IOC Report
Certificate 1045-20-11.exe

loading gif

Files

File Path
Type
Category
Malicious
Certificate 1045-20-11.exe
PE32 executable (GUI) Intel 80386, for MS Windows
initial sample
malicious
C:\Users\user\AppData\Local\Temp\F56GKLK7U4
SQLite 3.x database, last written using SQLite version 3035005, page size 2048, file counter 2, database pages 56, cookie 0x24, schema 4, UTF-8, version-valid-for 2
dropped
C:\Users\user\AppData\Local\Temp\aut5DA7.tmp
data
dropped
C:\Users\user\AppData\Local\Temp\orographically
data
dropped

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\Certificate 1045-20-11.exe
"C:\Users\user\Desktop\Certificate 1045-20-11.exe"
malicious
C:\Windows\SysWOW64\svchost.exe
"C:\Users\user\Desktop\Certificate 1045-20-11.exe"
malicious
C:\Program Files (x86)\OmMYORIdyGtOWLCXABixOvtHOYfFndDaSeqYmtgOpbhZSxHmHJqeisBDItAZ\FGcoivYXQsEMNANuoDkk.exe
"C:\Program Files (x86)\OmMYORIdyGtOWLCXABixOvtHOYfFndDaSeqYmtgOpbhZSxHmHJqeisBDItAZ\FGcoivYXQsEMNANuoDkk.exe"
malicious
C:\Windows\SysWOW64\netbtugc.exe
"C:\Windows\SysWOW64\netbtugc.exe"
malicious
C:\Program Files (x86)\OmMYORIdyGtOWLCXABixOvtHOYfFndDaSeqYmtgOpbhZSxHmHJqeisBDItAZ\FGcoivYXQsEMNANuoDkk.exe
"C:\Program Files (x86)\OmMYORIdyGtOWLCXABixOvtHOYfFndDaSeqYmtgOpbhZSxHmHJqeisBDItAZ\FGcoivYXQsEMNANuoDkk.exe"
malicious
C:\Program Files\Mozilla Firefox\firefox.exe
"C:\Program Files\Mozilla Firefox\Firefox.exe"
malicious

URLs

Name
IP
Malicious
http://www.3xfootball.com/fo8o/?0xilO=7vZpwBG&SHqP-p=IhZyPQIGe6uK3zPwzgZotr9BPg6ZX3xlW2eS79Xk6ut4afzj0LiRBEeFtQixSzG192fRs1GD25A478p7nOOn1bCAV966J7ZkoXS5ptBuz2edhBZoh3xN24c=
154.215.72.110
malicious
http://www.empowermedeco.com/fo8o/
217.196.55.202
malicious
http://www.goldenjade-travel.com/fo8o/?0xilO=7vZpwBG&SHqP-p=LFKqyrcu7g1NCa8bLlrIs+M38ZMJrQSprIMLtaWgKJ9bBKQr4dsnyMPFpMQjJLGR7ieyxupOSpv1HbfUaMaF2zMIkigvi6pIX6i8MuAeXHNrENDnI2WJi/4=
116.50.37.244
malicious
http://www.elettrosistemista.zip/fo8o/
195.110.124.133
malicious
http://www.magmadokum.com/fo8o/
85.159.66.93
malicious
http://www.elettrosistemista.zip/fo8o/?0xilO=7vZpwBG&SHqP-p=bO1UBvtoHFNUmlWB4HLJpEjmeTUqQxU1qF418M7UHpKKa2cgLZsmM/SsbGGojtls67Xc6OgTo57aJm1+bsxMLzFMa6Onx1WMpNg/TOHpJ+sdeDHYknqJlyE=
195.110.124.133
malicious
http://www.rssnewscast.com/fo8o/
91.195.240.94
malicious
http://www.empowermedeco.com/fo8o/?SHqP-p=mxnR+iHPFb8HZiaGfeL/C2cRfJ+ne5kRPLEBGwFodGelSqoCQiBwPqu0WU7djgVoJgj4cKk6Pp6Q/yIaSghKfBV1+IPAGotTT7HDcUO7JjOgJKpj6i9KOMs=&0xilO=7vZpwBG
217.196.55.202
malicious
http://www.rssnewscast.com/fo8o/?SHqP-p=x3jV/ECx7FuzXOI+5yB0DB/+zmAHn47HyCIVaqWvGMMqpfz0YC5wLsL1wYxwFH1KuInYTmXKqKNNujOvwtdNuo48jXK1aHHk/BJwdjwjaHe/B0IWhwIR9Wc=&0xilO=7vZpwBG
91.195.240.94
malicious
http://www.goldenjade-travel.com/fo8o/
116.50.37.244
malicious
https://duckduckgo.com/chrome_newtab
unknown
https://duckduckgo.com/ac/?q=
unknown
https://www.google.com/images/branding/product/ico/googleg_lodp.ico
unknown
https://www.empowermedeco.com/fo8o/?SHqP-p=mxnR
unknown
https://duckduckgo.com/favicon.icohttps://duckduckgo.com/?q=
unknown
https://ch.search.yahoo.com/sugg/chrome?output=fxjson&appid=crmas&command=
unknown
http://www.empowermedeco.com
unknown
https://www.ecosia.org/newtab/
unknown
https://www.name.com/domain/renew/rssnewscast.com?utm_source=Sedo_parked_page&utm_medium=button&utm_
unknown
https://www.sedo.com/services/parking.php3
unknown
https://ac.ecosia.org/autocomplete?q=
unknown
https://codepen.io/uzcho_/pens/popular/?grid_type=list
unknown
https://codepen.io/uzcho_/pen/eYdmdXw.css
unknown
https://ch.search.yahoo.com/favicon.icohttps://ch.search.yahoo.com/search
unknown
https://cdn.ecosia.org/assets/images/ico/favicon.icohttps://www.ecosia.org/search?q=
unknown
http://www.techchains.info/fo8o/
66.29.149.46
There are 16 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
elettrosistemista.zip
195.110.124.133
malicious
empowermedeco.com
217.196.55.202
malicious
www.donnavariedades.com
unknown
malicious
www.joyesi.xyz
unknown
malicious
www.empowermedeco.com
unknown
malicious
www.elettrosistemista.zip
unknown
malicious
www.shenzhoucui.com
unknown
malicious
www.3xfootball.com
154.215.72.110
www.goldenjade-travel.com
116.50.37.244
www.rssnewscast.com
91.195.240.94
www.techchains.info
66.29.149.46
natroredirect.natrocdn.com
85.159.66.93
www.magmadokum.com
unknown
www.660danm.top
unknown
www.liangyuen528.com
unknown
www.kasegitai.tokyo
unknown
www.k9vyp11no3.cfd
unknown
www.antonio-vivaldi.mobi
unknown
There are 8 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
195.110.124.133
elettrosistemista.zip
Italy
malicious
217.196.55.202
empowermedeco.com
Norway
malicious
91.195.240.94
www.rssnewscast.com
Germany
154.215.72.110
www.3xfootball.com
Seychelles
116.50.37.244
www.goldenjade-travel.com
Taiwan; Republic of China (ROC)
85.159.66.93
natroredirect.natrocdn.com
Turkey
66.29.149.46
www.techchains.info
United States

Memdumps

Base Address
Regiontype
Protect
Malicious
3800000
unclassified section
page execute and read and write
malicious
2450000
unkown
page execute and read and write
malicious
2D00000
trusted library allocation
page read and write
malicious
2520000
system
page execute and read and write
malicious
2F90000
unclassified section
page execute and read and write
malicious
2D80000
trusted library allocation
page read and write
malicious
750000
system
page execute and read and write
malicious
4AD0000
system
page execute and read and write
malicious
8A0000
heap
page read and write
3553000
direct allocation
page read and write
2C01000
heap
page read and write
3430000
direct allocation
page read and write
2C01000
heap
page read and write
36F9000
direct allocation
page read and write
2D70000
heap
page read and write
2DC0000
trusted library allocation
page read and write
9D0000
unkown
page readonly
600000
unkown
page readonly
44CE000
unclassified section
page read and write
2C01000
heap
page read and write
1CC04FE9000
system
page execute and read and write
2240000
heap
page read and write
2C01000
heap
page read and write
D58000
heap
page read and write
2C01000
heap
page read and write
2590000
heap
page read and write
3F0000
unkown
page readonly
2CD0000
direct allocation
page read and write
2A19000
heap
page read and write
2C01000
heap
page read and write
2813000
heap
page read and write
3553000
direct allocation
page read and write
7AF0000
heap
page read and write
76F000
stack
page read and write
651000
unkown
page readonly
2C01000
heap
page read and write
2EAD000
heap
page read and write
2F16000
heap
page read and write
25C0000
heap
page read and write
3749000
direct allocation
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
2A05000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
858000
heap
page read and write
ECD000
heap
page read and write
2C01000
heap
page read and write
37BE000
direct allocation
page read and write
2C01000
heap
page read and write
2E00000
heap
page read and write
2D0E000
stack
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
1CC05110000
heap
page read and write
C60000
heap
page read and write
2C01000
heap
page read and write
2C00000
heap
page read and write
2802000
heap
page read and write
4984000
unclassified section
page read and write
2C01000
heap
page read and write
3430000
direct allocation
page read and write
1CC06DCE000
trusted library allocation
page read and write
374C000
unclassified section
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
22D0000
unkown
page readonly
7DB000
stack
page read and write
2C01000
heap
page read and write
2180000
unkown
page read and write
36FD000
direct allocation
page read and write
2813000
heap
page read and write
2C01000
heap
page read and write
21EF000
stack
page read and write
374D000
direct allocation
page read and write
2E47000
heap
page read and write
850000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
7ADA000
heap
page read and write
2E23000
heap
page read and write
BE0000
heap
page read and write
1CC050D0000
heap
page read and write
3620000
direct allocation
page read and write
841000
unkown
page execute read
7AF9000
heap
page read and write
DA2000
heap
page read and write
710000
unkown
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
1CC0512B000
heap
page read and write
2EC7000
heap
page read and write
269C000
unkown
page read and write
374D000
direct allocation
page read and write
CA4000
heap
page read and write
3553000
direct allocation
page read and write
3442000
direct allocation
page execute and read and write
2C01000
heap
page read and write
2E87000
heap
page read and write
BF0000
heap
page read and write
35A3000
direct allocation
page read and write
32CC000
heap
page read and write
3E0000
unkown
page readonly
2C01000
heap
page read and write
2A17000
heap
page read and write
2F10000
heap
page read and write
7BB000
stack
page read and write
2C01000
heap
page read and write
2E43000
heap
page read and write
CED000
heap
page read and write
1CC06DB1000
trusted library allocation
page read and write
8C0000
unkown
page readonly
1CC0513E000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
510000
unkown
page readonly
2C01000
heap
page read and write
2EAA000
heap
page read and write
3100000
direct allocation
page execute and read and write
2813000
heap
page read and write
2C01000
heap
page read and write
C8B000
heap
page read and write
2C01000
heap
page read and write
2244000
heap
page read and write
780000
unkown
page read and write
2AA000
stack
page read and write
2C01000
heap
page read and write
1CC06DC4000
trusted library allocation
page read and write
8BE000
stack
page read and write
2E9B000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
35A3000
direct allocation
page read and write
17E000
unkown
page readonly
9D0000
unkown
page readonly
2C01000
heap
page read and write
222C000
unkown
page read and write
904000
unkown
page readonly
EAE000
heap
page read and write
2C01000
heap
page read and write
858000
heap
page read and write
240000
unkown
page readonly
2C01000
heap
page read and write
610000
heap
page read and write
2C01000
heap
page read and write
2813000
heap
page read and write
255000
unkown
page read and write
810000
unkown
page read and write
904000
unkown
page readonly
2C01000
heap
page read and write
2C01000
heap
page read and write
2813000
heap
page read and write
2C01000
heap
page read and write
24EA000
stack
page read and write
187000
unkown
page readonly
2C01000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
3480000
direct allocation
page read and write
390C000
unclassified section
page read and write
7AC8000
heap
page read and write
3E0000
unkown
page readonly
2E47000
heap
page read and write
7AAE000
heap
page read and write
1CC04F80000
system
page execute and read and write
2EB7000
heap
page read and write
2C01000
heap
page read and write
2A84000
unkown
page read and write
1CC06C0A000
trusted library allocation
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
2E3E000
heap
page read and write
171000
unkown
page execute read
22C0000
heap
page read and write
2C01000
heap
page read and write
2F25000
heap
page read and write
C6E000
heap
page read and write
1DA000
stack
page read and write
2ECC000
heap
page read and write
2EDD000
heap
page read and write
1CC05141000
heap
page read and write
2D74000
heap
page read and write
2C01000
heap
page read and write
EAE000
heap
page read and write
2C01000
heap
page read and write
120000
unkown
page readonly
7AB1000
heap
page read and write
2C01000
heap
page read and write
2E3E000
heap
page read and write
810000
heap
page read and write
2813000
heap
page read and write
7AEA000
heap
page read and write
718000
stack
page read and write
2C01000
heap
page read and write
187000
unkown
page readonly
2EAF000
heap
page read and write
1CC06C21000
trusted library allocation
page read and write
2EA0000
heap
page read and write
1F0000
unkown
page readonly
2C01000
heap
page read and write
950000
unkown
page readonly
2C01000
heap
page read and write
3620000
direct allocation
page read and write
170000
unkown
page readonly
2250000
heap
page read and write
2C01000
heap
page read and write
22D0000
unkown
page readonly
35B1000
direct allocation
page execute and read and write
2F90000
direct allocation
page read and write
36F9000
direct allocation
page read and write
4BA0000
system
page execute and read and write
2C7F000
unkown
page execute and read and write
2C01000
heap
page read and write
3430000
direct allocation
page read and write
2C01000
heap
page read and write
2800000
heap
page read and write
800000
unkown
page read and write
2C01000
heap
page read and write
81EF000
stack
page read and write
2C01000
heap
page read and write
33D1000
direct allocation
page execute and read and write
187000
unkown
page readonly
C00000
direct allocation
page read and write
2EAA000
heap
page read and write
7CE000
stack
page read and write
2C01000
heap
page read and write
3480000
direct allocation
page read and write
36F9000
direct allocation
page read and write
7FC000
stack
page read and write
3BCA000
unkown
page read and write
1CC06A40000
trusted library allocation
page read and write
2C01000
heap
page read and write
187000
unkown
page readonly
2C01000
heap
page read and write
2C01000
heap
page read and write
2360000
unkown
page readonly
47F2000
unclassified section
page read and write
2C01000
heap
page read and write
35C41FF000
stack
page read and write
2C01000
heap
page read and write
1CC0511A000
heap
page read and write
770000
heap
page read and write
1CC06D01000
trusted library allocation
page read and write
312E000
heap
page read and write
120000
unkown
page readonly
35D0000
direct allocation
page read and write
D59000
heap
page read and write
1CC06B00000
trusted library allocation
page read and write
185000
unkown
page read and write
D60000
unkown
page readonly
3632000
unclassified section
page read and write
2C01000
heap
page read and write
8FA000
unkown
page read and write
2C01000
heap
page read and write
CA2000
heap
page read and write
2C01000
heap
page read and write
35A3000
direct allocation
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
600000
unkown
page readonly
2813000
heap
page read and write
2E38000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
22C4000
heap
page read and write
3CF4000
unclassified section
page read and write
8D8000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
2A00000
heap
page read and write
7AC6000
heap
page read and write
CA4000
heap
page read and write
2C01000
heap
page read and write
2F06000
heap
page read and write
2C01000
heap
page read and write
170000
unkown
page readonly
376E000
direct allocation
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
2AA000
stack
page read and write
2C01000
heap
page read and write
376E000
direct allocation
page read and write
2C01000
heap
page read and write
1CC06C0E000
trusted library allocation
page read and write
A7D000
stack
page read and write
DA2000
heap
page read and write
2C01000
heap
page read and write
8CD000
unkown
page readonly
4B49000
system
page execute and read and write
1CC06D00000
trusted library allocation
page read and write
2C01000
heap
page read and write
510000
unkown
page readonly
24DC000
unkown
page read and write
2C01000
heap
page read and write
DB2000
heap
page read and write
2C01000
heap
page read and write
2DA8000
unkown
page read and write
2C01000
heap
page read and write
24AC000
stack
page read and write
1CC06C00000
trusted library allocation
page read and write
4FD2000
system
page read and write
2C01000
heap
page read and write
4CCC000
unkown
page read and write
2C01000
heap
page read and write
185000
unkown
page read and write
17E000
unkown
page readonly
2EAD000
heap
page read and write
23C2000
unkown
page read and write
2C01000
heap
page read and write
780000
unkown
page read and write
EF1000
heap
page read and write
DB2000
heap
page read and write
7AE3000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
770000
heap
page read and write
1DA000
stack
page read and write
2250000
heap
page read and write
8CD000
unkown
page readonly
35D0000
direct allocation
page read and write
2C01000
heap
page read and write
A80000
heap
page read and write
2813000
heap
page read and write
235F000
stack
page read and write
2C11000
unkown
page execute and read and write
2EC1000
heap
page read and write
840000
unkown
page readonly
3480000
direct allocation
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
2813000
heap
page read and write
651000
unkown
page readonly
35C29FC000
stack
page read and write
800000
unkown
page read and write
3620000
direct allocation
page read and write
3409000
direct allocation
page execute and read and write
302D000
heap
page read and write
2C01000
heap
page read and write
7ADE000
heap
page read and write
701000
unkown
page readonly
7ACF000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
2EB4000
heap
page read and write
1CC06A30000
heap
page read and write
171000
unkown
page execute read
2C01000
heap
page read and write
2C01000
heap
page read and write
3110000
heap
page read and write
3749000
direct allocation
page read and write
2C01000
heap
page read and write
2DC0000
trusted library allocation
page read and write
2EE6000
heap
page read and write
340D000
direct allocation
page execute and read and write
7ABB000
heap
page read and write
841000
unkown
page execute read
2C01000
heap
page read and write
2EA0000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
3622000
direct allocation
page execute and read and write
4B3D000
system
page execute and read and write
850000
heap
page read and write
7C0000
heap
page read and write
81AE000
stack
page read and write
185000
unkown
page read and write
7BA0000
trusted library allocation
page read and write
2D74000
heap
page read and write
2EE2000
heap
page read and write
2C01000
heap
page read and write
2F4F000
stack
page read and write
2C01000
heap
page read and write
37BE000
direct allocation
page read and write
1CC05080000
heap
page read and write
35C39FE000
stack
page read and write
185000
unkown
page read and write
2C01000
heap
page read and write
347E000
direct allocation
page execute and read and write
950000
unkown
page readonly
720000
heap
page read and write
EAE000
heap
page read and write
2C01000
heap
page read and write
4FC000
stack
page read and write
170000
unkown
page readonly
4B25000
system
page execute and read and write
2EEF000
heap
page read and write
2F0C000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
3257000
heap
page read and write
7AF0000
heap
page read and write
2E3C000
heap
page read and write
2C01000
heap
page read and write
2E0F000
stack
page read and write
8C0000
unkown
page readonly
76E000
stack
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
7ACD000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
3714000
unkown
page read and write
2E47000
heap
page read and write
2C01000
heap
page read and write
EAD000
heap
page execute and read and write
8FF000
unkown
page write copy
2C01000
heap
page read and write
2F30000
trusted library allocation
page read and write
1CC0513A000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
1CC06A40000
trusted library allocation
page read and write
2813000
heap
page read and write
2C01000
heap
page read and write
7DE000
stack
page read and write
37BE000
direct allocation
page read and write
500000
unkown
page readonly
17E000
unkown
page readonly
2360000
unkown
page readonly
22C4000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
520000
heap
page read and write
2B01000
heap
page read and write
2C01000
heap
page read and write
376E000
direct allocation
page read and write
8EE000
unkown
page readonly
30EE000
stack
page read and write
7AF7000
heap
page read and write
2244000
heap
page read and write
294F000
stack
page read and write
EB2000
heap
page read and write
2C01000
heap
page read and write
63E000
stack
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
701000
unkown
page readonly
402F000
unclassified section
page execute and read and write
2A12000
heap
page read and write
2C01000
heap
page read and write
376E000
direct allocation
page read and write
322D000
direct allocation
page execute and read and write
230000
unkown
page readonly
2C01000
heap
page read and write
2C01000
heap
page read and write
2EAF000
heap
page read and write
23C2000
unkown
page read and write
2A05000
heap
page read and write
2D00000
trusted library allocation
page read and write
2D00000
heap
page read and write
4F12000
system
page read and write
2A20000
heap
page read and write
7ACB000
heap
page read and write
2EC1000
heap
page read and write
1CC050A0000
heap
page read and write
433C000
unclassified section
page read and write
660000
heap
page read and write
240000
unkown
page readonly
3553000
direct allocation
page read and write
800000
heap
page read and write
B90000
heap
page read and write
3F0000
unkown
page readonly
C6A000
heap
page read and write
870000
heap
page read and write
2C01000
heap
page read and write
51EC000
system
page read and write
3229000
direct allocation
page execute and read and write
35C31FD000
stack
page read and write
32E0000
direct allocation
page execute and read and write
2DC0000
trusted library allocation
page read and write
6F0000
unkown
page read and write
7E0000
unkown
page readonly
2813000
heap
page read and write
2C01000
heap
page read and write
171000
unkown
page execute read
2F34000
heap
page read and write
30CC000
unkown
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
CE0000
unkown
page readonly
145E000
stack
page read and write
30AE000
stack
page read and write
660000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
2D74000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
2E9B000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
640000
unkown
page read and write
2F90000
direct allocation
page read and write
2C01000
heap
page read and write
6F0000
unkown
page read and write
2482000
unkown
page read and write
840000
unkown
page readonly
2C01000
heap
page read and write
35D0000
direct allocation
page read and write
2813000
heap
page read and write
4B4B000
system
page execute and read and write
8EE000
unkown
page readonly
33CD000
direct allocation
page execute and read and write
86F000
stack
page read and write
2C01000
heap
page read and write
640000
unkown
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
520000
heap
page read and write
32D0000
trusted library allocation
page read and write
325E000
unkown
page read and write
2813000
heap
page read and write
2E90000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
170000
unkown
page readonly
3FC1000
unclassified section
page execute and read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
3749000
direct allocation
page read and write
3029000
heap
page read and write
2C01000
heap
page read and write
100000
unkown
page readonly
2C01000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
710000
unkown
page read and write
C9B000
heap
page read and write
4018000
unclassified section
page read and write
2C01000
heap
page read and write
2813000
heap
page read and write
E41000
heap
page read and write
7AC1000
heap
page read and write
2C01000
heap
page read and write
329E000
direct allocation
page execute and read and write
CA4000
heap
page read and write
2C01000
heap
page read and write
2240000
heap
page read and write
2C01000
heap
page read and write
2813000
heap
page read and write
4FC000
stack
page read and write
1CC06C03000
trusted library allocation
page read and write
2EB4000
heap
page read and write
7AB6000
heap
page read and write
2C01000
heap
page read and write
2F90000
direct allocation
page read and write
269C000
unkown
page read and write
3601000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
1CC05141000
heap
page read and write
230000
unkown
page readonly
6210000
trusted library allocation
page read and write
29D0000
heap
page read and write
76F000
stack
page read and write
3582000
unkown
page read and write
2180000
unkown
page read and write
36F9000
direct allocation
page read and write
ECD000
heap
page read and write
2C01000
heap
page read and write
2A17000
heap
page read and write
2C01000
heap
page read and write
2E47000
heap
page read and write
2C01000
heap
page read and write
E28000
heap
page read and write
ECD000
heap
page read and write
8D0000
heap
page read and write
2C01000
heap
page read and write
171000
unkown
page execute read
110000
unkown
page readonly
2570000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
610000
heap
page read and write
7E0000
unkown
page readonly
63E000
stack
page read and write
2F00000
heap
page read and write
7AF5000
heap
page read and write
2C01000
heap
page read and write
CE0000
unkown
page readonly
36FD000
direct allocation
page read and write
2E30000
heap
page read and write
2C01000
heap
page read and write
1CC06C12000
trusted library allocation
page read and write
290E000
stack
page read and write
2C01000
heap
page read and write
7AFD000
heap
page read and write
2C01000
heap
page read and write
2E4E000
stack
page read and write
BE4000
heap
page read and write
2EFC000
heap
page read and write
D60000
unkown
page readonly
3AD000
stack
page read and write
2C01000
heap
page read and write
2ED8000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
325B000
heap
page read and write
8D8000
heap
page read and write
2E4D000
heap
page read and write
2C01000
heap
page read and write
35AD000
direct allocation
page execute and read and write
2F50000
direct allocation
page read and write
6DB000
stack
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
4E3A000
unclassified section
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
500000
unkown
page readonly
55D4000
system
page read and write
36F2000
unclassified section
page read and write
25D0000
heap
page read and write
3AD000
stack
page read and write
2E4D000
heap
page read and write
2C01000
heap
page read and write
22C0000
heap
page read and write
1CC06DBE000
trusted library allocation
page read and write
ACE000
stack
page read and write
2E47000
heap
page read and write
309E000
heap
page read and write
185F000
stack
page read and write
220000
unkown
page readonly
199000
stack
page read and write
720000
heap
page read and write
2EB7000
heap
page read and write
36FD000
direct allocation
page read and write
2FD0000
trusted library allocation
page execute and read and write
2813000
heap
page read and write
2E5B000
heap
page read and write
2E48000
heap
page read and write
1F0000
unkown
page readonly
CA4000
heap
page read and write
D58000
heap
page read and write
4B2D000
system
page execute and read and write
100000
unkown
page readonly
2C01000
heap
page read and write
220000
unkown
page readonly
8FA000
unkown
page write copy
2C01000
heap
page read and write
2C01000
heap
page read and write
DB2000
heap
page read and write
ECD000
heap
page read and write
2A1A000
heap
page read and write
3430000
direct allocation
page read and write
110000
unkown
page readonly
DA2000
heap
page read and write
374D000
direct allocation
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
2C01000
heap
page read and write
3057000
heap
page read and write
8D0000
heap
page read and write
EF4000
heap
page read and write
ECD000
heap
page read and write
35D0000
direct allocation
page read and write
36FD000
direct allocation
page read and write
2E3C000
heap
page read and write
17E000
unkown
page readonly
There are 664 hidden memdumps, click here to show them.