Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- d:\Program Files (x86)\Windows Kits\8.0\Debuggers\x64>cdb.exe -o "C:\Program Files\Internet Explorer\iexplore.exe"
- Microsoft (R) Windows Debugger Version 6.2.9200.20512 AMD64
- Copyright (c) Microsoft Corporation. All rights reserved.
- CommandLine: "C:\Program Files\Internet Explorer\iexplore.exe"
- Symbol search path is: symsrv*symsrv.dll*d:\localsymbols*http://msdl.microsoft.com/download/symbols
- Executable search path is:
- ModLoad: 00000001`3f3a0000 00000001`3f468000 iexplore.exe
- ModLoad: 00000000`774c0000 00000000`77669000 ntdll.dll
- ModLoad: 00000000`773a0000 00000000`774bf000 C:\Windows\system32\kernel32.dll
- ModLoad: 000007fe`fd370000 000007fe`fd3dc000 C:\Windows\system32\KERNELBASE.dll
- ModLoad: 00000000`772a0000 00000000`7739a000 C:\Windows\system32\USER32.dll
- ModLoad: 000007fe`fd660000 000007fe`fd6c7000 C:\Windows\system32\GDI32.dll
- ModLoad: 000007fe`fd650000 000007fe`fd65e000 C:\Windows\system32\LPK.dll
- ModLoad: 000007fe`fda80000 000007fe`fdb49000 C:\Windows\system32\USP10.dll
- ModLoad: 000007fe`fe2e0000 000007fe`fe37f000 C:\Windows\system32\msvcrt.dll
- ModLoad: 000007fe`fd570000 000007fe`fd575000 C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
- ModLoad: 000007fe`fdb50000 000007fe`fdc2b000 C:\Windows\system32\advapi32.DLL
- ModLoad: 000007fe`fda60000 000007fe`fda7f000 C:\Windows\SYSTEM32\sechost.dll
- ModLoad: 000007fe`fe910000 000007fe`fea3d000 C:\Windows\system32\RPCRT4.dll
- ModLoad: 000007fe`f6bf0000 000007fe`f6bf4000 C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
- ModLoad: 000007fe`fea40000 000007fe`ff7c9000 C:\Windows\system32\shell32.DLL
- ModLoad: 000007fe`fe0d0000 000007fe`fe141000 C:\Windows\system32\SHLWAPI.dll
- ModLoad: 000007fe`fe380000 000007fe`fe647000 C:\Windows\system32\iertutil.dll
- ModLoad: 000007fe`fd300000 000007fe`fd304000 C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
- ModLoad: 000007fe`fd190000 000007fe`fd19c000 C:\Windows\system32\version.DLL
- ModLoad: 000007fe`fd2e0000 000007fe`fd2e4000 C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
- ModLoad: 000007fe`fd290000 000007fe`fd293000 C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
- ModLoad: 00000000`77690000 00000000`77693000 C:\Windows\system32\normaliz.DLL
- ModLoad: 000007fe`fd2f0000 000007fe`fd2f4000 C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
- (1bf0.f4c): Break instruction exception - code 80000003 (first chance)
- ntdll!LdrpDoDebuggerBreak+0x30:
- 00000000`77568aa0 cc int 3
- 0:000> .reload /f user32.dll
- 0:000> x user32!_NtUserOpenClipboard
- 00000000`772c5aa0 USER32!NtUserOpenClipboard (<no parameter info>)
- 0:000> x user32!_NtGetCliboardData
- 0:000> x user32!_NtGetClipboardData
- 0:000> x user32!NtUserGetClipboardData
- 00000000`772be860 USER32!NtUserGetClipboardData (<no parameter info>)
- 0:000> bp USER32!NtUserOpenClipboard
- 0:000> bp USER32!NtUserGetClipboardData
- 0:000> bl
- 0 e 00000000`772c5aa0 0001 (0001) 0:**** USER32!ZwUserOpenClipboard
- 1 e 00000000`772be860 0001 (0001) 0:**** USER32!NtUserGetClipboardData
- 0:000> g
- ModLoad: 000007fe`fe050000 000007fe`fe07e000 C:\Windows\system32\IMM32.DLL
- ModLoad: 000007fe`fd770000 000007fe`fd879000 C:\Windows\system32\MSCTF.dll
- ModLoad: 000007fe`fd1a0000 000007fe`fd1d1000 C:\Windows\system32\nvinitx.dll
- ModLoad: 00000000`00110000 00000000`00116000 C:\Program Files\NVIDIA Corporation\CoProcManager\detoured.dll
- ModLoad: 000007fe`f5650000 000007fe`f5681000 C:\Program Files\NVIDIA Corporation\CoProcManager\nvd3d9wrapx.dll
- ModLoad: 000007fe`fd880000 000007fe`fda57000 C:\Windows\system32\SETUPAPI.dll
- ModLoad: 000007fe`fd2a0000 000007fe`fd2d6000 C:\Windows\system32\CFGMGR32.dll
- ModLoad: 000007fe`fdd10000 000007fe`fdde7000 C:\Windows\system32\OLEAUT32.dll
- ModLoad: 000007fe`fe650000 000007fe`fe853000 C:\Windows\system32\ole32.dll
- ModLoad: 000007fe`fd3e0000 000007fe`fd3fa000 C:\Windows\system32\DEVOBJ.dll
- ModLoad: 000007fe`fd0c0000 000007fe`fd0cf000 C:\Windows\system32\CRYPTBASE.DLL
- ModLoad: 000007fe`e94b0000 000007fe`ea27f000 C:\Windows\system32\IEFRAME.dll
- ModLoad: 000007fe`fb070000 000007fe`fb264000 C:\Windows\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa
- 3b1e3d17594757\comctl32.dll
- ModLoad: 000007fe`e66c0000 000007fe`e6722000 C:\Program Files\Internet Explorer\IEShims.dll
- ModLoad: 000007fe`fd6d0000 000007fe`fd767000 C:\Windows\system32\comdlg32.dll
- ModLoad: 000007fe`fafc0000 000007fe`fb016000 C:\Windows\system32\uxtheme.dll
- ModLoad: 000007fe`fd620000 000007fe`fd624000 C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
- ModLoad: 000007fe`fe150000 000007fe`fe2d5000 C:\Windows\system32\urlmon.dll
- ModLoad: 000007fe`fddf0000 000007fe`fe04a000 C:\Windows\system32\WININET.dll
- ModLoad: 000007fe`fd310000 000007fe`fd32e000 C:\Windows\system32\USERENV.dll
- ModLoad: 000007fe`fd280000 000007fe`fd28f000 C:\Windows\system32\profapi.dll
- ModLoad: 000007fe`fab10000 000007fe`fab28000 C:\Windows\system32\dwmapi.dll
- ModLoad: 000007fe`fcda0000 000007fe`fcdab000 C:\Windows\system32\Secur32.dll
- ModLoad: 000007fe`fd030000 000007fe`fd055000 C:\Windows\system32\SSPICLI.DLL
- ModLoad: 000007fe`f0d20000 000007fe`f0d24000 C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
- ModLoad: 000007fe`fe080000 000007fe`fe0cd000 C:\Windows\system32\WS2_32.dll
- ModLoad: 000007fe`fe860000 000007fe`fe868000 C:\Windows\system32\NSI.dll
- ModLoad: 000007fe`f9d10000 000007fe`f9d81000 C:\Windows\system32\winhttp.dll
- ModLoad: 000007fe`f9ca0000 000007fe`f9d04000 C:\Windows\system32\webio.dll
- ModLoad: 000007fe`fca00000 000007fe`fca55000 C:\Windows\system32\mswsock.dll
- ModLoad: 000007fe`f54c0000 000007fe`f54c4000 C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
- ModLoad: 000007fe`fc9f0000 000007fe`fc9f7000 C:\Windows\System32\wship6.dll
- ModLoad: 000007fe`fa200000 000007fe`fa227000 C:\Windows\system32\IPHLPAPI.DLL
- ModLoad: 000007fe`fa1f0000 000007fe`fa1fb000 C:\Windows\system32\WINNSI.DLL
- ModLoad: 000007fe`fc370000 000007fe`fc377000 C:\Windows\System32\wshtcpip.dll
- ModLoad: 000007fe`fc880000 000007fe`fc8db000 C:\Windows\system32\DNSAPI.dll
- ModLoad: 000007fe`f6010000 000007fe`f603f000 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL
- ModLoad: 00000000`77680000 00000000`77687000 C:\Windows\system32\PSAPI.DLL
- ModLoad: 000007fe`f7dc0000 000007fe`f7dc8000 C:\Windows\system32\rasadhlp.dll
- ModLoad: 000007fe`fca60000 000007fe`fca78000 C:\Windows\system32\CRYPTSP.dll
- ModLoad: 000007fe`fc760000 000007fe`fc7a7000 C:\Windows\system32\rsaenh.dll
- ModLoad: 000007fe`fd170000 000007fe`fd184000 C:\Windows\system32\RpcRtRemote.dll
- ModLoad: 000007fe`fe870000 000007fe`fe909000 C:\Windows\system32\CLBCatQ.DLL
- ModLoad: 000007fe`f2700000 000007fe`f27ba000 C:\Program Files\Internet Explorer\ieproxy.dll
- ModLoad: 000007fe`f9c40000 000007fe`f9c93000 C:\Windows\System32\fwpuclnt.dll
- ModLoad: 000007fe`fd060000 000007fe`fd0b7000 C:\Windows\system32\apphelp.dll
- Symbol search path is: symsrv*symsrv.dll*d:\localsymbols*http://msdl.microsoft.com/download/symbols
- Executable search path is:
- ModLoad: 00000000`01240000 00000000`01308000 iexplore.exe
- ModLoad: 00000000`774c0000 00000000`77669000 ntdll.dll
- ModLoad: 000007fe`fd400000 000007fe`fd56d000 C:\Windows\system32\CRYPT32.dll
- ModLoad: 00000000`776a0000 00000000`77820000 ntdll32.dll
- ModLoad: 000007fe`fd270000 000007fe`fd27f000 C:\Windows\system32\MSASN1.dll
- ModLoad: 00000000`74920000 00000000`7495f000 C:\Windows\SYSTEM32\wow64.dll
- ModLoad: 00000000`748c0000 00000000`7491c000 C:\Windows\SYSTEM32\wow64win.dll
- ModLoad: 000007fe`e6190000 000007fe`e6229000 C:\Windows\system32\IEUI.dll
- ModLoad: 00000000`748b0000 00000000`748b8000 C:\Windows\SYSTEM32\wow64cpu.dll
- (e40.27b8): Break instruction exception - code 80000003 (first chance)
- ntdll!LdrpDoDebuggerBreak+0x30:
- 00000000`77568aa0 cc int 3
- 1:009> g
- ModLoad: 00000000`773a0000 00000000`774bf000 WOW64_IMAGE_SECTION
- ModLoad: 00000000`77180000 00000000`77290000 WOW64_IMAGE_SECTION
- ModLoad: 00000000`773a0000 00000000`774bf000 NOT_AN_IMAGE
- ModLoad: 00000000`772a0000 00000000`7739a000 NOT_AN_IMAGE
- ModLoad: 00000000`77180000 00000000`77290000 C:\Windows\syswow64\kernel32.dll
- ModLoad: 00000000`76d20000 00000000`76d67000 C:\Windows\syswow64\KERNELBASE.dll
- ModLoad: 000007fe`fbe70000 000007fe`fbf9c000 C:\Windows\system32\PROPSYS.dll
- ModLoad: 00000000`77040000 00000000`770ec000 C:\Windows\syswow64\msvcrt.dll
- ModLoad: 00000000`75830000 00000000`75835000 C:\Windows\syswow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
- ModLoad: 000007fe`f05a0000 000007fe`f05bd000 C:\Windows\system32\mssprxy.dll
- ModLoad: 00000000`76ad0000 00000000`76b71000 C:\Windows\syswow64\advapi32.DLL
- ModLoad: 00000000`75da0000 00000000`75db9000 C:\Windows\SysWOW64\sechost.dll
- ModLoad: 00000000`75a90000 00000000`75b80000 C:\Windows\syswow64\RPCRT4.dll
- ModLoad: 000007fe`fa820000 000007fe`fa981000 C:\Windows\system32\windowscodecs.dll
- ModLoad: 00000000`75010000 00000000`75070000 C:\Windows\syswow64\SspiCli.dll
- ModLoad: 000007fe`f9fe0000 000007fe`fa034000 C:\Windows\system32\oleacc.dll
- ModLoad: 00000000`75000000 00000000`7500c000 C:\Windows\syswow64\CRYPTBASE.dll
- ModLoad: 00000000`75560000 00000000`75792000 C:\Windows\syswow64\iertutil.dll
- ModLoad: 00000000`75ba0000 00000000`75ba4000 C:\Windows\syswow64\api-ms-win-downlevel-version-l1-1-0.dll
- ModLoad: 00000000`747c0000 00000000`747c9000 C:\Windows\SysWOW64\version.DLL
- ModLoad: 00000000`77670000 00000000`77674000 C:\Windows\syswow64\api-ms-win-downlevel-user32-l1-1-0.dll
- ModLoad: 00000000`76b80000 00000000`76c80000 C:\Windows\syswow64\user32.DLL
- ModLoad: 00000000`770f0000 00000000`77180000 C:\Windows\syswow64\GDI32.dll
- ModLoad: 00000000`75b90000 00000000`75b9a000 C:\Windows\syswow64\LPK.dll
- ModLoad: 000007fe`efec0000 000007fe`f008a000 C:\Windows\system32\explorerframe.dll
- ModLoad: 00000000`76c80000 00000000`76d1d000 C:\Windows\syswow64\USP10.dll
- ModLoad: 000007fe`fabd0000 000007fe`fac13000 C:\Windows\system32\DUser.dll
- ModLoad: 00000000`75b80000 00000000`75b83000 C:\Windows\syswow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
- ModLoad: 000007fe`faca0000 000007fe`fad92000 C:\Windows\system32\DUI70.dll
- ModLoad: 00000000`77290000 00000000`77293000 C:\Windows\syswow64\normaliz.DLL
- ModLoad: 00000000`75510000 00000000`75514000 C:\Windows\syswow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
- ModLoad: 00000000`752a0000 00000000`752f7000 C:\Windows\syswow64\shlwapi.DLL
- (e40.27b8): WOW64 breakpoint - code 4000001f (first chance)
- First chance exceptions are reported before any exception handling.
- This exception may be expected and handled.
- ntdll32!LdrpDoDebuggerBreak+0x2c:
- 777412fb cc int 3
- 1:009:x86> g
- ModLoad: 75840000 758a0000 C:\Windows\SysWOW64\IMM32.DLL
- ModLoad: 750a0000 7516c000 C:\Windows\syswow64\MSCTF.dll
- ModLoad: 747d0000 747fb000 C:\Windows\SysWOW64\nvinit.dll
- ModLoad: f9c20000 f9c27000 C:\Windows\system32\MSIMG32.dll
- ModLoad: 00120000 00126000 C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\detoured.dll
- ModLoad: 749c0000 749e9000 C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\nvd3d9wrap.dll
- ModLoad: 76e70000 7700d000 C:\Windows\syswow64\SETUPAPI.dll
- ModLoad: 757a0000 757c7000 C:\Windows\syswow64\CFGMGR32.dll
- ModLoad: 75d10000 75d9f000 C:\Windows\syswow64\OLEAUT32.dll
- ModLoad: 00000000`75300000 00000000`7545c000 C:\Windows\syswow64\ole32.dll
- ModLoad: 00000000`76d70000 00000000`76d82000 C:\Windows\syswow64\DEVOBJ.dll
- ModLoad: 00000000`5d2e0000 00000000`5d2e4000 C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
- ModLoad: 00000000`75de0000 00000000`76a2b000 C:\Windows\syswow64\shell32.DLL
- Symbol search path is: symsrv*symsrv.dll*d:\localsymbols*http://msdl.microsoft.com/download/symbols
- Executable search path is:
- ModLoad: 00000000`01240000 00000000`01308000 iexplore.exe
- ModLoad: 00000000`5d2f0000 00000000`5df38000 C:\Windows\SysWOW64\IEFRAME.dll
- ModLoad: 00000000`774c0000 00000000`77669000 ntdll.dll
- ModLoad: 00000000`6e2d0000 00000000`6e46e000 C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e8
- 55142bd5705d\comctl32.dll
- ModLoad: 00000000`776a0000 00000000`77820000 ntdll32.dll
- ModLoad: 00000000`673e0000 00000000`6742b000 C:\Program Files (x86)\Internet Explorer\IEShims.dll
- ModLoad: 00000000`74920000 00000000`7495f000 C:\Windows\SYSTEM32\wow64.dll
- ModLoad: 00000000`76d90000 00000000`76e0b000 C:\Windows\syswow64\comdlg32.dll
- ModLoad: 00000000`748c0000 00000000`7491c000 C:\Windows\SYSTEM32\wow64win.dll
- ModLoad: 00000000`748b0000 00000000`748b8000 C:\Windows\SYSTEM32\wow64cpu.dll
- ModLoad: 00000000`75460000 00000000`75464000 C:\Windows\syswow64\api-ms-win-downlevel-ole32-l1-1-0.dll
- (9cc.21e0): Break instruction exception - code 80000003 (first chance)
- ntdll!LdrpDoDebuggerBreak+0x30:
- 00000000`77568aa0 cc int 3
- 2:014> g
- ModLoad: 00000000`773a0000 00000000`774bf000 WOW64_IMAGE_SECTION
- ModLoad: 00000000`77180000 00000000`77290000 WOW64_IMAGE_SECTION
- ModLoad: 00000000`773a0000 00000000`774bf000 NOT_AN_IMAGE
- ModLoad: 00000000`72eb0000 00000000`72f30000 C:\Windows\SysWOW64\uxtheme.dll
- ModLoad: 00000000`772a0000 00000000`7739a000 NOT_AN_IMAGE
- ModLoad: 00000000`77180000 00000000`77290000 C:\Windows\syswow64\kernel32.dll
- ModLoad: 00000000`75bb0000 00000000`75cfa000 C:\Windows\syswow64\urlmon.dll
- ModLoad: 00000000`76d20000 00000000`76d67000 C:\Windows\syswow64\KERNELBASE.dll
- ModLoad: 00000000`758a0000 00000000`75a84000 C:\Windows\syswow64\WININET.dll
- ModLoad: 00000000`77040000 00000000`770ec000 C:\Windows\syswow64\msvcrt.dll
- ModLoad: 00000000`75dc0000 00000000`75dd7000 C:\Windows\syswow64\USERENV.dll
- ModLoad: 00000000`75830000 00000000`75835000 C:\Windows\syswow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
- ModLoad: 00000000`75470000 00000000`7547b000 C:\Windows\syswow64\profapi.dll
- ModLoad: 00000000`76ad0000 00000000`76b71000 C:\Windows\syswow64\advapi32.DLL
- ModLoad: 00000000`744d0000 00000000`744d8000 C:\Windows\SysWOW64\Secur32.dll
- ModLoad: 00000000`75da0000 00000000`75db9000 C:\Windows\SysWOW64\sechost.dll
- ModLoad: 00000000`5cf10000 00000000`5cf14000 C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
- ModLoad: 00000000`75a90000 00000000`75b80000 C:\Windows\syswow64\RPCRT4.dll
- ModLoad: 00000000`75010000 00000000`75070000 C:\Windows\syswow64\SspiCli.dll
- ModLoad: 00000000`75520000 00000000`75555000 C:\Windows\syswow64\WS2_32.dll
- ModLoad: 00000000`75000000 00000000`7500c000 C:\Windows\syswow64\CRYPTBASE.dll
- ModLoad: 00000000`75d00000 00000000`75d06000 C:\Windows\syswow64\NSI.dll
- ModLoad: 00000000`75560000 00000000`75792000 C:\Windows\syswow64\iertutil.dll
- ModLoad: 00000000`74630000 00000000`74688000 C:\Windows\SysWOW64\winhttp.dll
- ModLoad: 00000000`75ba0000 00000000`75ba4000 C:\Windows\syswow64\api-ms-win-downlevel-version-l1-1-0.dll
- ModLoad: 00000000`745e0000 00000000`7462f000 C:\Windows\SysWOW64\webio.dll
- ModLoad: 00000000`747c0000 00000000`747c9000 C:\Windows\SysWOW64\version.DLL
- ModLoad: 00000000`77670000 00000000`77674000 C:\Windows\syswow64\api-ms-win-downlevel-user32-l1-1-0.dll
- ModLoad: 00000000`76b80000 00000000`76c80000 C:\Windows\syswow64\user32.DLL
- ModLoad: 00000000`74780000 00000000`747bc000 C:\Windows\SysWOW64\mswsock.dll
- ModLoad: 00000000`770f0000 00000000`77180000 C:\Windows\syswow64\GDI32.dll
- ModLoad: 00000000`74170000 00000000`74176000 C:\Windows\SysWOW64\wship6.dll
- ModLoad: 00000000`75b90000 00000000`75b9a000 C:\Windows\syswow64\LPK.dll
- ModLoad: 00000000`76c80000 00000000`76d1d000 C:\Windows\syswow64\USP10.dll
- ModLoad: 00000000`746f0000 00000000`7470c000 C:\Windows\SysWOW64\IPHLPAPI.DLL
- ModLoad: 00000000`75b80000 00000000`75b83000 C:\Windows\syswow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
- ModLoad: 00000000`746e0000 00000000`746e7000 C:\Windows\SysWOW64\WINNSI.DLL
- ModLoad: 00000000`77290000 00000000`77293000 C:\Windows\syswow64\normaliz.DLL
- ModLoad: 00000000`75510000 00000000`75514000 C:\Windows\syswow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
- ModLoad: 00000000`752a0000 00000000`752f7000 C:\Windows\syswow64\shlwapi.DLL
- ModLoad: 00000000`74750000 00000000`74767000 C:\Windows\SysWOW64\CRYPTSP.dll
- (9cc.21e0): WOW64 breakpoint - code 4000001f (first chance)
- First chance exceptions are reported before any exception handling.
- This exception may be expected and handled.
- ntdll32!LdrpDoDebuggerBreak+0x2c:
- 777412fb cc int 3
- 2:014:x86> g
- ModLoad: 75840000 758a0000 C:\Windows\SysWOW64\IMM32.DLL
- ModLoad: 750a0000 7516c000 C:\Windows\syswow64\MSCTF.dll
- ModLoad: 747d0000 747fb000 C:\Windows\SysWOW64\nvinit.dll
- ModLoad: 74710000 7474b000 C:\Windows\SysWOW64\rsaenh.dll
- ModLoad: 00120000 00126000 C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\detoured.dll
- ModLoad: 74590000 7459e000 C:\Windows\SysWOW64\RpcRtRemote.dll
- ModLoad: 749c0000 749e9000 C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\nvd3d9wrap.dll
- ModLoad: 00000000`76e70000 00000000`7700d000 C:\Windows\syswow64\SETUPAPI.dll
- ModLoad: 00000000`76a30000 00000000`76ab3000 C:\Windows\syswow64\CLBCatQ.DLL
- ModLoad: 00000000`757a0000 00000000`757c7000 C:\Windows\syswow64\CFGMGR32.dll
- ModLoad: 00000000`63d00000 00000000`63d49000 C:\Program Files (x86)\Internet Explorer\ieproxy.dll
- ModLoad: 00000000`75d10000 00000000`75d9f000 C:\Windows\syswow64\OLEAUT32.dll
- ModLoad: 00000000`6f070000 00000000`6f074000 C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
- ModLoad: 00000000`75300000 00000000`7545c000 C:\Windows\syswow64\ole32.dll
- ModLoad: 00000000`76d70000 00000000`76d82000 C:\Windows\syswow64\DEVOBJ.dll
- ModLoad: 00000000`74980000 00000000`74993000 C:\Windows\SysWOW64\dwmapi.dll
- ModLoad: 00000000`5d2e0000 00000000`5d2e4000 C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
- ModLoad: 00000000`039d0000 00000000`04ccd000 C:\Windows\SysWOW64\MSHTML.dll
- ModLoad: 00000000`75de0000 00000000`76a2b000 C:\Windows\syswow64\shell32.DLL
- ModLoad: 00000000`5d2f0000 00000000`5df38000 C:\Windows\SysWOW64\IEFRAME.dll
- ModLoad: 00000000`6e2d0000 00000000`6e46e000 C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e8
- 55142bd5705d\comctl32.dll
- ModLoad: 00000000`673e0000 00000000`6742b000 C:\Program Files (x86)\Internet Explorer\IEShims.dll
- ModLoad: 00000000`76d90000 00000000`76e0b000 C:\Windows\syswow64\comdlg32.dll
- ModLoad: 00000000`75460000 00000000`75464000 C:\Windows\syswow64\api-ms-win-downlevel-ole32-l1-1-0.dll
- ModLoad: 00000000`72eb0000 00000000`72f30000 C:\Windows\SysWOW64\uxtheme.dll
- ModLoad: 00000000`75bb0000 00000000`75cfa000 C:\Windows\syswow64\urlmon.dll
- ModLoad: 00000000`758a0000 00000000`75a84000 C:\Windows\syswow64\WININET.dll
- ModLoad: 00000000`75dc0000 00000000`75dd7000 C:\Windows\syswow64\USERENV.dll
- ModLoad: 00000000`75470000 00000000`7547b000 C:\Windows\syswow64\profapi.dll
- ModLoad: 00000000`5f770000 00000000`5f7e9000 C:\Windows\SysWOW64\IEUI.dll
- ModLoad: 00000000`744d0000 00000000`744d8000 C:\Windows\SysWOW64\Secur32.dll
- ModLoad: 00000000`591d0000 00000000`59517000 C:\Windows\SysWOW64\d2d1.dll
- ModLoad: 00000000`5cf10000 00000000`5cf14000 C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
- ModLoad: 00000000`6a9a0000 00000000`6aad6000 C:\Windows\SysWOW64\DWrite.dll
- ModLoad: 00000000`67440000 00000000`67479000 C:\Program Files (x86)\Internet Explorer\sqmapi.dll
- ModLoad: 00000000`75520000 00000000`75555000 C:\Windows\syswow64\WS2_32.dll
- ModLoad: 00000000`70230000 00000000`7027c000 C:\Windows\SysWOW64\dxgi.dll
- ModLoad: 00000000`75d00000 00000000`75d06000 C:\Windows\syswow64\NSI.dll
- ModLoad: 00000000`74630000 00000000`74688000 C:\Windows\SysWOW64\winhttp.dll
- ModLoad: 00000000`6fc40000 00000000`6fc5c000 C:\Windows\SysWOW64\DXGIDebug.dll
- ModLoad: 00000000`745e0000 00000000`7462f000 C:\Windows\SysWOW64\webio.dll
- ModLoad: 00000000`6eb80000 00000000`6eb97000 C:\Windows\SysWOW64\bcrypt.dll
- ModLoad: 00000000`74780000 00000000`747bc000 C:\Windows\SysWOW64\mswsock.dll
- ModLoad: 00000000`6e670000 00000000`6e6ad000 C:\Windows\SysWOW64\bcryptprimitives.dll
- ModLoad: 00000000`74170000 00000000`74176000 C:\Windows\SysWOW64\wship6.dll
- ModLoad: 00000000`75070000 00000000`7509f000 C:\Windows\syswow64\WINTRUST.dll
- ModLoad: 00000000`746f0000 00000000`7470c000 C:\Windows\SysWOW64\IPHLPAPI.DLL
- ModLoad: 00000000`75170000 00000000`75291000 C:\Windows\syswow64\CRYPT32.dll
- ModLoad: 00000000`746e0000 00000000`746e7000 C:\Windows\SysWOW64\WINNSI.DLL
- ModLoad: 00000000`76ac0000 00000000`76acc000 C:\Windows\syswow64\MSASN1.dll
- ModLoad: 00000000`6fc90000 00000000`6fe05000 C:\Windows\SysWOW64\d3d11.dll
- ModLoad: 00000000`6fb30000 00000000`6fc1b000 C:\Windows\SysWOW64\nvumdshim.dll
- ModLoad: 00000000`030c0000 00000000`03150000 C:\Windows\SysWOW64\gdi32.dll
- ModLoad: 00000000`63160000 00000000`63ca2000 C:\Windows\SysWOW64\igd10iumd32.dll
- ModLoad: 00000000`6e8c0000 00000000`6e8f8000 C:\Windows\SysWOW64\ncrypt.dll
- ModLoad: 00000000`6f730000 00000000`6faad000 C:\Windows\SysWOW64\igdusc32.dll
- ModLoad: 00000000`74750000 00000000`74767000 C:\Windows\SysWOW64\CRYPTSP.dll
- ModLoad: 00000000`74710000 00000000`7474b000 C:\Windows\SysWOW64\rsaenh.dll
- ModLoad: 00000000`74590000 00000000`7459e000 C:\Windows\SysWOW64\RpcRtRemote.dll
- ModLoad: 00000000`76a30000 00000000`76ab3000 C:\Windows\syswow64\CLBCatQ.DLL
- ModLoad: 00000000`63d00000 00000000`63d49000 C:\Program Files (x86)\Internet Explorer\ieproxy.dll
- ModLoad: 00000000`6f070000 00000000`6f074000 C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
- ModLoad: 00000000`74980000 00000000`74993000 C:\Windows\SysWOW64\dwmapi.dll
- ModLoad: 00000000`03500000 00000000`047fd000 C:\Windows\SysWOW64\MSHTML.dll
- ModLoad: 00000000`591d0000 00000000`59517000 C:\Windows\SysWOW64\d2d1.dll
- ModLoad: 00000000`6a9a0000 00000000`6aad6000 C:\Windows\SysWOW64\DWrite.dll
- ModLoad: 00000000`70230000 00000000`7027c000 C:\Windows\SysWOW64\dxgi.dll
- ModLoad: 00000000`5f730000 00000000`5f769000 C:\Program Files (x86)\Internet Explorer\sqmapi.dll
- ModLoad: 00000000`6fc40000 00000000`6fc5c000 C:\Windows\SysWOW64\DXGIDebug.dll
- ModLoad: 00000000`6eb80000 00000000`6eb97000 C:\Windows\SysWOW64\bcrypt.dll
- ModLoad: 00000000`6e670000 00000000`6e6ad000 C:\Windows\SysWOW64\bcryptprimitives.dll
- ModLoad: 00000000`75070000 00000000`7509f000 C:\Windows\syswow64\WINTRUST.dll
- ModLoad: 00000000`75170000 00000000`75291000 C:\Windows\syswow64\CRYPT32.dll
- ModLoad: 00000000`76ac0000 00000000`76acc000 C:\Windows\syswow64\MSASN1.dll
- ModLoad: 00000000`74450000 00000000`74494000 C:\Windows\SysWOW64\DNSAPI.dll
- ModLoad: 00000000`6e6f0000 00000000`6e73c000 C:\Windows\SysWOW64\apphelp.dll
- ModLoad: 00000000`04cc0000 00000000`05fbd000 C:\Windows\SysWOW64\mshtml.dll
- ModLoad: 00000000`6fc90000 00000000`6fe05000 C:\Windows\SysWOW64\d3d11.dll
- ModLoad: 00000000`6fb30000 00000000`6fc1b000 C:\Windows\SysWOW64\nvumdshim.dll
- ModLoad: 00000000`03190000 00000000`03220000 C:\Windows\SysWOW64\gdi32.dll
- ModLoad: 00000000`63160000 00000000`63ca2000 C:\Windows\SysWOW64\igd10iumd32.dll
- ModLoad: 00000000`6e8c0000 00000000`6e8f8000 C:\Windows\SysWOW64\ncrypt.dll
- ModLoad: 00000000`6f730000 00000000`6faad000 C:\Windows\SysWOW64\igdusc32.dll
- ModLoad: 00000000`04e80000 00000000`05ac8000 C:\Windows\SysWOW64\ieframe.dll
- ModLoad: 00000000`59f30000 00000000`59f5e000 C:\Windows\SysWOW64\mlang.dll
- ModLoad: 00000000`74770000 00000000`74775000 C:\Windows\SysWOW64\wshtcpip.dll
- ModLoad: 00000000`71690000 00000000`716b7000 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL
- ModLoad: 00000000`76e60000 00000000`76e65000 C:\Windows\syswow64\PSAPI.DLL
- ModLoad: 000007fe`fd0d0000 000007fe`fd161000 C:\Windows\system32\SXS.DLL
- ModLoad: 00000000`715f0000 00000000`715f6000 C:\Windows\SysWOW64\rasadhlp.dll
- ModLoad: 00000000`71550000 00000000`71588000 C:\Windows\SysWOW64\fwpuclnt.dll
- ModLoad: 000007fe`e5570000 000007fe`e55ab000 C:\Windows\system32\MLANG.dll
- ModLoad: 000007fe`fbd10000 000007fe`fbd3d000 C:\Windows\system32\ntmarta.dll
- ModLoad: 000007fe`fdcb0000 000007fe`fdd02000 C:\Windows\system32\WLDAP32.dll
- ModLoad: 00000000`5f770000 00000000`5f7e9000 C:\Windows\SysWOW64\IEUI.dll
- ModLoad: 00000000`06ac0000 00000000`06c1c000 C:\Windows\SysWOW64\ole32.dll
- ModLoad: 00000000`6e980000 00000000`6e988000 C:\Windows\SysWOW64\credssp.dll
- ModLoad: 00000000`6e930000 00000000`6e96f000 C:\Windows\SysWOW64\schannel.dll
- ModLoad: 00000000`6e650000 00000000`6e666000 C:\Windows\SysWOW64\GPAPI.dll
- ModLoad: 00000000`6b870000 00000000`6b88c000 C:\Windows\SysWOW64\cryptnet.dll
- ModLoad: 00000000`76e10000 00000000`76e55000 C:\Windows\syswow64\WLDAP32.dll
- ModLoad: 00000000`6fab0000 00000000`6fab6000 C:\Windows\SysWOW64\SensApi.dll
- ModLoad: 00000000`07630000 00000000`07814000 C:\Windows\SysWOW64\wininet.dll
- ModLoad: 00000000`13d30000 00000000`13dbc000 C:\Windows\SysWOW64\uiautomationcore.dll
- ModLoad: 00000000`71420000 00000000`7145c000 C:\Windows\SysWOW64\OLEACC.dll
- ModLoad: 00000000`58ba0000 00000000`58c52000 C:\Windows\SysWOW64\ieapfltr.dll
- ModLoad: 00000000`583a0000 00000000`587f8000 C:\Windows\SysWOW64\jscript9.dll
- ModLoad: 00000000`6b940000 00000000`6b94b000 C:\Windows\SysWOW64\msimtf.dll
- ModLoad: 000007fe`fc030000 000007fe`fc05c000 C:\Windows\system32\POWRPROF.DLL
- ModLoad: 000007fe`f54d0000 000007fe`f552d000 C:\Windows\system32\dxgi.dll
- ModLoad: 00000000`6f190000 00000000`6f285000 C:\Windows\SysWOW64\PROPSYS.dll
- ModLoad: 000007fe`f5490000 000007fe`f54b4000 C:\Windows\system32\DXGIDebug.dll
- ModLoad: 00000000`05c50000 00000000`05c8b000 C:\Windows\system32\WINTRUST.dll
- ModLoad: 00000000`71590000 00000000`715ef000 C:\Windows\SysWOW64\SXS.DLL
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- ModLoad: 07450000 0751c000 C:\Windows\SysWOW64\msctf.dll
- ModLoad: 07450000 0751c000 C:\Windows\SysWOW64\msctf.dll
- ModLoad: 00000000`67230000 00000000`67361000 C:\Windows\SysWOW64\windowscodecs.dll
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- ModLoad: 5d000000 5d02f000 C:\Windows\SysWOW64\XmlLite.dll
- ModLoad: 6f2d0000 6f2f5000 C:\Windows\SysWOW64\POWRPROF.DLL
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- ModLoad: 0a120000 0a230000 C:\Windows\SysWOW64\kernel32.dll
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- ModLoad: 74690000 746c2000 C:\Windows\SysWOW64\WINMM.dll
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- ModLoad: 626d0000 62828000 C:\Windows\SysWOW64\msxml6.dll
- ModLoad: 0b910000 0b945000 C:\Windows\SysWOW64\ws2_32.DLL
- ModLoad: 0b950000 0b98c000 C:\Windows\SysWOW64\Oleacc.dll
- ModLoad: 6ec60000 6ec97000 C:\Windows\SysWOW64\windowscodecsext.dll
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- (9cc.26dc): C++ EH exception - code e06d7363 (first chance)
- ModLoad: 000007fe`fc610000 000007fe`fc61a000 C:\Windows\system32\credssp.dll
- ModLoad: 000007fe`fc7f0000 000007fe`fc847000 C:\Windows\system32\schannel.DLL
- ModLoad: 000007fe`fcbe0000 000007fe`fcc30000 C:\Windows\system32\ncrypt.dll
- ModLoad: 000007fe`fcbb0000 000007fe`fcbd2000 C:\Windows\system32\bcrypt.dll
- ModLoad: 000007fe`fc650000 000007fe`fc69c000 C:\Windows\system32\bcryptprimitives.dll
- ModLoad: 000007fe`fc480000 000007fe`fc49b000 C:\Windows\system32\GPAPI.dll
- ModLoad: 000007fe`f7f10000 000007fe`f7f37000 C:\Windows\system32\cryptnet.dll
- ModLoad: 000007fe`f6b60000 000007fe`f6b69000 C:\Windows\system32\SensApi.dll
- (1bf0.24c0): Break instruction exception - code 80000003 (first chance)
- ntdll!DbgBreakPoint:
- 00000000`7750cc90 cc int 3
- 0:058>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement