Time & API |
Arguments |
Status |
Return |
Repeated |
1620947594.513
NtAllocateVirtualMemory
|
process_identifier:
2620
region_size:
311296
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000408
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00400000
|
failed
|
3221225496 |
0
|
1620947594.513
NtAllocateVirtualMemory
|
process_identifier:
2620
region_size:
311296
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x00000408
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x000b0000
|
success
|
0 |
0
|
1620947596.325498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
397312
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x10410000
|
success
|
0 |
0
|
1620947596.325498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x000b0000
|
success
|
0 |
0
|
1620947596.325498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00100000
|
success
|
0 |
0
|
1620947596.325498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00110000
|
success
|
0 |
0
|
1620947596.372498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00120000
|
success
|
0 |
0
|
1620947596.372498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00130000
|
success
|
0 |
0
|
1620947596.372498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00140000
|
success
|
0 |
0
|
1620947596.372498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00150000
|
success
|
0 |
0
|
1620947596.481498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x001d0000
|
success
|
0 |
0
|
1620947596.481498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x001f0000
|
success
|
0 |
0
|
1620947596.481498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00200000
|
success
|
0 |
0
|
1620947596.481498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00610000
|
success
|
0 |
0
|
1620947596.481498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00620000
|
success
|
0 |
0
|
1620947596.481498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00670000
|
success
|
0 |
0
|
1620947596.481498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x006c0000
|
success
|
0 |
0
|
1620947596.481498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x006d0000
|
success
|
0 |
0
|
1620947596.497498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x006e0000
|
success
|
0 |
0
|
1620947596.497498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x006f0000
|
success
|
0 |
0
|
1620947596.497498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00700000
|
success
|
0 |
0
|
1620947596.497498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00710000
|
success
|
0 |
0
|
1620947596.512498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x007a0000
|
success
|
0 |
0
|
1620947596.512498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x007b0000
|
success
|
0 |
0
|
1620947596.512498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x007c0000
|
success
|
0 |
0
|
1620947596.512498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x007d0000
|
success
|
0 |
0
|
1620947596.528498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x007e0000
|
success
|
0 |
0
|
1620947596.528498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x007f0000
|
success
|
0 |
0
|
1620947596.528498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00800000
|
success
|
0 |
0
|
1620947596.544498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00810000
|
success
|
0 |
0
|
1620947596.544498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00820000
|
success
|
0 |
0
|
1620947596.544498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00830000
|
success
|
0 |
0
|
1620947596.544498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00840000
|
success
|
0 |
0
|
1620947596.544498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00850000
|
success
|
0 |
0
|
1620947596.544498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00860000
|
success
|
0 |
0
|
1620947596.544498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00870000
|
success
|
0 |
0
|
1620947596.544498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00880000
|
success
|
0 |
0
|
1620947596.544498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00890000
|
success
|
0 |
0
|
1620947596.544498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x008a0000
|
success
|
0 |
0
|
1620947596.544498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x008b0000
|
success
|
0 |
0
|
1620947596.544498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x008c0000
|
success
|
0 |
0
|
1620947596.544498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00b90000
|
success
|
0 |
0
|
1620947596.544498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00ba0000
|
success
|
0 |
0
|
1620947596.559498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00bb0000
|
success
|
0 |
0
|
1620947596.559498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00bc0000
|
success
|
0 |
0
|
1620947596.559498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00bd0000
|
success
|
0 |
0
|
1620947596.559498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00be0000
|
success
|
0 |
0
|
1620947596.669498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00c50000
|
success
|
0 |
0
|
1620947596.669498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x00c60000
|
success
|
0 |
0
|
1620947596.669498
NtAllocateVirtualMemory
|
process_identifier:
2208
region_size:
4096
stack_dep_bypass:
0
stack_pivoted:
0
heap_dep_bypass:
0
protection:
64
(PAGE_EXECUTE_READWRITE)
process_handle:
0x000000b4
allocation_type:
12288
(MEM_COMMIT|MEM_RESERVE)
base_address:
0x01070000
|
success
|
0 |
0
|