| Time & API |
Arguments |
Status |
Return |
Repeated |
1619426985.955241
NtAllocateVirtualMemory
|
process_identifier:
2060
region_size:
131072
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000120
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619426985.955241
NtAllocateVirtualMemory
|
process_identifier:
2060
region_size:
131072
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000120
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x000f0000
|
success
|
0 |
0
|
1619455145.032374
NtAllocateVirtualMemory
|
process_identifier:
3272
region_size:
131072
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000124
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455145.032374
NtAllocateVirtualMemory
|
process_identifier:
3272
region_size:
131072
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000124
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x000b0000
|
success
|
0 |
0
|
1619455149.126999
NtAllocateVirtualMemory
|
process_identifier:
3392
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000130
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
success
|
0 |
0
|
1619455153.829999
NtAllocateVirtualMemory
|
process_identifier:
3668
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000001d0
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
success
|
0 |
0
|
1619455158.438999
NtAllocateVirtualMemory
|
process_identifier:
3772
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000001e8
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
success
|
0 |
0
|
1619455162.798999
NtAllocateVirtualMemory
|
process_identifier:
3892
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000001f8
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
success
|
0 |
0
|
1619455165.735999
NtAllocateVirtualMemory
|
process_identifier:
4084
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000204
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455165.891999
NtAllocateVirtualMemory
|
process_identifier:
3112
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000208
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455166.048999
NtAllocateVirtualMemory
|
process_identifier:
2440
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000210
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455166.282999
NtAllocateVirtualMemory
|
process_identifier:
3252
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000218
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455166.376999
NtAllocateVirtualMemory
|
process_identifier:
1888
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000220
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455166.516999
NtAllocateVirtualMemory
|
process_identifier:
1564
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000228
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455166.641999
NtAllocateVirtualMemory
|
process_identifier:
1752
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000230
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455166.766999
NtAllocateVirtualMemory
|
process_identifier:
3312
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000238
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455166.844999
NtAllocateVirtualMemory
|
process_identifier:
1208
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000240
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455167.016999
NtAllocateVirtualMemory
|
process_identifier:
420
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000248
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455167.157999
NtAllocateVirtualMemory
|
process_identifier:
1376
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000250
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455167.298999
NtAllocateVirtualMemory
|
process_identifier:
3432
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000258
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455167.391999
NtAllocateVirtualMemory
|
process_identifier:
3496
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000260
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455167.423999
NtAllocateVirtualMemory
|
process_identifier:
3560
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000270
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455167.469999
NtAllocateVirtualMemory
|
process_identifier:
2604
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000274
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455167.516999
NtAllocateVirtualMemory
|
process_identifier:
3628
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x0000027c
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455167.579999
NtAllocateVirtualMemory
|
process_identifier:
3440
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000284
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455167.907999
NtAllocateVirtualMemory
|
process_identifier:
3700
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x0000028c
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455168.126999
NtAllocateVirtualMemory
|
process_identifier:
3168
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000294
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455168.344999
NtAllocateVirtualMemory
|
process_identifier:
3008
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x0000029c
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455168.548999
NtAllocateVirtualMemory
|
process_identifier:
3744
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000002a4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455168.719999
NtAllocateVirtualMemory
|
process_identifier:
3824
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000002ac
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455168.985999
NtAllocateVirtualMemory
|
process_identifier:
2576
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000002b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455169.110999
NtAllocateVirtualMemory
|
process_identifier:
3852
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000002bc
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455169.282999
NtAllocateVirtualMemory
|
process_identifier:
1664
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000002c4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455169.501999
NtAllocateVirtualMemory
|
process_identifier:
3148
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000002cc
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455169.704999
NtAllocateVirtualMemory
|
process_identifier:
3236
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000002d4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455169.938999
NtAllocateVirtualMemory
|
process_identifier:
428
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000002dc
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455170.048999
NtAllocateVirtualMemory
|
process_identifier:
3040
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000002e4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455170.204999
NtAllocateVirtualMemory
|
process_identifier:
2852
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000002ec
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455170.313999
NtAllocateVirtualMemory
|
process_identifier:
1476
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000002f4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455170.407999
NtAllocateVirtualMemory
|
process_identifier:
3524
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000304
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455170.501999
NtAllocateVirtualMemory
|
process_identifier:
3616
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000308
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455170.626999
NtAllocateVirtualMemory
|
process_identifier:
3576
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000310
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455170.719999
NtAllocateVirtualMemory
|
process_identifier:
3716
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000318
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455170.829999
NtAllocateVirtualMemory
|
process_identifier:
3036
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000320
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455170.954999
NtAllocateVirtualMemory
|
process_identifier:
3820
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000328
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455171.048999
NtAllocateVirtualMemory
|
process_identifier:
3876
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000330
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455171.157999
NtAllocateVirtualMemory
|
process_identifier:
2632
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000338
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455171.251999
NtAllocateVirtualMemory
|
process_identifier:
624
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000340
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455171.360999
NtAllocateVirtualMemory
|
process_identifier:
2008
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000348
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1619455171.454999
NtAllocateVirtualMemory
|
process_identifier:
2448
region_size:
1204224
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000350
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|