Guest User

BSOD

a guest
Oct 9th, 2011
150
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 165.39 KB | None | 0 0
  1. Opened log file 'C:\Users\***********\AppData\Local\msdart_crashanalyzer_kd_ansi.log'
  2.  
  3. Microsoft (R) Windows Debugger Version 6.12.0002.633 X86
  4. Copyright (c) Microsoft Corporation. All rights reserved.
  5.  
  6.  
  7. Loading Dump File [C:\Users\***********\Desktop\100811-8580-01.dmp]
  8. Mini Kernel Dump File: Only registers and stack trace are available
  9.  
  10. Symbol search path is: srv*c:\symbols*http://msdl.microsoft.com/download/symbols
  11. Executable search path is:
  12. Windows 7 Kernel Version 7601 (Service Pack 1) MP (4 procs) Free x64
  13. Product: WinNt, suite: TerminalServer SingleUserTS
  14. Built by: 7601.17640.amd64fre.win7sp1_gdr.110622-1506
  15. Machine Name:
  16. Kernel base = 0xfffff800`02c04000 PsLoadedModuleList = 0xfffff800`02e49670
  17. Debug session time: Sat Oct 8 11:01:39.841 2011 (UTC + 2:00)
  18. System Uptime: 0 days 13:49:40.355
  19. Loading Kernel Symbols
  20. ...............................................................
  21. ................................................................
  22. ..................................................
  23. Loading User Symbols
  24. Loading unloaded module list
  25. ............
  26. *******************************************************************************
  27. * *
  28. * Bugcheck Analysis *
  29. * *
  30. *******************************************************************************
  31.  
  32. Use !analyze -v to get detailed debugging information.
  33.  
  34. BugCheck D1, {fffffa000a450aca, 2, 0, fffff880018d76c6}
  35.  
  36. Unable to load image \SystemRoot\system32\DRIVERS\EpfwLWF.sys, Win32 error 0n2
  37. *** WARNING: Unable to verify timestamp for EpfwLWF.sys
  38. *** ERROR: Module load completed but symbols could not be loaded for EpfwLWF.sys
  39. Probably caused by : NETIO.SYS ( NETIO!NetioDereferenceNetBufferListChain+132 )
  40.  
  41. Followup: MachineOwner
  42. ---------
  43.  
  44. 2: kd> .logclose
  45. Closing open log file C:\Users\***********\AppData\Local\msdart_crashanalyzer_kd_ansi.log
  46. Opened log file 'C:\Users\***********\AppData\Local\msdart_crashanalyzer_kd_unicode.log'
  47. 2: kd> !analyze -v
  48. *******************************************************************************
  49. * *
  50. * Bugcheck Analysis *
  51. * *
  52. *******************************************************************************
  53.  
  54. DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1)
  55. An attempt was made to access a pageable (or completely invalid) address at an
  56. interrupt request level (IRQL) that is too high. This is usually
  57. caused by drivers using improper addresses.
  58. If kernel debugger is available get stack backtrace.
  59. Arguments:
  60. Arg1: fffffa000a450aca, memory referenced
  61. Arg2: 0000000000000002, IRQL
  62. Arg3: 0000000000000000, value 0 = read operation, 1 = write operation
  63. Arg4: fffff880018d76c6, address which referenced memory
  64.  
  65. Debugging Details:
  66. ------------------
  67.  
  68.  
  69. READ_ADDRESS: GetPointerFromAddress: unable to read from fffff80002eb3100
  70. fffffa000a450aca
  71.  
  72. CURRENT_IRQL: 2
  73.  
  74. FAULTING_IP:
  75. tcpip!UdpSendMessagesDatagramsComplete+36
  76. fffff880`018d76c6 440fb7650a movzx r12d,word ptr [rbp+0Ah]
  77.  
  78. CUSTOMER_CRASH_COUNT: 1
  79.  
  80. DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
  81.  
  82. BUGCHECK_STR: 0xD1
  83.  
  84. PROCESS_NAME: uTorrent.exe
  85.  
  86. TRAP_FRAME: fffff880095c89a0 -- (.trap 0xfffff880095c89a0)
  87. .trap 0xfffff880095c89a0
  88. NOTE: The trap frame does not contain all registers.
  89. Some register values may be zeroed or incorrect.
  90. rax=0000000000000000 rbx=0000000000000000 rcx=fffffa800a4508e0
  91. rdx=0000000000000001 rsi=0000000000000000 rdi=0000000000000000
  92. rip=fffff880018d76c6 rsp=fffff880095c8b30 rbp=fffffa000a450ac0
  93. r8=0000000000000001 r9=fffffa800803a8d0 r10=0000000000000001
  94. r11=fffff880095c8d98 r12=0000000000000000 r13=0000000000000000
  95. r14=0000000000000000 r15=0000000000000000
  96. iopl=0 nv up ei ng nz na po nc
  97. tcpip!UdpSendMessagesDatagramsComplete+0x36:
  98. fffff880`018d76c6 440fb7650a movzx r12d,word ptr [rbp+0Ah] ss:0018:fffffa00`0a450aca=????
  99. .trap
  100. Resetting default scope
  101.  
  102. LAST_CONTROL_TRANSFER: from fffff80002c801e9 to fffff80002c80c40
  103.  
  104. STACK_TEXT:
  105. fffff880`095c8858 fffff800`02c801e9 : 00000000`0000000a fffffa00`0a450aca 00000000`00000002 00000000`00000000 : nt!KeBugCheckEx
  106. fffff880`095c8860 fffff800`02c7ee60 : fffff880`03164180 fffff800`031f4ae7 fffff880`095c8b10 fffffa80`0a450a10 : nt!KiBugCheckDispatch+0x69
  107. fffff880`095c89a0 fffff880`018d76c6 : fffffa80`0b2b555a fffffa80`08a6287c 00000000`02f79674 00000000`00000002 : nt!KiPageFault+0x260
  108. fffff880`095c8b30 fffff880`0170f892 : fffffa80`0803a010 00000000`00000001 fffffa80`08a0b501 00000000`00000001 : tcpip!UdpSendMessagesDatagramsComplete+0x36
  109. fffff880`095c8b90 fffff880`018f2e77 : fffffa80`00000000 fffffa80`0b2b5501 fffff880`095c8c00 fffffa80`0b2b5546 : NETIO!NetioDereferenceNetBufferListChain+0x132
  110. fffff880`095c8c60 fffff880`016d936f : fffffa80`09214510 fffffa80`07c181a0 fffffa80`0803a8d0 fffff880`095c9048 : tcpip!FlSendNetBufferListChainComplete+0x37
  111. fffff880`095c8c90 fffff880`03cb36c9 : fffffa80`00000000 fffffa80`0a4508e0 00000000`00000001 fffff880`00000000 : ndis!ndisMSendCompleteNetBufferListsInternal+0x10f
  112. fffff880`095c8d30 fffffa80`00000000 : fffffa80`0a4508e0 00000000`00000001 fffff880`00000000 fffffa80`0b2b5538 : EpfwLWF+0x36c9
  113. fffff880`095c8d38 fffffa80`0a4508e0 : 00000000`00000001 fffff880`00000000 fffffa80`0b2b5538 fffffa80`0a4508e0 : 0xfffffa80`00000000
  114. fffff880`095c8d40 00000000`00000001 : fffff880`00000000 fffffa80`0b2b5538 fffffa80`0a4508e0 fffff880`0167e110 : 0xfffffa80`0a4508e0
  115. fffff880`095c8d48 fffff880`00000000 : fffffa80`0b2b5538 fffffa80`0a4508e0 fffff880`0167e110 fffffa80`0a4508e0 : 0x1
  116. fffff880`095c8d50 fffffa80`0b2b5538 : fffffa80`0a4508e0 fffff880`0167e110 fffffa80`0a4508e0 00000000`00000001 : 0xfffff880`00000000
  117. fffff880`095c8d58 fffffa80`0a4508e0 : fffff880`0167e110 fffffa80`0a4508e0 00000000`00000001 00000000`00000000 : 0xfffffa80`0b2b5538
  118. fffff880`095c8d60 fffff880`0167e110 : fffffa80`0a4508e0 00000000`00000001 00000000`00000000 fffffa80`07c181a0 : 0xfffffa80`0a4508e0
  119. fffff880`095c8d68 fffffa80`0a4508e0 : 00000000`00000001 00000000`00000000 fffffa80`07c181a0 fffff880`03cb276e : ndis!WPP_GLOBAL_Control
  120. fffff880`095c8d70 00000000`00000001 : 00000000`00000000 fffffa80`07c181a0 fffff880`03cb276e 00000000`00000000 : 0xfffffa80`0a4508e0
  121. fffff880`095c8d78 00000000`00000000 : fffffa80`07c181a0 fffff880`03cb276e 00000000`00000000 fffffa80`0a4508e0 : 0x1
  122.  
  123.  
  124. STACK_COMMAND: kb
  125.  
  126. FOLLOWUP_IP:
  127. NETIO!NetioDereferenceNetBufferListChain+132
  128. fffff880`0170f892 4c8bb42490000000 mov r14,qword ptr [rsp+90h]
  129.  
  130. SYMBOL_STACK_INDEX: 4
  131.  
  132. SYMBOL_NAME: NETIO!NetioDereferenceNetBufferListChain+132
  133.  
  134. FOLLOWUP_NAME: MachineOwner
  135.  
  136. MODULE_NAME: NETIO
  137.  
  138. IMAGE_NAME: NETIO.SYS
  139.  
  140. DEBUG_FLR_IMAGE_TIMESTAMP: 4ce79381
  141.  
  142. FAILURE_BUCKET_ID: X64_0xD1_NETIO!NetioDereferenceNetBufferListChain+132
  143.  
  144. BUCKET_ID: X64_0xD1_NETIO!NetioDereferenceNetBufferListChain+132
  145.  
  146. Followup: MachineOwner
  147. ---------
  148.  
  149. 2: kd> !thread
  150. GetPointerFromAddress: unable to read from fffff80002eb3000
  151. THREAD fffffa8009e965a0 Cid 0d6c.0ca8 Teb: 000000007efaa000 Win32Thread: fffff900c239a7e0 RUNNING on processor 2
  152. Not impersonating
  153. GetUlongFromAddress: unable to read from fffff80002df2ba4
  154. Owning Process fffffa800a307b30 Image: uTorrent.exe
  155. Attached Process N/A Image: N/A
  156. fffff78000000000: Unable to get shared data
  157. Wait Start TickCount 3191027
  158. Context Switch Count 2917543 LargeStack
  159. ReadMemory error: Cannot get nt!KeMaximumIncrement value.
  160. UserTime 00:00:00.000
  161. KernelTime 00:00:00.000
  162. Win32 Start Address 0x000000000042cd97
  163. Stack Init fffff880095cadb0 Current fffff880095c9fc0
  164. Base fffff880095cb000 Limit fffff880095c3000 Call 0
  165. Priority 10 BasePriority 8 UnusualBoost 0 ForegroundBoost 0 IoPriority 2 PagePriority 5
  166. Child-SP RetAddr : Args to Child : Call Site
  167. fffff880`095c8858 fffff800`02c801e9 : 00000000`0000000a fffffa00`0a450aca 00000000`00000002 00000000`00000000 : nt!KeBugCheckEx
  168. fffff880`095c8860 fffff800`02c7ee60 : fffff880`03164180 fffff800`031f4ae7 fffff880`095c8b10 fffffa80`0a450a10 : nt!KiBugCheckDispatch+0x69
  169. fffff880`095c89a0 fffff880`018d76c6 : fffffa80`0b2b555a fffffa80`08a6287c 00000000`02f79674 00000000`00000002 : nt!KiPageFault+0x260 (TrapFrame @ fffff880`095c89a0)
  170. fffff880`095c8b30 fffff880`0170f892 : fffffa80`0803a010 00000000`00000001 fffffa80`08a0b501 00000000`00000001 : tcpip!UdpSendMessagesDatagramsComplete+0x36
  171. fffff880`095c8b90 fffff880`018f2e77 : fffffa80`00000000 fffffa80`0b2b5501 fffff880`095c8c00 fffffa80`0b2b5546 : NETIO!NetioDereferenceNetBufferListChain+0x132
  172. fffff880`095c8c60 fffff880`016d936f : fffffa80`09214510 fffffa80`07c181a0 fffffa80`0803a8d0 fffff880`095c9048 : tcpip!FlSendNetBufferListChainComplete+0x37
  173. fffff880`095c8c90 fffff880`03cb36c9 : fffffa80`00000000 fffffa80`0a4508e0 00000000`00000001 fffff880`00000000 : ndis!ndisMSendCompleteNetBufferListsInternal+0x10f
  174. fffff880`095c8d30 fffffa80`00000000 : fffffa80`0a4508e0 00000000`00000001 fffff880`00000000 fffffa80`0b2b5538 : EpfwLWF+0x36c9
  175. fffff880`095c8d38 fffffa80`0a4508e0 : 00000000`00000001 fffff880`00000000 fffffa80`0b2b5538 fffffa80`0a4508e0 : 0xfffffa80`00000000
  176. fffff880`095c8d40 00000000`00000001 : fffff880`00000000 fffffa80`0b2b5538 fffffa80`0a4508e0 fffff880`0167e110 : 0xfffffa80`0a4508e0
  177. fffff880`095c8d48 fffff880`00000000 : fffffa80`0b2b5538 fffffa80`0a4508e0 fffff880`0167e110 fffffa80`0a4508e0 : 0x1
  178. fffff880`095c8d50 fffffa80`0b2b5538 : fffffa80`0a4508e0 fffff880`0167e110 fffffa80`0a4508e0 00000000`00000001 : 0xfffff880`00000000
  179. fffff880`095c8d58 fffffa80`0a4508e0 : fffff880`0167e110 fffffa80`0a4508e0 00000000`00000001 00000000`00000000 : 0xfffffa80`0b2b5538
  180. fffff880`095c8d60 fffff880`0167e110 : fffffa80`0a4508e0 00000000`00000001 00000000`00000000 fffffa80`07c181a0 : 0xfffffa80`0a4508e0
  181. fffff880`095c8d68 fffffa80`0a4508e0 : 00000000`00000001 00000000`00000000 fffffa80`07c181a0 fffff880`03cb276e : ndis!WPP_GLOBAL_Control
  182. fffff880`095c8d70 00000000`00000001 : 00000000`00000000 fffffa80`07c181a0 fffff880`03cb276e 00000000`00000000 : 0xfffffa80`0a4508e0
  183. fffff880`095c8d78 00000000`00000000 : fffffa80`07c181a0 fffff880`03cb276e 00000000`00000000 fffffa80`0a4508e0 : 0x1
  184.  
  185. 2: kd> lm kv
  186. start end module name
  187. fffff800`00bc1000 fffff800`00bcb000 kdcom (deferred)
  188. Mapped memory image file: c:\symbols\kdcom.dll\4D4D8061a000\kdcom.dll
  189. Image path: kdcom.dll
  190. Image name: kdcom.dll
  191. Timestamp: Sat Feb 05 17:52:49 2011 (4D4D8061)
  192. CheckSum: 0000F59B
  193. ImageSize: 0000A000
  194. File version: 6.1.7601.17556
  195. Product version: 6.1.7601.17556
  196. File flags: 0 (Mask 3F)
  197. File OS: 40004 NT Win32
  198. File type: 3.A Driver
  199. File date: 00000000.00000000
  200. Translations: 0409.04b0
  201. CompanyName: Microsoft Corporation
  202. ProductName: Microsoft® Windows® Operating System
  203. InternalName: kdcom.dll
  204. OriginalFilename: kdcom.dll
  205. ProductVersion: 6.1.7601.17556
  206. FileVersion: 6.1.7601.17556 (win7sp1_gdr.110204-2120)
  207. FileDescription: Serial Kernel Debugger
  208. LegalCopyright: © Microsoft Corporation. All rights reserved.
  209. fffff800`02c04000 fffff800`031ed000 nt (pdb symbols) c:\symbols\ntkrnlmp.pdb\47F5C3BF9E0A493C9F63BB8F6413358B2\ntkrnlmp.pdb
  210. Loaded symbol image file: ntkrnlmp.exe
  211. Mapped memory image file: c:\symbols\ntoskrnl.exe\4E02AAA35e9000\ntoskrnl.exe
  212. Image path: ntkrnlmp.exe
  213. Image name: ntkrnlmp.exe
  214. Timestamp: Thu Jun 23 04:53:23 2011 (4E02AAA3)
  215. CheckSum: 0055C228
  216. ImageSize: 005E9000
  217. File version: 6.1.7601.17640
  218. Product version: 6.1.7601.17640
  219. File flags: 0 (Mask 3F)
  220. File OS: 40004 NT Win32
  221. File type: 1.0 App
  222. File date: 00000000.00000000
  223. Translations: 0409.04b0
  224. CompanyName: Microsoft Corporation
  225. ProductName: Microsoft® Windows® Operating System
  226. InternalName: ntkrnlmp.exe
  227. OriginalFilename: ntkrnlmp.exe
  228. ProductVersion: 6.1.7601.17640
  229. FileVersion: 6.1.7601.17640 (win7sp1_gdr.110622-1506)
  230. FileDescription: NT Kernel & System
  231. LegalCopyright: © Microsoft Corporation. All rights reserved.
  232. fffff800`031ed000 fffff800`03236000 hal (deferred)
  233. Mapped memory image file: c:\symbols\hal.dll\4CE7C66949000\hal.dll
  234. Image path: hal.dll
  235. Image name: hal.dll
  236. Timestamp: Sat Nov 20 14:00:25 2010 (4CE7C669)
  237. CheckSum: 000404C3
  238. ImageSize: 00049000
  239. File version: 6.1.7601.17514
  240. Product version: 6.1.7601.17514
  241. File flags: 0 (Mask 3F)
  242. File OS: 40004 NT Win32
  243. File type: 2.0 Dll
  244. File date: 00000000.00000000
  245. Translations: 0409.04b0
  246. CompanyName: Microsoft Corporation
  247. ProductName: Microsoft® Windows® Operating System
  248. InternalName: hal.dll
  249. OriginalFilename: hal.dll
  250. ProductVersion: 6.1.7601.17514
  251. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  252. FileDescription: Hardware Abstraction Layer DLL
  253. LegalCopyright: © Microsoft Corporation. All rights reserved.
  254. fffff880`00c00000 fffff880`00cc0000 CI (deferred)
  255. Mapped memory image file: c:\symbols\CI.dll\4CE7C944c0000\CI.dll
  256. Image path: \SystemRoot\system32\CI.dll
  257. Image name: CI.dll
  258. Timestamp: Sat Nov 20 14:12:36 2010 (4CE7C944)
  259. CheckSum: 000CB0F6
  260. ImageSize: 000C0000
  261. File version: 6.1.7601.17514
  262. Product version: 6.1.7601.17514
  263. File flags: 0 (Mask 3F)
  264. File OS: 40004 NT Win32
  265. File type: 3.7 Driver
  266. File date: 00000000.00000000
  267. Translations: 0409.04b0
  268. CompanyName: Microsoft Corporation
  269. ProductName: Microsoft® Windows® Operating System
  270. InternalName: ci.dll
  271. OriginalFilename: ci.dll
  272. ProductVersion: 6.1.7601.17514
  273. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  274. FileDescription: Code Integrity Module
  275. LegalCopyright: © Microsoft Corporation. All rights reserved.
  276. fffff880`00cc0000 fffff880`00cda000 mountmgr (deferred)
  277. Mapped memory image file: c:\symbols\mountmgr.sys\4CE792991a000\mountmgr.sys
  278. Image path: \SystemRoot\System32\drivers\mountmgr.sys
  279. Image name: mountmgr.sys
  280. Timestamp: Sat Nov 20 10:19:21 2010 (4CE79299)
  281. CheckSum: 00022621
  282. ImageSize: 0001A000
  283. File version: 6.1.7601.17514
  284. Product version: 6.1.7601.17514
  285. File flags: 0 (Mask 3F)
  286. File OS: 40004 NT Win32
  287. File type: 3.7 Driver
  288. File date: 00000000.00000000
  289. Translations: 0409.04b0
  290. CompanyName: Microsoft Corporation
  291. ProductName: Microsoft® Windows® Operating System
  292. InternalName: mountmgr.sys
  293. OriginalFilename: mountmgr.sys
  294. ProductVersion: 6.1.7601.17514
  295. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  296. FileDescription: Mount Point Manager
  297. LegalCopyright: © Microsoft Corporation. All rights reserved.
  298. fffff880`00cda000 fffff880`00ce5000 msahci (deferred)
  299. Mapped memory image file: c:\symbols\msahci.sys\4CE7A416b000\msahci.sys
  300. Image path: \SystemRoot\system32\drivers\msahci.sys
  301. Image name: msahci.sys
  302. Timestamp: Sat Nov 20 11:33:58 2010 (4CE7A416)
  303. CheckSum: 00017292
  304. ImageSize: 0000B000
  305. File version: 6.1.7601.17514
  306. Product version: 6.1.7601.17514
  307. File flags: 0 (Mask 3F)
  308. File OS: 40004 NT Win32
  309. File type: 3.7 Driver
  310. File date: 00000000.00000000
  311. Translations: 0409.04b0
  312. CompanyName: Microsoft Corporation
  313. ProductName: Microsoft® Windows® Operating System
  314. InternalName: msahci.sys
  315. OriginalFilename: msahci.sys
  316. ProductVersion: 6.1.7601.17514
  317. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  318. FileDescription: MS AHCI 1.0 Standard Driver
  319. LegalCopyright: © Microsoft Corporation. All rights reserved.
  320. fffff880`00ce5000 fffff880`00cf9000 amdsata (deferred)
  321. Image path: \SystemRoot\system32\DRIVERS\amdsata.sys
  322. Image name: amdsata.sys
  323. Timestamp: Wed Oct 07 22:13:09 2009 (4ACCF655)
  324. CheckSum: 0001C14A
  325. ImageSize: 00014000
  326. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  327. fffff880`00cfe000 fffff880`00d0b000 mcupdate_AuthenticAMD (deferred)
  328. Image path: \SystemRoot\system32\mcupdate_AuthenticAMD.dll
  329. Image name: mcupdate_AuthenticAMD.dll
  330. Timestamp: Tue Jul 14 03:29:09 2009 (4A5BDF65)
  331. CheckSum: 0000BABC
  332. ImageSize: 0000D000
  333. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  334. fffff880`00d0b000 fffff880`00d1f000 PSHED (deferred)
  335. Mapped memory image file: c:\symbols\PSHED.dll\4A5BE02714000\PSHED.dll
  336. Image path: \SystemRoot\system32\PSHED.dll
  337. Image name: PSHED.dll
  338. Timestamp: Tue Jul 14 03:32:23 2009 (4A5BE027)
  339. CheckSum: 0000F762
  340. ImageSize: 00014000
  341. File version: 6.1.7600.16385
  342. Product version: 6.1.7600.16385
  343. File flags: 0 (Mask 3F)
  344. File OS: 40004 NT Win32
  345. File type: 3.7 Driver
  346. File date: 00000000.00000000
  347. Translations: 0409.04b0
  348. CompanyName: Microsoft Corporation
  349. ProductName: Microsoft® Windows® Operating System
  350. InternalName: pshed.dll
  351. OriginalFilename: pshed.dll
  352. ProductVersion: 6.1.7600.16385
  353. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  354. FileDescription: Platform Specific Hardware Error Driver
  355. LegalCopyright: © Microsoft Corporation. All rights reserved.
  356. fffff880`00d1f000 fffff880`00d7d000 CLFS (deferred)
  357. Mapped memory image file: c:\symbols\CLFS.SYS\4A5BC11D5e000\CLFS.SYS
  358. Image path: \SystemRoot\system32\CLFS.SYS
  359. Image name: CLFS.SYS
  360. Timestamp: Tue Jul 14 01:19:57 2009 (4A5BC11D)
  361. CheckSum: 00065C46
  362. ImageSize: 0005E000
  363. File version: 6.1.7600.16385
  364. Product version: 6.1.7600.16385
  365. File flags: 0 (Mask 3F)
  366. File OS: 40004 NT Win32
  367. File type: 3.7 Driver
  368. File date: 00000000.00000000
  369. Translations: 0000.04b0
  370. CompanyName: Microsoft Corporation
  371. ProductName: Microsoft® Windows® Operating System
  372. InternalName: clfs.sys
  373. OriginalFilename: Clfs.Sys
  374. ProductVersion: 6.1.7600.16385
  375. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  376. FileDescription: Common Log File System Driver
  377. LegalCopyright: © Microsoft Corporation. All rights reserved.
  378. fffff880`00d7d000 fffff880`00db9000 vmbus (deferred)
  379. Mapped memory image file: c:\symbols\vmbus.sys\4CE79B893c000\vmbus.sys
  380. Image path: \SystemRoot\system32\drivers\vmbus.sys
  381. Image name: vmbus.sys
  382. Timestamp: Sat Nov 20 10:57:29 2010 (4CE79B89)
  383. CheckSum: 0003F6CF
  384. ImageSize: 0003C000
  385. File version: 6.1.7601.17514
  386. Product version: 6.1.7601.17514
  387. File flags: 0 (Mask 3F)
  388. File OS: 40004 NT Win32
  389. File type: 3.7 Driver
  390. File date: 00000000.00000000
  391. Translations: 0409.04b0
  392. CompanyName: Microsoft Corporation
  393. ProductName: Microsoft® Windows® Operating System
  394. InternalName: vmbus.sys
  395. OriginalFilename: vmbus.sys
  396. ProductVersion: 6.1.7601.17514
  397. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  398. FileDescription: Virtual Machine Bus
  399. LegalCopyright: © Microsoft Corporation. All rights reserved.
  400. fffff880`00db9000 fffff880`00dcd000 winhv (deferred)
  401. Mapped memory image file: c:\symbols\winhv.sys\4CE792C214000\winhv.sys
  402. Image path: \SystemRoot\system32\drivers\winhv.sys
  403. Image name: winhv.sys
  404. Timestamp: Sat Nov 20 10:20:02 2010 (4CE792C2)
  405. CheckSum: 00017BFE
  406. ImageSize: 00014000
  407. File version: 6.1.7601.17514
  408. Product version: 6.1.7601.17514
  409. File flags: 0 (Mask 3F)
  410. File OS: 40004 NT Win32
  411. File type: 3.7 Driver
  412. File date: 00000000.00000000
  413. Translations: 0409.04b0
  414. CompanyName: Microsoft Corporation
  415. ProductName: Microsoft® Windows® Operating System
  416. InternalName: WinHv.sys
  417. OriginalFilename: WinHv.sys
  418. ProductVersion: 6.1.7601.17514
  419. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  420. FileDescription: Windows Hypervisor Interface Driver
  421. LegalCopyright: © Microsoft Corporation. All rights reserved.
  422. fffff880`00dcd000 fffff880`00dd6000 atapi (deferred)
  423. Mapped memory image file: c:\symbols\atapi.sys\4A5BC1139000\atapi.sys
  424. Image path: \SystemRoot\system32\drivers\atapi.sys
  425. Image name: atapi.sys
  426. Timestamp: Tue Jul 14 01:19:47 2009 (4A5BC113)
  427. CheckSum: 000065BB
  428. ImageSize: 00009000
  429. File version: 6.1.7600.16385
  430. Product version: 6.1.7600.16385
  431. File flags: 0 (Mask 3F)
  432. File OS: 40004 NT Win32
  433. File type: 3.7 Driver
  434. File date: 00000000.00000000
  435. Translations: 0409.04b0
  436. CompanyName: Microsoft Corporation
  437. ProductName: Microsoft® Windows® Operating System
  438. InternalName: atapi.sys
  439. OriginalFilename: atapi.sys
  440. ProductVersion: 6.1.7600.16385
  441. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  442. FileDescription: ATAPI IDE Miniport Driver
  443. LegalCopyright: © Microsoft Corporation. All rights reserved.
  444. fffff880`00dd6000 fffff880`00e00000 ataport (deferred)
  445. Mapped memory image file: c:\symbols\ataport.SYS\4CE792932a000\ataport.SYS
  446. Image path: \SystemRoot\system32\drivers\ataport.SYS
  447. Image name: ataport.SYS
  448. Timestamp: Sat Nov 20 10:19:15 2010 (4CE79293)
  449. CheckSum: 000287EF
  450. ImageSize: 0002A000
  451. File version: 6.1.7601.17514
  452. Product version: 6.1.7601.17514
  453. File flags: 0 (Mask 3F)
  454. File OS: 40004 NT Win32
  455. File type: 3.7 Driver
  456. File date: 00000000.00000000
  457. Translations: 0000.04b0
  458. CompanyName: Microsoft Corporation
  459. ProductName: Microsoft® Windows® Operating System
  460. InternalName: ataport.sys
  461. OriginalFilename: ataport.sys
  462. ProductVersion: 6.1.7601.17514
  463. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  464. FileDescription: ATAPI Driver Extension
  465. LegalCopyright: © Microsoft Corporation. All rights reserved.
  466. fffff880`00e00000 fffff880`00e5c000 volmgrx (deferred)
  467. Mapped memory image file: c:\symbols\volmgrx.sys\4CE792EB5c000\volmgrx.sys
  468. Image path: \SystemRoot\System32\drivers\volmgrx.sys
  469. Image name: volmgrx.sys
  470. Timestamp: Sat Nov 20 10:20:43 2010 (4CE792EB)
  471. CheckSum: 00065F6D
  472. ImageSize: 0005C000
  473. File version: 6.1.7601.17514
  474. Product version: 6.1.7601.17514
  475. File flags: 0 (Mask 3F)
  476. File OS: 40004 NT Win32
  477. File type: 3.7 Driver
  478. File date: 00000000.00000000
  479. Translations: 0409.04b0
  480. CompanyName: Microsoft Corporation
  481. ProductName: Microsoft® Windows® Operating System
  482. InternalName: volmgrx.sys
  483. OriginalFilename: volmgrx.sys
  484. ProductVersion: 6.1.7601.17514
  485. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  486. FileDescription: Volume Manager Extension Driver
  487. LegalCopyright: © Microsoft Corporation. All rights reserved.
  488. fffff880`00e62000 fffff880`00f06000 Wdf01000 (deferred)
  489. Mapped memory image file: c:\symbols\Wdf01000.sys\4A5BC19Fa4000\Wdf01000.sys
  490. Image path: \SystemRoot\system32\drivers\Wdf01000.sys
  491. Image name: Wdf01000.sys
  492. Timestamp: Tue Jul 14 01:22:07 2009 (4A5BC19F)
  493. CheckSum: 000A2E74
  494. ImageSize: 000A4000
  495. File version: 1.9.7600.16385
  496. Product version: 1.9.7600.16385
  497. File flags: 0 (Mask 3F)
  498. File OS: 40004 NT Win32
  499. File type: 3.7 Driver
  500. File date: 00000000.00000000
  501. Translations: 0409.04b0
  502. CompanyName: Microsoft Corporation
  503. ProductName: Microsoft® Windows® Operating System
  504. InternalName: wdf01000.sys
  505. OriginalFilename: wdf01000.sys
  506. ProductVersion: 1.9.7600.16385
  507. FileVersion: 1.9.7600.16385 (win7_rtm.090713-1255)
  508. FileDescription: Kernel Mode Driver Framework Runtime
  509. LegalCopyright: © Microsoft Corporation. All rights reserved.
  510. fffff880`00f06000 fffff880`00f15000 WDFLDR (deferred)
  511. Mapped memory image file: c:\symbols\WDFLDR.SYS\4A5BC11Af000\WDFLDR.SYS
  512. Image path: \SystemRoot\system32\drivers\WDFLDR.SYS
  513. Image name: WDFLDR.SYS
  514. Timestamp: Tue Jul 14 01:19:54 2009 (4A5BC11A)
  515. CheckSum: 00011010
  516. ImageSize: 0000F000
  517. File version: 1.9.7600.16385
  518. Product version: 1.9.7600.16385
  519. File flags: 0 (Mask 3F)
  520. File OS: 40004 NT Win32
  521. File type: 3.7 Driver
  522. File date: 00000000.00000000
  523. Translations: 0000.04b0
  524. CompanyName: Microsoft Corporation
  525. ProductName: Microsoft® Windows® Operating System
  526. InternalName: wdfldr.sys
  527. OriginalFilename: wdfldr.sys
  528. ProductVersion: 1.9.7600.16385
  529. FileVersion: 1.9.7600.16385 (win7_rtm.090713-1255)
  530. FileDescription: Kernel Mode Driver Framework Loader
  531. LegalCopyright: © Microsoft Corporation. All rights reserved.
  532. fffff880`00f15000 fffff880`00f6c000 ACPI (deferred)
  533. Mapped memory image file: c:\symbols\ACPI.sys\4CE7929457000\ACPI.sys
  534. Image path: \SystemRoot\system32\drivers\ACPI.sys
  535. Image name: ACPI.sys
  536. Timestamp: Sat Nov 20 10:19:16 2010 (4CE79294)
  537. CheckSum: 0005ACF6
  538. ImageSize: 00057000
  539. File version: 6.1.7601.17514
  540. Product version: 6.1.7601.17514
  541. File flags: 0 (Mask 3F)
  542. File OS: 40004 NT Win32
  543. File type: 3.7 Driver
  544. File date: 00000000.00000000
  545. Translations: 0409.04b0
  546. CompanyName: Microsoft Corporation
  547. ProductName: Microsoft® Windows® Operating System
  548. InternalName: ACPI.sys
  549. OriginalFilename: ACPI.sys
  550. ProductVersion: 6.1.7601.17514
  551. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  552. FileDescription: ACPI Driver for NT
  553. LegalCopyright: © Microsoft Corporation. All rights reserved.
  554. fffff880`00f6c000 fffff880`00f75000 WMILIB (deferred)
  555. Mapped memory image file: c:\symbols\WMILIB.SYS\4A5BC1179000\WMILIB.SYS
  556. Image path: \SystemRoot\system32\drivers\WMILIB.SYS
  557. Image name: WMILIB.SYS
  558. Timestamp: Tue Jul 14 01:19:51 2009 (4A5BC117)
  559. CheckSum: 00005007
  560. ImageSize: 00009000
  561. File version: 6.1.7600.16385
  562. Product version: 6.1.7600.16385
  563. File flags: 0 (Mask 3F)
  564. File OS: 40004 NT Win32
  565. File type: 3.7 Driver
  566. File date: 00000000.00000000
  567. Translations: 0409.04b0
  568. CompanyName: Microsoft Corporation
  569. ProductName: Microsoft® Windows® Operating System
  570. InternalName: WmiLib.sys
  571. OriginalFilename: WmiLib.sys
  572. ProductVersion: 6.1.7600.16385
  573. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  574. FileDescription: WMILIB WMI support library Dll
  575. LegalCopyright: © Microsoft Corporation. All rights reserved.
  576. fffff880`00f75000 fffff880`00f7f000 msisadrv (deferred)
  577. Mapped memory image file: c:\symbols\msisadrv.sys\4A5BC0FEa000\msisadrv.sys
  578. Image path: \SystemRoot\system32\drivers\msisadrv.sys
  579. Image name: msisadrv.sys
  580. Timestamp: Tue Jul 14 01:19:26 2009 (4A5BC0FE)
  581. CheckSum: 0001320D
  582. ImageSize: 0000A000
  583. File version: 6.1.7600.16385
  584. Product version: 6.1.7600.16385
  585. File flags: 0 (Mask 3F)
  586. File OS: 40004 NT Win32
  587. File type: 3.7 Driver
  588. File date: 00000000.00000000
  589. Translations: 0409.04b0
  590. CompanyName: Microsoft Corporation
  591. ProductName: Microsoft® Windows® Operating System
  592. InternalName: msisadrv.sys
  593. OriginalFilename: msisadrv.sys
  594. ProductVersion: 6.1.7600.16385
  595. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  596. FileDescription: ISA Driver
  597. LegalCopyright: © Microsoft Corporation. All rights reserved.
  598. fffff880`00f7f000 fffff880`00fb2000 pci (deferred)
  599. Mapped memory image file: c:\symbols\pci.sys\4CE7928F33000\pci.sys
  600. Image path: \SystemRoot\system32\drivers\pci.sys
  601. Image name: pci.sys
  602. Timestamp: Sat Nov 20 10:19:11 2010 (4CE7928F)
  603. CheckSum: 00033150
  604. ImageSize: 00033000
  605. File version: 6.1.7601.17514
  606. Product version: 6.1.7601.17514
  607. File flags: 0 (Mask 3F)
  608. File OS: 40004 NT Win32
  609. File type: 2.0 Dll
  610. File date: 00000000.00000000
  611. Translations: 0409.04b0
  612. CompanyName: Microsoft Corporation
  613. ProductName: Microsoft® Windows® Operating System
  614. InternalName: pci.sys
  615. OriginalFilename: pci.sys
  616. ProductVersion: 6.1.7601.17514
  617. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  618. FileDescription: NT Plug and Play PCI Enumerator
  619. LegalCopyright: © Microsoft Corporation. All rights reserved.
  620. fffff880`00fb2000 fffff880`00fbf000 vdrvroot (deferred)
  621. Mapped memory image file: c:\symbols\vdrvroot.sys\4A5BCADBd000\vdrvroot.sys
  622. Image path: \SystemRoot\system32\drivers\vdrvroot.sys
  623. Image name: vdrvroot.sys
  624. Timestamp: Tue Jul 14 02:01:31 2009 (4A5BCADB)
  625. CheckSum: 0000C04B
  626. ImageSize: 0000D000
  627. File version: 6.1.7600.16385
  628. Product version: 6.1.7600.16385
  629. File flags: 0 (Mask 3F)
  630. File OS: 40004 NT Win32
  631. File type: 2.0 Dll
  632. File date: 00000000.00000000
  633. Translations: 0409.04b0
  634. CompanyName: Microsoft Corporation
  635. ProductName: Microsoft® Windows® Operating System
  636. InternalName: vdrvroot.sys
  637. OriginalFilename: vdrvroot.sys
  638. ProductVersion: 6.1.7600.16385
  639. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  640. FileDescription: Virtual Drive Root Enumerator
  641. LegalCopyright: © Microsoft Corporation. All rights reserved.
  642. fffff880`00fbf000 fffff880`00fd4000 partmgr (deferred)
  643. Mapped memory image file: c:\symbols\partmgr.sys\4CE792C015000\partmgr.sys
  644. Image path: \SystemRoot\System32\drivers\partmgr.sys
  645. Image name: partmgr.sys
  646. Timestamp: Sat Nov 20 10:20:00 2010 (4CE792C0)
  647. CheckSum: 000209B5
  648. ImageSize: 00015000
  649. File version: 6.1.7601.17514
  650. Product version: 6.1.7601.17514
  651. File flags: 0 (Mask 3F)
  652. File OS: 40004 NT Win32
  653. File type: 3.7 Driver
  654. File date: 00000000.00000000
  655. Translations: 0000.04b0
  656. CompanyName: Microsoft Corporation
  657. ProductName: Microsoft® Windows® Operating System
  658. InternalName: partmgr.sys
  659. OriginalFilename: partmgr.sys
  660. ProductVersion: 6.1.7601.17514
  661. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  662. FileDescription: Partition Management Driver
  663. LegalCopyright: © Microsoft Corporation. All rights reserved.
  664. fffff880`00fd4000 fffff880`00fe9000 volmgr (deferred)
  665. Mapped memory image file: c:\symbols\volmgr.sys\4CE792A015000\volmgr.sys
  666. Image path: \SystemRoot\system32\drivers\volmgr.sys
  667. Image name: volmgr.sys
  668. Timestamp: Sat Nov 20 10:19:28 2010 (4CE792A0)
  669. CheckSum: 00019F72
  670. ImageSize: 00015000
  671. File version: 6.1.7601.17514
  672. Product version: 6.1.7601.17514
  673. File flags: 0 (Mask 3F)
  674. File OS: 40004 NT Win32
  675. File type: 3.7 Driver
  676. File date: 00000000.00000000
  677. Translations: 0409.04b0
  678. CompanyName: Microsoft Corporation
  679. ProductName: Microsoft® Windows® Operating System
  680. InternalName: volmgr.sys
  681. OriginalFilename: volmgr.sys
  682. ProductVersion: 6.1.7601.17514
  683. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  684. FileDescription: Volume Manager Driver
  685. LegalCopyright: © Microsoft Corporation. All rights reserved.
  686. fffff880`00fe9000 fffff880`00ff0000 pciide (deferred)
  687. Mapped memory image file: c:\symbols\pciide.sys\4A5BC1157000\pciide.sys
  688. Image path: \SystemRoot\system32\drivers\pciide.sys
  689. Image name: pciide.sys
  690. Timestamp: Tue Jul 14 01:19:49 2009 (4A5BC115)
  691. CheckSum: 000068CB
  692. ImageSize: 00007000
  693. File version: 6.1.7600.16385
  694. Product version: 6.1.7600.16385
  695. File flags: 0 (Mask 3F)
  696. File OS: 40004 NT Win32
  697. File type: 3.7 Driver
  698. File date: 00000000.00000000
  699. Translations: 0409.04b0
  700. CompanyName: Microsoft Corporation
  701. ProductName: Microsoft® Windows® Operating System
  702. InternalName: pciide.sys
  703. OriginalFilename: pciide.sys
  704. ProductVersion: 6.1.7600.16385
  705. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  706. FileDescription: Generic PCI IDE Bus Driver
  707. LegalCopyright: © Microsoft Corporation. All rights reserved.
  708. fffff880`00ff0000 fffff880`01000000 PCIIDEX (deferred)
  709. Mapped memory image file: c:\symbols\PCIIDEX.SYS\4A5BC11410000\PCIIDEX.SYS
  710. Image path: \SystemRoot\system32\drivers\PCIIDEX.SYS
  711. Image name: PCIIDEX.SYS
  712. Timestamp: Tue Jul 14 01:19:48 2009 (4A5BC114)
  713. CheckSum: 00019CC5
  714. ImageSize: 00010000
  715. File version: 6.1.7600.16385
  716. Product version: 6.1.7600.16385
  717. File flags: 0 (Mask 3F)
  718. File OS: 40004 NT Win32
  719. File type: 3.7 Driver
  720. File date: 00000000.00000000
  721. Translations: 0000.04b0
  722. CompanyName: Microsoft Corporation
  723. ProductName: Microsoft® Windows® Operating System
  724. InternalName: pciidex.sys
  725. OriginalFilename: pciidex.sys
  726. ProductVersion: 6.1.7600.16385
  727. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  728. FileDescription: PCI IDE Bus Driver Extension
  729. LegalCopyright: © Microsoft Corporation. All rights reserved.
  730. fffff880`01000000 fffff880`01014000 fileinfo (deferred)
  731. Mapped memory image file: c:\symbols\fileinfo.sys\4A5BC48114000\fileinfo.sys
  732. Image path: \SystemRoot\system32\drivers\fileinfo.sys
  733. Image name: fileinfo.sys
  734. Timestamp: Tue Jul 14 01:34:25 2009 (4A5BC481)
  735. CheckSum: 00015644
  736. ImageSize: 00014000
  737. File version: 6.1.7600.16385
  738. Product version: 6.1.7600.16385
  739. File flags: 0 (Mask 3F)
  740. File OS: 40004 NT Win32
  741. File type: 3.7 Driver
  742. File date: 00000000.00000000
  743. Translations: 0409.04b0
  744. CompanyName: Microsoft Corporation
  745. ProductName: Microsoft® Windows® Operating System
  746. InternalName: FileInfo.sys
  747. OriginalFilename: FileInfo.sys
  748. ProductVersion: 6.1.7600.16385
  749. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  750. FileDescription: FileInfo Filter Driver
  751. LegalCopyright: © Microsoft Corporation. All rights reserved.
  752. fffff880`01014000 fffff880`01072000 msrpc (deferred)
  753. Mapped memory image file: c:\symbols\msrpc.sys\4CE793345e000\msrpc.sys
  754. Image path: \SystemRoot\System32\Drivers\msrpc.sys
  755. Image name: msrpc.sys
  756. Timestamp: Sat Nov 20 10:21:56 2010 (4CE79334)
  757. CheckSum: 0005E9E7
  758. ImageSize: 0005E000
  759. File version: 6.1.7601.17514
  760. Product version: 6.1.7601.17514
  761. File flags: 0 (Mask 3F)
  762. File OS: 40004 NT Win32
  763. File type: 3.7 Driver
  764. File date: 00000000.00000000
  765. Translations: 0409.04b0
  766. CompanyName: Microsoft Corporation
  767. ProductName: Microsoft® Windows® Operating System
  768. InternalName: krpcdd.sys
  769. OriginalFilename: krpcdd.sys
  770. ProductVersion: 6.1.7601.17514
  771. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  772. FileDescription: Kernel Remote Procedure Call Provider
  773. LegalCopyright: © Microsoft Corporation. All rights reserved.
  774. fffff880`01072000 fffff880`01084000 umbus (deferred)
  775. Mapped memory image file: c:\symbols\umbus.sys\4CE7A69512000\umbus.sys
  776. Image path: \SystemRoot\system32\drivers\umbus.sys
  777. Image name: umbus.sys
  778. Timestamp: Sat Nov 20 11:44:37 2010 (4CE7A695)
  779. CheckSum: 0001AF58
  780. ImageSize: 00012000
  781. File version: 6.1.7601.17514
  782. Product version: 6.1.7601.17514
  783. File flags: 0 (Mask 3F)
  784. File OS: 40004 NT Win32
  785. File type: 2.0 Dll
  786. File date: 00000000.00000000
  787. Translations: 0409.04b0
  788. CompanyName: Microsoft Corporation
  789. ProductName: Microsoft® Windows® Operating System
  790. InternalName: umbus.sys
  791. OriginalFilename: umbus.sys
  792. ProductVersion: 6.1.7601.17514
  793. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  794. FileDescription: User-Mode Bus Enumerator
  795. LegalCopyright: © Microsoft Corporation. All rights reserved.
  796. fffff880`01087000 fffff880`010ea000 storport (deferred)
  797. Mapped memory image file: c:\symbols\storport.sys\4D79A55F63000\storport.sys
  798. Image path: \SystemRoot\system32\DRIVERS\storport.sys
  799. Image name: storport.sys
  800. Timestamp: Fri Mar 11 05:30:23 2011 (4D79A55F)
  801. CheckSum: 000309FA
  802. ImageSize: 00063000
  803. File version: 6.1.7601.17577
  804. Product version: 6.1.7601.17577
  805. File flags: 0 (Mask 3F)
  806. File OS: 40004 NT Win32
  807. File type: 3.7 Driver
  808. File date: 00000000.00000000
  809. Translations: 0000.04b0
  810. CompanyName: Microsoft Corporation
  811. ProductName: Microsoft® Windows® Operating System
  812. InternalName: storport.sys
  813. OriginalFilename: storport.sys
  814. ProductVersion: 6.1.7601.17577
  815. FileVersion: 6.1.7601.17577 (win7sp1_gdr.110310-1504)
  816. FileDescription: Microsoft Storage Port Driver
  817. LegalCopyright: © Microsoft Corporation. All rights reserved.
  818. fffff880`010ea000 fffff880`010f5000 amdxata (deferred)
  819. Image path: \SystemRoot\system32\DRIVERS\amdxata.sys
  820. Image name: amdxata.sys
  821. Timestamp: Wed Oct 07 22:13:10 2009 (4ACCF656)
  822. CheckSum: 00007A58
  823. ImageSize: 0000B000
  824. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  825. fffff880`010f5000 fffff880`01184000 mvs91xx (deferred)
  826. Image path: \SystemRoot\system32\DRIVERS\mvs91xx.sys
  827. Image name: mvs91xx.sys
  828. Timestamp: Fri Apr 08 12:50:11 2011 (4D9EE863)
  829. CheckSum: 0005B8D6
  830. ImageSize: 0008F000
  831. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  832. fffff880`01184000 fffff880`0118c000 mvxxmm (deferred)
  833. Image path: \SystemRoot\system32\DRIVERS\mvxxmm.sys
  834. Image name: mvxxmm.sys
  835. Timestamp: Fri Apr 08 12:49:53 2011 (4D9EE851)
  836. CheckSum: 0000CD58
  837. ImageSize: 00008000
  838. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  839. fffff880`0118c000 fffff880`011a3000 amd_sata (deferred)
  840. Image path: \SystemRoot\system32\DRIVERS\amd_sata.sys
  841. Image name: amd_sata.sys
  842. Timestamp: Fri Apr 15 20:37:14 2011 (4DA8905A)
  843. CheckSum: 0001BF2D
  844. ImageSize: 00017000
  845. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  846. fffff880`011a3000 fffff880`011b1000 amd_xata (deferred)
  847. Image path: \SystemRoot\system32\DRIVERS\amd_xata.sys
  848. Image name: amd_xata.sys
  849. Timestamp: Fri Apr 15 20:37:17 2011 (4DA8905D)
  850. CheckSum: 0000AE56
  851. ImageSize: 0000E000
  852. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  853. fffff880`011b1000 fffff880`011fd000 fltmgr (deferred)
  854. Mapped memory image file: c:\symbols\fltmgr.sys\4CE7929C4c000\fltmgr.sys
  855. Image path: \SystemRoot\system32\drivers\fltmgr.sys
  856. Image name: fltmgr.sys
  857. Timestamp: Sat Nov 20 10:19:24 2010 (4CE7929C)
  858. CheckSum: 0005452D
  859. ImageSize: 0004C000
  860. File version: 6.1.7601.17514
  861. Product version: 6.1.7601.17514
  862. File flags: 0 (Mask 3F)
  863. File OS: 40004 NT Win32
  864. File type: 3.7 Driver
  865. File date: 00000000.00000000
  866. Translations: 0409.04b0
  867. CompanyName: Microsoft Corporation
  868. ProductName: Microsoft® Windows® Operating System
  869. InternalName: fltMgr.sys
  870. OriginalFilename: fltMgr.sys
  871. ProductVersion: 6.1.7601.17514
  872. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  873. FileDescription: Microsoft Filesystem Filter Manager
  874. LegalCopyright: © Microsoft Corporation. All rights reserved.
  875. fffff880`01200000 fffff880`0121b000 ksecdd (deferred)
  876. Mapped memory image file: c:\symbols\ksecdd.sys\4CE7930B1b000\ksecdd.sys
  877. Image path: \SystemRoot\System32\Drivers\ksecdd.sys
  878. Image name: ksecdd.sys
  879. Timestamp: Sat Nov 20 10:21:15 2010 (4CE7930B)
  880. CheckSum: 0001E184
  881. ImageSize: 0001B000
  882. File version: 6.1.7601.17514
  883. Product version: 6.1.7601.17514
  884. File flags: 0 (Mask 3F)
  885. File OS: 40004 NT Win32
  886. File type: 3.7 Driver
  887. File date: 00000000.00000000
  888. Translations: 0409.04b0
  889. CompanyName: Microsoft Corporation
  890. ProductName: Microsoft® Windows® Operating System
  891. InternalName: ksecdd.sys
  892. OriginalFilename: ksecdd.sys
  893. ProductVersion: 6.1.7601.17514
  894. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  895. FileDescription: Kernel Security Support Provider Interface
  896. LegalCopyright: © Microsoft Corporation. All rights reserved.
  897. fffff880`0121b000 fffff880`01235000 rassstp (deferred)
  898. Mapped memory image file: c:\symbols\rassstp.sys\4A5BCCF11a000\rassstp.sys
  899. Image path: \SystemRoot\system32\DRIVERS\rassstp.sys
  900. Image name: rassstp.sys
  901. Timestamp: Tue Jul 14 02:10:25 2009 (4A5BCCF1)
  902. CheckSum: 0002274B
  903. ImageSize: 0001A000
  904. File version: 6.1.7600.16385
  905. Product version: 6.1.7600.16385
  906. File flags: 0 (Mask 3F)
  907. File OS: 40004 NT Win32
  908. File type: 3.6 Driver
  909. File date: 00000000.00000000
  910. Translations: 0409.04b0
  911. CompanyName: Microsoft Corporation
  912. ProductName: Microsoft® Windows® Operating System
  913. InternalName: rassstp.sys
  914. OriginalFilename: rassstp.sys
  915. ProductVersion: 6.1.7600.16385
  916. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  917. FileDescription: RAS SSTP Miniport Call Manager
  918. LegalCopyright: © Microsoft Corporation. All rights reserved.
  919. fffff880`01235000 fffff880`01249000 amdiox64 (deferred)
  920. Image path: \SystemRoot\system32\DRIVERS\amdiox64.sys
  921. Image name: amdiox64.sys
  922. Timestamp: Thu Feb 18 16:17:53 2010 (4B7D5A21)
  923. CheckSum: 00017588
  924. ImageSize: 00014000
  925. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  926. fffff880`01253000 fffff880`013f6000 Ntfs (deferred)
  927. Mapped memory image file: c:\symbols\Ntfs.sys\4D79997B1a3000\Ntfs.sys
  928. Image path: \SystemRoot\System32\Drivers\Ntfs.sys
  929. Image name: Ntfs.sys
  930. Timestamp: Fri Mar 11 04:39:39 2011 (4D79997B)
  931. CheckSum: 0019968A
  932. ImageSize: 001A3000
  933. File version: 6.1.7601.17577
  934. Product version: 6.1.7601.17577
  935. File flags: 0 (Mask 3F)
  936. File OS: 40004 NT Win32
  937. File type: 3.7 Driver
  938. File date: 00000000.00000000
  939. Translations: 0409.04b0
  940. CompanyName: Microsoft Corporation
  941. ProductName: Microsoft® Windows® Operating System
  942. InternalName: ntfs.sys
  943. OriginalFilename: ntfs.sys
  944. ProductVersion: 6.1.7601.17577
  945. FileVersion: 6.1.7601.17577 (win7sp1_gdr.110310-1504)
  946. FileDescription: NT File System Driver
  947. LegalCopyright: © Microsoft Corporation. All rights reserved.
  948. fffff880`01400000 fffff880`01489000 afd (deferred)
  949. Mapped memory image file: c:\symbols\afd.sys\4DB4DD9689000\afd.sys
  950. Image path: \SystemRoot\system32\drivers\afd.sys
  951. Image name: afd.sys
  952. Timestamp: Mon Apr 25 04:33:58 2011 (4DB4DD96)
  953. CheckSum: 00082518
  954. ImageSize: 00089000
  955. File version: 6.1.7601.17603
  956. Product version: 6.1.7601.17603
  957. File flags: 0 (Mask 3F)
  958. File OS: 40004 NT Win32
  959. File type: 3.7 Driver
  960. File date: 00000000.00000000
  961. Translations: 0409.04b0
  962. CompanyName: Microsoft Corporation
  963. ProductName: Microsoft® Windows® Operating System
  964. InternalName: afd.sys
  965. OriginalFilename: afd.sys
  966. ProductVersion: 6.1.7601.17603
  967. FileVersion: 6.1.7601.17603 (win7sp1_gdr.110424-1504)
  968. FileDescription: Ancillary Function Driver for WinSock
  969. LegalCopyright: © Microsoft Corporation. All rights reserved.
  970. fffff880`01489000 fffff880`014b8000 ndiswan (deferred)
  971. Mapped memory image file: c:\symbols\ndiswan.sys\4CE7A8702f000\ndiswan.sys
  972. Image path: \SystemRoot\system32\DRIVERS\ndiswan.sys
  973. Image name: ndiswan.sys
  974. Timestamp: Sat Nov 20 11:52:32 2010 (4CE7A870)
  975. CheckSum: 0002BB81
  976. ImageSize: 0002F000
  977. File version: 6.1.7601.17514
  978. Product version: 6.1.7601.17514
  979. File flags: 0 (Mask 3F)
  980. File OS: 40004 NT Win32
  981. File type: 3.6 Driver
  982. File date: 00000000.00000000
  983. Translations: 0409.04b0
  984. CompanyName: Microsoft Corporation
  985. ProductName: Microsoft® Windows® Operating System
  986. InternalName: NDISWAN.SYS
  987. OriginalFilename: NDISWAN.SYS
  988. ProductVersion: 6.1.7601.17514
  989. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  990. FileDescription: MS PPP Framing Driver (Strong Encryption)
  991. LegalCopyright: © Microsoft Corporation. All rights reserved.
  992. fffff880`014c2000 fffff880`01534000 cng (deferred)
  993. Mapped memory image file: c:\symbols\cng.sys\4CE79E2D72000\cng.sys
  994. Image path: \SystemRoot\System32\Drivers\cng.sys
  995. Image name: cng.sys
  996. Timestamp: Sat Nov 20 11:08:45 2010 (4CE79E2D)
  997. CheckSum: 00078106
  998. ImageSize: 00072000
  999. File version: 6.1.7601.17514
  1000. Product version: 6.1.7601.17514
  1001. File flags: 0 (Mask 3F)
  1002. File OS: 40004 NT Win32
  1003. File type: 3.7 Driver
  1004. File date: 00000000.00000000
  1005. Translations: 0409.04b0
  1006. CompanyName: Microsoft Corporation
  1007. ProductName: Microsoft® Windows® Operating System
  1008. InternalName: cng.sys
  1009. OriginalFilename: cng.sys
  1010. ProductVersion: 6.1.7601.17514
  1011. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  1012. FileDescription: Kernel Cryptography, Next Generation
  1013. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1014. fffff880`01534000 fffff880`01545000 pcw (deferred)
  1015. Mapped memory image file: c:\symbols\pcw.sys\4A5BC0FF11000\pcw.sys
  1016. Image path: \SystemRoot\System32\drivers\pcw.sys
  1017. Image name: pcw.sys
  1018. Timestamp: Tue Jul 14 01:19:27 2009 (4A5BC0FF)
  1019. CheckSum: 00014B5E
  1020. ImageSize: 00011000
  1021. File version: 6.1.7600.16385
  1022. Product version: 6.1.7600.16385
  1023. File flags: 0 (Mask 3F)
  1024. File OS: 40004 NT Win32
  1025. File type: 3.8 Driver
  1026. File date: 00000000.00000000
  1027. Translations: 0409.04b0
  1028. CompanyName: Microsoft Corporation
  1029. ProductName: Microsoft® Windows® Operating System
  1030. InternalName: pcw.sys
  1031. OriginalFilename: pcw.sys
  1032. ProductVersion: 6.1.7600.16385
  1033. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  1034. FileDescription: Performance Counters for Windows Driver
  1035. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1036. fffff880`01545000 fffff880`0154f000 Fs_Rec (deferred)
  1037. Mapped memory image file: c:\symbols\Fs_Rec.sys\4A5BC111a000\Fs_Rec.sys
  1038. Image path: \SystemRoot\System32\Drivers\Fs_Rec.sys
  1039. Image name: Fs_Rec.sys
  1040. Timestamp: Tue Jul 14 01:19:45 2009 (4A5BC111)
  1041. CheckSum: 0001398A
  1042. ImageSize: 0000A000
  1043. File version: 6.1.7600.16385
  1044. Product version: 6.1.7600.16385
  1045. File flags: 0 (Mask 3F)
  1046. File OS: 40004 NT Win32
  1047. File type: 3.7 Driver
  1048. File date: 00000000.00000000
  1049. Translations: 0409.04b0
  1050. CompanyName: Microsoft Corporation
  1051. ProductName: Microsoft® Windows® Operating System
  1052. InternalName: fs_rec.sys
  1053. OriginalFilename: fs_rec.sys
  1054. ProductVersion: 6.1.7600.16385
  1055. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  1056. FileDescription: File System Recognizer Driver
  1057. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1058. fffff880`0154f000 fffff880`01574000 VIDEOPRT (deferred)
  1059. Mapped memory image file: c:\symbols\VIDEOPRT.SYS\4A5BC58B25000\VIDEOPRT.SYS
  1060. Image path: \SystemRoot\System32\drivers\VIDEOPRT.SYS
  1061. Image name: VIDEOPRT.SYS
  1062. Timestamp: Tue Jul 14 01:38:51 2009 (4A5BC58B)
  1063. CheckSum: 00028FC7
  1064. ImageSize: 00025000
  1065. File version: 6.1.7600.16385
  1066. Product version: 6.1.7600.16385
  1067. File flags: 0 (Mask 3F)
  1068. File OS: 40004 NT Win32
  1069. File type: 3.4 Driver
  1070. File date: 00000000.00000000
  1071. Translations: 0000.04b0
  1072. CompanyName: Microsoft Corporation
  1073. ProductName: Microsoft® Windows® Operating System
  1074. InternalName: videoprt.sys
  1075. OriginalFilename: videoprt.sys
  1076. ProductVersion: 6.1.7600.16385
  1077. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  1078. FileDescription: Video Port Driver
  1079. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1080. fffff880`01574000 fffff880`0157d000 rdprefmp (deferred)
  1081. Mapped memory image file: c:\symbols\rdprefmp.sys\4A5BCE639000\rdprefmp.sys
  1082. Image path: \SystemRoot\system32\drivers\rdprefmp.sys
  1083. Image name: rdprefmp.sys
  1084. Timestamp: Tue Jul 14 02:16:35 2009 (4A5BCE63)
  1085. CheckSum: 0000ABCD
  1086. ImageSize: 00009000
  1087. File version: 6.1.7600.16385
  1088. Product version: 6.1.7600.16385
  1089. File flags: 0 (Mask 3F)
  1090. File OS: 40004 NT Win32
  1091. File type: 3.4 Driver
  1092. File date: 00000000.00000000
  1093. Translations: 0409.04b0
  1094. CompanyName: Microsoft Corporation
  1095. ProductName: Microsoft® Windows® Operating System
  1096. InternalName: RDPREFMP.SYS
  1097. OriginalFilename: RDPREFMP.SYS
  1098. ProductVersion: 6.1.7600.16385
  1099. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  1100. FileDescription: RDP Reflector Driver Miniport
  1101. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1102. fffff880`0157d000 fffff880`01588000 Msfs (deferred)
  1103. Mapped memory image file: c:\symbols\Msfs.SYS\4A5BC113b000\Msfs.SYS
  1104. Image path: \SystemRoot\System32\Drivers\Msfs.SYS
  1105. Image name: Msfs.SYS
  1106. Timestamp: Tue Jul 14 01:19:47 2009 (4A5BC113)
  1107. CheckSum: 00007126
  1108. ImageSize: 0000B000
  1109. File version: 6.1.7600.16385
  1110. Product version: 6.1.7600.16385
  1111. File flags: 0 (Mask 3F)
  1112. File OS: 40004 NT Win32
  1113. File type: 3.7 Driver
  1114. File date: 00000000.00000000
  1115. Translations: 0409.04b0
  1116. CompanyName: Microsoft Corporation
  1117. ProductName: Microsoft® Windows® Operating System
  1118. InternalName: MSFS.SYS
  1119. OriginalFilename: MSFS.SYS
  1120. ProductVersion: 6.1.7600.16385
  1121. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  1122. FileDescription: Mailslot driver
  1123. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1124. fffff880`01588000 fffff880`01599000 Npfs (deferred)
  1125. Mapped memory image file: c:\symbols\Npfs.SYS\4A5BC11411000\Npfs.SYS
  1126. Image path: \SystemRoot\System32\Drivers\Npfs.SYS
  1127. Image name: Npfs.SYS
  1128. Timestamp: Tue Jul 14 01:19:48 2009 (4A5BC114)
  1129. CheckSum: 00019AED
  1130. ImageSize: 00011000
  1131. File version: 6.1.7600.16385
  1132. Product version: 6.1.7600.16385
  1133. File flags: 0 (Mask 3F)
  1134. File OS: 40004 NT Win32
  1135. File type: 3.7 Driver
  1136. File date: 00000000.00000000
  1137. Translations: 0409.04b0
  1138. CompanyName: Microsoft Corporation
  1139. ProductName: Microsoft® Windows® Operating System
  1140. InternalName: npfs.sys
  1141. OriginalFilename: npfs.sys
  1142. ProductVersion: 6.1.7600.16385
  1143. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  1144. FileDescription: NPFS Driver
  1145. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1146. fffff880`01599000 fffff880`015bb000 tdx (deferred)
  1147. Mapped memory image file: c:\symbols\tdx.sys\4CE7933222000\tdx.sys
  1148. Image path: \SystemRoot\system32\DRIVERS\tdx.sys
  1149. Image name: tdx.sys
  1150. Timestamp: Sat Nov 20 10:21:54 2010 (4CE79332)
  1151. CheckSum: 000288B2
  1152. ImageSize: 00022000
  1153. File version: 6.1.7601.17514
  1154. Product version: 6.1.7601.17514
  1155. File flags: 0 (Mask 3F)
  1156. File OS: 40004 NT Win32
  1157. File type: 3.6 Driver
  1158. File date: 00000000.00000000
  1159. Translations: 0409.04b0
  1160. CompanyName: Microsoft Corporation
  1161. ProductName: Microsoft® Windows® Operating System
  1162. InternalName: tdx.sys
  1163. OriginalFilename: tdx.sys
  1164. ProductVersion: 6.1.7601.17514
  1165. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  1166. FileDescription: TDI Translation Driver
  1167. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1168. fffff880`015bb000 fffff880`015c8000 TDI (deferred)
  1169. Mapped memory image file: c:\symbols\TDI.SYS\4CE7933Ed000\TDI.SYS
  1170. Image path: \SystemRoot\system32\DRIVERS\TDI.SYS
  1171. Image name: TDI.SYS
  1172. Timestamp: Sat Nov 20 10:22:06 2010 (4CE7933E)
  1173. CheckSum: 00016255
  1174. ImageSize: 0000D000
  1175. File version: 6.1.7601.17514
  1176. Product version: 6.1.7601.17514
  1177. File flags: 0 (Mask 3F)
  1178. File OS: 40004 NT Win32
  1179. File type: 3.6 Driver
  1180. File date: 00000000.00000000
  1181. Translations: 0409.04b0
  1182. CompanyName: Microsoft Corporation
  1183. ProductName: Microsoft® Windows® Operating System
  1184. InternalName: tdi.sys
  1185. OriginalFilename: tdi.sys
  1186. ProductVersion: 6.1.7601.17514
  1187. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  1188. FileDescription: TDI Wrapper
  1189. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1190. fffff880`015c8000 fffff880`015e9000 raspptp (deferred)
  1191. Mapped memory image file: c:\symbols\raspptp.sys\4CE7A86F21000\raspptp.sys
  1192. Image path: \SystemRoot\system32\DRIVERS\raspptp.sys
  1193. Image name: raspptp.sys
  1194. Timestamp: Sat Nov 20 11:52:31 2010 (4CE7A86F)
  1195. CheckSum: 000251CB
  1196. ImageSize: 00021000
  1197. File version: 6.1.7601.17514
  1198. Product version: 6.1.7601.17514
  1199. File flags: 0 (Mask 3F)
  1200. File OS: 40004 NT Win32
  1201. File type: 3.6 Driver
  1202. File date: 00000000.00000000
  1203. Translations: 0409.04b0
  1204. CompanyName: Microsoft Corporation
  1205. ProductName: Microsoft® Windows® Operating System
  1206. InternalName: RASPPTP.SYS
  1207. OriginalFilename: RASPPTP.SYS
  1208. ProductVersion: 6.1.7601.17514
  1209. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  1210. FileDescription: Peer-to-Peer Tunneling Protocol
  1211. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1212. fffff880`015e9000 fffff880`015f8000 mouclass (deferred)
  1213. Mapped memory image file: c:\symbols\mouclass.sys\4A5BC116f000\mouclass.sys
  1214. Image path: \SystemRoot\system32\drivers\mouclass.sys
  1215. Image name: mouclass.sys
  1216. Timestamp: Tue Jul 14 01:19:50 2009 (4A5BC116)
  1217. CheckSum: 0000E5DE
  1218. ImageSize: 0000F000
  1219. File version: 6.1.7600.16385
  1220. Product version: 6.1.7600.16385
  1221. File flags: 0 (Mask 3F)
  1222. File OS: 40004 NT Win32
  1223. File type: 3.7 Driver
  1224. File date: 00000000.00000000
  1225. Translations: 0409.04b0
  1226. CompanyName: Microsoft Corporation
  1227. ProductName: Microsoft® Windows® Operating System
  1228. InternalName: mouclass.sys
  1229. OriginalFilename: mouclass.sys
  1230. ProductVersion: 6.1.7600.16385
  1231. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  1232. FileDescription: Mouse Class Driver
  1233. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1234. fffff880`01600000 fffff880`01610000 watchdog (deferred)
  1235. Mapped memory image file: c:\symbols\watchdog.sys\4A5BC53F10000\watchdog.sys
  1236. Image path: \SystemRoot\System32\drivers\watchdog.sys
  1237. Image name: watchdog.sys
  1238. Timestamp: Tue Jul 14 01:37:35 2009 (4A5BC53F)
  1239. CheckSum: 00019CBE
  1240. ImageSize: 00010000
  1241. File version: 6.1.7600.16385
  1242. Product version: 6.1.7600.16385
  1243. File flags: 0 (Mask 3F)
  1244. File OS: 40004 NT Win32
  1245. File type: 2.0 Dll
  1246. File date: 00000000.00000000
  1247. Translations: 0000.04b0
  1248. CompanyName: Microsoft Corporation
  1249. ProductName: Microsoft® Windows® Operating System
  1250. InternalName: watchdog.sys
  1251. OriginalFilename: watchdog.sys
  1252. ProductVersion: 6.1.7600.16385
  1253. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  1254. FileDescription: Watchdog Driver
  1255. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1256. fffff880`01610000 fffff880`01619000 RDPCDD (deferred)
  1257. Mapped memory image file: c:\symbols\RDPCDD.sys\4A5BCE629000\RDPCDD.sys
  1258. Image path: \SystemRoot\System32\DRIVERS\RDPCDD.sys
  1259. Image name: RDPCDD.sys
  1260. Timestamp: Tue Jul 14 02:16:34 2009 (4A5BCE62)
  1261. CheckSum: 0000FFAC
  1262. ImageSize: 00009000
  1263. File version: 6.1.7600.16385
  1264. Product version: 6.1.7600.16385
  1265. File flags: 0 (Mask 3F)
  1266. File OS: 40004 NT Win32
  1267. File type: 3.4 Driver
  1268. File date: 00000000.00000000
  1269. Translations: 0409.04b0
  1270. CompanyName: Microsoft Corporation
  1271. ProductName: Microsoft® Windows® Operating System
  1272. InternalName: RDPCDD.SYS
  1273. OriginalFilename: RDPCDD.SYS
  1274. ProductVersion: 6.1.7600.16385
  1275. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  1276. FileDescription: RDP Miniport
  1277. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1278. fffff880`0161a000 fffff880`0170d000 ndis (pdb symbols) c:\symbols\ndis.pdb\65FCE9C9B4B7490BBA7BB3141A00ADA02\ndis.pdb
  1279. Loaded symbol image file: ndis.sys
  1280. Mapped memory image file: c:\symbols\ndis.sys\4CE79392f3000\ndis.sys
  1281. Image path: \SystemRoot\system32\drivers\ndis.sys
  1282. Image name: ndis.sys
  1283. Timestamp: Sat Nov 20 10:23:30 2010 (4CE79392)
  1284. CheckSum: 000E8AC1
  1285. ImageSize: 000F3000
  1286. File version: 6.1.7601.17514
  1287. Product version: 6.1.7601.17514
  1288. File flags: 0 (Mask 3F)
  1289. File OS: 40004 NT Win32
  1290. File type: 3.6 Driver
  1291. File date: 00000000.00000000
  1292. Translations: 0409.04b0
  1293. CompanyName: Microsoft Corporation
  1294. ProductName: Microsoft® Windows® Operating System
  1295. InternalName: NDIS.SYS
  1296. OriginalFilename: NDIS.SYS
  1297. ProductVersion: 6.1.7601.17514
  1298. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  1299. FileDescription: NDIS 6.20 driver
  1300. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1301. fffff880`0170d000 fffff880`0176d000 NETIO (pdb symbols) c:\symbols\netio.pdb\DD06DDC1DE2F426D85400E127C2DF49A2\netio.pdb
  1302. Loaded symbol image file: NETIO.SYS
  1303. Mapped memory image file: c:\symbols\NETIO.SYS\4CE7938160000\NETIO.SYS
  1304. Image path: \SystemRoot\system32\drivers\NETIO.SYS
  1305. Image name: NETIO.SYS
  1306. Timestamp: Sat Nov 20 10:23:13 2010 (4CE79381)
  1307. CheckSum: 00066D17
  1308. ImageSize: 00060000
  1309. File version: 6.1.7601.17514
  1310. Product version: 6.1.7601.17514
  1311. File flags: 0 (Mask 3F)
  1312. File OS: 40004 NT Win32
  1313. File type: 3.6 Driver
  1314. File date: 00000000.00000000
  1315. Translations: 0409.04b0
  1316. CompanyName: Microsoft Corporation
  1317. ProductName: Microsoft® Windows® Operating System
  1318. InternalName: netio.sys
  1319. OriginalFilename: netio.sys
  1320. ProductVersion: 6.1.7601.17514
  1321. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  1322. FileDescription: Network I/O Subsystem
  1323. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1324. fffff880`0176d000 fffff880`01798000 ksecpkg (deferred)
  1325. Mapped memory image file: c:\symbols\ksecpkg.sys\4CE79E9A2b000\ksecpkg.sys
  1326. Image path: \SystemRoot\System32\Drivers\ksecpkg.sys
  1327. Image name: ksecpkg.sys
  1328. Timestamp: Sat Nov 20 11:10:34 2010 (4CE79E9A)
  1329. CheckSum: 00030EDB
  1330. ImageSize: 0002B000
  1331. File version: 6.1.7601.17514
  1332. Product version: 6.1.7601.17514
  1333. File flags: 0 (Mask 3F)
  1334. File OS: 40004 NT Win32
  1335. File type: 3.7 Driver
  1336. File date: 00000000.00000000
  1337. Translations: 0409.04b0
  1338. CompanyName: Microsoft Corporation
  1339. ProductName: Microsoft® Windows® Operating System
  1340. InternalName: ksecpkg.sys
  1341. OriginalFilename: ksecpkg.sys
  1342. ProductVersion: 6.1.7601.17514
  1343. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  1344. FileDescription: Kernel Security Support Provider Interface Packages
  1345. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1346. fffff880`01798000 fffff880`017c2000 cdrom (deferred)
  1347. Mapped memory image file: c:\symbols\cdrom.sys\4CE792982a000\cdrom.sys
  1348. Image path: \SystemRoot\system32\drivers\cdrom.sys
  1349. Image name: cdrom.sys
  1350. Timestamp: Sat Nov 20 10:19:20 2010 (4CE79298)
  1351. CheckSum: 0002B742
  1352. ImageSize: 0002A000
  1353. File version: 6.1.7601.17514
  1354. Product version: 6.1.7601.17514
  1355. File flags: 0 (Mask 3F)
  1356. File OS: 40004 NT Win32
  1357. File type: 3.7 Driver
  1358. File date: 00000000.00000000
  1359. Translations: 0000.04b0
  1360. CompanyName: Microsoft Corporation
  1361. ProductName: Microsoft® Windows® Operating System
  1362. InternalName: cdrom.sys
  1363. OriginalFilename: cdrom.sys
  1364. ProductVersion: 6.1.7601.17514
  1365. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  1366. FileDescription: SCSI CD-ROM Driver
  1367. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1368. fffff880`017c2000 fffff880`017e9000 ehdrv (deferred)
  1369. Image path: \SystemRoot\system32\DRIVERS\ehdrv.sys
  1370. Image name: ehdrv.sys
  1371. Timestamp: Tue Jun 28 09:34:38 2011 (4E09840E)
  1372. CheckSum: 0002932F
  1373. ImageSize: 00027000
  1374. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  1375. fffff880`017e9000 fffff880`017f7000 vga (deferred)
  1376. Mapped memory image file: c:\symbols\vga.sys\4A5BC587e000\vga.sys
  1377. Image path: \SystemRoot\System32\drivers\vga.sys
  1378. Image name: vga.sys
  1379. Timestamp: Tue Jul 14 01:38:47 2009 (4A5BC587)
  1380. CheckSum: 00013E6F
  1381. ImageSize: 0000E000
  1382. File version: 6.1.7600.16385
  1383. Product version: 6.1.7600.16385
  1384. File flags: 0 (Mask 3F)
  1385. File OS: 40004 NT Win32
  1386. File type: 3.4 Driver
  1387. File date: 00000000.00000000
  1388. Translations: 0000.04b0
  1389. CompanyName: Microsoft Corporation
  1390. ProductName: Microsoft® Windows® Operating System
  1391. InternalName: vga.sys
  1392. OriginalFilename: vga.sys
  1393. ProductVersion: 6.1.7600.16385
  1394. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  1395. FileDescription: VGA/Super VGA Video Driver
  1396. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1397. fffff880`017f7000 fffff880`01800000 rdpencdd (deferred)
  1398. Mapped memory image file: c:\symbols\rdpencdd.sys\4A5BCE629000\rdpencdd.sys
  1399. Image path: \SystemRoot\system32\drivers\rdpencdd.sys
  1400. Image name: rdpencdd.sys
  1401. Timestamp: Tue Jul 14 02:16:34 2009 (4A5BCE62)
  1402. CheckSum: 000074D5
  1403. ImageSize: 00009000
  1404. File version: 6.1.7600.16385
  1405. Product version: 6.1.7600.16385
  1406. File flags: 0 (Mask 3F)
  1407. File OS: 40004 NT Win32
  1408. File type: 3.4 Driver
  1409. File date: 00000000.00000000
  1410. Translations: 0409.04b0
  1411. CompanyName: Microsoft Corporation
  1412. ProductName: Microsoft® Windows® Operating System
  1413. InternalName: RDPENCDD.SYS
  1414. OriginalFilename: RDPENCDD.SYS
  1415. ProductVersion: 6.1.7600.16385
  1416. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  1417. FileDescription: RDP Encoder Miniport
  1418. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1419. fffff880`01800000 fffff880`01816000 disk (deferred)
  1420. Mapped memory image file: c:\symbols\disk.sys\4A5BC11D16000\disk.sys
  1421. Image path: \SystemRoot\system32\DRIVERS\disk.sys
  1422. Image name: disk.sys
  1423. Timestamp: Tue Jul 14 01:19:57 2009 (4A5BC11D)
  1424. CheckSum: 0001FF1D
  1425. ImageSize: 00016000
  1426. File version: 6.1.7600.16385
  1427. Product version: 6.1.7600.16385
  1428. File flags: 0 (Mask 3F)
  1429. File OS: 40004 NT Win32
  1430. File type: 3.7 Driver
  1431. File date: 00000000.00000000
  1432. Translations: 0000.04b0
  1433. CompanyName: Microsoft Corporation
  1434. ProductName: Microsoft® Windows® Operating System
  1435. InternalName: disk.sys
  1436. OriginalFilename: disk.sys
  1437. ProductVersion: 6.1.7600.16385
  1438. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  1439. FileDescription: PnP Disk Driver
  1440. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1441. fffff880`01816000 fffff880`01846000 CLASSPNP (deferred)
  1442. Mapped memory image file: c:\symbols\CLASSPNP.SYS\4CE7929B30000\CLASSPNP.SYS
  1443. Image path: \SystemRoot\system32\DRIVERS\CLASSPNP.SYS
  1444. Image name: CLASSPNP.SYS
  1445. Timestamp: Sat Nov 20 10:19:23 2010 (4CE7929B)
  1446. CheckSum: 000318BE
  1447. ImageSize: 00030000
  1448. File version: 6.1.7601.17514
  1449. Product version: 6.1.7601.17514
  1450. File flags: 0 (Mask 3F)
  1451. File OS: 40004 NT Win32
  1452. File type: 3.7 Driver
  1453. File date: 00000000.00000000
  1454. Translations: 0000.04b0
  1455. CompanyName: Microsoft Corporation
  1456. ProductName: Microsoft® Windows® Operating System
  1457. InternalName: Classpnp.sys
  1458. OriginalFilename: Classpnp.sys
  1459. ProductVersion: 6.1.7601.17514
  1460. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  1461. FileDescription: SCSI Class System Dll
  1462. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1463. fffff880`01846000 fffff880`01854000 kbdhid (deferred)
  1464. Mapped memory image file: c:\symbols\kbdhid.sys\4CE7A3F5e000\kbdhid.sys
  1465. Image path: \SystemRoot\system32\drivers\kbdhid.sys
  1466. Image name: kbdhid.sys
  1467. Timestamp: Sat Nov 20 11:33:25 2010 (4CE7A3F5)
  1468. CheckSum: 0000D561
  1469. ImageSize: 0000E000
  1470. File version: 6.1.7601.17514
  1471. Product version: 6.1.7601.17514
  1472. File flags: 0 (Mask 3F)
  1473. File OS: 40004 NT Win32
  1474. File type: 2.0 Dll
  1475. File date: 00000000.00000000
  1476. Translations: 0409.04b0
  1477. CompanyName: Microsoft Corporation
  1478. ProductName: Microsoft® Windows® Operating System
  1479. InternalName: kbdhid.sys
  1480. OriginalFilename: kbdhid.sys
  1481. ProductVersion: 6.1.7601.17514
  1482. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  1483. FileDescription: HID Keyboard Filter Driver
  1484. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1485. fffff880`01854000 fffff880`0186c000 BTHUSB (deferred)
  1486. Mapped memory image file: c:\symbols\BTHUSB.sys\4DB8E51018000\BTHUSB.sys
  1487. Image path: \SystemRoot\System32\Drivers\BTHUSB.sys
  1488. Image name: BTHUSB.sys
  1489. Timestamp: Thu Apr 28 05:54:56 2011 (4DB8E510)
  1490. CheckSum: 000142F6
  1491. ImageSize: 00018000
  1492. File version: 6.1.7601.17607
  1493. Product version: 6.1.7601.17607
  1494. File flags: 0 (Mask 3F)
  1495. File OS: 40004 NT Win32
  1496. File type: 2.0 Dll
  1497. File date: 00000000.00000000
  1498. Translations: 0409.04b0
  1499. CompanyName: Microsoft Corporation
  1500. ProductName: Microsoft® Windows® Operating System
  1501. InternalName: bthusb.sys
  1502. OriginalFilename: bthusb.sys
  1503. ProductVersion: 6.1.7601.17607
  1504. FileVersion: 6.1.7601.17607 (win7sp1_gdr.110427-1523)
  1505. FileDescription: Bluetooth Miniport Driver
  1506. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1507. fffff880`01888000 fffff880`01891000 Null (deferred)
  1508. Mapped memory image file: c:\symbols\Null.SYS\4A5BC1099000\Null.SYS
  1509. Image path: \SystemRoot\System32\Drivers\Null.SYS
  1510. Image name: Null.SYS
  1511. Timestamp: Tue Jul 14 01:19:37 2009 (4A5BC109)
  1512. CheckSum: 0000E9DB
  1513. ImageSize: 00009000
  1514. File version: 6.1.7600.16385
  1515. Product version: 6.1.7600.16385
  1516. File flags: 0 (Mask 3F)
  1517. File OS: 40004 NT Win32
  1518. File type: 3.7 Driver
  1519. File date: 00000000.00000000
  1520. Translations: 0409.04b0
  1521. CompanyName: Microsoft Corporation
  1522. ProductName: Microsoft® Windows® Operating System
  1523. InternalName: null.sys
  1524. OriginalFilename: null.sys
  1525. ProductVersion: 6.1.7600.16385
  1526. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  1527. FileDescription: NULL Driver
  1528. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1529. fffff880`01891000 fffff880`01898000 Beep (deferred)
  1530. Mapped memory image file: c:\symbols\Beep.SYS\4A5BCA8D7000\Beep.SYS
  1531. Image path: \SystemRoot\System32\Drivers\Beep.SYS
  1532. Image name: Beep.SYS
  1533. Timestamp: Tue Jul 14 02:00:13 2009 (4A5BCA8D)
  1534. CheckSum: 000036EB
  1535. ImageSize: 00007000
  1536. File version: 6.1.7600.16385
  1537. Product version: 6.1.7600.16385
  1538. File flags: 0 (Mask 3F)
  1539. File OS: 40004 NT Win32
  1540. File type: 3.7 Driver
  1541. File date: 00000000.00000000
  1542. Translations: 0409.04b0
  1543. CompanyName: Microsoft Corporation
  1544. ProductName: Microsoft® Windows® Operating System
  1545. InternalName: beep.sys
  1546. OriginalFilename: beep.sys
  1547. ProductVersion: 6.1.7600.16385
  1548. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  1549. FileDescription: BEEP Driver
  1550. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1551. fffff880`01898000 fffff880`018a1000 FNETURPX (deferred)
  1552. Image path: \SystemRoot\System32\drivers\FNETURPX.SYS
  1553. Image name: FNETURPX.SYS
  1554. Timestamp: Sat Oct 04 04:27:02 2008 (48E6D476)
  1555. CheckSum: 00010F39
  1556. ImageSize: 00009000
  1557. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  1558. fffff880`018a2000 fffff880`01aa6000 tcpip (pdb symbols) c:\symbols\tcpip.pdb\FDC84931FAFA49FBB47E4CF1CB3B1C0C2\tcpip.pdb
  1559. Loaded symbol image file: tcpip.sys
  1560. Mapped memory image file: c:\symbols\tcpip.sys\4E001123204000\tcpip.sys
  1561. Image path: \SystemRoot\System32\drivers\tcpip.sys
  1562. Image name: tcpip.sys
  1563. Timestamp: Tue Jun 21 05:33:55 2011 (4E001123)
  1564. CheckSum: 001E3A3E
  1565. ImageSize: 00204000
  1566. File version: 6.1.7601.17638
  1567. Product version: 6.1.7601.17638
  1568. File flags: 0 (Mask 3F)
  1569. File OS: 40004 NT Win32
  1570. File type: 3.6 Driver
  1571. File date: 00000000.00000000
  1572. Translations: 0409.04b0
  1573. CompanyName: Microsoft Corporation
  1574. ProductName: Microsoft® Windows® Operating System
  1575. InternalName: tcpip.sys
  1576. OriginalFilename: tcpip.sys
  1577. ProductVersion: 6.1.7601.17638
  1578. FileVersion: 6.1.7601.17638 (win7sp1_gdr.110620-1602)
  1579. FileDescription: TCP/IP Driver
  1580. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1581. fffff880`01aa6000 fffff880`01af0000 fwpkclnt (deferred)
  1582. Mapped memory image file: c:\symbols\fwpkclnt.sys\4CE793214a000\fwpkclnt.sys
  1583. Image path: \SystemRoot\System32\drivers\fwpkclnt.sys
  1584. Image name: fwpkclnt.sys
  1585. Timestamp: Sat Nov 20 10:21:37 2010 (4CE79321)
  1586. CheckSum: 0004AB00
  1587. ImageSize: 0004A000
  1588. File version: 6.1.7601.17514
  1589. Product version: 6.1.7601.17514
  1590. File flags: 0 (Mask 3F)
  1591. File OS: 40004 NT Win32
  1592. File type: 2.0 Dll
  1593. File date: 00000000.00000000
  1594. Translations: 0409.04b0
  1595. CompanyName: Microsoft Corporation
  1596. ProductName: Microsoft® Windows® Operating System
  1597. InternalName: fwpkclnt.sys
  1598. OriginalFilename: fwpkclnt.sys
  1599. ProductVersion: 6.1.7601.17514
  1600. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  1601. FileDescription: FWP/IPsec Kernel-Mode API
  1602. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1603. fffff880`01af0000 fffff880`01b05000 epfwwfp (deferred)
  1604. Image path: \SystemRoot\system32\DRIVERS\epfwwfp.sys
  1605. Image name: epfwwfp.sys
  1606. Timestamp: Tue Jun 28 09:30:08 2011 (4E098300)
  1607. CheckSum: 00017992
  1608. ImageSize: 00015000
  1609. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  1610. fffff880`01b05000 fffff880`01b15000 vmstorfl (deferred)
  1611. Mapped memory image file: c:\symbols\vmstorfl.sys\4CE79B8A10000\vmstorfl.sys
  1612. Image path: \SystemRoot\system32\drivers\vmstorfl.sys
  1613. Image name: vmstorfl.sys
  1614. Timestamp: Sat Nov 20 10:57:30 2010 (4CE79B8A)
  1615. CheckSum: 0000ED21
  1616. ImageSize: 00010000
  1617. File version: 6.1.7601.17514
  1618. Product version: 6.1.7601.17514
  1619. File flags: 0 (Mask 3F)
  1620. File OS: 40004 NT Win32
  1621. File type: 3.7 Driver
  1622. File date: 00000000.00000000
  1623. Translations: 0409.04b0
  1624. CompanyName: Microsoft Corporation
  1625. ProductName: Microsoft® Windows® Operating System
  1626. InternalName: vmstorfl.sys
  1627. OriginalFilename: vmstorfl.sys
  1628. ProductVersion: 6.1.7601.17514
  1629. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  1630. FileDescription: Virtual Storage Filter Driver
  1631. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1632. fffff880`01b15000 fffff880`01b61000 volsnap (deferred)
  1633. Mapped memory image file: c:\symbols\volsnap.sys\4CE792C84c000\volsnap.sys
  1634. Image path: \SystemRoot\system32\drivers\volsnap.sys
  1635. Image name: volsnap.sys
  1636. Timestamp: Sat Nov 20 10:20:08 2010 (4CE792C8)
  1637. CheckSum: 000527ED
  1638. ImageSize: 0004C000
  1639. File version: 6.1.7601.17514
  1640. Product version: 6.1.7601.17514
  1641. File flags: 0 (Mask 3F)
  1642. File OS: 40004 NT Win32
  1643. File type: 3.7 Driver
  1644. File date: 00000000.00000000
  1645. Translations: 0409.04b0
  1646. CompanyName: Microsoft Corporation
  1647. ProductName: Microsoft® Windows® Operating System
  1648. InternalName: volsnap.sys
  1649. OriginalFilename: volsnap.sys
  1650. ProductVersion: 6.1.7601.17514
  1651. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  1652. FileDescription: Volume Shadow Copy Driver
  1653. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1654. fffff880`01b61000 fffff880`01b69000 spldr (deferred)
  1655. Image path: \SystemRoot\System32\Drivers\spldr.sys
  1656. Image name: spldr.sys
  1657. Timestamp: Mon May 11 18:56:27 2009 (4A0858BB)
  1658. CheckSum: 0000E0E9
  1659. ImageSize: 00008000
  1660. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  1661. fffff880`01b69000 fffff880`01ba3000 rdyboost (deferred)
  1662. Mapped memory image file: c:\symbols\rdyboost.sys\4CE7982E3a000\rdyboost.sys
  1663. Image path: \SystemRoot\System32\drivers\rdyboost.sys
  1664. Image name: rdyboost.sys
  1665. Timestamp: Sat Nov 20 10:43:10 2010 (4CE7982E)
  1666. CheckSum: 00037356
  1667. ImageSize: 0003A000
  1668. File version: 6.1.7601.17514
  1669. Product version: 6.1.7601.17514
  1670. File flags: 0 (Mask 3F)
  1671. File OS: 40004 NT Win32
  1672. File type: 3.7 Driver
  1673. File date: 00000000.00000000
  1674. Translations: 0000.04b0
  1675. CompanyName: Microsoft Corporation
  1676. ProductName: Microsoft® Windows® Operating System
  1677. InternalName: rdyboost.sys
  1678. OriginalFilename: rdyboost.sys
  1679. ProductVersion: 6.1.7601.17514
  1680. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  1681. FileDescription: ReadyBoost Driver
  1682. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1683. fffff880`01ba3000 fffff880`01bb5000 mup (deferred)
  1684. Mapped memory image file: c:\symbols\mup.sys\4A5BC20112000\mup.sys
  1685. Image path: \SystemRoot\System32\Drivers\mup.sys
  1686. Image name: mup.sys
  1687. Timestamp: Tue Jul 14 01:23:45 2009 (4A5BC201)
  1688. CheckSum: 00015DFD
  1689. ImageSize: 00012000
  1690. File version: 6.1.7600.16385
  1691. Product version: 6.1.7600.16385
  1692. File flags: 0 (Mask 3F)
  1693. File OS: 40004 NT Win32
  1694. File type: 3.6 Driver
  1695. File date: 00000000.00000000
  1696. Translations: 0409.04b0
  1697. CompanyName: Microsoft Corporation
  1698. ProductName: Microsoft® Windows® Operating System
  1699. InternalName: MUP.SYS
  1700. OriginalFilename: MUP.SYS
  1701. ProductVersion: 6.1.7600.16385
  1702. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  1703. FileDescription: Multiple UNC Provider Driver
  1704. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1705. fffff880`01bb5000 fffff880`01bbe000 hwpolicy (deferred)
  1706. Mapped memory image file: c:\symbols\hwpolicy.sys\4CE7927E9000\hwpolicy.sys
  1707. Image path: \SystemRoot\System32\drivers\hwpolicy.sys
  1708. Image name: hwpolicy.sys
  1709. Timestamp: Sat Nov 20 10:18:54 2010 (4CE7927E)
  1710. CheckSum: 0000D9F4
  1711. ImageSize: 00009000
  1712. File version: 6.1.7601.17514
  1713. Product version: 6.1.7601.17514
  1714. File flags: 0 (Mask 3F)
  1715. File OS: 40004 NT Win32
  1716. File type: 2.0 Dll
  1717. File date: 00000000.00000000
  1718. Translations: 0409.04b0
  1719. CompanyName: Microsoft Corporation
  1720. ProductName: Microsoft® Windows® Operating System
  1721. InternalName: hwpolicy.sys
  1722. OriginalFilename: hwpolicy.sys
  1723. ProductVersion: 6.1.7601.17514
  1724. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  1725. FileDescription: Hardware Policy Driver
  1726. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1727. fffff880`01bbe000 fffff880`01bf8000 fvevol (deferred)
  1728. Mapped memory image file: c:\symbols\fvevol.sys\4CE793B63a000\fvevol.sys
  1729. Image path: \SystemRoot\System32\DRIVERS\fvevol.sys
  1730. Image name: fvevol.sys
  1731. Timestamp: Sat Nov 20 10:24:06 2010 (4CE793B6)
  1732. CheckSum: 000389BC
  1733. ImageSize: 0003A000
  1734. File version: 6.1.7601.17514
  1735. Product version: 6.1.7601.17514
  1736. File flags: 0 (Mask 3F)
  1737. File OS: 40004 NT Win32
  1738. File type: 3.7 Driver
  1739. File date: 00000000.00000000
  1740. Translations: 0000.04b0
  1741. CompanyName: Microsoft Corporation
  1742. ProductName: Microsoft® Windows® Operating System
  1743. InternalName: FVEVOL.SYS
  1744. OriginalFilename: FVEVOL.SYS
  1745. ProductVersion: 6.1.7601.17514
  1746. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  1747. FileDescription: BitLocker Drive Encryption Driver
  1748. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1749. fffff880`03a00000 fffff880`03ac9000 HTTP (deferred)
  1750. Mapped memory image file: c:\symbols\HTTP.sys\4CE793CEc9000\HTTP.sys
  1751. Image path: \SystemRoot\system32\drivers\HTTP.sys
  1752. Image name: HTTP.sys
  1753. Timestamp: Sat Nov 20 10:24:30 2010 (4CE793CE)
  1754. CheckSum: 000C56EE
  1755. ImageSize: 000C9000
  1756. File version: 6.1.7601.17514
  1757. Product version: 6.1.7601.17514
  1758. File flags: 0 (Mask 3F)
  1759. File OS: 40004 NT Win32
  1760. File type: 3.7 Driver
  1761. File date: 00000000.00000000
  1762. Translations: 0409.04b0
  1763. CompanyName: Microsoft Corporation
  1764. ProductName: Microsoft® Windows® Operating System
  1765. InternalName: http.sys
  1766. OriginalFilename: http.sys
  1767. ProductVersion: 6.1.7601.17514
  1768. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  1769. FileDescription: HTTP Protocol Stack
  1770. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1771. fffff880`03ae1000 fffff880`03b6d000 bthport (deferred)
  1772. Mapped memory image file: c:\symbols\bthport.sys\4DB8E51B8c000\bthport.sys
  1773. Image path: \SystemRoot\System32\Drivers\bthport.sys
  1774. Image name: bthport.sys
  1775. Timestamp: Thu Apr 28 05:55:07 2011 (4DB8E51B)
  1776. CheckSum: 0008F7A8
  1777. ImageSize: 0008C000
  1778. File version: 6.1.7601.17607
  1779. Product version: 6.1.7601.17607
  1780. File flags: 0 (Mask 3F)
  1781. File OS: 40004 NT Win32
  1782. File type: 2.0 Dll
  1783. File date: 00000000.00000000
  1784. Translations: 0409.04b0
  1785. CompanyName: Microsoft Corporation
  1786. ProductName: Microsoft® Windows® Operating System
  1787. InternalName: bthport.sys
  1788. OriginalFilename: bthport.sys
  1789. ProductVersion: 6.1.7601.17607
  1790. FileVersion: 6.1.7601.17607 (win7sp1_gdr.110427-1523)
  1791. FileDescription: Bluetooth Bus Driver
  1792. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1793. fffff880`03b6d000 fffff880`03b90000 luafv (deferred)
  1794. Mapped memory image file: c:\symbols\luafv.sys\4A5BC29523000\luafv.sys
  1795. Image path: \SystemRoot\system32\drivers\luafv.sys
  1796. Image name: luafv.sys
  1797. Timestamp: Tue Jul 14 01:26:13 2009 (4A5BC295)
  1798. CheckSum: 00027BF1
  1799. ImageSize: 00023000
  1800. File version: 6.1.7600.16385
  1801. Product version: 6.1.7600.16385
  1802. File flags: 0 (Mask 3F)
  1803. File OS: 40004 NT Win32
  1804. File type: 3.7 Driver
  1805. File date: 00000000.00000000
  1806. Translations: 0409.04b0
  1807. CompanyName: Microsoft Corporation
  1808. ProductName: Microsoft® Windows® Operating System
  1809. InternalName: luafv.sys
  1810. OriginalFilename: luafv.sys
  1811. ProductVersion: 6.1.7600.16385
  1812. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  1813. FileDescription: LUA File Virtualization Filter Driver
  1814. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1815. fffff880`03b90000 fffff880`03bde000 mrxsmb10 (deferred)
  1816. Mapped memory image file: c:\symbols\mrxsmb10.sys\4E17C1044e000\mrxsmb10.sys
  1817. Image path: \SystemRoot\system32\DRIVERS\mrxsmb10.sys
  1818. Image name: mrxsmb10.sys
  1819. Timestamp: Sat Jul 09 04:46:28 2011 (4E17C104)
  1820. CheckSum: 000503C4
  1821. ImageSize: 0004E000
  1822. File version: 6.1.7601.17647
  1823. Product version: 6.1.7601.17647
  1824. File flags: 0 (Mask 3F)
  1825. File OS: 40004 NT Win32
  1826. File type: 3.7 Driver
  1827. File date: 00000000.00000000
  1828. Translations: 0409.04b0
  1829. CompanyName: Microsoft Corporation
  1830. ProductName: Microsoft® Windows® Operating System
  1831. InternalName: MRxSmb0.sys
  1832. OriginalFilename: MRXSMB0.Sys
  1833. ProductVersion: 6.1.7601.17647
  1834. FileVersion: 6.1.7601.17647 (win7sp1_gdr.110708-1503)
  1835. FileDescription: Longhorn SMB Downlevel SubRdr
  1836. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1837. fffff880`03c00000 fffff880`03c24000 rasl2tp (deferred)
  1838. Mapped memory image file: c:\symbols\rasl2tp.sys\4CE7A87224000\rasl2tp.sys
  1839. Image path: \SystemRoot\system32\DRIVERS\rasl2tp.sys
  1840. Image name: rasl2tp.sys
  1841. Timestamp: Sat Nov 20 11:52:34 2010 (4CE7A872)
  1842. CheckSum: 0002CCA3
  1843. ImageSize: 00024000
  1844. File version: 6.1.7601.17514
  1845. Product version: 6.1.7601.17514
  1846. File flags: 0 (Mask 3F)
  1847. File OS: 40004 NT Win32
  1848. File type: 3.6 Driver
  1849. File date: 00000000.00000000
  1850. Translations: 0409.04b0
  1851. CompanyName: Microsoft Corporation
  1852. ProductName: Microsoft® Windows® Operating System
  1853. InternalName: rasl2tp.sys
  1854. OriginalFilename: rasl2tp.sys
  1855. ProductVersion: 6.1.7601.17514
  1856. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  1857. FileDescription: RAS L2TP mini-port/call-manager driver
  1858. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1859. fffff880`03c24000 fffff880`03c33000 kbdclass (deferred)
  1860. Mapped memory image file: c:\symbols\kbdclass.sys\4A5BC116f000\kbdclass.sys
  1861. Image path: \SystemRoot\system32\drivers\kbdclass.sys
  1862. Image name: kbdclass.sys
  1863. Timestamp: Tue Jul 14 01:19:50 2009 (4A5BC116)
  1864. CheckSum: 0001B4C5
  1865. ImageSize: 0000F000
  1866. File version: 6.1.7600.16385
  1867. Product version: 6.1.7600.16385
  1868. File flags: 0 (Mask 3F)
  1869. File OS: 40004 NT Win32
  1870. File type: 3.7 Driver
  1871. File date: 00000000.00000000
  1872. Translations: 0409.04b0
  1873. CompanyName: Microsoft Corporation
  1874. ProductName: Microsoft® Windows® Operating System
  1875. InternalName: kbdclass.sys
  1876. OriginalFilename: kbdclass.sys
  1877. ProductVersion: 6.1.7600.16385
  1878. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  1879. FileDescription: Keyboard Class Driver
  1880. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1881. fffff880`03c3c000 fffff880`03c81000 netbt (deferred)
  1882. Mapped memory image file: c:\symbols\netbt.sys\4CE7938645000\netbt.sys
  1883. Image path: \SystemRoot\System32\DRIVERS\netbt.sys
  1884. Image name: netbt.sys
  1885. Timestamp: Sat Nov 20 10:23:18 2010 (4CE79386)
  1886. CheckSum: 00041134
  1887. ImageSize: 00045000
  1888. File version: 6.1.7601.17514
  1889. Product version: 6.1.7601.17514
  1890. File flags: 0 (Mask 3F)
  1891. File OS: 40004 NT Win32
  1892. File type: 3.7 Driver
  1893. File date: 00000000.00000000
  1894. Translations: 0409.04b0
  1895. CompanyName: Microsoft Corporation
  1896. ProductName: Microsoft® Windows® Operating System
  1897. InternalName: netbt.sys
  1898. OriginalFilename: netbt.sys
  1899. ProductVersion: 6.1.7601.17514
  1900. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  1901. FileDescription: MBT Transport driver
  1902. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1903. fffff880`03c81000 fffff880`03c8a000 wfplwf (deferred)
  1904. Mapped memory image file: c:\symbols\wfplwf.sys\4A5BCCB69000\wfplwf.sys
  1905. Image path: \SystemRoot\system32\DRIVERS\wfplwf.sys
  1906. Image name: wfplwf.sys
  1907. Timestamp: Tue Jul 14 02:09:26 2009 (4A5BCCB6)
  1908. CheckSum: 0000B17B
  1909. ImageSize: 00009000
  1910. File version: 6.1.7600.16385
  1911. Product version: 6.1.7600.16385
  1912. File flags: 0 (Mask 3F)
  1913. File OS: 40004 NT Win32
  1914. File type: 3.6 Driver
  1915. File date: 00000000.00000000
  1916. Translations: 0000.04b0
  1917. CompanyName: Microsoft Corporation
  1918. ProductName: Microsoft® Windows® Operating System
  1919. InternalName: WFPLWF.SYS
  1920. OriginalFilename: WFPLWF.SYS
  1921. ProductVersion: 6.1.7600.16385
  1922. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  1923. FileDescription: WFP NDIS 6.20 Lightweight Filter Driver
  1924. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1925. fffff880`03c8a000 fffff880`03cb0000 pacer (deferred)
  1926. Mapped memory image file: c:\symbols\pacer.sys\4CE7A86226000\pacer.sys
  1927. Image path: \SystemRoot\system32\DRIVERS\pacer.sys
  1928. Image name: pacer.sys
  1929. Timestamp: Sat Nov 20 11:52:18 2010 (4CE7A862)
  1930. CheckSum: 00020DCF
  1931. ImageSize: 00026000
  1932. File version: 6.1.7601.17514
  1933. Product version: 6.1.7601.17514
  1934. File flags: 0 (Mask 3F)
  1935. File OS: 40004 NT Win32
  1936. File type: 3.6 Driver
  1937. File date: 00000000.00000000
  1938. Translations: 0409.04b0
  1939. CompanyName: Microsoft Corporation
  1940. ProductName: Microsoft® Windows® Operating System
  1941. InternalName: pacer.sys
  1942. OriginalFilename: pacer.sys
  1943. ProductVersion: 6.1.7601.17514
  1944. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  1945. FileDescription: QoS Packet Scheduler
  1946. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1947. fffff880`03cb0000 fffff880`03cbd000 EpfwLWF T (no symbols)
  1948. Loaded symbol image file: EpfwLWF.sys
  1949. Image path: \SystemRoot\system32\DRIVERS\EpfwLWF.sys
  1950. Image name: EpfwLWF.sys
  1951. Timestamp: Mon Jul 11 18:19:38 2011 (4E1B229A)
  1952. CheckSum: 0000BEB6
  1953. ImageSize: 0000D000
  1954. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  1955. fffff880`03cbd000 fffff880`03ccc000 netbios (deferred)
  1956. Mapped memory image file: c:\symbols\netbios.sys\4A5BCCB6f000\netbios.sys
  1957. Image path: \SystemRoot\system32\DRIVERS\netbios.sys
  1958. Image name: netbios.sys
  1959. Timestamp: Tue Jul 14 02:09:26 2009 (4A5BCCB6)
  1960. CheckSum: 00011668
  1961. ImageSize: 0000F000
  1962. File version: 6.1.7600.16385
  1963. Product version: 6.1.7600.16385
  1964. File flags: 0 (Mask 3F)
  1965. File OS: 40004 NT Win32
  1966. File type: 3.6 Driver
  1967. File date: 00000000.00000000
  1968. Translations: 0409.04b0
  1969. CompanyName: Microsoft Corporation
  1970. ProductName: Microsoft® Windows® Operating System
  1971. InternalName: NETBIOS.SYS
  1972. OriginalFilename: NETBIOS.SYS
  1973. ProductVersion: 6.1.7600.16385
  1974. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  1975. FileDescription: NetBIOS interface driver
  1976. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1977. fffff880`03ccc000 fffff880`03ce9000 serial (deferred)
  1978. Mapped memory image file: c:\symbols\serial.sys\4A5BCAA81d000\serial.sys
  1979. Image path: \SystemRoot\system32\DRIVERS\serial.sys
  1980. Image name: serial.sys
  1981. Timestamp: Tue Jul 14 02:00:40 2009 (4A5BCAA8)
  1982. CheckSum: 0001D422
  1983. ImageSize: 0001D000
  1984. File version: 6.1.7600.16385
  1985. Product version: 6.1.7600.16385
  1986. File flags: 0 (Mask 3F)
  1987. File OS: 40004 NT Win32
  1988. File type: 3.7 Driver
  1989. File date: 00000000.00000000
  1990. Translations: 0409.04b0
  1991. CompanyName: Microsoft Corporation
  1992. ProductName: Microsoft® Windows® Operating System
  1993. InternalName: serial.sys
  1994. OriginalFilename: serial.sys
  1995. ProductVersion: 6.1.7600.16385
  1996. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  1997. FileDescription: Serial Device Driver
  1998. LegalCopyright: © Microsoft Corporation. All rights reserved.
  1999. fffff880`03ce9000 fffff880`03d04000 wanarp (deferred)
  2000. Mapped memory image file: c:\symbols\wanarp.sys\4CE7A8741b000\wanarp.sys
  2001. Image path: \SystemRoot\system32\DRIVERS\wanarp.sys
  2002. Image name: wanarp.sys
  2003. Timestamp: Sat Nov 20 11:52:36 2010 (4CE7A874)
  2004. CheckSum: 00017CCC
  2005. ImageSize: 0001B000
  2006. File version: 6.1.7601.17514
  2007. Product version: 6.1.7601.17514
  2008. File flags: 0 (Mask 3F)
  2009. File OS: 40004 NT Win32
  2010. File type: 3.6 Driver
  2011. File date: 00000000.00000000
  2012. Translations: 0409.04b0
  2013. CompanyName: Microsoft Corporation
  2014. ProductName: Microsoft® Windows® Operating System
  2015. InternalName: WANARP.SYS
  2016. OriginalFilename: WANARP.SYS
  2017. ProductVersion: 6.1.7601.17514
  2018. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  2019. FileDescription: MS Remote Access and Routing ARP Driver
  2020. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2021. fffff880`03d04000 fffff880`03d18000 termdd (deferred)
  2022. Mapped memory image file: c:\symbols\termdd.sys\4CE7AB0C14000\termdd.sys
  2023. Image path: \SystemRoot\system32\drivers\termdd.sys
  2024. Image name: termdd.sys
  2025. Timestamp: Sat Nov 20 12:03:40 2010 (4CE7AB0C)
  2026. CheckSum: 00019E15
  2027. ImageSize: 00014000
  2028. File version: 6.1.7601.17514
  2029. Product version: 6.1.7601.17514
  2030. File flags: 0 (Mask 3F)
  2031. File OS: 40004 NT Win32
  2032. File type: 3.7 Driver
  2033. File date: 00000000.00000000
  2034. Translations: 0409.04b0
  2035. CompanyName: Microsoft Corporation
  2036. ProductName: Microsoft® Windows® Operating System
  2037. InternalName: termdd.sys
  2038. OriginalFilename: termdd.sys
  2039. ProductVersion: 6.1.7601.17514
  2040. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  2041. FileDescription: Remote Desktop Server Driver
  2042. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2043. fffff880`03d18000 fffff880`03d69000 rdbss (deferred)
  2044. Mapped memory image file: c:\symbols\rdbss.sys\4CE7949751000\rdbss.sys
  2045. Image path: \SystemRoot\system32\DRIVERS\rdbss.sys
  2046. Image name: rdbss.sys
  2047. Timestamp: Sat Nov 20 10:27:51 2010 (4CE79497)
  2048. CheckSum: 0004D76F
  2049. ImageSize: 00051000
  2050. File version: 6.1.7601.17514
  2051. Product version: 6.1.7601.17514
  2052. File flags: 0 (Mask 3F)
  2053. File OS: 40004 NT Win32
  2054. File type: 3.7 Driver
  2055. File date: 00000000.00000000
  2056. Translations: 0409.04b0
  2057. CompanyName: Microsoft Corporation
  2058. ProductName: Microsoft® Windows® Operating System
  2059. InternalName: rdbss.sys
  2060. OriginalFilename: RDBSS.Sys
  2061. ProductVersion: 6.1.7601.17514
  2062. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  2063. FileDescription: Redirected Drive Buffering SubSystem Driver
  2064. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2065. fffff880`03d69000 fffff880`03d75000 nsiproxy (deferred)
  2066. Mapped memory image file: c:\symbols\nsiproxy.sys\4A5BC15Ec000\nsiproxy.sys
  2067. Image path: \SystemRoot\system32\drivers\nsiproxy.sys
  2068. Image name: nsiproxy.sys
  2069. Timestamp: Tue Jul 14 01:21:02 2009 (4A5BC15E)
  2070. CheckSum: 00013ED5
  2071. ImageSize: 0000C000
  2072. File version: 6.1.7600.16385
  2073. Product version: 6.1.7600.16385
  2074. File flags: 0 (Mask 3F)
  2075. File OS: 40004 NT Win32
  2076. File type: 3.6 Driver
  2077. File date: 00000000.00000000
  2078. Translations: 0409.04b0
  2079. CompanyName: Microsoft Corporation
  2080. ProductName: Microsoft® Windows® Operating System
  2081. InternalName: nsiproxy.sys
  2082. OriginalFilename: nsiproxy.sys
  2083. ProductVersion: 6.1.7600.16385
  2084. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  2085. FileDescription: NSI Proxy
  2086. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2087. fffff880`03d75000 fffff880`03d80000 mssmbios (deferred)
  2088. Mapped memory image file: c:\symbols\mssmbios.sys\4A5BC3BEb000\mssmbios.sys
  2089. Image path: \SystemRoot\system32\drivers\mssmbios.sys
  2090. Image name: mssmbios.sys
  2091. Timestamp: Tue Jul 14 01:31:10 2009 (4A5BC3BE)
  2092. CheckSum: 0000F474
  2093. ImageSize: 0000B000
  2094. File version: 6.1.7600.16385
  2095. Product version: 6.1.7600.16385
  2096. File flags: 0 (Mask 3F)
  2097. File OS: 40004 NT Win32
  2098. File type: 3.7 Driver
  2099. File date: 00000000.00000000
  2100. Translations: 0409.04b0
  2101. CompanyName: Microsoft Corporation
  2102. ProductName: Microsoft® Windows® Operating System
  2103. InternalName: smbios.sys
  2104. OriginalFilename: smbios.sys
  2105. ProductVersion: 6.1.7600.16385
  2106. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  2107. FileDescription: System Management BIOS Driver
  2108. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2109. fffff880`03d80000 fffff880`03d8f000 discache (deferred)
  2110. Mapped memory image file: c:\symbols\discache.sys\4A5BC52Ef000\discache.sys
  2111. Image path: \SystemRoot\System32\drivers\discache.sys
  2112. Image name: discache.sys
  2113. Timestamp: Tue Jul 14 01:37:18 2009 (4A5BC52E)
  2114. CheckSum: 00015F3F
  2115. ImageSize: 0000F000
  2116. File version: 6.1.7600.16385
  2117. Product version: 6.1.7600.16385
  2118. File flags: 0 (Mask 3F)
  2119. File OS: 40004 NT Win32
  2120. File type: 2.0 Dll
  2121. File date: 00000000.00000000
  2122. Translations: 0409.04b0
  2123. CompanyName: Microsoft Corporation
  2124. ProductName: Microsoft® Windows® Operating System
  2125. InternalName: syscache.sys
  2126. OriginalFilename: syscache.sys
  2127. ProductVersion: 6.1.7600.16385
  2128. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  2129. FileDescription: System Indexer/Cache Driver
  2130. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2131. fffff880`03d8f000 fffff880`03df9000 k57nd60a (deferred)
  2132. Image path: \SystemRoot\system32\DRIVERS\k57nd60a.sys
  2133. Image name: k57nd60a.sys
  2134. Timestamp: Tue May 10 06:42:30 2011 (4DC8C236)
  2135. CheckSum: 00076E0F
  2136. ImageSize: 0006A000
  2137. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  2138. fffff880`03e07000 fffff880`03ee9000 eamonm (deferred)
  2139. Image path: \SystemRoot\system32\DRIVERS\eamonm.sys
  2140. Image name: eamonm.sys
  2141. Timestamp: Tue Aug 02 11:33:29 2011 (4E37C469)
  2142. CheckSum: 0003DB0B
  2143. ImageSize: 000E2000
  2144. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  2145. fffff880`03ee9000 fffff880`03f0a000 WudfPf (deferred)
  2146. Mapped memory image file: c:\symbols\WudfPf.sys\4CE7A62421000\WudfPf.sys
  2147. Image path: \SystemRoot\system32\drivers\WudfPf.sys
  2148. Image name: WudfPf.sys
  2149. Timestamp: Sat Nov 20 11:42:44 2010 (4CE7A624)
  2150. CheckSum: 00021FC8
  2151. ImageSize: 00021000
  2152. File version: 6.1.7601.17514
  2153. Product version: 6.1.7601.17514
  2154. File flags: 0 (Mask 3F)
  2155. File OS: 40004 NT Win32
  2156. File type: 3.7 Driver
  2157. File date: 00000000.00000000
  2158. Translations: 0000.04b0
  2159. CompanyName: Microsoft Corporation
  2160. ProductName: Microsoft® Windows® Operating System
  2161. InternalName: WUDFPf.sys
  2162. OriginalFilename: WUDFPf.sys
  2163. ProductVersion: 6.1.7601.17514
  2164. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  2165. FileDescription: Windows Driver Foundation - User-mode Driver Framework Platform Driver
  2166. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2167. fffff880`03f0a000 fffff880`03f3b000 epfw (deferred)
  2168. Image path: \SystemRoot\system32\DRIVERS\epfw.sys
  2169. Image name: epfw.sys
  2170. Timestamp: Tue Jun 28 09:30:10 2011 (4E098302)
  2171. CheckSum: 0003466B
  2172. ImageSize: 00031000
  2173. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  2174. fffff880`03f3b000 fffff880`03f50000 lltdio (deferred)
  2175. Mapped memory image file: c:\symbols\lltdio.sys\4A5BCC9215000\lltdio.sys
  2176. Image path: \SystemRoot\system32\DRIVERS\lltdio.sys
  2177. Image name: lltdio.sys
  2178. Timestamp: Tue Jul 14 02:08:50 2009 (4A5BCC92)
  2179. CheckSum: 0001109D
  2180. ImageSize: 00015000
  2181. File version: 6.1.7600.16385
  2182. Product version: 6.1.7600.16385
  2183. File flags: 0 (Mask 3F)
  2184. File OS: 40004 NT Win32
  2185. File type: 3.6 Driver
  2186. File date: 00000000.00000000
  2187. Translations: 0409.04b0
  2188. CompanyName: Microsoft Corporation
  2189. ProductName: Microsoft® Windows® Operating System
  2190. InternalName: LLTDIO.SYS
  2191. OriginalFilename: LLTDIO.SYS
  2192. ProductVersion: 6.1.7600.16385
  2193. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  2194. FileDescription: Link-Layer Topology Mapper I/O Driver
  2195. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2196. fffff880`03f50000 fffff880`03f68000 rspndr (deferred)
  2197. Mapped memory image file: c:\symbols\rspndr.sys\4A5BCC9218000\rspndr.sys
  2198. Image path: \SystemRoot\system32\DRIVERS\rspndr.sys
  2199. Image name: rspndr.sys
  2200. Timestamp: Tue Jul 14 02:08:50 2009 (4A5BCC92)
  2201. CheckSum: 0001656B
  2202. ImageSize: 00018000
  2203. File version: 6.1.7600.16385
  2204. Product version: 6.1.7600.16385
  2205. File flags: 0 (Mask 3F)
  2206. File OS: 40004 NT Win32
  2207. File type: 3.6 Driver
  2208. File date: 00000000.00000000
  2209. Translations: 0409.04b0
  2210. CompanyName: Microsoft Corporation
  2211. ProductName: Microsoft® Windows® Operating System
  2212. InternalName: RSPNDR.SYS
  2213. OriginalFilename: RSPNDR.SYS
  2214. ProductVersion: 6.1.7600.16385
  2215. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  2216. FileDescription: Link-Layer Topology Responder Driver for NDIS 6
  2217. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2218. fffff880`03f68000 fffff880`03f86000 bowser (deferred)
  2219. Mapped memory image file: c:\symbols\bowser.sys\4D6493281e000\bowser.sys
  2220. Image path: \SystemRoot\system32\DRIVERS\bowser.sys
  2221. Image name: bowser.sys
  2222. Timestamp: Wed Feb 23 05:55:04 2011 (4D649328)
  2223. CheckSum: 00022D38
  2224. ImageSize: 0001E000
  2225. File version: 6.1.7601.17565
  2226. Product version: 6.1.7601.17565
  2227. File flags: 0 (Mask 3F)
  2228. File OS: 40004 NT Win32
  2229. File type: 3.7 Driver
  2230. File date: 00000000.00000000
  2231. Translations: 0409.04b0
  2232. CompanyName: Microsoft Corporation
  2233. ProductName: Microsoft® Windows® Operating System
  2234. InternalName: browser.sys
  2235. OriginalFilename: browser.sys
  2236. ProductVersion: 6.1.7601.17565
  2237. FileVersion: 6.1.7601.17565 (win7sp1_gdr.110222-1630)
  2238. FileDescription: NT Lan Manager Datagram Receiver Driver
  2239. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2240. fffff880`03f86000 fffff880`03f9e000 mpsdrv (deferred)
  2241. Mapped memory image file: c:\symbols\mpsdrv.sys\4A5BCC7918000\mpsdrv.sys
  2242. Image path: \SystemRoot\System32\drivers\mpsdrv.sys
  2243. Image name: mpsdrv.sys
  2244. Timestamp: Tue Jul 14 02:08:25 2009 (4A5BCC79)
  2245. CheckSum: 0001C76E
  2246. ImageSize: 00018000
  2247. File version: 6.1.7600.16385
  2248. Product version: 6.1.7600.16385
  2249. File flags: 0 (Mask 3F)
  2250. File OS: 40004 NT Win32
  2251. File type: 3.7 Driver
  2252. File date: 00000000.00000000
  2253. Translations: 0409.04b0
  2254. CompanyName: Microsoft Corporation
  2255. ProductName: Microsoft® Windows® Operating System
  2256. InternalName: mpsdrv.sys
  2257. OriginalFilename: mpsdrv.sys
  2258. ProductVersion: 6.1.7600.16385
  2259. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  2260. FileDescription: Microsoft Protection Service Driver
  2261. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2262. fffff880`03f9e000 fffff880`03fcb000 mrxsmb (deferred)
  2263. Mapped memory image file: c:\symbols\mrxsmb.sys\4DB782262d000\mrxsmb.sys
  2264. Image path: \SystemRoot\system32\DRIVERS\mrxsmb.sys
  2265. Image name: mrxsmb.sys
  2266. Timestamp: Wed Apr 27 04:40:38 2011 (4DB78226)
  2267. CheckSum: 00030225
  2268. ImageSize: 0002D000
  2269. File version: 6.1.7601.17605
  2270. Product version: 6.1.7601.17605
  2271. File flags: 0 (Mask 3F)
  2272. File OS: 40004 NT Win32
  2273. File type: 3.7 Driver
  2274. File date: 00000000.00000000
  2275. Translations: 0409.04b0
  2276. CompanyName: Microsoft Corporation
  2277. ProductName: Microsoft® Windows® Operating System
  2278. InternalName: MRxSmb.sys
  2279. OriginalFilename: MRXSMB.Sys
  2280. ProductVersion: 6.1.7601.17605
  2281. FileVersion: 6.1.7601.17605 (win7sp1_gdr.110426-1503)
  2282. FileDescription: Windows NT SMB Minirdr
  2283. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2284. fffff880`03fcb000 fffff880`03fef000 mrxsmb20 (deferred)
  2285. Mapped memory image file: c:\symbols\mrxsmb20.sys\4DB781E924000\mrxsmb20.sys
  2286. Image path: \SystemRoot\system32\DRIVERS\mrxsmb20.sys
  2287. Image name: mrxsmb20.sys
  2288. Timestamp: Wed Apr 27 04:39:37 2011 (4DB781E9)
  2289. CheckSum: 0002D8BD
  2290. ImageSize: 00024000
  2291. File version: 6.1.7601.17605
  2292. Product version: 6.1.7601.17605
  2293. File flags: 0 (Mask 3F)
  2294. File OS: 40004 NT Win32
  2295. File type: 3.7 Driver
  2296. File date: 00000000.00000000
  2297. Translations: 0409.04b0
  2298. CompanyName: Microsoft Corporation
  2299. ProductName: Microsoft® Windows® Operating System
  2300. InternalName: MRxSmb20.sys
  2301. OriginalFilename: MRXSMB20.Sys
  2302. ProductVersion: 6.1.7601.17605
  2303. FileVersion: 6.1.7601.17605 (win7sp1_gdr.110426-1503)
  2304. FileDescription: Longhorn SMB 2.0 Redirector
  2305. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2306. fffff880`04200000 fffff880`04250000 atikmpag (deferred)
  2307. Image path: \SystemRoot\system32\DRIVERS\atikmpag.sys
  2308. Image name: atikmpag.sys
  2309. Timestamp: Thu Jul 28 22:54:10 2011 (4E31CC72)
  2310. CheckSum: 00059E1E
  2311. ImageSize: 00050000
  2312. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  2313. fffff880`04250000 fffff880`042a6000 USBPORT (deferred)
  2314. Mapped memory image file: c:\symbols\USBPORT.SYS\4D8C0C0856000\USBPORT.SYS
  2315. Image path: \SystemRoot\system32\DRIVERS\USBPORT.SYS
  2316. Image name: USBPORT.SYS
  2317. Timestamp: Fri Mar 25 04:29:12 2011 (4D8C0C08)
  2318. CheckSum: 00056970
  2319. ImageSize: 00056000
  2320. File version: 6.1.7601.17586
  2321. Product version: 6.1.7601.17586
  2322. File flags: 0 (Mask 3F)
  2323. File OS: 40004 NT Win32
  2324. File type: 2.0 Dll
  2325. File date: 00000000.00000000
  2326. Translations: 0409.04b0
  2327. CompanyName: Microsoft Corporation
  2328. ProductName: Microsoft® Windows® Operating System
  2329. InternalName: usbport.sys
  2330. OriginalFilename: usbport.sys
  2331. ProductVersion: 6.1.7601.17586
  2332. FileVersion: 6.1.7601.17586 (win7sp1_gdr.110324-1501)
  2333. FileDescription: USB 1.1 & 2.0 Port Driver
  2334. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2335. fffff880`042a6000 fffff880`042bc000 AgileVpn (deferred)
  2336. Mapped memory image file: c:\symbols\AgileVpn.sys\4A5BCCF016000\AgileVpn.sys
  2337. Image path: \SystemRoot\system32\DRIVERS\AgileVpn.sys
  2338. Image name: AgileVpn.sys
  2339. Timestamp: Tue Jul 14 02:10:24 2009 (4A5BCCF0)
  2340. CheckSum: 000192BE
  2341. ImageSize: 00016000
  2342. File version: 6.1.7600.16385
  2343. Product version: 6.1.7600.16385
  2344. File flags: 0 (Mask 3F)
  2345. File OS: 40004 NT Win32
  2346. File type: 3.6 Driver
  2347. File date: 00000000.00000000
  2348. Translations: 0409.04b0
  2349. CompanyName: Microsoft Corporation
  2350. ProductName: Microsoft® Windows® Operating System
  2351. InternalName: agilevpn.sys
  2352. OriginalFilename: agilevpn.sys
  2353. ProductVersion: 6.1.7600.16385
  2354. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  2355. FileDescription: RAS Agile Vpn Miniport Call Manager
  2356. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2357. fffff880`042bc000 fffff880`042d7000 raspppoe (deferred)
  2358. Mapped memory image file: c:\symbols\raspppoe.sys\4A5BCCE91b000\raspppoe.sys
  2359. Image path: \SystemRoot\system32\DRIVERS\raspppoe.sys
  2360. Image name: raspppoe.sys
  2361. Timestamp: Tue Jul 14 02:10:17 2009 (4A5BCCE9)
  2362. CheckSum: 00019A00
  2363. ImageSize: 0001B000
  2364. File version: 6.1.7600.16385
  2365. Product version: 6.1.7600.16385
  2366. File flags: 0 (Mask 3F)
  2367. File OS: 40004 NT Win32
  2368. File type: 3.6 Driver
  2369. File date: 00000000.00000000
  2370. Translations: 0409.04b0
  2371. CompanyName: Microsoft Corporation
  2372. ProductName: Microsoft® Windows® Operating System
  2373. InternalName: raspppoe.sys
  2374. OriginalFilename: raspppoe.sys
  2375. ProductVersion: 6.1.7600.16385
  2376. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  2377. FileDescription: RAS PPPoE mini-port/call-manager driver
  2378. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2379. fffff880`042dc000 fffff880`0435f000 csc (deferred)
  2380. Mapped memory image file: c:\symbols\csc.sys\4CE7947083000\csc.sys
  2381. Image path: \SystemRoot\system32\drivers\csc.sys
  2382. Image name: csc.sys
  2383. Timestamp: Sat Nov 20 10:27:12 2010 (4CE79470)
  2384. CheckSum: 0008519D
  2385. ImageSize: 00083000
  2386. File version: 6.1.7601.17514
  2387. Product version: 6.1.7601.17514
  2388. File flags: 0 (Mask 3F)
  2389. File OS: 40004 NT Win32
  2390. File type: 3.7 Driver
  2391. File date: 00000000.00000000
  2392. Translations: 0409.04b0
  2393. CompanyName: Microsoft Corporation
  2394. ProductName: Microsoft® Windows® Operating System
  2395. InternalName: csc.sys
  2396. OriginalFilename: CSC.Sys
  2397. ProductVersion: 6.1.7601.17514
  2398. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  2399. FileDescription: Windows Client Side Caching Driver
  2400. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2401. fffff880`0435f000 fffff880`0437d000 dfsc (deferred)
  2402. Mapped memory image file: c:\symbols\dfsc.sys\4CE794471e000\dfsc.sys
  2403. Image path: \SystemRoot\System32\Drivers\dfsc.sys
  2404. Image name: dfsc.sys
  2405. Timestamp: Sat Nov 20 10:26:31 2010 (4CE79447)
  2406. CheckSum: 0001D647
  2407. ImageSize: 0001E000
  2408. File version: 6.1.7601.17514
  2409. Product version: 6.1.7601.17514
  2410. File flags: 0 (Mask 3F)
  2411. File OS: 40004 NT Win32
  2412. File type: 3.7 Driver
  2413. File date: 00000000.00000000
  2414. Translations: 0409.04b0
  2415. CompanyName: Microsoft Corporation
  2416. ProductName: Microsoft® Windows® Operating System
  2417. InternalName: dfsclient.sys
  2418. OriginalFilename: dfsclient.sys
  2419. ProductVersion: 6.1.7601.17514
  2420. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  2421. FileDescription: DFS Namespace Client Driver
  2422. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2423. fffff880`0437d000 fffff880`0438e000 blbdrive (deferred)
  2424. Mapped memory image file: c:\symbols\blbdrive.sys\4A5BC4DF11000\blbdrive.sys
  2425. Image path: \SystemRoot\system32\DRIVERS\blbdrive.sys
  2426. Image name: blbdrive.sys
  2427. Timestamp: Tue Jul 14 01:35:59 2009 (4A5BC4DF)
  2428. CheckSum: 00019567
  2429. ImageSize: 00011000
  2430. File version: 6.1.7600.16385
  2431. Product version: 6.1.7600.16385
  2432. File flags: 0 (Mask 3F)
  2433. File OS: 40004 NT Win32
  2434. File type: 3.7 Driver
  2435. File date: 00000000.00000000
  2436. Translations: 0409.04b0
  2437. CompanyName: Microsoft Corporation
  2438. ProductName: Microsoft® Windows® Operating System
  2439. InternalName: blbdrive.sys
  2440. OriginalFilename: blbdrive.sys
  2441. ProductVersion: 6.1.7600.16385
  2442. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  2443. FileDescription: BLB Drive Driver
  2444. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2445. fffff880`04399000 fffff880`043bf000 tunnel (deferred)
  2446. Mapped memory image file: c:\symbols\tunnel.sys\4CE7A84626000\tunnel.sys
  2447. Image path: \SystemRoot\system32\DRIVERS\tunnel.sys
  2448. Image name: tunnel.sys
  2449. Timestamp: Sat Nov 20 11:51:50 2010 (4CE7A846)
  2450. CheckSum: 0002CD96
  2451. ImageSize: 00026000
  2452. File version: 6.1.7601.17514
  2453. Product version: 6.1.7601.17514
  2454. File flags: 0 (Mask 3F)
  2455. File OS: 40004 NT Win32
  2456. File type: 3.6 Driver
  2457. File date: 00000000.00000000
  2458. Translations: 0409.04b0
  2459. CompanyName: Microsoft Corporation
  2460. ProductName: Microsoft® Windows® Operating System
  2461. InternalName: tunnel.sys
  2462. OriginalFilename: tunnel.sys
  2463. ProductVersion: 6.1.7601.17514
  2464. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  2465. FileDescription: Microsoft Tunnel Interface Driver
  2466. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2467. fffff880`043bf000 fffff880`043fd000 1394ohci (deferred)
  2468. Mapped memory image file: c:\symbols\1394ohci.sys\4CE7A6A83e000\1394ohci.sys
  2469. Image path: \SystemRoot\system32\drivers\1394ohci.sys
  2470. Image name: 1394ohci.sys
  2471. Timestamp: Sat Nov 20 11:44:56 2010 (4CE7A6A8)
  2472. CheckSum: 0003B054
  2473. ImageSize: 0003E000
  2474. File version: 6.1.7601.17514
  2475. Product version: 6.1.7601.17514
  2476. File flags: 0 (Mask 3F)
  2477. File OS: 40004 NT Win32
  2478. File type: 3.7 Driver
  2479. File date: 00000000.00000000
  2480. Translations: 0409.04b0
  2481. CompanyName: Microsoft Corporation
  2482. ProductName: Microsoft® Windows® Operating System
  2483. InternalName: 1394ohci.sys
  2484. OriginalFilename: 1394ohci.sys
  2485. ProductVersion: 6.1.7601.17514
  2486. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  2487. FileDescription: 1394 OpenHCI Driver
  2488. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2489. fffff880`04400000 fffff880`04443000 ks (deferred)
  2490. Mapped memory image file: c:\symbols\ks.sys\4CE7A3F343000\ks.sys
  2491. Image path: \SystemRoot\system32\drivers\ks.sys
  2492. Image name: ks.sys
  2493. Timestamp: Sat Nov 20 11:33:23 2010 (4CE7A3F3)
  2494. CheckSum: 00045588
  2495. ImageSize: 00043000
  2496. File version: 6.1.7601.17514
  2497. Product version: 6.1.7601.17514
  2498. File flags: 0 (Mask 3F)
  2499. File OS: 40004 NT Win32
  2500. File type: 3.0 Driver
  2501. File date: 00000000.00000000
  2502. Translations: 0000.04b0
  2503. CompanyName: Microsoft Corporation
  2504. ProductName: Microsoft® Windows® Operating System
  2505. InternalName: ks.sys
  2506. OriginalFilename: ks.sys
  2507. ProductVersion: 6.1.7601.17514
  2508. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  2509. FileDescription: Kernel CSA Library
  2510. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2511. fffff880`04443000 fffff880`0444e000 rdpbus (deferred)
  2512. Mapped memory image file: c:\symbols\rdpbus.sys\4A5BCEAAb000\rdpbus.sys
  2513. Image path: \SystemRoot\system32\DRIVERS\rdpbus.sys
  2514. Image name: rdpbus.sys
  2515. Timestamp: Tue Jul 14 02:17:46 2009 (4A5BCEAA)
  2516. CheckSum: 0000C3AD
  2517. ImageSize: 0000B000
  2518. File version: 6.1.7600.16385
  2519. Product version: 6.1.7600.16385
  2520. File flags: 0 (Mask 3F)
  2521. File OS: 40004 NT Win32
  2522. File type: 3.0 Driver
  2523. File date: 00000000.00000000
  2524. Translations: 0409.04b0
  2525. CompanyName: Microsoft Corporation
  2526. ProductName: Microsoft® Windows® Operating System
  2527. InternalName: RDPBUS.SYS
  2528. OriginalFilename: RDPBUS.SYS
  2529. ProductVersion: 6.1.7600.16385
  2530. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  2531. FileDescription: Microsoft RDP Bus Device driver
  2532. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2533. fffff880`04451000 fffff880`04545000 dxgkrnl (deferred)
  2534. Mapped memory image file: c:\symbols\dxgkrnl.sys\4CE799FAf4000\dxgkrnl.sys
  2535. Image path: \SystemRoot\System32\drivers\dxgkrnl.sys
  2536. Image name: dxgkrnl.sys
  2537. Timestamp: Sat Nov 20 10:50:50 2010 (4CE799FA)
  2538. CheckSum: 000FA948
  2539. ImageSize: 000F4000
  2540. File version: 6.1.7601.17514
  2541. Product version: 6.1.7601.17514
  2542. File flags: 0 (Mask 3F)
  2543. File OS: 40004 NT Win32
  2544. File type: 3.7 Driver
  2545. File date: 00000000.00000000
  2546. Translations: 0409.04b0
  2547. CompanyName: Microsoft Corporation
  2548. ProductName: Microsoft® Windows® Operating System
  2549. InternalName: dxgkrnl.sys
  2550. OriginalFilename: dxgkrnl.sys
  2551. ProductVersion: 6.1.7601.17514
  2552. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  2553. FileDescription: DirectX Graphics Kernel
  2554. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2555. fffff880`04545000 fffff880`0458b000 dxgmms1 (deferred)
  2556. Mapped memory image file: c:\symbols\dxgmms1.sys\4CE799C146000\dxgmms1.sys
  2557. Image path: \SystemRoot\System32\drivers\dxgmms1.sys
  2558. Image name: dxgmms1.sys
  2559. Timestamp: Sat Nov 20 10:49:53 2010 (4CE799C1)
  2560. CheckSum: 00047A89
  2561. ImageSize: 00046000
  2562. File version: 6.1.7601.17514
  2563. Product version: 6.1.7601.17514
  2564. File flags: 0 (Mask 3F)
  2565. File OS: 40004 NT Win32
  2566. File type: 3.7 Driver
  2567. File date: 00000000.00000000
  2568. Translations: 0409.04b0
  2569. CompanyName: Microsoft Corporation
  2570. ProductName: Microsoft® Windows® Operating System
  2571. InternalName: dxgmms1.sys
  2572. OriginalFilename: dxgmms1.sys
  2573. ProductVersion: 6.1.7601.17514
  2574. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  2575. FileDescription: DirectX Graphics MMS
  2576. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2577. fffff880`0458b000 fffff880`045af000 HDAudBus (deferred)
  2578. Mapped memory image file: c:\symbols\HDAudBus.sys\4CE7A65E24000\HDAudBus.sys
  2579. Image path: \SystemRoot\system32\drivers\HDAudBus.sys
  2580. Image name: HDAudBus.sys
  2581. Timestamp: Sat Nov 20 11:43:42 2010 (4CE7A65E)
  2582. CheckSum: 0002BFAB
  2583. ImageSize: 00024000
  2584. File version: 6.1.7601.17514
  2585. Product version: 6.1.7601.17514
  2586. File flags: 0 (Mask 3F)
  2587. File OS: 40004 NT Win32
  2588. File type: 3.9 Driver
  2589. File date: 00000000.00000000
  2590. Translations: 0409.04b0
  2591. CompanyName: Microsoft Corporation
  2592. ProductName: Microsoft® Windows® Operating System
  2593. InternalName: hdaudbus.sys
  2594. OriginalFilename: hdaudbus.sys
  2595. ProductVersion: 6.1.7601.17514
  2596. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  2597. FileDescription: High Definition Audio Bus Driver
  2598. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2599. fffff880`045af000 fffff880`045bec00 EtronXHCI (deferred)
  2600. Image path: \SystemRoot\System32\Drivers\EtronXHCI.sys
  2601. Image name: EtronXHCI.sys
  2602. Timestamp: Fri Jan 28 22:46:43 2011 (4D433943)
  2603. CheckSum: 0001BA95
  2604. ImageSize: 0000FC00
  2605. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  2606. fffff880`045bf000 fffff880`045cc000 usbfilter (deferred)
  2607. Image path: \SystemRoot\system32\DRIVERS\usbfilter.sys
  2608. Image name: usbfilter.sys
  2609. Timestamp: Wed Oct 07 09:44:08 2009 (4ACC46C8)
  2610. CheckSum: 0000B1CD
  2611. ImageSize: 0000D000
  2612. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  2613. fffff880`045cc000 fffff880`045cdf00 USBD (deferred)
  2614. Mapped memory image file: c:\symbols\USBD.SYS\4D8C0BFB1f00\USBD.SYS
  2615. Image path: \SystemRoot\system32\DRIVERS\USBD.SYS
  2616. Image name: USBD.SYS
  2617. Timestamp: Fri Mar 25 04:28:59 2011 (4D8C0BFB)
  2618. CheckSum: 00005257
  2619. ImageSize: 00001F00
  2620. File version: 6.1.7601.17586
  2621. Product version: 6.1.7601.17586
  2622. File flags: 0 (Mask 3F)
  2623. File OS: 40004 NT Win32
  2624. File type: 2.0 Dll
  2625. File date: 00000000.00000000
  2626. Translations: 0000.04b0
  2627. CompanyName: Microsoft Corporation
  2628. ProductName: Microsoft® Windows® Operating System
  2629. InternalName: usbd.sys
  2630. OriginalFilename: usbd.sys
  2631. ProductVersion: 6.1.7601.17586
  2632. FileVersion: 6.1.7601.17586 (win7sp1_gdr.110324-1501)
  2633. FileDescription: Universal Serial Bus Driver
  2634. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2635. fffff880`045ce000 fffff880`045d9000 usbohci (deferred)
  2636. Mapped memory image file: c:\symbols\usbohci.sys\4D8C0BFFb000\usbohci.sys
  2637. Image path: \SystemRoot\system32\DRIVERS\usbohci.sys
  2638. Image name: usbohci.sys
  2639. Timestamp: Fri Mar 25 04:29:03 2011 (4D8C0BFF)
  2640. CheckSum: 00008443
  2641. ImageSize: 0000B000
  2642. File version: 6.1.7601.17586
  2643. Product version: 6.1.7601.17586
  2644. File flags: 0 (Mask 3F)
  2645. File OS: 40004 NT Win32
  2646. File type: 2.0 Dll
  2647. File date: 00000000.00000000
  2648. Translations: 0409.04b0
  2649. CompanyName: Microsoft Corporation
  2650. ProductName: Microsoft® Windows® Operating System
  2651. InternalName: USBOHCI.sys
  2652. OriginalFilename: USBOHCI.sys
  2653. ProductVersion: 6.1.7601.17586
  2654. FileVersion: 6.1.7601.17586 (win7sp1_gdr.110324-1501)
  2655. FileDescription: OHCI USB Miniport Driver
  2656. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2657. fffff880`045d9000 fffff880`045ea000 usbehci (deferred)
  2658. Mapped memory image file: c:\symbols\usbehci.sys\4D8C0C0011000\usbehci.sys
  2659. Image path: \SystemRoot\system32\DRIVERS\usbehci.sys
  2660. Image name: usbehci.sys
  2661. Timestamp: Fri Mar 25 04:29:04 2011 (4D8C0C00)
  2662. CheckSum: 0000DE59
  2663. ImageSize: 00011000
  2664. File version: 6.1.7601.17586
  2665. Product version: 6.1.7601.17586
  2666. File flags: 0 (Mask 3F)
  2667. File OS: 40004 NT Win32
  2668. File type: 2.0 Dll
  2669. File date: 00000000.00000000
  2670. Translations: 0409.04b0
  2671. CompanyName: Microsoft Corporation
  2672. ProductName: Microsoft® Windows® Operating System
  2673. InternalName: USBEHCI.sys
  2674. OriginalFilename: USBEHCI.sys
  2675. ProductVersion: 6.1.7601.17586
  2676. FileVersion: 6.1.7601.17586 (win7sp1_gdr.110324-1501)
  2677. FileDescription: EHCI eUSB Miniport Driver
  2678. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2679. fffff880`045ea000 fffff880`045f6000 serenum (deferred)
  2680. Mapped memory image file: c:\symbols\serenum.sys\4A5BCAA1c000\serenum.sys
  2681. Image path: \SystemRoot\system32\DRIVERS\serenum.sys
  2682. Image name: serenum.sys
  2683. Timestamp: Tue Jul 14 02:00:33 2009 (4A5BCAA1)
  2684. CheckSum: 00013C2F
  2685. ImageSize: 0000C000
  2686. File version: 6.1.7600.16385
  2687. Product version: 6.1.7600.16385
  2688. File flags: 0 (Mask 3F)
  2689. File OS: 40004 NT Win32
  2690. File type: 2.0 Dll
  2691. File date: 00000000.00000000
  2692. Translations: 0409.04b0
  2693. CompanyName: Microsoft Corporation
  2694. ProductName: Microsoft® Windows® Operating System
  2695. InternalName: serenum.sys
  2696. OriginalFilename: serenum.sys
  2697. ProductVersion: 6.1.7600.16385
  2698. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  2699. FileDescription: Serial Port Enumerator
  2700. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2701. fffff880`045f6000 fffff880`045ffc00 EtronHub3 (deferred)
  2702. Image path: \SystemRoot\System32\Drivers\EtronHub3.sys
  2703. Image name: EtronHub3.sys
  2704. Timestamp: Fri Jan 28 22:46:45 2011 (4D433945)
  2705. CheckSum: 00011170
  2706. ImageSize: 00009C00
  2707. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  2708. fffff880`04600000 fffff880`0463d000 portcls (deferred)
  2709. Mapped memory image file: c:\symbols\portcls.sys\4A5BCC033d000\portcls.sys
  2710. Image path: \SystemRoot\system32\drivers\portcls.sys
  2711. Image name: portcls.sys
  2712. Timestamp: Tue Jul 14 02:06:27 2009 (4A5BCC03)
  2713. CheckSum: 00047A50
  2714. ImageSize: 0003D000
  2715. File version: 6.1.7600.16385
  2716. Product version: 6.1.7600.16385
  2717. File flags: 0 (Mask 3F)
  2718. File OS: 40004 NT Win32
  2719. File type: 3.9 Driver
  2720. File date: 00000000.00000000
  2721. Translations: 0409.04b0
  2722. CompanyName: Microsoft Corporation
  2723. ProductName: Microsoft® Windows® Operating System
  2724. InternalName: portcls.sys
  2725. OriginalFilename: portcls.sys
  2726. ProductVersion: 6.1.7600.16385
  2727. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  2728. FileDescription: Port Class (Class Driver for Port/Miniport Devices)
  2729. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2730. fffff880`0463d000 fffff880`0465f000 drmk (deferred)
  2731. Image path: \SystemRoot\system32\drivers\drmk.sys
  2732. Image name: drmk.sys
  2733. Timestamp: Tue Jul 14 03:01:25 2009 (4A5BD8E5)
  2734. CheckSum: 0002966E
  2735. ImageSize: 00022000
  2736. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  2737. fffff880`0465f000 fffff880`04664200 ksthunk (deferred)
  2738. Mapped memory image file: c:\symbols\ksthunk.sys\4A5BCA935200\ksthunk.sys
  2739. Image path: \SystemRoot\system32\drivers\ksthunk.sys
  2740. Image name: ksthunk.sys
  2741. Timestamp: Tue Jul 14 02:00:19 2009 (4A5BCA93)
  2742. CheckSum: 0000AF92
  2743. ImageSize: 00005200
  2744. File version: 6.1.7600.16385
  2745. Product version: 6.1.7600.16385
  2746. File flags: 0 (Mask 3F)
  2747. File OS: 40004 NT Win32
  2748. File type: 3.0 Driver
  2749. File date: 00000000.00000000
  2750. Translations: 0409.04b0
  2751. CompanyName: Microsoft Corporation
  2752. ProductName: Microsoft® Windows® Operating System
  2753. InternalName: ksthunk.sys
  2754. OriginalFilename: ksthunk.sys
  2755. ProductVersion: 6.1.7600.16385
  2756. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  2757. FileDescription: Kernel Streaming WOW Thunk Service
  2758. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2759. fffff880`04665000 fffff880`0466e000 wmiacpi (deferred)
  2760. Mapped memory image file: c:\symbols\wmiacpi.sys\4A5BC3B69000\wmiacpi.sys
  2761. Image path: \SystemRoot\system32\drivers\wmiacpi.sys
  2762. Image name: wmiacpi.sys
  2763. Timestamp: Tue Jul 14 01:31:02 2009 (4A5BC3B6)
  2764. CheckSum: 000042C0
  2765. ImageSize: 00009000
  2766. File version: 6.1.7600.16385
  2767. Product version: 6.1.7600.16385
  2768. File flags: 0 (Mask 3F)
  2769. File OS: 40004 NT Win32
  2770. File type: 3.7 Driver
  2771. File date: 00000000.00000000
  2772. Translations: 0409.04b0
  2773. CompanyName: Microsoft Corporation
  2774. ProductName: Microsoft® Windows® Operating System
  2775. InternalName: wmiacpi.sys
  2776. OriginalFilename: wmiacpi.sys
  2777. ProductVersion: 6.1.7600.16385
  2778. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  2779. FileDescription: Windows Management Interface for ACPI
  2780. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2781. fffff880`04673000 fffff880`047f2000 P17 (deferred)
  2782. Image path: \SystemRoot\system32\drivers\P17.sys
  2783. Image name: P17.sys
  2784. Timestamp: Mon Aug 03 13:11:59 2009 (4A76C5FF)
  2785. CheckSum: 0014239E
  2786. ImageSize: 0017F000
  2787. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  2788. fffff880`047f2000 fffff880`047fe000 ndistapi (deferred)
  2789. Mapped memory image file: c:\symbols\ndistapi.sys\4A5BCCD8c000\ndistapi.sys
  2790. Image path: \SystemRoot\system32\DRIVERS\ndistapi.sys
  2791. Image name: ndistapi.sys
  2792. Timestamp: Tue Jul 14 02:10:00 2009 (4A5BCCD8)
  2793. CheckSum: 000063EA
  2794. ImageSize: 0000C000
  2795. File version: 6.1.7600.16385
  2796. Product version: 6.1.7600.16385
  2797. File flags: 0 (Mask 3F)
  2798. File OS: 40004 NT Win32
  2799. File type: 3.6 Driver
  2800. File date: 00000000.00000000
  2801. Translations: 0409.04b0
  2802. CompanyName: Microsoft Corporation
  2803. ProductName: Microsoft® Windows® Operating System
  2804. InternalName: NDISTAPI.SYS
  2805. OriginalFilename: NDISTAPI.SYS
  2806. ProductVersion: 6.1.7600.16385
  2807. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  2808. FileDescription: NDIS 3.0 connection wrapper driver
  2809. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2810. fffff880`047fe000 fffff880`047ff480 swenum (deferred)
  2811. Mapped memory image file: c:\symbols\swenum.sys\4A5BCA921480\swenum.sys
  2812. Image path: \SystemRoot\system32\drivers\swenum.sys
  2813. Image name: swenum.sys
  2814. Timestamp: Tue Jul 14 02:00:18 2009 (4A5BCA92)
  2815. CheckSum: 0000934E
  2816. ImageSize: 00001480
  2817. File version: 6.1.7600.16385
  2818. Product version: 6.1.7600.16385
  2819. File flags: 0 (Mask 3F)
  2820. File OS: 40004 NT Win32
  2821. File type: 3.0 Driver
  2822. File date: 00000000.00000000
  2823. Translations: 0000.04b0
  2824. CompanyName: Microsoft Corporation
  2825. ProductName: Microsoft® Windows® Operating System
  2826. InternalName: swenum.sys
  2827. OriginalFilename: swenum.sys
  2828. ProductVersion: 6.1.7600.16385
  2829. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  2830. FileDescription: Plug and Play Software Device Enumerator
  2831. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2832. fffff880`04a00000 fffff880`04a15000 amdppm (deferred)
  2833. Mapped memory image file: c:\symbols\amdppm.sys\4A5BC0FD15000\amdppm.sys
  2834. Image path: \SystemRoot\system32\DRIVERS\amdppm.sys
  2835. Image name: amdppm.sys
  2836. Timestamp: Tue Jul 14 01:19:25 2009 (4A5BC0FD)
  2837. CheckSum: 0001EA42
  2838. ImageSize: 00015000
  2839. File version: 6.1.7600.16385
  2840. Product version: 6.1.7600.16385
  2841. File flags: 0 (Mask 3F)
  2842. File OS: 40004 NT Win32
  2843. File type: 3.7 Driver
  2844. File date: 00000000.00000000
  2845. Translations: 0409.04b0
  2846. CompanyName: Microsoft Corporation
  2847. ProductName: Microsoft® Windows® Operating System
  2848. InternalName: amdppm.sys
  2849. OriginalFilename: amdppm.sys
  2850. ProductVersion: 6.1.7600.16385
  2851. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  2852. FileDescription: Processor Device Driver
  2853. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2854. fffff880`04a15000 fffff880`04a25000 CompositeBus (deferred)
  2855. Mapped memory image file: c:\symbols\CompositeBus.sys\4CE7A3ED10000\CompositeBus.sys
  2856. Image path: \SystemRoot\system32\drivers\CompositeBus.sys
  2857. Image name: CompositeBus.sys
  2858. Timestamp: Sat Nov 20 11:33:17 2010 (4CE7A3ED)
  2859. CheckSum: 0000983B
  2860. ImageSize: 00010000
  2861. File version: 6.1.7601.17514
  2862. Product version: 6.1.7601.17514
  2863. File flags: 0 (Mask 3F)
  2864. File OS: 40004 NT Win32
  2865. File type: 2.0 Dll
  2866. File date: 00000000.00000000
  2867. Translations: 0409.04b0
  2868. CompanyName: Microsoft Corporation
  2869. ProductName: Microsoft® Windows® Operating System
  2870. InternalName: compositebus.sys
  2871. OriginalFilename: compositebus.sys
  2872. ProductVersion: 6.1.7601.17514
  2873. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  2874. FileDescription: Multi-Transport Composite Bus Enumerator
  2875. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2876. fffff880`04a26000 fffff880`053fc000 atikmdag (deferred)
  2877. Image path: \SystemRoot\system32\DRIVERS\atikmdag.sys
  2878. Image name: atikmdag.sys
  2879. Timestamp: Thu Jul 28 23:29:03 2011 (4E31D49F)
  2880. CheckSum: 00993241
  2881. ImageSize: 009D6000
  2882. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  2883. fffff880`05c00000 fffff880`05c0d000 mouhid (deferred)
  2884. Mapped memory image file: c:\symbols\mouhid.sys\4A5BCA94d000\mouhid.sys
  2885. Image path: \SystemRoot\system32\DRIVERS\mouhid.sys
  2886. Image name: mouhid.sys
  2887. Timestamp: Tue Jul 14 02:00:20 2009 (4A5BCA94)
  2888. CheckSum: 00009604
  2889. ImageSize: 0000D000
  2890. File version: 6.1.7600.16385
  2891. Product version: 6.1.7600.16385
  2892. File flags: 0 (Mask 3F)
  2893. File OS: 40004 NT Win32
  2894. File type: 2.0 Dll
  2895. File date: 00000000.00000000
  2896. Translations: 0409.04b0
  2897. CompanyName: Microsoft Corporation
  2898. ProductName: Microsoft® Windows® Operating System
  2899. InternalName: mouhid.sys
  2900. OriginalFilename: mouhid.sys
  2901. ProductVersion: 6.1.7600.16385
  2902. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  2903. FileDescription: HID Mouse Filter Driver
  2904. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2905. fffff880`05c0d000 fffff880`05c1d000 point64 (deferred)
  2906. Image path: \SystemRoot\system32\DRIVERS\point64.sys
  2907. Image name: point64.sys
  2908. Timestamp: Wed May 18 10:07:20 2011 (4DD37E38)
  2909. CheckSum: 000178F3
  2910. ImageSize: 00010000
  2911. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  2912. fffff880`05c1d000 fffff880`05c2b000 monitor (deferred)
  2913. Mapped memory image file: c:\symbols\monitor.sys\4A5BC58Ce000\monitor.sys
  2914. Image path: \SystemRoot\system32\DRIVERS\monitor.sys
  2915. Image name: monitor.sys
  2916. Timestamp: Tue Jul 14 01:38:52 2009 (4A5BC58C)
  2917. CheckSum: 000092BF
  2918. ImageSize: 0000E000
  2919. File version: 6.1.7600.16385
  2920. Product version: 6.1.7600.16385
  2921. File flags: 0 (Mask 3F)
  2922. File OS: 40004 NT Win32
  2923. File type: 3.7 Driver
  2924. File date: 00000000.00000000
  2925. Translations: 0409.04b0
  2926. CompanyName: Microsoft Corporation
  2927. ProductName: Microsoft® Windows® Operating System
  2928. InternalName: monitor.sys
  2929. OriginalFilename: monitor.sys
  2930. ProductVersion: 6.1.7600.16385
  2931. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  2932. FileDescription: Monitor Driver
  2933. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2934. fffff880`05c2b000 fffff880`05c48000 usbccgp (deferred)
  2935. Mapped memory image file: c:\symbols\usbccgp.sys\4D8C0C0A1d000\usbccgp.sys
  2936. Image path: \SystemRoot\system32\DRIVERS\usbccgp.sys
  2937. Image name: usbccgp.sys
  2938. Timestamp: Fri Mar 25 04:29:14 2011 (4D8C0C0A)
  2939. CheckSum: 0001B399
  2940. ImageSize: 0001D000
  2941. File version: 6.1.7601.17586
  2942. Product version: 6.1.7601.17586
  2943. File flags: 0 (Mask 3F)
  2944. File OS: 40004 NT Win32
  2945. File type: 2.0 Dll
  2946. File date: 00000000.00000000
  2947. Translations: 0409.04b0
  2948. CompanyName: Microsoft Corporation
  2949. ProductName: Microsoft® Windows® Operating System
  2950. InternalName: USBCCGP.SYS
  2951. OriginalFilename: USBCCGP.SYS
  2952. ProductVersion: 6.1.7601.17586
  2953. FileVersion: 6.1.7601.17586 (win7sp1_gdr.110324-1501)
  2954. FileDescription: USB Common Class Generic Parent Driver
  2955. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2956. fffff880`05c48000 fffff880`05c51000 AsrHidFilter (deferred)
  2957. Image path: \SystemRoot\system32\DRIVERS\AsrHidFilter.sys
  2958. Image name: AsrHidFilter.sys
  2959. Timestamp: Thu Feb 17 10:50:28 2011 (4D5CEF64)
  2960. CheckSum: 0000944E
  2961. ImageSize: 00009000
  2962. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  2963. fffff880`05c51000 fffff880`05cab000 usbhub (deferred)
  2964. Mapped memory image file: c:\symbols\usbhub.sys\4D8C0C155a000\usbhub.sys
  2965. Image path: \SystemRoot\system32\DRIVERS\usbhub.sys
  2966. Image name: usbhub.sys
  2967. Timestamp: Fri Mar 25 04:29:25 2011 (4D8C0C15)
  2968. CheckSum: 00054F31
  2969. ImageSize: 0005A000
  2970. File version: 6.1.7601.17586
  2971. Product version: 6.1.7601.17586
  2972. File flags: 0 (Mask 3F)
  2973. File OS: 40004 NT Win32
  2974. File type: 2.0 Dll
  2975. File date: 00000000.00000000
  2976. Translations: 0409.04b0
  2977. CompanyName: Microsoft Corporation
  2978. ProductName: Microsoft® Windows® Operating System
  2979. InternalName: usbhub.sys
  2980. OriginalFilename: usbhub.sys
  2981. ProductVersion: 6.1.7601.17586
  2982. FileVersion: 6.1.7601.17586 (win7sp1_gdr.110324-1501)
  2983. FileDescription: Default Hub Driver for USB
  2984. LegalCopyright: © Microsoft Corporation. All rights reserved.
  2985. fffff880`05cab000 fffff880`05cc0000 NDProxy (deferred)
  2986. Mapped memory image file: c:\symbols\NDProxy.SYS\4CE7A86415000\NDProxy.SYS
  2987. Image path: \SystemRoot\System32\Drivers\NDProxy.SYS
  2988. Image name: NDProxy.SYS
  2989. Timestamp: Sat Nov 20 11:52:20 2010 (4CE7A864)
  2990. CheckSum: 00019428
  2991. ImageSize: 00015000
  2992. File version: 6.1.7601.17514
  2993. Product version: 6.1.7601.17514
  2994. File flags: 0 (Mask 3F)
  2995. File OS: 40004 NT Win32
  2996. File type: 3.7 Driver
  2997. File date: 00000000.00000000
  2998. Translations: 0409.04b0
  2999. CompanyName: Microsoft Corporation
  3000. ProductName: Microsoft® Windows® Operating System
  3001. InternalName: ndproxy.sys
  3002. OriginalFilename: ndproxy.sys
  3003. ProductVersion: 6.1.7601.17514
  3004. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  3005. FileDescription: NDIS Proxy
  3006. LegalCopyright: © Microsoft Corporation. All rights reserved.
  3007. fffff880`05cc0000 fffff880`05cfe000 AtihdW76 (deferred)
  3008. Image path: \SystemRoot\system32\drivers\AtihdW76.sys
  3009. Image name: AtihdW76.sys
  3010. Timestamp: Tue Jun 07 12:34:39 2011 (4DEDFEBF)
  3011. CheckSum: 00044B04
  3012. ImageSize: 0003E000
  3013. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  3014. fffff880`05cfe000 fffff880`05d5a000 HdAudio (deferred)
  3015. Mapped memory image file: c:\symbols\HdAudio.sys\4CE7A6875c000\HdAudio.sys
  3016. Image path: \SystemRoot\system32\drivers\HdAudio.sys
  3017. Image name: HdAudio.sys
  3018. Timestamp: Sat Nov 20 11:44:23 2010 (4CE7A687)
  3019. CheckSum: 000598DA
  3020. ImageSize: 0005C000
  3021. File version: 6.1.7601.17514
  3022. Product version: 6.1.7601.17514
  3023. File flags: 0 (Mask 3F)
  3024. File OS: 40004 NT Win32
  3025. File type: 3.9 Driver
  3026. File date: 00000000.00000000
  3027. Translations: 0409.04b0
  3028. CompanyName: Microsoft Corporation
  3029. ProductName: Microsoft® Windows® Operating System
  3030. InternalName: HDAudio.sys
  3031. OriginalFilename: HDAudio.sys
  3032. ProductVersion: 6.1.7601.17514
  3033. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  3034. FileDescription: High Definition Audio Function Driver
  3035. LegalCopyright: © Microsoft Corporation. All rights reserved.
  3036. fffff880`05d5a000 fffff880`05d66000 Dxapi (deferred)
  3037. Mapped memory image file: c:\symbols\Dxapi.sys\4A5BC574c000\Dxapi.sys
  3038. Image path: \SystemRoot\System32\drivers\Dxapi.sys
  3039. Image name: Dxapi.sys
  3040. Timestamp: Tue Jul 14 01:38:28 2009 (4A5BC574)
  3041. CheckSum: 0001418E
  3042. ImageSize: 0000C000
  3043. File version: 6.1.7600.16385
  3044. Product version: 6.1.7600.16385
  3045. File flags: 0 (Mask 3F)
  3046. File OS: 40004 NT Win32
  3047. File type: 3.7 Driver
  3048. File date: 00000000.00000000
  3049. Translations: 0409.04b0
  3050. CompanyName: Microsoft Corporation
  3051. ProductName: Microsoft® Windows® Operating System
  3052. InternalName: dxapi.sys
  3053. OriginalFilename: dxapi.sys
  3054. ProductVersion: 6.1.7600.16385
  3055. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  3056. FileDescription: DirectX API Driver
  3057. LegalCopyright: © Microsoft Corporation. All rights reserved.
  3058. fffff880`05d66000 fffff880`05d74000 crashdmp (deferred)
  3059. Mapped memory image file: c:\symbols\crashdmp.sys\4A5BCABDe000\crashdmp.sys
  3060. Image path: \SystemRoot\System32\Drivers\crashdmp.sys
  3061. Image name: crashdmp.sys
  3062. Timestamp: Tue Jul 14 02:01:01 2009 (4A5BCABD)
  3063. CheckSum: 000178C7
  3064. ImageSize: 0000E000
  3065. File version: 6.1.7600.16385
  3066. Product version: 6.1.7600.16385
  3067. File flags: 0 (Mask 3F)
  3068. File OS: 40004 NT Win32
  3069. File type: 3.7 Driver
  3070. File date: 00000000.00000000
  3071. Translations: 0409.04b0
  3072. CompanyName: Microsoft Corporation
  3073. ProductName: Microsoft® Windows® Operating System
  3074. InternalName: crashdmp.sys
  3075. OriginalFilename: crashdmp.sys
  3076. ProductVersion: 6.1.7600.16385
  3077. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  3078. FileDescription: Crash Dump Driver
  3079. LegalCopyright: © Microsoft Corporation. All rights reserved.
  3080. fffff880`05d74000 fffff880`05d7e000 dump_diskdump (deferred)
  3081. Mapped memory image file: c:\symbols\diskdump.sys\4DB1DF50a000\diskdump.sys
  3082. Image path: \SystemRoot\System32\Drivers\dump_diskdump.sys
  3083. Image name: dump_diskdump.sys
  3084. Timestamp: Fri Apr 22 22:04:32 2011 (4DB1DF50)
  3085. CheckSum: 0000E8AB
  3086. ImageSize: 0000A000
  3087. File version: 6.1.7601.17601
  3088. Product version: 6.1.7601.17601
  3089. File flags: 0 (Mask 3F)
  3090. File OS: 40004 NT Win32
  3091. File type: 3.7 Driver
  3092. File date: 00000000.00000000
  3093. Translations: 0409.04b0
  3094. CompanyName: Microsoft Corporation
  3095. ProductName: Microsoft® Windows® Operating System
  3096. InternalName: diskdump.sys
  3097. OriginalFilename: diskdump.sys
  3098. ProductVersion: 6.1.7601.17601
  3099. FileVersion: 6.1.7601.17601 (win7sp1_gdr.110422-0546)
  3100. FileDescription: Crash Dump Disk Driver
  3101. LegalCopyright: © Microsoft Corporation. All rights reserved.
  3102. fffff880`05d7e000 fffff880`05d95000 dump_amd_sata (deferred)
  3103. Image path: \SystemRoot\System32\Drivers\dump_amd_sata.sys
  3104. Image name: dump_amd_sata.sys
  3105. Timestamp: Fri Apr 15 20:37:14 2011 (4DA8905A)
  3106. CheckSum: 0001BF2D
  3107. ImageSize: 00017000
  3108. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  3109. fffff880`05d95000 fffff880`05da8000 dump_dumpfve (deferred)
  3110. Mapped memory image file: c:\symbols\dumpfve.sys\4A5BC18F13000\dumpfve.sys
  3111. Image path: \SystemRoot\System32\Drivers\dump_dumpfve.sys
  3112. Image name: dump_dumpfve.sys
  3113. Timestamp: Tue Jul 14 01:21:51 2009 (4A5BC18F)
  3114. CheckSum: 00010DEA
  3115. ImageSize: 00013000
  3116. File version: 6.1.7600.16385
  3117. Product version: 6.1.7600.16385
  3118. File flags: 0 (Mask 3F)
  3119. File OS: 40004 NT Win32
  3120. File type: 3.7 Driver
  3121. File date: 00000000.00000000
  3122. Translations: 0000.04b0
  3123. CompanyName: Microsoft Corporation
  3124. ProductName: Microsoft® Windows® Operating System
  3125. InternalName: dumpfve.sys
  3126. OriginalFilename: dumpfve.sys
  3127. ProductVersion: 6.1.7600.16385
  3128. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  3129. FileDescription: Bitlocker Drive Encryption Crashdump Filter
  3130. LegalCopyright: © Microsoft Corporation. All rights reserved.
  3131. fffff880`05da8000 fffff880`05dba000 dc3d (deferred)
  3132. Image path: \SystemRoot\system32\DRIVERS\dc3d.sys
  3133. Image name: dc3d.sys
  3134. Timestamp: Wed May 18 10:07:24 2011 (4DD37E3C)
  3135. CheckSum: 00015D2A
  3136. ImageSize: 00012000
  3137. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  3138. fffff880`05dba000 fffff880`05dc2080 HIDPARSE (deferred)
  3139. Mapped memory image file: c:\symbols\HIDPARSE.SYS\4A5BCBF98080\HIDPARSE.SYS
  3140. Image path: \SystemRoot\system32\DRIVERS\HIDPARSE.SYS
  3141. Image name: HIDPARSE.SYS
  3142. Timestamp: Tue Jul 14 02:06:17 2009 (4A5BCBF9)
  3143. CheckSum: 0000D669
  3144. ImageSize: 00008080
  3145. File version: 6.1.7600.16385
  3146. Product version: 6.1.7600.16385
  3147. File flags: 0 (Mask 3F)
  3148. File OS: 40004 NT Win32
  3149. File type: 2.0 Dll
  3150. File date: 00000000.00000000
  3151. Translations: 0409.04b0
  3152. CompanyName: Microsoft Corporation
  3153. ProductName: Microsoft® Windows® Operating System
  3154. InternalName: hidparse.sys
  3155. OriginalFilename: hidparse.sys
  3156. ProductVersion: 6.1.7600.16385
  3157. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  3158. FileDescription: Hid Parsing Library
  3159. LegalCopyright: © Microsoft Corporation. All rights reserved.
  3160. fffff880`05dc3000 fffff880`05dd1000 hidusb (deferred)
  3161. Mapped memory image file: c:\symbols\hidusb.sys\4CE7A665e000\hidusb.sys
  3162. Image path: \SystemRoot\system32\drivers\hidusb.sys
  3163. Image name: hidusb.sys
  3164. Timestamp: Sat Nov 20 11:43:49 2010 (4CE7A665)
  3165. CheckSum: 00012706
  3166. ImageSize: 0000E000
  3167. File version: 6.1.7601.17514
  3168. Product version: 6.1.7601.17514
  3169. File flags: 0 (Mask 3F)
  3170. File OS: 40004 NT Win32
  3171. File type: 2.0 Dll
  3172. File date: 00000000.00000000
  3173. Translations: 0409.04b0
  3174. CompanyName: Microsoft Corporation
  3175. ProductName: Microsoft® Windows® Operating System
  3176. InternalName: HIDUSB.SYS
  3177. OriginalFilename: HIDUSB.SYS
  3178. ProductVersion: 6.1.7601.17514
  3179. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  3180. FileDescription: USB Miniport Driver for Input Devices
  3181. LegalCopyright: © Microsoft Corporation. All rights reserved.
  3182. fffff880`05dd1000 fffff880`05dea000 HIDCLASS (deferred)
  3183. Mapped memory image file: c:\symbols\HIDCLASS.SYS\4CE7A66519000\HIDCLASS.SYS
  3184. Image path: \SystemRoot\system32\drivers\HIDCLASS.SYS
  3185. Image name: HIDCLASS.SYS
  3186. Timestamp: Sat Nov 20 11:43:49 2010 (4CE7A665)
  3187. CheckSum: 00015D32
  3188. ImageSize: 00019000
  3189. File version: 6.1.7601.17514
  3190. Product version: 6.1.7601.17514
  3191. File flags: 0 (Mask 3F)
  3192. File OS: 40004 NT Win32
  3193. File type: 2.0 Dll
  3194. File date: 00000000.00000000
  3195. Translations: 0409.04b0
  3196. CompanyName: Microsoft Corporation
  3197. ProductName: Microsoft® Windows® Operating System
  3198. InternalName: hidclass.sys
  3199. OriginalFilename: hidclass.sys
  3200. ProductVersion: 6.1.7601.17514
  3201. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  3202. FileDescription: Hid Class Library
  3203. LegalCopyright: © Microsoft Corporation. All rights reserved.
  3204. fffff880`05dea000 fffff880`05df6000 NuidFltr (deferred)
  3205. Image path: \SystemRoot\system32\DRIVERS\NuidFltr.sys
  3206. Image name: NuidFltr.sys
  3207. Timestamp: Sat Apr 09 00:58:16 2011 (4D9F9308)
  3208. CheckSum: 000060BD
  3209. ImageSize: 0000C000
  3210. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  3211. fffff880`07000000 fffff880`0702c000 rfcomm (deferred)
  3212. Mapped memory image file: c:\symbols\rfcomm.sys\4A5BCC202c000\rfcomm.sys
  3213. Image path: \SystemRoot\system32\DRIVERS\rfcomm.sys
  3214. Image name: rfcomm.sys
  3215. Timestamp: Tue Jul 14 02:06:56 2009 (4A5BCC20)
  3216. CheckSum: 00032F30
  3217. ImageSize: 0002C000
  3218. File version: 6.1.7600.16385
  3219. Product version: 6.1.7600.16385
  3220. File flags: 0 (Mask 3F)
  3221. File OS: 40004 NT Win32
  3222. File type: 3.6 Driver
  3223. File date: 00000000.00000000
  3224. Translations: 0409.04b0
  3225. CompanyName: Microsoft Corporation
  3226. ProductName: Microsoft® Windows® Operating System
  3227. InternalName: rfcomm.sys
  3228. OriginalFilename: rfcomm.sys
  3229. ProductVersion: 6.1.7600.16385
  3230. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  3231. FileDescription: Bluetooth RFCOMM Driver
  3232. LegalCopyright: © Microsoft Corporation. All rights reserved.
  3233. fffff880`0702c000 fffff880`07037000 secdrv (deferred)
  3234. Image path: \SystemRoot\System32\Drivers\secdrv.SYS
  3235. Image name: secdrv.SYS
  3236. Timestamp: Wed Sep 13 15:18:38 2006 (4508052E)
  3237. CheckSum: 00010B40
  3238. ImageSize: 0000B000
  3239. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  3240. fffff880`07037000 fffff880`07047000 BthEnum (deferred)
  3241. Mapped memory image file: c:\symbols\BthEnum.sys\4A5BCC1C10000\BthEnum.sys
  3242. Image path: \SystemRoot\system32\drivers\BthEnum.sys
  3243. Image name: BthEnum.sys
  3244. Timestamp: Tue Jul 14 02:06:52 2009 (4A5BCC1C)
  3245. CheckSum: 0001063B
  3246. ImageSize: 00010000
  3247. File version: 6.1.7600.16385
  3248. Product version: 6.1.7600.16385
  3249. File flags: 0 (Mask 3F)
  3250. File OS: 40004 NT Win32
  3251. File type: 3.7 Driver
  3252. File date: 00000000.00000000
  3253. Translations: 0409.04b0
  3254. CompanyName: Microsoft Corporation
  3255. ProductName: Microsoft® Windows® Operating System
  3256. InternalName: bthenum.SYS
  3257. OriginalFilename: bthenum.SYS
  3258. ProductVersion: 6.1.7600.16385
  3259. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  3260. FileDescription: Bluetooth Bus Extender
  3261. LegalCopyright: © Microsoft Corporation. All rights reserved.
  3262. fffff880`07047000 fffff880`07067000 bthpan (deferred)
  3263. Mapped memory image file: c:\symbols\bthpan.sys\4A5BCC2420000\bthpan.sys
  3264. Image path: \SystemRoot\system32\DRIVERS\bthpan.sys
  3265. Image name: bthpan.sys
  3266. Timestamp: Tue Jul 14 02:07:00 2009 (4A5BCC24)
  3267. CheckSum: 0001F80B
  3268. ImageSize: 00020000
  3269. File version: 6.1.7600.16385
  3270. Product version: 6.1.7600.16385
  3271. File flags: 0 (Mask 3F)
  3272. File OS: 40004 NT Win32
  3273. File type: 3.7 Driver
  3274. File date: 00000000.00000000
  3275. Translations: 0409.04b0
  3276. CompanyName: Microsoft Corporation
  3277. ProductName: Microsoft® Windows® Operating System
  3278. InternalName: bthpan.sys
  3279. OriginalFilename: bthpan.sys
  3280. ProductVersion: 6.1.7600.16385
  3281. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  3282. FileDescription: Bluetooth Personal Area Networking
  3283. LegalCopyright: © Microsoft Corporation. All rights reserved.
  3284. fffff880`07067000 fffff880`07098000 srvnet (deferred)
  3285. Mapped memory image file: c:\symbols\srvnet.sys\4DBA2AFF31000\srvnet.sys
  3286. Image path: \SystemRoot\System32\DRIVERS\srvnet.sys
  3287. Image name: srvnet.sys
  3288. Timestamp: Fri Apr 29 05:05:35 2011 (4DBA2AFF)
  3289. CheckSum: 0003409F
  3290. ImageSize: 00031000
  3291. File version: 6.1.7601.17608
  3292. Product version: 6.1.7601.17608
  3293. File flags: 0 (Mask 3F)
  3294. File OS: 40004 NT Win32
  3295. File type: 3.6 Driver
  3296. File date: 00000000.00000000
  3297. Translations: 0409.04b0
  3298. CompanyName: Microsoft Corporation
  3299. ProductName: Microsoft® Windows® Operating System
  3300. InternalName: SRVNET.SYS
  3301. OriginalFilename: SRVNET.SYS
  3302. ProductVersion: 6.1.7601.17608
  3303. FileVersion: 6.1.7601.17608 (win7sp1_gdr.110428-1525)
  3304. FileDescription: Server Network driver
  3305. LegalCopyright: © Microsoft Corporation. All rights reserved.
  3306. fffff880`07098000 fffff880`070aa000 tcpipreg (deferred)
  3307. Mapped memory image file: c:\symbols\tcpipreg.sys\4CE7A84412000\tcpipreg.sys
  3308. Image path: \SystemRoot\System32\drivers\tcpipreg.sys
  3309. Image name: tcpipreg.sys
  3310. Timestamp: Sat Nov 20 11:51:48 2010 (4CE7A844)
  3311. CheckSum: 0000F328
  3312. ImageSize: 00012000
  3313. File version: 6.1.7601.17514
  3314. Product version: 6.1.7601.17514
  3315. File flags: 0 (Mask 3F)
  3316. File OS: 40004 NT Win32
  3317. File type: 1.0 App
  3318. File date: 00000000.00000000
  3319. Translations: 0409.04b0
  3320. CompanyName: Microsoft Corporation
  3321. ProductName: Microsoft® Windows® Operating System
  3322. InternalName: tcpipreg.sys
  3323. OriginalFilename: tcpipreg.sys
  3324. ProductVersion: 6.1.7601.17514
  3325. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  3326. FileDescription: TCP/IP Registry Compatibility Driver
  3327. LegalCopyright: © Microsoft Corporation. All rights reserved.
  3328. fffff880`070aa000 fffff880`070db000 WUDFRd (deferred)
  3329. Mapped memory image file: c:\symbols\WUDFRd.sys\4CE7A65431000\WUDFRd.sys
  3330. Image path: \SystemRoot\system32\DRIVERS\WUDFRd.sys
  3331. Image name: WUDFRd.sys
  3332. Timestamp: Sat Nov 20 11:43:32 2010 (4CE7A654)
  3333. CheckSum: 0002E568
  3334. ImageSize: 00031000
  3335. File version: 6.1.7601.17514
  3336. Product version: 6.1.7601.17514
  3337. File flags: 0 (Mask 3F)
  3338. File OS: 40004 NT Win32
  3339. File type: 3.7 Driver
  3340. File date: 00000000.00000000
  3341. Translations: 0409.04b0
  3342. CompanyName: Microsoft Corporation
  3343. ProductName: Microsoft® Windows® Operating System
  3344. InternalName: WUDFRd.sys
  3345. OriginalFilename: WUDFRd.sys
  3346. ProductVersion: 6.1.7601.17514
  3347. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  3348. FileDescription: Windows Driver Foundation - User-mode Driver Framework Reflector
  3349. LegalCopyright: © Microsoft Corporation. All rights reserved.
  3350. fffff880`070db000 fffff880`070f6000 USBSTOR (deferred)
  3351. Mapped memory image file: c:\symbols\USBSTOR.SYS\4D79A6FC1b000\USBSTOR.SYS
  3352. Image path: \SystemRoot\system32\DRIVERS\USBSTOR.SYS
  3353. Image name: USBSTOR.SYS
  3354. Timestamp: Fri Mar 11 05:37:16 2011 (4D79A6FC)
  3355. CheckSum: 00026255
  3356. ImageSize: 0001B000
  3357. File version: 6.1.7601.17577
  3358. Product version: 6.1.7601.17577
  3359. File flags: 0 (Mask 3F)
  3360. File OS: 40004 NT Win32
  3361. File type: 2.0 Dll
  3362. File date: 00000000.00000000
  3363. Translations: 0409.04b0
  3364. CompanyName: Microsoft Corporation
  3365. ProductName: Microsoft® Windows® Operating System
  3366. InternalName: usbstor.sys
  3367. OriginalFilename: usbstor.sys
  3368. ProductVersion: 6.1.7601.17577
  3369. FileVersion: 6.1.7601.17577 (win7sp1_gdr.110310-1504)
  3370. FileDescription: USB Mass Storage Class Driver
  3371. LegalCopyright: © Microsoft Corporation. All rights reserved.
  3372. fffff880`070f8000 fffff880`07129000 AODDriver2 (deferred)
  3373. Image path: \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys
  3374. Image name: AODDriver2.sys
  3375. Timestamp: Wed Jun 15 10:38:35 2011 (4DF86F8B)
  3376. CheckSum: 00012DF4
  3377. ImageSize: 00031000
  3378. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  3379. fffff880`07132000 fffff880`071d8000 peauth (deferred)
  3380. Image path: \SystemRoot\system32\drivers\peauth.sys
  3381. Image name: peauth.sys
  3382. Timestamp: Tue Jul 14 03:01:19 2009 (4A5BD8DF)
  3383. CheckSum: 000AB7C9
  3384. ImageSize: 000A6000
  3385. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  3386. fffff880`07c0b000 fffff880`07c13000 AxtuDrv (deferred)
  3387. Image path: \??\C:\Windows\SysWOW64\Drivers\AxtuDrv.sys
  3388. Image name: AxtuDrv.sys
  3389. Timestamp: Thu May 19 09:42:38 2011 (4DD4C9EE)
  3390. CheckSum: 00010ABD
  3391. ImageSize: 00008000
  3392. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  3393. fffff880`07c71000 fffff880`07cc4000 nwifi (deferred)
  3394. Mapped memory image file: c:\symbols\nwifi.sys\4A5BCC3B53000\nwifi.sys
  3395. Image path: \SystemRoot\system32\DRIVERS\nwifi.sys
  3396. Image name: nwifi.sys
  3397. Timestamp: Tue Jul 14 02:07:23 2009 (4A5BCC3B)
  3398. CheckSum: 00057B55
  3399. ImageSize: 00053000
  3400. File version: 6.1.7600.16385
  3401. Product version: 6.1.7600.16385
  3402. File flags: 0 (Mask 3F)
  3403. File OS: 40004 NT Win32
  3404. File type: 3.6 Driver
  3405. File date: 00000000.00000000
  3406. Translations: 0409.04b0
  3407. CompanyName: Microsoft Corporation
  3408. ProductName: Microsoft® Windows® Operating System
  3409. InternalName: NWiFi.SYS
  3410. OriginalFilename: NWiFi.SYS
  3411. ProductVersion: 6.1.7600.16385
  3412. FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
  3413. FileDescription: NativeWiFi Miniport Driver
  3414. LegalCopyright: © Microsoft Corporation. All rights reserved.
  3415. fffff880`07cc4000 fffff880`07cd7000 ndisuio (deferred)
  3416. Mapped memory image file: c:\symbols\ndisuio.sys\4CE7A7E013000\ndisuio.sys
  3417. Image path: \SystemRoot\system32\DRIVERS\ndisuio.sys
  3418. Image name: ndisuio.sys
  3419. Timestamp: Sat Nov 20 11:50:08 2010 (4CE7A7E0)
  3420. CheckSum: 0001D42D
  3421. ImageSize: 00013000
  3422. File version: 6.1.7601.17514
  3423. Product version: 6.1.7601.17514
  3424. File flags: 0 (Mask 3F)
  3425. File OS: 40004 NT Win32
  3426. File type: 3.6 Driver
  3427. File date: 00000000.00000000
  3428. Translations: 0409.04b0
  3429. CompanyName: Microsoft Corporation
  3430. ProductName: Microsoft® Windows® Operating System
  3431. InternalName: NDISUIO.SYS
  3432. OriginalFilename: NDISUIO.SYS
  3433. ProductVersion: 6.1.7601.17514
  3434. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  3435. FileDescription: NDIS User mode I/O driver
  3436. LegalCopyright: © Microsoft Corporation. All rights reserved.
  3437. fffff880`07cd7000 fffff880`07ce4000 FNETTBOH_305 (deferred)
  3438. Image path: \SystemRoot\System32\drivers\FNETTBOH_305.SYS
  3439. Image name: FNETTBOH_305.SYS
  3440. Timestamp: Wed Nov 03 07:24:26 2010 (4CD1001A)
  3441. CheckSum: 00008787
  3442. ImageSize: 0000D000
  3443. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  3444. fffff880`07ce4000 fffff880`07cf5000 WinUSB (deferred)
  3445. Mapped memory image file: c:\symbols\WinUSB.sys\4CE7A66C11000\WinUSB.sys
  3446. Image path: \SystemRoot\system32\DRIVERS\WinUSB.sys
  3447. Image name: WinUSB.sys
  3448. Timestamp: Sat Nov 20 11:43:56 2010 (4CE7A66C)
  3449. CheckSum: 00017662
  3450. ImageSize: 00011000
  3451. File version: 6.1.7601.17514
  3452. Product version: 6.1.7601.17514
  3453. File flags: 0 (Mask 3F)
  3454. File OS: 40004 NT Win32
  3455. File type: 2.0 Dll
  3456. File date: 00000000.00000000
  3457. Translations: 0409.04b0
  3458. CompanyName: Microsoft Corporation
  3459. ProductName: Microsoft® Windows® Operating System
  3460. InternalName: winusb.sys
  3461. OriginalFilename: winusb.sys
  3462. ProductVersion: 6.1.7601.17514
  3463. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  3464. FileDescription: Windows USB Class Driver BETA
  3465. LegalCopyright: © Microsoft Corporation. All rights reserved.
  3466. fffff880`07cf5000 fffff880`07d5e000 srv2 (deferred)
  3467. Mapped memory image file: c:\symbols\srv2.sys\4DBA2B0A69000\srv2.sys
  3468. Image path: \SystemRoot\System32\DRIVERS\srv2.sys
  3469. Image name: srv2.sys
  3470. Timestamp: Fri Apr 29 05:05:46 2011 (4DBA2B0A)
  3471. CheckSum: 0006CA1E
  3472. ImageSize: 00069000
  3473. File version: 6.1.7601.17608
  3474. Product version: 6.1.7601.17608
  3475. File flags: 0 (Mask 3F)
  3476. File OS: 40004 NT Win32
  3477. File type: 3.6 Driver
  3478. File date: 00000000.00000000
  3479. Translations: 0409.04b0
  3480. CompanyName: Microsoft Corporation
  3481. ProductName: Microsoft® Windows® Operating System
  3482. InternalName: SRV2.SYS
  3483. OriginalFilename: SRV2.SYS
  3484. ProductVersion: 6.1.7601.17608
  3485. FileVersion: 6.1.7601.17608 (win7sp1_gdr.110428-1525)
  3486. FileDescription: Smb 2.0 Server driver
  3487. LegalCopyright: © Microsoft Corporation. All rights reserved.
  3488. fffff880`07d5e000 fffff880`07df6000 srv (deferred)
  3489. Mapped memory image file: c:\symbols\srv.sys\4DBA2B1E98000\srv.sys
  3490. Image path: \SystemRoot\System32\DRIVERS\srv.sys
  3491. Image name: srv.sys
  3492. Timestamp: Fri Apr 29 05:06:06 2011 (4DBA2B1E)
  3493. CheckSum: 0007C839
  3494. ImageSize: 00098000
  3495. File version: 6.1.7601.17608
  3496. Product version: 6.1.7601.17608
  3497. File flags: 0 (Mask 3F)
  3498. File OS: 40004 NT Win32
  3499. File type: 3.6 Driver
  3500. File date: 00000000.00000000
  3501. Translations: 0409.04b0
  3502. CompanyName: Microsoft Corporation
  3503. ProductName: Microsoft® Windows® Operating System
  3504. InternalName: SRV.SYS
  3505. OriginalFilename: SRV.SYS
  3506. ProductVersion: 6.1.7601.17608
  3507. FileVersion: 6.1.7601.17608 (win7sp1_gdr.110428-1525)
  3508. FileDescription: Server driver
  3509. LegalCopyright: © Microsoft Corporation. All rights reserved.
  3510. fffff960`000e0000 fffff960`003f3000 win32k (deferred)
  3511. Mapped memory image file: c:\symbols\win32k.sys\4DF2DBD1313000\win32k.sys
  3512. Image path: \SystemRoot\System32\win32k.sys
  3513. Image name: win32k.sys
  3514. Timestamp: Sat Jun 11 05:06:57 2011 (4DF2DBD1)
  3515. CheckSum: 0030288A
  3516. ImageSize: 00313000
  3517. File version: 6.1.7601.17630
  3518. Product version: 6.1.7601.17630
  3519. File flags: 0 (Mask 3F)
  3520. File OS: 40004 NT Win32
  3521. File type: 3.7 Driver
  3522. File date: 00000000.00000000
  3523. Translations: 0409.04b0
  3524. CompanyName: Microsoft Corporation
  3525. ProductName: Microsoft® Windows® Operating System
  3526. InternalName: win32k.sys
  3527. OriginalFilename: win32k.sys
  3528. ProductVersion: 6.1.7601.17630
  3529. FileVersion: 6.1.7601.17630 (win7sp1_gdr.110610-1502)
  3530. FileDescription: Multi-User Win32 Driver
  3531. LegalCopyright: © Microsoft Corporation. All rights reserved.
  3532. fffff960`00580000 fffff960`0058a000 TSDDD (deferred)
  3533. Image path: \SystemRoot\System32\TSDDD.dll
  3534. Image name: TSDDD.dll
  3535. Timestamp: unavailable (00000000)
  3536. CheckSum: 00000000
  3537. ImageSize: 0000A000
  3538. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  3539. fffff960`00720000 fffff960`00747000 cdd (deferred)
  3540. Mapped memory image file: c:\symbols\cdd.dll\4CE7C54627000\cdd.dll
  3541. Image path: \SystemRoot\System32\cdd.dll
  3542. Image name: cdd.dll
  3543. Timestamp: Sat Nov 20 13:55:34 2010 (4CE7C546)
  3544. CheckSum: 0002D4F0
  3545. ImageSize: 00027000
  3546. File version: 6.1.7601.17514
  3547. Product version: 6.1.7601.17514
  3548. File flags: 0 (Mask 3F)
  3549. File OS: 40004 NT Win32
  3550. File type: 3.4 Driver
  3551. File date: 00000000.00000000
  3552. Translations: 0000.04b0
  3553. CompanyName: Microsoft Corporation
  3554. ProductName: Microsoft® Windows® Operating System
  3555. InternalName: cdd.dll
  3556. OriginalFilename: cdd.dll
  3557. ProductVersion: 6.1.7601.17514
  3558. FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
  3559. FileDescription: Canonical Display Driver
  3560. LegalCopyright: © Microsoft Corporation. All rights reserved.
  3561. fffff960`008d0000 fffff960`00931000 ATMFD (deferred)
  3562. Image path: \SystemRoot\System32\ATMFD.DLL
  3563. Image name: ATMFD.DLL
  3564. Timestamp: Sat Feb 19 10:00:32 2011 (4D5F86B0)
  3565. CheckSum: 000606E3
  3566. ImageSize: 00061000
  3567. Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
  3568.  
  3569. Unloaded modules:
  3570. fffff880`07c00000 fffff880`07c0b000 kerneld.x64
  3571. Timestamp: unavailable (00000000)
  3572. Checksum: 00000000
  3573. ImageSize: 0000B000
  3574. fffff880`07129000 fffff880`07132000 cpuz135_x64.
  3575. Timestamp: unavailable (00000000)
  3576. Checksum: 00000000
  3577. ImageSize: 00009000
  3578. fffff880`07df6000 fffff880`07dfe000 AxtuDrv.sys
  3579. Timestamp: unavailable (00000000)
  3580. Checksum: 00000000
  3581. ImageSize: 00008000
  3582. fffff880`07c00000 fffff880`07c71000 spsys.sys
  3583. Timestamp: unavailable (00000000)
  3584. Checksum: 00000000
  3585. ImageSize: 00071000
  3586. fffff880`070aa000 fffff880`070db000 WUDFRd.sys
  3587. Timestamp: unavailable (00000000)
  3588. Checksum: 00000000
  3589. ImageSize: 00031000
  3590. fffff880`07cd7000 fffff880`07cf2000 USBSTOR.SYS
  3591. Timestamp: unavailable (00000000)
  3592. Checksum: 00000000
  3593. ImageSize: 0001B000
  3594. fffff880`01846000 fffff880`01854000 crashdmp.sys
  3595. Timestamp: unavailable (00000000)
  3596. Checksum: 00000000
  3597. ImageSize: 0000E000
  3598. fffff880`01854000 fffff880`0185e000 dump_storpor
  3599. Timestamp: unavailable (00000000)
  3600. Checksum: 00000000
  3601. ImageSize: 0000A000
  3602. fffff880`0185e000 fffff880`01875000 dump_amd_sat
  3603. Timestamp: unavailable (00000000)
  3604. Checksum: 00000000
  3605. ImageSize: 00017000
  3606. fffff880`01875000 fffff880`01888000 dump_dumpfve
  3607. Timestamp: unavailable (00000000)
  3608. Checksum: 00000000
  3609. ImageSize: 00013000
  3610. fffff880`04397000 fffff880`04399000 USBD.SYS
  3611. Timestamp: unavailable (00000000)
  3612. Checksum: 00000000
  3613. ImageSize: 00002000
  3614. fffff880`0438e000 fffff880`04397000 AsrHidFilter
  3615. Timestamp: unavailable (00000000)
  3616. Checksum: 00000000
  3617. ImageSize: 00009000
  3618. 2: kd> q
  3619. quit:
  3620.  
  3621.  
Advertisement
Add Comment
Please, Sign In to add comment