Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
file.exe
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
initial sample
|
||
C:\Users\user\AppData\Roaming\Microsoft\ubrrkv.exe
|
PE32 executable (GUI) Intel 80386, for MS Windows
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2246122658-3693405117-2476756634-1003\7ec63eecc011967c28496572961d2a7c_9e146be9-c76a-4720-bcdb-53011b87bd06
|
data
|
dropped
|
Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Users\user\Desktop\file.exe
|
"C:\Users\user\Desktop\file.exe"
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup nomoreransom.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup emsisoft.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup gandcrab.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup nomoreransom.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup emsisoft.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup gandcrab.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup nomoreransom.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup emsisoft.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup gandcrab.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup nomoreransom.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup emsisoft.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup gandcrab.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup nomoreransom.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup emsisoft.bit dns1.soprodns.ru
|
||
C:\Users\user\AppData\Roaming\Microsoft\ubrrkv.exe
|
"C:\Users\user\AppData\Roaming\Microsoft\ubrrkv.exe"
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup gandcrab.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup nomoreransom.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup emsisoft.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup gandcrab.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup nomoreransom.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup emsisoft.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup gandcrab.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup nomoreransom.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup emsisoft.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup gandcrab.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup nomoreransom.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup emsisoft.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup gandcrab.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup nomoreransom.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup emsisoft.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup gandcrab.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup nomoreransom.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup emsisoft.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup gandcrab.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup nomoreransom.bit dns1.soprodns.ru
|
||
C:\Windows\SysWOW64\nslookup.exe
|
nslookup emsisoft.bit dns1.soprodns.ru
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
There are 62 hidden processes, click here to show them.
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
http://gdcbghvjyqy7jclk.onion.plus/c09ba58a9869e72e
|
unknown
|
||
http://gdcbghvjyqy7jclk.onion.rip/c09ba58a9869e72e
|
unknown
|
||
http://gdcbghvjyqy7jclk.onion/c09ba58a9869e72e
|
unknown
|
||
http://gdcbghvjyqy7jclk.onion.top/c09ba58a9869e72e
|
unknown
|
||
http://gdcbghvjyqy7jclk.onion.guide/c09ba58a9869e72e
|
unknown
|
||
http://gdcbghvjyqy7jclk.onion.casa/c09ba58a9869e72e
|
unknown
|
||
http://ipv4bot.whatismyipaddress.com/U
|
unknown
|
||
https://www.torproject.org/
|
unknown
|
||
http://ipv4bot.whatismyipaddress.com/S
|
unknown
|
||
http://ipv4bot.whatismyipaddress.com/
|
unknown
|
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
emsisoft.bit
|
unknown
|
||
nomoreransom.bit
|
unknown
|
||
gandcrab.bit
|
unknown
|
||
dns1.soprodns.ru
|
unknown
|
||
ipv4bot.whatismyipaddress.com
|
unknown
|
||
1.1.1.1.in-addr.arpa
|
unknown
|
Registry
Path
|
Value
|
Malicious
|
|
---|---|---|---|
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce
|
vpfihnjmqea
|
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6D9000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
70B000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
2C7B000
|
stack
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
5D0000
|
direct allocation
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22D0000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
414000
|
unkown
|
page readonly
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
534000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
409000
|
unkown
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6D9000
|
heap
|
page read and write
|
||
6BE000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
534000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
20A0000
|
direct allocation
|
page read and write
|
||
6D9000
|
heap
|
page read and write
|
||
409000
|
unkown
|
page write copy
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
427000
|
unkown
|
page execute and read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
690000
|
direct allocation
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
690000
|
direct allocation
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
426000
|
unkown
|
page execute and read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6D9000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
5F0000
|
heap
|
page read and write
|
||
6D9000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
534000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6D9000
|
heap
|
page read and write
|
||
534000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
21B0000
|
heap
|
page read and write
|
||
6B0000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
5FE000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
430000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
2140000
|
direct allocation
|
page read and write
|
||
6D9000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
422000
|
unkown
|
page execute and write copy
|
||
6DD000
|
heap
|
page read and write
|
||
5E0000
|
direct allocation
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
5BE000
|
stack
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
2160000
|
trusted library allocation
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
409000
|
unkown
|
page write copy
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6D9000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
2E00000
|
direct allocation
|
page execute and read and write
|
||
6D9000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
680000
|
direct allocation
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6D9000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
409000
|
unkown
|
page read and write
|
||
41D000
|
unkown
|
page execute and write copy
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
530000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
534000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
401000
|
unkown
|
page execute read
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C2000
|
heap
|
page read and write
|
||
2160000
|
direct allocation
|
page execute and read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6D9000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
534000
|
heap
|
page read and write
|
||
6EC000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DC000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
510000
|
heap
|
page read and write
|
||
6F5000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
414000
|
unkown
|
page readonly
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
690000
|
direct allocation
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
534000
|
heap
|
page read and write
|
||
534000
|
heap
|
page read and write
|
||
19C000
|
stack
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
2B7E000
|
stack
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
416000
|
unkown
|
page execute and write copy
|
||
6DD000
|
heap
|
page read and write
|
||
22A0000
|
direct allocation
|
page execute and read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
9C000
|
stack
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6D9000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
690000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C0000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
510000
|
heap
|
page read and write
|
||
690000
|
direct allocation
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6D9000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
2DC0000
|
direct allocation
|
page execute and read and write
|
||
534000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
534000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
534000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6D5000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
21FE000
|
stack
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6D9000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
400000
|
unkown
|
page readonly
|
||
418000
|
unkown
|
page execute and read and write
|
||
725000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6D9000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
534000
|
heap
|
page read and write
|
||
690000
|
direct allocation
|
page read and write
|
||
417000
|
unkown
|
page execute and write copy
|
||
534000
|
heap
|
page read and write
|
||
680000
|
direct allocation
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
2E0B000
|
direct allocation
|
page execute and read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6D9000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
570000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
416000
|
unkown
|
page execute and read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
401000
|
unkown
|
page execute read
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
2090000
|
trusted library allocation
|
page read and write
|
||
6D5000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
414000
|
unkown
|
page readonly
|
||
29FF000
|
stack
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6D9000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6D9000
|
heap
|
page read and write
|
||
690000
|
direct allocation
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
412000
|
unkown
|
page write copy
|
||
22C1000
|
heap
|
page read and write
|
||
6D9000
|
heap
|
page read and write
|
||
227E000
|
stack
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
534000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
19D000
|
stack
|
page read and write
|
||
401000
|
unkown
|
page execute read
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
400000
|
unkown
|
page readonly
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
680000
|
direct allocation
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
680000
|
direct allocation
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
20B0000
|
direct allocation
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
2DBE000
|
stack
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6D9000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6D5000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
2CBE000
|
stack
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
9C000
|
stack
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
400000
|
unkown
|
page readonly
|
||
22C1000
|
heap
|
page read and write
|
||
430000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
2090000
|
direct allocation
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
680000
|
direct allocation
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
5FA000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
27FF000
|
stack
|
page read and write
|
||
534000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
20A0000
|
direct allocation
|
page read and write
|
||
400000
|
unkown
|
page readonly
|
||
22C1000
|
heap
|
page read and write
|
||
2B3F000
|
stack
|
page read and write
|
||
534000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
55E000
|
stack
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
214F000
|
stack
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
414000
|
unkown
|
page readonly
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
223E000
|
stack
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6D9000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
7EF000
|
stack
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
416000
|
unkown
|
page execute and read and write
|
||
6D5000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
680000
|
direct allocation
|
page execute and read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
680000
|
direct allocation
|
page read and write
|
||
2040000
|
heap
|
page read and write
|
||
690000
|
direct allocation
|
page read and write
|
||
71D000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
28FF000
|
stack
|
page read and write
|
||
680000
|
direct allocation
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
2A3E000
|
stack
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
416000
|
unkown
|
page execute and write copy
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
534000
|
heap
|
page read and write
|
||
2150000
|
direct allocation
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
401000
|
unkown
|
page execute read
|
||
6A0000
|
direct allocation
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
534000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6BA000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
6D5000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6D9000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
||
6D9000
|
heap
|
page read and write
|
||
6DD000
|
heap
|
page read and write
|
||
22C1000
|
heap
|
page read and write
|
There are 593 hidden memdumps, click here to show them.