|
Size: |
8192
|
|
1D9DD447000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1497092547.000001D9DD447000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD447000
|
Size: |
8192
|
|
2474C042000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582941785.000002474C042000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C042000
|
Size: |
4096
|
|
1D9DDF49000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1518243173.000001D9DDF49000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDF49000
|
Size: |
4096
|
|
1D9DD421000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1505473479.000001D9DD421000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD421000
|
Size: |
4096
|
|
1F626A40000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001F.00000002.2171764171.000001F626A40000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
31
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F626A40000
|
Size: |
4096
|
|
1D9DD3A0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1515294998.000001D9DD3A0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3A0000
|
Size: |
73728
|
|
1766C6F0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2651411529.000001766C6F0000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1766C6F0000
|
Size: |
4096
|
|
222347E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2650518493.000000222347E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
222347E000
|
Size: |
8192
|
|
1AF64242000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1511097778.000001AF64242000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64242000
|
Size: |
4096
|
|
1759FD70000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2651513369.000001759FD70000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
1759FD70000
|
Size: |
4096
|
|
28F9802B000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000022.00000000.2342083276.0000028F9802B000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
28F9802B000
|
Size: |
45056
|
|
1C8F43B1000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2652126681.000001C8F43B1000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F43B1000
|
Size: |
45056
|
|
2474E0A0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1584068312.000002474E0A0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474E0A0000
|
Size: |
4096
|
|
116DC200000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.2651416749.00000116DC200000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
116DC200000
|
Size: |
73728
|
|
2222F2F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2650098159.0000002222F2F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
2222F2F000
|
Size: |
4096
|
|
21845C8B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1488241619.0000021845C8B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C8B000
|
Size: |
4096
|
|
25258B90000
|
heap
|
page read and write
|
|
|
|
Name: |
00000023.00000002.2345335600.0000025258B90000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
35
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
25258B90000
|
Size: |
28672
|
|
1D9DD443000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1505473479.000001D9DD443000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD443000
|
Size: |
4096
|
|
B4CB67E000
|
stack
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582190652.000000B4CB67E000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B4CB67E000
|
Size: |
8192
|
|
1D9DD610000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1517850514.000001D9DD610000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD610000
|
Size: |
4096
|
|
F5C5ACB000
|
stack
|
page read and write
|
|
|
|
Name: |
00000022.00000000.2341499910.000000F5C5ACB000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
F5C5ACB000
|
Size: |
20480
|
|
1D9DD410000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1503373639.000001D9DD410000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD410000
|
Size: |
16384
|
|
1AF642B4000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1516101004.000001AF642B4000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF642B4000
|
Size: |
20480
|
|
28F9800E000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000022.00000002.2650256839.0000028F9800E000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
28F9800E000
|
Size: |
4096
|
|
1D9DDF4E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1516450828.000001D9DDF4E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDF4E000
|
Size: |
8192
|
|
116DC280000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.2654137372.00000116DC280000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
116DC280000
|
Size: |
69632
|
|
28F97F41000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000022.00000000.2341798789.0000028F97F41000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
28F97F41000
|
Size: |
12288
|
|
1D9DD3F1000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1510294713.000001D9DD3F1000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3F1000
|
Size: |
8192
|
|
1D9DD358000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519592689.000001D9DD358000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD358000
|
Size: |
28672
|
|
1D9DD3B0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519887359.000001D9DD3B0000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3B0000
|
Size: |
8192
|
|
116DCA02000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.2655040690.00000116DCA02000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
116DCA02000
|
Size: |
4096
|
|
1D9DD440000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1503373639.000001D9DD440000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD440000
|
Size: |
8192
|
|
1F02B9A0000
|
remote allocation
|
page read and write
|
|
|
|
Name: |
00000008.00000003.1398028335.000001F02B9A0000.00000004.00000400.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
free memory
|
Regiontype: |
remote allocation
|
Protect: |
page read and write
|
Base address: |
1F02B9A0000
|
Size: |
4096
|
|
1AF64247000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1508400363.000001AF64247000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64247000
|
Size: |
4096
|
|
1D9DD3DE000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1500181838.000001D9DD3DE000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3DE000
|
Size: |
4096
|
|
1AF64090000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1515934700.000001AF64090000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64090000
|
Size: |
4096
|
|
1D9DD406000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1503373639.000001D9DD406000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD406000
|
Size: |
8192
|
|
6260EC000
|
stack
|
page read and write
|
|
|
|
Name: |
0000001F.00000002.2171615753.00000006260EC000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
31
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
6260EC000
|
Size: |
16384
|
|
2474C065000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000003.1580274019.000002474C065000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C065000
|
Size: |
4096
|
|
28F98802000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000022.00000002.2652210462.0000028F98802000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
28F98802000
|
Size: |
4096
|
|
1AF64088000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1513667511.000001AF64088000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64088000
|
Size: |
8192
|
|
23927284000
|
heap
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2653717537.0000023927284000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
23927284000
|
Size: |
61440
|
|
116DC302000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.2654512553.00000116DC302000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
116DC302000
|
Size: |
65536
|
|
21845C97000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1488565138.0000021845C97000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C97000
|
Size: |
12288
|
|
1D9DD3F6000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1520674783.000001D9DD3F6000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3F6000
|
Size: |
12288
|
|
1F377320000
|
heap
|
page read and write
|
|
|
|
Name: |
00000003.00000002.2651512393.000001F377320000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F377320000
|
Size: |
4096
|
|
2474C042000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000003.1525429471.000002474C042000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C042000
|
Size: |
4096
|
|
21845C83000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000003.1480865987.0000021845C83000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C83000
|
Size: |
36864
|
|
21845C9B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1488565138.0000021845C9B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C9B000
|
Size: |
4096
|
|
1C8F4A21000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.1399798280.000001C8F4A21000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F4A21000
|
Size: |
147456
|
|
1C8F434C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000003.1393956672.000001C8F434C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F434C000
|
Size: |
28672
|
|
28F98000000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000022.00000002.2650256839.0000028F98000000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
28F98000000
|
Size: |
4096
|
|
222337F000
|
stack
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2650470523.000000222337F000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
222337F000
|
Size: |
4096
|
|
1C8F4A64000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2656320824.000001C8F4A64000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F4A64000
|
Size: |
4096
|
|
DCD088C000
|
stack
|
page read and write
|
|
|
|
Name: |
00000023.00000002.2344954475.000000DCD088C000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
35
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
DCD088C000
|
Size: |
16384
|
|
2474BFD1000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582941785.000002474BFD1000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474BFD1000
|
Size: |
8192
|
|
116DC313000
|
heap
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.2654852387.00000116DC313000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
116DC313000
|
Size: |
65536
|
|
1D9DD37F000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519730638.000001D9DD37F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD37F000
|
Size: |
16384
|
|
1D9DD3F4000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1497092547.000001D9DD3F4000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3F4000
|
Size: |
53248
|
|
7FF5ADC93000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000022.00000000.2342431743.00007FF5ADC93000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FF5ADC93000
|
Size: |
8192
|
|
7FF5ADCA8000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000022.00000000.2342480380.00007FF5ADCA8000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FF5ADCA8000
|
Size: |
8192
|
|
1C8F4A56000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2656320824.000001C8F4A56000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F4A56000
|
Size: |
28672
|
|
2474BFCA000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582753630.000002474BFCA000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474BFCA000
|
Size: |
4096
|
|
25258B98000
|
heap
|
page read and write
|
|
|
|
Name: |
00000023.00000002.2345335600.0000025258B98000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
35
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
25258B98000
|
Size: |
139264
|
|
2474DF30000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1583887347.000002474DF30000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2474DF30000
|
Size: |
4096
|
|
B4CB4FC000
|
stack
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582103061.000000B4CB4FC000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B4CB4FC000
|
Size: |
16384
|
|
36E727B000
|
stack
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2650240736.00000036E727B000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
36E727B000
|
Size: |
20480
|
|
247500A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1584318292.00000247500A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
247500A0000
|
Size: |
61440
|
|
1D9DDF37000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1518437788.000001D9DDF37000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDF37000
|
Size: |
4096
|
|
2474BEF0000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582325716.000002474BEF0000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474BEF0000
|
Size: |
4096
|
|
1D9DDF35000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1516618554.000001D9DDF35000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDF35000
|
Size: |
12288
|
|
3005AFD000
|
stack
|
page read and write
|
|
|
|
Name: |
00000014.00000002.1515801205.0000003005AFD000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
20
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3005AFD000
|
Size: |
12288
|
|
1AF64130000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1510119112.000001AF64130000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64130000
|
Size: |
28672
|
|
11A2F7D000
|
stack
|
page read and write
|
|
|
|
Name: |
0000001A.00000002.2650517356.00000011A2F7D000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
26
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
11A2F7D000
|
Size: |
12288
|
|
1D9DD3DE000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1520674783.000001D9DD3DE000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3DE000
|
Size: |
24576
|
|
2474C003000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000003.1580755717.000002474C003000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C003000
|
Size: |
61440
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|
1D9DDF54000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1516450828.000001D9DDF54000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDF54000
|
Size: |
16384
|
|
1AF64142000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1507219267.000001AF64142000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64142000
|
Size: |
8192
|
|
1D9DDC5B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1515189915.000001D9DDC5B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDC5B000
|
Size: |
4096
|
|
1D9DD3CE000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1500181838.000001D9DD3CE000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3CE000
|
Size: |
8192
|
|
1D9DDC53000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1502103368.000001D9DDC53000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDC53000
|
Size: |
12288
|
|
2474BFC2000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582753630.000002474BFC2000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474BFC2000
|
Size: |
8192
|
|
1759FE6F000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2654176803.000001759FE6F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1759FE6F000
|
Size: |
12288
|
|
21845C42000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1487410032.0000021845C42000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C42000
|
Size: |
8192
|
|
1C8F4180000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2651791902.000001C8F4180000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F4180000
|
Size: |
4096
|
|
28F98022000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000022.00000002.2650700009.0000028F98022000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process exit
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
28F98022000
|
Size: |
4096
|
|
1D9DD350000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519592689.000001D9DD350000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD350000
|
Size: |
28672
|
|
3005CFC000
|
stack
|
page read and write
|
|
|
|
Name: |
00000014.00000002.1516013397.0000003005CFC000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
20
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
3005CFC000
|
Size: |
16384
|
|
1AF64240000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1511097778.000001AF64240000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64240000
|
Size: |
4096
|
|
1C8F49E9000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2655268446.000001C8F49E9000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F49E9000
|
Size: |
106496
|
|
1D9DD3DD000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1497092547.000001D9DD3DD000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3DD000
|
Size: |
8192
|
|
7FF5ADCE8000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000022.00000000.2342666335.00007FF5ADCE8000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FF5ADCE8000
|
Size: |
16384
|
|
1F02BA6E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000008.00000002.2652937830.000001F02BA6E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
8
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1F02BA6E000
|
Size: |
61440
|
|
1C8F4338000
|
heap
|
page read and write
|
|
|
|
Name: |
00000006.00000002.2652126681.000001C8F4338000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
6
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1C8F4338000
|
Size: |
409600
|
|
1AF63E30000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1514831913.000001AF63E30000.00000004.00000020.00040000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF63E30000
|
Size: |
4096
|
|
2474BFC5000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1582753630.000002474BFC5000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474BFC5000
|
Size: |
8192
|
|
8EB1F9B000
|
stack
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2649865741.0000008EB1F9B000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
8EB1F9B000
|
Size: |
20480
|
|
1D9DD416000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1503373639.000001D9DD416000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD416000
|
Size: |
16384
|
|
1AF64091000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000003.1500352093.000001AF64091000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF64091000
|
Size: |
28672
|
|
2474E060000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1584022131.000002474E060000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474E060000
|
Size: |
4096
|
|
1D9DD447000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1500181838.000001D9DD447000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD447000
|
Size: |
8192
|
|
1E0A1A6B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000015.00000002.1513076287.000001E0A1A6B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E0A1A6B000
|
Size: |
8192
|
|
21845C6F000
|
heap
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1487862571.0000021845C6F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
21845C6F000
|
Size: |
4096
|
|
1D9DD417000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1505473479.000001D9DD417000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD417000
|
Size: |
12288
|
|
1759FF02000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2654273602.000001759FF02000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1759FF02000
|
Size: |
32768
|
|
2474C02C000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000003.1580755717.000002474C02C000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C02C000
|
Size: |
12288
|
|
2474DF20000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1583817671.000002474DF20000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474DF20000
|
Size: |
8192
|
|
1D9DDC5F000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1493443583.000001D9DDC5F000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DDC5F000
|
Size: |
20480
|
|
1759FE4E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000007.00000002.2653077378.000001759FE4E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
7
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1759FE4E000
|
Size: |
53248
|
|
1E0A1A4B000
|
heap
|
page read and write
|
|
|
|
Name: |
00000015.00000002.1513076287.000001E0A1A4B000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
21
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1E0A1A4B000
|
Size: |
8192
|
|
23927070000
|
heap
|
page read and write
|
|
|
|
Name: |
00000025.00000002.2651280161.0000023927070000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
37
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
23927070000
|
Size: |
4096
|
|
1766C88A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000000.00000002.2654687203.000001766C88A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
0
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1766C88A000
|
Size: |
4096
|
|
2474C210000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1583606419.000002474C210000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
2474C210000
|
Size: |
4096
|
|
B72CDFB000
|
stack
|
page read and write
|
|
|
|
Name: |
00000003.00000002.2650002597.000000B72CDFB000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
3
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
B72CDFB000
|
Size: |
20480
|
|
1D9DD3A2000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000002.1519887359.000001D9DD3A2000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3A2000
|
Size: |
4096
|
|
28F98045000
|
unkown
|
page read and write
|
|
|
|
Name: |
00000022.00000000.2342219424.0000028F98045000.00000004.00000001.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page read and write
|
Base address: |
28F98045000
|
Size: |
8192
|
|
2474C25E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000002.1583631033.000002474C25E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C25E000
|
Size: |
4096
|
|
F5C5BCB000
|
stack
|
page read and write
|
|
|
|
Name: |
00000022.00000002.2649870372.000000F5C5BCB000.00000004.00000010.00020000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process exit
|
Regiontype: |
stack
|
Protect: |
page read and write
|
Base address: |
F5C5BCB000
|
Size: |
20480
|
|
21845B80000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000001.00000002.1487089399.0000021845B80000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
1
|
Dumpstage: |
process exit
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
21845B80000
|
Size: |
4096
|
|
7FF5ADD14000
|
unkown
|
page readonly
|
|
|
|
Name: |
00000022.00000000.2342914216.00007FF5ADD14000.00000002.00000001.00040000.00000000.sdmp
|
TargetID: |
34
|
Dumpstage: |
process new
|
Regiontype: |
unkown
|
Protect: |
page readonly
|
Base address: |
7FF5ADD14000
|
Size: |
20480
|
|
1D9DD40A000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1510294713.000001D9DD40A000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD40A000
|
Size: |
8192
|
|
1AF63F70000
|
heap
|
page read and write
|
|
|
|
Name: |
00000011.00000002.1514950476.000001AF63F70000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
17
|
Dumpstage: |
process exit
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1AF63F70000
|
Size: |
8192
|
|
247505A0000
|
trusted library allocation
|
page read and write
|
|
|
|
Name: |
00000013.00000003.1577670873.00000247505A0000.00000004.00000800.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
free memory
|
Regiontype: |
trusted library allocation
|
Protect: |
page read and write
|
Base address: |
247505A0000
|
Size: |
4096
|
|
1D9DD3CE000
|
heap
|
page read and write
|
|
|
|
Name: |
00000009.00000003.1497092547.000001D9DD3CE000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
9
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
1D9DD3CE000
|
Size: |
8192
|
|
2474C00E000
|
heap
|
page read and write
|
|
|
|
Name: |
00000013.00000003.1525429471.000002474C00E000.00000004.00000020.00020000.00000000.sdmp
|
TargetID: |
19
|
Dumpstage: |
free memory
|
Regiontype: |
heap
|
Protect: |
page read and write
|
Base address: |
2474C00E000
|
Size: |
69632
|
Signature Hits |
Behavior Group |
Mitre Attack |
|
URLs found in memory or binary data |
Networking |
|
|