Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Microsoft (R) Windows Debugger Version 6.12.0002.633 AMD64
- Copyright (c) Microsoft Corporation. All rights reserved.
- Loading Dump File [C:\Windows\Minidump\052214-9796-01.dmp]
- Mini Kernel Dump File: Only registers and stack trace are available
- Symbol search path is: srv*c:\cache*http://msdl.microsoft.com/download/symbols
- Executable search path is:
- Windows 7 Kernel Version 7601 (Service Pack 1) MP (8 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS Personal
- Built by: 7601.18229.amd64fre.win7sp1_gdr.130801-1533
- Machine Name:
- Kernel base = 0xfffff800`03453000 PsLoadedModuleList = 0xfffff800`036966d0
- Debug session time: Thu May 22 19:31:40.291 2014 (UTC + 3:00)
- System Uptime: 0 days 23:54:28.134
- Loading Kernel Symbols
- ...............................................................
- ................................................................
- .................................................
- Loading User Symbols
- Loading unloaded module list
- ................
- *******************************************************************************
- * *
- * Bugcheck Analysis *
- * *
- *******************************************************************************
- Use !analyze -v to get detailed debugging information.
- BugCheck 3B, {c0000005, fffff800034dcf9a, fffff880209bce10, 0}
- Probably caused by : ntkrnlmp.exe ( nt!KiSystemServiceHandler+7c )
- Followup: MachineOwner
- ---------
- 0: kd> !analyze -v
- *******************************************************************************
- * *
- * Bugcheck Analysis *
- * *
- *******************************************************************************
- SYSTEM_SERVICE_EXCEPTION (3b)
- An exception happened while executing a system service routine.
- Arguments:
- Arg1: 00000000c0000005, Exception code that caused the bugcheck
- Arg2: fffff800034dcf9a, Address of the instruction which caused the bugcheck
- Arg3: fffff880209bce10, Address of the context record for the exception that caused the bugcheck
- Arg4: 0000000000000000, zero.
- Debugging Details:
- ------------------
- EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%08lx referenced memory at 0x%08lx. The memory could not be %s.
- FAULTING_IP:
- nt!IopCompleteRequest+2a
- fffff800`034dcf9a 498b39 mov rdi,qword ptr [r9]
- CONTEXT: fffff880209bce10 -- (.cxr 0xfffff880209bce10)
- rax=fffff880209bd958 rbx=fffffa800d8fe920 rcx=fffffa800d8fe998
- rdx=fffff880209bd950 rsi=fffffa8018879460 rdi=0000000000000100
- rip=fffff800034dcf9a rsp=fffff880209bd7f0 rbp=0000000000000000
- r8=fffff880209bd8f8 r9=0000000000000000 r10=fffffa800d8fe998
- r11=fffff800034dcf70 r12=0000000000000001 r13=fffff880209bd8f0
- r14=fffffa8018879410 r15=fffff880209bdae0
- iopl=0 nv up ei ng nz na po nc
- cs=0010 ss=0018 ds=002b es=002b fs=0053 gs=002b efl=00010286
- nt!IopCompleteRequest+0x2a:
- fffff800`034dcf9a 498b39 mov rdi,qword ptr [r9] ds:002b:00000000`00000000=????????????????
- Resetting default scope
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
- BUGCHECK_STR: 0x3B
- PROCESS_NAME: nvstreamsvc.ex
- CURRENT_IRQL: 1
- LAST_CONTROL_TRANSFER: from 0000000000000000 to fffff800034dcf9a
- STACK_TEXT:
- fffff880`209bc548 fffff800`034c8129 : 00000000`0000003b 00000000`c0000005 fffff800`034dcf9a fffff880`209bce10 : nt!KeBugCheckEx
- fffff880`209bc550 fffff800`034c7a7c : fffff880`209bd5b8 fffff880`209bce10 00000000`00000000 fffff800`034f3c50 : nt!KiBugCheckDispatch+0x69
- fffff880`209bc690 fffff800`034f375d : fffff800`036eb378 00000000`00000000 fffff800`03453000 fffff880`209bd5b8 : nt!KiSystemServiceHandler+0x7c
- fffff880`209bc6d0 fffff800`034f2535 : fffff800`036186c4 fffff880`209bc748 fffff880`209bd5b8 fffff800`03453000 : nt!RtlpExecuteHandlerForException+0xd
- fffff880`209bc700 fffff800`035034e1 : fffff880`209bd5b8 fffff880`209bce10 fffff880`00000000 00000000`00000100 : nt!RtlDispatchException+0x415
- fffff880`209bcde0 fffff800`034c8202 : fffff880`209bd5b8 fffffa80`0d8fe920 fffff880`209bd660 fffffa80`18879460 : nt!KiDispatchException+0x135
- fffff880`209bd480 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiExceptionDispatch+0xc2
- STACK_COMMAND: kb
- FOLLOWUP_IP:
- nt!KiSystemServiceHandler+7c
- fffff800`034c7a7c b801000000 mov eax,1
- SYMBOL_STACK_INDEX: 2
- SYMBOL_NAME: nt!KiSystemServiceHandler+7c
- FOLLOWUP_NAME: MachineOwner
- MODULE_NAME: nt
- IMAGE_NAME: ntkrnlmp.exe
- DEBUG_FLR_IMAGE_TIMESTAMP: 51fb06cd
- FAILURE_BUCKET_ID: X64_0x3B_nt!KiSystemServiceHandler+7c
- BUCKET_ID: X64_0x3B_nt!KiSystemServiceHandler+7c
- Followup: MachineOwner
- ---------
- 0: kd> Imv
- ^ Syntax error in 'Imv'
- 0: kd> lmv
- start end module name
- fffff800`00b99000 fffff800`00ba3000 kdcom (deferred)
- Mapped memory image file: c:\cache\kdcom.dll\4D4D8061a000\kdcom.dll
- Image path: kdcom.dll
- Image name: kdcom.dll
- Timestamp: Sat Feb 05 18:52:49 2011 (4D4D8061)
- CheckSum: 0000F59B
- ImageSize: 0000A000
- File version: 6.1.7601.17556
- Product version: 6.1.7601.17556
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.A Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: kdcom.dll
- OriginalFilename: kdcom.dll
- ProductVersion: 6.1.7601.17556
- FileVersion: 6.1.7601.17556 (win7sp1_gdr.110204-2120)
- FileDescription: Serial Kernel Debugger
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff800`0340a000 fffff800`03453000 hal (deferred)
- Mapped memory image file: c:\cache\hal.dll\4CE7C66949000\hal.dll
- Image path: hal.dll
- Image name: hal.dll
- Timestamp: Sat Nov 20 15:00:25 2010 (4CE7C669)
- CheckSum: 000404C3
- ImageSize: 00049000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 2.0 Dll
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: hal.dll
- OriginalFilename: hal.dll
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: Hardware Abstraction Layer DLL
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff800`03453000 fffff800`03a39000 nt (pdb symbols) c:\cache\ntkrnlmp.pdb\444961FE7BC64E8ABAA9F36D9855C08C2\ntkrnlmp.pdb
- Loaded symbol image file: ntkrnlmp.exe
- Mapped memory image file: c:\cache\ntoskrnl.exe\51FB06CD5e6000\ntoskrnl.exe
- Image path: ntkrnlmp.exe
- Image name: ntkrnlmp.exe
- Timestamp: Fri Aug 02 04:09:33 2013 (51FB06CD)
- CheckSum: 0055A245
- ImageSize: 005E6000
- File version: 6.1.7601.18229
- Product version: 6.1.7601.18229
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 1.0 App
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: ntkrnlmp.exe
- OriginalFilename: ntkrnlmp.exe
- ProductVersion: 6.1.7601.18229
- FileVersion: 6.1.7601.18229 (win7sp1_gdr.130801-1533)
- FileDescription: NT Kernel & System
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00c00000 fffff880`00c72000 cng (deferred)
- Mapped memory image file: c:\cache\cng.sys\4FC987BF72000\cng.sys
- Image path: \SystemRoot\System32\Drivers\cng.sys
- Image name: cng.sys
- Timestamp: Sat Jun 02 06:25:51 2012 (4FC987BF)
- CheckSum: 00075788
- ImageSize: 00072000
- File version: 6.1.7601.17856
- Product version: 6.1.7601.17856
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: cng.sys
- OriginalFilename: cng.sys
- ProductVersion: 6.1.7601.17856
- FileVersion: 6.1.7601.17856 (win7sp1_gdr.120601-1505)
- FileDescription: Kernel Cryptography, Next Generation
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00c8a000 fffff880`00cd9000 mcupdate_GenuineIntel (deferred)
- Mapped memory image file: c:\cache\mcupdate_GenuineIntel.dll\4CE7C7374f000\mcupdate_GenuineIntel.dll
- Image path: \SystemRoot\system32\mcupdate_GenuineIntel.dll
- Image name: mcupdate_GenuineIntel.dll
- Timestamp: Sat Nov 20 15:03:51 2010 (4CE7C737)
- CheckSum: 0004F97E
- ImageSize: 0004F000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.A Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: mcupdate.dll
- OriginalFilename: mcupdate_GenuineIntel.dll
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: Intel Microcode Update Library
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00cd9000 fffff880`00ced000 PSHED (deferred)
- Mapped memory image file: c:\cache\PSHED.dll\4A5BE02714000\PSHED.dll
- Image path: \SystemRoot\system32\PSHED.dll
- Image name: PSHED.dll
- Timestamp: Tue Jul 14 04:32:23 2009 (4A5BE027)
- CheckSum: 0000F762
- ImageSize: 00014000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: pshed.dll
- OriginalFilename: pshed.dll
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Platform Specific Hardware Error Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00ced000 fffff880`00d4b000 CLFS (deferred)
- Mapped memory image file: c:\cache\CLFS.SYS\4A5BC11D5e000\CLFS.SYS
- Image path: \SystemRoot\system32\CLFS.SYS
- Image name: CLFS.SYS
- Timestamp: Tue Jul 14 02:19:57 2009 (4A5BC11D)
- CheckSum: 00065C46
- ImageSize: 0005E000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: clfs.sys
- OriginalFilename: Clfs.Sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Common Log File System Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00d4b000 fffff880`00d55000 msisadrv (deferred)
- Mapped memory image file: c:\cache\msisadrv.sys\4A5BC0FEa000\msisadrv.sys
- Image path: \SystemRoot\system32\drivers\msisadrv.sys
- Image name: msisadrv.sys
- Timestamp: Tue Jul 14 02:19:26 2009 (4A5BC0FE)
- CheckSum: 0001320D
- ImageSize: 0000A000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: msisadrv.sys
- OriginalFilename: msisadrv.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: ISA Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00d55000 fffff880`00d88000 pci (deferred)
- Mapped memory image file: c:\cache\pci.sys\4CE7928F33000\pci.sys
- Image path: \SystemRoot\system32\drivers\pci.sys
- Image name: pci.sys
- Timestamp: Sat Nov 20 11:19:11 2010 (4CE7928F)
- CheckSum: 00033150
- ImageSize: 00033000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 2.0 Dll
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: pci.sys
- OriginalFilename: pci.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: NT Plug and Play PCI Enumerator
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00d88000 fffff880`00d95000 vdrvroot (deferred)
- Mapped memory image file: c:\cache\vdrvroot.sys\4A5BCADBd000\vdrvroot.sys
- Image path: \SystemRoot\system32\drivers\vdrvroot.sys
- Image name: vdrvroot.sys
- Timestamp: Tue Jul 14 03:01:31 2009 (4A5BCADB)
- CheckSum: 0000C04B
- ImageSize: 0000D000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 2.0 Dll
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: vdrvroot.sys
- OriginalFilename: vdrvroot.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Virtual Drive Root Enumerator
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00d95000 fffff880`00d9f000 iusb3hcs (deferred)
- Image path: \SystemRoot\system32\DRIVERS\iusb3hcs.sys
- Image name: iusb3hcs.sys
- Timestamp: Tue Mar 26 18:07:08 2013 (5151C7AC)
- CheckSum: 000133D4
- ImageSize: 0000A000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`00d9f000 fffff880`00dfb000 volmgrx (deferred)
- Mapped memory image file: c:\cache\volmgrx.sys\4CE792EB5c000\volmgrx.sys
- Image path: \SystemRoot\System32\drivers\volmgrx.sys
- Image name: volmgrx.sys
- Timestamp: Sat Nov 20 11:20:43 2010 (4CE792EB)
- CheckSum: 00065F6D
- ImageSize: 0005C000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: volmgrx.sys
- OriginalFilename: volmgrx.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: Volume Manager Extension Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00e00000 fffff880`00ec2000 Wdf01000 (deferred)
- Mapped memory image file: c:\cache\Wdf01000.sys\5010AA89c2000\Wdf01000.sys
- Image path: \SystemRoot\system32\drivers\Wdf01000.sys
- Image name: Wdf01000.sys
- Timestamp: Thu Jul 26 05:25:13 2012 (5010AA89)
- CheckSum: 000CDBF1
- ImageSize: 000C2000
- File version: 1.11.9200.16384
- Product version: 1.11.9200.16384
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: wdf01000.sys
- OriginalFilename: wdf01000.sys
- ProductVersion: 1.11.9200.16384
- FileVersion: 1.11.9200.16384 (win8_rtm.120725-1247)
- FileDescription: Kernel Mode Driver Framework Runtime
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00ec7000 fffff880`00f87000 CI (deferred)
- Mapped memory image file: c:\cache\CI.dll\4CE7C944c0000\CI.dll
- Image path: \SystemRoot\system32\CI.dll
- Image name: CI.dll
- Timestamp: Sat Nov 20 15:12:36 2010 (4CE7C944)
- CheckSum: 000CB0F6
- ImageSize: 000C0000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: ci.dll
- OriginalFilename: ci.dll
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: Code Integrity Module
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00f87000 fffff880`00f97000 WDFLDR (deferred)
- Mapped memory image file: c:\cache\WDFLDR.SYS\5010AB7010000\WDFLDR.SYS
- Image path: \SystemRoot\system32\drivers\WDFLDR.SYS
- Image name: WDFLDR.SYS
- Timestamp: Thu Jul 26 05:29:04 2012 (5010AB70)
- CheckSum: 00016A5F
- ImageSize: 00010000
- File version: 1.11.9200.16384
- Product version: 1.11.9200.16384
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: wdfldr.sys
- OriginalFilename: wdfldr.sys
- ProductVersion: 1.11.9200.16384
- FileVersion: 1.11.9200.16384 (win8_rtm.120725-1247)
- FileDescription: Kernel Mode Driver Framework Loader
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00f97000 fffff880`00fee000 ACPI (deferred)
- Mapped memory image file: c:\cache\ACPI.sys\4CE7929457000\ACPI.sys
- Image path: \SystemRoot\system32\drivers\ACPI.sys
- Image name: ACPI.sys
- Timestamp: Sat Nov 20 11:19:16 2010 (4CE79294)
- CheckSum: 0005ACF6
- ImageSize: 00057000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: ACPI.sys
- OriginalFilename: ACPI.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: ACPI Driver for NT
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`00fee000 fffff880`00ff7000 WMILIB (deferred)
- Mapped memory image file: c:\cache\WMILIB.SYS\4A5BC1179000\WMILIB.SYS
- Image path: \SystemRoot\system32\drivers\WMILIB.SYS
- Image name: WMILIB.SYS
- Timestamp: Tue Jul 14 02:19:51 2009 (4A5BC117)
- CheckSum: 00005007
- ImageSize: 00009000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: WmiLib.sys
- OriginalFilename: WmiLib.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: WMILIB WMI support library Dll
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`01000000 fffff880`01015000 partmgr (deferred)
- Mapped memory image file: c:\cache\partmgr.sys\4F641BC115000\partmgr.sys
- Image path: \SystemRoot\System32\drivers\partmgr.sys
- Image name: partmgr.sys
- Timestamp: Sat Mar 17 07:06:09 2012 (4F641BC1)
- CheckSum: 0001DFC8
- ImageSize: 00015000
- File version: 6.1.7601.17796
- Product version: 6.1.7601.17796
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: partmgr.sys
- OriginalFilename: partmgr.sys
- ProductVersion: 6.1.7601.17796
- FileVersion: 6.1.7601.17796 (win7sp1_gdr.120316-1742)
- FileDescription: Partition Management Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`01015000 fffff880`0101e000 compbatt (deferred)
- Mapped memory image file: c:\cache\compbatt.sys\4A5BC3B69000\compbatt.sys
- Image path: \SystemRoot\system32\DRIVERS\compbatt.sys
- Image name: compbatt.sys
- Timestamp: Tue Jul 14 02:31:02 2009 (4A5BC3B6)
- CheckSum: 000080E2
- ImageSize: 00009000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: compbatt.sys
- OriginalFilename: compbatt.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Composite Battery Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0101e000 fffff880`0102a000 BATTC (deferred)
- Mapped memory image file: c:\cache\BATTC.SYS\4A5BC3B5c000\BATTC.SYS
- Image path: \SystemRoot\system32\DRIVERS\BATTC.SYS
- Image name: BATTC.SYS
- Timestamp: Tue Jul 14 02:31:01 2009 (4A5BC3B5)
- CheckSum: 000083B1
- ImageSize: 0000C000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: battc.sys
- OriginalFilename: battc.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Battery Class Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0102a000 fffff880`0103f000 volmgr (deferred)
- Mapped memory image file: c:\cache\volmgr.sys\4CE792A015000\volmgr.sys
- Image path: \SystemRoot\system32\drivers\volmgr.sys
- Image name: volmgr.sys
- Timestamp: Sat Nov 20 11:19:28 2010 (4CE792A0)
- CheckSum: 00019F72
- ImageSize: 00015000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: volmgr.sys
- OriginalFilename: volmgr.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: Volume Manager Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0103f000 fffff880`01059000 mountmgr (deferred)
- Mapped memory image file: c:\cache\mountmgr.sys\4CE792991a000\mountmgr.sys
- Image path: \SystemRoot\System32\drivers\mountmgr.sys
- Image name: mountmgr.sys
- Timestamp: Sat Nov 20 11:19:21 2010 (4CE79299)
- CheckSum: 00022621
- ImageSize: 0001A000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: mountmgr.sys
- OriginalFilename: mountmgr.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: Mount Point Manager
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0108d000 fffff880`017ec000 kl1 (deferred)
- Image path: \SystemRoot\system32\DRIVERS\kl1.sys
- Image name: kl1.sys
- Timestamp: Fri Oct 18 12:18:22 2013 (5260FCDE)
- CheckSum: 0007C5E5
- ImageSize: 0075F000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`01800000 fffff880`0185e000 msrpc (deferred)
- Mapped memory image file: c:\cache\msrpc.sys\4CE793345e000\msrpc.sys
- Image path: \SystemRoot\System32\Drivers\msrpc.sys
- Image name: msrpc.sys
- Timestamp: Sat Nov 20 11:21:56 2010 (4CE79334)
- CheckSum: 0005E9E7
- ImageSize: 0005E000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: krpcdd.sys
- OriginalFilename: krpcdd.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: Kernel Remote Procedure Call Provider
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0185e000 fffff880`01898000 rdyboost (deferred)
- Mapped memory image file: c:\cache\rdyboost.sys\4CE7982E3a000\rdyboost.sys
- Image path: \SystemRoot\System32\drivers\rdyboost.sys
- Image name: rdyboost.sys
- Timestamp: Sat Nov 20 11:43:10 2010 (4CE7982E)
- CheckSum: 00037356
- ImageSize: 0003A000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: rdyboost.sys
- OriginalFilename: rdyboost.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: ReadyBoost Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`01898000 fffff880`018b9000 DefragFS (deferred)
- Image path: \SystemRoot\System32\Drivers\DefragFS.SYS
- Image name: DefragFS.SYS
- Timestamp: Tue Sep 11 22:24:29 2012 (504F8FED)
- CheckSum: 0002D581
- ImageSize: 00021000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`018c0000 fffff880`019de000 iaStorV (deferred)
- Image path: \SystemRoot\system32\drivers\iaStorV.sys
- Image name: iaStorV.sys
- Timestamp: Fri Jun 11 03:46:19 2010 (4C11875B)
- CheckSum: 00068462
- ImageSize: 0011E000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`01a00000 fffff880`01a4c000 volsnap (deferred)
- Mapped memory image file: c:\cache\volsnap.sys\4CE792C84c000\volsnap.sys
- Image path: \SystemRoot\system32\drivers\volsnap.sys
- Image name: volsnap.sys
- Timestamp: Sat Nov 20 11:20:08 2010 (4CE792C8)
- CheckSum: 000527ED
- ImageSize: 0004C000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: volsnap.sys
- OriginalFilename: volsnap.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: Volume Shadow Copy Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`01a55000 fffff880`01d22000 iaStorA (deferred)
- Image path: \SystemRoot\system32\DRIVERS\iaStorA.sys
- Image name: iaStorA.sys
- Timestamp: Sat Apr 06 02:45:31 2013 (515F621B)
- CheckSum: 000ABA94
- ImageSize: 002CD000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`01d22000 fffff880`01d85000 storport (deferred)
- Mapped memory image file: c:\cache\storport.sys\4D79A55F63000\storport.sys
- Image path: \SystemRoot\system32\DRIVERS\storport.sys
- Image name: storport.sys
- Timestamp: Fri Mar 11 06:30:23 2011 (4D79A55F)
- CheckSum: 000309FA
- ImageSize: 00063000
- File version: 6.1.7601.17577
- Product version: 6.1.7601.17577
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: storport.sys
- OriginalFilename: storport.sys
- ProductVersion: 6.1.7601.17577
- FileVersion: 6.1.7601.17577 (win7sp1_gdr.110310-1504)
- FileDescription: Microsoft Storage Port Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`01d85000 fffff880`01d90000 amdxata (deferred)
- Image path: \SystemRoot\system32\drivers\amdxata.sys
- Image name: amdxata.sys
- Timestamp: Fri Mar 19 18:18:18 2010 (4BA3A3CA)
- CheckSum: 000092B7
- ImageSize: 0000B000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`01d90000 fffff880`01ddc000 fltmgr (deferred)
- Mapped memory image file: c:\cache\fltmgr.sys\4CE7929C4c000\fltmgr.sys
- Image path: \SystemRoot\system32\drivers\fltmgr.sys
- Image name: fltmgr.sys
- Timestamp: Sat Nov 20 11:19:24 2010 (4CE7929C)
- CheckSum: 0005452D
- ImageSize: 0004C000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: fltMgr.sys
- OriginalFilename: fltMgr.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: Microsoft Filesystem Filter Manager
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`01ddc000 fffff880`01df0000 fileinfo (deferred)
- Mapped memory image file: c:\cache\fileinfo.sys\4A5BC48114000\fileinfo.sys
- Image path: \SystemRoot\system32\drivers\fileinfo.sys
- Image name: fileinfo.sys
- Timestamp: Tue Jul 14 02:34:25 2009 (4A5BC481)
- CheckSum: 00015644
- ImageSize: 00014000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: FileInfo.sys
- OriginalFilename: FileInfo.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: FileInfo Filter Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`01e09000 fffff880`01fab000 Ntfs (deferred)
- Mapped memory image file: c:\cache\Ntfs.sys\5167F5FC1a2000\Ntfs.sys
- Image path: \SystemRoot\System32\Drivers\Ntfs.sys
- Image name: Ntfs.sys
- Timestamp: Fri Apr 12 14:54:36 2013 (5167F5FC)
- CheckSum: 001A27D8
- ImageSize: 001A2000
- File version: 6.1.7601.18127
- Product version: 6.1.7601.18127
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: ntfs.sys
- OriginalFilename: ntfs.sys
- ProductVersion: 6.1.7601.18127
- FileVersion: 6.1.7601.18127 (win7sp1_gdr.130412-0013)
- FileDescription: NT File System Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`01fab000 fffff880`01fc6000 ksecdd (deferred)
- Mapped memory image file: c:\cache\ksecdd.sys\4FC97F6F1b000\ksecdd.sys
- Image path: \SystemRoot\System32\Drivers\ksecdd.sys
- Image name: ksecdd.sys
- Timestamp: Sat Jun 02 05:50:23 2012 (4FC97F6F)
- CheckSum: 00024C2C
- ImageSize: 0001B000
- File version: 6.1.7601.17856
- Product version: 6.1.7601.17856
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: ksecdd.sys
- OriginalFilename: ksecdd.sys
- ProductVersion: 6.1.7601.17856
- FileVersion: 6.1.7601.17856 (win7sp1_gdr.120601-1505)
- FileDescription: Kernel Security Support Provider Interface
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`01fc6000 fffff880`01fd7000 pcw (deferred)
- Mapped memory image file: c:\cache\pcw.sys\4A5BC0FF11000\pcw.sys
- Image path: \SystemRoot\System32\drivers\pcw.sys
- Image name: pcw.sys
- Timestamp: Tue Jul 14 02:19:27 2009 (4A5BC0FF)
- CheckSum: 00014B5E
- ImageSize: 00011000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.8 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: pcw.sys
- OriginalFilename: pcw.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Performance Counters for Windows Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`01fd7000 fffff880`01fe1000 Fs_Rec (deferred)
- Mapped memory image file: c:\cache\Fs_Rec.sys\4F4EEFD2a000\Fs_Rec.sys
- Image path: \SystemRoot\System32\Drivers\Fs_Rec.sys
- Image name: Fs_Rec.sys
- Timestamp: Thu Mar 01 05:41:06 2012 (4F4EEFD2)
- CheckSum: 00012F92
- ImageSize: 0000A000
- File version: 6.1.7601.17787
- Product version: 6.1.7601.17787
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: fs_rec.sys
- OriginalFilename: fs_rec.sys
- ProductVersion: 6.1.7601.17787
- FileVersion: 6.1.7601.17787 (win7sp1_gdr.120229-1502)
- FileDescription: File System Recognizer Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`01fe1000 fffff880`01fec000 iaStorF (deferred)
- Image path: \SystemRoot\system32\DRIVERS\iaStorF.sys
- Image name: iaStorF.sys
- Timestamp: Sat Apr 06 02:45:35 2013 (515F621F)
- CheckSum: 0000CD41
- ImageSize: 0000B000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`02000000 fffff880`0202a000 ksecpkg (deferred)
- Mapped memory image file: c:\cache\ksecpkg.sys\4FC9880F2a000\ksecpkg.sys
- Image path: \SystemRoot\System32\Drivers\ksecpkg.sys
- Image name: ksecpkg.sys
- Timestamp: Sat Jun 02 06:27:11 2012 (4FC9880F)
- CheckSum: 00026530
- ImageSize: 0002A000
- File version: 6.1.7601.17856
- Product version: 6.1.7601.17856
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: ksecpkg.sys
- OriginalFilename: ksecpkg.sys
- ProductVersion: 6.1.7601.17856
- FileVersion: 6.1.7601.17856 (win7sp1_gdr.120601-1505)
- FileDescription: Kernel Security Support Provider Interface Packages
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0202a000 fffff880`02073000 fwpkclnt (deferred)
- Mapped memory image file: c:\cache\fwpkclnt.sys\50E4F5C849000\fwpkclnt.sys
- Image path: \SystemRoot\System32\drivers\fwpkclnt.sys
- Image name: fwpkclnt.sys
- Timestamp: Thu Jan 03 05:06:48 2013 (50E4F5C8)
- CheckSum: 0004D5F9
- ImageSize: 00049000
- File version: 6.1.7601.18042
- Product version: 6.1.7601.18042
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 2.0 Dll
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: fwpkclnt.sys
- OriginalFilename: fwpkclnt.sys
- ProductVersion: 6.1.7601.18042
- FileVersion: 6.1.7601.18042 (win7sp1_gdr.130102-1436)
- FileDescription: FWP/IPsec Kernel-Mode API
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`02073000 fffff880`0207c000 stdcfltn (deferred)
- Image path: \SystemRoot\system32\DRIVERS\stdcfltn.sys
- Image name: stdcfltn.sys
- Timestamp: Sat Jul 16 07:31:13 2011 (4E211411)
- CheckSum: 00007FF2
- ImageSize: 00009000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`0207c000 fffff880`02084000 spldr (deferred)
- Image path: \SystemRoot\System32\Drivers\spldr.sys
- Image name: spldr.sys
- Timestamp: Mon May 11 19:56:27 2009 (4A0858BB)
- CheckSum: 0000E0E9
- ImageSize: 00008000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`02084000 fffff880`0208f000 nvpciflt (deferred)
- Image path: \SystemRoot\system32\DRIVERS\nvpciflt.sys
- Image name: nvpciflt.sys
- Timestamp: Sat Feb 08 17:45:01 2014 (52F650FD)
- CheckSum: 0001724B
- ImageSize: 0000B000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`0208f000 fffff880`020a1000 mup (deferred)
- Mapped memory image file: c:\cache\mup.sys\4A5BC20112000\mup.sys
- Image path: \SystemRoot\System32\Drivers\mup.sys
- Image name: mup.sys
- Timestamp: Tue Jul 14 02:23:45 2009 (4A5BC201)
- CheckSum: 00015DFD
- ImageSize: 00012000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: MUP.SYS
- OriginalFilename: MUP.SYS
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Multiple UNC Provider Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`020a5000 fffff880`02197000 ndis (deferred)
- Mapped memory image file: c:\cache\ndis.sys\5034F6B2f2000\ndis.sys
- Image path: \SystemRoot\system32\drivers\ndis.sys
- Image name: ndis.sys
- Timestamp: Wed Aug 22 18:11:46 2012 (5034F6B2)
- CheckSum: 000E8B11
- ImageSize: 000F2000
- File version: 6.1.7601.17939
- Product version: 6.1.7601.17939
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: NDIS.SYS
- OriginalFilename: NDIS.SYS
- ProductVersion: 6.1.7601.17939
- FileVersion: 6.1.7601.17939 (win7sp1_gdr.120822-0331)
- FileDescription: NDIS 6.20 driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`02197000 fffff880`021f7000 NETIO (deferred)
- Mapped memory image file: c:\cache\NETIO.SYS\5034F6A060000\NETIO.SYS
- Image path: \SystemRoot\system32\drivers\NETIO.SYS
- Image name: NETIO.SYS
- Timestamp: Wed Aug 22 18:11:28 2012 (5034F6A0)
- CheckSum: 00067D76
- ImageSize: 00060000
- File version: 6.1.7601.17939
- Product version: 6.1.7601.17939
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: netio.sys
- OriginalFilename: netio.sys
- ProductVersion: 6.1.7601.17939
- FileVersion: 6.1.7601.17939 (win7sp1_gdr.120822-0331)
- FileDescription: Network I/O Subsystem
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`021f7000 fffff880`02200000 hwpolicy (deferred)
- Mapped memory image file: c:\cache\hwpolicy.sys\4CE7927E9000\hwpolicy.sys
- Image path: \SystemRoot\System32\drivers\hwpolicy.sys
- Image name: hwpolicy.sys
- Timestamp: Sat Nov 20 11:18:54 2010 (4CE7927E)
- CheckSum: 0000D9F4
- ImageSize: 00009000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 2.0 Dll
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: hwpolicy.sys
- OriginalFilename: hwpolicy.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: Hardware Policy Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`02200000 fffff880`02400000 tcpip (deferred)
- Mapped memory image file: c:\cache\tcpip.sys\51D78B2C200000\tcpip.sys
- Image path: \SystemRoot\System32\drivers\tcpip.sys
- Image name: tcpip.sys
- Timestamp: Sat Jul 06 06:12:44 2013 (51D78B2C)
- CheckSum: 001D58C0
- ImageSize: 00200000
- File version: 6.1.7601.18203
- Product version: 6.1.7601.18203
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: tcpip.sys
- OriginalFilename: tcpip.sys
- ProductVersion: 6.1.7601.18203
- FileVersion: 6.1.7601.18203 (win7sp1_gdr.130705-1535)
- FileDescription: TCP/IP Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`02400000 fffff880`0242f000 SCSIPORT (deferred)
- Mapped memory image file: c:\cache\SCSIPORT.SYS\4CE7A4192f000\SCSIPORT.SYS
- Image path: \SystemRoot\system32\DRIVERS\SCSIPORT.SYS
- Image name: SCSIPORT.SYS
- Timestamp: Sat Nov 20 12:34:01 2010 (4CE7A419)
- CheckSum: 000375EA
- ImageSize: 0002F000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: scsiport.sys
- OriginalFilename: scsiport.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: SCSI Port Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0242f000 fffff880`02472000 ks (deferred)
- Mapped memory image file: c:\cache\ks.sys\4CE7A3F343000\ks.sys
- Image path: \SystemRoot\system32\DRIVERS\ks.sys
- Image name: ks.sys
- Timestamp: Sat Nov 20 12:33:23 2010 (4CE7A3F3)
- CheckSum: 00045588
- ImageSize: 00043000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.0 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: ks.sys
- OriginalFilename: ks.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: Kernel CSA Library
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`02478000 fffff880`024b2000 fvevol (deferred)
- Mapped memory image file: c:\cache\fvevol.sys\5100A65C3a000\fvevol.sys
- Image path: \SystemRoot\System32\DRIVERS\fvevol.sys
- Image name: fvevol.sys
- Timestamp: Thu Jan 24 05:11:24 2013 (5100A65C)
- CheckSum: 00042141
- ImageSize: 0003A000
- File version: 6.1.7601.18062
- Product version: 6.1.7601.18062
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: FVEVOL.SYS
- OriginalFilename: FVEVOL.SYS
- ProductVersion: 6.1.7601.18062
- FileVersion: 6.1.7601.18062 (win7sp1_gdr.130123-1433)
- FileDescription: BitLocker Drive Encryption Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`024b2000 fffff880`024bc000 EMSC (deferred)
- Image path: \SystemRoot\system32\DRIVERS\EMSC.SYS
- Image name: EMSC.SYS
- Timestamp: Fri Jun 19 23:35:47 2009 (4A3BF6A3)
- CheckSum: 0000C68C
- ImageSize: 0000A000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`024bc000 fffff880`024d2000 disk (deferred)
- Mapped memory image file: c:\cache\disk.sys\4A5BC11D16000\disk.sys
- Image path: \SystemRoot\system32\drivers\disk.sys
- Image name: disk.sys
- Timestamp: Tue Jul 14 02:19:57 2009 (4A5BC11D)
- CheckSum: 0001FF1D
- ImageSize: 00016000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: disk.sys
- OriginalFilename: disk.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: PnP Disk Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`024d2000 fffff880`02502000 CLASSPNP (deferred)
- Mapped memory image file: c:\cache\CLASSPNP.SYS\4CE7929B30000\CLASSPNP.SYS
- Image path: \SystemRoot\system32\drivers\CLASSPNP.SYS
- Image name: CLASSPNP.SYS
- Timestamp: Sat Nov 20 11:19:23 2010 (4CE7929B)
- CheckSum: 000318BE
- ImageSize: 00030000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: Classpnp.sys
- OriginalFilename: Classpnp.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: SCSI Class System Dll
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`02502000 fffff880`02517000 lltdio (deferred)
- Mapped memory image file: c:\cache\lltdio.sys\4A5BCC9215000\lltdio.sys
- Image path: \SystemRoot\system32\DRIVERS\lltdio.sys
- Image name: lltdio.sys
- Timestamp: Tue Jul 14 03:08:50 2009 (4A5BCC92)
- CheckSum: 0001109D
- ImageSize: 00015000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: LLTDIO.SYS
- OriginalFilename: LLTDIO.SYS
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Link-Layer Topology Mapper I/O Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0251a000 fffff880`025c0000 klif (deferred)
- Image path: \SystemRoot\system32\DRIVERS\klif.sys
- Image name: klif.sys
- Timestamp: Tue Apr 29 14:46:48 2014 (535F9128)
- CheckSum: 0009ACAB
- ImageSize: 000A6000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`025c0000 fffff880`025ef000 ndiswan (deferred)
- Mapped memory image file: c:\cache\ndiswan.sys\4CE7A8702f000\ndiswan.sys
- Image path: \SystemRoot\system32\DRIVERS\ndiswan.sys
- Image name: ndiswan.sys
- Timestamp: Sat Nov 20 12:52:32 2010 (4CE7A870)
- CheckSum: 0002BB81
- ImageSize: 0002F000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: NDISWAN.SYS
- OriginalFilename: NDISWAN.SYS
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: MS PPP Framing Driver (Strong Encryption)
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`04c00000 fffff880`04c09000 rdpencdd (deferred)
- Mapped memory image file: c:\cache\rdpencdd.sys\4A5BCE629000\rdpencdd.sys
- Image path: \SystemRoot\system32\drivers\rdpencdd.sys
- Image name: rdpencdd.sys
- Timestamp: Tue Jul 14 03:16:34 2009 (4A5BCE62)
- CheckSum: 000074D5
- ImageSize: 00009000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.4 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: RDPENCDD.SYS
- OriginalFilename: RDPENCDD.SYS
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: RDP Encoder Miniport
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`04c09000 fffff880`04c12000 rdprefmp (deferred)
- Mapped memory image file: c:\cache\rdprefmp.sys\4A5BCE639000\rdprefmp.sys
- Image path: \SystemRoot\system32\drivers\rdprefmp.sys
- Image name: rdprefmp.sys
- Timestamp: Tue Jul 14 03:16:35 2009 (4A5BCE63)
- CheckSum: 0000ABCD
- ImageSize: 00009000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.4 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: RDPREFMP.SYS
- OriginalFilename: RDPREFMP.SYS
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: RDP Reflector Driver Miniport
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`04c12000 fffff880`04c1d000 Msfs (deferred)
- Mapped memory image file: c:\cache\Msfs.SYS\4A5BC113b000\Msfs.SYS
- Image path: \SystemRoot\System32\Drivers\Msfs.SYS
- Image name: Msfs.SYS
- Timestamp: Tue Jul 14 02:19:47 2009 (4A5BC113)
- CheckSum: 00007126
- ImageSize: 0000B000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: MSFS.SYS
- OriginalFilename: MSFS.SYS
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Mailslot driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`04c1d000 fffff880`04c2e000 Npfs (deferred)
- Mapped memory image file: c:\cache\Npfs.SYS\4A5BC11411000\Npfs.SYS
- Image path: \SystemRoot\System32\Drivers\Npfs.SYS
- Image name: Npfs.SYS
- Timestamp: Tue Jul 14 02:19:48 2009 (4A5BC114)
- CheckSum: 00019AED
- ImageSize: 00011000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: npfs.sys
- OriginalFilename: npfs.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: NPFS Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`04c2e000 fffff880`04c50000 tdx (deferred)
- Mapped memory image file: c:\cache\tdx.sys\4CE7933222000\tdx.sys
- Image path: \SystemRoot\system32\DRIVERS\tdx.sys
- Image name: tdx.sys
- Timestamp: Sat Nov 20 11:21:54 2010 (4CE79332)
- CheckSum: 000288B2
- ImageSize: 00022000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: tdx.sys
- OriginalFilename: tdx.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: TDI Translation Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`04c50000 fffff880`04c5d000 TDI (deferred)
- Mapped memory image file: c:\cache\TDI.SYS\4CE7933Ed000\TDI.SYS
- Image path: \SystemRoot\system32\DRIVERS\TDI.SYS
- Image name: TDI.SYS
- Timestamp: Sat Nov 20 11:22:06 2010 (4CE7933E)
- CheckSum: 00016255
- ImageSize: 0000D000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: tdi.sys
- OriginalFilename: tdi.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: TDI Wrapper
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`04c5d000 fffff880`04c6d000 kltdi (deferred)
- Image path: \SystemRoot\system32\DRIVERS\kltdi.sys
- Image name: kltdi.sys
- Timestamp: Mon Apr 29 15:07:50 2013 (517E6296)
- CheckSum: 0000F741
- ImageSize: 00010000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`04c6d000 fffff880`04f3a000 dump_iaStorA (deferred)
- Image path: \SystemRoot\System32\Drivers\dump_iaStorA.sys
- Image name: dump_iaStorA.sys
- Timestamp: Sat Apr 06 02:45:31 2013 (515F621B)
- CheckSum: 000ABA94
- ImageSize: 002CD000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`04f3a000 fffff880`04f52000 PDFsFilter (deferred)
- Image path: \SystemRoot\system32\DRIVERS\PDFsFilter.sys
- Image name: PDFsFilter.sys
- Timestamp: Fri Aug 24 00:57:13 2012 (5036A739)
- CheckSum: 0001A15A
- ImageSize: 00018000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`04f54000 fffff880`04f7e000 cdrom (deferred)
- Mapped memory image file: c:\cache\cdrom.sys\4CE792982a000\cdrom.sys
- Image path: \SystemRoot\system32\DRIVERS\cdrom.sys
- Image name: cdrom.sys
- Timestamp: Sat Nov 20 11:19:20 2010 (4CE79298)
- CheckSum: 0002B742
- ImageSize: 0002A000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: cdrom.sys
- OriginalFilename: cdrom.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: SCSI CD-ROM Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`04f7e000 fffff880`04f9f000 klflt (deferred)
- Image path: \SystemRoot\system32\DRIVERS\klflt.sys
- Image name: klflt.sys
- Timestamp: Tue Nov 26 14:37:56 2013 (52949624)
- CheckSum: 00018536
- ImageSize: 00021000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`04f9f000 fffff880`04fa8000 Null (deferred)
- Mapped memory image file: c:\cache\Null.SYS\4A5BC1099000\Null.SYS
- Image path: \SystemRoot\System32\Drivers\Null.SYS
- Image name: Null.SYS
- Timestamp: Tue Jul 14 02:19:37 2009 (4A5BC109)
- CheckSum: 0000E9DB
- ImageSize: 00009000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: null.sys
- OriginalFilename: null.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: NULL Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`04fa8000 fffff880`04faf000 Beep (deferred)
- Mapped memory image file: c:\cache\Beep.SYS\4A5BCA8D7000\Beep.SYS
- Image path: \SystemRoot\System32\Drivers\Beep.SYS
- Image name: Beep.SYS
- Timestamp: Tue Jul 14 03:00:13 2009 (4A5BCA8D)
- CheckSum: 000036EB
- ImageSize: 00007000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: beep.sys
- OriginalFilename: beep.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: BEEP Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`04faf000 fffff880`04fbd000 vga (deferred)
- Mapped memory image file: c:\cache\vga.sys\4A5BC587e000\vga.sys
- Image path: \SystemRoot\System32\drivers\vga.sys
- Image name: vga.sys
- Timestamp: Tue Jul 14 02:38:47 2009 (4A5BC587)
- CheckSum: 00013E6F
- ImageSize: 0000E000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.4 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: vga.sys
- OriginalFilename: vga.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: VGA/Super VGA Video Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`04fbd000 fffff880`04fe2000 VIDEOPRT (deferred)
- Mapped memory image file: c:\cache\VIDEOPRT.SYS\4A5BC58B25000\VIDEOPRT.SYS
- Image path: \SystemRoot\System32\drivers\VIDEOPRT.SYS
- Image name: VIDEOPRT.SYS
- Timestamp: Tue Jul 14 02:38:51 2009 (4A5BC58B)
- CheckSum: 00028FC7
- ImageSize: 00025000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.4 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: videoprt.sys
- OriginalFilename: videoprt.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Video Port Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`04fe2000 fffff880`04ff2000 watchdog (deferred)
- Mapped memory image file: c:\cache\watchdog.sys\4A5BC53F10000\watchdog.sys
- Image path: \SystemRoot\System32\drivers\watchdog.sys
- Image name: watchdog.sys
- Timestamp: Tue Jul 14 02:37:35 2009 (4A5BC53F)
- CheckSum: 00019CBE
- ImageSize: 00010000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 2.0 Dll
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: watchdog.sys
- OriginalFilename: watchdog.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Watchdog Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`04ff2000 fffff880`04ffb000 RDPCDD (deferred)
- Mapped memory image file: c:\cache\RDPCDD.sys\4A5BCE629000\RDPCDD.sys
- Image path: \SystemRoot\System32\DRIVERS\RDPCDD.sys
- Image name: RDPCDD.sys
- Timestamp: Tue Jul 14 03:16:34 2009 (4A5BCE62)
- CheckSum: 0000FFAC
- ImageSize: 00009000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.4 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: RDPCDD.SYS
- OriginalFilename: RDPCDD.SYS
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: RDP Miniport
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`05000000 fffff880`0504d000 nvkflt (deferred)
- Image path: \SystemRoot\system32\DRIVERS\nvkflt.sys
- Image name: nvkflt.sys
- Timestamp: Sat Feb 08 17:42:25 2014 (52F65061)
- CheckSum: 0004EFA8
- ImageSize: 0004D000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`0504d000 fffff880`050a7000 RtsPStor (deferred)
- Image path: \SystemRoot\system32\DRIVERS\RtsPStor.sys
- Image name: RtsPStor.sys
- Timestamp: Thu Dec 13 04:44:23 2012 (50C94107)
- CheckSum: 000570A2
- ImageSize: 0005A000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`050a7000 fffff880`050b9000 umbus (deferred)
- Mapped memory image file: c:\cache\umbus.sys\4CE7A69512000\umbus.sys
- Image path: \SystemRoot\system32\DRIVERS\umbus.sys
- Image name: umbus.sys
- Timestamp: Sat Nov 20 12:44:37 2010 (4CE7A695)
- CheckSum: 0001AF58
- ImageSize: 00012000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 2.0 Dll
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: umbus.sys
- OriginalFilename: umbus.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: User-Mode Bus Enumerator
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`050b9000 fffff880`05142000 afd (deferred)
- Mapped memory image file: c:\cache\afd.sys\4EFA941889000\afd.sys
- Image path: \SystemRoot\system32\drivers\afd.sys
- Image name: afd.sys
- Timestamp: Wed Dec 28 05:59:20 2011 (4EFA9418)
- CheckSum: 000873E8
- ImageSize: 00089000
- File version: 6.1.7601.17752
- Product version: 6.1.7601.17752
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: afd.sys
- OriginalFilename: afd.sys
- ProductVersion: 6.1.7601.17752
- FileVersion: 6.1.7601.17752 (win7sp1_gdr.111227-1505)
- FileDescription: Ancillary Function Driver for WinSock
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`05142000 fffff880`05187000 netbt (deferred)
- Mapped memory image file: c:\cache\netbt.sys\4CE7938645000\netbt.sys
- Image path: \SystemRoot\System32\DRIVERS\netbt.sys
- Image name: netbt.sys
- Timestamp: Sat Nov 20 11:23:18 2010 (4CE79386)
- CheckSum: 00041134
- ImageSize: 00045000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: netbt.sys
- OriginalFilename: netbt.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: MBT Transport driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`05187000 fffff880`05192000 ws2ifsl (deferred)
- Mapped memory image file: c:\cache\ws2ifsl.sys\4A5BCCF9b000\ws2ifsl.sys
- Image path: \SystemRoot\system32\drivers\ws2ifsl.sys
- Image name: ws2ifsl.sys
- Timestamp: Tue Jul 14 03:10:33 2009 (4A5BCCF9)
- CheckSum: 0000B7A3
- ImageSize: 0000B000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: ws2ifsl.sys
- OriginalFilename: ws2ifsl.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Winsock2 IFS Layer
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`05192000 fffff880`0519b000 wfplwf (deferred)
- Mapped memory image file: c:\cache\wfplwf.sys\4A5BCCB69000\wfplwf.sys
- Image path: \SystemRoot\system32\DRIVERS\wfplwf.sys
- Image name: wfplwf.sys
- Timestamp: Tue Jul 14 03:09:26 2009 (4A5BCCB6)
- CheckSum: 0000B17B
- ImageSize: 00009000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: WFPLWF.SYS
- OriginalFilename: WFPLWF.SYS
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: WFP NDIS 6.20 Lightweight Filter Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0519b000 fffff880`051c1000 pacer (deferred)
- Mapped memory image file: c:\cache\pacer.sys\4CE7A86226000\pacer.sys
- Image path: \SystemRoot\system32\DRIVERS\pacer.sys
- Image name: pacer.sys
- Timestamp: Sat Nov 20 12:52:18 2010 (4CE7A862)
- CheckSum: 00020DCF
- ImageSize: 00026000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: pacer.sys
- OriginalFilename: pacer.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: QoS Packet Scheduler
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`051c1000 fffff880`051d7000 vwififlt (deferred)
- Mapped memory image file: c:\cache\vwififlt.sys\4A5BCC3A16000\vwififlt.sys
- Image path: \SystemRoot\system32\DRIVERS\vwififlt.sys
- Image name: vwififlt.sys
- Timestamp: Tue Jul 14 03:07:22 2009 (4A5BCC3A)
- CheckSum: 0001A7DC
- ImageSize: 00016000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: vwififlt.sys
- OriginalFilename: vwififlt.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Virtual WiFi Filter Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`051d7000 fffff880`051fa000 luafv (deferred)
- Mapped memory image file: c:\cache\luafv.sys\4A5BC29523000\luafv.sys
- Image path: \SystemRoot\system32\drivers\luafv.sys
- Image name: luafv.sys
- Timestamp: Tue Jul 14 02:26:13 2009 (4A5BC295)
- CheckSum: 00027BF1
- ImageSize: 00023000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: luafv.sys
- OriginalFilename: luafv.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: LUA File Virtualization Filter Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`05400000 fffff880`0541b000 wanarp (deferred)
- Mapped memory image file: c:\cache\wanarp.sys\4CE7A8741b000\wanarp.sys
- Image path: \SystemRoot\system32\DRIVERS\wanarp.sys
- Image name: wanarp.sys
- Timestamp: Sat Nov 20 12:52:36 2010 (4CE7A874)
- CheckSum: 00017CCC
- ImageSize: 0001B000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: WANARP.SYS
- OriginalFilename: WANARP.SYS
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: MS Remote Access and Routing ARP Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0541b000 fffff880`0542f000 termdd (deferred)
- Mapped memory image file: c:\cache\termdd.sys\4CE7AB0C14000\termdd.sys
- Image path: \SystemRoot\system32\DRIVERS\termdd.sys
- Image name: termdd.sys
- Timestamp: Sat Nov 20 13:03:40 2010 (4CE7AB0C)
- CheckSum: 00019E15
- ImageSize: 00014000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: termdd.sys
- OriginalFilename: termdd.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: Remote Desktop Server Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0542f000 fffff880`05480000 rdbss (deferred)
- Mapped memory image file: c:\cache\rdbss.sys\4CE7949751000\rdbss.sys
- Image path: \SystemRoot\system32\DRIVERS\rdbss.sys
- Image name: rdbss.sys
- Timestamp: Sat Nov 20 11:27:51 2010 (4CE79497)
- CheckSum: 0004D76F
- ImageSize: 00051000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: rdbss.sys
- OriginalFilename: RDBSS.Sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: Redirected Drive Buffering SubSystem Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`05484000 fffff880`055d7000 bflwfx64 (deferred)
- Image path: \SystemRoot\system32\DRIVERS\bflwfx64.sys
- Image name: bflwfx64.sys
- Timestamp: Thu Jun 14 19:01:42 2012 (4FDA0AE6)
- CheckSum: 00011EE2
- ImageSize: 00153000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`055d7000 fffff880`055e1000 klim6 (deferred)
- Image path: \SystemRoot\system32\DRIVERS\klim6.sys
- Image name: klim6.sys
- Timestamp: Thu Jul 11 10:54:08 2013 (51DE64A0)
- CheckSum: 0001610A
- ImageSize: 0000A000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`055e1000 fffff880`055f0000 netbios (deferred)
- Mapped memory image file: c:\cache\netbios.sys\4A5BCCB6f000\netbios.sys
- Image path: \SystemRoot\system32\DRIVERS\netbios.sys
- Image name: netbios.sys
- Timestamp: Tue Jul 14 03:09:26 2009 (4A5BCCB6)
- CheckSum: 00011668
- ImageSize: 0000F000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: NETBIOS.SYS
- OriginalFilename: NETBIOS.SYS
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: NetBIOS interface driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`055f0000 fffff880`055fd000 nvvad64v (deferred)
- Image path: \SystemRoot\system32\drivers\nvvad64v.sys
- Image name: nvvad64v.sys
- Timestamp: Fri Mar 21 19:42:58 2014 (532C7A22)
- CheckSum: 00011E1A
- ImageSize: 0000D000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`05800000 fffff880`05826000 tunnel (deferred)
- Mapped memory image file: c:\cache\tunnel.sys\4CE7A84626000\tunnel.sys
- Image path: \SystemRoot\system32\DRIVERS\tunnel.sys
- Image name: tunnel.sys
- Timestamp: Sat Nov 20 12:51:50 2010 (4CE7A846)
- CheckSum: 0002CD96
- ImageSize: 00026000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: tunnel.sys
- OriginalFilename: tunnel.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: Microsoft Tunnel Interface Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`05830000 fffff880`05924000 dxgkrnl (deferred)
- Mapped memory image file: c:\cache\dxgkrnl.sys\5164DC49f4000\dxgkrnl.sys
- Image path: \SystemRoot\System32\drivers\dxgkrnl.sys
- Image name: dxgkrnl.sys
- Timestamp: Wed Apr 10 06:28:09 2013 (5164DC49)
- CheckSum: 000F750D
- ImageSize: 000F4000
- File version: 6.1.7601.18126
- Product version: 6.1.7601.18126
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: dxgkrnl.sys
- OriginalFilename: dxgkrnl.sys
- ProductVersion: 6.1.7601.18126
- FileVersion: 6.1.7601.18126 (win7sp1_gdr.130409-1534)
- FileDescription: DirectX Graphics Kernel
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`05924000 fffff880`0596a000 dxgmms1 (deferred)
- Mapped memory image file: c:\cache\dxgmms1.sys\5164DC1346000\dxgmms1.sys
- Image path: \SystemRoot\System32\drivers\dxgmms1.sys
- Image name: dxgmms1.sys
- Timestamp: Wed Apr 10 06:27:15 2013 (5164DC13)
- CheckSum: 00043C9B
- ImageSize: 00046000
- File version: 6.1.7601.18126
- Product version: 6.1.7601.18126
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: dxgmms1.sys
- OriginalFilename: dxgmms1.sys
- ProductVersion: 6.1.7601.18126
- FileVersion: 6.1.7601.18126 (win7sp1_gdr.130409-1534)
- FileDescription: DirectX Graphics MMS
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0596a000 fffff880`05976000 nsiproxy (deferred)
- Mapped memory image file: c:\cache\nsiproxy.sys\4A5BC15Ec000\nsiproxy.sys
- Image path: \SystemRoot\system32\drivers\nsiproxy.sys
- Image name: nsiproxy.sys
- Timestamp: Tue Jul 14 02:21:02 2009 (4A5BC15E)
- CheckSum: 00013ED5
- ImageSize: 0000C000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: nsiproxy.sys
- OriginalFilename: nsiproxy.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: NSI Proxy
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`05976000 fffff880`05981000 mssmbios (deferred)
- Mapped memory image file: c:\cache\mssmbios.sys\4A5BC3BEb000\mssmbios.sys
- Image path: \SystemRoot\system32\DRIVERS\mssmbios.sys
- Image name: mssmbios.sys
- Timestamp: Tue Jul 14 02:31:10 2009 (4A5BC3BE)
- CheckSum: 0000F474
- ImageSize: 0000B000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: smbios.sys
- OriginalFilename: smbios.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: System Management BIOS Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`05981000 fffff880`059ae000 kneps (deferred)
- Image path: \SystemRoot\system32\DRIVERS\kneps.sys
- Image name: kneps.sys
- Timestamp: Tue Mar 05 11:09:23 2013 (5135B643)
- CheckSum: 0003395F
- ImageSize: 0002D000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`059ae000 fffff880`059ba000 ElbyCDIO (deferred)
- Image path: \SystemRoot\System32\Drivers\ElbyCDIO.sys
- Image name: ElbyCDIO.sys
- Timestamp: Mon Mar 04 11:21:51 2013 (513467AF)
- CheckSum: 0001936A
- ImageSize: 0000C000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`059ba000 fffff880`059c9000 discache (deferred)
- Mapped memory image file: c:\cache\discache.sys\4A5BC52Ef000\discache.sys
- Image path: \SystemRoot\System32\drivers\discache.sys
- Image name: discache.sys
- Timestamp: Tue Jul 14 02:37:18 2009 (4A5BC52E)
- CheckSum: 00015F3F
- ImageSize: 0000F000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 2.0 Dll
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: syscache.sys
- OriginalFilename: syscache.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: System Indexer/Cache Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`059c9000 fffff880`059e7000 dfsc (deferred)
- Mapped memory image file: c:\cache\dfsc.sys\4CE794471e000\dfsc.sys
- Image path: \SystemRoot\System32\Drivers\dfsc.sys
- Image name: dfsc.sys
- Timestamp: Sat Nov 20 11:26:31 2010 (4CE79447)
- CheckSum: 0001D647
- ImageSize: 0001E000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: dfsclient.sys
- OriginalFilename: dfsclient.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: DFS Namespace Client Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`059e7000 fffff880`059f8000 blbdrive (deferred)
- Mapped memory image file: c:\cache\blbdrive.sys\4A5BC4DF11000\blbdrive.sys
- Image path: \SystemRoot\system32\DRIVERS\blbdrive.sys
- Image name: blbdrive.sys
- Timestamp: Tue Jul 14 02:35:59 2009 (4A5BC4DF)
- CheckSum: 00019567
- ImageSize: 00011000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: blbdrive.sys
- OriginalFilename: blbdrive.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: BLB Drive Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`05a00000 fffff880`05ac3000 iusb3xhc (deferred)
- Image path: \SystemRoot\system32\DRIVERS\iusb3xhc.sys
- Image name: iusb3xhc.sys
- Timestamp: Tue Mar 26 18:05:28 2013 (5151C748)
- CheckSum: 000CDDA1
- ImageSize: 000C3000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`05ac3000 fffff880`05ac4f00 USBD (deferred)
- Mapped memory image file: c:\cache\USBD.SYS\4D8C0BFB1f00\USBD.SYS
- Image path: \SystemRoot\system32\DRIVERS\USBD.SYS
- Image name: USBD.SYS
- Timestamp: Fri Mar 25 05:28:59 2011 (4D8C0BFB)
- CheckSum: 00005257
- ImageSize: 00001F00
- File version: 6.1.7601.17586
- Product version: 6.1.7601.17586
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 2.0 Dll
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: usbd.sys
- OriginalFilename: usbd.sys
- ProductVersion: 6.1.7601.17586
- FileVersion: 6.1.7601.17586 (win7sp1_gdr.110324-1501)
- FileDescription: Universal Serial Bus Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`05ac5000 fffff880`05ad8000 HECIx64 (deferred)
- Image path: \SystemRoot\system32\DRIVERS\HECIx64.sys
- Image name: HECIx64.sys
- Timestamp: Mon Dec 17 21:32:21 2012 (50CF7345)
- CheckSum: 0001803D
- ImageSize: 00013000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`05ad8000 fffff880`05ae9000 usbehci (deferred)
- Mapped memory image file: c:\cache\usbehci.sys\4D8C0C0011000\usbehci.sys
- Image path: \SystemRoot\system32\drivers\usbehci.sys
- Image name: usbehci.sys
- Timestamp: Fri Mar 25 05:29:04 2011 (4D8C0C00)
- CheckSum: 0000DE59
- ImageSize: 00011000
- File version: 6.1.7601.17586
- Product version: 6.1.7601.17586
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 2.0 Dll
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: USBEHCI.sys
- OriginalFilename: USBEHCI.sys
- ProductVersion: 6.1.7601.17586
- FileVersion: 6.1.7601.17586 (win7sp1_gdr.110324-1501)
- FileDescription: EHCI eUSB Miniport Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`05ae9000 fffff880`05af8000 VClone (deferred)
- Image path: \SystemRoot\system32\DRIVERS\VClone.sys
- Image name: VClone.sys
- Timestamp: Mon Mar 11 02:49:12 2013 (513D2A08)
- CheckSum: 0000CEB4
- ImageSize: 0000F000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`05af8000 fffff880`05f1c000 igdkmd64 (deferred)
- Image path: \SystemRoot\system32\DRIVERS\igdkmd64.sys
- Image name: igdkmd64.sys
- Timestamp: Thu Jan 23 00:42:16 2014 (52E04948)
- CheckSum: 004167F1
- ImageSize: 00424000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`05f1c000 fffff880`05f40000 HDAudBus (deferred)
- Mapped memory image file: c:\cache\HDAudBus.sys\4CE7A65E24000\HDAudBus.sys
- Image path: \SystemRoot\system32\DRIVERS\HDAudBus.sys
- Image name: HDAudBus.sys
- Timestamp: Sat Nov 20 12:43:42 2010 (4CE7A65E)
- CheckSum: 0002BFAB
- ImageSize: 00024000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.9 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: hdaudbus.sys
- OriginalFilename: hdaudbus.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: High Definition Audio Bus Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`05f40000 fffff880`05f96000 USBPORT (deferred)
- Mapped memory image file: c:\cache\USBPORT.SYS\4D8C0C0856000\USBPORT.SYS
- Image path: \SystemRoot\system32\drivers\USBPORT.SYS
- Image name: USBPORT.SYS
- Timestamp: Fri Mar 25 05:29:12 2011 (4D8C0C08)
- CheckSum: 00056970
- ImageSize: 00056000
- File version: 6.1.7601.17586
- Product version: 6.1.7601.17586
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 2.0 Dll
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: usbport.sys
- OriginalFilename: usbport.sys
- ProductVersion: 6.1.7601.17586
- FileVersion: 6.1.7601.17586 (win7sp1_gdr.110324-1501)
- FileDescription: USB 1.1 & 2.0 Port Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`05f96000 fffff880`05fc0000 e22w7x64 (deferred)
- Image path: \SystemRoot\system32\DRIVERS\e22w7x64.sys
- Image name: e22w7x64.sys
- Timestamp: Wed Dec 05 18:43:48 2012 (50BF79C4)
- CheckSum: 00035FA2
- ImageSize: 0002A000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`05fc0000 fffff880`05fe0000 sdbus (deferred)
- Mapped memory image file: c:\cache\sdbus.sys\4CE796E620000\sdbus.sys
- Image path: \SystemRoot\system32\DRIVERS\sdbus.sys
- Image name: sdbus.sys
- Timestamp: Sat Nov 20 11:37:42 2010 (4CE796E6)
- CheckSum: 000220E3
- ImageSize: 00020000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: sdbus.sys
- OriginalFilename: sdbus.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: SecureDigital Bus Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`05fe0000 fffff880`05ffa000 rassstp (deferred)
- Mapped memory image file: c:\cache\rassstp.sys\4A5BCCF11a000\rassstp.sys
- Image path: \SystemRoot\system32\DRIVERS\rassstp.sys
- Image name: rassstp.sys
- Timestamp: Tue Jul 14 03:10:25 2009 (4A5BCCF1)
- CheckSum: 0002274B
- ImageSize: 0001A000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: rassstp.sys
- OriginalFilename: rassstp.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: RAS SSTP Miniport Call Manager
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`06207000 fffff880`06e00000 nvlddmkm (deferred)
- Image path: \SystemRoot\system32\DRIVERS\nvlddmkm.sys
- Image name: nvlddmkm.sys
- Timestamp: Sat Feb 08 17:48:31 2014 (52F651CF)
- CheckSum: 00BC7EE8
- ImageSize: 00BF9000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`07000000 fffff880`07021000 raspptp (deferred)
- Mapped memory image file: c:\cache\raspptp.sys\4CE7A86F21000\raspptp.sys
- Image path: \SystemRoot\system32\DRIVERS\raspptp.sys
- Image name: raspptp.sys
- Timestamp: Sat Nov 20 12:52:31 2010 (4CE7A86F)
- CheckSum: 000251CB
- ImageSize: 00021000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: RASPPTP.SYS
- OriginalFilename: RASPPTP.SYS
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: Peer-to-Peer Tunneling Protocol
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`07021000 fffff880`07662000 bcmwl664 (deferred)
- Image path: \SystemRoot\system32\DRIVERS\bcmwl664.sys
- Image name: bcmwl664.sys
- Timestamp: Wed Dec 12 08:54:36 2012 (50C82A2C)
- CheckSum: 0063CE5A
- ImageSize: 00641000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`07662000 fffff880`0766f000 vwifibus (deferred)
- Mapped memory image file: c:\cache\vwifibus.sys\4A5BCC39d000\vwifibus.sys
- Image path: \SystemRoot\system32\DRIVERS\vwifibus.sys
- Image name: vwifibus.sys
- Timestamp: Tue Jul 14 03:07:21 2009 (4A5BCC39)
- CheckSum: 0000C5FA
- ImageSize: 0000D000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: VWiFiBus.sys
- OriginalFilename: VWiFiBus.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Virtual WiFi Bus Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0766f000 fffff880`07673500 CmBatt (deferred)
- Mapped memory image file: c:\cache\CmBatt.sys\4A5BC3B74500\CmBatt.sys
- Image path: \SystemRoot\system32\DRIVERS\CmBatt.sys
- Image name: CmBatt.sys
- Timestamp: Tue Jul 14 02:31:03 2009 (4A5BC3B7)
- CheckSum: 0000D93A
- ImageSize: 00004500
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: cmbatt.sys
- OriginalFilename: cmbatt.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Control Method Battery Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`07674000 fffff880`07692000 i8042prt (deferred)
- Mapped memory image file: c:\cache\i8042prt.sys\4A5BC11D1e000\i8042prt.sys
- Image path: \SystemRoot\system32\DRIVERS\i8042prt.sys
- Image name: i8042prt.sys
- Timestamp: Tue Jul 14 02:19:57 2009 (4A5BC11D)
- CheckSum: 00025E29
- ImageSize: 0001E000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: i8042prt.sys
- OriginalFilename: i8042prt.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: i8042 Port Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`07692000 fffff880`07709000 SynTP (deferred)
- Image path: \SystemRoot\system32\DRIVERS\SynTP.sys
- Image name: SynTP.sys
- Timestamp: Mon Apr 08 09:04:17 2013 (51625DE1)
- CheckSum: 000807D3
- ImageSize: 00077000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`07709000 fffff880`07714000 klkbdflt (deferred)
- Image path: \SystemRoot\system32\DRIVERS\klkbdflt.sys
- Image name: klkbdflt.sys
- Timestamp: Thu Aug 08 16:09:50 2013 (5203989E)
- CheckSum: 0001287C
- ImageSize: 0000B000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`07714000 fffff880`07723000 kbdclass (deferred)
- Mapped memory image file: c:\cache\kbdclass.sys\4A5BC116f000\kbdclass.sys
- Image path: \SystemRoot\system32\DRIVERS\kbdclass.sys
- Image name: kbdclass.sys
- Timestamp: Tue Jul 14 02:19:50 2009 (4A5BC116)
- CheckSum: 0001B4C5
- ImageSize: 0000F000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: kbdclass.sys
- OriginalFilename: kbdclass.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Keyboard Class Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`07723000 fffff880`0772f000 klmouflt (deferred)
- Image path: \SystemRoot\system32\DRIVERS\klmouflt.sys
- Image name: klmouflt.sys
- Timestamp: Thu Aug 08 16:10:02 2013 (520398AA)
- CheckSum: 00007A05
- ImageSize: 0000C000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`0772f000 fffff880`0773e000 mouclass (deferred)
- Mapped memory image file: c:\cache\mouclass.sys\4A5BC116f000\mouclass.sys
- Image path: \SystemRoot\system32\DRIVERS\mouclass.sys
- Image name: mouclass.sys
- Timestamp: Tue Jul 14 02:19:50 2009 (4A5BC116)
- CheckSum: 0000E5DE
- ImageSize: 0000F000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: mouclass.sys
- OriginalFilename: mouclass.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Mouse Class Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0773e000 fffff880`0774b000 Smb_driver_Intel (deferred)
- Image path: \SystemRoot\system32\DRIVERS\Smb_driver_Intel.sys
- Image name: Smb_driver_Intel.sys
- Timestamp: Mon Apr 08 09:06:07 2013 (51625E4F)
- CheckSum: 00009586
- ImageSize: 0000D000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`0774b000 fffff880`07765000 ST_Accel (deferred)
- Image path: \SystemRoot\system32\DRIVERS\ST_Accel.sys
- Image name: ST_Accel.sys
- Timestamp: Thu Apr 11 21:21:11 2013 (5166FF17)
- CheckSum: 00016E3B
- ImageSize: 0001A000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`07765000 fffff880`0776e000 wmiacpi (deferred)
- Mapped memory image file: c:\cache\wmiacpi.sys\4A5BC3B69000\wmiacpi.sys
- Image path: \SystemRoot\system32\DRIVERS\wmiacpi.sys
- Image name: wmiacpi.sys
- Timestamp: Tue Jul 14 02:31:02 2009 (4A5BC3B6)
- CheckSum: 000042C0
- ImageSize: 00009000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: wmiacpi.sys
- OriginalFilename: wmiacpi.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Windows Management Interface for ACPI
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0776e000 fffff880`07784000 intelppm (deferred)
- Mapped memory image file: c:\cache\intelppm.sys\4A5BC0FD16000\intelppm.sys
- Image path: \SystemRoot\system32\DRIVERS\intelppm.sys
- Image name: intelppm.sys
- Timestamp: Tue Jul 14 02:19:25 2009 (4A5BC0FD)
- CheckSum: 0000F4EC
- ImageSize: 00016000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: intelppm.sys
- OriginalFilename: intelppm.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Processor Device Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`07784000 fffff880`07794000 CompositeBus (deferred)
- Mapped memory image file: c:\cache\CompositeBus.sys\4CE7A3ED10000\CompositeBus.sys
- Image path: \SystemRoot\system32\DRIVERS\CompositeBus.sys
- Image name: CompositeBus.sys
- Timestamp: Sat Nov 20 12:33:17 2010 (4CE7A3ED)
- CheckSum: 0000983B
- ImageSize: 00010000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 2.0 Dll
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: compositebus.sys
- OriginalFilename: compositebus.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: Multi-Transport Composite Bus Enumerator
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`07794000 fffff880`077aa000 AgileVpn (deferred)
- Mapped memory image file: c:\cache\AgileVpn.sys\4A5BCCF016000\AgileVpn.sys
- Image path: \SystemRoot\system32\DRIVERS\AgileVpn.sys
- Image name: AgileVpn.sys
- Timestamp: Tue Jul 14 03:10:24 2009 (4A5BCCF0)
- CheckSum: 000192BE
- ImageSize: 00016000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: agilevpn.sys
- OriginalFilename: agilevpn.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: RAS Agile Vpn Miniport Call Manager
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`077aa000 fffff880`077ce000 rasl2tp (deferred)
- Mapped memory image file: c:\cache\rasl2tp.sys\4CE7A87224000\rasl2tp.sys
- Image path: \SystemRoot\system32\DRIVERS\rasl2tp.sys
- Image name: rasl2tp.sys
- Timestamp: Sat Nov 20 12:52:34 2010 (4CE7A872)
- CheckSum: 0002CCA3
- ImageSize: 00024000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: rasl2tp.sys
- OriginalFilename: rasl2tp.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: RAS L2TP mini-port/call-manager driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`077ce000 fffff880`077da000 ndistapi (deferred)
- Mapped memory image file: c:\cache\ndistapi.sys\4A5BCCD8c000\ndistapi.sys
- Image path: \SystemRoot\system32\DRIVERS\ndistapi.sys
- Image name: ndistapi.sys
- Timestamp: Tue Jul 14 03:10:00 2009 (4A5BCCD8)
- CheckSum: 000063EA
- ImageSize: 0000C000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: NDISTAPI.SYS
- OriginalFilename: NDISTAPI.SYS
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: NDIS 3.0 connection wrapper driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`077da000 fffff880`077f5000 raspppoe (deferred)
- Mapped memory image file: c:\cache\raspppoe.sys\4A5BCCE91b000\raspppoe.sys
- Image path: \SystemRoot\system32\DRIVERS\raspppoe.sys
- Image name: raspppoe.sys
- Timestamp: Tue Jul 14 03:10:17 2009 (4A5BCCE9)
- CheckSum: 00019A00
- ImageSize: 0001B000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: raspppoe.sys
- OriginalFilename: raspppoe.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: RAS PPPoE mini-port/call-manager driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`077f5000 fffff880`077f6480 swenum (deferred)
- Mapped memory image file: c:\cache\swenum.sys\4A5BCA921480\swenum.sys
- Image path: \SystemRoot\system32\DRIVERS\swenum.sys
- Image name: swenum.sys
- Timestamp: Tue Jul 14 03:00:18 2009 (4A5BCA92)
- CheckSum: 0000934E
- ImageSize: 00001480
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.0 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: swenum.sys
- OriginalFilename: swenum.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Plug and Play Software Device Enumerator
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`07812000 fffff880`0784f000 portcls (deferred)
- Mapped memory image file: c:\cache\portcls.sys\4A5BCC033d000\portcls.sys
- Image path: \SystemRoot\system32\drivers\portcls.sys
- Image name: portcls.sys
- Timestamp: Tue Jul 14 03:06:27 2009 (4A5BCC03)
- CheckSum: 00047A50
- ImageSize: 0003D000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.9 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: portcls.sys
- OriginalFilename: portcls.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Port Class (Class Driver for Port/Miniport Devices)
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0784f000 fffff880`07871000 drmk (deferred)
- Image path: \SystemRoot\system32\drivers\drmk.sys
- Image name: drmk.sys
- Timestamp: Tue Jul 14 04:01:25 2009 (4A5BD8E5)
- CheckSum: 0002966E
- ImageSize: 00022000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`07871000 fffff880`07876200 ksthunk (deferred)
- Mapped memory image file: c:\cache\ksthunk.sys\4A5BCA935200\ksthunk.sys
- Image path: \SystemRoot\system32\drivers\ksthunk.sys
- Image name: ksthunk.sys
- Timestamp: Tue Jul 14 03:00:19 2009 (4A5BCA93)
- CheckSum: 0000AF92
- ImageSize: 00005200
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.0 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: ksthunk.sys
- OriginalFilename: ksthunk.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Kernel Streaming WOW Thunk Service
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`07877000 fffff880`078d1000 usbhub (deferred)
- Mapped memory image file: c:\cache\usbhub.sys\4D8C0C155a000\usbhub.sys
- Image path: \SystemRoot\system32\DRIVERS\usbhub.sys
- Image name: usbhub.sys
- Timestamp: Fri Mar 25 05:29:25 2011 (4D8C0C15)
- CheckSum: 00054F31
- ImageSize: 0005A000
- File version: 6.1.7601.17586
- Product version: 6.1.7601.17586
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 2.0 Dll
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: usbhub.sys
- OriginalFilename: usbhub.sys
- ProductVersion: 6.1.7601.17586
- FileVersion: 6.1.7601.17586 (win7sp1_gdr.110324-1501)
- FileDescription: Default Hub Driver for USB
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`078d1000 fffff880`078e6000 NDProxy (deferred)
- Mapped memory image file: c:\cache\NDProxy.SYS\4CE7A86415000\NDProxy.SYS
- Image path: \SystemRoot\System32\Drivers\NDProxy.SYS
- Image name: NDProxy.SYS
- Timestamp: Sat Nov 20 12:52:20 2010 (4CE7A864)
- CheckSum: 00019428
- ImageSize: 00015000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: ndproxy.sys
- OriginalFilename: ndproxy.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: NDIS Proxy
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`07959000 fffff880`079b8000 iusb3hub (deferred)
- Image path: \SystemRoot\system32\DRIVERS\iusb3hub.sys
- Image name: iusb3hub.sys
- Timestamp: Tue Mar 26 18:05:25 2013 (5151C745)
- CheckSum: 00066E60
- ImageSize: 0005F000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`079b8000 fffff880`079e5280 usbvideo (deferred)
- Mapped memory image file: c:\cache\usbvideo.sys\4CE7A6922d280\usbvideo.sys
- Image path: \SystemRoot\System32\Drivers\usbvideo.sys
- Image name: usbvideo.sys
- Timestamp: Sat Nov 20 12:44:34 2010 (4CE7A692)
- CheckSum: 0002F4A8
- ImageSize: 0002D280
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.0 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: usbvideo.sys
- OriginalFilename: usbvideo.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: USB Video Class Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`079e6000 fffff880`079f9000 dump_dumpfve (deferred)
- Mapped memory image file: c:\cache\dumpfve.sys\4A5BC18F13000\dumpfve.sys
- Image path: \SystemRoot\System32\Drivers\dump_dumpfve.sys
- Image name: dump_dumpfve.sys
- Timestamp: Tue Jul 14 02:21:51 2009 (4A5BC18F)
- CheckSum: 00010DEA
- ImageSize: 00013000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: dumpfve.sys
- OriginalFilename: dumpfve.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Bitlocker Drive Encryption Crashdump Filter
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`09c04000 fffff880`09f3c280 RTKVHD64 (deferred)
- Image path: \SystemRoot\system32\drivers\RTKVHD64.sys
- Image name: RTKVHD64.sys
- Timestamp: Wed Apr 03 14:12:27 2013 (515C0E9B)
- CheckSum: 0033D8A2
- ImageSize: 00338280
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`09f3d000 fffff880`09f5a000 usbccgp (deferred)
- Mapped memory image file: c:\cache\usbccgp.sys\4D8C0C0A1d000\usbccgp.sys
- Image path: \SystemRoot\system32\DRIVERS\usbccgp.sys
- Image name: usbccgp.sys
- Timestamp: Fri Mar 25 05:29:14 2011 (4D8C0C0A)
- CheckSum: 0001B399
- ImageSize: 0001D000
- File version: 6.1.7601.17586
- Product version: 6.1.7601.17586
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 2.0 Dll
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: USBCCGP.SYS
- OriginalFilename: USBCCGP.SYS
- ProductVersion: 6.1.7601.17586
- FileVersion: 6.1.7601.17586 (win7sp1_gdr.110324-1501)
- FileDescription: USB Common Class Generic Parent Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`09f5a000 fffff880`09f68000 hidusb (deferred)
- Mapped memory image file: c:\cache\hidusb.sys\4CE7A665e000\hidusb.sys
- Image path: \SystemRoot\system32\DRIVERS\hidusb.sys
- Image name: hidusb.sys
- Timestamp: Sat Nov 20 12:43:49 2010 (4CE7A665)
- CheckSum: 00012706
- ImageSize: 0000E000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 2.0 Dll
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: HIDUSB.SYS
- OriginalFilename: HIDUSB.SYS
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: USB Miniport Driver for Input Devices
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`09f68000 fffff880`09f81000 HIDCLASS (deferred)
- Mapped memory image file: c:\cache\HIDCLASS.SYS\4CE7A66519000\HIDCLASS.SYS
- Image path: \SystemRoot\system32\DRIVERS\HIDCLASS.SYS
- Image name: HIDCLASS.SYS
- Timestamp: Sat Nov 20 12:43:49 2010 (4CE7A665)
- CheckSum: 00015D32
- ImageSize: 00019000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 2.0 Dll
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: hidclass.sys
- OriginalFilename: hidclass.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: Hid Class Library
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`09f81000 fffff880`09f89080 HIDPARSE (deferred)
- Mapped memory image file: c:\cache\HIDPARSE.SYS\4A5BCBF98080\HIDPARSE.SYS
- Image path: \SystemRoot\system32\DRIVERS\HIDPARSE.SYS
- Image name: HIDPARSE.SYS
- Timestamp: Tue Jul 14 03:06:17 2009 (4A5BCBF9)
- CheckSum: 0000D669
- ImageSize: 00008080
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 2.0 Dll
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: hidparse.sys
- OriginalFilename: hidparse.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Hid Parsing Library
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`09f8a000 fffff880`09f97000 mouhid (deferred)
- Mapped memory image file: c:\cache\mouhid.sys\4A5BCA94d000\mouhid.sys
- Image path: \SystemRoot\system32\DRIVERS\mouhid.sys
- Image name: mouhid.sys
- Timestamp: Tue Jul 14 03:00:20 2009 (4A5BCA94)
- CheckSum: 00009604
- ImageSize: 0000D000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 2.0 Dll
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: mouhid.sys
- OriginalFilename: mouhid.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: HID Mouse Filter Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`09f97000 fffff880`09fa5000 kbdhid (deferred)
- Mapped memory image file: c:\cache\kbdhid.sys\4CE7A3F5e000\kbdhid.sys
- Image path: \SystemRoot\system32\DRIVERS\kbdhid.sys
- Image name: kbdhid.sys
- Timestamp: Sat Nov 20 12:33:25 2010 (4CE7A3F5)
- CheckSum: 0000D561
- ImageSize: 0000E000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 2.0 Dll
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: kbdhid.sys
- OriginalFilename: kbdhid.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: HID Keyboard Filter Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`09fa5000 fffff880`09fdb000 fastfat (deferred)
- Mapped memory image file: c:\cache\fastfat.SYS\4A5BC1F036000\fastfat.SYS
- Image path: \SystemRoot\System32\Drivers\fastfat.SYS
- Image name: fastfat.SYS
- Timestamp: Tue Jul 14 02:23:28 2009 (4A5BC1F0)
- CheckSum: 0003AE1E
- ImageSize: 00036000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: fastfat.sys
- OriginalFilename: FastFAT.Sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Fast FAT File System Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`09fdb000 fffff880`09fe9000 crashdmp (deferred)
- Mapped memory image file: c:\cache\crashdmp.sys\4A5BCABDe000\crashdmp.sys
- Image path: \SystemRoot\System32\Drivers\crashdmp.sys
- Image name: crashdmp.sys
- Timestamp: Tue Jul 14 03:01:01 2009 (4A5BCABD)
- CheckSum: 000178C7
- ImageSize: 0000E000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: crashdmp.sys
- OriginalFilename: crashdmp.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Crash Dump Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`09fe9000 fffff880`09ff3000 dump_diskdump (deferred)
- Mapped memory image file: c:\cache\diskdump.sys\4DB1DF50a000\diskdump.sys
- Image path: \SystemRoot\System32\Drivers\dump_diskdump.sys
- Image name: dump_diskdump.sys
- Timestamp: Fri Apr 22 23:04:32 2011 (4DB1DF50)
- CheckSum: 0000E8AB
- ImageSize: 0000A000
- File version: 6.1.7601.17601
- Product version: 6.1.7601.17601
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: diskdump.sys
- OriginalFilename: diskdump.sys
- ProductVersion: 6.1.7601.17601
- FileVersion: 6.1.7601.17601 (win7sp1_gdr.110422-0546)
- FileDescription: Crash Dump Disk Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`09ff3000 fffff880`09fff000 Dxapi (deferred)
- Mapped memory image file: c:\cache\Dxapi.sys\4A5BC574c000\Dxapi.sys
- Image path: \SystemRoot\System32\drivers\Dxapi.sys
- Image name: Dxapi.sys
- Timestamp: Tue Jul 14 02:38:28 2009 (4A5BC574)
- CheckSum: 0001418E
- ImageSize: 0000C000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: dxapi.sys
- OriginalFilename: dxapi.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: DirectX API Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0b436000 fffff880`0b44f000 WudfPf (deferred)
- Mapped memory image file: c:\cache\WudfPf.sys\5010AAE519000\WudfPf.sys
- Image path: \SystemRoot\system32\drivers\WudfPf.sys
- Image name: WudfPf.sys
- Timestamp: Thu Jul 26 05:26:45 2012 (5010AAE5)
- CheckSum: 00021262
- ImageSize: 00019000
- File version: 6.2.9200.16384
- Product version: 6.2.9200.16384
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: WUDFPf.sys
- OriginalFilename: WUDFPf.sys
- ProductVersion: 6.2.9200.16384
- FileVersion: 6.2.9200.16384 (win8_rtm.120725-1247)
- FileDescription: Windows Driver Foundation - User-mode Driver Framework Platform Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0b488000 fffff880`0b496000 monitor (deferred)
- Mapped memory image file: c:\cache\monitor.sys\4A5BC58Ce000\monitor.sys
- Image path: \SystemRoot\system32\DRIVERS\monitor.sys
- Image name: monitor.sys
- Timestamp: Tue Jul 14 02:38:52 2009 (4A5BC58C)
- CheckSum: 000092BF
- ImageSize: 0000E000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: monitor.sys
- OriginalFilename: monitor.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Monitor Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0b496000 fffff880`0b4a1000 WSDPrint (deferred)
- Mapped memory image file: c:\cache\WSDPrint.sys\4A5BD3B8b000\WSDPrint.sys
- Image path: \SystemRoot\system32\DRIVERS\WSDPrint.sys
- Image name: WSDPrint.sys
- Timestamp: Tue Jul 14 03:39:20 2009 (4A5BD3B8)
- CheckSum: 0000FFC5
- ImageSize: 0000B000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: WSDPrint.sys
- OriginalFilename: WSDPrint.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Web Services Print Device Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0b4a1000 fffff880`0b4ac000 asyncmac (deferred)
- Mapped memory image file: c:\cache\asyncmac.sys\4A5BCCE5b000\asyncmac.sys
- Image path: \SystemRoot\system32\DRIVERS\asyncmac.sys
- Image name: asyncmac.sys
- Timestamp: Tue Jul 14 03:10:13 2009 (4A5BCCE5)
- CheckSum: 0000682A
- ImageSize: 0000B000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: ASYNCMAC.SYS
- OriginalFilename: ASYNCMAC.SYS
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: MS Remote Access serial network driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0b4ac000 fffff880`0b4ada80 MSPQM (deferred)
- Mapped memory image file: c:\cache\MSPQM.sys\4A5BCA911a80\MSPQM.sys
- Image path: \SystemRoot\system32\drivers\MSPQM.sys
- Image name: MSPQM.sys
- Timestamp: Tue Jul 14 03:00:17 2009 (4A5BCA91)
- CheckSum: 0000CC3D
- ImageSize: 00001A80
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.9 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: mspqm.sys
- OriginalFilename: mspqm.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: MS Proxy Quality Manager
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0b4c0000 fffff880`0b529000 srv2 (deferred)
- Mapped memory image file: c:\cache\srv2.sys\4DBA2B0A69000\srv2.sys
- Image path: \SystemRoot\System32\DRIVERS\srv2.sys
- Image name: srv2.sys
- Timestamp: Fri Apr 29 06:05:46 2011 (4DBA2B0A)
- CheckSum: 0006CA1E
- ImageSize: 00069000
- File version: 6.1.7601.17608
- Product version: 6.1.7601.17608
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: SRV2.SYS
- OriginalFilename: SRV2.SYS
- ProductVersion: 6.1.7601.17608
- FileVersion: 6.1.7601.17608 (win7sp1_gdr.110428-1525)
- FileDescription: Smb 2.0 Server driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0b529000 fffff880`0b5c1000 srv (deferred)
- Mapped memory image file: c:\cache\srv.sys\4DBA2B1E98000\srv.sys
- Image path: \SystemRoot\System32\DRIVERS\srv.sys
- Image name: srv.sys
- Timestamp: Fri Apr 29 06:06:06 2011 (4DBA2B1E)
- CheckSum: 0007C839
- ImageSize: 00098000
- File version: 6.1.7601.17608
- Product version: 6.1.7601.17608
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: SRV.SYS
- OriginalFilename: SRV.SYS
- ProductVersion: 6.1.7601.17608
- FileVersion: 6.1.7601.17608 (win7sp1_gdr.110428-1525)
- FileDescription: Server driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0d837000 fffff880`0d88a000 nwifi (deferred)
- Mapped memory image file: c:\cache\nwifi.sys\4A5BCC3B53000\nwifi.sys
- Image path: \SystemRoot\system32\DRIVERS\nwifi.sys
- Image name: nwifi.sys
- Timestamp: Tue Jul 14 03:07:23 2009 (4A5BCC3B)
- CheckSum: 00057B55
- ImageSize: 00053000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: NWiFi.SYS
- OriginalFilename: NWiFi.SYS
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: NativeWiFi Miniport Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0d88a000 fffff880`0d89d000 ndisuio (deferred)
- Mapped memory image file: c:\cache\ndisuio.sys\4CE7A7E013000\ndisuio.sys
- Image path: \SystemRoot\system32\DRIVERS\ndisuio.sys
- Image name: ndisuio.sys
- Timestamp: Sat Nov 20 12:50:08 2010 (4CE7A7E0)
- CheckSum: 0001D42D
- ImageSize: 00013000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: NDISUIO.SYS
- OriginalFilename: NDISUIO.SYS
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: NDIS User mode I/O driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0d89d000 fffff880`0d8b5000 rspndr (deferred)
- Mapped memory image file: c:\cache\rspndr.sys\4A5BCC9218000\rspndr.sys
- Image path: \SystemRoot\system32\DRIVERS\rspndr.sys
- Image name: rspndr.sys
- Timestamp: Tue Jul 14 03:08:50 2009 (4A5BCC92)
- CheckSum: 0001656B
- ImageSize: 00018000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: RSPNDR.SYS
- OriginalFilename: RSPNDR.SYS
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Link-Layer Topology Responder Driver for NDIS 6
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0d8b5000 fffff880`0d97e000 HTTP (deferred)
- Mapped memory image file: c:\cache\HTTP.sys\4CE793CEc9000\HTTP.sys
- Image path: \SystemRoot\system32\drivers\HTTP.sys
- Image name: HTTP.sys
- Timestamp: Sat Nov 20 11:24:30 2010 (4CE793CE)
- CheckSum: 000C56EE
- ImageSize: 000C9000
- File version: 6.1.7601.17514
- Product version: 6.1.7601.17514
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: http.sys
- OriginalFilename: http.sys
- ProductVersion: 6.1.7601.17514
- FileVersion: 6.1.7601.17514 (win7sp1_rtm.101119-1850)
- FileDescription: HTTP Protocol Stack
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0d97e000 fffff880`0d99c000 bowser (deferred)
- Mapped memory image file: c:\cache\bowser.sys\4D6493281e000\bowser.sys
- Image path: \SystemRoot\system32\DRIVERS\bowser.sys
- Image name: bowser.sys
- Timestamp: Wed Feb 23 06:55:04 2011 (4D649328)
- CheckSum: 00022D38
- ImageSize: 0001E000
- File version: 6.1.7601.17565
- Product version: 6.1.7601.17565
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: browser.sys
- OriginalFilename: browser.sys
- ProductVersion: 6.1.7601.17565
- FileVersion: 6.1.7601.17565 (win7sp1_gdr.110222-1630)
- FileDescription: NT Lan Manager Datagram Receiver Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0d99c000 fffff880`0d9b4000 mpsdrv (deferred)
- Mapped memory image file: c:\cache\mpsdrv.sys\4A5BCC7918000\mpsdrv.sys
- Image path: \SystemRoot\System32\drivers\mpsdrv.sys
- Image name: mpsdrv.sys
- Timestamp: Tue Jul 14 03:08:25 2009 (4A5BCC79)
- CheckSum: 0001C76E
- ImageSize: 00018000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: mpsdrv.sys
- OriginalFilename: mpsdrv.sys
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Microsoft Protection Service Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0d9b4000 fffff880`0d9e1000 mrxsmb (deferred)
- Mapped memory image file: c:\cache\mrxsmb.sys\4DB782262d000\mrxsmb.sys
- Image path: \SystemRoot\system32\DRIVERS\mrxsmb.sys
- Image name: mrxsmb.sys
- Timestamp: Wed Apr 27 05:40:38 2011 (4DB78226)
- CheckSum: 00030225
- ImageSize: 0002D000
- File version: 6.1.7601.17605
- Product version: 6.1.7601.17605
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: MRxSmb.sys
- OriginalFilename: MRXSMB.Sys
- ProductVersion: 6.1.7601.17605
- FileVersion: 6.1.7601.17605 (win7sp1_gdr.110426-1503)
- FileDescription: Windows NT SMB Minirdr
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0de58000 fffff880`0dea6000 mrxsmb10 (deferred)
- Mapped memory image file: c:\cache\mrxsmb10.sys\4E17C1044e000\mrxsmb10.sys
- Image path: \SystemRoot\system32\DRIVERS\mrxsmb10.sys
- Image name: mrxsmb10.sys
- Timestamp: Sat Jul 09 05:46:28 2011 (4E17C104)
- CheckSum: 000503C4
- ImageSize: 0004E000
- File version: 6.1.7601.17647
- Product version: 6.1.7601.17647
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: MRxSmb0.sys
- OriginalFilename: MRXSMB0.Sys
- ProductVersion: 6.1.7601.17647
- FileVersion: 6.1.7601.17647 (win7sp1_gdr.110708-1503)
- FileDescription: Longhorn SMB Downlevel SubRdr
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0dea6000 fffff880`0deca000 mrxsmb20 (deferred)
- Mapped memory image file: c:\cache\mrxsmb20.sys\4DB781E924000\mrxsmb20.sys
- Image path: \SystemRoot\system32\DRIVERS\mrxsmb20.sys
- Image name: mrxsmb20.sys
- Timestamp: Wed Apr 27 05:39:37 2011 (4DB781E9)
- CheckSum: 0002D8BD
- ImageSize: 00024000
- File version: 6.1.7601.17605
- Product version: 6.1.7601.17605
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: MRxSmb20.sys
- OriginalFilename: MRXSMB20.Sys
- ProductVersion: 6.1.7601.17605
- FileVersion: 6.1.7601.17605 (win7sp1_gdr.110426-1503)
- FileDescription: Longhorn SMB 2.0 Redirector
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0deca000 fffff880`0df70000 peauth (deferred)
- Image path: \SystemRoot\system32\drivers\peauth.sys
- Image name: peauth.sys
- Timestamp: Tue Jul 14 04:01:19 2009 (4A5BD8DF)
- CheckSum: 000AB7C9
- ImageSize: 000A6000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`0df70000 fffff880`0df7b000 secdrv (deferred)
- Image path: \SystemRoot\System32\Drivers\secdrv.SYS
- Image name: secdrv.SYS
- Timestamp: Wed Sep 13 16:18:38 2006 (4508052E)
- CheckSum: 00010B40
- ImageSize: 0000B000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff880`0df7b000 fffff880`0dfac000 srvnet (deferred)
- Mapped memory image file: c:\cache\srvnet.sys\4DBA2AFF31000\srvnet.sys
- Image path: \SystemRoot\System32\DRIVERS\srvnet.sys
- Image name: srvnet.sys
- Timestamp: Fri Apr 29 06:05:35 2011 (4DBA2AFF)
- CheckSum: 0003409F
- ImageSize: 00031000
- File version: 6.1.7601.17608
- Product version: 6.1.7601.17608
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: SRVNET.SYS
- OriginalFilename: SRVNET.SYS
- ProductVersion: 6.1.7601.17608
- FileVersion: 6.1.7601.17608 (win7sp1_gdr.110428-1525)
- FileDescription: Server Network driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0dfac000 fffff880`0dfbe000 tcpipreg (deferred)
- Mapped memory image file: c:\cache\tcpipreg.sys\506C62BE12000\tcpipreg.sys
- Image path: \SystemRoot\System32\drivers\tcpipreg.sys
- Image name: tcpipreg.sys
- Timestamp: Wed Oct 03 19:07:26 2012 (506C62BE)
- CheckSum: 00010902
- ImageSize: 00012000
- File version: 6.1.7601.17964
- Product version: 6.1.7601.17964
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 1.0 App
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: tcpipreg.sys
- OriginalFilename: tcpipreg.sys
- ProductVersion: 6.1.7601.17964
- FileVersion: 6.1.7601.17964 (win7sp1_gdr.121003-0333)
- FileDescription: TCP/IP Registry Compatibility Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff880`0dfbe000 fffff880`0dfd5e00 WibuKey64 (deferred)
- Image path: \SystemRoot\SYSTEM32\DRIVERS\WibuKey64.sys
- Image name: WibuKey64.sys
- Timestamp: Thu Sep 22 14:24:10 2011 (4E7B1ADA)
- CheckSum: 0001C6AD
- ImageSize: 00017E00
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff960`000c0000 fffff960`003d7000 win32k (deferred)
- Mapped memory image file: c:\cache\win32k.sys\5202F253317000\win32k.sys
- Image path: \SystemRoot\System32\win32k.sys
- Image name: win32k.sys
- Timestamp: Thu Aug 08 04:20:19 2013 (5202F253)
- CheckSum: 0031170D
- ImageSize: 00317000
- File version: 6.1.7601.18233
- Product version: 6.1.7601.18233
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- Translations: 0409.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: win32k.sys
- OriginalFilename: win32k.sys
- ProductVersion: 6.1.7601.18233
- FileVersion: 6.1.7601.18233 (win7sp1_gdr.130807-1534)
- FileDescription: Multi-User Win32 Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff960`00410000 fffff960`0041a000 TSDDD (deferred)
- Mapped memory image file: c:\cache\TSDDD.dll\4A5BCE62a000\TSDDD.dll
- Image path: \SystemRoot\System32\TSDDD.dll
- Image name: TSDDD.dll
- Timestamp: Tue Jul 14 03:16:34 2009 (4A5BCE62)
- CheckSum: 00009E96
- ImageSize: 0000A000
- File version: 6.1.7600.16385
- Product version: 6.1.7600.16385
- File flags: 0 (Mask 3F)
- File OS: 40004 NT Win32
- File type: 3.4 Driver
- File date: 00000000.00000000
- Translations: 0000.04b0
- CompanyName: Microsoft Corporation
- ProductName: Microsoft® Windows® Operating System
- InternalName: framebuf.dll
- OriginalFilename: framebuf.dll
- ProductVersion: 6.1.7600.16385
- FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
- FileDescription: Framebuffer Display Driver
- LegalCopyright: © Microsoft Corporation. All rights reserved.
- fffff960`006f0000 fffff960`00717000 cdd (deferred)
- Image path: \SystemRoot\System32\cdd.dll
- Image name: cdd.dll
- Timestamp: unavailable (00000000)
- CheckSum: 00000000
- ImageSize: 00027000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- fffff960`00810000 fffff960`00871000 ATMFD (deferred)
- Image path: \SystemRoot\System32\ATMFD.DLL
- Image name: ATMFD.DLL
- Timestamp: Sun Dec 16 16:45:03 2012 (50CDDE6F)
- CheckSum: 00064F96
- ImageSize: 00061000
- Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
- Unloaded modules:
- fffff880`0b44f000 fffff880`0b485000 WUDFRd.sys
- Timestamp: unavailable (00000000)
- Checksum: 00000000
- ImageSize: 00036000
- fffff880`0b5c1000 fffff880`0b5dc000 USBSTOR.SYS
- Timestamp: unavailable (00000000)
- Checksum: 00000000
- ImageSize: 0001B000
- fffff880`0b400000 fffff880`0b436000 WUDFRd.sys
- Timestamp: unavailable (00000000)
- Checksum: 00000000
- ImageSize: 00036000
- fffff880`0b47c000 fffff880`0b47e000 MSPQM.sys
- Timestamp: unavailable (00000000)
- Checksum: 00000000
- ImageSize: 00002000
- fffff880`0b471000 fffff880`0b47c000 WSDPrint.sys
- Timestamp: unavailable (00000000)
- Checksum: 00000000
- ImageSize: 0000B000
- fffff880`07800000 fffff880`0780e000 monitor.sys
- Timestamp: unavailable (00000000)
- Checksum: 00000000
- ImageSize: 0000E000
- fffff880`0b47e000 fffff880`0b488000 hiber_storpo
- Timestamp: unavailable (00000000)
- Checksum: 00000000
- ImageSize: 0000A000
- fffff880`26473000 fffff880`26740000 hiber_iaStor
- Timestamp: unavailable (00000000)
- Checksum: 00000000
- ImageSize: 002CD000
- fffff880`26740000 fffff880`26753000 hiber_dumpfv
- Timestamp: unavailable (00000000)
- Checksum: 00000000
- ImageSize: 00013000
- fffff880`078e6000 fffff880`07959000 IntcDAud.sys
- Timestamp: unavailable (00000000)
- Checksum: 00000000
- ImageSize: 00073000
- fffff880`0b400000 fffff880`0b471000 spsys.sys
- Timestamp: unavailable (00000000)
- Checksum: 00000000
- ImageSize: 00071000
- fffff880`078e6000 fffff880`07959000 IntcDAud.sys
- Timestamp: unavailable (00000000)
- Checksum: 00000000
- ImageSize: 00073000
- fffff880`02502000 fffff880`02510000 crashdmp.sys
- Timestamp: unavailable (00000000)
- Checksum: 00000000
- ImageSize: 0000E000
- fffff880`02510000 fffff880`0251a000 dump_storpor
- Timestamp: unavailable (00000000)
- Checksum: 00000000
- ImageSize: 0000A000
- fffff880`04c74000 fffff880`04f41000 dump_iaStorA
- Timestamp: unavailable (00000000)
- Checksum: 00000000
- ImageSize: 002CD000
- fffff880`04f41000 fffff880`04f54000 dump_dumpfve
- Timestamp: unavailable (00000000)
- Checksum: 00000000
- ImageSize: 00013000
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement