IOC Report
Eschemyquote24573j33.exe

loading gif

Files

File Path
Type
Category
Malicious
Eschemyquote24573j33.exe
PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
initial sample
malicious
C:\Users\user\AppData\Local\Microsoft\CLR_v4.0_32\UsageLogs\Eschemyquote24573j33.exe.log
ASCII text, with CRLF line terminators
dropped
malicious
C:\Users\user\AppData\Roaming\ctsdvwT\ctsdvwT.exe
PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
malicious
C:\Users\user\AppData\Roaming\ctsdvwT\ctsdvwT.exe:Zone.Identifier
ASCII text, with CRLF line terminators
dropped
malicious
C:\Users\user\AppData\Local\Microsoft\CLR_v4.0_32\UsageLogs\ctsdvwT.exe.log
ASCII text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Microsoft\Windows\PowerShell\StartupProfileData-NonInteractive
data
dropped
C:\Users\user\AppData\Local\Temp\__PSScriptPolicyTest_2cycmogx.s02.ps1
ASCII text, with no line terminators
dropped
C:\Users\user\AppData\Local\Temp\__PSScriptPolicyTest_bowt3vvo.0g5.ps1
ASCII text, with no line terminators
dropped
C:\Users\user\AppData\Local\Temp\__PSScriptPolicyTest_cwdch1x5.nt2.psm1
ASCII text, with no line terminators
dropped
C:\Users\user\AppData\Local\Temp\__PSScriptPolicyTest_dyvfnp02.mvs.psm1
ASCII text, with no line terminators
dropped

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\Eschemyquote24573j33.exe
"C:\Users\user\Desktop\Eschemyquote24573j33.exe"
malicious
C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe
"C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe" Add-MpPreference -ExclusionPath "C:\Users\user\Desktop\Eschemyquote24573j33.exe"
malicious
C:\Users\user\Desktop\Eschemyquote24573j33.exe
"C:\Users\user\Desktop\Eschemyquote24573j33.exe"
malicious
C:\Users\user\AppData\Roaming\ctsdvwT\ctsdvwT.exe
"C:\Users\user\AppData\Roaming\ctsdvwT\ctsdvwT.exe"
malicious
C:\Users\user\AppData\Roaming\ctsdvwT\ctsdvwT.exe
"C:\Users\user\AppData\Roaming\ctsdvwT\ctsdvwT.exe"
malicious
C:\Users\user\AppData\Roaming\ctsdvwT\ctsdvwT.exe
"C:\Users\user\AppData\Roaming\ctsdvwT\ctsdvwT.exe"
malicious
C:\Users\user\AppData\Roaming\ctsdvwT\ctsdvwT.exe
"C:\Users\user\AppData\Roaming\ctsdvwT\ctsdvwT.exe"
malicious
C:\Windows\System32\conhost.exe
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
C:\Windows\System32\wbem\WmiPrvSE.exe
C:\Windows\system32\wbem\wmiprvse.exe -secured -Embedding

URLs

Name
IP
Malicious
https://account.dyn.com/
unknown
http://schemas.xmlsoap.org/ws/2005/05/identity/claims/name
unknown
http://mail.musabody.com
unknown

Domains

Name
IP
Malicious
mail.musabody.com
108.167.140.123
malicious

IPs

IP
Domain
Country
Malicious
108.167.140.123
mail.musabody.com
United States
malicious

Registry

Path
Value
Malicious
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
ctsdvwT

Memdumps

Base Address
Regiontype
Protect
Malicious
3909000
trusted library allocation
page read and write
malicious
4071000
trusted library allocation
page read and write
malicious
3F0D000
trusted library allocation
page read and write
malicious
402000
remote allocation
page execute and read and write
malicious
59C0000
heap
page read and write
3396000
trusted library allocation
page read and write
25E0000
trusted library allocation
page read and write
2FF0000
trusted library allocation
page read and write
2860000
trusted library allocation
page read and write
1410000
heap
page read and write
53C0000
trusted library section
page readonly
3074000
trusted library allocation
page read and write
5000000
heap
page read and write
70D0000
trusted library allocation
page read and write
5822000
trusted library allocation
page read and write
2F6C000
trusted library allocation
page read and write
57E0000
trusted library allocation
page read and write
13B0000
heap
page read and write
5990000
trusted library allocation
page read and write
6860000
trusted library allocation
page execute and read and write
12C0000
trusted library allocation
page execute and read and write
FF0000
heap
page read and write
1332000
trusted library allocation
page read and write
687B000
trusted library allocation
page read and write
6A2D000
stack
page read and write
2FD6000
trusted library allocation
page read and write
1440000
heap
page read and write
75CE000
stack
page read and write
15C0000
trusted library allocation
page read and write
A0C000
heap
page read and write
FC1000
heap
page read and write
30D6000
trusted library allocation
page read and write
A4DE000
stack
page read and write
492000
unkown
page readonly
309C000
trusted library allocation
page read and write
30BA000
trusted library allocation
page read and write
586E000
stack
page read and write
29FF000
trusted library allocation
page read and write
31A8000
trusted library allocation
page read and write
1015000
heap
page read and write
3180000
heap
page read and write
581E000
trusted library allocation
page read and write
C70000
heap
page read and write
1674000
heap
page read and write
2FFA000
trusted library allocation
page read and write
3066000
trusted library allocation
page read and write
DE0000
heap
page read and write
164D000
heap
page read and write
13AE000
stack
page read and write
2E89000
trusted library allocation
page read and write
5C9000
stack
page read and write
5880000
heap
page execute and read and write
55AD000
stack
page read and write
6880000
trusted library allocation
page read and write
5F57000
trusted library allocation
page read and write
3E24000
trusted library allocation
page read and write
309A000
trusted library allocation
page read and write
3034000
trusted library allocation
page read and write
5480000
trusted library allocation
page read and write
134B000
trusted library allocation
page execute and read and write
54EB000
stack
page read and write
2F82000
trusted library allocation
page read and write
4D98000
trusted library allocation
page read and write
43F5000
trusted library allocation
page read and write
1360000
trusted library allocation
page read and write
2881000
trusted library allocation
page read and write
6830000
heap
page read and write
30BE000
trusted library allocation
page read and write
5836000
trusted library allocation
page read and write
3078000
trusted library allocation
page read and write
1460000
heap
page read and write
57B0000
trusted library allocation
page execute and read and write
EED000
trusted library allocation
page execute and read and write
5130000
trusted library allocation
page read and write
182D000
trusted library allocation
page execute and read and write
2E7D000
trusted library allocation
page read and write
EE0000
trusted library allocation
page read and write
303C000
trusted library allocation
page read and write
EDD000
trusted library allocation
page execute and read and write
5C0E000
stack
page read and write
300E000
trusted library allocation
page read and write
A6CE000
stack
page read and write
6C7E000
stack
page read and write
1704000
trusted library allocation
page read and write
302A000
trusted library allocation
page read and write
5E30000
heap
page read and write
3040000
trusted library allocation
page read and write
2F30000
trusted library allocation
page read and write
53BB000
stack
page read and write
3399000
trusted library allocation
page read and write
1832000
trusted library allocation
page read and write
1810000
trusted library allocation
page execute and read and write
1703000
trusted library allocation
page execute and read and write
30A2000
trusted library allocation
page read and write
30D2000
trusted library allocation
page read and write
72AE000
stack
page read and write
A7CE000
stack
page read and write
2FAC000
trusted library allocation
page read and write
1AC2000
trusted library allocation
page read and write
F30000
heap
page read and write
2966000
trusted library allocation
page read and write
301E000
stack
page read and write
1323000
trusted library allocation
page read and write
1310000
trusted library allocation
page read and write
288D000
trusted library allocation
page read and write
339B000
trusted library allocation
page read and write
5E40000
heap
page read and write
10EB000
heap
page read and write
3FD4000
trusted library allocation
page read and write
30D8000
trusted library allocation
page read and write
3EFE000
trusted library allocation
page read and write
2FCC000
trusted library allocation
page read and write
15B8000
heap
page read and write
1645000
heap
page read and write
274E000
stack
page read and write
2850000
trusted library allocation
page read and write
2778000
trusted library allocation
page read and write
6E1E000
stack
page read and write
716E000
stack
page read and write
6FD0000
trusted library allocation
page read and write
56C6000
trusted library allocation
page read and write
6970000
trusted library allocation
page read and write
A55E000
stack
page read and write
1430000
heap
page read and write
1119000
heap
page read and write
3002000
trusted library allocation
page read and write
746E000
stack
page read and write
304C000
trusted library allocation
page read and write
5680000
trusted library allocation
page read and write
16E5000
heap
page read and write
1692000
heap
page read and write
2FF8000
trusted library allocation
page read and write
5E50000
trusted library allocation
page execute and read and write
5EAE000
stack
page read and write
2F4A000
trusted library allocation
page read and write
2FF6000
trusted library allocation
page read and write
2F74000
trusted library allocation
page read and write
1830000
trusted library allocation
page read and write
2E3F000
stack
page read and write
12F8000
stack
page read and write
180E000
stack
page read and write
2FC0000
trusted library allocation
page read and write
2FBE000
trusted library allocation
page read and write
5120000
heap
page execute and read and write
10D9000
stack
page read and write
1840000
trusted library allocation
page read and write
11D9000
stack
page read and write
756E000
stack
page read and write
1604000
heap
page read and write
16AF000
heap
page read and write
5692000
trusted library allocation
page read and write
52F1000
trusted library allocation
page read and write
286B000
trusted library allocation
page read and write
ED4000
trusted library allocation
page read and write
5C6E000
stack
page read and write
DB0000
heap
page read and write
4EB0000
heap
page read and write
5170000
heap
page read and write
308E000
trusted library allocation
page read and write
6BBE000
stack
page read and write
696B000
trusted library allocation
page read and write
A51E000
stack
page read and write
15CD000
trusted library allocation
page execute and read and write
2B80000
heap
page read and write
4D90000
trusted library allocation
page read and write
973000
heap
page read and write
1860000
trusted library allocation
page read and write
2F86000
trusted library allocation
page read and write
A45E000
stack
page read and write
17E7000
trusted library allocation
page execute and read and write
50D4000
trusted library allocation
page read and write
10A4000
heap
page read and write
965000
heap
page read and write
30AA000
trusted library allocation
page read and write
1647000
heap
page read and write
747A000
trusted library allocation
page read and write
165F000
heap
page read and write
F02000
trusted library allocation
page read and write
A120000
heap
page read and write
A40000
heap
page read and write
2FE6000
trusted library allocation
page read and write
6850000
trusted library allocation
page read and write
43B9000
trusted library allocation
page read and write
337E000
stack
page read and write
5C2C000
stack
page read and write
103B000
heap
page read and write
170D000
trusted library allocation
page execute and read and write
5840000
heap
page read and write
3160000
heap
page read and write
3252000
trusted library allocation
page read and write
1342000
trusted library allocation
page read and write
3199000
trusted library allocation
page read and write
6950000
trusted library allocation
page read and write
17E2000
trusted library allocation
page read and write
1870000
trusted library allocation
page execute and read and write
12D0000
heap
page execute and read and write
1640000
heap
page read and write
12F6000
trusted library allocation
page read and write
A2E0000
heap
page read and write
2FF4000
trusted library allocation
page read and write
687E000
heap
page read and write
264E000
stack
page read and write
6957000
trusted library allocation
page read and write
3038000
trusted library allocation
page read and write
2FA8000
trusted library allocation
page read and write
181D000
trusted library allocation
page execute and read and write
7870000
heap
page read and write
311E000
stack
page read and write
4391000
trusted library allocation
page read and write
15AE000
stack
page read and write
56AD000
trusted library allocation
page read and write
5490000
trusted library section
page read and write
6BFE000
stack
page read and write
5F2E000
stack
page read and write
1618000
heap
page read and write
1710000
heap
page read and write
32AC000
stack
page read and write
4FE0000
trusted library allocation
page read and write
3024000
trusted library allocation
page read and write
76A0000
heap
page read and write
93A000
heap
page read and write
2FD0000
trusted library allocation
page read and write
1336000
trusted library allocation
page execute and read and write
15CF000
heap
page read and write
5260000
trusted library allocation
page execute and read and write
581D000
trusted library allocation
page read and write
5182000
trusted library allocation
page read and write
14B5000
heap
page read and write
6E10000
heap
page read and write
30B0000
trusted library allocation
page read and write
17E0000
trusted library allocation
page read and write
30DC000
trusted library allocation
page read and write
3389000
trusted library allocation
page read and write
6E5F000
stack
page read and write
5890000
heap
page read and write
17D0000
trusted library allocation
page read and write
3026000
trusted library allocation
page read and write
2F50000
trusted library allocation
page read and write
5E6B000
trusted library allocation
page read and write
3036000
trusted library allocation
page read and write
3D5B000
trusted library allocation
page read and write
32E0000
trusted library allocation
page read and write
6A70000
trusted library allocation
page execute and read and write
6BCE000
stack
page read and write
2FEA000
trusted library allocation
page read and write
3068000
trusted library allocation
page read and write
30F2000
trusted library allocation
page read and write
769F000
stack
page read and write
D4E000
stack
page read and write
9F0000
heap
page read and write
4191000
trusted library allocation
page read and write
2F88000
trusted library allocation
page read and write
30C4000
trusted library allocation
page read and write
79AE000
stack
page read and write
15E5000
heap
page read and write
3042000
trusted library allocation
page read and write
6F70000
trusted library allocation
page read and write
25C3000
trusted library allocation
page read and write
6750000
trusted library allocation
page execute and read and write
31FB000
trusted library allocation
page read and write
5C0C000
stack
page read and write
ED0000
trusted library allocation
page read and write
30A6000
trusted library allocation
page read and write
79DE000
stack
page read and write
103F000
heap
page read and write
1314000
trusted library allocation
page read and write
2CF6000
trusted library allocation
page read and write
3B31000
trusted library allocation
page read and write
53B2000
trusted library allocation
page read and write
12F0000
trusted library allocation
page read and write
2F58000
trusted library allocation
page read and write
930000
heap
page read and write
53B8000
trusted library allocation
page read and write
30C6000
trusted library allocation
page read and write
3F1D000
trusted library allocation
page read and write
6845000
heap
page read and write
30B6000
trusted library allocation
page read and write
16EE000
stack
page read and write
6F3E000
heap
page read and write
14AD000
trusted library allocation
page execute and read and write
5470000
heap
page read and write
A94C000
stack
page read and write
3098000
trusted library allocation
page read and write
2FB2000
trusted library allocation
page read and write
1510000
heap
page read and write
33FF000
trusted library allocation
page read and write
56C0000
trusted library allocation
page read and write
5E30000
trusted library allocation
page read and write
5302000
trusted library allocation
page read and write
1890000
trusted library allocation
page read and write
55B0000
heap
page read and write
6F1F000
stack
page read and write
2F7A000
trusted library allocation
page read and write
3250000
trusted library allocation
page read and write
698E000
stack
page read and write
30B8000
trusted library allocation
page read and write
A41E000
stack
page read and write
2B50000
trusted library allocation
page read and write
9F1D000
stack
page read and write
50EE000
trusted library allocation
page read and write
F80000
heap
page read and write
2901000
trusted library allocation
page read and write
30DE000
trusted library allocation
page read and write
5180000
trusted library allocation
page read and write
5B0C000
stack
page read and write
73FE000
stack
page read and write
3052000
trusted library allocation
page read and write
77EE000
stack
page read and write
6D5E000
stack
page read and write
4D80000
heap
page read and write
3060000
trusted library allocation
page read and write
33E6000
trusted library allocation
page read and write
3092000
trusted library allocation
page read and write
7F690000
trusted library allocation
page execute and read and write
5811000
trusted library allocation
page read and write
900000
heap
page read and write
670D000
stack
page read and write
28A0000
trusted library allocation
page read and write
414A000
trusted library allocation
page read and write
DB5000
heap
page read and write
2F8E000
trusted library allocation
page read and write
2F46000
trusted library allocation
page read and write
7A9E000
stack
page read and write
6A6E000
stack
page read and write
734E000
stack
page read and write
1836000
trusted library allocation
page execute and read and write
306C000
trusted library allocation
page read and write
30D0000
trusted library allocation
page read and write
FCE000
stack
page read and write
49FC000
stack
page read and write
30A4000
trusted library allocation
page read and write
3191000
trusted library allocation
page read and write
30CC000
trusted library allocation
page read and write
2F8A000
trusted library allocation
page read and write
56DD000
trusted library allocation
page read and write
2F5C000
trusted library allocation
page read and write
316C000
stack
page read and write
1320000
trusted library allocation
page read and write
52D0000
trusted library allocation
page read and write
D00000
heap
page read and write
12F4000
trusted library allocation
page read and write
4D8C000
stack
page read and write
6F30000
heap
page read and write
2F8C000
trusted library allocation
page read and write
304A000
trusted library allocation
page read and write
3020000
trusted library allocation
page read and write
905000
heap
page read and write
694D000
stack
page read and write
30B2000
trusted library allocation
page read and write
5610000
heap
page read and write
73AE000
stack
page read and write
13D0000
trusted library allocation
page execute and read and write
582E000
trusted library allocation
page read and write
4319000
trusted library allocation
page read and write
581B000
trusted library allocation
page read and write
680D000
stack
page read and write
15EF000
heap
page read and write
AB8F000
stack
page read and write
3000000
trusted library allocation
page read and write
56BE000
heap
page read and write
16F0000
trusted library allocation
page read and write
57F0000
trusted library allocation
page read and write
3300000
heap
page execute and read and write
15C0000
heap
page read and write
2FC6000
trusted library allocation
page read and write
2F94000
trusted library allocation
page read and write
2F90000
trusted library allocation
page read and write
2E4B000
trusted library allocation
page read and write
40CD000
trusted library allocation
page read and write
3269000
trusted library allocation
page read and write
94F000
heap
page read and write
3B6D000
trusted library allocation
page read and write
1651000
heap
page read and write
59A4000
heap
page read and write
2FB8000
trusted library allocation
page read and write
F8E000
heap
page read and write
5822000
trusted library allocation
page read and write
183A000
trusted library allocation
page execute and read and write
301C000
trusted library allocation
page read and write
10CA000
stack
page read and write
DE7000
heap
page read and write
A61F000
stack
page read and write
2FA2000
trusted library allocation
page read and write
30CE000
trusted library allocation
page read and write
583D000
trusted library allocation
page read and write
2FE8000
trusted library allocation
page read and write
2F78000
trusted library allocation
page read and write
5DAE000
stack
page read and write
1490000
heap
page read and write
3C91000
trusted library allocation
page read and write
25D2000
trusted library allocation
page read and write
25B3000
trusted library allocation
page execute and read and write
57B0000
trusted library allocation
page read and write
6930000
trusted library allocation
page execute and read and write
2F4C000
trusted library allocation
page read and write
2F9E000
trusted library allocation
page read and write
3088000
trusted library allocation
page read and write
28B0000
trusted library allocation
page read and write
A80E000
stack
page read and write
54A5000
heap
page read and write
56A1000
trusted library allocation
page read and write
32B0000
trusted library allocation
page execute and read and write
3014000
trusted library allocation
page read and write
3022000
trusted library allocation
page read and write
166A000
heap
page read and write
51A0000
heap
page read and write
FB6000
heap
page read and write
56D0000
trusted library allocation
page read and write
2FC8000
trusted library allocation
page read and write
1515000
heap
page read and write
1800000
trusted library allocation
page read and write
326E000
stack
page read and write
1AC0000
trusted library allocation
page read and write
2F72000
trusted library allocation
page read and write
58C0000
heap
page execute and read and write
16AC000
heap
page read and write
30C8000
trusted library allocation
page read and write
140E000
stack
page read and write
68B0000
trusted library allocation
page execute and read and write
1054000
heap
page read and write
AA8D000
stack
page read and write
2FDA000
trusted library allocation
page read and write
308A000
trusted library allocation
page read and write
2892000
trusted library allocation
page read and write
13C3000
heap
page read and write
7F2A0000
trusted library allocation
page execute and read and write
5F50000
trusted library allocation
page read and write
132D000
trusted library allocation
page execute and read and write
3082000
trusted library allocation
page read and write
29B5000
trusted library allocation
page read and write
6D1E000
stack
page read and write
25BD000
trusted library allocation
page execute and read and write
28C5000
trusted library allocation
page read and write
163B000
heap
page read and write
1AB0000
trusted library allocation
page read and write
6B52000
trusted library allocation
page read and write
6F30000
trusted library allocation
page read and write
3D20000
trusted library allocation
page read and write
2F48000
trusted library allocation
page read and write
287E000
trusted library allocation
page read and write
2F3D000
trusted library allocation
page read and write
72BD000
stack
page read and write
5D4F000
stack
page read and write
2FDE000
trusted library allocation
page read and write
30DA000
trusted library allocation
page read and write
6940000
trusted library allocation
page read and write
A05E000
stack
page read and write
3018000
trusted library allocation
page read and write
5340000
trusted library allocation
page read and write
57FE000
trusted library allocation
page read and write
2F60000
trusted library allocation
page read and write
599C000
stack
page read and write
2FAE000
trusted library allocation
page read and write
3E41000
trusted library allocation
page read and write
2FEE000
trusted library allocation
page read and write
2D3E000
stack
page read and write
3380000
heap
page execute and read and write
1340000
trusted library allocation
page read and write
2E96000
trusted library allocation
page read and write
4F7C000
stack
page read and write
14B0000
heap
page read and write
5270000
heap
page read and write
F0B000
trusted library allocation
page execute and read and write
572E000
stack
page read and write
52DB000
trusted library allocation
page read and write
A0ED000
stack
page read and write
1842000
trusted library allocation
page read and write
54F0000
heap
page execute and read and write
6760000
heap
page read and write
30FB000
trusted library allocation
page execute and read and write
2FB4000
trusted library allocation
page read and write
7070000
trusted library allocation
page read and write
2B70000
trusted library allocation
page read and write
A41E000
stack
page read and write
1490000
trusted library allocation
page read and write
F6A000
stack
page read and write
4DD0000
trusted library allocation
page execute and read and write
2AB8000
trusted library allocation
page read and write
2C8E000
stack
page read and write
7A40000
trusted library allocation
page read and write
A01D000
stack
page read and write
2886000
trusted library allocation
page read and write
684B000
stack
page read and write
53A0000
heap
page read and write
14B0000
heap
page read and write
76CF000
stack
page read and write
7080000
trusted library allocation
page execute and read and write
5170000
heap
page read and write
490000
unkown
page readonly
1035000
heap
page read and write
5318000
trusted library allocation
page read and write
F70000
heap
page read and write
6BD0000
heap
page read and write
5470000
trusted library allocation
page read and write
2F70000
trusted library allocation
page read and write
25D6000
trusted library allocation
page execute and read and write
104A000
heap
page read and write
3076000
trusted library allocation
page read and write
19AE000
stack
page read and write
2F92000
trusted library allocation
page read and write
957000
heap
page read and write
726E000
stack
page read and write
568E000
trusted library allocation
page read and write
52F0000
heap
page read and write
2F4E000
trusted library allocation
page read and write
EF6000
trusted library allocation
page execute and read and write
57C0000
trusted library allocation
page read and write
568B000
trusted library allocation
page read and write
327E000
trusted library allocation
page read and write
15DA000
heap
page read and write
5E37000
trusted library allocation
page read and write
5670000
trusted library allocation
page read and write
2F54000
trusted library allocation
page read and write
1454000
trusted library allocation
page read and write
7B9F000
stack
page read and write
F20000
trusted library allocation
page read and write
3EA1000
trusted library allocation
page read and write
300A000
trusted library allocation
page read and write
2F98000
trusted library allocation
page read and write
572C000
stack
page read and write
303E000
trusted library allocation
page read and write
2B65000
trusted library allocation
page read and write
3004000
trusted library allocation
page read and write
5F50000
trusted library allocation
page read and write
57FB000
trusted library allocation
page read and write
1307000
heap
page read and write
59C4000
heap
page read and write
2E41000
trusted library allocation
page read and write
2F62000
trusted library allocation
page read and write
5EEE000
stack
page read and write
25D0000
trusted library allocation
page read and write
7F410000
trusted library allocation
page execute and read and write
6B8E000
stack
page read and write
2F5E000
trusted library allocation
page read and write
1610000
heap
page read and write
5180000
heap
page read and write
6A3E000
stack
page read and write
6B3C000
stack
page read and write
5E60000
trusted library allocation
page read and write
107B000
heap
page read and write
2FD2000
trusted library allocation
page read and write
50DB000
trusted library allocation
page read and write
1813000
trusted library allocation
page execute and read and write
989000
stack
page read and write
9DB000
heap
page read and write
30AC000
trusted library allocation
page read and write
32C0000
trusted library allocation
page read and write
52D4000
trusted library allocation
page read and write
2D8F000
trusted library allocation
page read and write
54A0000
heap
page read and write
30C0000
trusted library allocation
page read and write
6A80000
heap
page read and write
C6F000
stack
page read and write
2864000
trusted library allocation
page read and write
2FBA000
trusted library allocation
page read and write
5820000
heap
page read and write
2CFF000
trusted library allocation
page read and write
8F7000
stack
page read and write
2F66000
trusted library allocation
page read and write
6F5A000
stack
page read and write
55F0000
trusted library section
page readonly
25CD000
trusted library allocation
page execute and read and write
2FCE000
trusted library allocation
page read and write
536000
unkown
page readonly
5764000
heap
page read and write
54CD000
stack
page read and write
56C4000
trusted library allocation
page read and write
3901000
trusted library allocation
page read and write
14A3000
trusted library allocation
page execute and read and write
4DB0000
trusted library allocation
page read and write
516D000
stack
page read and write
33D2000
trusted library allocation
page read and write
162F000
heap
page read and write
30AE000
trusted library allocation
page read and write
324C000
trusted library allocation
page read and write
33F9000
trusted library allocation
page read and write
11C8000
stack
page read and write
2F42000
trusted library allocation
page read and write
32E4000
trusted library allocation
page read and write
15BE000
stack
page read and write
1814000
trusted library allocation
page read and write
5600000
heap
page read and write
1347000
trusted library allocation
page execute and read and write
3120000
heap
page execute and read and write
400000
remote allocation
page execute and read and write
43E000
remote allocation
page execute and read and write
EF0000
trusted library allocation
page read and write
E90000
heap
page read and write
7AAF000
stack
page read and write
1AD0000
heap
page read and write
300C000
trusted library allocation
page read and write
EF7000
stack
page read and write
4ED0000
trusted library allocation
page read and write
1696000
heap
page read and write
2FF2000
trusted library allocation
page read and write
15FA000
heap
page read and write
3DD0000
trusted library allocation
page read and write
746E000
stack
page read and write
133A000
trusted library allocation
page execute and read and write
6F20000
heap
page read and write
6857000
trusted library allocation
page read and write
A2DD000
stack
page read and write
3265000
trusted library allocation
page read and write
3478000
trusted library allocation
page read and write
1607000
heap
page read and write
3044000
trusted library allocation
page read and write
9C1000
heap
page read and write
5490000
trusted library allocation
page read and write
2FB6000
trusted library allocation
page read and write
30E0000
trusted library allocation
page read and write
58B0000
trusted library allocation
page read and write
50F1000
trusted library allocation
page read and write
284C000
stack
page read and write
5620000
heap
page read and write
155E000
stack
page read and write
2FD4000
trusted library allocation
page read and write
787E000
heap
page read and write
131D000
trusted library allocation
page execute and read and write
3028000
trusted library allocation
page read and write
2F40000
trusted library allocation
page read and write
684E000
stack
page read and write
4311000
trusted library allocation
page read and write
2E49000
trusted library allocation
page read and write
3046000
trusted library allocation
page read and write
13E7000
heap
page read and write
CBE000
stack
page read and write
3311000
trusted library allocation
page read and write
5360000
trusted library allocation
page read and write
2F6A000
trusted library allocation
page read and write
30B4000
trusted library allocation
page read and write
189E000
stack
page read and write
25C0000
trusted library allocation
page read and write
41B9000
trusted library allocation
page read and write
7470000
trusted library allocation
page read and write
532D000
stack
page read and write
117F000
stack
page read and write
5810000
trusted library allocation
page read and write
2760000
heap
page read and write
5190000
trusted library allocation
page execute and read and write
3094000
trusted library allocation
page read and write
5335000
trusted library allocation
page read and write
2EA6000
trusted library allocation
page read and write
6947000
trusted library allocation
page read and write
9F5E000
stack
page read and write
30BC000
trusted library allocation
page read and write
5198000
trusted library allocation
page read and write
15D8000
heap
page read and write
30F7000
trusted library allocation
page execute and read and write
18A0000
heap
page read and write
FC3000
heap
page read and write
3080000
trusted library allocation
page read and write
FA0000
heap
page read and write
715E000
stack
page read and write
14A0000
trusted library allocation
page read and write
2C30000
heap
page execute and read and write
4D92000
trusted library allocation
page read and write
4399000
trusted library allocation
page read and write
3006000
trusted library allocation
page read and write
6990000
heap
page read and write
7F640000
trusted library allocation
page execute and read and write
3086000
trusted library allocation
page read and write
54AD000
stack
page read and write
F7E000
stack
page read and write
1020000
heap
page read and write
5E70000
trusted library allocation
page read and write
307A000
trusted library allocation
page read and write
5316000
trusted library allocation
page read and write
28C0000
trusted library allocation
page read and write
2F64000
trusted library allocation
page read and write
308C000
trusted library allocation
page read and write
2F56000
trusted library allocation
page read and write
1300000
heap
page read and write
2FFC000
trusted library allocation
page read and write
56A6000
trusted library allocation
page read and write
ED3000
trusted library allocation
page execute and read and write
4DA0000
trusted library allocation
page execute and read and write
6E5C000
stack
page read and write
1028000
heap
page read and write
3048000
trusted library allocation
page read and write
4FF0000
trusted library allocation
page execute and read and write
2F76000
trusted library allocation
page read and write
53C0000
trusted library allocation
page execute and read and write
2FEC000
trusted library allocation
page read and write
A220000
heap
page read and write
2750000
trusted library allocation
page execute and read and write
7030000
trusted library allocation
page read and write
506B000
stack
page read and write
2F5A000
trusted library allocation
page read and write
A21D000
stack
page read and write
76EE000
stack
page read and write
30CA000
trusted library allocation
page read and write
5310000
trusted library allocation
page read and write
2FE4000
trusted library allocation
page read and write
2FB0000
trusted library allocation
page read and write
4339000
trusted library allocation
page read and write
1450000
trusted library allocation
page read and write
12E0000
trusted library allocation
page read and write
FD0000
heap
page read and write
1810000
trusted library allocation
page read and write
53BB000
trusted library allocation
page read and write
6850000
trusted library allocation
page read and write
F07000
trusted library allocation
page execute and read and write
301E000
trusted library allocation
page read and write
6CFF000
stack
page read and write
AA4C000
stack
page read and write
78DB000
heap
page read and write
309E000
trusted library allocation
page read and write
2FA0000
trusted library allocation
page read and write
7F600000
trusted library allocation
page execute and read and write
B20000
heap
page read and write
1ABD000
trusted library allocation
page execute and read and write
2FA6000
trusted library allocation
page read and write
1847000
trusted library allocation
page execute and read and write
52F7000
trusted library allocation
page read and write
712E000
stack
page read and write
4E7C000
stack
page read and write
1300000
trusted library allocation
page read and write
2F7E000
trusted library allocation
page read and write
3278000
trusted library allocation
page read and write
2B98000
trusted library allocation
page read and write
2FD8000
trusted library allocation
page read and write
3084000
trusted library allocation
page read and write
52FE000
heap
page read and write
10BF000
heap
page read and write
93E000
heap
page read and write
13E0000
heap
page read and write
1330000
trusted library allocation
page read and write
25E2000
trusted library allocation
page read and write
EFA000
trusted library allocation
page execute and read and write
5684000
trusted library allocation
page read and write
302E000
trusted library allocation
page read and write
4E90000
trusted library section
page readonly
3056000
trusted library allocation
page read and write
14A4000
trusted library allocation
page read and write
518B000
trusted library allocation
page read and write
3170000
trusted library allocation
page read and write
184B000
trusted library allocation
page execute and read and write
6D7E000
stack
page read and write
16F6000
heap
page read and write
1626000
heap
page read and write
FF5000
heap
page read and write
5770000
heap
page read and write
307E000
trusted library allocation
page read and write
703A000
trusted library allocation
page read and write
17DA000
trusted library allocation
page execute and read and write
307C000
trusted library allocation
page read and write
1700000
trusted library allocation
page read and write
59A0000
heap
page read and write
DBE000
stack
page read and write
5C4E000
stack
page read and write
660E000
stack
page read and write
2F52000
trusted library allocation
page read and write
EC0000
trusted library allocation
page read and write
52EE000
trusted library allocation
page read and write
52C0000
trusted library allocation
page read and write
2B60000
trusted library allocation
page read and write
53B0000
trusted library allocation
page read and write
3465000
trusted library allocation
page read and write
569E000
trusted library allocation
page read and write
3452000
trusted library allocation
page read and write
580E000
trusted library allocation
page read and write
32D0000
trusted library allocation
page read and write
305A000
trusted library allocation
page read and write
A12D000
stack
page read and write
4EC0000
heap
page read and write
6B7E000
stack
page read and write
28F0000
heap
page execute and read and write
30A8000
trusted library allocation
page read and write
3244000
trusted library allocation
page read and write
25EB000
trusted library allocation
page execute and read and write
4EB5000
heap
page read and write
6F2D000
heap
page read and write
50F6000
trusted library allocation
page read and write
3240000
trusted library allocation
page read and write
32F0000
trusted library allocation
page read and write
1600000
trusted library allocation
page read and write
2F80000
trusted library allocation
page read and write
25E7000
trusted library allocation
page execute and read and write
3270000
heap
page read and write
672E000
stack
page read and write
3090000
trusted library allocation
page read and write
5950000
heap
page execute and read and write
2FBC000
trusted library allocation
page read and write
33CC000
trusted library allocation
page read and write
4EE3000
heap
page read and write
3C99000
trusted library allocation
page read and write
19F0000
heap
page read and write
17D2000
trusted library allocation
page read and write
306A000
trusted library allocation
page read and write
52FD000
trusted library allocation
page read and write
970000
heap
page read and write
674D000
stack
page read and write
3070000
trusted library allocation
page read and write
13C0000
heap
page read and write
EF2000
trusted library allocation
page read and write
344C000
trusted library allocation
page read and write
6770000
heap
page read and write
1699000
heap
page read and write
3072000
trusted library allocation
page read and write
744E000
stack
page read and write
302C000
trusted library allocation
page read and write
301A000
trusted library allocation
page read and write
BB9000
stack
page read and write
1000000
heap
page read and write
32E6000
trusted library allocation
page read and write
3012000
trusted library allocation
page read and write
58AE000
stack
page read and write
75AE000
stack
page read and write
3032000
trusted library allocation
page read and write
1690000
heap
page read and write
1560000
heap
page read and write
2FC4000
trusted library allocation
page read and write
3064000
trusted library allocation
page read and write
6DFF000
stack
page read and write
2FDC000
trusted library allocation
page read and write
337D000
trusted library allocation
page read and write
6870000
trusted library allocation
page read and write
5460000
heap
page read and write
3EC1000
trusted library allocation
page read and write
5802000
trusted library allocation
page read and write
EE3000
trusted library allocation
page read and write
3016000
trusted library allocation
page read and write
4EE0000
heap
page read and write
1820000
heap
page read and write
12EF000
stack
page read and write
3F9A000
trusted library allocation
page read and write
25B0000
trusted library allocation
page read and write
2FE2000
trusted library allocation
page read and write
57D0000
trusted library allocation
page execute and read and write
30A0000
trusted library allocation
page read and write
3ED0000
trusted library allocation
page read and write
3062000
trusted library allocation
page read and write
6DBE000
stack
page read and write
D8E000
stack
page read and write
2F7C000
trusted library allocation
page read and write
1820000
trusted library allocation
page read and write
3050000
trusted library allocation
page read and write
6CDF000
stack
page read and write
315E000
stack
page read and write
1AC6000
trusted library allocation
page execute and read and write
4375000
trusted library allocation
page read and write
305C000
trusted library allocation
page read and write
B6E000
stack
page read and write
53CC000
stack
page read and write
69A0000
trusted library allocation
page read and write
19EE000
stack
page read and write
304E000
trusted library allocation
page read and write
5020000
heap
page execute and read and write
2FA4000
trusted library allocation
page read and write
1057000
heap
page read and write
3010000
trusted library allocation
page read and write
4EA0000
heap
page read and write
25B4000
trusted library allocation
page read and write
2FCA000
trusted library allocation
page read and write
30F0000
trusted library allocation
page read and write
17D6000
trusted library allocation
page execute and read and write
25A0000
trusted library allocation
page read and write
2FFE000
trusted library allocation
page read and write
2F68000
trusted library allocation
page read and write
2F96000
trusted library allocation
page read and write
2F44000
trusted library allocation
page read and write
5188000
trusted library allocation
page read and write
51A0000
trusted library allocation
page read and write
12BC000
stack
page read and write
3469000
trusted library allocation
page read and write
2C91000
trusted library allocation
page read and write
72E0000
trusted library allocation
page read and write
5273000
heap
page read and write
6C20000
trusted library allocation
page read and write
1313000
trusted library allocation
page execute and read and write
306E000
trusted library allocation
page read and write
5825000
heap
page read and write
2F9A000
trusted library allocation
page read and write
6F80000
trusted library allocation
page execute and read and write
3391000
trusted library allocation
page read and write
6FCE000
stack
page read and write
A31E000
stack
page read and write
5842000
trusted library allocation
page read and write
2F84000
trusted library allocation
page read and write
2F9C000
trusted library allocation
page read and write
A90F000
stack
page read and write
76AE000
stack
page read and write
5831000
trusted library allocation
page read and write
1880000
trusted library allocation
page read and write
127F000
stack
page read and write
1ACA000
trusted library allocation
page execute and read and write
56B2000
trusted library allocation
page read and write
175E000
stack
page read and write
6F2A000
heap
page read and write
4051000
trusted library allocation
page read and write
5D6E000
stack
page read and write
5010000
trusted library allocation
page read and write
15E7000
heap
page read and write
F20000
heap
page read and write
25DA000
trusted library allocation
page execute and read and write
50D0000
trusted library allocation
page read and write
28D0000
trusted library allocation
page read and write
30C2000
trusted library allocation
page read and write
19C0000
heap
page read and write
319B000
trusted library allocation
page read and write
56B0000
heap
page read and write
4D40000
trusted library allocation
page read and write
33EA000
trusted library allocation
page read and write
5330000
trusted library allocation
page read and write
53D0000
heap
page read and write
15B0000
heap
page read and write
7F470000
trusted library allocation
page execute and read and write
7A50000
trusted library allocation
page execute and read and write
3058000
trusted library allocation
page read and write
305E000
trusted library allocation
page read and write
3096000
trusted library allocation
page read and write
3D96000
trusted library allocation
page read and write
303A000
trusted library allocation
page read and write
758E000
stack
page read and write
5314000
trusted library allocation
page read and write
5102000
trusted library allocation
page read and write
748E000
stack
page read and write
4199000
trusted library allocation
page read and write
3008000
trusted library allocation
page read and write
2FAA000
trusted library allocation
page read and write
70CE000
stack
page read and write
5320000
trusted library allocation
page read and write
3054000
trusted library allocation
page read and write
9F8000
heap
page read and write
7280000
trusted library section
page read and write
A0A0000
trusted library allocation
page read and write
789C000
heap
page read and write
2EA9000
trusted library allocation
page read and write
41F5000
trusted library allocation
page read and write
347E000
trusted library allocation
page read and write
CF7000
stack
page read and write
A11D000
stack
page read and write
5E40000
trusted library allocation
page read and write
3E49000
trusted library allocation
page read and write
167F000
heap
page read and write
F80000
heap
page read and write
17EB000
trusted library allocation
page execute and read and write
5760000
heap
page read and write
3030000
trusted library allocation
page read and write
5B2C000
stack
page read and write
50FD000
trusted library allocation
page read and write
55C0000
heap
page read and write
30D4000
trusted library allocation
page read and write
2FE0000
trusted library allocation
page read and write
2FC2000
trusted library allocation
page read and write
F88000
heap
page read and write
6960000
trusted library allocation
page read and write
78A9000
heap
page read and write
2600000
trusted library allocation
page read and write
3110000
trusted library allocation
page read and write
5816000
trusted library allocation
page read and write
1047000
heap
page read and write
5E4E000
unkown
page read and write
FE0000
heap
page read and write
5E47000
trusted library allocation
page read and write
5490000
trusted library allocation
page execute and read and write
2F6E000
trusted library allocation
page read and write
15D0000
heap
page read and write
F6E000
stack
page read and write
There are 949 hidden memdumps, click here to show them.